~ ZHPDiag v2015.9.4.134 Par Nicolas Coolman (2015/09/4) ~ Démarré par nicole (Administrator) (2015/09/05 07:39:09) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\nicole\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\nicole\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows VISTA, 32-bit Service Pack 2 (Build 6002) ---\\ Navigateurs Internet (2) - 0s MFIE: Mozilla Firefox 40.0.3 (x86 fr) v40.0.3 MSIE: Internet Explorer v9.0.8112.16421 ---\\ Informations sur les produits Windows (3) - 5s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK (Auto) ---\\ Logiciels de protection (2) - 3s Malwarebytes Anti-Malware version 2.1.8.1057 Windows Defender VISTA (Deactivate) ---\\ Logiciels d'optimisation (1) - 4s CCleaner v5.07 ---\\ Surveillance de Logiciels (1) - 4s Adobe Flash Player 18 NPAPI ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 15 Model 107 Stepping 1, AuthenticAMD ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 3143.436 MB (39% free) ~ System Restore: Activé (Enable) ~ System drive C: has 134 GB free of 231 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: PC-DE-NICOLE ~ User Name: nicole ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 134 GB free of 231 GB (System) ~ Drive D: has 0 GB free of 7 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (24) - 2s [MD5.D07D4C3038F3578FFCE1C0237F2A1253] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2926592] © [MD5.4B555106290BD117334E9A08761C035A] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [44544] © [MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [96768] © [MD5.152110AF82E06FF13C325EB99236B271] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [1129472] © [MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Application d'ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [314368] © [MD5.85E861D0B88DB2B54ACB0839654C09F7] - (.Microsoft Corporation - DNS DLL de l'API Client.) () -- C:\Windows\System32\dnsapi.dll [168448] © =>Hijacker.Hosts [MD5.95F5FF73B076576C41740F1A842B9B57] - (.Microsoft Corporation - DLL client de l'API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] © [MD5.F5272A105F59A7B3B345D9D6D87DA7AD] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [273408] © [MD5.1F05B78AB91C9075565A9D8A4B880BC4] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [19944] © [MD5.7ADD03E75BEB9E6DD102C3081D29840A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [70144] © [MD5.6B4BFFB9BECD728097024276430DB314] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [67072] © [MD5.622C41A07CA7E6DD91770F50D532CB6C] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [75264] © [MD5.062452B7FFD68C8C042A6261FE8DFF4A] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [561152] © [MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [54784] © [MD5.8793643A67B42CEC66490B2A0CF92D68] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [100864] © [MD5.1B864548B2ACEC1C0BB29B615CC42978] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [107008] © [MD5.ECD64230A59CBD93C85F1CD1CAB9F3F6] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [185856] © [MD5.2C1121F2B87E9A6B12485DF53CD848C7] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1082232] © [MD5.0FA9B5055484649D63C303FE404E5F4D] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [79360] © [MD5.A214ADBAF4CB47DD2728859EF31F26B0] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [76288] © [MD5.E8BD98D46F2ED77132BA927FCCB47D8B] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [242688] © [MD5.7B75299A4D201D6A6533603D6914AB04] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [66560] © [MD5.76B06EB8A01FC8624D699E7045303E54] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [72192] © [MD5.786DB5771F05EF300390399F626BF30A] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [224640] © ---\\ Processus lancés (28) - 4s [MD5.CDC1C3A14DC66AA4631D488F9F9ED45F] - (.Bitdefender - Bitdefender Security Service.) -- C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe [1308464] [PID.1004] © [MD5.00B317C5E88AA439C92A91C34F88E8DC] - (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) -- C:\WINDOWS\System32\Ati2evxx.exe [606208] [PID.1476] © [MD5.00B317C5E88AA439C92A91C34F88E8DC] - (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) -- C:\WINDOWS\System32\Ati2evxx.exe [606208] [PID.1820] © [MD5.4C72FDD915D62EAEF149BD9C73AB9CF4] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [81088] [PID.2436] © [MD5.11FF65D84AC822474074E21798B3967D] - (.Firebird Project - Firebird SQL Server.) -- C:\Program Files\Firebird\Firebird_2_1\bin\fbguard.exe [81920] [PID.2712] © [MD5.98D884ADC0B8C0FEBCC9D7BEE6D86F90] - (.Hewlett-Packard Company - LightScribe Service.) -- c:\Program Files\Common Files\LightScribe\LSSrvc.exe [79136] [PID.2804] © [MD5.301E3FDFCF33640BB8763BA444BC5093] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160] [PID.2880] © [MD5.83C982A395D00BAFF6515FB38424EA76] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1133880] [PID.2968] © [MD5.E12B4F7A947B3DD652611EC9E85AF9BD] - (.Raxco Software, Inc. - PDEngine Module.) -- C:\Program Files\Common Files\Raxco\Shared\PDEngine.exe [2246448] [PID.3036] [MD5.ABFF2B3A80AA5348BE5E43EFD6B415D1] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes Anti-Malware\mbam.exe [6554424] [PID.3128] © [MD5.D226EFE06C8AD16423E40898E43FC53F] - (.Bitdefender - Bitdefender Update Service.) -- C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe [54424] [PID.3232] © [MD5.A89477B24FFC244FDB71E90E1F21F9C4] - (.Raxco Software, Inc. - PDAgent Module.) -- C:\Program Files\Raxco\PerfectDisk\PDAgent.exe [2216752] [PID.3580] [MD5.9A4B72D6C6874F1E47CD9B23C2503C0B] - (.Firebird Project - Firebird SQL Server.) -- C:\Program Files\Firebird\Firebird_2_1\bin\fbserver.exe [2764800] [PID.3900] © [MD5.0748703EB5444A07673022D781E47C3C] - (.Raxco Software, Inc. - PDAgentS1 Module.) -- C:\Program Files\Raxco\PerfectDisk\PDAgentS1.exe [70448] [PID.760] [MD5.B1361669BDC6ED612C35B7C67ADA2240] - (.OsdMaestro - OsdMaestro main program.) -- C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe [118784] [PID.3564] [MD5.A659F31AC25418738351E5BDF4C85780] - (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\WINDOWS\RtHDVCpl.exe [4669440] [PID.3540] © [MD5.8FFDB89A0FB7C8ABC3A8825E38047341] - (.Logitech Inc. - Logitech Webcam Software.) -- C:\Program Files\Logitech\LWS\Webcam Software\LWS.exe [204136] [PID.1908] © [MD5.7C98599DC1B7C7103A52B2C0BF462C56] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [49152] [PID.4044] © [MD5.4281BF9B8FD5F888E0671EF389DC1C8F] - (.Adobe Systems Inc. - AcroTray.) -- C:\Program Files\Adobe\Acrobat 11.0\Acrobat\acrotray.exe [3498728] [PID.3448] © [MD5.3A8251889D03FCDC2B60D8A1C076D623] - (.Bitdefender - Bitdefender Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe [1862056] [PID.740] © [MD5.2A3FB4C98F139038E23330D2439DB8A4] - (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\nicole\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096] [PID.3928] © [MD5.A60E6CB4DC0B537EC3E60FAF92823A97] - (.Bitdefender - Bitdefender Wallet Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe [671400] [PID.4408] © [MD5.6313BA5D7F348576758CE789AF7E548A] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [6405912] [PID.4180] © [MD5.BE9A6C91999C1FB796F980C794E7DB9C] - (.ATI Technologies Inc. - Catalyst Control Centre: Host application.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe [49152] [PID.6012] © [MD5.0B6F61F5EE43ABF3C0AC028F7A546507] - (.Bitdefender - Bitdefender Security Center.) -- C:\Program Files\Bitdefender\Bitdefender 2015\seccenter.exe [1175600] [PID.4092] © [MD5.E48B80F6614D4BEFA7768B960FFEF514] - (.Hewlett-Packard - HP Health Check Service.) -- c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [61440] [PID.2116] © [MD5.7CAC10A1C258DFCB5ADE563BAE6D2F15] - (.Hewlett-Packard Company - KBD EXE.) -- C:\hp\KBD\kbd.exe [67128] [PID.4440] © [MD5.4D3B680F8504CAD0D4EC9059FC17EE20] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\nicole\ZHPDiag3.exe [1921536] [PID.4472] © ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (9) - 3s P2 - EXT FILE: (...) -- C:\Users\nicole\AppData\Roaming\Mozilla\Firefox\Profiles\fv4xupyx.default\extensions\nuance@pdf8 P2 - EXT FILE: (...) -- C:\Users\nicole\AppData\Roaming\Mozilla\Firefox\Profiles\fv4xupyx.default\extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}.xpi P2 - EXT FILE: (...) -- C:\Users\nicole\AppData\Roaming\Mozilla\Firefox\Profiles\fv4xupyx.default\extensions\{5C655500-E712-41e7-9349-CE462F844B19}.xpi P2 - EXT FILE: (...) -- C:\Users\nicole\AppData\Roaming\Mozilla\Firefox\Profiles\fv4xupyx.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} © P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Macromed\Flash\NPSWF32_18_0_0_203.dll © P2 - FPN: [HKLM] [@java.com/DTPlugin,version=11.25.2] - (.Oracle Corp..) -- C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=11.25.2] - (.Oracle Corp..) -- C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll P2 - FPN: [HKLM] [ZEON/PDF,version=2.0] - (.Zeon Corporation.) -- C:\Program Files\Nuance\Power PDF\bin\nppdf.dll ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (8) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (8) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\System32\userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl" ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (4) ---\\ Browser Helper Object de navigateur (BHO) (3) - 0s O2 - BHO: Nuance PDF Toolbar Helper - {940361F8-7F16-4498-AB43-2EFFE0235AFA} . (.Zeon Corporation - SZeonIEFavClient.dll.) -- C:\Program Files\Nuance\Power PDF\bin\SZeonIEFavClient.dll O2 - BHO: PlusIEEventHelper Class - {9D137966-2E29-45C5-9B12-29D5427F8F66} . (.Zeon Corporation - PlusIEContextMenu.dll.) -- C:\Program Files\Nuance\Power PDF\bin\PlusIEContextMenu.dll O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL © ---\\ Internet Explorer, Barre d'outil (1) - 1s O3 - Toolbar: (no name) - [HKLM]{BED78D9C-A025-4FE9-B3BA-27E6D376A3D5} (Orphean) ---\\ Applications lancées au démarrage du système (25) - 1s O4 - HKLM\..\Run: [KBD] . (...) -- C:\hp\KBD\KbdStub.exe O4 - HKLM\..\Run: [OsdMaestro] . (.OsdMaestro - OsdMaestro main program.) -- C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe O4 - HKLM\..\Run: [StartCCC] . (...) -- c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe © O4 - HKLM\..\Run: [LWS] . (.Logitech Inc. - Logitech Webcam Software.) -- C:\Program Files\Logitech\LWS\Webcam Software\LWS.exe © O4 - HKLM\..\Run: [BCSSync] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files\Microsoft Office\Office14\BCSSync.exe © O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe © O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe © O4 - HKLM\..\Run: [Acrobat Assistant 8.0] . (.Adobe Systems Inc. - AcroTray.) -- C:\Program Files\Adobe\Acrobat 11.0\Acrobat\acrotray.exe © O4 - HKLM\..\Run: [Bdagent] . (.Bitdefender - Bitdefender Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe © O4 - HKLM\..\RunOnce: [Launcher] . (.soft thinks - Launcher.) -- C:\WINDOWS\SMINST\Launcher.exe O4 - HKCU\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\nicole\AppData\Local\Facebook\Update\FacebookUpdate.exe © O4 - HKCU\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\wmpnscfg.exe © O4 - HKCU\..\Run: [Bitdefender Wallet Agent] . (.Bitdefender - Bitdefender Wallet Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe © O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe © O4 - HKCU\..\RunOnce: [Adobe Speed Launcher] 1441431370 O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe © O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe © O4 - HKUS\S-1-5-21-3600269913-2463591278-2161397152-1000\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\nicole\AppData\Local\Facebook\Update\FacebookUpdate.exe © O4 - HKUS\S-1-5-21-3600269913-2463591278-2161397152-1000\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\wmpnscfg.exe © O4 - HKUS\S-1-5-21-3600269913-2463591278-2161397152-1000\..\Run: [Bitdefender Wallet Agent] . (.Bitdefender - Bitdefender Wallet Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe © O4 - HKUS\S-1-5-21-3600269913-2463591278-2161397152-1000\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe © O4 - HKUS\S-1-5-21-3600269913-2463591278-2161397152-1000\..\RunOnce: [Adobe Speed Launcher] 1441431370 ---\\ Modification Domaine/Adresses DNS (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CS3\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 ---\\ Protocole additionnel (24) - 1s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\System32\mshtml.dll © O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\System32\urlmon.dll © O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\System32\MSVidCtl.dll © O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\System32\urlmon.dll © O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\System32\urlmon.dll © O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\System32\urlmon.dll © O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\System32\urlmon.dll © O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\System32\itss.dll © O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\System32\mshtml.dll © O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\System32\urlmon.dll © O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\System32\mshtml.dll © O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\WINDOWS\System32\inetcomm.dll © O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\System32\urlmon.dll © O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll © O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\System32\itss.dll © O18 - Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll © O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\System32\mshtml.dll © O18 - Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype4COM.) -- C:\Program Files\Common Files\Skype\Skype4COM.dll © O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\System32\MSVidCtl.dll © O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\System32\mshtml.dll © O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\System32\mscoree.dll © O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\System32\mscoree.dll © O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\System32\mscoree.dll © O18 - Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL © ---\\ Liste des services NT non Microsoft et non désactivés (12) - 2s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe © O23 - Service: (Ati External Event Utility) . (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) - C:\WINDOWS\System32\Ati2evxx.exe © O23 - Service: Firebird Guardian - DefaultInstance (FirebirdGuardianDefaultInstance) . (.Firebird Project - Firebird SQL Server.) - C:\Program Files\Firebird\Firebird_2_1\bin\fbguard.exe © O23 - Service: HP Health Check Service (HP Health Check Service) . (.Hewlett-Packard - HP Health Check Service.) - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe © O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company - LightScribe Service.) - c:\Program Files\Common Files\LightScribe\LSSrvc.exe © O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe © O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe © O23 - Service: PDAgent (PDAgent) . (.Raxco Software, Inc. - PDAgent Module.) - C:\Program Files\Raxco\PerfectDisk\PDAgent.exe O23 - Service: PDEngine (PDEngine) . (.Raxco Software, Inc. - PDEngine Module.) - C:\Program Files\Common Files\Raxco\Shared\PDEngine.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe © O23 - Service: Bitdefender Desktop Update Service (UPDATESRV) . (.Bitdefender - Bitdefender Update Service.) - C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe © O23 - Service: Bitdefender Virus Shield (VSSERV) . (.Bitdefender - Bitdefender Security Service.) - C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe © ---\\ Enumère les données de BootExecute (1) - 0s O34 - HKLM BootExecute: (PDBoot.exe) (.Raxco Software, Inc. - PerfectDisk Boot Time Defragmentation.) -- PDBoot.exe ---\\ Tâches planifiées en automatique (10) - 4s [MD5.6313BA5D7F348576758CE789AF7E548A] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6405912] © [MD5.2D141D455A3F1BDAC97A08006ACD7B4B] [APT] [HP Health Check] (.Hewlett-Packard.) -- c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe [71176] © [MD5.00000000000000000000000000000000] [APT] [JavaUpdateAdministrator] (...) -- C:\Windows\system32\jusched.exe (.not file.) [0] =>PUP.Optional.UpdateAdmin [MD5.00000000000000000000000000000000] [APT] [JavaUpdatenicole] (...) -- C:\Windows\system32\jusched.exe (.not file.) [0] [MD5.7F96DA57AA3F5BCE706580C859402B6B] [APT] [RecoveryCD] (.Copyright © 2006.) -- C:\Program Files\Hewlett-Packard\SDP\RemEngine.exe [28672] O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2800] © O39 - APT: HP Health Check - (.Hewlett-Packard.) -- C:\Windows\System32\Tasks\HP Health Check [3568] © O39 - APT: JavaUpdateAdministrator - (...) -- C:\Windows\System32\Tasks\JavaUpdateAdministrator [3334] =>PUP.Optional.UpdateAdmin O39 - APT: JavaUpdatenicole - (...) -- C:\Windows\System32\Tasks\JavaUpdatenicole [3300] O39 - APT: RecoveryCD - (.Copyright © 2006.) -- C:\Windows\System32\Tasks\RecoveryCD [3926] ---\\ Logiciels installés (75) - 11s O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX © O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI © O42 - Logiciel: AIMP3 - (.AIMP DevTeam.) [HKLM] -- AIMP3 © O42 - Logiciel: AVS Video Editor 7.1 - (.Online Media Technologies Ltd..) [HKLM] -- AVS Video Editor_is1 O42 - Logiciel: BeadTool 4.5.28 - (.Fired Up Software.) [HKLM] -- BeadTool 4_is1 O42 - Logiciel: Bitdefender Total Security 2015 - (.Bitdefender.) [HKLM] -- Bitdefender © O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner © O42 - Logiciel: EssentialPIM Pro - (...) [HKLM] -- EssentialPIM Pro O42 - Logiciel: Firebird 2.1.4.18393 (Win32) - (.Firebird Project.) [HKLM] -- FBDBServer_2_1_is1 © O42 - Logiciel: FileZilla Client 3.10.0.1 - (.Tim Kosse.) [HKLM] -- FileZilla Client © O42 - Logiciel: HP Photosmart Essential 2.01 - (.HP.) [HKLM] -- HP Photosmart Essential © O42 - Logiciel: jbead - (...) [HKLM] -- jbead O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- KB931906 © O42 - Logiciel: Solution de clavier multimédia amélioré - (.Hewlett-Packard.) [HKLM] -- KBD © O42 - Logiciel: Malwarebytes Anti-Malware version 2.1.8.1057 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes Anti-Malware_is1 © O42 - Logiciel: Mozilla Firefox 40.0.3 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 40.0.3 (x86 fr) © O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService © O42 - Logiciel: Notepad++ - (.Notepad++ Team.) [HKLM] -- Notepad++ © O42 - Logiciel: HP On-Screen Cap/Num/Scroll Lock Indicator - (.Hewlett-Packard.) [HKLM] -- OsdMaestro © O42 - Logiciel: Outils de diagnostic du matériel - (.PC-Doctor, Inc..) [HKLM] -- PC-Doctor 5 for Windows © O42 - Logiciel: STDU Viewer version 1.6.300.0 - (.STDUtility.) [HKLM] -- STDU Viewer_is1 © O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player © O42 - Logiciel: WinRAR 5.11 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver © O42 - Logiciel: Roxio Creator Tools - (.Roxio.) [HKLM] -- {0394CDC8-FABD-4ed8-B104-03393876DFDF} © O42 - Logiciel: LWS Pictures And Video - (.Logitech.) [HKLM] -- {08610298-29AE-445B-B37D-EFBE05802967} © O42 - Logiciel: Python 2.5 - (.Martin v. Löwis.) [HKLM] -- {0A2C5854-557E-48C8-835A-3B9F074BDCAA} © O42 - Logiciel: HP Active Support Library - (.Hewlett-Packard.) [HKLM] -- {0A47BAFF-D4FF-4BD3-96CA-02A22EA62722} © O42 - Logiciel: Roxio Creator Data - (.Roxio.) [HKLM] -- {0D397393-9B50-4c52-84D5-77E344289F87} © O42 - Logiciel: HP Total Care Advisor - (.Hewlett-Packard.) [HKLM] -- {0DDA7620-4F8B-43B3-8828-CA5EE292FA3B} © O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A} © O42 - Logiciel: Roxio Creator EasyArchive - (.Roxio.) [HKLM] -- {11F93B4B-48F0-4A4E-AE77-DFA96A99664B} © O42 - Logiciel: muvee autoProducer 6.0 - (.muvee Technologies.) [HKLM] -- {14AF024E-2E3B-49D0-A175-D1C1A06B155A} © O42 - Logiciel: CameraHelperMsi - (.Logitech.) [HKLM] -- {15634701-BACE-4449-8B25-1567DA8C9FD3} © O42 - Logiciel: LWS Help_main - (.Logitech.) [HKLM] -- {1651216E-E7AD-4250-92A1-FB8ED61391C9} © O42 - Logiciel: LWS Twitter - (.Logitech.) [HKLM] -- {174A3B31-4C43-43DD-866F-73C9DB887B48} © O42 - Logiciel: Facebook Video Calling 3.1.0.521 - (.Skype Limited.) [HKLM] -- {2091F234-EB58-4B80-8C96-8EB78C808CF7} © O42 - Logiciel: LWS YouTube Plugin - (.Logitech.) [HKLM] -- {21DF0294-6B9D-4741-AB6F-B2ABFBD2387E} © O42 - Logiciel: ActiveCheck component for HP Active Support Library - (.Hewlett-Packard.) [HKLM] -- {254C37AA-6B72-4300-84F6-98A82419187E} © O42 - Logiciel: Roxio Activation Module - (.Roxio.) [HKLM] -- {35E1EC43-D4FC-4E4A-AAB3-20DDA27E8BB0} © O42 - Logiciel: erLT - (.Logitech, Inc..) [HKLM] -- {3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C} © O42 - Logiciel: HP Easy Setup - Frontend - (.Hewlett-Packard.) [HKLM] -- {40F7AED3-0C7D-4582-99F6-484A515C73F2} © O42 - Logiciel: ccc-Branding - (.ATI.) [HKLM] -- {4F027497-15AE-4DE5-B3BC-8E721C6127DE} © O42 - Logiciel: Photorécit 3 pour Windows - (.Microsoft Corporation.) [HKLM] -- {4F41AD68-89F2-4262-A32C-2F70B01FCE9E} © O42 - Logiciel: OpenOffice 4.0.0 - (.Apache Software Foundation.) [HKLM] -- {4F8C9861-DDCF-4EE8-978C-35B691C406B3} © O42 - Logiciel: HP Picasso Media Center Add-In - (.HP.) [HKLM] -- {55979C41-7D6A-49CC-B591-64AC1BBE2C8B} © O42 - Logiciel: Roxio Creator Copy - (.Roxio.) [HKLM] -- {619CDD8A-14B6-43a1-AB6C-0F4EE48CE048} © O42 - Logiciel: Roxio Express Labeler 3 - (.Roxio.) [HKLM] -- {6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA} © O42 - Logiciel: HPAsset component for HP Active Support Library - (.Hewlett-Packard.) [HKLM] -- {669D4A35-146B-4314-89F1-1AC3D7B88367} © O42 - Logiciel: Revo Uninstaller Pro 3.1.2 - (.VS Revo Group, Ltd..) [HKLM] -- {67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1 O42 - Logiciel: PerfectDisk Professional Business - (.Raxco Software Inc..) [HKLM] -- {682B22AB-EAAA-4B1C-83AF-B26E7D4ED01E} O42 - Logiciel: Skype™ 7.8 - (.Skype Technologies S.A..) [HKLM] -- {6A0549A9-1B96-498C-ACBC-3943001FEB19} © O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {6B1CB38D-E2E4-4a30-933D-EFDEBA76AD9C} © O42 - Logiciel: HP Active Support Library 32 bit components - (.Hewlett-Packard.) [HKLM] -- {6D3DB611-D5E8-4E4B-8952-0D3F549F9CC6} © O42 - Logiciel: LWS Gallery - (.Logitech.) [HKLM] -- {6F76EC3C-34B1-436E-97FB-48C58D7BEDCD} © O42 - Logiciel: LWS Motion Detection - (.Logitech.) [HKLM] -- {71E66D3F-A009-44AB-8784-75E2819BA4BA} © O42 - Logiciel: Nuance Power PDF Advanced - (.Nuance Communications, Inc..) [HKLM] -- {7CC15735-B202-44A4-9900-89AD75614C32} © O42 - Logiciel: LWS Launcher - (.Logitech.) [HKLM] -- {83C8FA3C-F4EA-46C4-8392-D3CE353738D6} © O42 - Logiciel: Roxio Creator Audio - (.Roxio.) [HKLM] -- {83FFCFC7-88C6-41c6-8752-958A45325C82} © O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} © O42 - Logiciel: LWS Webcam Software - (.Logitech.) [HKLM] -- {8937D274-C281-42E4-8CDB-A0B2DF979189} © O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} © O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM] -- {8C6027FD-53DC-446D-BB75-CACD7028A134} © O42 - Logiciel: Roxio MyDVD Basic v9 - (.Roxio.) [HKLM] -- {938B1CD7-7C60-491E-AA90-1F1888168240} © O42 - Logiciel: LWS WLM Plugin - (.Logitech.) [HKLM] -- {9DAEA76B-E50F-4272-A595-0124E826553D} © O42 - Logiciel: HP Customer Feedback - (.Hewlett-Packard.) [HKLM] -- {9DBA770F-BF73-4D39-B1DF-6035D95268FC} © O42 - Logiciel: MSI to redistribute MS VS2005 CRT libraries - (.The Firebird Project.) [HKLM] -- {A8D93648-9F7F-407D-915C-62044644C3DA} © O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM] -- {AB5E289E-76BF-4251-9F3F-9B763F681AE0} © O42 - Logiciel: Adobe Acrobat XI Pro - (.Adobe Systems.) [HKLM] -- {AC76BA86-1033-FFFF-7760-000000000006} © O42 - Logiciel: Roxio Creator Basic v9 - (.Roxio.) [HKLM] -- {C8B0680B-CDAE-4809-9F91-387B6DE00F7C} © O42 - Logiciel: Logitech Webcam Software - (.Logitech Inc..) [HKLM] -- {D40EB009-0499-459c-A8AF-C9C110766215} © O42 - Logiciel: Nuance Power PDF Hotfix-14219.939.14357 - (.Nuance Communications, Inc..) [HKLM] -- {E462B5A4-C4A8-4128-BC3B-14885102B95A} © O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} © O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} © O42 - Logiciel: LWS Facebook - (.Logitech.) [HKLM] -- {FF167195-9EE4-46C0-8CD7-FBA3457E88AB} © O42 - Logiciel: PhotoFiltre Studio X - (...) [HKCU] -- PhotoFiltre Studio X ---\\ HKCU & HKLM Software Keys (107) - 11s HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\Apple Inc. HKLM\SOFTWARE\ATI HKLM\SOFTWARE\ATI Technologies HKLM\SOFTWARE\AVC3 HKLM\SOFTWARE\AVS4YOU HKLM\SOFTWARE\BitDefender HKLM\SOFTWARE\BitDefender Parental Control HKLM\SOFTWARE\Bitdefender SafeBox HKLM\SOFTWARE\BitdefenderSavedSettings HKLM\SOFTWARE\Citrix HKLM\SOFTWARE\Debug HKLM\SOFTWARE\FileZilla 3 HKLM\SOFTWARE\FileZilla Client HKLM\SOFTWARE\Firebird Project HKLM\SOFTWARE\Google HKLM\SOFTWARE\Hewlett-Packard HKLM\SOFTWARE\HP HKLM\SOFTWARE\illiminable HKLM\SOFTWARE\IM Providers HKLM\SOFTWARE\InstallShield HKLM\SOFTWARE\Intel HKLM\SOFTWARE\JavaSoft HKLM\SOFTWARE\jbead HKLM\SOFTWARE\Licenses HKLM\SOFTWARE\LightScribe HKLM\SOFTWARE\logishrd HKLM\SOFTWARE\Logitech HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\MAGIX HKLM\SOFTWARE\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Malwarebytes' Anti-Malware (Trial) HKLM\SOFTWARE\MAXSOFT-OCRON HKLM\SOFTWARE\McAfee.com HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\mozilla.org HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\muvee Technologies HKLM\SOFTWARE\Notepad++ HKLM\SOFTWARE\Nuance HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\OpenOffice HKLM\SOFTWARE\PC-Doctor HKLM\SOFTWARE\Piriform HKLM\SOFTWARE\PopCap HKLM\SOFTWARE\Raxco HKLM\SOFTWARE\Realtek HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\Roxio HKLM\SOFTWARE\ScanSoft HKLM\SOFTWARE\Sensible Vision HKLM\SOFTWARE\Skype HKLM\SOFTWARE\Sonic HKLM\SOFTWARE\SRS Labs HKLM\SOFTWARE\Symantec HKLM\SOFTWARE\SymNRT HKLM\SOFTWARE\VideoLAN HKLM\SOFTWARE\Wilson WindowWare HKLM\SOFTWARE\Windows HKLM\SOFTWARE\WinRAR HKLM\SOFTWARE\Wow6432Node HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\ATI HKCU\SOFTWARE\ATI Technologies Inc. HKCU\SOFTWARE\AVS4YOU HKCU\SOFTWARE\Bitdefender HKCU\SOFTWARE\Facebook HKCU\SOFTWARE\FLEXnet HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\HP Guide HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\InstallShield HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\Leadertech HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\LogiShrd HKCU\SOFTWARE\Logitech HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\MainConcept HKCU\SOFTWARE\MainConcept (Muvee) HKCU\SOFTWARE\Mirage HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\Northcode Inc HKCU\SOFTWARE\Nuance HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\OpenOffice HKCU\SOFTWARE\PhotoFiltre Studio X HKCU\SOFTWARE\Pige Electronique HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\Raxco HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\ScanSoft HKCU\SOFTWARE\Skype HKCU\SOFTWARE\SkypeRS HKCU\SOFTWARE\The Silicon Realms Toolworks HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\VS Revo Group HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\ZEON HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\JavaSoft ---\\ Contenu des dossiers Programmes (232) - 26s O43 - CFD: 2014/11/12 16:20:58 - [] D -- C:\Program Files\Adobe O43 - CFD: 2013/09/05 17:47:45 - [] D -- C:\Program Files\AIMP3 O43 - CFD: 2013/09/05 19:35:11 - [] D -- C:\Program Files\Alcohol Soft O43 - CFD: 2007/08/03 18:31:57 - [] D -- C:\Program Files\ATI O43 - CFD: 2007/08/03 18:32:54 - [] D -- C:\Program Files\ATI Technologies O43 - CFD: 2015/05/12 21:42:46 - [] D -- C:\Program Files\AVS4YOU O43 - CFD: 2015/08/05 15:01:37 - [] D -- C:\Program Files\BeadTool4 O43 - CFD: 2015/01/12 16:17:07 - [] D -- C:\Program Files\Bitdefender O43 - CFD: 2015/07/09 10:44:25 - [] D -- C:\Program Files\CCleaner O43 - CFD: 2015/08/24 07:53:26 - [] D -- C:\Program Files\Common Files O43 - CFD: 2007/08/04 03:41:59 - [] D -- C:\Program Files\EasyBits O43 - CFD: 2013/09/05 18:48:52 - [] D -- C:\Program Files\EssentialPIM Pro O43 - CFD: 2013/09/05 17:02:57 - [0] SHD -- C:\Program Files\Fichiers communs O43 - CFD: 2015/01/15 15:50:46 - [] D -- C:\Program Files\FileZilla FTP Client O43 - CFD: 2013/09/10 06:52:41 - [] D -- C:\Program Files\FinalWire O43 - CFD: 2013/09/05 18:48:44 - [] D -- C:\Program Files\Firebird O43 - CFD: 2015/02/06 22:42:14 - [] D -- C:\Program Files\Google O43 - CFD: 2007/08/03 18:55:00 - [] D -- C:\Program Files\Hewlett-Packard O43 - CFD: 2007/08/03 18:49:20 - [] D -- C:\Program Files\HP O43 - CFD: 2007/08/03 18:54:39 - [] HD -- C:\Program Files\InstallShield Installation Information O43 - CFD: 2015/08/20 07:53:37 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 2014/09/14 21:51:27 - [] D -- C:\Program Files\jbead O43 - CFD: 2013/09/06 16:00:50 - [] D -- C:\Program Files\Logitech O43 - CFD: 2015/07/09 14:28:59 - [] D -- C:\Program Files\Malwarebytes Anti-Malware O43 - CFD: 2014/11/19 14:45:42 - [] D -- C:\Program Files\Microsoft Analysis Services O43 - CFD: 2014/11/11 08:43:23 - [] D -- C:\Program Files\Microsoft CAPICOM 2.1.0.2 O43 - CFD: 2006/11/02 14:37:34 - [] D -- C:\Program Files\Microsoft Games O43 - CFD: 2014/11/19 14:57:36 - [] D -- C:\Program Files\Microsoft Office O43 - CFD: 2015/08/14 08:22:00 - [] D -- C:\Program Files\Microsoft Silverlight O43 - CFD: 2014/11/19 14:57:34 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition O43 - CFD: 2014/11/19 14:57:34 - [] D -- C:\Program Files\Microsoft Sync Framework O43 - CFD: 2014/11/19 14:58:06 - [] D -- C:\Program Files\Microsoft Synchronization Services O43 - CFD: 2014/11/19 14:54:23 - [] D -- C:\Program Files\Microsoft Visual Studio 8 O43 - CFD: 2014/11/11 08:41:12 - [] D -- C:\Program Files\Microsoft Works O43 - CFD: 2014/11/19 14:57:34 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 2013/09/06 06:31:19 - [] D -- C:\Program Files\Movie Maker O43 - CFD: 2015/08/29 07:45:21 - [] D -- C:\Program Files\Mozilla Firefox O43 - CFD: 2015/08/29 07:45:22 - [] D -- C:\Program Files\Mozilla Maintenance Service O43 - CFD: 2013/12/17 16:17:44 - [] D -- C:\Program Files\Mozilla Thunderbird O43 - CFD: 2014/11/19 14:58:39 - [] D -- C:\Program Files\MSBuild O43 - CFD: 2013/09/06 05:45:06 - [0] D -- C:\Program Files\MSXML 4.0 O43 - CFD: 2007/08/03 18:47:30 - [] D -- C:\Program Files\muvee Technologies O43 - CFD: 2014/09/14 21:47:17 - [] D -- C:\Program Files\Notepad++ O43 - CFD: 2015/03/04 15:29:32 - [] D -- C:\Program Files\Nuance O43 - CFD: 2013/09/06 21:10:57 - [] D -- C:\Program Files\OpenOffice 4 O43 - CFD: 2007/08/03 19:11:28 - [] D -- C:\Program Files\PC-Doctor 5 for Windows O43 - CFD: 2014/05/13 18:12:59 - [] D -- C:\Program Files\Photo Story 3 for Windows O43 - CFD: 2015/02/09 16:25:24 - [] D -- C:\Program Files\PhotoFiltre Studio X O43 - CFD: 2015/01/12 16:45:02 - [] D -- C:\Program Files\Raxco O43 - CFD: 2007/08/03 18:35:08 - [] D -- C:\Program Files\Realtek O43 - CFD: 2006/11/02 14:37:34 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 2007/08/03 18:46:11 - [] D -- C:\Program Files\Roxio O43 - CFD: 2007/08/03 18:57:12 - [] D -- C:\Program Files\Services en ligne O43 - CFD: 2015/08/24 07:53:27 - [] RD -- C:\Program Files\Skype O43 - CFD: 2014/02/16 16:20:30 - [] D -- C:\Program Files\STDU Viewer O43 - CFD: 2006/11/02 15:01:55 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 2015/05/12 18:13:07 - [] D -- C:\Program Files\VideoLAN O43 - CFD: 2015/01/12 16:39:08 - [] D -- C:\Program Files\VS Revo Group O43 - CFD: 2013/09/05 19:08:49 - [] D -- C:\Program Files\Windows Calendar O43 - CFD: 2013/09/05 19:08:49 - [] D -- C:\Program Files\Windows Collaboration O43 - CFD: 2013/09/05 19:08:48 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 2015/05/13 08:39:13 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 2013/09/06 06:31:39 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 2015/06/11 08:51:58 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 2013/09/05 17:02:57 - [] D -- C:\Program Files\Windows NT O43 - CFD: 2013/09/05 19:08:49 - [] D -- C:\Program Files\Windows Photo Gallery O43 - CFD: 2013/09/06 06:31:32 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 2013/09/05 19:08:49 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 2014/11/04 15:27:56 - [] D -- C:\Program Files\WinRAR O43 - CFD: 2013/09/06 05:00:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2013/09/06 05:00:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2013/09/05 17:47:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP3 O43 - CFD: 2015/05/12 21:42:46 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVS4YOU O43 - CFD: 2015/08/05 15:01:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BeadTool 4 O43 - CFD: 2015/01/20 07:31:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender 2015 O43 - CFD: 2007/08/03 18:32:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center O43 - CFD: 2007/08/03 18:31:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Install Manager O43 - CFD: 2015/07/09 10:43:10 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 2013/09/05 18:48:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EssentialPIM Pro O43 - CFD: 2013/09/05 18:39:21 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Extras and Upgrades O43 - CFD: 2015/01/15 15:50:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client O43 - CFD: 2013/09/05 18:48:46 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firebird 2.1 (Win32) O43 - CFD: 2013/09/05 18:39:22 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2007/08/03 18:49:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP O43 - CFD: 2014/09/14 21:51:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\jbead O43 - CFD: 2007/08/03 18:54:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Les manuels de l'utilisateur O43 - CFD: 2007/08/03 18:47:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LightScribe Direct Disc Labeling O43 - CFD: 2013/09/06 15:50:34 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech O43 - CFD: 2006/11/02 14:56:46 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/07/09 14:29:00 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 2014/11/19 14:59:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 2015/08/14 08:04:07 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 2014/11/11 08:41:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works O43 - CFD: 2007/08/03 18:47:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\muvee autoProducer 6.0 O43 - CFD: 2013/09/05 17:49:08 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ O43 - CFD: 2015/03/04 15:30:23 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nuance Power PDF Advanced O43 - CFD: 2013/09/06 21:12:54 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.0.0 O43 - CFD: 2007/08/03 19:08:36 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils et Aide O43 - CFD: 2015/02/09 16:25:25 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre Studio X O43 - CFD: 2015/01/12 16:39:12 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro O43 - CFD: 2007/08/03 18:46:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Roxio O43 - CFD: 2013/09/05 17:09:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Services en ligne O43 - CFD: 2014/11/19 14:59:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint O43 - CFD: 2015/08/24 07:53:29 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 2015/01/20 07:23:42 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2014/02/16 16:20:18 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\STDUtility O43 - CFD: 2006/11/02 14:37:34 - [] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2015/05/12 18:13:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 2014/11/04 15:27:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 2015/01/12 16:02:31 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2013/09/05 17:02:57 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2007/08/03 18:37:18 - [] D -- C:\ProgramData\ATI O43 - CFD: 2015/05/12 21:43:15 - [] D -- C:\ProgramData\AVS4YOU O43 - CFD: 2015/01/05 13:23:48 - [] D -- C:\ProgramData\bdch O43 - CFD: 2013/09/06 07:13:32 - [] D -- C:\ProgramData\BDLogging O43 - CFD: 2015/01/20 07:33:39 - [] D -- C:\ProgramData\Bitdefender O43 - CFD: 2013/09/05 17:02:57 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 2013/09/05 17:02:57 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2013/09/05 17:02:57 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 2014/11/19 07:36:37 - [] D -- C:\ProgramData\FLEXnet O43 - CFD: 2013/09/05 18:44:43 - [] D -- C:\ProgramData\Google O43 - CFD: 2013/09/05 17:13:50 - [] D -- C:\ProgramData\Hewlett-Packard O43 - CFD: 2007/08/03 18:38:05 - [] D -- C:\ProgramData\HP O43 - CFD: 2015/03/04 15:31:17 - [] D -- C:\ProgramData\Licenses O43 - CFD: 2013/09/06 16:01:31 - [] D -- C:\ProgramData\LogiShrd O43 - CFD: 2015/04/03 07:38:41 - [] D -- C:\ProgramData\Logs O43 - CFD: 2014/11/19 07:36:37 - [] D -- C:\ProgramData\Macrovision O43 - CFD: 2015/07/09 14:28:56 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 2013/09/05 17:02:57 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 2015/01/16 12:17:25 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2015/08/14 08:01:53 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 2013/09/05 17:02:57 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 2013/09/05 17:57:52 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 2007/08/03 18:47:30 - [] D -- C:\ProgramData\muvee Technologies O43 - CFD: 2015/03/04 15:31:06 - [] D -- C:\ProgramData\Nuance O43 - CFD: 2013/09/05 19:14:43 - [] D -- C:\ProgramData\OO Software O43 - CFD: 2014/10/16 06:41:05 - [] D -- C:\ProgramData\Oracle O43 - CFD: 2007/08/03 18:53:32 - [] D -- C:\ProgramData\PC-Doctor O43 - CFD: 2015/01/12 16:45:03 - [] D -- C:\ProgramData\Raxco O43 - CFD: 2013/09/06 14:14:39 - [] D -- C:\ProgramData\regid.1986-12.com.adobe O43 - CFD: 2007/08/03 18:45:54 - [] D -- C:\ProgramData\Roxio O43 - CFD: 2015/08/24 07:53:41 - [] D -- C:\ProgramData\Skype O43 - CFD: 2007/08/03 18:38:57 - [] D -- C:\ProgramData\Sonic O43 - CFD: 2013/09/05 21:45:59 - [] D -- C:\ProgramData\Sun O43 - CFD: 2013/09/05 17:39:05 - [] D -- C:\ProgramData\Symantec O43 - CFD: 2015/08/19 22:33:50 - [0] AD -- C:\ProgramData\TEMP O43 - CFD: 2015/01/12 16:39:11 - [] D -- C:\ProgramData\VS Revo Group O43 - CFD: 2013/09/05 23:14:28 - [] D -- C:\ProgramData\WindowsSearch O43 - CFD: 2015/01/12 15:31:03 - [] D -- C:\ProgramData\Zeon O43 - CFD: 2015/01/12 16:04:50 - [] D -- C:\Program Files\Common Files\Adobe O43 - CFD: 2015/05/12 21:42:39 - [] D -- C:\Program Files\Common Files\AVSMedia O43 - CFD: 2015/01/20 07:29:03 - [] D -- C:\Program Files\Common Files\Bitdefender O43 - CFD: 2014/11/12 15:06:19 - [] D -- C:\Program Files\Common Files\DESIGNER O43 - CFD: 2007/08/03 18:38:05 - [] D -- C:\Program Files\Common Files\HP O43 - CFD: 2014/11/19 07:36:37 - [] D -- C:\Program Files\Common Files\InstallShield O43 - CFD: 2014/10/16 06:40:37 - [] D -- C:\Program Files\Common Files\Java O43 - CFD: 2007/08/03 18:47:09 - [] AD -- C:\Program Files\Common Files\LightScribe O43 - CFD: 2013/09/06 16:01:37 - [] D -- C:\Program Files\Common Files\LogiShrd O43 - CFD: 2007/08/03 18:46:55 - [] AD -- C:\Program Files\Common Files\LS Getting Started O43 - CFD: 2014/11/19 14:58:53 - [] D -- C:\Program Files\Common Files\microsoft shared O43 - CFD: 2007/08/03 18:47:36 - [] D -- C:\Program Files\Common Files\muvee Technologies O43 - CFD: 2007/08/03 18:46:11 - [] D -- C:\Program Files\Common Files\PX Storage Engine O43 - CFD: 2015/01/12 16:45:02 - [] D -- C:\Program Files\Common Files\Raxco O43 - CFD: 2007/08/03 18:45:46 - [] D -- C:\Program Files\Common Files\Roxio Shared O43 - CFD: 2006/11/02 13:18:33 - [] D -- C:\Program Files\Common Files\Services O43 - CFD: 2015/08/24 07:53:27 - [] D -- C:\Program Files\Common Files\Skype O43 - CFD: 2007/08/03 18:45:46 - [] D -- C:\Program Files\Common Files\Sonic Shared O43 - CFD: 2006/11/02 13:18:33 - [] D -- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 2014/02/16 16:20:17 - [] D -- C:\Program Files\Common Files\STDUtility O43 - CFD: 2007/08/03 18:39:14 - [] D -- C:\Program Files\Common Files\SureThing Shared O43 - CFD: 2013/09/05 17:39:05 - [] D -- C:\Program Files\Common Files\Symantec Shared O43 - CFD: 2014/11/20 12:35:39 - [] D -- C:\Program Files\Common Files\System O43 - CFD: 2013/09/06 18:45:57 - [] D -- C:\Users\nicole\AppData\Roaming\Adobe O43 - CFD: 2015/05/12 17:48:41 - [] D -- C:\Users\nicole\AppData\Roaming\AIMP3 O43 - CFD: 2013/09/05 17:13:01 - [] D -- C:\Users\nicole\AppData\Roaming\ATI O43 - CFD: 2015/05/12 21:43:05 - [] D -- C:\Users\nicole\AppData\Roaming\AVS4YOU O43 - CFD: 2015/08/05 16:26:43 - [] D -- C:\Users\nicole\AppData\Roaming\BeadTool O43 - CFD: 2015/01/20 07:31:52 - [] D -- C:\Users\nicole\AppData\Roaming\Bitdefender O43 - CFD: 2015/08/05 15:01:19 - [0] D -- C:\Users\nicole\AppData\Roaming\Cache O43 - CFD: 2015/06/01 17:27:13 - [] D -- C:\Users\nicole\AppData\Roaming\EssentialPIM Pro O43 - CFD: 2015/01/19 22:39:36 - [] D -- C:\Users\nicole\AppData\Roaming\FileZilla O43 - CFD: 2014/11/19 14:37:34 - [] D -- C:\Users\nicole\AppData\Roaming\FLEXnet O43 - CFD: 2013/09/05 17:40:02 - [0] D -- C:\Users\nicole\AppData\Roaming\Google O43 - CFD: 2013/09/05 17:13:43 - [] D -- C:\Users\nicole\AppData\Roaming\Hewlett-Packard O43 - CFD: 2013/09/05 19:37:12 - [] D -- C:\Users\nicole\AppData\Roaming\Identities O43 - CFD: 2013/09/06 16:00:53 - [] D -- C:\Users\nicole\AppData\Roaming\Leadertech O43 - CFD: 2015/01/14 09:42:20 - [] D -- C:\Users\nicole\AppData\Roaming\Macromedia O43 - CFD: 2013/09/05 19:39:23 - [] D -- C:\Users\nicole\AppData\Roaming\Malwarebytes O43 - CFD: 2006/11/02 14:37:34 - [0] D -- C:\Users\nicole\AppData\Roaming\Media Center Programs O43 - CFD: 2015/03/06 17:49:52 - [] SD -- C:\Users\nicole\AppData\Roaming\Microsoft O43 - CFD: 2013/12/17 16:27:28 - [] D -- C:\Users\nicole\AppData\Roaming\Mozilla O43 - CFD: 2014/09/14 21:47:16 - [] D -- C:\Users\nicole\AppData\Roaming\Notepad++ O43 - CFD: 2015/03/04 15:31:06 - [] D -- C:\Users\nicole\AppData\Roaming\Nuance O43 - CFD: 2013/09/30 14:46:29 - [] D -- C:\Users\nicole\AppData\Roaming\OpenOffice O43 - CFD: 2015/02/09 16:26:06 - [] D -- C:\Users\nicole\AppData\Roaming\PhotoFiltre Studio X O43 - CFD: 2013/09/05 21:24:28 - [0] D -- C:\Users\nicole\AppData\Roaming\QuickScan O43 - CFD: 2015/09/04 22:35:16 - [] D -- C:\Users\nicole\AppData\Roaming\Skype O43 - CFD: 2014/05/17 17:44:03 - [] D -- C:\Users\nicole\AppData\Roaming\SolidDocuments O43 - CFD: 2015/07/15 14:19:27 - [] D -- C:\Users\nicole\AppData\Roaming\vlc O43 - CFD: 2013/09/05 18:48:15 - [] D -- C:\Users\nicole\AppData\Roaming\WinRAR O43 - CFD: 2015/03/04 15:32:14 - [] D -- C:\Users\nicole\AppData\Roaming\Zeon O43 - CFD: 2015/09/05 07:39:27 - [] D -- C:\Users\nicole\AppData\Roaming\ZHP O43 - CFD: 2015/01/19 23:00:06 - [] D -- C:\Users\nicole\AppData\Local\Adobe O43 - CFD: 2013/09/05 17:09:29 - [0] SHD -- C:\Users\nicole\AppData\Local\Application Data O43 - CFD: 2013/12/17 16:33:12 - [] D -- C:\Users\nicole\AppData\Local\Apps O43 - CFD: 2013/09/05 17:13:01 - [] D -- C:\Users\nicole\AppData\Local\ATI O43 - CFD: 2013/12/17 16:33:24 - [0] D -- C:\Users\nicole\AppData\Local\Deployment O43 - CFD: 2014/08/25 11:12:56 - [] D -- C:\Users\nicole\AppData\Local\Facebook O43 - CFD: 2015/02/06 22:41:54 - [] D -- C:\Users\nicole\AppData\Local\Google O43 - CFD: 2013/09/05 17:13:37 - [] D -- C:\Users\nicole\AppData\Local\Hewlett-Packard O43 - CFD: 2013/09/05 17:09:29 - [0] SHD -- C:\Users\nicole\AppData\Local\Historique O43 - CFD: 2013/09/06 16:26:32 - [] D -- C:\Users\nicole\AppData\Local\Logitech® Webcam Software O43 - CFD: 2015/01/14 09:42:20 - [] D -- C:\Users\nicole\AppData\Local\Macromedia O43 - CFD: 2015/05/12 21:24:22 - [] D -- C:\Users\nicole\AppData\Local\Microsoft O43 - CFD: 2013/09/07 15:28:34 - [0] D -- C:\Users\nicole\AppData\Local\Microsoft Help O43 - CFD: 2013/09/05 17:58:12 - [] D -- C:\Users\nicole\AppData\Local\Mozilla O43 - CFD: 2015/03/04 15:31:06 - [] D -- C:\Users\nicole\AppData\Local\Nuance O43 - CFD: 2014/03/15 07:24:53 - [] D -- C:\Users\nicole\AppData\Local\Skype O43 - CFD: 2014/02/16 16:23:29 - [] D -- C:\Users\nicole\AppData\Local\STDUViewer O43 - CFD: 2015/09/05 07:39:08 - [] D -- C:\Users\nicole\AppData\Local\Temp O43 - CFD: 2013/09/05 17:09:29 - [0] SHD -- C:\Users\nicole\AppData\Local\Temporary Internet Files O43 - CFD: 2015/07/24 18:19:25 - [] D -- C:\Users\nicole\AppData\Local\VirtualStore O43 - CFD: 2013/09/05 19:45:20 - [] D -- C:\Users\nicole\AppData\Local\VS Revo Group O43 - CFD: 2006/11/02 14:54:36 - [] RD -- C:\Users\nicole\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2013/09/05 17:12:29 - [] RD -- C:\Users\nicole\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/05/12 21:42:46 - [] D -- C:\Users\nicole\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AVS4YOU O43 - CFD: 2014/09/14 21:51:27 - [0] D -- C:\Users\nicole\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\jbead O43 - CFD: 2006/11/02 14:50:41 - [] RD -- C:\Users\nicole\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2013/09/05 17:49:08 - [0] D -- C:\Users\nicole\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ O43 - CFD: 2015/02/09 16:25:25 - [0] D -- C:\Users\nicole\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre Studio X O43 - CFD: 2014/11/19 14:23:19 - [] RD -- C:\Users\nicole\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2014/11/04 15:27:56 - [] D -- C:\Users\nicole\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ Enumération des clés StartupReg (13) - 2s O53 - SMSR:HKLM\...\startupreg\Acrobat Assistant 8.0 [Key] . (.Adobe Systems Inc. - AcroTray.) -- C:\Program Files\Adobe\Acrobat 11.0\Acrobat\acrotray.exe © O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe © O53 - SMSR:HKLM\...\startupreg\AdobeAAMUpdater-1.0 [Key] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe © O53 - SMSR:HKLM\...\startupreg\HP Health Check Scheduler [Key] . (.Hewlett-Packard - HP Health Check Scheduler.) -- c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe © O53 - SMSR:HKLM\...\startupreg\HP Software Update [Key] . (.Hewlett-Packard Co. - Hewlett-Packard Product Assistant.) -- c:\Program Files\HP\HP Software Update\HPWuSchd2.exe © O53 - SMSR:HKLM\...\startupreg\hpsysdrv [Key] . (.Hewlett-Packard Company - hpsysdrv.) -- c:\hp\support\hpsysdrv.exe © O53 - SMSR:HKLM\...\startupreg\ISUSPM [Key] . (.Flexera Software LLC. - Common Software Manager.) -- C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe © O53 - SMSR:HKLM\...\startupreg\Nuance Power PDF Advanced-reminder [Key] . (.Nuance Communications, Inc. - Ereg (Unicode version).) -- C:\Program Files\Nuance\Power PDF\Ereg\Ereg.exe © O53 - SMSR:HKLM\...\startupreg\NuanPowerPdf1NPDFLM [Key] . (.Nuance Communications, Inc. - NPdflm.exe.) -- C:\Program Files\Nuance\Power PDF\NPDFLM.exe © O53 - SMSR:HKLM\...\startupreg\PowerPDF Registry Controller [Key] . (.Nuance Communications, Inc. - REGISTRYCONTROLLER.EXE.) -- C:\Program Files\Nuance\Power PDF\RegistryController.exe © O53 - SMSR:HKLM\...\startupreg\PowerPDFInboxMonitor [Key] . (.Nuance Communications, Inc. - InboxMonitor.exe.) -- C:\Program Files\Nuance\Power PDF\InboxMonitor.exe © O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateReg [Key] . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\WINDOWS\System32\jureg.exe © O53 - SMSR:HKLM\...\startupreg\Windows Defender [Key] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe © ---\\ Liste des pilotes du système (86) - 32s O58 - SDL:2006/11/02 11:51:38 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [420968] © O58 - SDL:2006/11/02 11:51:32 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297576] © O58 - SDL:2006/11/02 11:50:35 A . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) -- C:\Windows\System32\drivers\adpu160m.sys [98408] © O58 - SDL:2006/11/02 11:51:00 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [147048] © O58 - SDL:2006/11/02 11:49:20 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14952] © O58 - SDL:2006/11/02 11:50:09 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [67688] © O58 - SDL:2006/11/02 11:50:10 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [67688] © O58 - SDL:2007/07/10 02:35:38 A . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [2769408] © O58 - SDL:2015/02/24 17:59:55 A . (.BitDefender - Active Virus Control filter driver.) -- C:\Windows\System32\drivers\avc3.sys [1083448] © O58 - SDL:2015/02/24 17:59:51 A . (.BitDefender - BitDefender AntiVirus Active Virus Control.) -- C:\Windows\System32\drivers\avchv.sys [243456] © O58 - SDL:2015/02/24 18:00:28 A . (.BitDefender - Active Virus Control Kernel Filtering drive.) -- C:\Windows\System32\drivers\avckf.sys [548336] © O58 - SDL:2013/11/13 16:41:24 A . (.BitDefender LLC - BitDefender Firewall NDIS6 Filter Driver.) -- C:\Windows\System32\drivers\BdfNdisf6.sys [77632] © O58 - SDL:2015/02/24 18:00:29 A . (.BitDefender SRL - BitDefender SandBox Filter Driver.) -- C:\Windows\System32\drivers\bdsandbox.sys [66832] O58 - SDL:2012/04/17 15:40:22 A . (.BitDefender - FileVault Disk Driver.) -- C:\Windows\System32\drivers\bdvedisk.sys [72704] © O58 - SDL:2006/11/02 10:24:45 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] © O58 - SDL:2006/11/02 10:24:46 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] © O58 - SDL:2006/11/02 10:25:24 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [71808] © O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] © O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] © O58 - SDL:2006/11/02 10:24:47 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] © O58 - SDL:2006/10/18 03:00:00 A . (.Sonic Solutions - CDR4 CD and DVD Place Holder Driver (see Px.) -- C:\Windows\System32\drivers\cdr4_xp.sys [2432] © O58 - SDL:2006/10/18 03:00:00 A . (.Sonic Solutions - CDRAL Place Holder Driver (see PxHelp).) -- C:\Windows\System32\drivers\cdralw2k.sys [2560] © O58 - SDL:2006/11/02 11:49:28 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [16488] © O58 - SDL:2012/09/11 16:24:06 A . (.Raxco Software, Inc. - Defragmentation Support Driver.) -- C:\Windows\System32\drivers\DefragFs.sys [104088] O58 - SDL:2006/11/02 11:50:11 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [71272] © O58 - SDL:2006/11/02 09:30:54 A . (.Intel Corporation - Intel(R) PRO/1000 Adapter NDIS 6 deserializ.) -- C:\Windows\System32\drivers\E1G60I32.sys [117760] © O58 - SDL:2006/11/02 11:51:34 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [316520] © O58 - SDL:2015/03/31 16:22:08 A . (.BitDefender LLC - BitDefender Gonzales FileSystem Driver.) -- C:\Windows\System32\drivers\gzflt.sys [172936] © O58 - SDL:2006/11/02 11:50:10 A . (.Hewlett-Packard Company - Smart Array Storport Driver.) -- C:\Windows\System32\drivers\HpCISSs.sys [37480] © O58 - SDL:2006/11/02 11:51:25 A . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) -- C:\Windows\System32\drivers\iaStorV.sys [232040] © O58 - SDL:2006/11/02 11:50:17 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41576] © O58 - SDL:2006/11/02 11:50:07 A . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\System32\drivers\iteatapi.sys [35944] © O58 - SDL:2006/11/02 11:50:09 A . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\System32\drivers\iteraid.sys [35944] © O58 - SDL:2006/11/02 11:50:04 A . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [65640] © O58 - SDL:2006/11/02 11:50:05 A . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [65640] © O58 - SDL:2006/11/02 11:50:10 A . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [65640] © O58 - SDL:2012/09/21 21:08:48 A . (.Logitech Inc. - Logitech USB Video Class Filter Driver.) -- C:\Windows\System32\drivers\lvbusflt.sys [19688] © O58 - SDL:2012/09/21 21:09:00 A . (.Logitech Inc. - Logitech Kernel Audio Improvement Filter Dr.) -- C:\Windows\System32\drivers\lvrs.sys [310504] © O58 - SDL:2012/09/21 21:09:06 A . (.Logitech Inc. - Logitech USB Video Class Driver.) -- C:\Windows\System32\drivers\lvuvc.sys [4261224] © O58 - SDL:2015/06/18 08:41:36 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [23256] © O58 - SDL:2015/06/18 08:41:42 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [94936] © O58 - SDL:2015/09/05 07:34:38 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [98520] © O58 - SDL:2006/11/02 11:49:53 A . (.LSI Logic Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [28776] © O58 - SDL:2006/11/02 11:49:59 A . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\Mraid35x.sys [33384] © O58 - SDL:2015/06/18 08:41:50 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [51928] © O58 - SDL:2006/11/02 11:50:19 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [45160] © O58 - SDL:2006/11/02 09:36:50 A . (.N-trig Innovative Technologies - Pilote intégré de digitalisateur de tablett.) -- C:\Windows\System32\drivers\ntrigdigi.sys [20608] © O58 - SDL:2007/05/03 20:29:10 A . (.NVIDIA Corporation - NVIDIA MCP Networking Function Driver..) -- C:\Windows\System32\drivers\nvmfdx32.sys [1065384] © O58 - SDL:2006/11/02 11:50:24 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [88680] © O58 - SDL:2006/11/02 11:50:13 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [40040] © O58 - SDL:2007/07/02 19:37:08 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor32.sys [110112] © O58 - SDL:2012/08/23 18:56:24 RA . (.Raxco Software, Inc. - PerfectDisk OptiWrite Filter Driver.) -- C:\Windows\System32\drivers\PDFsFilter.sys [69016] O58 - SDL:2005/12/12 19:27:00 A . (.Hewlett-Packard Company - PS2 SYS.) -- C:\Windows\System32\drivers\PS2.sys [19072] © O58 - SDL:2007/06/20 03:00:00 A . (.Sonic Solutions - Px Engine Device Driver for Windows 2000/XP.) -- C:\Windows\System32\drivers\pxhelp20.sys [43872] © O58 - SDL:2006/11/02 11:51:45 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [900712] © O58 - SDL:2006/11/02 11:50:35 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106088] © O58 - SDL:2009/12/30 11:21:18 A . (.VS Revo Group - Revo Uninstaller Minifilter.) -- C:\Windows\System32\drivers\revoflt.sys [27192] © O58 - SDL:2007/07/11 12:21:00 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [1793880] © O58 - SDL:2006/11/02 08:37:21 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] © O58 - SDL:2006/11/02 11:50:10 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [38504] © O58 - SDL:2006/11/02 11:50:16 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [71784] © O58 - SDL:2013/09/05 19:22:51 A . (.Duplex Secure Ltd. - SCSI Pass Through Direct Host.) -- C:\Windows\System32\drivers\sptd.sys [466008] © O58 - SDL:2006/11/02 11:50:05 A . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) -- C:\Windows\System32\drivers\symc8xx.sys [35944] © O58 - SDL:2006/11/02 11:49:56 A . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_hi.sys [31848] © O58 - SDL:2006/11/02 11:50:03 A . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_u3.sys [34920] © O58 - SDL:2014/10/15 17:14:09 A . (.BitDefender S.R.L. - Trufos Kernel Module.) -- C:\Windows\System32\drivers\trufos.sys [408280] © O58 - SDL:2006/11/02 11:51:25 A . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\System32\drivers\uliahci.sys [235112] © O58 - SDL:2006/11/02 11:50:35 A . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win200.) -- C:\Windows\System32\drivers\ulsata.sys [98408] © O58 - SDL:2006/11/02 11:50:45 A . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\System32\drivers\ulsata2.sys [115816] © O58 - SDL:2006/11/02 11:49:30 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17512] © O58 - SDL:2006/11/02 11:50:41 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR X86-32.) -- C:\Windows\System32\drivers\vsmraid.sys [112232] © O58 - SDL:2006/11/02 09:09:42 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:2006/11/02 09:09:45 A . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:2006/11/02 09:09:41 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:2006/11/02 09:09:29 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:2006/11/02 09:09:35 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:2006/11/02 09:09:38 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:2006/11/02 09:09:40 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:2006/11/02 09:09:31 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:2006/11/02 09:09:20 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:2006/11/02 09:09:23 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:2006/11/02 09:09:24 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:2006/11/02 09:09:26 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:2006/11/02 09:09:22 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (2) - 41s O61 - LFC: 2015/09/05 07:36:53 A . (..) -- C:\Users\nicole\AppData\Local\ATI\ACE\Manifest.Bin [13836] O61 - LFC: 2015/09/02 22:53:42 A . (..) -- C:\Users\nicole\AppData\Local\Adobe\Acrobat\11.0\UserCache.bin [101946] ---\\ Associations Shell Spawning (11) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\WINDOWS\System32\control.exe © O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\WINDOWS\System32\eventvwr.exe © O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\System32\wscript.exe © O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe © O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe © ---\\ Menu de démarrage Internet (8) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\WINDOWS\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\WINDOWS\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\WINDOWS\System32\ie4uinit.exe © ---\\ Recherche d'infection sur les navigateurs (2) - 16s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {AD3301D3-4C67-47AF-ACBC-4376B286A4B2} [DefaultScope] - (Yahoo! France) - http://fr.search.yahoo.com/ ---\\ Enumère les services démarrés par Svchost (31) - 0s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\WINDOWS\System32\aelupsvc.dll [24576] © O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [62976] © O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\System32\shsvcs.dll [247808] © O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [40448] © O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [40448] © O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\System32\srvsvc.dll [125952] © O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [576512] © O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\IKEEXT.DLL [444928] © O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\WINDOWS\System32\audiosrv.dll [316928] © O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [90624] © O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d'accès distant.) -- C:\WINDOWS\System32\rasmans.dll [262144] © O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\WINDOWS\System32\mprdim.dll [68608] © O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\Sens.dll [47104] © O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [288256] © O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\System32\tapisrv.dll [242688] © O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes Termi.) -- C:\WINDOWS\System32\termsrv.dll [449536] © O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\System32\wuaueng.dll [1933848] © O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [758784] © O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\System32\shsvcs.dll [247808] © O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [200704] © O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\WINDOWS\System32\seclogon.dll [19968] © O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [33280] © O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\System32\iscsiexe.dll [111616] © O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\WINDOWS\System32\mmcss.dll [45056] © O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\System32\profsvc.dll [153600] © O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [57344] © O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\System32\wbem\WMIsvc.dll [162304] © O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\System32\schedsvc.dll [601600] © O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service de configuration des services Termi.) -- C:\WINDOWS\System32\SessEnv.dll [84992] © O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [81920] © O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\System32\KMSVC.DLL [68096] © ---\\ Liste des exceptions du parefeu Windows (8) - 3s O87 - FAEL: "{B101B1E0-FD21-4D91-910A-3301B453CA49}" [In-None-P6-TRUE] .(.Nuance - Nuance PDF Create.) -- C:\Program Files\Nuance\Power PDF\bin\NPDFCreate.exe O87 - FAEL: "{5638ABD7-67FB-4FAC-AD84-973782128C1C}" [In-None-P17-TRUE] .(.Nuance - Nuance PDF Create.) -- C:\Program Files\Nuance\Power PDF\bin\NPDFCreate.exe O87 - FAEL: "{DF942AE5-BD9A-4EFE-9E44-455B3733B71C}" [In-None-P6-TRUE] .(.Nuance - Nuance Power PDF.) -- C:\Program Files\Nuance\Power PDF\bin\NuancePDF.exe O87 - FAEL: "{8D5ED12D-9354-46FA-96AA-9059098A7E93}" [In-None-P17-TRUE] .(.Nuance - Nuance Power PDF.) -- C:\Program Files\Nuance\Power PDF\bin\NuancePDF.exe O87 - FAEL: "{9D1FDDFB-E093-436A-A04A-433C25D4DD3D}" [In-None-P6-TRUE] .(.Nuance - Nuance PDF Create.) -- C:\Program Files\Nuance\Power PDF\bin\NPDFCreate.exe O87 - FAEL: "{215DFD75-320A-4396-9A08-397744694BF6}" [In-None-P17-TRUE] .(.Nuance - Nuance PDF Create.) -- C:\Program Files\Nuance\Power PDF\bin\NPDFCreate.exe O87 - FAEL: "{FFF6EEC3-740A-4615-BE4E-563F077E229A}" [In-None-P6-TRUE] .(.Nuance - Nuance Power PDF.) -- C:\Program Files\Nuance\Power PDF\bin\NuancePDF.exe O87 - FAEL: "{6EDAF699-7365-494A-A21F-07A98B063F6A}" [In-None-P17-TRUE] .(.Nuance - Nuance Power PDF.) -- C:\Program Files\Nuance\Power PDF\bin\NuancePDF.exe ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (20) - 48s SR - Auto [2014/12/03 08:31:24] [ 81088] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe © SR - Auto [2007/07/10 02:22:38] [ 606208] (Ati External Event Utility) . (.ATI Technologies Inc..) - C:\WINDOWS\System32\Ati2evxx.exe © SS - Demand [2014/12/09 19:36:47] [ 69880] Bitdefender Desktop Parental Control (BdDesktopParental) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2015\bdparentalservice.exe © SR - Auto [2011/02/01 08:29:14] [ 81920] Firebird Guardian - DefaultInstance (FirebirdGuardianDefaultInstance) . (.Firebird Project.) - C:\Program Files\Firebird\Firebird_2_1\bin\fbguard.exe © SR - Demand [2011/02/01 08:29:08] [ 2764800] Firebird Server - DefaultInstance (FirebirdServerDefaultInstance) . (.Firebird Project.) - C:\Program Files\Firebird\Firebird_2_1\bin\fbserver.exe © SR - Auto [2007/05/24 13:13:54] [ 61440] HP Health Check Service (HP Health Check Service) . (.Hewlett-Packard.) - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe © SS - Demand [2004/10/22 03:24:18] [ 73728] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - c:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe © SR - Auto [2007/06/28 11:31:38] [ 79136] LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company.) - c:\Program Files\Common Files\LightScribe\LSSrvc.exe © SR - Auto [2015/06/18 08:39:46] [ 1871160] (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe © SR - Auto [2015/06/18 08:39:50] [ 1133880] (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe © SS - Demand [2015/08/28 10:01:19] [ 149160] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe © SR - Auto [2014/08/07 16:52:54] [ 2216752] PDAgent (PDAgent) . (.Raxco Software, Inc..) - C:\Program Files\Raxco\PerfectDisk\PDAgent.exe SR - Auto [2014/08/07 16:52:50] [ 2246448] PDEngine (PDEngine) . (.Raxco Software, Inc..) - C:\Program Files\Common Files\Raxco\Shared\PDEngine.exe SS - Demand [2007/05/11 11:15:20] [ 887544] RoxMediaDB9 (RoxMediaDB9) . (.Sonic Solutions.) - c:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe © SS - Disabled [2013/07/08 16:52:34] [ 81704] SafeBox (SafeBox) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe © SS - Auto [2015/07/09 13:14:04] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe © SS - Demand [2007/05/03 13:31:12] [ 74656] stllssvr (stllssvr) . (.MicroVision Development, Inc..) - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe © SR - Auto [2014/10/27 20:59:19] [ 54424] Bitdefender Desktop Update Service (UPDATESRV) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe © SR - Auto [2015/03/31 16:21:22] [ 1308464] Bitdefender Virus Shield (VSSERV) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe © ---\\ Scan Additionnel (1) - 0s C:\Windows\System32\Tasks\JavaUpdateAdministrator =>PUP.Optional.UpdateAdmin ---\\ Récapitulatif des éléments trouvées sur votre station (1) - 0s http://www.nicolascoolman.fr/blog =>PUP.Optional.UpdateAdmin ~ End of the scan, 34003 items in 248 seconds (827)(0)()