~ ZHPDiag v2016.5.29.100 Par Nicolas Coolman (2016/05/29) ~ Démarré par Stéphane (Administrator) (2016/05/31 23:30:41) ~ Site: http://www.nicolascoolman.com ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\Stéphane\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Stéphane\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) , 32-bit Service Pack 1 (Build 7601) ---\\ Navigateurs Internet (3) - 0s GCIE: Google Chrome v50.0.2661.102 MFIE: Mozilla Firefox 46.0.1 (x86 fr) MSIE: Internet Explorer v11.0.9600.17239 ---\\ Informations sur les produits Windows (4) - 5s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Logiciels de protection (2) - 1s Malwarebytes Anti-Malware version 2.2.1.1043 Trend Micro Titanium v10.0 ---\\ Logiciels d'optimisation (1) - 1s CCleaner v4.15 ---\\ Surveillance de Logiciels (2) - 1s Adobe Flash Player 21 NPAPI Adobe Acrobat Reader DC - Français ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 6 Model 15 Stepping 6, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 3145.016 MB (44% free) System Restore: Activé (Enable) System drive C: has 64 GB () free of 252 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: STÉPHANE-PC ~ User Name: Stéphane ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 5s ~ Drive C: has 64 GB free of 252 GB (System) ~ Drive D: has 54 GB free of 215 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (25) - 1s [MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - 25/02/2011 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2616320] =>.Microsoft Corporation [MD5.51138BEEA3E2C21EC44D0932C71762A8] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] =>.Microsoft Corporation [MD5.B5C5DCAD3899512020D135600129D665] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [96256] =>.Microsoft Corporation [MD5.B945BAA81B4805AD6BDDF4D026DCFB47] - 25/07/2014 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [1792512] =>.Microsoft Corporation [MD5.998507B046BA314CE8245364C686FA67] - 04/03/2014 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [304128] =>.Microsoft Corporation [MD5.E3AE23569749DE12D45BA3B489A036AE] - 20/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [193536] =>.Microsoft Corporation [MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 03/03/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [270336] =>.Microsoft Corporation [MD5.129F80D7868E30DF3E3DE33A1D3132B4] - 20/11/2010 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation [MD5.D0B388DA1D111A34366E04EB4A5DD156] - 30/05/2014 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [338944] =>.Microsoft Corporation [MD5.338C86357871C167A96AB976519BF59E] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [21584] =>.Microsoft Windows® [MD5.77EA11B065E0A8AB902D78145CA51E10] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70656] =>.Microsoft Corporation [MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - 20/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [108544] =>.Microsoft Corporation [MD5.F024449C97EC1E464AAFFDA18593DB88] - 20/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [78336] =>.Microsoft Corporation [MD5.9036377B8A6C15DC2EEC53E489D159B5] - 20/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [108544] =>.Microsoft Corporation [MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [80896] =>.Microsoft Corporation [MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [101888] =>.Microsoft Corporation [MD5.5D16C921E3671636C0EBA3BBAAC5FD25] - 27/04/2011 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [123904] =>.Microsoft Corporation [MD5.280122DDCF04B378EDD1AD54D71C1E54] - 20/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [187904] =>.Microsoft Corporation [MD5.C8DFF8D07755A66C7A4A738930F0FEAC] - 24/01/2014 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1212352] =>.Microsoft Windows® [MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [79360] =>.Microsoft Corporation [MD5.D9F91EAFEC2815365CBE6D167E4E332A] - 14/07/2009 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [78848] =>.Microsoft Corporation [MD5.B973FCFC50DC1434E1970A146F7E3885] - 20/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [133632] =>.Microsoft Corporation [MD5.3E21C083B8A01CB70BA1F09303010FCE] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [71168] =>.Microsoft Corporation [MD5.B459575348C20E8121D6039DA063C704] - 20/11/2010 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [74752] =>.Microsoft Corporation [MD5.F497F67932C6FA693D7DE2780631CFE7] - 20/11/2010 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [245632] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (11) - 1s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® O23 - Service: Trend Micro Solution Platform (Amsp) . (.Trend Micro Inc. - Trend Micro Anti-Malware Solution Platform.) - C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe =>.Trend Micro, Inc.® O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation - NVIDIA GeForce Experience Service.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe =>.NVIDIA Corporation® O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: Mise à jour automatique - Index Education (MajIndexEducationService) . (.Index Education - .) - C:\Program Files\Index Education\Mise a jour automatique\ServiceMiseAJourIndex.exe =>.INDEX EDUCATION® O23 - Service: Nero BackItUp Scheduler 4.0 (Nero BackItUp Scheduler 4.0) . (.Nero AG - Nero BackItUp.) - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe =>.Nero AG® O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe =>.NVIDIA Corporation® O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe =>.NVIDIA Corporation® O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 280.2.) - C:\Windows\System32\nvvsvc.exe =>.NVIDIA Corporation® O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl® O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe =>.NVIDIA Corporation® ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (16) - 24s SR - Auto [22/04/2016] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® SS - Demand [14/05/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [13/07/2015] [ 325832] Trend Micro Solution Platform (Amsp) . (.Trend Micro Inc..) - C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe =>.Trend Micro, Inc.® SR - Auto [13/12/2014] [ 915600] NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe =>.NVIDIA Corporation® SS - Auto [30/08/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [30/08/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Auto [01/10/2015] [ 3024576] Mise à jour automatique - Index Education (MajIndexEducationService) . (.Index Education.) - C:\Program Files\Index Education\Mise a jour automatique\ServiceMiseAJourIndex.exe =>.INDEX EDUCATION® SS - Demand [04/05/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Auto [17/04/2009] [ 935208] Nero BackItUp Scheduler 4.0 (Nero BackItUp Scheduler 4.0) . (.Nero AG.) - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe =>.Nero AG® SR - Auto [13/12/2014] [ 1701520] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe =>.NVIDIA Corporation® SS - Auto [13/12/2014] [18186896] NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe =>.NVIDIA Corporation® SR - Auto [03/08/2011] [ 599144] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\System32\nvvsvc.exe =>.NVIDIA Corporation® SS - Auto [03/04/2014] [ 315008] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl® SR - Auto [03/08/2011] [ 379496] NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe =>.NVIDIA Corporation® SS - Demand [16/11/2015] [ 104248] Wondershare Driver Install Service (WsDrvInst) . (.Wondershare.) - C:\Program Files\Wondershare\MobileTrans\DriverInstall.exe =>.Shenzhen Wondershare Information Technology Co., Ltd.® ---\\ Tâches planifiées en automatique (16) - 5s [MD5.DE7BC28EAE6A62BC35754D1DCA4ECF38] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1107672] (.Activate.) =>.Adobe Systems, Incorporated® [MD5.6A050671F2C76FB48131F12786802807] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [269504] (.Activate.) =>.Adobe Systems Incorporated® [MD5.11543DEB4316B9DBB42999C83495838F] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [4624152] (.Activate.) =>.Piriform Ltd® [MD5.8F65212D0E2EFEDB670831626F531118] [APT] [ESTsoft RunAsStdUser 38238906Task] (.ESTsoft Corp..) -- C:\Program Files\ESTsoft\ALZip\ALZip.exe [4292440] (.Activate.) =>.ESTsoft Corp.® [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] (.Activate.) =>.Google Inc® [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] (.Activate.) =>.Google Inc® [MD5.04BC4EBE43A015D61A73139105F88CE5] [APT] [{3CD68555-E0CF-4780-A47B-6E9CF54740E0}] (.Nero AG.) -- C:\Program Files\Common Files\Nero\Nero ProductInstaller 4\SetupX.exe [5690664] (.Activate.) =>.Nero AG® O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated® O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1054] =>.Google Inc® O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1058] =>.Google Inc® O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [3874] =>.Adobe Systems, Incorporated® O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3940] =>.Adobe Systems Incorporated® O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2778] =>.Piriform Ltd® O39 - APT: ESTsoft RunAsStdUser 38238906Task - (.ESTsoft Corp..) -- C:\Windows\System32\Tasks\ESTsoft RunAsStdUser 38238906Task [3236] =>.ESTsoft Corp.® O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3802] =>.Google Inc® O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4054] =>.Google Inc® ---\\ Processus lancés (30) - 2s [MD5.9BF7E58D9113CE15CF4F1E1B18CEFF83] - (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) -- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [379496] [PID.844] =>.NVIDIA Corporation® [MD5.6EB282FDF21CDDD01FCC8B4D3B42F662] - (.Trend Micro Inc. - Trend Micro Anti-Malware Solution Platform.) -- C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe [325832] [PID.1576] =>.Trend Micro, Inc.® [MD5.259224949E8A148E49495EC3D67AF50C] - (.Index Education - .) -- C:\Program Files\Index Education\Mise a jour automatique\ServiceMiseAJourIndex.exe [3024576] [PID.1624] =>.INDEX EDUCATION® [MD5.63FC4303005532D7C78C36869517B553] - (.Trend Micro Inc. - Trend Micro Client Session Agent Monitor.) -- C:\Program Files\Trend Micro\UniClient\UiFrmwrk\uiWatchDog.exe [166448] [PID.1632] =>.Trend Micro, Inc.® [MD5.1EF052B9C9C4E9E76D4D3AC90443AC4A] - (.Trend Micro Inc. - Trend Micro Anti-Malware Solution Platform.) -- C:\Program Files\Trend Micro\AMSP\coreFrameworkHost.exe [189336] [PID.1688] =>.Trend Micro, Inc.® [MD5.36114214BF8D7C464D1E92E4EB6B2DD3] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.1852] =>.Adobe Systems, Incorporated® [MD5.94D7676DAA070CA86D10852896E44F43] - (.NVIDIA Corporation - NVIDIA GeForce Experience Service.) -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [915600] [PID.1960] =>.NVIDIA Corporation® [MD5.B90E093E7A7250906F1054418B5339C0] - (.Nero AG - Nero BackItUp.) -- C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe [935208] [PID.2028] =>.Nero AG® [MD5.064DDEC72C818AB8881B607A3836E265] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1701520] [PID.532] =>.NVIDIA Corporation® [MD5.E871D9AD7FDDF35E391C0C507D9F0F31] - (.Trend Micro Inc. - Platinum Host Service.) -- C:\Program Files\Trend Micro\Titanium\plugin\Pt\PtSvcHost.exe [837120] [PID.1988] =>.Trend Micro, Inc.® [MD5.71179163C9E60E261667E15B49C7AA26] - (.Trend Micro Inc. - Platinum Watch Dog.) -- C:\Program Files\Trend Micro\Titanium\plugin\Pt\PtWatchDog.exe [414208] [PID.600] =>.Trend Micro, Inc.® [MD5.56FE3C885B0901601549E23E7A435984] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files\Google\Update\1.3.30.3\GoogleCrashHandler.exe [250008] [PID.2476] =>.Google Inc® [MD5.E828476E1B971572D5D4109D743291B5] - (.Trend Micro Inc. - Client Session Agent.) -- C:\Program Files\Trend Micro\UniClient\UiFrmwrk\uiSeAgnt.exe [1174800] [PID.2296] =>.Trend Micro, Inc.® [MD5.2026EB1400E955E2D8214211EF9C8880] - (.Trend Micro Inc. - Trend Micro Client Main Console.) -- C:\Program Files\Trend Micro\Titanium\UIFramework\uiWinMgr.exe [1543040] [PID.4928] =>.Trend Micro, Inc.® [MD5.455927608C21945849E1A3E35E36671F] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [881304] [PID.1944] =>.Google Inc® [MD5.455927608C21945849E1A3E35E36671F] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [881304] [PID.5700] =>.Google Inc® [MD5.455927608C21945849E1A3E35E36671F] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [881304] [PID.2072] =>.Google Inc® [MD5.455927608C21945849E1A3E35E36671F] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [881304] [PID.5168] =>.Google Inc® [MD5.455927608C21945849E1A3E35E36671F] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [881304] [PID.3800] =>.Google Inc® [MD5.455927608C21945849E1A3E35E36671F] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [881304] [PID.5076] =>.Google Inc® [MD5.455927608C21945849E1A3E35E36671F] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [881304] [PID.2704] =>.Google Inc® [MD5.455927608C21945849E1A3E35E36671F] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [881304] [PID.2732] =>.Google Inc® [MD5.455927608C21945849E1A3E35E36671F] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [881304] [PID.2904] =>.Google Inc® [MD5.455927608C21945849E1A3E35E36671F] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [881304] [PID.4900] =>.Google Inc® [MD5.455927608C21945849E1A3E35E36671F] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [881304] [PID.1108] =>.Google Inc® [MD5.455927608C21945849E1A3E35E36671F] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [881304] [PID.4448] =>.Google Inc® [MD5.26DB28B32E8D2F57CB5065A4A053801A] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 280.2.) -- C:\Windows\System32\nvvsvc.exe [599144] [PID.2252] =>.NVIDIA Corporation® [MD5.1D70198EB53348374F211BEB62F4F8DC] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [812648] [PID.2248] =>.NVIDIA Corporation® [MD5.26DB28B32E8D2F57CB5065A4A053801A] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 280.2.) -- C:\Windows\System32\nvvsvc.exe [599144] [PID.5184] =>.NVIDIA Corporation® [MD5.2D5C8C564EBE3BCAA7B8B10DCCE38799] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Stéphane\Desktop\ZHPDiag3.exe [2211840] [PID.5852] =>.Nicolas Coolman ---\\ Google Chrome, Démarrage,Recherche,Extensions (14) - 1s G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://laposte.net/ G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.fr G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] __MSG_name__ =>.AdblocPlus Plugin G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [jadllphfipejncoiboilkokdjclelcoh] Change background color libero.it G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [ohhcpmplhhiiaoiddkfboafbhiknefdf] __MSG_toolbar_name__ G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (2) - 0s M0 - MFSP: prefs.js [Stéphane - vbo8h5yz.default-1409125948407] http://www.emule-island.ru/ P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_21_0_0_242.dll =>.Adobe Systems Incorporated ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (10) - 1s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Object de navigateur (BHO) (7) - 0s O2 - BHO: Trend Micro Toolbar BHO - {43C6D902-A1C5-45c9-91F6-FD9E90337E18} . (.Trend Micro Inc. - Trend Micro TrendSecure.) -- C:\Program Files\Trend Micro\Titanium\UIFramework\ToolbarIE.dll =>.Trend Micro, Inc.® O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll =>.Oracle America, Inc.® O2 - BHO: Plug-in de filtre réseau Trend Micro - {959A5673-7971-48e6-AF54-58F745AC4ABC} . (.Trend Micro Inc. - Trend Micro Osprey IE Plug-In.) -- C:\Program Files\Trend Micro\AMSP\module\20013\3.8.1222\2.0.1084\TmopIEPlg.dll =>.Trend Micro, Inc.® O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL =>.Microsoft Corporation® O2 - BHO: Protection IE Trend Micro - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} . (.Trend Micro Inc. - Trend Micro Browser Plug-In (IE).) -- C:\Program Files\Trend Micro\AMSP\module\20002\9.1.1035\9.1.1035\TmBpIe32.dll =>.Trend Micro, Inc.® O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll =>.Oracle America, Inc.® ---\\ Applications lancées au démarrage du système (14) - 1s O4 - HKLM\..\Run: [VX3000] . (.Microsoft Corporation - Microsoft LifeCam Device Application.) -- C:\Windows\vVX3000.exe =>.Microsoft Corporation® O4 - HKLM\..\Run: [BCSSync] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files\Microsoft Office\Office14\BCSSync.exe =>.Microsoft Corporation® O4 - HKLM\..\Run: [LifeCam] . (.Microsoft Corporation - LifeExp.exe.) -- C:\Program Files\Microsoft LifeCam\LifeExp.exe =>.Microsoft Corporation® O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA GeForce Experience Backend.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe =>.NVIDIA Corporation® O4 - HKLM\..\Run: [ShadowPlay] . (.NVIDIA Corporation - NVIDIA Capture Server Proxy.) -- C:\Windows\System32\nvspcap.dll =>.NVIDIA Corporation O4 - HKLM\..\Run: [Trend Micro Client Framework] . (.Trend Micro Inc. - Trend Micro Client Session Agent Monitor.) -- C:\Program Files\Trend Micro\UniClient\UiFrmwrk\UIWatchDog.exe =>.Trend Micro, Inc.® O4 - HKLM\..\Run: [Platinum] . (.Trend Micro Inc. - Platinum user session agent.) -- C:\Program Files\Trend Micro\Titanium\plugin\Pt\PtSessionAgent.exe =>.Trend Micro, Inc.® O4 - HKLM\..\Run: [Wondershare Helper Compact.exe] . (.Wondershare - Wondershare Studio.) -- C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe =>.Wondershare software CO., LIMITED® O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\spreview.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\spreview.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation ---\\ Raccourcis Global Startup (24) - 8s O4 - GS\Desktop [Administrateur]: emule - Raccourci.lnk . (.http://www.emule-project.net - eMule.) D:\Program Files\eMule\emule.exe O4 - GS\Desktop [Administrateur]: OpenOffice.lnk . (.Apache Software Foundation - OpenOffice 4.1.0.) C:\Program Files\OpenOffice 4\program\soffice.exe =>.Apache Software Foundation O4 - GS\Desktop [Administrateur]: Sine qua non.lnk . (.Patrice Rabiller - Traceur de courbes planes.) C:\Program Files\Sine qua non\sinequanon.exe =>.Patrice Rabiller O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Administrateur]: Client PRONOTE 2015.lnk . (.Index Education - .) C:\Program Files\Index Education\Pronote 2015\Réseau\Client PRONOTE.exe =>.INDEX EDUCATION® O4 - GS\TaskBar [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\Desktop [Stéphane]: emule - Raccourci.lnk . (.http://www.emule-project.net - eMule.) D:\Program Files\eMule\emule.exe O4 - GS\Desktop [Stéphane]: OpenOffice.lnk . (.Apache Software Foundation - OpenOffice 4.1.0.) C:\Program Files\OpenOffice 4\program\soffice.exe =>.Apache Software Foundation O4 - GS\Desktop [Stéphane]: Sine qua non.lnk . (.Patrice Rabiller - Traceur de courbes planes.) C:\Program Files\Sine qua non\sinequanon.exe =>.Patrice Rabiller O4 - GS\Quicklaunch [Stéphane]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\sendTo [Stéphane]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Stéphane]: Client PRONOTE 2015.lnk . (.Index Education - .) C:\Program Files\Index Education\Pronote 2015\Réseau\Client PRONOTE.exe =>.INDEX EDUCATION® O4 - GS\TaskBar [Stéphane]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Stéphane]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Stéphane]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd® O4 - GS\CommonDesktop [Public]: GeoGebra.lnk . (...) C:\Program Files\GeoGebra 4.4\GeoGebra.exe =>.International GeoGebra Institute® O4 - GS\CommonDesktop [Public]: Google Docs.lnk . (.Google - Google Drive.) C:\Program Files\Google\Drive\googledrivesync.exe =>.Google Inc® O4 - GS\CommonDesktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes - Malwarebytes Anti-Malware.) C:\Program Files\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\CommonDesktop [Public]: Nero StartSmart Essentials.lnk . (.Nero AG - Nero StartSmart 9 Application.) C:\Program Files\Nero\Nero 9\Nero StartSmart\NeroStartSmart.exe =>.Nero AG® O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc ---\\ Modification Domaine/Adresses DNS (1) - 0s O17 - HKLM\System\CCS\Services\Tcpip\..\{4BC6847C-98AC-4DBA-9AC4-6BBD40A6759C}: NameServer = 192.168.1.1 ---\\ Protocole additionnel (26) - 1s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation® O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} . (.Trend Micro Inc. - Trend Micro Browser Plug-In (IE).) -- C:\Program Files\Trend Micro\AMSP\module\20002\9.1.1035\9.1.1035\TmBpIe32.dll =>.Trend Micro, Inc.® O18 - Handler: tmop - {69FD7CE3-4604-4fe6-967C-49B9735CEE70} . (.Trend Micro Inc. - Trend Micro Osprey IE Plug-In.) -- C:\Program Files\Trend Micro\AMSP\module\20013\3.8.1222\2.0.1084\TmopIEPlg.dll =>.Trend Micro, Inc.® O18 - Handler: tmtb - {04EAF3FB-4BAC-4B5A-A37D-A1CF210A5A42} . (.Trend Micro Inc. - Trend Micro TrendSecure.) -- C:\Program Files\Trend Micro\Titanium\UIFramework\ToolbarIE.dll =>.Trend Micro, Inc.® O18 - Handler: tmtbim - {0B37915C-8B98-4B9E-80D4-464D2C830D10} . (.Trend Micro Inc. - Trend Micro TrendSecure.) -- C:\Program Files\Trend Micro\Titanium\UIFramework\ProToolbarIMRatingActiveX.dll =>.Trend Micro, Inc.® O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Logiciels installés (75) - 13s O42 - Logiciel: 001Micron USB Drive Recovery(Demo) 5.8.4.1 - (...) [HKLM] -- 001Micron USB Drive Recovery(Demo) {00B165391BC4427117582E61910F3F2673} O42 - Logiciel: 7-Zip 9.38 beta - (...) [HKLM] -- 7-Zip O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Flash Player 21 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 21 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-0804-1033-1959-001824184103} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Shockwave Player 12.1 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player =>.Adobe Systems, Inc. O42 - Logiciel: Advertising Center - (.Nero AG.) [HKLM] -- {b2ec4a38-b545-4a00-8214-13fe0e915e6d} =>.Nero AG O42 - Logiciel: ALTools Update - (.ESTsoft Corp..) [HKLM] -- ALUpdate_is1 =>.ESTsoft Corp. O42 - Logiciel: ALZip - (.ESTsoft Corp..) [HKLM] -- ALZip_is1 =>.ESTsoft Corp. O42 - Logiciel: Apowersoft Gestionnaire de Smartphone version 2.7.1 - (.APOWERSOFT LIMITED.) [HKLM] -- {4A00E3C4-2D0F-4AE7-9F2A-74870BE09EF8}_is1 =>.APOWERSOFT LIMITED O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: Easy Drive Data Recovery - (.MunSoft.) [HKLM] -- Easy Drive Data Recovery =>.MunSoft O42 - Logiciel: GeoGebra 4.4 - (.International GeoGebra Institute.) [HKLM] -- GeoGebra 4.4 =>.International GeoGebra Institute O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Drive - (.Google, Inc..) [HKLM] -- {709316AD-161C-4D5C-9AE7-0B3A822DA271} =>.Google, Inc. O42 - Logiciel: Google Earth - (.Google.) [HKLM] -- {817750FA-EC6A-485D-9901-0683AE6FFDF1} =>.Google O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect O42 - Logiciel: INDEX EDUCATION - Client PRONOTE 2015 - (.Index Education.) [HKLM] -- {B3F19908-7061-4ACA-A71C-8D0572A31714} =>.Index Education O42 - Logiciel: Java 8 Update 31 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218031F0} =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.1.1043 - (.Malwarebytes.) [HKLM] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes O42 - Logiciel: Microsoft Corporation - (.Microsoft Corporation.) [HKLM] -- {B3BC9DB1-0B0A-48B0-B86B-EA77CAA7F800} =>.Microsoft Corporation O42 - Logiciel: Microsoft LifeCam - (.Microsoft Corporation.) [HKLM] -- {5FC7AB5C-61FC-42DF-A923-5139BCF10D42} =>.Microsoft Corporation O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Mises à jour NVIDIA 16.18.9 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update =>.NVIDIA Corporation O42 - Logiciel: Mozilla Firefox 46.0.1 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 46.0.1 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} =>.Microsoft Corporation O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} =>.Microsoft Corporation O42 - Logiciel: Nero 9 Essentials - (.Nero AG.) [HKLM] -- {fd295505-e973-49b9-8651-22904fbe140a} =>.Nero AG® O42 - Logiciel: Nero BurnRights - (.Nero AG.) [HKLM] -- {7829db6f-a066-4e40-8912-cb07887c20bb} =>.Nero AG O42 - Logiciel: Nero BurnRights - (.Nero AG.) [HKLM] -- {f6bdd7c5-89ed-4569-9318-469aa9732572} =>.Nero AG O42 - Logiciel: Nero ControlCenter - (.Nero AG.) [HKLM] -- {bd5ca0da-71ad-43da-b19e-6eee0c9adc9a} =>.Nero AG O42 - Logiciel: Nero ControlCenter - (.Nero AG.) [HKLM] -- {f4041dce-3fe1-4e18-8a9e-9de65231ee36} =>.Nero AG O42 - Logiciel: Nero DiscSpeed - (.Nero AG.) [HKLM] -- {869200db-287a-4dc0-b02b-2b6787fbcd4c} =>.Nero AG O42 - Logiciel: Nero DiscSpeed - (.Nero AG.) [HKLM] -- {cc019e3f-59d2-4486-8d4b-878105b62a71} =>.Nero AG O42 - Logiciel: Nero DriveSpeed - (.Nero AG.) [HKLM] -- {33cf58f5-48d8-4575-83d6-96f574e4d83a} =>.Nero AG O42 - Logiciel: Nero DriveSpeed - (.Nero AG.) [HKLM] -- {e5c7d048-f9b4-4219-b323-8bdb01a2563d} =>.Nero AG O42 - Logiciel: Nero InfoTool - (.Nero AG.) [HKLM] -- {20400dbd-e6db-45b8-9b6b-1dd7033818ec} =>.Nero AG O42 - Logiciel: Nero InfoTool - (.Nero AG.) [HKLM] -- {fbcdfd61-7dcf-4e71-9226-873ba0053139} =>.Nero AG O42 - Logiciel: Nero Installer - (.Nero AG.) [HKLM] -- {e8a80433-302b-4ff1-815d-fcc8eac482ff} =>.Nero AG O42 - Logiciel: Nero Online Upgrade - (.Nero AG.) [HKLM] -- {dba84796-8503-4ff0-af57-1747dd9a166d} =>.Nero AG O42 - Logiciel: Nero StartSmart - (.Nero AG.) [HKLM] -- {7748ac8c-18e3-43bb-959b-088faea16fb2} =>.Nero AG O42 - Logiciel: Nero StartSmart Help - (.Nero AG.) [HKLM] -- {2348b586-c9ae-46ce-936c-a68e9426e214} =>.Nero AG O42 - Logiciel: neroxml - (.Nero AG.) [HKLM] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B} =>.Nero AG O42 - Logiciel: NVIDIA 3D Vision Controller Driver - (.NVIDIA Corporation.) [HKLM] -- NVIDIA StereoUSB Driver =>.NVIDIA Corporation O42 - Logiciel: NVIDIA GeForce Experience 2.1.5 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience =>.NVIDIA Corporation O42 - Logiciel: NVIDIA GeForce Experience Service - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer =>.NVIDIA Corporation O42 - Logiciel: NVIDIA LED Visualizer 1.0 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Logiciel système PhysX 9.14.0702 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Network Service - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service =>.NVIDIA Corporation O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM] -- {B455E95A-B804-439F-B533-336B1635AE97} =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Pilote 3D Vision 280.26 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Pilote audio HD : 1.2.23.3 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Pilote du contrôleur 3D Vision 280.19 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Pilote graphique 280.26 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver =>.NVIDIA Corporation O42 - Logiciel: NVIDIA ShadowPlay 16.18.9 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM] -- NVIDIAStereo =>.NVIDIA Corporation® O42 - Logiciel: NVIDIA Update Core - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Virtual Audio 1.2.27 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver =>.NVIDIA Corporation O42 - Logiciel: OpenOffice 4.1.0 - (.Apache Software Foundation.) [HKLM] -- {B3B009FC-6909-4E00-9F43-FFB5CA93D606} =>.Apache Software Foundation O42 - Logiciel: Panneau de configuration NVIDIA 280.26 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel =>.NVIDIA Corporation O42 - Logiciel: SHIELD Streaming - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv =>.NVIDIA Corporation O42 - Logiciel: SHIELD Wireless Controller Driver - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController =>.NVIDIA Corporation O42 - Logiciel: Sine qua non version 2.9.2.1 - (.02 Décmbre 2015 Patrice Rabiller et Patrick Pradeau.) [HKLM] -- Sine qua non_is1 O42 - Logiciel: Skype™ 6.16 - (.Skype Technologies S.A..) [HKLM] -- {7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7} =>.Skype Technologies S.A. O42 - Logiciel: Stellar Phoenix Windows Data Recovery - Home - (.Stellar Information Systems Ltd.) [HKLM] -- Stellar Phoenix Windows Data Recovery - Home_is1 =>.Stellar Information Systems Ltd O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} =>.Adobe Systems, Inc O42 - Logiciel: Trend Micro Internet Security - (.Trend Micro Inc..) [HKLM] -- {ABBD4BA8-6703-40D2-AB1E-5BB1F7DB49A4} =>.Trend Micro, Inc.® O42 - Logiciel: Trend Micro Titanium - (.Trend Micro Inc..) [HKLM] -- {ABBD4BA9-6703-40D2-AB1E-5BB1F7DB49A4} =>.Trend Micro Inc. O42 - Logiciel: VLC media player 2.1.3 - (.VideoLAN.) [HKLM] -- VLC media player =>.VideoLAN O42 - Logiciel: Wondershare MobileTrans ( Version 7.4.6 ) - (.Wondershare.) [HKLM] -- {18CDCEAA-A9E4-4A4C-AC0E-C15E87C30EA5}_is1 =>.Shenzhen Wondershare Information Technology Co., Ltd.® ---\\ HKCU & HKLM Software Keys (69) - 13s HKLM\SOFTWARE\7-Zip HKLM\SOFTWARE\ HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\AdwCleaner HKLM\SOFTWARE\AGEIA Technologies HKLM\SOFTWARE\AppDataLow HKLM\SOFTWARE\ATI Technologies HKLM\SOFTWARE\Audible HKLM\SOFTWARE\CoreSecurity HKLM\SOFTWARE\ESTsoft HKLM\SOFTWARE\Google HKLM\SOFTWARE\IM Providers HKLM\SOFTWARE\Intel HKLM\SOFTWARE\JavaSoft HKLM\SOFTWARE\JGsoft HKLM\SOFTWARE\JreMetrics HKLM\SOFTWARE\Khronos HKLM\SOFTWARE\Licenses HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\mozilla.org HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\MunSoft HKLM\SOFTWARE\Nero HKLM\SOFTWARE\NVIDIA Corporation HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\OpenOffice HKLM\SOFTWARE\Piriform HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\Skype HKLM\SOFTWARE\Sonic HKLM\SOFTWARE\Stellar information Systems ltd. HKLM\SOFTWARE\TrendMicro HKLM\SOFTWARE\VideoLAN HKLM\SOFTWARE\Wondershare HKLM\SOFTWARE\Wow6432Node HKCU\SOFTWARE\7-Zip HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Apowersoft HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\eMuleTorrentVersion HKCU\SOFTWARE\ESTsoft HKCU\SOFTWARE\Gdmath HKCU\SOFTWARE\Google HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Index Education HKCU\SOFTWARE\IZSoftware HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MunSoft HKCU\SOFTWARE\Nero HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\NVIDIA Corporation HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\OpenOffice HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\Skype HKCU\SOFTWARE\Software HKCU\SOFTWARE\Stellar information Systems ltd. HKCU\SOFTWARE\TrendMicro HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Wondershare HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\JavaSoft ---\\ Contenu des dossiers Programmes (180) - 44s O43 - CFD: 03/01/2015 - [] D -- C:\Program Files\001Micron USB Drive Recovery(Demo) =>.Pro Data Doctor Pvt. Ltd.® O43 - CFD: 10/04/2015 - [] D -- C:\Program Files\7-Zip O43 - CFD: 26/04/2015 - [] D -- C:\Program Files\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 23/01/2015 - [0] D -- C:\Program Files\AGEIA Technologies O43 - CFD: 20/02/2016 - [] D -- C:\Program Files\Apowersoft =>.APOWERSOFT LIMITED® O43 - CFD: 11/07/2014 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd® O43 - CFD: 20/02/2016 - [] D -- C:\Program Files\Common Files O43 - CFD: 21/07/2014 - [] D -- C:\Program Files\DVD Maker O43 - CFD: 19/05/2015 - [] D -- C:\Program Files\ESTsoft =>.ESTsoft Corp.® O43 - CFD: 07/07/2014 - [0] SHD -- C:\Program Files\Fichiers communs O43 - CFD: 08/07/2014 - [] D -- C:\Program Files\Gdmath O43 - CFD: 07/07/2014 - [] D -- C:\Program Files\GeoGebra 4.4 =>.International GeoGebra Institute® O43 - CFD: 21/04/2016 - [] D -- C:\Program Files\Google =>.Google Inc® O43 - CFD: 01/10/2015 - [] D -- C:\Program Files\Index Education =>.INDEX EDUCATION® O43 - CFD: 31/08/2015 - [] HD -- C:\Program Files\InstallShield Installation Information O43 - CFD: 22/08/2014 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 06/02/2015 - [] D -- C:\Program Files\Java =>.Oracle America, Inc.® O43 - CFD: 31/05/2016 - [] D -- C:\Program Files\Malwarebytes Anti-Malware =>.Malwarebytes Corporation® O43 - CFD: 25/08/2014 - [] D -- C:\Program Files\Microsoft Analysis Services O43 - CFD: 03/01/2015 - [] D -- C:\Program Files\Microsoft LifeCam =>.Microsoft Corporation® O43 - CFD: 31/08/2014 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 23/11/2014 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 25/08/2014 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition O43 - CFD: 25/08/2014 - [] D -- C:\Program Files\Microsoft Sync Framework O43 - CFD: 25/08/2014 - [] D -- C:\Program Files\Microsoft Synchronization Services O43 - CFD: 06/09/2014 - [] D -- C:\Program Files\Microsoft Visual Studio O43 - CFD: 25/08/2014 - [] D -- C:\Program Files\Microsoft Visual Studio 8 O43 - CFD: 06/09/2014 - [] D -- C:\Program Files\Microsoft Works O43 - CFD: 25/08/2014 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 12/05/2016 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla Corporation® O43 - CFD: 12/05/2016 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla Corporation® O43 - CFD: 06/09/2014 - [] D -- C:\Program Files\MSBuild O43 - CFD: 09/07/2014 - [0] D -- C:\Program Files\MSXML 4.0 O43 - CFD: 03/01/2015 - [] D -- C:\Program Files\MunSoft =>.MunSoft® O43 - CFD: 07/07/2014 - [] D -- C:\Program Files\Nero =>.Nero AG® O43 - CFD: 18/03/2015 - [] D -- C:\Program Files\NVIDIA Corporation =>.NVIDIA Corporation® O43 - CFD: 07/07/2014 - [] D -- C:\Program Files\OpenOffice 4 O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 10/12/2015 - [] D -- C:\Program Files\Sine qua non O43 - CFD: 31/08/2014 - [] RD -- C:\Program Files\Skype =>.Skype Software Sarl® O43 - CFD: 07/02/2016 - [] D -- C:\Program Files\Stellar Phoenix Windows Data Recovery =>.Stellar Information Systems Limited® O43 - CFD: 30/11/2015 - [] D -- C:\Program Files\Trend Micro =>.Trend Micro, Inc.® O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 03/01/2015 - [] D -- C:\Program Files\Unknown Device Identifier O43 - CFD: 20/07/2014 - [] D -- C:\Program Files\VideoLAN O43 - CFD: 22/07/2014 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 22/07/2014 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 21/07/2014 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 22/07/2014 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 07/07/2014 - [] D -- C:\Program Files\Windows NT O43 - CFD: 21/07/2014 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 21/07/2014 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 21/07/2014 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 20/02/2016 - [] D -- C:\Program Files\Wondershare O43 - CFD: 08/07/2014 - [0] D -- C:\Program Files\Wortmann_AG O43 - CFD: 03/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\001Micron USB Drive Recovery(Demo) O43 - CFD: 10/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip O43 - CFD: 07/07/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 07/07/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 20/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft O43 - CFD: 11/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 03/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Easy Drive Data Recovery O43 - CFD: 19/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESTsoft O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 07/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GeoGebra 4.4 O43 - CFD: 20/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive O43 - CFD: 06/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 31/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 03/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft LifeCam O43 - CFD: 06/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 23/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 07/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero O43 - CFD: 18/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation O43 - CFD: 07/07/2014 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.0 O43 - CFD: 31/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PRONOTE Réseau 2015 O43 - CFD: 25/08/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint O43 - CFD: 10/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sine qua non O43 - CFD: 07/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 12/07/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 07/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stellar Phoenix Windows Data Recovery - Home O43 - CFD: 14/07/2009 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 20/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 20/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare O43 - CFD: 26/04/2015 - [] D -- C:\ProgramData\Adobe O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 07/07/2014 - [] D -- C:\ProgramData\Avanquest Software O43 - CFD: 07/07/2014 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 09/07/2014 - [] D -- C:\ProgramData\eMule O43 - CFD: 19/05/2015 - [] D -- C:\ProgramData\ESTsoft O43 - CFD: 07/07/2014 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 27/04/2016 - [] D -- C:\ProgramData\HUE O43 - CFD: 25/05/2016 - [] D -- C:\ProgramData\IndexEducation O43 - CFD: 31/05/2016 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 07/07/2014 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 03/01/2015 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 06/09/2014 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 07/07/2014 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 07/07/2014 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 07/07/2014 - [] D -- C:\ProgramData\Nero O43 - CFD: 31/05/2016 - [] D -- C:\ProgramData\NVIDIA O43 - CFD: 23/01/2015 - [] D -- C:\ProgramData\NVIDIA Corporation O43 - CFD: 06/02/2015 - [] D -- C:\ProgramData\Oracle O43 - CFD: 31/08/2014 - [] D -- C:\ProgramData\Skype O43 - CFD: 30/10/2015 - [] D -- C:\ProgramData\SP_FT_Logs O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 26/08/2014 - [] D -- C:\ProgramData\Sun O43 - CFD: 07/02/2016 - [0] AD -- C:\ProgramData\TEMP O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 01/04/2016 - [] D -- C:\ProgramData\Trend Micro O43 - CFD: 02/12/2015 - [0] D -- C:\ProgramData\Trend Micro Installer O43 - CFD: 20/02/2016 - [] D -- C:\ProgramData\Wondershare O43 - CFD: 26/04/2015 - [] D -- C:\Program Files\Common Files\Adobe O43 - CFD: 25/08/2014 - [] D -- C:\Program Files\Common Files\DESIGNER O43 - CFD: 06/02/2015 - [] D -- C:\Program Files\Common Files\Java O43 - CFD: 06/09/2014 - [] D -- C:\Program Files\Common Files\microsoft shared O43 - CFD: 07/07/2014 - [] D -- C:\Program Files\Common Files\Nero O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\Services O43 - CFD: 31/08/2014 - [] D -- C:\Program Files\Common Files\Skype O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 25/08/2014 - [] D -- C:\Program Files\Common Files\System O43 - CFD: 20/02/2016 - [] D -- C:\Program Files\Common Files\Wondershare O43 - CFD: 27/04/2015 - [] D -- C:\Users\Stéphane\AppData\Roaming\Adobe O43 - CFD: 20/02/2016 - [] D -- C:\Users\Stéphane\AppData\Roaming\Apowersoft O43 - CFD: 18/12/2015 - [] D -- C:\Users\Stéphane\AppData\Roaming\dvdcss O43 - CFD: 19/05/2015 - [] D -- C:\Users\Stéphane\AppData\Roaming\ESTsoft O43 - CFD: 07/07/2014 - [] D -- C:\Users\Stéphane\AppData\Roaming\GeoGebra 4.4 O43 - CFD: 20/02/2016 - [0] D -- C:\Users\Stéphane\AppData\Roaming\HMYGSetting O43 - CFD: 07/07/2014 - [] D -- C:\Users\Stéphane\AppData\Roaming\Identities O43 - CFD: 07/07/2014 - [] D -- C:\Users\Stéphane\AppData\Roaming\IndexEducation O43 - CFD: 09/07/2014 - [] D -- C:\Users\Stéphane\AppData\Roaming\Macromedia O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Stéphane\AppData\Roaming\Media Center Programs O43 - CFD: 03/01/2015 - [] SD -- C:\Users\Stéphane\AppData\Roaming\Microsoft O43 - CFD: 07/07/2014 - [] D -- C:\Users\Stéphane\AppData\Roaming\Mozilla O43 - CFD: 08/07/2014 - [] D -- C:\Users\Stéphane\AppData\Roaming\mulehome O43 - CFD: 24/07/2014 - [] D -- C:\Users\Stéphane\AppData\Roaming\Nero O43 - CFD: 07/07/2014 - [] D -- C:\Users\Stéphane\AppData\Roaming\OpenOffice O43 - CFD: 07/07/2014 - [] D -- C:\Users\Stéphane\AppData\Roaming\PDF Reader 10 9 O43 - CFD: 13/05/2016 - [] D -- C:\Users\Stéphane\AppData\Roaming\Skype O43 - CFD: 30/04/2016 - [] D -- C:\Users\Stéphane\AppData\Roaming\vlc O43 - CFD: 20/02/2016 - [] D -- C:\Users\Stéphane\AppData\Roaming\Wondershare O43 - CFD: 31/05/2016 - [] D -- C:\Users\Stéphane\AppData\Roaming\ZHP O43 - CFD: 12/07/2015 - [] D -- C:\Users\Stéphane\AppData\Local\Adobe O43 - CFD: 07/07/2014 - [0] SHD -- C:\Users\Stéphane\AppData\Local\Application Data O43 - CFD: 07/07/2014 - [] D -- C:\Users\Stéphane\AppData\Local\Apps O43 - CFD: 10/08/2015 - [] D -- C:\Users\Stéphane\AppData\Local\CEF O43 - CFD: 07/07/2014 - [0] D -- C:\Users\Stéphane\AppData\Local\Deployment O43 - CFD: 20/03/2016 - [0] D -- C:\Users\Stéphane\AppData\Local\Diagnostics O43 - CFD: 28/02/2016 - [0] D -- C:\Users\Stéphane\AppData\Local\ElevatedDiagnostics O43 - CFD: 21/08/2014 - [] SHD -- C:\Users\Stéphane\AppData\Local\EmieSiteList O43 - CFD: 21/08/2014 - [] SHD -- C:\Users\Stéphane\AppData\Local\EmieUserList O43 - CFD: 09/07/2014 - [] D -- C:\Users\Stéphane\AppData\Local\eMule O43 - CFD: 07/07/2014 - [] D -- C:\Users\Stéphane\AppData\Local\eMule0.60 O43 - CFD: 21/04/2016 - [] D -- C:\Users\Stéphane\AppData\Local\Google O43 - CFD: 07/07/2014 - [0] SHD -- C:\Users\Stéphane\AppData\Local\Historique O43 - CFD: 27/04/2016 - [] D -- C:\Users\Stéphane\AppData\Local\HUE O43 - CFD: 09/07/2014 - [] D -- C:\Users\Stéphane\AppData\Local\Macromedia O43 - CFD: 27/04/2016 - [] D -- C:\Users\Stéphane\AppData\Local\Microsoft O43 - CFD: 07/09/2014 - [] D -- C:\Users\Stéphane\AppData\Local\Microsoft Help O43 - CFD: 07/07/2014 - [] D -- C:\Users\Stéphane\AppData\Local\Mozilla O43 - CFD: 10/02/2015 - [] D -- C:\Users\Stéphane\AppData\Local\NVIDIA O43 - CFD: 10/02/2015 - [] D -- C:\Users\Stéphane\AppData\Local\NVIDIA Corporation O43 - CFD: 10/07/2014 - [] D -- C:\Users\Stéphane\AppData\Local\Programs O43 - CFD: 07/07/2014 - [] D -- C:\Users\Stéphane\AppData\Local\Skype O43 - CFD: 31/05/2016 - [] D -- C:\Users\Stéphane\AppData\Local\Temp O43 - CFD: 07/07/2014 - [0] SHD -- C:\Users\Stéphane\AppData\Local\Temporary Internet Files O43 - CFD: 03/12/2015 - [] D -- C:\Users\Stéphane\AppData\Local\Trend Micro O43 - CFD: 07/07/2014 - [] D -- C:\Users\Stéphane\AppData\Local\VirtualStore O43 - CFD: 20/02/2016 - [] D -- C:\Users\Stéphane\AppData\Local\Wondershare O43 - CFD: 10/07/2014 - [0] D -- C:\Users\Stéphane\AppData\Local\Programs\Common O43 - CFD: 14/07/2009 - [] RD -- C:\Users\Stéphane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 22/08/2014 - [] RD -- C:\Users\Stéphane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 14/07/2009 - [] RD -- C:\Users\Stéphane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 27/08/2014 - [] RD -- C:\Users\Stéphane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 30/11/2015 - [] D -- C:\Users\Stéphane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Trend Micro Internet Security O43 - CFD: 23/10/2014 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Google O43 - CFD: 12/07/2014 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft ---\\ ShellIconOverlayIdentifiers (SIOI) (11) - 0s O106 - SIOI: Google Drive Shell extension [ GoogleDriveBlacklisted] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}. (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\googledrivesync32.dll =>.Google Inc® O106 - SIOI: Google Drive Shell extension [ GoogleDriveSynced] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}. (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\googledrivesync32.dll =>.Google Inc® O106 - SIOI: Google Drive Shell extension [ GoogleDriveSyncing] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}. (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\googledrivesync32.dll =>.Google Inc® O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: Groove Explorer Icon Overlay 1 (GFS Unread Stub) [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] - {99FD978C-D287-4F50-827F-B2C658EDA8E7}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2 (GFS Stub) [Groove Explorer Icon Overlay 2 (GFS Stub)] - {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2.5 (GFS Unread Folder) [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] - {920E6DB1-9907-4370-B3A0-BAFC03D81399}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 3 (GFS Folder) [Groove Explorer Icon Overlay 3 (GFS Folder)] - {16F3DD56-1AF5-4347-846D-7C10C4192619}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 4 (GFS Unread Mark) [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] - {2916C86E-86A6-43FE-8112-43ABE6BF8DCC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation ---\\ Liste des pilotes du système (74) - 46s O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400] =>.Microsoft Windows® O58 - SDL:2011/03/11 07:38:37 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [80256] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312] =>.Microsoft Windows® O58 - SDL:2011/03/11 07:38:37 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [22400] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608] =>.Microsoft Windows® O58 - SDL:2009/07/14 00:02:49 A . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gi.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888] =>.Broadcom Corporation O58 - SDL:2009/07/14 00:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] =>.Brother Industries, Ltd. O58 - SDL:2009/07/14 00:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] =>.Brother Industries, Ltd. O58 - SDL:2009/07/14 02:57:25 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [272128] =>.Brother Industries Ltd. O58 - SDL:2009/07/14 00:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] =>.Brother Industries Ltd. O58 - SDL:2009/07/14 00:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] =>.Brother Industries Ltd. O58 - SDL:2009/07/14 00:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] =>.Brother Industries Ltd. O58 - SDL:2009/07/14 00:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080] =>.Broadcom Corporation O58 - SDL:2009/07/14 03:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712] =>.Microsoft Windows® O58 - SDL:2009/07/14 00:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160] =>.Broadcom Corporation O58 - SDL:2009/07/14 00:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624] =>.Hauppauge Computer Works, Inc. O58 - SDL:2009/07/14 03:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152] =>.Microsoft Windows® O58 - SDL:2011/03/11 07:38:51 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332160] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848] =>.Microsoft Windows® O58 - SDL:2016/03/10 14:08:52 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [24448] =>.Malwarebytes Corporation® O58 - SDL:2016/03/10 14:08:56 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [126336] =>.Malwarebytes Corporation® O58 - SDL:2016/05/31 23:13:11 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [170200] =>.Malwarebytes Corporation® O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584] =>.Microsoft Windows® O58 - SDL:2016/03/10 14:09:04 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [53120] =>.Malwarebytes Corporation® O58 - SDL:2009/07/14 03:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624] =>.Microsoft Windows® O58 - SDL:2011/05/10 11:41:28 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\System32\drivers\nvhda32v.sys [139368] =>.NVIDIA Corporation® O58 - SDL:2011/08/03 13:50:00 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [10304104] =>.NVIDIA Corporation® O58 - SDL:2011/03/11 07:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117120] =>.Microsoft Windows® O58 - SDL:2011/03/11 07:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [143744] =>.Microsoft Windows® O58 - SDL:2014/11/22 12:46:30 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\Windows\System32\drivers\nvvad32v.sys [32912] =>.NVIDIA Corporation® O58 - SDL:2009/07/14 03:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064] =>.Microsoft Windows® O58 - SDL:2009/07/14 00:02:52 A . (.Realtek Corporation - Realtek 8101E/8168/8169 NDIS 6.20 32-bit Dr.) -- C:\Windows\System32\drivers\Rt86win7.sys [139776] =>.Realtek Corporation O58 - SDL:2009/07/13 22:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2009/07/14 03:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072] =>.Microsoft Windows® O58 - SDL:2015/11/23 10:47:18 A . (.Trend Micro Inc. - TrendMicro Activity Monitor Module.) -- C:\Windows\System32\drivers\tmactmon.sys [117560] =>.Trend Micro, Inc.® O58 - SDL:2015/11/23 10:47:20 A . (.Trend Micro Inc. - TrendMicro Common Module.) -- C:\Windows\System32\drivers\tmcomm.sys [315184] =>.Trend Micro, Inc.® O58 - SDL:2015/06/11 10:50:54 A . (.Trend Micro Inc. - Trend Micro early boot driver.) -- C:\Windows\System32\drivers\TMEBC32.sys [49472] =>.Trend Micro, Inc.® O58 - SDL:2015/06/08 07:54:40 N . (.Trend Micro Inc. - Trend Micro EagleEye Driver (VW) (i386-fre).) -- C:\Windows\System32\drivers\tmeevw.sys [101216] =>.Trend Micro, Inc.® O58 - SDL:2015/11/23 10:47:21 A . (.Trend Micro Inc. - TrendMicro Event Management Module.) -- C:\Windows\System32\drivers\tmevtmgr.sys [96056] =>.Trend Micro, Inc.® O58 - SDL:2015/05/28 12:26:40 N . (.Trend Micro Inc. - Trend Micro NCIE Scanner (i386-fre).) -- C:\Windows\System32\drivers\tmnciesc.sys [314976] =>.Trend Micro, Inc.® O58 - SDL:2015/06/29 04:35:06 A . (.Trend Micro Inc. - Trend Micro UMH Driver x86.) -- C:\Windows\System32\drivers\TMUMH.sys [84736] =>.Trend Micro, Inc.® O58 - SDL:2015/06/26 12:20:04 A . (.Trend Micro Inc. - Trend Micro Osprey Scanner Driver (i386-fre.) -- C:\Windows\System32\drivers\tmusa.sys [96560] =>.Trend Micro, Inc.® O58 - SDL:2009/07/14 03:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904] =>.Microsoft Windows® O58 - SDL:2016/02/20 11:26:19 A . (.Google Inc - ADB Interface.) -- C:\Windows\System32\drivers\wsadb.sys [34704] =>.Shenzhen Wondershare Information Technology Co., Ltd.® O58 - SDL:2009/07/13 23:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:2009/07/13 23:40:44 A . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:2009/07/13 23:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:2009/07/13 23:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:2009/07/13 23:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:2009/07/13 23:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:2009/07/13 23:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:2009/07/13 23:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:2009/07/13 23:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:2009/07/13 23:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:2009/07/13 23:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:2009/07/13 23:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:2009/07/13 23:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:2009/07/13 23:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:2009/07/13 23:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (3) - 13s O61 - LFC: 2016/05/31 22:40:54 A . (..) -- C:\Users\Stéphane\Downloads\JRT (1).exe [0] O61 - LFC: 2016/05/31 22:37:17 A . (..) -- C:\Users\Stéphane\Downloads\JRT.exe [0] O61 - LFC: 2016/05/26 07:00:04 A . (..) -- C:\Users\Stéphane\AppData\Local\NVIDIA\NvBackend\UMDShim\nvcoproc.bin [6450500] ---\\ Associations Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (12) - 1s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Recherche d'infection sur les navigateurs (2) - 16s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ ---\\ Enumère les services démarrés par Svchost (33) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168960] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [593408] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [679424] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [473600] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [286208] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [49664] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [300544] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242176] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [521216] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1973728] =>.Microsoft Windows Component Publisher® O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [585728] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [499712] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [21504] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [49664] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164352] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [750592] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [71168] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [113664] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102912] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [149504] =>.Microsoft Corporation ---\\ Liste des exceptions du parefeu Windows (2) - 2s O87 - FAEL: "TCP Query User{919741F7-52AA-4612-B45B-4896B1E21097}D:\program files\emule\emule.exe" [In-None-P6-TRUE] .(.http://www.emule-project.net - eMule.) -- D:\program files\emule\emule.exe O87 - FAEL: "UDP Query User{ECB69856-3929-43ED-87BD-E896F77F2908}D:\program files\emule\emule.exe" [In-None-P17-TRUE] .(.http://www.emule-project.net - eMule.) -- D:\program files\emule\emule.exe ---\\ Scan Additionnel (2) - 1s HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect ---\\ Récapitulatif des éléments trouvés sur votre station (1) - 0s http://www.nicolascoolman.info/2016/04/22/heuristic-suspect/ =>Heuristic.Suspect ~ End of the scan, 21335 items in 00h03mn49s (750)(0)