Format du document : text/plain
Prévisualisation
~ ZHPDiag v2015.10.14.149 Par Nicolas Coolman (2015/10/14)
~ Démarré par François (Administrator) (2015/10/15 17:12:31)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\François\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\François\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 10 Home, 64-bit (Build 10240)
---\\ Navigateurs Internet (3) - 0s
GCIE: Google Chrome v46.0.2490.71
MFIE: Mozilla Firefox 41.0.1 (x86 fr) v41.0.1
MSIE: Internet Explorer v11.0.10240.16431
---\\ Informations sur les produits Windows (8) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows(R) Operating System, RETAIL channel
Windows ID Activation : OK
~ Windows Partial Key : 8HVX7
Windows License : OK
~ Windows Remaining Initializations Number : 1001
Windows Automatic Updates : OK
---\\ Logiciels de protection (3) - 11s
Avira Antivirus v15.0.12.420
Malwarebytes Anti-Malware version 2.2.0.1024
Windows Defender (Activate)
---\\ Surveillance de Logiciels (3) - 13s
Adobe Flash Player 19 NPAPI
Extended Asian Language font pack for Adobe Reader XI
Adobe Acrobat Reader DC - Français
---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4160.7 MB (45% free)
~ System Restore: Activé (Enable)
~ System drive C: has 18 GB free of 73 GB
---\\ Mode de connexion au système (3) - 0s
~ Computer Name: FRANÇOIS-PCHP
~ User Name: François
~ Logged in as Administrator
---\\ Enumération des unités disques (6) - 0s
~ Drive B: has 30 GB free of 49 GB
~ Drive C: has 18 GB free of 73 GB (System)
~ Drive M: has 27 GB free of 49 GB
~ Drive N: has 34 GB free of 131 GB
~ Drive S: has 26 GB free of 96 GB
~ Drive W: has 38 GB free of 208 GB
---\\ Etat du Centre de Sécurité Windows (7) - 1s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
---\\ Recherche particulière de fichiers génériques (25) - 2s
[MD5.F1CBCB7FA6F3B309639AA2D4EF74469C] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [4532304] ©
[MD5.5DED2A3F11AE916C8F2724947E736261] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\WINDOWS\System32\rundll32.exe [59392] ©
[MD5.7718A2A9B2BFB2C8E2BAEB03310CA3FD] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\WINDOWS\System32\Wininit.exe [290312] ©
[MD5.E5D86250453B33900666D92ED1A92ABE] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\WINDOWS\System32\wininet.dll [2740224] ©
[MD5.6688FE37E767BA15F022B7E59E5E7EA6] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [579072] ©
[MD5.ECB1943967424DFB96E03F6A098434EF] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\WINDOWS\System32\sppcomapi.dll [430592] ©
[MD5.C287D0E32771E3222A444DC527A29477] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\WINDOWS\System32\dnsapi.dll [680256] ©
[MD5.BB5BBD0E4D04047585E4ED0F07AA51E7] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\WINDOWS\Syswow64\dnsapi.dll [534064] ©
[MD5.8C795953726C7D2DE72CE4748208C5ED] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [20480] ©
[MD5.6C12C7E01A4F64E0AA9C88AF66955CC9] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [577888] ©
[MD5.8921DF6060DB5C7700AA48CB12E9EA08] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [28512] ©
[MD5.F2829DC6D292DCAC5029893BB2E9FEE3] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [92672] ©
[MD5.CA160E02F35A61C6F5C681FB4669C519] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [174080] ©
[MD5.25435407D97419627F4B10653433BF2B] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\WINDOWS\System32\drivers\DfsC.sys [138240] ©
[MD5.C277A49F8A8295840DEBC9240B75A282] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [80896] ©
[MD5.D4CDEE4A62BDFFF6E8558A9552148EA7] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [114688] ©
[MD5.5D3744E6FDEC1A6FB3FA9B1DD4AF0694] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [143360] ©
[MD5.1DF2C5FD2710A13B07E663A12F0E0EEA] - (.Microsoft Corporation - Minirdr SMB Windows NT.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [415232] ©
[MD5.F0D791348AD254360CC3C3E501CCB745] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [273408] ©
[MD5.466EC5659C02ED53DBD47DC1BC2B8086] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [2116448] ©
[MD5.38F1AE32339731F6E5A7281AE8042545] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [96768] ©
[MD5.CA60F6C03611AF1710BC903ED9F566FB] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [104960] ©
[MD5.A32AED8C644734B283A7C9D08D76064D] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [176128] ©
[MD5.28E1E63A1AC65E17B3194238FA2CF3BF] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\WINDOWS\System32\drivers\tdx.sys [116576] ©
[MD5.823A237D871CD652C6BFD47BECB6810A] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [378720] ©
---\\ Processus lancés (52) - 25s
[MD5.7FE59496114A48A64E98E3218664A3E6] - (.AMD - AMD External Events Service Module.) -- C:\WINDOWS\system32\atiesrxx.exe [238080] [PID.1176] ©
[MD5.7595D53EE8E8B0BAA9A2DDDE867EBB0C] - (.IDT, Inc. - IDT PC Audio.) -- C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_960c1f056a541068\stacsv64.exe [247808] [PID.1444] ©
[MD5.FC7C13B5A9E9BE23B7AE72BBC7FDB278] - (.Hewlett-Packard Company - HpService.) -- C:\WINDOWS\system32\Hpservice.exe [30520] [PID.1536] ©
[MD5.E20B4F23EB153635D67944F63454EC84] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [461672] [PID.936] ©
[MD5.F6CEFEF46986DE02A3AE5D93AE32B5DC] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.2184] ©
[MD5.115EA86A5EF0DB5A0EFCA47D48377147] - (.Acronis - Acronis Scheduler 2.) -- C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [1064568] [PID.2220] ©
[MD5.A6FB9DB8F1A86861D955FD6975977AE0] - (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) -- C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_960c1f056a541068\AESTSr64.exe [89600] [PID.2264] ©
[MD5.AF44F7E027037628F1FAC3C13CDE73E6] - (.Acronis - File Level CDP Manager Service.) -- C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [3246040] [PID.2288] ©
[MD5.E20B4F23EB153635D67944F63454EC84] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [461672] [PID.2424] ©
[MD5.76648BCBEB840B391E85DAD2DC04FFC9] - (.Avira Operations GmbH & Co. KG - Avira.ServiceHost.) -- C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [240872] [PID.2608] ©
[MD5.7228CA6320ABA120DAAA69C740B73943] - (.AOMEI Tech Co., Ltd. - AOMEI Backupper Schedule task service.) -- C:\Program Files (x86)\AOMEI Backupper\ABService.exe [29912] [PID.2644] ©
[MD5.0594DCF055A1F567CAFF49B780BA0399] - (.AMD - AMD External Events Client Module.) -- C:\WINDOWS\system32\atieclxx.exe [514048] [PID.2764] ©
[MD5.04A83E99978F4BBB063074FF99D9E5D6] - (.CHENGDU YIWO Tech Development Co., Ltd - EaseUS Todo Backup Agent Application.) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe [36904] [PID.2880] ©
[MD5.FB7F9FAD063AE5269A6147E3A48ACD03] - (...) -- C:\Program Files (x86)\Input Director\IDWinService.exe [36864] [PID.2924]
[MD5.40C126CB15FAB7D6C66490DCA9C1AED2] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416] [PID.3068] ©
[MD5.AB176B9E59C0435499D83047D84EDD59] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1513784] [PID.2136] ©
[MD5.1946062404E4071274A30A64C6815FEE] - (.Copyright © 2010 Imperative Software Pty Ltd - Input Director Session Helper.) -- C:\Program Files (x86)\Input Director\InputDirectorSessionHelper.exe [139264] [PID.3088]
[MD5.498EB62A160674E793FA40FD65390625] - (.Copyright 2004 - RichVideo Module.) -- C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [247152] [PID.3580]
[MD5.3EEDF446E29B6B8F7AD5AFA59B84800B] - (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) -- C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [246472] [PID.3676] ©
[MD5.243A1E7B92B591342DCDEE3E12687274] - (...) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe [245800] [PID.4672]
[MD5.BABBBDEF9DBB5E012EE5210FCB47C33B] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe [9832760] [PID.4472] ©
[MD5.A72BB48D9014A7D7C05F02F595F52D60] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler.exe [245576] [PID.5456] ©
[MD5.E337785DA1958E9AB02DDB2369EF46E8] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler64.exe [307016] [PID.1388] ©
[MD5.84222E8F33BB6080953F130D246BB78B] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3944136] [PID.2108] ©
[MD5.015BE8DC7A551728CEFD5DD96EE14E80] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [210120] [PID.2204] ©
[MD5.C65B115A03DB0260895DE96681E88221] - (.CyberLink Corp. - HP DVDSmart Resident Program.) -- c:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe [128296] [PID.5932] ©
[MD5.B508A4EE516D905730458BB50B79979B] - (.CyberLink - CyberLink MediaLibray Service.) -- c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe [206120] [PID.5616] ©
[MD5.094F3AC18AF083D542D96EBEF1F28161] - (.Avira Operations GmbH & Co. KG - AntiVir shadow copy service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe [632152] [PID.5024] ©
[MD5.C89097A61AEF2679E61504EA4F93751D] - (.Filipe Lourenço - BatteryCare.) -- B:\LOGS_PORTABLES\BatteryCarePortable\BatteryCare.exe [752128] [PID.7248] ©
[MD5.2EEED500C1EC095CB3D0DE7A3C7E4278] - (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe [487424] [PID.7488] ©
[MD5.BF86BC106E0F35BACC85DCF4A0C797A3] - (.Google - Google Drive.) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe [22344224] [PID.7964] ©
[MD5.76798E3406B292357691368303B8A613] - (.Hewlett-Packard Company - HP Wireless Assistant Main Program.) -- C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [500792] [PID.7512] ©
[MD5.E7704CBF568815C1CAA6E513387BD3F2] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [65536] [PID.7548] ©
[MD5.27F8A7A78773427E5D931628F89D6839] - (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [782008] [PID.7528] ©
[MD5.4C62D08215EBD1C9FEB395550183DC99] - (.Avira Operations GmbH & Co. KG - Avira Launcher.) -- C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe [135800] [PID.7664] ©
[MD5.BF86BC106E0F35BACC85DCF4A0C797A3] - (.Google - Google Drive.) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe [22344224] [PID.7304] ©
[MD5.D2946D9F020AE76E9CEF9B4A6DF838C0] - (.Hewlett-Packard Company - HP Software Framework WMI Service.) -- C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [1129760] [PID.8032] ©
[MD5.74EF310FAC89341CE2897B7F2C4A7B0F] - (.ATI Technologies Inc. - Catalyst Control Centre: Host application.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe [65536] [PID.6472] ©
[MD5.0DE3C7622EC33126579B1742260F08C2] - (.Copyright (c) 2005 - 2009 Hewlett-Packard Development - HpqToaster Module.) -- C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe [632888] [PID.1952]
[MD5.77E81E788CC63E65272A7D247F441505] - (.Hewlett-Packard Company - HP Support Assistant Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [99128] [PID.8452] ©
[MD5.1CD59A498A850F58D0C01EB1E913929D] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.7000] ©
[MD5.1CD59A498A850F58D0C01EB1E913929D] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.5288] ©
[MD5.1CD59A498A850F58D0C01EB1E913929D] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.9212] ©
[MD5.1CD59A498A850F58D0C01EB1E913929D] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.5764] ©
[MD5.1CD59A498A850F58D0C01EB1E913929D] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.9200] ©
[MD5.1CD59A498A850F58D0C01EB1E913929D] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.8532] ©
[MD5.1CD59A498A850F58D0C01EB1E913929D] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.8284] ©
[MD5.1CD59A498A850F58D0C01EB1E913929D] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.8324] ©
[MD5.AC8799DC1813802936209865892CE485] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\François\Downloads\ZHPDiag3.exe [1956352] [PID.7436] ©
[MD5.AC8799DC1813802936209865892CE485] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\François\Downloads\ZHPDiag3.exe [1956352] [PID.5592] ©
[MD5.5F77516187B38639C90D5A7C2AEBA98C] - (.Avira Operations GmbH & Co. KG - Product Updater.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\update.exe [1149224] [PID.8608] ©
[MD5.C5F22368CAB23D33FE8B052CFB4D3BF5] - (.Avira Operations GmbH & Co. KG - Updater GUI.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\updrgui.exe [399896] [PID.1312] ©
---\\ Google Chrome, Démarrage,Recherche,Extensions (5) - 2s
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [flliilndjeohchalpbbcdekjklbdgfkk] Avira Browser Safety
G2 - GCE: Preference [User Data\Default] [hiembaoomcehoiehhdldabfgnmphappc] __MSG_extTitleEnabled__
G2 - GCE: Preference [User Data\Default] [lmjegmlicamnimmfhcmpkclmigmmcbeh] Application Launcher for Drive (by Google)
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (16) - 12s
P2 - EXT FILE: (...) -- C:\Users\François\AppData\Roaming\Mozilla\Firefox\Profiles\1nnjiemq.default\extensions\03b02ce4e333ee2b8b0ab873ed565ea331ff2ca82a213d8d20909124cfc7ba1b_lp.key
P2 - EXT FILE: (...) -- C:\Users\François\AppData\Roaming\Mozilla\Firefox\Profiles\1nnjiemq.default\extensions\jid1-F9UJ2thwoAm5gQ@jetpack.xpi
P2 - EXT FILE: (...) -- C:\Users\François\AppData\Roaming\Mozilla\Firefox\Profiles\1nnjiemq.default\extensions\tinyurl.addon@fast-chat.co.uk.xpi
P2 - EXT FILE: (...) -- C:\Users\François\AppData\Roaming\Mozilla\Firefox\Profiles\1nnjiemq.default\extensions\{02450914-cdd9-410f-b1da-db004e18c671}.xpi
P2 - EXT FILE: (...) -- C:\Users\François\AppData\Roaming\Mozilla\Firefox\Profiles\1nnjiemq.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi
P2 - EXT FILE: (...) -- C:\Users\François\AppData\Roaming\Mozilla\Firefox\Profiles\1nnjiemq.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - EXT FILE: (...) -- C:\Users\François\AppData\Roaming\Mozilla\Firefox\Profiles\1nnjiemq.default\searchplugins\pc-astuces.xml
P2 - EXT FILE: (...) -- C:\Users\François\AppData\Roaming\Mozilla\Firefox\Profiles\1nnjiemq.default\searchplugins\yopmailcom--email-temporaire.xml
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ©
P2 - EXT: (.Avira - Segurança do navegador Avira.) -- C:\Users\François\AppData\Roaming\Mozilla\Firefox\Profiles\1nnjiemq.default\extensions\abs@avira.com
P2 - EXT: (.LastPass Dev Team - LastPass.) -- C:\Users\François\AppData\Roaming\Mozilla\Firefox\Profiles\1nnjiemq.default\extensions\support@lastpass.com ©
P2 - EXT: (.Vicente Amor - Flash and Video Download.) -- C:\Users\François\AppData\Roaming\Mozilla\Firefox\Profiles\1nnjiemq.default\extensions\{bee6eb20-01e0-ebd1-da83-080329fb9a3a} ©
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_207.dll ©
P2 - FPN: [HKLM] [@divx.com/DivX Player Plugin,version=1.0.0] - (.DivX,Inc..) -- C:\Program Files (x86)\DivX\DivX Player\npDivxPlayerPlugin.dll
P2 - FPN: [HKLM] [@glowria.fr/FireVMGate] - (.Glowria.) -- C:\Program Files (x86)\Common Files\Glowria\npFireVMGate.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=1.1.11] - (.the VideoLAN Team.) -- C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (21) - 2s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.fr/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R3 - URLSearchHook: (no name) - {1392b8d2-5c05-419f-a8f6-b9f15a596612} Orphean
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
---\\ Internet Explorer,Proxy Management (5) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\System32\Userinit.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: VMApplet=
---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)
---\\ Browser Helper Object de navigateur (BHO) (2) - 1s
O2 - BHO: (no name) [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} (Orphean)
O2 - BHO: HP Network Check Helper [64Bits] - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} . (.Hewlett-Packard - HP Network Check IE Plug-in.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll ©
---\\ Applications lancées au démarrage du système (21) - 2s
O4 - HKLM\..\Run: [SysTrayApp] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe ©
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.)
O4 - HKCU\..\Run: [GoogleDriveSync] . (.Google - Google Drive.) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe ©
O4 - HKCU\..\Run: [Connexion SFR 9props.exe] . (.SFR - Propriétés de la connexion SFR.) -- C:\Program Files (x86)\SFR\Kit\9props.exe ©
O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\François\AppData\Local\Google\Update\GoogleUpdate.exe ©
O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\François\AppData\Local\Microsoft\OneDrive\OneDrive.exe ©
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\François\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe ©
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\François\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe ©
O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe ©
O4 - HKLM\..\Wow6432Node\Run: [WirelessAssistant] . (.Hewlett-Packard Company - HP Wireless Assistant Main Program.) -- C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe ©
O4 - HKLM\..\Wow6432Node\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe ©
O4 - HKLM\..\Wow6432Node\Run: [Avira SystrayStartTrigger] . (.Avira Operations GmbH & Co. KG - Avira.SystrayStartTrigger.) -- C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe ©
O4 - HKLM\..\Wow6432Node\Run: [EaseUS EPM tray] C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.8\bin\EpmNews.exe (.not file.)
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe ©
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe ©
O4 - HKUS\S-1-5-21-2036429340-2832886653-2203151461-1001\..\Run: [GoogleDriveSync] . (.Google - Google Drive.) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe ©
O4 - HKUS\S-1-5-21-2036429340-2832886653-2203151461-1001\..\Run: [Connexion SFR 9props.exe] . (.SFR - Propriétés de la connexion SFR.) -- C:\Program Files (x86)\SFR\Kit\9props.exe ©
O4 - HKUS\S-1-5-21-2036429340-2832886653-2203151461-1001\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\François\AppData\Local\Google\Update\GoogleUpdate.exe ©
O4 - HKUS\S-1-5-21-2036429340-2832886653-2203151461-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\François\AppData\Local\Microsoft\OneDrive\OneDrive.exe ©
O4 - HKUS\S-1-5-21-2036429340-2832886653-2203151461-1001\..\RunOnce: [Uninstall C:\Users\François\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe ©
O4 - HKUS\S-1-5-21-2036429340-2832886653-2203151461-1001\..\RunOnce: [Uninstall C:\Users\François\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe ©
---\\ Modification Domaine/Adresses DNS (2) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
---\\ Protocole additionnel (28) - 2s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: belarc [64Bits] - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} . (.Belarc, Inc. - Belarc VoilaX Control.) -- C:\Program Files (x86)\Belarc\BelarcAdvisor\System\BAVoilaX.dll
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll ©
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll ©
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll ©
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll ©
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll ©
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll ©
O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll ©
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll ©
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll ©
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll ©
O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll ©
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll ©
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll ©
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll ©
O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL ©
---\\ Liste des services NT non Microsoft et non désactivés (22) - 2s
O23 - Service: Service Scheduler2 Acronis (AcrSch2Svc) . (.Acronis - Acronis Scheduler 2.) - C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe ©
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe ©
O23 - Service: Andrea ST Filters Service (AESTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_960c1f056a541068\AESTSr64.exe ©
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\WINDOWS\system32\atiesrxx.exe ©
O23 - Service: Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG - Antivirus MailScanner WFP Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe ©
O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe ©
O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe ©
O23 - Service: Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG - AntiVir WebGuard WFP Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe ©
O23 - Service: Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG - Avira.ServiceHost.) - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe ©
O23 - Service: AOMEI Backupper Scheduler Service (Backupper Service) . (.AOMEI Tech Co., Ltd. - AOMEI Backupper Schedule task service.) - C:\Program Files (x86)\AOMEI Backupper\ABService.exe ©
O23 - Service: Service Agent EaseUS (EaseUS Agent) . (.CHENGDU YIWO Tech Development Co., Ltd - EaseUS Todo Backup Agent Application.) - C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe ©
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
O23 - Service: HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company - HP Support Assistant Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe ©
O23 - Service: @oem39.inf,%hpservice_desc%;HP Service (hpsrv) . (.Hewlett-Packard Company - HpService.) - C:\WINDOWS\system32\Hpservice.exe ©
O23 - Service: Input Director Service (InputDirector) . (...) - C:\Program Files (x86)\Input Director\IDWinService.exe
O23 - Service: (MBAMScheduler) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe ©
O23 - Service: (MBAMService) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe ©
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004 - RichVideo Module.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: Audio Service (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_960c1f056a541068\stacsv64.exe ©
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe ©
O23 - Service: TomTomHOMEService (TomTomHOMEService) . (...) - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe (.not file.)
O23 - Service: @C:\Program Files (x86)\Windows Defender\MpAsDesc.dll,-310 (WinDefend) . (...) - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (.not file.)
---\\ Tâches planifiées en automatique (20) - 6s
[MD5.2EED3542F86F77D56569504B37C8108A] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1045720] ©
[MD5.541F7A3298A5AA2BA0E6B35172D3D51F] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000] ©
[MD5.C89097A61AEF2679E61504EA4F93751D] [APT] [BatteryCareAuto] (.Filipe Lourenço.) -- B:\LOGS_PORTABLES\BatteryCarePortable\BatteryCare.exe [752128] ©
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] ©
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] ©
[MD5.00000000000000000000000000000000] [APT] [GoogleUpdateTaskUserS-1-5-21-2036429340-2832886653-2203151461-1001Core] (...) -- C:\Users\Fran‡ois\AppData\Local\Google\Update\GoogleUpdate.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [GoogleUpdateTaskUserS-1-5-21-2036429340-2832886653-2203151461-1001UA] (...) -- C:\Users\Fran‡ois\AppData\Local\Google\Update\GoogleUpdate.exe (.not file.) [0]
[MD5.BD7734C613C356C2CBEB0174BEAB8EC0] [APT] [Hewlett-Packard\HP Assistant\HPSA Upgrade] (.Hewlett-Packard.) -- C:\ProgramData\Hewlett-Packard\HPSAUpgrade3\HpSAUpgrade.exe [1248312] ©
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] ©
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1100] ©
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1104] ©
O39 - APT: GoogleUpdateTaskUserS-1-5-21-2036429340-2832886653-2203151461-1001Core - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-2036429340-2832886653-2203151461-1001Core.job [1066]
O39 - APT: GoogleUpdateTaskUserS-1-5-21-2036429340-2832886653-2203151461-1001UA - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-2036429340-2832886653-2203151461-1001UA.job [1118]
O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [3972] ©
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3976] ©
O39 - APT: BatteryCareAuto - (.Filipe Lourenço.) -- C:\WINDOWS\System32\Tasks\BatteryCareAuto [3450] ©
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3930] ©
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [4162] ©
O39 - APT: GoogleUpdateTaskUserS-1-5-21-2036429340-2832886653-2203151461-1001Core - (...) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2036429340-2832886653-2203151461-1001Core [3866]
O39 - APT: GoogleUpdateTaskUserS-1-5-21-2036429340-2832886653-2203151461-1001UA - (...) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2036429340-2832886653-2203151461-1001UA [4242]
---\\ Logiciels installés (118) - 46s
O42 - Logiciel: Broadcom 802.11 Wireless LAN Adapter - (.Broadcom Corporation.) [HKLM][64Bits] -- Broadcom 802.11 Wireless LAN Adapter ©
O42 - Logiciel: Bullzip PDF Printer 10.17.0.2428 - (.Bullzip.) [HKLM][64Bits] -- Bullzip PDF Printer_is1
O42 - Logiciel: Defraggler - (.Piriform.) [HKLM][64Bits] -- Defraggler ©
O42 - Logiciel: EaseUS Data Recovery Wizard 9.0 - (.EaseUS.) [HKLM][64Bits] -- EaseUS Data Recovery Wizard 9.0_is1 ©
O42 - Logiciel: ENE CIR Receiver Driver - (.ENE.) [HKLM][64Bits] -- FFE7D41DF3C645075BB149E21988B63996C34187 ©
O42 - Logiciel: MediaCoder x64 2011 - (.Broad Intelligence.) [HKLM][64Bits] -- MediaCoder x64 ©
O42 - Logiciel: Microsoft IntelliPoint 8.2 - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft IntelliPoint 8.2 ©
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey ©
O42 - Logiciel: TeraCopy 2.1 - (.Code Sector Inc..) [HKLM][64Bits] -- TeraCopy_is1
O42 - Logiciel: Unlocker 1.9.1-x64 - (.Cedrick Collomb.) [HKLM][64Bits] -- Unlocker ©
O42 - Logiciel: ZTE USB Driver - (.ZTE Corporation.) [HKLM][64Bits] -- ZTE USB Driver ©
O42 - Logiciel: Paragon Hard Disk Manager 15 - Backup and Recovery ™ Compact - (.Paragon Software.) [HKLM][64Bits] -- {485DF5E7-8379-4BFA-BAE1-9B8DBFE0D6B4}
O42 - Logiciel: Microsoft IntelliPoint 8.2 - (.Microsoft Corporation.) [HKLM][64Bits] -- {624C7F0A-89B2-4C49-9CAB-9D69613EC95A} ©
O42 - Logiciel: HP MediaSmart SmartMenu - (.Hewlett-Packard.) [HKLM][64Bits] -- {88E60521-1E4E-4785-B9F1-1798A4BD0C30} ©
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} ©
O42 - Logiciel: AxCrypt 1.7.3156.0 - (.Axantum Software AB.) [HKLM][64Bits] -- {8B49CDB9-824C-44D6-A5D3-D0235D3030B8}
O42 - Logiciel: HP 3D DriveGuard - (.Hewlett-Packard.) [HKLM][64Bits] -- {8FCDACA0-E090-4A9A-AC71-A96E7371DC6E} ©
O42 - Logiciel: Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.11761. - (.Microsoft Corporation.) [HKLM][64Bits] -- {986E003C-E56D-5A47-110E-D3C81F0E8535} ©
O42 - Logiciel: Nokia Connectivity Cable Driver - (...) [HKLM][64Bits] -- {BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}
O42 - Logiciel: Paragon Backup and Recovery™ 2014 Free - (.Paragon Software.) [HKLM][64Bits] -- {C268B5E1-A5DA-11DF-A289-005056C00008}
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR ©
O42 - Logiciel: Adobe Flash Player 19 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI ©
O42 - Logiciel: Adobe Shockwave Player 12.0 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player ©
O42 - Logiciel: Avira Antivirus v15.0.12.420 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- Avira Antivirus ©
O42 - Logiciel: Belarc Advisor 8.5a - (.Belarc Inc..) [HKLM][64Bits] -- Belarc Advisor ©
O42 - Logiciel: DivX Plus DirectShow Filters - (.DivX, Inc..) [HKLM][64Bits] -- DivX Plus DirectShow Filters
O42 - Logiciel: Configuration DivX - (.DivX, LLC.) [HKLM][64Bits] -- DivX Setup ©
O42 - Logiciel: EaseUS Partition Master 10.8 Trial Edition - (.EaseUS.) [HKLM][64Bits] -- EaseUS Partition Master Trial Edition_is1 ©
O42 - Logiciel: EaseUS Todo Backup Home 8.8 - (.CHENGDU YIWO Tech Development Co., Ltd.) [HKLM][64Bits] -- EaseUS Todo Backup_is1 ©
O42 - Logiciel: Free Video Dub version 2.0.17.128 - (.DVDVideoSoft Ltd..) [HKLM][64Bits] -- Free Video Dub_is1 ©
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome ©
O42 - Logiciel: Input Director v1.2.2 - (.Imperative Software Pty Ltd.) [HKLM][64Bits] -- Input Director
O42 - Logiciel: HP MediaSmart Webcam - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D} ©
O42 - Logiciel: CyberLink DVD Suite - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} ©
O42 - Logiciel: HP MediaSmart Movie Themes - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{3023EBDA-BF1B-4831-B347-E5018555F26E} ©
O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658} ©
O42 - Logiciel: HP MediaSmart Music/Photo/Video - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{B2EE25B9-5B00-4ACF-94F0-92433C28C39E} ©
O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1} ©
O42 - Logiciel: HP MediaSmart DVD - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A} ©
O42 - Logiciel: LastPass (Désinstaller uniquement) - (.LastPass.) [HKLM][64Bits] -- LastPass ©
O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.0.1024 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 ©
O42 - Logiciel: MEGAsync - (.Mega Limited.) [HKLM][64Bits] -- MEGAsync ©
O42 - Logiciel: Mozilla Firefox 41.0.1 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 41.0.1 (x86 fr) ©
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService ©
O42 - Logiciel: MP3 Toolkit 1.0.5 - (.MP3Toolkit.com.) [HKLM][64Bits] -- MP3 Toolkit_is1
O42 - Logiciel: OpenAL - (...) [HKLM][64Bits] -- OpenAL
O42 - Logiciel: PDF Eraser V1.0.3 - (.http://www.PDFEraser.net.) [HKLM][64Bits] -- PDF Eraser_is1
O42 - Logiciel: PDF Shaper 2.0 - (.Glorylogic.) [HKLM][64Bits] -- PDF Shaper_is1 ©
O42 - Logiciel: PersoApps Calendrier - (.EuroSoft Software Development.) [HKLM][64Bits] -- PersoApps Calendrier 1.10_is1
O42 - Logiciel: Désinstallation du SFR Video Manager - (...) [HKLM][64Bits] -- SFR
O42 - Logiciel: SFR - Kit de connexion - (.SFR.) [HKLM][64Bits] -- SFR_Kit ©
O42 - Logiciel: SFR - Media Center - (.SFR.) [HKLM][64Bits] -- SFR_Media Center ©
O42 - Logiciel: SpeedFan (remove only) - (...) [HKLM][64Bits] -- SpeedFan
O42 - Logiciel: SpywareBlaster 4.6 - (.Javacool Software LLC.) [HKLM][64Bits] -- SpywareBlaster_is1
O42 - Logiciel: StartEd Lite - (.Outertech.) [HKLM][64Bits] -- StartEd Lite ©
O42 - Logiciel: TrueCrypt - (.TrueCrypt Foundation.) [HKLM][64Bits] -- TrueCrypt ©
O42 - Logiciel: VLC media player 1.1.11 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player ©
O42 - Logiciel: HP MediaSmart Webcam - (.Hewlett-Packard.) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D} ©
O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FA4960-B038-49EB-891B-9F95930AA544} ©
O42 - Logiciel: Google Drive - (.Google, Inc..) [HKLM][64Bits] -- {12ADFB82-D5A3-43E4-B2F4-FCD9B690315B} ©
O42 - Logiciel: e-Carte Bleue Caisse d'Epargne - (...) [HKLM][64Bits] -- {18EF615A-5AAD-4944-B24E-6CD7863FC735}
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} ©
O42 - Logiciel: CyberLink DVD Suite - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} ©
O42 - Logiciel: JMicron Flash Media Controller Driver - (.JMicron Technology Corp..) [HKLM][64Bits] -- {26604C7E-A313-4D12-867F-7C6E7820BE4C} ©
O42 - Logiciel: Catalyst Control Center - Branding - (.ATI.) [HKLM][64Bits] -- {266D0EEA-E5A6-4A08-A0EE-5391D4EA44A7} ©
O42 - Logiciel: Java 7 Update 17 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217017FF} ©
O42 - Logiciel: Avira Launcher v1.1.47.11018 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {27743B8E-DD60-4A84-BE7C-26570DDD5BB9} ©
O42 - Logiciel: Acrobat.com - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {287ECFA4-719A-2143-A09B-D6A12DE54E40} ©
O42 - Logiciel: DHTML Editing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {2EA870FA-585F-4187-903D-CB9FFD21E2E0} ©
O42 - Logiciel: HP User Guides 0153 - (.Hewlett-Packard.) [HKLM][64Bits] -- {2EBA8202-FBD5-4004-81EA-BDC38C054CE2} ©
O42 - Logiciel: HP MediaSmart Movie Themes - (.Hewlett-Packard.) [HKLM][64Bits] -- {3023EBDA-BF1B-4831-B347-E5018555F26E} ©
O42 - Logiciel: HP Quick Launch Buttons - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {34D2AB40-150D-475D-AE32-BD23FB5EE355} ©
O42 - Logiciel: VSO Image Resizer 3.0.1.72 - (.VSO-Software.) [HKLM][64Bits] -- {3EE51BAD-9916-49C7-90BA-3D500B031E0C}_is1 ©
O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658} ©
O42 - Logiciel: HP Advisor - (.Hewlett-Packard.) [HKLM][64Bits] -- {40FB8D7C-6FF8-4AF2-BC8B-0B1DB32AF04B} ©
O42 - Logiciel: PowerRecover - (.CyberLink Corp..) [HKLM][64Bits] -- {44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5} ©
O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E} ©
O42 - Logiciel: Microsoft VC9 runtime libraries - (.AOL Inc..) [HKLM][64Bits] -- {553C904F-57A2-4113-888E-BA0C3D1C69C0}
O42 - Logiciel: TomTom HOME - (.Nom de votre société.) [HKLM][64Bits] -- {5DCB2EB3-87AD-426E-8D74-8B92C9D731C4}
O42 - Logiciel: Avira Launcher v1.1.47.11018 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {5dfbeba9-9f22-463d-8c95-c861911810a2} ©
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} ©
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} ©
O42 - Logiciel: Acronis True Image Home - (.Acronis.) [HKLM][64Bits] -- {67ED38A3-4882-448B-B44D-3428AB00D7D5} ©
O42 - Logiciel: Windows Media Player Firefox Plugin - (.Microsoft Corp.) [HKLM][64Bits] -- {69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4} ©
O42 - Logiciel: Complément Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {6E5324C1-84FC-4F76-9A3A-C65E07F80EE6} ©
O42 - Logiciel: Hewlett-Packard ACLM.NET v1.2.2.3 - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F} ©
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {7B77622E-DE90-48EA-B2C7-227B1DE58A01} ©
O42 - Logiciel: Lexibar Spanish - (.lexicool.com.) [HKLM][64Bits] -- {8041E19D-C829-4293-B2D0-4262200CF662}_is1
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} ©
O42 - Logiciel: Realtek 8136 8168 8169 Ethernet Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} ©
O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E} ©
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} ©
O42 - Logiciel: TomTom HOME Visual Studio Merge Modules - (.TomTom International B.V..) [HKLM][64Bits] -- {8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533} ©
O42 - Logiciel: VC80CRTRedist - 8.0.50727.6195 - (.DivX, Inc.) [HKLM][64Bits] -- {933B4015-4618-4716-A828-5289FC03165F} ©
O42 - Logiciel: Web Easy Professional 8 - (.Avanquest.) [HKLM][64Bits] -- {A6806D86-BFF3-49CD-8E2B-87BB3507E53F} ©
O42 - Logiciel: AOMEI Backupper Standard - (.AOMEI Technology Co., Ltd..) [HKLM][64Bits] -- {A83692F5-3E9B-4E95-9E7E-B5DF5536C09F}_is1
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824157129} ©
O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} ©
O42 - Logiciel: Extended Asian Language font pack for Adobe Reader XI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-2530-0000-A00000000004} ©
O42 - Logiciel: DivX Converter - (.DivX, Inc..) [HKLM][64Bits] -- {B13A7C41581B411290FBC0395694E2A9}
O42 - Logiciel: HP MediaSmart Music/Photo/Video - (.Hewlett-Packard.) [HKLM][64Bits] -- {B2EE25B9-5B00-4ACF-94F0-92433C28C39E} ©
O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {CB099890-1D5F-11D5-9EA9-0050BAE317E1} ©
O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} ©
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {D46D081B-F60E-467E-A7C4-117B70D76731} ©
O42 - Logiciel: HP MediaSmart DVD - (.Hewlett-Packard.) [HKLM][64Bits] -- {DCCAD079-F92C-44DA-B258-624FC6517A5A} ©
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} ©
O42 - Logiciel: HP Support Assistant - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {E35A3B13-78CD-4967-8AC8-AA9FDA693EDE} ©
O42 - Logiciel: IDT Audio - (.IDT.) [HKLM][64Bits] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001} ©
O42 - Logiciel: STK02N 2.4 - (.Syntek.) [HKLM][64Bits] -- {E42E07F5-5A90-4BA9-B55A-79FCF9EAF9B5}
O42 - Logiciel: Light Image Resizer 4.0.9.5 - (.ObviousIdea.) [HKLM][64Bits] -- {EBE030DD-D404-4D92-85E9-8C3624820808}_is1 ©
O42 - Logiciel: QLBCASL - (.Hewlett-Packard.) [HKLM][64Bits] -- {F1D7AC58-554A-4A58-B784-B61558B1449A} ©
O42 - Logiciel: HP Setup - (.Hewlett-Packard.) [HKLM][64Bits] -- {F3B912F5-EB57-45AA-B3D1-EB532BCF6EF8} ©
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} ©
O42 - Logiciel: HP Wireless Assistant - (.Hewlett-Packard.) [HKLM][64Bits] -- {F9A43C0C-F274-4EC0-B02E-202C15C09C00} ©
O42 - Logiciel: SFR Cloud - (.F-Secure Corporation.) [HKCU][64Bits] -- SFR Cloud ©
O42 - Logiciel: WinDirStat 1.1.2 - (...) [HKCU][64Bits] -- WinDirStat
O42 - Logiciel: Zeta Uploader - (.Zeta Software GmbH.) [HKCU][64Bits] -- ZetaUploader
O42 - Logiciel: ChromecastApp - (.Google Inc..) [HKCU][64Bits] -- {079ede36-133d-44b0-8053-c7c1fa8d2e0d}_is1 ©
---\\ HKCU & HKLM Software Keys (175) - 46s
HKLM\SOFTWARE\Wow6432Node\Acronis
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AdwCleaner
HKLM\SOFTWARE\Wow6432Node\AppDataLow
HKLM\SOFTWARE\Wow6432Node\ATI
HKLM\SOFTWARE\Wow6432Node\ATI Technologies
HKLM\SOFTWARE\Wow6432Node\Auslogics
HKLM\SOFTWARE\Wow6432Node\Avanquest
HKLM\SOFTWARE\Wow6432Node\Avira
HKLM\SOFTWARE\Wow6432Node\BcmSetup
HKLM\SOFTWARE\Wow6432Node\Belarc
HKLM\SOFTWARE\Wow6432Node\Cyberlink
HKLM\SOFTWARE\Wow6432Node\Cygnus Solutions
HKLM\SOFTWARE\Wow6432Node\Cygwin
HKLM\SOFTWARE\Wow6432Node\Dell Computer Corporation
HKLM\SOFTWARE\Wow6432Node\DivX
HKLM\SOFTWARE\Wow6432Node\DivXNetworks
HKLM\SOFTWARE\Wow6432Node\DVDVideoSoft
HKLM\SOFTWARE\Wow6432Node\e-Carte Bleue Caisse d'Epargne
HKLM\SOFTWARE\Wow6432Node\EaseUS
HKLM\SOFTWARE\Wow6432Node\EaseUS TB Transfer
HKLM\SOFTWARE\Wow6432Node\EaseUS Todo Backup
HKLM\SOFTWARE\Wow6432Node\EasyBits
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard
HKLM\SOFTWARE\Wow6432Node\HP
HKLM\SOFTWARE\Wow6432Node\HPQ
HKLM\SOFTWARE\Wow6432Node\HPQLOG
HKLM\SOFTWARE\Wow6432Node\iDealshare
HKLM\SOFTWARE\Wow6432Node\IDT
HKLM\SOFTWARE\Wow6432Node\IncrediMail
HKLM\SOFTWARE\Wow6432Node\Input Director
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\LastPass
HKLM\SOFTWARE\Wow6432Node\Licenses
HKLM\SOFTWARE\Wow6432Node\LogMeInRescueCallingCard
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Neuf
HKLM\SOFTWARE\Wow6432Node\ObviousIdea
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\OpenAL
HKLM\SOFTWARE\Wow6432Node\Oracle
HKLM\SOFTWARE\Wow6432Node\Outertech
HKLM\SOFTWARE\Wow6432Node\P2G_Upgrade
HKLM\SOFTWARE\Wow6432Node\PDR_Upgrade
HKLM\SOFTWARE\Wow6432Node\Product_Upgrade
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\RecordDISCXXX
HKLM\SOFTWARE\Wow6432Node\SecureDigitalServices
HKLM\SOFTWARE\Wow6432Node\SFR
HKLM\SOFTWARE\Wow6432Node\Softgogo
HKLM\SOFTWARE\Wow6432Node\SoftVTU
HKLM\SOFTWARE\Wow6432Node\SpeedFan
HKLM\SOFTWARE\Wow6432Node\SpywareBlaster
HKLM\SOFTWARE\Wow6432Node\STK02N
HKLM\SOFTWARE\Wow6432Node\Symantec
HKLM\SOFTWARE\Wow6432Node\SymNRT
HKLM\SOFTWARE\Wow6432Node\Syntek
HKLM\SOFTWARE\Wow6432Node\TomTom
HKLM\SOFTWARE\Wow6432Node\Trolltech
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\vso
HKLM\SOFTWARE\Wow6432Node\WildTangent
HKLM\SOFTWARE\Wow6432Node\Windows
HKLM\SOFTWARE\Wow6432Node\X-AVCSD
HKLM\SOFTWARE\Wow6432Node\ZTE Corporation
HKLM\SOFTWARE\Wow6432Node\ZTEUSBDriverFlag
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\4kdownload.com
HKCU\SOFTWARE\Acronis
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Aerofox
HKCU\SOFTWARE\Amazon
HKCU\SOFTWARE\Amerigomedia
HKCU\SOFTWARE\AOMEI
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\ApplianTechnologies
HKCU\SOFTWARE\ArcSoft
HKCU\SOFTWARE\ATI
HKCU\SOFTWARE\Avanquest
HKCU\SOFTWARE\Avira
HKCU\SOFTWARE\Axantum
HKCU\SOFTWARE\Belarc
HKCU\SOFTWARE\Binary Noise
HKCU\SOFTWARE\Bullzip
HKCU\SOFTWARE\Canneverbe Limited
HKCU\SOFTWARE\Circitor
HKCU\SOFTWARE\Code Sector
HKCU\SOFTWARE\CodeLathe
HKCU\SOFTWARE\CompSoft
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\Cygnus Solutions
HKCU\SOFTWARE\Cygwin
HKCU\SOFTWARE\DesktopPaints.com
HKCU\SOFTWARE\DivX
HKCU\SOFTWARE\DivXNetworks
HKCU\SOFTWARE\EaseUS
HKCU\SOFTWARE\EasyBits
HKCU\SOFTWARE\EpmNewsInfo
HKCU\SOFTWARE\ERDAS
HKCU\SOFTWARE\EuroSoft Software Development
HKCU\SOFTWARE\Explorati
HKCU\SOFTWARE\F-Secure
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\HalfBaked
HKCU\SOFTWARE\Hewlett-Packard
HKCU\SOFTWARE\iDealshare
HKCU\SOFTWARE\IDT
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Infonautics
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\KC Softwares
HKCU\SOFTWARE\LastPass
HKCU\SOFTWARE\Lavalys
HKCU\SOFTWARE\Ledadu
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\LightScribe
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\LogiShrd
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MainConcept
HKCU\SOFTWARE\Malwarebytes' Anti-Malware
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MPC-HC
HKCU\SOFTWARE\Neogie Software
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Neuf
HKCU\SOFTWARE\Norton
HKCU\SOFTWARE\ObviousIdea
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Paint.NET
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\PMDevigneSoft
HKCU\SOFTWARE\Printers
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\S3R521
HKCU\SOFTWARE\Seifert
HKCU\SOFTWARE\SFR
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\SoftVTU
HKCU\SOFTWARE\SoftwareOK.de
HKCU\SOFTWARE\SpeedFan
HKCU\SOFTWARE\SteamMover
HKCU\SOFTWARE\Synaptics
HKCU\SOFTWARE\techPowerUp
HKCU\SOFTWARE\TheHive
HKCU\SOFTWARE\Thunderbird
HKCU\SOFTWARE\TinypicUploader
HKCU\SOFTWARE\TomTom
HKCU\SOFTWARE\Tracker Software
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\VirtualDub.org
HKCU\SOFTWARE\VSO
HKCU\SOFTWARE\VSRevoGroup
HKCU\SOFTWARE\Windows Live Writer
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\XnView
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\Zeta Uploader
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Adobe
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\LastPass
---\\ Contenu des dossiers Programmes (385) - 39s
O43 - CFD: 2013/10/19 11:10:35 - [] D -- C:\Program Files (x86)\3DVIA
O43 - CFD: 2009/11/01 18:49:02 - [] D -- C:\Program Files (x86)\Acronis
O43 - CFD: 2015/07/03 14:06:12 - [] D -- C:\Program Files (x86)\Adobe
O43 - CFD: 2015/09/30 17:40:05 - [] D -- C:\Program Files (x86)\AOMEI Backupper
O43 - CFD: 2015/08/03 16:47:05 - [0] D -- C:\Program Files (x86)\ArcSoft
O43 - CFD: 2009/08/24 01:36:18 - [] D -- C:\Program Files (x86)\ATI Technologies
O43 - CFD: 2010/10/13 17:43:17 - [] D -- C:\Program Files (x86)\Avanquest
O43 - CFD: 2015/07/14 09:44:55 - [] D -- C:\Program Files (x86)\Avira
O43 - CFD: 2015/09/04 11:00:25 - [] D -- C:\Program Files (x86)\Belarc
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2013/01/19 19:22:30 - [] D -- C:\Program Files (x86)\CyberLink
O43 - CFD: 2012/12/30 12:15:03 - [] D -- C:\Program Files (x86)\DivX
O43 - CFD: 2013/02/14 16:50:29 - [] D -- C:\Program Files (x86)\DVDVideoSoft
O43 - CFD: 2014/11/21 09:50:55 - [] D -- C:\Program Files (x86)\e-Carte Bleue Caisse d'Epargne
O43 - CFD: 2015/10/02 16:49:29 - [] D -- C:\Program Files (x86)\EaseUS
O43 - CFD: 2015/02/28 10:38:05 - [] D -- C:\Program Files (x86)\EuroSoft Software Development
O43 - CFD: 2015/09/18 19:28:29 - [] D -- C:\Program Files (x86)\FotoTagger
O43 - CFD: 2012/05/21 16:57:31 - [] D -- C:\Program Files (x86)\Freemake
O43 - CFD: 2013/11/23 10:15:21 - [] D -- C:\Program Files (x86)\Glorylogic
O43 - CFD: 2013/12/14 14:49:32 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 2014/01/27 08:57:57 - [] D -- C:\Program Files (x86)\Hewlett-Packard
O43 - CFD: 2009/08/20 12:18:00 - [] D -- C:\Program Files (x86)\Hp
O43 - CFD: 2014/09/01 18:38:39 - [] D -- C:\Program Files (x86)\HP Games
O43 - CFD: 2010/02/23 10:52:49 - [] D -- C:\Program Files (x86)\Input Director
O43 - CFD: 2015/08/03 16:46:58 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2015/08/12 18:12:04 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2013/03/09 17:46:11 - [] D -- C:\Program Files (x86)\Java
O43 - CFD: 2009/08/24 01:37:13 - [] D -- C:\Program Files (x86)\JMicron
O43 - CFD: 2014/02/27 12:20:58 - [] D -- C:\Program Files (x86)\LastPass
O43 - CFD: 2009/12/03 12:28:53 - [] D -- C:\Program Files (x86)\Lexicool
O43 - CFD: 2012/11/26 16:20:31 - [] D -- C:\Program Files (x86)\ma-config.com
O43 - CFD: 2015/10/14 20:43:47 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware
O43 - CFD: 2012/12/18 15:05:20 - [] D -- C:\Program Files (x86)\Microsoft
O43 - CFD: 2011/06/30 08:35:21 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 2015/08/12 18:14:38 - [] D -- C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 2010/01/27 10:56:17 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 2015/08/04 09:40:53 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2015/10/05 10:24:24 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 2015/10/05 10:24:24 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 2014/03/18 10:06:40 - [] D -- C:\Program Files (x86)\Mozilla Sunbird
O43 - CFD: 2015/08/04 10:13:30 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 2009/10/31 21:58:49 - [0] D -- C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 2011/09/18 17:01:55 - [] D -- C:\Program Files (x86)\ObviousIdea
O43 - CFD: 2009/11/02 17:54:57 - [] RD -- C:\Program Files (x86)\Online Services
O43 - CFD: 2010/01/08 17:39:03 - [] D -- C:\Program Files (x86)\OpenAL
O43 - CFD: 2015/08/02 08:56:35 - [] D -- C:\Program Files (x86)\Paragon Software
O43 - CFD: 2014/07/11 07:41:14 - [] D -- C:\Program Files (x86)\PDF Eraser
O43 - CFD: 2009/08/24 01:38:45 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 2015/08/04 10:13:30 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2012/12/18 18:10:05 - [] D -- C:\Program Files (x86)\Samsung
O43 - CFD: 2013/01/19 18:47:45 - [] D -- C:\Program Files (x86)\SeaMonkey
O43 - CFD: 2015/04/14 11:17:40 - [] D -- C:\Program Files (x86)\SFR
O43 - CFD: 2012/02/05 15:33:04 - [0] D -- C:\Program Files (x86)\Skyline
O43 - CFD: 2014/08/06 18:38:44 - [] D -- C:\Program Files (x86)\SpeedFan
O43 - CFD: 2012/09/25 09:35:52 - [] D -- C:\Program Files (x86)\SpywareBlaster
O43 - CFD: 2015/02/10 11:26:02 - [] D -- C:\Program Files (x86)\StartEd
O43 - CFD: 2009/11/13 18:37:46 - [] D -- C:\Program Files (x86)\TomTom International B.V
O43 - CFD: 2009/12/11 12:18:45 - [] D -- C:\Program Files (x86)\TrueCrypt
O43 - CFD: 2009/07/14 06:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 2013/05/01 16:59:03 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 2013/07/01 11:18:24 - [0] D -- C:\Program Files (x86)\VS Revo Group
O43 - CFD: 2013/09/28 18:34:29 - [] D -- C:\Program Files (x86)\VSO
O43 - CFD: 2013/06/28 09:18:38 - [] D -- C:\Program Files (x86)\WinDirStat
O43 - CFD: 2015/07/10 18:23:55 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2012/06/01 09:16:37 - [] D -- C:\Program Files (x86)\Windows Live
O43 - CFD: 2015/08/04 09:40:54 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2015/07/10 18:23:55 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 2015/07/10 13:04:22 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2015/07/10 18:23:55 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2015/08/04 09:40:54 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2015/07/10 13:04:22 - [] SD -- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 2010/04/23 18:31:16 - [] D -- C:\Program Files (x86)\ZTEDriver
O43 - CFD: 2015/10/03 17:54:34 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2015/08/04 09:50:35 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/08/04 09:40:58 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis
O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/09/21 11:48:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Backupper
O43 - CFD: 2015/10/01 09:30:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Axantum AxCrypt
O43 - CFD: 2015/08/04 09:40:59 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bullzip
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink DVD Suite
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX Plus
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
O43 - CFD: 2015/08/04 09:41:01 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\e-Carte Bleue Caisse d'Epargne
O43 - CFD: 2015/09/08 11:01:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Data Recovery Wizard 9.0
O43 - CFD: 2015/10/13 09:55:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Partition Master 10.8
O43 - CFD: 2015/10/15 10:55:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Todo Backup Home 8.8
O43 - CFD: 2013/02/11 19:51:21 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EXIF Date Changer
O43 - CFD: 2012/06/21 11:04:14 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free PDF to Word Doc Converter
O43 - CFD: 2013/10/10 17:35:58 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freecorder
O43 - CFD: 2014/09/01 18:35:05 - [0] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2015/08/04 09:41:01 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glorylogic
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2015/08/20 20:52:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
O43 - CFD: 2015/08/04 09:50:35 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hewlett-Packard
O43 - CFD: 2015/08/04 09:50:35 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
O43 - CFD: 2014/09/01 18:42:52 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Games
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Input Director
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LastPass
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lexibar
O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/10/14 20:43:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
O43 - CFD: 2015/09/20 17:59:54 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MEGAsync
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Live Add-in
O43 - CFD: 2015/08/12 17:24:37 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Sunbird
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MP3 Toolkit
O43 - CFD: 2015/08/04 09:41:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ObviousIdea
O43 - CFD: 2015/08/04 09:50:35 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Online Services
O43 - CFD: 2015/10/05 18:16:48 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Paragon Backup and Recovery™ 2014 Free
O43 - CFD: 2015/10/04 18:35:17 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Paragon Hard Disk Manager 15 - Backup and Recovery ™ Compact
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Eraser
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PersoApps Calendrier
O43 - CFD: 2013/11/21 15:17:30 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre
O43 - CFD: 2015/08/04 09:41:05 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SFR
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Souris Microsoft
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpywareBlaster
O43 - CFD: 2015/08/04 09:50:35 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 2015/07/10 18:28:36 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeraCopy
O43 - CFD: 2015/09/15 08:58:54 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TrueCrypt
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 2015/08/04 09:41:06 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VSO
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Web Easy Professional 8
O43 - CFD: 2015/08/04 09:50:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinDirStat
O43 - CFD: 2015/08/04 09:50:35 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
O43 - CFD: 2010/04/24 10:14:57 - [] D -- C:\ProgramData\Acronis
O43 - CFD: 2015/07/03 14:05:56 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2013/04/27 17:43:51 - [] D -- C:\ProgramData\AOL
O43 - CFD: 2013/04/27 17:40:00 - [] D -- C:\ProgramData\AOL Downloads
O43 - CFD: 2015/10/06 17:41:51 - [] D -- C:\ProgramData\AomeiBR
O43 - CFD: 2010/01/26 23:39:50 - [] D -- C:\ProgramData\Apple
O43 - CFD: 2010/01/26 23:40:35 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2011/06/11 08:22:13 - [] D -- C:\ProgramData\ArcSoft
O43 - CFD: 2009/08/24 01:36:38 - [] D -- C:\ProgramData\ATI
O43 - CFD: 2015/08/09 17:05:41 - [] D -- C:\ProgramData\Auslogics
O43 - CFD: 2010/10/13 17:49:15 - [] D -- C:\ProgramData\Avanquest
O43 - CFD: 2015/06/05 11:30:42 - [] D -- C:\ProgramData\Avira
O43 - CFD: 2015/08/02 10:03:36 - [] D -- C:\ProgramData\backup
O43 - CFD: 2009/10/30 16:59:52 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2012/12/18 12:59:48 - [] D -- C:\ProgramData\BVRP Software
O43 - CFD: 2015/07/10 13:04:22 - [0] D -- C:\ProgramData\Comms
O43 - CFD: 2013/10/23 11:50:47 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2012/12/30 12:15:05 - [] D -- C:\ProgramData\DivX
O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2013/12/11 09:39:33 - [] D -- C:\ProgramData\Easybits Magic Desktop for HP
O43 - CFD: 2015/08/02 08:59:07 - [] D -- C:\ProgramData\explauncher
O43 - CFD: 2014/05/31 16:50:03 - [] D -- C:\ProgramData\F-Secure
O43 - CFD: 2009/10/30 16:59:52 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 2012/05/18 17:14:01 - [] D -- C:\ProgramData\Freemake
O43 - CFD: 2015/08/16 14:29:59 - [] D -- C:\ProgramData\ftw
O43 - CFD: 2010/01/26 17:36:03 - [] D -- C:\ProgramData\Google
O43 - CFD: 2014/01/27 08:53:49 - [] D -- C:\ProgramData\Hewlett-Packard
O43 - CFD: 2013/01/19 19:14:05 - [] D -- C:\ProgramData\HP
O43 - CFD: 2015/08/02 08:59:06 - [] D -- C:\ProgramData\launcher
O43 - CFD: 2009/10/31 22:06:36 - [] D -- C:\ProgramData\LightScribe
O43 - CFD: 2015/09/16 18:03:08 - [] D -- C:\ProgramData\logsaver
O43 - CFD: 2015/07/28 10:52:06 - [] D -- C:\ProgramData\ma-config.com
O43 - CFD: 2013/04/28 14:21:59 - [0] D -- C:\ProgramData\Macromedia
O43 - CFD: 2014/09/02 11:36:45 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 2015/09/20 17:59:54 - [] D -- C:\ProgramData\MEGAsync
O43 - CFD: 2009/10/30 16:59:52 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2015/08/04 09:41:07 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2015/10/14 10:52:36 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 2015/08/04 10:15:57 - [] D -- C:\ProgramData\Microsoft OneDrive
O43 - CFD: 2009/10/30 16:59:52 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2012/04/25 07:59:45 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 2015/10/04 19:03:19 - [] D -- C:\ProgramData\newbackup
O43 - CFD: 2009/11/02 18:21:52 - [] D -- C:\ProgramData\Norton
O43 - CFD: 2009/08/20 09:39:25 - [] D -- C:\ProgramData\NortonInstaller
O43 - CFD: 2015/10/01 09:31:05 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 2009/11/21 21:08:43 - [] D -- C:\ProgramData\PDF Writer
O43 - CFD: 2009/10/30 19:11:39 - [] D -- C:\ProgramData\Recovery
O43 - CFD: 2015/07/10 18:28:36 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 2015/09/09 17:28:02 - [] D -- C:\ProgramData\rmbwizard
O43 - CFD: 2009/11/03 21:44:05 - [] D -- C:\ProgramData\SFR
O43 - CFD: 2015/10/13 14:51:35 - [] D -- C:\ProgramData\SoftwareDistribution
O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2010/02/14 10:31:24 - [] D -- C:\ProgramData\Sun
O43 - CFD: 2009/11/02 18:49:03 - [] D -- C:\ProgramData\Symantec
O43 - CFD: 2013/05/22 11:24:49 - [] AD -- C:\ProgramData\Temp
O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2009/11/14 22:01:39 - [] D -- C:\ProgramData\TomTom
O43 - CFD: 2009/12/11 12:12:59 - [0] D -- C:\ProgramData\TrueCrypt
O43 - CFD: 2013/01/19 19:14:06 - [] D -- C:\ProgramData\TVU Networks
O43 - CFD: 2015/07/10 14:22:45 - [] D -- C:\ProgramData\USOPrivate
O43 - CFD: 2015/07/10 14:22:45 - [] D -- C:\ProgramData\USOShared
O43 - CFD: 2014/09/01 18:41:53 - [] D -- C:\ProgramData\WildTangent
O43 - CFD: 2014/01/27 08:55:59 - [] D -- C:\ProgramData\{18165758-115C-4DC0-9EC2-FF89F725767F}
O43 - CFD: 2011/10/06 09:51:18 - [] D -- C:\Program Files (x86)\Common Files\Acronis
O43 - CFD: 2015/07/03 14:06:12 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 2015/02/20 14:34:05 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR
O43 - CFD: 2013/04/28 14:22:01 - [] D -- C:\Program Files (x86)\Common Files\aol
O43 - CFD: 2013/04/28 14:22:00 - [] D -- C:\Program Files (x86)\Common Files\aolshare
O43 - CFD: 2015/08/03 16:47:03 - [] D -- C:\Program Files (x86)\Common Files\ArcSoft
O43 - CFD: 2014/05/15 08:49:00 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 2012/12/30 12:14:17 - [] D -- C:\Program Files (x86)\Common Files\DivX Shared
O43 - CFD: 2013/02/14 16:50:19 - [] D -- C:\Program Files (x86)\Common Files\DVDVideoSoft
O43 - CFD: 2010/02/28 18:13:39 - [] D -- C:\Program Files (x86)\Common Files\Glowria
O43 - CFD: 2011/06/09 17:27:34 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 2013/02/14 18:21:14 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 2015/08/04 09:40:51 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 2010/05/07 18:07:24 - [] D -- C:\Program Files (x86)\Common Files\PX Storage Engine
O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2015/08/04 09:40:52 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 2015/07/10 18:23:55 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2009/08/20 09:27:40 - [] D -- C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 2011/10/06 09:51:39 - [] D -- C:\Users\François\AppData\Roaming\3A3AC9E1-D981-4824-BAA1-B2549023C99D
O43 - CFD: 2009/11/15 17:48:46 - [] D -- C:\Users\François\AppData\Roaming\Acronis
O43 - CFD: 2015/07/03 14:17:57 - [] D -- C:\Users\François\AppData\Roaming\Adobe
O43 - CFD: 2014/02/03 11:09:02 - [] D -- C:\Users\François\AppData\Roaming\AnvSoft
O43 - CFD: 2014/11/15 15:06:13 - [] D -- C:\Users\François\AppData\Roaming\AnyDesk
O43 - CFD: 2013/04/27 17:43:56 - [] D -- C:\Users\François\AppData\Roaming\AOL
O43 - CFD: 2011/09/21 08:25:16 - [] D -- C:\Users\François\AppData\Roaming\Apple Computer
O43 - CFD: 2013/10/27 14:46:27 - [] D -- C:\Users\François\AppData\Roaming\ArchiFacile
O43 - CFD: 2012/06/06 16:54:43 - [] D -- C:\Users\François\AppData\Roaming\ArcSoft
O43 - CFD: 2009/10/30 17:10:01 - [] D -- C:\Users\François\AppData\Roaming\ATI
O43 - CFD: 2009/12/29 21:47:10 - [0] D -- C:\Users\François\AppData\Roaming\Audacity
O43 - CFD: 2010/10/13 17:45:16 - [] D -- C:\Users\François\AppData\Roaming\Avanquest
O43 - CFD: 2015/04/08 08:50:51 - [] D -- C:\Users\François\AppData\Roaming\Avira
O43 - CFD: 2015/09/29 13:29:42 - [] D -- C:\Users\François\AppData\Roaming\BatteryCare
O43 - CFD: 2011/11/06 19:22:43 - [] D -- C:\Users\François\AppData\Roaming\BeSpotted
O43 - CFD: 2012/02/19 18:59:39 - [] D -- C:\Users\François\AppData\Roaming\Broad Intelligence
O43 - CFD: 2015/01/02 15:23:02 - [] D -- C:\Users\François\AppData\Roaming\calibre
O43 - CFD: 2015/02/20 14:34:23 - [] D -- C:\Users\François\AppData\Roaming\com.adobe.example.widget
O43 - CFD: 2015/02/20 16:06:04 - [0] D -- C:\Users\François\AppData\Roaming\com.adobe.example.widget.1FCEF1F0F0AF9458954A25E2A0F59C433BE1C94E.1
O43 - CFD: 2012/09/25 09:30:49 - [] D -- C:\Users\François\AppData\Roaming\CrystalIdea Software
O43 - CFD: 2015/06/20 18:43:38 - [] D -- C:\Users\François\AppData\Roaming\CyberLink
O43 - CFD: 2013/12/02 09:55:54 - [] D -- C:\Users\François\AppData\Roaming\DirectoryListPrintPro
O43 - CFD: 2012/12/30 12:14:18 - [] D -- C:\Users\François\AppData\Roaming\DivX
O43 - CFD: 2013/03/02 20:11:24 - [] D -- C:\Users\François\AppData\Roaming\DVDVideoSoft
O43 - CFD: 2011/08/01 08:45:51 - [] D -- C:\Users\François\AppData\Roaming\Easy Image Modifier
O43 - CFD: 2012/09/30 09:42:48 - [] D -- C:\Users\François\AppData\Roaming\EfficientPIM Free
O43 - CFD: 2013/02/11 19:51:24 - [0] D -- C:\Users\François\AppData\Roaming\EXIF Date Changer
O43 - CFD: 2014/05/31 16:50:03 - [] D -- C:\Users\François\AppData\Roaming\F-Secure
O43 - CFD: 2010/01/08 19:28:28 - [] D -- C:\Users\François\AppData\Roaming\FastStone
O43 - CFD: 2013/05/21 16:32:27 - [] D -- C:\Users\François\AppData\Roaming\FileZilla
O43 - CFD: 2009/12/20 09:26:00 - [] D -- C:\Users\François\AppData\Roaming\hewlett-packard
O43 - CFD: 2013/01/19 19:14:05 - [] D -- C:\Users\François\AppData\Roaming\HP
O43 - CFD: 2010/04/07 18:48:20 - [] D -- C:\Users\François\AppData\Roaming\HP Support Assistant
O43 - CFD: 2009/10/30 17:02:07 - [] D -- C:\Users\François\AppData\Roaming\HP TCS
O43 - CFD: 2012/11/26 08:39:37 - [] D -- C:\Users\François\AppData\Roaming\hpqlog
O43 - CFD: 2010/04/07 18:48:20 - [] D -- C:\Users\François\AppData\Roaming\HpUpdate
O43 - CFD: 2014/02/03 10:57:46 - [] D -- C:\Users\François\AppData\Roaming\iDealshare VideoAll
O43 - CFD: 2009/10/30 17:09:37 - [] D -- C:\Users\François\AppData\Roaming\Identities
O43 - CFD: 2014/12/09 12:22:20 - [] D -- C:\Users\François\AppData\Roaming\inkscape
O43 - CFD: 2010/10/13 17:41:25 - [] D -- C:\Users\François\AppData\Roaming\InstallShield
O43 - CFD: 2013/10/23 11:20:30 - [] D -- C:\Users\François\AppData\Roaming\IObit
O43 - CFD: 2014/03/06 15:06:03 - [] D -- C:\Users\François\AppData\Roaming\Jarte
O43 - CFD: 2015/03/16 19:15:08 - [] D -- C:\Users\François\AppData\Roaming\KC Softwares
O43 - CFD: 2014/03/17 14:54:00 - [] D -- C:\Users\François\AppData\Roaming\kompozer.net
O43 - CFD: 2010/01/08 19:08:07 - [0] D -- C:\Users\François\AppData\Roaming\Livestation
O43 - CFD: 2010/06/10 15:05:32 - [] D -- C:\Users\François\AppData\Roaming\LogoMaker
O43 - CFD: 2009/10/30 17:11:24 - [] D -- C:\Users\François\AppData\Roaming\Macromedia
O43 - CFD: 2014/09/02 11:36:54 - [0] D -- C:\Users\François\AppData\Roaming\Malwarebytes
O43 - CFD: 2010/01/08 17:39:06 - [] D -- C:\Users\François\AppData\Roaming\Mchid
O43 - CFD: 2009/08/24 11:28:32 - [0] D -- C:\Users\François\AppData\Roaming\Media Center Programs
O43 - CFD: 2011/10/03 09:20:56 - [0] D -- C:\Users\François\AppData\Roaming\Media Player Classic
O43 - CFD: 2013/02/27 17:41:30 - [0] D -- C:\Users\François\AppData\Roaming\MeinPlatz
O43 - CFD: 2015/08/12 22:32:55 - [] SD -- C:\Users\François\AppData\Roaming\Microsoft
O43 - CFD: 2015/08/14 17:20:55 - [] D -- C:\Users\François\AppData\Roaming\Mozilla
O43 - CFD: 2015/08/26 10:18:20 - [0] D -- C:\Users\François\AppData\Roaming\MPC-HC
O43 - CFD: 2010/01/20 12:44:21 - [] D -- C:\Users\François\AppData\Roaming\Netscape
O43 - CFD: 2013/10/23 11:22:58 - [0] D -- C:\Users\François\AppData\Roaming\Notepad++
O43 - CFD: 2015/10/03 16:54:04 - [] D -- C:\Users\François\AppData\Roaming\ObviousIdea
O43 - CFD: 2013/02/14 18:21:54 - [] D -- C:\Users\François\AppData\Roaming\Orbit
O43 - CFD: 2009/11/21 21:08:42 - [] D -- C:\Users\François\AppData\Roaming\PDF Writer
O43 - CFD: 2012/05/21 17:23:55 - [] D -- C:\Users\François\AppData\Roaming\PhotoFiltre
O43 - CFD: 2013/09/03 10:44:37 - [0] D -- C:\Users\François\AppData\Roaming\PhoXo
O43 - CFD: 2011/04/23 11:05:17 - [] D -- C:\Users\François\AppData\Roaming\Q-Dir
O43 - CFD: 2012/12/18 18:15:59 - [] D -- C:\Users\François\AppData\Roaming\Samsung
O43 - CFD: 2013/01/14 10:44:57 - [] D -- C:\Users\François\AppData\Roaming\SFR
O43 - CFD: 2012/02/05 15:22:36 - [] D -- C:\Users\François\AppData\Roaming\Skyline
O43 - CFD: 2009/11/07 19:01:18 - [] D -- C:\Users\François\AppData\Roaming\Template
O43 - CFD: 2013/01/23 17:19:58 - [] D -- C:\Users\François\AppData\Roaming\TeraCopy
O43 - CFD: 2015/10/15 09:44:00 - [] D -- C:\Users\François\AppData\Roaming\Thunderbird
O43 - CFD: 2011/04/23 10:49:41 - [] D -- C:\Users\François\AppData\Roaming\TinyPic Uploader
O43 - CFD: 2009/11/13 18:37:52 - [] D -- C:\Users\François\AppData\Roaming\TomTom
O43 - CFD: 2014/08/01 14:50:22 - [] D -- C:\Users\François\AppData\Roaming\TonidoSyncData
O43 - CFD: 2009/12/11 12:19:05 - [] D -- C:\Users\François\AppData\Roaming\TrueCrypt
O43 - CFD: 2014/09/03 22:21:34 - [] D -- C:\Users\François\AppData\Roaming\vlc
O43 - CFD: 2013/09/28 19:11:02 - [] D -- C:\Users\François\AppData\Roaming\VSO
O43 - CFD: 2013/09/28 17:14:36 - [] D -- C:\Users\François\AppData\Roaming\VSRevoGroup
O43 - CFD: 2010/11/16 10:53:55 - [] D -- C:\Users\François\AppData\Roaming\Windows Live Writer
O43 - CFD: 2013/12/12 11:13:42 - [] D -- C:\Users\François\AppData\Roaming\Wise Disk Cleaner
O43 - CFD: 2013/06/21 13:33:17 - [] D -- C:\Users\François\AppData\Roaming\Wise Registry Cleaner
O43 - CFD: 2013/10/18 09:04:09 - [] D -- C:\Users\François\AppData\Roaming\Wise Uninstaller
O43 - CFD: 2014/07/30 18:35:29 - [] D -- C:\Users\François\AppData\Roaming\XnConvert
O43 - CFD: 2014/07/20 14:05:30 - [] D -- C:\Users\François\AppData\Roaming\YCanPDF
O43 - CFD: 2015/10/15 17:13:28 - [] D -- C:\Users\François\AppData\Roaming\ZHP
O43 - CFD: 2009/11/02 17:34:24 - [] D -- C:\Users\François\AppData\Roaming\_MDLogs
O43 - CFD: 2013/10/19 11:09:20 - [] D -- C:\Users\François\AppData\Local\3DVIA
O43 - CFD: 2015/07/01 10:19:37 - [] D -- C:\Users\François\AppData\Local\4kdownload.com
O43 - CFD: 2015/07/14 10:33:41 - [] D -- C:\Users\François\AppData\Local\Adobe
O43 - CFD: 2014/09/05 08:39:30 - [] D -- C:\Users\François\AppData\Local\Amazon
O43 - CFD: 2013/04/27 17:42:32 - [] D -- C:\Users\François\AppData\Local\AOL
O43 - CFD: 2010/01/26 23:39:52 - [] D -- C:\Users\François\AppData\Local\Apple
O43 - CFD: 2011/09/21 08:23:03 - [] D -- C:\Users\François\AppData\Local\Apple Computer
O43 - CFD: 2015/08/04 09:37:22 - [0] SHD -- C:\Users\François\AppData\Local\Application Data
O43 - CFD: 2009/11/06 19:46:12 - [] D -- C:\Users\François\AppData\Local\Apps
O43 - CFD: 2011/06/09 17:30:03 - [] D -- C:\Users\François\AppData\Local\ArcSoft
O43 - CFD: 2009/10/30 17:10:01 - [] D -- C:\Users\François\AppData\Local\ATI
O43 - CFD: 2015/07/15 11:37:13 - [] D -- C:\Users\François\AppData\Local\CEF
O43 - CFD: 2015/08/04 13:10:15 - [] D -- C:\Users\François\AppData\Local\Comms
O43 - CFD: 2009/10/30 18:44:23 - [] D -- C:\Users\François\AppData\Local\CyberLink
O43 - CFD: 2013/05/25 19:12:31 - [] D -- C:\Users\François\AppData\Local\DDMSettings
O43 - CFD: 2015/10/01 10:43:58 - [0] D -- C:\Users\François\AppData\Local\Diagnostics
O43 - CFD: 2015/10/04 18:26:24 - [] D -- C:\Users\François\AppData\Local\Downloaded Installations
O43 - CFD: 2015/10/13 16:54:42 - [] D -- C:\Users\François\AppData\Local\ElevatedDiagnostics
O43 - CFD: 2015/07/03 07:27:02 - [0] SHD -- C:\Users\François\AppData\Local\EmieBrowserModeList
O43 - CFD: 2015/07/03 07:27:02 - [0] SHD -- C:\Users\François\AppData\Local\EmieSiteList
O43 - CFD: 2015/07/03 07:27:02 - [0] SHD -- C:\Users\François\AppData\Local\EmieUserList
O43 - CFD: 2014/05/31 16:48:20 - [] D -- C:\Users\François\AppData\Local\F-Secure
O43 - CFD: 2012/01/28 22:21:39 - [] D -- C:\Users\François\AppData\Local\FLVService
O43 - CFD: 2014/02/03 11:13:07 - [] D -- C:\Users\François\AppData\Local\fontconfig
O43 - CFD: 2010/02/28 18:14:02 - [] D -- C:\Users\François\AppData\Local\Glowria
O43 - CFD: 2015/09/30 11:36:06 - [] D -- C:\Users\François\AppData\Local\Google
O43 - CFD: 2015/06/01 17:16:34 - [] D -- C:\Users\François\AppData\Local\GWX
O43 - CFD: 2010/05/22 16:15:30 - [] D -- C:\Users\François\AppData\Local\Hewlett-Packard
O43 - CFD: 2010/02/02 14:58:54 - [] D -- C:\Users\François\AppData\Local\Hewlett-Packard_Company
O43 - CFD: 2015/08/04 09:37:22 - [0] SHD -- C:\Users\François\AppData\Local\Historique
O43 - CFD: 2009/12/07 16:30:12 - [] D -- C:\Users\François\AppData\Local\IsolatedStorage
O43 - CFD: 2013/02/09 17:54:30 - [] D -- C:\Users\François\AppData\Local\IT-Nonstop
O43 - CFD: 2012/06/14 07:34:43 - [] D -- C:\Users\François\AppData\Local\Macromedia
O43 - CFD: 2015/09/20 17:59:59 - [] D -- C:\Users\François\AppData\Local\Mega Limited
O43 - CFD: 2015/08/09 11:46:00 - [] D -- C:\Users\François\AppData\Local\Microsoft
O43 - CFD: 2011/09/28 17:34:31 - [] D -- C:\Users\François\AppData\Local\Microsoft Games
O43 - CFD: 2014/08/11 15:30:52 - [] D -- C:\Users\François\AppData\Local\Microsoft Help
O43 - CFD: 2012/01/03 18:18:06 - [] D -- C:\Users\François\AppData\Local\Microsoft Research
O43 - CFD: 2015/08/04 10:56:06 - [] D -- C:\Users\François\AppData\Local\MicrosoftEdge
O43 - CFD: 2014/03/18 10:07:00 - [] D -- C:\Users\François\AppData\Local\Mozilla
O43 - CFD: 2015/08/04 10:22:14 - [0] D -- C:\Users\François\AppData\Local\NetworkTiles
O43 - CFD: 2010/02/28 18:22:23 - [] D -- C:\Users\François\AppData\Local\Neuf
O43 - CFD: 2015/09/22 18:33:24 - [] D -- C:\Users\François\AppData\Local\Packages
O43 - CFD: 2015/08/29 17:39:34 - [0] D -- C:\Users\François\AppData\Local\PackageStaging
O43 - CFD: 2014/05/22 19:07:11 - [] D -- C:\Users\François\AppData\Local\Paint.NET
O43 - CFD: 2010/01/26 11:33:59 - [] D -- C:\Users\François\AppData\Local\PDF Writer
O43 - CFD: 2010/01/25 16:15:35 - [] D -- C:\Users\François\AppData\Local\PowerCinema
O43 - CFD: 2013/03/29 13:46:04 - [] D -- C:\Users\François\AppData\Local\Programs
O43 - CFD: 2015/08/04 10:14:04 - [] D -- C:\Users\François\AppData\Local\Publishers
O43 - CFD: 2013/02/11 19:51:26 - [] D -- C:\Users\François\AppData\Local\Rellik_Software
O43 - CFD: 2013/05/13 17:05:50 - [] D -- C:\Users\François\AppData\Local\Remove_Empty_Directories
O43 - CFD: 2014/11/09 22:11:27 - [] D -- C:\Users\François\AppData\Local\Riot
O43 - CFD: 2014/07/20 10:19:16 - [0] D -- C:\Users\François\AppData\Local\SFR
O43 - CFD: 2015/10/15 17:15:33 - [] D -- C:\Users\François\AppData\Local\Temp
O43 - CFD: 2015/08/04 09:37:22 - [0] SHD -- C:\Users\François\AppData\Local\Temporary Internet Files
O43 - CFD: 2015/08/16 14:11:11 - [] D -- C:\Users\François\AppData\Local\TheHive
O43 - CFD: 2014/12/19 10:55:16 - [] D -- C:\Users\François\AppData\Local\Thunderbird
O43 - CFD: 2015/08/04 10:10:22 - [] D -- C:\Users\François\AppData\Local\TileDataLayer
O43 - CFD: 2009/11/13 18:37:52 - [] D -- C:\Users\François\AppData\Local\TomTom
O43 - CFD: 2013/01/19 19:14:06 - [] D -- C:\Users\François\AppData\Local\TVU Networks
O43 - CFD: 2010/02/14 10:26:31 - [] D -- C:\Users\François\AppData\Local\VirtualStore
O43 - CFD: 2014/03/02 14:15:23 - [] D -- C:\Users\François\AppData\Local\Windows Live
O43 - CFD: 2010/11/24 15:30:27 - [] D -- C:\Users\François\AppData\Local\Windows Live Writer
O43 - CFD: 2013/11/21 11:45:35 - [] D -- C:\Users\François\AppData\Local\Zeta Uploader
O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\Users\François\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2015/08/04 10:10:21 - [] RD -- C:\Users\François\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/10/14 13:48:59 - [] RD -- C:\Users\François\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/09/30 11:36:10 - [] D -- C:\Users\François\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chromecast
O43 - CFD: 2015/08/04 09:38:33 - [] D -- C:\Users\François\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HP
O43 - CFD: 2015/08/04 09:50:34 - [] D -- C:\Users\François\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LastPass
O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\Users\François\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/08/04 09:50:34 - [] D -- C:\Users\François\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MediaCoder x64
O43 - CFD: 2015/08/04 09:50:34 - [] D -- C:\Users\François\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recovery Manager
O43 - CFD: 2015/08/04 09:50:34 - [] D -- C:\Users\François\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SFR
O43 - CFD: 2015/08/04 09:50:34 - [] D -- C:\Users\François\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SFR Cloud
O43 - CFD: 2015/08/04 09:50:34 - [] D -- C:\Users\François\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StartEd Lite
O43 - CFD: 2015/10/14 13:48:59 - [] RD -- C:\Users\François\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\Users\François\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 2015/08/04 09:50:34 - [] D -- C:\Users\François\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker
O43 - CFD: 2013/06/28 09:18:38 - [0] D -- C:\Users\François\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinDirStat
O43 - CFD: 2015/07/10 13:04:45 - [] RSD -- C:\Users\François\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
O43 - CFD: 2015/08/04 09:50:34 - [] D -- C:\Users\François\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zeta Uploader
---\\ ShellIconOverlayIdentifiers (SIOI) (5) - 0s
O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\François\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\FileSyncShell.dll ©
O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\François\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\FileSyncShell.dll ©
O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\François\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\FileSyncShell.dll ©
O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\François\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\FileSyncShell.dll ©
O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\François\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\FileSyncShell.dll ©
---\\ Enumération des clés StartupReg (30) - 6s
O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe ©
O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] . (...) -- C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\APSDaemon [Key] . (...) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\ArcSoft Connection Service [Key] . (...) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\DivXUpdate [Key] . (.© Copyright 2000 - 2011 DivX, LLC - DivX Update.) -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ©
O53 - SMSR:HKLM\...\startupreg\Freecorder FLV Service [Key] . (...) -- C:\Program Files (x86)\Freecorder\FLVSrvc.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Google Update [Key] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\François\AppData\Local\Google\Update\GoogleUpdate.exe ©
O53 - SMSR:HKLM\...\startupreg\GoogleChromeAutoLaunch_19605C659225CB846D434273119707BC [Key] . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O53 - SMSR:HKLM\...\startupreg\GoogleDriveSync [Key] . (.Google - Google Drive.) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe ©
O53 - SMSR:HKLM\...\startupreg\HP Software Update [Key] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe ©
O53 - SMSR:HKLM\...\startupreg\HPADVISOR [Key] . (.Hewlett-Packard - HP Advisor.) -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe ©
O53 - SMSR:HKLM\...\startupreg\HPCam_Menu [Key] . (.CyberLink Corp. - MUI StartMenu Application.) -- c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe ©
O53 - SMSR:HKLM\...\startupreg\InputDirector [Key] . (.Copyright © 2010 Imperative Software Pty Ltd - Input Director.) -- C:\Program Files (x86)\Input Director\InputDirector.exe
O53 - SMSR:HKLM\...\startupreg\IntelliPoint [Key] . (.Microsoft Corporation - IPoint.exe.) -- C:\Program Files\Microsoft IntelliPoint\ipoint.exe ©
O53 - SMSR:HKLM\...\startupreg\LightScribe Control Panel [Key] . (...) -- C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Magic Desktop for HP notification [Key] . (.Easybits - Software update notification.) -- C:\ProgramData\Easybits Magic Desktop for HP\mdhpSUN.exe ©
O53 - SMSR:HKLM\...\startupreg\msnmsgr [Key] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe ©
O53 - SMSR:HKLM\...\startupreg\NCPluginUpdater [Key] . (.Hewlett-Packard - NCPluginUpdater.) -- C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe ©
O53 - SMSR:HKLM\...\startupreg\QlbCtrl.exe [Key] . (.Hewlett-Packard Development Company, L.P. - Quick Launch Buttons.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe ©
O53 - SMSR:HKLM\...\startupreg\RESTART_STICKY_NOTES [Key] . (.Microsoft Corporation - Pense-bête.) -- C:\Windows\system32\StikyNot.exe ©
O53 - SMSR:HKLM\...\startupreg\Service Scheduler2 Acronis [Key] . (.Acronis - Acronis Scheduler Helper.) -- C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe ©
O53 - SMSR:HKLM\...\startupreg\SFR [Key] . (.Glowria - Glowria Video Manager.) -- C:\Program Files (x86)\SFR\SFR.exe
O53 - SMSR:HKLM\...\startupreg\SFR Mediacenter [Key] . (...) -- C:\Program Files (x86)\SFR\Mediacenter Evolution\MediaCenter.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Sidebar [Key] . (...) -- C:\Program Files\Windows Sidebar\sidebar.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\SmartMenu [Key] . (.Copyright (C) 2009 Hewlett-Packard Development Compan - SmartMenu.) -- C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe ©
O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe ©
O53 - SMSR:HKLM\...\startupreg\TomTomHOME.exe [Key] . (...) -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Tonido [Key] . (...) -- C:\Users\François\Desktop\TonidoLite\Tonido\launcher.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\TrueImageMonitor.exe [Key] . (...) -- C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe
O53 - SMSR:HKLM\...\startupreg\UnlockerAssistant [Key] . (...) -- C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe (.not file.)
---\\ Liste des pilotes du système (84) - 18s
O58 - SDL:2015/07/10 12:59:38 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107360] ©
O58 - SDL:2011/05/13 18:57:58 A . (.Hewlett-Packard Company - HP Accelerometer.) -- C:\WINDOWS\System32\drivers\Accelerometer.sys [43320] ©
O58 - SDL:2015/07/10 12:59:38 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135456] ©
O58 - SDL:2011/10/06 09:51:40 A . (.Acronis - File Level CDP Kernel Helper.) -- C:\WINDOWS\System32\drivers\afcdp.sys [285280] ©
O58 - SDL:2015/07/10 12:59:38 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83296] ©
O58 - SDL:2015/07/10 12:59:38 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] ©
O58 - SDL:2015/07/10 12:59:38 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26976] ©
O58 - SDL:2015/07/10 12:59:38 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131936] ©
O58 - SDL:2009/06/29 19:00:00 A . (.ATI Research Inc. - Ati High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\AtiHdmi.sys [116752]
O58 - SDL:2015/01/13 17:41:40 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\atikmdag.sys [11922944] ©
O58 - SDL:2015/01/13 16:20:44 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\WINDOWS\System32\drivers\atikmpag.sys [359936] ©
O58 - SDL:2015/09/01 18:24:58 A . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- C:\WINDOWS\System32\drivers\avgntflt.sys [137288] ©
O58 - SDL:2015/09/01 18:24:58 A . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- C:\WINDOWS\System32\drivers\avipbb.sys [148632] ©
O58 - SDL:2013/11/27 15:20:32 A . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- C:\WINDOWS\System32\drivers\avkmgr.sys [28600] ©
O58 - SDL:2015/08/04 13:07:06 A . (.Avira Operations GmbH & Co. KG - Avira WFP Network Driver.) -- C:\WINDOWS\System32\drivers\avnetflt.sys [43576] ©
O58 - SDL:2015/07/10 12:59:38 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] ©
O58 - SDL:2015/07/10 12:59:36 A . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless dr.) -- C:\WINDOWS\System32\drivers\BCMWL63AL.SYS [5170176] ©
O58 - SDL:2015/07/10 12:59:38 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] ©
O58 - SDL:2015/08/05 08:33:17 A . (.Windows (R) Win 7 DDK provider - IEEE-1284.4-1999 Driver.) -- C:\WINDOWS\System32\drivers\Dot4.sys [151968] ©
O58 - SDL:2015/08/05 08:33:17 A . (.Windows (R) Win 7 DDK provider - IEEE-1284.4 Print Class Driver.) -- C:\WINDOWS\System32\drivers\Dot4Prt.sys [27040] ©
O58 - SDL:2009/06/29 20:17:00 A . (.ENE TECHNOLOGY INC. - ENE CIR Driver for eHome(64).) -- C:\WINDOWS\System32\drivers\enecir.sys [70656] ©
O58 - SDL:2014/12/15 00:59:40 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Backup Driver.) -- C:\WINDOWS\System32\drivers\eubakup.sys [60968] ©
O58 - SDL:2014/12/15 00:59:40 A . (...) -- C:\WINDOWS\System32\drivers\EUBKMON.sys [48168]
O58 - SDL:2014/12/15 00:59:40 N . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Access Driver.) -- C:\WINDOWS\System32\drivers\eudskacs.sys [18472] ©
O58 - SDL:2014/12/15 00:59:40 N . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Backup Image Preview Driver.) -- C:\WINDOWS\System32\drivers\EuFdDisk.sys [192040] ©
O58 - SDL:2015/07/10 12:59:38 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3436896] ©
O58 - SDL:2011/05/13 18:58:16 A . (.Hewlett-Packard Company - HP Disk Filter - SATA/RAID.) -- C:\WINDOWS\System32\drivers\hpdskflt.sys [30008] ©
O58 - SDL:2009/04/29 08:48:32 A . (.Hewlett-Packard Development Company, L.P. - HpqKbFiltr Keyboard Filter Driver.) -- C:\WINDOWS\System32\drivers\HpqKbFiltr.sys [18432] ©
O58 - SDL:2015/07/10 12:59:38 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] ©
O58 - SDL:2015/07/10 12:59:36 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] ©
O58 - SDL:2015/07/10 12:59:36 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [122608] ©
O58 - SDL:2015/07/10 12:59:38 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673120] ©
O58 - SDL:2015/07/10 12:59:38 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [424800] ©
O58 - SDL:2009/07/21 05:39:00 A . (.JMicron Technology Corporation - JMicron JMB38X Flash Media Controller Drive.) -- C:\WINDOWS\System32\drivers\jmcr.sys [140712] ©
O58 - SDL:2015/07/10 12:59:38 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108896] ©
O58 - SDL:2015/07/10 12:59:38 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [104800] ©
O58 - SDL:2015/07/10 12:59:38 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [99168] ©
O58 - SDL:2015/07/10 12:59:38 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] ©
O58 - SDL:2015/10/05 09:50:06 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [25816] ©
O58 - SDL:2015/10/05 09:50:10 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [109272] ©
O58 - SDL:2015/10/15 17:04:13 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [192216] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59744] ©
O58 - SDL:2015/07/10 12:59:39 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [705376] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] ©
O58 - SDL:2015/10/05 09:50:22 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\WINDOWS\System32\drivers\mwac.sys [64216] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [76128] ©
O58 - SDL:2015/07/10 12:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] ©
O58 - SDL:2015/07/10 12:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166240] ©
O58 - SDL:2015/07/10 12:59:39 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58208] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [58720] ©
O58 - SDL:2010/06/23 09:10:56 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\WINDOWS\System32\drivers\Rt64win7.sys [344680] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] ©
O58 - SDL:2015/07/17 07:51:46 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF_Aux.sys [42184] ©
O58 - SDL:2015/07/17 07:51:46 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [42696] ©
O58 - SDL:2015/07/17 07:51:46 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel_Aux.sys [42696] ©
O58 - SDL:2011/10/06 09:51:22 A . (.Acronis - Acronis Snapshot API.) -- C:\WINDOWS\System32\drivers\snapman.sys [277088] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] ©
O58 - SDL:2010/03/23 14:53:06 A . (.IDT, Inc. - IDT PC Audio.) -- C:\WINDOWS\System32\drivers\stwrt64.sys [505344] ©
O58 - SDL:2015/07/17 07:51:46 A . (.Synaptics Incorporated - Synaptics Touchpad Win64 Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [614088] ©
O58 - SDL:2009/11/01 18:49:21 A . (.Acronis - Acronis Try&Decide Volume Filter Driver.) -- C:\WINDOWS\System32\drivers\tdrpm251.sys [1455648] ©
O58 - SDL:2010/04/22 10:51:35 A . (.Acronis - Acronis Try&Decide Volume Filter Driver.) -- C:\WINDOWS\System32\drivers\tdrpm258.sys [1477728] ©
O58 - SDL:2011/10/06 09:51:31 A . (.Acronis - Acronis Try&Decide Volume Filter Driver.) -- C:\WINDOWS\System32\drivers\tdrpm273.sys [1263200] ©
O58 - SDL:2010/04/22 10:51:31 A . (.Acronis - Acronis Backup Archive Explorer.) -- C:\WINDOWS\System32\drivers\timntr.sys [943712] ©
O58 - SDL:2015/07/10 12:59:48 A . (...) -- C:\WINDOWS\System32\drivers\Udecx.sys [44032]
O58 - SDL:2014/07/09 13:04:14 A . (...) -- C:\WINDOWS\System32\drivers\UimBus.sys [102664]
O58 - SDL:2014/07/09 13:04:16 A . (...) -- C:\WINDOWS\System32\drivers\UimFIO.sys [556296]
O58 - SDL:2014/07/09 13:04:16 A . (...) -- C:\WINDOWS\System32\drivers\uim_devim.sys [25992]
O58 - SDL:2014/07/09 13:04:12 A . (...) -- C:\WINDOWS\System32\drivers\uim_im.sys [700296]
O58 - SDL:2015/07/10 12:59:39 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166752] ©
O58 - SDL:2015/07/10 12:59:39 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [26976] ©
O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [59232] ©
O58 - SDL:2009/08/21 16:44:00 A . (.ZTE Corporation - USB NDIS Miniport Driver.) -- C:\WINDOWS\System32\drivers\ZTEusbnet.sys [135168] ©
O58 - SDL:2009/10/09 11:46:10 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\ZTEusbnmeaext.sys [119680] ©
O58 - SDL:2009/10/09 11:46:10 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\ZTEusbnmeaext2.sys [119680] ©
O58 - SDL:2009/10/09 11:46:10 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\ZTEusbvoice.sys [119680] ©
O58 - SDL:2015/02/26 00:00:00 A . (...) -- C:\WINDOWS\System32\ambakdrv.sys [30648]
O58 - SDL:2015/02/26 00:00:00 A . (...) -- C:\WINDOWS\System32\ammntdrv.sys [151480]
O58 - SDL:2015/02/26 00:00:00 A . (...) -- C:\WINDOWS\System32\amwrtdrv.sys [17848]
O58 - SDL:2014/11/18 14:39:06 A . (...) -- C:\WINDOWS\System32\epmntdrv.sys [18528]
O58 - SDL:2014/11/18 14:39:06 A . (...) -- C:\WINDOWS\System32\EuGdiDrv.sys [10848]
---\\ Derniers fichiers modifiés ou crées (Utilisateur) (13) - 213s
O61 - LFC: 2015/10/14 16:03:49 A . (.Copyright © 2014.) -- C:\Users\François\AppData\Local\Packages\SFR.SFRTV_jnsztden2nca6\AC\Microsoft\CLR_v4.0\NativeImages\SFR.TV\9469df23e281f40885965d4bb49b9d0b\SFR.TV.ni.exe [2716672]
O61 - LFC: 2015/10/13 09:57:49 A . (..) -- C:\Users\François\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\TempState\TileCache_100_0_Header.bin [24616]
O61 - LFC: 2015/10/15 11:33:18 A . (..) -- C:\Users\François\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\speech_onecorereg.bin [8192]
O61 - LFC: 2015/10/10 16:49:05 A . (..) -- C:\Users\François\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\UrlBlock\urlblock_635800816458725806.bin [34928]
O61 - LFC: 2015/10/14 16:43:29 A . (.Copyright © 2013.) -- C:\Users\François\AppData\Local\Packages\METEOFRANCE.Mto-France_x15hyjpa1740a\AC\Microsoft\CLR_v4.0_32\NativeImages\MeteoFrance.Services\d39c163d5cd6201848a4f9673cac4c88\MeteoFrance.Services.ni.dll [295936]
O61 - LFC: 2015/10/14 16:43:31 A . (.Copyright © 2013.) -- C:\Users\François\AppData\Local\Packages\METEOFRANCE.Mto-France_x15hyjpa1740a\AC\Microsoft\CLR_v4.0_32\NativeImages\MeteoFrance.Common\90787f443a6cddfec56fef71952d3158\MeteoFrance.Common.ni.dll [223744]
O61 - LFC: 2015/10/14 16:43:28 A . (.Copyright © 2013.) -- C:\Users\François\AppData\Local\Packages\METEOFRANCE.Mto-France_x15hyjpa1740a\AC\Microsoft\CLR_v4.0_32\NativeImages\MeteoFrance\673e036ac762dbe7166d9441c257eb97\MeteoFrance.ni.exe [1208832]
O61 - LFC: 2015/10/14 16:43:35 A . (.Copyright © 2013.) -- C:\Users\François\AppData\Local\Packages\METEOFRANCE.Mto-France_x15hyjpa1740a\AC\Microsoft\CLR_v4.0_32\NativeImages\ATWinStoreLib\04e23db24e4919359e81b14871f0587f\ATWinStoreLib.ni.dll [158720]
O61 - LFC: 2015/10/14 16:03:38 A . (.Copyright © 2013.) -- C:\Users\François\AppData\Local\Packages\METEOFRANCE.Mto-France_x15hyjpa1740a\AC\Microsoft\CLR_v4.0\NativeImages\MeteoFrance.Tasks\6d7c6c55f224186c22f7fece48f65cb1\MeteoFrance.Tasks.ni.dll [53760]
O61 - LFC: 2015/10/14 14:18:40 A . (..) -- C:\Users\François\AppData\Local\Microsoft\Internet Explorer\UrlBlock\urlblock_635804128540769234.bin [11844]
O61 - LFC: 2015/10/15 17:08:10 A . (..) -- C:\Users\François\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [674082]
O61 - LFC: 2015/10/15 17:05:03 A . (..) -- C:\Users\François\AppData\Local\ATI\ACE\Manifest.Bin [27796]
O61 - LFC: 2015/10/14 16:05:05 A . (..) -- C:\Users\François\AppData\Local\Adobe\Acrobat\DC\UserCache.bin [47484]
---\\ Associations Shell Spawning (11) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe ©
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe ©
---\\ Menu de démarrage Internet (10) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
---\\ Recherche d'infection sur les navigateurs (3) - 21s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {C139D46A-0732-4B36-B80A-902785D8CB9D} - (Google) - http://www.google.fr/
O69 - SBI: SearchScopes [HKCU] - (Conduit Search) - http://search.conduit.com/ =>PUP.Optional.Conduit
---\\ Enumère les services démarrés par Svchost (41) - 2s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000] ©
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000] ©
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [283136] ©
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1335296] ©
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [954368] ©
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [954880] ©
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [31232] ©
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [93696] ©
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] ©
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [106496] ©
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [1008640] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [226304] ©
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [133120] ©
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [324608] ©
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [371200] ©
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [95744] ©
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [2093056] ©
O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\WINDOWS\system32\dcpsvc.dll [196096] ©
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [167424] ©
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\WINDOWS\System32\NetSetupSvc.dll [187392] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [106496] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [679936] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [497152] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [72192] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [452608] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [311808] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [2236416] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [1168896] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [593920] ©
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\system32\dmwappushsvc.dll [63488] ©
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [1149440] ©
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\system32\XboxNetApiSvc.dll [1019392] ©
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\WINDOWS\system32\usocore.dll [343040] ©
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\WINDOWS\System32\usermgr.dll [717312] ©
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [27136] ©
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [267776] ©
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [918016] ©
O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\WINDOWS\system32\RDXService.dll [1010176] ©
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [359936] ©
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [237568] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [58368] ©
---\\ Liste des exceptions du parefeu Windows (17) - 9s
O87 - FAEL: "UDP Query User{54C7F432-E51A-4165-AA12-4EA7BEC6A8A3}B:\logs_portables\tonidolite\tonido\tonido.exe" [In-None-P17-TRUE] .(.CodeLathe LLC - Tonido Platform EXE.) -- B:\logs_portables\tonidolite\tonido\tonido.exe
O87 - FAEL: "TCP Query User{E0136555-67A3-494B-990E-5525A353794F}B:\logs_portables\tonidolite\tonido\tonido.exe" [In-None-P6-TRUE] .(.CodeLathe LLC - Tonido Platform EXE.) -- B:\logs_portables\tonidolite\tonido\tonido.exe
O87 - FAEL: "UDP Query User{F17FE5BA-D08E-4A64-B383-F525947017AE}C:\program files (x86)\videolan\vlc\vlc.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\videolan\vlc\vlc.exe
O87 - FAEL: "TCP Query User{2C1D7EC9-258E-450D-9E8E-C25B64C6C468}C:\program files (x86)\videolan\vlc\vlc.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\videolan\vlc\vlc.exe
O87 - FAEL: "{200AA92C-375F-448D-BB57-A057E9D9C233}" [Out-None-P17-TRUE] .(.Copyright © 2010 Imperative Software Pty Ltd - Input Director Session Helper.) -- C:\Program Files (x86)\Input Director\InputDirectorSessionHelper.exe
O87 - FAEL: "{E474C805-B1E7-4074-9FE8-3BE494AA7736}" [In-None-P17-TRUE] .(.Copyright © 2010 Imperative Software Pty Ltd - Input Director Session Helper.) -- C:\Program Files (x86)\Input Director\InputDirectorSessionHelper.exe
O87 - FAEL: "{84EBCA8F-8FE6-43C9-920C-06BFE9BC9BEC}" [Out-None-P6-TRUE] .(.Copyright © 2010 Imperative Software Pty Ltd - Input Director Session Helper.) -- C:\Program Files (x86)\Input Director\InputDirectorSessionHelper.exe
O87 - FAEL: "{44793FA7-3C13-4FF7-818E-3FFA59243C3D}" [In-None-P6-TRUE] .(.Copyright © 2010 Imperative Software Pty Ltd - Input Director Session Helper.) -- C:\Program Files (x86)\Input Director\InputDirectorSessionHelper.exe
O87 - FAEL: "{3C0FCACB-0CD0-4087-B72B-828E70569C2A}" [Out-None-P17-TRUE] .(.Copyright © 2010 Imperative Software Pty Ltd - Input Director.) -- C:\Program Files (x86)\Input Director\InputDirector.exe
O87 - FAEL: "{A06C766C-866D-4881-BFE4-3729E6FBD1B7}" [In-None-P17-TRUE] .(.Copyright © 2010 Imperative Software Pty Ltd - Input Director.) -- C:\Program Files (x86)\Input Director\InputDirector.exe
O87 - FAEL: "{FFB420E3-1B54-4168-A39E-256D96242D54}" [Out-None-P6-TRUE] .(.Copyright © 2010 Imperative Software Pty Ltd - Input Director.) -- C:\Program Files (x86)\Input Director\InputDirector.exe
O87 - FAEL: "{1B8D6340-3CEB-4519-B4D6-16D73DD55795}" [In-None-P6-TRUE] .(.Copyright © 2010 Imperative Software Pty Ltd - Input Director.) -- C:\Program Files (x86)\Input Director\InputDirector.exe
O87 - FAEL: "UDP Query User{C321A53B-6E61-4D25-B450-E5F01C178CA2}F:\operaportable\app\opera\opera.exe" [In-None-P17-TRUE] .(...) -- F:\operaportable\app\opera\opera.exe (.not file.)
O87 - FAEL: "TCP Query User{07659955-B27D-4D0B-B240-AEA66A2F0A2F}F:\operaportable\app\opera\opera.exe" [In-None-P6-TRUE] .(...) -- F:\operaportable\app\opera\opera.exe (.not file.)
O87 - FAEL: "{F2D6FE9E-3F80-45B6-9413-F3BFD0280AC7}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
O87 - FAEL: "{226EF002-25E9-42E8-87E0-79C578568E22}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
O87 - FAEL: "{04C85069-B06F-4732-B4A0-C0E62379AE5C}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (27) - 64s
SR - Auto [2011/01/28 19:26:02] [ 1064568] Service Scheduler2 Acronis (AcrSch2Svc) . (.Acronis.) - C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe ©
SR - Auto [2015/09/14 09:25:38] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe ©
SS - Demand [2015/10/14 10:52:53] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ©
SR - Auto [2009/03/02 18:42:58] [ 89600] Andrea ST Filters Service (AESTFilters) . (.Andrea Electronics Corporation.) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_960c1f056a541068\AESTSr64.exe ©
SR - Auto [2015/01/13 16:41:00] [ 238080] (AMD External Events Utility) . (.AMD.) - C:\WINDOWS\system32\atiesrxx.exe ©
SS - Auto [2015/09/01 18:24:17] [ 887128] Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe ©
SR - Auto [2015/09/01 18:24:51] [ 461672] Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe ©
SR - Auto [2015/09/01 18:24:14] [ 461672] Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe ©
SS - Auto [2015/09/01 18:24:23] [ 1213072] Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe ©
SR - Auto [2015/09/10 09:19:44] [ 240872] Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe ©
SR - Auto [2015/09/15 17:56:06] [ 29912] AOMEI Backupper Scheduler Service (Backupper Service) . (.AOMEI Tech Co., Ltd..) - C:\Program Files (x86)\AOMEI Backupper\ABService.exe ©
SS - Demand [2010/02/25 14:21:32] [ 227896] Com4QLBEx (Com4QLBEx) . (.Hewlett-Packard Development Company, L.P..) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe ©
SR - Auto [2015/08/01 15:19:52] [ 36904] Service Agent EaseUS (EaseUS Agent) . (.CHENGDU YIWO Tech Development Co., Ltd.) - C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe ©
SS - Auto [2015/08/28 10:52:14] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
SS - Demand [2015/08/28 10:52:14] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
SR - Auto [2015/05/19 17:22:06] [ 99128] HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe ©
SR - Demand [2013/05/13 21:09:20] [ 1129760] HP Software Framework Service (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe ©
SR - Auto [2011/05/13 18:58:10] [ 30520] @oem39.inf,%hpservice_desc%;HP Service (hpsrv) . (.Hewlett-Packard Company.) - C:\WINDOWS\system32\Hpservice.exe ©
SS - Demand [2009/02/08 05:15:36] [ 13824] Input Director Vista Service (IDVistaService) . (...) - C:\Program Files (x86)\Input Director\IDVistaService.exe
SR - Auto [2010/02/01 11:37:54] [ 36864] Input Director Service (InputDirector) . (...) - C:\Program Files (x86)\Input Director\IDWinService.exe
SR - Auto [2015/10/05 09:48:44] [ 1513784] (MBAMScheduler) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe ©
SR - Auto [2015/10/05 09:48:46] [ 1135416] (MBAMService) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe ©
SS - Demand [2015/10/04 11:16:52] [ 147624] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe ©
SR - Auto [2009/01/21 20:47:38] [ 247152] Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
SR - Auto [2010/03/23 14:53:06] [ 247808] Audio Service (STacSV) . (.IDT, Inc..) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_960c1f056a541068\stacsv64.exe ©
SR - Auto [2015/07/17 07:51:48] [ 246472] SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe ©
---\\ Scan Additionnel (1) - 0s
~ Aucun élément malicieux ou superflu trouvé.
---\\ Récapitulatif des éléments trouvées sur votre station (1) - 0s
http://www.nicolascoolman.fr/toolbar-conduit/ =>PUP.Optional.Conduit
~ End of the scan, 60495 items in 1003 seconds (1220)(0)()