~ ZHPDiag v2015.9.24.145 Par Nicolas Coolman (2015/09/24) ~ Démarré par Admin (Administrator) (2015/09/27 21:05:17) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\Admin\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Admin\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 10 Pro, 64-bit (Build 10240) ---\\ Navigateurs Internet (3) - 0s GCIE: Google Chrome v45.0.2454.101 MFIE: Mozilla Firefox 41.0 (x86 fr) v41.0 MSIE: Internet Explorer v11.0.10240.16431 ---\\ Informations sur les produits Windows (8) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows Operating System - Windows(R) 7, OEM_COA_NSLP channel Windows ID Activation : OK ~ Windows Partial Key : 9R6X8 Windows License : OK ~ Windows Remaining Initializations Number : 3 Windows Automatic Updates : OK ---\\ Logiciels de protection (2) - 7s Malwarebytes Anti-Malware version 2.1.8.1057 Windows Defender W10 (Deactivate) ---\\ Logiciels d'optimisation (1) - 7s CCleaner v5.08 ---\\ Surveillance de Logiciels (2) - 7s Adobe Flash Player 19 NPAPI Adobe Acrobat Reader DC - Français ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 30 Stepping 5, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 4119.936 MB (39% free) ~ System Restore: Activé (Enable) ~ System drive C: has 122 GB free of 303 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: ADMIN-PC ~ User Name: Admin ~ Logged in as Administrator ---\\ Enumération des unités disques (3) - 0s ~ Drive C: has 122 GB free of 303 GB (System) ~ Drive E: has 1 GB free of 2 GB ~ Drive Z: has 0 GB free of 0 GB ---\\ Etat du Centre de Sécurité Windows (10) - 0s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoFolderOptions: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoDispScrSavPage: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Recherche particulière de fichiers génériques (25) - 1s [MD5.F1CBCB7FA6F3B309639AA2D4EF74469C] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [4532304] © [MD5.5DED2A3F11AE916C8F2724947E736261] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\WINDOWS\System32\rundll32.exe [59392] © [MD5.7718A2A9B2BFB2C8E2BAEB03310CA3FD] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\WINDOWS\System32\Wininit.exe [290312] © [MD5.FE32B8423711B4B4378C0BA3C3560ED4] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\WINDOWS\System32\wininet.dll [2741760] © [MD5.26EFEFD877A84EE9FBDE6DEE630892C9] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [578048] © [MD5.ECB1943967424DFB96E03F6A098434EF] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\WINDOWS\System32\sppcomapi.dll [430592] © [MD5.C287D0E32771E3222A444DC527A29477] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\WINDOWS\System32\dnsapi.dll [680256] © [MD5.BB5BBD0E4D04047585E4ED0F07AA51E7] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\WINDOWS\Syswow64\dnsapi.dll [534064] © [MD5.8C795953726C7D2DE72CE4748208C5ED] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [20480] © [MD5.6C12C7E01A4F64E0AA9C88AF66955CC9] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [577888] © [MD5.8921DF6060DB5C7700AA48CB12E9EA08] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [28512] © [MD5.F2829DC6D292DCAC5029893BB2E9FEE3] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [92672] © [MD5.CA160E02F35A61C6F5C681FB4669C519] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [174080] © [MD5.25435407D97419627F4B10653433BF2B] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\WINDOWS\System32\drivers\DfsC.sys [138240] © [MD5.C277A49F8A8295840DEBC9240B75A282] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [80896] © [MD5.D4CDEE4A62BDFFF6E8558A9552148EA7] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [114688] © [MD5.5D3744E6FDEC1A6FB3FA9B1DD4AF0694] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [143360] © [MD5.1DF2C5FD2710A13B07E663A12F0E0EEA] - (.Microsoft Corporation - Minirdr SMB Windows NT.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [415232] © [MD5.F0D791348AD254360CC3C3E501CCB745] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [273408] © [MD5.466EC5659C02ED53DBD47DC1BC2B8086] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [2116448] © [MD5.38F1AE32339731F6E5A7281AE8042545] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [96768] © [MD5.CA60F6C03611AF1710BC903ED9F566FB] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [104960] © [MD5.A32AED8C644734B283A7C9D08D76064D] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [176128] © [MD5.28E1E63A1AC65E17B3194238FA2CF3BF] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\WINDOWS\System32\drivers\tdx.sys [116576] © [MD5.823A237D871CD652C6BFD47BECB6810A] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [378720] © ---\\ Processus lancés (28) - 1s [MD5.6771120C767054B09AA09DAFC3B04B70] - (.IOBit - Advanced SystemCare Ultimate Service.) -- C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCAvSvc.exe [660768] [PID.1116] © [MD5.753FB1124BDEFAC4BE71F20783FC3BA2] - (.IObit - Advanced SystemCare Service.) -- C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCService.exe [911648] [PID.1124] © [MD5.D689693D53364774001860941EDBA80F] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 341.7.) -- C:\WINDOWS\system32\nvvsvc.exe [932040] [PID.1336] © [MD5.A560CC68F1348F8E45C09C0FF123291A] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1200328] [PID.1756] © [MD5.D689693D53364774001860941EDBA80F] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 341.7.) -- C:\WINDOWS\system32\nvvsvc.exe [932040] [PID.1728] © [MD5.FC7C13B5A9E9BE23B7AE72BBC7FDB278] - (.Hewlett-Packard Company - HpService.) -- C:\WINDOWS\system32\Hpservice.exe [30520] [PID.2128] © [MD5.A6FB9DB8F1A86861D955FD6975977AE0] - (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) -- C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_b20011ea53a6b83e\AESTSr64.exe [89600] [PID.2552] © [MD5.013697369EAFFA675D0671607F036020] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.2640] © [MD5.6EB87FDB59AABF6D19C927492DEA0D36] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128] [PID.2808] © [MD5.DDD93F3E0C23944D8A6E196BE0F886AD] - (.IObit - Product Updater.) -- C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2909472] [PID.2896] © [MD5.EB568B709E7170A9BE67A405644E8CBF] - (.IObit - Smart Defrag v4.) -- C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe [4525344] [PID.4808] © [MD5.F520729935888448EBCB958C95B4F160] - (.IObit - Performance Monitor.) -- C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\Monitor.exe [1757472] [PID.4856] © [MD5.25D2E68707B7F4A9B56E820332D298BF] - (.IObit - Advanced SystemCare Ultimate Tray.) -- C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCTray.exe [2596640] [PID.2916] © [MD5.054F47050FF92B4FA99B1A9E1E0E09E4] - (.IObit - IObit Uninstaller 5 UninstallMontior.) -- C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe [260896] [PID.1192] © [MD5.D4C78206027368CA94798BE89F0B95CF] - (.Symantec Corporation - WSCStub.) -- C:\Program Files (x86)\Norton AntiVirus\Engine\21.7.0.11\WSCStub.exe [2034040] [PID.6516] © [MD5.9E45C606CFEB50DB4576533B6902EA19] - (.Beepa P/L - Fraps.) -- C:\Fraps\fraps.exe [2547384] [PID.4952] [MD5.E820896189493E02A143158C96C939FF] - (.Beepa P/L - Fraps.) -- C:\Fraps\fraps64.dat [68792] [PID.4024] [MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.4608] © [MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.1724] © [MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.908] © [MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.7088] © [MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.6396] © [MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.6316] © [MD5.215043E2C11B3D85578585E4CE2E60C3] - (...) -- C:\Users\Admin\AppData\Roaming\Dashlane\Dashlane.exe [228024] [PID.6252] [MD5.D9584A63F72FBB6BEEE69DAF37065D04] - (...) -- C:\Users\Admin\AppData\Roaming\Dashlane\DashlanePlugin.exe [285880] [PID.2272] [MD5.142F194E3845A86A1F535C4AE6CAE1C3] - (.Goversoft LLC - PrivaZer.) -- C:\Program Files (x86)\PrivaZer\PrivaZer.exe [14467208] [PID.4080] © [MD5.2BA068373CA5B647129A1A18C2506C32] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [377000] [PID.2268] © [MD5.260B29F5BCC07C91CBA92910484BE023] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Admin\Downloads\ZHPDiag3.exe [1938944] [PID.1680] © ---\\ Google Chrome, Démarrage,Recherche,Extensions (12) - 1s G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [boadgeojelhgndaghljhdicfkmllpafd] Google Cast G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] __MSG_name__ G2 - GCE: Preference [User Data\Default] [cmhicdplfejcchpmimlnohfadpimciaa] VS Launcher G2 - GCE: Preference [User Data\Default] [cnciopoikihiagdjbjpnocolokfelagl] Videostream for Google Chromecast™ G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [enopcannacfkcidnfkdhchodkndiogja] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [fdjamakpfbbddfjaooikfcpapjohcfmg] Dashlane G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (23) - 2s M0 - MFSP: prefs.js [Admin - dahtoggs.default] https://www.malwarebytes.org/restorebrowser//?gd=&ctid=CT3333004&octid=EB_ORIGINAL_CTID&ISID=CF70B11B-6028-48DE-ADB2-84FCDF80178B&SearchSource=55&CUI=&UM=8&UP=SP4F3F1622-8D75-4F86-BD8D-6F238F27D083&D=080315&SSPV= M0 - MFSP: prefs.js [Admin - 74zff0j7.default-1432369741722] https://www.malwarebytes.org/restorebrowser//?gd=&ctid=CT3333004&octid=EB_ORIGINAL_CTID&ISID=CF70B11B-6028-48DE-ADB2-84FCDF80178B&SearchSource=55&CUI=&UM=8&UP=SP4F3F1622-8D75-4F86-BD8D-6F238F27D083&D=080315&SSPV= M0 - MFSP: prefs.js [Admin - f0fese9n.default-1436533342776] https://www.malwarebytes.org/restorebrowser//?gd=&ctid=CT3333004&octid=EB_ORIGINAL_CTID&ISID=CF70B11B-6028-48DE-ADB2-84FCDF80178B&SearchSource=55&CUI=&UM=8&UP=SP4F3F1622-8D75-4F86-BD8D-6F238F27D083&D=080315&SSPV= P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.FRA P2 - EXT FILE: (...) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\dahtoggs.default\extensions\{1f638105-cfb3-40f7-ba3f-34530f574cf6}.xpi P2 - EXT FILE: (...) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\dahtoggs.default\searchplugins\yahoo-avast.xml P2 - EXT FILE: (...) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\74zff0j7.default-1432369741722\extensions\fireform@mozilla.org.xpi P2 - EXT FILE: (...) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\74zff0j7.default-1432369741722\extensions\firefox@ghostery.com.xpi P2 - EXT FILE: (...) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\74zff0j7.default-1432369741722\extensions\jid1-HdwPLukcGQeOSh@jetpack.xpi P2 - EXT FILE: (...) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\74zff0j7.default-1432369741722\extensions\leethax@leethax.net.xpi P2 - EXT FILE: (...) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\74zff0j7.default-1432369741722\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi P2 - EXT FILE: (...) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\74zff0j7.default-1432369741722\searchplugins\google-encrypted.xml P2 - EXT FILE: (...) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\74zff0j7.default-1432369741722\searchplugins\pc-astuces.xml P2 - EXT FILE: (...) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\f0fese9n.default-1436533342776\searchplugins\yahoo-avast.xml P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} © P2 - EXT: (.IObit - Advanced SystemCare Surfing Protection.) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\dahtoggs.default\extensions\iobitascsurfingprotection@iobit.com © P2 - EXT: (...) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\dahtoggs.default\extensions\staged P2 - EXT: (.LastPass Dev Team - LastPass.) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\dahtoggs.default\extensions\support@lastpass.com P2 - EXT: (.IObit - Advanced SystemCare Surfing Protection.) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\74zff0j7.default-1432369741722\extensions\iobitascsurfingprotection@iobit.com © P2 - EXT: (.IObit - Advanced SystemCare Surfing Protection.) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\f0fese9n.default-1436533342776\extensions\iobitascsurfingprotection@iobit.com © P2 - FPN: [HKCU] [@verimatrix.com/ViewRightWeb] - (.Verimatrix, Inc..) -- C:\Program Files (x86)\Verimatrix\ViewRight Web\\npViewRight.dll P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_185.dll © P2 - FPN: [HKLM] [@verimatrix.com/ViewRightWeb] - (.Verimatrix, Inc..) -- C:\Program Files (x86)\Verimatrix\ViewRight Web\\npViewRight.dll ---\\ Opera, Démarrage,Recherche,Plugins (3) - 0s B2 - EXT: [ahdcbmcfcelhbaajmnfilcmnchogibdn] C:\Users\Admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\ahdcbmcfcelhbaajmnfilcmnchogibdn B2 - EXT: [gomekmidlodglbbmalcneegieacbdmki] C:\Users\Admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\gomekmidlodglbbmalcneegieacbdmki B2 - EXT: [iehakgpdecaomokcdicdigpbmipnllcg] C:\Users\Admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\iehakgpdecaomokcdicdigpbmipnllcg ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (21) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer,Proxy Management (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet= ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (2) ---\\ Browser Helper Object de navigateur (BHO) (3) - 0s O2 - BHO: ExplorerWnd Helper [64Bits] - {10921475-03CE-4E04-90CE-E2E7EF20C814} (Orphean) O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll © O2 - BHO: (no name) [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL © ---\\ Applications lancées au démarrage du système (15) - 0s O4 - HKLM\..\RunOnce: [000ClearPageFileAtShutdown] cmd /c reg import C:\Users\Admin\AppData\Local\000ClearPageFileAtShutdown & cmd /c del C:\Users\Admin\AppData\Local\000ClearPageFileAtShutdown (.not file.) O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Admin\AppData\Local\Google\Update\GoogleUpdate.exe © O4 - HKCU\..\Run: [Advanced SystemCare Ultimate] . (.IObit - Advanced SystemCare Ultimate Tray.) -- C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCTray.exe © O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_A5B343D047FD8BD2F268B0EA0F8DBD7C] . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe © O4 - HKCU\..\Run: [autoRunTest] . (.Sand Studio - AirDroid 3.) -- C:\Program Files (x86)\AirDroid\AirDroid.exe © O4 - HKUS\.DEFAULT\..\Run: [GarminExpressTrayApp] . (.Garmin Ltd. or its subsidiaries - Garmin Express Tray.) -- C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe © O4 - HKUS\S-1-5-18\..\Run: [GarminExpressTrayApp] . (.Garmin Ltd. or its subsidiaries - Garmin Express Tray.) -- C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe © O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe © O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe © O4 - HKUS\S-1-5-21-1379721485-3427850771-2066513292-1000\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Admin\AppData\Local\Google\Update\GoogleUpdate.exe © O4 - HKUS\S-1-5-21-1379721485-3427850771-2066513292-1000\..\Run: [Advanced SystemCare Ultimate] . (.IObit - Advanced SystemCare Ultimate Tray.) -- C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCTray.exe © O4 - HKUS\S-1-5-21-1379721485-3427850771-2066513292-1000\..\Run: [GoogleChromeAutoLaunch_A5B343D047FD8BD2F268B0EA0F8DBD7C] . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O4 - HKUS\S-1-5-21-1379721485-3427850771-2066513292-1000\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe © O4 - HKUS\S-1-5-21-1379721485-3427850771-2066513292-1000\..\Run: [autoRunTest] . (.Sand Studio - AirDroid 3.) -- C:\Program Files (x86)\AirDroid\AirDroid.exe © ---\\ Modification Domaine/Adresses DNS (8) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.4.4 =>.Google Public DNS O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.42.129 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = lan O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.4.4 =>.Google Public DNS O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.42.129 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpDomain = lan ---\\ Protocole additionnel (23) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll © O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll © O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll © O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL © O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll © O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll © O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll © O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll © O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL © ---\\ Liste des services NT non Microsoft et non désactivés (10) - 1s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe © O23 - Service: Advanced SystemCare Service 8 (AdvancedSystemCareService8) . (.IObit - Advanced SystemCare Service.) - C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCService.exe © O23 - Service: Andrea ST Filters Service (AESTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_b20011ea53a6b83e\AESTSr64.exe © O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe © O23 - Service: AdvancedSystemCareAntivirus (ASCAntivirusSrv) . (.IOBit - Advanced SystemCare Ultimate Service.) - C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCAvSvc.exe © O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © O23 - Service: @oem48.inf,%hpservice_desc%;HP Service (hpsrv) . (.Hewlett-Packard Company - HpService.) - C:\WINDOWS\system32\Hpservice.exe © O23 - Service: LiveUpdate (LiveUpdateSvc) . (.IObit - Product Updater.) - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe © O23 - Service: Norton AntiVirus (NAV) . (.Symantec Corporation - Norton AntiVirus.) - C:\Program Files (x86)\Norton AntiVirus\Engine\21.7.0.11\nav.exe © O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 341.7.) - C:\WINDOWS\system32\nvvsvc.exe © ---\\ Tâches planifiées en automatique (47) - 4s [MD5.E3FB05F33E1404AD606B1E1FE7C323C3] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [998104] © [MD5.C6D147C12C424373B016C0AB0A6C61EB] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000] © [MD5.B104C2D632CA88DACC208488B104F2C9] [APT] [ASCAntivirusScan2] (.IObit.) -- C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASC.exe [5526816] © [MD5.F520729935888448EBCB958C95B4F160] [APT] [ASCU8_PerformanceMonitor] (.IObit.) -- C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\Monitor.exe [1757472] © [MD5.B104C2D632CA88DACC208488B104F2C9] [APT] [ASCU8_SkipUac_Admin] (.IObit.) -- C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASC.exe [5526816] © [MD5.3D01BD151A423F6B7D89970E42E31E46] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6453528] © [MD5.7C6D524C78A1722AD987B9E47AC1FEE2] [APT] [DropboxUpdateTaskMachineCore] (.Dropbox, Inc..) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [134512] © [MD5.7C6D524C78A1722AD987B9E47AC1FEE2] [APT] [DropboxUpdateTaskMachineUA] (.Dropbox, Inc..) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [134512] © [MD5.433B77A496F42D603E7E71F172878BE6] [APT] [GarminUpdaterTask] (.Copyright © 2015.) -- C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [25912] [MD5.C6FF00DA1605982E616C03BE809FFE2D] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] © [MD5.C6FF00DA1605982E616C03BE809FFE2D] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] © [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskUserS-1-5-21-1379721485-3427850771-2066513292-1000Core] (.Google Inc..) -- C:\Users\Admin\AppData\Local\Google\Update\GoogleUpdate.exe [144200] © [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskUserS-1-5-21-1379721485-3427850771-2066513292-1000UA] (.Google Inc..) -- C:\Users\Admin\AppData\Local\Google\Update\GoogleUpdate.exe [144200] © [MD5.00000000000000000000000000000000] [APT] [Norton Security Scan for Admin] (...) -- C:\PROGRA~2\NORTON~3\Engine\410~1.28\Nss.exe (.not file.) [0] [MD5.D4C78206027368CA94798BE89F0B95CF] [APT] [Norton WSC Integration] (.Symantec Corporation.) -- C:\Program Files (x86)\Norton AntiVirus\Engine\21.7.0.11\WSCStub.exe [2034040] © [MD5.EB568B709E7170A9BE67A405644E8CBF] [APT] [SmartDefrag4_Startup] (.IObit.) -- C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe [4525344] © [MD5.46573F4542E59BBC7BDDFB463CD52506] [APT] [SmartDefrag4_Update] (.IObit.) -- C:\Program Files (x86)\IObit\Smart Defrag\AutoUpdate.exe [2390816] © [MD5.066FB3C52EDC16403163C216C2698CBC] [APT] [Uninstaller_SkipUac_Admin] (.IObit.) -- C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [4835616] © [MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [Apple\AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [561984] © O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] © O39 - APT: ASCU8_SkipUac_Admin - (.IObit.) -- C:\WINDOWS\Tasks\ASCU8_SkipUac_Admin.job [278] © O39 - APT: DropboxUpdateTaskMachineCore - (.Dropbox, Inc..) -- C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job [1180] © O39 - APT: DropboxUpdateTaskMachineUA - (.Dropbox, Inc..) -- C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job [1184] © O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1090] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1094] © O39 - APT: GoogleUpdateTaskUserS-1-5-21-1379721485-3427850771-2066513292-1000Core - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1379721485-3427850771-2066513292-1000Core.job [1044] © O39 - APT: GoogleUpdateTaskUserS-1-5-21-1379721485-3427850771-2066513292-1000UA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1379721485-3427850771-2066513292-1000UA.job [1096] © O39 - APT: Norton Security Scan for Admin - (...) -- C:\WINDOWS\Tasks\Norton Security Scan for Admin.job [470] O39 - APT: Uninstaller_SkipUac_Admin - (.IObit.) -- C:\WINDOWS\Tasks\Uninstaller_SkipUac_Admin.job [296] © O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [3996] © O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3978] © O39 - APT: ASCAntivirusScan2 - (.IObit.) -- C:\WINDOWS\System32\Tasks\ASCAntivirusScan2 [3506] © O39 - APT: ASCU8_PerformanceMonitor - (.IObit.) -- C:\WINDOWS\System32\Tasks\ASCU8_PerformanceMonitor [3328] © O39 - APT: ASCU8_SkipUac_Admin - (.IObit.) -- C:\WINDOWS\System32\Tasks\ASCU8_SkipUac_Admin [2452] © O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [2900] © O39 - APT: DropboxUpdateTaskMachineCore - (.Dropbox, Inc..) -- C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineCore [4050] © O39 - APT: DropboxUpdateTaskMachineUA - (.Dropbox, Inc..) -- C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineUA [4302] © O39 - APT: GarminUpdaterTask - (.Copyright © 2015.) -- C:\WINDOWS\System32\Tasks\GarminUpdaterTask [3622] O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3920] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [4152] © O39 - APT: GoogleUpdateTaskUserS-1-5-21-1379721485-3427850771-2066513292-1000Core - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1379721485-3427850771-2066513292-1000Core [3838] © O39 - APT: GoogleUpdateTaskUserS-1-5-21-1379721485-3427850771-2066513292-1000UA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1379721485-3427850771-2066513292-1000UA [4214] © O39 - APT: Norton Security Scan for Admin - (...) -- C:\WINDOWS\System32\Tasks\Norton Security Scan for Admin [3708] O39 - APT: Norton WSC Integration - (.Symantec Corporation.) -- C:\WINDOWS\System32\Tasks\Norton WSC Integration [3418] © O39 - APT: SmartDefrag4_Startup - (.IObit.) -- C:\WINDOWS\System32\Tasks\SmartDefrag4_Startup [3298] © O39 - APT: SmartDefrag4_Update - (.IObit.) -- C:\WINDOWS\System32\Tasks\SmartDefrag4_Update [3294] © O39 - APT: Uninstaller_SkipUac_Admin - (.IObit.) -- C:\WINDOWS\System32\Tasks\Uninstaller_SkipUac_Admin [2482] © ---\\ Logiciels installés (92) - 10s O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner © O42 - Logiciel: Package de pilotes Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB ( - (.Silicon Labs Software.) [HKLM][64Bits] -- D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2 © O42 - Logiciel: Package de pilotes Windows - Dynastream Innovations, Inc. ANT LibUSB Driver - (.Dynastream Innovations, Inc..) [HKLM][64Bits] -- F9D2A789F9CFF8CEC36B544F53877C80F1F73C46 © O42 - Logiciel: NVIDIA Display Control Panel - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIA Display Control Panel © O42 - Logiciel: Intel(R) Network Connections Drivers - (.Intel.) [HKLM][64Bits] -- PROSet © O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey © O42 - Logiciel: WinRAR 5.21 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver © O42 - Logiciel: Java 8 Update 45 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86418045F0} © O42 - Logiciel: Logiciel de base du périphérique HP Photosmart 5510 series - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {37A7272C-D56E-4AC1-86EB-76CDF1C72FF9} © O42 - Logiciel: ANT Drivers Installer x64 - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {4874180F-02FD-458B-AFD1-43AEA852F8E6} © O42 - Logiciel: HP Unified IO - (.HP.) [HKLM][64Bits] -- {5C76ED0D-0F6F-4985-8B34-F9AE7834848F} © O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {5D61F006-168C-4B8B-B7FD-F113C10AE0E4} © O42 - Logiciel: Garmin Communicator Plugin x64 - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {70A381F1-C161-4D61-A20C-BE12FC6777DF} © O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} © O42 - Logiciel: Security Update for Skype for Business 2015 (KB3085500) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{2CBBF876-7E76-4A01-8E9D-AEE3A99A19F2} © O42 - Logiciel: Microsoft Access MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft Excel MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft PowerPoint MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft Publisher MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft Outlook MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft Word MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft InfoPath MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft DCF MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft OneNote MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft Groove MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-040C-1000-0000000FF1CE} © O42 - Logiciel: Security Update for Skype for Business 2015 (KB3085500) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{2CBBF876-7E76-4A01-8E9D-AEE3A99A19F2} © O42 - Logiciel: Microsoft Lync MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE} © O42 - Logiciel: Security Update for Skype for Business 2015 (KB3085500) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{2CBBF876-7E76-4A01-8E9D-AEE3A99A19F2} © O42 - Logiciel: Update for Skype for Business 2015 (KB2889853) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{DD51BA84-F589-4939-B5FE-5538B3DCC12E} © O42 - Logiciel: Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.11761. - (.Microsoft Corporation.) [HKLM][64Bits] -- {986E003C-E56D-5A47-110E-D3C81F0E8535} © O42 - Logiciel: Validity Fingerprint Sensor Driver - (.Validity Sensors, Inc..) [HKLM][64Bits] -- {ADAA7361-54B8-4FC8-804E-94EC6C11ED68} © O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {B255D495-4734-4E9B-B4F5-96702FD4A7B9} © O42 - Logiciel: NVIDIA Pilote graphique 341.21 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver © O42 - Logiciel: NVIDIA nView 141.36 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView © O42 - Logiciel: NVIDIA WMI 2.18.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVWMI © O42 - Logiciel: Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed - (.Intel Corporation.) [HKLM][64Bits] -- {BEE86606-EFB5-4353-9F34-29E0C59CDCFA} © O42 - Logiciel: Garmin USB Drivers - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {DC7720F2-98BE-41C1-B0A8-E391362E86B8} © O42 - Logiciel: Validity Fingerprint Driver - (.Validity Sensors, Inc..) [HKLM][64Bits] -- {DD966CEF-5EA9-4BA2-B210-490FEBC27EA7} © O42 - Logiciel: ATI Catalyst Install Manager - (.ATI Technologies, Inc..) [HKLM][64Bits] -- {E38CB03D-048D-7530-9D49-E082ED7E8F45} © O42 - Logiciel: Avery Wizard 5.0 - (.Avery.) [HKLM][64Bits] -- {FC3B3A5D-7058-4627-9F1E-F95CC38B6054} © O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR © O42 - Logiciel: Adobe Flash Player 19 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI © O42 - Logiciel: Advanced SystemCare Ultimate 8 - (.IObit.) [HKLM][64Bits] -- Advanced SystemCare Ultimate_is1 © O42 - Logiciel: AirDroid 3.2.0.0 - (.Sand Studio.) [HKLM][64Bits] -- AirDroid © O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKLM][64Bits] -- Dropbox © O42 - Logiciel: Fraps (remove only) - (...) [HKLM][64Bits] -- Fraps O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome © O42 - Logiciel: Renesas Electronics USB 3.0 Host Controller Driver - (.Renesas Electronics Corporation.) [HKLM][64Bits] -- InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996} © O42 - Logiciel: NEC Electronics USB 3.0 Host Controller Driver - (.NEC Electronics Corporation.) [HKLM][64Bits] -- InstallShield_{D7BF9739-8A68-4335-BBEE-37752AD9E86B} © O42 - Logiciel: Surfing Protection - (.IObit.) [HKLM][64Bits] -- IObit Surfing Protection_is1 © O42 - Logiciel: IObit Uninstaller - (.IObit.) [HKLM][64Bits] -- IObitUninstall © O42 - Logiciel: IRIScan™ Direct - (.IRIScanDirect.) [HKLM][64Bits] -- IRIScanDirect_is1 O42 - Logiciel: Malwarebytes Anti-Malware version 2.1.8.1057 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 © O42 - Logiciel: Mozilla Firefox 41.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 41.0 (x86 fr) © O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService © O42 - Logiciel: PrivaZer - (.Goversoft LLC.) [HKLM][64Bits] -- PrivaZer © O42 - Logiciel: Smart Defrag 4 - (.IObit.) [HKLM][64Bits] -- Smart Defrag 4_is1 © O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player © O42 - Logiciel: Dropbox Update Helper - (.Dropbox, Inc..) [HKLM][64Bits] -- {099218A5-A723-43DC-8DB5-6173656A1E94} © O42 - Logiciel: ViewRight Web PC 3.6.0.0 - (.Verimatrix, Inc..) [HKLM][64Bits] -- {27961C9F-1965-48D9-A579-40F8EBEA0603} O42 - Logiciel: Garmin BaseCamp - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {31A67F6C-D79D-47B9-9F0B-13C0FCF3C3A8} © O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {31B9D218-FED2-4C6C-B19F-7294FFC130B0} © O42 - Logiciel: HP Quick Launch Buttons - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {34D2AB40-150D-475D-AE32-BD23FB5EE355} © O42 - Logiciel: JPEG to PDF 1.0 - (.jpegtopdf.com.) [HKLM][64Bits] -- {4097ADD8-7890-4CBD-953A-1187EF2C6FA5}_is1 O42 - Logiciel: HP FWUpdateEDO2 - (.Hewlett-Packard.) [HKLM][64Bits] -- {415FA9AD-DA10-4ABE-97B6-5051D4795C90} © O42 - Logiciel: Garmin Express - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {44d9dfc0-3a4a-4439-870f-f97550a9bc8d} © O42 - Logiciel: LG United Mobile Drivers - (.LG Electronics.) [HKLM][64Bits] -- {4DE95ED9-0A29-4C4F-8463-35857CF9BA36} © O42 - Logiciel: Renesas Electronics USB 3.0 Host Controller Driver - (.Renesas Electronics Corporation.) [HKLM][64Bits] -- {5442DAB8-7177-49E1-8B22-09A049EA5996} © O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} © O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} © O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} © O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {7FE25256-B7C1-480D-B736-10A67A833AEA} © O42 - Logiciel: HP Software Framework - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {84BC5389-E836-47CA-AE96-57DE17622F54} © O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {912D30CF-F39E-4B31-AD9A-123C6B794EE2} © O42 - Logiciel: HPDiagnosticCoreDll - (.Hewlett Packard.) [HKLM][64Bits] -- {9262B08F-E183-4FED-A2BD-23FF1A84EB79} © O42 - Logiciel: Elevated Installer - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {A88D9E0C-863A-4189-A051-FC48B3E43668} © O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} © O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824147215} © O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} © O42 - Logiciel: HPDiagnosticAlert - (.Microsoft.) [HKLM][64Bits] -- {B6465A32-8BE9-4B38-ADC5-4B4BDDC10B0D} © O42 - Logiciel: HP System Default Settings - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {D2A2E5CD-801A-4B8D-8119-F79449A09B67} © O42 - Logiciel: NEC Electronics USB 3.0 Host Controller Driver - (.NEC Electronics Corporation.) [HKLM][64Bits] -- {D7BF9739-8A68-4335-BBEE-37752AD9E86B} © O42 - Logiciel: Garmin Express Tray - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {DF98E789-84E2-4DB9-94C1-321443D4B7DB} © O42 - Logiciel: Garmin Express - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {E247A9DB-7405-4D3A-A447-4C6184A66133} © O42 - Logiciel: IDT Audio - (.IDT.) [HKLM][64Bits] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001} © O42 - Logiciel: HP Unified IO - (.HP.) [HKLM][64Bits] -- {F1390872-2500-4408-A46C-CD16C960C661} © O42 - Logiciel: QLBCASL - (.Hewlett-Packard.) [HKLM][64Bits] -- {F1D7AC58-554A-4A58-B784-B61558B1449A} © O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM][64Bits] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421} © O42 - Logiciel: HP Support Solutions Framework - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {FC3C2B77-6800-48C6-A15D-9D1031130C16} © O42 - Logiciel: Dashlane - (.Dashlane SAS.) [HKCU][64Bits] -- Dashlane © O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent O42 - Logiciel: ChromecastApp - (.Google Inc..) [HKCU][64Bits] -- {079ede36-133d-44b0-8053-c7c1fa8d2e0d}_is1 © ---\\ HKCU & HKLM Software Keys (167) - 11s HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AdwCleaner HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\Ashampoo HKLM\SOFTWARE\Wow6432Node\ATI Technologies HKLM\SOFTWARE\Wow6432Node\Auslogics HKLM\SOFTWARE\Wow6432Node\Avira HKLM\SOFTWARE\Wow6432Node\AVS4YOU HKLM\SOFTWARE\Wow6432Node\Caphyon HKLM\SOFTWARE\Wow6432Node\Company Name HKLM\SOFTWARE\Wow6432Node\CyberGhost HKLM\SOFTWARE\Wow6432Node\DivXNetworks HKLM\SOFTWARE\Wow6432Node\Dropbox HKLM\SOFTWARE\Wow6432Node\DropboxUpdate HKLM\SOFTWARE\Wow6432Node\EaseUS Todo Backup HKLM\SOFTWARE\Wow6432Node\ESTsoft HKLM\SOFTWARE\Wow6432Node\Fraps HKLM\SOFTWARE\Wow6432Node\Freemake HKLM\SOFTWARE\Wow6432Node\Garmin HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard HKLM\SOFTWARE\Wow6432Node\HP HKLM\SOFTWARE\Wow6432Node\Innovative Solutions HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\IObit HKLM\SOFTWARE\Wow6432Node\iolo HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\LG Electronics HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\MaxPower HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\NCH Software HKLM\SOFTWARE\Wow6432Node\NCH Swift Sound HKLM\SOFTWARE\Wow6432Node\Norton HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\One Time Password Providers HKLM\SOFTWARE\Wow6432Node\PDF Architect 2 HKLM\SOFTWARE\Wow6432Node\PowerPivot HKLM\SOFTWARE\Wow6432Node\RealNetworks HKLM\SOFTWARE\Wow6432Node\Safer Networking Limited HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\Smart Projects HKLM\SOFTWARE\Wow6432Node\SoftEther Project HKLM\SOFTWARE\Wow6432Node\Spotflux, Inc HKLM\SOFTWARE\Wow6432Node\Symantec HKLM\SOFTWARE\Wow6432Node\TechSmith HKLM\SOFTWARE\Wow6432Node\Verimatrix HKLM\SOFTWARE\Wow6432Node\VideoLAN HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\7-Zip HKCU\SOFTWARE\7PkyHZdQkPV HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Akeo Consulting HKCU\SOFTWARE\AntiCrash HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\Astonsoft HKCU\SOFTWARE\Avery HKCU\SOFTWARE\AVS4YOU HKCU\SOFTWARE\BcmSetup HKCU\SOFTWARE\BDUSBImmunizer HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\Bogosoft HKCU\SOFTWARE\CamStudioOpenSource for Nick HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\Clubic HKCU\SOFTWARE\CodeGear HKCU\SOFTWARE\CoinisRevShare HKCU\SOFTWARE\CompSoft HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\Dashlane HKCU\SOFTWARE\Dashlane_profiles HKCU\SOFTWARE\DigiDNA HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\Drivers HKCU\SOFTWARE\DriverWhiz =>PUP.Optional.DriverWhiz HKCU\SOFTWARE\Dropbox HKCU\SOFTWARE\DropboxUpdate HKCU\SOFTWARE\Emjysoft HKCU\SOFTWARE\EpmNewsInfo HKCU\SOFTWARE\ESTsoft HKCU\SOFTWARE\eSupport.com =>PUP.Optional.eSupport HKCU\SOFTWARE\EuroSoft Software Development HKCU\SOFTWARE\Foxit Software HKCU\SOFTWARE\Fraps3 HKCU\SOFTWARE\Freemake HKCU\SOFTWARE\FreeScreenToVideo HKCU\SOFTWARE\Garmin HKCU\SOFTWARE\Glarysoft HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\GPL Ghostscript HKCU\SOFTWARE\Hewlett-Packard HKCU\SOFTWARE\HP HKCU\SOFTWARE\HQVideoPro3.1cV05.05 HKCU\SOFTWARE\IDT HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\iMazing HKCU\SOFTWARE\Innovative Solutions HKCU\SOFTWARE\Integrator HKCU\SOFTWARE\Intel HKCU\SOFTWARE\iolo HKCU\SOFTWARE\iWesoft HKCU\SOFTWARE\KC Softwares HKCU\SOFTWARE\LG Electronics HKCU\SOFTWARE\LowRegistry HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\MainConcept HKCU\SOFTWARE\Mirillis HKCU\SOFTWARE\MOVAVI HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\NCH Software HKCU\SOFTWARE\NCH Swift Sound HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\Norton HKCU\SOFTWARE\NVIDIA Corporation HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Opera Software HKCU\SOFTWARE\PDFCreator HKCU\SOFTWARE\PhotoFiltre 7 HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\Plex, Inc. HKCU\SOFTWARE\PolySoft HKCU\SOFTWARE\PortableApps.com HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\QYzcQ3J85TCCbwE HKCU\SOFTWARE\Real HKCU\SOFTWARE\RealNetworks HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\RocketDock HKCU\SOFTWARE\Safer Networking Limited HKCU\SOFTWARE\Setup HKCU\SOFTWARE\Skype HKCU\SOFTWARE\Smart Projects HKCU\SOFTWARE\Soft Lemon HKCU\SOFTWARE\SoftEther Project HKCU\SOFTWARE\SoftwareNetz HKCU\SOFTWARE\Synaptics HKCU\SOFTWARE\System32 HKCU\SOFTWARE\TechSmith HKCU\SOFTWARE\TeleCharger HKCU\SOFTWARE\theRenamer HKCU\SOFTWARE\ToolbarCleaner HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\TuneUp HKCU\SOFTWARE\University of Tsukuba HKCU\SOFTWARE\Verimatrix HKCU\SOFTWARE\Visan HKCU\SOFTWARE\VPN Master Free HKCU\SOFTWARE\WebApp HKCU\SOFTWARE\Win HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Hotspot_Shield HKCU\SOFTWARE\AppDataLow\Software\JavaSoft ---\\ Contenu des dossiers Programmes (301) - 9s O43 - CFD: 2045/01/07 16:23:06 - [] D -- C:\Program Files (x86)\0000000000000.0x0 O43 - CFD: 2049/03/17 00:46:02 - [] DC -- C:\Program Files (x86)\0000000000000000.0x0 O43 - CFD: 2015/08/23 20:13:21 - [] DC -- C:\Program Files (x86)\Adobe O43 - CFD: 2015/09/24 14:47:35 - [] D -- C:\Program Files (x86)\AirDroid O43 - CFD: 2015/08/23 23:07:29 - [] D -- C:\Program Files (x86)\Apple Software Update O43 - CFD: 2015/07/12 14:12:22 - [] DC -- C:\Program Files (x86)\Ashampoo O43 - CFD: 2015/05/15 20:08:12 - [] DC -- C:\Program Files (x86)\Bookmark Checker O43 - CFD: 2015/09/12 10:03:22 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 2015/08/13 21:28:27 - [] D -- C:\Program Files (x86)\Dashlane O43 - CFD: 2015/09/20 15:49:54 - [] D -- C:\Program Files (x86)\DigiDNA O43 - CFD: 2015/07/12 17:55:07 - [] DC -- C:\Program Files (x86)\Dropbox O43 - CFD: 2015/07/02 15:11:42 - [] DC -- C:\Program Files (x86)\ESTsoft O43 - CFD: 2015/09/15 04:45:39 - [] ADC -- C:\Program Files (x86)\Garmin O43 - CFD: 2015/09/22 15:54:01 - [] D -- C:\Program Files (x86)\Google O43 - CFD: 2015/07/02 15:11:47 - [] AD -- C:\Program Files (x86)\Hewlett-Packard O43 - CFD: 2015/07/12 14:12:24 - [] AD -- C:\Program Files (x86)\Hp O43 - CFD: 2015/09/16 20:39:47 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 2015/07/02 14:33:02 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 2015/07/02 15:11:53 - [] D -- C:\Program Files (x86)\Internet Download Manager O43 - CFD: 2015/09/22 10:43:39 - [] D -- C:\Program Files (x86)\IObit O43 - CFD: 2015/07/20 15:49:12 - [] AD -- C:\Program Files (x86)\IRIScan Direct O43 - CFD: 2015/08/27 15:20:46 - [] D -- C:\Program Files (x86)\JPEG to PDF O43 - CFD: 2015/08/27 10:16:39 - [] D -- C:\Program Files (x86)\LG Electronics O43 - CFD: 2015/09/08 16:31:28 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware O43 - CFD: 2015/07/02 14:33:18 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services O43 - CFD: 2015/07/02 14:33:26 - [] D -- C:\Program Files (x86)\Microsoft Office O43 - CFD: 2015/08/12 16:48:04 - [] D -- C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 2015/07/02 15:11:57 - [] D -- C:\Program Files (x86)\Microsoft SQL Server O43 - CFD: 2015/07/31 09:28:19 - [] AD -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 2015/09/23 19:11:10 - [] D -- C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 2015/09/23 19:11:10 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service O43 - CFD: 2015/07/31 09:59:52 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 2015/07/12 14:12:30 - [] D -- C:\Program Files (x86)\NCH Software O43 - CFD: 2015/07/02 15:12:03 - [] D -- C:\Program Files (x86)\NEC Electronics O43 - CFD: 2015/07/27 08:59:25 - [] D -- C:\Program Files (x86)\Norton AntiVirus O43 - CFD: 2015/09/12 12:57:25 - [] D -- C:\Program Files (x86)\Norton Security Scan O43 - CFD: 2015/09/22 15:13:45 - [] D -- C:\Program Files (x86)\NortonInstaller O43 - CFD: 2015/08/25 13:53:12 - [] ADC -- C:\Program Files (x86)\PrivaZer O43 - CFD: 2015/07/31 09:59:52 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 2015/07/02 15:12:07 - [] D -- C:\Program Files (x86)\Renesas Electronics O43 - CFD: 2015/07/12 17:55:07 - [] D -- C:\Program Files (x86)\Software =>PUP.Optional.Boxore O43 - CFD: 2015/07/02 15:12:09 - [] AD -- C:\Program Files (x86)\Verimatrix O43 - CFD: 2015/07/12 14:01:05 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 2015/07/10 18:23:55 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 2015/09/22 15:13:45 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 2015/09/22 15:13:45 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform O43 - CFD: 2015/07/10 13:04:22 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 2015/07/10 18:23:55 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 2015/07/31 09:28:20 - [] SHD -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 2015/07/10 13:04:22 - [] SD -- C:\Program Files (x86)\WindowsPowerShell O43 - CFD: 2015/08/14 10:46:30 - [] D -- C:\Program Files (x86)\Xvid O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 2015/09/09 07:21:11 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/08/26 11:27:33 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/09/21 19:38:07 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare Ultimate 8 O43 - CFD: 2015/09/24 14:46:54 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AirDroid O43 - CFD: 2015/09/08 08:45:49 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 2015/07/31 09:35:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox O43 - CFD: 2015/08/11 19:14:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps O43 - CFD: 2015/09/15 04:45:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin O43 - CFD: 2015/09/12 11:10:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2015/07/31 09:35:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP O43 - CFD: 2015/07/31 09:35:24 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel O43 - CFD: 2015/08/24 07:32:30 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller O43 - CFD: 2015/07/31 09:35:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IRIScan Direct O43 - CFD: 2015/07/31 09:35:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 2015/08/27 15:20:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JPEG to PDF O43 - CFD: 2015/07/31 09:28:29 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/09/11 14:36:06 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 O43 - CFD: 2015/08/12 13:57:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 2015/07/31 09:28:30 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NEC Electronics O43 - CFD: 2015/07/31 09:35:24 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton AntiVirus O43 - CFD: 2015/09/12 11:20:02 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security Scan O43 - CFD: 2015/07/31 09:28:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Renesas Electronics O43 - CFD: 2015/09/15 16:25:33 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RocketDock O43 - CFD: 2015/09/22 10:43:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Defrag 4 O43 - CFD: 2015/09/12 10:03:18 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 2015/07/31 09:35:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 2015/07/31 09:35:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 2015/08/23 20:13:23 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2015/08/19 21:50:41 - [] D -- C:\ProgramData\Apple O43 - CFD: 2015/08/23 23:07:59 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2015/07/27 16:07:29 - [] D -- C:\ProgramData\Auslogics O43 - CFD: 2015/07/11 15:25:03 - [] D -- C:\ProgramData\AVAST Software O43 - CFD: 2015/08/12 15:32:20 - [] D -- C:\ProgramData\AVS4YOU O43 - CFD: 2015/01/29 16:55:12 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 2015/05/07 21:50:18 - [] HD -- C:\ProgramData\Common Files O43 - CFD: 2015/07/10 13:04:22 - [0] D -- C:\ProgramData\Comms O43 - CFD: 2015/08/23 20:54:46 - [] D -- C:\ProgramData\CyberLink O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2015/09/20 12:39:11 - [] D -- C:\ProgramData\DigiDNA O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2015/06/20 11:19:25 - [] D -- C:\ProgramData\Dropbox O43 - CFD: 2015/05/25 14:16:26 - [] D -- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 O43 - CFD: 2015/07/02 15:12:45 - [] D -- C:\ProgramData\ESTsoft O43 - CFD: 2015/01/29 16:55:12 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 2015/07/30 12:36:25 - [] D -- C:\ProgramData\Garmin O43 - CFD: 2015/09/12 12:40:04 - [0] D -- C:\ProgramData\GlarySoft O43 - CFD: 2015/07/02 15:12:45 - [] D -- C:\ProgramData\Hewlett-Packard O43 - CFD: 2015/07/02 15:12:45 - [] AD -- C:\ProgramData\HP O43 - CFD: 2015/09/21 19:38:27 - [] D -- C:\ProgramData\IObit O43 - CFD: 2015/07/02 13:02:15 - [] D -- C:\ProgramData\jnBoQV O43 - CFD: 2015/04/26 15:36:43 - [] D -- C:\ProgramData\LogSys O43 - CFD: 2015/07/02 14:41:30 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 2015/01/29 16:55:12 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 2015/08/12 13:57:22 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2015/09/11 14:35:07 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 2015/07/31 09:58:04 - [] D -- C:\ProgramData\Microsoft OneDrive O43 - CFD: 2015/05/27 12:45:49 - [] D -- C:\ProgramData\Mirillis O43 - CFD: 2015/01/29 16:55:12 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 2015/08/14 12:55:36 - [] D -- C:\ProgramData\Movavi O43 - CFD: 2015/08/14 12:55:10 - [] D -- C:\ProgramData\Movavi Video Converter 15 O43 - CFD: 2015/04/22 16:01:37 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 2015/06/05 15:37:06 - [] D -- C:\ProgramData\NCH Software O43 - CFD: 2015/07/02 09:06:22 - [] D -- C:\ProgramData\Neelvudnodulu O43 - CFD: 2015/09/12 11:19:35 - [] D -- C:\ProgramData\Norton O43 - CFD: 2015/07/27 08:43:39 - [] D -- C:\ProgramData\NortonInstaller O43 - CFD: 2015/07/31 09:28:32 - [] D -- C:\ProgramData\NVIDIA O43 - CFD: 2015/07/31 09:28:33 - [] D -- C:\ProgramData\NVIDIA Corporation O43 - CFD: 2015/07/10 15:22:07 - [] D -- C:\ProgramData\Oracle O43 - CFD: 2015/09/15 04:46:18 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 2015/07/02 15:12:48 - [] D -- C:\ProgramData\privazer O43 - CFD: 2015/09/21 23:00:36 - [] D -- C:\ProgramData\ProductData =>PUP.Optional.Generic O43 - CFD: 2015/09/12 10:04:12 - [] D -- C:\ProgramData\Real O43 - CFD: 2015/07/31 09:35:24 - [] AD -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 2015/07/12 17:55:07 - [] D -- C:\ProgramData\RogueKiller O43 - CFD: 2015/07/02 15:12:48 - [] D -- C:\ProgramData\ShellIcons O43 - CFD: 2015/07/25 16:56:31 - [] D -- C:\ProgramData\Skype O43 - CFD: 2015/07/02 14:41:53 - [] D -- C:\ProgramData\Soda PDF 7 O43 - CFD: 2015/09/11 16:15:39 - [] D -- C:\ProgramData\SoftwareDistribution O43 - CFD: 2015/06/05 15:37:06 - [] D -- C:\ProgramData\spotflux O43 - CFD: 2015/07/30 12:36:26 - [] D -- C:\ProgramData\Spybot - Search & Destroy O43 - CFD: 2015/05/02 20:53:45 - [] D -- C:\ProgramData\Spybot - Search & Destroy.BackupBySpybotPortable O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2015/07/10 15:22:53 - [] D -- C:\ProgramData\Sun O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2015/05/29 11:45:25 - [] D -- C:\ProgramData\TuneUp Software O43 - CFD: 2015/07/10 14:22:45 - [] D -- C:\ProgramData\USOPrivate O43 - CFD: 2015/07/10 14:22:45 - [] D -- C:\ProgramData\USOShared O43 - CFD: 2015/04/22 16:53:54 - [] D -- C:\ProgramData\Verimatrix O43 - CFD: 2015/07/02 15:12:48 - [] D -- C:\ProgramData\Visan O43 - CFD: 2015/08/23 23:00:18 - [] D -- C:\ProgramData\WindSolutions O43 - CFD: 2015/09/21 19:38:26 - [] D -- C:\ProgramData\{ACBCD40A-42A8-4FF9-BD42-ABCD14998CBA} =>PUP.Optional.BundleInstaller O43 - CFD: 2015/09/21 19:38:27 - [] D -- C:\ProgramData\{D76294E6-03B8-4971-AF2E-3F846161A690} O43 - CFD: 2015/07/02 15:11:37 - [] ADC -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 2015/08/23 20:13:20 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR O43 - CFD: 2015/07/02 14:31:47 - [] DC -- C:\Program Files (x86)\Common Files\Apple O43 - CFD: 2015/09/22 15:13:45 - [] D -- C:\Program Files (x86)\Common Files\AVSMedia O43 - CFD: 2015/07/12 14:12:23 - [] DC -- C:\Program Files (x86)\Common Files\Blueberry Software O43 - CFD: 2015/04/25 19:42:49 - [] DC -- C:\Program Files (x86)\Common Files\DVDVideoSoft O43 - CFD: 2015/07/02 15:11:40 - [] DC -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 2015/04/22 20:16:08 - [] DC -- C:\Program Files (x86)\Common Files\IObit O43 - CFD: 2015/07/10 15:22:52 - [] DC -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 2015/09/22 15:13:45 - [] AD -- C:\Program Files (x86)\Common Files\Microsoft Shared O43 - CFD: 2015/07/12 14:12:24 - [] DC -- C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 2015/07/31 09:28:18 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 2015/07/27 09:13:14 - [] DC -- C:\Program Files (x86)\Common Files\Symantec Shared O43 - CFD: 2015/09/22 15:13:45 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 2015/07/31 22:55:46 - [] D -- C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 2015/06/20 15:38:25 - [] D -- C:\Users\Admin\AppData\Roaming\ActivePresenter O43 - CFD: 2015/08/23 20:13:02 - [] D -- C:\Users\Admin\AppData\Roaming\Adobe O43 - CFD: 2015/09/20 12:39:10 - [] D -- C:\Users\Admin\AppData\Roaming\Apple Computer O43 - CFD: 2015/06/16 19:51:54 - [] D -- C:\Users\Admin\AppData\Roaming\AudioRecorder O43 - CFD: 2015/07/12 17:55:20 - [] D -- C:\Users\Admin\AppData\Roaming\Avery O43 - CFD: 2015/08/15 13:46:57 - [] D -- C:\Users\Admin\AppData\Roaming\AVS4YOU O43 - CFD: 2015/09/07 00:58:38 - [] D -- C:\Users\Admin\AppData\Roaming\cacaoweb =>PUP.Optional.CacaoWeb O43 - CFD: 2015/08/23 20:13:24 - [] D -- C:\Users\Admin\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant O43 - CFD: 2015/08/08 15:15:42 - [] D -- C:\Users\Admin\AppData\Roaming\cpuminer O43 - CFD: 2015/09/02 19:44:26 - [] D -- C:\Users\Admin\AppData\Roaming\Dashlane O43 - CFD: 2015/07/02 15:13:13 - [] D -- C:\Users\Admin\AppData\Roaming\DeepBurner O43 - CFD: 2015/08/19 21:56:19 - [] D -- C:\Users\Admin\AppData\Roaming\DiskAid O43 - CFD: 2015/09/07 17:27:40 - [0] D -- C:\Users\Admin\AppData\Roaming\DiskDefrag O43 - CFD: 2015/06/20 11:20:31 - [] D -- C:\Users\Admin\AppData\Roaming\Dropbox O43 - CFD: 2015/08/25 00:09:35 - [0] D -- C:\Users\Admin\AppData\Roaming\dvdcss O43 - CFD: 2015/04/25 19:42:43 - [] D -- C:\Users\Admin\AppData\Roaming\DVDVideoSoft O43 - CFD: 2015/07/20 17:18:32 - [] D -- C:\Users\Admin\AppData\Roaming\Emjysoft O43 - CFD: 2015/05/18 17:00:54 - [] D -- C:\Users\Admin\AppData\Roaming\ESTsoft O43 - CFD: 2015/07/02 14:46:09 - [] D -- C:\Users\Admin\AppData\Roaming\Foxit Software O43 - CFD: 2015/07/02 15:13:13 - [] D -- C:\Users\Admin\AppData\Roaming\FreeScreenToVideo O43 - CFD: 2015/08/01 03:53:05 - [] D -- C:\Users\Admin\AppData\Roaming\Garmin O43 - CFD: 2015/09/12 12:40:04 - [0] D -- C:\Users\Admin\AppData\Roaming\GlarySoft O43 - CFD: 2015/05/25 15:04:43 - [] D -- C:\Users\Admin\AppData\Roaming\hpqLog O43 - CFD: 2015/09/05 20:39:52 - [] D -- C:\Users\Admin\AppData\Roaming\HpUpdate O43 - CFD: 2015/06/05 15:37:10 - [] D -- C:\Users\Admin\AppData\Roaming\Identities O43 - CFD: 2015/07/02 15:13:13 - [] D -- C:\Users\Admin\AppData\Roaming\IDM O43 - CFD: 2015/09/20 12:57:34 - [] D -- C:\Users\Admin\AppData\Roaming\iMazing O43 - CFD: 2015/07/02 15:13:13 - [] D -- C:\Users\Admin\AppData\Roaming\ImprimCheques O43 - CFD: 2015/09/22 10:43:37 - [] D -- C:\Users\Admin\AppData\Roaming\IObit O43 - CFD: 2015/07/12 17:55:20 - [] D -- C:\Users\Admin\AppData\Roaming\iolo O43 - CFD: 2015/07/12 17:55:20 - [] D -- C:\Users\Admin\AppData\Roaming\ioloGovernor O43 - CFD: 2015/07/20 18:39:55 - [] D -- C:\Users\Admin\AppData\Roaming\KC Softwares O43 - CFD: 2015/07/02 15:13:14 - [] D -- C:\Users\Admin\AppData\Roaming\KeePass O43 - CFD: 2015/08/25 22:56:42 - [] D -- C:\Users\Admin\AppData\Roaming\LG Electronics O43 - CFD: 2015/07/02 14:46:18 - [] D -- C:\Users\Admin\AppData\Roaming\Local O43 - CFD: 2015/04/26 15:36:52 - [] D -- C:\Users\Admin\AppData\Roaming\LogSys O43 - CFD: 2015/07/02 14:46:18 - [] D -- C:\Users\Admin\AppData\Roaming\Macromedia O43 - CFD: 2015/05/18 17:25:11 - [] D -- C:\Users\Admin\AppData\Roaming\MAXON O43 - CFD: 2015/09/14 13:47:07 - [] SD -- C:\Users\Admin\AppData\Roaming\Microsoft O43 - CFD: 2015/05/27 12:45:49 - [] D -- C:\Users\Admin\AppData\Roaming\Mirillis O43 - CFD: 2015/07/30 15:01:56 - [] D -- C:\Users\Admin\AppData\Roaming\Mozilla O43 - CFD: 2015/08/08 15:14:36 - [] D -- C:\Users\Admin\AppData\Roaming\NVIDIA O43 - CFD: 2015/07/02 14:46:31 - [] D -- C:\Users\Admin\AppData\Roaming\OpenOffice O43 - CFD: 2015/04/24 18:26:15 - [] D -- C:\Users\Admin\AppData\Roaming\Opera Software O43 - CFD: 2015/06/07 03:17:58 - [] D -- C:\Users\Admin\AppData\Roaming\PDF Architect 3 O43 - CFD: 2015/07/02 15:13:19 - [] D -- C:\Users\Admin\AppData\Roaming\PhotoFiltre 7 O43 - CFD: 2015/07/02 15:13:19 - [] D -- C:\Users\Admin\AppData\Roaming\ProductData O43 - CFD: 2015/09/12 10:03:15 - [] D -- C:\Users\Admin\AppData\Roaming\Real O43 - CFD: 2015/07/02 15:13:19 - [] D -- C:\Users\Admin\AppData\Roaming\remembergps-05d07105e1f6e3ad4767820443bcb508 O43 - CFD: 2015/09/16 20:39:50 - [] D -- C:\Users\Admin\AppData\Roaming\Samsung O43 - CFD: 2015/07/11 14:52:37 - [] D -- C:\Users\Admin\AppData\Roaming\Skype O43 - CFD: 2015/06/08 13:25:37 - [] D -- C:\Users\Admin\AppData\Roaming\Soda PDF 7 O43 - CFD: 2015/04/26 21:55:28 - [] D -- C:\Users\Admin\AppData\Roaming\TechSmith O43 - CFD: 2015/06/23 16:07:00 - [] D -- C:\Users\Admin\AppData\Roaming\TuneUp Software O43 - CFD: 2015/09/26 11:21:20 - [] D -- C:\Users\Admin\AppData\Roaming\uTorrent O43 - CFD: 2015/05/02 21:00:13 - [] D -- C:\Users\Admin\AppData\Roaming\Verimatrix O43 - CFD: 2015/07/02 15:13:20 - [] D -- C:\Users\Admin\AppData\Roaming\Visan O43 - CFD: 2015/09/27 16:43:09 - [] D -- C:\Users\Admin\AppData\Roaming\vlc O43 - CFD: 2015/08/23 23:00:18 - [] D -- C:\Users\Admin\AppData\Roaming\WindSolutions O43 - CFD: 2015/04/22 21:38:26 - [] D -- C:\Users\Admin\AppData\Roaming\WinRAR O43 - CFD: 2015/07/12 15:10:47 - [] D -- C:\Users\Admin\AppData\Roaming\Wise Disk Cleaner O43 - CFD: 2015/08/01 11:49:33 - [] D -- C:\Users\Admin\AppData\Roaming\XnView O43 - CFD: 2015/09/27 21:05:29 - [] D -- C:\Users\Admin\AppData\Roaming\ZHP O43 - CFD: 2015/09/02 21:29:41 - [] D -- C:\Users\Admin\AppData\Local\Adobe O43 - CFD: 2015/08/23 23:07:30 - [] D -- C:\Users\Admin\AppData\Local\Apple O43 - CFD: 2015/06/05 15:37:07 - [] D -- C:\Users\Admin\AppData\Local\Apple Computer O43 - CFD: 2015/07/31 09:24:34 - [0] SHD -- C:\Users\Admin\AppData\Local\Application Data O43 - CFD: 2015/07/02 14:45:35 - [] D -- C:\Users\Admin\AppData\Local\Apps O43 - CFD: 2015/08/02 13:07:07 - [] D -- C:\Users\Admin\AppData\Local\CEF O43 - CFD: 2015/07/31 10:12:06 - [] D -- C:\Users\Admin\AppData\Local\Comms O43 - CFD: 2015/07/30 12:53:29 - [0] D -- C:\Users\Admin\AppData\Local\CrashDumps O43 - CFD: 2015/09/22 08:30:21 - [] D -- C:\Users\Admin\AppData\Local\Diagnostics O43 - CFD: 2015/09/20 12:39:08 - [] D -- C:\Users\Admin\AppData\Local\DigiDNA O43 - CFD: 2015/07/02 15:13:09 - [] D -- C:\Users\Admin\AppData\Local\Downloaded Installations O43 - CFD: 2015/07/30 12:36:26 - [] D -- C:\Users\Admin\AppData\Local\Dropbox O43 - CFD: 2015/07/12 15:12:57 - [0] SHD -- C:\Users\Admin\AppData\Local\EmieBrowserModeList O43 - CFD: 2015/07/12 15:12:57 - [0] SHD -- C:\Users\Admin\AppData\Local\EmieSiteList O43 - CFD: 2015/07/12 15:12:57 - [0] SHD -- C:\Users\Admin\AppData\Local\EmieUserList O43 - CFD: 2015/07/30 12:36:26 - [] D -- C:\Users\Admin\AppData\Local\Emjysoft O43 - CFD: 2015/08/27 00:23:53 - [] D -- C:\Users\Admin\AppData\Local\FastReport O43 - CFD: 2015/06/05 15:37:09 - [] D -- C:\Users\Admin\AppData\Local\g4dmusic-41a18e847ec04ade691e785a4ac76114 O43 - CFD: 2015/07/26 16:41:48 - [] D -- C:\Users\Admin\AppData\Local\Garmin O43 - CFD: 2015/07/26 16:41:34 - [] D -- C:\Users\Admin\AppData\Local\GARMIN_Corp O43 - CFD: 2015/07/02 14:45:37 - [] D -- C:\Users\Admin\AppData\Local\Garmin_Ltd._or_its_subsid O43 - CFD: 2015/09/16 19:44:42 - [] D -- C:\Users\Admin\AppData\Local\Google O43 - CFD: 2015/06/01 13:13:55 - [] D -- C:\Users\Admin\AppData\Local\GWX O43 - CFD: 2015/07/31 09:24:34 - [0] SHD -- C:\Users\Admin\AppData\Local\Historique O43 - CFD: 2015/06/05 15:37:09 - [] D -- C:\Users\Admin\AppData\Local\hot-934a23358cd02c387326ad9aeea14928 O43 - CFD: 2015/07/02 15:13:09 - [] D -- C:\Users\Admin\AppData\Local\HP O43 - CFD: 2015/06/05 15:37:09 - [] D -- C:\Users\Admin\AppData\Local\internetradio-08ac29b1795d0c93f780050049fbff0f O43 - CFD: 2015/05/02 09:56:32 - [] D -- C:\Users\Admin\AppData\Local\IsolatedStorage O43 - CFD: 2015/08/11 19:33:25 - [] D -- C:\Users\Admin\AppData\Local\iWesoft O43 - CFD: 2015/08/27 10:17:12 - [0] D -- C:\Users\Admin\AppData\Local\LG Electronics O43 - CFD: 2015/07/30 15:02:16 - [] D -- C:\Users\Admin\AppData\Local\Macromedia O43 - CFD: 2015/07/12 14:12:58 - [] D -- C:\Users\Admin\AppData\Local\MadAppLauncher O43 - CFD: 2015/09/03 07:21:07 - [] D -- C:\Users\Admin\AppData\Local\Microsoft O43 - CFD: 2015/07/02 15:13:09 - [] D -- C:\Users\Admin\AppData\Local\Microsoft Help O43 - CFD: 2015/07/31 10:11:36 - [] D -- C:\Users\Admin\AppData\Local\MicrosoftEdge O43 - CFD: 2015/08/06 11:59:38 - [] D -- C:\Users\Admin\AppData\Local\Mirillis O43 - CFD: 2015/08/14 12:56:06 - [] D -- C:\Users\Admin\AppData\Local\Movavi O43 - CFD: 2015/05/10 14:32:58 - [] D -- C:\Users\Admin\AppData\Local\Mozilla O43 - CFD: 2015/06/05 15:37:09 - [] D -- C:\Users\Admin\AppData\Local\music4deejays-thebestelectronicmusic-6e7e1b83487ce33773608859dd53769c O43 - CFD: 2015/07/31 12:26:29 - [0] D -- C:\Users\Admin\AppData\Local\NetworkTiles O43 - CFD: 2015/09/27 08:21:45 - [] D -- C:\Users\Admin\AppData\Local\Packages O43 - CFD: 2015/07/31 10:04:21 - [0] D -- C:\Users\Admin\AppData\Local\PeerDistRepub O43 - CFD: 2015/09/27 20:36:51 - [] D -- C:\Users\Admin\AppData\Local\PrivaZer O43 - CFD: 2015/07/30 13:13:46 - [] D -- C:\Users\Admin\AppData\Local\Programs O43 - CFD: 2015/07/31 09:54:47 - [] D -- C:\Users\Admin\AppData\Local\Publishers O43 - CFD: 2015/09/12 09:46:06 - [] D -- C:\Users\Admin\AppData\Local\Real O43 - CFD: 2015/07/12 17:55:19 - [] D -- C:\Users\Admin\AppData\Local\remembergps-05d07105e1f6e3ad4767820443bcb508 O43 - CFD: 2015/07/02 15:13:11 - [] D -- C:\Users\Admin\AppData\Local\Screencast-O-Matic-v2 O43 - CFD: 2015/06/05 15:37:09 - [] D -- C:\Users\Admin\AppData\Local\soundcloud-musicaudio-515e62acb4534adf9d67bd67c3aef5e8 O43 - CFD: 2015/08/03 06:36:13 - [] D -- C:\Users\Admin\AppData\Local\speech O43 - CFD: 2015/04/26 21:54:42 - [] D -- C:\Users\Admin\AppData\Local\TechSmith O43 - CFD: 2015/09/27 21:05:47 - [] D -- C:\Users\Admin\AppData\Local\Temp O43 - CFD: 2015/07/31 09:24:34 - [0] SHD -- C:\Users\Admin\AppData\Local\Temporary Internet Files O43 - CFD: 2015/07/31 09:53:05 - [] D -- C:\Users\Admin\AppData\Local\TileDataLayer O43 - CFD: 2015/05/25 15:04:43 - [] D -- C:\Users\Admin\AppData\Local\Tomahawk O43 - CFD: 2015/06/23 16:07:00 - [] D -- C:\Users\Admin\AppData\Local\TuneUp Software O43 - CFD: 2015/07/31 13:51:25 - [] D -- C:\Users\Admin\AppData\Local\VirtualStore O43 - CFD: 2015/07/12 14:12:58 - [] D -- C:\Users\Admin\AppData\Local\VPNium O43 - CFD: 2015/07/31 22:56:35 - [] D -- C:\Users\Admin\AppData\Local\Windows Live O43 - CFD: 2015/06/05 15:37:09 - [] D -- C:\Users\Admin\AppData\Local\worldradioplayer-fd896f08c7bb24f257aa9788f7c35028 O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 2015/09/09 07:21:11 - [] RD -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/08/29 05:19:05 - [] RD -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/09/12 09:15:55 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome O43 - CFD: 2015/09/12 08:09:32 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chromecast O43 - CFD: 2015/08/13 21:28:36 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dashlane O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/07/31 09:35:23 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PrivaZer O43 - CFD: 2015/09/11 16:33:42 - [0] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SoftwareNetz O43 - CFD: 2015/09/15 16:25:54 - [] RD -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 2015/07/10 13:04:45 - [] RSD -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell O43 - CFD: 2015/07/31 09:35:23 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ ShellIconOverlayIdentifiers (SIOI) (16) - 0s O106 - SIOI: DropboxExt1 Class [ DropboxExt1] - {FB314ED9-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.26.dll © O106 - SIOI: DropboxExt2 Class [ DropboxExt2] - {FB314EDA-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.26.dll © O106 - SIOI: DropboxExt5 Class [ DropboxExt3] - {FB314EDD-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.26.dll © O106 - SIOI: DropboxExt6 Class [ DropboxExt4] - {FB314EDE-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.26.dll © O106 - SIOI: DropboxExt3 Class [ DropboxExt5] - {FB314EDB-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.26.dll © O106 - SIOI: DropboxExt7 Class [ DropboxExt6] - {FB314EDF-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.26.dll © O106 - SIOI: DropboxExt4 Class [ DropboxExt7] - {FB314EDC-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.26.dll © O106 - SIOI: DropboxExt8 Class [ DropboxExt8] - {FB314EE0-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.26.dll © O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Admin\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\FileSyncShell.dll © O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Admin\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\FileSyncShell.dll © O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Admin\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\FileSyncShell.dll © O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Admin\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\FileSyncShell.dll © O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Admin\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\FileSyncShell.dll © O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL © O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL © O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL © ---\\ Enumération des clés StartupReg (10) - 1s O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe © O53 - SMSR:HKLM\...\startupreg\GarminExpressTrayApp [Key] . (.Garmin Ltd. or its subsidiaries - Garmin Express Tray.) -- C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe © O53 - SMSR:HKLM\...\startupreg\HP Software Update [Key] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe © O53 - SMSR:HKLM\...\startupreg\IMSS [Key] . (.Intel Corporation - PIcon startup utility.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe © O53 - SMSR:HKLM\...\startupreg\NUSB3MON [Key] . (.Renesas Electronics Corporation - USB 3.0 Monitor.) -- C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe © O53 - SMSR:HKLM\...\startupreg\nwiz [Key] . (...) -- C:\Program Files\NVIDIA Corporation\nView\nwiz.exe O53 - SMSR:HKLM\...\startupreg\QlbCtrl.exe [Key] . (.Hewlett-Packard Development Company, L.P. - Quick Launch Buttons.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe © O53 - SMSR:HKLM\...\startupreg\SynTPEnh [Key] . (.Synaptics Incorporated - .) -- C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.) © O53 - SMSR:HKLM\...\startupreg\SysTrayApp [Key] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe © O53 - SMSR:HKLM\...\startupreg\uTorrent [Key] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\Admin\AppData\Roaming\uTorrent\uTorrent.exe ---\\ Liste des pilotes du système (87) - 7s O58 - SDL:2015/07/10 13:57:18 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\3EA2760F.sys [136408] © O58 - SDL:2015/07/10 12:59:38 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107360] © O58 - SDL:2011/05/13 19:57:58 A . (.Hewlett-Packard Company - HP Accelerometer.) -- C:\WINDOWS\System32\drivers\Accelerometer.sys [43320] © O58 - SDL:2015/07/10 12:59:38 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135456] © O58 - SDL:2015/07/10 12:59:39 A . (.LSI Corp - SoftModem Device Driver.) -- C:\WINDOWS\System32\drivers\agrsm64.sys [1146880] © O58 - SDL:2015/07/10 12:59:38 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83296] © O58 - SDL:2015/07/10 12:59:38 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] © O58 - SDL:2015/07/10 12:59:38 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26976] © O58 - SDL:2012/03/15 07:02:46 A . (.Windows (R) Win 7 DDK provider - Intel® Centrino® Wireless Bluetooth® + High.) -- C:\WINDOWS\System32\drivers\AmpPal.sys [198144] © O58 - SDL:2015/07/10 12:59:38 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131936] © O58 - SDL:2013/10/28 18:02:16 A . (.Broadcom Corporation. - Broadcom Bluetooth Firmware Download Filter.) -- C:\WINDOWS\System32\drivers\bcbtums.sys [170712] © O58 - SDL:2015/07/10 12:59:38 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] © O58 - SDL:2013/10/28 18:02:18 A . (.Broadcom Corporation. - Broadcom Bluetooth USB AMP Filter for Windo.) -- C:\WINDOWS\System32\drivers\btwampfl.sys [166104] © O58 - SDL:2015/07/10 12:59:38 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] © O58 - SDL:2011/05/04 18:20:32 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\WINDOWS\System32\drivers\e1k62x64.sys [340656] © O58 - SDL:2014/12/15 00:59:40 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Backup Driver.) -- C:\WINDOWS\System32\drivers\eubakup.sys [60968] © O58 - SDL:2014/12/15 00:59:40 A . (...) -- C:\WINDOWS\System32\drivers\EUBKMON.sys [48168] O58 - SDL:2014/12/15 00:59:40 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Access Driver.) -- C:\WINDOWS\System32\drivers\eudskacs.sys [18472] © O58 - SDL:2014/12/15 00:59:40 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Backup Image Preview Driver.) -- C:\WINDOWS\System32\drivers\EuFdDisk.sys [192040] © O58 - SDL:2015/07/10 12:59:38 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3436896] © O58 - SDL:2015/07/11 15:24:58 A . (.Avast Software s.r.o. - avast! self protection module.) -- C:\WINDOWS\System32\drivers\gteazssm.sys [442264] © O58 - SDL:2015/09/07 17:27:41 A . (.Glarysoft Ltd - The driver for the Startup Manager tool.) -- C:\WINDOWS\System32\drivers\GUBootStartup.sys [20160] © O58 - SDL:2013/02/19 13:59:38 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECIx64.sys [57848] © O58 - SDL:2011/05/13 19:58:16 A . (.Hewlett-Packard Company - HP Disk Filter - SATA/RAID.) -- C:\WINDOWS\System32\drivers\hpdskflt.sys [30008] © O58 - SDL:2010/02/25 16:18:58 A . (.Hewlett-Packard Development Company, L.P. - HpqKbFiltr Keyboard Filter Driver.) -- C:\WINDOWS\System32\drivers\HpqKbFiltr.sys [18432] © O58 - SDL:2015/07/10 12:59:38 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] © O58 - SDL:2015/07/10 12:59:36 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] © O58 - SDL:2015/07/10 12:59:36 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [122608] © O58 - SDL:2014/04/24 19:34:12 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [633704] © O58 - SDL:2015/07/10 12:59:38 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673120] © O58 - SDL:2014/04/24 19:34:12 A . (.Intel Corporation - Intel Rapid Storage Technology Filter drive.) -- C:\WINDOWS\System32\drivers\iaStorF.sys [28008] © O58 - SDL:2015/07/10 12:59:38 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] © O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [424800] © O58 - SDL:2015/01/26 09:22:42 A . (.LG Electronics Inc. - LGE AndroidNet Driver.) -- C:\WINDOWS\System32\drivers\lgandnetdiag64.sys [30720] © O58 - SDL:2015/01/26 09:23:56 A . (.LG Electronics Inc. - LGE AndroidNet Driver.) -- C:\WINDOWS\System32\drivers\lgandnetmodem64.sys [37376] © O58 - SDL:2015/01/21 13:59:56 A . (.LG Electronics Inc. - LGE AndroidNet USB NDIS Miniport Driver.) -- C:\WINDOWS\System32\drivers\lgandnetndis64.sys [93696] © O58 - SDL:2015/07/10 12:59:38 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108896] © O58 - SDL:2015/07/10 12:59:38 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [104800] © O58 - SDL:2015/07/10 12:59:38 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [99168] © O58 - SDL:2015/07/10 12:59:38 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] © O58 - SDL:2015/06/18 08:41:40 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [25816] © O58 - SDL:2015/06/18 08:41:44 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [109272] © O58 - SDL:2015/09/23 18:14:54 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [113880] © O58 - SDL:2015/07/10 12:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59744] © O58 - SDL:2015/07/10 12:59:39 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] © O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [705376] © O58 - SDL:2015/07/10 12:59:39 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] © O58 - SDL:2015/06/18 08:42:02 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\WINDOWS\System32\drivers\mwac.sys [64216] © O58 - SDL:2014/05/22 19:05:06 A . (.NT Kernel Resources - NDISRD helper driver.) -- C:\WINDOWS\System32\drivers\ncdevice.sys [41248] © O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [76128] © O58 - SDL:2015/04/30 22:44:36 A . (.SoftEther VPN Project at University of Tsukuba, Japan - SoftEther VPN.) -- C:\WINDOWS\System32\drivers\Neo_0035.sys [28640] © O58 - SDL:2015/05/13 02:11:14 A . (.Windows (R) Win 7 DDK provider - NetFilter SDK WFP Driver (WPP).) -- C:\WINDOWS\System32\drivers\netfilter2.sys [49424] © O58 - SDL:2010/01/13 17:37:18 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\WINDOWS\System32\drivers\NETw5s64.sys [7675392] © O58 - SDL:2015/07/10 12:59:36 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\WINDOWS\System32\drivers\NETwew01.sys [3354384] © O58 - SDL:2010/10/18 03:21:32 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\WINDOWS\System32\drivers\NETwNs64.sys [8153088] © O58 - SDL:2012/06/03 09:33:44 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\WINDOWS\System32\drivers\Netwsw00.sys [11499008] © O58 - SDL:2012/08/27 17:39:16 A . (.Renesas Electronics Corporation - USB 3.0 Hub Driver.) -- C:\WINDOWS\System32\drivers\nusb3hub.sys [107912] © O58 - SDL:2012/08/27 17:39:20 A . (.Renesas Electronics Corporation - USB 3.0 Host Controller Driver.) -- C:\WINDOWS\System32\drivers\nusb3xhc.sys [226696] © O58 - SDL:2015/06/29 22:53:08 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\WINDOWS\System32\drivers\nvlddmkm.sys [12896400] © O58 - SDL:2015/07/10 12:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] © O58 - SDL:2015/07/10 12:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166240] © O58 - SDL:2015/07/10 12:59:39 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58208] © O58 - SDL:2015/07/10 12:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [58720] © O58 - SDL:2009/09/03 09:37:02 A . (.REDC - RICOH MMC Driver.) -- C:\WINDOWS\System32\drivers\rimmpx64.sys [67072] © O58 - SDL:2009/09/03 09:59:28 A . (.REDC - RICOH MS Driver.) -- C:\WINDOWS\System32\drivers\rimspx64.sys [54784] © O58 - SDL:2009/09/24 18:31:14 A . (.REDC - RICOH SD/MMC Driver.) -- C:\WINDOWS\System32\drivers\risdsn64.sys [76288] © O58 - SDL:2006/10/03 02:07:00 A . (.RICOH Company, Ltd. - PC-SC Driver for RICOH SmartCard Reader.) -- C:\WINDOWS\System32\drivers\rismcx64.sys [79488] O58 - SDL:2009/09/03 10:14:30 A . (.REDC - RICOH xD SM Driver.) -- C:\WINDOWS\System32\drivers\rixdpx64.sys [57856] © O58 - SDL:2015/04/30 22:46:07 A . (.SoftEther VPN Project at University of Tsukuba, Japan - SoftEther VPN.) -- C:\WINDOWS\System32\drivers\see.sys [38240] © O58 - SDL:2015/07/10 12:59:39 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] © O58 - SDL:2015/07/10 12:59:39 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] © O58 - SDL:2014/06/04 15:17:30 A . (.IObit - SmartDefrag Driver.) -- C:\WINDOWS\System32\drivers\SmartDefragDriver.sys [21184] © O58 - SDL:2015/09/13 18:17:16 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [108800] © O58 - SDL:2015/09/13 18:21:57 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [206080] © O58 - SDL:2015/07/10 12:59:39 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] © O58 - SDL:2010/03/17 05:48:42 A . (.IDT, Inc. - IDT PC Audio.) -- C:\WINDOWS\System32\drivers\stwrt64.sys [505856] © O58 - SDL:2015/07/27 09:00:09 A . (.Symantec Corporation - Symantec Event Library.) -- C:\WINDOWS\System32\drivers\SYMEVENT64x86.SYS [177752] © O58 - SDL:2010/06/04 03:18:56 A . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [1379376] © O58 - SDL:2013/08/22 14:40:24 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\WINDOWS\System32\drivers\tap0901.sys [40664] © O58 - SDL:2014/05/17 02:42:38 A . (.Anchorfree Inc. - Anchorfree HSS VPN Adapter.) -- C:\WINDOWS\System32\drivers\taphss6.sys [42184] © O58 - SDL:2015/05/13 02:11:06 A . (.Spotflux, Inc. - Spotflux Network Device Driver.) -- C:\WINDOWS\System32\drivers\tapSF0901.sys [39104] O58 - SDL:2015/07/10 13:44:36 A . (...) -- C:\WINDOWS\System32\drivers\TrueSight.sys [35064] O58 - SDL:2015/07/10 12:59:48 A . (...) -- C:\WINDOWS\System32\drivers\Udecx.sys [44032] O58 - SDL:2015/07/10 12:59:39 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166752] © O58 - SDL:2015/07/10 12:59:39 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] © O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [26976] © O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [59232] © ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (21) - 7s O61 - LFC: 2015/09/24 14:46:30 A . (..) -- C:\Users\Admin\Downloads\AirDroid_Desktop_Client_3.2.0.exe [13464668] O61 - LFC: 2015/09/20 12:40:44 A . (..) -- C:\Users\Admin\Downloads\npp.6.8.3.Installer.exe [5311104] O61 - LFC: 2015/09/26 18:39:43 A . (.ParetoLogic Inc..) -- C:\Users\Admin\Downloads\ParetoLogic PC Health Advisor_fr.exe [5817064] =>PUP.Optional.Paretologic O61 - LFC: 2015/09/25 17:50:53 A . (..) -- C:\Users\Admin\AppData\Local\Packages\Microsoft.WindowsMaps_8wekyb3d8bbwe\LocalState\speech_onecorereg.bin [8192] O61 - LFC: 2015/09/25 17:47:59 A . (..) -- C:\Users\Admin\AppData\Local\Packages\Microsoft.WindowsMaps_8wekyb3d8bbwe\AC\Temp\NVIDIA Corporation\NV_Cache\df50893318f441f59bc18f2a14741614_fce8394f8fd8a83d_788311b8ece1cc8c_0_0.bin [16384] O61 - LFC: 2015/09/25 17:49:47 A . (..) -- C:\Users\Admin\AppData\Local\Packages\Microsoft.WindowsMaps_8wekyb3d8bbwe\AC\Temp\NVIDIA Corporation\NV_Cache\df50893318f441f59bc18f2a14741614_fce8394f8fd8a83d_788311b8ece1cc8c_0_1.bin [1048576] O61 - LFC: 2015/09/25 17:47:59 A . (..) -- C:\Users\Admin\AppData\Local\Packages\Microsoft.WindowsMaps_8wekyb3d8bbwe\AC\Temp\NVIDIA Corporation\NV_Cache\df50893318f441f59bc18f2a14741614_fce8394f8fd8a83d_788311b8ece1cc8c_1_0.bin [16384] O61 - LFC: 2015/09/25 17:48:01 A . (..) -- C:\Users\Admin\AppData\Local\Packages\Microsoft.WindowsMaps_8wekyb3d8bbwe\AC\Temp\NVIDIA Corporation\NV_Cache\df50893318f441f59bc18f2a14741614_fce8394f8fd8a83d_788311b8ece1cc8c_2_0.bin [16384] O61 - LFC: 2015/09/22 07:18:48 A . (..) -- C:\Users\Admin\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\AC\Temp\NVIDIA Corporation\NV_Cache\df50893318f441f59bc18f2a14741614_fce8394f8fd8a83d_ed64683108eca8c3_2_0.bin [16384] O61 - LFC: 2015/09/21 15:14:21 A . (..) -- C:\Users\Admin\AppData\Local\Packages\microsoft.windows.authhost.a_8wekyb3d8bbwe\AC\Temp\NVIDIA Corporation\NV_Cache\df50893318f441f59bc18f2a14741614_fce8394f8fd8a83d_1e82cd119b4db01a_0_0.bin [16384] O61 - LFC: 2015/09/21 15:14:15 A . (..) -- C:\Users\Admin\AppData\Local\Packages\Microsoft.AccountsControl_cw5n1h2txyewy\AC\Temp\NVIDIA Corporation\NV_Cache\df50893318f441f59bc18f2a14741614_fce8394f8fd8a83d_335af23df8e654c6_0_0.bin [16384] O61 - LFC: 2015/09/24 11:09:17 A . (..) -- C:\Users\Admin\AppData\Local\Packages\FranceTlvisions.francetvpluzz_wsx75xccf3dk8\AC\Temp\NVIDIA Corporation\NV_Cache\df50893318f441f59bc18f2a14741614_fce8394f8fd8a83d_91f771da7adda6bf_0_0.bin [16384] O61 - LFC: 2015/09/25 16:04:26 A . (.Copyright © 2013.) -- C:\Users\Admin\AppData\Local\Packages\FranceTlvisions.francetvpluzz_wsx75xccf3dk8\AC\Microsoft\CLR_v4.0\NativeImages\Pluzz.ExternalHelper\7daa6253e42796819c63b5a976ace767\Pluzz.ExternalHelper.ni.dll [10752] O61 - LFC: 2015/09/25 16:04:27 A . (.Copyright © 2013.) -- C:\Users\Admin\AppData\Local\Packages\FranceTlvisions.francetvpluzz_wsx75xccf3dk8\AC\Microsoft\CLR_v4.0\NativeImages\Pluzz.eStat\1ee694b05bd8fc1866502c50039a08c4\Pluzz.eStat.ni.dll [14848] O61 - LFC: 2015/09/25 16:04:26 A . (.Copyright © 2012.) -- C:\Users\Admin\AppData\Local\Packages\FranceTlvisions.francetvpluzz_wsx75xccf3dk8\AC\Microsoft\CLR_v4.0\NativeImages\libestat\cb5b79438c65afb55ba427833198640f\libestat.ni.dll [127488] O61 - LFC: 2015/09/25 16:04:24 A . (.Copyright © 2014.) -- C:\Users\Admin\AppData\Local\Packages\FranceTlvisions.francetvpluzz_wsx75xccf3dk8\AC\Microsoft\CLR_v4.0\NativeImages\HlsBy3ivx.Hd7528219#\b971d4875c08a26f00e0a3c03f057109\HlsBy3ivx.HlsCaptions.ni.dll [98304] O61 - LFC: 2015/09/25 16:04:23 A . (..) -- C:\Users\Admin\AppData\Local\Packages\FranceTlvisions.francetvpluzz_wsx75xccf3dk8\AC\Microsoft\CLR_v4.0\NativeImages\HlsBy3ivx\dd532d00c024b6246d607a6b6e6be2c5\HlsBy3ivx.ni.dll [145920] O61 - LFC: 2015/09/21 16:01:17 A . (..) -- C:\Users\Admin\AppData\Local\Packages\ClevLab.InstantTV_qdcg6xvbhrn16\AC\Temp\NVIDIA Corporation\NV_Cache\b39888a466f51608d6b71d6f10a319dc_fce8394f8fd8a83d_32892fd99908e654_1_0.bin [16384] O61 - LFC: 2015/09/27 18:49:43 A . (..) -- C:\Users\Admin\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [674082] O61 - LFC: 2015/09/27 18:49:52 A . (..) -- C:\Users\Admin\AppData\Local\Google\Chrome\User Data\nacl_validation_cache.bin [1676] O61 - LFC: 2015/09/27 07:04:05 A . (..) -- C:\Users\Admin\AppData\Local\Adobe\Acrobat\DC\UserCache.bin [64393] ---\\ Associations Shell Spawning (11) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe © O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe © O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe © O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe © O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe © O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe © ---\\ Menu de démarrage Internet (12) - 1s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © ---\\ Recherche d'infection sur les navigateurs (2) - 12s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {181CB690-A474-48E9-977C-78F359082B17} - (Google) - http://www.google.com/ ---\\ Enumère les services démarrés par Svchost (42) - 0s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000] © O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000] © O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [283136] © O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1335296] © O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [954368] © O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [954880] © O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [31232] © O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [93696] © O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] © O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [106496] © O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [1008640] © O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [226304] © O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [133120] © O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [324608] © O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [371200] © O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [95744] © O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [2093056] © O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\WINDOWS\system32\dcpsvc.dll [196096] © O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [167424] © O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\WINDOWS\System32\NetSetupSvc.dll [187392] © O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [106496] © O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [679936] © O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [497152] © O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [72192] © O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [452608] © O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [311808] © O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [2235904] © O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [1168896] © O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [593920] © O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\system32\dmwappushsvc.dll [63488] © O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [1149440] © O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\system32\XboxNetApiSvc.dll [1019392] © O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\WINDOWS\system32\usocore.dll [343040] © O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\WINDOWS\System32\usermgr.dll [717312] © O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [27136] © O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [267776] © O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [918016] © O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\WINDOWS\system32\RDXService.dll [996352] © O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [359936] © O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [237568] © O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [58368] © O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [200192] © ---\\ Liste des exceptions du parefeu Windows (4) - 1s O87 - FAEL: "{1C2D26EE-F474-41F1-8128-2055042BDA86}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Admin\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{500D75DB-5B13-4FE0-9FA5-A3BB4C7A5357}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Admin\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{C168A5D0-CA29-4AB1-9A19-AAB3BC22CA66}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Bonjour\mDNSResponder.exe (.not file.) O87 - FAEL: "{50E70256-C81F-42AE-A786-73DFF31217EF}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Bonjour\mDNSResponder.exe (.not file.) ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (30) - 21s SR - Auto [2015/07/07 20:12:28] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe © SS - Demand [2015/09/21 23:01:35] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe © SR - Auto [2014/11/22 13:01:26] [ 911648] Advanced SystemCare Service 8 (AdvancedSystemCareService8) . (.IObit.) - C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCService.exe © SR - Auto [2009/03/03 03:42:58] [ 89600] Andrea ST Filters Service (AESTFilters) . (.Andrea Electronics Corporation.) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_b20011ea53a6b83e\AESTSr64.exe © SS - Demand [2012/03/15 08:09:20] [ 659976] Intel® Centrino® Wireless Bluetooth® + High Speed Service (AMPPALR3) . (.Intel Corporation.) - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe © SR - Auto [2015/05/29 18:51:26] [ 77128] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe © SR - Auto [2015/05/15 13:35:48] [ 660768] AdvancedSystemCareAntivirus (ASCAntivirusSrv) . (.IOBit.) - C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCAvSvc.exe © SS - Demand [2012/04/23 18:23:28] [ 135952] Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Sec (BTHSSecurityMgr) . (.Intel(R) Corporation.) - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe © SS - Demand [2010/02/25 16:21:32] [ 227896] Com4QLBEx (Com4QLBEx) . (.Hewlett-Packard Development Company, L.P..) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe © SS - Demand [2015/06/20 11:19:24] [ 134512] Service Mise à jour Dropbox (dbupdate) (dbupdate) . (.Dropbox, Inc..) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe © SS - Demand [2015/06/20 11:19:24] [ 134512] Service Mise à jour Dropbox (dbupdatem) (dbupdatem) . (.Dropbox, Inc..) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe © SS - Demand [2015/09/11 08:48:32] [ 762272] Garmin Device Interaction Service (Garmin Device Interaction Service) . (.Garmin Ltd. or its subsidiaries.) - C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe © SS - Auto [2015/07/27 16:36:57] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SS - Demand [2015/07/27 16:36:57] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SS - Demand [2015/02/13 13:08:44] [ 136120] Google Updater Service (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe © SS - Demand [2010/11/03 17:12:54] [ 92216] HP Quick Synchronization Service (HPDrvMntSvc.exe) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe © SS - Demand [2010/11/03 17:07:10] [ 769592] HP Software Framework Service (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe © SR - Auto [2011/05/13 19:58:10] [ 30520] @oem48.inf,%hpservice_desc%;HP Service (hpsrv) . (.Hewlett-Packard Company.) - C:\WINDOWS\system32\Hpservice.exe © SS - Demand [2015/03/28 12:58:42] [ 89840] HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe © SR - Auto [2015/08/18 16:56:02] [ 2909472] LiveUpdate (LiveUpdateSvc) . (.IObit.) - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe © SS - Demand [2012/10/25 14:32:24] [ 324992] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe © SS - Demand [2015/06/18 08:39:46] [ 1871160] (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe © SS - Demand [2015/06/18 08:39:50] [ 1133880] (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe © SS - Demand [2015/09/23 16:23:33] [ 147624] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe © SS - Auto [2015/03/07 08:12:11] [ 262928] Norton AntiVirus (NAV) . (.Symantec Corporation.) - C:\Program Files (x86)\Norton AntiVirus\Engine\21.7.0.11\nav.exe © SR - Auto [2015/06/29 22:42:26] [ 932040] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\WINDOWS\system32\nvvsvc.exe © SS - Demand [2010/03/17 05:48:42] [ 244736] Audio Service (STacSV) . (.IDT, Inc..) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_b20011ea53a6b83e\stacsv64.exe © SS - Demand [2012/10/25 14:32:26] [ 2497408] Intel(R) Management & Security Application User Notificatio (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe © SS - Demand [2013/09/12 05:28:00] [ 3221392] Validity VCS Fingerprint Service (vcsFPService) . (.Validity Sensors, Inc..) - C:\Windows\System32\vcsFPService.exe © ---\\ Recherche de clés de registre Tracing (2) - 1s HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\DriverWhiz_RASAPI32 =>PUP.Optional.DriverWhiz HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\DriverWhiz_RASMANCS =>PUP.Optional.DriverWhiz ---\\ Scan Additionnel (10) - 0s HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit HKCU\SOFTWARE\DriverWhiz =>PUP.Optional.DriverWhiz HKCU\SOFTWARE\eSupport.com =>PUP.Optional.eSupport C:\Program Files (x86)\Software =>PUP.Optional.Boxore C:\ProgramData\ProductData =>PUP.Optional.Generic C:\ProgramData\{ACBCD40A-42A8-4FF9-BD42-ABCD14998CBA} =>PUP.Optional.BundleInstaller C:\Users\Admin\AppData\Roaming\cacaoweb =>PUP.Optional.CacaoWeb C:\Users\Admin\Downloads\ParetoLogic PC Health Advisor_fr.exe =>PUP.Optional.Paretologic HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\DriverWhiz_RASAPI32 =>PUP.Optional.DriverWhiz HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\DriverWhiz_RASMANCS =>PUP.Optional.DriverWhiz ---\\ Récapitulatif des éléments trouvées sur votre station (8) - 0s http://www.nicolascoolman.fr/toolbar-conduit/ =>PUP.Optional.Conduit http://www.nicolascoolman.fr/blog =>PUP.Optional.DriverWhiz http://www.nicolascoolman.fr/blog =>PUP.Optional.eSupport http://www.nicolascoolman.fr/adware-boxore/ =>PUP.Optional.Boxore http://www.nicolascoolman.fr/blog =>PUP.Optional.Generic http://www.nicolascoolman.fr/blog =>PUP.Optional.BundleInstaller http://www.nicolascoolman.fr/pup-cacaoweb/ =>PUP.Optional.CacaoWeb http://www.nicolascoolman.fr/blog =>PUP.Optional.Paretologic ~ End of the scan, 35877 items in 114 seconds (1119)(0)()