~ ZHPDiag v2016.6.18.105 Par Nicolas Coolman (2016/06/18) ~ Démarré par frank (Administrator) (2016/06/19 16:47:45) ~ Site: http://www.nicolascoolman.com ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\frank\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\frank\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows VISTA, 32-bit Service Pack 2 (Build 6002) ---\\ Navigateurs Internet (3) - 0s GCIE: Google Chrome v49.0.2623.112 MFIE: Mozilla Firefox 43.0.1 (x86 fr) MSIE: Internet Explorer v9.0.8112.16421 ---\\ Informations sur les produits Windows (4) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : KO ---\\ Logiciels de protection (2) - 1s Avira Antivirus v15.0.17.273 Avira Launcher v1.1.63.21885 ---\\ Logiciels d'optimisation (1) - 1s CCleaner v5.03 ---\\ Surveillance de Logiciels (1) - 1s Adobe Flash Player 22 NPAPI ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 16 Model 2 Stepping 3, AuthenticAMD ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 2881.144 MB (34% free) System Restore: Activé (Enable) System drive C: has 153 GB () free of 299 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: PC-DE-FRANK ~ User Name: frank ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 153 GB free of 299 GB (System) ~ Drive D: has 300 GB free of 300 GB ---\\ Etat du Centre de Sécurité Windows (12) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (24) - 1s [MD5.D07D4C3038F3578FFCE1C0237F2A1253] - 11/04/2009 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2926592] =>.Microsoft Corporation [MD5.4B555106290BD117334E9A08761C035A] - 02/11/2006 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] =>.Microsoft Corporation [MD5.101BA3EA053480BB5D957EF37C06B5ED] - 21/01/2008 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [96768] =>.Microsoft Corporation [MD5.B0D90912ECB3E510AD4F905F721075AA] - 23/04/2016 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [1089024] =>.Microsoft Corporation [MD5.898E7C06A350D4A1A64A9EA264D55452] - 11/04/2009 - (.Microsoft Corporation - Application d'ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [314368] =>.Microsoft Corporation [MD5.85E861D0B88DB2B54ACB0839654C09F7] - 02/03/2011 - (.Microsoft Corporation - DNS DLL de l'API Client.) -- C:\Windows\System32\dnsapi.dll [168448] =>.Microsoft Corporation [MD5.95F5FF73B076576C41740F1A842B9B57] - 21/01/2008 - (.Microsoft Corporation - DLL client de l'API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation [MD5.4A0978779958D8FE8F5849F452BCC812] - 13/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [273408] =>.Microsoft Corporation [MD5.1F05B78AB91C9075565A9D8A4B880BC4] - 11/04/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [19944] =>.Microsoft Windows® [MD5.7ADD03E75BEB9E6DD102C3081D29840A] - 21/01/2008 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70144] =>.Microsoft Corporation [MD5.6B4BFFB9BECD728097024276430DB314] - 11/04/2009 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [67072] =>.Microsoft Corporation [MD5.622C41A07CA7E6DD91770F50D532CB6C] - 14/04/2011 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [75264] =>.Microsoft Corporation [MD5.062452B7FFD68C8C042A6261FE8DFF4A] - 11/04/2009 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [561152] =>.Microsoft Corporation [MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - 21/01/2008 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [54784] =>.Microsoft Corporation [MD5.8793643A67B42CEC66490B2A0CF92D68] - 21/01/2008 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [100864] =>.Microsoft Corporation [MD5.1B864548B2ACEC1C0BB29B615CC42978] - 09/01/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [107008] =>.Microsoft Corporation [MD5.ECD64230A59CBD93C85F1CD1CAB9F3F6] - 11/04/2009 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [185856] =>.Microsoft Corporation [MD5.2C1121F2B87E9A6B12485DF53CD848C7] - 03/03/2013 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1082232] =>.Microsoft Windows® [MD5.0FA9B5055484649D63C303FE404E5F4D] - 02/11/2006 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [79360] =>.Microsoft Corporation [MD5.A214ADBAF4CB47DD2728859EF31F26B0] - 21/01/2008 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [76288] =>.Microsoft Corporation [MD5.FBC0BACD9C3D7F6956853F64A66E252D] - 21/01/2008 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [248832] =>.Microsoft Corporation [MD5.7B75299A4D201D6A6533603D6914AB04] - 11/04/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [66560] =>.Microsoft Corporation [MD5.EC565DFA3D9C45D8083B72DEC5B33710] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [72192] =>.Microsoft Corporation [MD5.786DB5771F05EF300390399F626BF30A] - 21/08/2012 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [224640] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (21) - 2s O23 - Service: Acer HomeMedia Connect Service (Acer HomeMedia Connect Service) . (.CyberLink - CLMSServer.) - C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe =>.CyberLink O23 - Service: Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG - Antivirus MailScanner LSP Service.) - C:\Program Files\Avira\AntiVir Desktop\avmailc.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG - AntiVir WebGuard Service.) - C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG - Avira Service Host.) - C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: NTI Backup Now 5 Agent Service (BUNAgentSvc) . (.NewTech Infosystems, Inc. - NTI Backup Now 5 Agent service..) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe =>.NewTech InfoSystems, Inc. O23 - Service: Empowering Technology Service (ETService) . (.Copyright © 2007 - Acer Empowering Technology Framework Servic.) - C:\Program Files\Acer\Empowering Technology\Service\ETService.exe O23 - Service: ForceWare Intelligent Application Manager (IAM) (ForceWare Intelligent Application Manager (IAM)) . (.Copyright 2004 - app_filter Module.) - C:\Program Files\bin32\nSvcAppFlt.exe O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe =>.NVIDIA Corporation® O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) . (.Copyright CANON INC. 2006-2012 All Rights Reserved - Inkjet Printer/Scanner/Fax Extended Survey.) - C:\Program Files\Canon\IJPLM\ijplmsvc.exe =>.Canon Inc.® O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company - .) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe =>.Hewlett-Packard Company O23 - Service: ForceWare IP service (nSvcIp) . (.Copyright 2002-2006 NVIDIA - NVIDIA Corporation.) - C:\Program Files\bin32\nSvcIp.exe O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) . (.NewTech InfoSystems, Inc. - NTI Backup Now 5 BackupSvc Application.) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe =>.NewTech Infosystems, Inc® O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) . (...) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe =>.NVIDIA Corporation® O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 341.7.) - C:\Windows\System32\nvvsvc.exe =>.NVIDIA Corporation® O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004 - RichVideo Module.) - C:\Program Files\CyberLink\Shared Files\RichVideo.exe O23 - Service: TomTomHOMEService (TomTomHOMEService) . (.TomTom - Windows Service for TomTom HOME.) - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe =>.TomTom International BV® O23 - Service: Yahoo! Updater (YahooAUService) . (.Yahoo! Inc. - AutoUpater Service Module.) - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe =>.Yahoo! Inc.® ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (27) - 45s SR - Auto [25/01/2008] [ 269448] Acer HomeMedia Connect Service (Acer HomeMedia Connect Service) . (.CyberLink.) - C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe =>.CyberLink SS - Demand [17/06/2016] [ 270016] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SS - Auto [02/06/2016] [ 955712] Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\AntiVir Desktop\avmailc.exe =>.Avira Operations GmbH & Co. KG® SR - Auto [02/06/2016] [ 467016] Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe =>.Avira Operations GmbH & Co. KG® SR - Auto [02/06/2016] [ 467016] Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe =>.Avira Operations GmbH & Co. KG® SS - Auto [02/06/2016] [ 1238968] Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe =>.Avira Operations GmbH & Co. KG® SR - Auto [19/05/2016] [ 285176] Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe =>.Avira Operations GmbH & Co. KG® SS - Demand [06/02/2013] [ 585728] BlackBerry Device Manager (BlackBerry Device Manager) . (.Research In Motion Limited.) - C:\Program Files\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe =>.Research In Motion Limited SR - Auto [03/03/2008] [ 16384] NTI Backup Now 5 Agent Service (BUNAgentSvc) . (.NewTech Infosystems, Inc..) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe =>.NewTech InfoSystems, Inc. SR - Auto [25/04/2008] [ 24576] Empowering Technology Service (ETService) . (.Copyright © 2007.) - C:\Program Files\Acer\Empowering Technology\Service\ETService.exe SS - Auto [29/01/2008] [ 598016] ForceWare Intelligent Application Manager (IAM) (ForceWare Intelligent Application Manager (IAM)) . (.Copyright 2004.) - C:\Program Files\bin32\nSvcAppFlt.exe SR - Auto [24/07/2015] [ 921232] NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe =>.NVIDIA Corporation® SS - Auto [30/08/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [30/08/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [24/08/2012] [ 194032] Google Software Updater (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe =>.Google Inc® SR - Auto [28/03/2012] [ 140456] Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) . (.Copyright CANON INC. 2006-2012 All Rights Reserved.) - C:\Program Files\Canon\IJPLM\ijplmsvc.exe =>.Canon Inc.® SR - Auto [17/01/2007] [ 61440] LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe =>.Hewlett-Packard Company SS - Demand [17/12/2015] [ 147624] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Auto [29/01/2008] [ 163840] ForceWare IP service (nSvcIp) . (.Copyright 2002-2006 NVIDIA.) - C:\Program Files\bin32\nSvcIp.exe SR - Auto [06/04/2008] [ 50424] NTI Backup Now 5 Backup Service (NTIBackupSvc) . (.NewTech InfoSystems, Inc..) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe =>.NewTech Infosystems, Inc® SR - Auto [04/04/2008] [ 131072] NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) . (...) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe SR - Auto [24/07/2015] [ 1871504] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe =>.NVIDIA Corporation® SR - Auto [29/06/2015] [ 670536] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\System32\nvvsvc.exe =>.NVIDIA Corporation® SR - Auto [19/07/2006] [ 262247] Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004.) - C:\Program Files\CyberLink\Shared Files\RichVideo.exe SR - Auto [28/08/2012] [ 92632] TomTomHOMEService (TomTomHOMEService) . (.TomTom.) - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe =>.TomTom International BV® SR - Auto [09/11/2008] [ 602392] Yahoo! Updater (YahooAUService) . (.Yahoo! Inc..) - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe =>.Yahoo! Inc.® ---\\ Processus lancés (41) - 2s [MD5.181DFC1D7B7B0ACD0C85CA8120D10FE8] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 341.7.) -- C:\Windows\System32\nvvsvc.exe [670536] [PID.1272] =>.NVIDIA Corporation® [MD5.8D3C3E4842C5EAFF11CD201D86C6776D] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [938184] [PID.652] =>.NVIDIA Corporation® [MD5.181DFC1D7B7B0ACD0C85CA8120D10FE8] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 341.7.) -- C:\Windows\System32\nvvsvc.exe [670536] [PID.644] =>.NVIDIA Corporation® [MD5.BD65021AB0EC790AECC503C394E61BA4] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe [467016] [PID.816] =>.Avira Operations GmbH & Co. KG® [MD5.517D30057C726C797764BFD70A55D82A] - (.CyberLink - CLMSServer.) -- C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe [269448] [PID.2180] =>.CyberLink [MD5.BD65021AB0EC790AECC503C394E61BA4] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe [467016] [PID.2204] =>.Avira Operations GmbH & Co. KG® [MD5.09E6AFFAE6C0E9158BF05C7D08D0107A] - (.NewTech Infosystems, Inc. - NTI Backup Now 5 Agent service..) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe [16384] [PID.2268] =>.NewTech InfoSystems, Inc. [MD5.20D3741680AB88269BADCDB161B36705] - (.Copyright © 2007 - Acer Empowering Technology Framework Servic.) -- C:\Program Files\Acer\Empowering Technology\Service\ETService.exe [24576] [PID.2300] [MD5.ADFFEF4F2388FA73F425BA623B8BE65C] - (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [921232] [PID.2444] =>.NVIDIA Corporation® [MD5.EDCCC8C13B1EB882F77BA0ABB84566E7] - (.Copyright CANON INC. 2006-2012 All Rights Reserved - Inkjet Printer/Scanner/Fax Extended Survey.) -- C:\Program Files\Canon\IJPLM\ijplmsvc.exe [140456] [PID.2512] =>.Canon Inc.® [MD5.793FF718477345CD5D232C50BED1E452] - (.Hewlett-Packard Company - .) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe [61440] [PID.2564] =>.Hewlett-Packard Company [MD5.CB76F68BA0D57C5D25B538981B1C611C] - (.NewTech InfoSystems, Inc. - NTI Backup Now 5 BackupSvc Application.) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [50424] [PID.2668] =>.NewTech Infosystems, Inc® [MD5.DF1C10A75DF7E50195FC417F88A33227] - (...) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [131072] [PID.2744] [MD5.4EBEE69A8FE7DC85FD3C122821C617A0] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1871504] [PID.2788] =>.NVIDIA Corporation® [MD5.C1C132455200AD4704142442C89D0FA4] - (.Copyright 2004 - RichVideo Module.) -- C:\Program Files\CyberLink\Shared Files\RichVideo.exe [262247] [PID.2832] [MD5.0407143F2BBC1A5DD5B518AC0704FCBF] - (.TomTom - Windows Service for TomTom HOME.) -- C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe [92632] [PID.2952] =>.TomTom International BV® [MD5.FB01D4AE207B9EFDBABFC55DC95C7E31] - (.Microsoft Corp. - Microsoft® Windows Live ID Service.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [1713536] [PID.3076] =>.Microsoft Corporation® [MD5.DD0042F0C3B606A6A8B92D49AFB18AD6] - (.Yahoo! Inc. - AutoUpater Service Module.) -- C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe [602392] [PID.3172] =>.Yahoo! Inc.® [MD5.C649F293B8B047A2694F3C615D09BF17] - (.Microsoft Corp. - Microsoft® Windows Live ID Service Monitor.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE [193920] [PID.3200] =>.Microsoft Corporation® [MD5.6458B31DE5443B766DEEFFDF09CAC656] - (.Avira Operations GmbH & Co. KG - Avira Service Host.) -- C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe [285176] [PID.3300] =>.Avira Operations GmbH & Co. KG® [MD5.B02E42D5D1D3B74AAA9C0681E3FADF74] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [1818952] [PID.2572] =>.NVIDIA Corporation® [MD5.151B2D097C7182898387994CEA34890B] - (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe [5369856] [PID.2784] =>.Realtek Semiconductor [MD5.13ECA568C95C7DD9C2F77DE7BA7355CD] - (.Logitech Inc. - Logitech SetPoint.) -- C:\Program Files\Logitech\SetPoint\KEM.exe [573440] [PID.2804] =>.Logitech Inc. [MD5.6001F7750D4CAA170862D38FEE8BC46F] - (.CANON INC. - Canon Quick Menu.) -- C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE [1279120] [PID.2900] =>.Canon Inc.® [MD5.F316A9C0C8BBA9D2A98BE70EE0D8CA96] - (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [814608] [PID.1200] =>.Avira Operations GmbH & Co. KG® [MD5.7B2FB514D71FD9C5BFFB5443DB4551FE] - (...) -- C:\Program Files\Philips\Philips Songbird Resources\Autolauncher\PhilipsDeviceListener.exe [375296] [PID.3092] [MD5.8F82FFC6CD0F4C83F4565E1A40332CCD] - (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2634896] [PID.2152] =>.NVIDIA Corporation® [MD5.3C7BD1EC817D300A8826D49C406D5894] - (.Copyright 2002-2006 NVIDIA - NVIDIA Corporation.) -- C:\Program Files\bin32\nSvcIp.exe [163840] [PID.3444] [MD5.7E4B5E7C945766A03FA955E2C0A220DD] - (...) -- C:\Users\frank\AppData\Local\Amazon Music\Amazon Music Helper.exe [5907944] [PID.3436] =>.Amazon Services LLC® [MD5.2CC57BD43D7E37C3A8B5B7C81F08CB68] - (.Avira Operations GmbH & Co. KG - AntiVir shadow copy service.) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe [456144] [PID.1832] =>.Avira Operations GmbH & Co. KG® [MD5.554B6C2D7924B106C58DDD0588009883] - (.Logitech Inc. - Logitech Hardware Abstraction Layer.) -- C:\Program Files\Logitech\SetPoint\KHALMNPR.exe [29696] [PID.5532] =>.Logitech Inc. [MD5.C24E58C178A487918A3637C017848FD4] - (.Avira Operations GmbH & Co. KG - Avira Launcher.) -- C:\Program Files\Avira\Launcher\Avira.Systray.exe [147144] [PID.2752] =>.Avira Operations GmbH & Co. KG® [MD5.83046B4907B022229BE19DF93820A894] - (.CANON INC. - Canon Quick Menu Updater.) -- C:\Program Files\Canon\Quick Menu\CNQMUPDT.EXE [1087648] [PID.1128] =>.Canon Inc.® [MD5.1FCCF6F2F7F7CE2276C23F29508094C8] - (.CANON INC. - Canon Quick Menu Image Display.) -- C:\Program Files\Canon\Quick Menu\CNQMSWCS.EXE [989352] [PID.5376] =>.Canon Inc.® [MD5.769EAD14263EF7CC96B7A22B0AF32469] - (.Piriform Ltd - Speccy.) -- C:\Program Files\Speccy\Speccy.exe [5519128] [PID.5620] =>.Piriform Ltd® [MD5.FA59BB3FBF850907A676699B335C4271] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\frank\AppData\Roaming\ZHP\ZHPDiag3.exe [2219008] [PID.3548] =>.Nicolas Coolman [MD5.06FAA58219BF8B6D1BC25C2783763E11] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [874648] [PID.4304] =>.Google Inc® [MD5.06FAA58219BF8B6D1BC25C2783763E11] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [874648] [PID.604] =>.Google Inc® [MD5.06FAA58219BF8B6D1BC25C2783763E11] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [874648] [PID.3624] =>.Google Inc® [MD5.06FAA58219BF8B6D1BC25C2783763E11] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [874648] [PID.3816] =>.Google Inc® [MD5.06FAA58219BF8B6D1BC25C2783763E11] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [874648] [PID.5580] =>.Google Inc® ---\\ Google Chrome, Démarrage,Recherche,Extensions (2) - 1s G2 - GCE: Preference [User Data\Default] [flliilndjeohchalpbbcdekjklbdgfkk] Avira Browser Safety G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (12) - 1s M1 - SPR:Search Page Redirection - C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} P2 - EXT: (.mozilla.org - Default Plug-in.) -- C:\Program Files\Mozilla Firefox\Plugins\npnul32.dll {25CC3735E9EC1FC971670E73E369C791} =>.mozilla.org P2 - EXT: (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape.) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll =>.Adobe Systems, Incorporated® P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.FRA P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} =>.Mozilla P2 - EXT: (...) -- C:\Users\frank\AppData\Roaming\Mozilla\Extensions\home2@tomtom.com P2 - EXT: (...) -- C:\Users\frank\AppData\Roaming\Mozilla\Extensions\songbird@songbirdnest.com P2 - EXT: (...) -- C:\Users\frank\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} =>PUP.Optional.Wajam P2 - EXT: (.Microsoft - Microsoft .NET Framework Assistant.) -- C:\Users\frank\AppData\Roaming\Mozilla\Firefox\Profiles\peu17r36.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} =>.Microsoft P2 - FPN: [HKCU] [amazon.com/AmazonMP3DownloaderPlugin] - (.Amazon.com, Inc..) -- C:\Program Files\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin101799.dll P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_22_0_0_192.dll =>.Adobe Systems Incorporated P2 - FPN: [HKLM] [@RIM.com/WebSLLauncher,version=1.0] - (.Research In Motion.) -- C:\Program Files\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll =>.Research In Motion ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (14) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.orange.fr/ R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer R3 - URLSearchHook: (no name) - {81017EA9-9AA8-4A6A-9734-7AF40E7D593F} Orphan =>.Superfluous.Orphan R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 1 ---\\ Internet Explorer,Proxy Management (6) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\System32\Userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl" ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (20) ---\\ Browser Helper Object de navigateur (BHO) (9) - 1s O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} (Orphean) O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll =>.Adobe Systems, Incorporated® O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} . (.CANON INC. - Easy-WebPrint EX.) -- C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll =>.Canon Inc.® O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_91\bin\ssv.dll =>.Oracle America, Inc.® O2 - BHO: (no name) - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} (Orphean) O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll =>.Microsoft Corporation® O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll =>.Google Inc® O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_91\bin\jp2ssv.dll =>.Oracle America, Inc.® O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} . (.Yahoo! Inc - Yahoo! Single Instance for Mail.) -- C:\Program Files\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll =>.Yahoo! Inc.® ---\\ Applications lancées au démarrage du système (17) - 0s O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe =>.Realtek Semiconductor O4 - HKLM\..\Run: [SetPoint] . (.Logitech Inc. - Logitech SetPoint.) -- C:\Program Files\Logitech\SetPoint\KEM.exe =>.Logitech Inc. O4 - HKLM\..\Run: [Skytel] . (.Realtek Semiconductor Corp. - Realtek Voice Manager.) -- C:\Windows\Skytel.exe =>.Realtek Semiconductor Corp. O4 - HKLM\..\Run: [CanonQuickMenu] . (.CANON INC. - Canon Quick Menu.) -- C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE =>.Canon Inc.® O4 - HKLM\..\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe =>.Avira Operations GmbH & Co. KG® O4 - HKLM\..\Run: [Philips Device Listener] . (...) -- C:\Program Files\Philips\Philips Songbird Resources\Autolauncher\PhilipsDeviceListener.exe O4 - HKLM\..\Run: [Avira SystrayStartTrigger] . (.Avira Operations GmbH & Co. KG - Avira Launcher.) -- C:\Program Files\Avira\Launcher\Avira.SystrayStartTrigger.exe =>.Avira Operations GmbH & Co. KG® O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKCU\..\Run: [Amazon Music] . (...) -- C:\Users\frank\AppData\Local\Amazon Music\Amazon Music Helper.exe =>.Amazon Services LLC® O4 - HKCU\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\wmpnscfg.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-1954409307-986156260-3467465407-1000\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-1954409307-986156260-3467465407-1000\..\Run: [Amazon Music] . (...) -- C:\Users\frank\AppData\Local\Amazon Music\Amazon Music Helper.exe =>.Amazon Services LLC® O4 - HKUS\S-1-5-21-1954409307-986156260-3467465407-1000\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\wmpnscfg.exe =>.Microsoft Corporation ---\\ Raccourcis Global Startup (42) - 6s O4 - GS\Desktop [Administrateur]: Amazon Music.lnk . (.Amazon - Amazon Music.) C:\Users\frank\AppData\Local\Amazon Music\Amazon Music.exe =>.Amazon Services LLC® O4 - GS\Desktop [Administrateur]: Documents - Raccourci.lnk . (...) C:\Users\frank\Documents O4 - GS\Desktop [Administrateur]: Google Chrome (2).lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Desktop [Administrateur]: Philips Songbird (2).lnk . (.Koninklijke Philips Electronics N.V. - Philips Songbird.) C:\Program Files\Philips\Philips Songbird\Philips-Songbird.exe =>.Koninklijke Philips Electronics N.V. O4 - GS\Desktop [Administrateur]: SpeedFan.lnk . (.Almico Software (www.almico.com) - .) C:\Program Files\SpeedFan\speedfan.exe =>.Sokno S.R.L.® O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\frank\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: Avira AntiVir Control Center.lnk . (.Avira Operations GmbH & Co. KG - Control Center.) C:\Program Files\Avira\AntiVir Desktop\avcenter.exe =>.Avira Operations GmbH & Co. KG® O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrateur]: Microsoft Office Word 2007.lnk . (...) C:\Windows\Installer\{91120000-002F-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\Quicklaunch [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [Administrateur]: MUSICMATCH Jukebox.lnk . (.MUSICMATCH, Inc. - MUSICMATCH Jukebox.) C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmjb.exe O4 - GS\Quicklaunch [Administrateur]: Philips Songbird.lnk . (.Koninklijke Philips Electronics N.V. - Philips Songbird.) C:\Program Files\Philips\Philips Songbird\Philips-Songbird.exe =>.Koninklijke Philips Electronics N.V. O4 - GS\Quicklaunch [Administrateur]: PMU Poker.lnk . (...) C:\Users\frank\Desktop\PMUPoker_Installer\PMU.exe O4 - GS\Quicklaunch [Administrateur]: PokerStars.fr.lnk . (.Rational Intellectual Holdings Ltd. - Rational Updater Client Software.) C:\Program Files\PokerStars.FR\PokerStarsUpdate.exe =>.Amaya Services Limited® O4 - GS\sendTo [Administrateur]: AVS Mobile Uploader.lnk . (.Online Media Technologies Ltd. - AVS Mobile Uploader.) C:\Program Files\Common Files\AVSMedia\MobileUploader\AVSMobileUploader.exe =>.Online Media Technologies Ltd. O4 - GS\sendTo [Administrateur]: AVS Video Burner.lnk . (.Online Media Technologies Ltd. - AVS Video Burner.) C:\Program Files\Common Files\AVSMedia\BurnerService\AVSVideoBurner.exe =>.Online Media Technologies Ltd. O4 - GS\sendTo [Administrateur]: MediaInfo.lnk . (...) C:\Program Files\K-Lite Codec Pack\Tools\mediainfo.exe O4 - GS\sendTo [Administrateur]: MUSICMATCH Burner Plus.lnk . (.MUSICMATCH, Inc. - MUSICMATCH Jukebox.) C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\MMFWLaunch.exe O4 - GS\Desktop [frank]: Amazon Music.lnk . (.Amazon - Amazon Music.) C:\Users\frank\AppData\Local\Amazon Music\Amazon Music.exe =>.Amazon Services LLC® O4 - GS\Desktop [frank]: Documents - Raccourci.lnk . (...) C:\Users\frank\Documents O4 - GS\Desktop [frank]: Google Chrome (2).lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Desktop [frank]: Philips Songbird (2).lnk . (.Koninklijke Philips Electronics N.V. - Philips Songbird.) C:\Program Files\Philips\Philips Songbird\Philips-Songbird.exe =>.Koninklijke Philips Electronics N.V. O4 - GS\Desktop [frank]: SpeedFan.lnk . (.Almico Software (www.almico.com) - .) C:\Program Files\SpeedFan\speedfan.exe =>.Sokno S.R.L.® O4 - GS\Desktop [frank]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\frank\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [frank]: Avira AntiVir Control Center.lnk . (.Avira Operations GmbH & Co. KG - Control Center.) C:\Program Files\Avira\AntiVir Desktop\avcenter.exe =>.Avira Operations GmbH & Co. KG® O4 - GS\Quicklaunch [frank]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [frank]: Microsoft Office Word 2007.lnk . (...) C:\Windows\Installer\{91120000-002F-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\Quicklaunch [frank]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [frank]: MUSICMATCH Jukebox.lnk . (.MUSICMATCH, Inc. - MUSICMATCH Jukebox.) C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmjb.exe O4 - GS\Quicklaunch [frank]: Philips Songbird.lnk . (.Koninklijke Philips Electronics N.V. - Philips Songbird.) C:\Program Files\Philips\Philips Songbird\Philips-Songbird.exe =>.Koninklijke Philips Electronics N.V. O4 - GS\Quicklaunch [frank]: PMU Poker.lnk . (...) C:\Users\frank\Desktop\PMUPoker_Installer\PMU.exe O4 - GS\Quicklaunch [frank]: PokerStars.fr.lnk . (.Rational Intellectual Holdings Ltd. - Rational Updater Client Software.) C:\Program Files\PokerStars.FR\PokerStarsUpdate.exe =>.Amaya Services Limited® O4 - GS\sendTo [frank]: AVS Mobile Uploader.lnk . (.Online Media Technologies Ltd. - AVS Mobile Uploader.) C:\Program Files\Common Files\AVSMedia\MobileUploader\AVSMobileUploader.exe =>.Online Media Technologies Ltd. O4 - GS\sendTo [frank]: AVS Video Burner.lnk . (.Online Media Technologies Ltd. - AVS Video Burner.) C:\Program Files\Common Files\AVSMedia\BurnerService\AVSVideoBurner.exe =>.Online Media Technologies Ltd. O4 - GS\sendTo [frank]: MediaInfo.lnk . (...) C:\Program Files\K-Lite Codec Pack\Tools\mediainfo.exe O4 - GS\sendTo [frank]: MUSICMATCH Burner Plus.lnk . (.MUSICMATCH, Inc. - MUSICMATCH Jukebox.) C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\MMFWLaunch.exe O4 - GS\CommonDesktop [Public]: Canon MX390 series Manuel à l'écran.lnk . (.CANON INC. - Easy Guide Viewer.) C:\Program Files\Canon\IJ Manual\Easy Guide Viewer\cmview.exe =>.Canon Inc.® O4 - GS\CommonDesktop [Public]: Canon Quick Menu.lnk . (.CANON INC. - Canon Quick Menu.) C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE =>.Canon Inc.® O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: Speccy.lnk . (.Piriform Ltd - Speccy.) C:\Program Files\Speccy\Speccy.exe =>.Piriform Ltd® O4 - GS\Startup [Public]: Logitech SetPoint.lnk . (.Logitech Inc. - Logitech SetPoint.) C:\Program Files\Logitech\SetPoint\KEM.exe =>.Logitech Inc. O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\System32\taskschd.msc ---\\ Modification Domaine/Adresses DNS (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{0D9E239F-8E1F-490E-8A2E-36C9885FFF89}: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{1104828C-4471-4797-A516-6752A7A18672}: DhcpNameServer = 192.168.42.129 ---\\ Protocole additionnel (25) - 0s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation® O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- c:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll =>.Microsoft Corporation O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation® O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Logiciels installés (50) - 22s O42 - Logiciel: Adobe Flash Player 22 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 22 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Amazon Music - (.Amazon Services LLC.) [HKCU] -- Amazon Amazon Music =>.Amazon Services LLC O42 - Logiciel: Avira Antivirus v15.0.17.273 - (.Avira Operations GmbH & Co. KG.) [HKLM] -- Avira Antivirus =>.Avira Operations GmbH & Co. KG® O42 - Logiciel: Avira Launcher v1.1.63.21885 - (.Avira Operations GmbH & Co. KG.) [HKLM] -- {12225E6B-0028-4417-B43B-E72DA1FB0CD2} =>.Avira Operations GmbH & Co. KG O42 - Logiciel: Avira Launcher v1.1.63.21885 - (.Avira Operations GmbH & Co. KG.) [HKLM] -- {761cd2c4-5249-4346-8318-a499d06d2681} =>.Avira Operations GmbH & Co. KG® O42 - Logiciel: Canon Easy-WebPrint EX - (.Canon Inc..) [HKLM] -- Easy-WebPrint EX =>.Canon Inc.® O42 - Logiciel: Canon IJ Scan Utility - (.Canon Inc..) [HKLM] -- Canon_IJ_Scan_Utility =>.Canon Inc.® O42 - Logiciel: Canon Inkjet Printer/Scanner/Fax Extended Survey Program - (.Canon Inc..) [HKLM] -- CANONIJPLM100 =>.Canon Inc.® O42 - Logiciel: Canon MX390 series MP Drivers - (.Canon Inc..) [HKLM] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX390_series =>.Canon Inc.® O42 - Logiciel: Canon MX390 series On-screen Manual - (.Canon Inc..) [HKLM] -- Canon MX390 series On-screen Manual =>.Canon Inc.® O42 - Logiciel: Canon My Image Garden - (.Canon Inc..) [HKLM] -- Canon My Image Garden =>.Canon Inc.® O42 - Logiciel: Canon My Image Garden Design Files - (.Canon Inc..) [HKLM] -- Canon My Image Garden Design Files =>.Canon Inc.® O42 - Logiciel: Canon My Printer - (.Canon Inc..) [HKLM] -- CanonMyPrinter =>.Canon Inc.® O42 - Logiciel: Canon Quick Menu - (.Canon Inc..) [HKLM] -- CanonQuickMenu =>.Canon Inc.® O42 - Logiciel: Canon Utilitaire de numérotation rapide - (.Canon Inc..) [HKLM] -- Speed Dial Utility =>.Canon Inc.® O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft O42 - Logiciel: Enregistrement utilisateur de Canon MX390 series - (.‭Canon Inc..) [HKLM] -- Enregistrement utilisateur de Canon MX390 series =>.Canon Inc.® O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Java 8 Update 91 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218091F0} =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation O42 - Logiciel: LauncherMA - (.Micro Application.) [HKLM] -- {C06EFB22-B5DB-46C5-9215-BCB5C19C0858} =>.Micro Application O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM] -- {95120000-00B9-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Mises à jour NVIDIA 2.5.12.11 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update =>.NVIDIA Corporation O42 - Logiciel: Mozilla Firefox 43.0.1 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 43.0.1 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft O42 - Logiciel: Notification de cadeaux MSN - (.Microsoft.) [HKCU] -- Notification de cadeaux MSN =>.Microsoft O42 - Logiciel: NVIDIA GeForce Experience 2.5.12.11 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience =>.NVIDIA Corporation O42 - Logiciel: NVIDIA GeForce Experience Service - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer =>.NVIDIA Corporation O42 - Logiciel: NVIDIA LED Visualizer 1.0 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Logiciel système PhysX 9.13.1220 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Network Service - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service =>.NVIDIA Corporation O42 - Logiciel: NVIDIA PhysX - (...) [HKLM] -- {80407BA7-7763-4395-AB98-5233F1B34E65} O42 - Logiciel: NVIDIA Pilote du contrôleur 3D Vision 340.50 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Pilote graphique 341.74 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Update Core - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core =>.NVIDIA Corporation O42 - Logiciel: Panneau de configuration NVIDIA 341.74 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel =>.NVIDIA Corporation O42 - Logiciel: PokerStars.fr - (.PokerStars.fr.) [HKLM] -- PokerStars.fr =>.PokerStars.fr O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp. O42 - Logiciel: Segoe UI - (.Microsoft Corp.) [HKLM] -- {5DD4FCBD-A3C1-4155-9E17-4161C70AAABA} =>.Microsoft Corp O42 - Logiciel: Sierra Print Artist Junior - (...) [HKLM] -- SierraPAJ O42 - Logiciel: Sierra Utilities - (...) [HKLM] -- Sierra Utilities O42 - Logiciel: Speccy - (.Piriform.) [HKLM] -- Speccy =>.Piriform Ltd® O42 - Logiciel: WIKO Android Phone - (.WIKO.) [HKLM] -- {5A42C74B-3F4C-4134-8A0F-07FBB277337B} =>.WIKO ---\\ HKCU & HKLM Software Keys (159) - 22s HKLM\SOFTWARE\Acer HKLM\SOFTWARE\Acer Incorporated HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\AGEIA Technologies HKLM\SOFTWARE\ALWIL Software HKLM\SOFTWARE\Amazon HKLM\SOFTWARE\America Online HKLM\SOFTWARE\anset HKLM\SOFTWARE\ArcSoft HKLM\SOFTWARE\Avira HKLM\SOFTWARE\AviSynth HKLM\SOFTWARE\AVS4YOU HKLM\SOFTWARE\BackWeb HKLM\SOFTWARE\BrowserChoice HKLM\SOFTWARE\Canon HKLM\SOFTWARE\chello HKLM\SOFTWARE\Codec Tweak Tool HKLM\SOFTWARE\CyberLink HKLM\SOFTWARE\Cygnus Solutions HKLM\SOFTWARE\DivXNetworks HKLM\SOFTWARE\EnigmaSoftwareGroup HKLM\SOFTWARE\Extended Systems HKLM\SOFTWARE\GNU HKLM\SOFTWARE\Google HKLM\SOFTWARE\HaaliMkx HKLM\SOFTWARE\Hauppauge HKLM\SOFTWARE\Intel HKLM\SOFTWARE\JavaSoft HKLM\SOFTWARE\JreMetrics HKLM\SOFTWARE\Khronos HKLM\SOFTWARE\KLCodecPack HKLM\SOFTWARE\LightScribe HKLM\SOFTWARE\logitech HKLM\SOFTWARE\Look@LAN HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\Malwarebytes' Anti-Malware HKLM\SOFTWARE\McAfee HKLM\SOFTWARE\MimarSinan HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\mozilla.org HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\MUSICMATCH HKLM\SOFTWARE\muvee Technologies HKLM\SOFTWARE\NewTech Infosystems HKLM\SOFTWARE\NOS HKLM\SOFTWARE\Notepad HKLM\SOFTWARE\NVIDIA Corporation HKLM\SOFTWARE\Oberon Media HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\optimidata HKLM\SOFTWARE\Oracle HKLM\SOFTWARE\PatchPoker HKLM\SOFTWARE\Philips Songbird HKLM\SOFTWARE\Photocite HKLM\SOFTWARE\Piriform HKLM\SOFTWARE\RealNetworks HKLM\SOFTWARE\Realtek HKLM\SOFTWARE\Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\Research In Motion HKLM\SOFTWARE\S3R521 HKLM\SOFTWARE\Sierra On-Line HKLM\SOFTWARE\Sierra OnLine HKLM\SOFTWARE\Skype HKLM\SOFTWARE\Songbird HKLM\SOFTWARE\Sonic HKLM\SOFTWARE\SpeedFan HKLM\SOFTWARE\SRS Labs HKLM\SOFTWARE\Taronja HKLM\SOFTWARE\TomTom HKLM\SOFTWARE\VideoLAN HKLM\SOFTWARE\Volatile HKLM\SOFTWARE\Waves Audio HKLM\SOFTWARE\WIKO HKLM\SOFTWARE\Windows HKLM\SOFTWARE\WOW6432Node HKLM\SOFTWARE\X-AVCSD HKLM\SOFTWARE\Xing Technology Corp. HKLM\SOFTWARE\Yahoo =>.Yahoo! HKCU\SOFTWARE\AC3Filter HKCU\SOFTWARE\Acer HKCU\SOFTWARE\ACF HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\ALWIL Software HKCU\SOFTWARE\Amazon HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\ArcSoft HKCU\SOFTWARE\Audacity HKCU\SOFTWARE\Avira HKCU\SOFTWARE\AVS4YOU HKCU\SOFTWARE\BIOSFLASH HKCU\SOFTWARE\Borland HKCU\SOFTWARE\Canon HKCU\SOFTWARE\CanonBJ HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\Cygnus Solutions HKCU\SOFTWARE\DivXNetworks HKCU\SOFTWARE\EverestPoker.fr HKCU\SOFTWARE\Extended Systems HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\GSpot Appliance Corp HKCU\SOFTWARE\Haali HKCU\SOFTWARE\HookNetwork HKCU\SOFTWARE\HTS HKCU\SOFTWARE\HTS-BELOTE HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\ImageViewer HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\JEDI-VCL HKCU\SOFTWARE\Jitit Virtual Registry HKCU\SOFTWARE\Local AppWizard-Generated Applications HKCU\SOFTWARE\Logitech HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\madFlac HKCU\SOFTWARE\MainConcept HKCU\SOFTWARE\Malwarebytes' Anti-Malware HKCU\SOFTWARE\MediaInfo HKCU\SOFTWARE\MGS HKCU\SOFTWARE\MicroGaming HKCU\SOFTWARE\MONOGRAM HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\NewTech Infosystems HKCU\SOFTWARE\Northcode Inc HKCU\SOFTWARE\NVIDIA Corporation HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Partouche HKCU\SOFTWARE\Partouche Technologies HKCU\SOFTWARE\PatchPoker HKCU\SOFTWARE\Philips Songbird HKCU\SOFTWARE\Photocite HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\PMU HKCU\SOFTWARE\PTECH HKCU\SOFTWARE\RealNetworks HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\Research In Motion HKCU\SOFTWARE\SecuredDownload =>.Superfluous.FriedCookie HKCU\SOFTWARE\Sierra On-Line HKCU\SOFTWARE\Skype HKCU\SOFTWARE\Software HKCU\SOFTWARE\Songbird HKCU\SOFTWARE\SpeedFan HKCU\SOFTWARE\TomTom HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\WebTarot HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Yahoo =>.Yahoo! HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Canon HKCU\SOFTWARE\AppDataLow\Software\Google HKCU\SOFTWARE\AppDataLow\Software\JavaSoft HKCU\SOFTWARE\AppDataLow\Software\Re_markit =>PUP.Optional.ReMarkIt HKCU\SOFTWARE\AppDataLow\Software\Yahoo ---\\ Contenu des dossiers Programmes (289) - 66s O43 - CFD: 18/06/2016 - [] D -- C:\Program Files\1 Jeu par jour O43 - CFD: 19/09/2009 - [] D -- C:\Program Files\4shared.com O43 - CFD: 31/10/2008 - [] D -- C:\Program Files\Acer O43 - CFD: 09/05/2008 - [] D -- C:\Program Files\Acer Arcade Live O43 - CFD: 09/05/2008 - [] D -- C:\Program Files\Acer GameZone O43 - CFD: 19/10/2006 - [] D -- C:\Program Files\Acer Incorporated O43 - CFD: 09/05/2008 - [] D -- C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites O43 - CFD: 20/04/2012 - [] D -- C:\Program Files\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 11/03/2014 - [0] D -- C:\Program Files\AGEIA Technologies O43 - CFD: 06/02/2010 - [0] D -- C:\Program Files\Alwil Software O43 - CFD: 18/03/2013 - [] D -- C:\Program Files\Amazon O43 - CFD: 21/03/2009 - [] D -- C:\Program Files\ArcSoft O43 - CFD: 26/03/2010 - [] D -- C:\Program Files\Audacity O43 - CFD: 08/07/2015 - [] D -- C:\Program Files\Avira =>.Avira Operations GmbH & Co. KG® O43 - CFD: 06/03/2010 - [] D -- C:\Program Files\AviSynth 2.5 O43 - CFD: 06/03/2010 - [] D -- C:\Program Files\AVS4YOU O43 - CFD: 09/05/2008 - [] D -- C:\Program Files\bin32 O43 - CFD: 26/07/2014 - [] D -- C:\Program Files\Canon =>.Canon Inc.® O43 - CFD: 26/07/2014 - [] HD -- C:\Program Files\CanonBJ =>.Canon Inc.® O43 - CFD: 06/03/2015 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd® O43 - CFD: 04/11/2008 - [] D -- C:\Program Files\Ciel O43 - CFD: 23/04/2016 - [] D -- C:\Program Files\Common Files O43 - CFD: 09/05/2008 - [] D -- C:\Program Files\CyberLink O43 - CFD: 19/08/2009 - [] D -- C:\Program Files\ecoeuromillionsSha O43 - CFD: 20/04/2012 - [] D -- C:\Program Files\Enigma Software Group O43 - CFD: 09/05/2008 - [] D -- C:\Program Files\eSobi =>.esobi Inc.® O43 - CFD: 31/10/2008 - [0] SHD -- C:\Program Files\Fichiers communs O43 - CFD: 14/07/2012 - [] D -- C:\Program Files\Google =>.Google Inc® O43 - CFD: 18/06/2016 - [] HD -- C:\Program Files\InstallShield Installation Information =>.CyberLink® O43 - CFD: 11/05/2016 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 23/04/2016 - [] D -- C:\Program Files\Java =>.Oracle America, Inc.® O43 - CFD: 10/03/2010 - [] D -- C:\Program Files\K-Lite Codec Pack O43 - CFD: 09/05/2008 - [0] D -- C:\Program Files\log O43 - CFD: 03/06/2011 - [] D -- C:\Program Files\Logitech O43 - CFD: 18/10/2014 - [] D -- C:\Program Files\Look@LAN O43 - CFD: 20/04/2012 - [] D -- C:\Program Files\Malwarebytes' Anti-Malware {087BF904D84543142F7B6F46ABCD459D} O43 - CFD: 04/05/2015 - [] D -- C:\Program Files\Micro Application O43 - CFD: 25/07/2014 - [0] D -- C:\Program Files\Microsoft O43 - CFD: 17/10/2014 - [] D -- C:\Program Files\Microsoft ASP.NET O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Microsoft Games O43 - CFD: 29/06/2011 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 30/04/2012 - [] D -- C:\Program Files\Microsoft Security Client =>.Microsoft Corporation® O43 - CFD: 13/06/2016 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 24/07/2014 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition O43 - CFD: 16/10/2009 - [] D -- C:\Program Files\Microsoft Works O43 - CFD: 26/06/2010 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 13/08/2010 - [] D -- C:\Program Files\Movie Maker O43 - CFD: 12/06/2016 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla Corporation® O43 - CFD: 13/06/2016 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla Corporation® O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\MSBuild O43 - CFD: 31/10/2008 - [0] D -- C:\Program Files\MSXML 4.0 O43 - CFD: 03/06/2011 - [] D -- C:\Program Files\MUSICMATCH O43 - CFD: 09/05/2008 - [] D -- C:\Program Files\NewTech Infosystems =>.NewTech Infosystems, Inc® O43 - CFD: 30/07/2015 - [] D -- C:\Program Files\NVIDIA Corporation =>.NVIDIA Corporation® O43 - CFD: 09/07/2012 - [] D -- C:\Program Files\Oracle =>.Oracle America, Inc.® O43 - CFD: 18/12/2011 - [] D -- C:\Program Files\Orange O43 - CFD: 17/02/2011 - [] D -- C:\Program Files\Philips O43 - CFD: 01/07/2009 - [0] D -- C:\Program Files\PHOTOCITE Collection O43 - CFD: 26/04/2009 - [] D -- C:\Program Files\PokerRoom.com O43 - CFD: 19/07/2010 - [] D -- C:\Program Files\PokerStars O43 - CFD: 10/06/2016 - [] D -- C:\Program Files\PokerStars.FR =>.Amaya Services Limited® O43 - CFD: 19/07/2010 - [] D -- C:\Program Files\PokerStars.NET O43 - CFD: 09/05/2008 - [] D -- C:\Program Files\profile O43 - CFD: 06/03/2010 - [] D -- C:\Program Files\Real O43 - CFD: 09/05/2008 - [] D -- C:\Program Files\Realtek O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 23/04/2013 - [] D -- C:\Program Files\Research In Motion =>.Research In Motion® O43 - CFD: 05/05/2014 - [] D -- C:\Program Files\Sierra On-Line O43 - CFD: 19/06/2016 - [] D -- C:\Program Files\Speccy =>.Piriform Ltd® O43 - CFD: 15/06/2016 - [] D -- C:\Program Files\SpeedFan =>.Sokno S.R.L.® O43 - CFD: 29/12/2012 - [0] D -- C:\Program Files\TomTom DesktopSuite O43 - CFD: 29/12/2012 - [] D -- C:\Program Files\TomTom HOME 2 =>.TomTom International BV® O43 - CFD: 29/12/2012 - [] D -- C:\Program Files\TomTom International B.V O43 - CFD: 07/02/2010 - [] D -- C:\Program Files\trend micro =>.Trend Micro, Inc.® O43 - CFD: 02/11/2006 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 06/03/2010 - [] D -- C:\Program Files\VideoLAN O43 - CFD: 22/10/2009 - [] D -- C:\Program Files\Windows Calendar O43 - CFD: 11/02/2016 - [] D -- C:\Program Files\Windows Collaboration O43 - CFD: 22/10/2009 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Windows® O43 - CFD: 11/05/2016 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 24/07/2014 - [] D -- C:\Program Files\Windows Live =>.Microsoft Corporation® O43 - CFD: 10/03/2016 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 11/06/2015 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 31/10/2008 - [] D -- C:\Program Files\Windows NT O43 - CFD: 22/10/2009 - [] D -- C:\Program Files\Windows Photo Gallery O43 - CFD: 17/11/2009 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 22/10/2009 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 09/09/2010 - [] D -- C:\Program Files\Yahoo! O43 - CFD: 19/09/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\4shared Service O43 - CFD: 06/01/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 09/05/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer O43 - CFD: 09/05/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Arcade Live O43 - CFD: 09/05/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer GameZone O43 - CFD: 09/05/2008 - [] AD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AcerSystem O43 - CFD: 06/01/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 18/03/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Amazon O43 - CFD: 21/03/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft PhotoBase O43 - CFD: 21/03/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft PhotoStudio O43 - CFD: 10/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira O43 - CFD: 06/03/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVS4YOU O43 - CFD: 23/04/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlackBerry O43 - CFD: 21/03/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon O43 - CFD: 26/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MX390 series O43 - CFD: 26/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MX390 series Manual O43 - CFD: 26/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities O43 - CFD: 06/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 04/11/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ciel O43 - CFD: 26/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Enregistrement utilisateur de Canon MX390 series O43 - CFD: 09/05/2008 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eSobi v2 O43 - CFD: 21/01/2008 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Extras and Upgrades O43 - CFD: 07/04/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Audio Pack O43 - CFD: 27/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 23/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 10/03/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack O43 - CFD: 03/06/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech O43 - CFD: 02/11/2006 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 20/04/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware O43 - CFD: 14/09/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 12/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 10/12/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works O43 - CFD: 12/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox O43 - CFD: 03/06/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MUSICMATCH O43 - CFD: 09/05/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTI Backup Now 5 O43 - CFD: 09/05/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTI Media Maker 8 O43 - CFD: 02/07/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation O43 - CFD: 17/02/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Philips O43 - CFD: 28/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PMU Poker O43 - CFD: 18/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PokerStars.FR O43 - CFD: 05/05/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sierra O43 - CFD: 19/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy O43 - CFD: 21/03/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpeedFan O43 - CFD: 18/08/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 02/11/2006 - [] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 29/12/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom O43 - CFD: 06/03/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 30/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WIKO Android Phone O43 - CFD: 09/05/2008 - [] D -- C:\ProgramData\Acer GameZone Console O43 - CFD: 12/04/2013 - [] D -- C:\ProgramData\Adobe O43 - CFD: 06/02/2010 - [] D -- C:\ProgramData\Alwil Software O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 03/06/2015 - [] D -- C:\ProgramData\Avira O43 - CFD: 06/03/2010 - [] D -- C:\ProgramData\AVS4YOU O43 - CFD: 31/10/2008 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 31/10/2008 - [] HD -- C:\ProgramData\CanonBJ O43 - CFD: 26/07/2014 - [] HD -- C:\ProgramData\CanonIJEGV O43 - CFD: 26/07/2014 - [] HD -- C:\ProgramData\CanonIJFAX O43 - CFD: 26/07/2014 - [] HD -- C:\ProgramData\CanonIJMIG O43 - CFD: 19/11/2014 - [] HD -- C:\ProgramData\CanonIJMyPrinter O43 - CFD: 18/06/2016 - [] D -- C:\ProgramData\CanonIJPLM O43 - CFD: 26/07/2014 - [] HD -- C:\ProgramData\CanonIJQuickMenu O43 - CFD: 23/05/2015 - [] HD -- C:\ProgramData\CanonIJScan O43 - CFD: 26/07/2014 - [] D -- C:\ProgramData\CanonIJWSpt O43 - CFD: 04/11/2008 - [] D -- C:\ProgramData\Ciel O43 - CFD: 23/02/2009 - [] D -- C:\ProgramData\CyberLink O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 09/05/2008 - [] D -- C:\ProgramData\eSobi O43 - CFD: 31/10/2008 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 09/05/2008 - [] D -- C:\ProgramData\FloodLightGames O43 - CFD: 29/03/2009 - [] D -- C:\ProgramData\Google O43 - CFD: 07/02/2010 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 12/07/2013 - [] D -- C:\ProgramData\McAfee O43 - CFD: 31/10/2008 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 05/09/2009 - [0] D -- C:\ProgramData\MGS O43 - CFD: 04/05/2015 - [] D -- C:\ProgramData\Micro Application O43 - CFD: 05/09/2009 - [0] D -- C:\ProgramData\Microgaming O43 - CFD: 09/03/2015 - [] D -- C:\ProgramData\Microsoft O43 - CFD: 11/05/2016 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 31/10/2008 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 01/05/2013 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 30/07/2015 - [] D -- C:\ProgramData\NVIDIA O43 - CFD: 30/07/2015 - [] D -- C:\ProgramData\NVIDIA Corporation O43 - CFD: 07/10/2009 - [] D -- C:\ProgramData\Office Genuine Advantage O43 - CFD: 08/02/2016 - [] D -- C:\ProgramData\Oracle O43 - CFD: 10/06/2016 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 07/07/2014 - [] D -- C:\ProgramData\PC1Data O43 - CFD: 06/03/2010 - [] D -- C:\ProgramData\Real O43 - CFD: 23/04/2013 - [] D -- C:\ProgramData\Research In Motion O43 - CFD: 31/10/2008 - [] D -- C:\ProgramData\SiteAdvisor O43 - CFD: 09/06/2015 - [] D -- C:\ProgramData\Skype O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 10/01/2011 - [] D -- C:\ProgramData\Sun O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 29/12/2012 - [] D -- C:\ProgramData\TomTom O43 - CFD: 16/06/2016 - [] D -- C:\ProgramData\WindowsSearch O43 - CFD: 04/11/2008 - [0] D -- C:\ProgramData\WinZip O43 - CFD: 21/03/2009 - [0] D -- C:\ProgramData\Xerox O43 - CFD: 09/09/2010 - [] D -- C:\ProgramData\Yahoo! O43 - CFD: 20/04/2012 - [] D -- C:\Program Files\Common Files\Adobe O43 - CFD: 13/11/2013 - [] D -- C:\Program Files\Common Files\Adobe AIR O43 - CFD: 06/03/2010 - [] D -- C:\Program Files\Common Files\AVSMedia O43 - CFD: 04/11/2008 - [] D -- C:\Program Files\Common Files\Ciel O43 - CFD: 14/05/2014 - [] D -- C:\Program Files\Common Files\DESIGNER O43 - CFD: 09/05/2008 - [] D -- C:\Program Files\Common Files\InstallShield O43 - CFD: 23/04/2016 - [] D -- C:\Program Files\Common Files\Java O43 - CFD: 09/05/2008 - [] D -- C:\Program Files\Common Files\LightScribe O43 - CFD: 31/10/2008 - [] D -- C:\Program Files\Common Files\Logitech O43 - CFD: 24/07/2014 - [] D -- C:\Program Files\Common Files\microsoft shared O43 - CFD: 04/11/2008 - [] D -- C:\Program Files\Common Files\MSSoap O43 - CFD: 09/05/2008 - [] D -- C:\Program Files\Common Files\muvee Technologies O43 - CFD: 09/05/2008 - [] D -- C:\Program Files\Common Files\Oberon Media O43 - CFD: 06/03/2010 - [] D -- C:\Program Files\Common Files\Real O43 - CFD: 23/04/2013 - [] D -- C:\Program Files\Common Files\Research In Motion O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Common Files\Services O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 10/03/2016 - [] D -- C:\Program Files\Common Files\System O43 - CFD: 24/07/2014 - [] D -- C:\Program Files\Common Files\Windows Live O43 - CFD: 20/04/2012 - [] D -- C:\Program Files\Common Files\Wise Installation Wizard O43 - CFD: 23/04/2013 - [] D -- C:\Program Files\Common Files\XCPCSync.OEM O43 - CFD: 01/12/2011 - [0] SHD -- C:\Users\frank\AppData\Roaming\.# O43 - CFD: 31/03/2013 - [] D -- C:\Users\frank\AppData\Roaming\.Temp_Updater_Directory O43 - CFD: 09/05/2008 - [] D -- C:\Users\frank\AppData\Roaming\Acer GameZone Console O43 - CFD: 07/09/2012 - [] D -- C:\Users\frank\AppData\Roaming\ACF O43 - CFD: 26/10/2009 - [] D -- C:\Users\frank\AppData\Roaming\Adobe O43 - CFD: 18/03/2013 - [] D -- C:\Users\frank\AppData\Roaming\Amazon O43 - CFD: 21/03/2009 - [] D -- C:\Users\frank\AppData\Roaming\Arcsoft O43 - CFD: 07/04/2015 - [] D -- C:\Users\frank\AppData\Roaming\Avira O43 - CFD: 06/03/2010 - [] D -- C:\Users\frank\AppData\Roaming\AVS4YOU O43 - CFD: 18/06/2016 - [] D -- C:\Users\frank\AppData\Roaming\Canon O43 - CFD: 23/02/2009 - [] D -- C:\Users\frank\AppData\Roaming\CyberLink O43 - CFD: 06/03/2010 - [] D -- C:\Users\frank\AppData\Roaming\dvdcss O43 - CFD: 17/11/2011 - [] D -- C:\Users\frank\AppData\Roaming\fr.barrierepoker.air.D043989C8F5E91300BF71855036B28F854BB8613.1 O43 - CFD: 07/04/2014 - [] D -- C:\Users\frank\AppData\Roaming\FreeAudioPack O43 - CFD: 29/03/2009 - [] D -- C:\Users\frank\AppData\Roaming\Google O43 - CFD: 07/04/2011 - [] D -- C:\Users\frank\AppData\Roaming\Icones O43 - CFD: 31/10/2008 - [] D -- C:\Users\frank\AppData\Roaming\Identities O43 - CFD: 03/06/2011 - [] D -- C:\Users\frank\AppData\Roaming\Logitech O43 - CFD: 31/10/2008 - [] D -- C:\Users\frank\AppData\Roaming\Macromedia O43 - CFD: 20/08/2013 - [] D -- C:\Users\frank\AppData\Roaming\main O43 - CFD: 07/02/2010 - [] D -- C:\Users\frank\AppData\Roaming\Malwarebytes O43 - CFD: 02/11/2006 - [0] D -- C:\Users\frank\AppData\Roaming\Media Center Programs O43 - CFD: 20/05/2014 - [0] D -- C:\Users\frank\AppData\Roaming\Media Player Classic O43 - CFD: 04/05/2015 - [] SD -- C:\Users\frank\AppData\Roaming\Microsoft O43 - CFD: 31/08/2010 - [] D -- C:\Users\frank\AppData\Roaming\Mozilla O43 - CFD: 26/08/2011 - [] D -- C:\Users\frank\AppData\Roaming\Mozilla-Cache O43 - CFD: 04/05/2015 - [] D -- C:\Users\frank\AppData\Roaming\NVIDIA O43 - CFD: 20/07/2012 - [] D -- C:\Users\frank\AppData\Roaming\Objectif Tarot O43 - CFD: 17/10/2014 - [] D -- C:\Users\frank\AppData\Roaming\Oracle O43 - CFD: 17/02/2011 - [] D -- C:\Users\frank\AppData\Roaming\Philips O43 - CFD: 17/02/2011 - [] D -- C:\Users\frank\AppData\Roaming\Philips-Songbird O43 - CFD: 27/10/2012 - [] D -- C:\Users\frank\AppData\Roaming\PMU O43 - CFD: 06/03/2010 - [] D -- C:\Users\frank\AppData\Roaming\Real O43 - CFD: 23/04/2013 - [] D -- C:\Users\frank\AppData\Roaming\Research In Motion O43 - CFD: 09/06/2015 - [] D -- C:\Users\frank\AppData\Roaming\Skype O43 - CFD: 03/09/2015 - [] D -- C:\Users\frank\AppData\Roaming\Sun O43 - CFD: 01/11/2008 - [0] D -- C:\Users\frank\AppData\Roaming\Template O43 - CFD: 29/12/2012 - [] D -- C:\Users\frank\AppData\Roaming\TomTom O43 - CFD: 09/08/2010 - [] D -- C:\Users\frank\AppData\Roaming\vlc O43 - CFD: 19/02/2014 - [] D -- C:\Users\frank\AppData\Roaming\wam O43 - CFD: 06/10/2010 - [] D -- C:\Users\frank\AppData\Roaming\wam.04351C371E530C3762CBA45FA283ED972DCDEFB6.1 O43 - CFD: 20/07/2012 - [0] D -- C:\Users\frank\AppData\Roaming\Webtarot O43 - CFD: 19/06/2016 - [] D -- C:\Users\frank\AppData\Roaming\ZHP O43 - CFD: 18/06/2015 - [] D -- C:\Users\frank\AppData\Local\Adobe O43 - CFD: 30/04/2016 - [] D -- C:\Users\frank\AppData\Local\Amazon Music O43 - CFD: 31/10/2008 - [0] SHD -- C:\Users\frank\AppData\Local\Application Data O43 - CFD: 23/04/2013 - [] D -- C:\Users\frank\AppData\Local\Downloaded Installations O43 - CFD: 01/10/2015 - [] D -- C:\Users\frank\AppData\Local\Google O43 - CFD: 31/10/2008 - [0] SHD -- C:\Users\frank\AppData\Local\Historique O43 - CFD: 21/01/2013 - [] D -- C:\Users\frank\AppData\Local\Macromedia O43 - CFD: 09/03/2015 - [] D -- C:\Users\frank\AppData\Local\Microsoft O43 - CFD: 18/05/2012 - [] D -- C:\Users\frank\AppData\Local\Microsoft Games O43 - CFD: 29/01/2011 - [] D -- C:\Users\frank\AppData\Local\Microsoft Help O43 - CFD: 31/08/2010 - [] D -- C:\Users\frank\AppData\Local\Mozilla O43 - CFD: 03/12/2013 - [] D -- C:\Users\frank\AppData\Local\NVIDIA O43 - CFD: 18/08/2015 - [] D -- C:\Users\frank\AppData\Local\NVIDIA Corporation O43 - CFD: 26/10/2009 - [] D -- C:\Users\frank\AppData\Local\P5 O43 - CFD: 17/02/2011 - [] D -- C:\Users\frank\AppData\Local\Philips-Songbird O43 - CFD: 01/07/2009 - [] D -- C:\Users\frank\AppData\Local\PHOTOCITE Collection O43 - CFD: 16/07/2010 - [] D -- C:\Users\frank\AppData\Local\PokerStars O43 - CFD: 10/06/2016 - [] D -- C:\Users\frank\AppData\Local\PokerStars.FR O43 - CFD: 30/05/2010 - [] D -- C:\Users\frank\AppData\Local\PokerStars.NET O43 - CFD: 31/10/2008 - [] D -- C:\Users\frank\AppData\Local\PowerCinema O43 - CFD: 23/01/2013 - [] D -- C:\Users\frank\AppData\Local\rencontreshard O43 - CFD: 23/04/2013 - [] D -- C:\Users\frank\AppData\Local\Research In Motion O43 - CFD: 09/06/2015 - [] D -- C:\Users\frank\AppData\Local\Skype O43 - CFD: 19/06/2016 - [] D -- C:\Users\frank\AppData\Local\Temp O43 - CFD: 31/10/2008 - [0] SHD -- C:\Users\frank\AppData\Local\Temporary Internet Files O43 - CFD: 29/12/2012 - [] D -- C:\Users\frank\AppData\Local\TomTom O43 - CFD: 01/11/2008 - [] D -- C:\Users\frank\AppData\Local\VirtualStore O43 - CFD: 20/01/2015 - [] D -- C:\Users\frank\AppData\Local\Windows Live O43 - CFD: 10/09/2010 - [] D -- C:\Users\frank\AppData\Local\Yahoo O43 - CFD: 09/03/2015 - [] RD -- C:\Users\frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 15/03/2015 - [] D -- C:\Users\frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon Music O43 - CFD: 08/04/2014 - [] D -- C:\Users\frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PokerStars.FR O43 - CFD: 18/08/2015 - [] RD -- C:\Users\frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 26/04/2011 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Google O43 - CFD: 24/07/2014 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft O43 - CFD: 09/05/2008 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\PowerCinema ---\\ ShellIconOverlayIdentifiers (SIOI) (1) - 0s O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - Extension d'environnement du périphérique d.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation ---\\ Enumération des clés StartupReg (22) - 3s O53 - SMSR:HKLM\...\startupreg\Acer Empowering Technology Monitor [Key] . (...) -- C:\Program Files\Acer\Empowering Technology\SysMonitor.exe O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe =>.Adobe Systems Incorporated O53 - SMSR:HKLM\...\startupreg\Amazon Music [Key] . (...) -- C:\Users\frank\AppData\Local\Amazon Music\Amazon Music Helper.exe O53 - SMSR:HKLM\...\startupreg\Avira Systray [Key] . (.Avira Operations GmbH & Co. KG - Avira Launcher.) -- C:\Program Files\Avira\Launcher\Avira.Systray.exe =>.Avira Operations GmbH & Co. KG O53 - SMSR:HKLM\...\startupreg\BkupTray [Key] . (.Copyright (c)2005-2007, NewTech Infosystems, Inc. All - NTI Backup Now 5 Tray Module.) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd O53 - SMSR:HKLM\...\startupreg\eDataSecurity Loader [Key] . (...) -- C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\ehTray.exe [Key] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehtray.exe =>.Microsoft Corporation O53 - SMSR:HKLM\...\startupreg\EmpoweringTechnology [Key] . (.Copyright © 2007 - Acer Empowering Technology Framework Launch.) -- C:\Program Files\Acer\Empowering Technology\Framework.Launcher.exe O53 - SMSR:HKLM\...\startupreg\LDM [Key] . (...) -- C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe O53 - SMSR:HKLM\...\startupreg\Malwarebytes Anti-Malware (reboot) [Key] . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe =>.Malwarebytes Corporation O53 - SMSR:HKLM\...\startupreg\MMTray [Key] . (.MUSICMATCH, Inc. - mm_tray.) -- C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe O53 - SMSR:HKLM\...\startupreg\NvBackend [Key] . (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe =>.NVIDIA Corporation O53 - SMSR:HKLM\...\startupreg\PCMMediaSharing [Key] . (...) -- C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\PCMMediaSharing.exe O53 - SMSR:HKLM\...\startupreg\RIMBBLaunchAgent.exe [Key] . (.Research In Motion Limited - Launch Agent Service.) -- C:\Program Files\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe =>.Research In Motion Limited O53 - SMSR:HKLM\...\startupreg\Sidebar [Key] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O53 - SMSR:HKLM\...\startupreg\swg [Key] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe =>.Google Inc. O53 - SMSR:HKLM\...\startupreg\TomTomHOME.exe [Key] . (.TomTom - System Tray application for TomTom HOME.) -- C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe =>.TomTom O53 - SMSR:HKLM\...\startupreg\WarReg_PopUp [Key] . (.Acer Incorporated - WR_PopUp.) -- C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe =>.Acer Incorporated O53 - SMSR:HKLM\...\startupreg\Windows Defender [Key] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe =>.Microsoft Corporation O53 - SMSR:HKLM\...\startupreg\WMPNSCFG [Key] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\wmpnscfg.exe =>.Microsoft Corporation ---\\ Liste des pilotes du système (84) - 17s O58 - SDL:2008/01/21 04:23:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422968] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:25 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [300600] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:26 A . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) -- C:\Windows\System32\drivers\adpu160m.sys [101432] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:27 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [149560] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:00 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [17464] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:23 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [79416] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:24 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [79928] =>.Microsoft Windows® O58 - SDL:2016/03/17 17:29:41 A . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- C:\Windows\System32\drivers\avgntflt.sys [109016] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2016/06/02 16:25:44 A . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- C:\Windows\System32\drivers\avipbb.sys [137240] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2015/05/19 14:16:25 A . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- C:\Windows\System32\drivers\avkmgr.sys [37896] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2006/11/02 10:24:45 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] =>.Brother Industries, Ltd. O58 - SDL:2006/11/02 10:24:46 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] =>.Brother Industries, Ltd. O58 - SDL:2006/11/02 10:25:24 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [71808] =>.Brother Industries Ltd. O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] =>.Brother Industries Ltd. O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] =>.Brother Industries Ltd. O58 - SDL:2006/11/02 10:24:47 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] =>.Brother Industries Ltd. O58 - SDL:2008/01/21 04:23:00 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [19000] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:11 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [71272] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:24 A . (.Intel Corporation - Pilote désérialisé NDIS 6 de la carte Intel.) -- C:\Windows\System32\drivers\E1G60I32.sys [118784] =>.Intel Corporation O58 - SDL:2008/01/21 04:23:22 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [342584] =>.Microsoft Windows® O58 - SDL:2010/05/10 02:18:40 A . (.GEAR Software Inc. - CD/DVD Class Filter Driver.) -- C:\Windows\System32\drivers\GEARAspiWDM.sys [15664] {237D5FBD8DBF4D45EE107625CDA622A1} =>.GEAR Software Inc. O58 - SDL:2008/01/21 04:23:26 A . (.Hewlett-Packard Company - Smart Array Storport Driver.) -- C:\Windows\System32\drivers\HpCISSs.sys [40504] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:23 A . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) -- C:\Windows\System32\drivers\iaStorV.sys [235064] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:17 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41576] =>.Microsoft Windows® O58 - SDL:2008/04/25 13:23:40 A . (.Acer, Inc. - int15.) -- C:\Windows\System32\drivers\int15.sys [15392] =>.Acer Incorporated® O58 - SDL:2008/04/25 13:23:40 A . (.Acer, Inc. - int15.) -- C:\Windows\System32\drivers\int15_64.sys [17952] =>.Acer Incorporated® O58 - SDL:2006/11/02 11:50:07 A . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\System32\drivers\iteatapi.sys [35944] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:09 A . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\System32\drivers\iteraid.sys [35944] =>.Microsoft Windows® O58 - SDL:2005/05/26 11:01:18 A . (.LG Electronics Inc. - lgusbbus.sys.) -- C:\Windows\System32\drivers\lgusbbus.sys [21344] =>.LG Electronics Inc. O58 - SDL:2005/05/26 11:01:36 A . (.LG Electronics Inc. - lgusbdiag.sys.) -- C:\Windows\System32\drivers\lgusbdiag.sys [38144] =>.LG Electronics Inc. O58 - SDL:2005/06/24 18:36:16 A . (.LG Electronics Inc. - lgusbmodem.sys.) -- C:\Windows\System32\drivers\lgusbmodem.sys [39036] =>.LG Electronics Inc. O58 - SDL:2008/01/21 04:23:23 A . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [96312] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:25 A . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89656] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:23 A . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96312] =>.Microsoft Windows® O58 - SDL:2010/01/07 16:07:04 A . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [19160] {087BF904D84543142F7B6F46ABCD459D} =>.Malwarebytes Corporation O58 - SDL:2010/01/07 16:07:14 A . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\System32\drivers\mbamswissarmy.sys [38224] {087BF904D84543142F7B6F46ABCD459D} =>.Malwarebytes Corporation O58 - SDL:2008/01/21 04:23:27 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [31288] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:27 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [386616] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:49:59 A . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\Mraid35x.sys [33384] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:19 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [45160] =>.Microsoft Windows® O58 - SDL:2008/01/30 11:52:06 A . (.NewTech Infosystems, Inc. - NTI CD-ROM Filter Driver.) -- C:\Windows\System32\drivers\NTIDrvr.sys [14848] =>.NewTech Infosystems, Inc® O58 - SDL:2006/11/02 09:36:50 A . (.N-trig Innovative Technologies - Pilote intégré de digitalisateur de tablett.) -- C:\Windows\System32\drivers\ntrigdigi.sys [20608] =>.N-trig Innovative Technologies O58 - SDL:2015/02/11 12:38:39 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\System32\drivers\nvhda32v.sys [162592] =>.NVIDIA Corporation® O58 - SDL:2015/06/30 00:46:44 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [10704072] =>.NVIDIA Corporation® O58 - SDL:2010/08/12 13:07:50 A . (.NVIDIA Corporation - NVIDIA MCP Networking Function Driver..) -- C:\Windows\System32\drivers\nvmfdx32.sys [292712] =>.NVIDIA Corporation® O58 - SDL:2008/01/21 04:23:21 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [102968] =>.Microsoft Windows® O58 - SDL:2007/10/12 10:53:10 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) SMU Microcontroller Driv.) -- C:\Windows\System32\drivers\nvsmu.sys [13312] =>.NVIDIA Corporation O58 - SDL:2008/01/21 04:23:21 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [45112] =>.Microsoft Windows® O58 - SDL:2008/01/25 14:02:02 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor32.sys [140832] =>.NVIDIA Corporation® O58 - SDL:2008/03/04 23:38:42 A . (.Egis Incorporated - Acer eDataSecurity Management PSD Filter Dr.) -- C:\Windows\System32\drivers\psdfilter.sys [18992] =>.EGIS TECHNOLOGY INC.® O58 - SDL:2008/01/21 04:23:24 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1122360] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:35 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106088] =>.Microsoft Windows® O58 - SDL:2012/12/10 15:48:12 A . (.Research in Motion Ltd - RIM Virtual Serial Driver.) -- C:\Windows\System32\drivers\RimSerial.sys [35840] =>.Research in Motion Ltd O58 - SDL:2013/01/03 13:50:54 A . (.Research In Motion Limited - BlackBerry Device Driver.) -- C:\Windows\System32\drivers\RimUsb.sys [67072] =>.Research In Motion Limited O58 - SDL:2008/03/26 12:35:54 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [2103512] =>.Realtek Semiconductor Corp® O58 - SDL:2006/11/02 08:37:21 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2008/01/21 04:23:26 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [74808] =>.Microsoft Windows® O58 - SDL:2015/06/18 16:00:13 A . (.Avira Operations GmbH & Co. KG - AVIRA SnapShot Driver.) -- C:\Windows\System32\drivers\ssmdrv.sys [31848] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2006/11/02 11:50:05 A . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) -- C:\Windows\System32\drivers\symc8xx.sys [35944] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:49:56 A . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_hi.sys [31848] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:03 A . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_u3.sys [34920] =>.Microsoft Windows® O58 - SDL:2008/01/30 11:51:50 A . (.NewTech Infosystems Corporation - NTI CDROM Filter Driver.) -- C:\Windows\System32\drivers\UBHelper.sys [13824] =>.NewTech Infosystems, Inc® O58 - SDL:2008/01/21 04:23:20 A . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\System32\drivers\uliahci.sys [238648] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:35 A . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win200.) -- C:\Windows\System32\drivers\ulsata.sys [98408] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:23 A . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\System32\drivers\ulsata2.sys [115816] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:00 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [20024] =>.Microsoft Windows® O58 - SDL:2008/01/21 04:23:23 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [130616] =>.Microsoft Windows® O58 - SDL:2006/11/02 09:09:42 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:2006/11/02 09:09:45 A . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:1996/04/03 21:33:26 A . (...) -- C:\Windows\System32\giveio.sys [5248] O58 - SDL:2006/11/02 09:09:41 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:2006/11/02 09:09:29 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:2006/11/02 09:09:35 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:2006/11/02 09:09:38 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:2006/11/02 09:09:40 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:2006/11/02 09:09:31 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:2006/11/02 09:09:20 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:2006/11/02 09:09:23 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:2006/11/02 09:09:24 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:2006/11/02 09:09:26 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:2006/11/02 09:09:22 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] O58 - SDL:2011/03/18 18:08:54 A . (.Almico Software - SpeedFan x32 Driver.) -- C:\Windows\System32\speedfan.sys [25240] =>.Sokno S.R.L.® ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (2) - 35s O61 - LFC: 2016/06/18 16:57:18 A . (..) -- C:\Users\frank\AppData\Roaming\Adobe\Acrobat\9.0\UserCache.bin [49471] O61 - LFC: 2016/06/15 07:31:08 A . (..) -- C:\Users\frank\AppData\Local\NVIDIA\NvBackend\UMDShim\nvcoproc.bin [7195885] ---\\ Associations Shell Spawning (11) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ Menu de démarrage Internet (12) - 1s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Recherche d'infection sur les navigateurs (4) - 8s O69 - SBI: prefs.js [frank - peu17r36.default] user_pref("extensions.quick_start.enable_search1", false); =>PUP.Optional.QuickStart O69 - SBI: prefs.js [frank - peu17r36.default] user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", true); =>PUP.Optional.QuickStart O69 - SBI: SearchScopes [HKCU] ${searchCLSID} - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {DECA3892-BA8F-44b8-A993-A466AD694AE4} [DefaultScope] - (Bing) - http://www.bing.com/ ---\\ Enumère les services démarrés par Svchost (31) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [24576] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [62976] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [125952] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [576512] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [444928] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [316928] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d'accès distant.) -- C:\Windows\System32\rasmans.dll [262144] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [68608] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [47104] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\Windows\System32\ipnathlp.dll [288256] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242688] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes Termi.) -- C:\Windows\System32\termsrv.dll [449536] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1933848] =>.Microsoft Windows Component Publisher® O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [758784] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [200704] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [19968] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [33280] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [111616] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [45056] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [153600] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [57344] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [162304] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [602112] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service de configuration des services Termi.) -- C:\Windows\System32\SessEnv.dll [84992] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [81920] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [68096] =>.Microsoft Corporation ---\\ Liste des exceptions du parefeu Windows (6) - 2s O87 - FAEL: "{EF4F573B-DB47-4635-B3BF-FEB2070B6865}" [In-None-P6-TRUE] .(...) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe O87 - FAEL: "{6AEEC8E4-82E8-4C7B-A265-0761020E8073}" [In-None-P17-TRUE] .(...) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe O87 - FAEL: "TCP Query User{E81103BA-1483-4779-B9F1-E42223460F4D}C:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe" [In-None-P6-TRUE] .(...) -- C:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe O87 - FAEL: "UDP Query User{CCC23586-AA6D-405D-BA7A-4AC0148AC68B}C:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe" [In-None-P17-TRUE] .(...) -- C:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe O87 - FAEL: "TCP Query User{A69B2AA3-8236-47E7-9C4F-E867C09DA6A3}C:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe" [In-None-P6-TRUE] .(...) -- C:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe O87 - FAEL: "UDP Query User{C933E201-8F74-437C-ADA3-CA254900ABD5}C:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe" [In-None-P17-TRUE] .(...) -- C:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe ---\\ Scan Additionnel (3) - 0s C:\Users\frank\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} =>PUP.Optional.Wajam HKCU\SOFTWARE\SecuredDownload =>.Superfluous.FriedCookie HKCU\SOFTWARE\AppDataLow\Software\Re_markit =>PUP.Optional.ReMarkIt ---\\ Récapitulatif des éléments trouvés sur votre station (4) - 0s http://www.nicolascoolman.fr/?p=263 =>PUP.Optional.Wajam http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.FriedCookie http://www.nicolascoolman.fr/?p=398 =>PUP.Optional.ReMarkIt http://www.nicolascoolman.fr/?p=666 =>PUP.Optional.QuickStart ~ End of the scan, 15866 items in 00h04mn29s (997)(0)