~ ZHPDiag v2015.8.23.124 Par Nicolas Coolman (2015/08/23) ~ Démarré par gerard (Administrator) (2015/09/17 18:40:10) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\gerard\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\gerard\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows VISTA, 32-bit Service Pack 2 (Build 6002) ---\\ Navigateurs Internet (3) - 0s GCIE: Google Chrome v45.0.2454.93 MFIE: Mozilla Firefox 40.0.3 (x86 fr) v40.0.3 MSIE: Internet Explorer v8.0.6001.19679 ---\\ Informations sur les produits Windows (7) - 1s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows Operating System - Vista, OEM_COA_NSLP channel Windows ID Activation : OK ~ Windows Partial Key : Y624C Windows License : OK Windows Automatic Updates : OK (Auto) ---\\ Logiciels de protection (3) - 1s Avast Free Antivirus v10.3.2225 Malwarebytes Anti-Malware version 2.1.8.1057 Windows Defender VISTA (Activate) ---\\ Surveillance de Logiciels (2) - 1s Adobe Flash Player 18 NPAPI Adobe Reader X ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 6 Model 23 Stepping 6, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 2095.42 MB (43% free) ~ System Restore: Activé (Enable) ~ System drive C: has 389 GB free of 450 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: PC-DE-GERARD1 ~ User Name: gerard ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 389 GB free of 450 GB (System) ~ Drive G: has 6 GB free of 26 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (23) - 1s [MD5.D07D4C3038F3578FFCE1C0237F2A1253] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2926592] [MD5.4B555106290BD117334E9A08761C035A] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [44544] [MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [96768] [MD5.D79D6343F5658168A77C4E74158FFFF0] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [916992] [MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Application d'ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [314368] [MD5.95F5FF73B076576C41740F1A842B9B57] - (.Microsoft Corporation - DLL client de l'API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] [MD5.F5272A105F59A7B3B345D9D6D87DA7AD] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [273408] [MD5.1F05B78AB91C9075565A9D8A4B880BC4] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [19944] [MD5.7ADD03E75BEB9E6DD102C3081D29840A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [70144] [MD5.6B4BFFB9BECD728097024276430DB314] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [67072] [MD5.622C41A07CA7E6DD91770F50D532CB6C] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [75264] [MD5.062452B7FFD68C8C042A6261FE8DFF4A] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [561152] [MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [54784] [MD5.8793643A67B42CEC66490B2A0CF92D68] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [100864] [MD5.1B864548B2ACEC1C0BB29B615CC42978] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [107008] [MD5.ECD64230A59CBD93C85F1CD1CAB9F3F6] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [185856] [MD5.2C1121F2B87E9A6B12485DF53CD848C7] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1082232] [MD5.0FA9B5055484649D63C303FE404E5F4D] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [79360] [MD5.A214ADBAF4CB47DD2728859EF31F26B0] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [76288] [MD5.FBC0BACD9C3D7F6956853F64A66E252D] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [248832] [MD5.7B75299A4D201D6A6533603D6914AB04] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [66560] [MD5.76B06EB8A01FC8624D699E7045303E54] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [72192] [MD5.786DB5771F05EF300390399F626BF30A] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [224640] ---\\ Processus lancés (14) - 2s [MD5.E4E01F3F9724C82378EB360C95A14540] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\atiesrxx.exe [176128] [PID.1040] [MD5.FB7C917A7464874D489DB60A5E95AA7C] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\atieclxx.exe [335872] [PID.1404] [MD5.4956380A54B1C9E6BFDF3D80DACB9698] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600] [PID.1568] [MD5.DD7423ABBE2913E70D50E9318AD57EE4] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] [PID.452] [MD5.35B236D0A5973CC913990B7E86FF266B] - (...) -- C:\Program Files\ASUS\Six Engine\SixEngine.exe [5964800] [PID.604] [MD5.031581AEBB1464041D14CF14E69BCE4B] - (...) -- C:\Program Files\ASUS\AASP\1.00.64\aaCenter.exe [615424] [PID.1148] [MD5.3ED2B00729E2D4F974C1418F1B2CDF60] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files\Google\Update\1.3.28.13\GoogleCrashHandler.exe [245064] [PID.1428] [MD5.013697369EAFFA675D0671607F036020] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.2104] [MD5.A5299D04ED225D64CF07A568A3E1BF8C] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [55184] [PID.2144] [MD5.DA3E277F51F300CCAB335D5382148E27] - (.Garmin Ltd or its subsidiaries - Garmin Core Update Service.) -- C:\Program Files\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [451416] [PID.2472] [MD5.A4C778C47836C9786C6A648C828DFF2B] - (.Avast Software - AvastVirtualBox Interface.) -- C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3218624] [PID.3488] [MD5.F6A0C1FB5C8A5BE38CE539172A9973BF] - (.Adobe Systems Incorporated - Adobe® Flash® Player Installer/Uninstaller.) -- C:\Windows\System32\Macromed\Flash\FlashUtil32_18_0_0_232_ActiveX.exe [1156296] [PID.3620] [MD5.F66203AF9C159E2CBD54DF981654F499] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [6111824] [PID.2136] [MD5.84867350CFF4C8551E5F5A3D355D8CB3] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\gerard\Downloads\ZHPDiag3.exe [1901056] [PID.4428] ---\\ Google Chrome, Démarrage,Recherche,Extensions (19) - 1s G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.fr/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients2.google.com/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients2.googleusercontent.com/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.googleapis.com/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com/ G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.com/ G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (10) - 1s P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} P2 - FPN: [HKCU] [@greentube.com/GreenWebPlayer] - (.Greentube Internet Entertainment Solutions GmbH.) -- C:\Games\GreenWebPlayer\npgreenwebplayer.dll P2 - FPN: [HKCU] [gcluster.com/sfr_jeux_a_la_demande] - (.Oy Gamecluster LTD.) -- C:\Program Files\SFR jeux a la demande\npsfr_jeux_a_la_demande.dll P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_18_0_0_232.dll P2 - FPN: [HKLM] [@Diginext.fr/VirtualGeoGP] - (.DIGINEXT.) -- C:\Program Files\VirtualGeo3-GP\WebPlugin\Win32\npQtAPI3DPlugin.dll P2 - FPN: [HKLM] [@garmin.com/GpsControl] - (.GARMIN Corp..) -- C:\Program Files\Garmin GPS Plugin\npGarmin.dll P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc..) -- C:\Program Files\Google\Update\1.3.28.13\npGoogleUpdate3.dll P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc..) -- C:\Program Files\Google\Update\1.3.28.13\npGoogleUpdate3.dll P2 - FPN: [HKLM] [Adobe Reader] - (.Adobe Systems Inc..) -- C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll P2 - FPN: [HKLM] [gcluster.com/g_cluster_games_on_demand] - (.Oy Gamecluster LTD.) -- C:\Program Files\SFR jeux a la demande\npsfr_jeux_a_la_demande.dll ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (8) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.sfr.fr/ R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl" ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (15528) ---\\ Browser Helper Object de navigateur (BHO) (3) - 0s O2 - BHO: e-Carte Bleue Browser Helper Object - {2E03C0FD-4C48-43A7-9A54-00240C70FF16} . (.Orbiscom Ltd. All rights reserved. - FTO CMB.) -- C:\Windows\System32\BhoECart.dll O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\ssv.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll ---\\ Applications lancées au démarrage du système (5) - 0s O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe ---\\ Modification Domaine/Adresses DNS (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS3\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 ---\\ Protocole additionnel (23) - 1s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ---\\ Liste des services NT non Microsoft et non désactivés (8) - 0s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: Garmin Core Update Service (Garmin Core Update Service) . (.Garmin Ltd or its subsidiaries - Garmin Core Update Service.) - C:\Program Files\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe O23 - Service: Google Update Service (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) . (.Google - gusvc.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe ---\\ Enumère les données de BootExecute (1) - 0s O34 - HKLM BootExecute: (sdnclean.exe) (.Safer Networking Limited - .) -- sdnclean.exe ---\\ Tâches planifiées en automatique (30) - 5s [MD5.E3FB05F33E1404AD606B1E1FE7C323C3] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [998104] [MD5.368290D0A612D62DA6F3D798B1BB8FE7] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [269000] [MD5.76F586CEF7018BD376CBBD74AEAC93F5] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [1373872] [MD5.05299546F243159CB8A42906ACB219A8] [APT] [avastBCLRestartS-1-5-21-702594829-3895981117-3287953093-1000] (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe [377000] [MD5.13ECAC1C51CC00147BD06B5ABF142956] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [4529944] [MD5.D97FD390F162BD6B7DC4B299207F8B0F] [APT] [GarminUpdaterTask] (.Copyright © Garmin 2013.) -- C:\Program Files\Garmin\Express Self Updater\ExpressSelfUpdater.exe [24920] [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] [MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [Apple\AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [561984] [MD5.031581AEBB1464041D14CF14E69BCE4B] [APT] [ASUS\ASUS ACPI Service Provider] (...) -- C:\Program Files\ASUS\AASP\1.00.64\aaCenter.exe [615424] [MD5.00000000000000000000000000000000] [APT] [ASUS\ASUS RegRun Loader] (...) -- C:\Program Files\ASUS\AASP\1.00.64\AsLoader.exe (.not file.) [0] [MD5.35B236D0A5973CC913990B7E86FF266B] [APT] [ASUS\ASUS SIX Engine] (...) -- C:\Program Files\ASUS\Six Engine\SixEngine.exe [5964800] O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated O39 - APT: Orphean - (...) -- C:\Windows\Tasks\Google Software Updater.job [1000] O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1052] =>.Google Inc. O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1056] =>.Google Inc. O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [3874] =>.Adobe Systems Incorporated O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3854] =>.Adobe Systems Incorporated O39 - APT: avast! Emergency Update - (.AVAST Software.) -- C:\Windows\System32\Tasks\avast! Emergency Update [4182] =>.AVAST Software O39 - APT: avastBCLRestartS-1-5-21-702594829-3895981117-3287953093-1000 - (.Mozilla Corporation.) -- C:\Windows\System32\Tasks\avastBCLRestartS-1-5-21-702594829-3895981117-3287953093-1000 [3172] =>.Mozilla Corporation O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2774] =>.Piriform Ltd O39 - APT: GarminUpdaterTask - (.Copyright © Garmin 2013.) -- C:\Windows\System32\Tasks\GarminUpdaterTask [3544] =>.Copyright © Garmin 2013 O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\Google Software Updater [4106] O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3800] =>.Google Inc. O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4052] =>.Google Inc. O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{369F4AA4-4BEC-402C-8126-F7CE1B1D2F9A} [3008] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{52D6B405-9BAA-4F47-8B9D-6840B5FA61AF} [3054] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{87B478C5-398C-4599-82E3-1F8FCCA31A7C} [3186] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{8ACAC0D5-D9CB-4782-B776-B6C782E2C82F} [2958] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{A6B9564F-09C5-4C6E-8663-F04F89B652AF} [2976] ---\\ Logiciels installés (36) - 8s O42 - Logiciel: Windows Driver Package - Garmin (grmnusb) GARMIN Devices (04/19/2012 2.3.1 - (.Garmin.) [HKLM] -- 98157A226B40B173301B0F53C8E98C47805D5152 O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM] -- Avast O42 - Logiciel: Package de pilotes Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB ( - (.Silicon Labs Software.) [HKLM] -- D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2 O42 - Logiciel: Package de pilotes Windows - Dynastream Innovations, Inc. ANT LibUSB Driver - (.Dynastream Innovations, Inc..) [HKLM] -- F9D2A789F9CFF8CEC36B544F53877C80F1F73C46 O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome O42 - Logiciel: Malwarebytes Anti-Malware version 2.1.8.1057 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes Anti-Malware_is1 O42 - Logiciel: Mozilla Firefox 40.0.3 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 40.0.3 (x86 fr) O42 - Logiciel: Mozilla Thunderbird 38.2.0 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Thunderbird 38.2.0 (x86 fr) O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService O42 - Logiciel: Revo Uninstaller 1.95 - (.VS Revo Group.) [HKLM] -- Revo Uninstaller O42 - Logiciel: Service de paiement sécurisé Internet Fortuneo - (...) [HKLM] -- Service de paiement sécurisé Internet Fortuneo O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player O42 - Logiciel: ZHPFix 2015 - (.Nicolas Coolman.) [HKLM] -- ZHPFix_is1 O42 - Logiciel: Garmin Express Tray - (.Garmin Ltd or its subsidiaries.) [HKLM] -- {0B4A6B94-236B-4257-B560-28942335C938} O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {46F044A5-CE8B-4196-984E-5BD6525E361D} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} O42 - Logiciel: Garmin Express - (.Garmin Ltd or its subsidiaries.) [HKLM] -- {631F7A18-2816-45DD-AD98-60F57D14E7AD} O42 - Logiciel: ANT Drivers Installer x86 - (.Garmin Ltd or its subsidiaries.) [HKLM] -- {64582FE3-C2D5-4B6C-AC78-CB576F6D1F72} O42 - Logiciel: Windows Media Player Firefox Plugin - (.Microsoft Corp.) [HKLM] -- {69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4} O42 - Logiciel: QuickTime 7 - (.Apple Inc..) [HKLM] -- {80CEEB1E-0A6C-45B9-A312-37A1D25FDEBC} O42 - Logiciel: Google Earth - (.Google.) [HKLM] -- {817750FA-EC6A-485D-9901-0683AE6FFDF1} O42 - Logiciel: Garmin Express - (.Garmin Ltd or its subsidiaries.) [HKLM] -- {855d8086-4275-4bd3-a7a8-b44da3a56d7a} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Gestionnaire pour appareils Windows Mobile - (.Microsoft Corporation.) [HKLM] -- {904CCF62-818D-4675-BC76-D37EB399F917} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-0804-1033-1959-001824147215} O42 - Logiciel: Adobe Reader X (10.1.15) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AA1000000001} O42 - Logiciel: Elevated Installer - (.Garmin Ltd or its subsidiaries.) [HKLM] -- {B9493F36-49B9-4E6F-BA94-4E54C86D7CA8} O42 - Logiciel: Game Alarm - (...) [HKCU] -- gamealarm-DEFAULT O42 - Logiciel: GreenWebPlayer - (...) [HKCU] -- gwp-DEFAULT O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU] -- OneDriveSetup.exe O42 - Logiciel: Samsung Kies Packages - (...) [HKCU] -- Samsung Kies Packages O42 - Logiciel: Ski Challenge 11 (FTV) - (...) [HKCU] -- sc11-FR_FTV_MAIN O42 - Logiciel: SFR Cloud - (.F-Secure Corporation.) [HKCU] -- SFR Cloud ---\\ HKCU & HKLM Software Keys (154) - 8s HKLM\SOFTWARE\7-Zip HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\AdwCleaner HKLM\SOFTWARE\ALWIL Software HKLM\SOFTWARE\AMD HKLM\SOFTWARE\Apple Computer, Inc. HKLM\SOFTWARE\Apple Inc. HKLM\SOFTWARE\ArcSoft HKLM\SOFTWARE\ASUS HKLM\SOFTWARE\Atheros Communications Inc. HKLM\SOFTWARE\ATI HKLM\SOFTWARE\ATI Technologies HKLM\SOFTWARE\AVAST Software HKLM\SOFTWARE\AVG HKLM\SOFTWARE\BlenderFoundation HKLM\SOFTWARE\CyberLink HKLM\SOFTWARE\Diginext HKLM\SOFTWARE\DXGTech HKLM\SOFTWARE\Eset HKLM\SOFTWARE\File Helper HKLM\SOFTWARE\FLEXlm License Manager HKLM\SOFTWARE\Garmin HKLM\SOFTWARE\GEAR Software HKLM\SOFTWARE\Google HKLM\SOFTWARE\Hewlett-Packard HKLM\SOFTWARE\IGN France HKLM\SOFTWARE\Intel HKLM\SOFTWARE\iSkysoft HKLM\SOFTWARE\JavaSoft HKLM\SOFTWARE\JreMetrics HKLM\SOFTWARE\Licenses HKLM\SOFTWARE\Locktime HKLM\SOFTWARE\LoyerManager HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Malwarebytes' Anti-Malware (Trial) HKLM\SOFTWARE\Marvell HKLM\SOFTWARE\McAfee.com HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\mozilla.org HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\MyHeritage.com HKLM\SOFTWARE\Neuf HKLM\SOFTWARE\Nikon HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\OpenOffice HKLM\SOFTWARE\OpenOffice.org HKLM\SOFTWARE\PDFCreator HKLM\SOFTWARE\PDFPrint HKLM\SOFTWARE\Piriform HKLM\SOFTWARE\Preclick HKLM\SOFTWARE\Python HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\Restoration 2.5.14 Fr HKLM\SOFTWARE\Reviversoft HKLM\SOFTWARE\Samsung HKLM\SOFTWARE\Skyline HKLM\SOFTWARE\Sonic HKLM\SOFTWARE\SRS Labs HKLM\SOFTWARE\STAR HKLM\SOFTWARE\Sun Microsystems HKLM\SOFTWARE\Trad-FR HKLM\SOFTWARE\Trolltech HKLM\SOFTWARE\Trust HKLM\SOFTWARE\TuneUp HKLM\SOFTWARE\Ulead Systems HKLM\SOFTWARE\VideoLAN HKLM\SOFTWARE\Volatile HKLM\SOFTWARE\Waves Audio HKLM\SOFTWARE\Windows HKLM\SOFTWARE\WOW6432Node HKLM\SOFTWARE\Xing Technology Corp. HKLM\SOFTWARE\Xvid Team HKCU\SOFTWARE\ SFR jeux a la demande HKCU\SOFTWARE\7-Zip HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\ALWIL Software HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\ASProtect HKCU\SOFTWARE\ASUS HKCU\SOFTWARE\ATI HKCU\SOFTWARE\ATI Technologies Inc. HKCU\SOFTWARE\Auslogics HKCU\SOFTWARE\AVAST Software HKCU\SOFTWARE\Avg HKCU\SOFTWARE\Binary Noise HKCU\SOFTWARE\Bitdefender HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\Clubic HKCU\SOFTWARE\CodeStuff HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\Earth Resource Mapping HKCU\SOFTWARE\F-Secure HKCU\SOFTWARE\File Helper HKCU\SOFTWARE\FLEXlm License Manager HKCU\SOFTWARE\Freeware HKCU\SOFTWARE\Garmin HKCU\SOFTWARE\GlarySoft HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\GPL Ghostscript HKCU\SOFTWARE\Greentube HKCU\SOFTWARE\Hewlett-Packard HKCU\SOFTWARE\Iris HKCU\SOFTWARE\ITNConv HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\JEDI-VCL HKCU\SOFTWARE\kde.org HKCU\SOFTWARE\keyhole.com HKCU\SOFTWARE\Lavalys HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\Local AppWizard-Generated Applications HKCU\SOFTWARE\Locktime HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MyHeritage.com HKCU\SOFTWARE\Nektra HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\Neuf HKCU\SOFTWARE\Nico Mak Computing HKCU\SOFTWARE\Nikon HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\OpenOffice HKCU\SOFTWARE\OpenOffice.org HKCU\SOFTWARE\PDFCreator HKCU\SOFTWARE\PDFPrint HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\RealNetworks HKCU\SOFTWARE\Safer Networking Limited HKCU\SOFTWARE\Samsung HKCU\SOFTWARE\SFR HKCU\SOFTWARE\Skyline HKCU\SOFTWARE\Software HKCU\SOFTWARE\Softwrap HKCU\SOFTWARE\SubSystems HKCU\SOFTWARE\TeleCharger HKCU\SOFTWARE\Terravirtual HKCU\SOFTWARE\The Complete Genealogy Reporter HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\TuneUp HKCU\SOFTWARE\Ulead Systems HKCU\SOFTWARE\VirtualDub.org HKCU\SOFTWARE\VSRevoGroup HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\WinZip Computing HKCU\SOFTWARE\Yahoo HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Google HKCU\SOFTWARE\AppDataLow\Software\MarkAny ---\\ Contenu des dossiers Programmes (328) - 11s O43 - CFD: 2013/05/17 08:08:01 - [] D -- C:\Program Files\7-Zip O43 - CFD: 2013/08/15 08:22:24 - [] D -- C:\Program Files\Adobe O43 - CFD: 2010/01/21 15:00:19 - [] D -- C:\Program Files\Alwil Software O43 - CFD: 2012/11/15 14:25:51 - [] D -- C:\Program Files\Apple Software Update O43 - CFD: 2009/11/23 17:42:57 - [] D -- C:\Program Files\ArcSoft O43 - CFD: 2009/02/12 15:48:36 - [] D -- C:\Program Files\ASUS O43 - CFD: 2013/10/27 16:46:50 - [] D -- C:\Program Files\ATI O43 - CFD: 2013/10/27 16:46:47 - [] D -- C:\Program Files\ATI Technologies O43 - CFD: 2013/05/21 08:36:53 - [] D -- C:\Program Files\AVAST Software O43 - CFD: 2011/04/17 12:02:23 - [] D -- C:\Program Files\AVG O43 - CFD: 2010/01/05 18:27:38 - [] D -- C:\Program Files\Blender Foundation O43 - CFD: 2013/05/16 14:57:39 - [] D -- C:\Program Files\Bonjour O43 - CFD: 2009/12/01 18:23:38 - [] D -- C:\Program Files\Bridgewood Design O43 - CFD: 2014/06/15 19:00:17 - [] D -- C:\Program Files\CCleaner O43 - CFD: 2009/02/25 16:12:27 - [] D -- C:\Program Files\CodeStuff O43 - CFD: 2015/07/30 19:05:48 - [] D -- C:\Program Files\Common Files O43 - CFD: 2009/02/07 17:48:18 - [] D -- C:\Program Files\CyberLink O43 - CFD: 2014/03/16 12:25:40 - [] D -- C:\Program Files\DIFX O43 - CFD: 2014/09/19 11:48:30 - [] D -- C:\Program Files\Duplicate Cleaner O43 - CFD: 2009/01/21 12:57:02 - [0] SHD -- C:\Program Files\Fichiers communs O43 - CFD: 2009/03/14 19:49:31 - [] D -- C:\Program Files\FlightGear O43 - CFD: 2014/12/01 16:21:37 - [] D -- C:\Program Files\Fortuneo O43 - CFD: 2015/03/22 11:59:39 - [] D -- C:\Program Files\Garmin O43 - CFD: 2012/12/26 11:59:57 - [] D -- C:\Program Files\Garmin GPS Plugin O43 - CFD: 2015/08/13 18:52:26 - [] D -- C:\Program Files\Google O43 - CFD: 2011/01/10 09:55:50 - [0] D -- C:\Program Files\Hewlett-Packard O43 - CFD: 2015/07/30 18:14:21 - [] D -- C:\Program Files\HP O43 - CFD: 2009/12/25 10:06:46 - [] D -- C:\Program Files\IGN France O43 - CFD: 2014/07/09 15:01:45 - [] HD -- C:\Program Files\InstallShield Installation Information O43 - CFD: 2009/01/21 13:03:28 - [] D -- C:\Program Files\Intel O43 - CFD: 2015/09/10 10:42:29 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 2013/11/13 16:22:36 - [0] D -- C:\Program Files\iSkysoft O43 - CFD: 2011/10/26 13:47:34 - [] D -- C:\Program Files\Java O43 - CFD: 2009/01/22 10:25:10 - [] D -- C:\Program Files\Lavalys O43 - CFD: 2013/12/31 11:33:25 - [] D -- C:\Program Files\Logitech O43 - CFD: 2011/10/22 08:58:22 - [] D -- C:\Program Files\LoyerManager O43 - CFD: 2015/07/10 22:05:48 - [] D -- C:\Program Files\Malwarebytes Anti-Malware O43 - CFD: 2014/06/16 14:18:36 - [0] D -- C:\Program Files\Malwarebytes' Anti-Malware O43 - CFD: 2013/10/23 12:02:27 - [] D -- C:\Program Files\MarkAny O43 - CFD: 2009/01/22 09:23:19 - [] D -- C:\Program Files\Marvell O43 - CFD: 2006/11/02 14:37:34 - [] D -- C:\Program Files\Microsoft Games O43 - CFD: 2015/05/04 08:59:33 - [] D -- C:\Program Files\Microsoft OneDrive O43 - CFD: 2015/08/13 19:08:12 - [] D -- C:\Program Files\Microsoft Silverlight O43 - CFD: 2010/06/26 03:02:18 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 2010/08/13 09:05:57 - [] D -- C:\Program Files\Movie Maker O43 - CFD: 2015/09/16 16:46:31 - [] D -- C:\Program Files\Mozilla Firefox O43 - CFD: 2014/06/12 10:29:12 - [] D -- C:\Program Files\Mozilla Firefox(33) O43 - CFD: 2013/02/20 15:51:39 - [] D -- C:\Program Files\Mozilla Firefox(4) O43 - CFD: 2013/02/20 17:14:21 - [] D -- C:\Program Files\Mozilla Firefox(5) O43 - CFD: 2013/12/20 10:11:20 - [] D -- C:\Program Files\Mozilla Firefox(7) O43 - CFD: 2015/09/16 17:30:14 - [] D -- C:\Program Files\Mozilla Maintenance Service O43 - CFD: 2015/09/06 11:02:10 - [] D -- C:\Program Files\Mozilla Thunderbird O43 - CFD: 2006/11/02 14:37:34 - [] D -- C:\Program Files\MSBuild O43 - CFD: 2009/12/30 12:07:35 - [] D -- C:\Program Files\MSECache O43 - CFD: 2009/01/23 14:04:02 - [0] D -- C:\Program Files\MSXML 4.0 O43 - CFD: 2009/03/08 11:28:14 - [] D -- C:\Program Files\Neuf O43 - CFD: 2013/05/16 09:55:32 - [0] D -- C:\Program Files\Nightly O43 - CFD: 2009/01/22 16:08:06 - [] D -- C:\Program Files\Nikon O43 - CFD: 2009/03/14 19:49:34 - [] D -- C:\Program Files\OpenAL O43 - CFD: 2014/07/10 11:02:01 - [] D -- C:\Program Files\OpenOffice 4 O43 - CFD: 2013/08/13 11:23:08 - [] D -- C:\Program Files\OpenOffice.org 3 O43 - CFD: 2013/11/13 15:48:47 - [] D -- C:\Program Files\pazera-software O43 - CFD: 2014/09/19 11:48:30 - [] D -- C:\Program Files\PDFCreator O43 - CFD: 2014/09/19 11:48:30 - [] D -- C:\Program Files\Pochette Express 2 O43 - CFD: 2015/09/01 18:00:47 - [] D -- C:\Program Files\QuickTime O43 - CFD: 2006/11/02 14:37:34 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 2013/10/23 12:04:38 - [] D -- C:\Program Files\Samsung O43 - CFD: 2014/07/02 16:34:28 - [] D -- C:\Program Files\SFR O43 - CFD: 2014/09/19 11:48:30 - [] D -- C:\Program Files\SFR jeux a la demande O43 - CFD: 2009/11/28 21:02:39 - [] D -- C:\Program Files\Skyline O43 - CFD: 2015/09/17 17:03:52 - [] D -- C:\Program Files\Spybot - Search & Destroy 2 O43 - CFD: 2013/11/03 12:10:25 - [] D -- C:\Program Files\TuneUp Utilities 2014 O43 - CFD: 2009/02/07 17:58:30 - [] D -- C:\Program Files\Ulead Systems O43 - CFD: 2006/11/02 15:01:55 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 2009/11/29 18:20:44 - [] D -- C:\Program Files\Unlocker O43 - CFD: 2015/08/14 08:55:03 - [] D -- C:\Program Files\VideoLAN O43 - CFD: 2013/11/13 15:11:34 - [] D -- C:\Program Files\VirtualDub O43 - CFD: 2013/05/17 16:57:28 - [] D -- C:\Program Files\VirtualGeo3-GP O43 - CFD: 2009/11/29 18:59:01 - [] D -- C:\Program Files\VS Revo Group O43 - CFD: 2014/02/16 15:23:51 - [] D -- C:\Program Files\VTech O43 - CFD: 2009/06/24 10:35:20 - [] D -- C:\Program Files\Windows Calendar O43 - CFD: 2009/06/24 10:35:20 - [] D -- C:\Program Files\Windows Collaboration O43 - CFD: 2009/06/24 10:35:18 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 2015/09/10 10:42:19 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 2012/04/12 08:59:21 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 2015/06/10 08:35:19 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 2009/01/21 12:57:02 - [] D -- C:\Program Files\Windows NT O43 - CFD: 2009/06/24 10:35:19 - [] D -- C:\Program Files\Windows Photo Gallery O43 - CFD: 2009/11/28 22:37:50 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 2009/06/24 10:35:20 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 2014/09/19 11:48:30 - [] D -- C:\Program Files\Xvid O43 - CFD: 2014/06/26 22:04:26 - [] D -- C:\Program Files\ZHPDiag O43 - CFD: 2015/09/17 18:35:33 - [] D -- C:\Program Files\ZHPFix O43 - CFD: 2011/02/24 12:21:36 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2011/02/24 12:21:36 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2009/11/28 21:02:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Panorama Maker 3 O43 - CFD: 2009/11/28 21:02:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft PhotoImpression O43 - CFD: 2009/11/28 21:02:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft PhotoMontage 2000 O43 - CFD: 2009/02/12 15:48:36 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS O43 - CFD: 2015/07/30 18:26:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software O43 - CFD: 2010/01/06 11:28:00 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blender Foundation O43 - CFD: 2013/10/27 16:46:51 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center O43 - CFD: 2009/11/28 21:02:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeStuff Starter O43 - CFD: 2009/11/28 21:02:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerBackup O43 - CFD: 2009/11/28 21:02:39 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Extras and Upgrades O43 - CFD: 2009/11/28 21:02:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlightGear v1.9.1 O43 - CFD: 2013/09/26 14:18:34 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2015/03/22 11:59:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin O43 - CFD: 2015/08/13 18:53:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2009/12/25 10:06:46 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Géorando Découverte O43 - CFD: 2015/07/30 18:14:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP O43 - CFD: 2009/01/22 10:25:12 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavalys O43 - CFD: 2009/11/28 21:02:40 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/07/10 22:05:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 2009/06/25 10:24:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Marvell O43 - CFD: 2015/08/13 18:57:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 2009/11/28 21:02:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyHeritage.com O43 - CFD: 2009/03/08 11:28:17 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Neuf O43 - CFD: 2013/11/30 12:52:26 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\neuf Talk O43 - CFD: 2014/07/10 11:03:06 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.0 O43 - CFD: 2011/09/08 09:29:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outil de mise à jour Google O43 - CFD: 2013/11/13 15:48:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pazera Free MP4 to AVI Converter O43 - CFD: 2010/09/12 10:38:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator O43 - CFD: 2009/11/28 21:02:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pochette Express 2 O43 - CFD: 2010/01/05 18:07:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Python 2.6 O43 - CFD: 2015/09/01 18:00:36 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime O43 - CFD: 2013/10/23 12:06:17 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung O43 - CFD: 2014/07/02 16:39:02 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SFR O43 - CFD: 2012/01/21 17:08:46 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SFR Jeux a la demande O43 - CFD: 2010/10/22 17:35:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skyline O43 - CFD: 2015/09/07 09:26:38 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2015/09/07 09:26:38 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup (Disabled by Starter) O43 - CFD: 2006/11/02 14:37:34 - [] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2013/11/03 21:03:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014 O43 - CFD: 2009/11/28 21:02:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ulead PhotoImpact 12 O43 - CFD: 2009/11/28 21:02:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ulead Systems O43 - CFD: 2010/09/12 10:38:26 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unlocker O43 - CFD: 2015/08/14 08:55:59 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 2013/11/13 15:11:34 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VirtualDub O43 - CFD: 2013/05/17 16:57:23 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VirtualGeo³ pour le Géoportail O43 - CFD: 2014/02/16 15:24:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VTech O43 - CFD: 2013/11/13 15:35:07 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xvid O43 - CFD: 2015/09/17 18:35:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP O43 - CFD: 2013/08/15 08:22:31 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2010/01/21 14:57:52 - [] D -- C:\ProgramData\Alwil Software O43 - CFD: 2012/11/16 08:45:50 - [] D -- C:\ProgramData\Apple O43 - CFD: 2015/09/01 18:00:19 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 2006/11/02 15:02:03 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2013/10/25 18:23:09 - [] D -- C:\ProgramData\ATI O43 - CFD: 2013/11/27 09:41:52 - [] D -- C:\ProgramData\AVAST Software O43 - CFD: 2011/04/23 09:02:50 - [] D -- C:\ProgramData\AVG10 O43 - CFD: 2009/01/21 12:57:02 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 2011/04/17 12:05:00 - [] HD -- C:\ProgramData\Common Files O43 - CFD: 2009/12/01 18:23:53 - [0] D -- C:\ProgramData\CutList Plus O43 - CFD: 2009/02/07 17:48:49 - [] D -- C:\ProgramData\CyberLink O43 - CFD: 2006/11/02 15:02:03 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2006/11/02 15:02:03 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2012/08/11 13:58:35 - [] D -- C:\ProgramData\dvdfab O43 - CFD: 2013/11/24 12:12:36 - [] D -- C:\ProgramData\F-Secure O43 - CFD: 2009/01/21 12:57:02 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 2006/11/02 15:02:03 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 2015/03/22 11:59:53 - [] D -- C:\ProgramData\Garmin O43 - CFD: 2009/12/02 10:30:08 - [] D -- C:\ProgramData\Google O43 - CFD: 2011/09/08 09:29:21 - [] D -- C:\ProgramData\Google Updater O43 - CFD: 2009/01/22 10:01:27 - [] D -- C:\ProgramData\Hewlett-Packard O43 - CFD: 2009/11/28 16:38:05 - [] D -- C:\ProgramData\HP O43 - CFD: 2009/11/28 21:02:39 - [] D -- C:\ProgramData\HP Product Assistant O43 - CFD: 2009/12/02 16:41:44 - [0] D -- C:\ProgramData\HPSSUPPLY O43 - CFD: 2009/02/07 17:59:10 - [] D -- C:\ProgramData\InstallShield O43 - CFD: 2013/11/13 10:51:37 - [] D -- C:\ProgramData\iSkysoft Video Converter Ultimate O43 - CFD: 2009/01/25 10:33:45 - [] D -- C:\ProgramData\Locktime O43 - CFD: 2014/05/14 09:01:20 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 2012/09/04 08:05:55 - [] D -- C:\ProgramData\McAfee O43 - CFD: 2009/01/21 12:57:02 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 2011/04/23 09:00:58 - [] D -- C:\ProgramData\MFAData O43 - CFD: 2015/05/01 10:39:29 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2015/05/04 08:59:05 - [] D -- C:\ProgramData\Microsoft OneDrive O43 - CFD: 2009/01/21 12:57:02 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 2012/04/29 16:51:26 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 2009/05/18 09:09:16 - [] D -- C:\ProgramData\MyHeritage O43 - CFD: 2015/03/22 11:56:03 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 2013/12/07 15:56:48 - [] D -- C:\ProgramData\PMS O43 - CFD: 2009/01/22 16:15:48 - [] D -- C:\ProgramData\QuickTime O43 - CFD: 2014/06/15 18:25:41 - [] D -- C:\ProgramData\RogueKiller O43 - CFD: 2013/10/23 12:00:01 - [] D -- C:\ProgramData\Samsung O43 - CFD: 2009/01/23 23:39:11 - [] D -- C:\ProgramData\SFR O43 - CFD: 2010/10/22 12:06:30 - [] D -- C:\ProgramData\Skyline O43 - CFD: 2006/11/02 15:02:03 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2010/03/05 09:37:46 - [] D -- C:\ProgramData\Sun O43 - CFD: 2013/05/21 11:17:22 - [0] AD -- C:\ProgramData\TEMP O43 - CFD: 2006/11/02 15:02:04 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2013/11/03 11:34:04 - [] D -- C:\ProgramData\TuneUp Software O43 - CFD: 2011/11/08 10:05:40 - [0] D -- C:\ProgramData\TVersity O43 - CFD: 2009/02/07 17:58:38 - [] D -- C:\ProgramData\Ulead Systems O43 - CFD: 2014/02/16 15:23:51 - [] D -- C:\ProgramData\VTech O43 - CFD: 2009/01/22 10:05:45 - [] D -- C:\ProgramData\WEBREG O43 - CFD: 2012/10/04 13:21:04 - [] D -- C:\ProgramData\WindowsSearch O43 - CFD: 2015/09/10 17:55:00 - [0] D -- C:\ProgramData\WinZip O43 - CFD: 2009/06/07 08:11:48 - [] D -- C:\ProgramData\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906} O43 - CFD: 2013/11/03 11:24:17 - [] SHD -- C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} O43 - CFD: 2013/05/21 08:55:28 - [0] D -- C:\ProgramData\䏘%䂈%0 O43 - CFD: 2013/05/21 14:27:27 - [0] D -- C:\ProgramData\䏘u䂈u0 O43 - CFD: 2013/05/21 09:07:46 - [0] D -- C:\ProgramData\䏘ǝ䂈ǝ0 O43 - CFD: 2013/05/21 10:38:08 - [0] D -- C:\ProgramData\䏘ƺ䂈ƺ0 O43 - CFD: 2013/02/12 15:54:10 - [0] D -- C:\ProgramData\䐸x䃨x0 O43 - CFD: 2013/02/12 14:39:34 - [0] D -- C:\ProgramData\䐸ǝ䃨ǝ0 O43 - CFD: 2013/02/12 14:59:58 - [0] D -- C:\ProgramData\䐸ƴ䃨ƴ0 O43 - CFD: 2013/02/13 09:12:11 - [0] D -- C:\ProgramData\䐸NJ䃨NJ0 O43 - CFD: 2013/02/12 12:58:40 - [0] D -- C:\ProgramData\䐸ǵ䃨ǵ0 O43 - CFD: 2013/08/15 08:22:39 - [] D -- C:\Program Files\Common Files\Adobe O43 - CFD: 2013/05/03 08:12:20 - [] D -- C:\Program Files\Common Files\Apple O43 - CFD: 2009/01/22 15:10:29 - [] D -- C:\Program Files\Common Files\ArcSoft O43 - CFD: 2009/01/21 17:05:32 - [] D -- C:\Program Files\Common Files\ATI Technologies O43 - CFD: 2015/07/30 19:05:48 - [] D -- C:\Program Files\Common Files\AV O43 - CFD: 2014/06/15 13:38:38 - [] D -- C:\Program Files\Common Files\Bitdefender O43 - CFD: 2009/11/30 17:36:06 - [] D -- C:\Program Files\Common Files\Hewlett-Packard O43 - CFD: 2015/07/30 18:14:21 - [] D -- C:\Program Files\Common Files\HP O43 - CFD: 2009/02/07 17:58:30 - [] D -- C:\Program Files\Common Files\InstallShield O43 - CFD: 2013/11/13 10:46:07 - [] D -- C:\Program Files\Common Files\iSkysoft O43 - CFD: 2012/02/18 17:19:50 - [] D -- C:\Program Files\Common Files\Java O43 - CFD: 2014/01/01 09:03:16 - [] D -- C:\Program Files\Common Files\Logishrd O43 - CFD: 2015/04/28 16:26:56 - [] D -- C:\Program Files\Common Files\microsoft shared O43 - CFD: 2014/07/09 15:01:21 - [] D -- C:\Program Files\Common Files\Nikon O43 - CFD: 2013/02/21 10:52:33 - [] D -- C:\Program Files\Common Files\Real O43 - CFD: 2006/11/02 13:18:33 - [] D -- C:\Program Files\Common Files\Services O43 - CFD: 2006/11/02 13:18:33 - [] D -- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 2009/11/22 12:06:49 - [0] D -- C:\Program Files\Common Files\SWF Studio O43 - CFD: 2011/11/09 19:59:42 - [] D -- C:\Program Files\Common Files\System O43 - CFD: 2009/02/07 17:58:30 - [] D -- C:\Program Files\Common Files\Ulead Systems O43 - CFD: 2009/02/18 18:16:17 - [] D -- C:\Program Files\Common Files\Windows Live O43 - CFD: 2010/05/09 09:39:09 - [] D -- C:\Program Files\Common Files\Wise Installation Wizard O43 - CFD: 2013/03/08 12:32:01 - [] D -- C:\Users\gerard\AppData\Roaming\Adobe O43 - CFD: 2012/11/15 14:29:35 - [] D -- C:\Users\gerard\AppData\Roaming\Apple Computer O43 - CFD: 2010/01/04 15:29:17 - [0] D -- C:\Users\gerard\AppData\Roaming\ArchiFacile O43 - CFD: 2009/01/22 15:10:28 - [] D -- C:\Users\gerard\AppData\Roaming\ArcSoft O43 - CFD: 2009/01/21 17:07:59 - [] D -- C:\Users\gerard\AppData\Roaming\ATI O43 - CFD: 2013/11/27 09:57:48 - [] D -- C:\Users\gerard\AppData\Roaming\AVAST Software O43 - CFD: 2011/04/17 12:06:25 - [] D -- C:\Users\gerard\AppData\Roaming\AVG10 O43 - CFD: 2010/01/04 17:32:25 - [] D -- C:\Users\gerard\AppData\Roaming\Blender Foundation O43 - CFD: 2013/11/04 16:06:22 - [] D -- C:\Users\gerard\AppData\Roaming\CutList Plus O43 - CFD: 2009/02/07 17:48:19 - [] D -- C:\Users\gerard\AppData\Roaming\CyberLink O43 - CFD: 2013/11/03 11:23:26 - [] D -- C:\Users\gerard\AppData\Roaming\DigitalVolcano O43 - CFD: 2013/11/24 12:12:36 - [] D -- C:\Users\gerard\AppData\Roaming\F-Secure O43 - CFD: 2009/03/14 20:53:35 - [] D -- C:\Users\gerard\AppData\Roaming\flightgear.org O43 - CFD: 2009/03/14 20:55:14 - [] D -- C:\Users\gerard\AppData\Roaming\fltk.org O43 - CFD: 2013/06/22 08:17:00 - [] D -- C:\Users\gerard\AppData\Roaming\Garmin O43 - CFD: 2009/12/25 10:12:13 - [] D -- C:\Users\gerard\AppData\Roaming\georando O43 - CFD: 2009/12/02 10:27:44 - [] D -- C:\Users\gerard\AppData\Roaming\Google O43 - CFD: 2015/07/25 21:50:50 - [] D -- C:\Users\gerard\AppData\Roaming\HP O43 - CFD: 2013/11/04 16:06:22 - [] D -- C:\Users\gerard\AppData\Roaming\HpUpdate O43 - CFD: 2009/01/21 12:59:04 - [] D -- C:\Users\gerard\AppData\Roaming\Identities O43 - CFD: 2015/07/29 15:25:26 - [] D -- C:\Users\gerard\AppData\Roaming\Image Zone Express O43 - CFD: 2009/12/25 10:06:01 - [] D -- C:\Users\gerard\AppData\Roaming\InstallShield O43 - CFD: 2009/01/25 10:35:49 - [] D -- C:\Users\gerard\AppData\Roaming\Locktime O43 - CFD: 2009/01/21 16:51:47 - [] D -- C:\Users\gerard\AppData\Roaming\Macromedia O43 - CFD: 2009/01/25 19:27:49 - [] D -- C:\Users\gerard\AppData\Roaming\Malwarebytes O43 - CFD: 2006/11/02 14:37:34 - [0] D -- C:\Users\gerard\AppData\Roaming\Media Center Programs O43 - CFD: 2009/02/07 17:52:38 - [] D -- C:\Users\gerard\AppData\Roaming\Media Player Classic O43 - CFD: 2013/05/21 08:28:17 - [] SD -- C:\Users\gerard\AppData\Roaming\Microsoft O43 - CFD: 2013/11/04 16:06:22 - [] D -- C:\Users\gerard\AppData\Roaming\Moniteur neufbox O43 - CFD: 2015/09/17 11:42:31 - [] D -- C:\Users\gerard\AppData\Roaming\Mozilla O43 - CFD: 2013/05/02 11:48:51 - [] D -- C:\Users\gerard\AppData\Roaming\MyHeritage O43 - CFD: 2009/01/22 16:01:30 - [] D -- C:\Users\gerard\AppData\Roaming\Nikon O43 - CFD: 2013/08/13 11:34:23 - [] D -- C:\Users\gerard\AppData\Roaming\OpenOffice O43 - CFD: 2009/01/21 22:48:01 - [] D -- C:\Users\gerard\AppData\Roaming\OpenOffice.org O43 - CFD: 2009/11/28 15:05:45 - [] D -- C:\Users\gerard\AppData\Roaming\Printer Info Cache O43 - CFD: 2015/09/15 08:20:27 - [] D -- C:\Users\gerard\AppData\Roaming\QuickScan O43 - CFD: 2013/02/21 10:52:33 - [] D -- C:\Users\gerard\AppData\Roaming\Real O43 - CFD: 2011/04/06 08:55:18 - [] D -- C:\Users\gerard\AppData\Roaming\Reviversoft O43 - CFD: 2013/10/23 12:01:43 - [] D -- C:\Users\gerard\AppData\Roaming\Samsung O43 - CFD: 2012/08/09 15:34:12 - [] D -- C:\Users\gerard\AppData\Roaming\SFR O43 - CFD: 2009/06/22 11:58:45 - [] D -- C:\Users\gerard\AppData\Roaming\Skyline O43 - CFD: 2010/05/09 09:35:29 - [] D -- C:\Users\gerard\AppData\Roaming\SMA O43 - CFD: 2009/05/18 09:00:17 - [0] D -- C:\Users\gerard\AppData\Roaming\The Complete Genealogy Reporter - FTB O43 - CFD: 2013/12/15 10:04:11 - [] D -- C:\Users\gerard\AppData\Roaming\Thunderbird O43 - CFD: 2013/11/03 11:33:34 - [] D -- C:\Users\gerard\AppData\Roaming\TuneUp Software O43 - CFD: 2009/02/07 17:59:53 - [] D -- C:\Users\gerard\AppData\Roaming\Ulead Systems O43 - CFD: 2015/09/01 16:16:31 - [] D -- C:\Users\gerard\AppData\Roaming\vlc O43 - CFD: 2012/08/13 10:08:59 - [] D -- C:\Users\gerard\AppData\Roaming\VSRevoGroup O43 - CFD: 2010/10/26 14:34:47 - [0] D -- C:\Users\gerard\AppData\Roaming\Windows Live Writer O43 - CFD: 2015/09/17 18:40:17 - [] D -- C:\Users\gerard\AppData\Roaming\ZHP O43 - CFD: 2015/09/17 08:29:27 - [] D -- C:\Users\gerard\AppData\Local\Adobe O43 - CFD: 2009/06/07 08:09:40 - [] D -- C:\Users\gerard\AppData\Local\Apple O43 - CFD: 2009/06/07 18:01:18 - [] D -- C:\Users\gerard\AppData\Local\Apple Computer O43 - CFD: 2009/01/21 12:58:59 - [0] SHD -- C:\Users\gerard\AppData\Local\Application Data O43 - CFD: 2009/01/22 14:58:31 - [] D -- C:\Users\gerard\AppData\Local\ArcSoft O43 - CFD: 2009/01/21 17:07:59 - [] D -- C:\Users\gerard\AppData\Local\ATI O43 - CFD: 2014/02/21 14:11:17 - [] D -- C:\Users\gerard\AppData\Local\cache O43 - CFD: 2015/09/07 08:30:44 - [0] D -- C:\Users\gerard\AppData\Local\CrashDumps O43 - CFD: 2013/05/17 16:58:08 - [] D -- C:\Users\gerard\AppData\Local\DIGINEXT O43 - CFD: 2013/10/23 12:04:29 - [] D -- C:\Users\gerard\AppData\Local\Downloaded Installations O43 - CFD: 2014/07/02 16:54:26 - [] D -- C:\Users\gerard\AppData\Local\F-Secure O43 - CFD: 2013/06/22 08:58:35 - [] D -- C:\Users\gerard\AppData\Local\Garmin O43 - CFD: 2013/06/22 08:16:52 - [] D -- C:\Users\gerard\AppData\Local\GARMIN_Corp O43 - CFD: 2015/08/13 18:53:49 - [] D -- C:\Users\gerard\AppData\Local\Google O43 - CFD: 2009/01/21 12:58:59 - [0] SHD -- C:\Users\gerard\AppData\Local\Historique O43 - CFD: 2013/11/13 10:46:10 - [] D -- C:\Users\gerard\AppData\Local\iSkysoft O43 - CFD: 2012/06/11 08:05:58 - [] D -- C:\Users\gerard\AppData\Local\Macromedia O43 - CFD: 2015/05/04 08:59:05 - [] D -- C:\Users\gerard\AppData\Local\Microsoft O43 - CFD: 2009/01/22 18:48:06 - [] D -- C:\Users\gerard\AppData\Local\Microsoft Games O43 - CFD: 2015/09/16 16:46:47 - [] D -- C:\Users\gerard\AppData\Local\Mozilla O43 - CFD: 2011/10/11 11:36:06 - [] D -- C:\Users\gerard\AppData\Local\Neuf O43 - CFD: 2014/03/22 17:47:54 - [0] D -- C:\Users\gerard\AppData\Local\PDF24 O43 - CFD: 2009/01/22 16:02:29 - [0] D -- C:\Users\gerard\AppData\Local\Pixology O43 - CFD: 2011/10/22 08:58:10 - [] D -- C:\Users\gerard\AppData\Local\rocherdigital O43 - CFD: 2013/10/23 12:01:41 - [] D -- C:\Users\gerard\AppData\Local\Samsung O43 - CFD: 2012/09/04 16:01:28 - [] D -- C:\Users\gerard\AppData\Local\SFR O43 - CFD: 2015/09/17 18:40:05 - [] AD -- C:\Users\gerard\AppData\Local\Temp O43 - CFD: 2009/01/21 12:58:59 - [0] SHD -- C:\Users\gerard\AppData\Local\Temporary Internet Files O43 - CFD: 2015/09/16 15:07:49 - [] D -- C:\Users\gerard\AppData\Local\Thunderbird O43 - CFD: 2009/01/22 16:35:43 - [] D -- C:\Users\gerard\AppData\Local\VirtualStore O43 - CFD: 2011/02/01 10:05:33 - [] D -- C:\Users\gerard\AppData\Local\Windows Live O43 - CFD: 2010/10/26 14:34:55 - [] D -- C:\Users\gerard\AppData\Local\Windows Live Writer O43 - CFD: 2009/11/28 21:02:40 - [] RD -- C:\Users\gerard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2009/01/21 12:59:11 - [] RD -- C:\Users\gerard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2010/01/06 11:28:00 - [] D -- C:\Users\gerard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blender Foundation O43 - CFD: 2009/02/25 16:12:28 - [] D -- C:\Users\gerard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeStuff Starter O43 - CFD: 2013/11/03 11:23:04 - [] D -- C:\Users\gerard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Duplicate Cleaner Free O43 - CFD: 2011/10/22 08:58:22 - [] D -- C:\Users\gerard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Loyer Manager O43 - CFD: 2009/11/28 21:02:40 - [] RD -- C:\Users\gerard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2009/06/25 10:24:50 - [] D -- C:\Users\gerard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Marvell O43 - CFD: 2013/05/02 11:41:23 - [] D -- C:\Users\gerard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyHeritage.com O43 - CFD: 2013/06/30 11:30:39 - [] D -- C:\Users\gerard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller O43 - CFD: 2014/07/02 21:21:01 - [] D -- C:\Users\gerard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SFR Cloud O43 - CFD: 2012/01/21 17:08:46 - [0] D -- C:\Users\gerard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SFR Jeux a la demande O43 - CFD: 2011/02/19 22:25:49 - [] D -- C:\Users\gerard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ski Challenge 11 (FTV) O43 - CFD: 2015/05/17 17:01:45 - [] RD -- C:\Users\gerard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2015/05/17 17:01:45 - [] HD -- C:\Users\gerard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup (Disabled by Starter) ---\\ Enumération des clés StartupReg (9) - 0s O53 - SMSR:HKLM\...\startupreg\20131224 [Key] . (.AVAST Software - avast! Emergency Update.) -- C:\Program Files\AVAST Software\Avast\Setup\emupdate\0b4d457e-e9bd-4c83-bfe9-a3383dee6b1b.exe O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe O53 - SMSR:HKLM\...\startupreg\Google Quick Search Box [Key] . (.Google Inc. - Google Quick Search Box.) -- C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe O53 - SMSR:HKLM\...\startupreg\HP Software Update [Key] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\HP\HP Software Update\HPWuSchd2.exe O53 - SMSR:HKLM\...\startupreg\Malwarebytes Anti-Malware (reboot) [Key] . (...) -- C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (...) -- C:\Program Files\Java\jre6\bin\jusched.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\swg [Key] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O53 - SMSR:HKLM\...\startupreg\UnlockerAssistant [Key] . (...) -- C:\Program Files\Unlocker\UnlockerAssistant.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\WMPNSCFG [Key] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\wmpnscfg.exe ---\\ Liste des pilotes du système (90) - 11s O58 - SDL:2015/08/01 14:28:37 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\121D531A.sys [98520] O58 - SDL:2008/01/21 04:23:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422968] O58 - SDL:2008/01/21 04:23:25 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [300600] O58 - SDL:2008/01/21 04:23:26 A . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) -- C:\Windows\System32\drivers\adpu160m.sys [101432] O58 - SDL:2008/01/21 04:23:27 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [149560] O58 - SDL:2006/11/10 16:05:00 A . (.Arcsoft, Inc. - Arcsoft(R) ASPI Shell.) -- C:\Windows\System32\drivers\afc.sys [18688] O58 - SDL:2008/01/21 04:23:00 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [17464] O58 - SDL:2008/01/21 04:23:23 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [79416] O58 - SDL:2008/01/21 04:23:24 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [79928] O58 - SDL:2006/10/18 15:44:48 A . (. - ATK0110 ACPI Utility.) -- C:\Windows\System32\drivers\ASACPI.sys [7680] O58 - SDL:2007/12/17 11:14:06 RA . (...) -- C:\Windows\System32\drivers\AsIO.sys [12400] O58 - SDL:2007/12/28 17:22:02 A . (...) -- C:\Windows\System32\drivers\ASUSHWIO.SYS [10296] O58 - SDL:2015/07/30 18:36:53 A . (.AVAST Software - avast! HWID.) -- C:\Windows\System32\drivers\aswHwid.sys [24016] O58 - SDL:2013/05/09 10:59:09 A . (.AVAST Software - avast! Keyboard Filter Driver.) -- C:\Windows\System32\drivers\aswKbd.sys [21576] O58 - SDL:2015/07/30 18:36:53 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [76000] O58 - SDL:2015/07/30 18:36:53 A . (.AVAST Software - avast! TDI Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr.sys [55200] O58 - SDL:2015/07/30 18:36:53 A . (.AVAST Software - avast! Revert.) -- C:\Windows\System32\drivers\aswRvrt.sys [49776] O58 - SDL:2015/07/30 18:34:52 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [788784] O58 - SDL:2015/07/30 18:36:53 A . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\drivers\aswSP.sys [433264] O58 - SDL:2015/07/30 18:36:53 A . (.AVAST Software - avast! Stream Filter.) -- C:\Windows\System32\drivers\aswStmXP.sys [161472] O58 - SDL:2015/07/30 18:36:53 A . (.AVAST Software - avast! TDI Filter Driver.) -- C:\Windows\System32\drivers\aswTdi.sys [57888] O58 - SDL:2015/07/30 18:36:53 A . (.AVAST Software - avast! VM Monitor.) -- C:\Windows\System32\drivers\aswVmm.sys [208664] O58 - SDL:2009/05/16 06:01:23 A . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [4933632] O58 - SDL:2012/11/16 21:38:48 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\drivers\atikmpag.sys [290304] O58 - SDL:2009/12/25 10:11:46 A . (...) -- C:\Windows\System32\drivers\atksgt.sys [278984] O58 - SDL:2006/11/02 10:24:45 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] O58 - SDL:2006/11/02 10:24:46 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] O58 - SDL:2006/11/02 10:25:24 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [71808] O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] O58 - SDL:2006/11/02 10:24:47 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] O58 - SDL:2008/01/21 04:23:00 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [19000] O58 - SDL:2013/06/14 19:56:16 A . (.Devguru Co., Ltd - Device Error Recovery SDK(x86).) -- C:\Windows\System32\drivers\dgderdrv.sys [20032] O58 - SDL:2006/11/02 11:50:11 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [71272] O58 - SDL:2008/01/21 04:23:24 A . (.Intel Corporation - Pilote désérialisé NDIS 6 de la carte Intel.) -- C:\Windows\System32\drivers\E1G60I32.sys [118784] O58 - SDL:2008/01/21 04:23:22 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [342584] O58 - SDL:2008/01/21 04:23:26 A . (.Hewlett-Packard Company - Smart Array Storport Driver.) -- C:\Windows\System32\drivers\HpCISSs.sys [40504] O58 - SDL:2008/01/21 04:23:23 A . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) -- C:\Windows\System32\drivers\iaStorV.sys [235064] O58 - SDL:2006/11/02 11:50:17 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41576] O58 - SDL:2006/11/02 11:50:07 A . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\System32\drivers\iteatapi.sys [35944] O58 - SDL:2006/11/02 11:50:09 A . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\System32\drivers\iteraid.sys [35944] O58 - SDL:2008/06/25 18:47:00 A . (.Atheros Communications, Inc. - Atheros AR8121/AR8113/AR8114 PCI-E Ethernet.) -- C:\Windows\System32\drivers\l1e51x86.sys [36864] O58 - SDL:2008/06/30 19:28:00 A . (.Atheros Communications, Inc. - Atheros AR8121/AR8113/AR8114 PCI-E Ethernet.) -- C:\Windows\System32\drivers\L1E60x86.sys [47616] O58 - SDL:2009/12/25 10:11:46 A . (...) -- C:\Windows\System32\drivers\lirsgt.sys [25416] O58 - SDL:2008/01/21 04:23:23 A . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [96312] O58 - SDL:2008/01/21 04:23:25 A . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89656] O58 - SDL:2008/01/21 04:23:23 A . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96312] O58 - SDL:2015/06/18 08:41:36 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [23256] O58 - SDL:2015/06/18 08:41:42 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [94936] O58 - SDL:2015/09/06 11:21:55 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbamswissarmy.sys [98520] O58 - SDL:2008/01/21 04:23:27 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [31288] O58 - SDL:2008/01/21 04:23:27 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [386616] O58 - SDL:2006/11/02 11:49:59 A . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\Mraid35x.sys [33384] O58 - SDL:2009/03/20 05:53:48 A . (.Marvell Semiconductor, Inc. - Marvell Thor Windows Driver.) -- C:\Windows\System32\drivers\mv61xx.sys [154664] O58 - SDL:2015/06/18 08:41:50 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [51928] O58 - SDL:2006/11/02 11:50:19 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [45160] O58 - SDL:2015/07/30 18:34:44 A . (.AVAST Software - avast! NG snapshot driver.) -- C:\Windows\System32\drivers\ngvss.sys [95112] O58 - SDL:2006/11/02 09:36:50 A . (.N-trig Innovative Technologies - Pilote intégré de digitalisateur de tablett.) -- C:\Windows\System32\drivers\ntrigdigi.sys [20608] O58 - SDL:2008/01/21 04:23:21 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [102968] O58 - SDL:2008/01/21 04:23:21 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [45112] O58 - SDL:2008/01/21 04:23:24 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1122360] O58 - SDL:2006/11/02 11:50:35 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106088] O58 - SDL:2006/11/02 08:37:21 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] O58 - SDL:2008/01/21 04:23:26 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [74808] O58 - SDL:2013/06/21 02:07:52 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudbus.sys [84248] O58 - SDL:2013/06/21 02:07:52 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudmdm.sys [181912] O58 - SDL:2006/11/02 11:50:05 A . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) -- C:\Windows\System32\drivers\symc8xx.sys [35944] O58 - SDL:2006/11/02 11:49:56 A . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_hi.sys [31848] O58 - SDL:2006/11/02 11:50:03 A . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_u3.sys [34920] O58 - SDL:2014/06/15 18:25:42 A . (...) -- C:\Windows\System32\drivers\TrueSight.sys [26624] O58 - SDL:2008/01/21 04:23:20 A . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\System32\drivers\uliahci.sys [238648] O58 - SDL:2006/11/02 11:50:35 A . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win200.) -- C:\Windows\System32\drivers\ulsata.sys [98408] O58 - SDL:2008/01/21 04:23:23 A . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\System32\drivers\ulsata2.sys [115816] O58 - SDL:2008/01/21 04:23:00 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [20024] O58 - SDL:2008/01/21 04:23:23 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [130616] O58 - SDL:2006/11/02 09:09:42 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:2006/11/02 09:09:45 A . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:2006/11/02 09:09:41 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:2006/11/02 09:09:29 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:2006/11/02 09:09:35 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:2006/11/02 09:09:38 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:2006/11/02 09:09:40 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:2006/11/02 09:09:31 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:2006/11/02 09:09:20 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:2006/11/02 09:09:23 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:2006/11/02 09:09:24 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:2006/11/02 09:09:26 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:2006/11/02 09:09:22 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (3) - 6s O61 - LFC: 2015/09/16 14:21:34 A . (.ResetBrowser - Comment Supprimer ?.) -- C:\Users\gerard\Downloads\ResetBrowser.exe [1610240] O61 - LFC: 2015/09/12 02:22:58 A . (.Google Inc..) -- C:\Users\gerard\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.8.823\_platform_specific\win_x86\widevinecdmadapter.dll [189256] O61 - LFC: 2015/09/17 08:29:29 A . (..) -- C:\Users\gerard\AppData\Local\Adobe\E31636B7-4599-495A-97FA-57C9F713BAF1\gtcheck.exe [77312] ---\\ Associations Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\wscript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ---\\ Recherche d'infection sur les navigateurs (4) - 0s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {29d95239-2b67-42be-bcac-38b4706ac9b7} - (Wibeez) - http://www.wibeez.com/ O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (@ieframe.dll,-12512) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} - (Yahoo! (Avast)) - http://fr.search.yahoo.com/ ---\\ Enumère les services démarrés par Svchost (31) - 0s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [24576] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [62976] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [125952] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [576512] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [444928] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [316928] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d'accès distant.) -- C:\Windows\System32\rasmans.dll [262144] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [68608] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [47104] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\Windows\System32\ipnathlp.dll [288256] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242688] O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes Termi.) -- C:\Windows\System32\termsrv.dll [449536] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1933848] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [758784] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [200704] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [19968] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [33280] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [111616] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [45056] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [153600] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [57344] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [162304] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [602112] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service de configuration des services Termi.) -- C:\Windows\System32\SessEnv.dll [84992] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [81920] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [68096] ---\\ Liste des exceptions du parefeu Windows (5) - 2s O87 - FAEL: "{4D5B3195-0F01-4867-837B-D2713D68E97C}" [In-None-P6-FALSE] .(...) -- C:\Program Files\LoyerManager\rocherdigital\mysql\bin\mysqld.exe O87 - FAEL: "{C0FDFF1E-8704-404C-9651-F0081B9ED1B4}" [In-None-P17-FALSE] .(...) -- C:\Program Files\LoyerManager\rocherdigital\mysql\bin\mysqld.exe O87 - FAEL: "{84A991B9-8077-4260-AD91-EAFE5C55552A}" [In-None-P6-FALSE] .(.Copyright (C) 2008-2009 QtWeb.NET - QtWeb Internet Browser.) -- C:\Program Files\LoyerManager\rocherdigital\GUI.exe O87 - FAEL: "{4C21B5FD-468D-4A40-A9A4-46B182EFC0C7}" [In-None-P17-FALSE] .(.Copyright (C) 2008-2009 QtWeb.NET - QtWeb Internet Browser.) -- C:\Program Files\LoyerManager\rocherdigital\GUI.exe O87 - FAEL: "{6DC13C52-3C4C-46EE-BB6D-5DE66954F01A}" [In-None-P17-TRUE] .(.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (3) - 32s SR - Auto [2014/12/31 11:30:08] [ 451416] Garmin Core Update Service (Garmin Core Update Service) . (.Garmin Ltd or its subsidiaries.) - C:\Program Files\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe SS - Auto [2015/09/01 07:54:23] [ 144200] Google Update Service (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe SS - Demand [2015/09/01 07:54:23] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe ---\\ Scan Additionnel (1) - 0s ~ Aucun élément malicieux ou superflu trouvé. ---\\ Récapitulatif des éléments trouvées sur votre station (1) - 0s http://www.nicolascoolman.fr/adware-boxore/ =>PUP.Optional.Boxore ~ End of the scan, 14755 items in 112 seconds (917)(0)()