~ ZHPDiag v2016.1.9.9 Par Nicolas Coolman (2016/01/09) ~ Démarré par hako (Administrator) (2016/01/10 14:34:18) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\hako\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\hako\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 8 Pro, 32-bit (Build 9200) ---\\ Navigateurs Internet (4) - 0s GCIE: Google Chrome v47.0.2526.106 MFIE: Mozilla Firefox 38.0.5 (x86 fr) OPIE: Opera 34.0.2036.25 MSIE: Internet Explorer v10.0.9200.17568 ---\\ Informations sur les produits Windows (3) - 4s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK ---\\ Logiciels de protection (1) - 7s Windows Defender W8 (Activate) ---\\ Logiciels de protection et autres (Superflus) (1) - 7s Zemana AntiMalware v2.19.797 ---\\ Surveillance de Logiciels (1) - 7s Adobe Flash Player 20 NPAPI ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 6 Model 42 Stepping 7, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 1980.46 MB (10% free) System Restore: Activé (Enable) System drive C: has 274 GB () free of 476 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: HAKO ~ User Name: hako ~ Logged in as Administrator ---\\ Enumération des unités disques (1) - 1s ~ Drive C: has 274 GB free of 476 GB (System) ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (24) - 5s [MD5.EAFE46B0292D2BD2467835E2ACF717CC] - 01/06/2013 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2106176] =>.Microsoft Corporation [MD5.224F6B374852153C8C24BED141AE3A20] - 26/07/2012 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [48640] =>.Microsoft Corporation [MD5.7109FF769FFF962869C50D720F7AA7D7] - 26/07/2012 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [101376] =>.Microsoft Corporation [MD5.7EE6AEA4B731D038DF17DAF943D9692F] - 07/11/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [1763328] =>.Microsoft Corporation [MD5.DB876C1B7FA5CD1BD79D8C942E39908C] - 16/11/2015 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [429056] =>.Microsoft Corporation [MD5.FAB11E1AC62579A9BE21593319F8E464] - 26/07/2012 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [246784] =>.Microsoft Corporation [MD5.0BE9606A1175C7400ED862991453A847] - 09/10/2014 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [458240] =>.Microsoft Corporation [MD5.65AA2DE8787146679BB8A7D14BFFB6A3] - 26/07/2012 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [18944] =>.Microsoft Corporation [MD5.83A09AED0E8E5CC95FC051B40ADE0409] - 13/10/2015 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\Windows\System32\drivers\AFD.sys [439296] =>.Microsoft Corporation [MD5.48D8C3F2006698691F5AE0BB595FDCC8] - 26/07/2012 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [22768] =>.Microsoft Corporation [MD5.00B4FA77732C7823D292ECD672660882] - 26/07/2012 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [89088] =>.Microsoft Corporation [MD5.4E707EC5071DD8F5C29A7410780BD4C3] - 26/07/2012 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [135680] =>.Microsoft Corporation [MD5.E608E26B536A42B5ACC145D25CB9F2AC] - 16/01/2014 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [92160] =>.Microsoft Corporation [MD5.6BFEBBA25AD34E5922E60349C721B1DD] - 15/07/2014 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [62464] =>.Microsoft Corporation [MD5.11EDC37780E8A2F8E311D73F7658A4D7] - 26/07/2012 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [89600] =>.Microsoft Corporation [MD5.57B0C0D982013C72911A3F5CBA795034] - 26/07/2012 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [126976] =>.Microsoft Corporation [MD5.60978139E6942772545EAB1BC2DB1393] - 07/01/2015 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\Windows\System32\drivers\MRxSmb.sys [341504] =>.Microsoft Corporation [MD5.303A053C25E468B9925C22288BEF8484] - 26/07/2012 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [254464] =>.Microsoft Corporation [MD5.6C816842AC5E2B0E033ED0BD1058E077] - 27/01/2014 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1618264] =>.Microsoft Corporation [MD5.8BCE63AF5B52642E832630F862DE96EF] - 26/07/2012 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [90624] =>.Microsoft Corporation [MD5.6E0649D7325D85C47C844EB3267E4625] - 26/07/2012 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [88064] =>.Microsoft Corporation [MD5.2CAD2A13569741C67CD9C52F97E0F992] - 26/07/2012 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\Windows\System32\drivers\rdpdr.sys [156160] =>.Microsoft Corporation [MD5.3A8628AEDBB44215EC8D65FBD394BAC7] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [100352] =>.Microsoft Corporation [MD5.BF079843E272759BAE587FB980163293] - 04/07/2014 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [281408] =>.Microsoft Corporation ---\\ Liste des services NT non Microsoft et non désactivés (7) - 1s O23 - Service: Freemake Improver (Freemake Improver) . (.Freemake - FreemakeUtilsService.) - C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe =>.Freemake O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: Protexis Licensing V2 (PSI_SVC_2) . (.arvato digital services llc - PsiService PsiService.) - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe {6BF639C6331003F6B9D1E5E029135BF4} =>.arvato digital services llc O23 - Service: Service Mgr GreatFind (Service Mgr GreatFind) . (...) - C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugincontainer.exe (.not file.) =>PUP.Optional.GreatFind O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl® O23 - Service: Update Mgr GreatFind (Update Mgr GreatFind) . (...) - C:\Program Files\Common Files\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\updater.exe (.not file.) =>PUP.Optional.GreatFind O23 - Service: ZAM Controller Service (ZAMSvc) . (.Zemana Ltd. - ZAM.) - C:\Program Files\Zemana AntiMalware\ZAM.exe =>.Zemana Ltd.® ---\\ Tâches planifiées en automatique (12) - 9s [MD5.C3E7E1F3C85A6788F3BA078BA214341E] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [269504] =>.Adobe Systems Incorporated® [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc® [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc® [MD5.70CB79B525FF3D953AB60030EC32265D] [APT] [Opera scheduled Autoupdate 1422910743] (.Opera Software.) -- C:\Program Files\Opera\launcher.exe [696952] =>.Opera Software ASA® [MD5.C08A5FCEFA5EE421E6146A8F674D1A2A] [APT] [Lenovo\Lenovo Customer Feedback Program 35] (.Lenovo.) -- C:\Program Files\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe [16832] =>.LENOVO® O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1070] =>.Google Inc. O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1074] =>.Google Inc. O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3890] =>.Adobe Systems Incorporated O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3810] =>.Google Inc. O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4046] =>.Google Inc. O39 - APT: Opera scheduled Autoupdate 1422910743 - (.Opera Software.) -- C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1422910743 [3852] =>.Opera Software ---\\ Processus lancés (17) - 6s [MD5.1004870429DE89F4546F9BC9243379DA] - (.Freemake - FreemakeUtilsService.) -- C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [108032] [PID.1556] =>.Freemake [MD5.066C6CCCF670D9BBCAECC781FB8D7EB9] - (.arvato digital services llc - PsiService PsiService.) -- c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [277360] [PID.1804] {6BF639C6331003F6B9D1E5E029135BF4} =>.arvato digital services llc [MD5.1AD69727E0899AB8A7017A35095E497C] - (.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe [1083792] [PID.3948] {1855136D47C1A483} [MD5.1AD69727E0899AB8A7017A35095E497C] - (.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe [1083792] [PID.4052] {1855136D47C1A483} [MD5.1AD69727E0899AB8A7017A35095E497C] - (.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe [1083792] [PID.2320] {1855136D47C1A483} [MD5.1AD69727E0899AB8A7017A35095E497C] - (.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe [1083792] [PID.2480] {1855136D47C1A483} [MD5.1AD69727E0899AB8A7017A35095E497C] - (.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe [1083792] [PID.2376] {1855136D47C1A483} [MD5.1AD69727E0899AB8A7017A35095E497C] - (.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe [1083792] [PID.2264] {1855136D47C1A483} [MD5.1AD69727E0899AB8A7017A35095E497C] - (.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe [1083792] [PID.2076] {1855136D47C1A483} [MD5.1AD69727E0899AB8A7017A35095E497C] - (.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe [1083792] [PID.5032] {1855136D47C1A483} [MD5.1AD69727E0899AB8A7017A35095E497C] - (.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe [1083792] [PID.3580] {1855136D47C1A483} [MD5.1AD69727E0899AB8A7017A35095E497C] - (.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe [1083792] [PID.3304] {1855136D47C1A483} [MD5.1AD69727E0899AB8A7017A35095E497C] - (.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe [1083792] [PID.2976] {1855136D47C1A483} [MD5.1AD69727E0899AB8A7017A35095E497C] - (.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe [1083792] [PID.4112] {1855136D47C1A483} [MD5.845BE5F9082DD2C4A2DD8C11974E1ACA] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\hako\Downloads\ZHPDiag3.exe [2065920] [PID.3408] =>.Nicolas Coolman [MD5.1AD69727E0899AB8A7017A35095E497C] - (.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe [1083792] [PID.2084] {1855136D47C1A483} [MD5.1AD69727E0899AB8A7017A35095E497C] - (.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe [1083792] [PID.6040] {1855136D47C1A483} ---\\ Google Chrome, Démarrage,Recherche,Extensions (8) - 3s G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [djnhkfljnimcpelfndpcjcgngmefaobl] __MSG_extName__ G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pkehgijcmpdhfbdbbnkijodmdjhbjlgp] __MSG_name__ ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (14) - 8s P2 - EXT FILE: (...) -- C:\Users\hako\AppData\Roaming\Mozilla\Firefox\Profiles\jcjh4a7y.default\searchplugins\bing-.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\amazon-france.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\bing.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\ddg.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\eBay-france.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\google.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\yahoo-france.xml P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} =>.Mozilla P2 - EXT: (.Microsoft Corporation - Bing Search Engine.) -- C:\Users\hako\AppData\Roaming\Mozilla\Firefox\Profiles\jcjh4a7y.default\extensions\bingsearch.full@microsoft.com =>.Microsoft Corporation P2 - FPN: [HKCU] [@catalinahub.net/CatalinaGroup Update;version=3] - (.Catalina Group Ltd..) -- C:\Users\hako\AppData\Local\CatalinaGroup\Update\1.3.25.223\npCatalinaUpdate3.dll P2 - FPN: [HKCU] [@catalinahub.net/CatalinaGroup Update;version=9] - (.Catalina Group Ltd..) -- C:\Users\hako\AppData\Local\CatalinaGroup\Update\1.3.25.223\npCatalinaUpdate3.dll P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_20_0_0_267.dll =>.Adobe Systems Incorporated ---\\ Opera, Démarrage,Recherche,Plugins (1) - 0s B2 - EXT: [{background:{scripts:[background.js]}content_scrip] C:\Users\hako\AppData\Roaming\Opera Software\Opera Stable\Extensions\pdjpcnnkcejbglbpfhkcabckbloogjli ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (10) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer,Proxy Management (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 1s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Etude du fichier hosts (3) - 0s 205.199 205.199 ~ Nombre lignes détournées 205.199 24 (Hosts file redirected) ---\\ Browser Helper Object de navigateur (BHO) (3) - 1s O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files\Internet Download Manager\IDMIECC.dll {4660FC32BD521D77F211C1336AA98B9E} =>.Internet Download Manager, Tonec Inc. O2 - BHO: Great Find - {1cc2bb80-20ab-43e5-b958-432d72b546ca} . (...) -- C:\Program Files\Great Find\Extensions\1cc2bb80-20ab-43e5-b958-432d72b546ca.dll {7E856499DE45F8F4E6964582D37E3977} =>PUP.Optional.GreatFind O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl® ---\\ Applications lancées au démarrage du système (21) - 14s O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe =>.Intel Corporation - pGFX® O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation - pGFX® O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation - pGFX® O4 - HKLM\..\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe =>.Apple Inc.® O4 - HKLM\..\Run: [GoldenFilterPro] . (.Golden Soft Corp. - .) -- C:\Golden Filter Pro\GFPro.exe O4 - HKLM\..\Run: [ProductUpdater] . (.Copyright © 2015 - ProductUpdater.) -- C:\Program Files\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe O4 - HKLM\..\Run: [ZAM] . (.Zemana Ltd. - ZAM.) -- C:\Program Files\Zemana AntiMalware\ZAM.exe =>.Zemana Ltd.® O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - HKCU\..\Run: [SoftonicAssistant] . (.Copyright (C) 2014 - .) -- C:\Users\hako\AppData\Local\SoftonicAssistant\SoftonicAssistant.exe {4D29D6E70680A46F4373C81F530344D9} =>.Superfluous.Softonic O4 - HKCU\..\Run: [ooVoo.exe] . (.ooVoo LLC - ooVoo.) -- C:\Program Files\ooVoo\ooVoo.exe {438641BDEE006728268E6C746F5095C6} O4 - HKCU\..\Run: [CatalinaGroup Update] . (.Catalina Group Ltd. - CatalinaGroup Update.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Update\CatalinaUpdate.exe {1855136D47C1A483} O4 - HKCU\..\Run: [EpicScale] . (.EpicScale Inc. - EpicScale module.) -- C:\ProgramData\EpicScale\0\EpicScale.exe =>PUP.Optional.EpicScale O4 - HKCU\..\Run: [Tango] . (.Tango Inc. - Tango.) -- C:\Program Files\Tango\Tango.exe {518E759C2B4729A634F14DEE2741ECFD} =>.Tango Inc. O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - HKUS\S-1-5-21-4147993359-3191228837-674029696-1001\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - HKUS\S-1-5-21-4147993359-3191228837-674029696-1001\..\Run: [SoftonicAssistant] . (.Copyright (C) 2014 - .) -- C:\Users\hako\AppData\Local\SoftonicAssistant\SoftonicAssistant.exe {4D29D6E70680A46F4373C81F530344D9} =>.Superfluous.Softonic O4 - HKUS\S-1-5-21-4147993359-3191228837-674029696-1001\..\Run: [ooVoo.exe] . (.ooVoo LLC - ooVoo.) -- C:\Program Files\ooVoo\ooVoo.exe {438641BDEE006728268E6C746F5095C6} O4 - HKUS\S-1-5-21-4147993359-3191228837-674029696-1001\..\Run: [CatalinaGroup Update] . (.Catalina Group Ltd. - CatalinaGroup Update.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Update\CatalinaUpdate.exe {1855136D47C1A483} O4 - HKUS\S-1-5-21-4147993359-3191228837-674029696-1001\..\Run: [EpicScale] . (.EpicScale Inc. - EpicScale module.) -- C:\ProgramData\EpicScale\0\EpicScale.exe =>PUP.Optional.EpicScale O4 - HKUS\S-1-5-21-4147993359-3191228837-674029696-1001\..\Run: [Tango] . (.Tango Inc. - Tango.) -- C:\Program Files\Tango\Tango.exe {518E759C2B4729A634F14DEE2741ECFD} =>.Tango Inc. O4 - HKUS\S-1-5-21-4147993359-3191228837-674029696-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl® ---\\ Modification Domaine/Adresses DNS (2) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1D5282CE-6A03-45F6-80DC-EDAB421710DF}: DhcpNameServer = 192.168.1.1 ---\\ Protocole additionnel (21) - 1s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl® O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (1) - 0s O20 - AppInit_DLLs: . (...) - c:\progra~2\{f1671~1\1173~1.1\rini.dll (.not file.) ---\\ Logiciels installés (69) - 59s O42 - Logiciel: "Just Cause 2" - (...) [HKLM] -- {E2FC9928-87BE-4947-B68E-4A3414E33767}_is1 O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU] -- uTorrent O42 - Logiciel: Adobe Flash Player 20 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Help Center 1.0 - (.Adobe Systems.) [HKLM] -- {E9787678-1033-0000-8E67-000000000001} =>.Adobe Systems O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {5D09C772-ECB3-442B-9CC6-B4341C78FDC2} =>.Apple Inc. O42 - Logiciel: Assassin's Creed Liberation HD - (...) [HKLM] -- Assassin's Creed Liberation HD_is1 O42 - Logiciel: AVS Photo Editor 2.3.1.144 - (.Online Media Technologies Ltd..) [HKLM] -- AVS Photo Editor_is1 =>.Online Media Technologies Ltd. O42 - Logiciel: Battlefield 2 édition Deluxe - (...) [HKLM] -- {04858915-9F49-4B2A-AED4-DC49A7DE6A7B} O42 - Logiciel: Bau-Simulator 2012 Version 1.0 - (.weltenbauer. Software Entwicklung GmbH.) [HKLM] -- {AEF59382-3FF1-4EBF-A93E-CCC474DCEA3F}_is1 O42 - Logiciel: Camtasia Studio 8 - (.TechSmith Corporation.) [HKLM] -- {474DFABF-E55B-4905-ABAA-40791A6AC77F} =>.TechSmith Corporation O42 - Logiciel: Citrio - (.© Catalinagroup Ltd..) [HKCU] -- Citrio {1855136D47C1A483} O42 - Logiciel: Contents - (.Corel Corporation.) [HKLM] -- {CC17740C-FD9D-4025-BD75-99ED1A9DA22E} =>.Corel Corporation O42 - Logiciel: Corel VideoStudio Pro X7 - (.Corel Corporation.) [HKLM] -- _{77B3BEA9-835C-4DDF-BCE7-1510271E4E37} =>.Corel Corporation® O42 - Logiciel: DJ Studio Pro 10.4.4.3 - (.E-Soft.) [HKLM] -- {CAF570D2-07B0-4311-911D-47E7A41D85D2} {1F88FBE23C3B9E102A5F728D86E7AC12} O42 - Logiciel: EpicScale Application - (.EpicScale, Inc..) [HKCU] -- EpicScaleApp =>PUP.Optional.EpicScale O42 - Logiciel: Euro Truck Simulator 2 - (.SCS Software.) [HKLM] -- {1B705E8F-9893-4486-B5D7-4F7FEB9C871E}_is1 {59A96FDC3A56C87453CC094A9887C650} =>.SCS Software O42 - Logiciel: Farming Simulator 2011 Demo - (.GIANTS Software.) [HKLM] -- FarmingSimulator2011DemoEN_is1 =>.GIANTS Software GmbH® O42 - Logiciel: Farming Simulator 2013, âهًٌèے 2.0 - (.Zimbo.) [HKLM] -- Farming Simulator 2013_is1 O42 - Logiciel: FormatFactory 3.5.0.0 - (.Format Factory.) [HKLM] -- FormatFactory =>.Format Factory O42 - Logiciel: Freemake Video Converter version 4.1.7 - (.Ellora Assets Corporation.) [HKLM] -- Freemake Video Converter_is1 =>.Ellora Assets Corporation O42 - Logiciel: Freight Train Simulator - (.GameHitZone.com.) [HKLM] -- FreightTrainSimulator_is1 O42 - Logiciel: GameSpy Arcade - (...) [HKLM] -- GameSpy Arcade O42 - Logiciel: GI-Arabic Now - (.Global Integrated Solutions.) [HKLM] -- GI-Arabic Now O42 - Logiciel: Golden Filter Pro 2.0 - (.GSI Technologies.) [HKLM] -- Golden Filter Pro O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>.Google Inc. O42 - Logiciel: Google Earth Pro - (.Google.) [HKLM] -- {44FC61F0-2F8A-11E3-8CAE-B8AC6F97B88E} =>.Google O42 - Logiciel: Great Find - (.Great Find.) [HKLM] -- Great Find {7E856499DE45F8F4E6964582D37E3977} =>PUP.Optional.GreatFind O42 - Logiciel: ICA - (.Corel Corporation.) [HKLM] -- {77B3BEA9-835C-4DDF-BCE7-1510271E4E37} =>.Corel Corporation O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation - pGFX® O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM] -- Internet Download Manager {4660FC32BD521D77F211C1336AA98B9E} =>.Tonec Inc. O42 - Logiciel: IPM_VS_Pro - (.Corel Corporation.) [HKLM] -- {0662B4EB-B027-4D10-B49C-B6433FE81C07} =>.Corel Corporation O42 - Logiciel: Metric Collection SDK - (.Lenovo Group Limited.) [HKLM] -- {DDAA788F-52E6-44EA-ADB8-92837B11BF26} =>.Lenovo Group Limited O42 - Logiciel: Metric Collection SDK 35 - (.Lenovo Group Limited.) [HKLM] -- {C2B5B5B0-2545-4E94-B4BA-548D4BF0B196} =>.Lenovo Group Limited O42 - Logiciel: Movie Studio 13.0 - (.Sony.) [HKLM] -- {2FD4A64F-74DC-11E4-8DDF-F04DA23A5C58} =>.Sony O42 - Logiciel: Mozilla Firefox 38.0.5 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 38.0.5 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM] -- {2BAC54DE-0A81-11E3-8476-F04DA23A5C58} =>.Sony Creative Software Inc. O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM] -- {364ED280-74DC-11E4-940F-F04DA23A5C58} =>.Sony Creative Software Inc. O42 - Logiciel: NirSoft Wireless Network Watcher - (...) [HKLM] -- NirSoft Wireless Network Watcher O42 - Logiciel: No-IP.com DUC (remove only) - (.Vitalwerks & No-IP.com.) [HKLM] -- No-IP.com DUC =>.Vitalwerks & No-IP.com O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM] -- {C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B} =>.NVIDIA Corporation O42 - Logiciel: ooVoo - (.ooVoo LLC..) [HKLM] -- {FAA7F8FF-3C05-4A61-8F14-D8A6E9ED6623} =>.ooVoo LLC. O42 - Logiciel: Opera Stable 34.0.2036.25 - (.Opera Software.) [HKLM] -- Opera 34.0.2036.25 =>.Opera Software ASA® O42 - Logiciel: Photo-Brush 5.30 - (.Mediachance Corp..) [HKLM] -- Photo-Brush_is1 O42 - Logiciel: PianoFX STUDIO 4.0 - (.Tanseon Systems.) [HKLM] -- PianoFX STUDIO 4.0_is1 O42 - Logiciel: Police Supercars Racing 5.00 - (.Police Supercars Racing.) [HKLM] -- Police Supercars Racing 5.00 O42 - Logiciel: Pro Evolution Soccer 2012 - (.KONAMI.) [HKLM] -- {E737A098-F161-4B6F-AF22-86AAE34F6FBD} =>.Konami O42 - Logiciel: Pro Evolution Soccer 2013 - (.KONAMI.) [HKLM] -- {C2523AE6-F335-4D0B-BC15-1C07E4ACE629} =>.Konami O42 - Logiciel: Setup - (.Corel Corporation.) [HKLM] -- {EE1DF8F8-24D8-4287-816B-E67B03460CEE} =>.Corel Corporation O42 - Logiciel: Share - (.Corel Corporation.) [HKLM] -- {5F5C5CC6-3457-4D8B-A716-85CC964C4533} =>.Corel Corporation O42 - Logiciel: SHAREit - (.Lenovo Group Limited.) [HKLM] -- SHAREit_is1 =>.LENOVO® O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701} =>.Microsoft Corporation O42 - Logiciel: Skype™ 7.17 - (.Skype Technologies S.A..) [HKLM] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A. O42 - Logiciel: Softonic Assistant - (.Softonic International S.A..) [HKCU] -- SoftonicAssistant =>.Superfluous.Softonic O42 - Logiciel: Sony Vegas Pro 10.0 - (...) [HKLM] -- Sony Vegas Pro 10.0 O42 - Logiciel: Sothink Logo Maker Professional - (.SourceTec Software Co., LTD.) [HKLM] -- {574FFDC9-AB09-4C4A-B7BE-C6066502181A}_is1 O42 - Logiciel: Spintires - (.R.G. Mechanics, markfiter.) [HKLM] -- Spintires_R.G. Mechanics_is1 =>.R.G. Mechanics, markfiter O42 - Logiciel: System Requirements Lab Detection - (.Husdawg, LLC.) [HKLM] -- {80C56680-717B-4DB5-BBEF-7A139E466AD9} =>.Husdawg, LLC O42 - Logiciel: Tango - (.TangoMe, Inc..) [HKCU] -- Tango {518E759C2B4729A634F14DEE2741ECFD} O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU] -- UnityWebPlayer =>.Unity Technologies ApS O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player =>.VideoLAN O42 - Logiciel: VSClassic - (.Corel Corporation.) [HKLM] -- {AE666608-C3B5-46F0-BAFA-B0A7BEE058F5} =>.Corel Corporation O42 - Logiciel: VSPro - (.Corel Corporation.) [HKLM] -- {5BB9ED3F-A86C-46F5-A362-3F2F0591AC51} =>.Corel Corporation O42 - Logiciel: Weeeb Store 1.02 Beta - (.SourceTec Software Co., LTD.) [HKLM] -- {F87ABD09-B69E-4E38-AF0F-8EDA007BEF3C}_is1 O42 - Logiciel: WinRAR 5.20 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver =>.win.rar GmbH® O42 - Logiciel: World War 2: Sniper - (.Groove Games.) [HKLM] -- World War 2: Sniper O42 - Logiciel: Zemana AntiMalware - (.Zemana Ltd..) [HKLM] -- {8F0CD7D1-42F3-4195-95CD-833578D45057}_is1 =>.Zemana Ltd.® ---\\ HKCU & HKLM Software Keys (120) - 59s HKLM\SOFTWARE\a746f9db-1370-33f3-d1ca-7a457fd9e32b =>PUP.Optional.CrossRider HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\Adobe Systems HKLM\SOFTWARE\AGEIA Technologies HKLM\SOFTWARE\Apple Inc. HKLM\SOFTWARE\ATI Technologies HKLM\SOFTWARE\AviSynth HKLM\SOFTWARE\AVS4YOU HKLM\SOFTWARE\CDDB HKLM\SOFTWARE\Chromium HKLM\SOFTWARE\COMODO HKLM\SOFTWARE\ComodoGroup HKLM\SOFTWARE\Corel HKLM\SOFTWARE\DaxakaRepack HKLM\SOFTWARE\DICE HKLM\SOFTWARE\EA GAMES HKLM\SOFTWARE\EagleEye HKLM\SOFTWARE\Electronic Arts HKLM\SOFTWARE\FaceOnBody HKLM\SOFTWARE\Freemake HKLM\SOFTWARE\GNU HKLM\SOFTWARE\Google HKLM\SOFTWARE\GreatFind =>PUP.Optional.GreatFind HKLM\SOFTWARE\HaaliMkx HKLM\SOFTWARE\Hola =>PUP.Optional.HolaSearch HKLM\SOFTWARE\IGI 2 Retail HKLM\SOFTWARE\IM Providers HKLM\SOFTWARE\InstallMate HKLM\SOFTWARE\Intel HKLM\SOFTWARE\Internet Download Manager HKLM\SOFTWARE\InterVideo HKLM\SOFTWARE\Jarhead Games HKLM\SOFTWARE\KONAMI HKLM\SOFTWARE\Lavasoft HKLM\SOFTWARE\Lenovo HKLM\SOFTWARE\Licenses HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\McAfee.com HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\mozilla.org HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\Opera Software HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\SCS Software HKLM\SOFTWARE\Skype HKLM\SOFTWARE\Sony Creative Software HKLM\SOFTWARE\SourceTec HKLM\SOFTWARE\TechSmith HKLM\SOFTWARE\tueagles HKLM\SOFTWARE\Ulead Systems HKLM\SOFTWARE\Valve HKLM\SOFTWARE\VideoLAN HKLM\SOFTWARE\Vitalwerks HKLM\SOFTWARE\Volatile HKLM\SOFTWARE\VST HKLM\SOFTWARE\WinRAR HKLM\SOFTWARE\Wise Solutions HKLM\SOFTWARE\Wow6432Node HKLM\SOFTWARE\Zemana HKLM\SOFTWARE\ZmnGlobalSDK HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\AVS4YOU HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\CatalinaGroup HKCU\SOFTWARE\CDDB HKCU\SOFTWARE\Digimarc HKCU\SOFTWARE\DirectShow HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\EpicScale =>PUP.Optional.EpicScale HKCU\SOFTWARE\Freemake HKCU\SOFTWARE\FreeTime HKCU\SOFTWARE\GameSpy HKCU\SOFTWARE\Google HKCU\SOFTWARE\Haali HKCU\SOFTWARE\ICSW1.11 =>Adware.InstallCore HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Intel HKCU\SOFTWARE\JustCause2 HKCU\SOFTWARE\Kiloo Games HKCU\SOFTWARE\Lenovo HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\MainConcept HKCU\SOFTWARE\MCAFEE HKCU\SOFTWARE\MediaChance HKCU\SOFTWARE\Mine HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\ooVoo HKCU\SOFTWARE\Opera Software HKCU\SOFTWARE\ProductSetup HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\Resplendence Sp HKCU\SOFTWARE\SAMP HKCU\SOFTWARE\SCS Software HKCU\SOFTWARE\Skype HKCU\SOFTWARE\Softonic =>.Superfluous.Softonic HKCU\SOFTWARE\Sony Creative Software HKCU\SOFTWARE\Sothink HKCU\SOFTWARE\SourceTec HKCU\SOFTWARE\System Optimizer =>PUP.Optional.SystemOptimizer HKCU\SOFTWARE\TechSmith HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\UIG HKCU\SOFTWARE\Unity HKCU\SOFTWARE\Valve HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\weltenbauer. Software Entwicklung GmbH HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\XnView HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\Zemana HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Unity ---\\ Contenu des dossiers Programmes (272) - 222s O43 - CFD: 05/03/2015 - [] D -- C:\Program Files\Adobe O43 - CFD: 31/01/2015 - [] D -- C:\Program Files\AGEIA Technologies O43 - CFD: 02/01/2015 - [] D -- C:\Program Files\Athan O43 - CFD: 01/03/2015 - [] D -- C:\Program Files\AVS4YOU O43 - CFD: 11/05/2015 - [] D -- C:\Program Files\Bau-Simulator 2012 O43 - CFD: 21/01/2015 - [] D -- C:\Program Files\Bing Bar Installer O43 - CFD: 22/01/2015 - [0] D -- C:\Program Files\black box O43 - CFD: 21/01/2015 - [] D -- C:\Program Files\Black_Box O43 - CFD: 14/12/2015 - [] D -- C:\Program Files\Common Files O43 - CFD: 14/01/2015 - [] D -- C:\Program Files\Corel {6099896A7B027918CFDB657C17E6E536} O43 - CFD: 23/05/2015 - [] D -- C:\Program Files\Deadpool O43 - CFD: 03/02/2015 - [] D -- C:\Program Files\E-Soft O43 - CFD: 02/01/2015 - [] D -- C:\Program Files\EA GAMES O43 - CFD: 14/03/2015 - [] D -- C:\Program Files\Ela-Salaty O43 - CFD: 28/12/2015 - [] D -- C:\Program Files\Euro Truck Simulator 2 {59A96FDC3A56C87453CC094A9887C650} O43 - CFD: 15/04/2015 - [0] D -- C:\Program Files\FaceOffMax O43 - CFD: 14/05/2015 - [] D -- C:\Program Files\Farming Simulator 2011 Demo =>.GIANTS Software GmbH® O43 - CFD: 07/08/2015 - [] D -- C:\Program Files\Farming Simulator 2013 =>.GIANTS Software GmbH® O43 - CFD: 31/12/2014 - [0] SHD -- C:\Program Files\Fichiers communs O43 - CFD: 27/07/2015 - [] D -- C:\Program Files\FinchVPN {0082BD3B25B8EDD3B1E9D659D06B380FE0} O43 - CFD: 02/02/2015 - [] D -- C:\Program Files\Freemake =>.Microsoft Corporation® O43 - CFD: 02/02/2015 - [] D -- C:\Program Files\FreeTime =>.chen jun hao® O43 - CFD: 06/05/2015 - [] D -- C:\Program Files\GameHitZone.com {1121CE11F3B8C23214B9089ECDD724159825} O43 - CFD: 08/02/2015 - [] D -- C:\Program Files\GameSpy Arcade O43 - CFD: 01/03/2015 - [] D -- C:\Program Files\GISolution O43 - CFD: 03/02/2015 - [] D -- C:\Program Files\Google =>.Google Inc® O43 - CFD: 06/08/2015 - [] D -- C:\Program Files\Great Find =>PUP.Optional.GreatFind O43 - CFD: 25/06/2015 - [] D -- C:\Program Files\Groove Games O43 - CFD: 31/01/2015 - [] D -- C:\Program Files\HitLeap O43 - CFD: 05/01/2016 - [] D -- C:\Program Files\Hola =>.Hola Networks Ltd.® =>PUP.Optional.HolaSearch O43 - CFD: 02/01/2015 - [] HD -- C:\Program Files\InstallShield Installation Information =>.InstallShield Software Corporation® O43 - CFD: 31/12/2014 - [] D -- C:\Program Files\Intel =>.Intel Corporation - pGFX® O43 - CFD: 15/01/2015 - [] D -- C:\Program Files\Internet Download Manager O43 - CFD: 09/12/2015 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 02/01/2015 - [0] D -- C:\Program Files\Islamic Encyclopedia O43 - CFD: 07/02/2015 - [] D -- C:\Program Files\Just Cause 2 O43 - CFD: 24/01/2015 - [] D -- C:\Program Files\Konami O43 - CFD: 11/05/2015 - [] D -- C:\Program Files\Lavasoft O43 - CFD: 14/12/2015 - [] D -- C:\Program Files\Lenovo =>.LENOVO® O43 - CFD: 24/06/2015 - [] D -- C:\Program Files\McAfee Security Scan =>.McAfee, Inc.® O43 - CFD: 14/01/2015 - [] D -- C:\Program Files\Microsoft Office O43 - CFD: 26/07/2012 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 09/10/2015 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla Corporation® O43 - CFD: 09/10/2015 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla Corporation® O43 - CFD: 01/01/2015 - [] D -- C:\Program Files\MSBuild O43 - CFD: 07/12/2015 - [] D -- C:\Program Files\NirSoft O43 - CFD: 21/12/2015 - [] D -- C:\Program Files\No-IP O43 - CFD: 17/01/2015 - [] D -- C:\Program Files\ooVoo {438641BDEE006728268E6C746F5095C6} O43 - CFD: 10/12/2015 - [] D -- C:\Program Files\Opera =>.Opera Software ASA® O43 - CFD: 21/04/2015 - [] D -- C:\Program Files\Photo-Brush 5 O43 - CFD: 12/10/2015 - [] D -- C:\Program Files\PianoFX O43 - CFD: 25/06/2015 - [] D -- C:\Program Files\Police Supercars Racing O43 - CFD: 17/01/2015 - [] D -- C:\Program Files\QuickTime O43 - CFD: 07/02/2015 - [] D -- C:\Program Files\R.G. Mechanics O43 - CFD: 01/01/2015 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 14/12/2015 - [] RD -- C:\Program Files\Skype =>.Skype Software Sarl® O43 - CFD: 03/01/2015 - [] D -- C:\Program Files\Sony {763032CE869EB50C396E26D0BF3B11F6} O43 - CFD: 27/02/2015 - [] D -- C:\Program Files\SourceTec {2B82ABA86D863021CD8B799A9D366BE1} O43 - CFD: 21/06/2015 - [] D -- C:\Program Files\SystemRequirementsLab O43 - CFD: 08/05/2015 - [] D -- C:\Program Files\Tango O43 - CFD: 27/07/2015 - [] D -- C:\Program Files\TAP-Windows O43 - CFD: 10/01/2015 - [] D -- C:\Program Files\TechSmith =>.TechSmith Corporation® O43 - CFD: 23/02/2015 - [] D -- C:\Program Files\tuEagles {46BC7AAD1494F94353665B64D96244B6} O43 - CFD: 31/01/2015 - [] D -- C:\Program Files\Ubisoft {11211489E6814A0B9E53465021BAA1A6FCEF} O43 - CFD: 26/07/2012 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 31/12/2014 - [] D -- C:\Program Files\VideoLAN O43 - CFD: 27/02/2015 - [] D -- C:\Program Files\Weeeb Store O43 - CFD: 13/08/2015 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Windows® O43 - CFD: 12/09/2015 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 26/07/2012 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 05/01/2015 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 26/07/2012 - [] D -- C:\Program Files\Windows Multimedia Platform O43 - CFD: 31/12/2014 - [] D -- C:\Program Files\Windows NT O43 - CFD: 03/01/2015 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 26/07/2012 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 26/07/2012 - [] SHD -- C:\Program Files\Windows Sidebar O43 - CFD: 08/01/2016 - [] HD -- C:\Program Files\WindowsApps O43 - CFD: 01/01/2015 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 10/01/2016 - [] D -- C:\Program Files\Zemana AntiMalware =>.Zemana Ltd.® O43 - CFD: 26/07/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 03/01/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 05/01/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 23/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anti-Porn O43 - CFD: 01/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVS4YOU O43 - CFD: 11/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bau-Simulator 2012 O43 - CFD: 06/02/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo O43 - CFD: 14/01/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Corel VideoStudio Pro X7 O43 - CFD: 03/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DJ Studio Pro O43 - CFD: 02/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES O43 - CFD: 28/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Euro Truck Simulator 2 O43 - CFD: 14/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Farming Simulator 2011 Demo O43 - CFD: 15/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Farming Simulator 2013 O43 - CFD: 04/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake O43 - CFD: 06/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameHitZone.com O43 - CFD: 12/02/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 02/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameSpy Arcade O43 - CFD: 01/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GISolution O43 - CFD: 09/04/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Golden Filter Pro O43 - CFD: 31/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 03/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro O43 - CFD: 25/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Groove Games O43 - CFD: 30/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IGI 2 - Covert Strike O43 - CFD: 01/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 02/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Judgment O43 - CFD: 07/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Just Cause 2 O43 - CFD: 12/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Konami O43 - CFD: 11/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft O43 - CFD: 14/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo O43 - CFD: 24/06/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MagicISO O43 - CFD: 26/07/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\No-IP O43 - CFD: 31/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation O43 - CFD: 17/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ooVoo O43 - CFD: 21/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PESEdit.com 2012 Patch O43 - CFD: 03/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo-Brush 5 O43 - CFD: 12/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PianoFX STUDIO O43 - CFD: 07/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics O43 - CFD: 14/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 03/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony O43 - CFD: 27/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SourceTec O43 - CFD: 24/06/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp O43 - CFD: 05/01/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 26/07/2012 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 08/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tango O43 - CFD: 10/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith O43 - CFD: 31/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft O43 - CFD: 31/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 27/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Weeeb Store O43 - CFD: 01/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 10/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zemana AntiMalware O43 - CFD: 14/07/2015 - [] D -- C:\ProgramData\4eb3ffd800006b03 O43 - CFD: 05/03/2015 - [] D -- C:\ProgramData\Adobe O43 - CFD: 04/01/2015 - [] D -- C:\ProgramData\Apple O43 - CFD: 26/07/2012 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 14/03/2015 - [0] D -- C:\ProgramData\Ashampoo O43 - CFD: 01/03/2015 - [] D -- C:\ProgramData\AVS4YOU O43 - CFD: 02/02/2015 - [] D -- C:\ProgramData\Baidu O43 - CFD: 31/12/2014 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 14/01/2015 - [] D -- C:\ProgramData\Corel O43 - CFD: 10/01/2016 - [] D -- C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc O43 - CFD: 26/07/2012 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 26/07/2012 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 03/02/2015 - [] D -- C:\ProgramData\E-Soft O43 - CFD: 04/02/2015 - [] D -- C:\ProgramData\EpicScale =>PUP.Optional.EpicScale O43 - CFD: 25/03/2015 - [] D -- C:\ProgramData\FaceOffMax O43 - CFD: 15/04/2015 - [] D -- C:\ProgramData\FaceOnBody O43 - CFD: 25/03/2015 - [] D -- C:\ProgramData\FOMShare O43 - CFD: 04/09/2015 - [] D -- C:\ProgramData\Freemake O43 - CFD: 01/01/2015 - [0] D -- C:\ProgramData\IDM O43 - CFD: 03/02/2015 - [] D -- C:\ProgramData\InstallMate =>PUP.Optional.Tarma O43 - CFD: 12/02/2015 - [] D -- C:\ProgramData\KONAMI O43 - CFD: 11/05/2015 - [] D -- C:\ProgramData\Lavasoft O43 - CFD: 23/01/2015 - [] D -- C:\ProgramData\LightC O43 - CFD: 27/02/2015 - [] D -- C:\ProgramData\McAfee O43 - CFD: 31/12/2014 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 17/04/2015 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 14/01/2015 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 31/12/2014 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 04/02/2015 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 11/01/2015 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 31/12/2014 - [] D -- C:\ProgramData\PRICache O43 - CFD: 05/03/2015 - [] D -- C:\ProgramData\regid.1986-12.com.adobe O43 - CFD: 26/07/2012 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 10/01/2015 - [] D -- C:\ProgramData\regid.1995-08.com.techsmith O43 - CFD: 24/12/2015 - [] D -- C:\ProgramData\Skype O43 - CFD: 14/03/2015 - [] D -- C:\ProgramData\Sony O43 - CFD: 26/07/2012 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 10/01/2015 - [] D -- C:\ProgramData\TechSmith O43 - CFD: 17/01/2015 - [0] D -- C:\ProgramData\TEMP O43 - CFD: 26/07/2012 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 12/04/2015 - [] D -- C:\ProgramData\Trymedia =>PUP.Optional.Trymedia O43 - CFD: 05/03/2015 - [] D -- C:\Program Files\Common Files\Adobe O43 - CFD: 04/03/2015 - [] D -- C:\Program Files\Common Files\Adobe Systems Shared O43 - CFD: 04/01/2015 - [] D -- C:\Program Files\Common Files\Apple O43 - CFD: 01/03/2015 - [] D -- C:\Program Files\Common Files\AVSMedia O43 - CFD: 10/01/2016 - [] D -- C:\Program Files\Common Files\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc O43 - CFD: 04/09/2015 - [] D -- C:\Program Files\Common Files\Freemake Shared O43 - CFD: 02/01/2015 - [] D -- C:\Program Files\Common Files\InstallShield O43 - CFD: 14/12/2015 - [] D -- C:\Program Files\Common Files\LENOVO O43 - CFD: 14/01/2015 - [] D -- C:\Program Files\Common Files\microsoft shared O43 - CFD: 14/01/2015 - [] D -- C:\Program Files\Common Files\Protexis O43 - CFD: 26/07/2012 - [] D -- C:\Program Files\Common Files\Services O43 - CFD: 14/12/2015 - [] D -- C:\Program Files\Common Files\Skype O43 - CFD: 26/07/2012 - [] D -- C:\Program Files\Common Files\System O43 - CFD: 10/01/2015 - [] D -- C:\Program Files\Common Files\TechSmith Shared O43 - CFD: 31/01/2015 - [] D -- C:\Program Files\Common Files\Wise Installation Wizard O43 - CFD: 12/07/2015 - [] D -- C:\Users\hako\AppData\Roaming\.mono O43 - CFD: 30/03/2015 - [] D -- C:\Users\hako\AppData\Roaming\Adobe O43 - CFD: 05/01/2015 - [] D -- C:\Users\hako\AppData\Roaming\Apple Computer O43 - CFD: 01/03/2015 - [] D -- C:\Users\hako\AppData\Roaming\AVS4YOU O43 - CFD: 31/12/2015 - [] D -- C:\Users\hako\AppData\Roaming\DMCache O43 - CFD: 25/02/2015 - [] D -- C:\Users\hako\AppData\Roaming\FaceOffMax O43 - CFD: 25/03/2015 - [] D -- C:\Users\hako\AppData\Roaming\FOMShare O43 - CFD: 05/01/2016 - [0] D -- C:\Users\hako\AppData\Roaming\Hola =>PUP.Optional.HolaSearch O43 - CFD: 30/10/2015 - [] D -- C:\Users\hako\AppData\Roaming\IDM O43 - CFD: 11/05/2015 - [] D -- C:\Users\hako\AppData\Roaming\Lavasoft O43 - CFD: 31/12/2014 - [] D -- C:\Users\hako\AppData\Roaming\Macromedia O43 - CFD: 15/12/2015 - [] SD -- C:\Users\hako\AppData\Roaming\Microsoft O43 - CFD: 04/02/2015 - [] D -- C:\Users\hako\AppData\Roaming\Mozilla O43 - CFD: 17/01/2015 - [] D -- C:\Users\hako\AppData\Roaming\ooVoo Details O43 - CFD: 06/08/2015 - [] D -- C:\Users\hako\AppData\Roaming\OpenCandy =>PUP.Optional.OpenCandy O43 - CFD: 02/02/2015 - [] D -- C:\Users\hako\AppData\Roaming\Opera Software O43 - CFD: 14/05/2015 - [] D -- C:\Users\hako\AppData\Roaming\PowerISO O43 - CFD: 01/01/2015 - [0] D -- C:\Users\hako\AppData\Roaming\Publish Providers O43 - CFD: 02/02/2015 - [] D -- C:\Users\hako\AppData\Roaming\RHEng =>PUP.Optional.Conduit O43 - CFD: 04/09/2015 - [] D -- C:\Users\hako\AppData\Roaming\RPEng =>PUP.Optional.Generic O43 - CFD: 08/01/2016 - [] D -- C:\Users\hako\AppData\Roaming\Skype O43 - CFD: 15/01/2015 - [] D -- C:\Users\hako\AppData\Roaming\Sony O43 - CFD: 26/04/2015 - [] D -- C:\Users\hako\AppData\Roaming\Spintires O43 - CFD: 10/01/2015 - [] D -- C:\Users\hako\AppData\Roaming\TechSmith O43 - CFD: 05/01/2015 - [] D -- C:\Users\hako\AppData\Roaming\Unity O43 - CFD: 30/12/2015 - [] D -- C:\Users\hako\AppData\Roaming\uTorrent O43 - CFD: 07/01/2016 - [] D -- C:\Users\hako\AppData\Roaming\vlc O43 - CFD: 01/01/2015 - [] D -- C:\Users\hako\AppData\Roaming\WinRAR O43 - CFD: 03/08/2015 - [] D -- C:\Users\hako\AppData\Roaming\XnRetro O43 - CFD: 10/01/2016 - [] D -- C:\Users\hako\AppData\Roaming\ZHP O43 - CFD: 24/06/2015 - [] D -- C:\Users\hako\AppData\Local\Adobe O43 - CFD: 04/01/2015 - [] D -- C:\Users\hako\AppData\Local\Apple O43 - CFD: 31/12/2014 - [0] SHD -- C:\Users\hako\AppData\Local\Application Data O43 - CFD: 01/01/2015 - [] D -- C:\Users\hako\AppData\Local\Ashampoo Movie Studio O43 - CFD: 27/02/2015 - [] D -- C:\Users\hako\AppData\Local\cache O43 - CFD: 04/02/2015 - [] D -- C:\Users\hako\AppData\Local\CatalinaGroup O43 - CFD: 02/01/2016 - [] D -- C:\Users\hako\AppData\Local\CrashDumps O43 - CFD: 07/12/2015 - [] D -- C:\Users\hako\AppData\Local\Diagnostics O43 - CFD: 04/09/2015 - [] D -- C:\Users\hako\AppData\Local\Downloaded Installations O43 - CFD: 16/09/2015 - [0] D -- C:\Users\hako\AppData\Local\ElevatedDiagnostics O43 - CFD: 04/09/2015 - [] D -- C:\Users\hako\AppData\Local\FreemakeVideoConverter O43 - CFD: 13/09/2015 - [] D -- C:\Users\hako\AppData\Local\Google O43 - CFD: 31/12/2014 - [0] SHD -- C:\Users\hako\AppData\Local\Historique O43 - CFD: 05/01/2016 - [] D -- C:\Users\hako\AppData\Local\Hola =>PUP.Optional.HolaSearch O43 - CFD: 14/12/2015 - [] D -- C:\Users\hako\AppData\Local\Lenovo O43 - CFD: 27/02/2015 - [] D -- C:\Users\hako\AppData\Local\Macromedia O43 - CFD: 08/12/2015 - [] D -- C:\Users\hako\AppData\Local\Microsoft O43 - CFD: 03/01/2015 - [0] D -- C:\Users\hako\AppData\Local\Microsoft Help O43 - CFD: 04/02/2015 - [] D -- C:\Users\hako\AppData\Local\Mozilla O43 - CFD: 02/02/2015 - [] D -- C:\Users\hako\AppData\Local\Opera Software O43 - CFD: 04/03/2015 - [] D -- C:\Users\hako\AppData\Local\Packages O43 - CFD: 01/01/2015 - [] D -- C:\Users\hako\AppData\Local\Programs O43 - CFD: 07/02/2015 - [] D -- C:\Users\hako\AppData\Local\SKIDROW O43 - CFD: 14/12/2015 - [0] D -- C:\Users\hako\AppData\Local\Skype O43 - CFD: 06/02/2015 - [] D -- C:\Users\hako\AppData\Local\SoftonicAssistant =>.Superfluous.Softonic O43 - CFD: 03/01/2015 - [] D -- C:\Users\hako\AppData\Local\Sony O43 - CFD: 08/05/2015 - [] D -- C:\Users\hako\AppData\Local\tango O43 - CFD: 10/01/2015 - [] D -- C:\Users\hako\AppData\Local\TechSmith O43 - CFD: 10/01/2016 - [] D -- C:\Users\hako\AppData\Local\Temp O43 - CFD: 31/12/2014 - [0] SHD -- C:\Users\hako\AppData\Local\Temporary Internet Files O43 - CFD: 05/01/2015 - [] D -- C:\Users\hako\AppData\Local\Unity O43 - CFD: 26/09/2015 - [] D -- C:\Users\hako\AppData\Local\VirtualStore O43 - CFD: 27/02/2015 - [] D -- C:\Users\hako\AppData\Local\WeeebStore O43 - CFD: 10/01/2016 - [] D -- C:\Users\hako\AppData\Local\Zemana O43 - CFD: 26/07/2012 - [] RD -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 26/07/2012 - [] RD -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 15/10/2015 - [] RD -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 01/03/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AVS4YOU O43 - CFD: 13/03/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Citrio O43 - CFD: 22/06/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter-Strike O43 - CFD: 03/02/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DJ Studio Pro O43 - CFD: 02/02/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory O43 - CFD: 02/02/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake O43 - CFD: 06/05/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameHitZone.com O43 - CFD: 08/02/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameSpy Arcade O43 - CFD: 01/03/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GISolution O43 - CFD: 25/06/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Groove Games O43 - CFD: 09/01/2015 - [0] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IGI 2 - Covert Strike O43 - CFD: 01/01/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 26/07/2012 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 07/12/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NirSoft Wireless Network Watcher O43 - CFD: 21/12/2015 - [0] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\No-IP O43 - CFD: 01/01/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sony Vegas Pro 10.0 O43 - CFD: 15/10/2015 - [] RD -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 26/07/2012 - [] RD -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 01/01/2015 - [] D -- C:\Users\hako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ Derniers fichiers créés dans Windows Prefetcher (1) - 17s O45 - LFCP:[MD5.A36894273818AC2A423E4685429DF77D] 31/12/2015 A -- C:\Windows\Prefetch\SOFTONICASSISTANT.EXE-EE5320C8.pf =>.Superfluous.Softonic ---\\ ShellIconOverlayIdentifiers (SIOI) (3) - 0s O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: IDM Shell Extension [IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files\Internet Download Manager\IDMShellExt.dll =>.Tonec Inc.® O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation ---\\ Liste des pilotes du système (52) - 21s O58 - SDL:2012/07/26 04:42:31 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\drivers\3ware.sys [85232] =>.Microsoft Windows® O58 - SDL:2012/07/26 04:42:31 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [424176] =>.Microsoft Windows® O58 - SDL:2012/07/26 04:42:31 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [298736] =>.Microsoft Windows® O58 - SDL:2012/07/26 04:42:31 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [147696] =>.Microsoft Windows® O58 - SDL:2012/07/26 04:42:31 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [67312] =>.Microsoft Windows® O58 - SDL:2012/07/26 04:42:31 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [213744] =>.Microsoft Windows® O58 - SDL:2012/07/26 04:42:31 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [22256] =>.Microsoft Windows® O58 - SDL:2012/07/26 04:42:30 A . (.PMC-Sierra, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [91888] =>.Microsoft Windows® O58 - SDL:2012/07/26 04:42:30 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [94448] =>.Microsoft Windows® O58 - SDL:2010/10/19 23:33:40 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECI.sys [41088] =>.Intel Corporation O58 - SDL:2012/07/26 04:42:33 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [56048] =>.Microsoft Windows® O58 - SDL:2012/07/26 04:42:33 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [333552] =>.Microsoft Windows® O58 - SDL:2014/11/29 01:37:06 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [115752] =>.Tonec Inc.® O58 - SDL:2014/01/29 23:12:20 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [3768320] =>.Intel Corporation O58 - SDL:2012/07/26 04:42:33 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [42224] =>.Microsoft Windows® O58 - SDL:2012/07/26 04:42:33 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [93424] =>.Microsoft Windows® O58 - SDL:2012/07/26 04:42:33 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [78576] =>.Microsoft Windows® O58 - SDL:2012/07/26 04:42:33 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [100592] =>.Microsoft Windows® O58 - SDL:2012/07/26 04:42:33 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sss.sys [68848] =>.Microsoft Windows® O58 - SDL:2012/07/26 04:42:33 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [45296] =>.Microsoft Windows® O58 - SDL:2012/07/26 04:42:15 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [283888] =>.Microsoft Windows® O58 - SDL:2012/07/26 04:42:15 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\drivers\mvumis.sys [59120] =>.Microsoft Windows® O58 - SDL:2012/07/26 04:42:15 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [45808] =>.Microsoft Windows® O58 - SDL:2012/07/26 04:42:15 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [120048] =>.Microsoft Windows® O58 - SDL:2012/07/26 04:42:15 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [141552] =>.Microsoft Windows® O58 - SDL:2015/09/21 13:54:10 A . (.Resplendence Software Projects Sp. - Resplendence WhySoSlow Monitoring Driver.) -- C:\Windows\System32\drivers\rspWhy32.sys [24832] {37535DB27CD81B479E3DB1E4E16A30E7} =>.Resplendence Software Projects Sp. O58 - SDL:2012/07/25 23:49:40 A . (.Realtek - Pilote Realtek 8101E/8168/8169 NDIS 6.30 32.) -- C:\Windows\System32\drivers\Rt630x86.sys [495104] =>.Realtek O58 - SDL:2012/07/26 07:52:42 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2012/07/26 04:42:15 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [41200] =>.Microsoft Windows® O58 - SDL:2012/07/26 04:42:16 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [79088] =>.Microsoft Windows® O58 - SDL:2012/07/26 04:42:15 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\Windows\System32\drivers\stexstor.sys [26352] =>.Microsoft Windows® O58 - SDL:2014/11/05 14:16:26 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\Windows\System32\drivers\tap0901.sys [23040] =>.The OpenVPN Project O58 - SDL:2012/07/26 04:42:18 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [18160] =>.Microsoft Windows® O58 - SDL:2012/07/26 04:42:19 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [155376] =>.Microsoft Windows® O58 - SDL:2012/07/26 04:42:19 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\drivers\VSTXRAID.SYS [285424] =>.Microsoft Windows® O58 - SDL:2016/01/10 13:47:04 A . (.Zemana Ltd. - ZAM.) -- C:\Windows\System32\drivers\zam32.sys [179448] =>.Zemana Ltd.® O58 - SDL:2016/01/10 13:47:03 A . (.Zemana Ltd. - ZAM.) -- C:\Windows\System32\drivers\zamguard32.sys [179448] =>.Zemana Ltd.® O58 - SDL:2012/07/25 23:52:51 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:2012/07/25 23:52:51 A . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:2012/07/25 23:52:51 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:2012/07/25 23:52:52 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:2012/07/25 23:52:52 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:2012/07/25 23:52:54 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:2012/07/25 23:52:54 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:2012/07/25 23:52:54 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:2012/07/25 23:52:54 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:2012/07/25 23:52:54 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:2012/07/25 23:52:51 A . (...) -- C:\Windows\System32\NTIO.SYS [33968] O58 - SDL:2012/07/25 23:52:51 A . (...) -- C:\Windows\System32\NTIO404.SYS [34688] O58 - SDL:2012/07/25 23:52:51 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:2012/07/25 23:52:51 A . (...) -- C:\Windows\System32\NTIO412.SYS [35552] O58 - SDL:2012/07/25 23:52:51 A . (...) -- C:\Windows\System32\NTIO804.SYS [34688] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (7) - 332s O61 - LFC: 2016/01/05 16:47:18 A . (..) -- C:\Users\hako\AppData\Local\Hola\firefox_hola\app\vlc\libvlc.dll [134675] O61 - LFC: 2016/01/05 16:47:19 A . (..) -- C:\Users\hako\AppData\Local\Hola\firefox_hola\app\vlc\libvlccore.dll [2007571] O61 - LFC: 2016/01/05 16:47:45 A . (..) -- C:\Users\hako\AppData\Local\Hola\firefox_hola\app\vlc\plugins\video_output\libdirectdraw_plugin.dll [70675] O61 - LFC: 2016/01/05 16:47:44 A . (..) -- C:\Users\hako\AppData\Local\Hola\firefox_hola\app\vlc\plugins\misc\liblogger_plugin.dll [66067] O61 - LFC: 2016/01/05 16:47:21 A . (..) -- C:\Users\hako\AppData\Local\Hola\firefox_hola\app\vlc\plugins\codec\libavcodec_plugin.dll [8162835] O61 - LFC: 2016/01/05 16:47:19 A . (..) -- C:\Users\hako\AppData\Local\Hola\firefox_hola\app\vlc\plugins\access\libhttp_plugin.dll [121363] O61 - LFC: 2016/01/10 11:25:30 A . (..) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\User Data\ev_hashes_whitelist.bin [674082] ---\\ Associations Shell Spawning (11) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ Menu de démarrage Internet (16) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- firefox.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\Launcher.exe =>.Opera Software O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software ---\\ Recherche d'infection sur les navigateurs (3) - 3s O69 - SBI: prefs.js [hako - jcjh4a7y.default] user_pref("keyword.URL", "http://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfQ4MUgFGR1BCbVxbVQ9cFQMXdxRaWQhEDAERIlgAWA4QQ[...] =>PUP.Optional.Browser O69 - SBI: SearchScopes [HKCU] {c9ab6446-7efc-47fe-966c-dc54324eff9f} - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKLM] {c9ab6446-7efc-47fe-966c-dc54324eff9f} - (@ieframe.dll,-12512) - http://www.bing.com/ ---\\ Enumère les services démarrés par Svchost (35) - 2s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [168960] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [115200] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [115200] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236544] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1285632] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [684032] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [87552] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [302080] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [81920] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [49152] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [392192] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [245760] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2601472] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [630272] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [506368] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [741376] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [20992] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [52224] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [115200] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [89088] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [944640] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [166400] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [60928] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [105472] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [170496] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [249344] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [59392] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [73216] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [33280] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [1532928] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [154112] =>.Microsoft Corporation O83 - Search Svchost Services: SystemEventsBroker (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) -- C:\Windows\System32\SystemEventsBrokerServer.dll [117760] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [161792] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [138752] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [152064] =>.Microsoft Corporation ---\\ Liste des exceptions du parefeu Windows (26) - 16s O87 - FAEL: "{926BF4C3-808D-4B09-9FD2-5D2F1B591E66}" [Out-None-P17-TRUE] .(...) -- C:\Users\hako\AppData\Local\Temp\nssA7F4.tmp\CnetInstaller-10584680.exe (.not file.) O87 - FAEL: "{E86DE3F3-66B5-4F4A-BFDE-933809B5CA91}" [In-None-P17-TRUE] .(...) -- C:\Users\hako\AppData\Local\Temp\nssA7F4.tmp\CnetInstaller-10584680.exe (.not file.) O87 - FAEL: "{BEE35E05-1587-4752-AEBB-DCEE7673FD96}" [In-None-P6-TRUE] .(.IGN Entertainment, Inc. - GameSpy Arcade.) -- C:\Program Files\GameSpy Arcade\Aphex.exe O87 - FAEL: "{484D49AE-1768-40AB-917F-1A38D35B2EFA}" [In-None-P17-TRUE] .(.IGN Entertainment, Inc. - GameSpy Arcade.) -- C:\Program Files\GameSpy Arcade\Aphex.exe O87 - FAEL: "TCP Query User{E5AEFA3B-D953-4B9B-9243-59605528404E}C:\program files\ubisoft\assassin's creed liberation hd\ac3lhd_32.exe" [In-None-P6-TRUE] .(...) -- C:\program files\ubisoft\assassin's creed liberation hd\ac3lhd_32.exe {11211489E6814A0B9E53465021BAA1A6FCEF} O87 - FAEL: "UDP Query User{6E397133-97A8-4638-8D0E-AD1D636C6342}C:\program files\ubisoft\assassin's creed liberation hd\ac3lhd_32.exe" [In-None-P17-TRUE] .(...) -- C:\program files\ubisoft\assassin's creed liberation hd\ac3lhd_32.exe {11211489E6814A0B9E53465021BAA1A6FCEF} O87 - FAEL: "TCP Query User{D12241C1-E3C4-4D2A-8AAC-96F69358832C}C:\users\hako\appdata\local\catalinagroup\citrio\application\citrio.exe" [In-None-P6-TRUE] .(.CatalinaGroup Ltd. - Citrio.) -- C:\users\hako\appdata\local\catalinagroup\citrio\application\citrio.exe {1855136D47C1A483} O87 - FAEL: "UDP Query User{27B31A43-4491-4492-8B27-F20DD7A08E5E}C:\users\hako\appdata\local\catalinagroup\citrio\application\citrio.exe" [In-None-P17-TRUE] .(.CatalinaGroup Ltd. - Citrio.) -- C:\users\hako\appdata\local\catalinagroup\citrio\application\citrio.exe {1855136D47C1A483} O87 - FAEL: "{995D4EEF-3FAC-475F-B29E-E8F28F71C950}" [In-None-P6-TRUE] .(...) -- C:\Program Files\EA GAMES\Battlefield 2\BF2.exe O87 - FAEL: "{DD58745B-DE76-47A5-A348-1160404D6BBD}" [In-None-P17-TRUE] .(...) -- C:\Program Files\EA GAMES\Battlefield 2\BF2.exe O87 - FAEL: "TCP Query User{86FBE160-0FC5-40EA-93D6-72EC2F5B6DFF}C:\program files\ea games\battlefield 2\bf2.exe" [In-None-P6-TRUE] .(...) -- C:\program files\ea games\battlefield 2\bf2.exe O87 - FAEL: "UDP Query User{F7C9AE9F-8B9C-4706-AD51-63765BCEDE68}C:\program files\ea games\battlefield 2\bf2.exe" [In-None-P17-TRUE] .(...) -- C:\program files\ea games\battlefield 2\bf2.exe O87 - FAEL: "TCP Query User{AEB6F537-46A2-4531-A46A-D014EDC552A1}C:\users\hako\appdata\roaming\utorrent\updates\3.4.2_38913.exe" [In-None-P6-TRUE] .(...) -- C:\users\hako\appdata\roaming\utorrent\updates\3.4.2_38913.exe (.not file.) O87 - FAEL: "UDP Query User{EDC02461-E884-4F54-A4B0-6B82C703CCE8}C:\users\hako\appdata\roaming\utorrent\updates\3.4.2_38913.exe" [In-None-P17-TRUE] .(...) -- C:\users\hako\appdata\roaming\utorrent\updates\3.4.2_38913.exe (.not file.) O87 - FAEL: "TCP Query User{82FFC69E-341A-44A9-A172-316079794CB1}C:\users\hako\appdata\roaming\utorrent\updates\3.4.3_40298.exe" [In-None-P6-TRUE] .(...) -- C:\users\hako\appdata\roaming\utorrent\updates\3.4.3_40298.exe (.not file.) O87 - FAEL: "UDP Query User{68779BC7-44AA-4430-B779-B3766453A4CA}C:\users\hako\appdata\roaming\utorrent\updates\3.4.3_40298.exe" [In-None-P17-TRUE] .(...) -- C:\users\hako\appdata\roaming\utorrent\updates\3.4.3_40298.exe (.not file.) O87 - FAEL: "TCP Query User{2FB2BD65-1C9B-4F1B-B665-F7291076052D}C:\users\hako\desktop\call of duty 1\call of duty\codmp.exe" [In-None-P6-TRUE] .(...) -- C:\users\hako\desktop\call of duty 1\call of duty\codmp.exe (.not file.) O87 - FAEL: "UDP Query User{D58C53C9-6CBC-465F-A1DB-E0113DFF190D}C:\users\hako\desktop\call of duty 1\call of duty\codmp.exe" [In-None-P17-TRUE] .(...) -- C:\users\hako\desktop\call of duty 1\call of duty\codmp.exe (.not file.) O87 - FAEL: "TCP Query User{71F41B4A-A17B-4036-BBA4-E15F340FD94D}C:\users\hako\desktop\games\call of duty 1\call of duty\codmp.exe" [In-None-P6-TRUE] .(...) -- C:\users\hako\desktop\games\call of duty 1\call of duty\codmp.exe O87 - FAEL: "UDP Query User{714C4D44-D7B3-4B13-9A9F-CCDC27092888}C:\users\hako\desktop\games\call of duty 1\call of duty\codmp.exe" [In-None-P17-TRUE] .(...) -- C:\users\hako\desktop\games\call of duty 1\call of duty\codmp.exe O87 - FAEL: "TCP Query User{59975DE6-00C5-463D-AE0C-70C16EF664B8}C:\users\hako\appdata\roaming\utorrent\updates\3.4.5_41162.exe" [In-None-P6-TRUE] .(...) -- C:\users\hako\appdata\roaming\utorrent\updates\3.4.5_41162.exe (.not file.) O87 - FAEL: "UDP Query User{A9A11550-60A1-49D6-AF88-CF3BBF5C671F}C:\users\hako\appdata\roaming\utorrent\updates\3.4.5_41162.exe" [In-None-P17-TRUE] .(...) -- C:\users\hako\appdata\roaming\utorrent\updates\3.4.5_41162.exe (.not file.) O87 - FAEL: "{13850C1F-FB4A-466E-A790-04263B319D0A}" [In-None-P6-TRUE] .(.mobogenie.com - downloader.) -- C:\Users\hako\AppData\Local\Temp\nsw664C.tmpMoboInstall\mobogenieP2sp.exe =>PUP.Optional.Mobogenie O87 - FAEL: "{FA54467D-B620-413F-AA32-C2E7DDFADAF6}" [In-None-P17-TRUE] .(.mobogenie.com - downloader.) -- C:\Users\hako\AppData\Local\Temp\nsw664C.tmpMoboInstall\mobogenieP2sp.exe =>PUP.Optional.Mobogenie O87 - FAEL: "{70C47DE3-A9AC-4B33-9BAA-184184DF8B3A}" [In-None-P17-TRUE] .(.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe {1855136D47C1A483} O87 - FAEL: "{A428E056-6B9C-45C9-9281-E983B198A4F7}" [Out-None-P17-TRUE] .(.CatalinaGroup Ltd. - Citrio.) -- C:\Users\hako\AppData\Local\CatalinaGroup\Citrio\Application\citrio.exe {1855136D47C1A483} ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (12) - 15s SS - Demand [04/03/2015] [ 72704] Adobe LM Service (Adobe LM Service) . (.Adobe Systems.) - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe =>.Adobe Systems SS - Demand [29/12/2015] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SS - Demand [29/01/2014] [ 279000] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\System32\IntelCpHeciSvc.exe =>.Intel Corporation - pGFX® SR - Auto [02/09/2015] [ 108032] Freemake Improver (Freemake Improver) . (.Freemake.) - C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe =>.Freemake SS - Auto [31/08/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [31/08/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [08/06/2015] [ 509424] Lenovo EasyPlus Hotspot (Lenovo EasyPlus Hotspot) . (.Lenovo.) - C:\Program Files\Common Files\LENOVO\easyplussdk\bin\EPHotspot.exe =>.LENOVO® SS - Demand [03/10/2015] [ 148136] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Auto [13/09/2013] [ 277360] Protexis Licensing V2 (PSI_SVC_2) . (.arvato digital services llc.) - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe {6BF639C6331003F6B9D1E5E029135BF4} =>.arvato digital services llc SS - Auto [09/07/2015] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl® SR - Auto [25/12/2015] [12783848] ZAM Controller Service (ZAMSvc) . (.Zemana Ltd..) - C:\Program Files\Zemana AntiMalware\ZAM.exe =>.Zemana Ltd.® ---\\ Scan Additionnel (30) - 0s HKLM\SOFTWARE\GreatFind =>PUP.Optional.GreatFind HKLM\SYSTEM\CurrentControlSet\Services\Service Mgr GreatFind =>PUP.Optional.GreatFind HKLM\SYSTEM\CurrentControlSet\Services\Update Mgr GreatFind =>PUP.Optional.GreatFind C:\Program Files\Great Find\Extensions\1cc2bb80-20ab-43e5-b958-432d72b546ca.dll =>PUP.Optional.GreatFind HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1cc2bb80-20ab-43e5-b958-432d72b546ca} =>PUP.Optional.GreatFind C:\Users\hako\AppData\Local\SoftonicAssistant\SoftonicAssistant.exe =>.Superfluous.Softonic C:\ProgramData\EpicScale\0\EpicScale.exe =>PUP.Optional.EpicScale HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Great Find =>PUP.Optional.GreatFind HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Great Find =>PUP.Optional.GreatFind HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\EpicScaleApp =>PUP.Optional.EpicScale HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SoftonicAssistant =>.Superfluous.Softonic HKLM\SOFTWARE\a746f9db-1370-33f3-d1ca-7a457fd9e32b =>PUP.Optional.CrossRider HKLM\SOFTWARE\Hola =>PUP.Optional.HolaSearch HKCU\SOFTWARE\EpicScale =>PUP.Optional.EpicScale HKCU\SOFTWARE\ICSW1.11 =>Adware.InstallCore HKCU\SOFTWARE\Softonic =>.Superfluous.Softonic HKCU\SOFTWARE\System Optimizer =>PUP.Optional.SystemOptimizer C:\Program Files\Great Find =>PUP.Optional.GreatFind C:\Program Files\Hola =>PUP.Optional.HolaSearch C:\ProgramData\EpicScale =>PUP.Optional.EpicScale C:\ProgramData\InstallMate =>PUP.Optional.Tarma C:\ProgramData\Trymedia =>PUP.Optional.Trymedia C:\Users\hako\AppData\Roaming\Hola =>PUP.Optional.HolaSearch C:\Users\hako\AppData\Roaming\OpenCandy =>PUP.Optional.OpenCandy C:\Users\hako\AppData\Roaming\RHEng =>PUP.Optional.Conduit C:\Users\hako\AppData\Roaming\RPEng =>PUP.Optional.Generic C:\Users\hako\AppData\Local\Hola =>PUP.Optional.HolaSearch C:\Users\hako\AppData\Local\SoftonicAssistant =>.Superfluous.Softonic C:\Windows\Prefetch\SOFTONICASSISTANT.EXE-EE5320C8.pf =>.Superfluous.Softonic C:\Users\hako\AppData\Local\Temp\nsw664C.tmpMoboInstall\mobogenieP2sp.exe =>PUP.Optional.Mobogenie ---\\ Récapitulatif des éléments trouvés sur votre station (14) - 0s http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.GreatFind http://www.nicolascoolman.fr/?p=4664 =>.Superfluous.Softonic http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.EpicScale http://www.nicolascoolman.fr/?p=180 =>PUP.Optional.CrossRider http://www.nicolascoolman.fr/?p=1161 =>PUP.Optional.HolaSearch http://www.nicolascoolman.fr/?p=279 =>Adware.InstallCore http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.SystemOptimizer http://www.nicolascoolman.fr/?p=259 =>PUP.Optional.Tarma http://www.nicolascoolman.fr/?p=564 =>PUP.Optional.Trymedia http://www.nicolascoolman.fr/?p=197 =>PUP.Optional.OpenCandy http://www.nicolascoolman.fr/?p=210 =>PUP.Optional.Conduit http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Generic http://www.nicolascoolman.fr/?p=546 =>PUP.Optional.Browser http://www.nicolascoolman.fr/?p=215 =>PUP.Optional.Mobogenie ~ End of the scan, 21693 items in 00h22mn06s (893)(0)