~ ZHPDiag v2015.8.31.131 Par Nicolas Coolman (2015/08/31) ~ Démarré par Romuald (Administrator) (2015/09/01 17:32:59) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\Romuald\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Romuald\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ Démarrage du système: Normal (Normal boot) Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601) ---\\ Navigateurs Internet (2) - 0s GCIE: Google Chrome v44.0.2403.157 MSIE: Internet Explorer v11.0.9600.17959 ---\\ Informations sur les produits Windows (10) - 6s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows Operating System - Windows(R) 7, OEM_SLP channel System Locked Preinstallation (OEM_SLP) : OK Windows ID Activation : OK ~ Windows Partial Key : 9YQTR Windows License : OK ~ Windows Remaining Initializations Number : 3 Windows Automatic Updates : KO Windows Activation Technologies : OK ---\\ Logiciels de protection (2) - 3s Avast Free Antivirus v10.3.2225 Windows Defender W7 (Deactivate) ---\\ Logiciels d'optimisation (1) - 3s CCleaner v4.19 ---\\ Surveillance de Logiciels (2) - 4s Adobe Flash Player 17 NPAPI Adobe Acrobat Reader DC - Français ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 8365.228 MB (72% free) ~ System Restore: Activé (Enable) ~ System drive C: has 52 GB free of 152 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: ROMUALD-PC ~ User Name: Romuald ~ Logged in as Administrator ---\\ Enumération des unités disques (4) - 0s ~ Drive C: has 52 GB free of 152 GB (System) ~ Drive D: has 424 GB free of 435 GB ~ Drive G: has 304 GB free of 305 GB ~ Drive H: has 201 GB free of 305 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (23) - 2s [MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2871808] © [MD5.DD81D91FF3B0763C392422865C9AC12E] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [45568] © [MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [129024] © [MD5.C555B5C8142844DED9E3BD94E6313000] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [2427904] © [MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [455168] © [MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [232448] © [MD5.0D57D091E06BB1E58E72E5D08479FDDF] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] © [MD5.FA886682CFC5D36718D3E436AACF10B9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [497152] © [MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [24128] © [MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [92160] © [MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [147456] © [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [102400] © [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [122368] © [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [105472] © [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [116224] © [MD5.43E1F4B0EFDC244D2A83995CCD7846F7] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [159232] © [MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [261632] © [MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1684928] © [MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [97280] © [MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] © [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [93184] © [MD5.70988118145F5F10EF24720B97F35F65] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [119296] © [MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [295808] © ---\\ Processus lancés (60) - 9s [MD5.FB50E60564ED30DDC855F0CE435C8467] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 327.0.) -- C:\Windows\system32\nvvsvc.exe [920864] [PID.384] © [MD5.18E5C2F937F9DEB8C282DF66A3761925] - (.ASUS - ASLDR Service.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe [84536] [PID.1424] © [MD5.7910158929571214A959D5A6D16DD9C0] - (.ASUS - GFNEXSrv.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [96896] [PID.1496] © [MD5.4956380A54B1C9E6BFDF3D80DACB9698] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600] [PID.1520] © [MD5.F73AE30945F674DF57D2CBFD6397C85F] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1171744] [PID.1576] © [MD5.FB50E60564ED30DDC855F0CE435C8467] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 327.0.) -- C:\Windows\system32\nvvsvc.exe [920864] [PID.1584] © [MD5.E8494519BCB9E3B1B72E5604993A76E3] - (.Trend Micro Inc. - Trend Micro Anti-Malware Solution Platform.) -- C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe [267480] [PID.1944] [MD5.58BC9B644E6B252C8337AD501B04692A] - (.Trend Micro Inc. - Trend Micro Client Session Agent Monitor.) -- C:\Program Files\Trend Micro\UniClient\UiFrmwrk\uiWatchDog.exe [192520] [PID.2036] [MD5.3F5D34F630261BE31168D6EEC38C9B99] - (.Trend Micro Inc. - Trend Micro Anti-Malware Solution Platform.) -- C:\Program Files\Trend Micro\AMSP\coreFrameworkHost.exe [181960] [PID.888] [MD5.013697369EAFFA675D0671607F036020] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.2112] © [MD5.6EB87FDB59AABF6D19C927492DEA0D36] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128] [PID.2164] © [MD5.2BCD0E14D0BEC25DCBA676036B121EBC] - (.Trend Micro Inc. - Trend Micro Anti-Malware Solution Platform.) -- C:\Program Files\Trend Micro\AMSP\AMSP_LogServer.exe [1087360] [PID.2176] [MD5.63D320C8D120DD107ADEF332B2C2767B] - (...) -- C:\Program Files (x86)\3B786180-1441021464-81E0-3353-F46D04152926\knsu22B7.tmp [740352] [PID.2480] =>PUP.Optional.CrossRider [MD5.86032A47AD0105130FE7808C903E2086] - (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE [152640] [PID.2580] © [MD5.16964C25BFF56710BABBEBFDBA362B6C] - (.SafeNet, Inc. - .) -- C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe [374304] [PID.2840] [MD5.7190FB9C0D4BE26A0D353B49D016C1C9] - (.SafeNet, Inc - Sentinel Protection Server for SuperPro and.) -- C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe [1259040] [PID.2872] [MD5.2C0836EA58DB084E338503E555ABAEFF] - (.SafeNet, Inc. - Safenet Sentinel Security Runtime.) -- C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Security Runtime\sntlsrtsrvr.exe [292384] [PID.2952] [MD5.386EC4817E6078446D296001031935D7] - (.TODO: <公司名> - TODO: <文件说明>.) -- C:\Program Files (x86)\SFK\SSFK.exe [412160] [PID.3440] [MD5.6564E84B1522C12EA1C3A181ED03276F] - (.Intel(R) Corporation - Turbo Boost Monitor Service.) -- C:\Program Files\Intel\TurboBoost\TurboBoost.exe [134928] [PID.3592] © [MD5.0ADF410187B71C9B855721C8D59CEC7A] - (...) -- C:\ExpressGateUtil\VAWinService.exe [77312] [PID.3652] [MD5.2BACD71123F42CEA603F4E205E1AE337] - (.Microsoft Corp. - Microsoft® Windows Live ID Service.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2292096] [PID.3696] © [MD5.C8CC29B0210E3747FFD806B13B5A63C3] - (.Ratio Applications - TVTime Service.) -- C:\ProgramData\euloMYld\coHlUudQg.exe [2731488] [PID.3752] [MD5.2A46FFE841EC43001D5A293A54DB34DE] - (.Microsoft Corp. - Microsoft® Windows Live ID Service Monitor.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE [223104] [PID.3772] © [MD5.868E3486E7EC522330344152A5535783] - (.ASUS - SmartLogon Application.) -- C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe [305720] [PID.4896] © [MD5.3ACABCA6A8DB71B7F19C8A7523AE1846] - (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [691328] [PID.4904] © [MD5.5BB1F77C8AF725A15EC9366498D275BB] - (.ASUS - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [5732992] [PID.5016] © [MD5.D24F9F8183BE16F9D31E194928A3A3CE] - (.ASUS - Power4Gear Hybrid.) -- C:\Program Files\P4G\BatteryLife.exe [976512] [PID.5032] © [MD5.DE3B04D5AF8A1578F5430697546EB157] - (.ASUSTeK Computer Inc. - LiveUpdate.) -- C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [1545856] [PID.5040] © [MD5.CCC3FE1DDCCF99633539B3D7681EF7D7] - (.Avast Software - AvastVirtualBox Interface.) -- C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4047768] [PID.4360] © [MD5.53281BC7812F67534489FF4001A2887E] - (.ASUS - HControl.) -- C:\Program Files (x86)\ASUS\ATK Hotkey\HControl.exe [182912] [PID.4868] © [MD5.3375EFA8964C402A11A0593E7FB41269] - (...) -- C:\Program Files (x86)\SFK\SFKEX64.exe [122880] [PID.4820] [MD5.41A5048E49372F091B2AE5A5B705B72D] - (.ASUSTeK - ACEngSvr Module.) -- C:\Windows\SysWOW64\ACEngSvr.exe [183296] [PID.5628] © [MD5.149126216A694E6BA84E92ECA77AAE3B] - (.ASUS - ATKOSD.) -- C:\Program Files (x86)\ASUS\ATK Hotkey\ATKOSD.exe [2488888] [PID.5984] © [MD5.AA11E1368EEB237DD100BAC6AFFE1C57] - (.ASUS - KBFiltr.) -- C:\Program Files (x86)\ASUS\ATK Hotkey\KBFiltr.exe [113208] [PID.6108] © [MD5.4A7C441D99D86704D194E7678873B95D] - (.ASUS - WDC.) -- C:\Program Files (x86)\ASUS\ATK Hotkey\WDC.exe [174648] [PID.3100] © [MD5.7A9C3E43C1C5C32A5635C038BA897698] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11075176] [PID.6116] © [MD5.838258B7655F2309F7BE63F844AF51BB] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe [170256] [PID.6064] © [MD5.8292C93AA02A0451E243A3CF97878968] - (.syncables, LLC - Syncables.) -- C:\Program Files (x86)\syncables\syncables desktop\syncables.exe [370480] [PID.4828] [MD5.764BE29C9F78D949191C995B9BA4492A] - (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\System32\spool\drivers\x64\3\E_YATINOE.EXE [298560] [PID.6448] © [MD5.DEB55C327597E42FA14E41F5858F3263] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [6501656] [PID.4012] © [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.7116] © [MD5.484039B92DF4D87DADED4A8B0D4058B5] - (.Nosibay - Bubble Dock.) -- C:\Users\Romuald\AppData\Roaming\Nosibay\Bubble Dock\LBubble Dock.exe [666384] [PID.3124] =>PUP.Optional.BubbleDock [MD5.45D9E6C134735854866608931269B43E] - (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\syncables\syncables desktop\jre\bin\javaw.exe [145184] [PID.992] © [MD5.672E6216E5E140E0ACDCC568E7126812] - (.Ratio Applications - TVTime.) -- C:\ProgramData\euloMYld\dat\UkzwScAwkn.exe [48096] [PID.2312] [MD5.D87A04DD9C7C4D05031139BB0045EA93] - (.Nosibay - Selection Tools.) -- C:\Users\Romuald\AppData\Roaming\WTools\Selection Tools\Selection Tools.exe [1530640] [PID.2772] =>PUP.Optional.Nosibay [MD5.57B4D34232852BFE4453BE571DF90D21] - (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [103720] [PID.7444] © [MD5.E8D96F840994291789F0CDE6800AC1A4] - (.Apple Inc. - iPodService Module (64-bit).) -- C:\Program Files\iPod\bin\iPodService.exe [644880] [PID.7476] © [MD5.79A3B950988F8D2B81906D0C0473158B] - (.ASUS - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624] [PID.7496] © [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.7544] © [MD5.5AEBF6FA9805C9101220AA4FB4FA17E7] - (.ASUS - HControlUser.) -- C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe [105016] [PID.7568] © [MD5.37DEB76A2CF005841C4E45DE2B94D84F] - (.ASUS - AsScrPro.) -- C:\Windows\AsScrPro.exe [3058304] [PID.7576] © [MD5.672E6216E5E140E0ACDCC568E7126812] - (.Ratio Applications - TVTime.) -- C:\ProgramData\euloMYld\dat\UkzwScAwkn.exe [48096] [PID.7644] [MD5.F66203AF9C159E2CBD54DF981654F499] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [6111824] [PID.7736] © [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.7972] © [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.7984] © [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.8000] © [MD5.C15AF78C192CDFAEF65F731B1E27607C] - (.Nosibay - Bubble Dock.) -- C:\Users\Romuald\AppData\Roaming\Nosibay\Bubble Dock\Bubble Dock.exe [5122832] [PID.8140] =>PUP.Optional.BubbleDock [MD5.FE4DD1A2E417A772052A142AEAFE5EDD] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Romuald\AppData\Roaming\ZHP\ZHPDiag3.exe [1915392] [PID.2744] © [MD5.0803906D607A9B83184447B75B60ECC2] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [325656] [PID.1892] © [MD5.C63E582366EAD77978BFFD959A66DBB8] - (.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [1364256] [PID.1440] © ---\\ Google Chrome, Démarrage,Recherche,Extensions (8) - 0s G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] __MSG_name__ G2 - GCE: Preference [User Data\Default] [ckibcdccnfeookdmbahgiakhnjcddpki] __MSG_name__ G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (5) - 1s P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_188.dll © P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll © P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=10] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=4] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.0.4] - (.VideoLAN.) -- C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll © ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (14) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (5) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Object de navigateur (BHO) (5) - 0s O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll © O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll © O2 - BHO: Google Toolbar Helper [64Bits] - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll © O2 - BHO: SkypeIEPluginBHO [64Bits] - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll © O2 - BHO: Google Toolbar Notifier BHO [64Bits] - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg64.dll © ---\\ Applications lancées au démarrage du système (32) - 1s O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe © O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.) O4 - HKLM\..\Run: [IntelTBRunOnce] . (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe © O4 - HKLM\..\Run: [SynAsusAcpi] C:\Program Files (x86)\Synaptics\SynTP\SynAsusAcpi.exe (.not file.) O4 - HKLM\..\Run: [THXCfg64] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe © O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe © O4 - HKLM\..\Run: [3D BubbleSound] C:\Program Files\BubbleSound\3D BubbleSound.exe (.not file.) =>PUP.Optional.BubbleSound O4 - HKCU\..\Run: [Syncables] . (.syncables, LLC - Syncables.) -- C:\Program Files (x86)\syncables\syncables desktop\Syncables.exe O4 - HKCU\..\Run: [EPLTarget\P0000000000000001] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\System32\spool\drivers\x64\3\E_YATINOE.EXE © O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe © O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_2787E154FC87DF2D2329692B0A2DB1D0] . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O4 - HKCU\..\Run: [Bubble Dock] . (.Nosibay - Bubble Dock.) -- C:\Users\Romuald\AppData\Roaming\Nosibay\Bubble Dock\LBubble Dock.exe =>PUP.Optional.BubbleDock O4 - HKCU\..\Run: [WindApp] C:\Users\Romuald\AppData\Roaming\Store\WindApp\WindApp.exe (.not file.) =>PUP.Optional.Nosibay O4 - HKCU\..\Run: [Selection Tools] . (.Nosibay - Selection Tools.) -- C:\Users\Romuald\AppData\Roaming\WTools\Selection Tools\Selection Tools.exe =>PUP.Optional.Nosibay O4 - HKLM\..\Wow6432Node\Run: [UpdateLBPShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe © O4 - HKLM\..\Wow6432Node\Run: [CLMLServer] . (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe © O4 - HKLM\..\Wow6432Node\Run: [UpdateP2GoShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe © O4 - HKLM\..\Wow6432Node\Run: [ATKMEDIA] . (.ASUS - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe © O4 - HKLM\..\Wow6432Node\Run: [HControlUser] . (.ASUS - HControlUser.) -- C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe © O4 - HKLM\..\Wow6432Node\Run: [ASUS Screen Saver Protector] . (.ASUS - AsScrPro.) -- C:\Windows\AsScrPro.exe © O4 - HKLM\..\Wow6432Node\Run: [THX TruStudio NB Settings] . (.Creative Technology Ltd - THXAudioNB.) -- C:\Program Files (x86)\Creative\THX TruStudio\THXNBSet\THXAudNB.exe © O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe © O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe © O4 - HKUS\S-1-5-21-999163738-1072730487-3645335144-1001\..\Run: [Syncables] . (.syncables, LLC - Syncables.) -- C:\Program Files (x86)\syncables\syncables desktop\Syncables.exe O4 - HKUS\S-1-5-21-999163738-1072730487-3645335144-1001\..\Run: [EPLTarget\P0000000000000001] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\System32\spool\drivers\x64\3\E_YATINOE.EXE © O4 - HKUS\S-1-5-21-999163738-1072730487-3645335144-1001\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe © O4 - HKUS\S-1-5-21-999163738-1072730487-3645335144-1001\..\Run: [GoogleChromeAutoLaunch_2787E154FC87DF2D2329692B0A2DB1D0] . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O4 - HKUS\S-1-5-21-999163738-1072730487-3645335144-1001\..\Run: [Bubble Dock] . (.Nosibay - Bubble Dock.) -- C:\Users\Romuald\AppData\Roaming\Nosibay\Bubble Dock\LBubble Dock.exe =>PUP.Optional.BubbleDock O4 - HKUS\S-1-5-21-999163738-1072730487-3645335144-1001\..\Run: [WindApp] C:\Users\Romuald\AppData\Roaming\Store\WindApp\WindApp.exe (.not file.) =>PUP.Optional.Nosibay O4 - HKUS\S-1-5-21-999163738-1072730487-3645335144-1001\..\Run: [Selection Tools] . (.Nosibay - Selection Tools.) -- C:\Users\Romuald\AppData\Roaming\WTools\Selection Tools\Selection Tools.exe =>PUP.Optional.Nosibay ---\\ Winsock hijacker (Layered Service Provider) (10) - 0s O10 - WLSP:\Catalog_Entries\000000000001\Winsock LSP File . (...) -- C:\Windows\System32\Ooteeotoor.dll (Not File) =>Hijacker.Winsock O10 - WLSP:\Catalog_Entries\000000000002\Winsock LSP File . (...) -- C:\Windows\System32\Ooteeotoor.dll (Not File) =>Hijacker.Winsock O10 - WLSP:\Catalog_Entries\000000000003\Winsock LSP File . (...) -- C:\Windows\System32\Ooteeotoor.dll (Not File) =>Hijacker.Winsock O10 - WLSP:\Catalog_Entries\000000000004\Winsock LSP File . (...) -- C:\Windows\System32\Ooteeotoor.dll (Not File) =>Hijacker.Winsock O10 - WLSP:\Catalog_Entries\000000000016\Winsock LSP File . (...) -- C:\Windows\System32\Ooteeotoor.dll (Not File) =>Hijacker.Winsock O10 - WLSP:\Catalog_Entries64\000000000001\Winsock LSP File . (...) -- C:\Windows\system32\Ooteeotoor64.dll =>Hijacker.Winsock O10 - WLSP:\Catalog_Entries64\000000000002\Winsock LSP File . (...) -- C:\Windows\system32\Ooteeotoor64.dll =>Hijacker.Winsock O10 - WLSP:\Catalog_Entries64\000000000003\Winsock LSP File . (...) -- C:\Windows\system32\Ooteeotoor64.dll =>Hijacker.Winsock O10 - WLSP:\Catalog_Entries64\000000000004\Winsock LSP File . (...) -- C:\Windows\system32\Ooteeotoor64.dll =>Hijacker.Winsock O10 - WLSP:\Catalog_Entries64\000000000016\Winsock LSP File . (...) -- C:\Windows\system32\Ooteeotoor64.dll =>Hijacker.Winsock ---\\ Modification Domaine/Adresses DNS (9) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.1 89.2.0.2 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 172.20.10.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 62.201.129.201 62.201.129.202 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.1 89.2.0.2 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 172.20.10.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 62.201.129.201 62.201.129.202 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.1 89.2.0.2 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 172.20.10.1 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 62.201.129.201 62.201.129.202 ---\\ Protocole additionnel (21) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll © O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll © O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: skypec2c [64Bits] - {91774881-D725-4E58-B298-07617B9B86A8} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll © O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll © O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © ---\\ Liste des services NT non Microsoft et non désactivés (23) - 1s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe © O23 - Service: Trend Micro Solution Platform (Amsp) . (.Trend Micro Inc. - Trend Micro Anti-Malware Solution Platform.) - C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe © O23 - Service: ASLDR Service (ASLDRService) . (.ASUS - ASLDR Service.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe © O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS - GFNEXSrv.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe © O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe © O23 - Service: coHlUudQg (coHlUudQg) . (.Ratio Applications - TVTime Service.) - C:\ProgramData\euloMYld\coHlUudQg.exe O23 - Service: CoupoonService64 (CoupoonService64) . (...) - C:\Program Files (x86)\coupoon\iiwjljrnpc64.exe (.not file.) =>PUP.Optional.Multiplug O23 - Service: Discussion Group Replace (diluvude) . (...) - C:\Program Files (x86)\3B786180-1441021464-81E0-3353-F46D04152926\knsu22B7.tmp =>PUP.Optional.CrossRider O23 - Service: EPSON V3 Service4(06) (EPSON_PM_RPCV4_06) . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE © O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) . (.globalUpdate - globalUpdate Update.) - C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate O23 - Service: Google Update Service (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe © O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 327.0.) - C:\Windows\system32\nvvsvc.exe © O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe © O23 - Service: Sentinel Keys Server (SentinelKeysServer) . (.SafeNet, Inc. - .) - C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe O23 - Service: Sentinel Protection Server (SentinelProtectionServer) . (.SafeNet, Inc - Sentinel Protection Server for SuperPro and.) - C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe O23 - Service: Sentinel Security Runtime (SentinelSecurityRuntime) . (.SafeNet, Inc. - Safenet Sentinel Security Runtime.) - C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Security Runtime\sntlsrtsrvr.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe © O23 - Service: SSFK (SSFK) . (.TODO: <公司名> - TODO: <文件说明>.) - C:\Program Files (x86)\SFK\SSFK.exe =>PUP.Optional.MyWebSearch O23 - Service: Intel(R) Turbo Boost Technology Monitor (TurboBoost) . (.Intel(R) Corporation - Turbo Boost Monitor Service.) - C:\Program Files\Intel\TurboBoost\TurboBoost.exe © O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe © O23 - Service: VideAceWindowsService (VideAceWindowsService) . (...) - C:\ExpressGateUtil\VAWinService.exe ---\\ Logiciels installés (107) - 9s O42 - Logiciel: Windows Driver Package - Broadcom Bluetooth (07/29/2009 6.1.7100.0) - (.Broadcom.) [HKLM][64Bits] -- 2AA10AB519DC7432D599A0E860206A7DDCC27764 © O42 - Logiciel: Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) - (.Broadcom.) [HKLM][64Bits] -- 3BA80AB4C7E9F8497C115C844953A3D4BEB84D21 © O42 - Logiciel: Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405) - (.Broadcom.) [HKLM][64Bits] -- 6B6B5E96843E55CF5CF8C7E45FB457F1FE642FF1 © O42 - Logiciel: Windows Driver Package - Broadcom Bluetooth (01/19/2010 6.2.0.1417) - (.Broadcom.) [HKLM][64Bits] -- 7341A1B43E7FE58942EB1E820A17C18305DFBCE6 © O42 - Logiciel: Windows Driver Package - Broadcom (BTHUSB) Bluetooth (02/25/2010 6.2.0.941 - (.Broadcom.) [HKLM][64Bits] -- 85CE3A3657FAE5FD305B143E90E6FC89BA53001C © O42 - Logiciel: AutoCAD 2009 - Français - (.Autodesk.) [HKLM][64Bits] -- AutoCAD 2009 - Français © O42 - Logiciel: CAST Software PDF Printer - (...) [HKLM][64Bits] -- CAST Software PDF Printer O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner © O42 - Logiciel: DiskAid 6.6.2.0 - (.DigiDNA.) [HKLM][64Bits] -- DiskAid_is1 © O42 - Logiciel: EPSON XP-620 Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- EPSON XP-620 Series © O42 - Logiciel: NVIDIA Display Control Panel - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIA Display Control Panel © O42 - Logiciel: NVIDIA Drivers - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIA Drivers © O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey © O42 - Logiciel: PDFCreator - (.pdfforge.) [HKLM][64Bits] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D} © O42 - Logiciel: Intel(R) Turbo Boost Technology Monitor - (.Intel.) [HKLM][64Bits] -- {39F4C6F9-618A-4E5B-8FB2-6BD661174E32} © O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {5D61F006-168C-4B8B-B7FD-F113C10AE0E4} © O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} © O42 - Logiciel: Fresco Logic USB3.0 Host Controller - (.Fresco Logic Inc..) [HKLM][64Bits] -- {7247731F-3721-4258-BC51-F27C41EC21EA} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} © O42 - Logiciel: ASUS Power4Gear Hybrid - (.ASUS.) [HKLM][64Bits] -- {9B6239BF-4E85-4590-8D72-51E30DB1A9AA} © O42 - Logiciel: WIDCOMM Bluetooth Software - (.Broadcom Corporation.) [HKLM][64Bits] -- {9E9D49A4-1DF4-4138-B7DB-5D87A893088E} © O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {B255D495-4734-4E9B-B4F5-96702FD4A7B9} © O42 - Logiciel: NVIDIA Pilote graphique 327.02 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver © O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {BFEAB774-C7DC-4032-B05A-DA5F7CB7B365} © O42 - Logiciel: 7-Zip 9.20 - (...) [HKLM][64Bits] -- 7-Zip O42 - Logiciel: Adobe Acrobat 8.1.3 Professional - (.Adobe Systems.) [HKLM][64Bits] -- Adobe Acrobat 8 Professional - English, Français, Deutsch © O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX © O42 - Logiciel: Adobe Flash Player 17 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI © O42 - Logiciel: AsusVibe2.0 - (.ASUSTEK.) [HKLM][64Bits] -- Asus Vibe2.0 © O42 - Logiciel: Asus_G73_Screensaver - (.ASUS.) [HKLM][64Bits] -- Asus_G73_Screensaver © O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM][64Bits] -- avast © O42 - Logiciel: GMA2 - HELP EN LIGNE - (...) [HKLM][64Bits] -- GMA2 - HELP EN LIGNE O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome © O42 - Logiciel: grandMA - WYSIWYG Protocol Driver - (...) [HKLM][64Bits] -- grandMA - WYSIWYG Protocol O42 - Logiciel: grandMA2 onPC 3.0.0.5 - (...) [HKLM][64Bits] -- grandMA2 onPC 3.0.0.5 O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658} © O42 - Logiciel: ExpressGate Cloud - (.Asus.) [HKLM][64Bits] -- InstallShield_{499DED08-6FA8-4749-8E94-8526CC9D1CA8} © O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243} © O42 - Logiciel: MA 3D v3.0.0.5 v3.0.0.5 - (.MA Lighting Technologies.) [HKLM][64Bits] -- MA3D_V3.0.0 O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIAStereo © O42 - Logiciel: PENSE BETE GMA2 - (...) [HKLM][64Bits] -- PENSE BETE GMA2 O42 - Logiciel: StickMAker - (.MA Lighting Technologies.) [HKLM][64Bits] -- StickMAker O42 - Logiciel: ZHPFix 2015 - (.Nicolas Coolman.) [HKLM][64Bits] -- ZHPFix_is1 © O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {0481A2EA-DA1D-4D10-A7C3-F8237948F6B5} © O42 - Logiciel: ASUS Splendid Video Enhancement Technology - (.ASUS.) [HKLM][64Bits] -- {0969AF05-4FF6-4C00-9406-43599238DE0D} © O42 - Logiciel: HP USB Disk Storage Format Tool - (...) [HKLM][64Bits] -- {0E0DF90C-D0BA-4C89-9262-AD78D1A3DE51} O42 - Logiciel: OpenOffice 4.1.1 - (.Apache Software Foundation.) [HKLM][64Bits] -- {121727D5-FDF3-4723-BA57-EB383440ED72} © O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {18455581-E099-4BA8-BC6B-F34B2F06600C} © O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E} © O42 - Logiciel: ASUS LifeFrame3 - (.ASUS.) [HKLM][64Bits] -- {1DBD1F12-ED93-49C0-A7CC-56CBDE488158} © O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} © O42 - Logiciel: Wireless Console 3 - (.ASUS.) [HKLM][64Bits] -- {20FDF948-C8ED-4543-A539-F7F4AEF5AFA2} © O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} © O42 - Logiciel: Skype™ 7.5 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} © O42 - Logiciel: syncables desktop SE - (.syncables.) [HKLM][64Bits] -- {341697D8-9923-445E-B42A-529E5A99CB7A} © O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2721691) - (.Microsoft Corporation.) [HKLM][64Bits] -- {355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36} © O42 - Logiciel: Complemento Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {3A09ED0F-8DDF-47BB-B53D-841AB9D1D3A7} © O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658} © O42 - Logiciel: ExpressGate Cloud - (.Asus.) [HKLM][64Bits] -- {499DED08-6FA8-4749-8E94-8526CC9D1CA8} © O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {50816F92-1652-4A7C-B9BC-48F682742C4B} © O42 - Logiciel: Google Earth Plug-in - (.Google.) [HKLM][64Bits] -- {57BB4801-61C8-4E74-9672-2160728A461E} © O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} © O42 - Logiciel: Realtek USB 2.0 Reader Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {62BBB2F0-E220-4821-A564-730807D2C34D} © O42 - Logiciel: ASUS SmartLogon - (.ASUS.) [HKLM][64Bits] -- {64452561-169F-4A36-A2FF-B5E118EC65F5} © O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} © O42 - Logiciel: Windows Media Player Firefox Plugin - (.Microsoft Corp.) [HKLM][64Bits] -- {69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4} © O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701} © O42 - Logiciel: Complément Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {6E5324C1-84FC-4F76-9A3A-C65E07F80EE6} © O42 - Logiciel: ATK Hotkey - (.ASUS.) [HKLM][64Bits] -- {7C05592D-424B-46CB-B505-E0013E8E75C9} © O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {7FE25256-B7C1-480D-B736-10A67A833AEA} © O42 - Logiciel: QuickTime 7 - (.Apple Inc..) [HKLM][64Bits] -- {80CEEB1E-0A6C-45B9-A312-37A1D25FDEBC} © O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {8142D25E-028A-4563-86ED-5755783C8029} © O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {817750FA-EC6A-485D-9901-0683AE6FFDF1} © O42 - Logiciel: MSXML 4.0 SP3 Parser (KB973685) - (.Microsoft Corporation.) [HKLM][64Bits] -- {859DFA95-E4A6-48CD-B88E-A3E483E89B44} © O42 - Logiciel: Realtek Ethernet Controller Driver For Windows 7 - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} © O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E} © O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} © O42 - Logiciel: WinFlash - (.ASUS.) [HKLM][64Bits] -- {8F21291E-0444-4B1D-B9F9-4370A73E346D} © O42 - Logiciel: WYSIWYG - (.CAST Group of Companies, Inc..) [HKLM][64Bits] -- {8F72EB7B-D049-4A67-BADB-9D612F759DBB} O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {939C80FA-96C9-44A6-B318-8E7D8BD8481B} © O42 - Logiciel: Visionneuse Microsoft PowerPoint - (.Microsoft Corporation.) [HKLM][64Bits] -- {95140000-00AF-040C-0000-0000000FF1CE} © O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {96403552-88D1-429F-9C92-388B814B885E} © O42 - Logiciel: globalupdate Helper - (.globalupdate Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.Optional.GlobalUpdate O42 - Logiciel: מסייע Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {AB5977C5-11AE-4003-BA7D-261C48F2BC35} © O42 - Logiciel: ATK Package - (.ASUS.) [HKLM][64Bits] -- {AB5C933E-5C7D-4D30-B314-9C83A49B94BE} © O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824147215} © O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} © O42 - Logiciel: DirectX 9 Runtime - (.Sonic Solutions.) [HKLM][64Bits] -- {AF9E97C1-7431-426D-A8D5-ABE40995C0B1} © O42 - Logiciel: THX TruStudio - (.Creative Technology Limited.) [HKLM][64Bits] -- {B11AB9C8-18A6-41DC-98B4-4988CC030136} © O42 - Logiciel: Roxio CinePlayer - (.Roxio.) [HKLM][64Bits] -- {C03F3D5B-0D83-4F81-A324-32F4E7F1BF6A} © O42 - Logiciel: Gaming Mouse - (.ASUS.) [HKLM][64Bits] -- {C52DE33F-117A-4EC8-8A32-084E828D7B1E} © O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} © O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {C6579A65-9CAE-4B31-8B6B-3306E0630A66} © O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {C7DAD22D-29D4-438F-B986-03B9ED582EA4} © O42 - Logiciel: Messenger 分享元件 - (.Microsoft Corporation.) [HKLM][64Bits] -- {CF088261-BC81-4FB9-9BA0-7B5B9602D01A} © O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} © O42 - Logiciel: ASUS AI Recovery - (.ASUS.) [HKLM][64Bits] -- {D39F0676-163E-4595-A917-E28F99BBD4D2} © O42 - Logiciel: Sentinel Protection Installer 7.6.5 - (.SafeNet, Inc..) [HKLM][64Bits] -- {DE09967A-E9E2-4562-A58D-989CA70FA65E} O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} © O42 - Logiciel: Roxio Activation Module - (.Roxio.) [HKLM][64Bits] -- {EC877639-07AB-495C-BFD1-D63AF9140810} © O42 - Logiciel: ASUS Virtual Camera - (.ASUS.) [HKLM][64Bits] -- {EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1} © O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} © O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM][64Bits] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421} © O42 - Logiciel: ASUS Live Update - (.ASUS.) [HKLM][64Bits] -- {FA540E67-095C-4A1B-97BA-4D547DEC9AF4} © O42 - Logiciel: Bubble Dock - (.Nosibay.) [HKCU][64Bits] -- Bubble Dock =>PUP.Optional.BubbleDock O42 - Logiciel: Selection Tools - (.WTools.) [HKCU][64Bits] -- Selection Tools =>PUP.Optional.Nosibay O42 - Logiciel: WindApp - (.Store.) [HKCU][64Bits] -- WindApp =>PUP.Optional.Nosibay ---\\ HKCU & HKLM Software Keys (115) - 9s HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AdwCleaner HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc. HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\ArenaHD =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\AsLdr HKLM\SOFTWARE\Wow6432Node\ASUS HKLM\SOFTWARE\Wow6432Node\AVAST Software HKLM\SOFTWARE\Wow6432Node\CAST Lighting Limited HKLM\SOFTWARE\Wow6432Node\coupoon =>PUP.Optional.Multiplug HKLM\SOFTWARE\Wow6432Node\Creative Labs HKLM\SOFTWARE\Wow6432Node\Creative Tech HKLM\SOFTWARE\Wow6432Node\Crossbrowse =>PUP.Optional.CrossBrowse HKLM\SOFTWARE\Wow6432Node\CyberLink HKLM\SOFTWARE\Wow6432Node\EPSON HKLM\SOFTWARE\Wow6432Node\Flying Pig Systems HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\GPL Ghostscript HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard Company HKLM\SOFTWARE\Wow6432Node\HighDefAction =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\InstallShield HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\Lavasoft HKLM\SOFTWARE\Wow6432Node\Licenses HKLM\SOFTWARE\Wow6432Node\MA Lighting Technologies HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Macrovision HKLM\SOFTWARE\Wow6432Node\MAXSOFT-OCRON HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\mystartsearchSoftware =>PUP.Optional.StartSearch HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation HKLM\SOFTWARE\Wow6432Node\Oberon Media HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\OpenAL HKLM\SOFTWARE\Wow6432Node\OpenOffice HKLM\SOFTWARE\Wow6432Node\PDF Architect 2 HKLM\SOFTWARE\Wow6432Node\PhraseProfessor_1.10.0.21 =>PUP.Optional.Generic HKLM\SOFTWARE\Wow6432Node\Rainbow Technologies HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Roxio HKLM\SOFTWARE\Wow6432Node\Safenet Sentinel HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\syncables HKLM\SOFTWARE\Wow6432Node\Tutorials =>PUP.Optional.AgenceExclusive HKLM\SOFTWARE\Wow6432Node\VideACE HKLM\SOFTWARE\Wow6432Node\WdsManPro =>PUP.Optional.WdsManPro HKLM\SOFTWARE\Wow6432Node\WordSurfer_1.10.0.19 =>PUP.Optional.WordSurfer HKLM\SOFTWARE\Wow6432Node\YorkNewCin =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AnyProtect =>PUP.Optional.AnyProtect HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider HKCU\SOFTWARE\ASUS HKCU\SOFTWARE\ATK0100 HKCU\SOFTWARE\AVAST Software HKCU\SOFTWARE\CAST Lighting Limited HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\Creative Tech HKCU\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\DailyPcClean =>PUP.Optional.DailyPCClean HKCU\SOFTWARE\DigiDNA HKCU\SOFTWARE\EldoS HKCU\SOFTWARE\EPSON HKCU\SOFTWARE\f3oh5XBYuBDw HKCU\SOFTWARE\FLEXnet HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\Google HKCU\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\InstallShield HKCU\SOFTWARE\Intel HKCU\SOFTWARE\Local AppWizard-Generated Applications HKCU\SOFTWARE\LogiShrd HKCU\SOFTWARE\MA Lighting Technologies HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Macrovision HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MyBrowser 1.0.2V01.09-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\Nosibay =>PUP.Optional.SPointer HKCU\SOFTWARE\NVIDIA Corporation HKCU\SOFTWARE\Oberon HKCU\SOFTWARE\Oberon Media HKCU\SOFTWARE\OpenOffice HKCU\SOFTWARE\PDF Architect 3 HKCU\SOFTWARE\PDFCreator.net HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\Right Hemisphere HKCU\SOFTWARE\Skype HKCU\SOFTWARE\Software HKCU\SOFTWARE\Sonic HKCU\SOFTWARE\Store =>PUP.Optional.Generic HKCU\SOFTWARE\Synaptics HKCU\SOFTWARE\syncables HKCU\SOFTWARE\TeleCharger HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Widcomm HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\WTools HKCU\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\Zeon HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider ---\\ Contenu des dossiers Programmes (249) - 14s O43 - CFD: 2015/09/01 16:59:44 - [] D -- C:\Program Files (x86)\3B786180-1441021464-81E0-3353-F46D04152926 =>PUP.Optional.CrossRider O43 - CFD: 2015/09/01 17:04:14 - [] D -- C:\Program Files (x86)\7-Zip O43 - CFD: 2015/06/10 17:34:07 - [] D -- C:\Program Files (x86)\Adobe O43 - CFD: 2011/06/11 11:55:50 - [] D -- C:\Program Files (x86)\Apple Software Update O43 - CFD: 2015/06/10 14:21:01 - [] D -- C:\Program Files (x86)\ASUS O43 - CFD: 2011/10/12 14:23:25 - [] D -- C:\Program Files (x86)\Bonjour O43 - CFD: 2014/05/06 11:38:24 - [] D -- C:\Program Files (x86)\CAST Software O43 - CFD: 2012/04/30 17:53:10 - [] D -- C:\Program Files (x86)\Chamsys Ltd O43 - CFD: 2015/09/01 11:16:14 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 2011/03/30 04:00:55 - [] D -- C:\Program Files (x86)\Creative O43 - CFD: 2011/03/30 03:14:15 - [] D -- C:\Program Files (x86)\CyberLink O43 - CFD: 2014/04/22 19:01:05 - [] D -- C:\Program Files (x86)\DigiDNA O43 - CFD: 2011/11/22 12:08:25 - [] D -- C:\Program Files (x86)\Gaming Mouse O43 - CFD: 2015/09/01 15:52:39 - [] D -- C:\Program Files (x86)\globalUpdate =>PUP.Optional.GlobalUpdate O43 - CFD: 2015/04/09 18:29:41 - [] D -- C:\Program Files (x86)\GMA2 - HELP EN LIGNE O43 - CFD: 2013/03/27 20:30:12 - [] D -- C:\Program Files (x86)\Google O43 - CFD: 2014/05/06 11:38:27 - [] D -- C:\Program Files (x86)\GPLGS O43 - CFD: 2014/07/29 13:33:09 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 2011/03/30 03:46:10 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 2015/08/13 03:30:39 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 2015/08/26 14:26:58 - [] D -- C:\Program Files (x86)\iTunes O43 - CFD: 2014/06/10 14:59:40 - [] D -- C:\Program Files (x86)\MA Lighting Technologies O43 - CFD: 2011/07/18 22:55:56 - [0] D -- C:\Program Files (x86)\Microsoft O43 - CFD: 2015/05/13 08:18:42 - [] D -- C:\Program Files (x86)\Microsoft Application Virtualization Client O43 - CFD: 2011/07/08 22:24:41 - [] D -- C:\Program Files (x86)\Microsoft Office O43 - CFD: 2015/08/13 03:33:01 - [] D -- C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 2011/03/30 03:22:51 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 2011/06/11 12:41:09 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 2011/07/08 22:24:29 - [] D -- C:\Program Files (x86)\MSECache O43 - CFD: 2011/03/30 03:29:59 - [] D -- C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 2014/01/08 14:43:37 - [] D -- C:\Program Files (x86)\NVIDIA Corporation O43 - CFD: 2011/06/19 17:28:03 - [] D -- C:\Program Files (x86)\OFFICE One v7 O43 - CFD: 2015/03/05 18:38:43 - [] D -- C:\Program Files (x86)\OpenOffice 4 O43 - CFD: 2013/10/08 15:44:23 - [] D -- C:\Program Files (x86)\OpenOffice.org 3 O43 - CFD: 2015/07/19 18:00:18 - [] D -- C:\Program Files (x86)\PENSE BETE GMA2 O43 - CFD: 2014/10/06 11:37:09 - [] D -- C:\Program Files (x86)\PLAN DE FEUX 2014 O43 - CFD: 2015/09/01 14:46:10 - [0] D -- C:\Program Files (x86)\predm =>PUP.Optional.Downware O43 - CFD: 2015/08/26 14:29:49 - [] D -- C:\Program Files (x86)\QuickTime O43 - CFD: 2011/03/30 03:54:55 - [] D -- C:\Program Files (x86)\Realtek O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 2011/03/30 04:03:34 - [] D -- C:\Program Files (x86)\Roxio O43 - CFD: 2014/05/06 11:37:53 - [] D -- C:\Program Files (x86)\SafeNet Sentinel O43 - CFD: 2015/09/01 17:30:31 - [] D -- C:\Program Files (x86)\SFK =>PUP.Optional.MyWebSearch O43 - CFD: 2015/06/10 18:33:13 - [] RD -- C:\Program Files (x86)\Skype O43 - CFD: 2014/07/29 13:32:35 - [0] D -- C:\Program Files (x86)\Sony Ericsson O43 - CFD: 2015/06/10 12:47:40 - [] D -- C:\Program Files (x86)\SpeedFan O43 - CFD: 2011/03/30 03:26:59 - [] D -- C:\Program Files (x86)\syncables O43 - CFD: 2013/12/12 18:36:44 - [0] HD -- C:\Program Files (x86)\Temp O43 - CFD: 2009/07/14 06:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information O43 - CFD: 2015/06/10 12:55:02 - [0] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 2014/10/06 11:38:14 - [] D -- C:\Program Files (x86)\Wholehog2 Library Generator O43 - CFD: 2013/07/19 22:41:37 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 2012/04/14 12:15:49 - [] D -- C:\Program Files (x86)\Windows Live O43 - CFD: 2011/06/13 11:36:09 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 2015/06/10 13:11:16 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 2011/06/13 11:36:09 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 2011/06/13 11:36:09 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 2011/06/13 11:36:09 - [] D -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 2014/09/04 12:17:44 - [] D -- C:\Program Files (x86)\WYSIWYG Drivers O43 - CFD: 2015/09/01 11:51:51 - [] D -- C:\Program Files (x86)\ZHPFix O43 - CFD: 2013/02/07 18:24:05 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip O43 - CFD: 2014/07/08 00:02:37 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2009/07/14 06:57:13 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/02/01 02:37:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS O43 - CFD: 2015/06/22 11:39:06 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS Utility O43 - CFD: 2011/07/07 16:14:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk O43 - CFD: 2014/05/06 11:38:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CAST Software O43 - CFD: 2014/10/27 13:25:08 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 2011/03/30 04:00:52 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative O43 - CFD: 2014/04/22 19:01:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DiskAid O43 - CFD: 2014/01/08 14:53:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Genius O43 - CFD: 2009/07/29 07:08:01 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2011/11/22 12:08:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gaming Mouse O43 - CFD: 2015/04/09 18:28:30 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GMA2 - HELP EN LIGNE O43 - CFD: 2015/09/01 17:02:25 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2012/06/07 17:52:05 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hewlett-Packard Company O43 - CFD: 2014/01/29 17:43:12 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud O43 - CFD: 2011/03/30 03:46:10 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel O43 - CFD: 2015/08/26 14:27:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes O43 - CFD: 2015/06/10 12:47:59 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MA Lighting O43 - CFD: 2009/07/14 06:57:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2011/07/25 12:02:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (Français) O43 - CFD: 2015/08/13 03:13:48 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 2015/03/05 18:38:43 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.1 O43 - CFD: 2015/06/23 21:42:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator O43 - CFD: 2013/07/30 09:26:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PENSE BETE GMA2 O43 - CFD: 2015/08/26 14:29:36 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime O43 - CFD: 2015/04/16 06:07:37 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 2014/03/20 19:56:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpeedFan O43 - CFD: 2015/06/10 16:54:36 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2011/03/30 03:27:01 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\syncables O43 - CFD: 2009/07/14 09:44:38 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2012/03/06 18:20:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wholehog2 Library Generator O43 - CFD: 2012/04/14 12:19:18 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live O43 - CFD: 2015/09/01 11:51:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP O43 - CFD: 2011/06/11 12:06:59 - [] HD -- C:\ProgramData\.Syncables O43 - CFD: 2011/06/11 12:07:11 - [] HD -- C:\ProgramData\.syncID O43 - CFD: 2011/06/25 16:41:56 - [] D -- C:\ProgramData\2DBoy O43 - CFD: 2014/10/22 15:21:55 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 O43 - CFD: 2015/09/01 15:31:43 - [] D -- C:\ProgramData\abc =>PUP.Optional.BundleInstaller O43 - CFD: 2014/11/01 10:17:14 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2014/01/29 17:40:38 - [] D -- C:\ProgramData\Apple O43 - CFD: 2011/06/11 11:56:55 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2015/02/01 02:38:23 - [] D -- C:\ProgramData\ASUS O43 - CFD: 2011/07/17 15:32:51 - [] D -- C:\ProgramData\Autodesk O43 - CFD: 2013/12/03 19:03:07 - [] D -- C:\ProgramData\AVAST Software O43 - CFD: 2014/05/06 11:31:25 - [] D -- C:\ProgramData\CAST Software O43 - CFD: 2011/06/16 01:16:54 - [] D -- C:\ProgramData\Creative O43 - CFD: 2011/06/16 01:16:56 - [] D -- C:\ProgramData\Creative Labs O43 - CFD: 2011/06/25 01:54:10 - [] D -- C:\ProgramData\CyberLink O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2011/03/30 03:14:52 - [] D -- C:\ProgramData\Downloaded Installations O43 - CFD: 2015/07/02 19:48:19 - [] D -- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 O43 - CFD: 2015/07/07 15:53:39 - [] D -- C:\ProgramData\EPSON O43 - CFD: 2015/08/31 14:03:40 - [] D -- C:\ProgramData\euloMYld O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 2014/08/04 20:19:28 - [] D -- C:\ProgramData\FLEXnet O43 - CFD: 2011/03/30 03:15:17 - [] D -- C:\ProgramData\Google O43 - CFD: 2015/08/31 13:49:06 - [] D -- C:\ProgramData\Lavasoft O43 - CFD: 2015/09/01 14:42:53 - [] D -- C:\ProgramData\lWdsManProl =>PUP.Optional.WdsManPro O43 - CFD: 2014/06/10 15:09:38 - [] D -- C:\ProgramData\MA Lighting Technologies O43 - CFD: 2011/03/30 04:03:35 - [] D -- C:\ProgramData\Macrovision O43 - CFD: 2013/02/24 11:42:32 - [] D -- C:\ProgramData\McAfee O43 - CFD: 2014/12/10 23:34:56 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2011/06/25 01:57:45 - [] D -- C:\ProgramData\MumboJumbo O43 - CFD: 2014/03/31 12:10:09 - [] D -- C:\ProgramData\Nuance O43 - CFD: 2015/02/12 10:40:49 - [] D -- C:\ProgramData\NVIDIA O43 - CFD: 2011/03/30 03:48:20 - [] D -- C:\ProgramData\NVIDIA Corporation O43 - CFD: 2015/09/01 15:30:15 - [] D -- C:\ProgramData\nWdsManPron =>PUP.Optional.WdsManPro O43 - CFD: 2011/06/25 16:46:30 - [] D -- C:\ProgramData\Oberon Media O43 - CFD: 2011/03/30 03:26:16 - [] D -- C:\ProgramData\OberonGameConsole O43 - CFD: 2011/06/19 17:28:07 - [] D -- C:\ProgramData\OFFICE One v7 O43 - CFD: 2014/01/07 00:02:51 - [] D -- C:\ProgramData\P4G O43 - CFD: 2015/09/01 15:32:05 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 2015/06/24 09:13:38 - [0] D -- C:\ProgramData\PDF Architect 3 O43 - CFD: 2015/08/31 14:28:56 - [] D -- C:\ProgramData\Peusnamroonod O43 - CFD: 2011/06/25 01:56:32 - [] D -- C:\ProgramData\PlayFirst O43 - CFD: 2015/09/01 14:16:26 - [] D -- C:\ProgramData\Radio O43 - CFD: 2014/05/06 11:37:55 - [] D -- C:\ProgramData\SafeNet Sentinel O43 - CFD: 2015/06/10 18:32:10 - [] D -- C:\ProgramData\Skype O43 - CFD: 2011/06/11 20:24:23 - [] D -- C:\ProgramData\Sonic O43 - CFD: 2014/07/29 13:32:36 - [0] D -- C:\ProgramData\Sony Ericsson O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2011/06/25 16:55:48 - [] AD -- C:\ProgramData\Temp O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2013/11/29 19:38:51 - [] D -- C:\ProgramData\Trend Micro O43 - CFD: 2015/08/31 14:01:13 - [] D -- C:\ProgramData\TVTime O43 - CFD: 2011/03/30 04:04:29 - [] D -- C:\ProgramData\Uninstall O43 - CFD: 2011/07/25 12:00:53 - [] D -- C:\ProgramData\VirtualizedApplications O43 - CFD: 2011/06/11 11:57:03 - [] D -- C:\ProgramData\{93E26451-CD9A-43A5-A2FA-C42392EA4001} O43 - CFD: 2015/06/10 17:34:07 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 2015/02/11 15:56:00 - [] D -- C:\Program Files (x86)\Common Files\Apple O43 - CFD: 2011/07/07 16:14:47 - [] D -- C:\Program Files (x86)\Common Files\Autodesk Shared O43 - CFD: 2011/03/30 04:00:52 - [] D -- C:\Program Files (x86)\Common Files\Creative Labs Shared O43 - CFD: 2014/05/14 21:42:57 - [] D -- C:\Program Files (x86)\Common Files\Designer O43 - CFD: 2011/07/12 17:24:34 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 2011/09/02 17:38:39 - [] D -- C:\Program Files (x86)\Common Files\Macrovision Shared O43 - CFD: 2011/09/11 17:36:55 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 2011/03/30 03:25:44 - [] D -- C:\Program Files (x86)\Common Files\Oberon Media O43 - CFD: 2011/03/30 03:46:06 - [] D -- C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 2011/03/30 04:04:29 - [] D -- C:\Program Files (x86)\Common Files\Roxio Shared O43 - CFD: 2014/05/06 11:37:53 - [] D -- C:\Program Files (x86)\Common Files\SafeNet Sentinel O43 - CFD: 2009/07/14 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 2015/04/16 06:07:36 - [] D -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 2009/07/14 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 2011/11/10 09:07:07 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 2011/03/30 03:15:50 - [] D -- C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 2015/06/10 17:43:29 - [] D -- C:\Users\Romuald\AppData\Roaming\Adobe O43 - CFD: 2015/09/01 15:43:14 - [] SHD -- C:\Users\Romuald\AppData\Roaming\AnyProtectEx =>PUP.Optional.AnyProtect O43 - CFD: 2014/01/30 11:31:30 - [] D -- C:\Users\Romuald\AppData\Roaming\Apple Computer O43 - CFD: 2011/07/17 15:32:51 - [] D -- C:\Users\Romuald\AppData\Roaming\Autodesk O43 - CFD: 2013/12/03 19:09:59 - [] D -- C:\Users\Romuald\AppData\Roaming\AVAST Software O43 - CFD: 2011/06/25 01:54:10 - [] D -- C:\Users\Romuald\AppData\Roaming\CyberLink O43 - CFD: 2014/04/22 19:04:54 - [] D -- C:\Users\Romuald\AppData\Roaming\DiskAid O43 - CFD: 2013/04/03 01:31:08 - [] D -- C:\Users\Romuald\AppData\Roaming\dvdcss O43 - CFD: 2014/01/07 00:02:46 - [] D -- C:\Users\Romuald\AppData\Roaming\FLEXnet O43 - CFD: 2014/01/07 00:02:46 - [] D -- C:\Users\Romuald\AppData\Roaming\Gaming Mouse O43 - CFD: 2011/06/11 08:21:52 - [] D -- C:\Users\Romuald\AppData\Roaming\Identities O43 - CFD: 2011/11/22 12:07:55 - [] D -- C:\Users\Romuald\AppData\Roaming\InstallShield O43 - CFD: 2015/08/31 13:49:06 - [] D -- C:\Users\Romuald\AppData\Roaming\Lavasoft O43 - CFD: 2014/06/10 15:09:38 - [] D -- C:\Users\Romuald\AppData\Roaming\MA Lighting Technologies O43 - CFD: 2011/06/11 08:23:48 - [] D -- C:\Users\Romuald\AppData\Roaming\Macromedia O43 - CFD: 2011/06/11 20:25:21 - [] D -- C:\Users\Romuald\AppData\Roaming\Macrovision O43 - CFD: 2009/07/14 09:44:38 - [0] D -- C:\Users\Romuald\AppData\Roaming\Media Center Programs O43 - CFD: 2015/02/01 01:40:28 - [] SD -- C:\Users\Romuald\AppData\Roaming\Microsoft O43 - CFD: 2011/07/18 22:55:39 - [] D -- C:\Users\Romuald\AppData\Roaming\Mozilla O43 - CFD: 2015/09/01 15:49:17 - [] D -- C:\Users\Romuald\AppData\Roaming\Nosibay =>PUP.Optional.BubbleDock O43 - CFD: 2011/06/11 02:36:08 - [] D -- C:\Users\Romuald\AppData\Roaming\Nuance O43 - CFD: 2014/01/30 12:10:35 - [] D -- C:\Users\Romuald\AppData\Roaming\NVIDIA O43 - CFD: 2013/10/08 15:45:33 - [] D -- C:\Users\Romuald\AppData\Roaming\OpenOffice O43 - CFD: 2011/06/14 09:43:49 - [] D -- C:\Users\Romuald\AppData\Roaming\OpenOffice.org O43 - CFD: 2015/06/23 21:46:29 - [] D -- C:\Users\Romuald\AppData\Roaming\PDF Architect 3 O43 - CFD: 2011/06/25 01:56:32 - [] D -- C:\Users\Romuald\AppData\Roaming\PlayFirst O43 - CFD: 2011/06/17 08:06:33 - [] D -- C:\Users\Romuald\AppData\Roaming\Roxio Log Files O43 - CFD: 2015/06/24 16:43:06 - [] D -- C:\Users\Romuald\AppData\Roaming\Skype O43 - CFD: 2015/03/11 09:20:54 - [] D -- C:\Users\Romuald\AppData\Roaming\SoftGrid Client O43 - CFD: 2011/06/11 20:25:22 - [] D -- C:\Users\Romuald\AppData\Roaming\Sonic O43 - CFD: 2015/09/01 15:50:00 - [] D -- C:\Users\Romuald\AppData\Roaming\Store =>PUP.Optional.Nosibay O43 - CFD: 2011/07/25 09:45:38 - [0] D -- C:\Users\Romuald\AppData\Roaming\TP O43 - CFD: 2011/07/05 16:13:40 - [] D -- C:\Users\Romuald\AppData\Roaming\Windows Live Writer O43 - CFD: 2015/09/01 15:50:31 - [] D -- C:\Users\Romuald\AppData\Roaming\WTools O43 - CFD: 2011/06/11 02:36:07 - [] D -- C:\Users\Romuald\AppData\Roaming\Zeon O43 - CFD: 2015/09/01 17:33:22 - [] D -- C:\Users\Romuald\AppData\Roaming\ZHP O43 - CFD: 2011/06/25 16:41:56 - [] D -- C:\Users\Romuald\AppData\Local\2DBoy O43 - CFD: 2015/06/10 17:43:22 - [] D -- C:\Users\Romuald\AppData\Local\Adobe O43 - CFD: 2011/06/11 11:55:51 - [] D -- C:\Users\Romuald\AppData\Local\Apple O43 - CFD: 2011/06/15 12:40:22 - [] D -- C:\Users\Romuald\AppData\Local\Apple Computer O43 - CFD: 2011/06/11 08:21:05 - [0] SHD -- C:\Users\Romuald\AppData\Local\Application Data O43 - CFD: 2015/02/01 02:38:23 - [] D -- C:\Users\Romuald\AppData\Local\Asus O43 - CFD: 2011/07/07 16:14:12 - [] D -- C:\Users\Romuald\AppData\Local\Autodesk O43 - CFD: 2014/07/08 00:05:50 - [] D -- C:\Users\Romuald\AppData\Local\Broadcom O43 - CFD: 2011/12/09 18:41:07 - [0] D -- C:\Users\Romuald\AppData\Local\Diagnostics O43 - CFD: 2014/04/22 19:01:47 - [] D -- C:\Users\Romuald\AppData\Local\DigiDNA O43 - CFD: 2015/08/22 12:32:30 - [] D -- C:\Users\Romuald\AppData\Local\ElevatedDiagnostics O43 - CFD: 2015/02/03 11:07:09 - [] SHD -- C:\Users\Romuald\AppData\Local\EmieBrowserModeList O43 - CFD: 2014/05/22 15:22:15 - [] SHD -- C:\Users\Romuald\AppData\Local\EmieSiteList O43 - CFD: 2014/05/22 15:22:15 - [] SHD -- C:\Users\Romuald\AppData\Local\EmieUserList O43 - CFD: 2015/09/01 15:52:37 - [] D -- C:\Users\Romuald\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate O43 - CFD: 2012/07/07 12:04:00 - [] D -- C:\Users\Romuald\AppData\Local\Google O43 - CFD: 2015/06/03 09:15:47 - [] D -- C:\Users\Romuald\AppData\Local\GWX O43 - CFD: 2011/06/11 08:21:05 - [0] SHD -- C:\Users\Romuald\AppData\Local\Historique O43 - CFD: 2015/08/31 13:51:43 - [] D -- C:\Users\Romuald\AppData\Local\Lavasoft O43 - CFD: 2015/08/31 13:52:06 - [] D -- C:\Users\Romuald\AppData\Local\Microsoft O43 - CFD: 2011/08/29 15:56:23 - [] D -- C:\Users\Romuald\AppData\Local\Microsoft Games O43 - CFD: 2012/02/11 21:26:08 - [0] DC -- C:\Users\Romuald\AppData\Local\MigWiz O43 - CFD: 2014/03/23 13:02:20 - [] D -- C:\Users\Romuald\AppData\Local\PassMark O43 - CFD: 2015/06/23 21:46:43 - [0] D -- C:\Users\Romuald\AppData\Local\PDFCreator O43 - CFD: 2011/06/11 08:23:03 - [] D -- C:\Users\Romuald\AppData\Local\Power2Go O43 - CFD: 2014/04/22 19:00:53 - [] D -- C:\Users\Romuald\AppData\Local\Programs O43 - CFD: 2015/06/09 14:34:31 - [] D -- C:\Users\Romuald\AppData\Local\Skype O43 - CFD: 2011/07/25 09:45:30 - [] D -- C:\Users\Romuald\AppData\Local\SoftGrid Client O43 - CFD: 2011/06/11 20:24:22 - [] D -- C:\Users\Romuald\AppData\Local\Sonic_Solutions O43 - CFD: 2015/09/01 17:32:56 - [] D -- C:\Users\Romuald\AppData\Local\Temp O43 - CFD: 2011/06/11 08:21:05 - [0] SHD -- C:\Users\Romuald\AppData\Local\Temporary Internet Files O43 - CFD: 2015/09/01 15:40:54 - [] D -- C:\Users\Romuald\AppData\Local\TVTime O43 - CFD: 2011/07/08 07:34:45 - [] D -- C:\Users\Romuald\AppData\Local\VirtualStore O43 - CFD: 2014/02/22 10:00:27 - [] D -- C:\Users\Romuald\AppData\Local\Windows Live O43 - CFD: 2011/06/11 02:51:20 - [] D -- C:\Users\Romuald\AppData\Local\Windows Live Writer O43 - CFD: 2009/07/14 06:54:32 - [] RD -- C:\Users\Romuald\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/09/01 17:31:28 - [] RD -- C:\Users\Romuald\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/09/01 15:49:45 - [] D -- C:\Users\Romuald\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bubble Dock =>PUP.Optional.BubbleDock O43 - CFD: 2011/03/30 03:14:31 - [] D -- C:\Users\Romuald\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink Blu-ray Disc Suite O43 - CFD: 2015/08/31 21:58:52 - [] D -- C:\Users\Romuald\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2009/07/14 06:49:38 - [] RD -- C:\Users\Romuald\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/09/01 17:31:28 - [] RD -- C:\Users\Romuald\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup ---\\ Derniers fichiers créés dans Windows Prefetcher (6) - 8s O45 - LFCP:[MD5.C458D7670B464274ABB74885D754BB1D] 2015/09/01 15:30:48 A -- C:\Windows\Prefetch\GMSD_FR_005010077.EXE-59783E75.pf =>PUP.Optional.CrossRider O45 - LFCP:[MD5.9415B41C0A8BA5553592379488ADBBB3] 2015/09/01 15:48:22 A -- C:\Windows\Prefetch\PREDM.EXE-2EF6E26C.pf =>PUP.Optional.Downware O45 - LFCP:[MD5.9E03F22EA3A3BBB3D7AC9F7ED38733F7] 2015/09/01 14:45:27 A -- C:\Windows\Prefetch\PREDM.TMP-9A6D8B89.pf =>PUP.Optional.Downware O45 - LFCP:[MD5.CF0912219B35A41A92EA418EBBDFC24E] 2015/09/01 15:33:42 A -- C:\Windows\Prefetch\UPGMSD_FR_005010077.EXE-1914813C.pf =>PUP.Optional.CrossRider O45 - LFCP:[MD5.9CB4D59F8C9A99AF146941B982C6D56B] 2015/09/01 14:42:03 A -- C:\Windows\Prefetch\WDSMANPRO.EXE-3C4D48A1.pf =>PUP.Optional.WdsManPro O45 - LFCP:[MD5.23577B08D78438D1130B36AF0250F7E8] 2015/09/01 14:41:52 A -- C:\Windows\Prefetch\WPM_V20.0.0.2298.EXE-9F1AD02A.pf =>PUP.Optional.WpManager ---\\ Enumération des clés StartupReg (18) - 2s O53 - SMSR:HKLM\...\startupreg\Acrobat Assistant 8.0 [Key] . (.Adobe Systems Inc. - AcroTray.) -- C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe © O53 - SMSR:HKLM\...\startupreg\APSDaemon [Key] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe © O53 - SMSR:HKLM\...\startupreg\ASUS WebStorage [Key] . (...) -- C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe © O53 - SMSR:HKLM\...\startupreg\Gaming Mouse Hid [Key] . (.Copyright (C) 2007 - hid MFC Application.) -- C:\Program Files (x86)\Gaming Mouse\hid.exe O53 - SMSR:HKLM\...\startupreg\ISUSPM [Key] . (...) -- C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\iTunesHelper [Key] . (.Apple Inc. - .) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe (.not file.) © O53 - SMSR:HKLM\...\startupreg\MobileDocuments [Key] . (...) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Nuance PDF Reader-reminder [Key] . (...) -- C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\QuickTime Task [Key] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files (x86)\QuickTime\QTTask.exe © O53 - SMSR:HKLM\...\startupreg\Sony PC Companion [Key] . (...) -- C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Syncables [Key] . (.syncables, LLC - Syncables.) -- C:\Program Files (x86)\syncables\syncables desktop\Syncables.exe O53 - SMSR:HKLM\...\startupreg\Trend Micro Client Framework [Key] . (.Trend Micro Inc. - Trend Micro Client Session Agent Monitor.) -- C:\Program Files\Trend Micro\UniClient\UiFrmwrk\UIWatchDog.exe O53 - SMSR:HKLM\...\startupreg\UpdReg [Key] . (.Creative Technology Ltd. - Creative UpdReg.) -- C:\Windows\Updreg.EXE © O53 - SMSR:HKLM\...\startupreg\VAWinAgent [Key] . (...) -- C:\ExpressGateUtil\VAWinAgent.exe O53 - SMSR:HKLM\...\startupreg\VizorHtmlDialog.exe [Key] . (.Trend Micro Inc. - Trend Titanium.) -- C:\Program Files\Trend Micro\Titanium\UIFramework\VizorHtmlDialog.exe O53 - SMSR:HKLM\...\startupreg\Web Companion [Key] . (...) -- C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Wireless Console 3 [Key] . (.Copyright (C) 2005 - Wireless Console 3.) -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe ---\\ Liste des pilotes du système (85) - 8s O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] © O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] © O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] © O58 - SDL:2009/07/14 03:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] © O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] © O58 - SDL:2009/07/14 03:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] © O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] © O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] © O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] © O58 - SDL:2010/01/11 17:36:32 A . (.Primax Ltd - Primax USB Optical Mouse Driver.) -- C:\Windows\System32\drivers\Asusgms.sys [11520] O58 - SDL:2015/08/31 14:32:58 A . (.AVAST Software - avast! HWID.) -- C:\Windows\System32\drivers\aswHwid.sys [28656] © O58 - SDL:2013/03/07 01:33:20 A . (.AVAST Software - avast! Keyboard Filter Driver.) -- C:\Windows\System32\drivers\aswKbd.sys [22600] © O58 - SDL:2015/08/31 14:32:58 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [90968] © O58 - SDL:2011/11/28 19:52:22 A . (.AVAST Software - avast! TDI RDR Driver.) -- C:\Windows\System32\drivers\aswRdr.sys [42328] © O58 - SDL:2015/08/31 14:32:58 A . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr2.sys [93528] © O58 - SDL:2015/08/31 14:32:58 A . (.AVAST Software - avast! Revert.) -- C:\Windows\System32\drivers\aswRvrt.sys [65224] © O58 - SDL:2015/08/31 14:33:25 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswsnx.sys [1048344] © O58 - SDL:2015/08/31 14:32:58 A . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\drivers\aswSP.sys [447944] © O58 - SDL:2015/08/31 14:32:58 A . (.AVAST Software - Stream Filter.) -- C:\Windows\System32\drivers\aswStm.sys [150672] © O58 - SDL:2015/08/31 14:32:58 A . (.AVAST Software - avast! VM Monitor.) -- C:\Windows\System32\drivers\aswVmm.sys [274808] © O58 - SDL:2011/06/27 02:37:00 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\drivers\athrx.sys [2753536] © O58 - SDL:2009/06/10 22:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] © O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] © O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] © O58 - SDL:2009/07/14 03:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] © O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] © O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] © O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] © O58 - SDL:2009/12/14 10:03:49 A . (.Broadcom Corporation. - Widcomm Bluetooth USB Filter for Windows XP.) -- C:\Windows\System32\drivers\btusbflt.sys [53800] © O58 - SDL:2010/01/15 13:23:20 A . (.Broadcom Corporation. - Bluetooth Audio Device.) -- C:\Windows\System32\drivers\btwaudio.sys [98344] © O58 - SDL:2010/01/15 13:23:14 A . (.Broadcom Corporation. - Broadcom Bluetooth AVDT Service.) -- C:\Windows\System32\drivers\btwavdt.sys [132648] © O58 - SDL:2009/04/07 14:33:08 A . (.Broadcom Corporation. - Broadcom Bluetooth L2CAP Service.) -- C:\Windows\System32\drivers\btwl2cap.sys [35104] © O58 - SDL:2010/01/15 13:23:10 A . (.Broadcom Corporation. - Bluetooth Remote Control HID Minidriver.) -- C:\Windows\System32\drivers\btwrchid.sys [21288] © O58 - SDL:2009/06/10 22:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] © O58 - SDL:2009/07/14 03:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] © O58 - SDL:2010/07/13 15:21:47 A . (.Realtek Semiconductor Corp. - Realtek Turbo Mode Filter Driver for 39.) -- C:\Windows\System32\drivers\diskperf64.sys [15464] © O58 - SDL:2009/07/14 03:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] © O58 - SDL:2009/06/10 22:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] © O58 - SDL:2010/11/19 16:25:40 A . (.Fresco Logic - xHCI Bus Driver.) -- C:\Windows\System32\drivers\FLxHCIc.sys [210944] © O58 - SDL:2010/11/19 16:25:40 A . (.Fresco Logic - xHCI Hub Driver.) -- C:\Windows\System32\drivers\FLxHCIh.sys [49664] © O58 - SDL:2012/08/21 13:01:20 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\drivers\GEARAspiWDM.sys [33240] © O58 - SDL:2009/06/10 22:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] © O58 - SDL:2010/10/20 00:34:26 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [56344] © O58 - SDL:2010/11/20 15:33:35 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] © O58 - SDL:2010/09/13 12:24:25 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\drivers\iaStor.sys [437272] © O58 - SDL:2011/03/11 08:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] © O58 - SDL:2009/07/14 03:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] © O58 - SDL:2009/07/20 11:29:39 A . (. - Keyboard Filter Driver.) -- C:\Windows\System32\drivers\kbfiltr.sys [15416] O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] © O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] © O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] © O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] © O58 - SDL:2009/11/18 01:11:59 A . (.Creative Technology Ltd. - Creative Audio Driver.) -- C:\Windows\System32\drivers\MBfilt64.sys [32344] © O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] © O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] © O58 - SDL:2013/07/25 16:53:46 A . (.Apple Inc. - Apple Mobile Device Ethernet.) -- C:\Windows\System32\drivers\netaapl64.sys [23040] © O58 - SDL:2009/07/14 03:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] © O58 - SDL:2015/08/31 14:32:44 A . (.AVAST Software - avast! NG snapshot driver.) -- C:\Windows\System32\drivers\ngvss.sys [115152] © O58 - SDL:2010/10/01 16:56:23 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\System32\drivers\nvhda64v.sys [131688] © O58 - SDL:2013/09/05 03:36:46 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [11273504] © O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] © O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] © O58 - SDL:2013/12/04 03:22:58 A . (.NVIDIA Corporation - Stereoscopic 3D USB controller driver.) -- C:\Windows\System32\drivers\nvstusb.sys [451872] © O58 - SDL:2009/07/14 03:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] © O58 - SDL:2009/07/14 03:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] © O58 - SDL:2010/06/23 03:31:11 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\Windows\System32\drivers\Rt64win7.sys [333928] © O58 - SDL:2010/07/22 11:41:05 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [2435816] © O58 - SDL:2010/08/03 12:43:13 A . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/V.) -- C:\Windows\System32\drivers\rtsuvstor.sys [290920] © O58 - SDL:2009/06/10 22:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] © O58 - SDL:2009/09/17 07:05:02 A . (.SafeNet, Inc. - Sentinel System Driver (NT Parallel x64 dri.) -- C:\Windows\System32\drivers\sentinel64.sys [145448] O58 - SDL:2009/06/10 22:35:57 A . (.Silicon Integrated Systems Corp. - NDIS 6.0 Miniport Driver for SiS191/SiS190.) -- C:\Windows\System32\drivers\SiSG664.sys [56832] © O58 - SDL:2009/07/14 03:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] © O58 - SDL:2009/07/14 03:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] © O58 - SDL:2008/07/11 08:05:00 A . (.SafeNet, Inc. - Sentinel System USB Driver.) -- C:\Windows\System32\drivers\SNTUSB64.SYS [58664] O58 - SDL:2009/07/14 03:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] © O58 - SDL:2010/10/08 12:32:27 A . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\System32\drivers\SynTP.sys [1395248] © O58 - SDL:2010/09/17 10:52:27 A . (.Trend Micro Inc. - TrendMicro Activity Monitor Module.) -- C:\Windows\System32\drivers\tmactmon.sys [90704] O58 - SDL:2010/09/17 10:52:27 A . (.Trend Micro Inc. - TrendMicro Common Module.) -- C:\Windows\System32\drivers\tmcomm.sys [144464] O58 - SDL:2010/09/17 10:52:27 A . (.Trend Micro Inc. - TrendMicro Event Management Module.) -- C:\Windows\System32\drivers\tmevtmgr.sys [67664] O58 - SDL:2010/09/17 10:52:27 A . (.Trend Micro Inc. - Trend Micro TDI Driver (amd64-fre).) -- C:\Windows\System32\drivers\tmtdi.sys [105552] O58 - SDL:2010/04/17 01:07:28 A . (...) -- C:\Windows\System32\drivers\TurboB.sys [13832] O58 - SDL:2015/06/10 23:08:36 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl64.sys [54784] © O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] © O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] © O58 - SDL:2011/12/16 19:41:50 A . (...) -- C:\Windows\System32\drivers\vusbbus.sys [116736] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (2) - 24s O61 - LFC: 2015/09/01 17:31:48 A . (..) -- C:\Users\Romuald\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [674082] O61 - LFC: 2015/08/28 15:16:32 A . (..) -- C:\Users\Romuald\AppData\Local\Google\Chrome\User Data\EVWhitelist\7\_platform_specific\all\ev_hashes_whitelist.bin [674082] ---\\ Associations Shell Spawning (11) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe © O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe © O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe © O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe © O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.scr> [HKCU\..\open\Command] (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\System32\notepad.exe © ---\\ Menu de démarrage Internet (8) - 1s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © ---\\ Recherche d'infection sur les navigateurs (3) - 0s O69 - SBI: SearchScopes [HKCU] {015DB5FA-EAFB-4592-A95B-F44D3EE87FA9} - (Trovi) - http://www.trovi.com/ =>PUP.Optional.Trovigo O69 - SBI: SearchScopes [HKCU] {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} - (Google) - http://www.google.com/ O69 - SBI: SearchScopes [HKCU] {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} - (Google) - http://www.google.com/ ---\\ Enumère les services démarrés par Svchost (32) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] © O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] © O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] © O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [236032] © O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] © O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [859648] © O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [680960] © O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] © O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] © O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] © O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] © O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] © O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] © O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [683520] © O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2606080] © O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] © O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] © O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] © O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720] © O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70656] © O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] © O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584] © O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] © O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] © O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] © O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] © O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1110016] © O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624] © O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] © O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [210432] © O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544] © O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] © ---\\ Liste des exceptions du parefeu Windows (16) - 3s O87 - FAEL: "{7B11D533-E87F-46A3-8DF7-815576A2EE74}" [In-None-P6-TRUE] .(.SafeNet, Inc - Sentinel Protection Server for SuperPro and.) -- C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe O87 - FAEL: "{3BD29805-D6CE-4F27-9884-F651E4D10A00}" [In-None-P17-TRUE] .(.SafeNet, Inc - Sentinel Protection Server for SuperPro and.) -- C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe O87 - FAEL: "{E6E6D3A8-A777-4CB3-9F85-339148E82CBC}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe O87 - FAEL: "{4727E676-B3CF-4C58-B18D-C930F8A117E0}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe O87 - FAEL: "TCP Query User{7343B2C8-868B-4C11-9C6A-3D1BC77637E3}C:\program files (x86)\cast software\wysiwyg release 32\bin\wyg.exe" [In-None-P6-TRUE] .(.CAST Software Ltd. - WYSIWYG Application.) -- C:\program files (x86)\cast software\wysiwyg release 32\bin\wyg.exe O87 - FAEL: "UDP Query User{A547E73E-956D-4DB1-807F-ABA6CF919712}C:\program files (x86)\cast software\wysiwyg release 32\bin\wyg.exe" [In-None-P17-TRUE] .(.CAST Software Ltd. - WYSIWYG Application.) -- C:\program files (x86)\cast software\wysiwyg release 32\bin\wyg.exe O87 - FAEL: "TCP Query User{A298DC37-C440-4212-8207-4BFD3AD95B95}C:\program files (x86)\cast software\wysiwyg release 32\bin\wyg.exe" [In-None-P6-TRUE] .(.CAST Software Ltd. - WYSIWYG Application.) -- C:\program files (x86)\cast software\wysiwyg release 32\bin\wyg.exe O87 - FAEL: "UDP Query User{FDE57133-2E94-4837-BC20-9747B4859839}C:\program files (x86)\cast software\wysiwyg release 32\bin\wyg.exe" [In-None-P17-TRUE] .(.CAST Software Ltd. - WYSIWYG Application.) -- C:\program files (x86)\cast software\wysiwyg release 32\bin\wyg.exe O87 - FAEL: "TCP Query User{E4A58559-DA3A-418F-BEC1-01556AFFA60F}C:\program files (x86)\ma lighting technologies\ma 3d\v_3.0.0\ma3d.exe" [In-None-P6-TRUE] .(.MA Lighting Technology GmbH - MALighting.MA3D.Application.) -- C:\program files (x86)\ma lighting technologies\ma 3d\v_3.0.0\ma3d.exe O87 - FAEL: "UDP Query User{C812BF52-AEBC-4589-83F6-5835CEB666BE}C:\program files (x86)\ma lighting technologies\ma 3d\v_3.0.0\ma3d.exe" [In-None-P17-TRUE] .(.MA Lighting Technology GmbH - MALighting.MA3D.Application.) -- C:\program files (x86)\ma lighting technologies\ma 3d\v_3.0.0\ma3d.exe O87 - FAEL: "TCP Query User{E9C1D4EB-502B-4E5C-9D7C-8E155B4B79CA}C:\program files (x86)\ma lighting technologies\ma 3d\v_3.0.0\ma3d.exe" [In-None-P6-TRUE] .(.MA Lighting Technology GmbH - MALighting.MA3D.Application.) -- C:\program files (x86)\ma lighting technologies\ma 3d\v_3.0.0\ma3d.exe O87 - FAEL: "UDP Query User{9F60F188-AA16-4663-A1FE-6C685CF031EC}C:\program files (x86)\ma lighting technologies\ma 3d\v_3.0.0\ma3d.exe" [In-None-P17-TRUE] .(.MA Lighting Technology GmbH - MALighting.MA3D.Application.) -- C:\program files (x86)\ma lighting technologies\ma 3d\v_3.0.0\ma3d.exe O87 - FAEL: "TCP Query User{710FB3C2-7E9D-43A6-8A00-2C22AA36B709}C:\program files (x86)\ma lighting technologies\grandma\grandma2 onpc 3.0.0.5\gma2onpc.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\ma lighting technologies\grandma\grandma2 onpc 3.0.0.5\gma2onpc.exe O87 - FAEL: "UDP Query User{9E072CC8-6452-428E-872B-A93A2D847BAF}C:\program files (x86)\ma lighting technologies\grandma\grandma2 onpc 3.0.0.5\gma2onpc.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\ma lighting technologies\grandma\grandma2 onpc 3.0.0.5\gma2onpc.exe O87 - FAEL: "TCP Query User{75826B19-4802-4A33-9628-BA73C7C4FE45}C:\program files (x86)\ma lighting technologies\grandma\grandma2 onpc 3.0.0.5\gma2onpc.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\ma lighting technologies\grandma\grandma2 onpc 3.0.0.5\gma2onpc.exe O87 - FAEL: "UDP Query User{CA182C7C-215C-4483-809F-73B48CDB0308}C:\program files (x86)\ma lighting technologies\grandma\grandma2 onpc 3.0.0.5\gma2onpc.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\ma lighting technologies\grandma\grandma2 onpc 3.0.0.5\gma2onpc.exe ---\\ Enumère les codes produits des logiciels (1) - 5s O90 - PUC: "93BAD29AC2E44034A96BCB446EB8552E" . (.globalupdate Helper.) =>PUP.Optional.GlobalUpdate ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (36) - 44s SR - Auto [2015/07/07 20:12:28] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe © SS - Disabled [2015/09/01 15:38:03] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe © SR - Auto [2010/09/17 10:52:25] [ 267480] Trend Micro Solution Platform (Amsp) . (.Trend Micro Inc..) - C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe SR - Auto [2015/05/29 18:51:26] [ 77128] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe © SR - Auto [2009/06/16 02:30:42] [ 84536] ASLDR Service (ASLDRService) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe © SR - Auto [2009/12/15 19:39:38] [ 96896] ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe © SS - Demand [2011/07/07 16:14:47] [ 85096] Autodesk Licensing Service (Autodesk Licensing Service) . (.Autodesk.) - C:\Program Files (x86)\Common Files\Autodesk Shared\Service\AdskScSrv.exe © SR - Auto [2015/08/31 14:32:53] [ 146600] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe © SR - Demand [2015/08/31 14:32:41] [ 4047768] AvastVBox COM Service (AvastVBoxSvc) . (.Avast Software.) - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe © SS - Disabled [2011/08/30 23:05:32] [ 462184] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe © SS - Disabled [2010/03/11 20:13:54] [ 873248] Bluetooth Service (btwdins) . (.Broadcom Corporation..) - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe © SR - Auto [2015/08/31 14:01:50] [ 2731488] coHlUudQg (coHlUudQg) . (.Ratio Applications.) - C:\ProgramData\euloMYld\coHlUudQg.exe SS - Disabled [2011/03/30 04:00:52] [ 79360] Creative ALchemy AL6 Licensing Service (Creative ALchemy AL6 Licensing Service) . (.Creative Labs.) - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe © SS - Demand [2011/03/30 04:00:54] [ 79360] Creative Audio Engine Licensing Service (Creative Audio Engine Licensing Service) . (.Creative Labs.) - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe © SR - Auto [2015/09/01 16:04:56] [ 740352] Discussion Group Replace (diluvude) . (...) - C:\Program Files (x86)\3B786180-1441021464-81E0-3353-F46D04152926\knsu22B7.tmp =>PUP.Optional.CrossRider SR - Auto [2013/04/15 08:00:02] [ 152640] EPSON V3 Service4(06) (EPSON_PM_RPCV4_06) . (.SEIKO EPSON CORPORATION.) - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE © SS - Demand [2011/09/02 17:38:39] [ 654848] FLEXnet Licensing Service (FLEXnet Licensing Service) . (.Macrovision Europe Ltd..) - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe © SS - Auto [2015/09/01 15:52:37] [ 68608] globalUpdate Update Service (globalUpdate) (globalUpdate) . (.globalUpdate.) - C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate SS - Demand [2015/09/01 15:52:37] [ 68608] globalUpdate Update Service (globalUpdatem) (globalUpdatem) . (.globalUpdate.) - C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate SS - Auto [2015/08/30 19:26:23] [ 144200] Google Update Service (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SS - Demand [2015/08/30 19:26:23] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SS - Demand [2011/03/30 03:15:14] [ 182768] Google Software Updater (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe © SR - Demand [2015/08/13 02:43:14] [ 644880] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe © SR - Auto [2010/10/06 06:04:08] [ 325656] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe © SR - Auto [2013/08/30 00:43:18] [ 920864] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe © SS - Auto [2013/09/05 03:35:24] [ 1364256] NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe © SR - Auto [2011/09/22 01:03:02] [ 374304] Sentinel Keys Server (SentinelKeysServer) . (.SafeNet, Inc..) - C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe SR - Auto [2011/09/22 07:06:06] [ 1259040] Sentinel Protection Server (SentinelProtectionServer) . (.SafeNet, Inc.) - C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe SR - Auto [2011/09/22 01:00:00] [ 292384] Sentinel Security Runtime (SentinelSecurityRuntime) . (.SafeNet, Inc..) - C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Security Runtime\sntlsrtsrvr.exe SS - Auto [2015/02/18 20:11:32] [ 315488] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe © SR - Auto [2015/09/01 15:30:14] [ 412160] SSFK (SSFK) . (.TODO: <公司名>.) - C:\Program Files (x86)\SFK\SSFK.exe =>PUP.Optional.MyWebSearch SS - Disabled [2013/08/29 19:27:28] [ 414496] NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe © SR - Auto [2010/04/17 01:07:42] [ 134928] Intel(R) Turbo Boost Technology Monitor (TurboBoost) . (.Intel(R) Corporation.) - C:\Program Files\Intel\TurboBoost\TurboBoost.exe © SR - Auto [2010/10/06 06:04:12] [ 2655768] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe © SR - Auto [2010/08/21 03:47:58] [ 77312] VideAceWindowsService (VideAceWindowsService) . (...) - C:\ExpressGateUtil\VAWinService.exe ---\\ Recherche de clés de registre Tracing (2) - 5s HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WordSurferAutoUpdateClient_RASAPI32 =>PUP.Optional.WordSurfer HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WordSurferAutoUpdateClient_RASMANCS =>PUP.Optional.WordSurfer ---\\ Scan Additionnel (61) - 0s C:\Program Files (x86)\3B786180-1441021464-81E0-3353-F46D04152926\knsu22B7.tmp =>PUP.Optional.CrossRider C:\Users\Romuald\AppData\Roaming\Nosibay\Bubble Dock\LBubble Dock.exe =>PUP.Optional.BubbleDock C:\Users\Romuald\AppData\Roaming\WTools\Selection Tools\Selection Tools.exe =>PUP.Optional.Nosibay C:\Users\Romuald\AppData\Roaming\Nosibay\Bubble Dock\Bubble Dock.exe =>PUP.Optional.BubbleDock C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate C:\Windows\system32\Ooteeotoor64.dll =>Hijacker.Winsock HKLM\SYSTEM\CurrentControlSet\Services\CoupoonService64 =>PUP.Optional.Multiplug HKLM\SYSTEM\CurrentControlSet\Services\diluvude =>PUP.Optional.CrossRider HKLM\SYSTEM\CurrentControlSet\Services\globalUpdate =>PUP.Optional.GlobalUpdate C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate HKLM\SYSTEM\CurrentControlSet\Services\SSFK =>PUP.Optional.MyWebSearch C:\Program Files (x86)\SFK\SSFK.exe =>PUP.Optional.MyWebSearch HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Bubble Dock =>PUP.Optional.BubbleDock HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Selection Tools =>PUP.Optional.Nosibay HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WindApp =>PUP.Optional.Nosibay HKLM\SOFTWARE\Wow6432Node\ArenaHD =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\coupoon =>PUP.Optional.Multiplug HKLM\SOFTWARE\Wow6432Node\Crossbrowse =>PUP.Optional.CrossBrowse HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Wow6432Node\HighDefAction =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\mystartsearchSoftware =>PUP.Optional.StartSearch HKLM\SOFTWARE\Wow6432Node\PhraseProfessor_1.10.0.21 =>PUP.Optional.Generic HKLM\SOFTWARE\Wow6432Node\Tutorials =>PUP.Optional.AgenceExclusive HKLM\SOFTWARE\Wow6432Node\WdsManPro =>PUP.Optional.WdsManPro HKLM\SOFTWARE\Wow6432Node\WordSurfer_1.10.0.19 =>PUP.Optional.WordSurfer HKLM\SOFTWARE\Wow6432Node\YorkNewCin =>PUP.Optional.CrossRider HKCU\SOFTWARE\AnyProtect =>PUP.Optional.AnyProtect HKCU\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider HKCU\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse HKCU\SOFTWARE\DailyPcClean =>PUP.Optional.DailyPCClean HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider HKCU\SOFTWARE\MyBrowser 1.0.2V01.09-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\Nosibay =>PUP.Optional.SPointer HKCU\SOFTWARE\Store =>PUP.Optional.Generic HKCU\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider C:\Program Files (x86)\3B786180-1441021464-81E0-3353-F46D04152926 =>PUP.Optional.CrossRider C:\Program Files (x86)\globalUpdate =>PUP.Optional.GlobalUpdate C:\Program Files (x86)\predm =>PUP.Optional.Downware C:\Program Files (x86)\SFK =>PUP.Optional.MyWebSearch C:\ProgramData\abc =>PUP.Optional.BundleInstaller C:\ProgramData\lWdsManProl =>PUP.Optional.WdsManPro C:\ProgramData\nWdsManPron =>PUP.Optional.WdsManPro C:\Users\Romuald\AppData\Roaming\AnyProtectEx =>PUP.Optional.AnyProtect C:\Users\Romuald\AppData\Roaming\Nosibay =>PUP.Optional.BubbleDock C:\Users\Romuald\AppData\Roaming\Store =>PUP.Optional.Nosibay C:\Users\Romuald\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate C:\Users\Romuald\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bubble Dock =>PUP.Optional.BubbleDock C:\Windows\Prefetch\GMSD_FR_005010077.EXE-59783E75.pf =>PUP.Optional.CrossRider C:\Windows\Prefetch\PREDM.EXE-2EF6E26C.pf =>PUP.Optional.Downware C:\Windows\Prefetch\PREDM.TMP-9A6D8B89.pf =>PUP.Optional.Downware C:\Windows\Prefetch\UPGMSD_FR_005010077.EXE-1914813C.pf =>PUP.Optional.CrossRider C:\Windows\Prefetch\WDSMANPRO.EXE-3C4D48A1.pf =>PUP.Optional.WdsManPro C:\Windows\Prefetch\WPM_V20.0.0.2298.EXE-9F1AD02A.pf =>PUP.Optional.WpManager HKLM\Software\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.GlobalUpdate HKLM\Software\Classes\Installer\Features\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.GlobalUpdate HKLM\SYSTEM\CurrentControlSet\Services\globalUpdatem =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WordSurferAutoUpdateClient_RASAPI32 =>PUP.Optional.WordSurfer HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WordSurferAutoUpdateClient_RASMANCS =>PUP.Optional.WordSurfer ---\\ Récapitulatif des éléments trouvées sur votre station (20) - 0s http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider http://www.nicolascoolman.fr/pup-bubbledock/ =>PUP.Optional.BubbleDock http://www.nicolascoolman.fr/blog =>PUP.Optional.Nosibay http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate http://www.nicolascoolman.fr/blog =>PUP.Optional.BubbleSound http://www.nicolascoolman.fr/pup-mutiplug/ =>PUP.Optional.Multiplug http://www.nicolascoolman.fr/adware-mywebsearch/ =>PUP.Optional.MyWebSearch http://www.nicolascoolman.fr/pup-anyprotect/ =>PUP.Optional.AnyProtect http://www.nicolascoolman.fr/blog =>PUP.Optional.CrossBrowse http://www.nicolascoolman.fr/pup-optional-startsearch/ =>PUP.Optional.StartSearch http://www.nicolascoolman.fr/blog =>PUP.Optional.Generic http://www.nicolascoolman.fr/spyware-agenceexclusive/ =>PUP.Optional.AgenceExclusive http://www.nicolascoolman.fr/blog =>PUP.Optional.WdsManPro http://www.nicolascoolman.fr/blog =>PUP.Optional.WordSurfer http://www.nicolascoolman.fr/pup-optional-dailypcclean/ =>PUP.Optional.DailyPCClean http://www.nicolascoolman.fr/adware-spointer/ =>PUP.Optional.SPointer http://www.nicolascoolman.fr/adware-downware/ =>PUP.Optional.Downware http://www.nicolascoolman.fr/blog =>PUP.Optional.BundleInstaller http://www.nicolascoolman.fr/pup-wpmanager/ =>PUP.Optional.WpManager http://www.nicolascoolman.fr/hijacker-trovigo/ =>PUP.Optional.Trovigo ~ End of the scan, 41865 items in 171 seconds (1072)(0)()