~ ZHPDiag v2015.10.10.148 Par Nicolas Coolman (2015/10/10) ~ Démarré par Morgan (Administrator) (2015/10/14 06:43:01) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\Morgan\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Morgan\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 7 Professional, 64-bit Service Pack 1 (Build 7601) ---\\ Navigateurs Internet (2) - 0s MFIE: Mozilla Firefox 41.0.1 (x86 fr) v41.0.1 MSIE: Internet Explorer v11.0.9600.18059 ---\\ Informations sur les produits Windows (4) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : KO ---\\ Logiciels de protection (1) - 1s Windows Defender W7 (Activate) ---\\ Surveillance de Logiciels (1) - 1s Adobe Flash Player 19 NPAPI ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 63 Stepping 2, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 16600.612 MB (83% free) ~ System Restore: Activé (Enable) ~ System drive C: has 165 GB free of 244 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: FREEMACHINE ~ User Name: Morgan ~ Logged in as Administrator ---\\ Enumération des unités disques (3) - 0s ~ Drive C: has 165 GB free of 244 GB (System) ~ Drive D: has 1538 GB free of 2097 GB ~ Drive E: has GB free of 7 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (26) - 0s [MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2871808] © [MD5.DD81D91FF3B0763C392422865C9AC12E] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [45568] © [MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [129024] © [MD5.BD06D875FB79E92DAF724C91DE743AFA] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [2487808] © [MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [455168] © [MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [232448] © [MD5.DE61AFF4060E7EF76B030885C7D939D1] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\Windows\System32\dnsapi.dll [357888] © =>Hijacker.Jabuticaba.X [MD5.F1DCB357ACAAA06B78CDEA530560DA84] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\Windows\Syswow64\dnsapi.dll [270336] © =>Hijacker.Jabuticaba.X [MD5.0D57D091E06BB1E58E72E5D08479FDDF] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] © [MD5.FA886682CFC5D36718D3E436AACF10B9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [497152] © [MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [24128] © [MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [92160] © [MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [147456] © [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [102400] © [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [122368] © [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [105472] © [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [116224] © [MD5.ACB6782973BD93760D597FC7BB37E692] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [159232] © [MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [261632] © [MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1684928] © [MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [97280] © [MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] © [MD5.1B6163C503398B23FF8B939C67747683] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [165888] © [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [93184] © [MD5.70988118145F5F10EF24720B97F35F65] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [119296] © [MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [295808] © ---\\ Processus lancés (44) - 2s [MD5.6B245B7F96F901891636814B5A7A9088] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 358.5.) -- C:\Windows\system32\nvvsvc.exe [938800] [PID.992] © [MD5.C368FAF3084E3978462159F1DDAFF54F] - (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [417400] [PID.1016] © [MD5.7876CB89775B67347797E04775B2FAF9] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe [632048] [PID.1636] © [MD5.D3C40989B164358F5BAA11EB7F605390] - (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155376] [PID.1692] © [MD5.E42505363945956ECB5D38A4EB21CB39] - (.Intel Corporation - Intel® PROSet Monitoring Service.) -- C:\Windows\system32\IProsetMonitor.exe [260360] [PID.1760] © [MD5.930AE35B57C33F361AF045D220229063] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872688] [PID.1816] © [MD5.B2C3D31934FAFA20EE8ED1977651E871] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5568816] [PID.1940] © [MD5.BC49E8BDBC6C1B161FDDB350CE423366] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [154864] [PID.1156] © [MD5.C3FFB098C24A82B61E1818C3BB978B48] - (.Intel® Corporation - Intel® PROSet/Wireless Zero Configure Servi.) -- C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3816176] [PID.2116] © [MD5.11AFDF4FC4B0906CEBD98D672F438939] - (.NVIDIA Corporation - NVIDIA Network Stream Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [7575344] [PID.2404] © [MD5.648061F9712FA520B47F0291EAD1F732] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1252984] [PID.3020] © [MD5.6B245B7F96F901891636814B5A7A9088] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 358.5.) -- C:\Windows\system32\nvvsvc.exe [938800] [PID.3028] © [MD5.3B21300676CD2FCF13D0E6BDE1CC6A09] - (.NVIDIA Corporation - NVIDIA Streamer User Agent.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe [21983024] [PID.3468] © [MD5.FEDF59A44767480267C5615C46F0FBA5] - (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2654512] [PID.3916] © [MD5.983DB56152EC98FDDD43987A23971533] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2448176] [PID.4028] © [MD5.7B214267AD189EF67170228EAF549E6F] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Framework.) -- C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [4876528] [PID.2224] © [MD5.215F76642FC1C3988EBC29A1DCEF917F] - (.Copyright (C) 2007 - HsMgr Application.) -- C:\Windows\SysWOW64\ExMgr.exe [204800] [PID.3224] [MD5.022756278320918052752CDC9261379C] - (.CopyRight © ASUSTek Computer Inc. 2013 - ASUS Phoebus.) -- C:\Program Files\ASUS Phoebus Audio Sound Card\CPL\Phoebus_x64.exe [2384384] [PID.3980] © [MD5.35B5C11A892B5C9C4CFEBA528573FDF7] - (.Valve Corporation - Steam Client Bootstrapper.) -- D:\Programmes\Steam\Steam.exe [2900560] [PID.3960] © [MD5.5707FD4D98EE906361ADB2819D1E8D39] - (.GameRanger Technologies - GameRanger.) -- C:\Users\Morgan\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe [1792664] [PID.3908] © [MD5.EE864CD35936E4AAD8120321907DA8F5] - (.Dolby Laboratories Inc. - Dolby Profile Selector.) -- C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [508656] [PID.2016] © [MD5.A34F491D7BF77F9628319A1A14063D13] - (.ROCCAT GmbH - Kone XTD Optical Monitor Application.) -- D:\Programmes\ROCCAT\KoneXTDOpticalMonitor.exe [552960] [PID.3704] [MD5.F916BA0DA28A4B4F7B1ADE76EB42F088] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597552] [PID.3804] © [MD5.FEFF60CA0FBC86A043495FA79581CEA9] - (.Motorola Solutions, Inc. - Bluetooth Device Monitor.) -- C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [1206648] [PID.4544] © [MD5.075D93A7094E1BCBDE3A2D8EBA803745] - (.Motorola Solutions, Inc. - Bluetooth OBEX Service.) -- C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [1165688] [PID.4676] © [MD5.F6234C4C494D411DEE452483C866EFC8] - (.Motorola Solutions, Inc. - Bluetooth Media Service.) -- C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [1706360] [PID.5076] © [MD5.2A4BB03CB3E07015449D89D3A980226F] - (.Valve Corporation - Steam Client WebHelper.) -- D:\Programmes\Steam\bin\steamwebhelper.exe [1833040] [PID.5268] © [MD5.E44E78AD19D1E5B14184D480EC369356] - (.Cmedia Electronics Inc. - EX Audio Service.) -- C:\Windows\system\ATLOISAService.exe [512000] [PID.5292] [MD5.1C9259F0B27C55B7028D2AFBE96A9B45] - (.Cmedia Electronics Inc - Monitor Service.) -- C:\Windows\system\MonitorService.exe [650752] [PID.5436] [MD5.A50EBBF5CCC4D74B37D88503A52C72A8] - (.Valve Corporation - Steam Client Service.) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe [838224] [PID.5460] © [MD5.D3F4701007AC79F81492BCBA4EBBE45A] - (.GOG.com - GOG Galaxy.) -- C:\Program Files (x86)\GalaxyClient\GalaxyClient.exe [7744056] [PID.5772] © [MD5.C4120F4FCB936911C42870F5D277FAA6] - (.GOG.com - GalaxyClient Helper Application.) -- C:\Program Files (x86)\GalaxyClient\GalaxyClient Helper.exe [1492536] [PID.5696] © [MD5.C4120F4FCB936911C42870F5D277FAA6] - (.GOG.com - GalaxyClient Helper Application.) -- C:\Program Files (x86)\GalaxyClient\GalaxyClient Helper.exe [1492536] [PID.5804] © [MD5.C4120F4FCB936911C42870F5D277FAA6] - (.GOG.com - GalaxyClient Helper Application.) -- C:\Program Files (x86)\GalaxyClient\GalaxyClient Helper.exe [1492536] [PID.5500] © [MD5.CB46168FFDEA91E2B3435E51BB436558] - (.Intel Corporation - iusb3mon.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [296216] [PID.6648] © [MD5.2545A3C12E99CAA24F9367D7F5A80D83] - (.Intel Corporation - IAStorIcon.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592] [PID.6932] © [MD5.D524B034148F14C60F1CA66D267EE56A] - (.Intel Corporation - IAStorDataSvc.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [16232] [PID.6556] © [MD5.2749D828991C160D1D8E7A06A0A95D93] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584] [PID.3812] © [MD5.9C30978597D52AD8EA319BABE6112AAE] - (.Intel Corporation - Intel(R) Local Management Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [405976] [PID.6616] © [MD5.601C233CDC2422AD7244D423ED8DFB50] - (.Mozilla Corporation - Firefox.) -- D:\Programmes\Firefox\firefox.exe [377000] [PID.3288] © [MD5.79E195C249126C970C90CCD5EE3882C2] - (.Mozilla Corporation - Plugin Container for Firefox.) -- D:\Programmes\Firefox\plugin-container.exe [278184] [PID.2784] © [MD5.C8D98A82C89895912E8936046C6B7EDD] - (.Adobe Systems, Inc. - Adobe Flash Player 19.0 r0.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_19_0_0_207.exe [3426504] [PID.7056] © [MD5.C8D98A82C89895912E8936046C6B7EDD] - (.Adobe Systems, Inc. - Adobe Flash Player 19.0 r0.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_19_0_0_207.exe [3426504] [PID.5304] © [MD5.1D45319619579DDA7DE8DE9BB1E3079E] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Morgan\Downloads\ZHPDiag3.exe [1943040] [PID.3228] © ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (4) - 0s M0 - MFSP: prefs.js [Morgan - wca0u3gz.default] https://www.malwarebytes.org/restorebrowser//?type=hp&ts=1444784454&z=ccbff7865733c8576b7ae14g4zdz4zbmcbez2ofo1b&from=ima&uid=ST4000DX001-1CE168_Z301BASBXXXXZ301BASB P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_207.dll © P2 - FPN: [HKLM] [@tools.Software.com/Software Update;version=3] - (.The Software Group.) -- C:\Program Files (x86)\Software\Update\1.3.25.0\npSoftwareUpdate3.dll =>PUP.Optional.Boxore P2 - FPN: [HKLM] [@tools.Software.com/Software Update;version=9] - (.The Software Group.) -- C:\Program Files (x86)\Software\Update\1.3.25.0\npSoftwareUpdate3.dll =>PUP.Optional.Boxore ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (16) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) © F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) © F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) © ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Object de navigateur (BHO) (1) - 0s O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll © ---\\ Applications lancées au démarrage du système (23) - 0s O4 - HKLM\..\Run: [IntelPROSet] . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Framework.) -- C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe © O4 - HKLM\..\Run: [BTMTrayAgent] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe © O4 - HKLM\..\Run: [IAStorIcon] . (.Intel Corporation - Delayed launcher.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe © O4 - HKLM\..\Run: [PheobusEX] . (.Copyright (C) 2007 - HsMgr Application.) -- C:\Windows\SysWOW64\ExMgr.exe O4 - HKLM\..\Run: [GamecomSound] . (.CopyRight © ASUSTek Computer Inc. 2013 - ASUS Phoebus.) -- C:\Program Files\ASUS Phoebus Audio Sound Card\CPL\Phoebus_x64.exe © O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe © O4 - HKLM\..\Run: [ShadowPlay] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe © O4 - HKCU\..\Run: [DAEMON Tools Lite] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- D:\Programmes\DAEMON Tools Lite\DTLite.exe © O4 - HKCU\..\Run: [GalaxyClient] . (.GOG.com - GOG Galaxy.) -- C:\Program Files (x86)\GalaxyClient\GalaxyClient.exe © O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- D:\Programmes\Steam\Steam.exe © O4 - HKLM\..\Wow6432Node\Run: [Dolby Home Theater v4] . (.Dolby Laboratories Inc. - Dolby Profile Selector.) -- C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe © O4 - HKLM\..\Wow6432Node\Run: [ProductUpdater] . (.Copyright © 2015 - ProductUpdater.) -- C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe O4 - HKLM\..\Wow6432Node\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe (.not file.) O4 - HKLM\..\Wow6432Node\Run: [RoccatKoneXTDOptical] . (.ROCCAT GmbH - Kone XTD Optical Monitor Application.) -- D:\Programmes\ROCCAT\KoneXTDOpticalMonitor.EXE O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe © O4 - HKLM\..\Wow6432Node\Run: [USB3MON] . (.Intel Corporation - iusb3mon.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe © O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe © O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe © O4 - HKUS\S-1-5-21-1104989661-2907608435-2406173968-1000\..\Run: [DAEMON Tools Lite] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- D:\Programmes\DAEMON Tools Lite\DTLite.exe © O4 - HKUS\S-1-5-21-1104989661-2907608435-2406173968-1000\..\Run: [GalaxyClient] . (.GOG.com - GOG Galaxy.) -- C:\Program Files (x86)\GalaxyClient\GalaxyClient.exe © O4 - HKUS\S-1-5-21-1104989661-2907608435-2406173968-1000\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- D:\Programmes\Steam\Steam.exe © ---\\ Modification Domaine/Adresses DNS (6) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 109.0.66.10 109.0.66.20 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.10 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 109.0.66.10 109.0.66.20 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.10 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 109.0.66.10 109.0.66.20 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.10 ---\\ Protocole additionnel (20) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll © O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © ---\\ Liste des services NT non Microsoft et non désactivés (15) - 0s O23 - Service: Bluetooth Device Monitor (Bluetooth Device Monitor) . (.Motorola Solutions, Inc. - Bluetooth Device Monitor.) - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe © O23 - Service: Bluetooth Media Service (Bluetooth Media Service) . (.Motorola Solutions, Inc. - Bluetooth Media Service.) - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe © O23 - Service: Bluetooth OBEX Service (Bluetooth OBEX Service) . (.Motorola Solutions, Inc. - Bluetooth OBEX Service.) - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe © O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe © O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe © O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe © O23 - Service: Intel(R) PROSet Monitoring Service (Intel(R) PROSet Monitoring Service) . (.Intel Corporation - Intel® PROSet Monitoring Service.) - C:\Windows\system32\IProsetMonitor.exe © O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe © O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe © O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe © O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe © O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 358.5.) - C:\Windows\system32\nvvsvc.exe © O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe © O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe © O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) . (.Intel® Corporation - Intel® PROSet/Wireless Zero Configure Servi.) - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe © ---\\ Tâches planifiées en automatique (19) - 4s [MD5.00000000000000000000000000000000] [APT] [9E07OMZu] (...) -- C:\Users\Morgan\AppData\Roaming\9E07OMZu.exe (.not file.) [0] =>PUP.Optional.CrossRider [MD5.541F7A3298A5AA2BA0E6B35172D3D51F] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000] © [MD5.00000000000000000000000000000000] [APT] [IgpLDox098Q] (...) -- C:\Users\Morgan\AppData\Roaming\IgpLDox098Q.exe (.not file.) [0] =>PUP.Optional.CrossRider [MD5.00000000000000000000000000000000] [APT] [SoftwareUpdateTaskMachineUA] (...) -- C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe (.not file.) [0] =>PUP.Optional.Boxore [MD5.00000000000000000000000000000000] [APT] [{1A853579-5C2B-43A9-83A1-F4B1478385D5}] (...) -- C:\Users\Morgan\Desktop\3DMGAME-The.Binding.of.Isaac.Rebirth.v1.0.Cracked-3DM\The Binding of Isaac Rebirth\isaac-ng.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{45E2E2AF-75DD-47FB-B1C9-6FC6FD38C3EB}] (...) -- C:\Users\Morgan\Desktop\3DMGAME-The.Binding.of.Isaac.Rebirth.v1.0.Cracked-3DM\The Binding of Isaac Rebirth\isaac-ng.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{668BEEC5-F55B-477F-955B-8A7D8969CAFD}] (...) -- D:\Programmes\Rogue Legacy\RogueLegacy.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{96AC852B-1ABB-4590-A681-F5407D5CA95C}] (...) -- C:\Users\Morgan\Desktop\3DMGAME-The.Binding.of.Isaac.Rebirth.v1.0.Cracked-3DM\The Binding of Isaac Rebirth\isaac-ng.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{99A8710F-BFC7-418C-8CFD-BFFDEAD7130A}] (...) -- D:\Jeux\Diablo 2\D2Patch_112a_JeuxVideo.com_13748.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{E87B1F7D-EC2E-47E7-B5F1-345D73AEE238}] (...) -- C:\Users\Morgan\Desktop\3DMGAME-The.Binding.of.Isaac.Rebirth.v1.0.Cracked-3DM\The Binding of Isaac Rebirth\isaac-ng.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{EC2BC208-8F09-4164-9B84-EDCA60576138}] (...) -- D:\Jeux\Diablo 2\D2Patch_112a_JeuxVideo.com_13748.exe (.not file.) [0] O39 - APT: 9E07OMZu - (...) -- C:\Windows\Tasks\9E07OMZu.job [992] =>PUP.Optional.CrossRider O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] © O39 - APT: IgpLDox098Q - (...) -- C:\Windows\Tasks\IgpLDox098Q.job [998] =>PUP.Optional.CrossRider O39 - APT: SoftwareUpdateTaskMachineUA - (...) -- C:\Windows\Tasks\SoftwareUpdateTaskMachineUA.job [918] =>PUP.Optional.Boxore O39 - APT: 9E07OMZu - (...) -- C:\Windows\System32\Tasks\9E07OMZu [4026] =>PUP.Optional.CrossRider O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3940] © O39 - APT: IgpLDox098Q - (...) -- C:\Windows\System32\Tasks\IgpLDox098Q [4032] =>PUP.Optional.CrossRider O39 - APT: SoftwareUpdateTaskMachineUA - (...) -- C:\Windows\System32\Tasks\SoftwareUpdateTaskMachineUA [3914] =>PUP.Optional.Boxore ---\\ Logiciels installés (48) - 4s O42 - Logiciel: Intel(R) Network Connections 19.1.51.0 - (.Intel.) [HKLM][64Bits] -- PROSetDX © O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player © O42 - Logiciel: WinRAR 5.11 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver © O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {1B444AF9-1DBE-4884-8F35-969BEFCF69A8} © O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {1CEAC85D-2590-4760-800F-8DE5E91F3700} © O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {243B5B47-6A9C-4D51-8CA4-8D9C0308D02F} © O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {409CB30E-E457-4008-9B1A-ED1B9EA21140} © O42 - Logiciel: Intel® PROSet/Wireless WiFi Software - (.Intel Corporation.) [HKLM][64Bits] -- {62DE858A-A2A5-452F-B067-C5F104358AD6} © O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel Corporation.) [HKLM][64Bits] -- {98841A35-1CBE-4EA3-BFF5-F3E3AD894666} © O42 - Logiciel: NVIDIA Pilote 3D Vision 358.50 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision © O42 - Logiciel: NVIDIA Pilote graphique 358.50 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver © O42 - Logiciel: NVIDIA GeForce Experience 2.5.15.46 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience © O42 - Logiciel: NVIDIA Pilote du contrôleur 3D Vision 352.65 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB © O42 - Logiciel: NVIDIA Logiciel système PhysX 9.15.0428 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX © O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.34.3 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver © O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {BB193400-CE40-4598-8391-FE63EC46BFF4} © O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {EAF826C0-245E-4D02-9D51-BA4C98717EAE} © O42 - Logiciel: Intel(R) ME UninstallLegacy - (.Intel Corporation.) [HKLM][64Bits] -- {F43C7651-A7CB-49EF-8AF4-40630849FF29} © O42 - Logiciel: Intel(R) Network Connections 19.1.51.0 - (.Intel.) [HKLM][64Bits] -- {FD42EE05-18F9-459F-935D-770E75B3BEE5} © O42 - Logiciel: Adobe Flash Player 19 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI © O42 - Logiciel: Battle.net - (.Blizzard Entertainment.) [HKLM][64Bits] -- Battle.net © O42 - Logiciel: Battlelog Web Plugins - (.EA Digital Illusions CE AB.) [HKLM][64Bits] -- Battlelog Web Plugins © O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite © O42 - Logiciel: Fallout 2 - (...) [HKLM][64Bits] -- Fallout 2 O42 - Logiciel: Freemake Video Converter version 4.1.6 - (.Ellora Assets Corporation.) [HKLM][64Bits] -- Freemake Video Converter_is1 © O42 - Logiciel: Hearthstone - (.Blizzard Entertainment.) [HKLM][64Bits] -- Hearthstone © O42 - Logiciel: Mozilla Firefox 41.0.1 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 41.0.1 (x86 fr) © O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIAStereo © O42 - Logiciel: Dying Light Update v1.6.1 - (...) [HKLM][64Bits] -- RHlpbmdMaWdodA==_is1 O42 - Logiciel: Far Cry 4 - (...) [HKLM][64Bits] -- RmFyQ3J5NA==_is1 O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam © O42 - Logiciel: Terraria - (.Re-Logic.) [HKLM][64Bits] -- Steam App 105600 © O42 - Logiciel: Marvel Heroes 2015 - (.Gazillion Entertainment.) [HKLM][64Bits] -- Steam App 226320 O42 - Logiciel: Counter-Strike: Global Offensive - (.Valve.) [HKLM][64Bits] -- Steam App 730 © O42 - Logiciel: The Walking Dead Season 2 - (...) [HKLM][64Bits] -- The Walking Dead Season 2_is1 O42 - Logiciel: The Wolf Among Us Episode 5 - (...) [HKLM][64Bits] -- The Wolf Among Us Episode 5_is1 O42 - Logiciel: Logiciel Intel® PROSet/Wireless - (.Intel Corporation.) [HKLM][64Bits] -- {21de8cfa-6d1e-4bb2-bbe2-0bc64e82d547} © O42 - Logiciel: Intel(R) USB 3.0 eXtensible Host Controller Driver - (.Intel Corporation.) [HKLM][64Bits] -- {240C3DDD-C5E9-4029-9DF7-95650D040CF2} © O42 - Logiciel: Java 8 Update 60 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218060F0} © O42 - Logiciel: GOG Galaxy - (.GOG.com.) [HKLM][64Bits] -- {7258BA11-600C-430E-A759-27E2C691A335}_is1 © O42 - Logiciel: Software Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} © O42 - Logiciel: ROCCAT Kone XTD Optical Mouse Driver - (.Roccat GmbH.) [HKLM][64Bits] -- {AD43B296-FE63-42C0-AA39-D8759B905420} O42 - Logiciel: Dolby Home Theater v4 - (.Dolby Laboratories Inc.) [HKLM][64Bits] -- {B26438B4-BF51-49C3-9567-7F14A5E40CB9} © O42 - Logiciel: Logiciel pour périphérique à chipset Intel® - (.Intel(R) Corporation.) [HKLM][64Bits] -- {d370215a-d003-43ae-a3b6-1028af64d5a1} © O42 - Logiciel: ASUS Phoebus Audio Sound Card - (.ASUS Phoebus.) [HKLM][64Bits] -- {F07DD099-4BB2-44E9-8E64-FE9B781E8C02} O42 - Logiciel: Dying Light - (.Warner Bros Games.) [HKLM][64Bits] -- {F7B2E17E-4A27-4CFB-A7AC-210A6DD083BC}_is1 O42 - Logiciel: GameRanger - (.GameRanger Technologies.) [HKCU][64Bits] -- GameRanger © O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent ---\\ HKCU & HKLM Software Keys (100) - 4s HKLM\SOFTWARE\Wow6432Node\Activision HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\ASIO HKLM\SOFTWARE\Wow6432Node\ASUS Phoebus Audio Sound Card HKLM\SOFTWARE\Wow6432Node\Battle.net HKLM\SOFTWARE\Wow6432Node\Battlelog Web Plugins HKLM\SOFTWARE\Wow6432Node\Bethesda Softworks HKLM\SOFTWARE\Wow6432Node\Blizzard Entertainment HKLM\SOFTWARE\Wow6432Node\Disc Soft HKLM\SOFTWARE\Wow6432Node\DownloadCenter HKLM\SOFTWARE\Wow6432Node\Electronic Arts HKLM\SOFTWARE\Wow6432Node\Enterbrain HKLM\SOFTWARE\Wow6432Node\EVP HKLM\SOFTWARE\Wow6432Node\Freemake HKLM\SOFTWARE\Wow6432Node\futuremark HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Wow6432Node\GOG.com HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Interplay HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\Lavasoft HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\McAfee.com HKLM\SOFTWARE\Wow6432Node\mcafeeupdater HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\Opera Software HKLM\SOFTWARE\Wow6432Node\Origin Games HKLM\SOFTWARE\Wow6432Node\re-logic HKLM\SOFTWARE\Wow6432Node\ROCCAT HKLM\SOFTWARE\Wow6432Node\Software HKLM\SOFTWARE\Wow6432Node\THQ HKLM\SOFTWARE\Wow6432Node\TOSHIBA HKLM\SOFTWARE\Wow6432Node\Valve HKLM\SOFTWARE\Wow6432Node\Wizards of the Coast HKLM\SOFTWARE\Wow6432Node\Wow6432Node HKLM\SOFTWARE\Wow6432Node\Yahoo HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\9E07OMZu HKCU\SOFTWARE\Alex Feinman HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Battle.net HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\Blizzard Entertainment HKCU\SOFTWARE\C-Media HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\CoGenMedia HKCU\SOFTWARE\DailyPcClean =>PUP.Optional.DailyPCClean HKCU\SOFTWARE\Disc Soft HKCU\SOFTWARE\Dolby HKCU\SOFTWARE\DownloadCenter HKCU\SOFTWARE\Electronic Arts HKCU\SOFTWARE\Enterbrain HKCU\SOFTWARE\Freemake HKCU\SOFTWARE\Futuremark HKCU\SOFTWARE\GameRanger HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\GOG.com HKCU\SOFTWARE\Google HKCU\SOFTWARE\IgpLDox098Q HKCU\SOFTWARE\Intel HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\Local AppWizard-Generated Applications HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\MCAFEE HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\NVIDIA Corporation HKCU\SOFTWARE\Oddworld Inhabitants, Inc. HKCU\SOFTWARE\Opera Software HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\ROCCAT HKCU\SOFTWARE\Software HKCU\SOFTWARE\Store =>PUP.Optional.Generic HKCU\SOFTWARE\Telltale Games HKCU\SOFTWARE\Terraria HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\tstamptoken =>PUP.Optional.MaxComputerCleaner HKCU\SOFTWARE\Ubisoft HKCU\SOFTWARE\Unity HKCU\SOFTWARE\Valve HKCU\SOFTWARE\Warner Bros. Interactive Entertainment HKCU\SOFTWARE\WebApp HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wizards of the Coast HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\WTools HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\__SP__browser_name__SP__ HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\JavaSoft ---\\ Contenu des dossiers Programmes (172) - 3s O43 - CFD: 2015/10/14 04:56:04 - [] D -- C:\Program Files (x86)\03000200-1444783211-0500-0006-000700080009 =>PUP.Optional.CrossRider O43 - CFD: 2015/10/13 13:12:59 - [] D -- C:\Program Files (x86)\Battle.net O43 - CFD: 2015/10/03 17:52:12 - [] D -- C:\Program Files (x86)\Battlelog Web Plugins O43 - CFD: 2014/10/19 17:55:41 - [] D -- C:\Program Files (x86)\Cisco O43 - CFD: 2015/10/14 03:01:14 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 2014/10/19 19:00:27 - [] D -- C:\Program Files (x86)\Dolby Home Theater v4 O43 - CFD: 2015/09/17 23:59:28 - [] D -- C:\Program Files (x86)\GalaxyClient O43 - CFD: 2015/10/14 04:07:36 - [] D -- C:\Program Files (x86)\globalUpdate =>PUP.Optional.GlobalUpdate O43 - CFD: 2015/10/14 04:27:18 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 2015/10/14 03:11:11 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 2015/10/14 05:50:24 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 2015/10/10 19:33:16 - [] D -- C:\Program Files (x86)\Java O43 - CFD: 2015/10/14 05:36:51 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 2015/10/10 19:49:17 - [] D -- C:\Program Files (x86)\NVIDIA Corporation O43 - CFD: 2015/10/14 03:07:37 - [] D -- C:\Program Files (x86)\Opera O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 2015/10/14 02:38:18 - [] D -- C:\Program Files (x86)\Software =>PUP.Optional.Boxore O43 - CFD: 2009/07/14 06:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information O43 - CFD: 2015/02/22 11:42:37 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 2015/05/05 10:58:59 - [0] D -- C:\Program Files (x86)\Webutation O43 - CFD: 2014/10/20 03:16:43 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 2011/04/12 11:16:36 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 2015/06/10 03:17:24 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 2011/04/12 11:16:36 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 2010/11/21 05:31:38 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 2011/04/12 11:16:36 - [] D -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 2015/10/14 05:57:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2014/10/19 23:35:58 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2014/10/19 19:00:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS Phoebus O43 - CFD: 2015/10/03 17:16:07 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net O43 - CFD: 2015/09/16 11:18:48 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Black Isle O43 - CFD: 2014/11/03 18:48:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite O43 - CFD: 2014/10/19 19:00:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby O43 - CFD: 2015/09/27 01:43:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fallout 3 Game of the Year Edition O43 - CFD: 2015/06/17 00:33:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake O43 - CFD: 2015/10/14 02:57:23 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2015/10/03 16:31:34 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com O43 - CFD: 2015/09/27 01:53:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone O43 - CFD: 2014/10/19 18:10:12 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel O43 - CFD: 2015/09/27 01:53:43 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless O43 - CFD: 2015/10/10 19:33:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 2014/11/22 03:45:09 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Magic 2015 O43 - CFD: 2009/07/14 06:57:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/10/03 17:30:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mephisto O43 - CFD: 2015/10/10 19:49:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation O43 - CFD: 2015/10/14 02:18:06 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin O43 - CFD: 2015/10/03 18:33:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ROCCAT O43 - CFD: 2015/10/03 16:55:23 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RPG Maker VX Ace O43 - CFD: 2015/06/17 03:40:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RPG Maker VX.Ace O43 - CFD: 2014/10/20 03:16:17 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2014/11/03 20:55:59 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam O43 - CFD: 2011/04/12 11:28:08 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2015/10/03 17:03:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Walking Dead Season 2 O43 - CFD: 2015/10/03 17:05:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Wolf Among Us Episode 5 O43 - CFD: 2015/02/22 12:06:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 2014/10/20 03:48:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2015/06/14 01:19:34 - [] D -- C:\ProgramData\Battle.net O43 - CFD: 2015/09/27 01:51:48 - [] D -- C:\ProgramData\Blizzard Entertainment O43 - CFD: 2015/08/22 04:57:18 - [] D -- C:\ProgramData\BlueStacksSetup O43 - CFD: 2015/05/29 10:43:03 - [] D -- C:\ProgramData\boost_interprocess O43 - CFD: 2014/10/19 17:36:47 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 2015/05/04 09:24:43 - [] D -- C:\ProgramData\CODEX O43 - CFD: 2014/11/03 19:24:41 - [] D -- C:\ProgramData\DAEMON Tools Lite O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2015/10/14 04:56:04 - [] D -- C:\ProgramData\FaceLift O43 - CFD: 2014/10/19 17:36:47 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 2015/06/17 00:34:01 - [] D -- C:\ProgramData\Freemake O43 - CFD: 2015/05/27 13:14:48 - [] D -- C:\ProgramData\GOG.com O43 - CFD: 2014/10/19 18:09:18 - [] D -- C:\ProgramData\Intel O43 - CFD: 2015/05/05 14:21:02 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 2014/10/19 21:20:19 - [] D -- C:\ProgramData\McAfee O43 - CFD: 2014/10/19 17:36:47 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 2015/10/14 02:41:04 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2014/10/19 17:36:47 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 2015/10/14 06:15:25 - [] D -- C:\ProgramData\NVIDIA O43 - CFD: 2015/05/29 10:43:36 - [] D -- C:\ProgramData\NVIDIA Corporation O43 - CFD: 2015/10/10 19:33:22 - [] D -- C:\ProgramData\Oracle O43 - CFD: 2015/09/29 03:07:31 - [] D -- C:\ProgramData\Orbit O43 - CFD: 2015/10/14 02:17:55 - [] D -- C:\ProgramData\Origin O43 - CFD: 2015/10/03 08:56:22 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 2015/05/18 23:20:39 - [] D -- C:\ProgramData\RELOADED O43 - CFD: 2014/10/19 17:55:52 - [] D -- C:\ProgramData\Roaming O43 - CFD: 2014/10/21 04:03:25 - [] D -- C:\ProgramData\ROCCAT O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2014/11/04 20:02:50 - [] D -- C:\ProgramData\Steam O43 - CFD: 2014/10/20 03:12:16 - [] D -- C:\ProgramData\Sun O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2015/10/14 02:17:28 - [] HD -- C:\Program Files (x86)\Common Files\EAInstaller O43 - CFD: 2015/06/17 00:33:47 - [] D -- C:\Program Files (x86)\Common Files\Freemake Shared O43 - CFD: 2015/10/03 18:32:48 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 2014/10/19 18:10:56 - [] D -- C:\Program Files (x86)\Common Files\Intel Corporation O43 - CFD: 2015/10/10 19:33:09 - [] D -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 2015/10/14 04:56:04 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 2014/10/19 18:09:19 - [] D -- C:\Program Files (x86)\Common Files\PostureAgent O43 - CFD: 2009/07/14 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 2009/07/14 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 2015/10/14 02:44:29 - [] D -- C:\Program Files (x86)\Common Files\Steam O43 - CFD: 2014/10/20 19:47:04 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 2015/10/03 18:58:13 - [] D -- C:\Users\Morgan\AppData\Roaming\.minecraft O43 - CFD: 2014/10/19 21:21:11 - [] D -- C:\Users\Morgan\AppData\Roaming\Adobe O43 - CFD: 2015/10/01 18:18:43 - [] D -- C:\Users\Morgan\AppData\Roaming\Battle.net O43 - CFD: 2014/11/03 19:58:54 - [] D -- C:\Users\Morgan\AppData\Roaming\DAEMON Tools Lite O43 - CFD: 2015/07/04 02:07:09 - [] D -- C:\Users\Morgan\AppData\Roaming\dvdcss O43 - CFD: 2015/10/03 16:55:40 - [] D -- C:\Users\Morgan\AppData\Roaming\Enterbrain O43 - CFD: 2015/09/18 20:17:48 - [] D -- C:\Users\Morgan\AppData\Roaming\Fallout2 O43 - CFD: 2015/09/28 19:34:09 - [] D -- C:\Users\Morgan\AppData\Roaming\GameRanger O43 - CFD: 2015/05/05 22:15:14 - [] D -- C:\Users\Morgan\AppData\Roaming\IcoFX O43 - CFD: 2014/10/19 17:36:53 - [] D -- C:\Users\Morgan\AppData\Roaming\Identities O43 - CFD: 2014/10/19 17:55:58 - [] D -- C:\Users\Morgan\AppData\Roaming\Intel O43 - CFD: 2014/10/19 18:10:13 - [] D -- C:\Users\Morgan\AppData\Roaming\Intel Corporation O43 - CFD: 2014/10/20 03:56:06 - [] D -- C:\Users\Morgan\AppData\Roaming\java O43 - CFD: 2014/10/19 21:21:11 - [] D -- C:\Users\Morgan\AppData\Roaming\Macromedia O43 - CFD: 2011/04/12 11:28:08 - [0] D -- C:\Users\Morgan\AppData\Roaming\Media Center Programs O43 - CFD: 2015/10/14 02:39:03 - [] SD -- C:\Users\Morgan\AppData\Roaming\Microsoft O43 - CFD: 2014/10/19 17:47:53 - [] D -- C:\Users\Morgan\AppData\Roaming\Mozilla O43 - CFD: 2015/05/28 00:10:39 - [] D -- C:\Users\Morgan\AppData\Roaming\NVIDIA O43 - CFD: 2015/10/14 03:07:34 - [0] D -- C:\Users\Morgan\AppData\Roaming\Opera Software O43 - CFD: 2015/10/10 19:22:44 - [] D -- C:\Users\Morgan\AppData\Roaming\Origin O43 - CFD: 2014/10/21 15:27:35 - [] D -- C:\Users\Morgan\AppData\Roaming\Rogue Legacy O43 - CFD: 2014/11/22 03:48:28 - [] D -- C:\Users\Morgan\AppData\Roaming\Steam O43 - CFD: 2015/10/10 19:33:03 - [] D -- C:\Users\Morgan\AppData\Roaming\Sun O43 - CFD: 2015/03/11 01:13:51 - [] D -- C:\Users\Morgan\AppData\Roaming\uTorrent O43 - CFD: 2015/10/14 05:32:18 - [] D -- C:\Users\Morgan\AppData\Roaming\vlc O43 - CFD: 2015/10/14 04:22:16 - [] D -- C:\Users\Morgan\AppData\Roaming\WinBatch O43 - CFD: 2014/10/20 03:48:57 - [] D -- C:\Users\Morgan\AppData\Roaming\WinRAR O43 - CFD: 2015/10/14 04:56:05 - [] D -- C:\Users\Morgan\AppData\Roaming\WTools O43 - CFD: 2015/10/14 06:43:08 - [] D -- C:\Users\Morgan\AppData\Roaming\ZHP O43 - CFD: 2014/10/19 21:20:44 - [0] D -- C:\Users\Morgan\AppData\Local\Adobe O43 - CFD: 2014/10/19 17:36:49 - [0] SHD -- C:\Users\Morgan\AppData\Local\Application Data O43 - CFD: 2015/10/14 02:16:48 - [] D -- C:\Users\Morgan\AppData\Local\Battle.net O43 - CFD: 2015/09/27 01:56:38 - [] D -- C:\Users\Morgan\AppData\Local\Blizzard O43 - CFD: 2015/09/27 01:51:53 - [] D -- C:\Users\Morgan\AppData\Local\Blizzard Entertainment O43 - CFD: 2015/09/17 23:59:38 - [] D -- C:\Users\Morgan\AppData\Local\CEF O43 - CFD: 2015/10/14 04:56:05 - [] D -- C:\Users\Morgan\AppData\Local\DeskBar O43 - CFD: 2015/07/20 19:33:27 - [0] D -- C:\Users\Morgan\AppData\Local\Diagnostics O43 - CFD: 2015/10/14 05:43:01 - [] D -- C:\Users\Morgan\AppData\Local\ElevatedDiagnostics O43 - CFD: 2015/10/03 16:03:39 - [0] SHD -- C:\Users\Morgan\AppData\Local\EmieBrowserModeList O43 - CFD: 2015/10/03 16:03:39 - [0] SHD -- C:\Users\Morgan\AppData\Local\EmieSiteList O43 - CFD: 2015/10/03 16:03:39 - [0] SHD -- C:\Users\Morgan\AppData\Local\EmieUserList O43 - CFD: 2015/09/27 01:43:20 - [] D -- C:\Users\Morgan\AppData\Local\Fallout3 O43 - CFD: 2015/05/18 21:34:02 - [] D -- C:\Users\Morgan\AppData\Local\FalloutNV O43 - CFD: 2015/09/27 17:00:19 - [] D -- C:\Users\Morgan\AppData\Local\Futuremark O43 - CFD: 2015/05/28 00:10:39 - [] D -- C:\Users\Morgan\AppData\Local\GalaxyCommunicationService O43 - CFD: 2014/10/19 17:36:49 - [0] SHD -- C:\Users\Morgan\AppData\Local\Historique O43 - CFD: 2015/10/14 02:59:29 - [] D -- C:\Users\Morgan\AppData\Local\Installer =>PUP.Optional.InstallPedia O43 - CFD: 2014/10/19 21:21:11 - [] D -- C:\Users\Morgan\AppData\Local\Macromedia O43 - CFD: 2015/10/14 02:47:03 - [] D -- C:\Users\Morgan\AppData\Local\Microsoft O43 - CFD: 2014/10/19 17:47:54 - [] D -- C:\Users\Morgan\AppData\Local\Mozilla O43 - CFD: 2014/10/21 03:56:47 - [] D -- C:\Users\Morgan\AppData\Local\NVIDIA O43 - CFD: 2014/10/21 03:55:54 - [] D -- C:\Users\Morgan\AppData\Local\NVIDIA Corporation O43 - CFD: 2015/10/14 03:07:34 - [0] D -- C:\Users\Morgan\AppData\Local\Opera Software O43 - CFD: 2014/10/20 21:12:52 - [] D -- C:\Users\Morgan\AppData\Local\Programs O43 - CFD: 2015/05/24 21:47:13 - [] D -- C:\Users\Morgan\AppData\Local\SKIDROW O43 - CFD: 2015/05/06 10:56:10 - [] D -- C:\Users\Morgan\AppData\Local\Steam O43 - CFD: 2015/10/14 06:42:57 - [] D -- C:\Users\Morgan\AppData\Local\Temp O43 - CFD: 2015/10/14 02:40:45 - [0] D -- C:\Users\Morgan\AppData\Local\Tempfolder O43 - CFD: 2014/10/19 17:36:49 - [0] SHD -- C:\Users\Morgan\AppData\Local\Temporary Internet Files O43 - CFD: 2015/08/26 04:01:16 - [] D -- C:\Users\Morgan\AppData\Local\VirtualStore O43 - CFD: 2009/07/14 06:54:32 - [] RD -- C:\Users\Morgan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/10/14 05:51:28 - [] RD -- C:\Users\Morgan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/09/16 11:18:48 - [] D -- C:\Users\Morgan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Black Isle O43 - CFD: 2015/06/17 00:33:47 - [] D -- C:\Users\Morgan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake O43 - CFD: 2015/10/14 04:07:46 - [] D -- C:\Users\Morgan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2009/07/14 06:49:38 - [] RD -- C:\Users\Morgan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/10/14 05:51:28 - [] RD -- C:\Users\Morgan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2015/09/27 16:57:04 - [] D -- C:\Users\Morgan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam O43 - CFD: 2014/10/20 03:48:42 - [] D -- C:\Users\Morgan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 0s O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll © O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll © ---\\ Liste des pilotes du système (61) - 3s O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] © O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] © O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] © O58 - SDL:2009/07/14 03:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] © O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] © O58 - SDL:2009/07/14 03:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] © O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] © O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] © O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] © O58 - SDL:2009/06/10 22:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] © O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] © O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] © O58 - SDL:2009/07/14 03:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] © O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] © O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] © O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] © O58 - SDL:2014/03/26 12:37:38 A . (.Motorola Solutions, Inc. - Bluetooth Auxiliary Driver.) -- C:\Windows\System32\drivers\btmaux.sys [140600] © O58 - SDL:2014/04/18 17:34:38 A . (.Motorola Solutions, Inc. - Bluetooth Filter Driver.) -- C:\Windows\System32\drivers\btmhsf.sys [1423160] © O58 - SDL:2009/06/10 22:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] © O58 - SDL:2009/07/14 03:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] © O58 - SDL:2013/07/17 09:00:58 A . (.C-Media Electronics Inc. - C-Media High Definition Audio Function Driv.) -- C:\Windows\System32\drivers\CMHDAudioV64.sys [67584] O58 - SDL:2014/11/03 18:48:19 A . (.Disc Soft Ltd - DAEMON Tools Virtual Bus Driver.) -- C:\Windows\System32\drivers\dtsoftbus01.sys [283064] © O58 - SDL:2014/03/14 05:23:30 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\Windows\System32\drivers\e1d62x64.sys [487704] © O58 - SDL:2014/03/11 10:13:50 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\Windows\System32\drivers\e1r62x64.sys [487704] © O58 - SDL:2009/07/14 03:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] © O58 - SDL:2009/06/10 22:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] © O58 - SDL:2009/06/10 22:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] © O58 - SDL:2010/11/21 05:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] © O58 - SDL:2013/04/22 02:06:34 A . (.Intel Corporation - NDIS 6.1 Advanced Networking Services..) -- C:\Windows\System32\drivers\iANSW60e.sys [163400] © O58 - SDL:2014/05/28 10:10:20 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\Windows\System32\drivers\iaStorA.sys [672104] © O58 - SDL:2014/05/28 10:10:20 A . (.Intel Corporation - Intel(R) Rapid Storage Technology Filter dr.) -- C:\Windows\System32\drivers\iaStorF.sys [28008] © O58 - SDL:2011/03/11 08:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] © O58 - SDL:2014/05/09 09:27:38 A . (.Intel Corporation - Intel(R) Wireless Bluetooth(R) Filter Drive.) -- C:\Windows\System32\drivers\ibtusb.sys [192456] © O58 - SDL:2009/07/14 03:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] © O58 - SDL:2014/02/26 02:31:20 A . (.Intel Corporation - Intel(R) Network Adapter Diagnostic Driver.) -- C:\Windows\System32\drivers\iqvw64e.sys [34568] © O58 - SDL:2015/06/26 17:12:37 A . (.Intel Corporation - Intel(R) USB 3.0 Host Controller Switch Dri.) -- C:\Windows\System32\drivers\iusb3hcs.sys [31528] © O58 - SDL:2015/06/26 17:13:33 A . (.Intel Corporation - Intel(R) USB 3.0 Hub Driver.) -- C:\Windows\System32\drivers\iusb3hub.sys [403752] © O58 - SDL:2015/06/30 12:44:27 A . (.Intel Corporation - Intel(R) USB 3.0 eXtensible Host Controller.) -- C:\Windows\System32\drivers\iusb3xhc.sys [814376] © O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] © O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] © O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] © O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] © O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] © O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] © O58 - SDL:2014/05/04 01:04:06 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\System32\drivers\Netwsw02.sys [3438048] © O58 - SDL:2009/07/14 03:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] © O58 - SDL:2015/10/03 07:06:17 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\System32\drivers\nvhda64v.sys [204648] © O58 - SDL:2015/10/03 07:06:17 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [11114616] © O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] © O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] © O58 - SDL:2015/10/03 07:06:17 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\Windows\System32\drivers\nvvad64v.sys [50472] © O58 - SDL:2009/07/14 03:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] © O58 - SDL:2009/07/14 03:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] © O58 - SDL:2013/05/19 02:02:52 A . (.Scarlet.Crush Productions - Scp Virtual Bus Driver.) -- C:\Windows\System32\drivers\ScpVBus.sys [39168] O58 - SDL:2009/06/10 22:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] © O58 - SDL:2009/07/14 03:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] © O58 - SDL:2009/07/14 03:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] © O58 - SDL:2009/07/14 03:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] © O58 - SDL:2014/09/30 17:47:28 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\TeeDriverx64.sys [129312] © O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] © O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] © ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (9) - 4s O61 - LFC: 2015/10/14 02:46:05 A . (..) -- C:\Users\Morgan\AppData\Roaming\Mozilla\Firefox\Profiles\wca0u3gz.default\CertUtils\certutil.exe [102400] O61 - LFC: 2015/10/14 02:46:05 A . (..) -- C:\Users\Morgan\AppData\Roaming\Mozilla\Firefox\Profiles\wca0u3gz.default\CertUtils\sqlite3.dll [484864] O61 - LFC: 2015/10/13 07:30:36 A . (..) -- C:\Users\Morgan\AppData\Local\NVIDIA\NvBackend\UMDShim\nvcoproc.bin [5972783] O61 - LFC: 2015/10/13 21:25:43 A . (..) -- C:\Users\Morgan\AppData\Local\NVIDIA\NvBackend\Packages\00007fe5\DAO.20054851.exe [6611928] O61 - LFC: 2015/10/13 21:25:44 A . (..) -- C:\Users\Morgan\AppData\Local\NVIDIA\NvBackend\Packages\00007fdc\CoProc update.20053184.exe [588512] O61 - LFC: 2015/10/10 21:22:47 A . (..) -- C:\Users\Morgan\AppData\Local\NVIDIA\NvBackend\Packages\00007fa2\DRS update.20028384.exe [353304] O61 - LFC: 2015/10/06 22:32:40 A . (..) -- C:\Users\Morgan\AppData\Local\NVIDIA\NvBackend\drs\update.bin [1308024] O61 - LFC: 2015/10/14 02:59:27 A . (.Copyright (C) 2014.) -- C:\Users\Morgan\AppData\Local\Installer\Install_8528\brakietut_tutbl_setup.exe [1165312] O61 - LFC: 2015/10/14 02:59:27 A . (.Copyright (C) 2014.) -- C:\Users\Morgan\AppData\Local\Installer\Install_22106\brakietut_tutbl_setup.exe [1165312] ---\\ Associations Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe © O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe © O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe © O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe © O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- D:\Programmes\Firefox\firefox.exe © ---\\ Menu de démarrage Internet (8) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- firefox.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- D:\Programmes\Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- D:\Programmes\Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- D:\Programmes\Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © ---\\ Recherche d'infection sur les navigateurs (10) - 3s O69 - SBI: prefs.js [Morgan - wca0u3gz.default] user_pref("browser.search.searchengine.alias", "mystartsearch"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [Morgan - wca0u3gz.default] user_pref("browser.search.searchengine.desc", "this is my first firefox searchEngine"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [Morgan - wca0u3gz.default] user_pref("browser.search.searchengine.iconURL", "http://www.mystartsearch.com/favicon.ico"); =>PUP.Optional.StartSearch O69 - SBI: prefs.js [Morgan - wca0u3gz.default] user_pref("browser.search.searchengine.name", "mystartsearch"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [Morgan - wca0u3gz.default] user_pref("browser.search.searchengine.ptid", "ima"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [Morgan - wca0u3gz.default] user_pref("browser.search.searchengine.uid", "ST4000DX001-1CE168_Z301BASBXXXXZ301BASB"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [Morgan - wca0u3gz.default] user_pref("browser.search.searchengine.url", "http://www.mystartsearch.com/web/?type=ds&ts=1444784454&z=ccbff7865733c8576b7ae14g4z[...] =>PUP.Optional.StartSearch O69 - SBI: prefs.js [Morgan - wca0u3gz.default] user_pref("extensions.enabledAddons", "defsearchp%40gmail.com:1.0.0.1039,deskCutv2%40gmail.com:0.0.10,%7B972ce4c6-7e08-4474-a285-3[...] =>PUP.Optional.DeskCut O69 - SBI: prefs.js [Morgan - wca0u3gz.default] user_pref("extensions.quick_start.enable_search1", false); =>PUP.Optional.QuickStart O69 - SBI: prefs.js [Morgan - wca0u3gz.default] user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false); =>PUP.Optional.QuickStart ---\\ Enumère les services démarrés par Svchost (33) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] © O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] © O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] © O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [236032] © O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] © O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [859648] © O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [680960] © O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] © O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] © O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] © O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] © O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] © O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] © O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [683520] © O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2607104] © O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] © O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] © O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] © O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720] © O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70656] © O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] © O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584] © O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] © O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] © O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] © O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] © O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1110016] © O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624] © O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] © O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [210432] © O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544] © O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] © O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [193536] © ---\\ Liste des exceptions du parefeu Windows (24) - 1s O87 - FAEL: "{8E903B53-0C01-4623-949E-87A2B38CF7C9}" [In-None-P6-TRUE] .(...) -- C:\Program Files\ma-config.com\MaConfigAgent.exe (.not file.) O87 - FAEL: "{89583DD2-C344-4C9D-BA9C-46F8766A317C}" [In-None-P17-TRUE] .(...) -- C:\Program Files\ma-config.com\MaConfigAgent.exe (.not file.) O87 - FAEL: "{EDDE62CF-1755-42EE-8B07-77A88232A647}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Morgan\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{4A0FC395-8FB8-425E-846C-19AF05BB14A7}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Morgan\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{A1FAAD6C-22E9-45F9-9218-143F9315C9B9}" [In-None-P6-TRUE] .(...) -- D:\Programmes\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe O87 - FAEL: "{5DF302A4-13BD-4B31-AA6C-0169BAAAEBB1}" [In-None-P17-TRUE] .(...) -- D:\Programmes\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe O87 - FAEL: "{A3A26535-2643-44AA-ABEE-5228CE9F4981}" [In-None-P6-FALSE] .(...) -- D:\Jeux\Call of Duty Black Ops II\t6zm.exe (.not file.) O87 - FAEL: "{65FF35BF-2755-497E-A47D-085DCB1A741D}" [In-None-P17-FALSE] .(...) -- D:\Jeux\Call of Duty Black Ops II\t6zm.exe (.not file.) O87 - FAEL: "TCP Query User{39081EAC-0861-4421-B322-A096567EA961}C:\program files (x86)\java\jre1.8.0_25\bin\javaw.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\java\jre1.8.0_25\bin\javaw.exe (.not file.) O87 - FAEL: "UDP Query User{8EE4CB4E-8E2A-4DB5-A311-1F4F85984B7A}C:\program files (x86)\java\jre1.8.0_25\bin\javaw.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\java\jre1.8.0_25\bin\javaw.exe (.not file.) O87 - FAEL: "{E99A4297-2D53-4574-96AF-79B3E40A824B}" [In-None-P6-TRUE] .(...) -- D:\Programmes\Steam\SteamApps\common\Marvel Heroes\UnrealEngine3\Binaries\Win64\MarvelHeroes2015.exe O87 - FAEL: "{50DACE3A-DB75-4DE1-ABEF-0E9F9DCB97A6}" [In-None-P17-TRUE] .(...) -- D:\Programmes\Steam\SteamApps\common\Marvel Heroes\UnrealEngine3\Binaries\Win64\MarvelHeroes2015.exe O87 - FAEL: "{26B67BA6-6B38-4295-934C-65F00AE39595}" [In-None-P6-TRUE] .(...) -- D:\Programmes\Hearthstone\Hearthstone.exe O87 - FAEL: "{5F38164C-2A2E-400F-83F5-A6DE55564B03}" [In-None-P17-TRUE] .(...) -- D:\Programmes\Hearthstone\Hearthstone.exe O87 - FAEL: "{499955CC-7DEB-4320-8632-B986108D9106}" [In-None-P6-TRUE] .(...) -- D:\Programmes\Steam\SteamApps\common\3DMark\3DMarkLauncher.exe (.not file.) O87 - FAEL: "{E30AC94E-D9AF-4397-8B30-2AD4C4BBB39F}" [In-None-P17-TRUE] .(...) -- D:\Programmes\Steam\SteamApps\common\3DMark\3DMarkLauncher.exe (.not file.) O87 - FAEL: "{09D025A8-C7BC-4911-A4BC-664F7175CFB7}" [In-None-P6-TRUE] .(...) -- D:\Programmes\Steam\SteamApps\common\3DMark\bin\x86\3DMark.exe (.not file.) O87 - FAEL: "{E66E95FF-6EA6-4E56-B0D4-AC758FEB5DAC}" [In-None-P17-TRUE] .(...) -- D:\Programmes\Steam\SteamApps\common\3DMark\bin\x86\3DMark.exe (.not file.) O87 - FAEL: "{39FB8B13-124E-4605-9F85-2F22B5C90C76}" [In-None-P6-TRUE] .(...) -- D:\Programmes\Steam\SteamApps\common\3DMark\bin\x64\3DMark.exe (.not file.) O87 - FAEL: "{4D8E86AC-C26D-4648-94AB-EBF1215FF9B2}" [In-None-P17-TRUE] .(...) -- D:\Programmes\Steam\SteamApps\common\3DMark\bin\x64\3DMark.exe (.not file.) O87 - FAEL: "TCP Query User{1045002C-BF75-43B8-A5EC-DC1CAAEA3F51}D:\programmes\gog games\oddworld - new 'n' tasty\nnt.exe" [In-None-P6-TRUE] .(...) -- D:\programmes\gog games\oddworld - new 'n' tasty\nnt.exe (.not file.) O87 - FAEL: "UDP Query User{64DF0DC9-04B7-4BE1-9031-AE8A4504A7B9}D:\programmes\gog games\oddworld - new 'n' tasty\nnt.exe" [In-None-P17-TRUE] .(...) -- D:\programmes\gog games\oddworld - new 'n' tasty\nnt.exe (.not file.) O87 - FAEL: "{266CFF23-FFCC-4FA6-914E-A11C6217E8B4}" [In-None-P17-TRUE] .(...) -- C:\Users\Morgan\AppData\Local\BrowserAir\Application\BrowserAir.exe (.not file.) =>PUP.Optional.BrowserAir O87 - FAEL: "{3FDD0CC5-4E9A-4B73-B1ED-94E62C80EBC6}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\MyBrowser\MyBrowser\Application\mybrowser.exe (.not file.) ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (24) - 14s SS - Demand [2015/10/14 05:52:02] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe © SR - Demand [2013/10/01 10:42:48] [ 650752] ATLMonitorService (ATLMonitorService) . (.Cmedia Electronics Inc.) - C:\Windows\system\MonitorService.exe SR - Demand [2013/10/25 06:31:48] [ 512000] ATLOISAService (ATLOISAService) . (.Cmedia Electronics Inc..) - C:\Windows\system\ATLOISAService.exe SR - Auto [2014/03/26 12:36:30] [ 1206648] Bluetooth Device Monitor (Bluetooth Device Monitor) . (.Motorola Solutions, Inc..) - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe © SR - Auto [2014/03/26 12:36:54] [ 1706360] Bluetooth Media Service (Bluetooth Media Service) . (.Motorola Solutions, Inc..) - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe © SR - Auto [2014/03/26 12:37:04] [ 1165688] Bluetooth OBEX Service (Bluetooth OBEX Service) . (.Motorola Solutions, Inc..) - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe © SR - Auto [2014/01/17 18:37:08] [ 632048] Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe © SS - Demand [2015/10/05 14:00:11] [ 1616440] GalaxyClientService (GalaxyClientService) . (.GOG.com.) - C:\Program Files (x86)\GalaxyClient\GalaxyClientService.exe © SS - Demand [2015/10/05 14:00:08] [ 6952504] GalaxyCommunication (GalaxyCommunication) . (.GOG.com.) - C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe © SR - Auto [2015/10/04 10:24:14] [ 1155376] NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe © SR - Auto [2014/05/28 10:10:36] [ 16232] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe © SS - Demand [2014/05/13 14:31:14] [ 887256] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe © SR - Auto [2014/03/11 16:31:58] [ 260360] Intel(R) PROSet Monitoring Service (Intel(R) PROSet Monitoring Service) . (.Intel Corporation.) - C:\Windows\system32\IProsetMonitor.exe © SR - Auto [2014/06/24 16:08:20] [ 154584] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe © SR - Auto [2014/06/24 16:08:20] [ 405976] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe © SS - Demand [2014/01/17 18:37:30] [ 284912] Wireless PAN DHCP Server (MyWiFiDHCPDNS) . (.Copyright (C) 2005-2010 by Achal Dhir.) - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe © SR - Auto [2015/10/04 10:24:16] [ 1872688] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe © SR - Auto [2015/10/04 10:24:10] [ 5568816] NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe © SR - Auto [2015/10/03 04:49:54] [ 938800] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe © SR - Auto [2014/01/17 18:36:42] [ 154864] Intel(R) PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe © SR - Demand [2015/10/09 01:02:16] [ 838224] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe © SR - Auto [2015/10/03 04:18:14] [ 417400] NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe © SR - Auto [2014/01/17 18:37:48] [ 3816176] Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) . (.Intel® Corporation.) - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe © ---\\ Scan Additionnel (18) - 0s C:\Program Files (x86)\Software\Update\1.3.25.0\npSoftwareUpdate3.dll =>PUP.Optional.Boxore HKCU\SOFTWARE\9E07OMZu =>PUP.Optional.CrossRider HKCU\SOFTWARE\IgpLDox098Q =>PUP.Optional.CrossRider C:\Windows\Tasks\9E07OMZu.job =>PUP.Optional.CrossRider C:\Windows\Tasks\IgpLDox098Q.job =>PUP.Optional.CrossRider C:\Windows\Tasks\SoftwareUpdateTaskMachineUA.job =>PUP.Optional.Boxore C:\Windows\System32\Tasks\9E07OMZu =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\IgpLDox098Q =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\SoftwareUpdateTaskMachineUA =>PUP.Optional.Boxore HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\DailyPcClean =>PUP.Optional.DailyPCClean HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\Store =>PUP.Optional.Generic HKCU\SOFTWARE\tstamptoken =>PUP.Optional.MaxComputerCleaner C:\Program Files (x86)\03000200-1444783211-0500-0006-000700080009 =>PUP.Optional.CrossRider C:\Program Files (x86)\globalUpdate =>PUP.Optional.GlobalUpdate C:\Program Files (x86)\Software =>PUP.Optional.Boxore C:\Users\Morgan\AppData\Local\Installer =>PUP.Optional.InstallPedia ---\\ Récapitulatif des éléments trouvées sur votre station (13) - 0s http://www.nicolascoolman.fr/blog =>Hijacker.Jabuticaba.X http://www.nicolascoolman.fr/adware-boxore/ =>PUP.Optional.Boxore http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate http://www.nicolascoolman.fr/pup-optional-dailypcclean/ =>PUP.Optional.DailyPCClean http://www.nicolascoolman.fr/blog =>PUP.Optional.Generic http://www.nicolascoolman.fr/blog =>PUP.Optional.MaxComputerCleaner http://www.nicolascoolman.fr/adware-installpedia/ =>PUP.Optional.InstallPedia http://www.nicolascoolman.fr/blog =>PUP.Optional.SearchEngine http://www.nicolascoolman.fr/pup-optional-startsearch/ =>PUP.Optional.StartSearch http://www.nicolascoolman.fr/blog =>PUP.Optional.DeskCut http://www.nicolascoolman.fr/pup-quickstart/ =>PUP.Optional.QuickStart http://www.nicolascoolman.fr/blog =>PUP.Optional.BrowserAir ~ End of the scan, 21180 items in 48 seconds (780)(0)()