~ ZHPDiag v2016.10.10.148 Par Nicolas Coolman (2015/10/10) ~ Démarré par Simon (Administrator) (2016/08/18 16:26:32) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Pas de fichier réseau ~ Mode: Scanner ~ Rapport: C:\Users\Simon\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Simon\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 8.1, 64-bit (Build 9600) ---\\ Navigateurs Internet (3) - 0s GCIE: Google Chrome v52.0.2743.116 MFIE: Mozilla Firefox 21.0 (x86 fr) v21.0 MSIE: Internet Explorer v11.0.9600.18283 ---\\ Informations sur les produits Windows (8) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, OEM_DM channel Windows ID Activation : OK ~ Windows Partial Key : TMQHT Windows License : OK ~ Windows Remaining Initializations Number : 999 Windows Automatic Updates : OK ---\\ Logiciels de protection (2) - 15s Avira Antivirus v15.0.18.354 Windows Defender (Deactivate) ---\\ Logiciels de protection et autres (Superflus) (1) - 15s McAfee Security Scan Plus v3.11.334.1 ---\\ Logiciels d'optimisation (1) - 15s CCleaner v3.21 ---\\ Surveillance de Logiciels (2) - 15s Adobe Flash Player 22 NPAPI Adobe Reader X ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 4075.304 MB (58% free) ~ System Restore: Activé (Enable) ~ System drive C: has 243 GB free of 285 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: PCSIMON ~ User Name: Simon ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 243 GB free of 285 GB (System) ~ Drive D: has 407 GB free of 407 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (25) - 5s [MD5.B3541A5A20C6264781909B1B7FE54836] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [2757616] © [MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\WINDOWS\System32\rundll32.exe [54784] © [MD5.EC302D06155F8E3C383750993FCB6B27] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\WINDOWS\System32\Wininit.exe [146432] © [MD5.D2E3B1DEDF6F6177D8C32B2516703A93] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\WINDOWS\System32\wininet.dll [2596864] © [MD5.B1102BBDDD9C87B3D609D6C08F7A3DBD] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [570880] © [MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\WINDOWS\System32\sppcomapi.dll [447488] © [MD5.A5675939CF0F99B20B5A3CFCC3C1B46A] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\WINDOWS\System32\dnsapi.dll [657920] © [MD5.BD9C7A068C46053F8747CEA73B5930AB] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\WINDOWS\Syswow64\dnsapi.dll [498688] © [MD5.E37F897ED7B5AFF79B1398258DB96BD9] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19456] © [MD5.A460C3AF3755A2A79A3C8EFE72E147B5] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [559616] © [MD5.74B14192CF79A72F7536B27CB8814FBD] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [26464] © [MD5.2FA6510E33F7DEFEC03658B74101A9B9] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [88576] © [MD5.C6796EA22B513E3457514D92DCDB1A3D] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [164352] © [MD5.A03F362C5557E238CBFA914689C77248] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\WINDOWS\System32\drivers\DfsC.sys [134144] © [MD5.D4B7ED39C7900384D9E5C1283F1E7926] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [76800] © [MD5.49EE0AE9E5B64FFBBD06D55C4984B598] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [108544] © [MD5.B7342B3C58E91107F6E946A93D9D4EFD] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [142848] © [MD5.5DCD41F62F71519D2A46D41F60C69B0C] - (.Microsoft Corporation - Minirdr SMB Windows NT.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [401920] © [MD5.9DC17B7D9D84C37C102D379FCC7D4942] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [281088] © [MD5.9980B262DBE439AE6BDC91AA985F19EE] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [2017624] © [MD5.764B1121867B2D9B31C491668AC72B2B] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [94208] © [MD5.235624C147E3CB4C288D5D3D8E8D64A2] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [112640] © [MD5.680C1DAE268B6FB67FA21B389A8B79EF] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [195584] © [MD5.E0BD2D83875464FEEEB242CBA8B7E073] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\WINDOWS\System32\drivers\tdx.sys [108032] © [MD5.17F7B0F2298D97F4B6C7A69511033D3D] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [316760] © ---\\ Processus lancés (42) - 6s [MD5.FA713019412C061385F09BD373BF747A] - (.ASUSTek Computer Inc. - ASLDR Service.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe [105120] [PID.1076] © [MD5.DBC598E47E7A382E60E2A4745D41FEF9] - (.ASUS - GFNEXSrv.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [96896] [PID.1148] © [MD5.BB3BAB4F1502328C4FB6CCA3C8114F39] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [472112] [PID.1276] © [MD5.68E7DEA59FDEF410BAF29FDB5B7A6EEF] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.1492] © [MD5.6A122B4F0E5293CACFA8A5F2CBA9B356] - (.ASUS - ASUS InstantOn Program.) -- C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe [277120] [PID.1540] © [MD5.C99F8E90DE4B8F0C7FE15BB1CBCD29DC] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [635104] [PID.1628] © [MD5.78ABBE558F57144047F10A0F50FE4B2F] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720] [PID.1668] © [MD5.58332C83C4A329A744B0B98F934934BB] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe [288920] [PID.2080] © [MD5.788321A2C0C45F16820E00A8BA8FD3DA] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe [366232] [PID.2816] © [MD5.9656F8E29F6C3161A3E99BCD3A472FF9] - (.Intel Corporation - Intel(R) ME Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129856] [PID.2324] © [MD5.2C24DC448DBE8DB9BE1441B824C57E79] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [277824] [PID.1660] © [MD5.E1A119AD21F5AFE22EB516C549306D3D] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [365376] [PID.1156] © [MD5.BB3BAB4F1502328C4FB6CCA3C8114F39] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [472112] [PID.2072] © [MD5.8256846E20B6F451A4A6B2EAD057FF25] - (.Avira Operations GmbH & Co. KG - AntiVir shadow copy service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe [1042232] [PID.4492] © [MD5.41D2CA13F0374217283D1E23FAF61030] - (.Avira Operations GmbH & Co. KG - Avira Service Host.) -- C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [319648] [PID.2004] © [MD5.8596BF03CE3113E5DDFAF39997B0455D] - (.ASUSTek Computer Inc. - HControl.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe [184704] [PID.6496] © [MD5.20E39BE7B43479FA66F6C8D6C7FA2F9A] - (.ASUS - ASUS InstantOn Program.) -- C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe [590208] [PID.6316] © [MD5.0BC5A4142F38A6BB35DECD01A2BC2ED7] - (.ASUS - Power4Gear Hybrid.) -- C:\Program Files\ASUS\P4G\BatteryLife.exe [1018240] [PID.5104] © [MD5.79174FD5F4DE078642BE1CACB124BFCA] - (.ASUS - ASUS InstantOn.) -- C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnCfg.exe [1126784] [PID.7044] © [MD5.4F870EF9292559AB9DE6F31527A1DCBF] - (.ASUSTek Computer Inc. - KBFiltr.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe [113312] [PID.3060] © [MD5.DC4044C6102DE12837143B257C25EDDC] - (.Intel Corporation - Intel Services Manager.) -- C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\ismagent.exe [648512] [PID.3568] © [MD5.A2791CF11D1ED52DBCD75D2FFD4D50E7] - (.ASUSTek Computer Inc. - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [178848] [PID.1612] © [MD5.2C35624F79B9ADBFE47090879F0D8673] - (.ASUSTek Computer Inc. - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [322208] [PID.2828] © [MD5.F61140A7D41E2B3CB73D28A2F6ABC405] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13192848] [PID.4968] © [MD5.B7BCA8A30CE13A283CDBDECEF5616C39] - (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [107192] [PID.6440] © [MD5.28062B17191C9450BF6C6C3EF8C7EB27] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [171992] [PID.4164] © [MD5.28FC280487F0BAAE5E8119257C4EEF8C] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [399832] [PID.3284] © [MD5.97202E9C0D86387888435470CCAF45BE] - (.ASUSTeK - ACEngSvr Module.) -- C:\Windows\SysWOW64\ACEngSvr.exe [192000] [PID.2336] © [MD5.F29BEA821C753E4F00177690F70CDC13] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [442328] [PID.2044] © [MD5.E22A640E183C0779C5AEFC4BB2A708E2] - (...) -- C:\Users\Simon\AppData\Roaming\cacaoweb\cacaoweb.exe [563896] [PID.5216] =>PUP.Optional.CacaoWeb [MD5.DE9F102F38A2B9AC6E9DAEED30B276E6] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [51656320] [PID.5752] © [MD5.502D671DEB7D48D4B30E09DEB8B62E8D] - (.McAfee, Inc. - McAfee Security Scanner Scheduler.) -- C:\Program Files\McAfee Security Scan\3.11.334\SSScheduler.exe [334088] [PID.6828] © [MD5.DA544EE19F1ABC4A2B6D998D998E1E4A] - (...) -- C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\updateui.exe [119808] [PID.4804] [MD5.7444E0F4C9991AE3711F5FAB5DB257E1] - (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [831064] [PID.4532] © [MD5.8EB723D1A61050666F9EC00863460963] - (.Avira Operations GmbH & Co. KG - Avira Launcher.) -- C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe [153288] [PID.3020] © [MD5.25A51D18D48F1E144ABEC667E98C6261] - (.ASUSTeK Computer Inc. - ASUS Live Update.) -- C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [1558176] [PID.3448] © [MD5.C3DD1A60AC4FF18658B35ACE28F5370F] - (.AsusTek - ASUS Smart Gesture Loader.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe [170880] [PID.6584] © [MD5.1760F66E1D8D47F0B895984AC0F6FB7D] - (.ASUSTeK Computer Inc. - ASUS Quick Gesture Exe.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe [22400] [PID.1316] © [MD5.29769215DEB6E8418EF3656B0423776E] - (.ASUSTeK Computer Inc. - ASUS Quick Gesture Exe.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe [20352] [PID.1480] © [MD5.5981F68715966CA53B5905B146525D42] - (.AsusTek - ASUS Smart Gesture Center.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe [270720] [PID.2920] © [MD5.50A64AA1DBAEC9D4A6F7D5944E546DE0] - (.AsusTek - ASUS Smart Gesture Helper.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe [169856] [PID.6468] © [MD5.1D45319619579DDA7DE8DE9BB1E3079E] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Simon\AppData\Roaming\ZHP\ZHPDiag3.exe [1943040] [PID.1644] © ---\\ Google Chrome, Démarrage,Recherche,Extensions (17) - 2s G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://consent.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.fr G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.delta-search.com/ =>Toolbar.DeltaSearch G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [flliilndjeohchalpbbcdekjklbdgfkk] Avira Browser Safety G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] __MSG_name__ G2 - GCE: Preference [User Data\Default] [leninfpgimplcdddoonihcnjblmheije] EasyReader G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (16) - 4s M0 - MFSP: prefs.js [Simon - d0ifc5et.default] http://www.delta-search.com/?affID=121845&tt=gc_&babsrc=HP_ss&mntrId=0EC7844BF5AE6254 =>Toolbar.DeltaSearch P2 - EXT FILE: (...) -- C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\d0ifc5et.default\searchplugins\babylon.xml =>PUP.Optional.Babylon P2 - EXT FILE: (...) -- C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\d0ifc5et.default\searchplugins\BrowserProtect.xml =>PUP.Optional.Eazel P2 - EXT FILE: (...) -- C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\d0ifc5et.default\searchplugins\delta.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\amazon-france.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\bing.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\eBay-france.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\google.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo-france.xml P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} © P2 - EXT: (.http://www.cacaoweb.org/ - cacaoweb.) -- C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\d0ifc5et.default\extensions\cacaoweb@cacaoweb.org =>PUP.Optional.CacaoWeb P2 - EXT: (.delta-search.com - Delta Toolbar.) -- C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\d0ifc5et.default\extensions\ffxtlbr@delta.com P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll © P2 - FPN: [HKLM] [@mcafee.com/MSC,version=10] - (.McAfee Total Protection MIME Plugin.) -- C:\Program Files (x86)\McAfee\msc\npMcSnFFPl.dll © ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (19) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://safesearch.avira.com/ R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://safesearch.avira.com/ R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://safesearch.avira.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://safesearch.avira.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://safesearch.avira.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://safesearch.avira.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://safesearch.avira.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://safesearch.avira.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://safesearch.avira.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://safesearch.avira.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://safesearch.avira.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://safesearch.avira.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer,Proxy Management (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\WINDOWS\System32\Userinit.exe (.Microsoft Corporation.) © F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) © F2 - REG:system.ini: VMApplet=C:\WINDOWS\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) © ---\\ Etude du fichier hosts (2) - 0s 0 ~ Le fichier hôte est sain (The hosts file is clean) (26) ---\\ Internet Explorer, Barre d'outil (1) - 0s O3 - Toolbar: Delta Toolbar - [HKLM]{82E1477C-B154-48D3-9891-33D83C26BCD3} . (.Delta-search.com - .) -- C:\Program Files (x86)\Delta\delta\1.8.21.5\deltaTlbr.dll =>Toolbar.DeltaSearch ---\\ Applications lancées au démarrage du système (13) - 0s O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe © O4 - HKLM\..\Run: [ACMON] . (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe © O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxtray.exe © O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\WINDOWS\system32\hkcmd.exe © O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\WINDOWS\system32\igfxpers.exe © O4 - HKCU\..\Run: [cacaoweb] . (...) -- C:\Users\Simon\AppData\Roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe © O4 - HKLM\..\Wow6432Node\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe © O4 - HKLM\..\Wow6432Node\Run: [ASUSWebStorage] . (.ASUS Cloud Corporation - ASUS WebStorage Panel.) -- C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.9.120\AsusWSPanel.exe © O4 - HKLM\..\Wow6432Node\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe © O4 - HKLM\..\Wow6432Node\Run: [Avira SystrayStartTrigger] . (.Avira Operations GmbH & Co. KG - Avira Launcher.) -- C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe © O4 - HKUS\S-1-5-21-3216382682-637092237-702815085-1001\..\Run: [cacaoweb] . (...) -- C:\Users\Simon\AppData\Roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb O4 - HKUS\S-1-5-21-3216382682-637092237-702815085-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe © ---\\ Modification Domaine/Adresses DNS (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 127.0.0.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 127.0.0.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 ---\\ Protocole additionnel (22) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll © O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll © O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll © O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll © O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll © O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll © O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll © O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL © ---\\ Liste des services NT non Microsoft et non désactivés (16) - 1s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe © O23 - Service: Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG - Antivirus MailScanner WFP Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe © O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe © O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe © O23 - Service: Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG - AntiVir WebGuard WFP Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe © O23 - Service: ASLDR Service (ASLDRService) . (.ASUSTek Computer Inc. - ASLDR Service.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe © O23 - Service: ASUS InstantOn Service (ASUS InstantOn) . (.ASUS - ASUS InstantOn Program.) - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe © O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS - GFNEXSrv.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe © O23 - Service: Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG - Avira Service Host.) - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe © O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe © O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation - Intel(R) ME Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe © O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe © O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe © O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe © O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe © ---\\ Tâches planifiées en automatique (32) - 3s [MD5.BE1A1E8EEA50BE1E1A78EB3D7F4CE8CF] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1110232] © [MD5.32B31B696CB8E8F380831DFEB80A67E4] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [270016] © [MD5.00000000000000000000000000000000] [APT] [AdobeFlashPlayerUpdate] (...) -- C:\Windows\SysWOW64\FlashPlayerUpdateService.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [AdobeFlashPlayerUpdate 2] (...) -- C:\Windows\SysWOW64\FlashPlayerUpdateService.exe (.not file.) [0] [MD5.79174FD5F4DE078642BE1CACB124BFCA] [APT] [ASUS InstantOn Config] (.ASUS.) -- C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnCfg.exe [1126784] © [MD5.25A51D18D48F1E144ABEC667E98C6261] [APT] [ASUS Live Update] (.ASUSTeK Computer Inc..) -- C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [1558176] © [MD5.0BC5A4142F38A6BB35DECD01A2BC2ED7] [APT] [ASUS P4G] (.ASUS.) -- C:\Program Files\ASUS\P4G\BatteryLife.exe [1018240] © [MD5.3547F00F9FF626DE831FC1F99BE1E4CE] [APT] [ASUS Touchpad Launcher (x64)] (.AsusTek.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe [17792] © [MD5.13001914838576400EB9AFDE95AE71CE] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [3091296] © [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] © [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] © [MD5.A9D30971B24700531BEB70C85D1B8328] [APT] [ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d] (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [233792] © [MD5.A9D30971B24700531BEB70C85D1B8328] [APT] [ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon] (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [233792] © [MD5.8F311A272AAE611BFFAAC88CC0CA3F43] [APT] [{ED1C1C77-560B-45E1-97B0-43054850839C}] (.Google Inc..) -- c:\program files (x86)\Google\Chrome\application\chrome.exe [1152840] © O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] © O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1088] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1092] © O39 - APT: ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon - (.Intel Corporation.) -- C:\WINDOWS\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job [868] © O39 - APT: ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d - (.Intel Corporation.) -- C:\WINDOWS\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job [870] © O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [4476] © O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3890] © O39 - APT: AdobeFlashPlayerUpdate - (...) -- C:\WINDOWS\System32\Tasks\AdobeFlashPlayerUpdate [3442] O39 - APT: AdobeFlashPlayerUpdate 2 - (...) -- C:\WINDOWS\System32\Tasks\AdobeFlashPlayerUpdate 2 [3182] O39 - APT: ASUS InstantOn Config - (.ASUS.) -- C:\WINDOWS\System32\Tasks\ASUS InstantOn Config [2988] © O39 - APT: ASUS Live Update - (.ASUSTeK Computer Inc..) -- C:\WINDOWS\System32\Tasks\ASUS Live Update [3112] © O39 - APT: ASUS P4G - (.ASUS.) -- C:\WINDOWS\System32\Tasks\ASUS P4G [3054] © O39 - APT: ASUS Touchpad Launcher (x64) - (.AsusTek.) -- C:\WINDOWS\System32\Tasks\ASUS Touchpad Launcher (x64) [3542] © O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [2772] © O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3828] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [4064] © O39 - APT: ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d - (.Intel Corporation.) -- C:\WINDOWS\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d [3512] © O39 - APT: ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon - (.Intel Corporation.) -- C:\WINDOWS\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon [3208] © ---\\ Logiciels installés (45) - 3s O42 - Logiciel: Package de pilotes Windows - ASUS (ATP) Mouse (10/29/2012 1.0.0.148) - (.ASUS.) [HKLM][64Bits] -- C01F56FBD9B141017E63E2A1A141E59934D4DC67 © O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner © O42 - Logiciel: McAfee Security Scan Plus - (.McAfee, Inc..) [HKLM][64Bits] -- McAfee Security Scan © O42 - Logiciel: ASUS Power4Gear Hybrid - (.ASUS.) [HKLM][64Bits] -- {9B6239BF-4E85-4590-8D72-51E30DB1A9AA} © O42 - Logiciel: Shared C Run-time for x64 - (.McAfee.) [HKLM][64Bits] -- {EF79C448-6946-4D71-8134-03407888C054} © O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {F4404AFD-2EF3-40C1-8C09-29E5F3B6972B} © O42 - Logiciel: Adobe Flash Player 22 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI © O42 - Logiciel: AsusVibe2.0 - (.ASUSTEK.) [HKLM][64Bits] -- Asus Vibe2.0 © O42 - Logiciel: ASUS WebStorage Sync Agent - (.ASUS Cloud Corporation.) [HKLM][64Bits] -- ASUS WebStorage © O42 - Logiciel: Avira Antivirus v15.0.18.354 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- Avira Antivirus © O42 - Logiciel: Delta toolbar - (.Delta.) [HKLM][64Bits] -- delta =>Toolbar.DeltaSearch O42 - Logiciel: Delta Chrome Toolbar - (.Visual Tools.) [HKLM][64Bits] -- Delta Chrome Toolbar =>Toolbar.DeltaSearch O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome © O42 - Logiciel: Mozilla Firefox 21.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 21.0 (x86 fr) © O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService © O42 - Logiciel: Vittalia Installer - (.TELECHARGERS.net.) [HKLM][64Bits] -- Vittalia =>PUP.Optional.Vittalia O42 - Logiciel: Avira Launcher v1.2.68.19138 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {05f7f410-0274-45d0-91dc-712a62aadd96} © O42 - Logiciel: ASUS Splendid Video Enhancement Technology - (.ASUS.) [HKLM][64Bits] -- {0969AF05-4FF6-4C00-9406-43599238DE0D} © O42 - Logiciel: ASUS LifeFrame3 - (.ASUS.) [HKLM][64Bits] -- {1DBD1F12-ED93-49C0-A7CC-56CBDE488158} © O42 - Logiciel: Java 8 Update 31 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218031F0} © O42 - Logiciel: ASUS Smart Gesture - (.ASUS.) [HKLM][64Bits] -- {4D3286A6-F6AB-498A-82A4-E4F040529F3D} © O42 - Logiciel: SceneSwitch - (.ASUS.) [HKLM][64Bits] -- {5172E572-C175-4F80-A6D5-5CB45826AD61} © O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {51C7AD07-C3F6-4635-8E8A-231306D810FE} © O42 - Logiciel: ASUS Tutor - (.ASUS.) [HKLM][64Bits] -- {58172D66-2F69-4215-9AEC-ED8196023736} © O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} © O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {64BF0187-F3D2-498B-99EA-163AF9AE6EC9} © O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} © O42 - Logiciel: ASUS InstantOn - (.ASUS.) [HKLM][64Bits] -- {749F674B-2674-47E8-879C-5626A06B2A91} © O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} © O42 - Logiciel: ASUS Instant Connect - (.ASUS.) [HKLM][64Bits] -- {89ECB85A-D933-4CEA-9116-5CBC9C2ED95B} © O42 - Logiciel: WinFlash - (.ASUS.) [HKLM][64Bits] -- {8F21291E-0444-4B1D-B9F9-4370A73E346D} © O42 - Logiciel: Ralink RT2860 Wireless LAN Card - (.Ralink.) [HKLM][64Bits] -- {8FC4F1DD-F7FD-4766-804D-3C8FF1D309B0} © O42 - Logiciel: Intel(R) Manageability Engine Firmware Recovery Agent - (.Intel Corporation.) [HKLM][64Bits] -- {A6C48A9F-694A-4234-B3AA-62590B668927} © O42 - Logiciel: ATK Package - (.ASUS.) [HKLM][64Bits] -- {AB5C933E-5C7D-4D30-B314-9C83A49B94BE} © O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824191728} © O42 - Logiciel: Adobe Reader X (10.1.16) MUI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-FFFF-7B44-AA0000000001} © O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {C1594429-8296-4652-BF54-9DBE4932A44C} © O42 - Logiciel: Avira Launcher v1.2.68.19138 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {E2ED917A-F98B-4062-B1CC-A91627B79457} © O42 - Logiciel: ASUS Virtual Camera - (.ASUS.) [HKLM][64Bits] -- {EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1} © O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {ED5776D5-59B4-46B7-AF81-5F2D94D7C640} © O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} © O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} © O42 - Logiciel: ASUS Live Update - (.ASUS.) [HKLM][64Bits] -- {FA540E67-095C-4A1B-97BA-4D547DEC9AF4} © O42 - Logiciel: Skype™ 7.22 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} © O42 - Logiciel: Intel(R) SDK for OpenCL - CPU Only Runtime Package - (.Intel Corporation.) [HKLM][64Bits] -- {FCB3772C-B7D0-4933-B1A9-3707EBACC573} © ---\\ HKCU & HKLM Software Keys (59) - 3s HKLM\SOFTWARE\Wow6432Node\5b538ddebd68be41 =>PUP.Optional.Heuristic HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AdobeFlashPlayerUpdate HKLM\SOFTWARE\Wow6432Node\ASIO HKLM\SOFTWARE\Wow6432Node\AsLdr HKLM\SOFTWARE\Wow6432Node\ASUS HKLM\SOFTWARE\Wow6432Node\Avira HKLM\SOFTWARE\Wow6432Node\Babylon =>PUP.Optional.Babylon HKLM\SOFTWARE\Wow6432Node\Bunndle HKLM\SOFTWARE\Wow6432Node\Delta =>Toolbar.DeltaSearch HKLM\SOFTWARE\Wow6432Node\ECAREME HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\McAfee.com HKLM\SOFTWARE\Wow6432Node\mcafeeupdater HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\Ralink HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\X-AVCSD HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\5b538ddebd68be41 =>PUP.Optional.Heuristic HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\ASUS HKCU\SOFTWARE\Avira HKCU\SOFTWARE\BabSolution =>PUP.Optional.BabSolution HKCU\SOFTWARE\cacaoweb =>PUP.Optional.CacaoWeb HKCU\SOFTWARE\Delta =>Toolbar.DeltaSearch HKCU\SOFTWARE\ECAREME HKCU\SOFTWARE\Google HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Intel HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\McAfee HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\Skype HKCU\SOFTWARE\TeleCharger HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\JavaSoft HKCU\SOFTWARE\AppDataLow\Software\SmartBar =>PUP.Optional.SmartBar ---\\ Contenu des dossiers Programmes (144) - 5s O43 - CFD: 2016/08/16 11:22:53 - [] D -- C:\Program Files (x86)\Adobe O43 - CFD: 2016/08/16 11:22:56 - [] D -- C:\Program Files (x86)\ASUS O43 - CFD: 2016/08/12 23:33:21 - [] D -- C:\Program Files (x86)\AVG O43 - CFD: 2016/08/16 11:23:17 - [] D -- C:\Program Files (x86)\Avira O43 - CFD: 2016/08/16 11:23:25 - [] D -- C:\Program Files (x86)\Cisco O43 - CFD: 2016/08/16 12:15:09 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 2016/08/16 11:23:28 - [] D -- C:\Program Files (x86)\Delta O43 - CFD: 2016/08/16 11:23:36 - [] D -- C:\Program Files (x86)\Google O43 - CFD: 2016/08/16 11:23:43 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 2016/08/16 11:23:47 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 2016/08/16 12:27:29 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 2016/08/16 11:23:50 - [] D -- C:\Program Files (x86)\Java O43 - CFD: 2016/08/16 11:23:50 - [] D -- C:\Program Files (x86)\Microsoft Office O43 - CFD: 2016/08/16 11:23:51 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio O43 - CFD: 2016/08/16 11:23:51 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8 O43 - CFD: 2016/08/16 11:23:51 - [] D -- C:\Program Files (x86)\Microsoft Works O43 - CFD: 2016/08/16 11:23:51 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 2016/08/16 11:23:51 - [] D -- C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 2016/03/05 18:45:51 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service O43 - CFD: 2016/08/16 11:23:52 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 2016/08/16 11:23:52 - [] D -- C:\Program Files (x86)\Ralink O43 - CFD: 2016/08/16 11:23:52 - [] D -- C:\Program Files (x86)\Realtek O43 - CFD: 2016/08/16 11:23:52 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 2016/08/16 12:15:21 - [] RD -- C:\Program Files (x86)\Skype O43 - CFD: 2012/09/26 08:23:38 - [0] HD -- C:\Program Files (x86)\Temp O43 - CFD: 2013/05/10 23:53:59 - [] D -- C:\Program Files (x86)\Vittalia =>PUP.Optional.Vittalia O43 - CFD: 2016/08/16 11:23:58 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 2016/08/16 11:23:58 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 2016/08/16 12:27:29 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 2015/05/11 14:02:42 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform O43 - CFD: 2016/08/16 11:23:58 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 2016/08/16 11:23:58 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 2015/05/11 14:02:42 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 2014/01/27 04:36:17 - [] SHD -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\WindowsPowerShell O43 - CFD: 2016/08/13 00:21:08 - [] D -- C:\Program Files (x86)\ZHPFix O43 - CFD: 2015/05/11 14:14:03 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 2016/08/16 11:24:27 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/05/11 14:14:03 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2016/08/16 11:24:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS O43 - CFD: 2016/08/16 12:23:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira O43 - CFD: 2014/01/27 04:38:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 2016/08/16 11:24:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel O43 - CFD: 2015/01/26 02:54:49 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 2013/08/22 17:36:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2016/08/16 12:15:34 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus O43 - CFD: 2016/08/16 11:24:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 2016/08/16 12:15:34 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 2016/08/16 12:15:34 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp O43 - CFD: 2015/05/11 14:14:03 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 2013/11/14 09:16:50 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2016/08/16 11:24:19 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2016/08/16 11:24:19 - [] D -- C:\ProgramData\ASUS O43 - CFD: 2012/08/17 02:53:09 - [] D -- C:\ProgramData\ASUS WebStorage O43 - CFD: 2012/08/17 02:52:28 - [] D -- C:\ProgramData\ASUSLogos O43 - CFD: 2012/09/26 08:31:06 - [] D -- C:\ProgramData\ASUSVibe O43 - CFD: 2016/08/13 00:21:07 - [] D -- C:\ProgramData\Avg O43 - CFD: 2016/08/16 11:24:20 - [] D -- C:\ProgramData\Avira O43 - CFD: 2013/05/27 22:55:37 - [0] D -- C:\ProgramData\Babylon =>PUP.Optional.Babylon O43 - CFD: 2014/01/27 04:51:24 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 2013/05/04 03:38:01 - [] D -- C:\ProgramData\ChangeFolderView O43 - CFD: 2016/08/12 11:35:31 - [] HD -- C:\ProgramData\Common Files O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2013/05/04 03:35:01 - [] D -- C:\ProgramData\FolderView O43 - CFD: 2016/08/16 11:24:20 - [] D -- C:\ProgramData\Intel O43 - CFD: 2016/08/16 11:24:21 - [] D -- C:\ProgramData\McAfee O43 - CFD: 2016/08/16 12:15:28 - [] D -- C:\ProgramData\McAfee Security Scan O43 - CFD: 2014/01/27 04:51:24 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 2016/08/12 23:33:20 - [] D -- C:\ProgramData\MFAData O43 - CFD: 2016/08/16 11:24:23 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2013/05/06 00:08:22 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 2014/01/27 04:51:24 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 2013/05/04 05:04:54 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 2016/08/16 11:24:28 - [] D -- C:\ProgramData\Oracle O43 - CFD: 2016/08/16 12:15:34 - [] D -- C:\ProgramData\P4G O43 - CFD: 2016/08/16 12:23:35 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 2014/01/27 04:36:21 - [] D -- C:\ProgramData\PRICache O43 - CFD: 2016/08/16 11:24:30 - [] D -- C:\ProgramData\Ralink Driver O43 - CFD: 2015/05/11 14:02:31 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 2016/08/16 12:15:35 - [] D -- C:\ProgramData\Skype O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2013/05/04 05:21:52 - [] D -- C:\ProgramData\Sun O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2016/08/16 11:23:25 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 2013/05/05 22:10:18 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 2016/08/16 11:23:25 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 2016/08/16 11:23:25 - [] D -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 2016/08/16 12:15:09 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared O43 - CFD: 2016/08/16 11:23:27 - [] D -- C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 2013/05/04 18:10:39 - [] D -- C:\Program Files (x86)\Common Files\SceneSwitch O43 - CFD: 2013/08/22 17:36:33 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 2016/08/16 12:15:09 - [] D -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 2016/08/16 11:23:28 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 2016/08/16 11:25:17 - [] D -- C:\Users\Simon\AppData\Roaming\Adobe O43 - CFD: 2013/05/04 18:04:02 - [] D -- C:\Users\Simon\AppData\Roaming\ASUS O43 - CFD: 2013/05/04 03:36:02 - [] D -- C:\Users\Simon\AppData\Roaming\ASUS WebStorage O43 - CFD: 2016/08/12 12:23:06 - [] D -- C:\Users\Simon\AppData\Roaming\AVG O43 - CFD: 2015/04/08 16:21:10 - [] D -- C:\Users\Simon\AppData\Roaming\Avira O43 - CFD: 2016/08/16 12:16:11 - [] D -- C:\Users\Simon\AppData\Roaming\BabSolution =>PUP.Optional.BabSolution O43 - CFD: 2013/05/27 22:55:37 - [] D -- C:\Users\Simon\AppData\Roaming\Babylon =>PUP.Optional.Babylon O43 - CFD: 2016/08/18 14:48:52 - [] D -- C:\Users\Simon\AppData\Roaming\cacaoweb =>PUP.Optional.CacaoWeb O43 - CFD: 2013/05/27 22:58:23 - [] D -- C:\Users\Simon\AppData\Roaming\Delta O43 - CFD: 2014/01/27 13:53:59 - [] D -- C:\Users\Simon\AppData\Roaming\Identities O43 - CFD: 2013/05/04 04:32:01 - [] D -- C:\Users\Simon\AppData\Roaming\Macromedia O43 - CFD: 2016/08/16 11:25:18 - [] SD -- C:\Users\Simon\AppData\Roaming\Microsoft O43 - CFD: 2016/08/16 11:25:19 - [] D -- C:\Users\Simon\AppData\Roaming\Mozilla O43 - CFD: 2016/08/16 19:07:54 - [] D -- C:\Users\Simon\AppData\Roaming\Skype O43 - CFD: 2016/08/12 12:19:07 - [] D -- C:\Users\Simon\AppData\Roaming\TuneUp Software O43 - CFD: 2013/05/19 13:32:18 - [] D -- C:\Users\Simon\AppData\Roaming\uTorrent O43 - CFD: 2016/08/18 16:27:04 - [] D -- C:\Users\Simon\AppData\Roaming\ZHP O43 - CFD: 2016/04/04 13:37:28 - [] D -- C:\Users\Simon\AppData\Local\Adobe O43 - CFD: 2014/01/27 04:33:39 - [0] SHD -- C:\Users\Simon\AppData\Local\Application Data O43 - CFD: 2016/08/16 11:24:33 - [] D -- C:\Users\Simon\AppData\Local\Apps O43 - CFD: 2016/08/16 12:15:38 - [] D -- C:\Users\Simon\AppData\Local\ASUS O43 - CFD: 2016/08/12 23:33:21 - [] D -- C:\Users\Simon\AppData\Local\Avg O43 - CFD: 2013/09/14 18:02:36 - [] D -- C:\Users\Simon\AppData\Local\avgchrome O43 - CFD: 2016/08/12 23:29:45 - [] D -- C:\Users\Simon\AppData\Local\AvgSetupLog O43 - CFD: 2016/08/09 21:19:05 - [0] D -- C:\Users\Simon\AppData\Local\Diagnostics O43 - CFD: 2015/09/01 14:51:14 - [0] SHD -- C:\Users\Simon\AppData\Local\EmieBrowserModeList O43 - CFD: 2015/09/01 14:51:14 - [0] SHD -- C:\Users\Simon\AppData\Local\EmieSiteList O43 - CFD: 2015/09/01 14:51:14 - [0] SHD -- C:\Users\Simon\AppData\Local\EmieUserList O43 - CFD: 2016/08/16 11:24:33 - [] D -- C:\Users\Simon\AppData\Local\Google O43 - CFD: 2015/07/21 17:46:57 - [] D -- C:\Users\Simon\AppData\Local\GWX O43 - CFD: 2014/01/27 04:33:39 - [0] SHD -- C:\Users\Simon\AppData\Local\Historique O43 - CFD: 2013/05/04 18:22:29 - [] D -- C:\Users\Simon\AppData\Local\Macromedia O43 - CFD: 2016/08/12 12:12:35 - [] D -- C:\Users\Simon\AppData\Local\MFAData O43 - CFD: 2016/08/16 11:24:36 - [] D -- C:\Users\Simon\AppData\Local\Microsoft O43 - CFD: 2013/05/05 22:04:50 - [0] D -- C:\Users\Simon\AppData\Local\Microsoft Help O43 - CFD: 2016/02/22 13:58:40 - [] D -- C:\Users\Simon\AppData\Local\Mozilla O43 - CFD: 2016/08/16 11:24:57 - [] D -- C:\Users\Simon\AppData\Local\Packages O43 - CFD: 2016/08/12 23:45:48 - [] D -- C:\Users\Simon\AppData\Local\Skype O43 - CFD: 2016/08/18 16:26:04 - [] D -- C:\Users\Simon\AppData\Local\Temp O43 - CFD: 2014/01/27 04:33:39 - [0] SHD -- C:\Users\Simon\AppData\Local\Temporary Internet Files O43 - CFD: 2013/05/04 18:22:33 - [] D -- C:\Users\Simon\AppData\Local\VirtualStore O43 - CFD: 2013/08/22 17:36:32 - [] RD -- C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 2013/08/22 17:36:32 - [] RD -- C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2016/08/16 12:27:29 - [] RD -- C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2013/10/27 20:55:13 - [0] D -- C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitGuard =>PUP.Optional.BitGuard O43 - CFD: 2013/05/04 13:25:06 - [0] D -- C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2013/08/22 17:36:32 - [] D -- C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2016/08/16 12:27:29 - [] RD -- C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2014/01/27 04:34:27 - [] RD -- C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools ---\\ Derniers fichiers créés dans Windows Prefetcher (3) - 44s O45 - LFCP:[MD5.3D8C208B4C213A7D0E7B68A6B8D63079] 2016/08/09 21:10:55 A -- C:\WINDOWS\Prefetch\CACAONEW49D715.EXE-DBA07DA9.pf =>PUP.Optional.CacaoWeb O45 - LFCP:[MD5.5C623BD26A77F790C79EAD2AFB991D33] 2016/08/04 21:33:35 A -- C:\WINDOWS\Prefetch\CACAONEW4E0C30.EXE-A5E26C3E.pf =>PUP.Optional.CacaoWeb O45 - LFCP:[MD5.A538E1CB4F639F17E25FB7C587DC111C] 2016/08/18 14:21:41 A -- C:\WINDOWS\Prefetch\CACAOWEB.EXE-54C4DE3F.pf =>PUP.Optional.CacaoWeb ---\\ Liste des pilotes du système (48) - 7s O58 - SDL:2013/08/22 14:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [108896] © O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [782176] © O58 - SDL:2013/08/22 14:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [79200] © O58 - SDL:2013/08/22 14:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] © O58 - SDL:2013/08/22 14:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [25952] © O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [114016] © O58 - SDL:2012/05/31 05:47:44 A . (.ASUS - HID driver for ASUS Wireless Radio Control.) -- C:\WINDOWS\System32\drivers\AsHIDSwitch64.sys [21152] © O58 - SDL:2012/10/31 12:10:00 A . (.ASUS Corporation - Asus TP Filter Driver.) -- C:\WINDOWS\System32\drivers\AsusTP.sys [61824] © O58 - SDL:2016/08/08 18:08:05 A . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- C:\WINDOWS\System32\drivers\avgntflt.sys [144664] © O58 - SDL:2016/08/08 18:08:05 A . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- C:\WINDOWS\System32\drivers\avipbb.sys [154392] © O58 - SDL:2015/12/17 12:28:01 A . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- C:\WINDOWS\System32\drivers\avkmgr.sys [35488] © O58 - SDL:2016/08/08 18:08:05 A . (.Avira Operations GmbH & Co. KG - Avira WFP Network Driver.) -- C:\WINDOWS\System32\drivers\avnetflt.sys [78208] © O58 - SDL:2013/08/13 01:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] © O58 - SDL:2013/08/22 14:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] © O58 - SDL:2013/08/22 14:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3357024] © O58 - SDL:2012/07/02 16:16:02 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECIx64.sys [62784] © O58 - SDL:2012/04/20 16:40:58 A . (.McAfee, Inc. - McAfee HIP IPS Driver.) -- C:\WINDOWS\System32\drivers\HipShieldK.sys [196440] © O58 - SDL:2013/08/22 14:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] © O58 - SDL:2013/07/30 20:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [24568] © O58 - SDL:2013/07/25 21:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [99320] © O58 - SDL:2012/07/24 05:16:28 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [645952] © O58 - SDL:2013/08/10 02:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [651248] © O58 - SDL:2013/08/22 14:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] © O58 - SDL:2014/01/30 00:02:28 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [5363200] © O58 - SDL:2012/06/19 01:40:50 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [342528] © O58 - SDL:2012/08/02 05:22:48 A . (. - Keyboard Filter Driver.) -- C:\WINDOWS\System32\drivers\kbfiltr.sys [14992] O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [109408] © O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2.sys [93536] © O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3.sys [81760] © O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] © O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [56672] © O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] © O58 - SDL:2013/02/19 13:55:26 A . (.McAfee, Inc. - McAfee Driver Cleaning Driver.) -- C:\WINDOWS\System32\drivers\mfeclnk.sys [10728] © O58 - SDL:2013/02/19 13:55:14 A . (.McAfee, Inc. - McAfee Code Analysis Driver.) -- C:\WINDOWS\System32\drivers\mferkdet.sys [106552] © O58 - SDL:2013/08/22 14:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] © O58 - SDL:2013/07/25 21:05:37 A . (.Ralink Technology, Corp. - Ralink 802.11 Wireless Adapter Driver.) -- C:\WINDOWS\System32\drivers\netr28x.sys [2607792] © O58 - SDL:2013/08/22 14:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] © O58 - SDL:2013/08/22 14:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [168288] © O58 - SDL:2013/06/18 16:46:17 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\WINDOWS\System32\drivers\Rt630x64.sys [591360] © O58 - SDL:2012/08/21 12:34:12 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4106256] © O58 - SDL:2012/06/13 12:23:58 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\WINDOWS\System32\drivers\RtsBaStor.sys [294544] © O58 - SDL:2013/08/22 17:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [23040] © O58 - SDL:2013/08/22 14:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] © O58 - SDL:2013/08/22 14:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] © O58 - SDL:2013/08/22 14:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] © O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\viaide.sys [19808] © O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [168800] © O58 - SDL:2013/08/22 14:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] © ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (1) - 32s O61 - LFC: 2016/08/18 14:21:30 A . (..) -- C:\Users\Simon\AppData\Roaming\sp_data.sys [507] ---\\ Associations Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe © O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe © O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe © O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe © O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (10) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © ---\\ Recherche d'infection sur les navigateurs (26) - 3s O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("browser.newtab.url", "http://www.delta-search.com/?affID=121845&tt=gc_&babsrc=NT_ss&mntrId=0EC7844BF5AE6254"); =>Toolbar.DeltaSearch O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("browser.startup.homepage", "http://www.delta-search.com/?affID=121845&tt=gc_&babsrc=HP_ss&mntrId=0EC7844BF5AE6254"); =>Toolbar.DeltaSearch O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.admin", false); =>Toolbar.DeltaSearch O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.aflt", "babsst"); =>Toolbar.DeltaSearch O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}"); =>Toolbar.DeltaSearch O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.autoRvrt", "false"); =>Toolbar.DeltaSearch O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.dfltLng", "en"); =>Toolbar.DeltaSearch O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.excTlbr", false); =>Toolbar.DeltaSearch O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.ffxUnstlRst", true); =>Toolbar.DeltaSearch O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.id", "0ec79db0000000000000844bf5ae6254"); =>Toolbar.DeltaSearch O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.instlDay", "15852"); =>Toolbar.DeltaSearch O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.instlRef", "sst"); =>Toolbar.DeltaSearch O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.newTab", false); =>Toolbar.DeltaSearch O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.prdct", "delta"); =>Toolbar.DeltaSearch O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.prtnrId", "delta"); =>Toolbar.DeltaSearch O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.rvrt", "false"); =>Toolbar.DeltaSearch O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.smplGrp", "none"); =>Toolbar.DeltaSearch O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.tlbrId", "base"); =>Toolbar.DeltaSearch O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.tlbrSrchUrl", ""); =>Toolbar.DeltaSearch O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.vrsn", "1.8.21.5"); =>Toolbar.DeltaSearch O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.vrsnTs", "1.8.21.522:58:29"); =>Toolbar.DeltaSearch O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta.vrsni", "1.8.21.5"); =>Toolbar.DeltaSearch O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta_i.babExt", ""); =>Toolbar.DeltaSearch O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta_i.babTrack", "affID=121845&tt=gc_"); =>Toolbar.DeltaSearch O69 - SBI: prefs.js [Simon - d0ifc5et.default] user_pref("extensions.delta_i.srcExt", "ss"); =>Toolbar.DeltaSearch O69 - SBI: SearchScopes [HKCU] {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} - (Delta Search) - http://www.delta-search.com/ =>Toolbar.DeltaSearch ---\\ Enumère les services démarrés par Svchost (34) - 0s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\WINDOWS\System32\aelupsvc.dll [214528] © O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [156160] © O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [156160] © O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [329216] © O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1360896] © O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [1083904] © O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [926208] © O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [31744] © O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [110080] © O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] © O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [110592] © O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [1265152] © O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [230400] © O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\WINDOWS\system32\mmcss.dll [71168] © O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [135168] © O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [228864] © O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [339968] © O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [84992] © O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [101376] © O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [348672] © O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [522240] © O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [1639424] © O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [59392] © O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [206848] © O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [166400] © O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [102912] © O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [542208] © O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [226816] © O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [73728] © O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [452608] © O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [313344] © O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [3708416] © O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [933376] © O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [640000] © ---\\ Liste des exceptions du parefeu Windows (4) - 1s O87 - FAEL: "TCP Query User{08119406-434F-4B9C-8DD2-0F6DA2A94F66}C:\users\simon\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\simon\appdata\roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb O87 - FAEL: "UDP Query User{E801DF81-4303-4BD8-8E26-CAAF48829E32}C:\users\simon\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\simon\appdata\roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb O87 - FAEL: "TCP Query User{86FD58BF-14EC-41C7-988D-284CD442E8B2}C:\users\simon\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\simon\appdata\roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb O87 - FAEL: "UDP Query User{19BF8B94-7C59-4DF9-BCFC-FF7EF64F22B1}C:\users\simon\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\simon\appdata\roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (22) - 11s SR - Auto [2016/06/25 01:45:12] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe © SS - Demand [2016/08/08 18:11:47] [ 270016] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe © SS - Auto [2016/08/08 18:07:27] [ 989696] Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe © SR - Auto [2016/08/08 18:08:01] [ 472112] Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe © SR - Auto [2016/08/08 18:07:25] [ 472112] Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe © SS - Auto [2016/08/08 18:07:34] [ 1453696] Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe © SR - Auto [2012/07/23 19:59:02] [ 105120] ASLDR Service (ASLDRService) . (.ASUSTek Computer Inc..) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe © SR - Auto [2012/04/13 11:14:00] [ 277120] ASUS InstantOn Service (ASUS InstantOn) . (.ASUS.) - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe © SR - Auto [2011/11/21 15:19:50] [ 96896] ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe © SR - Auto [2016/07/25 16:01:18] [ 319648] Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe © SS - Demand [2014/01/30 00:02:44] [ 279000] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe © SS - Auto [2015/09/01 15:08:05] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SS - Demand [2015/09/01 15:08:05] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SR - Auto [2012/04/20 15:16:12] [ 635104] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe © SR - Auto [2012/06/27 13:47:02] [ 129856] Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe © SR - Auto [2012/06/25 11:57:14] [ 166720] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe © SR - Auto [2012/07/17 15:57:20] [ 277824] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe © SS - Demand [2016/05/31 14:46:08] [ 293128] McAfee Security Scan Component Host Service (McComponentHostService) . (.McAfee, Inc..) - C:\Program Files\McAfee Security Scan\3.11.334\McCHSvc.exe © SS - Demand [2013/08/08 13:05:53] [ 117144] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe © SS - Auto [2016/03/23 19:08:24] [ 327808] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe © SR - Auto [2012/07/17 15:57:22] [ 365376] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe © ---\\ Scan Additionnel (25) - 0s C:\Users\Simon\AppData\Roaming\cacaoweb\cacaoweb.exe =>PUP.Optional.CacaoWeb C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\d0ifc5et.default\searchplugins\babylon.xml =>PUP.Optional.Babylon C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\d0ifc5et.default\searchplugins\BrowserProtect.xml =>PUP.Optional.Eazel C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\d0ifc5et.default\extensions\cacaoweb@cacaoweb.org =>PUP.Optional.CacaoWeb C:\Program Files (x86)\Delta\delta\1.8.21.5\deltaTlbr.dll =>Toolbar.DeltaSearch HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\delta =>Toolbar.DeltaSearch HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Delta Chrome Toolbar =>Toolbar.DeltaSearch HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Vittalia =>PUP.Optional.Vittalia HKLM\SOFTWARE\Wow6432Node\5b538ddebd68be41 =>PUP.Optional.Heuristic HKLM\SOFTWARE\Wow6432Node\Babylon =>PUP.Optional.Babylon HKLM\SOFTWARE\Wow6432Node\Delta =>Toolbar.DeltaSearch HKCU\SOFTWARE\5b538ddebd68be41 =>PUP.Optional.Heuristic HKCU\SOFTWARE\BabSolution =>PUP.Optional.BabSolution HKCU\SOFTWARE\cacaoweb =>PUP.Optional.CacaoWeb HKCU\SOFTWARE\Delta =>Toolbar.DeltaSearch HKCU\SOFTWARE\AppDataLow\Software\SmartBar =>PUP.Optional.SmartBar C:\Program Files (x86)\Vittalia =>PUP.Optional.Vittalia C:\ProgramData\Babylon =>PUP.Optional.Babylon C:\Users\Simon\AppData\Roaming\BabSolution =>PUP.Optional.BabSolution C:\Users\Simon\AppData\Roaming\Babylon =>PUP.Optional.Babylon C:\Users\Simon\AppData\Roaming\cacaoweb =>PUP.Optional.CacaoWeb C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitGuard =>PUP.Optional.BitGuard C:\WINDOWS\Prefetch\CACAONEW49D715.EXE-DBA07DA9.pf =>PUP.Optional.CacaoWeb C:\WINDOWS\Prefetch\CACAONEW4E0C30.EXE-A5E26C3E.pf =>PUP.Optional.CacaoWeb C:\WINDOWS\Prefetch\CACAOWEB.EXE-54C4DE3F.pf =>PUP.Optional.CacaoWeb ---\\ Récapitulatif des éléments trouvées sur votre station (9) - 0s http://www.nicolascoolman.fr/pup-cacaoweb/ =>PUP.Optional.CacaoWeb http://www.nicolascoolman.fr/toolbar-deltasearch/ =>Toolbar.DeltaSearch http://www.nicolascoolman.fr/pup-babylon/ =>PUP.Optional.Babylon http://www.nicolascoolman.fr/hijacker-eazel/ =>PUP.Optional.Eazel http://www.nicolascoolman.fr/pup-vittalia/ =>PUP.Optional.Vittalia http://www.nicolascoolman.fr/blog =>PUP.Optional.Heuristic http://www.nicolascoolman.fr/hijacker-babsolution/ =>PUP.Optional.BabSolution http://www.nicolascoolman.fr/hijacker-smartbar/ =>PUP.Optional.SmartBar http://www.nicolascoolman.fr/pup-bitguard/ =>PUP.Optional.BitGuard ~ End of the scan, 16811 items in 184 seconds (733)(0)()