~ ZHPDiag v2015.11.9.165 Par Nicolas Coolman (2015/11/09) ~ Démarré par Django (Administrator) (2015/11/10 20:41:01) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\Django\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Django\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 7 Ultimate, 64-bit Service Pack 1 (Build 7601) ---\\ Navigateurs Internet (2) - 0s GCIE: Google Chrome v46.0.2490.80 MSIE: Internet Explorer v11.0.9600.18059 ---\\ Informations sur les produits Windows (10) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows Operating System - Windows(R) 7, OEM_SLP channel System Locked Preinstallation (OEM_SLP) : OK Windows ID Activation : OK ~ Windows Partial Key : HYRR2 Windows License : OK ~ Windows Remaining Initializations Number : 3 Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Logiciels de protection (3) - 1s Avast Internet Security v11.1.2241 Malwarebytes Anti-Malware version 2.2.0.1024 Windows Defender W7 (Activate) ---\\ Logiciels d'optimisation (1) - 1s CCleaner v5.02 ---\\ Surveillance de Logiciels (2) - 1s Adobe Flash Player 19 ActiveX Adobe Acrobat Reader DC - Français ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 60 Stepping 3, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 8322.724 MB (71% free) System Restore: Activé (Enable) System drive C: has 11 GB () free of 63 GB =>Alerte espace disque inférieur à 20 Go ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: DJANGO-PC ~ User Name: Django ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 11 GB free of 63 GB (System) ~ Drive G: has 66 GB free of 889 GB ---\\ Etat du Centre de Sécurité Windows (13) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (26) - 1s [MD5.AC4C51EB24AA95B77F705AB159189E24] - 21/11/2010 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2872320] © [MD5.DD81D91FF3B0763C392422865C9AC12E] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [45568] © [MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [129024] © [MD5.BD06D875FB79E92DAF724C91DE743AFA] - 16/09/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2487808] © [MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - 17/07/2014 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [455168] © [MD5.067FA52BFB59A56110A12312EF9AF243] - 21/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [232448] © [MD5.492D07D79E7024CA310867B526D9636D] - 03/03/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [357888] © [MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 03/03/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [270336] © [MD5.0D57D091E06BB1E58E72E5D08479FDDF] - 12/04/2011 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] © [MD5.FA886682CFC5D36718D3E436AACF10B9] - 30/05/2014 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [497152] © [MD5.02062C0B390B7729EDC9E69C680A6F3C] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] © [MD5.B8BD2BB284668C84865658C77574381A] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] © [MD5.F036CE71586E93D94DAB220D7BDF4416] - 21/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] © [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - 21/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [102400] © [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 21/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] © [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] © [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] © [MD5.ACB6782973BD93760D597FC7BB37E692] - 29/09/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [159232] © [MD5.09594D1089C523423B32A4229263F068] - 21/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [261632] © [MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - 24/01/2014 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1684928] © [MD5.0086431C29C35BE1DBC43F52CC273887] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [97280] © [MD5.471815800AE33E6F1C32FB1B97C490CA] - 21/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] © [MD5.1B6163C503398B23FF8B939C67747683] - 21/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [165888] © [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] © [MD5.70988118145F5F10EF24720B97F35F65] - 11/11/2014 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [119296] © [MD5.DF8126BD41180351A093A3AD2FC8903B] - 25/02/2011 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [296320] © ---\\ Liste des services NT non Microsoft et non désactivés (15) - 0s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe © O23 - Service: ASGT (ASGT) . (...) - C:\Windows\SysWOW64\ASGT.exe O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe © O23 - Service: Avast Firewall (avast! Firewall) . (.AVAST Software - avast! firewall service.) - C:\Program Files\AVAST Software\Avast\afwServ.exe © O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe © O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) . (.LogMeIn Inc. - Hamachi Client Tunneling Engine.) - G:\Hamachi\hamachi-2.exe © O23 - Service: Ma-Config Agent (MaConfigAgent) . (.CybelSoft - Service de détection matériel.) - C:\Program Files\ma-config.com\MaConfigAgent.exe © O23 - Service: (MBAMService) . (.Malwarebytes - Malwarebytes Anti-Malware.) - G:\Malwarebytes Anti-Malware\mbamservice.exe © O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe © O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe © O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 358.9.) - C:\Windows\System32\nvvsvc.exe © O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\Windows\system32\PnkBstrA.exe (.not file.) O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe © O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe © ---\\ Tâches planifiées en automatique (44) - 4s [MD5.B89A82FB10E98F2FDF51FA82C7366DD3] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1067736] © [MD5.280A526E8111AC6A5BCC1A059E1E0340] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000] © [MD5.D4F602B1F775B5827932D3C5B04A3FD2] [APT] [AutoKMS] (.CODYQX4.) -- C:\Windows\AutoKMS\AutoKMS.exe [3372032] =>HackTool.AutoKMS [MD5.8A6D1C082176864414E85ACF6696331D] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [1510320] © [MD5.9A1F3AEA8D61AA67D90F1B336C00984E] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [5496600] © [MD5.5168ABDED2C163FEC3699C6BF0723AB2] [APT] [GlaryInitialize 5] (.Glarysoft Ltd.) -- G:\LOGICIELS\Glary Utilities 5\Initialize.exe [118048] © [MD5.053EEEE1ABAE53F044F1E386E22AE525] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] © [MD5.053EEEE1ABAE53F044F1E386E22AE525] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] © [MD5.E1F5833D38EF98EC19C5DE6436A5F969] [APT] [GU5SkipUAC] (.Glarysoft Ltd.) -- G:\LOGICIELS\Glary Utilities 5\Integrator.exe [889632] © [MD5.00000000000000000000000000000000] [APT] [klcp_update] (...) -- C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe (.not file.) [0] [MD5.45ADCD37376140892745F157552A7051] [APT] [SafeZone scheduled Autoupdate 1447182616] (.Avast Software.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe [728568] © [MD5.8B395EA40541F9C8A6CE3BB032DA4BC8] [APT] [{2B31EBB7-AFBA-4835-936F-5996490F6166}] (.Ensemble Studios.) -- G:\Age of Empire III\age3.exe [11189048] © [MD5.00000000000000000000000000000000] [APT] [{34800D26-8AA1-4C5B-9394-E089DF94C88C}] (...) -- G:\007 Legends\Bond2012PC.exe (.not file.) [0] [MD5.E4A9B014FBC0FD93E4B7BAE3A9F35A19] [APT] [{3492F1AC-4225-4C15-A158-D5969AC79452}] (...) -- G:\JEUX VIDEOS\Rainbow Six 3\RavenShield\system\ravenshield.exe [982044] [MD5.00000000000000000000000000000000] [APT] [{3C26FBA7-3039-4974-8054-CC0CEBEE81BC}] (...) -- G:\Lord of the Rings - War in the North\witn.exe (.not file.) [0] [MD5.8B395EA40541F9C8A6CE3BB032DA4BC8] [APT] [{4B8173D8-AC76-40FF-A818-35667D9A0F9A}] (.Ensemble Studios.) -- G:\Age of Empire III\age3.exe [11189048] © [MD5.8B395EA40541F9C8A6CE3BB032DA4BC8] [APT] [{5957CE7A-A474-432A-893D-4F552DE16C19}] (.Ensemble Studios.) -- G:\Age of Empire III\age3.exe [11189048] © [MD5.00000000000000000000000000000000] [APT] [{6B9C8B29-75FF-4A39-B953-C199DE765A67}] (...) -- G:\007 Legends\Bond2012PC.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{741ACFC2-53FA-433D-A5AB-A0B9AB142B12}] (...) -- G:\Lord of the Rings - War in the North\witn.exe (.not file.) [0] [MD5.E4A9B014FBC0FD93E4B7BAE3A9F35A19] [APT] [{763DFE52-2447-41B6-BD93-D205C74CBDC4}] (...) -- G:\JEUX VIDEOS\Rainbow Six 3\RavenShield\system\ravenshield.exe [982044] [MD5.8B395EA40541F9C8A6CE3BB032DA4BC8] [APT] [{7FDCE66E-1098-45E7-948F-45D9BF79EAD6}] (.Ensemble Studios.) -- G:\Age of Empire III\age3.exe [11189048] © [MD5.8B395EA40541F9C8A6CE3BB032DA4BC8] [APT] [{887D0CAD-E8A4-4AE6-81CB-0543DBB901EB}] (.Ensemble Studios.) -- G:\Age of Empire III\age3.exe [11189048] © [MD5.8B395EA40541F9C8A6CE3BB032DA4BC8] [APT] [{8A8A0B6B-6A44-429B-860F-98CDE8AB6BEC}] (.Ensemble Studios.) -- G:\Age of Empire III\age3.exe [11189048] © [MD5.E4A9B014FBC0FD93E4B7BAE3A9F35A19] [APT] [{9E7C83A5-17EA-40A8-A0B0-ABF792F5691F}] (...) -- G:\JEUX VIDEOS\Rainbow Six 3\RavenShield\system\ravenshield.exe [982044] [MD5.8B395EA40541F9C8A6CE3BB032DA4BC8] [APT] [{B0D8D0F6-18FA-4E72-853B-62A3648B3BA1}] (.Ensemble Studios.) -- G:\Age of Empire III\age3.exe [11189048] © [MD5.00000000000000000000000000000000] [APT] [{BAB54B0E-BE97-4214-A564-2B2B3A81AC9D}] (...) -- G:\Lord of the Rings - War in the North\witn.exe (.not file.) [0] [MD5.E4A9B014FBC0FD93E4B7BAE3A9F35A19] [APT] [{C879F00D-6B68-4EBF-8DF9-D32C17FF4017}] (...) -- G:\JEUX VIDEOS\Rainbow Six 3\RavenShield\system\ravenshield.exe [982044] [MD5.00000000000000000000000000000000] [APT] [{CF24858E-52D0-402F-ADA1-D0DFBE454823}] (...) -- G:\Lord of the Rings - War in the North\witn.exe (.not file.) [0] [MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [Apple\AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [561984] © [MD5.47517BCEA6249F5C32589003C477BABE] [APT] [ASUS\ASUS Product Register Service] (.ASUSTek Computer Inc..) -- C:\Program Files (x86)\ASUS\APRP\aprp.exe [1134752] © O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] © O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1066] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1070] © O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [3886] © O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3940] © O39 - APT: AutoKMS - (.CODYQX4.) -- C:\Windows\System32\Tasks\AutoKMS [3490] =>HackTool.AutoKMS O39 - APT: avast! Emergency Update - (.AVAST Software.) -- C:\Windows\System32\Tasks\avast! Emergency Update [4182] © O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2774] © O39 - APT: GlaryInitialize 5 - (.Glarysoft Ltd.) -- C:\Windows\System32\Tasks\GlaryInitialize 5 [3296] © O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3814] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4066] © O39 - APT: GU5SkipUAC - (.Glarysoft Ltd.) -- C:\Windows\System32\Tasks\GU5SkipUAC [2956] © O39 - APT: klcp_update - (...) -- C:\Windows\System32\Tasks\klcp_update [3684] O39 - APT: SafeZone scheduled Autoupdate 1447182616 - (.Avast Software.) -- C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1447182616 [3060] © ---\\ Processus lancés (17) - 1s [MD5.945697058B2A6EBB3155FB6BB3399F57] - (.AVAST Software - avast! firewall service.) -- C:\Program Files\AVAST Software\Avast\afwServ.exe [109520] [PID.1576] © [MD5.199D3FA1AF32FCE46A38E8EB64FFF520] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [174416] [PID.2000] © [MD5.2F722690B624C9AD160EDC24DCA880DF] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [7004376] [PID.1212] © [MD5.DF4BCFFB97625D6B44E8554BF83FCCA6] - (.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-config.com\MaConfigAgent.exe [2820424] [PID.3656] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.5144] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.5620] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.500] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.1504] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.3312] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.5860] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.3672] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.5076] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.5216] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.5412] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.2916] © [MD5.186FA9DCE5F1589FCEA9FADEF2A0FEDA] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Django\AppData\Roaming\ZHP\ZHPDiag3.exe [1967104] [PID.2784] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.4524] © ---\\ Google Chrome, Démarrage,Recherche,Extensions (8) - 0s G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.com G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] [] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] [] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [haocganpkafanhkfldbbmhcpaelmkejg] [] __MSG_themeName__ G2 - GCE: Preference [User Data\Default] [ldgfbffkinooeloadekpmfoklnobpien] [] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] [] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] [] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pmkffmgahaepmhkhkblhopnpleeikokc] [] Connected Mind ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (1) - 0s P2 - FPN: [HKLM] [@microsoft.com/Lync,version=15.0] - (.Microsoft.) -- C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll © ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (19) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) © F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) © F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) © ---\\ Etude du fichier hosts (3) - 0s 0 0 ~ Nombre lignes détournées 0 881 (Hosts file redirected) ---\\ Browser Helper Object de navigateur (BHO) (4) - 0s O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Microsoft Lync.) -- C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll © O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll © O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL © O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL © ---\\ Applications lancées au démarrage du système (11) - 0s O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe © O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe © O4 - HKCU\..\Run: [GUDelayStartup] . (.Glarysoft Ltd - Glary Utilities StartupManager.) -- G:\LOGICIELS\Glary Utilities 5\StartupManager.exe © O4 - HKCU\..\Run: [weiynlzeh] rundll32 "C:\Users\Django\AppData\Roaming\mlang2.dll",DAKVD (.not file.) O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe © O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe © O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe © O4 - HKUS\S-1-5-21-528012224-1398060802-104318396-1000\..\Run: [GUDelayStartup] . (.Glarysoft Ltd - Glary Utilities StartupManager.) -- G:\LOGICIELS\Glary Utilities 5\StartupManager.exe © O4 - HKUS\S-1-5-21-528012224-1398060802-104318396-1000\..\Run: [weiynlzeh] rundll32 "C:\Users\Django\AppData\Roaming\mlang2.dll",DAKVD (.not file.) ---\\ Modification Domaine/Adresses DNS (6) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 8.8.8.8 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 8.8.8.8 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 8.8.8.8 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 ---\\ Protocole additionnel (22) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll © O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL © O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL © ---\\ Logiciels installés (101) - 6s O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent O42 - Logiciel: 64 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM][64Bits] -- {C788B026-20BD-4E96-B698-533F1D6C5013} © O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} © O42 - Logiciel: Adobe Flash Player 19 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX © O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824161310} © O42 - Logiciel: Age of Empires III - (.Microsoft Game Studios.) [HKLM][64Bits] -- InstallShield_{485775E8-AEB8-46BD-922B-242879E03DD5} © O42 - Logiciel: Age of Empires III - The Asian Dynasties - (.Microsoft Game Studios.) [HKLM][64Bits] -- InstallShield_{C43C1415-3DFC-4089-9A32-0BECF28A6046} © O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {46F044A5-CE8B-4196-984E-5BD6525E361D} © O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} © O42 - Logiciel: ASIO4ALL - (.Michael Tippach.) [HKLM][64Bits] -- ASIO4ALL © O42 - Logiciel: Asmedia USB Host Controller Driver - (.Asmedia Technology.) [HKLM][64Bits] -- {E4FB0B39-C991-4EE7-95DD-1A1A7857D33D} © O42 - Logiciel: Assassin's Creed IV Black Flag - (...) [HKLM][64Bits] -- {E189015C-5812-4648-920E-F4CA6BE4B109}_is1 O42 - Logiciel: ASUS GPU Tweak - (.ASUSTek COMPUTER INC..) [HKLM][64Bits] -- InstallShield_{532F6E8A-AF97-41C3-915F-39F718EC07D1} © O42 - Logiciel: ASUS Product Register Program - (.ASUSTek Computer Inc..) [HKLM][64Bits] -- {C87D79F6-F813-4812-B7A9-CCCAAB8B1188} © O42 - Logiciel: Audacity 2.0.6 - (.Audacity Team.) [HKLM][64Bits] -- Audacity_is1 © O42 - Logiciel: Avast Internet Security - (.AVAST Software.) [HKLM][64Bits] -- Avast © O42 - Logiciel: Battlefield 3™ - (.Electronic Arts.) [HKLM][64Bits] -- {76285C16-411A-488A-BCE3-C83CB933D8CF} © O42 - Logiciel: Battlelog Web Plugins - (.EA Digital Illusions CE AB.) [HKLM][64Bits] -- Battlelog Web Plugins © O42 - Logiciel: Call of Duty: Modern Warfare 2 - (.Infinity Ward.) [HKLM][64Bits] -- Steam App 10180 O42 - Logiciel: Call of Duty: Modern Warfare 2 - Multiplayer - (.Infinity Ward.) [HKLM][64Bits] -- Steam App 10190 O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner © O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite © O42 - Logiciel: FEAR - (.Vivendi Universal Games, Inc..) [HKLM][64Bits] -- {2B653229-9854-4989-B780-D978F5F13EAB} O42 - Logiciel: FL Studio 10 - (.Image-Line.) [HKLM][64Bits] -- FL Studio 10 © O42 - Logiciel: Free MP4 Video Converter version 5.0.58.324 - (.DVDVideoSoft Ltd..) [HKLM][64Bits] -- Free MP4 Video Converter_is1 © O42 - Logiciel: Free Video to MP3 Converter version 5.0.57.301 - (.DVDVideoSoft Ltd..) [HKLM][64Bits] -- Free Video to MP3 Converter_is1 © O42 - Logiciel: Free YouTube Download version 3.2.58.505 - (.DVDVideoSoft Ltd..) [HKLM][64Bits] -- Free YouTube Download_is1 © O42 - Logiciel: Free YouTube to MP3 Converter version 3.12.56.301 - (.DVDVideoSoft Ltd..) [HKLM][64Bits] -- Free YouTube to MP3 Converter_is1 © O42 - Logiciel: FreeMind - (...) [HKLM][64Bits] -- B991B020-2968-11D8-AF23-444553540000_is1 O42 - Logiciel: Glary Utilities 5.32 - (.Glarysoft Ltd.) [HKLM][64Bits] -- Glary Utilities 5 © O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome © O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} © O42 - Logiciel: GPUTweakStreaming - (.ASUS.) [HKLM][64Bits] -- InstallShield_{D2A41AA7-4313-43D5-AA39-7E3FBBE0556D} © O42 - Logiciel: HP Photosmart B010 All-In-One Driver 14.0 Rel. 7 - (.HP.) [HKLM][64Bits] -- {81830FEF-866C-4DC0-9435-B6287B1EDD8A} © O42 - Logiciel: ICP 9.0 - (...) [HKLM][64Bits] -- ICP install2_is1 O42 - Logiciel: IL Download Manager - (.Image-Line.) [HKLM][64Bits] -- IL Download Manager © O42 - Logiciel: Java 8 Update 40 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218040F0} © O42 - Logiciel: L.A. Noire - (.Rockstar Games.) [HKLM][64Bits] -- {915726DF-7891-444A-AA03-0DF1D64F561A} © O42 - Logiciel: LogMeIn Hamachi - (.LogMeIn, Inc..) [HKLM][64Bits] -- {38DAAEA7-903D-4FBF-A5D3-F7EB8F83782A} © O42 - Logiciel: LogMeIn Hamachi - (.LogMeIn, Inc..) [HKLM][64Bits] -- LogMeIn Hamachi © O42 - Logiciel: Ma-Config.com (64 bits) - (.Cybelsoft.) [HKLM][64Bits] -- {E1322B8A-6F66-44ED-95D5-7FEBC50AC814} © O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.0.1024 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 © O42 - Logiciel: Medieval II Total War - (.SEGA.) [HKLM][64Bits] -- {C0698BDA-0D29-40EE-8570-A31106DF9AB1} © O42 - Logiciel: Medieval II Total War : Kingdoms : Americas - (.SEGA.) [HKLM][64Bits] -- {75983B66-804C-40D1-BA13-64DAF652A6F1} © O42 - Logiciel: Medieval II Total War : Kingdoms : Britannia - (.SEGA.) [HKLM][64Bits] -- {CEDDEE73-3D36-41C2-AA40-29355D9FBD63} © O42 - Logiciel: Medieval II Total War : Kingdoms : Crusades - (.SEGA.) [HKLM][64Bits] -- {02A10468-2F1C-447C-AD8E-4DEDDEA25AE2} © O42 - Logiciel: Medieval II Total War : Kingdoms : Teutonic - (.SEGA.) [HKLM][64Bits] -- {7AEE1963-7001-4C37-BC20-2FAEB74AA41C} © O42 - Logiciel: Microsoft Access MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft DCF MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft Excel MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft Groove MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft InfoPath MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft Lync MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft OneNote MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft Outlook MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft PowerPoint MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft Publisher MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft Word MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft Xbox 360 Accessories 1.2 - (.Microsoft.) [HKLM][64Bits] -- {D9C50188-12D5-4D3E-8F00-682346C2AA5F} © O42 - Logiciel: Mount & Blade: Warband - (.TaleWorlds Entertainment.) [HKLM][64Bits] -- Steam App 48700 © O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {AB085680-FE98-11E1-A232-F04DA23A5C58} © O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {D66B7840-6A9B-11E4-8FED-F04DA23A5C58} © O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} © O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} © O42 - Logiciel: NVIDIA GeForce Experience 2.5.15.54 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience © O42 - Logiciel: NVIDIA Logiciel système PhysX 9.15.0428 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX © O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {E10DB5DA-E576-40EA-A7FC-1CB2A7B283A6} © O42 - Logiciel: NVIDIA Pilote 3D Vision 358.91 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision © O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.34.4 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver © O42 - Logiciel: NVIDIA Pilote du contrôleur 3D Vision 352.65 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB © O42 - Logiciel: NVIDIA Pilote graphique 358.91 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver © O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIAStereo © O42 - Logiciel: Origin - (.Electronic Arts, Inc..) [HKLM][64Bits] -- Origin © O42 - Logiciel: paint.net - (.dotPDN LLC.) [HKLM][64Bits] -- {DF3A46D9-67B3-44B2-9D01-25C8BA772C8A} © O42 - Logiciel: Popcorn Time - (.Popcorn Official.) [HKCU][64Bits] -- Popcorn Time © O42 - Logiciel: Portal 2 - (...) [HKLM][64Bits] -- Postal 2_is1 O42 - Logiciel: PunkBuster Services - (.Even Balance, Inc..) [HKLM][64Bits] -- PunkBusterSvc © O42 - Logiciel: QuickTime 7 - (.Apple Inc..) [HKLM][64Bits] -- {627FFC10-CE0A-497F-BA2B-208CAC638010} © O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} © O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} © O42 - Logiciel: Robocraft - (.Freejam.) [HKLM][64Bits] -- Steam App 301520 © O42 - Logiciel: Rockstar Games Social Club - (.Rockstar Games.) [HKLM][64Bits] -- Rockstar Games Social Club © O42 - Logiciel: SafeZone Stable 1.46.1990.55 - (.Avast Software.) [HKLM][64Bits] -- SafeZone 1.46.1990.55 © O42 - Logiciel: Skype™ 7.13 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {6A0549A9-1B96-498C-ACBC-3943001FEB19} © O42 - Logiciel: Sleeping Dogs - Definitive Edition - (.R.G. Mechanics, markfiter.) [HKLM][64Bits] -- Sleeping Dogs - Definitive Edition_R.G. Mechanics_is1 © O42 - Logiciel: Sonic Foundry Preset Manager 1.0 - (.Sonic Foundry.) [HKLM][64Bits] -- {7266C898-F9CB-4122-9452-2AA1DACE245E} O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam © O42 - Logiciel: System Requirements Lab Detection - (.Husdawg, LLC.) [HKLM][64Bits] -- {B69DD608-60B3-4AA1-B62B-BB7C1287FAA2} © O42 - Logiciel: TAP-Windows 9.9.2 - (...) [HKLM][64Bits] -- TAP-Windows O42 - Logiciel: The Elder Scrolls V: Skyrim - (.Bethesda Game Studios.) [HKLM][64Bits] -- Steam App 72850 © O42 - Logiciel: Tom Clancy's Rainbow Six 3: Raven Shield - (...) [HKLM][64Bits] -- {AF131494-F5D8-45C5-938C-D5F020CF1B0D} O42 - Logiciel: Tom Clancy's Rainbow Six Vegas 2 - (.Ubisoft.) [HKLM][64Bits] -- {FD416706-875C-4B0B-A23A-9E740DAE029E} © O42 - Logiciel: Trojan Killer 2.0 - (.GridinSoft, Inc..) [HKLM][64Bits] -- {8686D4FE-62EF-46FB-B9FD-00679EB381FF}_is1 © O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU][64Bits] -- UnityWebPlayer © O42 - Logiciel: Unlocker 1.9.2 - (.Cedrick Collomb.) [HKLM][64Bits] -- Unlocker © O42 - Logiciel: Uplay - (.Ubisoft.) [HKLM][64Bits] -- Uplay © O42 - Logiciel: Vegas Pro 13.0 (64-bit) - (.Sony.) [HKLM][64Bits] -- {D2CE062E-6A9B-11E4-A8C6-F04DA23A5C58} © O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player © O42 - Logiciel: WinRAR 5.21 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver © O42 - Logiciel: Wrye Bash - (.Wrye & Wrye Bash Development Team.) [HKLM][64Bits] -- Wrye Bash O42 - Logiciel: XviD4PSP 5.10.346.0 - (.Winnydows & fcp team.) [HKLM][64Bits] -- XviD4PSP5_is1 © ---\\ HKCU & HKLM Software Keys (152) - 6s HKLM\SOFTWARE\Wow6432Node\activision HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AdwCleaner HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc. HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\ASIO HKLM\SOFTWARE\Wow6432Node\ASIO4ALL HKLM\SOFTWARE\Wow6432Node\ASUS HKLM\SOFTWARE\Wow6432Node\AVAST Software HKLM\SOFTWARE\Wow6432Node\Avisynth HKLM\SOFTWARE\Wow6432Node\Battlelog Web Plugins HKLM\SOFTWARE\Wow6432Node\bethesda softworks HKLM\SOFTWARE\Wow6432Node\bohemia interactive HKLM\SOFTWARE\Wow6432Node\Capcom HKLM\SOFTWARE\Wow6432Node\CDDB HKLM\SOFTWARE\Wow6432Node\CyberGhost HKLM\SOFTWARE\Wow6432Node\Disc Soft HKLM\SOFTWARE\Wow6432Node\DVDVideoSoft HKLM\SOFTWARE\Wow6432Node\EA Games HKLM\SOFTWARE\Wow6432Node\EasyAntiCheat HKLM\SOFTWARE\Wow6432Node\Electronic Arts HKLM\SOFTWARE\Wow6432Node\ESTsoft HKLM\SOFTWARE\Wow6432Node\fCoder HKLM\SOFTWARE\Wow6432Node\FLT HKLM\SOFTWARE\Wow6432Node\GlarySoft HKLM\SOFTWARE\Wow6432Node\GNU HKLM\SOFTWARE\Wow6432Node\GOG.com HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\HaaliMkx HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard HKLM\SOFTWARE\Wow6432Node\Icaros HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\Image-Line HKLM\SOFTWARE\Wow6432Node\InstallShield HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\KLCodecPack HKLM\SOFTWARE\Wow6432Node\LAV HKLM\SOFTWARE\Wow6432Node\LogMeIn Hamachi HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Macrovision HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\Monolith Productions HKLM\SOFTWARE\Wow6432Node\mount&blade warband HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Nuance HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\Origin HKLM\SOFTWARE\Wow6432Node\Origin Games HKLM\SOFTWARE\Wow6432Node\Outsim HKLM\SOFTWARE\Wow6432Node\PocketSoft HKLM\SOFTWARE\Wow6432Node\PowerPivot HKLM\SOFTWARE\Wow6432Node\Propellerhead Software HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Red Storm Entertainment HKLM\SOFTWARE\Wow6432Node\Rockstar Games HKLM\SOFTWARE\Wow6432Node\SEGA HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\SoftVoice HKLM\SOFTWARE\Wow6432Node\Sonic Foundry HKLM\SOFTWARE\Wow6432Node\Sony Creative Software HKLM\SOFTWARE\Wow6432Node\Ubi Soft HKLM\SOFTWARE\Wow6432Node\Ubisoft HKLM\SOFTWARE\Wow6432Node\Valve HKLM\SOFTWARE\Wow6432Node\VST HKLM\SOFTWARE\Wow6432Node\WinRAR HKLM\SOFTWARE\Wow6432Node\Wrye Bash HKLM\SOFTWARE\Wow6432Node\Even Balance HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\Activision HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AnchorFree HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\ASIO HKCU\SOFTWARE\ASUS HKCU\SOFTWARE\AVAST Software HKCU\SOFTWARE\BEAM Team Games HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\Clubic HKCU\SOFTWARE\DirectShow HKCU\SOFTWARE\Disc Soft HKCU\SOFTWARE\DVDVideoSoft HKCU\SOFTWARE\DXTransform HKCU\SOFTWARE\E-Line Media HKCU\SOFTWARE\Electronic Arts HKCU\SOFTWARE\EpmNewsInfo HKCU\SOFTWARE\ESTsoft HKCU\SOFTWARE\fCoder HKCU\SOFTWARE\FLEXlm License Manager HKCU\SOFTWARE\FLT HKCU\SOFTWARE\fmqsgijtpm HKCU\SOFTWARE\Freejam HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\GameSpy HKCU\SOFTWARE\GameTuts HKCU\SOFTWARE\Glarysoft HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\GridinSoft HKCU\SOFTWARE\GSpot Appliance Corp HKCU\SOFTWARE\Haali HKCU\SOFTWARE\Hewlett-Packard HKCU\SOFTWARE\Icaros HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Image-Line HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\kkuzpb HKCU\SOFTWARE\L2j Community Network HKCU\SOFTWARE\LogMeIn Ignition HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\MountAndBladeWarbandKeys HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MPC-HC HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\NVIDIA Corporation HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\paint.net HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\RatioMaster.NET HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\SecuROM HKCU\SOFTWARE\Skidrow HKCU\SOFTWARE\SKS HKCU\SOFTWARE\Skype HKCU\SOFTWARE\SoftVoice HKCU\SOFTWARE\Sonic Foundry HKCU\SOFTWARE\Sony Creative Software HKCU\SOFTWARE\Steinberg HKCU\SOFTWARE\The Creative Assembly HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Ubisoft HKCU\SOFTWARE\Unity HKCU\SOFTWARE\Valve HKCU\SOFTWARE\Wargaming.net HKCU\SOFTWARE\Winnydows HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\JavaSoft HKCU\SOFTWARE\AppDataLow\Software\Unity ---\\ Contenu des dossiers Programmes (259) - 6s O43 - CFD: 03/11/2015 - [] D -- C:\Program Files (x86)\Adobe O43 - CFD: 26/09/2015 - [] D -- C:\Program Files (x86)\AGEIA Technologies O43 - CFD: 29/03/2015 - [] D -- C:\Program Files (x86)\Apple Software Update O43 - CFD: 26/03/2015 - [] D -- C:\Program Files (x86)\ASIO4ALL v2 O43 - CFD: 31/03/2015 - [] D -- C:\Program Files (x86)\ASM104xUSB3 O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\ASUS O43 - CFD: 19/08/2015 - [] D -- C:\Program Files (x86)\AviSynth 2.5 O43 - CFD: 16/06/2015 - [] D -- C:\Program Files (x86)\Battlelog Web Plugins O43 - CFD: 07/10/2015 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 26/03/2015 - [] D -- C:\Program Files (x86)\DVDVideoSoft O43 - CFD: 20/04/2015 - [] D -- C:\Program Files (x86)\ESTsoft O43 - CFD: 12/05/2015 - [] D -- C:\Program Files (x86)\Free Codec Pack O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\Google O43 - CFD: 21/03/2015 - [] D -- C:\Program Files (x86)\HP O43 - CFD: 26/03/2015 - [] D -- C:\Program Files (x86)\Image-Line O43 - CFD: 06/11/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 03/11/2015 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 30/03/2015 - [] D -- C:\Program Files (x86)\Java O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\Microsoft Office O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\Microsoft SQL Server O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 22/03/2015 - [0] D -- C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 09/11/2015 - [] D -- C:\Program Files (x86)\NVIDIA Corporation O43 - CFD: 26/03/2015 - [] D -- C:\Program Files (x86)\Outsim O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\Realtek O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 24/07/2015 - [] D -- C:\Program Files (x86)\Rockstar Games O43 - CFD: 07/10/2015 - [] RD -- C:\Program Files (x86)\Skype O43 - CFD: 13/10/2015 - [] D -- C:\Program Files (x86)\Sonic Foundry O43 - CFD: 21/03/2015 - [] D -- C:\Program Files (x86)\Sony O43 - CFD: 10/11/2015 - [] D -- C:\Program Files (x86)\SystemRequirementsLab O43 - CFD: 17/03/2015 - [0] HD -- C:\Program Files (x86)\Temp O43 - CFD: 26/09/2015 - [] D -- C:\Program Files (x86)\Ubi Soft O43 - CFD: 10/04/2015 - [] D -- C:\Program Files (x86)\Ubisoft O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information O43 - CFD: 26/03/2015 - [] D -- C:\Program Files (x86)\VstPlugins O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 14/06/2015 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\WinRAR O43 - CFD: 18/03/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 17/03/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 18/08/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Amnesia - The Dark Descent O43 - CFD: 19/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Assassin's Creed IV Black Flag O43 - CFD: 17/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS O43 - CFD: 10/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software O43 - CFD: 05/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bethesda Softworks O43 - CFD: 18/08/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BioShock Infinite O43 - CFD: 17/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 19/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite O43 - CFD: 27/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dead Rising 2 O43 - CFD: 12/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft O43 - CFD: 04/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeMind O43 - CFD: 04/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 18/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5 O43 - CFD: 08/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com O43 - CFD: 17/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 10/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GridinSoft O43 - CFD: 30/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 18/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi O43 - CFD: 17/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ma-config.com O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 10/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 01/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games O43 - CFD: 08/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 O43 - CFD: 04/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Xbox 360 Accessories O43 - CFD: 18/08/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Middle Earth Shadow of Mordor O43 - CFD: 18/08/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Never Alone O43 - CFD: 09/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation O43 - CFD: 18/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime O43 - CFD: 29/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics O43 - CFD: 26/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Red Storm Entertainment O43 - CFD: 04/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SEGA O43 - CFD: 06/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sierra O43 - CFD: 07/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 13/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sonic Foundry O43 - CFD: 03/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony O43 - CFD: 20/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam O43 - CFD: 12/04/2011 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 17/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Valve O43 - CFD: 17/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 17/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 19/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XviD4PSP 5 O43 - CFD: 03/11/2015 - [] D -- C:\ProgramData\Adobe O43 - CFD: 01/07/2015 - [] D -- C:\ProgramData\Age of Empires 3 O43 - CFD: 29/03/2015 - [] D -- C:\ProgramData\Apple O43 - CFD: 18/08/2015 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 10/11/2015 - [] D -- C:\ProgramData\AVAST Software O43 - CFD: 09/05/2015 - [] D -- C:\ProgramData\Bohemia Interactive O43 - CFD: 01/07/2015 - [] D -- C:\ProgramData\boost_interprocess O43 - CFD: 17/03/2015 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 19/03/2015 - [] D -- C:\ProgramData\DAEMON Tools Lite O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 21/03/2015 - [] D -- C:\ProgramData\EA Core O43 - CFD: 21/03/2015 - [] D -- C:\ProgramData\EA Logs O43 - CFD: 21/03/2015 - [] D -- C:\ProgramData\Electronic Arts O43 - CFD: 18/04/2015 - [] D -- C:\ProgramData\ESTsoft O43 - CFD: 17/03/2015 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 07/04/2015 - [] D -- C:\ProgramData\FLEXnet O43 - CFD: 08/11/2015 - [] D -- C:\ProgramData\GlarySoft O43 - CFD: 21/03/2015 - [] D -- C:\ProgramData\HP O43 - CFD: 02/07/2015 - [] D -- C:\ProgramData\LogMeIn O43 - CFD: 17/03/2015 - [] D -- C:\ProgramData\ma-config.com O43 - CFD: 10/11/2015 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 17/03/2015 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 17/03/2015 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 08/10/2015 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 08/10/2015 - [] D -- C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS O43 - CFD: 17/03/2015 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 06/05/2015 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 10/11/2015 - [] D -- C:\ProgramData\NVIDIA O43 - CFD: 09/11/2015 - [] D -- C:\ProgramData\NVIDIA Corporation O43 - CFD: 30/03/2015 - [] D -- C:\ProgramData\Oracle O43 - CFD: 10/04/2015 - [] D -- C:\ProgramData\Orbit O43 - CFD: 08/11/2015 - [] D -- C:\ProgramData\Origin O43 - CFD: 09/05/2015 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 18/08/2015 - [0] D -- C:\ProgramData\regid.1986-12.com.adobe O43 - CFD: 17/03/2015 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 13/07/2015 - [] D -- C:\ProgramData\RELOADED O43 - CFD: 24/07/2015 - [] D -- C:\ProgramData\Rockstar Games O43 - CFD: 06/11/2015 - [] D -- C:\ProgramData\Skype O43 - CFD: 30/03/2015 - [] D -- C:\ProgramData\Sony O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 20/05/2015 - [] D -- C:\ProgramData\Steam O43 - CFD: 03/04/2015 - [] D -- C:\ProgramData\Steinberg O43 - CFD: 30/03/2015 - [] D -- C:\ProgramData\Sun O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 04/11/2015 - [] D -- C:\ProgramData\Ubisoft O43 - CFD: 03/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 29/03/2015 - [] D -- C:\Program Files (x86)\Common Files\Apple O43 - CFD: 09/05/2015 - [] D -- C:\Program Files (x86)\Common Files\BattlEye O43 - CFD: 12/05/2015 - [] D -- C:\Program Files (x86)\Common Files\DVDVideoSoft O43 - CFD: 03/11/2015 - [] HD -- C:\Program Files (x86)\Common Files\EAInstaller O43 - CFD: 21/03/2015 - [] D -- C:\Program Files (x86)\Common Files\Hewlett-Packard O43 - CFD: 21/03/2015 - [] D -- C:\Program Files (x86)\Common Files\HP O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 30/03/2015 - [] D -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 07/04/2015 - [] D -- C:\Program Files (x86)\Common Files\Macrovision Shared O43 - CFD: 13/07/2015 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Games O43 - CFD: 19/03/2015 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 07/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 04/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Steam O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 03/04/2015 - [0] D -- C:\Program Files (x86)\Common Files\VST3 O43 - CFD: 26/09/2015 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard O43 - CFD: 29/04/2015 - [] D -- C:\Program Files (x86)\Common Files\Wrye Bash O43 - CFD: 09/05/2015 - [] D -- C:\Users\Django\AppData\Roaming\.mono O43 - CFD: 25/04/2015 - [] D -- C:\Users\Django\AppData\Roaming\ACAMPREF O43 - CFD: 18/08/2015 - [] D -- C:\Users\Django\AppData\Roaming\Adobe O43 - CFD: 30/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\Apple Computer O43 - CFD: 13/08/2015 - [] D -- C:\Users\Django\AppData\Roaming\Audacity O43 - CFD: 17/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\AVAST Software O43 - CFD: 30/08/2015 - [] D -- C:\Users\Django\AppData\Roaming\DAEMON Tools Lite O43 - CFD: 18/08/2015 - [0] D -- C:\Users\Django\AppData\Roaming\DiskDefrag O43 - CFD: 27/09/2015 - [] D -- C:\Users\Django\AppData\Roaming\dvdcss O43 - CFD: 12/05/2015 - [] D -- C:\Users\Django\AppData\Roaming\DVDVideoSoft O43 - CFD: 20/04/2015 - [] D -- C:\Users\Django\AppData\Roaming\ESTsoft O43 - CFD: 08/11/2015 - [] D -- C:\Users\Django\AppData\Roaming\GlarySoft O43 - CFD: 17/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\Identities O43 - CFD: 04/06/2015 - [] D -- C:\Users\Django\AppData\Roaming\InstallShield O43 - CFD: 22/05/2015 - [] D -- C:\Users\Django\AppData\Roaming\LucasArts O43 - CFD: 04/04/2015 - [] D -- C:\Users\Django\AppData\Roaming\Macromedia O43 - CFD: 12/04/2011 - [0] D -- C:\Users\Django\AppData\Roaming\Media Center Programs O43 - CFD: 13/10/2015 - [] SD -- C:\Users\Django\AppData\Roaming\Microsoft O43 - CFD: 20/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\Mount&Blade Warband O43 - CFD: 06/05/2015 - [] D -- C:\Users\Django\AppData\Roaming\Mozilla O43 - CFD: 21/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\NVIDIA O43 - CFD: 02/06/2015 - [] D -- C:\Users\Django\AppData\Roaming\Origin O43 - CFD: 01/07/2015 - [] D -- C:\Users\Django\AppData\Roaming\PowerISO O43 - CFD: 21/03/2015 - [0] D -- C:\Users\Django\AppData\Roaming\Publish Providers O43 - CFD: 08/11/2015 - [] D -- C:\Users\Django\AppData\Roaming\Skype O43 - CFD: 29/07/2015 - [] D -- C:\Users\Django\AppData\Roaming\Sleeping Dogs - Definitive Edition O43 - CFD: 30/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\Sony O43 - CFD: 21/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\Sony Creative Software Inc O43 - CFD: 20/05/2015 - [] D -- C:\Users\Django\AppData\Roaming\Steam O43 - CFD: 03/04/2015 - [] D -- C:\Users\Django\AppData\Roaming\Steinberg O43 - CFD: 29/06/2015 - [] D -- C:\Users\Django\AppData\Roaming\Teeworlds O43 - CFD: 23/05/2015 - [] D -- C:\Users\Django\AppData\Roaming\The Creative Assembly O43 - CFD: 07/04/2015 - [] D -- C:\Users\Django\AppData\Roaming\Toon Boom Animation O43 - CFD: 27/07/2015 - [] D -- C:\Users\Django\AppData\Roaming\Tunngle O43 - CFD: 26/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\Unity O43 - CFD: 03/11/2015 - [] D -- C:\Users\Django\AppData\Roaming\uTorrent O43 - CFD: 10/11/2015 - [] D -- C:\Users\Django\AppData\Roaming\vlc O43 - CFD: 03/04/2015 - [0] D -- C:\Users\Django\AppData\Roaming\VST3 Presets O43 - CFD: 17/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\WinRAR O43 - CFD: 10/11/2015 - [] D -- C:\Users\Django\AppData\Roaming\ZHP O43 - CFD: 26/03/2015 - [] D -- C:\Users\Django\AppData\Local\5D515C96_stp O43 - CFD: 26/06/2015 - [] D -- C:\Users\Django\AppData\Local\Activision O43 - CFD: 04/11/2015 - [] D -- C:\Users\Django\AppData\Local\Adobe O43 - CFD: 29/03/2015 - [] D -- C:\Users\Django\AppData\Local\Apple O43 - CFD: 26/06/2015 - [] D -- C:\Users\Django\AppData\Local\Apple Computer O43 - CFD: 17/03/2015 - [0] SHD -- C:\Users\Django\AppData\Local\Application Data O43 - CFD: 09/05/2015 - [] D -- C:\Users\Django\AppData\Local\Arma 3 O43 - CFD: 09/05/2015 - [] D -- C:\Users\Django\AppData\Local\Arma 3 Launcher O43 - CFD: 09/05/2015 - [] D -- C:\Users\Django\AppData\Local\Bohemia_Interactive O43 - CFD: 19/08/2015 - [] D -- C:\Users\Django\AppData\Local\CEF O43 - CFD: 24/07/2015 - [] D -- C:\Users\Django\AppData\Local\Chromium O43 - CFD: 05/11/2015 - [] D -- C:\Users\Django\AppData\Local\Diagnostics O43 - CFD: 13/05/2015 - [0] D -- C:\Users\Django\AppData\Local\ElevatedDiagnostics O43 - CFD: 19/06/2015 - [0] SHD -- C:\Users\Django\AppData\Local\EmieBrowserModeList O43 - CFD: 19/06/2015 - [0] SHD -- C:\Users\Django\AppData\Local\EmieSiteList O43 - CFD: 19/06/2015 - [0] SHD -- C:\Users\Django\AppData\Local\EmieUserList O43 - CFD: 15/04/2015 - [] D -- C:\Users\Django\AppData\Local\ESN O43 - CFD: 29/04/2015 - [] D -- C:\Users\Django\AppData\Local\Flying_Castle_Entertainme O43 - CFD: 01/11/2015 - [] D -- C:\Users\Django\AppData\Local\Google O43 - CFD: 17/03/2015 - [0] SHD -- C:\Users\Django\AppData\Local\Historique O43 - CFD: 02/07/2015 - [] D -- C:\Users\Django\AppData\Local\LogMeIn O43 - CFD: 10/11/2015 - [] D -- C:\Users\Django\AppData\Local\LogMeIn Hamachi O43 - CFD: 10/04/2015 - [] D -- C:\Users\Django\AppData\Local\LogMeInIgnition O43 - CFD: 08/10/2015 - [] D -- C:\Users\Django\AppData\Local\Microsoft O43 - CFD: 17/03/2015 - [0] D -- C:\Users\Django\AppData\Local\Microsoft Help O43 - CFD: 06/05/2015 - [] D -- C:\Users\Django\AppData\Local\Mozilla O43 - CFD: 15/05/2015 - [0] D -- C:\Users\Django\AppData\Local\My Games O43 - CFD: 17/03/2015 - [] D -- C:\Users\Django\AppData\Local\NVIDIA O43 - CFD: 22/06/2015 - [] D -- C:\Users\Django\AppData\Local\NVIDIA Corporation O43 - CFD: 20/03/2015 - [] D -- C:\Users\Django\AppData\Local\Origin O43 - CFD: 25/03/2015 - [] D -- C:\Users\Django\AppData\Local\paint.net O43 - CFD: 17/05/2015 - [] D -- C:\Users\Django\AppData\Local\Popcorn Time O43 - CFD: 15/06/2015 - [] D -- C:\Users\Django\AppData\Local\Popcorn-Time O43 - CFD: 18/03/2015 - [] D -- C:\Users\Django\AppData\Local\Programs O43 - CFD: 21/03/2015 - [] D -- C:\Users\Django\AppData\Local\PunkBuster O43 - CFD: 17/08/2015 - [] D -- C:\Users\Django\AppData\Local\SKIDROW O43 - CFD: 19/03/2015 - [] D -- C:\Users\Django\AppData\Local\Skype O43 - CFD: 05/05/2015 - [] D -- C:\Users\Django\AppData\Local\Skyrim O43 - CFD: 21/03/2015 - [] D -- C:\Users\Django\AppData\Local\Sony O43 - CFD: 20/03/2015 - [] D -- C:\Users\Django\AppData\Local\Steam O43 - CFD: 10/11/2015 - [] D -- C:\Users\Django\AppData\Local\Temp O43 - CFD: 17/03/2015 - [0] SHD -- C:\Users\Django\AppData\Local\Temporary Internet Files O43 - CFD: 30/06/2015 - [] D -- C:\Users\Django\AppData\Local\Ubisoft Game Launcher O43 - CFD: 26/03/2015 - [] D -- C:\Users\Django\AppData\Local\Unity O43 - CFD: 07/04/2015 - [] D -- C:\Users\Django\AppData\Local\VirtualStore O43 - CFD: 14/07/2009 - [] RD -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 15/10/2015 - [] RD -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 26/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2 O43 - CFD: 17/03/2015 - [0] D -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASUS O43 - CFD: 26/09/2015 - [] D -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 13/08/2015 - [] D -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 26/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line O43 - CFD: 14/07/2009 - [] RD -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 17/05/2015 - [] D -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time O43 - CFD: 08/11/2015 - [] RD -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 08/11/2015 - [] HD -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup-Disabled O43 - CFD: 10/04/2015 - [] D -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft O43 - CFD: 25/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker O43 - CFD: 17/03/2015 - [] D -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 29/04/2015 - [] D -- C:\Users\Django\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wrye Bash ---\\ ShellIconOverlayIdentifiers (SIOI) (6) - 0s O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL © O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL © O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL © O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll © O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll © O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - avast! Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll © ---\\ Enumération des clés StartupReg (17) - 0s O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe © O53 - SMSR:HKLM\...\startupreg\AdobeAAMUpdater-1.0 [Key] . (...) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\APSDaemon [Key] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe © O53 - SMSR:HKLM\...\startupreg\cacaoweb [Key] . (...) -- C:\Users\Django\AppData\Roaming\cacaoweb\cacaoweb.exe (.not file.) =>PUP.Optional.CacaoWeb O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe © O53 - SMSR:HKLM\...\startupreg\CyberGhost [Key] . (...) -- C:\Program Files\CyberGhost 5\CyberGhost.EXE (.not file.) O53 - SMSR:HKLM\...\startupreg\DAEMON Tools Lite [Key] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- G:\DAEMON Tools Lite\DTLite.exe © O53 - SMSR:HKLM\...\startupreg\GUDelayStartup [Key] . (.Glarysoft Ltd - Glary Utilities StartupManager.) -- G:\LOGICIELS\Glary Utilities 5\StartupManager.exe © O53 - SMSR:HKLM\...\startupreg\LogMeIn GUI [Key] . (...) -- G:\Hamachi\x64\LogMeInSystray.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\LogMeIn Hamachi Ui [Key] . (.LogMeIn Inc. - Hamachi Client Application.) -- G:\Hamachi\hamachi-2-ui.exe © O53 - SMSR:HKLM\...\startupreg\NvBackend [Key] . (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe © O53 - SMSR:HKLM\...\startupreg\QuickTime Task [Key] . (.Apple Inc. - QuickTime Task.) -- G:\QuickTime\QTTask.exe © O53 - SMSR:HKLM\...\startupreg\ShadowPlay [Key] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe © O53 - SMSR:HKLM\...\startupreg\Skype [Key] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe © O53 - SMSR:HKLM\...\startupreg\Steam [Key] . (.Valve Corporation - Steam Client Bootstrapper.) -- G:\Steam\Steam.exe © O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe © O53 - SMSR:HKLM\...\startupreg\XboxStat [Key] . (.Microsoft Corporation - XBoxStat.exe.) -- C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe © ---\\ Liste des pilotes du système (74) - 2s O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] © O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] © O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] © O58 - SDL:2009/07/14 02:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] © O58 - SDL:2010/11/21 04:23:47 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] © O58 - SDL:2009/07/14 02:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] © O58 - SDL:2010/11/21 04:23:47 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] © O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] © O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] © O58 - SDL:2015/01/05 13:23:52 A . (.ASMedia Technology Inc - ASMedia USB3 Hub Driver.) -- C:\Windows\System32\drivers\asmthub3.sys [139480] © O58 - SDL:2015/01/05 13:23:52 A . (.ASMedia Technology Inc - ASMEDIA XHCI Host Controller Driver.) -- C:\Windows\System32\drivers\asmtxhci.sys [430808] © O58 - SDL:2015/11/10 19:48:00 A . (.AVAST Software - avast! HWID.) -- C:\Windows\System32\drivers\aswHwid.sys [28656] © O58 - SDL:2015/11/10 19:47:48 A . (.AVAST Software - avast! Keyboard Filter Driver.) -- C:\Windows\System32\drivers\aswKbd.sys [28144] © O58 - SDL:2015/11/10 19:48:00 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [97648] © O58 - SDL:2015/11/10 19:47:46 A . (.AVAST Software - avast! Filtering NDIS driver.) -- C:\Windows\System32\drivers\aswNdisFlt.sys [466400] © O58 - SDL:2015/11/10 19:48:00 A . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr2.sys [93528] © O58 - SDL:2015/11/10 19:48:00 A . (.AVAST Software - avast! Revert.) -- C:\Windows\System32\drivers\aswRvrt.sys [65224] © O58 - SDL:2015/11/10 19:47:48 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [1059656] © O58 - SDL:2015/11/10 19:48:00 A . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\drivers\aswSP.sys [449992] © O58 - SDL:2015/11/10 19:48:00 A . (.AVAST Software - Stream Filter.) -- C:\Windows\System32\drivers\aswStm.sys [154256] © O58 - SDL:2015/11/10 19:48:00 A . (.AVAST Software - avast! VM Monitor.) -- C:\Windows\System32\drivers\aswVmm.sys [273784] © O58 - SDL:2009/06/10 21:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] © O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] © O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] © O58 - SDL:2009/07/14 02:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] © O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] © O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] © O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] © O58 - SDL:2009/06/10 21:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] © O58 - SDL:2009/07/14 02:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] © O58 - SDL:2015/03/19 15:27:26 A . (.Disc Soft Ltd - DAEMON Tools Virtual Bus Driver.) -- C:\Windows\System32\drivers\dtsoftbus01.sys [283064] © O58 - SDL:2009/07/14 02:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] © O58 - SDL:2009/06/10 21:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] © O58 - SDL:2015/08/18 13:48:53 A . (.Glarysoft Ltd - The driver for the Startup Manager tool.) -- C:\Windows\System32\drivers\GUBootStartup.sys [20160] © O58 - SDL:2015/03/30 14:25:00 AH . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\Windows\System32\drivers\hamachi.sys [33856] © O58 - SDL:2009/06/10 21:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] © O58 - SDL:2013/01/11 19:02:34 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [64624] © O58 - SDL:2010/11/21 04:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] © O58 - SDL:2010/11/21 04:23:47 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] © O58 - SDL:2009/07/14 02:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] © O58 - SDL:2015/02/16 16:58:56 A . (.LogMeIn, Inc. - LogMeIn Mirror Miniport Driver.) -- C:\Windows\System32\drivers\lmimirr.sys [11552] © O58 - SDL:2015/02/16 16:59:14 A . (.LogMeIn, Inc. - LogMeIn Rfs Drivemap Driver.) -- C:\Windows\System32\drivers\LMIRfsDriver.sys [72216] © O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] © O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] © O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] © O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] © O58 - SDL:2015/10/05 09:50:06 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [25816] © O58 - SDL:2015/10/05 09:50:10 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [109272] © O58 - SDL:2015/11/10 20:22:26 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [192216] © O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] © O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] © O58 - SDL:2015/10/05 09:50:18 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [63704] © O58 - SDL:2009/07/14 02:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] © O58 - SDL:2011/08/17 09:04:28 A . (.Nokia - Nokia USB Phone Generic Client.) -- C:\Windows\System32\drivers\nmwcdnsucx64.sys [12800] © O58 - SDL:2011/08/17 09:04:34 A . (.Nokia - Nokia USB Phone Bus Driver.) -- C:\Windows\System32\drivers\nmwcdnsux64.sys [171008] © O58 - SDL:2015/11/02 23:48:25 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\System32\drivers\nvhda64v.sys [205456] © O58 - SDL:2015/11/05 18:13:38 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [11130488] © O58 - SDL:2010/11/21 04:23:47 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] © O58 - SDL:2010/11/21 04:23:47 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] © O58 - SDL:2015/08/11 05:52:30 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\Windows\System32\drivers\nvvad64v.sys [50472] © O58 - SDL:2009/07/14 02:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] © O58 - SDL:2009/07/14 02:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] © O58 - SDL:2013/08/27 07:08:42 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\Windows\System32\drivers\Rt64win7.sys [883928] © O58 - SDL:2013/10/22 13:38:24 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [3692632] © O58 - SDL:2009/06/10 21:37:19 A . (.Macrovision Europe Ltd - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] O58 - SDL:2009/07/14 02:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] © O58 - SDL:2009/07/14 02:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] © O58 - SDL:2009/07/14 02:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] © O58 - SDL:2013/08/03 14:06:00 A . (.The OpenVPN Project - TAP-Win32 Virtual Network Driver.) -- C:\Windows\System32\drivers\tap0901.sys [31232] © O58 - SDL:2009/09/16 06:02:42 A . (.Tunngle.net - TAP-Win32 Virtual Network Driver.) -- C:\Windows\System32\drivers\tap0901t.sys [31232] O58 - SDL:2015/06/04 00:04:50 A . (.Anchorfree Inc. - Anchorfree HSS VPN Adapter.) -- C:\Windows\System32\drivers\taphss6.sys [42088] © O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] © O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] © O58 - SDL:2015/10/26 11:15:46 AH . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\Windows\System32\hamachi.sys [34720] © ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (13) - 1s O61 - LFC: 2015/11/04 18:04:33 A . (..) -- C:\Users\Django\Documents\My Games\Ubisoft\R6Vegas2\R6GameConfig.bin [762] O61 - LFC: 2015/11/05 17:29:53 RASH . (..) -- C:\Users\Django\AppData\Roaming\mlang2.dll [569344] O61 - LFC: 2015/11/09 17:55:35 A . (..) -- C:\Users\Django\AppData\Roaming\Microsoft\UProof\CMAdj.12.bin [232] O61 - LFC: 2015/11/08 17:26:20 A . (..) -- C:\Users\Django\AppData\Local\PunkBuster\BF3\pb\pbcl.dll [1017232] O61 - LFC: 2015/11/08 17:22:20 A . (..) -- C:\Users\Django\AppData\Local\PunkBuster\BF3\pb\pbclold.dll [1017232] O61 - LFC: 2015/11/08 17:26:20 A . (..) -- C:\Users\Django\AppData\Local\PunkBuster\BF3\pb\PnkBstrB.exe [348360] O61 - LFC: 2015/11/08 17:26:33 A . (..) -- C:\Users\Django\AppData\Local\PunkBuster\BF3\pb\PnkBstrK.sys [138816] O61 - LFC: 2015/11/10 18:27:53 A . (..) -- C:\Users\Django\AppData\Local\NVIDIA\NvBackend\Packages\00008285\DAO.20155488.exe [6807000] O61 - LFC: 2015/11/10 18:27:45 A . (..) -- C:\Users\Django\AppData\Local\NVIDIA\NvBackend\Packages\00008245\DRS update.20141141.exe [354416] O61 - LFC: 2015/11/05 23:34:04 A . (..) -- C:\Users\Django\AppData\Local\NVIDIA\NvBackend\drs\update.bin [1311428] O61 - LFC: 2015/11/10 20:33:30 A . (..) -- C:\Users\Django\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [674082] O61 - LFC: 2015/11/08 22:21:24 A . (..) -- C:\Users\Django\AppData\Local\Adobe\Acrobat\DC\UserCache.bin [99509] O61 - LFC: 2015/11/03 20:51:40 A . (..) -- C:\Users\Django\AppData\Local\Adobe\Acrobat\11.0\UserCache.bin [132909] ---\\ Associations Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe © O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe © O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe © O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe © O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- c:\program files\internet explorer\iexplore.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\Launcher.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe © ---\\ Recherche d'infection sur les navigateurs (3) - 1s O69 - SBI: prefs.js [Django - 16omjl5e.default] user_pref("extensions.xpiState", "{\"app-profile\":{\"cacaoweb@cacaoweb.org\":{\"d\":\"C:\\\\Users\\\\Django\\\\AppData\\\\Roaming[...] =>PUP.Optional.CacaoWeb O69 - SBI: SearchScopes [HKCU] ${searchCLSID} - (@ieframe.dll,-12512) - http://search.live.com/ O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ ---\\ Enumère les services démarrés par Svchost (33) - 0s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] © O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] © O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] © O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032] © O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] © O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [859648] © O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [680960] © O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] © O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] © O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] © O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] © O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] © O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] © O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [683520] © O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2607104] © O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] © O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] © O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] © O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [30720] © O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70656] © O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672] © O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [67584] © O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688] © O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] © O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] © O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] © O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110016] © O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [90624] © O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] © O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [210432] © O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544] © O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] © O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [193536] © ---\\ Liste des exceptions du parefeu Windows (28) - 2s O87 - FAEL: "{07A0C929-04A6-4B89-999C-6D76552B02A4}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Django\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{8705EA03-786F-487E-948D-BE4B70A0ECBF}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Django\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "TCP Query User{DCCD38A0-C02F-4790-940A-65FBF8AB2DF0}C:\users\django\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\django\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>PUP.Optional.CacaoWeb O87 - FAEL: "UDP Query User{1466F2C6-26CA-4572-94A0-AFC9779E8709}C:\users\django\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\django\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>PUP.Optional.CacaoWeb O87 - FAEL: "{30C5870F-2B44-462A-B6B9-96B6DD771CE7}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe O87 - FAEL: "{11CC5004-65FD-4025-82B7-37F9A10251CB}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe O87 - FAEL: "{0CEB6041-BF9F-4909-93B7-92AE7E23E899}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe O87 - FAEL: "{203DC6FD-45DA-4969-BBF4-F6C09B77AFE6}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe O87 - FAEL: "TCP Query User{6890FBF1-449C-4BCC-ABD4-53BC95974354}C:\users\django\appdata\local\popcorn time\node-webkit\popcorn time.exe" [In-None-P6-TRUE] .(...) -- C:\users\django\appdata\local\popcorn time\node-webkit\popcorn time.exe O87 - FAEL: "UDP Query User{4AEE739F-BCD4-4F37-BE32-2DD61CF64DD0}C:\users\django\appdata\local\popcorn time\node-webkit\popcorn time.exe" [In-None-P17-TRUE] .(...) -- C:\users\django\appdata\local\popcorn time\node-webkit\popcorn time.exe O87 - FAEL: "{B9DB9955-F014-4BE9-9B69-D3F3513C924B}" [In-None-P17-TRUE] .(...) -- C:\users\django\appdata\local\popcorn time\node-webkit\popcorn time.exe O87 - FAEL: "{2C4718E9-4763-4192-81FF-AF68C13B21B1}" [In-None-P6-TRUE] .(...) -- C:\users\django\appdata\local\popcorn time\node-webkit\popcorn time.exe O87 - FAEL: "{0FAB6513-BAAC-4271-890A-F7D4A1700ACF}" [In-None-P6-TRUE] .(...) -- G:\Steam\steamapps\common\Call of Duty Modern Warfare 2\iw4sp.exe O87 - FAEL: "{EA5CA1D8-49D2-4447-8399-6CE5272B764E}" [In-None-P17-TRUE] .(...) -- G:\Steam\steamapps\common\Call of Duty Modern Warfare 2\iw4sp.exe O87 - FAEL: "{26E438BE-961F-4697-8FD2-F39102E37F63}" [In-None-P6-TRUE] .(...) -- G:\Steam\steamapps\common\Call of Duty Modern Warfare 2\iw4mp.exe O87 - FAEL: "{B03D5981-2C2A-4630-BD6E-C7F3EA1589F7}" [In-None-P17-TRUE] .(...) -- G:\Steam\steamapps\common\Call of Duty Modern Warfare 2\iw4mp.exe O87 - FAEL: "TCP Query User{B7CDDCE8-865B-41E7-BF16-64605D98C862}G:\jeux videos\portal 2\portal2.exe" [In-None-P6-FALSE] .(...) -- G:\jeux videos\portal 2\portal2.exe O87 - FAEL: "UDP Query User{AA4CC527-5BEE-42A3-AA82-09491DC225DA}G:\jeux videos\portal 2\portal2.exe" [In-None-P17-FALSE] .(...) -- G:\jeux videos\portal 2\portal2.exe O87 - FAEL: "TCP Query User{B9145484-E5AA-4595-81A0-D2A9DFD7D144}G:\jeux videos\portal 2\portal2.exe" [In-None-P6-TRUE] .(...) -- G:\jeux videos\portal 2\portal2.exe O87 - FAEL: "UDP Query User{D264DE02-38A3-4820-B0FA-A848CF458964}G:\jeux videos\portal 2\portal2.exe" [In-None-P17-TRUE] .(...) -- G:\jeux videos\portal 2\portal2.exe O87 - FAEL: "{B5DE3232-7A8D-4D4A-B8BA-7427816CCF34}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe O87 - FAEL: "{79956972-20F6-4D3A-80A6-89D79F3BD667}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe O87 - FAEL: "{ED07D69F-EAF9-4EB6-B4C5-AFA0D4C27361}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe O87 - FAEL: "{9FD03FF8-052B-430E-B063-FFFD6B10F1E3}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe O87 - FAEL: "{75648B45-822D-4CDF-B365-6EDF688C61E2}" [In-None-P6-TRUE] .(...) -- G:\JEUX VIDEOS\Rainbow Six Vegas 2\Binaries\R6Vegas2_Game.exe O87 - FAEL: "{B3B42CDC-8361-4BD5-B21A-44FEBCD5DF6E}" [In-None-P17-TRUE] .(...) -- G:\JEUX VIDEOS\Rainbow Six Vegas 2\Binaries\R6Vegas2_Game.exe O87 - FAEL: "{C27E5D4E-BD76-4FE8-8961-65B91D9EDCE7}" [In-None-P6-TRUE] .(.Monolith Productions, Inc. - F.E.A.R..) -- G:\JEUX VIDEOS\FEAR\FEAR.exe O87 - FAEL: "{2FA4530C-EE3C-4D6F-90A3-8A688AC2F147}" [In-None-P17-TRUE] .(.Monolith Productions, Inc. - F.E.A.R..) -- G:\JEUX VIDEOS\FEAR\FEAR.exe ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (22) - 10s SS - Auto [28/10/2015] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe © SS - Demand [10/11/2015] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe © SS - Auto [17/01/2012] [ 55296] ASGT (ASGT) . (...) - C:\Windows\SysWOW64\ASGT.exe SR - Auto [10/11/2015] [ 174416] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe © SR - Auto [10/11/2015] [ 109520] Avast Firewall (avast! Firewall) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\afwServ.exe © SS - Demand [08/05/2015] [ 441216] BattlEye Service (BEService) . (...) - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe SS - Demand [07/04/2015] [ 651720] FLEXnet Licensing Service (FLEXnet Licensing Service) . (.Macrovision Europe Ltd..) - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe © SS - Auto [12/10/2015] [ 1156384] NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe © SS - Auto [07/10/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SS - Demand [07/10/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SS - Auto [26/10/2015] [ 2546184] LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) . (.LogMeIn Inc..) - G:\Hamachi\hamachi-2.exe © SS - Demand [03/04/2005] [ 69632] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe © SR - Auto [15/10/2014] [ 2820424] Ma-Config Agent (MaConfigAgent) . (.CybelSoft.) - C:\Program Files\ma-config.com\MaConfigAgent.exe © SS - Auto [05/10/2015] [ 1135416] (MBAMService) . (.Malwarebytes.) - G:\Malwarebytes Anti-Malware\mbamservice.exe © SS - Auto [12/10/2015] [ 1873696] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe © SS - Auto [12/10/2015] [ 5568288] NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe © SS - Auto [05/11/2015] [ 938616] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\System32\nvvsvc.exe © SS - Demand [03/11/2015] [ 2099208] Origin Client Service (Origin Client Service) . (.Electronic Arts.) - G:\Origin\OriginClientService.exe © SS - Auto [09/07/2015] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe © SS - Demand [14/10/2015] [ 838224] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe © SS - Auto [05/11/2015] [ 417584] NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe © ---\\ Scan Additionnel (3) - 0s C:\Windows\AutoKMS\AutoKMS.exe =>HackTool.AutoKMS C:\Windows\System32\Tasks\AutoKMS =>HackTool.AutoKMS C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS ---\\ Récapitulatif des éléments trouvées sur votre station (2) - 0s http://www.nicolascoolman.fr/trojan-autokms/ =>HackTool.AutoKMS http://www.nicolascoolman.fr/pup-cacaoweb/ =>PUP.Optional.CacaoWeb ~ End of the scan, 29161 items in 43 seconds (998)(0)