Bonjour,
Le rapport étant trop long, voici la première, la deuxième va suivre.
~ Rapport de ZHPDiag v2015.3.23.32 - Nicolas Coolman (23/03/2015)
~ Lancé par Artemis (25/03/2015 14:29:48)
~ Facebook :
https://www.facebook.com/nicolascoolman1
~ Adresse du Forum
http://forum.nicolascoolman.fr
~ Traduit par Nicolas Coolman
~ Etat de la version : Version à jour.
~ Liste blanche : Désactivée par l'utilisateur
~ Elévation des Privilèges : OK
~ User Account Control (UAC): Deactivate by user
---\\ Navigateurs Internet
MSIE: Internet Explorer v11.0.9600.17691
MFIE: Mozilla Firefox 36.0.4
OPIE: Opera Stable v28.0.1750.48 (Defaut)
---\\ Informations sur les produits Windows
~ Langage: Français
Windows Server License Manager Script : OK
~ Windows Operating System - Windows(R) 7, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : GCFF6
Windows License : OK
~ Windows Remaining Initializations Number : 2
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK
Windows 7 Starter, 32-bit Service Pack 1 (Build 7601)
---\\ Logiciels de protection du système
avast! Free Antivirus v9.0.2021
Windows Defender W7 (Activate)
---\\ Logiciels d'optimisation du système
---\\ Logiciels de partage PeerToPeer
---\\ Surveillance de Logiciels
Adobe Flash Player 16 NPAPI
Adobe Reader X
---\\ Informations sur le système
~ Processor: x86 Family 6 Model 54 Stepping 1, GenuineIntel
~ Operating System: 32 Bits
Boot mode: Normal (Normal boot)
Total RAM: 1012 MB (8% free)
System Restore: Activé (Enable)
System drive C: has 6 GB (1%) free of 285 GB
---\\ Mode de connexion au système
~ Computer Name: ARTEMIS-PC
~ User Name: Artemis
~ All Users Names: Artemis, Administrateur,
~ Unselected Option: None
Logged in as Administrator
---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\Artemis\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\Artemis\AppData\Roaming\
~ %Desktop% : C:\Users\Artemis\Desktop\
~ %Favorites% : C:\Users\Artemis\Favorites\
~ %LocalAppData% : C:\Users\Artemis\AppData\Local\
~ %StartMenu% : C:\Users\Artemis\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\
---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 6 Go of 285 Go)
Q: Hard drive, Flash drive, Thumb drive (Free 0 Go of 0 Go)
---\\ Etat du Centre de Sécurité Windows
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Security Center: 43 Scanned in 00mn 00s
---\\ Recherche particulière de fichiers génériques
[MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - (.Microsoft Corporation - Explorateur Windows.) (.14/07/2011 - 02:34:17.) -- C:\Windows\Explorer.exe [2616320]
[MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:14:45.) -- C:\Windows\System32\Wininit.exe [96256]
[MD5.EA6EA6912F27F05C61D8D747517EB47E] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.20/02/2015 - 02:01:25.) -- C:\Windows\System32\wininet.dll [1888256]
[MD5.52449FD429D6053B78AE564DEF303870] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.17/07/2014 - 02:39:27.) -- C:\Windows\System32\Winlogon.exe [304128]
[MD5.E3AE23569749DE12D45BA3B489A036AE] - (.Microsoft Corporation - Bibliothèque de licences.) (.20/11/2010 - 22:29:24.) -- C:\Windows\System32\sppcomapi.dll [193536]
[MD5.D0B388DA1D111A34366E04EB4A5DD156] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.30/05/2014 - 07:36:07.) -- C:\Windows\system32\Drivers\AFD.sys [338944]
[MD5.338C86357871C167A96AB976519BF59E] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:26:15.) -- C:\Windows\system32\Drivers\atapi.sys [21584]
[MD5.77EA11B065E0A8AB902D78145CA51E10] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:11:15.) -- C:\Windows\system32\Drivers\Cdfs.sys [70656]
[MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 22:29:03.) -- C:\Windows\system32\Drivers\Cdrom.sys [108544]
[MD5.F024449C97EC1E464AAFFDA18593DB88] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 22:29:07.) -- C:\Windows\system32\Drivers\DfsC.sys [78336]
[MD5.9036377B8A6C15DC2EEC53E489D159B5] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 22:29:03.) -- C:\Windows\system32\Drivers\HDAudBus.sys [108544]
[MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:11:24.) -- C:\Windows\system32\Drivers\i8042prt.sys [80896]
[MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 00:54:29.) -- C:\Windows\system32\Drivers\IpNat.sys [101888]
[MD5.5D16C921E3671636C0EBA3BBAAC5FD25] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.14/07/2011 - 02:36:43.) -- C:\Windows\system32\Drivers\MRxSmb.sys [123904]
[MD5.280122DDCF04B378EDD1AD54D71C1E54] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 22:29:08.) -- C:\Windows\system32\Drivers\netBT.sys [187904]
[MD5.C8DFF8D07755A66C7A4A738930F0FEAC] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.24/01/2014 - 03:18:22.) -- C:\Windows\system32\Drivers\ntfs.sys [1212352]
[MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 00:45:35.) -- C:\Windows\system32\Drivers\Parport.sys [79360]
[MD5.D9F91EAFEC2815365CBE6D167E4E332A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.14/07/2009 - 00:54:34.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [78848]
[MD5.3E21C083B8A01CB70BA1F09303010FCE] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 00:53:41.) -- C:\Windows\system32\Drivers\smb.sys [71168]
[MD5.B459575348C20E8121D6039DA063C704] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 22:29:07.) -- C:\Windows\system32\Drivers\tdx.sys [74752]
[MD5.F497F67932C6FA693D7DE2780631CFE7] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.20/11/2010 - 22:29:03.) -- C:\Windows\system32\Drivers\volsnap.sys [245632]
~ Generic Processes: Scanned in 00mn 04s
---\\ Etat des fichiers cachés (Caché/Total)
~ Mes Favoris (My Favorites) : 1/18
~ Mes Documents (My Documents) : 1/4
~ Mon Bureau (My Desktop) : 2/677
~ Menu demarrer (Programs) : 1/36
~ Hidden Files: Scanned in 00mn 08s
---\\ Processus lancés
[MD5.CB8FD928BC0BB8CF2317224DB58CC960] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [142104] [PID.2184]
[MD5.6BF5CFD4AD534112CEB9EED085A8A26C] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [175896] [PID.2584]
[MD5.C582A5646E7BB9276FCABC175BEBB7CB] - (.Intel Corporation - igfxsrvc Module.) -- C:\Windows\system32\igfxsrvc.exe [268568] [PID.2452]
[MD5.76FF672C5DCA4BB0C948E4668EDC3F50] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [168216] [PID.3004]
[MD5.DCFE7CE897163498DDBEE99CA9332731] - (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1934632] [PID.3364]
[MD5.EB996D1BB30C87686BC91585A99139CB] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\Program Files\Synaptics\SynTP\SynTPHelper.exe [107816] [PID.1592]
[MD5.F585E2154FF4E98972C9AA246D816949] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [10959464] [PID.2556]
[MD5.39D4D9BB437A34E955D40DC6FB1BFA2A] - (.Acer Incorporated - ePowerTray.) -- C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe [714120] [PID.1368]
[MD5.26AFC1F16494FFE66F2197153B342A27] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [4086432] [PID.876]
[MD5.EA2F3FABF11538BC1A1CE8B289519F69] - (.Intel Corporation - igfxext Module.) -- C:\Windows\system32\igfxext.exe [178456] [PID.1948]
[MD5.031DB3D8CC39A48D5635699BC78ED697] - (.BitTorrent Inc. - µTorrent.) -- C:\Users\Artemis\AppData\Roaming\uTorrent\uTorrent.exe [1741904] [PID.1972] =>P2P.BitTorrent
[MD5.ACAD0683F183CA0FCD0621D7659E161C] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [376944] [PID.1376]
[MD5.45FCEA7B42DE8F4F48DD7E913376BF84] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files\Mozilla Firefox\plugin-container.exe [264816] [PID.4324]
[MD5.4E8288547D53DB9555067DE7FDCCB127] - (.Adobe Systems, Inc. - Adobe Flash Player 16.0 r0.) -- C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_16_0_0_305.exe [1880752] [PID.5908]
[MD5.EF6B4B38332C4EB7B74C0A1CB7094E83] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [8188928] [PID.4932]
~ Processes Running: Scanned in 00mn 05s
---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
M2 - MFEP: Extension [Artemis - 1y96jm8c.default] {13e8d46d-09b8-4fd6-b75a-25c04a0db747}.xpi
M2 - MFEP: prefs.js [Artemis - a4hzwlu0.default-1425596185750\
searchengine@gmail.com] [] Search Enginer v1.0.0.1027 (..) =>PUP.SearchEngine
M2 - MFEP: Extension [Artemis - a4hzwlu0.default-1425596185750] {13e8d46d-09b8-4fd6-b75a-25c04a0db747}.xpi
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF32_16_0_0_305.dll
P2 - FPN: [HKLM] [@adobe.com/ShockwavePlayer] - (.Adobe Systems, Inc. - Adobe Shockwave for Director Netscape plug-in, version 12.1.7.157.) -- C:\Windows\system32\Adobe\Director\np32dsw_1217157.dll
P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 5.1.30514.0.) -- c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll
P2 - FPN: [HKLM] [@microsoft.com/SharePoint,version=14.0] - (.Microsoft Corporation - The plug-in allows you to open and edit files using Microsoft Office a.) -- C:\Program Files\Microsoft Office\Office14\NPSPWRAP.dll
P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3502.0922] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3538.0513] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.5] - (.VideoLAN - VLC media player Web Plugin 2.1.3.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll =>.VideoLAN
P2 - FPN: [HKLM] [@WildTangent.com/GamesAppPresenceDetector,Version=1.0] - (...) -- C:\Program Files\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll
P2 - FPN: [HKLM] [Adobe Reader] - (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 10.1.13.) -- C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
~ Firefox Browser: 14 Scanned in 00mn 01s
---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL =
http://go.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
http://www.sweet-page.com =>PUP.SweetPage
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default =
http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs =
http://www.google.com
R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 10.1.13.) (No version) -- (.not file.)
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2
~ IE Browser: 19 Scanned in 00mn 00s
---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s
---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s
---\\ Hosts file redirection (O1)
~ Le fichier hôte est sain (The hosts file is clean) (21)
~ Hosts File: Scanned in 00mn 00s
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Between Lines 1.0.0.7 - {ed66005b-3c60-469c-a11b-211b53e83d9e} . (.Between Lines - Between Lines.) -- C:\Program Files\Between Lines\BetweenLinesbho.dll =>PUP.BetweenLines
~ BHO: 6 Scanned in 00mn 00s
---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: avast! Online Security - [HKLM]{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
~ Toolbar: Scanned in 00mn 00s
---\\ Autres liens utilisateurs (O4)
O4 - GS\QuickLaunch [Artemis]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) -- C:\Users\Artemis\AppData\Roaming\uTorrent\uTorrent.exe =>P2P.BitTorrent
O4 - GS\TaskBar [Artemis]: µTorrent.lnk . (...) -- C:\Program Files\uTorrent\uTorrent.exe (.not file.) =>P2P.µTorrent
~ Global Startup: 2 Scanned in 00mn 09s
---\\ Applications lancées au démarrage du système (O4)
O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [GfxServiceInstall] . (...) -- C:\Windows\system32\GfxCUIServiceInstall.vbs
O4 - HKLM\..\Run: [LManager] . (.Dritek System Inc. - Launch Manager.) -- C:\Program Files\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe =>.Realtek Semiconductor Corp
O4 - HKLM\..\Run: [Power Management] . (.Acer Incorporated - ePowerTray.) -- C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe
O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\Artemis\AppData\Roaming\uTorrent\uTorrent.exe =>P2P.BitTorrent
O4 - HKUS\.DEFAULT\..\Run: [systray] C:\Program Files\Notation\NotationSysTray.exe (.not file.) =>Hijacker.Proxy
O4 - HKUS\S-1-5-18\..\Run: [systray] C:\Program Files\Notation\NotationSysTray.exe (.not file.) =>Hijacker.Proxy
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\Run: [systray] C:\Program Files\Notation\NotationSysTray.exe (.not file.) =>Hijacker.Proxy
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [systray] C:\Program Files\Notation\NotationSysTray.exe (.not file.) =>Hijacker.Proxy
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-2111794405-3184134242-3765160749-1000\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\Artemis\AppData\Roaming\uTorrent\uTorrent.exe =>P2P.BitTorrent
~ Application: Scanned in 00mn 00s
---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ IE Control Panel: 1 Scanned in 00mn 00s
---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} . (.Microsoft Corporation - Windows Live Writer Blog This Extension.) -- C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
~ IE Extra Buttons: Scanned in 00mn 00s
---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll =>.Microsoft Corporation
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll =>.Microsoft Corporation
O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll =>.Microsoft Corporation
~ Winsock: 8 Scanned in 00mn 00s
---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{B278CA14-B1AB-441B-BC0A-BCCC52291FC9}: DhcpNameServer = 212.27.40.241 212.27.40.240
O17 - HKLM\System\CS1\Services\Tcpip\..\{B278CA14-B1AB-441B-BC0A-BCCC52291FC9}: DhcpNameServer = 212.27.40.241 212.27.40.240
O17 - HKLM\System\CS2\Services\Tcpip\..\{B278CA14-B1AB-441B-BC0A-BCCC52291FC9}: DhcpNameServer = 212.27.40.241 212.27.40.240
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.241 212.27.40.240
~ Domain: Scanned in 00mn 00s
---\\ Protocole additionnel (O18)
O18 - Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s
---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll
~ Winlogon: Scanned in 00mn 00s
---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ SSODL: 1 Scanned in 00mn 00s
---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Dritek WMI Service (DsiWMIService) . (.Dritek System Inc. - Dritek WMI Service.) - C:\Program Files\Launch Manager\dsiwmis.exe
O23 - Service: ePower Service (ePowerSvc) . (.Acer Incorporated - ePowerSvc.) - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe
O23 - Service: GREGService (GREGService) . (.Acer Incorporated - Global Registration Service.) - C:\Program Files\Packard Bell\Registration\GREGsvc.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc. - Realtek Card Reader Icon Tool..) - C:\Program Files\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: Live Updater Service (Live Updater Service) . (.Acer Incorporated - Updater Service.) - C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Util Between Lines (Util Between Lines) . (...) - C:\Program Files\Between Lines\bin\utilBetweenLines.exe =>PUP.BetweenLines
O23 - Service: WindowsMangerProtect Service (WindowsMangerProtect) . (.SysTool PasSame LIMITED - Windows SysTool Service.) - C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe =>PUP.Fuyu
~ Services: 11 Scanned in 00mn 27s
---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Desktop Component: 4 Scanned in 00mn 00s
---\\ Enumère les données de BootExecute (BEX) (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ BEX: 1 Scanned in 00mn 00s
---\\ Tâches planifiées en automatique (O39)
[MD5.887C79A2D1C790BC2DCFDA31DF9BAD65] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [267440]
[MD5.1AD8512A5C40AD1A0558498D8E0AC2AA] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [808448]
[MD5.A1F8D2A9B421C036771CA46C56536CEE] [APT] [Opera scheduled Autoupdate 1424528913] (.Opera Software.) -- C:\Program Files\Opera\launcher.exe [889976]
[MD5.A93B9EA5E9AAA2CD3711C948A934EB47] [APT] [UALU notificatin] (.Acer Incorporated.) -- C:\Program Files\Packard Bell\Packard Bell Updater\UALU.exe [22392]
[MD5.00000000000000000000000000000000] [APT] [{293250FE-535E-420D-B8B6-E83FFAC8E5AE}] (...) -- C:\Users\Artemis\Downloads\YouTubeToMP3ConverterSetup.exe (.not file.) [0]
[MD5.F0DC3D98685CCF05638D0D2D0BB6C157] [APT] [{A696FCAF-7162-41B5-B5CA-BC8D7FA56BB0}] (...) -- C:\Program Files\Common Files\DVDVideoSoft\lib\Uninstall.exe [64152]
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [1002]
~ Scheduled Task: 10 Scanned in 00mn 18s
---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player 12.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
O40 - ASIC: Internet Explorer - {2D46B6DC-2207-486B-B523-A557E6D54B47} . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Windows Desktop Update - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O40 - ASIC: Web Platform Customizations - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll
~ Active Setup: 10 Scanned in 00mn 00s
---\\ Pilotes lancés au démarrage du système (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (aswRdr) . (.AVAST Software - avast! WFP Redirect Driver.) - C:\Windows\system32\drivers\aswRdr2.sys
O41 - Driver: (aswSnx) . (.AVAST Software - avast! Virtualization Driver.) - C:\Windows\system32\drivers\aswSnx.sys
O41 - Driver: (aswSP) . (.AVAST Software - avast! self protection module.) - C:\Windows\system32\drivers\aswSP.sys
O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\drivers\blbdrive.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys
O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys
~ Drivers: 69 Scanned in 00mn 04s
---\\ Logiciels installés (O42)
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {AFF7E080-1974-45BF-9310-10DE1A1F5ED0}
O42 - Logiciel: Adobe Flash Player 16 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI
O42 - Logiciel: Adobe Reader X (10.1.13) MUI - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-FFFF-7B44-AA0000000001}
O42 - Logiciel: Adobe Shockwave Player 12.1 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player
O42 - Logiciel: Akhra: The Treasures - (.WildTangent.) [HKLM] -- WTA-7582d8ed-4530-4289-853f-fa55a8ce2123 =>.WildTangent
O42 - Logiciel: Alice's Magical Mahjong - (.WildTangent.) [HKLM] -- WTA-0e2431d0-0c13-4bb9-be55-998346fe02e7 =>.WildTangent
O42 - Logiciel: Bejeweled 3 - (.WildTangent.) [HKLM] -- WTA-2e057cab-f511-481a-bb79-5aca019bc99d =>.WildTangent
O42 - Logiciel: Between Lines - (.Between Lines.) [HKLM] -- Between Lines
O42 - Logiciel: Chuzzle Deluxe - (.WildTangent.) [HKLM] -- WTA-36c5b6ae-fe06-4937-b8e8-596a9fd12da5 =>.WildTangent
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: Diego's Ultimate Rescue - (.WildTangent.) [HKLM] -- WTA-10bad245-0a3a-4afa-b677-25da4d140921 =>.WildTangent
O42 - Logiciel: Final Drive: Nitro - (.WildTangent.) [HKLM] -- WTA-3449b694-e47f-4c61-adbb-bac3dab462fc =>.WildTangent
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Identity Card - (.Packard Bell.) [HKLM] -- Identity Card
O42 - Logiciel: Insaniquarium Deluxe - (.WildTangent.) [HKLM] -- WTA-5b87ba9a-7c2f-43f2-b2b4-1019857efd16 =>.WildTangent
O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421}
O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC}
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}
O42 - Logiciel: LG United Mobile Drivers - (.LG Electronics.) [HKLM] -- {C2944BE7-9BFF-4EF0-A362-CB3281B7C50D}
O42 - Logiciel: Launch Manager - (.Packard Bell.) [HKLM] -- LManager
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: MediaMan - (.He Shiming.) [HKLM] -- {96E374A7-FB6B-44F1-8C56-6E9A106F0780}
O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Mozilla Firefox 36.0.4 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 36.0.4 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService
O42 - Logiciel: My Farm Life - (.WildTangent.) [HKLM] -- WTA-0aa6b6ca-d63d-4bcf-98ed-327d9519909a =>.WildTangent
O42 - Logiciel: My Kingdom for the Princess 3 - (.WildTangent.) [HKLM] -- WTA-71df113d-e742-476f-8a57-f8d6e3819ef5 =>.WildTangent
O42 - Logiciel: OpenOffice 4.1.1 - (.Apache Software Foundation.) [HKLM] -- {121727D5-FDF3-4723-BA57-EB383440ED72}
O42 - Logiciel: Opera Stable 28.0.1750.48 - (.Opera Software ASA.) [HKLM] -- Opera 28.0.1750.48
O42 - Logiciel: Packard Bell Games - (.WildTangent.) [HKLM] -- WildTangent packardbell Master Uninstall =>.WildTangent
O42 - Logiciel: Packard Bell Power Management - (.Packard Bell.) [HKLM] -- {3DB0448D-AD82-4923-B305-D001E521A964}
O42 - Logiciel: Packard Bell Recovery Management - (.Packard Bell.) [HKLM] -- {7F811A54-5A09-4579-90E1-C93498E230D9}
O42 - Logiciel: Packard Bell Registration - (.Packard Bell.) [HKLM] -- Packard Bell Registration
O42 - Logiciel: Packard Bell ScreenSaver - (.Packard Bell .) [HKLM] -- Packard Bell Screensaver
O42 - Logiciel: Packard Bell Social Networks - (.CyberLink Corp..) [HKLM] -- InstallShield_{64EF903E-D00A-414C-94A4-FBA368FFCDC9}
O42 - Logiciel: Packard Bell Social Networks - (.CyberLink Corp..) [HKLM] -- {64EF903E-D00A-414C-94A4-FBA368FFCDC9}
O42 - Logiciel: Process Tamer 2.11.01 - (...) [HKLM] -- Process Tamer_is1
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM] -- {C1594429-8296-4652-BF54-9DBE4932A44C}
O42 - Logiciel: Revo Uninstaller 1.95 - (.VS Revo Group.) [HKLM] -- Revo Uninstaller
O42 - Logiciel: Running Sheep - (.WildTangent.) [HKLM] -- WTA-5f411bdd-11ae-4f89-8184-aec34391a3b8 =>.WildTangent
O42 - Logiciel: Skip-Bo - Castaway Caper - (.WildTangent.) [HKLM] -- WTA-b8d25645-2d04-400d-ba3e-91bd3e330c26 =>.WildTangent
O42 - Logiciel: Skype™ 6.11 - (.Skype Technologies S.A..) [HKLM] -- {4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}
O42 - Logiciel: Slingo Deluxe - (.WildTangent.) [HKLM] -- WTA-9220b556-6360-422e-95f3-131be5fd4592 =>.WildTangent
O42 - Logiciel: Super Granny 6 - (.WildTangent.) [HKLM] -- WTA-e9ba15e8-7d04-49e5-b713-507d3660e58c =>.WildTangent
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM] -- SynTPDeinstKey
O42 - Logiciel: Update Installer for WildTangent Games App - (.WildTangent.) [HKLM] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App =>.WildTangent
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player =>.VideoLAN
O42 - Logiciel: Video Web Camera - (.CyberLink Corp..) [HKLM] -- InstallShield_{A0382E3C-7384-429A-9BFA-AF5888E5A193}
O42 - Logiciel: Video Web Camera - (.CyberLink Corp..) [HKLM] -- {A0382E3C-7384-429A-9BFA-AF5888E5A193}
O42 - Logiciel: Wedding Dash - (.WildTangent.) [HKLM] -- WTA-fe65866d-b8a0-4cc2-b0d7-2257a8b60b4e =>.WildTangent
O42 - Logiciel: Welcome Center - (.Packard Bell.) [HKLM] -- Packard Bell Welcome Center
O42 - Logiciel: WildTangent Games App (Packard Bell Games) - (.WildTangent.) [HKLM] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-packardbell =>.WildTangent
O42 - Logiciel: adsl TV - (.adsl TV / FM.) [HKLM] -- {3AFDD2C6-8663-46B5-B195-6CEB00D44768}
O42 - Logiciel: avast! Free Antivirus v9.0.2021 - (.AVAST Software.) [HKLM] -- avast
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726}
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU] -- uTorrent =>P2P.BitTorrent
~ Logic: 51 Scanned in 00mn 03s
---\\ HKCU & HKLM Software Keys
[HKCU\Software\Acer]
[HKCU\Software\Adobe]
[HKCU\Software\AdsFix]
[HKCU\Software\AppDataLow]
[HKCU\Software\Apple Inc.]
[HKCU\Software\Avast Software]
[HKCU\Software\Between Lines]
[HKCU\Software\BitTorrent] =>P2P.BitTorrent
[HKCU\Software\Chromium]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\DVDVideoSoft]
[HKCU\Software\Dritek]
[HKCU\Software\Google]
[HKCU\Software\Intel]
[HKCU\Software\JavaSoft]
[HKCU\Software\Licenses]
[HKCU\Software\Local AppWizard-Generated Applications]
[HKCU\Software\LowRegistry]
[HKCU\Software\MCAFEE]
[HKCU\Software\Macromedia]
[HKCU\Software\MediaMan]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Mozilla]
[HKCU\Software\Netscape]
[HKCU\Software\OEM]
[HKCU\Software\OpenOffice]
[HKCU\Software\Opera Software]
[HKCU\Software\Policies]
[HKCU\Software\Realtek]
[HKCU\Software\SlimSUF]
[HKCU\Software\Symantec]
[HKCU\Software\Synaptics]
[HKCU\Software\Sysinternals]
[HKCU\Software\TeleCharger]
[HKCU\Software\Trolltech]
[HKCU\Software\TuneUp]
[HKCU\Software\VB and VBA Program Settings]
[HKCU\Software\VSRevoGroup]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\ej-technologies]
[HKLM\Software\ATI Technologies]
[HKLM\Software\AVAST Software]
[HKLM\Software\Acer]
[HKLM\Software\Adobe]
[HKLM\Software\AdsFix]
[HKLM\Software\AdwCleaner]
[HKLM\Software\AppDataLow]
[HKLM\Software\CBSTEST]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Cyberlink]
[HKLM\Software\DTS]
[HKLM\Software\DVDVideoSoft]
[HKLM\Software\Dolby]
[HKLM\Software\Dritek]
[HKLM\Software\Google]
[HKLM\Software\IM Providers]
[HKLM\Software\InstalledOptions]
[HKLM\Software\Intel]
[HKLM\Software\JavaSoft]
[HKLM\Software\Knowles]
[HKLM\Software\LG Electronics]
[HKLM\Software\Macromedia]
[HKLM\Software\McAfee.com]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\ODBC]
[HKLM\Software\OEM]
[HKLM\Software\OOBEOffer]
[HKLM\Software\OemSetup]
[HKLM\Software\OpenOffice]
[HKLM\Software\Opera Software]
[HKLM\Software\Packard Bell]
[HKLM\Software\Policies]
[HKLM\Software\RTLSetup]
[HKLM\Software\Realtek Semiconductor Corp.]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\SRS Labs]
[HKLM\Software\Skype]
[HKLM\Software\SonicFocus]
[HKLM\Software\Symantec]
[HKLM\Software\Synaptics]
[HKLM\Software\Sysinternals]
[HKLM\Software\TuneUp]
[HKLM\Software\VideoLAN]
[HKLM\Software\WOW6432Node]
[HKLM\Software\Waves Audio]
[HKLM\Software\WildTangent]
[HKLM\Software\ej-technologies]
[HKLM\Software\mozilla.org]
[HKLM\Software\sweet-pageSoftware] =>PUP.SweetPage
~ Key Software: 208 Scanned in 00mn 03s
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 22/01/2013 - 17:47:36 - [] ----D C:\Program Files\Accessory Store
O43 - CFD: 13/04/2012 - 12:13:03 - [] ----D C:\Program Files\Adobe
O43 - CFD: 25/03/2015 - 13:49:56 - [] ----D C:\Program Files\adslTV
O43 - CFD: 22/01/2013 - 18:03:54 - [] ----D C:\Program Files\AVAST Software
O43 - CFD: 24/03/2015 - 18:37:24 - [] ----D C:\Program Files\Between Lines
O43 - CFD: 13/08/2014 - 13:47:36 - [] ----D C:\Program Files\Common Files
O43 - CFD: 09/06/2012 - 03:22:59 - [] ----D C:\Program Files\DVD Maker
O43 - CFD: 22/01/2013 - 17:46:51 - [] -SH-D C:\Program Files\Fichiers communs
O43 - CFD: 16/03/2015 - 14:44:00 - [] ----D C:\Program Files\Google
O43 - CFD: 31/12/2013 - 21:01:32 - [] ----D C:\Program Files\GUM927F.tmp
O43 - CFD: 14/12/2014 - 17:09:40 - [] --H-D C:\Program Files\InstallShield Installation Information
O43 - CFD: 08/06/2012 - 17:40:36 - [] ----D C:\Program Files\Intel
O43 - CFD: 16/03/2015 - 14:20:14 - [] ----D C:\Program Files\Internet Explorer
O43 - CFD: 28/12/2013 - 22:04:39 - [] ----D C:\Program Files\Launch Manager
O43 - CFD: 23/05/2013 - 21:54:14 - [] ----D C:\Program Files\LG Electronics
O43 - CFD: 01/01/2015 - 14:47:54 - [] ----D C:\Program Files\MediaMan
O43 - CFD: 25/08/2014 - 22:10:52 - [0] ----D C:\Program Files\Microsoft
O43 - CFD: 27/12/2013 - 23:49:24 - [] ----D C:\Program Files\Microsoft Application Virtualization Client
O43 - CFD: 14/07/2009 - 05:52:30 - [] ----D C:\Program Files\Microsoft Games
O43 - CFD: 17/02/2013 - 23:23:25 - [] ----D C:\Program Files\Microsoft Office
O43 - CFD: 16/08/2014 - 16:09:36 - [] ----D C:\Program Files\Microsoft Silverlight
O43 - CFD: 13/04/2012 - 11:56:33 - [] ----D C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 25/01/2013 - 16:52:16 - [] ----D C:\Program Files\Microsoft.NET
O43 - CFD: 24/03/2015 - 17:02:57 - [] ----D C:\Program Files\Mozilla Firefox
O43 - CFD: 24/03/2015 - 16:41:36 - [] ----D C:\Program Files\Mozilla Maintenance Service
O43 - CFD: 14/07/2009 - 05:52:30 - [] ----D C:\Program Files\MSBuild
O43 - CFD: 23/09/2014 - 18:00:31 - [] ----D C:\Program Files\OpenOffice 4
O43 - CFD: 19/03/2015 - 22:46:02 - [] ----D C:\Program Files\Opera
O43 - CFD: 08/06/2012 - 18:11:13 - [] ----D C:\Program Files\Packard Bell
O43 - CFD: 13/04/2012 - 12:05:57 - [] ----D C:\Program Files\Packard Bell Games
O43 - CFD: 22/01/2013 - 17:47:25 - [] ----D C:\Program Files\Preload
O43 - CFD: 10/03/2015 - 11:15:27 - [] ----D C:\Program Files\ProcessTamer
O43 - CFD: 08/06/2012 - 17:52:00 - [] ----D C:\Program Files\Realtek
O43 - CFD: 14/07/2009 - 05:52:30 - [] ----D C:\Program Files\Reference Assemblies
O43 - CFD: 13/08/2014 - 13:47:36 - [] R---D C:\Program Files\Skype
O43 - CFD: 08/06/2012 - 18:03:01 - [] ----D C:\Program Files\Social Networks
O43 - CFD: 13/04/2012 - 12:11:09 - [] ----D C:\Program Files\SymSilent
O43 - CFD: 08/06/2012 - 17:48:50 - [] ----D C:\Program Files\Synaptics
O43 - CFD: 08/06/2012 - 17:53:30 - [0] --H-D C:\Program Files\Temp
O43 - CFD: 14/07/2009 - 05:53:23 - [0] --H-D C:\Program Files\Uninstall Information
O43 - CFD: 16/03/2015 - 14:42:46 - [0] ----D C:\Program Files\uTorrent =>P2P.µTorrent
O43 - CFD: 08/06/2012 - 18:10:29 - [] ----D C:\Program Files\Video Web Camera
O43 - CFD: 16/08/2014 - 22:02:36 - [] ----D C:\Program Files\VideoLAN
O43 - CFD: 16/03/2015 - 14:11:31 - [] ----D C:\Program Files\VS Revo Group
O43 - CFD: 13/04/2012 - 11:39:27 - [] ----D C:\Program Files\WildTangent Games
O43 - CFD: 27/12/2013 - 13:17:30 - [] ----D C:\Program Files\Windows Defender
O43 - CFD: 13/04/2012 - 11:47:54 - [] ----D C:\Program Files\Windows Live
O43 - CFD: 09/06/2012 - 03:22:59 - [] ----D C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 16/03/2015 - 14:20:07 - [] ----D C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 22/01/2013 - 17:46:51 - [] ----D C:\Program Files\Windows NT
O43 - CFD: 09/06/2012 - 03:22:59 - [] ----D C:\Program Files\Windows Photo Viewer
O43 - CFD: 20/11/2010 - 22:33:48 - [] ----D C:\Program Files\Windows Portable Devices
O43 - CFD: 09/06/2012 - 03:22:59 - [] ----D C:\Program Files\Windows Sidebar
O43 - CFD: 18/08/2014 - 21:06:22 - [] ----D C:\Program Files\WinRAR
O43 - CFD: 28/12/2013 - 16:46:04 - [] ----D C:\Program Files\Woonoz
O43 - CFD: 25/03/2015 - 14:28:48 - [] ----D C:\Program Files\ZHPDiag =>.Nicolas Coolman
O43 - CFD: 13/04/2012 - 12:07:26 - [] ----D C:\Program Files\Common Files\Adobe
O43 - CFD: 13/04/2012 - 12:13:02 - [] ----D C:\Program Files\Common Files\Adobe AIR
O43 - CFD: 13/08/2014 - 13:41:44 - [] ----D C:\Program Files\Common Files\DESIGNER
O43 - CFD: 27/05/2013 - 11:52:20 - [] ----D C:\Program Files\Common Files\DVDVideoSoft
O43 - CFD: 08/06/2012 - 17:51:52 - [] ----D C:\Program Files\Common Files\InstallShield
O43 - CFD: 17/02/2013 - 23:39:52 - [] ----D C:\Program Files\Common Files\microsoft shared
O43 - CFD: 14/07/2009 - 03:37:05 - [] ----D C:\Program Files\Common Files\Services
O43 - CFD: 13/08/2014 - 13:47:36 - [] ----D C:\Program Files\Common Files\Skype
O43 - CFD: 14/07/2009 - 03:37:05 - [] ----D C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 09/06/2012 - 03:22:59 - [] ----D C:\Program Files\Common Files\System
O43 - CFD: 13/04/2012 - 11:46:11 - [] ----D C:\Program Files\Common Files\Windows Live
O43 - CFD: 14/05/2013 - 00:01:31 - [] ----D C:\ProgramData\Adobe
O43 - CFD: 09/03/2015 - 15:22:56 - [] ----D C:\ProgramData\Apple
O43 - CFD: 09/03/2015 - 15:25:39 - [] ----D C:\ProgramData\Apple Computer
O43 - CFD: 14/07/2009 - 05:53:55 - [] -SH-D C:\ProgramData\Application Data
O43 - CFD: 31/12/2013 - 20:48:10 - [] ----D C:\ProgramData\AVAST Software
O43 - CFD: 22/01/2013 - 17:46:50 - [] -SH-D C:\ProgramData\Bureau
O43 - CFD: 08/06/2012 - 18:03:01 - [] ----D C:\ProgramData\CLSK
O43 - CFD: 27/05/2013 - 11:52:26 - [] --H-D C:\ProgramData\Common Files
O43 - CFD: 04/02/2013 - 18:53:55 - [] ----D C:\ProgramData\CyberLink
O43 - CFD: 14/07/2009 - 05:53:55 - [] -SH-D C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - 05:53:55 - [] -SH-D C:\ProgramData\Documents
O43 - CFD: 10/03/2015 - 11:15:34 - [] ----D C:\ProgramData\DonationCoder
O43 - CFD: 13/04/2012 - 11:43:16 - [0] ----D C:\ProgramData\Evernote
O43 - CFD: 22/01/2013 - 17:46:51 - [] -SH-D C:\ProgramData\Favoris
O43 - CFD: 14/07/2009 - 05:53:55 - [] -SH-D C:\ProgramData\Favorites
O43 - CFD: 08/06/2012 - 18:03:00 - [] ----D C:\ProgramData\install_clap
O43 - CFD: 12/03/2015 - 14:53:58 - [] ----D C:\ProgramData\Malwarebytes
O43 - CFD: 17/02/2013 - 18:27:09 - [] ----D C:\ProgramData\McAfee
O43 - CFD: 01/01/2013 - 14:28:41 - [] ----D C:\ProgramData\MediaMan
O43 - CFD: 22/01/2013 - 17:46:51 - [] -SH-D C:\ProgramData\Menu Démarrer
O43 - CFD: 21/12/2014 - 22:35:13 - [] -S--D C:\ProgramData\Microsoft
O43 - CFD: 22/01/2013 - 17:46:51 - [] -SH-D C:\ProgramData\Modèles
O43 - CFD: 22/01/2013 - 18:36:17 - [] ----D C:\ProgramData\Mozilla
O43 - CFD: 12/08/2014 - 15:56:28 - [] ----D C:\ProgramData\Norton
O43 - CFD: 13/04/2012 - 12:09:49 - [] ----D C:\ProgramData\NortonInstaller
O43 - CFD: 22/01/2013 - 17:51:29 - [] ----D C:\ProgramData\oem
O43 - CFD: 13/04/2012 - 11:44:23 - [] ----D C:\ProgramData\Packard Bell
O43 - CFD: 13/08/2014 - 13:47:57 - [] ----D C:\ProgramData\Skype
O43 - CFD: 01/01/2013 - 14:29:53 - [] ----D C:\ProgramData\SlimSUF
O43 - CFD: 14/07/2009 - 05:53:55 - [] -SH-D C:\ProgramData\Start Menu
O43 - CFD: 08/06/2012 - 18:08:48 - [] ----D C:\ProgramData\Temp
O43 - CFD: 14/07/2009 - 05:53:55 - [] -SH-D C:\ProgramData\Templates
O43 - CFD: 27/05/2013 - 11:53:37 - [] ----D C:\ProgramData\TuneUp Software
O43 - CFD: 01/03/2013 - 21:48:17 - [] ----D C:\ProgramData\VirtualizedApplications
O43 - CFD: 13/04/2012 - 11:42:44 - [] ----D C:\ProgramData\WildTangent
O43 - CFD: 24/03/2015 - 18:36:24 - [] ----D C:\ProgramData\WindowsMangerProtect =>PUP.Fuyu
O43 - CFD: 27/05/2013 - 11:52:27 - [] -SH-D C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
O43 - CFD: 07/02/2013 - 05:41:47 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 07/02/2013 - 05:41:47 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 27/05/2013 - 11:52:27 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
O43 - CFD: 07/02/2013 - 05:41:47 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 07/02/2013 - 05:41:45 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
O43 - CFD: 07/02/2013 - 05:41:45 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 17/02/2013 - 23:25:36 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (Français)
O43 - CFD: 13/08/2014 - 13:07:33 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 23/09/2014 - 18:03:44 - [] -S--D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.1
O43 - CFD: 07/02/2013 - 05:41:45 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Packard Bell - Security & Support
O43 - CFD: 10/03/2015 - 11:15:30 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ProcessTamer
O43 - CFD: 13/08/2014 - 13:47:40 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 07/02/2013 - 05:41:45 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Social Networks
O43 - CFD: 14/12/2014 - 17:17:51 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 07/02/2013 - 05:41:45 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video Web Camera
O43 - CFD: 16/08/2014 - 22:03:50 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 07/02/2013 - 05:41:45 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
O43 - CFD: 25/03/2015 - 14:28:49 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP =>.Nicolas Coolman
O43 - CFD: 30/01/2013 - 11:50:16 - [] ----D C:\Users\Artemis\AppData\Roaming\Adobe
O43 - CFD: 22/01/2013 - 18:35:04 - [] ----D C:\Users\Artemis\AppData\Roaming\Advernet =>Hijacker.Proxy
O43 - CFD: 10/03/2015 - 11:10:53 - [] ----D C:\Users\Artemis\AppData\Roaming\Apple Computer
O43 - CFD: 31/12/2013 - 21:07:00 - [] ----D C:\Users\Artemis\AppData\Roaming\AVAST Software
O43 - CFD: 04/02/2013 - 18:53:54 - [] ----D C:\Users\Artemis\AppData\Roaming\CyberLink
O43 - CFD: 27/05/2013 - 11:54:36 - [] ----D C:\Users\Artemis\AppData\Roaming\DVDVideoSoft
O43 - CFD: 22/01/2013 - 17:49:35 - [] ----D C:\Users\Artemis\AppData\Roaming\Identities
O43 - CFD: 13/04/2012 - 12:13:03 - [] ----D C:\Users\Artemis\AppData\Roaming\Macromedia
O43 - CFD: 01/01/2015 - 14:49:09 - [] ----D C:\Users\Artemis\AppData\Roaming\MediaMan
O43 - CFD: 17/02/2013 - 23:29:48 - [] -S--D C:\Users\Artemis\AppData\Roaming\Microsoft
O43 - CFD: 22/01/2013 - 18:37:11 - [] ----D C:\Users\Artemis\AppData\Roaming\Mozilla
O43 - CFD: 29/08/2014 - 05:48:55 - [] ----D C:\Users\Artemis\AppData\Roaming\OpenOffice
O43 - CFD: 21/02/2015 - 15:29:19 - [] ----D C:\Users\Artemis\AppData\Roaming\Opera Software
O43 - CFD: 16/03/2015 - 08:20:04 - [] ----D C:\Users\Artemis\AppData\Roaming\SoftGrid Client
O43 - CFD: 17/02/2013 - 23:26:34 - [0] ----D C:\Users\Artemis\AppData\Roaming\TP
O43 - CFD: 27/05/2013 - 11:53:37 - [] ----D C:\Users\Artemis\AppData\Roaming\TuneUp Software
O43 - CFD: 30/04/2013 - 17:47:46 - [] ----D C:\Users\Artemis\AppData\Roaming\Unity
O43 - CFD: 25/03/2015 - 14:31:52 - [] ----D C:\Users\Artemis\AppData\Roaming\uTorrent =>P2P.µTorrent
O43 - CFD: 17/03/2015 - 18:55:23 - [] ----D C:\Users\Artemis\AppData\Roaming\vlc
O43 - CFD: 03/05/2013 - 16:48:26 - [0] ----D C:\Users\Artemis\AppData\Roaming\Windows Live Writer
O43 - CFD: 03/05/2013 - 15:37:03 - [] ----D C:\Users\Artemis\AppData\Roaming\WinRAR
O43 - CFD: 25/03/2015 - 14:31:44 - [] ----D C:\Users\Artemis\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 25/02/2015 - 18:09:57 - [] ----D C:\Users\Artemis\AppData\Local\Adobe
O43 - CFD: 21/03/2015 - 19:17:24 - [0] ----D C:\Users\Artemis\AppData\Local\adslTV
O43 - CFD: 09/03/2015 - 15:23:17 - [] ----D C:\Users\Artemis\AppData\Local\Apple
O43 - CFD: 09/03/2015 - 15:30:04 - [] ----D C:\Users\Artemis\AppData\Local\Apple Computer
O43 - CFD: 22/01/2013 - 17:47:10 - [] -SH-D C:\Users\Artemis\AppData\Local\Application Data
O43 - CFD: 26/12/2014 - 17:30:52 - [] ----D C:\Users\Artemis\AppData\Local\Chromium
O43 - CFD: 04/02/2013 - 18:53:33 - [] ----D C:\Users\Artemis\AppData\Local\CyberLink
O43 - CFD: 17/02/2015 - 18:26:43 - [] ----D C:\Users\Artemis\AppData\Local\Diagnostics
O43 - CFD: 06/12/2014 - 17:19:55 - [] -SH-D C:\Users\Artemis\AppData\Local\EmieBrowserModeList
O43 - CFD: 06/12/2014 - 17:19:55 - [] -SH-D C:\Users\Artemis\AppData\Local\EmieSiteList
O43 - CFD: 06/12/2014 - 17:19:55 - [] -SH-D C:\Users\Artemis\AppData\Local\EmieUserList
O43 - CFD: 16/03/2015 - 14:40:44 - [] ----D C:\Users\Artemis\AppData\Local\Google
O43 - CFD: 22/01/2013 - 17:47:10 - [] -SH-D C:\Users\Artemis\AppData\Local\Historique
O43 - CFD: 22/01/2013 - 23:02:39 - [] ----D C:\Users\Artemis\AppData\Local\Macromedia
O43 - CFD: 16/01/2015 - 19:45:41 - [] ----D C:\Users\Artemis\AppData\Local\Microsoft
O43 - CFD: 28/12/2013 - 13:24:33 - [] ----D C:\Users\Artemis\AppData\Local\Mozilla
O43 - CFD: 21/02/2015 - 15:29:22 - [] ----D C:\Users\Artemis\AppData\Local\Opera Software
O43 - CFD: 26/12/2014 - 17:29:36 - [] ----D C:\Users\Artemis\AppData\Local\Programs
O43 - CFD: 17/02/2013 - 23:25:58 - [] ----D C:\Users\Artemis\AppData\Local\SoftGrid Client
O43 - CFD: 25/03/2015 - 14:28:55 - [] ----D C:\Users\Artemis\AppData\Local\Temp
O43 - CFD: 22/01/2013 - 17:47:10 - [] -SH-D C:\Users\Artemis\AppData\Local\Temporary Internet Files
O43 - CFD: 28/05/2013 - 11:33:19 - [] ----D C:\Users\Artemis\AppData\Local\VirtualStore
O43 - CFD: 01/03/2015 - 10:13:10 - [] ----D C:\Users\Artemis\AppData\Local\Windows Live
O43 - CFD: 03/05/2013 - 16:48:44 - [] ----D C:\Users\Artemis\AppData\Local\Windows Live Writer
O43 - CFD: 07/02/2013 - 05:41:46 - [] R---D C:\Users\Artemis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 16/03/2015 - 14:25:22 - [] R---D C:\Users\Artemis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 29/01/2015 - 21:54:52 - [] ----D C:\Users\Artemis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\adsl TV
O43 - CFD: 07/02/2013 - 05:41:46 - [] R---D C:\Users\Artemis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 16/03/2015 - 14:13:00 - [] ----D C:\Users\Artemis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
O43 - CFD: 16/03/2015 - 14:25:22 - [] R---D C:\Users\Artemis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
~ Program Folder: 174 Scanned in 00mn 03s