~ ZHPDiag v2015.12.15.185 Par Nicolas Coolman (2015/12/15) ~ Démarré par Guinarwen (Administrator) (2015/12/15 23:42:47) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\Guinarwen\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Guinarwen\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ Démarrage du système: Normal (Normal boot) Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601) ---\\ Navigateurs Internet (3) - 0s GCIE: Google Chrome v47.0.2526.80 MFIE: Mozilla Firefox 42.0 (x86 fr) v42.0 MSIE: Internet Explorer v11.0.9600.18124 ---\\ Informations sur les produits Windows (4) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Logiciels de protection (4) - 8s Avira Antivirus v15.0.15.129 Malwarebytes Anti-Malware version 2.1.8.1057 Trend Micro Titanium Internet Security v3.00 Windows Defender W7 (Deactivate) ---\\ Logiciels d'optimisation (1) - 9s CCleaner v5.11 ---\\ Surveillance de Logiciels (1) - 9s Adobe Flash Player 19 NPAPI ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 37 Stepping 5, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 4043.308 MB (42% free) System Restore: Activé (Enable) System drive C: has 32 GB () free of 262 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: GUINARWEN-PC-W7 ~ User Name: Guinarwen ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 32 GB free of 262 GB (System) ~ Drive D: has 208 GB free of 322 GB ---\\ Etat du Centre de Sécurité Windows (10) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (25) - 1s [MD5.332FEAB1435662FC6C672E25BEB37BE3] - 25/02/2011 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2871808] © [MD5.DD81D91FF3B0763C392422865C9AC12E] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [45568] © [MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [129024] © [MD5.E2C385B0D816AD37616BD4C4204D0633] - 08/11/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2487808] © [MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - 17/07/2014 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [455168] © [MD5.067FA52BFB59A56110A12312EF9AF243] - 20/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [232448] © [MD5.492D07D79E7024CA310867B526D9636D] - 03/03/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [357888] © [MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 03/03/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [270336] © [MD5.0D57D091E06BB1E58E72E5D08479FDDF] - 20/11/2010 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] © [MD5.9A4A1EEE802BF2F878EE8EAB407B21B7] - 13/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [497664] © [MD5.02062C0B390B7729EDC9E69C680A6F3C] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] =>.Microsoft Windows® [MD5.B8BD2BB284668C84865658C77574381A] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] © [MD5.F036CE71586E93D94DAB220D7BDF4416] - 20/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] © [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - 20/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [102400] © [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 20/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] © [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] © [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] © [MD5.73ADDCC406B86E7DA4416691E8E74BDA] - 20/10/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [159232] © [MD5.09594D1089C523423B32A4229263F068] - 20/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [261632] © [MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - 24/01/2014 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1684928] =>.Microsoft Windows® [MD5.0086431C29C35BE1DBC43F52CC273887] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [97280] © [MD5.471815800AE33E6F1C32FB1B97C490CA] - 20/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] © [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] © [MD5.AA77EB517D2F07A947294F260E3ACA83] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [118272] © [MD5.0D08D2F3B3FF84E433346669B5E0F639] - 20/11/2010 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [295808] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (18) - 1s O23 - Service: AFBAgent (AFBAgent) . (.ASUSTeK Computer Inc. - ASUS FastBoot.) - C:\Windows\system32\FBAgent.exe © O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe © O23 - Service: Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG - Antivirus MailScanner WFP Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG - AntiVir WebGuard WFP Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.® O23 - Service: ASLDR Service (ASLDRService) . (.ASUS - ASLDR Service.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe =>.ASUSTeK Computer Inc.® O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS - GFNEXSrv.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe =>.ASUSTeK Computer Inc.® O23 - Service: Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG - Avira.ServiceHost.) - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® O23 - Service: Freemake Improver (Freemake Improver) . (.Freemake - FreemakeUtilsService.) - C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe © O23 - Service: Google Update Service (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: PDF Architect Helper Service (PDF Architect Helper Service) . (.pdfforge GmbH - PDF Architect Helper Service.) - C:\Program Files (x86)\PDF Architect\HelperService.exe =>.pdfforge GmbH® O23 - Service: PDF Architect Service (PDF Architect Service) . (.pdfforge GmbH - PDF Architect Conversion Service.) - C:\Program Files (x86)\PDF Architect\ConversionService.exe =>.pdfforge GmbH® O23 - Service: Samsung AllShare PC (SamsungAllShareV2.0) . (.Samsung Electronics Co., Ltd. - Samsung AllShare Service.) - C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\AllShareDMS.exe =>.Samsung Electronics CO., LTD.® O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® O23 - Service: TiMiniService (TiMiniService) . (.Trend Micro Inc. - Titanium mini-service.) - C:\Program Files\Trend Micro\Titanium\TiMiniService.exe {0494D739BC82C7149EBE00E2C8D7BEF6} © ---\\ Processus lancés (22) - 9s [MD5.F581CE4A97766833FBBC8581734E2BBF] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\atiesrxx.exe [203264] [PID.896] © [MD5.ECCB2EAB9DAB54B99BD74D70E4488788] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\atieclxx.exe [462336] [PID.1296] © [MD5.6A4AC533855F11C10764FFDF2AC3F7D0] - (.Freemake - FreemakeUtilsService.) -- C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [108032] [PID.1724] © [MD5.69D76CE06BB629B69165C81D83A4B03E] - (.Trend Micro Inc. - Titanium mini-service.) -- C:\Program Files\Trend Micro\Titanium\TiMiniService.exe [241488] [PID.2308] {0494D739BC82C7149EBE00E2C8D7BEF6} © [MD5.E852C399D73B84E682816F55C9F8ABB4] - (.Trend Micro Inc. - .) -- C:\Program Files\Trend Micro\Titanium\TiResumeSrv.exe [297808] [PID.2384] {0494D739BC82C7149EBE00E2C8D7BEF6} © [MD5.DFAC78508DEFE8841DA4CDD1FA472C1A] - (.AlcorMicro Co., Ltd. - Single LUN Icon Utility for VID 058F PID 63.) -- C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [323584] [PID.3824] © [MD5.D5C19842C2271327CA20511C30FFEED3] - (.Sonix Technology Co., Ltd. - CameraMonitor Application.) -- C:\Windows\vsnp2uvc.exe [909824] [PID.3840] [MD5.8292C93AA02A0451E243A3CF97878968] - (.syncables, LLC - Syncables.) -- C:\Program Files (x86)\syncables\syncables desktop\syncables.exe [370480] [PID.3864] {31827BA593F96005631A982E8AEF4CC2} © [MD5.B114BFB3988F0B5BBA5A372DFA2B02C9] - (.OLYMPUS CORPORATION - resident module.) -- C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OV3Monitor.exe [419864] [PID.4016] {2C4BD4570335872C1D7FAA0FED02DD3C} [MD5.30F69462C39ABC9B5674B9D5DFE126B4] - (. - Viber.) -- C:\Users\Guinarwen\AppData\Local\Viber\Viber.exe [51657424] [PID.4064] {5B2B01101C2900E34ECB16F78E6B73BF} [MD5.45D9E6C134735854866608931269B43E] - (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\syncables\syncables desktop\jre\bin\javaw.exe [145184] [PID.4092] {0F3DAAC815F6789999223A8083B44BF5} © [MD5.FD22B00049F775E952371E9C3DAC631B] - (.Copyright (C) 2005 - Wireless Console 3.) -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1601536] [PID.4236] [MD5.4F2B6D05AFC4F680DFC2392EDA749493] - (.Applian Technologies, Inc. - FLV Service for Freecorder.) -- C:\Program Files (x86)\Freecorder\FLVSrvc.exe [167936] [PID.4244] [MD5.CB228E181580EA4B66B03426BA57BD80] - (.Geek Software GmbH - PDF24 Creator.) -- C:\Program Files (x86)\PDF24\pdf24.exe [217632] [PID.4300] {00C5EC4D7AC86AEB0B4932134450CCD098} © [MD5.F655E4A1AED366E96E5D5AA397E0F255] - (.Apple Inc. - QuickTime Task.) -- C:\Program Files (x86)\QuickTime\QTTask.exe [421888] [PID.4316] © [MD5.76B73B5EE4FD40E6C2800963B8897011] - (.ASUS Cloud Corporation - .) -- C:\Program Files (x86)\ASUS\WebStorage\2.2.4.537\AsusWSPanel.exe [5563688] [PID.4332] {165262D16ED95E4D5D40A107FC3774EE} © [MD5.C15914E9BD6C6C992964637B8219BE2E] - (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote Clipper.) -- C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe [1192656] [PID.4348] {4E9FBAA67EFC8AD24CE782CC7AA7F527} © [MD5.E7704CBF568815C1CAA6E513387BD3F2] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [65536] [PID.4484] © [MD5.11E8D8272FDBE213ADE3DAD91427CE35] - (.OpenOffice.org - OpenOffice.org 3.3.) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe [11322880] [PID.4504] © [MD5.2337EC951C4AF6E1AF65D10BD9615BEB] - (.OpenOffice.org - OpenOffice.org 3.3.) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin [11314688] [PID.4800] © [MD5.74EF310FAC89341CE2897B7F2C4A7B0F] - (.ATI Technologies Inc. - Catalyst Control Centre: Host application.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe [65536] [PID.3340] © [MD5.D3B28250C8E509E985FD07DA0BFBAE3C] - (.Copyright (C) 2015 Nicolas Coolman - ZHPDiag.) -- C:\Users\Guinarwen\Downloads\ZHPDiag3.exe [2016768] [PID.6096] © ---\\ Google Chrome, Démarrage,Recherche,Extensions (17) - 70s G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.fr G0 - GCSP: Preferences [User Data\Default][HomePage] http://accounts.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://login.live.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.googleapis.com G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.fr G2 - GCE: Preference [User Data\Default] [aaaaabfjnbeinlpljodiajipidiompfl] [http://apnmedia.ask.com/media/toolbar/supertoolbar] Avira Toolbar =>Hijacker.Browser G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [dleekdifoepfadaikncodjgnkkffkccd] [http://update.bostonmarketone.com/chrome/] Boston MarketOne =>Hijacker.Browser G2 - GCE: Preference [User Data\Default] [edhilgpnlmgniclikjhefmadegchepcg] [https://secure.applian.com/freecorder/chrome] Freecorder 6 =>Hijacker.Browser G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] __MSG_extName__ G2 - GCE: Preference [User Data\Default] [jbolfgndggfhhpbnkgnpjkfhinclbigj] Freemake Video Converter G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (6) - 2s P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\QuickTimePlugin.class P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} © P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_226.dll © P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll © P2 - FPN: [HKLM] [@Skype Technologies S.A..com/Skype Web Plugin] - (.Skype.) -- C:\Program Files (x86)\SkypeWebPlugin\npSkypeWebPlugin.dll P2 - FPN: [HKLM] [ZEON/PDF,version=2.0] - (.Zeon Corporation.) -- C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (15) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (5) - 1s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\System32\Userinit.exe (.Microsoft Corporation.) © F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) © F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) © ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (22) ---\\ Browser Helper Object de navigateur (BHO) (8) - 0s O2 - BHO: Trend Micro NSC BHO [64Bits] - {1CA1377B-DC1D-4A52-9585-6E06050FAC53} . (.Trend Micro Inc. - Trend Micro NSC IE Plug-In.) -- C:\Program Files\Trend Micro\AMSP\module\20004\1.5.1381\6.5.1234\TmIEPlg32.dll {0494D739BC82C7149EBE00E2C8D7BEF6} © O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (Orphean) O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll =>.Microsoft Corporation® O2 - BHO: Google Toolbar Helper [64Bits] - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll =>.Google Inc® O2 - BHO: Google Toolbar Notifier BHO [64Bits] - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll =>.Google Inc® O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL =>.Microsoft Corporation® O2 - BHO: TmBpIeBHO [64Bits] - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} . (.Trend Micro Inc. - Trend Micro Browser Plug-In (IE).) -- C:\Program Files\Trend Micro\AMSP\module\20002\6.5.1234\6.5.1234\TmBpIe32.dll {0494D739BC82C7149EBE00E2C8D7BEF6} © O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll {0F3DAAC815F6789999223A8083B44BF5} © ---\\ Applications lancées au démarrage du système (32) - 2s O4 - HKLM\..\Run: [ASUS WebStorage] C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe (.not file.) O4 - HKLM\..\Run: [VizorHtmlDialog.exe] . (.Trend Micro Inc. - Trend Titanium.) -- C:\Program Files\Trend Micro\Titanium\UIFramework\VizorHtmlDialog.exe {0494D739BC82C7149EBE00E2C8D7BEF6} © O4 - HKLM\..\Run: [Trend Micro Client Framework] . (.Trend Micro Inc. - Trend Micro Client Session Agent Monitor.) -- C:\Program Files\Trend Micro\UniClient\UiFrmwrk\UIWatchDog.exe {0494D739BC82C7149EBE00E2C8D7BEF6} © O4 - HKLM\..\Run: [Trend Micro Titanium] . (.Trend Micro Inc. - VizorShortCut Dynamic Link Library.) -- C:\Program Files\Trend Micro\Titanium\VizorShortCut.exe {0494D739BC82C7149EBE00E2C8D7BEF6} © O4 - HKLM\..\Run: [AmIcoSinglun64] . (.AlcorMicro Co., Ltd. - Single LUN Icon Utility for VID 058F PID 63.) -- C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe © O4 - HKLM\..\Run: [ETDWare] C:\Program Files (x86)\Elantech\ETDCtrl.exe (.not file.) O4 - HKLM\..\Run: [snp2uvc] . (.Sonix Technology Co., Ltd. - CameraMonitor Application.) -- C:\Windows\vsnp2uvc.exe O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated® O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe =>.Apple Inc.® O4 - HKCU\..\Run: [Syncables] . (.syncables, LLC - Syncables.) -- C:\Program Files (x86)\syncables\syncables desktop\Syncables.exe {31827BA593F96005631A982E8AEF4CC2} © O4 - HKCU\..\Run: [MobileDocuments] C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe (.not file.) O4 - HKLM\..\Wow6432Node\Run: [UpdateLBPShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe =>.CyberLink® O4 - HKLM\..\Wow6432Node\Run: [UpdateP2GoShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe =>.CyberLink® O4 - HKLM\..\Wow6432Node\Run: [Nuance PDF Reader-reminder] . (.Nuance Communications, Inc. - Ereg.) -- C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe =>.Nuance Communications, Inc.® O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe © O4 - HKLM\..\Wow6432Node\Run: [ATKMEDIA] . (.ASUS - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe =>.ASUSTeK Computer Inc.® O4 - HKLM\..\Wow6432Node\Run: [HControlUser] . (.ASUS - HControlUser.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe =>.ASUSTeK Computer Inc.® O4 - HKLM\..\Wow6432Node\Run: [Wireless Console 3] . (.Copyright (C) 2005 - Wireless Console 3.) -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe O4 - HKLM\..\Wow6432Node\Run: [Freecorder FLV Service] . (.Applian Technologies, Inc. - FLV Service for Freecorder.) -- C:\Program Files (x86)\Freecorder\FLVSrvc.exe O4 - HKLM\..\Wow6432Node\Run: [NPSStartup] (Orphean) O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe =>.Apple Inc.® O4 - HKLM\..\Wow6432Node\Run: [AdobeCS5ServiceManager] . (.Adobe Systems Incorporated - Adobe CS5 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe =>.Adobe Systems Incorporated® O4 - HKLM\..\Wow6432Node\Run: [SwitchBoard] . (.Adobe Systems Incorporated - SwitchBoard Server (32 bit).) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe © O4 - HKLM\..\Wow6432Node\Run: [AllShareAgent] . (.Samsung Electronics Co., Ltd. - Samsung AllShare Agent.) -- C:\Program Files (x86)\Samsung\AllShare\AllShareAgent.exe =>.Samsung Electronics CO., LTD.® O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe © O4 - HKUS\.DEFAULT\..\RunOnce: [iCloud] . (.Apple Inc. - iCloud.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe =>.Apple Inc.® O4 - HKUS\S-1-5-18\..\RunOnce: [iCloud] . (.Apple Inc. - iCloud.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe =>.Apple Inc.® O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe © O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe © O4 - HKUS\S-1-5-21-3228627706-352522292-3759082605-1001\..\Run: [Syncables] . (.syncables, LLC - Syncables.) -- C:\Program Files (x86)\syncables\syncables desktop\Syncables.exe {31827BA593F96005631A982E8AEF4CC2} © O4 - HKUS\S-1-5-21-3228627706-352522292-3759082605-1001\..\Run: [MobileDocuments] C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe (.not file.) ---\\ Modification Domaine/Adresses DNS (5) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.50 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.1 89.2.0.2 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.50 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.1 89.2.0.2 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.50 ---\\ Protocole additionnel (29) - 2s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll =>.Microsoft Corporation® O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll © O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation® O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll =>.Microsoft Corporation® O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: skype4com [64Bits] - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype4COM.) -- C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll =>.Skype Software Sarl® O18 - Handler: tmbp [64Bits] - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} . (.Trend Micro Inc. - Trend Micro Browser Plug-In (IE).) -- C:\Program Files\Trend Micro\AMSP\module\20002\6.5.1234\6.5.1234\TmBpIe32.dll {0494D739BC82C7149EBE00E2C8D7BEF6} © O18 - Handler: tmpx [64Bits] - {0E526CB5-7446-41D1-A403-19BFE95E8C23} . (.Trend Micro Inc. - Trend Micro NSC IE Plug-In.) -- C:\Program Files\Trend Micro\AMSP\module\20004\1.5.1381\6.5.1234\TmIEPlg32.dll {0494D739BC82C7149EBE00E2C8D7BEF6} © O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll =>.Microsoft Corporation® O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation® O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: text/xml [64Bits] - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Logiciels installés (185) - 26s O42 - Logiciel: 64 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM][64Bits] -- {C788B026-20BD-4E96-B698-533F1D6C5013} © O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- {A2BCA9F1-566C-4805-97D1-7FDC93386723} © O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- Adobe AIR =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Community Help - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7} © O42 - Logiciel: Adobe Community Help - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 © O42 - Logiciel: Adobe Creative Suite 5 Master Collection - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {1BBD8D70-721A-41AD-AC8F-7308A0C8FA92} =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Digital Editions 4.0 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Digital Editions 4.0 © O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX {2136329A167A6FD6BF4BB5E8778E0BFB} © O42 - Logiciel: Adobe Flash Player 19 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Alcor Micro USB Card Reader - (.Alcor Micro Corp..) [HKLM][64Bits] -- {F4BF5F6B-F695-4762-AEB2-D095A4C34D89} © O42 - Logiciel: Alcor Micro USB Card Reader - (.Alcor Micro Corp..) [HKLM][64Bits] -- InstallShield_{F4BF5F6B-F695-4762-AEB2-D095A4C34D89} © O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {3540ADD5-822B-47FB-B1C2-CD7B2C8E9FEC} © O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {C9C0FE2C-602E-49D7-8C42-5B9E8FF04798} © O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {FD244E19-6EFE-4A2D-948A-0D45D4C168BE} © O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF} © O42 - Logiciel: Artisteer 4 - (.Extensoft.) [HKLM][64Bits] -- Artisteer 4 © O42 - Logiciel: Ask Toolbar - (.Ask.com.) [HKLM][64Bits] -- {86D4B82A-ABED-442A-BE86-96357B70F4FE} =>Toolbar.AsktBar O42 - Logiciel: ASUS AI Recovery - (.ASUS.) [HKLM][64Bits] -- {38253529-D97D-4901-AE53-5CC9736D3A2E} © O42 - Logiciel: ASUS FancyStart - (.ASUSTeK Computer Inc..) [HKLM][64Bits] -- {2B81872B-A054-48DA-BE3B-FA5C164C303A} © O42 - Logiciel: ASUS LifeFrame3 - (.ASUS.) [HKLM][64Bits] -- {1DBD1F12-ED93-49C0-A7CC-56CBDE488158} © O42 - Logiciel: ASUS Live Update - (.ASUS.) [HKLM][64Bits] -- {E657B243-9AD4-4ECC-BE81-4CCF8D667FD0} © O42 - Logiciel: ASUS Power4Gear Hybrid - (.ASUS.) [HKLM][64Bits] -- {9B6239BF-4E85-4590-8D72-51E30DB1A9AA} © O42 - Logiciel: ASUS SmartLogon - (.ASUS.) [HKLM][64Bits] -- {64452561-169F-4A36-A2FF-B5E118EC65F5} © O42 - Logiciel: ASUS Virtual Camera - (.asus.) [HKLM][64Bits] -- {EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1} © O42 - Logiciel: AsusVibe2.0 - (.ASUSTEK.) [HKLM][64Bits] -- Asus Vibe2.0 © O42 - Logiciel: ATI AVIVO64 Codecs - (.ATI Technologies Inc..) [HKLM][64Bits] -- {BEE7DC03-E310-8AD4-F45D-B5A5163F697F} © O42 - Logiciel: ATI Catalyst Install Manager - (.ATI Technologies, Inc..) [HKLM][64Bits] -- {583EE643-CF83-A1F2-A90F-ADB75F7B532D} © O42 - Logiciel: ATK Package - (.ASUS.) [HKLM][64Bits] -- {AB5C933E-5C7D-4D30-B314-9C83A49B94BE} © O42 - Logiciel: Auchan Photogenie 5.1 - (...) [HKLM][64Bits] -- Auchan Photogenie_is1 O42 - Logiciel: Avira Antivirus v15.0.15.129 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- Avira Antivirus =>.Avira Operations GmbH & Co. KG® O42 - Logiciel: Avira Launcher v1.1.51.19070 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {5b07d59f-99e0-4c52-ad25-965f7e38d6ac} =>.Avira Operations GmbH & Co. KG® O42 - Logiciel: Avira Launcher v1.1.51.19070 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {9D67E683-1144-4C0C-A9F3-5171F7678FF3} © O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {56DDDFB8-7F79-4480-89D5-25E1F52AB28F} © O42 - Logiciel: Bookworm Deluxe - (.Oberon Media Inc..) [HKLM][64Bits] -- Bookworm Deluxe {6625CF104D40B7508DB35BA4A6EFA7C6} © O42 - Logiciel: Catalyst Control Center - Branding - (.ATI.) [HKLM][64Bits] -- {81BEA2F5-4F9B-4AF5-A9B2-3210F71931D3} © O42 - Logiciel: Catalyst Control Center Graphics Previews Common - (.ATI.) [HKLM][64Bits] -- {A4692B7D-06B6-CE18-3263-6C6A6D0A3523} © O42 - Logiciel: Catalyst Control Center Graphics Previews Vista - (.ATI.) [HKLM][64Bits] -- {783168D6-A0FD-95FD-1566-DE713F657B31} © O42 - Logiciel: Catalyst Control Center InstallProxy - (.ATI Technologies, Inc..) [HKLM][64Bits] -- {094FFEEE-A373-34AE-6BDD-DEA32B48C726} © O42 - Logiciel: Catalyst Control Center Localization All - (.ATI.) [HKLM][64Bits] -- {6F94B707-E02E-926A-265A-C6FE9A2341DF} © O42 - Logiciel: CCC Help Chinese Standard - (.ATI.) [HKLM][64Bits] -- {4CA28B46-276B-B71D-F8F3-24D71E2B0EFC} © O42 - Logiciel: CCC Help Chinese Traditional - (.ATI.) [HKLM][64Bits] -- {86DF393B-85DC-C979-015E-16F653D519FA} © O42 - Logiciel: CCC Help Czech - (.ATI.) [HKLM][64Bits] -- {EC424449-9726-17B6-F320-3E19771FB7CC} © O42 - Logiciel: CCC Help Danish - (.ATI.) [HKLM][64Bits] -- {D16F6061-E568-7C91-A442-9A0999B7858B} © O42 - Logiciel: CCC Help Dutch - (.ATI.) [HKLM][64Bits] -- {71E50C69-B330-47BA-8BA3-FA0B73B50E2F} © O42 - Logiciel: CCC Help English - (.ATI.) [HKLM][64Bits] -- {342997EA-A365-D0CE-6398-51FA82684BBE} © O42 - Logiciel: CCC Help Finnish - (.ATI.) [HKLM][64Bits] -- {A2149B0A-60C2-D0CD-0BE4-E61207977EF8} © O42 - Logiciel: CCC Help French - (.ATI.) [HKLM][64Bits] -- {BB6BCE21-FB0C-65AA-41DD-DA5C4D7CF8B1} © O42 - Logiciel: CCC Help German - (.ATI.) [HKLM][64Bits] -- {6B0F9EE2-6044-CD5C-AA72-3DD14169BB9E} © O42 - Logiciel: CCC Help Greek - (.ATI.) [HKLM][64Bits] -- {B967BF4F-7862-F925-C4ED-87D30C7B3202} © O42 - Logiciel: CCC Help Hungarian - (.ATI.) [HKLM][64Bits] -- {CDF915E6-B46E-D09A-430A-4E1EDB6B8006} © O42 - Logiciel: CCC Help Italian - (.ATI.) [HKLM][64Bits] -- {98A6D1FB-7A75-EFE4-300C-925997829A26} © O42 - Logiciel: CCC Help Japanese - (.ATI.) [HKLM][64Bits] -- {280CF8DE-D980-1CB9-50BD-EA8B352B34CB} © O42 - Logiciel: CCC Help Korean - (.ATI.) [HKLM][64Bits] -- {4639068E-09AE-31C6-5617-7BBDC337F3A1} © O42 - Logiciel: CCC Help Norwegian - (.ATI.) [HKLM][64Bits] -- {5F9BE8FA-50D3-9528-FFFD-AF1EEB43589C} © O42 - Logiciel: CCC Help Polish - (.ATI.) [HKLM][64Bits] -- {1BD51F9B-5306-F4DC-21B6-DFF0071C2075} © O42 - Logiciel: CCC Help Portuguese - (.ATI.) [HKLM][64Bits] -- {B3E55EDC-69C4-0E25-915B-E62AF7D4C66D} © O42 - Logiciel: CCC Help Russian - (.ATI.) [HKLM][64Bits] -- {80B014E0-824D-D0AE-3FE0-545E03C68C13} © O42 - Logiciel: CCC Help Spanish - (.ATI.) [HKLM][64Bits] -- {A8608C12-5A96-B569-8FD7-119E0A5C9F6F} © O42 - Logiciel: CCC Help Swedish - (.ATI.) [HKLM][64Bits] -- {E9ED2CE0-D7D8-EDE1-78B9-93F4943B1E49} © O42 - Logiciel: CCC Help Thai - (.ATI.) [HKLM][64Bits] -- {937BCC13-53F9-84E0-8F21-56F736132E3D} © O42 - Logiciel: CCC Help Turkish - (.ATI.) [HKLM][64Bits] -- {0DF28A6E-A72B-85B0-48C9-990FD63EA176} © O42 - Logiciel: ccc-core-static - (.ATI.) [HKLM][64Bits] -- {76669BC4-5547-5B50-53C0-C061C198F077} © O42 - Logiciel: ccc-utility64 - (.ATI.) [HKLM][64Bits] -- {ACF2B885-BBDB-6DC9-8469-71AEAAF80496} © O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM][64Bits] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1 © O42 - Logiciel: Complément Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {6E5324C1-84FC-4F76-9A3A-C65E07F80EE6} © O42 - Logiciel: Complemento Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {3A09ED0F-8DDF-47BB-B53D-841AB9D1D3A7} © O42 - Logiciel: Conduit Engine - (.Conduit Ltd..) [HKLM][64Bits] -- conduitEngine O42 - Logiciel: Configuration DivX - (.DivX, LLC.) [HKLM][64Bits] -- DivX Setup {41186E7B8C66A56DF6F7F8E8A1E88B57} © O42 - Logiciel: ControlDeck - (.ASUS.) [HKLM][64Bits] -- {5B65EF64-1DFA-414A-8C94-7BB726158E21} © O42 - Logiciel: ConvertHelper 2.2 - (.DownloadHelper.) [HKLM][64Bits] -- {27CC6AB1-E72B-4179-AF1A-EAE507EBAF51}_is1 © O42 - Logiciel: Cooking Dash - (.Oberon Media Inc..) [HKLM][64Bits] -- Cooking Dash {6625CF104D40B7508DB35BA4A6EFA7C6} © O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} =>.CyberLink® O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243} =>.CyberLink® O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658} =>.CyberLink® O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658} =>.CyberLink® O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} © O42 - Logiciel: DirectVobSub 2.40.4209 - (.MPC-HC Team.) [HKLM][64Bits] -- vsfilter_is1 © O42 - Logiciel: Driver Manager - (.Driver Manager.) [HKLM][64Bits] -- {686695ED-BB3F-415D-B0DB-18CF535F7B50} =>PUP.Optional.DriverManager O42 - Logiciel: Easy Burner - (.Aedge Performance BCN SL.) [HKLM][64Bits] -- {520C2939-555B-40BF-A91B-8B671AB560EB} =>.Superfluous.PCSpeedUp O42 - Logiciel: ETDWare PS/2-x64 7.0.5.16_WHQL - (.ELAN Microelectronics Corp..) [HKLM][64Bits] -- Elantech © O42 - Logiciel: Evernote v. 5.9.6 - (.Evernote Corp..) [HKLM][64Bits] -- {A542D366-9877-11E5-B101-005056951CAD} © O42 - Logiciel: Fast Boot - (.ASUS.) [HKLM][64Bits] -- {13F4A7F3-EABC-4261-AF6B-1317777F0755} © O42 - Logiciel: FastStone Image Viewer 5.5 - (.FastStone Soft.) [HKLM][64Bits] -- FastStone Image Viewer © O42 - Logiciel: FileZilla Client 3.14.1 - (.Tim Kosse.) [HKLM][64Bits] -- FileZilla Client © O42 - Logiciel: FoxTab Video Converter - (...) [HKCU][64Bits] -- FoxTab Video Converter O42 - Logiciel: Freecorder 5 - (.Applian Technologies Inc..) [HKLM][64Bits] -- Freecorder5.02 O42 - Logiciel: Freecorder 6 - (.Applian Technologies Inc..) [HKLM][64Bits] -- Freecorder 6 O42 - Logiciel: Freecorder 6 Add-on for Firefox - (.Applian Technologies, Inc..) [HKLM][64Bits] -- Freecorder 6 Add-on for Firefox O42 - Logiciel: Freecorder 6 Applications (6.0.0.45) - (.Applian Technologies.) [HKLM][64Bits] -- Freecorder 6 Applications © O42 - Logiciel: Freecorder 6 extension for Chrome - (.Applian Technologies, Inc..) [HKLM][64Bits] -- Freecorder 6 extension for Chrome O42 - Logiciel: Freecorder 8 Applications (8.0.1.48) - (.Applian Technologies.) [HKLM][64Bits] -- Freecorder 8 Applications © O42 - Logiciel: Freecorder Toolbar - (.Freecorder.) [HKLM][64Bits] -- Freecorder Toolbar O42 - Logiciel: Freemake Video Converter version 4.1.4 - (.Ellora Assets Corporation.) [HKLM][64Bits] -- Freemake Video Converter_is1 © O42 - Logiciel: FreeMind - (...) [HKLM][64Bits] -- B991B020-2968-11D8-AF23-444553540000_is1 O42 - Logiciel: Game Park Console - (.Oberon Media, Inc..) [HKLM][64Bits] -- {E71E60C1-533E-45A5-8D80-E475E88D2B17}_is1 © O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Drive - (.Google, Inc..) [HKLM][64Bits] -- {1C3D2F92-D25E-4D98-B810-3F3B0857BF26} © O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {18455581-E099-4BA8-BC6B-F34B2F06600C} © O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} © O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E} © O42 - Logiciel: Google+ Auto Backup - (.Google.) [HKLM][64Bits] -- {A50DE037-B5C0-4C8A-8049-B0C576B313D1} © O42 - Logiciel: Governor of Poker - (.Oberon Media Inc..) [HKLM][64Bits] -- Governor of Poker {6625CF104D40B7508DB35BA4A6EFA7C6} © O42 - Logiciel: Hotel Dash Suite Success - (.Oberon Media Inc..) [HKLM][64Bits] -- Hotel Dash Suite Success {6625CF104D40B7508DB35BA4A6EFA7C6} © O42 - Logiciel: iCloud - (.Apple Inc..) [HKLM][64Bits] -- {709A2D23-C25E-47B5-9268-CB6FEE648504} © O42 - Logiciel: iLivid - (.Bandoo Media Inc..) [HKLM][64Bits] -- {8D15E1B2-D2B7-4A17-B44B-D2DDE5981406} =>PUP.Optional.Bandoo O42 - Logiciel: Intel(R) Turbo Boost Technology Driver - (.Intel Corporation.) [HKLM][64Bits] -- {D6C630BF-8DBB-4042-8562-DC9A52CB6E7E} =>.Intel Corporation® O42 - Logiciel: Intel(R) Turbo Boost Technology Monitor - (.Intel.) [HKLM][64Bits] -- {39F4C6F9-618A-4E5B-8FB2-6BD661174E32} © O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {88509E20-3936-4D88-A1C0-B274C7BB5151} © O42 - Logiciel: Java 7 Update 9 (64-bit) - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86417009FF} © O42 - Logiciel: Java(TM) 6 Update 29 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83216022FF} © O42 - Logiciel: Jewel Quest 3 - (.Oberon Media Inc..) [HKLM][64Bits] -- Jewel Quest 3 {6625CF104D40B7508DB35BA4A6EFA7C6} © O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} © O42 - Logiciel: K_Series_ScreenSaver_EN - (...) [HKLM][64Bits] -- K_Series_ScreenSaver_EN O42 - Logiciel: K-Lite Codec Pack 11.5.5 Full - (...) [HKLM][64Bits] -- KLiteCodecPack_is1 O42 - Logiciel: Lagarith Lossless Codec (1.3.27) - (...) [HKLM][64Bits] -- {F59AC46C-10C3-4023-882C-4212A92283B3}_is1 O42 - Logiciel: LAME v3.99.3 (for Windows) - (...) [HKLM][64Bits] -- LAME_is1 O42 - Logiciel: Logiciel de base du périphérique HP Photosmart 5520 series - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {97104D7C-FAC1-40A2-A34D-7950424FAEDE} © O42 - Logiciel: Luxor 3 - (.Oberon Media Inc..) [HKLM][64Bits] -- Luxor 3 {6625CF104D40B7508DB35BA4A6EFA7C6} © O42 - Logiciel: Macromedia Flash Player 8 - (.Macromedia.) [HKLM][64Bits] -- {6815FCDD-401D-481E-BA88-31B4754C2B46} © O42 - Logiciel: Mahjongg dimensions - (.Oberon Media Inc..) [HKLM][64Bits] -- Mahjongg dimensions {6625CF104D40B7508DB35BA4A6EFA7C6} © O42 - Logiciel: Malwarebytes Anti-Malware version 2.1.8.1057 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 © O42 - Logiciel: MediaCoder 2011 - (.Broad Intelligence.) [HKLM][64Bits] -- MediaCoder © O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E} © O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {0481A2EA-DA1D-4D10-A7C3-F8237948F6B5} © O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {50816F92-1652-4A7C-B9BC-48F682742C4B} © O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {8142D25E-028A-4563-86ED-5755783C8029} © O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {939C80FA-96C9-44A6-B318-8E7D8BD8481B} © O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {96403552-88D1-429F-9C92-388B814B885E} © O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {C7DAD22D-29D4-438F-B986-03B9ED582EA4} © O42 - Logiciel: Messenger 分享元件 - (.Microsoft Corporation.) [HKLM][64Bits] -- {CF088261-BC81-4FB9-9BA0-7B5B9602D01A} © O42 - Logiciel: Micro Application - T-Shirt Edition Classic - (...) [HKLM][64Bits] -- {574F37B4-772E-4FC6-B133-B5740A7CB365} O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} © O42 - Logiciel: Microsoft Image Composite Editor - (.Microsoft Corporation.) [HKLM][64Bits] -- {B821CDAA-34DE-46FD-87C9-E6EE7158DB5D} © O42 - Logiciel: Microsoft Research AutoCollage 2008 version 1.1 - (.Microsoft Research.) [HKLM][64Bits] -- {423D8FBE-EC52-40FD-B2A0-8C9C8F973FD7} © O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} © O42 - Logiciel: Mozilla Firefox 42.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 42.0 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService © O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} © O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {D66B7840-6A9B-11E4-8FED-F04DA23A5C58} © O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} © O42 - Logiciel: MSXML 4.0 SP2 Parser and SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {716E0306-8318-4364-8B8F-0CC4E9376BAC} © O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2721691) - (.Microsoft Corporation.) [HKLM][64Bits] -- {355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36} © O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E} © O42 - Logiciel: MSXML 4.0 SP3 Parser (KB973685) - (.Microsoft Corporation.) [HKLM][64Bits] -- {859DFA95-E4A6-48CD-B88E-A3E483E89B44} © O42 - Logiciel: MyFreeCodec - (...) [HKCU][64Bits] -- MyFreeCodec O42 - Logiciel: Notepad++ - (.Notepad++ Team.) [HKLM][64Bits] -- Notepad++ © O42 - Logiciel: Nuance PDF Reader - (.Nuance Communications, Inc..) [HKLM][64Bits] -- {B480904D-F73F-4673-B034-8A5F492C9184} © O42 - Logiciel: OLYMPUS Digital Camera Updater - (.Olympus Corporation.) [HKLM][64Bits] -- {392427E9-9FA4-4CD2-99EB-FD53A12BDCDA} O42 - Logiciel: OLYMPUS Viewer 3 - (.OLYMPUS CORPORATION.) [HKLM][64Bits] -- {938DB0D1-AF2D-4CB6-A777-353E078E3325} O42 - Logiciel: OpenOffice.org 3.3 - (.OpenOffice.org.) [HKLM][64Bits] -- {05653DE1-6567-40C6-B930-39D399B64369} © O42 - Logiciel: Package de pilotes Windows - OLYMPUS IMAGING CORP. Camera Communication Dri - (.OLYMPUS IMAGING CORP..) [HKLM][64Bits] -- 2C1C2F29FADF39F533CEEE67B90F07A5306A4BDB =>.Microsoft Windows® O42 - Logiciel: Paint.NET v3.5.10 - (.dotPDN LLC.) [HKLM][64Bits] -- {529125EF-E3AC-4B74-97E6-F688A7C0F1C0} © O42 - Logiciel: PDF Architect - (.pdfforge GmbH.) [HKLM][64Bits] -- {064A929A-4DE8-40CF-A901-BD40C14E4D25} © O42 - Logiciel: PDF Settings CS5 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {A78FE97A-C0C8-49CE-89D0-EDD524A17392} © O42 - Logiciel: PDF24 Creator 7.0.6 - (.PDF24.org.) [HKLM][64Bits] -- {81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1 © O42 - Logiciel: PhotoFiltre 7 - (...) [HKCU][64Bits] -- PhotoFiltre 7 O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM][64Bits] -- Picasa 3 © O42 - Logiciel: Poedit - (.Vaclav Slavik.) [HKLM][64Bits] -- {68EB2C37-083A-4303-B5D8-41FA67E50B8F}_is1 {72687F925AA8471374963A06A553A1CF} © O42 - Logiciel: PxMergeModule - (.Your Company Name.) [HKLM][64Bits] -- {024521CF-C07E-4F8E-8481-0D75695E03AF} © O42 - Logiciel: QuickTime 7 - (.Apple Inc..) [HKLM][64Bits] -- {80CEEB1E-0A6C-45B9-A312-37A1D25FDEBC} © O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} © O42 - Logiciel: Samsung AllShare - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {DF47ACA3-7C78-4C08-8007-AC682563C9F1} © O42 - Logiciel: Samsung AllShare - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- InstallShield_{DF47ACA3-7C78-4C08-8007-AC682563C9F1} © O42 - Logiciel: SeaTools for Windows 1.4.0.2 - (.Seagate Technology.) [HKLM][64Bits] -- SeaTools for Windows © O42 - Logiciel: Skype Web Plugin - (.Skype Technologies S.A..) [HKLM][64Bits] -- {B51DD93B-3CB5-4D9D-BFF2-FD19DBBBFD9A} © O42 - Logiciel: Skype™ 7.12 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {6A0549A9-1B96-498C-ACBC-3943001FEB19} © O42 - Logiciel: syncables desktop SE - (.syncables.) [HKLM][64Bits] -- {341697D8-9923-445E-B42A-529E5A99CB7A} © O42 - Logiciel: Trend Micro Titanium Internet Security - (.Trend Micro Inc..) [HKLM][64Bits] -- {ABBD4BA8-6703-40D2-AB1E-5BB1F7DB49A4} {0494D739BC82C7149EBE00E2C8D7BEF6} © O42 - Logiciel: Trend Micro Titanium Internet Security - (.Trend Micro Inc..) [HKLM][64Bits] -- {ABBD4BA9-6703-40D2-AB1E-5BB1F7DB49A4} © O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU][64Bits] -- UnityWebPlayer © O42 - Logiciel: USB2.0 UVC VGA WebCam - (.Sonix.) [HKLM][64Bits] -- USB2.0 UVC VGA WebCam © O42 - Logiciel: VC80CRTRedist - 8.0.50727.6195 - (.DivX, Inc.) [HKLM][64Bits] -- {933B4015-4618-4716-A828-5289FC03165F} © O42 - Logiciel: Vegas Pro 13.0 (64-bit) - (.Sony.) [HKLM][64Bits] -- {D2CE062E-6A9B-11E4-A8C6-F04DA23A5C58} © O42 - Logiciel: Viber - (.Viber Media Inc..) [HKCU][64Bits] -- {7de2db6a-6f4b-4b45-82b9-57d5d7f1c952} {5B2B01101C2900E34ECB16F78E6B73BF} O42 - Logiciel: Viber - (.Viber Media Inc..) [HKLM][64Bits] -- {097A0B4C-1568-4735-8C3D-4CB265A115C8} O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player © O42 - Logiciel: WebStorage - (.ASUS Cloud Corporation.) [HKLM][64Bits] -- WebStorage © O42 - Logiciel: WinFlash - (.ASUS.) [HKLM][64Bits] -- {8F21291E-0444-4B1D-B9F9-4370A73E346D} © O42 - Logiciel: Wireless Console 3 - (.ASUS.) [HKLM][64Bits] -- {20FDF948-C8ED-4543-A539-F7F4AEF5AFA2} © O42 - Logiciel: XAMPP - (.Bitnami.) [HKLM][64Bits] -- xampp © O42 - Logiciel: XMind 2012 (v3.3.1) - (.XMind Ltd..) [HKLM][64Bits] -- XMind_is1 © O42 - Logiciel: Xvid Video Codec - (.Xvid Team.) [HKLM][64Bits] -- Xvid Video Codec 1.3.2 © O42 - Logiciel: מסייע Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {AB5977C5-11AE-4003-BA7D-261C48F2BC35} © ---\\ HKCU & HKLM Software Keys (127) - 26s HKLM\SOFTWARE\Wow6432Node\Avira HKLM\SOFTWARE\Wow6432Node\CallingID HKLM\SOFTWARE\Wow6432Node\Canneverbe Limited HKLM\SOFTWARE\Wow6432Node\CDDB HKLM\SOFTWARE\Wow6432Node\CyberLink HKLM\SOFTWARE\Wow6432Node\DivX HKLM\SOFTWARE\Wow6432Node\DivXNetworks HKLM\SOFTWARE\Wow6432Node\DownloadHelper HKLM\SOFTWARE\Wow6432Node\DriverTuner =>PUP.Optional.DriverTuner HKLM\SOFTWARE\Wow6432Node\DriverTuner_Init =>PUP.Optional.DriverTuner HKLM\SOFTWARE\Wow6432Node\EasyBurner HKLM\SOFTWARE\Wow6432Node\ECAREME HKLM\SOFTWARE\Wow6432Node\Evernote HKLM\SOFTWARE\Wow6432Node\FastStone Image Viewer HKLM\SOFTWARE\Wow6432Node\FileZilla 3 HKLM\SOFTWARE\Wow6432Node\FileZilla Client HKLM\SOFTWARE\Wow6432Node\Freecorder HKLM\SOFTWARE\Wow6432Node\Freemake HKLM\SOFTWARE\Wow6432Node\GNU HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\HaaliMkx HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard HKLM\SOFTWARE\Wow6432Node\Icaros HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\InstallShield HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Jaksta Technologies HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\KLCodecPack HKLM\SOFTWARE\Wow6432Node\Lame For Audacity HKLM\SOFTWARE\Wow6432Node\LAV HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware (Trial) HKLM\SOFTWARE\Wow6432Node\MarkAny HKLM\SOFTWARE\Wow6432Node\McAfee.com HKLM\SOFTWARE\Wow6432Node\MediaCoder HKLM\SOFTWARE\Wow6432Node\Micro Application HKLM\SOFTWARE\Wow6432Node\MimarSinan HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Myfree Codec HKLM\SOFTWARE\Wow6432Node\Notepad++ HKLM\SOFTWARE\Wow6432Node\Oberon Media HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\OLYMPUS HKLM\SOFTWARE\Wow6432Node\OpenOffice.org HKLM\SOFTWARE\Wow6432Node\optimidata HKLM\SOFTWARE\Wow6432Node\PDFPrint HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\S3R521 HKLM\SOFTWARE\Wow6432Node\Samsung HKLM\SOFTWARE\Wow6432Node\ScanSoft HKLM\SOFTWARE\Wow6432Node\SeaToolsforWindows HKLM\SOFTWARE\Wow6432Node\SecureDigitalServices HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\SkypeWebPlugin HKLM\SOFTWARE\Wow6432Node\Sony Creative Software HKLM\SOFTWARE\Wow6432Node\syncables HKLM\SOFTWARE\Wow6432Node\VideoLAN HKLM\SOFTWARE\Wow6432Node\Volatile HKLM\SOFTWARE\Wow6432Node\Windows HKLM\SOFTWARE\Wow6432Node\X-AVCSD HKLM\SOFTWARE\Wow6432Node\xampp HKLM\SOFTWARE\Wow6432Node\XMind Ltd HKLM\SOFTWARE\Wow6432Node\Xvid Team HKLM\SOFTWARE\Wow6432Node\Zeon HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\ApplianTechnologies HKCU\SOFTWARE\ASUS HKCU\SOFTWARE\ATI HKCU\SOFTWARE\ATK0100 HKCU\SOFTWARE\Avira HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\ECAREME HKCU\SOFTWARE\Elantech HKCU\SOFTWARE\Evernote HKCU\SOFTWARE\FLEXnet HKCU\SOFTWARE\Google HKCU\SOFTWARE\Minnetonka Audio Software HKCU\SOFTWARE\Modern UI Test HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MPC-HC HKCU\SOFTWARE\Myfree Codec HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\OLYMPUS HKCU\SOFTWARE\OpenOffice.org HKCU\SOFTWARE\PACE Anti-Piracy HKCU\SOFTWARE\Paint.NET HKCU\SOFTWARE\PDF Architect HKCU\SOFTWARE\PDFPrint HKCU\SOFTWARE\Pepper HKCU\SOFTWARE\PhotoFiltre 7 HKCU\SOFTWARE\Pinnacle Systems HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\Rovio HKCU\SOFTWARE\Samsung HKCU\SOFTWARE\SimonTatham HKCU\SOFTWARE\Skype HKCU\SOFTWARE\Softonic =>PUP.Optional.Softonic HKCU\SOFTWARE\Sony Creative Software HKCU\SOFTWARE\SubSystems HKCU\SOFTWARE\syncables HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader HKCU\SOFTWARE\TrendMicro HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Unity HKCU\SOFTWARE\Vaclav Slavik HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\Viber HKCU\SOFTWARE\Windows Live Writer HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\YahooPartnerToolbar =>Toolbar.YahooPartner HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\Zeon HKCU\SOFTWARE\Zugo =>PUP.Optional.Zugo HKCU\SOFTWARE\Zyrax Software HKCU\SOFTWARE\AppDataLow\Software ---\\ Contenu des dossiers Programmes (441) - 33s O43 - CFD: 29/08/2015 - [] D -- C:\Program Files (x86)\Adobe O43 - CFD: 25/04/2011 - [] D -- C:\Program Files (x86)\AmIcoSingLun O43 - CFD: 24/09/2015 - [] D -- C:\Program Files (x86)\Apple Software Update O43 - CFD: 15/04/2014 - [] D -- C:\Program Files (x86)\Artisteer 4 O43 - CFD: 15/12/2015 - [] D -- C:\Program Files (x86)\Ask.com =>Toolbar.Ask O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\ASUS O43 - CFD: 25/04/2011 - [] D -- C:\Program Files (x86)\ATI Technologies O43 - CFD: 19/01/2014 - [] D -- C:\Program Files (x86)\Auchan O43 - CFD: 08/07/2015 - [] D -- C:\Program Files (x86)\Avira O43 - CFD: 24/09/2015 - [] D -- C:\Program Files (x86)\Bonjour O43 - CFD: 28/12/2012 - [] D -- C:\Program Files (x86)\CDBurnerXP O43 - CFD: 07/11/2015 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 13/01/2014 - [] D -- C:\Program Files (x86)\ConvertHelper O43 - CFD: 12/01/2011 - [] D -- C:\Program Files (x86)\CyberLink O43 - CFD: 13/01/2014 - [] D -- C:\Program Files (x86)\DirectVobSub O43 - CFD: 29/07/2015 - [0] D -- C:\Program Files (x86)\DivX O43 - CFD: 21/10/2011 - [] D -- C:\Program Files (x86)\Driver Manager =>PUP.Optional.DriverManager O43 - CFD: 04/11/2015 - [0] D -- C:\Program Files (x86)\DSP-worx O43 - CFD: 14/05/2012 - [] D -- C:\Program Files (x86)\EasyBurner O43 - CFD: 18/04/2012 - [0] D -- C:\Program Files (x86)\eRightSoft O43 - CFD: 20/08/2014 - [] D -- C:\Program Files (x86)\Evernote O43 - CFD: 30/11/2015 - [] D -- C:\Program Files (x86)\FastStone Image Viewer O43 - CFD: 29/10/2015 - [] D -- C:\Program Files (x86)\FileZilla FTP Client O43 - CFD: 15/12/2015 - [] D -- C:\Program Files (x86)\Freecorder O43 - CFD: 13/01/2014 - [] D -- C:\Program Files (x86)\Freecorder Toolbar O43 - CFD: 23/06/2014 - [] D -- C:\Program Files (x86)\Freemake O43 - CFD: 08/05/2012 - [] D -- C:\Program Files (x86)\FreeMind O43 - CFD: 15/09/2015 - [] D -- C:\Program Files (x86)\Google O43 - CFD: 29/06/2015 - [] D -- C:\Program Files (x86)\HP O43 - CFD: 16/10/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 11/11/2015 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 10/12/2015 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 24/09/2015 - [] D -- C:\Program Files (x86)\iTunes O43 - CFD: 21/10/2011 - [] D -- C:\Program Files (x86)\Java O43 - CFD: 04/11/2015 - [] D -- C:\Program Files (x86)\K-Lite Codec Pack O43 - CFD: 12/08/2011 - [] D -- C:\Program Files (x86)\Lam librairie O43 - CFD: 13/01/2014 - [] D -- C:\Program Files (x86)\Lame For Audacity O43 - CFD: 15/12/2015 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware O43 - CFD: 26/06/2014 - [] D -- C:\Program Files (x86)\MarkAny O43 - CFD: 20/11/2011 - [] D -- C:\Program Files (x86)\MediaCoder O43 - CFD: 16/10/2015 - [] D -- C:\Program Files (x86)\Micro Application O43 - CFD: 23/05/2014 - [] D -- C:\Program Files (x86)\Microsoft O43 - CFD: 23/01/2012 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services O43 - CFD: 23/01/2012 - [] D -- C:\Program Files (x86)\Microsoft Office O43 - CFD: 09/12/2015 - [] D -- C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 12/01/2011 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 23/01/2012 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 09/11/2015 - [] D -- C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 09/11/2015 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service O43 - CFD: 12/08/2011 - [] D -- C:\Program Files (x86)\MP3Gain O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 12/01/2011 - [] D -- C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 24/03/2012 - [] D -- C:\Program Files (x86)\My Company Name O43 - CFD: 15/04/2014 - [] D -- C:\Program Files (x86)\Notepad++ O43 - CFD: 12/01/2011 - [] D -- C:\Program Files (x86)\Nuance O43 - CFD: 23/11/2015 - [] D -- C:\Program Files (x86)\OLYMPUS O43 - CFD: 13/07/2011 - [] D -- C:\Program Files (x86)\OpenOffice.org 3 O43 - CFD: 13/07/2013 - [] D -- C:\Program Files (x86)\PDF Architect O43 - CFD: 28/07/2015 - [] D -- C:\Program Files (x86)\PDF24 O43 - CFD: 22/01/2014 - [] D -- C:\Program Files (x86)\PhotoFiltre 7 O43 - CFD: 11/07/2014 - [] D -- C:\Program Files (x86)\Poedit O43 - CFD: 24/09/2015 - [] D -- C:\Program Files (x86)\QuickTime O43 - CFD: 25/04/2011 - [] D -- C:\Program Files (x86)\Realtek O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 30/06/2014 - [] D -- C:\Program Files (x86)\Samsung O43 - CFD: 31/07/2015 - [] D -- C:\Program Files (x86)\Seagate O43 - CFD: 07/11/2015 - [] RD -- C:\Program Files (x86)\Skype O43 - CFD: 12/03/2014 - [] D -- C:\Program Files (x86)\SkypeWebPlugin O43 - CFD: 20/10/2015 - [] D -- C:\Program Files (x86)\Sony O43 - CFD: 12/01/2011 - [] D -- C:\Program Files (x86)\syncables O43 - CFD: 25/04/2011 - [0] HD -- C:\Program Files (x86)\Temp O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information O43 - CFD: 24/04/2013 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 12/07/2013 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 13/08/2011 - [] D -- C:\Program Files (x86)\Windows Live O43 - CFD: 09/07/2011 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 08/07/2015 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 09/07/2011 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 09/07/2011 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 09/07/2011 - [] D -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 12/12/2011 - [0] D -- C:\Program Files (x86)\WinRAR O43 - CFD: 16/10/2013 - [] D -- C:\Program Files (x86)\XMind O43 - CFD: 13/01/2014 - [] D -- C:\Program Files (x86)\Xvid O43 - CFD: 29/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 29/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe O43 - CFD: 24/03/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Master Collection CS5 O43 - CFD: 15/04/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Artisteer 4 O43 - CFD: 30/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS O43 - CFD: 23/06/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS Utility O43 - CFD: 19/01/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auchan Photogenie O43 - CFD: 15/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira O43 - CFD: 25/04/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center O43 - CFD: 30/06/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 13/01/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DirectVobSub O43 - CFD: 21/10/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Manager =>PUP.Optional.DriverManager O43 - CFD: 14/05/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Easy Burner O43 - CFD: 09/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Evernote O43 - CFD: 30/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastStone Image Viewer O43 - CFD: 29/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client O43 - CFD: 12/08/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freecorder O43 - CFD: 23/06/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake O43 - CFD: 08/05/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeMind O43 - CFD: 29/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 12/01/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 26/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive O43 - CFD: 11/12/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth O43 - CFD: 18/07/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter O43 - CFD: 29/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP O43 - CFD: 02/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud O43 - CFD: 30/01/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iLivid =>PUP.Optional.Bandoo O43 - CFD: 24/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes O43 - CFD: 04/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 15/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 16/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Micro Application O43 - CFD: 23/01/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 23/05/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Research AutoCollage 2008 O43 - CFD: 09/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 12/08/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MP3Gain O43 - CFD: 26/06/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyFree Codec O43 - CFD: 15/04/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ O43 - CFD: 12/01/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nuance O43 - CFD: 07/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OLYMPUS Camera O43 - CFD: 23/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OLYMPUS Digital Camera Updater O43 - CFD: 15/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OLYMPUS Viewer 3 O43 - CFD: 13/07/2011 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.3 O43 - CFD: 13/07/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Architect O43 - CFD: 28/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF24 Creator Editor O43 - CFD: 22/01/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 O43 - CFD: 14/01/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3 O43 - CFD: 24/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime O43 - CFD: 30/06/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Seagate O43 - CFD: 07/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 20/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony O43 - CFD: 07/09/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 12/01/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\syncables O43 - CFD: 14/07/2009 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 13/06/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 13/08/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live O43 - CFD: 11/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XAMPP O43 - CFD: 16/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XMind O43 - CFD: 13/01/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xvid O43 - CFD: 14/08/2011 - [] HD -- C:\ProgramData\.Syncables O43 - CFD: 14/08/2011 - [] HD -- C:\ProgramData\.syncID O43 - CFD: 02/08/2015 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 O43 - CFD: 21/01/2014 - [] D -- C:\ProgramData\Adobe O43 - CFD: 24/03/2012 - [0] D -- C:\ProgramData\ALM O43 - CFD: 25/04/2011 - [] D -- C:\ProgramData\AmUStor O43 - CFD: 09/08/2014 - [] D -- C:\ProgramData\Apple O43 - CFD: 29/11/2011 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 23/06/2011 - [] D -- C:\ProgramData\ASUS O43 - CFD: 30/10/2015 - [] D -- C:\ProgramData\ASUS WebStorage O43 - CFD: 25/04/2011 - [] D -- C:\ProgramData\ATI O43 - CFD: 19/01/2014 - [] D -- C:\ProgramData\Auchan O43 - CFD: 08/07/2015 - [] D -- C:\ProgramData\Avira O43 - CFD: 18/04/2012 - [0] D -- C:\ProgramData\Babylon =>PUP.Optional.Babylon O43 - CFD: 28/12/2012 - [] D -- C:\ProgramData\Canneverbe Limited O43 - CFD: 23/01/2012 - [] D -- C:\ProgramData\CyberLink O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 29/07/2015 - [] D -- C:\ProgramData\DivX O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 12/01/2011 - [] D -- C:\ProgramData\Downloaded Installations O43 - CFD: 21/10/2011 - [] D -- C:\ProgramData\Driver Manager =>PUP.Optional.DriverManager O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 12/01/2011 - [] D -- C:\ProgramData\FLEXnet O43 - CFD: 23/06/2014 - [] D -- C:\ProgramData\Freemake O43 - CFD: 12/01/2011 - [] D -- C:\ProgramData\Google O43 - CFD: 29/06/2015 - [] D -- C:\ProgramData\HP O43 - CFD: 22/07/2014 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 12/11/2012 - [] D -- C:\ProgramData\McAfee O43 - CFD: 29/07/2015 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 09/12/2015 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 24/04/2012 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 15/07/2011 - [] D -- C:\ProgramData\Nuance O43 - CFD: 12/01/2011 - [] D -- C:\ProgramData\OberonGameConsole O43 - CFD: 14/11/2012 - [] D -- C:\ProgramData\P4G O43 - CFD: 24/03/2012 - [] D -- C:\ProgramData\PACE Anti-Piracy O43 - CFD: 09/12/2015 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 17/07/2011 - [] D -- C:\ProgramData\Partner =>Toolbar.YahooPartner O43 - CFD: 23/04/2013 - [] D -- C:\ProgramData\Pinnacle O43 - CFD: 24/03/2012 - [] D -- C:\ProgramData\regid.1986-12.com.adobe O43 - CFD: 15/12/2015 - [] D -- C:\ProgramData\RogueKiller O43 - CFD: 30/06/2014 - [] D -- C:\ProgramData\Samsung O43 - CFD: 12/01/2011 - [] D -- C:\ProgramData\ScanSoft O43 - CFD: 07/11/2015 - [] D -- C:\ProgramData\Skype O43 - CFD: 20/10/2015 - [] D -- C:\ProgramData\Sony O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 13/07/2011 - [] D -- C:\ProgramData\Sun O43 - CFD: 12/01/2011 - [] D -- C:\ProgramData\Temp O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 27/09/2011 - [] D -- C:\ProgramData\Trend Micro O43 - CFD: 21/10/2011 - [] D -- C:\ProgramData\UAB O43 - CFD: 30/10/2015 - [] D -- C:\ProgramData\WebStorage O43 - CFD: 12/02/2014 - [0] D -- C:\ProgramData\WinZip O43 - CFD: 24/03/2012 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 24/03/2012 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR O43 - CFD: 09/08/2014 - [] D -- C:\Program Files (x86)\Common Files\Apple O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Common Files\AWS O43 - CFD: 23/06/2011 - [] D -- C:\Program Files (x86)\Common Files\ControlDeck O43 - CFD: 14/05/2014 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 29/07/2015 - [] D -- C:\Program Files (x86)\Common Files\DivX Shared O43 - CFD: 19/08/2014 - [] D -- C:\Program Files (x86)\Common Files\Hewlett-Packard O43 - CFD: 25/04/2011 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 12/09/2013 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 12/01/2011 - [] D -- C:\Program Files (x86)\Common Files\Oberon Media O43 - CFD: 25/04/2011 - [] D -- C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 24/03/2012 - [] D -- C:\Program Files (x86)\Common Files\PX Storage Engine O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 07/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 24/03/2012 - [] D -- C:\Program Files (x86)\Common Files\Sonic Shared O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 23/01/2012 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 12/01/2011 - [] D -- C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 23/11/2015 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Adobe O43 - CFD: 22/06/2014 - [] D -- C:\Users\Guinarwen\AppData\Roaming\AnvSoft O43 - CFD: 02/08/2015 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Apple Computer O43 - CFD: 15/04/2014 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Artisteer O43 - CFD: 23/06/2011 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Asus WebStorage O43 - CFD: 23/06/2011 - [] D -- C:\Users\Guinarwen\AppData\Roaming\ATI O43 - CFD: 12/08/2011 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Audacity O43 - CFD: 08/07/2015 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Avira O43 - CFD: 30/10/2015 - [] D -- C:\Users\Guinarwen\AppData\Roaming\awsRun O43 - CFD: 07/09/2014 - [0] D -- C:\Users\Guinarwen\AppData\Roaming\BabSolution =>PUP.Optional.BabSolution O43 - CFD: 18/04/2012 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Babylon =>PUP.Optional.Babylon O43 - CFD: 20/11/2011 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Broad Intelligence O43 - CFD: 28/12/2012 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Canneverbe Limited O43 - CFD: 18/07/2013 - [] D -- C:\Users\Guinarwen\AppData\Roaming\CDXReader O43 - CFD: 16/04/2012 - [] D -- C:\Users\Guinarwen\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 O43 - CFD: 23/01/2012 - [] D -- C:\Users\Guinarwen\AppData\Roaming\CyberLink O43 - CFD: 07/09/2014 - [0] D -- C:\Users\Guinarwen\AppData\Roaming\DigitalSites =>PUP.Optional.DSite O43 - CFD: 22/06/2014 - [] D -- C:\Users\Guinarwen\AppData\Roaming\DivX O43 - CFD: 07/09/2014 - [0] D -- C:\Users\Guinarwen\AppData\Roaming\DSite =>PUP.Optional.SimpleSearches O43 - CFD: 14/05/2012 - [] D -- C:\Users\Guinarwen\AppData\Roaming\EasyBurner O43 - CFD: 30/11/2015 - [] D -- C:\Users\Guinarwen\AppData\Roaming\FastStone O43 - CFD: 09/09/2014 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Fenomen Games O43 - CFD: 29/10/2015 - [] D -- C:\Users\Guinarwen\AppData\Roaming\FileZilla O43 - CFD: 15/07/2011 - [] D -- C:\Users\Guinarwen\AppData\Roaming\FLEXnet O43 - CFD: 23/08/2013 - [] D -- C:\Users\Guinarwen\AppData\Roaming\FreeAudioPack O43 - CFD: 22/05/2014 - [] D -- C:\Users\Guinarwen\AppData\Roaming\freecorder O43 - CFD: 13/01/2014 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Freecorder 6 Audio O43 - CFD: 19/06/2014 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Freecorder 8 Audio O43 - CFD: 17/04/2013 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Google O43 - CFD: 23/06/2011 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Identities O43 - CFD: 11/11/2015 - [] D -- C:\Users\Guinarwen\AppData\Roaming\InstallShield O43 - CFD: 18/07/2013 - [] D -- C:\Users\Guinarwen\AppData\Roaming\LavFilters O43 - CFD: 23/06/2011 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Macromedia O43 - CFD: 22/07/2014 - [0] D -- C:\Users\Guinarwen\AppData\Roaming\Malwarebytes O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Guinarwen\AppData\Roaming\Media Center Programs O43 - CFD: 16/02/2014 - [] SD -- C:\Users\Guinarwen\AppData\Roaming\Microsoft O43 - CFD: 04/07/2011 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Mozilla O43 - CFD: 14/12/2015 - [0] D -- C:\Users\Guinarwen\AppData\Roaming\MPC-HC O43 - CFD: 28/04/2014 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Notepad++ O43 - CFD: 15/07/2011 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Nuance O43 - CFD: 13/07/2011 - [] D -- C:\Users\Guinarwen\AppData\Roaming\OpenOffice.org O43 - CFD: 24/03/2012 - [] D -- C:\Users\Guinarwen\AppData\Roaming\PACE Anti-Piracy O43 - CFD: 17/11/2013 - [] D -- C:\Users\Guinarwen\AppData\Roaming\PDF Architect O43 - CFD: 22/01/2014 - [] D -- C:\Users\Guinarwen\AppData\Roaming\PhotoFiltre 7 O43 - CFD: 23/10/2015 - [0] D -- C:\Users\Guinarwen\AppData\Roaming\Publish Providers O43 - CFD: 17/12/2012 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Rovio O43 - CFD: 30/06/2014 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Samsung O43 - CFD: 08/11/2015 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Skype O43 - CFD: 23/10/2015 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Sony O43 - CFD: 24/03/2012 - [] D -- C:\Users\Guinarwen\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1 O43 - CFD: 11/08/2013 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Unity O43 - CFD: 15/12/2015 - [] D -- C:\Users\Guinarwen\AppData\Roaming\ViberPC O43 - CFD: 20/10/2015 - [] D -- C:\Users\Guinarwen\AppData\Roaming\vlc O43 - CFD: 15/12/2015 - [] D -- C:\Users\Guinarwen\AppData\Roaming\WebStorage O43 - CFD: 02/08/2011 - [0] D -- C:\Users\Guinarwen\AppData\Roaming\Windows Live Writer O43 - CFD: 05/12/2011 - [] D -- C:\Users\Guinarwen\AppData\Roaming\WinRAR O43 - CFD: 16/10/2013 - [] D -- C:\Users\Guinarwen\AppData\Roaming\XMind O43 - CFD: 15/07/2011 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Zeon O43 - CFD: 15/12/2015 - [] D -- C:\Users\Guinarwen\AppData\Roaming\ZHP O43 - CFD: 08/11/2015 - [] D -- C:\Users\Guinarwen\AppData\Local\Adobe O43 - CFD: 29/08/2015 - [] D -- C:\Users\Guinarwen\AppData\Local\Adobe_Systems_Incorporate O43 - CFD: 14/06/2012 - [] D -- C:\Users\Guinarwen\AppData\Local\APN O43 - CFD: 29/11/2011 - [] D -- C:\Users\Guinarwen\AppData\Local\Apple O43 - CFD: 09/08/2014 - [] D -- C:\Users\Guinarwen\AppData\Local\Apple Computer O43 - CFD: 23/06/2011 - [0] SHD -- C:\Users\Guinarwen\AppData\Local\Application Data O43 - CFD: 26/11/2013 - [] D -- C:\Users\Guinarwen\AppData\Local\Apps O43 - CFD: 18/07/2013 - [] D -- C:\Users\Guinarwen\AppData\Local\AskToolbar =>Toolbar.Ask O43 - CFD: 23/06/2011 - [] D -- C:\Users\Guinarwen\AppData\Local\ASUS O43 - CFD: 23/06/2011 - [] D -- C:\Users\Guinarwen\AppData\Local\ATI O43 - CFD: 19/01/2014 - [] D -- C:\Users\Guinarwen\AppData\Local\Auchan O43 - CFD: 12/09/2015 - [0] D -- C:\Users\Guinarwen\AppData\Local\Conduit O43 - CFD: 11/11/2015 - [0] D -- C:\Users\Guinarwen\AppData\Local\CrashDumps O43 - CFD: 29/08/2013 - [] D -- C:\Users\Guinarwen\AppData\Local\Diagnostics O43 - CFD: 18/07/2013 - [] D -- C:\Users\Guinarwen\AppData\Local\DoNotTrackPlus O43 - CFD: 26/06/2014 - [] D -- C:\Users\Guinarwen\AppData\Local\Downloaded Installations O43 - CFD: 11/11/2015 - [] D -- C:\Users\Guinarwen\AppData\Local\ElevatedDiagnostics O43 - CFD: 06/05/2014 - [] D -- C:\Users\Guinarwen\AppData\Local\Evernote O43 - CFD: 18/07/2014 - [] D -- C:\Users\Guinarwen\AppData\Local\EvernoteNW O43 - CFD: 20/05/2014 - [] D -- C:\Users\Guinarwen\AppData\Local\FLVService O43 - CFD: 13/01/2014 - [] D -- C:\Users\Guinarwen\AppData\Local\Freecorder 6 Audio O43 - CFD: 23/06/2014 - [] D -- C:\Users\Guinarwen\AppData\Local\FreemakeVideoConverter O43 - CFD: 15/09/2015 - [] D -- C:\Users\Guinarwen\AppData\Local\Google O43 - CFD: 23/06/2011 - [0] SHD -- C:\Users\Guinarwen\AppData\Local\Historique O43 - CFD: 29/06/2015 - [] D -- C:\Users\Guinarwen\AppData\Local\HP O43 - CFD: 23/05/2014 - [] D -- C:\Users\Guinarwen\AppData\Local\IsolatedStorage O43 - CFD: 19/06/2014 - [] D -- C:\Users\Guinarwen\AppData\Local\Jaksta_Technologies_Pty_L O43 - CFD: 24/06/2012 - [] D -- C:\Users\Guinarwen\AppData\Local\Macromedia O43 - CFD: 16/10/2015 - [] D -- C:\Users\Guinarwen\AppData\Local\Micro Application O43 - CFD: 29/07/2015 - [] D -- C:\Users\Guinarwen\AppData\Local\Microsoft O43 - CFD: 16/09/2015 - [] D -- C:\Users\Guinarwen\AppData\Local\Microsoft Help O43 - CFD: 02/10/2013 - [] D -- C:\Users\Guinarwen\AppData\Local\Mozilla O43 - CFD: 29/10/2015 - [] D -- C:\Users\Guinarwen\AppData\Local\OLYMPUS O43 - CFD: 24/03/2012 - [0] D -- C:\Users\Guinarwen\AppData\Local\PACE Anti-Piracy O43 - CFD: 01/12/2015 - [] D -- C:\Users\Guinarwen\AppData\Local\Package Cache O43 - CFD: 30/01/2012 - [0] D -- C:\Users\Guinarwen\AppData\Local\PackageAware =>PUP.Optional.BearShare O43 - CFD: 08/12/2015 - [] D -- C:\Users\Guinarwen\AppData\Local\Paint.NET O43 - CFD: 21/10/2011 - [] D -- C:\Users\Guinarwen\AppData\Local\PC_Drivers_Headquarters =>PUP.Optional.Generic O43 - CFD: 20/02/2014 - [] D -- C:\Users\Guinarwen\AppData\Local\PDF24 O43 - CFD: 23/06/2011 - [] D -- C:\Users\Guinarwen\AppData\Local\Power2Go O43 - CFD: 09/01/2014 - [] D -- C:\Users\Guinarwen\AppData\Local\Programs O43 - CFD: 30/06/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\Samsung O43 - CFD: 07/04/2014 - [] D -- C:\Users\Guinarwen\AppData\Local\Skype O43 - CFD: 20/10/2015 - [] D -- C:\Users\Guinarwen\AppData\Local\Sony O43 - CFD: 15/12/2015 - [] AD -- C:\Users\Guinarwen\AppData\Local\Temp O43 - CFD: 23/06/2011 - [0] SHD -- C:\Users\Guinarwen\AppData\Local\Temporary Internet Files O43 - CFD: 11/08/2013 - [] D -- C:\Users\Guinarwen\AppData\Local\Unity O43 - CFD: 01/12/2015 - [] D -- C:\Users\Guinarwen\AppData\Local\Viber O43 - CFD: 19/01/2014 - [] D -- C:\Users\Guinarwen\AppData\Local\VirtualStore O43 - CFD: 20/03/2014 - [] D -- C:\Users\Guinarwen\AppData\Local\Windows Live O43 - CFD: 02/08/2011 - [] D -- C:\Users\Guinarwen\AppData\Local\Windows Live Writer O43 - CFD: 13/08/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{01B9F043-ACF6-4B7A-A292-8815B8C8C278} O43 - CFD: 11/08/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{02DF90D1-F177-458A-B75C-17108D80F2C9} O43 - CFD: 25/06/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{0329F3E8-1B9F-4405-8025-74EBF8DB7966} O43 - CFD: 11/08/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{035EB734-32AA-435A-95EC-576E31DCB7F8} O43 - CFD: 27/03/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{037A65BE-4955-49A7-BB7F-7B3FEF98E132} O43 - CFD: 25/11/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{066E4FC1-5FA9-4693-B390-53FF6EA9DB1A} O43 - CFD: 13/08/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{06AE41F6-D721-4F2B-9CBC-34FFE06A8B83} O43 - CFD: 21/05/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{071C7AE6-3CFF-45F0-B3D7-82723BC36A63} O43 - CFD: 06/11/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{0D36C83B-51DE-4C7A-B43F-BE88B712522D} O43 - CFD: 17/06/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{0D764150-85CD-4CD1-9776-2F25091C951B} O43 - CFD: 07/09/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{0DF15F16-D3E4-4844-892E-F2B35399C0E3} O43 - CFD: 25/11/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{0FCCF4B1-F202-4A38-9D61-2CB97CE2B8BF} O43 - CFD: 18/04/2012 - [0] D -- C:\Users\Guinarwen\AppData\Local\{0FCE8852-8EDC-4F97-B510-6E1A0BE33C7A} O43 - CFD: 15/04/2012 - [0] D -- C:\Users\Guinarwen\AppData\Local\{10964C88-4F0A-4AC9-9317-6CECC86CC02B} O43 - CFD: 21/11/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{113EB29D-A485-4E1F-8106-05EDCCE370E8} O43 - CFD: 22/07/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{11FA6E89-6343-4CC5-999C-E324C8D1076C} O43 - CFD: 26/02/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{1211B854-F2DC-4D44-9308-9B56FD71F255} O43 - CFD: 02/06/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{1393270E-73AC-4DFF-8979-9AD1A96970EF} O43 - CFD: 19/04/2012 - [0] D -- C:\Users\Guinarwen\AppData\Local\{17CF59FD-0701-4F29-AFBE-50F29328682F} O43 - CFD: 20/08/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{18D9AEFE-26A6-419B-9B62-24B5CF7C7390} O43 - CFD: 27/06/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{1A5D1136-8113-4E9C-90F0-5E79B9F8C082} O43 - CFD: 17/04/2012 - [0] D -- C:\Users\Guinarwen\AppData\Local\{1E1FA7C9-7882-4849-8A29-B920E6E8B661} O43 - CFD: 23/05/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{21E7A063-8A04-49B3-9EC7-4C7F66BD1917} O43 - CFD: 07/03/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{23E68A84-AC9C-42A2-8D4C-5DEF0B11AF78} O43 - CFD: 16/09/2015 - [0] D -- C:\Users\Guinarwen\AppData\Local\{244BAC5A-BA45-4AAE-90AC-1008ACDDAC6A} O43 - CFD: 15/05/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{2746BC7B-4427-4A8D-B1F3-D22D083FE0C7} O43 - CFD: 13/08/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{32D46DD0-1BC0-4DFD-A226-D98FE865BE19} O43 - CFD: 21/11/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{369EFFF1-8164-4EC1-8117-F2CAA92FB1AD} O43 - CFD: 15/11/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{39BA3CB5-E6FE-469D-A6CD-BEB7F95AC2C9} O43 - CFD: 10/07/2013 - [0] D -- C:\Users\Guinarwen\AppData\Local\{3BDA1251-2785-4157-BB04-6A1CD8D9D31B} O43 - CFD: 22/04/2012 - [0] D -- C:\Users\Guinarwen\AppData\Local\{3CD00244-56B9-4F7C-8884-36E5F7171152} O43 - CFD: 22/04/2012 - [0] D -- C:\Users\Guinarwen\AppData\Local\{3EF49DA9-C714-4437-B0B7-417641151825} O43 - CFD: 14/03/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{40115649-6601-4C29-AC1B-4786F6068BD9} O43 - CFD: 06/01/2013 - [0] D -- C:\Users\Guinarwen\AppData\Local\{452EDE25-826F-4BC3-8F17-1414FED8CAA1} O43 - CFD: 19/04/2012 - [0] D -- C:\Users\Guinarwen\AppData\Local\{45B18E01-39E3-414A-962F-20749054F573} O43 - CFD: 08/12/2013 - [0] D -- C:\Users\Guinarwen\AppData\Local\{4722997E-70C8-42E2-ACA8-3408251D1637} O43 - CFD: 21/02/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{47DCC78F-3593-46DE-987F-3CD31F55998A} O43 - CFD: 13/10/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{48C1A7AB-54C3-478E-8B98-088E6B64F807} O43 - CFD: 27/08/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{54D30694-C1C0-4C73-A1EB-5D387E7F81DF} O43 - CFD: 10/04/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{55556F9E-0D5E-4439-9B9E-07716FAFF84A} O43 - CFD: 25/02/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{583B77CF-90C8-483C-8E57-A06667E58FDB} O43 - CFD: 11/08/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{58D111E9-89C4-40C3-A9DA-F14E050CA6A3} O43 - CFD: 22/11/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{5A396690-BE68-4864-A1BA-0B8420F83C76} O43 - CFD: 28/12/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{5B7C614A-D1B0-46AA-8053-F02FE04FCB91} O43 - CFD: 13/08/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{5D82451C-59AC-4D51-B66F-67ACAA3F3C0D} O43 - CFD: 19/04/2012 - [0] D -- C:\Users\Guinarwen\AppData\Local\{5F7B2EAD-B708-44FD-B909-4F54659AB24D} O43 - CFD: 19/04/2012 - [0] D -- C:\Users\Guinarwen\AppData\Local\{6453155C-FA28-403C-9977-D96F51432C55} O43 - CFD: 13/07/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{66AD672F-4CAD-4ABA-AB3D-4C8EA6E86A70} O43 - CFD: 19/11/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{67C1A079-DCFB-49EF-9069-3A5016AA378E} O43 - CFD: 01/06/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{67ECE74B-4FA5-4550-8E96-9F3DE4C93F49} O43 - CFD: 15/11/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{6800309F-9C2C-4075-B382-E557E06D797A} O43 - CFD: 16/03/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{7300E5EC-A505-4EBB-B66F-7D4192D5B054} O43 - CFD: 10/07/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{7684F1D1-0EC5-4EE4-AFD8-661C5A85B988} O43 - CFD: 12/08/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{76B40E38-2578-4FE8-803E-A14B6042C0AD} O43 - CFD: 13/08/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{7991B565-8131-42A3-B0B4-384B41431362} O43 - CFD: 23/08/2013 - [0] D -- C:\Users\Guinarwen\AppData\Local\{7DC0A652-DE6A-42B4-BD04-A0E534ECD886} O43 - CFD: 18/06/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{83419EE6-4519-454B-98AD-F606874B814F} O43 - CFD: 06/11/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{85BE00EB-9864-446E-9E39-7862E493E6D3} O43 - CFD: 16/02/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{85EC6886-F031-4737-AEC7-B1230ED7B26D} O43 - CFD: 12/08/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{86D5C2A8-51B6-46CD-AFC1-D91517604FC3} O43 - CFD: 22/11/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{8A5A2872-C31F-47D5-895F-BD9BB56D0081} O43 - CFD: 30/06/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{8BE3F0AF-A036-4B8E-ACDC-A59DFEC26D76} O43 - CFD: 30/06/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{8C8D2642-70F9-42E8-A6C9-20CB7DF17C95} O43 - CFD: 15/04/2012 - [0] D -- C:\Users\Guinarwen\AppData\Local\{8CEDE7E0-AAC1-424C-914C-CF27451D88D4} O43 - CFD: 03/06/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{9DC713BD-5723-49D4-8D22-73064B70D6C6} O43 - CFD: 04/06/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{9F002680-C272-4924-99A9-8DC671565EF2} O43 - CFD: 27/08/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{A071A257-A333-4D54-BEF0-8BD844AC1949} O43 - CFD: 05/06/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{A136CC9A-A523-460F-B959-3A06C4AA1B96} O43 - CFD: 04/03/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{A3D6C462-1705-4888-9522-787F6AC0110F} O43 - CFD: 13/10/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{A483ED25-312C-4284-A836-82396E4DBD4C} O43 - CFD: 13/02/2012 - [0] D -- C:\Users\Guinarwen\AppData\Local\{A61DEF39-3189-424E-BE68-83392949968E} O43 - CFD: 17/04/2012 - [0] D -- C:\Users\Guinarwen\AppData\Local\{A70C20AA-7198-47F7-A051-84957DB8CDBB} O43 - CFD: 13/08/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{A7FBCD05-4151-49FE-8E11-000095831EF3} O43 - CFD: 14/08/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{AA7BC9B7-4EBA-458C-9BB0-B58F5A76BF43} O43 - CFD: 19/04/2012 - [0] D -- C:\Users\Guinarwen\AppData\Local\{AC6ADC67-3045-4BF2-9E3B-17672BBC5412} O43 - CFD: 26/11/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{ACD8B3B8-3DB9-4331-93FC-99AE03212C5B} O43 - CFD: 05/06/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{ACDA798A-6B0F-4602-97EA-5E3BB704B3BB} O43 - CFD: 04/03/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{B014773A-AACB-4D35-BBE1-F65C6D240330} O43 - CFD: 19/04/2012 - [0] D -- C:\Users\Guinarwen\AppData\Local\{B4A91A38-8575-4999-B8E0-67A4F24A8C8A} O43 - CFD: 14/04/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{B87F8B23-D550-44A2-996B-43F0EAE047DC} O43 - CFD: 28/12/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{B98DA433-E4E5-4366-AC7B-D246B6B4A7FE} O43 - CFD: 18/04/2012 - [0] D -- C:\Users\Guinarwen\AppData\Local\{C3194972-4008-4ADA-8D08-5593323928C1} O43 - CFD: 13/08/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{C32422E7-40D6-4702-ACFC-4500A6E730C4} O43 - CFD: 29/08/2013 - [0] D -- C:\Users\Guinarwen\AppData\Local\{C40A936C-EAE4-4D6D-ABD1-1575D7BDDD8B} O43 - CFD: 14/01/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{C52E39E5-C099-48D0-911A-29F60FDE0EBA} O43 - CFD: 13/08/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{C7337F7D-A15B-4C5E-934B-D2321C1CF7A4} O43 - CFD: 05/06/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{CA4DDEA3-B3DE-499A-95CD-E614C3CFD08D} O43 - CFD: 27/08/2013 - [0] D -- C:\Users\Guinarwen\AppData\Local\{CC5157D6-8AC3-4CD7-AF2D-9594D11CD6B7} O43 - CFD: 26/11/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{D22675CF-1C4C-4451-B889-976D6354FCD2} O43 - CFD: 19/04/2012 - [0] D -- C:\Users\Guinarwen\AppData\Local\{D29E9118-571F-4DBE-B37A-EF2B1CD0E95D} O43 - CFD: 13/08/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{DEC3144B-B9BF-4F5A-A595-280CE6E6B7ED} O43 - CFD: 15/04/2012 - [0] D -- C:\Users\Guinarwen\AppData\Local\{E12E3CC8-B205-43B8-8FBD-43719C98E906} O43 - CFD: 19/11/2011 - [0] D -- C:\Users\Guinarwen\AppData\Local\{E8FC14F3-2A66-4BD7-B186-A287879F1BF2} O43 - CFD: 11/06/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{F43429F9-8EA0-41BE-9CCE-6FBA22DB217D} O43 - CFD: 18/06/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{F915E553-4709-4F3F-859A-B9BC8FAF61DF} O43 - CFD: 06/06/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{F9392483-61A1-4846-AB51-7017FD4B9AD8} O43 - CFD: 19/04/2012 - [0] D -- C:\Users\Guinarwen\AppData\Local\{FA555F38-5C67-4923-AEDF-97476F9B3FAB} O43 - CFD: 17/06/2014 - [0] D -- C:\Users\Guinarwen\AppData\Local\{FDA8606D-AD42-406A-8B2B-F54AD82851C9} O43 - CFD: 14/07/2009 - [] RD -- C:\Users\Guinarwen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 15/12/2015 - [] RD -- C:\Users\Guinarwen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 12/01/2011 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink Blu-ray Disc Suite O43 - CFD: 12/06/2014 - [0] D -- C:\Users\Guinarwen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client O43 - CFD: 23/06/2014 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake O43 - CFD: 08/09/2015 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 14/01/2014 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google+ Auto Backup O43 - CFD: 14/07/2009 - [] RD -- C:\Users\Guinarwen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 20/11/2011 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MediaCoder O43 - CFD: 23/05/2014 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft ICE O43 - CFD: 12/08/2011 - [0] D -- C:\Users\Guinarwen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MP3Gain O43 - CFD: 15/04/2014 - [0] D -- C:\Users\Guinarwen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ O43 - CFD: 22/01/2014 - [0] D -- C:\Users\Guinarwen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 O43 - CFD: 15/12/2015 - [] RD -- C:\Users\Guinarwen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 23/06/2011 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Trend Micro Titanium Internet Security O43 - CFD: 01/12/2015 - [] D -- C:\Users\Guinarwen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Viber ---\\ Derniers fichiers créés dans Windows Prefetcher (3) - 10s O45 - LFCP:[MD5.B6D5D78F70A544B0723BF4D1486F4CD9] 19/08/2013 A -- C:\Windows\Prefetch\BABMAINT.EXE-9FF1E075.pf =>PUP.Optional.BabSolution O45 - LFCP:[MD5.56651CEB8E86A6A2BAA3E891C631AF28] 07/09/2013 A -- C:\Windows\Prefetch\BROWSERDEFENDER.EXE-62524200.pf =>PUA.Optional.BrowserDefendert O45 - LFCP:[MD5.67EE19FC440B0CB04A6BD2EBD26D92AB] 20/07/2013 A -- C:\Windows\Prefetch\BROWSERDEFENDER.EXE-E8C448EB.pf =>PUA.Optional.BrowserDefendert ---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 0s O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll © O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll © ---\\ Enumération des clés StartupReg (3) - 0s O53 - SMSR:HKLM\...\startupreg\ASUS Screen Saver Protector [Key] . (.ASUS - AsScrPro.) -- C:\Windows\AsScrPro.exe © O53 - SMSR:HKLM\...\startupreg\CLMLServer [Key] . (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe © O53 - SMSR:HKLM\...\startupreg\RtHDVCpl [Key] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe © ---\\ Liste des pilotes du système (79) - 9s O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] =>.Microsoft Windows® O58 - SDL:2011/03/11 07:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows® O58 - SDL:2011/03/11 07:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] =>.Microsoft Windows® O58 - SDL:2009/08/21 07:48:18 A . (.Alcor Micro, Corp. - Alocr Micro USB Mass Storage Driver.) -- C:\Windows\System32\drivers\AmUStor.sys [44032] © O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows® O58 - SDL:2011/06/27 00:37:00 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\drivers\athrx.sys [2753536] © O58 - SDL:2010/09/24 01:46:32 A . (.ATI Technologies, Inc. - ATI High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\AtihdW76.sys [116752] =>.ATI Technologies, Inc® O58 - SDL:2010/10/05 15:23:18 A . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [7884288] © O58 - SDL:2010/10/05 14:15:14 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\drivers\atikmpag.sys [285696] © O58 - SDL:2009/05/13 17:07:20 A . (.ASUS - ATK0100 ACPI Utility.) -- C:\Windows\System32\drivers\ATK64AMD.sys [15928] =>.ASUSTeK Computer Inc.® O58 - SDL:2015/12/15 12:51:09 A . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- C:\Windows\System32\drivers\avgntflt.sys [162072] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2015/12/15 12:51:09 A . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- C:\Windows\System32\drivers\avipbb.sys [140448] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2013/11/30 12:58:02 A . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- C:\Windows\System32\drivers\avkmgr.sys [28600] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2015/12/15 12:51:09 A . (.Avira Operations GmbH & Co. KG - Avira WFP Network Driver.) -- C:\Windows\System32\drivers\avnetflt.sys [75472] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2009/06/10 21:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] © O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] © O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] © O58 - SDL:2009/07/14 02:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] © O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] © O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] © O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] © O58 - SDL:2009/06/10 21:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] © O58 - SDL:2009/06/23 03:00:00 N . (.Sonic Solutions - CDR4 64-bit CD and DVD Place Holder Driver.) -- C:\Windows\System32\drivers\cdr4_xp.sys [10224] =>.Sonic Solutions® O58 - SDL:2009/06/23 03:00:00 N . (.Sonic Solutions - CDRAL 64-bit Place Holder Driver (see PxHel.) -- C:\Windows\System32\drivers\cdralw2k.sys [10224] =>.Sonic Solutions® O58 - SDL:2009/07/14 02:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows® O58 - SDL:2010/09/08 12:39:32 A . (.ELAN Microelectronic Corp. - ETD Control Center.) -- C:\Windows\System32\drivers\ETD.sys [129024] © O58 - SDL:2009/06/10 21:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] © O58 - SDL:2012/08/21 12:01:20 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\drivers\GEARAspiWDM.sys [33240] =>.GEAR Software Inc.® O58 - SDL:2009/06/10 21:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] © O58 - SDL:2009/09/17 20:54:54 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [56344] =>.Intel Corporation® O58 - SDL:2010/11/20 14:33:35 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows® O58 - SDL:2010/06/08 03:33:14 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\drivers\iaStor.sys [540696] =>.Intel Corporation® O58 - SDL:2011/03/11 07:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows® O58 - SDL:2010/02/26 09:32:12 A . (.Intel Corporation - Intel(R) Turbo Boost Technology Driver.) -- C:\Windows\System32\drivers\Impcd.sys [158976] © O58 - SDL:2009/07/20 10:29:40 A . (. - Keyboard Filter Driver.) -- C:\Windows\System32\drivers\kbfiltr.sys [15416] =>.ASUSTeK Computer Inc.® O58 - SDL:2010/03/04 10:53:02 A . (.Atheros Communications, Inc. - Atheros L1c PCI-E Gigabit Ethernet Controll.) -- C:\Windows\System32\drivers\L1C62x64.sys [75816] =>.Atheros Communications Inc.® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows® O58 - SDL:2015/06/18 08:41:40 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [25816] =>.Malwarebytes Corporation® O58 - SDL:2015/06/18 08:41:44 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [109272] =>.Malwarebytes Corporation® O58 - SDL:2015/12/15 12:19:10 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [113880] =>.Malwarebytes Corporation® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows® O58 - SDL:2015/06/18 08:41:56 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [63704] =>.Malwarebytes Corporation® O58 - SDL:2009/07/14 02:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows® O58 - SDL:2011/03/11 07:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] =>.Microsoft Windows® O58 - SDL:2011/03/11 07:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] =>.Microsoft Windows® O58 - SDL:2009/07/09 03:00:00 N . (.Sonic Solutions - Px Engine Device Driver for 64-bit Windows.) -- C:\Windows\System32\drivers\PxHlpa64.sys [55280] =>.Sonic Solutions® O58 - SDL:2009/07/14 02:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows® O58 - SDL:2010/11/23 11:16:56 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [2565736] =>.Realtek Semiconductor Corp® O58 - SDL:2009/06/10 21:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] © O58 - SDL:2009/06/10 21:35:57 A . (.Silicon Integrated Systems Corp. - NDIS 6.0 Miniport Driver for SiS191/SiS190.) -- C:\Windows\System32\drivers\SiSG664.sys [56832] © O58 - SDL:2009/07/14 02:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows® O58 - SDL:2010/01/28 04:04:14 A . (.Sonix Technology Co., Ltd. - USBCAMD for Sonix UVC.) -- C:\Windows\System32\drivers\sncduvc.sys [35328] O58 - SDL:2010/09/07 10:19:38 A . (.Sonix Technology Co., Ltd. - UVC Camera Streaming Driver.) -- C:\Windows\System32\drivers\snp2uvc.sys [1800832] O58 - SDL:2010/05/12 11:14:52 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadcm.sys [13288] © O58 - SDL:2010/05/12 11:14:54 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadwh.sys [13800] © O58 - SDL:2009/07/14 02:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows® O58 - SDL:2010/06/14 08:32:54 A . (.Teruten Inc - File System Mini Filter Drvier.) -- C:\Windows\System32\drivers\TFsExDisk.sys [16448] {37E37BB6E904860761C74269B65DF5B6} © O58 - SDL:2010/09/17 09:52:28 A . (.Trend Micro Inc. - TrendMicro Activity Monitor Module.) -- C:\Windows\System32\drivers\tmactmon.sys [90704] {0494D739BC82C7149EBE00E2C8D7BEF6} © O58 - SDL:2010/09/17 09:52:28 A . (.Trend Micro Inc. - TrendMicro Common Module.) -- C:\Windows\System32\drivers\tmcomm.sys [144464] {0494D739BC82C7149EBE00E2C8D7BEF6} © O58 - SDL:2010/09/17 09:52:28 A . (.Trend Micro Inc. - TrendMicro Event Management Module.) -- C:\Windows\System32\drivers\tmevtmgr.sys [67664] {0494D739BC82C7149EBE00E2C8D7BEF6} © O58 - SDL:2010/09/17 09:52:28 A . (.Trend Micro Inc. - Trend Micro TDI Driver (amd64-fre).) -- C:\Windows\System32\drivers\tmtdi.sys [105552] {0494D739BC82C7149EBE00E2C8D7BEF6} © O58 - SDL:2015/12/15 10:29:10 A . (...) -- C:\Windows\System32\drivers\TrueSight.sys [30848] {07B64E30A988861573F1E00C77AE2027} O58 - SDL:2009/08/06 22:17:34 A . (...) -- C:\Windows\System32\drivers\TurboB.sys [13784] =>.Intel(R) Extreme Tuning Utility® O58 - SDL:2015/06/10 22:08:36 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl64.sys [54784] © O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows® ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (2) - 24s O61 - LFC: 2015/12/15 18:12:28 A . (.Applian Technologies, Inc..) -- C:\Users\Guinarwen\AppData\Local\FLVService\lib\FLVSrvLib.dll [18432] O61 - LFC: 2015/12/15 18:14:22 A . (..) -- C:\Users\Guinarwen\AppData\Local\ATI\ACE\Manifest.Bin [145678] ---\\ Associations Shell Spawning (11) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe © O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe © O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe © O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe © O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ Menu de démarrage Internet (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - 'Firefox' Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - 'Firefox' Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - 'Firefox' Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © ---\\ Enumère les services démarrés par Svchost (32) - 2s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] © O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] © O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] © O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [236032] © O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] © O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [859648] © O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [680960] © O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] © O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] © O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] © O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] © O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] © O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] © O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [683520] © O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2609152] © O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] © O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] © O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] © O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720] © O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70656] © O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] © O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584] © O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] © O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] © O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] © O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] © O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1110016] © O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624] © O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] © O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [210432] © O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544] © O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] © ---\\ Liste des exceptions du parefeu Windows (35) - 10s O87 - FAEL: "{901CF5DD-3CB2-4E43-A156-DBC99E6F4A47}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\RM.exe (.not file.) O87 - FAEL: "{6A3A706F-0914-492B-A004-6AAC64EBD283}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\RM.exe (.not file.) O87 - FAEL: "{95C58A6E-885C-4DC9-8294-276982E48E77}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\umi.exe (.not file.) O87 - FAEL: "{0632333C-9A90-40E1-84B8-B2CF482929C4}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\umi.exe (.not file.) O87 - FAEL: "{E7270A14-BBC9-4E95-9A33-949C214AAEF7}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\VideoSpin.exe (.not file.) O87 - FAEL: "{568CC660-5B68-44D2-BBCE-43FFC25B5DFA}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\VideoSpin.exe (.not file.) O87 - FAEL: "{8A2F20D2-A930-4628-A2F0-FC426DB4929C}" [In-None-P6-TRUE] .(.Skype - Skype Web Plugin.) -- C:\Program Files (x86)\SkypeWebPlugin\SkypeWebPlugin.exe {76E06BD3B3CEDD7099F4ECFCF410328D} O87 - FAEL: "{EC6FBD09-D9B5-4268-B99C-1248026C244A}" [In-None-P6-TRUE] .(...) -- C:\xampp\xampp-control.exe O87 - FAEL: "{3A652708-57AE-4567-9251-222C0A61C775}" [In-None-P17-TRUE] .(...) -- C:\xampp\xampp-control.exe O87 - FAEL: "{9D2C0690-72E9-4E3D-B28C-306BF0CCD204}" [In-None-P6-FALSE] .(...) -- C:\xampp\xampp-control.exe O87 - FAEL: "{28C728EC-997D-494F-8987-B7EE467895DC}" [In-None-P17-FALSE] .(...) -- C:\xampp\xampp-control.exe O87 - FAEL: "TCP Query User{11AE0330-E5C7-438E-AC82-11BD190FDF80}C:\xampp\mysql\bin\mysqld.exe" [In-None-P6-TRUE] .(...) -- C:\xampp\mysql\bin\mysqld.exe {0B7D59C2C4D79F846E47D5CDB4E31955} O87 - FAEL: "UDP Query User{374B7267-CEB1-4C42-B1B4-BD52C210FA8A}C:\xampp\mysql\bin\mysqld.exe" [In-None-P17-TRUE] .(...) -- C:\xampp\mysql\bin\mysqld.exe {0B7D59C2C4D79F846E47D5CDB4E31955} O87 - FAEL: "{DD5A1DA7-D353-4FC0-850D-40D2610B1C27}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Applian Technologies\Freecorder 8 Applications\Converter\fcmediap.exe (.not file.) O87 - FAEL: "{F1CFB5D1-8C5D-46A6-958E-5154512F890A}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Applian Technologies\Freecorder 8 Applications\Converter\fcmediap.exe (.not file.) O87 - FAEL: "{2AEE5EFA-C58F-48B2-BB70-5F972BE33FBB}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Applian Technologies\Freecorder 8 Applications\Audio\fcaudiop.exe (.not file.) O87 - FAEL: "{E31D0ABB-C527-4AC0-9056-946426988EF9}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Applian Technologies\Freecorder 8 Applications\Audio\fcaudiop.exe (.not file.) O87 - FAEL: "{6899A394-B143-407E-98A5-B3DCB682E02C}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Applian Technologies\Freecorder 8 Applications\Screen\fcscreenp.exe (.not file.) O87 - FAEL: "{28C6AE2C-44D3-40A2-AD00-EB95505BB26D}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Applian Technologies\Freecorder 8 Applications\Screen\fcscreenp.exe (.not file.) O87 - FAEL: "{E4A4A372-2B9C-4259-BB82-1811AC6CBADA}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Applian Technologies\Freecorder 8 Applications\Video\fcvideop.exe (.not file.) O87 - FAEL: "{DB5B9F60-8542-4436-91F1-07F367121EC2}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Applian Technologies\Freecorder 8 Applications\Video\fcvideop.exe (.not file.) O87 - FAEL: "{601B14C2-9713-4CA1-A076-FE274D53B4A9}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Applian Technologies\Freecorder 8 Applications\Video\fctubep.exe (.not file.) O87 - FAEL: "{D11038A9-FA54-448F-B8AA-BCBDD8F3700A}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Applian Technologies\Freecorder 8 Applications\Video\fctubep.exe (.not file.) O87 - FAEL: "{3CFD4A05-6EA0-4F10-9253-5E20F94AE88C}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Applian Technologies\Freecorder 8 Applications\Torrent\fctorrentp.exe (.not file.) O87 - FAEL: "{00CFD772-5245-4DB2-A914-A2C8D92A94E9}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Applian Technologies\Freecorder 8 Applications\Torrent\fctorrentp.exe (.not file.) O87 - FAEL: "{ED06202F-1660-4275-936E-12BEBB454513}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Applian Technologies\Freecorder 8 Applications\Torrent\aria2c.exe (.not file.) O87 - FAEL: "{379E69AF-3089-4077-9D9C-46BBAEAB164C}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Applian Technologies\Freecorder 8 Applications\Torrent\aria2c.exe (.not file.) O87 - FAEL: "TCP Query User{BC9C7F7B-14F2-40AF-B337-B6374297FFC4}C:\xampp\mercurymail\mercury.exe" [In-None-P6-TRUE] .(.David Harris - Mercury/32 Core Processing Module v4.62.) -- C:\xampp\mercurymail\mercury.exe O87 - FAEL: "UDP Query User{5C879FE3-1EC7-4754-BCA9-2A12430BEEB0}C:\xampp\mercurymail\mercury.exe" [In-None-P17-TRUE] .(.David Harris - Mercury/32 Core Processing Module v4.62.) -- C:\xampp\mercurymail\mercury.exe O87 - FAEL: "TCP Query User{8172B569-814D-4A80-A2BC-3DBD6E50E7C7}C:\xampp-dec-2015\apache\bin\httpd.exe" [In-None-P6-TRUE] .(...) -- C:\xampp-dec-2015\apache\bin\httpd.exe (.not file.) O87 - FAEL: "UDP Query User{58480E9C-6340-4A92-9765-35C8EB7C30FF}C:\xampp-dec-2015\apache\bin\httpd.exe" [In-None-P17-TRUE] .(...) -- C:\xampp-dec-2015\apache\bin\httpd.exe (.not file.) O87 - FAEL: "TCP Query User{8A2CE112-F821-458A-AAFD-03D4B015BCFE}C:\xampp-dec-2015\filezillaftp\filezillaserver.exe" [In-None-P6-TRUE] .(...) -- C:\xampp-dec-2015\filezillaftp\filezillaserver.exe (.not file.) O87 - FAEL: "UDP Query User{6D2874B6-5347-49B0-A239-51CE5BD0F1B1}C:\xampp-dec-2015\filezillaftp\filezillaserver.exe" [In-None-P17-TRUE] .(...) -- C:\xampp-dec-2015\filezillaftp\filezillaserver.exe (.not file.) O87 - FAEL: "TCP Query User{8D0740E2-1C6A-4A5A-AF0E-CC4D19E4FFA1}C:\xampp-dec-2015\mercurymail\mercury.exe" [In-None-P6-TRUE] .(...) -- C:\xampp-dec-2015\mercurymail\mercury.exe (.not file.) O87 - FAEL: "UDP Query User{2756044D-9B9F-4F05-80BA-65A01A1E5913}C:\xampp-dec-2015\mercurymail\mercury.exe" [In-None-P17-TRUE] .(...) -- C:\xampp-dec-2015\mercurymail\mercury.exe (.not file.) ---\\ Enumère les codes produits des logiciels (2) - 7s O90 - PUC: "2B1E51D87B2D71A44BB42DDD5E894160" . (.iLivid.) =>PUP.Optional.Bandoo O90 - PUC: "DE596686F3BBD5140BBD81FC35F5B705" . (.Driver Manager.) -- C:\Windows\Installer\{686695ED-BB3F-415D-B0DB-18CF535F7B50}\ARPPRODUCTICON.exe =>PUP.Optional.DriverManager ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (28) - 36s SS - Demand [03/11/2015] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [22/06/2010] [ 379520] AFBAgent (AFBAgent) . (.ASUSTeK Computer Inc..) - C:\Windows\System32\FBAgent.exe © SR - Auto [05/10/2010] [ 203264] (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe © SS - Demand [17/09/2010] [ 267480] Trend Micro Solution Platform (Amsp) . (.Trend Micro Inc..) - C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe {0494D739BC82C7149EBE00E2C8D7BEF6} © SS - Auto [15/12/2015] [ 948392] Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe =>.Avira Operations GmbH & Co. KG® SR - Auto [15/12/2015] [ 466408] Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe =>.Avira Operations GmbH & Co. KG® SR - Auto [15/12/2015] [ 466408] Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe =>.Avira Operations GmbH & Co. KG® SS - Auto [15/12/2015] [ 1418560] Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe =>.Avira Operations GmbH & Co. KG® SR - Auto [02/09/2015] [ 77104] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.® SR - Auto [16/06/2009] [ 84536] ASLDR Service (ASLDRService) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe =>.ASUSTeK Computer Inc.® SR - Auto [15/12/2009] [ 96896] ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe =>.ASUSTeK Computer Inc.® SR - Auto [18/11/2015] [ 250648] Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe =>.Avira Operations GmbH & Co. KG® SR - Auto [12/08/2015] [ 462096] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® SR - Auto [27/05/2014] [ 108032] Freemake Improver (Freemake Improver) . (.Freemake.) - C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe © SS - Auto [29/06/2015] [ 144200] Google Update Service (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [29/06/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [12/01/2011] [ 182768] Google Software Updater (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe =>.Google Inc® SR - Demand [15/09/2015] [ 644880] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe =>.Apple Inc.® SS - Demand [08/11/2015] [ 147624] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Auto [08/04/2013] [ 1320496] PDF Architect Helper Service (PDF Architect Helper Service) . (.pdfforge GmbH.) - C:\Program Files (x86)\PDF Architect\HelperService.exe =>.pdfforge GmbH® SR - Auto [08/04/2013] [ 799280] PDF Architect Service (PDF Architect Service) . (.pdfforge GmbH.) - C:\Program Files (x86)\PDF Architect\ConversionService.exe =>.pdfforge GmbH® SR - Auto [02/03/2012] [ 25504] Samsung AllShare PC (SamsungAllShareV2.0) . (.Samsung Electronics Co., Ltd..) - C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\AllShareDMS.exe =>.Samsung Electronics CO., LTD.® SS - Demand [02/03/2012] [ 27584] SimpleSlideShowServer (SimpleSlideShowServer) . (.Samsung Electronics Co., Ltd..) - C:\Program Files (x86)\Samsung\AllShare\AllShareSlideShowService.exe =>.Samsung Electronics CO., LTD.® SS - Auto [09/07/2015] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® SS - Demand [19/02/2010] [ 517096] (SwitchBoard) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe © SR - Auto [17/09/2010] [ 241488] TiMiniService (TiMiniService) . (.Trend Micro Inc..) - C:\Program Files\Trend Micro\Titanium\TiMiniService.exe {0494D739BC82C7149EBE00E2C8D7BEF6} © SS - Demand [06/08/2009] [ 118672] TurboBoost (TurboBoost) . (.Intel(R) Corporation.) - C:\Program Files\Intel\TurboBoost\TurboBoost.exe =>.Intel(R) software® ---\\ Scan Additionnel (35) - 0s C:\Users\Guinarwen\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabfjnbeinlpljodiajipidiompfl =>Hijacker.Browser C:\Users\Guinarwen\AppData\Local\Google\Chrome\User Data\Default\Extensions\dleekdifoepfadaikncodjgnkkffkccd =>Hijacker.Browser C:\Users\Guinarwen\AppData\Local\Google\Chrome\User Data\Default\Extensions\edhilgpnlmgniclikjhefmadegchepcg =>Hijacker.Browser HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{520C2939-555B-40BF-A91B-8B671AB560EB} =>.Superfluous.PCSpeedUp HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{686695ED-BB3F-415D-B0DB-18CF535F7B50} =>PUP.Optional.DriverManager HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE} =>Toolbar.AsktBar HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{8D15E1B2-D2B7-4A17-B44B-D2DDE5981406} =>PUP.Optional.Bandoo HKLM\SOFTWARE\Wow6432Node\DriverTuner =>PUP.Optional.DriverTuner HKLM\SOFTWARE\Wow6432Node\DriverTuner_Init =>PUP.Optional.DriverTuner HKCU\SOFTWARE\Softonic =>PUP.Optional.Softonic HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader HKCU\SOFTWARE\YahooPartnerToolbar =>Toolbar.YahooPartner HKCU\SOFTWARE\Zugo =>PUP.Optional.Zugo C:\Program Files (x86)\Ask.com =>Toolbar.Ask C:\Program Files (x86)\Driver Manager =>PUP.Optional.DriverManager C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Manager =>PUP.Optional.DriverManager C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iLivid =>PUP.Optional.Bandoo C:\ProgramData\Babylon =>PUP.Optional.Babylon C:\ProgramData\Driver Manager =>PUP.Optional.DriverManager C:\ProgramData\Partner =>Toolbar.YahooPartner C:\Users\Guinarwen\AppData\Roaming\BabSolution =>PUP.Optional.BabSolution C:\Users\Guinarwen\AppData\Roaming\Babylon =>PUP.Optional.Babylon C:\Users\Guinarwen\AppData\Roaming\DigitalSites =>PUP.Optional.DSite C:\Users\Guinarwen\AppData\Roaming\DSite =>PUP.Optional.SimpleSearches C:\Users\Guinarwen\AppData\Local\AskToolbar =>Toolbar.Ask C:\Users\Guinarwen\AppData\Local\PackageAware =>PUP.Optional.BearShare C:\Users\Guinarwen\AppData\Local\PC_Drivers_Headquarters =>PUP.Optional.Generic C:\Windows\Prefetch\BABMAINT.EXE-9FF1E075.pf =>PUP.Optional.BabSolution C:\Windows\Prefetch\BROWSERDEFENDER.EXE-62524200.pf =>PUA.Optional.BrowserDefendert C:\Windows\Prefetch\BROWSERDEFENDER.EXE-E8C448EB.pf =>PUA.Optional.BrowserDefendert HKLM\Software\Classes\Installer\Products\2B1E51D87B2D71A44BB42DDD5E894160 =>PUP.Optional.Bandoo HKLM\Software\Classes\Installer\Features\2B1E51D87B2D71A44BB42DDD5E894160 =>PUP.Optional.Bandoo C:\Windows\Installer\{686695ED-BB3F-415D-B0DB-18CF535F7B50}\ARPPRODUCTICON.exe =>PUP.Optional.DriverManager HKLM\Software\Classes\Installer\Products\DE596686F3BBD5140BBD81FC35F5B705 =>PUP.Optional.DriverManager HKLM\Software\Classes\Installer\Features\DE596686F3BBD5140BBD81FC35F5B705 =>PUP.Optional.DriverManager ---\\ Récapitulatif des éléments trouvés sur votre station (18) - 0s http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.SimpleSearches http://www.nicolascoolman.fr/?p=4664 =>Hijacker.Browser http://www.nicolascoolman.fr/?p=1255 =>.Superfluous.PCSpeedUp http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.DriverManager http://www.nicolascoolman.fr/?p=4664 =>Toolbar.AsktBar http://www.nicolascoolman.fr/?p=237 =>PUP.Optional.Bandoo http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.DriverTuner http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Softonic http://www.nicolascoolman.fr/?p=4664 =>.Superfluous.Downloader http://www.nicolascoolman.fr/?p=4664 =>Toolbar.YahooPartner http://www.nicolascoolman.fr/?p=694 =>PUP.Optional.Zugo http://www.nicolascoolman.fr/?p=235 =>Toolbar.Ask http://www.nicolascoolman.fr/?p=170 =>PUP.Optional.Babylon http://www.nicolascoolman.fr/?p=440 =>PUP.Optional.BabSolution http://www.nicolascoolman.fr/?p=245 =>PUP.Optional.DSite http://www.nicolascoolman.fr/?p=343 =>PUP.Optional.BearShare http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Generic http://www.nicolascoolman.fr/?p=1003 =>PUA.Optional.BrowserDefendert ~ End of the scan, 73413 items in 735 seconds (1273)(0)