~ ZHPDiag v2015.11.1.160 Par Nicolas Coolman (2015/11/01) ~ Démarré par Utilisateur (Administrator) (2015/11/02 11:21:33) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Pas de fichier réseau ~ Mode: Scanner ~ Rapport: C:\Users\Utilisateur\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Utilisateur\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601) ---\\ Navigateurs Internet (2) - 1s MFIE: Mozilla Firefox 41.0.2 (x86 fr) v41.0.2 MSIE: Internet Explorer v11.0.9600.18059 ---\\ Informations sur les produits Windows (4) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Logiciels de protection (3) - 22s Avast Premier v10.4.2233 Malwarebytes Anti-Malware version 2.2.0.1024 Windows Defender W7 (Activate) ---\\ Logiciels de protection et autres (Superflus) (1) - 22s McAfee Security Scan Plus v3.11.163.2 ---\\ Surveillance de Logiciels (2) - 23s Adobe Flash Player 19 NPAPI Adobe Acrobat Reader DC - Français ---\\ Informations sur le système (6) - 0s ~ Operating System: AMD64 Family 16 Model 6 Stepping 3, AuthenticAMD ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 2882.792 MB (22% free) ~ System Restore: Activé (Enable) ~ System drive C: has 280 GB free of 476 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: UTILISATEUR-PC ~ User Name: Utilisateur ~ Logged in as Administrator ---\\ Enumération des unités disques (3) - 0s ~ Drive C: has 280 GB free of 476 GB (System) ~ Drive I: has 671 GB free of 953 GB ~ Drive J: has 11 GB free of 15 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (25) - 1s [MD5.332FEAB1435662FC6C672E25BEB37BE3] - 25/02/2011 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2871808] © [MD5.DD81D91FF3B0763C392422865C9AC12E] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [45568] © [MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [129024] © [MD5.BD06D875FB79E92DAF724C91DE743AFA] - 16/09/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2487808] © [MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - 17/07/2014 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [455168] © [MD5.067FA52BFB59A56110A12312EF9AF243] - 21/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [232448] © [MD5.492D07D79E7024CA310867B526D9636D] - 03/03/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [357888] © [MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 03/03/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [270336] © [MD5.0D57D091E06BB1E58E72E5D08479FDDF] - 21/11/2010 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] © [MD5.FA886682CFC5D36718D3E436AACF10B9] - 30/05/2014 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [497152] © [MD5.02062C0B390B7729EDC9E69C680A6F3C] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] © [MD5.B8BD2BB284668C84865658C77574381A] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] © [MD5.F036CE71586E93D94DAB220D7BDF4416] - 21/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] © [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - 21/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [102400] © [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 21/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] © [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] © [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] © [MD5.ACB6782973BD93760D597FC7BB37E692] - 29/09/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [159232] © [MD5.09594D1089C523423B32A4229263F068] - 21/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [261632] © [MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - 24/01/2014 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1684928] © [MD5.0086431C29C35BE1DBC43F52CC273887] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [97280] © [MD5.471815800AE33E6F1C32FB1B97C490CA] - 21/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] © [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] © [MD5.70988118145F5F10EF24720B97F35F65] - 11/11/2014 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [119296] © [MD5.0D08D2F3B3FF84E433346669B5E0F639] - 21/11/2010 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [295808] © ---\\ Processus lancés (49) - 3s [MD5.41B97DCE2B2D113B831EB197F02A7398] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 307.8.) -- C:\Windows\System32\nvvsvc.exe [878368] [PID.792] © [MD5.CE3BFCD5415DCEC2C8D5B2023F809431] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1126176] [PID.1184] © [MD5.41B97DCE2B2D113B831EB197F02A7398] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 307.8.) -- C:\Windows\System32\nvvsvc.exe [878368] [PID.1192] © [MD5.11120878E5276B367E1A10FF8C9B595B] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600] [PID.1224] © [MD5.F423D12EE3D40C26BF415B0DCDF60F40] - (.AVAST Software - avast! firewall service.) -- C:\Program Files\AVAST Software\Avast\afwServ.exe [109008] [PID.1556] © [MD5.ABDD5AD016AFFD34AD40E944CE94BF59] - (.SEIKO EPSON CORPORATION - eEBAPI Core Process module.) -- C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSvc.exe [94208] [PID.1736] © [MD5.B33CF4DE909A5B30F526D82053A63C8E] - (.ABBYY - ABBYY network license server.) -- C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048] [PID.1932] © [MD5.2D564BB1C4559A517B390A031955714D] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104] [PID.2140] © [MD5.A72BB48D9014A7D7C05F02F595F52D60] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler.exe [245576] [PID.2188] © [MD5.E337785DA1958E9AB02DDB2369EF46E8] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler64.exe [307016] [PID.2196] © [MD5.B5C2F92EE1106DFE7BB1CCE4D35B6037] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462096] [PID.2384] © [MD5.A7E8186E04F38E836C19AC147F8B2ED0] - (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_WT50RP.EXE [151648] [PID.2508] © [MD5.B336517CD339B91E833BBAD9BF566B0F] - (.Gemalto - Classic Client SHM Service.) -- C:\Program Files (x86)\Gemalto\Classic Client\BIN\GslShmSrvc.exe [85504] [PID.2544] © [MD5.83D8BE94E1CBCBE2EA8372DB1A95A159] - (.Hewlett-Packard Company - LightScribe Service.) -- C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [73728] [PID.2636] © [MD5.B90E093E7A7250906F1054418B5339C0] - (.Nero AG - Nero BackItUp.) -- C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [935208] [PID.2800] © [MD5.0765EE4A7A0D6609BF91CA2E4700E885] - (.TomTom - Windows Service for TomTom HOME.) -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe [93072] [PID.2828] © [MD5.76FCBFD0C78DE110468B356F85EC6DB3] - (.Copyright (c) 2001-2009 NVIDIA Corporation - app_filter Module.) -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe [496232] [PID.3076] [MD5.13C0D9CBA38FFA6D0C9E721B5E7212A0] - (.Copyright (c) 2001-2009 NVIDIA Corporation - NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe [209000] [PID.3148] [MD5.20ECD0A490A121CB34F553FAD1DBBD39] - (.Seiko Epson Corporation - Epson Scanner Service (64bit).) -- C:\Windows\System32\escsvc64.exe [135824] [PID.3200] © [MD5.1BF113E377E570DB915EE7D228E594D6] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe [170256] [PID.3524] © [MD5.5DDD3DB40E10C6CC8195D9471CAEB24E] - (.Samsung - Kies.) -- C:\Program Files (x86)\Samsung\Kies\Kies.exe [1564016] [PID.3748] © [MD5.103AD27530849E61EB22A0D3E9AF9AA5] - (.Samsung - KiesPDLR.) -- C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844656] [PID.3828] © [MD5.DFB13D3470844B6770FFB87DFC9FD340] - (.Orange - MailNotifier.) -- C:\Program Files (x86)\Orange\MailNotifier\MailNotifier.exe [884744] [PID.3912] © [MD5.450F5537A10BDD974B00AC1AD23C88FF] - (.Google - Google Drive.) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe [22568216] [PID.4020] © [MD5.450F5537A10BDD974B00AC1AD23C88FF] - (.Google - Google Drive.) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe [22568216] [PID.4016] © [MD5.5575DB32AA0CC5A97CA4DC87511CBF0C] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2449696] [PID.4080] © [MD5.043A93A498B3C4A88CACA3BCBC9B54C7] - (.Apple Inc. - iPodService Module (64-bit).) -- C:\Program Files\iPod\bin\iPodService.exe [644880] [PID.3868] © [MD5.E175D10D3ADFA6479E3984E695499175] - (.McAfee, Inc. - McAfee Security Scanner Scheduler.) -- C:\Program Files\McAfee Security Scan\3.11.163\SSScheduler.exe [330456] [PID.5220] © [MD5.0757166226FA459769A46125BA7A0273] - (.Dropbox, Inc. - Dropbox.) -- C:\Users\Utilisateur\AppData\Roaming\Dropbox\bin\Dropbox.exe [36711472] [PID.5564] © [MD5.23C9A328377305E8C93B7FC0ACE80457] - (.VIA - VIA HD Audio CPL.) -- C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2439072] [PID.5284] © [MD5.B3B71DCD7E1796B0306518758C3272B7] - (.(C) 2007 by Gemalto NV Group - RegTool MFC Application.) -- C:\Program Files (x86)\Gemalto\Classic Client\BIN\RegTool.exe [945152] [PID.5340] [MD5.42592ACDE05D7A071F645889EF3AD9F1] - (.Samsung Electronics Co., Ltd. - Kies TrayAgent Application.) -- C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311152] [PID.3764] © [MD5.123CE08362EE48BBA7F9F1D7EB50F24F] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [6134544] [PID.1208] © [MD5.FBDC0E172AA0D341FF0084A3DBFD00F5] - (.SEIKO EPSON CORPORATION - Fax Reception.) -- C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe [502952] [PID.5976] © [MD5.E9C15F5EBCA836E50ACE2DA57BFA53B7] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528] [PID.5580] © [MD5.988CDC4DAE2186F3A5ED6EE7D3E6B5CA] - (.Nero AG - NeroUpdate.) -- C:\Program Files (x86)\Nero\Update\NASvc.exe [786256] [PID.5672] © [MD5.A3A25E0509F67473B960DAF214828BE3] - (.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [1259296] [PID.1704] © [MD5.5DB2C6B908C50767E2EDAA294A7566B5] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.6356] © [MD5.AB176B9E59C0435499D83047D84EDD59] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1513784] [PID.6228] © [MD5.BABBBDEF9DBB5E012EE5210FCB47C33B] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe [9832760] [PID.7704] © [MD5.40C126CB15FAB7D6C66490DCA9C1AED2] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416] [PID.644] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Users\Utilisateur\AppData\Local\Google\Chrome\Application\chrome.exe [811848] [PID.6832] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Users\Utilisateur\AppData\Local\Google\Chrome\Application\chrome.exe [811848] [PID.1132] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Users\Utilisateur\AppData\Local\Google\Chrome\Application\chrome.exe [811848] [PID.7472] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Users\Utilisateur\AppData\Local\Google\Chrome\Application\chrome.exe [811848] [PID.6168] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Users\Utilisateur\AppData\Local\Google\Chrome\Application\chrome.exe [811848] [PID.688] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Users\Utilisateur\AppData\Local\Google\Chrome\Application\chrome.exe [811848] [PID.852] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Users\Utilisateur\AppData\Local\Google\Chrome\Application\chrome.exe [811848] [PID.2708] © [MD5.26FFDA193A05A3D921223AE58A00F258] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Utilisateur\Downloads\ZHPDiag3 (1).exe [1963520] [PID.6460] © ---\\ Google Chrome, Démarrage,Recherche,Extensions (5) - 0s G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.com G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] [] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] [] avast! Online Security G2 - GCE: Preference [User Data\Default] [lmjegmlicamnimmfhcmpkclmigmmcbeh] [] Application Launcher for Drive (by Google) G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] [] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (5) - 1s P2 - EXT FILE: (...) -- C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\kyvrbumw.default\searchplugins\Google.xml P2 - EXT FILE: (...) -- C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\kyvrbumw.default\searchplugins\orange.xml P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} © P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_226.dll © P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll © ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (14) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.orange.fr R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/ R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {5bcf818d-78c8-41b8-ba89-65c5fdac4fc4} Orphean R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (6) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 1s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) © F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) © F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) © ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (4) ---\\ Browser Helper Object de navigateur (BHO) (3) - 0s O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll © O2 - BHO: Google Toolbar Helper [64Bits] - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll © O2 - BHO: FINDIZER [64Bits] - {F4A9D6FE-8C16-4D72-B845-7AE0FFAB2DAB} . (.Prestafind - Lors de votre navigation sur les sites marc.) -- C:\Program Files (x86)\AlloPagesInstaller\BHO.dll ---\\ Internet Explorer, Barre d'outil (1) - 0s O3 - Toolbar: 0x00 - [HKLM]{D3028143-6145-4318-99D3-3EDCE54A95A9} . (...) -- C:\Program Files (x86)\Orange\ToolbarFr\ToolbarContainer101000315.dll (.not file.) ---\\ Applications lancées au démarrage du système (26) - 0s O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe © O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Utilisateur\AppData\Local\Google\Update\GoogleUpdate.exe © O4 - HKCU\..\Run: [orangeinside] C:\Users\Utilisateur\AppData\Roaming\Orange\OrangeInside\one\OrangeInside.exe (.not file.) O4 - HKCU\..\Run: [iCloudServices] . (.Apple Inc. - iCloud.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe © O4 - HKCU\..\Run: [KiesPreload] . (.Samsung - Kies.) -- C:\Program Files (x86)\Samsung\Kies\Kies.exe © O4 - HKCU\..\Run: [KiesAirMessage] C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe (.not file.) O4 - HKCU\..\RunOnce: [iCloud] . (.Apple Inc. - iCloud.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe © O4 - HKLM\..\Wow6432Node\Run: [HDAudDeck] . (.VIA - VIA HD Audio CPL.) -- C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe © O4 - HKLM\..\Wow6432Node\Run: [RegTool] . (.(C) 2007 by Gemalto NV Group - RegTool MFC Application.) -- C:\Program Files (x86)\Gemalto\Classic Client\BIN\RegTool.exe O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe © O4 - HKLM\..\Wow6432Node\Run: [KiesTrayAgent] . (.Samsung Electronics Co., Ltd. - Kies TrayAgent Application.) -- C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe © O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe © O4 - HKLM\..\Wow6432Node\Run: [FUFAXRCV] . (.SEIKO EPSON CORPORATION - Fax Reception.) -- C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe © O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe © O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe © O4 - HKUS\.DEFAULT\..\RunOnce: [iCloud] . (.Apple Inc. - iCloud.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe © O4 - HKUS\S-1-5-18\..\RunOnce: [iCloud] . (.Apple Inc. - iCloud.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe © O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe © O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe © O4 - HKUS\S-1-5-21-1428006783-275229721-1896770895-1000\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Utilisateur\AppData\Local\Google\Update\GoogleUpdate.exe © O4 - HKUS\S-1-5-21-1428006783-275229721-1896770895-1000\..\Run: [orangeinside] C:\Users\Utilisateur\AppData\Roaming\Orange\OrangeInside\one\OrangeInside.exe (.not file.) O4 - HKUS\S-1-5-21-1428006783-275229721-1896770895-1000\..\Run: [iCloudServices] . (.Apple Inc. - iCloud.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe © O4 - HKUS\S-1-5-21-1428006783-275229721-1896770895-1000\..\Run: [KiesPreload] . (.Samsung - Kies.) -- C:\Program Files (x86)\Samsung\Kies\Kies.exe © O4 - HKUS\S-1-5-21-1428006783-275229721-1896770895-1000\..\Run: [KiesAirMessage] C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe (.not file.) O4 - HKUS\S-1-5-21-1428006783-275229721-1896770895-1000\..\RunOnce: [iCloud] . (.Apple Inc. - iCloud.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe © ---\\ Raccourcis Global Startup (9) - 8s O4 - GS\Desktop [Administrateur]: Driver Genius Professional Edition.lnk . (...) C:\Program Files (x86)\Driver-Soft\DriverGenius\DriverGenius.exe =>.Superfluous.DriverSoft O4 - GS\Quicklaunch [Administrateur]: SpeedUpMyPC.lnk . (...) C:\Program Files (x86)\Uniblue\SpeedUpMyPC\sump.exe =>PUP.Optional.SpeedUpMyPC O4 - GS\Desktop [Invité]: Driver Genius Professional Edition.lnk . (...) C:\Program Files (x86)\Driver-Soft\DriverGenius\DriverGenius.exe =>.Superfluous.DriverSoft O4 - GS\Quicklaunch [Invité]: SpeedUpMyPC.lnk . (...) C:\Program Files (x86)\Uniblue\SpeedUpMyPC\sump.exe =>PUP.Optional.SpeedUpMyPC O4 - GS\Desktop [UpdatusUser]: Driver Genius Professional Edition.lnk . (...) C:\Program Files (x86)\Driver-Soft\DriverGenius\DriverGenius.exe =>.Superfluous.DriverSoft O4 - GS\Quicklaunch [UpdatusUser]: SpeedUpMyPC.lnk . (...) C:\Program Files (x86)\Uniblue\SpeedUpMyPC\sump.exe =>PUP.Optional.SpeedUpMyPC O4 - GS\Desktop [Utilisateur]: Driver Genius Professional Edition.lnk . (...) C:\Program Files (x86)\Driver-Soft\DriverGenius\DriverGenius.exe =>.Superfluous.DriverSoft O4 - GS\Quicklaunch [Utilisateur]: SpeedUpMyPC.lnk . (...) C:\Program Files (x86)\Uniblue\SpeedUpMyPC\sump.exe =>PUP.Optional.SpeedUpMyPC O4 - GS\CommonDesktop [Public]: FlashVideoCapture FlvPlayer.lnk . (.FlashVideoCapture.com, Popusoft Software Studio - Flash Video Player.) C:\Program Files (x86)\Flash Video Capture\FlvPlayer.exe =>PUP.Optional.FLVPlayer ---\\ Modification Domaine/Adresses DNS (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 ---\\ Protocole additionnel (22) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll © O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll © O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL © ---\\ Liste des services NT non Microsoft et non désactivés (22) - 1s O23 - Service: ABBYY FineReader 9.0 Sprint Licensing Service (ABBYY.Licensing.FineReader.Sprint.9.0) . (.ABBYY - ABBYY network license server.) - C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe © O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe © O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe © O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe © O23 - Service: Avast Firewall (avast! Firewall) . (.AVAST Software - avast! firewall service.) - C:\Program Files\AVAST Software\Avast\afwServ.exe © O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe © O23 - Service: EpsonBidirectionalService (EpsonBidirectionalService) . (.SEIKO EPSON CORPORATION - eEBAPI Core Process module.) - C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSvc.exe © O23 - Service: Epson Scanner Service (EpsonScanSvc) . (.Seiko Epson Corporation - Epson Scanner Service (64bit).) - C:\Windows\System32\escsvc64.exe © O23 - Service: EPSON V3 Service4(05) (EPSON_PM_RPCV4_05) . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_WT50RP.EXE © O23 - Service: ForceWare Intelligent Application Manager (IAM) (ForceWare Intelligent Application Manager (IAM)) . (.Copyright (c) 2001-2009 NVIDIA Corporation - app_filter Module.) - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe O23 - Service: GSL Share Memory (GslShmSrvc) . (.Gemalto - Classic Client SHM Service.) - C:\Program Files (x86)\Gemalto\Classic Client\BIN\GslShmSrvc.exe © O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company - LightScribe Service.) - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe © O23 - Service: (MBAMScheduler) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe © O23 - Service: (MBAMService) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe © O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) . (.Nero AG - NeroUpdate.) - C:\Program Files (x86)\Nero\Update\NASvc.exe © O23 - Service: Nero BackItUp Scheduler 4.0 (Nero BackItUp Scheduler 4.0) . (.Nero AG - Nero BackItUp.) - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe © O23 - Service: ForceWare IP service (nSvcIp) . (.Copyright (c) 2001-2009 NVIDIA Corporation - NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 307.8.) - C:\Windows\System32\nvvsvc.exe © O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe © O23 - Service: Orange update Core Service (Orange update Core Service) . (.Orange SA - Orange Upd@te.) - C:\Program Files (x86)\Orange\OrangeUpdate\Service\OUCore.exe © O23 - Service: TomTomHOMEService (TomTomHOMEService) . (.TomTom - Windows Service for TomTom HOME.) - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe © ---\\ Tâches planifiées en automatique (31) - 4s [MD5.B89A82FB10E98F2FDF51FA82C7366DD3] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1067736] © [MD5.8C194A201698B4B4F77D974549819D1F] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000] © [MD5.E516D7811B24812819A3BAC8AD350510] [APT] [Apple Diagnostics] (.Apple Inc..) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\EReporter.exe [43816] © [MD5.D9E35285D8CCE58241038E5B23507DAB] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [1382112] © [MD5.7C6D524C78A1722AD987B9E47AC1FEE2] [APT] [DropboxUpdateTaskUserS-1-5-21-1428006783-275229721-1896770895-1000Core] (.Dropbox, Inc..) -- C:\Users\Utilisateur\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512] © [MD5.7C6D524C78A1722AD987B9E47AC1FEE2] [APT] [DropboxUpdateTaskUserS-1-5-21-1428006783-275229721-1896770895-1000UA] (.Dropbox, Inc..) -- C:\Users\Utilisateur\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512] © [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] © [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] © [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskUserS-1-5-21-1428006783-275229721-1896770895-1000Core] (.Google Inc..) -- C:\Users\Utilisateur\AppData\Local\Google\Update\GoogleUpdate.exe [144200] © [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskUserS-1-5-21-1428006783-275229721-1896770895-1000UA] (.Google Inc..) -- C:\Users\Utilisateur\AppData\Local\Google\Update\GoogleUpdate.exe [144200] © [MD5.0BE64FAB577BFA54443C680343AEC85F] [APT] [{0AE2C13E-0B24-402A-9E90-6DF119AFAA98}] (.Google Inc..) -- C:\Users\Utilisateur\AppData\Local\Google\Chrome\Application\chrome.exe [811848] © [MD5.A951AC4A6E851BE6C1C0D45C3FB92C3D] [APT] [{E0351BA2-4990-44F6-93E7-309827021836}] (.SEIKO EPSON CORP..) -- C:\Windows\twain_32\escndv\escndv.exe [220280] © [MD5.BC41666FF68C364CD3EAA486E50C9270] [APT] [Apple\AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [563000] © [MD5.2252A0D8EB1D73FDBA7454FF7D395825] [APT] [ASUS\ASUS SIX Engine] (.ASUSTeK Computer Inc..) -- C:\Program Files (x86)\ASUS\EPU-4 Engine\FourEngine.exe [5756544] © O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] © O39 - APT: DropboxUpdateTaskUserS-1-5-21-1428006783-275229721-1896770895-1000Core - (.Dropbox, Inc..) -- C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1428006783-275229721-1896770895-1000Core.job [1168] © O39 - APT: DropboxUpdateTaskUserS-1-5-21-1428006783-275229721-1896770895-1000UA - (.Dropbox, Inc..) -- C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1428006783-275229721-1896770895-1000UA.job [1220] © O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1066] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1070] © O39 - APT: GoogleUpdateTaskUserS-1-5-21-1428006783-275229721-1896770895-1000Core - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1428006783-275229721-1896770895-1000Core.job [1050] © O39 - APT: GoogleUpdateTaskUserS-1-5-21-1428006783-275229721-1896770895-1000UA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1428006783-275229721-1896770895-1000UA.job [1102] © O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [3886] © O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3940] © O39 - APT: Apple Diagnostics - (.Apple Inc..) -- C:\Windows\System32\Tasks\Apple Diagnostics [3444] © O39 - APT: avast! Emergency Update - (.AVAST Software.) -- C:\Windows\System32\Tasks\avast! Emergency Update [4182] © O39 - APT: DropboxUpdateTaskUserS-1-5-21-1428006783-275229721-1896770895-1000Core - (.Dropbox, Inc..) -- C:\Windows\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1428006783-275229721-1896770895-1000Core [3806] © O39 - APT: DropboxUpdateTaskUserS-1-5-21-1428006783-275229721-1896770895-1000UA - (.Dropbox, Inc..) -- C:\Windows\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1428006783-275229721-1896770895-1000UA [4202] © O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3814] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4066] © O39 - APT: GoogleUpdateTaskUserS-1-5-21-1428006783-275229721-1896770895-1000Core - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1428006783-275229721-1896770895-1000Core [3692] © O39 - APT: GoogleUpdateTaskUserS-1-5-21-1428006783-275229721-1896770895-1000UA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1428006783-275229721-1896770895-1000UA [4088] © ---\\ Logiciels installés (152) - 9s O42 - Logiciel: EPSON SX525WD Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- EPSON SX525WD Series © O42 - Logiciel: EPSON WF-3520 Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- EPSON WF-3520 Series © O42 - Logiciel: McAfee Security Scan Plus - (.McAfee, Inc..) [HKLM][64Bits] -- McAfee Security Scan © O42 - Logiciel: NVIDIA Display Control Panel - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIA Display Control Panel © O42 - Logiciel: NVIDIA Drivers - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIA Drivers © O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {0DE0A178-AC7B-4650-806C-CF226DE03766} © O42 - Logiciel: Classic Client 6.2 for 64 bits - (.Gemalto.) [HKLM][64Bits] -- {1ED28D43-3DDA-4A51-8AD3-4167C9E68FA2} © O42 - Logiciel: iCloud - (.Apple Inc..) [HKLM][64Bits] -- {309768A4-A2BB-4930-A5A2-8169678C9B4C} © O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {3540181E-340A-4E7A-B409-31663472B2F7} © O42 - Logiciel: PVSonyDll - (.NVIDIA Corporation.) [HKLM][64Bits] -- {3D3E663D-4E7E-4577-A560-7ECDDD45548A} © O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {56DDDFB8-7F79-4480-89D5-25E1F52AB28F} © O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} © O42 - Logiciel: NVIDIA Pilote graphique 307.83 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver © O42 - Logiciel: Mises à jour NVIDIA 1.10.8 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update © O42 - Logiciel: AlloPagesInstaller version 1.0 - (.AlloPages.) [HKLM][64Bits] -- {B55B479C-5CA9-41BD-9611-24BD3F9C39EA}_is1 O42 - Logiciel: SAMSUNG USB Driver for Mobile Phones - (.SAMSUNG Electronics Co., Ltd..) [HKLM][64Bits] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} © O42 - Logiciel: calibre 64bit - (.Kovid Goyal.) [HKLM][64Bits] -- {DD84AFA7-867C-428A-8FA4-59A98AB60A1F} © O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {E690A491-702F-4DEC-9977-C015D1DBB57C} © O42 - Logiciel: 7-Zip 9.22beta - (...) [HKLM][64Bits] -- 7-Zip O42 - Logiciel: ABBYY FineReader 9.0 Sprint - (.ABBYY.) [HKLM][64Bits] -- ABBYY FineReader 9.0 Sprint © O42 - Logiciel: Adobe Flash Player 19 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX © O42 - Logiciel: Adobe Flash Player 19 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI © O42 - Logiciel: Adobe Shockwave Player 12.1 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player © O42 - Logiciel: Allin1Convert Firefox Toolbar - (.Mindspark Interactive Network.) [HKLM][64Bits] -- Allin1Convert_8hbar Uninstall Firefox =>PUP.Optional.MindSpark O42 - Logiciel: Allin1Convert Internet Explorer Toolbar - (.Mindspark Interactive Network.) [HKLM][64Bits] -- Allin1Convert_8hbar Uninstall Internet Explorer =>PUP.Optional.MindSpark O42 - Logiciel: Avast Premier - (.AVAST Software.) [HKLM][64Bits] -- avast © O42 - Logiciel: Calps Protocol Handler - Désinstallation - (...) [HKLM][64Bits] -- calps O42 - Logiciel: Driver Genius Professional Edition - (.Driver-Soft Inc..) [HKLM][64Bits] -- Driver Genius Professional Edition_is1 =>.Superfluous.DriverSoft O42 - Logiciel: Epson PC-FAX Driver - (...) [HKLM][64Bits] -- EPSON PC-FAX Driver 2 O42 - Logiciel: EPSON Scan - (.Seiko Epson Corporation.) [HKLM][64Bits] -- EPSON Scanner © O42 - Logiciel: EPSON SX525WD Series Manuel - (...) [HKLM][64Bits] -- EPSON SX525WD Series Manual O42 - Logiciel: Guide réseau pour EPSON SX525WD Series - (...) [HKLM][64Bits] -- EPSON SX525WD Series Network Guide O42 - Logiciel: Farming Simulator 2013 Demo - (.GIANTS Software.) [HKLM][64Bits] -- FarmingSimulator2013DemoFR_is1 © O42 - Logiciel: FastStone Capture 5.3 - (.FastStone Soft.) [HKLM][64Bits] -- FastStone Capture © O42 - Logiciel: Flash Video Capture 4.10.5 build 6380 - (.FlashVideoCapture.com.) [HKLM][64Bits] -- Flash Video Capture_is1 O42 - Logiciel: Berlitz Allemand - (...) [HKLM][64Bits] -- GermanBerlitz_com_fr_fr_German_is1 O42 - Logiciel: Incomedia WebSite X5 v8 - Evolution - (...) [HKLM][64Bits] -- Incomedia WebSite X5 v8 - Evolution O42 - Logiciel: VIA Gestionnaire de périphériques de plate-forme - (.VIA Technologies, Inc..) [HKLM][64Bits] -- InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169} © O42 - Logiciel: Samsung Story Album Viewer - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- InstallShield_{698BBAD8-B116-495D-B879-0F07A533E57F} © O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- InstallShield_{758C8301-2696-4855-AF45-534B1200980A} © O42 - Logiciel: Notification Mail - (.Orange.) [HKLM][64Bits] -- MailNotifier © O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.0.1024 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 © O42 - Logiciel: Mozilla Firefox 41.0.2 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 41.0.2 (x86 fr) © O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService © O42 - Logiciel: barre d'outils Orange - (.Orange.) [HKLM][64Bits] -- OrangeToolbar © O42 - Logiciel: barre d'outils Orange - (.France Telecom SA.) [HKLM][64Bits] -- OrangeToolbarFR O42 - Logiciel: Orange update - (.Orange.) [HKLM][64Bits] -- OrangeUpdateManager © O42 - Logiciel: Epson Guide réseau WF-3520 Series - (...) [HKLM][64Bits] -- WF-3520 Series Netg O42 - Logiciel: Epson Guide d'utilisation WF-3520 Series - (...) [HKLM][64Bits] -- WF-3520 Series Useg O42 - Logiciel: WinPcap 4.1.2 - (.CACE Technologies.) [HKLM][64Bits] -- WinPcapInst © O42 - Logiciel: Nero ShowTime - (.Nero AG.) [HKLM][64Bits] -- {02627ee5-eaca-4742-a9cc-e687631773e4} © O42 - Logiciel: Epson FAX Utility - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {0CBE6C93-CB2E-4378-91EE-12BE6D4E2E4A} © O42 - Logiciel: JavaFX 2.1.0 - (.Oracle Corporation.) [HKLM][64Bits] -- {1111706F-666A-4037-7777-210328764D10} © O42 - Logiciel: Nero Abstract Themes - (.Nero AG.) [HKLM][64Bits] -- {150D88F1-40AF-4678-A39D-BCE2332F34E5} © O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {18455581-E099-4BA8-BC6B-F34B2F06600C} © O42 - Logiciel: Nero Kwik Themes Basic - (.Nero AG.) [HKLM][64Bits] -- {1B6F5E51-575E-4693-BCA2-7543570D076D} © O42 - Logiciel: Nero PhotoSnap Help - (.Nero AG.) [HKLM][64Bits] -- {1c00c7c5-e615-4139-b817-7f4003de68c0} © O42 - Logiciel: Nero InfoTool Help - (.Nero AG.) [HKLM][64Bits] -- {20400dbd-e6db-45b8-9b6b-1dd7033818ec} © O42 - Logiciel: Nero Blu-ray Player - (.Nero AG.) [HKLM][64Bits] -- {22124B84-93B2-4603-B212-146665E4B6B1} © O42 - Logiciel: 7-Zip 9.21 - (.Igor Pavlov.) [HKLM][64Bits] -- {23170F69-40C1-2701-0921-000001000000} © O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} © O42 - Logiciel: Nero StartSmart Help - (.Nero AG.) [HKLM][64Bits] -- {2348b586-c9ae-46ce-936c-a68e9426e214} © O42 - Logiciel: Nero SharedVideoCodecs - (.Nero AG.) [HKLM][64Bits] -- {2432E589-6256-4513-B0BF-EFA8E325D5F0} © O42 - Logiciel: Java(TM) 7 Update 4 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217004F0} © O42 - Logiciel: Java 8 Update 45 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218045F0} © O42 - Logiciel: Java 8 Update 65 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218065F0} © O42 - Logiciel: Java 8 Update 66 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218066F0} © O42 - Logiciel: Cegid CommonFiles - (.Cegid Group.) [HKLM][64Bits] -- {2D32361A-9FC1-4380-BE19-45285673053B} O42 - Logiciel: Nero DriveSpeed - (.Nero AG.) [HKLM][64Bits] -- {33cf58f5-48d8-4575-83d6-96f574e4d83a} © O42 - Logiciel: Nero Recode - (.Nero AG.) [HKLM][64Bits] -- {359cfc0a-beb1-440d-95ba-cf63a86da34f} © O42 - Logiciel: Nero MediaHome - (.Nero AG.) [HKLM][64Bits] -- {3602E91E-416E-402A-8F52-B880E4AB9BF3} © O42 - Logiciel: Epson Easy Photo Print 2 - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {39F58DDB-B2B8-4B86-AF20-4706A80EB30D} © O42 - Logiciel: EpsonNet Print - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {3E31400D-274E-4647-916C-2CACC3741799} © O42 - Logiciel: Nero Vision - (.Nero AG.) [HKLM][64Bits] -- {43e39830-1826-415d-8bae-86845787b54b} © O42 - Logiciel: ANIWZCS2 Service - (...) [HKLM][64Bits] -- {4C590030-7469-453E-8589-D15DA9D03F52} O42 - Logiciel: Nero StartSmart OEM - (.Nero AG.) [HKLM][64Bits] -- {4D43D635-6FDA-4fa5-AA9B-23CF73D058EA} © O42 - Logiciel: neroxml - (.Nero AG.) [HKLM][64Bits] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B} © O42 - Logiciel: NeroExpress - (.Nero AG.) [HKLM][64Bits] -- {595a3116-40bb-4e0f-a2e8-d7951da56270} © O42 - Logiciel: Nero Vision Help - (.Nero AG.) [HKLM][64Bits] -- {5d9be3c1-8ba4-4e7e-82fd-9f74fa6815d1} © O42 - Logiciel: LibreOffice 3.6 Help Pack (French) - (.The Document Foundation.) [HKLM][64Bits] -- {5DC017BF-641F-4E35-94B8-79C63D1E77D4} © O42 - Logiciel: msvcrt_installer - (.SAH.) [HKLM][64Bits] -- {6068A42A-C1CF-45F2-9859-5DB16287FE5D} © O42 - Logiciel: LibreOffice 3.6 - (.The Document Foundation.) [HKLM][64Bits] -- {60B2F25C-22CB-4CD9-9168-8C63708DC1A1} © O42 - Logiciel: Nero Disc Copy Gadget Help - (.Nero AG.) [HKLM][64Bits] -- {60c731fb-c951-41ce-ad41-8e54c8594609} © O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} © O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} © O42 - Logiciel: Nero CoverDesigner - (.Nero AG.) [HKLM][64Bits] -- {62ac81f6-bdd3-4110-9d36-3e9eaab40999} © O42 - Logiciel: Incomedia WebSite X5 v9 - Evolution - (.Incomedia s.r.l..) [HKLM][64Bits] -- {64392EEB-38EF-45FD-822D-5C75CA136860}_is1 O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {649A1FD9-5892-46AD-8DF0-C4A43FF61CB7} © O42 - Logiciel: Nero Update - (.Nero AG.) [HKLM][64Bits] -- {65BB0407-4CC8-4DC7-952E-3EEFDF05602A} © O42 - Logiciel: Samsung Story Album Viewer - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {698BBAD8-B116-495D-B879-0F07A533E57F} © O42 - Logiciel: Free RAR Extractor - (.iWesoft.) [HKLM][64Bits] -- {6CB794C8-218C-430E-BF70-8BFE235C7A43} © O42 - Logiciel: Pokémon Trading Card Game Online - (.The Pokémon Company International.) [HKLM][64Bits] -- {73550466-AE32-47D0-9868-C6066BDC0A3D} O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {758C8301-2696-4855-AF45-534B1200980A} © O42 - Logiciel: Nero StartSmart - (.Nero AG.) [HKLM][64Bits] -- {7748ac8c-18e3-43bb-959b-088faea16fb2} © O42 - Logiciel: Nero BurnRights - (.Nero AG.) [HKLM][64Bits] -- {7829db6f-a066-4e40-8912-cb07887c20bb} © O42 - Logiciel: NVIDIA ForceWare Network Access Manager - (.NVIDIA Corporation.) [HKLM][64Bits] -- {7CFA46E3-CC2F-4355-82AE-6012DC3633FD} © O42 - Logiciel: OpenOffice.org 3.3 - (.OpenOffice.org.) [HKLM][64Bits] -- {7E0610A2-E336-40B3-B685-C4905E97EC9A} © O42 - Logiciel: QuickTime 7 - (.Apple Inc..) [HKLM][64Bits] -- {80CEEB1E-0A6C-45B9-A312-37A1D25FDEBC} © O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {817750FA-EC6A-485D-9901-0683AE6FFDF1} © O42 - Logiciel: LightScribe System Software - (.LightScribe.) [HKLM][64Bits] -- {82EF29B1-9B60-4142-A155-0599216DD053} © O42 - Logiciel: Nero Express Help - (.Nero AG.) [HKLM][64Bits] -- {83202942-84b3-4c50-8622-b8c0aa2d2885} © O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} © O42 - Logiciel: Nero DiscSpeed - (.Nero AG.) [HKLM][64Bits] -- {869200db-287a-4dc0-b02b-2b6787fbcd4c} © O42 - Logiciel: Epson Event Manager - (.Seiko Epson Corporation.) [HKLM][64Bits] -- {8F01524C-0676-4CC1-B4AE-64753C723391} © O42 - Logiciel: TomTom HOME Visual Studio Merge Modules - (.TomTom International B.V..) [HKLM][64Bits] -- {8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533} © O42 - Logiciel: EPU-4 Engine - (...) [HKLM][64Bits] -- {8F66047B-1AF3-40D9-80D7-106E2EDC2C2A} O42 - Logiciel: Microsoft Works 6-9 Converter - (.Microsoft Corporation.) [HKLM][64Bits] -- {95140000-0137-040C-0000-0000000FF1CE} © O42 - Logiciel: Google Drive - (.Google, Inc..) [HKLM][64Bits] -- {9C350701-AC04-48BA-A435-BD5E0D82897E} © O42 - Logiciel: Capb2i V3.2 - (.Xavier PLOT (ac-rouen.fr).) [HKLM][64Bits] -- {9E4FC916-0956-4DB6-B6B6-F0BABAC29104}_is1 O42 - Logiciel: Nero PhotoSnap - (.Nero AG.) [HKLM][64Bits] -- {9e82b934-9a25-445b-b8df-8012808074ac} © O42 - Logiciel: Nero Audio Pack 1 - (.Nero AG.) [HKLM][64Bits] -- {A7A0BF2E-31CC-49E3-9913-52C503EB969D} © O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} © O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824161310} © O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} © O42 - Logiciel: Nero Recode Help - (.Nero AG.) [HKLM][64Bits] -- {ad6bc5cc-2ef0-49c4-b33d-cdc8b2c4dc80} © O42 - Logiciel: DolbyFiles - (.Nero AG.) [HKLM][64Bits] -- {b1adf008-e898-4fe2-8a1f-690d9a06acaf} © O42 - Logiciel: Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {B2D55EB8-32C5-4B43-9006-9E97DECBA178} © O42 - Logiciel: Advertising Center - (.Nero AG.) [HKLM][64Bits] -- {b2ec4a38-b545-4a00-8214-13fe0e915e6d} © O42 - Logiciel: Nero 9 Essentials - (.Nero AG.) [HKLM][64Bits] -- {b5aeaf89-be27-4597-8a51-36d288421050} © O42 - Logiciel: Nero Info - (.Nero AG.) [HKLM][64Bits] -- {B791E0AB-87A9-41A4-8D98-D13C2E37D928} © O42 - Logiciel: D-Link Wireless G DWA-510 - (.D-Link.) [HKLM][64Bits] -- {BADEDF59-389D-49CA-AD06-7EF12C5C13CD} © O42 - Logiciel: Nero ControlCenter - (.Nero AG.) [HKLM][64Bits] -- {bd5ca0da-71ad-43da-b19e-6eee0c9adc9a} © O42 - Logiciel: Nero Core Components - (.Nero AG.) [HKLM][64Bits] -- {BEBEE34D-84A2-4EDD-8BEA-96CC54371263} © O42 - Logiciel: Nero MediaHome Free - (.Nero AG.) [HKLM][64Bits] -- {C9652153-FBF4-465F-A789-51476FF9BDFB} © O42 - Logiciel: EpsonNet Setup 3.3 - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {C9D8A041-2963-4B31-8FFC-1500F3DB9293} © O42 - Logiciel: Nero DiscSpeed Help - (.Nero AG.) [HKLM][64Bits] -- {cc019e3f-59d2-4486-8d4b-878105b62a71} © O42 - Logiciel: Nero CoverDesigner Help - (.Nero AG.) [HKLM][64Bits] -- {ce96f5a5-584d-4f8f-aa3e-9baed413db72} © O42 - Logiciel: Picture Collage Maker 3.3.8 - (.PearlMountain Technology Co., Ltd.) [HKLM][64Bits] -- {D53599B0-AA76-4CC6-B9EF-CC2F27B56F24}_is1 O42 - Logiciel: Nero ShowTime - (.Nero AG.) [HKLM][64Bits] -- {d9dcf92e-72eb-412d-ac71-3b01276e5f8b} © O42 - Logiciel: Nero Online Upgrade - (.Nero AG.) [HKLM][64Bits] -- {dba84796-8503-4ff0-af57-1747dd9a166d} © O42 - Logiciel: TurboCollage 1.0 - (.SilkenMermaid Technologies Pvt. Ltd..) [HKLM][64Bits] -- {DFA5E370-D569-455F-8452-4DB9D7AAA31A} O42 - Logiciel: calibre - (.Kovid Goyal.) [HKLM][64Bits] -- {E1E819A4-112C-454D-A3BE-FB58C60A2D80} © O42 - Logiciel: Nero DriveSpeed Help - (.Nero AG.) [HKLM][64Bits] -- {e5c7d048-f9b4-4219-b323-8bdb01a2563d} © O42 - Logiciel: Nero Installer - (.Nero AG.) [HKLM][64Bits] -- {e8a80433-302b-4ff1-815d-fcc8eac482ff} © O42 - Logiciel: TomTom HOME - (.Nom de votre société.) [HKLM][64Bits] -- {EC5F4C1B-F838-4CB7-8561-8F809296428B} O42 - Logiciel: Nero Disc Copy Gadget - (.Nero AG.) [HKLM][64Bits] -- {f1861f30-3419-44db-b2a1-c274825698b3} © O42 - Logiciel: Nero ControlCenter - (.Nero AG.) [HKLM][64Bits] -- {f4041dce-3fe1-4e18-8a9e-9de65231ee36} © O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} © O42 - Logiciel: Nero BurnRights Help - (.Nero AG.) [HKLM][64Bits] -- {f6bdd7c5-89ed-4569-9318-469aa9732572} © O42 - Logiciel: ABBYY FineReader 9.0 Sprint - (.ABBYY.) [HKLM][64Bits] -- {F9000000-0018-0000-0000-074957833700} © O42 - Logiciel: Nero InfoTool - (.Nero AG.) [HKLM][64Bits] -- {fbcdfd61-7dcf-4e71-9226-873ba0053139} © O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF} © O42 - Logiciel: Amazon Kindle - (.Amazon.) [HKCU][64Bits] -- Amazon Kindle © O42 - Logiciel: CopyTrans Control Center désinstallation uniquement - (.WindSolutions.) [HKCU][64Bits] -- CopyTrans Suite © O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKCU][64Bits] -- Dropbox © O42 - Logiciel: Free RAR Extractor - 1.2 Packages - (...) [HKCU][64Bits] -- Free RAR Extractor - 1.2 Packages O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU][64Bits] -- Google Chrome © O42 - Logiciel: MAX by Wikango - (...) [HKCU][64Bits] -- MAX by Wikango O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe © O42 - Logiciel: PhotoFiltre - (...) [HKCU][64Bits] -- PhotoFiltre O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU][64Bits] -- UnityWebPlayer © O42 - Logiciel: Zip Opener Packages - (...) [HKCU][64Bits] -- Zip Opener Packages =>Adware.InstallCore ---\\ HKCU & HKLM Software Keys (119) - 9s HKLM\SOFTWARE\Wow6432Node\7-Zip HKLM\SOFTWARE\Wow6432Node\ABBYY HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AdobeFlashPlayerUpdate HKLM\SOFTWARE\Wow6432Node\AdwCleaner HKLM\SOFTWARE\Wow6432Node\Alpha Networks HKLM\SOFTWARE\Wow6432Node\ANI HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc. HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\ASUS HKLM\SOFTWARE\Wow6432Node\Audible HKLM\SOFTWARE\Wow6432Node\Avanquest HKLM\SOFTWARE\Wow6432Node\Avanquest France HKLM\SOFTWARE\Wow6432Node\AVAST Software HKLM\SOFTWARE\Wow6432Node\calibre HKLM\SOFTWARE\Wow6432Node\Cegid HKLM\SOFTWARE\Wow6432Node\D-Link HKLM\SOFTWARE\Wow6432Node\Driver-Soft =>.Superfluous.DriverSoft HKLM\SOFTWARE\Wow6432Node\EPSON HKLM\SOFTWARE\Wow6432Node\EpsonNet HKLM\SOFTWARE\Wow6432Node\ExpressFiles =>PUP.Optional.ExpressFiles HKLM\SOFTWARE\Wow6432Node\Gemplus HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\Incomedia HKLM\SOFTWARE\Wow6432Node\InstallShield HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\LANGMaster HKLM\SOFTWARE\Wow6432Node\LibreOffice HKLM\SOFTWARE\Wow6432Node\Licenses HKLM\SOFTWARE\Wow6432Node\LightScribe HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware (Trial) HKLM\SOFTWARE\Wow6432Node\McAfee.com HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Nero HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\OpenOffice.org HKLM\SOFTWARE\Wow6432Node\Oracle HKLM\SOFTWARE\Wow6432Node\Orange HKLM\SOFTWARE\Wow6432Node\Samsung HKLM\SOFTWARE\Wow6432Node\SEIKO EPSON CORPORATION HKLM\SOFTWARE\Wow6432Node\Sony Corporation HKLM\SOFTWARE\Wow6432Node\The Document Foundation HKLM\SOFTWARE\Wow6432Node\Uniblue =>.Superfluous.Uniblue HKLM\SOFTWARE\Wow6432Node\VIA Technologies, Inc HKLM\SOFTWARE\Wow6432Node\webtogo HKLM\SOFTWARE\Wow6432Node\Windows HKLM\SOFTWARE\Wow6432Node\WinPcap HKLM\SOFTWARE\Wow6432Node\Wow6432Node HKLM\SOFTWARE\Wow6432Node\Yahoo HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\7-Zip HKCU\SOFTWARE\ABBYY HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Amazon HKCU\SOFTWARE\ANI HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\ASUS HKCU\SOFTWARE\Avanquest HKCU\SOFTWARE\AVAST Software HKCU\SOFTWARE\CDDB HKCU\SOFTWARE\CEGID HKCU\SOFTWARE\Dropbox HKCU\SOFTWARE\DropboxUpdate HKCU\SOFTWARE\Epson HKCU\SOFTWARE\ExpressFiles =>PUP.Optional.ExpressFiles HKCU\SOFTWARE\Free RAR Extractor HKCU\SOFTWARE\Google HKCU\SOFTWARE\Incomedia HKCU\SOFTWARE\IncrediMail HKCU\SOFTWARE\iWesoft HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\kde.org HKCU\SOFTWARE\LANGMaster HKCU\SOFTWARE\LightScribe HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Malwarebytes' Anti-Malware HKCU\SOFTWARE\MCAFEE HKCU\SOFTWARE\mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Nero HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\NVIDIA Corporation HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\OpenOffice.org HKCU\SOFTWARE\Orange HKCU\SOFTWARE\PearlMountain HKCU\SOFTWARE\PhotoFiltre HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\RealNetworks HKCU\SOFTWARE\Samsung HKCU\SOFTWARE\SilkenMermaid Technologies Pvt. Ltd. HKCU\SOFTWARE\SubSystems HKCU\SOFTWARE\TeleCharger HKCU\SOFTWARE\The Document Foundation HKCU\SOFTWARE\The Pokémon Company International HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Unity HKCU\SOFTWARE\WM Converter5 HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Findizer HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Adobe HKCU\SOFTWARE\AppDataLow\Software\JavaSoft HKCU\SOFTWARE\AppDataLow\Software\Macromedia HKCU\SOFTWARE\AppDataLow\Software\MarkAny HKCU\SOFTWARE\AppDataLow\Software\Orange HKCU\SOFTWARE\AppDataLow\Software\Unity ---\\ Contenu des dossiers Programmes (272) - 11s O43 - CFD: 06/05/2014 - [] D -- C:\Program Files (x86)\7-Zip O43 - CFD: 22/08/2015 - [] D -- C:\Program Files (x86)\ABBYY FineReader 9.0 Sprint O43 - CFD: 06/06/2015 - [] D -- C:\Program Files (x86)\Adobe O43 - CFD: 08/08/2014 - [] D -- C:\Program Files (x86)\Alinea O43 - CFD: 18/07/2015 - [] D -- C:\Program Files (x86)\AlloPagesInstaller O43 - CFD: 06/04/2011 - [] D -- C:\Program Files (x86)\ANI O43 - CFD: 24/09/2015 - [] D -- C:\Program Files (x86)\Apple Software Update O43 - CFD: 06/04/2011 - [] D -- C:\Program Files (x86)\ASUS O43 - CFD: 01/03/2012 - [] D -- C:\Program Files (x86)\Avanquest O43 - CFD: 24/09/2015 - [] D -- C:\Program Files (x86)\Bonjour O43 - CFD: 18/06/2014 - [] D -- C:\Program Files (x86)\Calibre2 O43 - CFD: 20/10/2015 - [] D -- C:\Program Files (x86)\calps O43 - CFD: 28/03/2014 - [] D -- C:\Program Files (x86)\Capb2i V3.2 O43 - CFD: 18/10/2014 - [] D -- C:\Program Files (x86)\CEGID O43 - CFD: 23/10/2015 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 06/04/2011 - [] D -- C:\Program Files (x86)\D-Link O43 - CFD: 21/07/2015 - [] D -- C:\Program Files (x86)\epson O43 - CFD: 22/08/2015 - [] D -- C:\Program Files (x86)\Epson Software O43 - CFD: 22/08/2015 - [] D -- C:\Program Files (x86)\EpsonNet O43 - CFD: 27/10/2013 - [] D -- C:\Program Files (x86)\Farming Simulator 2013 Demo O43 - CFD: 26/06/2013 - [] D -- C:\Program Files (x86)\FastStone Capture O43 - CFD: 27/06/2013 - [] D -- C:\Program Files (x86)\Flash Video Capture O43 - CFD: 13/10/2013 - [] D -- C:\Program Files (x86)\Free RAR Extractor O43 - CFD: 21/08/2012 - [] D -- C:\Program Files (x86)\Gemalto O43 - CFD: 04/06/2015 - [] D -- C:\Program Files (x86)\Google O43 - CFD: 22/08/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 15/10/2015 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 25/10/2015 - [] D -- C:\Program Files (x86)\iTunes O43 - CFD: 23/10/2015 - [] D -- C:\Program Files (x86)\Java O43 - CFD: 12/12/2012 - [] D -- C:\Program Files (x86)\LibreOffice 3.6 O43 - CFD: 02/11/2015 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware O43 - CFD: 25/10/2015 - [0] D -- C:\Program Files (x86)\Malwarebytes' Anti-Malware O43 - CFD: 30/07/2013 - [] D -- C:\Program Files (x86)\MarkAny O43 - CFD: 26/02/2015 - [] D -- C:\Program Files (x86)\Microsoft Office O43 - CFD: 10/03/2014 - [] D -- C:\Program Files (x86)\Microsoft OneDrive O43 - CFD: 13/08/2015 - [] D -- C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 13/11/2011 - [] D -- C:\Program Files (x86)\Microsoft Works O43 - CFD: 11/11/2011 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 21/10/2015 - [] D -- C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 11/09/2014 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 04/07/2012 - [] D -- C:\Program Files (x86)\MSECache O43 - CFD: 15/08/2011 - [0] D -- C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 23/10/2015 - [] D -- C:\Program Files (x86)\Nero O43 - CFD: 14/04/2013 - [] D -- C:\Program Files (x86)\NVIDIA Corporation O43 - CFD: 07/04/2011 - [] D -- C:\Program Files (x86)\OpenOffice.org 3 O43 - CFD: 26/06/2013 - [] D -- C:\Program Files (x86)\Oracle O43 - CFD: 12/01/2012 - [] D -- C:\Program Files (x86)\Orange O43 - CFD: 23/10/2011 - [] D -- C:\Program Files (x86)\PhotoFiltre O43 - CFD: 30/07/2013 - [] D -- C:\Program Files (x86)\Picture Collage Maker O43 - CFD: 05/09/2015 - [] D -- C:\Program Files (x86)\QuickTime O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 30/07/2013 - [] D -- C:\Program Files (x86)\Samsung O43 - CFD: 19/06/2013 - [] D -- C:\Program Files (x86)\TomTom HOME 2 O43 - CFD: 19/06/2013 - [] D -- C:\Program Files (x86)\TomTom International B.V O43 - CFD: 27/06/2013 - [] D -- C:\Program Files (x86)\TubeMaster++ O43 - CFD: 06/08/2013 - [] D -- C:\Program Files (x86)\TurboCollage O43 - CFD: 22/10/2013 - [0] D -- C:\Program Files (x86)\Uniblue =>.Superfluous.Uniblue O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information O43 - CFD: 06/04/2011 - [] D -- C:\Program Files (x86)\VIA O43 - CFD: 19/08/2011 - [] D -- C:\Program Files (x86)\WebSite X5 v8 - Evolution O43 - CFD: 22/07/2014 - [] D -- C:\Program Files (x86)\WebSite X5 v9 - Evolution O43 - CFD: 23/01/2014 - [] D -- C:\Program Files (x86)\Wikango O43 - CFD: 12/07/2013 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 11/06/2015 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 26/06/2013 - [] D -- C:\Program Files (x86)\WinPcap O43 - CFD: 27/06/2013 - [] D -- C:\Program Files (x86)\WMR14 O43 - CFD: 22/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip O43 - CFD: 25/09/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ABBYY FineReader 9.0 Sprint O43 - CFD: 06/04/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 08/08/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Alinéa O43 - CFD: 06/04/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS O43 - CFD: 01/03/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avanquest O43 - CFD: 25/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software O43 - CFD: 18/06/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\calibre - E-book Management O43 - CFD: 26/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\calibre 64bit - E-book Management O43 - CFD: 28/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Capb2i V3.2 O43 - CFD: 06/04/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\D-Link O43 - CFD: 01/03/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Genius Professional Edition O43 - CFD: 22/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON O43 - CFD: 22/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software O43 - CFD: 27/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Farming Simulator 2013 Demo O43 - CFD: 26/06/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastStone Capture O43 - CFD: 27/06/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Flash Video Capture O43 - CFD: 06/04/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 21/08/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gemalto O43 - CFD: 17/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive O43 - CFD: 31/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud O43 - CFD: 19/08/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Incomedia WebSite X5 v8 - Evolution O43 - CFD: 25/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes O43 - CFD: 23/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 12/12/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 3.6 O43 - CFD: 12/04/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LightScribe Direct Disc Labeling O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 02/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 04/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus O43 - CFD: 27/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 26/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 23/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero O43 - CFD: 06/04/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation O43 - CFD: 07/04/2011 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.3 O43 - CFD: 06/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Orange O43 - CFD: 23/10/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre O43 - CFD: 30/07/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picture Collage Maker O43 - CFD: 05/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime O43 - CFD: 30/07/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung O43 - CFD: 04/09/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 21/11/2010 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 19/06/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom O43 - CFD: 06/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TurboCollage O43 - CFD: 22/10/2013 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue =>.Superfluous.Uniblue O43 - CFD: 15/11/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WebSite X5 v9 - Evolution O43 - CFD: 26/06/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap O43 - CFD: 14/01/2014 - [] D -- C:\ProgramData\.mono O43 - CFD: 28/10/2014 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 O43 - CFD: 25/09/2011 - [] D -- C:\ProgramData\ABBYY O43 - CFD: 06/06/2015 - [] D -- C:\ProgramData\Adobe O43 - CFD: 29/01/2014 - [] D -- C:\ProgramData\Apple O43 - CFD: 12/06/2013 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 01/03/2012 - [] D -- C:\ProgramData\Avanquest France O43 - CFD: 21/10/2013 - [] D -- C:\ProgramData\AVAST Software O43 - CFD: 06/04/2011 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 01/03/2012 - [] D -- C:\ProgramData\BVRP Software O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 01/03/2012 - [] D -- C:\ProgramData\DriverGenius =>.Superfluous.DriverGenius O43 - CFD: 06/06/2015 - [] D -- C:\ProgramData\Dropbox O43 - CFD: 08/07/2015 - [] D -- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 O43 - CFD: 23/07/2015 - [] D -- C:\ProgramData\EPSON O43 - CFD: 06/04/2011 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 27/06/2013 - [] D -- C:\ProgramData\Flash Video Capture Data O43 - CFD: 13/07/2012 - [] D -- C:\ProgramData\Google O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\LightScribe O43 - CFD: 25/10/2015 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 06/03/2014 - [] D -- C:\ProgramData\McAfee O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\McAfee Security Scan O43 - CFD: 06/04/2011 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 11/12/2014 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 15/10/2015 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 10/03/2014 - [] D -- C:\ProgramData\Microsoft OneDrive O43 - CFD: 06/04/2011 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 13/05/2014 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 23/10/2015 - [] D -- C:\ProgramData\Nero O43 - CFD: 14/04/2013 - [] D -- C:\ProgramData\NVIDIA O43 - CFD: 06/04/2011 - [] D -- C:\ProgramData\NVIDIA Corporation O43 - CFD: 21/10/2015 - [] D -- C:\ProgramData\Oracle O43 - CFD: 21/08/2011 - [] D -- C:\ProgramData\Orange O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 30/07/2013 - [] D -- C:\ProgramData\PearlMountain O43 - CFD: 30/07/2013 - [] D -- C:\ProgramData\Samsung O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 07/04/2011 - [] D -- C:\ProgramData\Sun O43 - CFD: 08/04/2015 - [0] AD -- C:\ProgramData\TEMP O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 19/06/2013 - [] D -- C:\ProgramData\TomTom O43 - CFD: 22/08/2015 - [] D -- C:\ProgramData\UDL O43 - CFD: 16/11/2014 - [] D -- C:\ProgramData\WindSolutions O43 - CFD: 25/09/2011 - [] D -- C:\Program Files (x86)\Common Files\ABBYY O43 - CFD: 06/06/2015 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 04/02/2015 - [] D -- C:\Program Files (x86)\Common Files\Apple O43 - CFD: 30/07/2013 - [] D -- C:\Program Files (x86)\Common Files\Bcgsoft O43 - CFD: 18/10/2014 - [] D -- C:\Program Files (x86)\Common Files\Cegid O43 - CFD: 26/02/2015 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 22/08/2015 - [] D -- C:\Program Files (x86)\Common Files\EPSON O43 - CFD: 06/04/2011 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 23/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 01/03/2012 - [] D -- C:\Program Files (x86)\Common Files\LANGMaster O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Common Files\LightScribe O43 - CFD: 26/02/2015 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 23/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Nero O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 10/11/2011 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 20/10/2013 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard O43 - CFD: 14/01/2014 - [] D -- C:\Users\Utilisateur\AppData\Roaming\.mono O43 - CFD: 06/03/2014 - [] D -- C:\Users\Utilisateur\AppData\Roaming\0D0S1L2Z1P1B0T1P1B2Z =>Adware.InstallCore O43 - CFD: 08/06/2015 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Adobe O43 - CFD: 27/06/2013 - [] D -- C:\Users\Utilisateur\AppData\Roaming\ALLCapture O43 - CFD: 21/07/2015 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Apple Computer O43 - CFD: 22/10/2013 - [] D -- C:\Users\Utilisateur\AppData\Roaming\AVAST Software O43 - CFD: 18/06/2014 - [] D -- C:\Users\Utilisateur\AppData\Roaming\calibre O43 - CFD: 18/10/2014 - [] D -- C:\Users\Utilisateur\AppData\Roaming\CEGID O43 - CFD: 06/03/2014 - [0] D -- C:\Users\Utilisateur\AppData\Roaming\DigitalSites =>PUP.Optional.DSite O43 - CFD: 29/10/2015 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Dropbox O43 - CFD: 16/10/2015 - [0] D -- C:\Users\Utilisateur\AppData\Roaming\EncryptStick O43 - CFD: 21/07/2015 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Epson O43 - CFD: 03/12/2013 - [] D -- C:\Users\Utilisateur\AppData\Roaming\ExpressFiles =>PUP.Optional.ExpressFiles O43 - CFD: 26/06/2013 - [] D -- C:\Users\Utilisateur\AppData\Roaming\FastStone O43 - CFD: 27/06/2013 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Flash Video Capture Data O43 - CFD: 06/04/2011 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Identities O43 - CFD: 06/04/2011 - [] D -- C:\Users\Utilisateur\AppData\Roaming\InstallShield O43 - CFD: 08/04/2015 - [] D -- C:\Users\Utilisateur\AppData\Roaming\langmaster.com O43 - CFD: 12/12/2012 - [] D -- C:\Users\Utilisateur\AppData\Roaming\LibreOffice O43 - CFD: 13/04/2011 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Macromedia O43 - CFD: 25/10/2015 - [0] D -- C:\Users\Utilisateur\AppData\Roaming\Malwarebytes O43 - CFD: 21/11/2010 - [0] D -- C:\Users\Utilisateur\AppData\Roaming\Media Center Programs O43 - CFD: 08/06/2015 - [] SD -- C:\Users\Utilisateur\AppData\Roaming\Microsoft O43 - CFD: 07/04/2011 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Mozilla O43 - CFD: 20/04/2011 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Nero O43 - CFD: 07/04/2011 - [] D -- C:\Users\Utilisateur\AppData\Roaming\OpenOffice.org O43 - CFD: 08/02/2012 - [0] D -- C:\Users\Utilisateur\AppData\Roaming\Orange O43 - CFD: 30/07/2013 - [] D -- C:\Users\Utilisateur\AppData\Roaming\PearlMountain O43 - CFD: 23/10/2011 - [] D -- C:\Users\Utilisateur\AppData\Roaming\PhotoFiltre O43 - CFD: 14/01/2014 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Pokémon Trading Card Game Online O43 - CFD: 30/07/2013 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Samsung O43 - CFD: 05/09/2015 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Sun O43 - CFD: 19/06/2013 - [] D -- C:\Users\Utilisateur\AppData\Roaming\TomTom O43 - CFD: 22/10/2013 - [0] D -- C:\Users\Utilisateur\AppData\Roaming\Uniblue =>.Superfluous.Uniblue O43 - CFD: 16/11/2014 - [] D -- C:\Users\Utilisateur\AppData\Roaming\WindSolutions O43 - CFD: 02/11/2015 - [] D -- C:\Users\Utilisateur\AppData\Roaming\ZHP O43 - CFD: 25/09/2011 - [] D -- C:\Users\Utilisateur\AppData\Local\ABBYY O43 - CFD: 06/06/2015 - [] D -- C:\Users\Utilisateur\AppData\Local\Adobe O43 - CFD: 21/07/2015 - [] D -- C:\Users\Utilisateur\AppData\Local\Amazon O43 - CFD: 21/07/2015 - [] D -- C:\Users\Utilisateur\AppData\Local\Apple O43 - CFD: 29/07/2013 - [] D -- C:\Users\Utilisateur\AppData\Local\Apple Computer O43 - CFD: 06/04/2011 - [0] SHD -- C:\Users\Utilisateur\AppData\Local\Application Data O43 - CFD: 24/08/2011 - [] D -- C:\Users\Utilisateur\AppData\Local\Apps O43 - CFD: 01/10/2013 - [] D -- C:\Users\Utilisateur\AppData\Local\avgchrome O43 - CFD: 18/06/2014 - [0] D -- C:\Users\Utilisateur\AppData\Local\calibre-cache O43 - CFD: 17/07/2015 - [] D -- C:\Users\Utilisateur\AppData\Local\CEF O43 - CFD: 24/08/2011 - [0] D -- C:\Users\Utilisateur\AppData\Local\Deployment O43 - CFD: 01/11/2015 - [] D -- C:\Users\Utilisateur\AppData\Local\Diagnostics O43 - CFD: 30/07/2013 - [] D -- C:\Users\Utilisateur\AppData\Local\Downloaded Installations O43 - CFD: 06/06/2015 - [] D -- C:\Users\Utilisateur\AppData\Local\Dropbox O43 - CFD: 23/08/2015 - [0] D -- C:\Users\Utilisateur\AppData\Local\ElevatedDiagnostics O43 - CFD: 11/06/2015 - [0] SHD -- C:\Users\Utilisateur\AppData\Local\EmieBrowserModeList O43 - CFD: 11/06/2015 - [0] SHD -- C:\Users\Utilisateur\AppData\Local\EmieSiteList O43 - CFD: 11/06/2015 - [0] SHD -- C:\Users\Utilisateur\AppData\Local\EmieUserList O43 - CFD: 23/11/2014 - [] D -- C:\Users\Utilisateur\AppData\Local\Google O43 - CFD: 06/06/2015 - [] D -- C:\Users\Utilisateur\AppData\Local\GWX O43 - CFD: 06/04/2011 - [0] SHD -- C:\Users\Utilisateur\AppData\Local\Historique O43 - CFD: 15/11/2012 - [] D -- C:\Users\Utilisateur\AppData\Local\Incomedia O43 - CFD: 13/10/2013 - [] D -- C:\Users\Utilisateur\AppData\Local\iWesoft O43 - CFD: 09/04/2013 - [] D -- C:\Users\Utilisateur\AppData\Local\Macromedia O43 - CFD: 08/08/2015 - [] D -- C:\Users\Utilisateur\AppData\Local\Microsoft O43 - CFD: 31/03/2012 - [] D -- C:\Users\Utilisateur\AppData\Local\Microsoft Games O43 - CFD: 31/03/2013 - [] D -- C:\Users\Utilisateur\AppData\Local\Microsoft Help O43 - CFD: 26/06/2014 - [] D -- C:\Users\Utilisateur\AppData\Local\Mozilla O43 - CFD: 18/02/2015 - [] D -- C:\Users\Utilisateur\AppData\Local\Nero O43 - CFD: 30/12/2014 - [] D -- C:\Users\Utilisateur\AppData\Local\Nero_AG O43 - CFD: 20/08/2011 - [] D -- C:\Users\Utilisateur\AppData\Local\Orange O43 - CFD: 20/10/2013 - [] D -- C:\Users\Utilisateur\AppData\Local\Programs O43 - CFD: 30/07/2013 - [] D -- C:\Users\Utilisateur\AppData\Local\Samsung O43 - CFD: 02/11/2015 - [] D -- C:\Users\Utilisateur\AppData\Local\Temp O43 - CFD: 06/04/2011 - [0] SHD -- C:\Users\Utilisateur\AppData\Local\Temporary Internet Files O43 - CFD: 19/06/2013 - [] D -- C:\Users\Utilisateur\AppData\Local\TomTom O43 - CFD: 06/08/2013 - [] D -- C:\Users\Utilisateur\AppData\Local\TurboCollage O43 - CFD: 24/10/2014 - [] D -- C:\Users\Utilisateur\AppData\Local\Unity O43 - CFD: 20/10/2015 - [] D -- C:\Users\Utilisateur\AppData\Local\VirtualStore O43 - CFD: 14/07/2009 - [] RD -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 15/10/2015 - [] RD -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 08/08/2014 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Alinéa O43 - CFD: 06/12/2014 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon O43 - CFD: 16/11/2014 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CopyTrans Control Center O43 - CFD: 16/10/2015 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox O43 - CFD: 13/10/2013 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free RAR Extractor O43 - CFD: 11/01/2013 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 14/07/2009 - [] RD -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 12/01/2012 - [0] D -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My Application O43 - CFD: 23/10/2011 - [0] D -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre O43 - CFD: 14/01/2014 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pokémon Trading Card Game Online O43 - CFD: 16/10/2015 - [] RD -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 23/01/2014 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wikango ---\\ ShellIconOverlayIdentifiers (SIOI) (10) - 0s O106 - SIOI: UpToDateOverlayHandler Class [ SkyDrive1] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft SkyDrive Shell Extension.) -- C:\Users\Utilisateur\AppData\Local\Microsoft\SkyDrive\17.0.4023.1211\SkyDriveShell.dll © O106 - SIOI: SyncingOverlayHandler Class [ SkyDrive2] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft SkyDrive Shell Extension.) -- C:\Users\Utilisateur\AppData\Local\Microsoft\SkyDrive\17.0.4023.1211\SkyDriveShell.dll © O106 - SIOI: ErrorOverlayHandler Class [ SkyDrive3] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft SkyDrive Shell Extension.) -- C:\Users\Utilisateur\AppData\Local\Microsoft\SkyDrive\17.0.4023.1211\SkyDriveShell.dll © O106 - SIOI: DropboxExt1 Class [DropboxExt1] - {FB314ED9-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Utilisateur\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll © O106 - SIOI: DropboxExt2 Class [DropboxExt2] - {FB314EDA-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Utilisateur\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll © O106 - SIOI: DropboxExt3 Class [DropboxExt3] - {FB314EDB-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Utilisateur\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll © O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll © O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll © O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - avast! Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll © O106 - SIOI: DropboxExt4 Class [DropboxExt4] - {FB314EDC-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Utilisateur\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll © ---\\ Enumération des clés StartupReg (2) - 0s O53 - SMSR:HKLM\...\startupreg\ANIWZCS2Service [Key] . (.Wireless Service - ANIWZCS2 launcher for Windows..) -- C:\Program Files (x86)\ANI\ANIWZCS2 Service\WZCSLDR2.exe O53 - SMSR:HKLM\...\startupreg\D-Link D-Link Wireless G DWA-510 [Key] . (.D-Link - D-Link Wireless LAN Monitor.) -- C:\Program Files (x86)\D-Link\D-Link Wireless G DWA-510\AirGCFG.exe © ---\\ Liste des pilotes du système (71) - 5s O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] © O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] © O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] © O58 - SDL:2009/07/14 02:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] © O58 - SDL:2011/03/11 07:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] © O58 - SDL:2009/07/14 02:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] © O58 - SDL:2011/03/11 07:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] © O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] © O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] © O58 - SDL:2009/07/16 04:38:40 A . (. - ATK0110 ACPI Utility.) -- C:\Windows\System32\drivers\ASACPI.sys [15416] O58 - SDL:2015/09/23 06:34:20 A . (.AVAST Software - avast! HWID.) -- C:\Windows\System32\drivers\aswHwid.sys [28656] © O58 - SDL:2015/09/23 06:34:03 A . (.AVAST Software - avast! Keyboard Filter Driver.) -- C:\Windows\System32\drivers\aswKbd.sys [28144] © O58 - SDL:2015/09/23 06:34:20 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [90968] © O58 - SDL:2015/09/23 06:33:52 A . (.AVAST Software - avast! Filtering NDIS driver.) -- C:\Windows\System32\drivers\aswNdisFlt.sys [454528] © O58 - SDL:2011/11/28 18:52:22 A . (.AVAST Software - avast! TDI RDR Driver.) -- C:\Windows\System32\drivers\aswRdr.sys [42328] © O58 - SDL:2015/09/23 06:34:19 A . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr2.sys [93528] © O58 - SDL:2015/09/23 06:34:20 A . (.AVAST Software - avast! Revert.) -- C:\Windows\System32\drivers\aswRvrt.sys [65224] © O58 - SDL:2015/09/23 06:34:03 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [1049880] © O58 - SDL:2015/09/23 06:34:20 A . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\drivers\aswSP.sys [448968] © O58 - SDL:2015/09/23 06:34:21 A . (.AVAST Software - Stream Filter.) -- C:\Windows\System32\drivers\aswStm.sys [153744] © O58 - SDL:2015/09/23 06:34:20 A . (.AVAST Software - avast! VM Monitor.) -- C:\Windows\System32\drivers\aswVmm.sys [274808] © O58 - SDL:2009/06/10 21:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] © O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] © O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] © O58 - SDL:2009/07/14 02:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] © O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] © O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] © O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] © O58 - SDL:2009/06/10 21:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] © O58 - SDL:2009/07/14 02:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] © O58 - SDL:2009/07/14 02:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] © O58 - SDL:2009/06/10 21:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] © O58 - SDL:2012/08/21 12:01:20 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\drivers\GEARAspiWDM.sys [33240] © O58 - SDL:2009/08/10 13:07:40 A . (.Gemalto - USB Smart Card Reader Driver.) -- C:\Windows\System32\drivers\GemCCID.sys [119680] © O58 - SDL:2009/06/10 21:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] © O58 - SDL:2010/11/21 04:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] © O58 - SDL:2011/03/11 07:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] © O58 - SDL:2009/07/14 02:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] © O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] © O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] © O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] © O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] © O58 - SDL:2015/10/05 09:50:06 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [25816] © O58 - SDL:2015/10/05 09:50:10 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [109272] © O58 - SDL:2015/11/02 11:09:12 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [192216] © O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] © O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] © O58 - SDL:2015/10/05 09:50:18 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [63704] © O58 - SDL:2010/04/07 11:14:50 A . (.Ralink Technology, Corp. - Ralink 802.11 Wireless Adapter Driver.) -- C:\Windows\System32\drivers\netr6164.sys [446304] © O58 - SDL:2009/07/14 02:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] © O58 - SDL:2010/06/25 18:07:26 A . (.CACE Technologies, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\Windows\System32\drivers\npf.sys [35344] © O58 - SDL:2013/02/19 21:32:18 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [13531936] © O58 - SDL:2009/06/10 21:35:35 A . (.NVIDIA Corporation - NVIDIA MCP Networking Function Driver..) -- C:\Windows\System32\drivers\nvm62x64.sys [408960] © O58 - SDL:2010/08/12 11:07:50 A . (.NVIDIA Corporation - NVIDIA MCP Networking Function Driver..) -- C:\Windows\System32\drivers\nvmf6264.sys [350952] © O58 - SDL:2011/03/11 07:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] © O58 - SDL:2011/03/11 07:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] © O58 - SDL:2010/04/08 19:33:48 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor64.sys [244328] © O58 - SDL:2009/07/14 02:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] © O58 - SDL:2009/07/14 02:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] © O58 - SDL:2008/03/10 11:17:40 A . (.Ralink Technology, Corp. - Ralink 802.11 Wireless Adapter Driver.) -- C:\Windows\System32\drivers\rt61.sys [386560] © O58 - SDL:2009/06/10 21:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] © O58 - SDL:2009/07/14 02:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] © O58 - SDL:2009/07/14 02:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] © O58 - SDL:2014/01/22 08:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudbus.sys [108800] © O58 - SDL:2014/01/22 08:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudmdm.sys [206080] © O58 - SDL:2009/07/14 02:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] © O58 - SDL:2014/07/28 13:52:00 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl64.sys [54784] © O58 - SDL:2010/05/15 12:11:48 A . (.VIA Technologies, Inc. - VIA High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\viahduaa.sys [1327520] © O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] © O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] © O58 - SDL:2015/04/29 23:01:06 A . (.Western Digital Technologies - WD SCSI Architecture Model (SAM) driver.) -- C:\Windows\System32\drivers\wdcsam64.sys [23200] © ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (2) - 67s O61 - LFC: 2015/11/02 11:18:00 A . (..) -- C:\Users\Utilisateur\Downloads\rsthosts_2.0 (1).exe [353632] O61 - LFC: 2015/11/02 11:06:57 A . (..) -- C:\Users\Utilisateur\Downloads\rsthosts_2.0.exe [353632] ---\\ Associations Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe © O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe © O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe © O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe © O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\Utilisateur\AppData\Local\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Users\Utilisateur\AppData\Local\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Users\Utilisateur\AppData\Local\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Users\Utilisateur\AppData\Local\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © ---\\ Recherche d'infection sur les navigateurs (49) - 15s O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.a7125a2857e6847aa9d72e81874f4d47ed3fcdb92135d4a8a8cf611e3b57c5fdacom33426.33426.name", "Plus-HD-2.3"); =>PUP.Optional.CrossRider O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.irmysearch.aflt", "dsites"); =>PUP.Optional.MyWebSearch O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.irmysearch.cd", "2XzuyEtN2Y1L1Qzu0B0C0A0E0CyD0ByDtD0B0B0EzztDyByEtN0D0Tzu0SyBzyyCtN1L2XzutBtFtCyBtFtDtFtCtN1[...] =>PUP.Optional.MyWebSearch O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.irmysearch.cr", "1773386995"); =>PUP.Optional.MyWebSearch O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.irmysearch.instlRef", "0211_b"); =>PUP.Optional.MyWebSearch O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial.dfltLng", ""); =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial.dfltSrch", true); =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial.dnsErr", true); =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial.dpkLst", "3654782829,1334533236,1121012847,231756876,1895130307,603719297,4288797614,3754950497[...] =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial.excTlbr", false); =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial.hdrMd5", "EE215D081E796AAA1AD64E1683F76072"); =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial.hmpg", true); =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial.hmpgUrl", "http://start.mysearchdial.com/?f=1&a=dsites&cd=2XzuyEtN2Y1L1Qzu0B0C0A0E0CyD0ByDtD0B0[...] =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial.id", "BCAEC5B50BBE8074"); =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial.instlDay", "16135"); =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial.instlRef", "0211_b"); =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial.lastB", "http://start.mysearchdial.com/?f=1&a=dsites&cd=2XzuyEtN2Y1L1Qzu0B0C0A0E0CyD0ByDtD0B0B0[...] =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial.lastVrsnTs", ""); =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial.newTabUrl", "http://start.mysearchdial.com/?f=2&a=dsites&cd=2XzuyEtN2Y1L1Qzu0B0C0A0E0CyD0ByDtD0[...] =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial.prdct", "mysearchdial"); =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial.prtnrId", "mysearchdial"); =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial.sg", "{smplGrp}"); =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial.srchPrvdr", "Mysearchdial"); =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial.tlbrId", "base"); =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial.tlbrSrchUrl", "http://start.mysearchdial.com/?f=3&a=dsites&cd=2XzuyEtN2Y1L1Qzu0B0C0A0E0CyD0ByDt[...] =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial.vrsn", "1.8.29.0"); =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial.vrsni", "1.8.29.0"); =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial_i.hmpg", true); =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial_i.newTab", false); =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial_i.smplGrp", "none"); =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.mysearchdial_i.vrsnTs", "1.8.29.016:27:44"); =>PUP.Optional.MySearchDial O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.toolbar.mindspark._8hMembers_.homepage", "http://home.tb.ask.com/index.jhtml?ptb=77800BD6-1742-4965-975D-992[...] =>PUP.Optional.Bandoo O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.toolbar.mindspark._8hMembers_.initialized", true); =>PUP.Optional.Bandoo O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.toolbar.mindspark._8hMembers_.installation.contextKey", ""); =>PUP.Optional.Bandoo O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.toolbar.mindspark._8hMembers_.installation.installDate", "2014032309"); =>PUP.Optional.Bandoo O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.toolbar.mindspark._8hMembers_.installation.partnerId", "^AYY^xdm073^YYA^fr"); =>PUP.Optional.Bandoo O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.toolbar.mindspark._8hMembers_.installation.partnerSubId", "flvrunner"); =>PUP.Optional.Bandoo O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.toolbar.mindspark._8hMembers_.installation.success", true); =>PUP.Optional.Bandoo O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.toolbar.mindspark._8hMembers_.installation.toolbarId", "77800BD6-1742-4965-975D-992E79F0A7B5"); =>PUP.Optional.Bandoo O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.toolbar.mindspark._8hMembers_.lastActivePing", "1399699823245"); =>PUP.Optional.Bandoo O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.toolbar.mindspark._8hMembers_.options.defaultSearch", false); =>PUP.Optional.Bandoo O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.toolbar.mindspark._8hMembers_.options.homePageEnabled", false); =>PUP.Optional.Bandoo O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.toolbar.mindspark._8hMembers_.options.keywordEnabled", false); =>PUP.Optional.Bandoo O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.toolbar.mindspark._8hMembers_.options.tabEnabled", false); =>PUP.Optional.Bandoo O69 - SBI: prefs.js [Utilisateur - kyvrbumw.default] user_pref("extensions.toolbar.mindspark.lastInstalled", "allin1convert@mindspark.com"); =>PUP.Optional.Bandoo O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {5229278C-BF00-4997-9D11-2587BA5A210B} [DefaultScope] - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {814C76CB-2623-43F4-AAD0-58A0E5190A20} - (Orange) - http://rws.search.ke.voila.fr/ O69 - SBI: SearchScopes [HKCU] {A17EC4E6-2581-42E4-9E26-7E09E4954431} - (Google) - http://www.google.com/ ---\\ Enumère les services démarrés par Svchost (32) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] © O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] © O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] © O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032] © O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] © O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [859648] © O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [680960] © O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] © O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] © O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] © O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] © O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] © O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] © O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [683520] © O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2607104] © O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] © O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] © O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] © O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [30720] © O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70656] © O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672] © O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [67584] © O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688] © O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] © O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] © O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] © O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110016] © O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [90624] © O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] © O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [210432] © O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544] © O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] © ---\\ Liste des exceptions du parefeu Windows (15) - 2s O87 - FAEL: "{ABD62AC3-58E6-4BA4-BFBE-4A703E52EC62}" [In-None-P6-TRUE] .(...) -- D:\fscommand\CKSocketServer.exe (.not file.) O87 - FAEL: "{E71169E2-5667-4535-83B0-39DF1066542B}" [In-None-P17-TRUE] .(...) -- D:\fscommand\CKSocketServer.exe (.not file.) O87 - FAEL: "{DA517718-4611-4CC1-A6AA-F4433CF5937F}" [In-None-P6-TRUE] .(...) -- C:\Windows\System32\dmwu.exe (.not file.) O87 - FAEL: "{74DE2CA4-8531-4917-ADDA-6EF9E908D6B1}" [In-None-P17-TRUE] .(...) -- C:\Windows\System32\dmwu.exe (.not file.) O87 - FAEL: "{C3DBF53F-1450-4C12-A2DE-8E9971242A8F}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\ARFC\wrtc.exe (.not file.) O87 - FAEL: "{2D24CF72-6876-495A-B26E-546BD0253E9E}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\ARFC\wrtc.exe (.not file.) O87 - FAEL: "{BC456414-34D4-44EA-AA66-DB0D99F903DA}" [In-None-P6-TRUE] .(...) -- C:\ProgramData\eSafe\eGdpSvc.exe (.not file.) O87 - FAEL: "{093F40DC-B21E-467C-A052-E72ABC7B1153}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\ExpressFiles\expressdl.exe (.not file.) =>PUP.Optional.ExpressFiles O87 - FAEL: "{B3097C3E-1DB9-4190-A676-6C6F0712E955}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\ExpressFiles\expressdl.exe (.not file.) =>PUP.Optional.ExpressFiles O87 - FAEL: "{7753C53F-B337-469C-B64E-4F5B2CAEDD7B}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\ExpressFiles\ExpressFiles.exe (.not file.) =>PUP.Optional.ExpressFiles O87 - FAEL: "{DE744BC1-2168-4CCC-BA44-9F81320CC0E9}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\ExpressFiles\ExpressFiles.exe (.not file.) =>PUP.Optional.ExpressFiles O87 - FAEL: "{94471A0D-5985-490E-BCF7-0895CA23A830}" [In-None-P6-TRUE] .(...) -- C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe (.not file.) O87 - FAEL: "{A939DBDE-9B5C-4FB1-8BCE-DCD21C6F23BF}" [In-None-P17-TRUE] .(...) -- C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe (.not file.) O87 - FAEL: "{2224DF23-0D75-47D1-B300-BA314FFA8A1C}" [In-None-P6-TRUE] .(...) -- D:\Network\EpsonNetSetup\ENEasyApp.exe (.not file.) O87 - FAEL: "{45AA4707-272E-41BF-833D-AAB8172BECC0}" [In-None-P17-TRUE] .(...) -- D:\Network\EpsonNetSetup\ENEasyApp.exe (.not file.) ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (30) - 23s SR - Auto [14/05/2009] [ 759048] ABBYY FineReader 9.0 Sprint Licensing Service (ABBYY.Licensing.FineReader.Sprint.9.0) . (.ABBYY.) - C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe © SR - Auto [28/10/2015] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe © SS - Demand [17/10/2015] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe © SR - Auto [07/10/2015] [ 77104] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe © SR - Auto [23/09/2015] [ 146600] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe © SR - Auto [23/09/2015] [ 109008] Avast Firewall (avast! Firewall) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\afwServ.exe © SR - Auto [12/08/2015] [ 462096] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe © SR - Auto [19/12/2006] [ 94208] EpsonBidirectionalService (EpsonBidirectionalService) . (.SEIKO EPSON CORPORATION.) - C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSvc.exe © SR - Auto [11/12/2011] [ 135824] Epson Scanner Service (EpsonScanSvc) . (.Seiko Epson Corporation.) - C:\Windows\System32\escsvc64.exe © SR - Auto [27/02/2012] [ 151648] EPSON V3 Service4(05) (EPSON_PM_RPCV4_05) . (.SEIKO EPSON CORPORATION.) - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_WT50RP.EXE © SR - Auto [21/01/2010] [ 496232] ForceWare Intelligent Application Manager (IAM) (ForceWare Intelligent Application Manager (IAM)) . (.Copyright (c) 2001-2009 NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe SR - Auto [12/05/2011] [ 85504] GSL Share Memory (GslShmSrvc) . (.Gemalto.) - C:\Program Files (x86)\Gemalto\Classic Client\BIN\GslShmSrvc.exe © SS - Auto [29/08/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SS - Demand [29/08/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SS - Demand [21/08/2012] [ 194032] Google Software Updater (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe © SR - Demand [16/10/2015] [ 644880] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe © SR - Auto [17/06/2009] [ 73728] LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe © SR - Auto [05/10/2015] [ 1513784] (MBAMScheduler) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe © SR - Auto [05/10/2015] [ 1135416] (MBAMService) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe © SS - Demand [31/07/2015] [ 289256] McAfee Security Scan Component Host Service (McComponentHostService) . (.McAfee, Inc..) - C:\Program Files\McAfee Security Scan\3.11.163\McCHSvc.exe © SS - Demand [13/05/2014] [ 119408] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe © SR - Auto [15/07/2014] [ 786256] @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) . (.Nero AG.) - C:\Program Files (x86)\Nero\Update\NASvc.exe © SR - Auto [29/07/2009] [ 935208] Nero BackItUp Scheduler 4.0 (Nero BackItUp Scheduler 4.0) . (.Nero AG.) - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe © SR - Auto [21/01/2010] [ 209000] ForceWare IP service (nSvcIp) . (.Copyright (c) 2001-2009 NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe SR - Auto [31/01/2013] [ 878368] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\System32\nvvsvc.exe © SR - Auto [19/02/2013] [ 1259296] NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe © SS - Auto [29/08/2013] [ 1073160] Orange update Core Service (Orange update Core Service) . (.Orange SA.) - C:\Program Files (x86)\Orange\OrangeUpdate\Service\OUCore.exe © SS - Demand [25/06/2010] [ 117264] Remote Packet Capture Protocol v.0 (experimental) (rpcapd) . (.CACE Technologies, Inc..) - C:\Program Files (x86)\WinPcap\rpcapd.exe © SR - Auto [22/03/2013] [ 93072] TomTomHOMEService (TomTomHOMEService) . (.TomTom.) - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe © ---\\ Recherche de clés de registre Tracing (2) - 4s HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BabMaint_RASAPI32 =>PUP.Optional.BabSolution HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BabMaint_RASMANCS =>PUP.Optional.BabSolution ---\\ Scan Additionnel (17) - 0s HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Allin1Convert_8hbar Uninstall Firefox =>PUP.Optional.MindSpark HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Allin1Convert_8hbar Uninstall Internet Explorer =>PUP.Optional.MindSpark HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Driver Genius Professional Edition_is1 =>.Superfluous.DriverSoft HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Zip Opener Packages =>Adware.InstallCore HKLM\SOFTWARE\Wow6432Node\Driver-Soft =>.Superfluous.DriverSoft HKLM\SOFTWARE\Wow6432Node\ExpressFiles =>PUP.Optional.ExpressFiles HKLM\SOFTWARE\Wow6432Node\Uniblue =>.Superfluous.Uniblue HKCU\SOFTWARE\ExpressFiles =>PUP.Optional.ExpressFiles C:\Program Files (x86)\Uniblue =>.Superfluous.Uniblue C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue =>.Superfluous.Uniblue C:\ProgramData\DriverGenius =>.Superfluous.DriverGenius C:\Users\Utilisateur\AppData\Roaming\0D0S1L2Z1P1B0T1P1B2Z =>Adware.InstallCore C:\Users\Utilisateur\AppData\Roaming\DigitalSites =>PUP.Optional.DSite C:\Users\Utilisateur\AppData\Roaming\ExpressFiles =>PUP.Optional.ExpressFiles C:\Users\Utilisateur\AppData\Roaming\Uniblue =>.Superfluous.Uniblue HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BabMaint_RASAPI32 =>PUP.Optional.BabSolution HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BabMaint_RASMANCS =>PUP.Optional.BabSolution ---\\ Récapitulatif des éléments trouvées sur votre station (14) - 0s http://www.nicolascoolman.fr/blog =>.Superfluous.DriverSoft http://www.nicolascoolman.fr/blog =>PUP.Optional.SpeedUpMyPC http://www.nicolascoolman.fr/blog =>PUP.Optional.FLVPlayer http://www.nicolascoolman.fr/pup-mindspark/ =>PUP.Optional.MindSpark http://www.nicolascoolman.fr/adware-installcore/ =>Adware.InstallCore http://www.nicolascoolman.fr/adware-expressfiles/ =>PUP.Optional.ExpressFiles http://www.nicolascoolman.fr/blog =>.Superfluous.Uniblue http://www.nicolascoolman.fr/blog =>.Superfluous.DriverGenius http://www.nicolascoolman.fr/hijacker-dsite/ =>PUP.Optional.DSite http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider http://www.nicolascoolman.fr/adware-mywebsearch/ =>PUP.Optional.MyWebSearch http://www.nicolascoolman.fr/blog =>PUP.Optional.MySearchDial http://www.nicolascoolman.fr/adware-bandoo/ =>PUP.Optional.Bandoo http://www.nicolascoolman.fr/hijacker-babsolution/ =>PUP.Optional.BabSolution ~ End of the scan, 41984 items in 211 seconds (1110)(0)