Pc lenovo lent

Fermé
ptite-Audrey Messages postés 2 Date d'inscription samedi 16 mai 2015 Statut Membre Dernière intervention 16 mai 2015 - 16 mai 2015 à 13:43
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 - 16 mai 2015 à 22:57
bonjour a tous,
je ne sais pas si je suis dans la bonne rubrique, donc merci de ne pas hurler, si ce n est pas le cas.
voila, j ai un probleme avec mon pc portable, il est super lent, mais pourtant tout neuf. j ai installé Zhpdiag pour le scanner. le seul probleme, c est que ce maudit pc m empeche de poster le lien. je ne peux rien faire avec, je suis infestee de pubs, mon anti virus ( norton) bloque le moindre programme que je tente de telecharger.
ah oui, autre chose, je suis une super quiche en informatique. merci
aux courageux, qui oseront s arracher les cheveux pour m aider.

a bientot... je l espere
A voir également:

1 réponse

Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 628
16 mai 2015 à 13:47
Salut,

Suis ce tutoriel FRST: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/
(et bien prendre le temps de lire afin d'appliquer correctement - tout y est expliqué).
Télécharge et lance le scan FRST, cela va générer trois rapports FRST :
  • FRST.txt
  • Shortcut.txt
  • Additionnal.txt


Envoie, comme expliqué, ces trois rapports sur le site http://pjjoint.malekal.com et en retour donne les trois liens pjjoint qui mènent à ses rapports ici dans une nouvelle réponse afin que l'on puisse les consulter.

0
ptite-Audrey Messages postés 2 Date d'inscription samedi 16 mai 2015 Statut Membre Dernière intervention 16 mai 2015
16 mai 2015 à 22:01
coucou,

merci pour ta réponse. j'avais suivi un lien sur un autre site et ca m'a donné ça
~ Rapport de ZHPDiag v2015.5.13.48 - Nicolas Coolman (13/05/2015)
~ Lancé par audrey (16/05/2015 13:05:42)
~ Facebook : https://www.facebook.com/nicolascoolman1
~ Adresse du Forum https://nicolascoolman.eu
~ Traduit par Nicolas Coolman
~ Etat de la version : Version à jour.
~ Liste blanche : Désactivée par l'utilisateur
~ Elévation des Privilèges : OK
~ User Account Control (UAC): Activate by user


---\\ Navigateurs Internet
MSIE: Internet Explorer v11.0.9600.17801
GCIE: Google Chrome v42.0.2311.152 (Defaut)

---\\ Informations sur les produits Windows
~ Langage: Français
Windows Server License Manager Script : OK
~ Windows(R) Operating System, OEM_DM channel
Windows ID Activation : OK
~ Windows Partial Key : G29KF
Windows License : OK
~ Windows Remaining Initializations Number : 998
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK
Windows 8.1 Connected, 64-bit (Build 9600)

---\\ Logiciels de protection du système
Windows Defender W8 (Deactivate)

---\\ Logiciels d'optimisation du système
CCleaner v5.04

---\\ Logiciels de partage PeerToPeer

---\\ Surveillance de Logiciels

---\\ Informations sur le système
~ Processor: AMD64 Family 22 Model 48 Stepping 1, AuthenticAMD
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3544 MB (55% free)
System Restore: Activé (Enable)
System drive C: has 385 GB (90%) free of 426 GB

---\\ Mode de connexion au système
~ Computer Name: AUDREYPCBIS
~ User Name: audrey
~ All Users Names: HomeGroupUser$, audrey, Administrateur,
~ Unselected Option: None
Logged in as Administrator

---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\audrey\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\audrey\AppData\Roaming\
~ %Desktop% : C:\Users\audrey\Desktop\
~ %Favorites% : C:\Users\audrey\Favorites\
~ %LocalAppData% : C:\Users\audrey\AppData\Local\
~ %StartMenu% : C:\Users\audrey\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 385 Go of 426 Go)
D: Hard drive, Flash drive, Thumb drive (Free 23 Go of 25 Go)
E: CD-ROM drive (Not Inserted)



---\\ Etat du Centre de Sécurité Windows
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Security Center: 41 Scanned in 00mn 00s



---\\ Recherche particulière de fichiers génériques
[MD5.C10A66189DC8C090E7C84873EDCEBC88] - (.Microsoft Corporation - Explorateur Windows.) (.28/01/2015 - 00:47:12.) -- C:\Windows\Explorer.exe [2501368]
[MD5.A570A64292214C43E0BA50E6A72A6380] - (.Microsoft Corporation - Application de démarrage de Windows.) (.29/10/2014 - 02:25:54.) -- C:\Windows\System32\Wininit.exe [145920]
[MD5.F0289B3A341429117696F0279DA977B6] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.21/04/2015 - 16:27:25.) -- C:\Windows\System32\wininet.dll [2352128]
[MD5.EC498BAE1F0D3E0E401C963F8D76C437] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.29/10/2014 - 02:22:52.) -- C:\Windows\System32\Winlogon.exe [572416]
[MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - (.Microsoft Corporation - Bibliothèque de licences.) (.18/03/2014 - 10:54:52.) -- C:\Windows\System32\sppcomapi.dll [447488]
[MD5.374E27295F0A9DCAA8FC96370F9BEEA5] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) (.02/09/2014 - 14:08:26.) -- C:\Windows\system32\Drivers\AFD.sys [563200]
[MD5.74B14192CF79A72F7536B27CB8814FBD] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.22/08/2013 - 13:43:41.) -- C:\Windows\system32\Drivers\atapi.sys [26464]
[MD5.2FA6510E33F7DEFEC03658B74101A9B9] - (.Microsoft Corporation - CD-ROM File System Driver.) (.22/08/2013 - 12:40:15.) -- C:\Windows\system32\Drivers\Cdfs.sys [88576]
[MD5.C6796EA22B513E3457514D92DCDB1A3D] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.22/08/2013 - 09:46:35.) -- C:\Windows\system32\Drivers\Cdrom.sys [164352]
[MD5.A03F362C5557E238CBFA914689C77248] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.06/03/2014 - 10:22:50.) -- C:\Windows\system32\Drivers\DfsC.sys [134144]
[MD5.D4B7ED39C7900384D9E5C1283F1E7926] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.24/07/2014 - 12:45:39.) -- C:\Windows\system32\Drivers\HDAudBus.sys [76800]
[MD5.D887446F3F6051C60C26F4FD1FC8D43F] - (.Microsoft Corporation - Pilote de port i8042.) (.07/10/2014 - 04:29:50.) -- C:\Windows\system32\Drivers\i8042prt.sys [107520]
[MD5.B7342B3C58E91107F6E946A93D9D4EFD] - (.Microsoft Corporation - IP Network Address Translator.) (.18/03/2014 - 10:54:55.) -- C:\Windows\system32\Drivers\IpNat.sys [142848]
[MD5.31233271EDE50D1BBB220F78AFA60486] - (.Microsoft Corporation - Minirdr SMB Windows NT.) (.08/10/2014 - 08:32:10.) -- C:\Windows\system32\Drivers\MRxSmb.sys [405504]
[MD5.0217532E19A748F0E5D569307363D5FD] - (.Microsoft Corporation - MBT Transport driver.) (.22/08/2013 - 12:37:02.) -- C:\Windows\system32\Drivers\netBT.sys [282624]
[MD5.7F68063A5A0461E02BC860CE0E6BFDDC] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.15/10/2014 - 09:32:37.) -- C:\Windows\system32\Drivers\ntfs.sys [2025792]
[MD5.764B1121867B2D9B31C491668AC72B2B] - (.Microsoft Corporation - Pilote de port parallèle.) (.22/08/2013 - 12:40:02.) -- C:\Windows\system32\Drivers\Parport.sys [94208]
[MD5.BBB6272B7F46C4640A8CDB8A70C3450F] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.22/08/2013 - 12:35:51.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [120832]
[MD5.680C1DAE268B6FB67FA21B389A8B79EF] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) (.18/03/2014 - 10:37:57.) -- C:\Windows\system32\Drivers\rdpdr.sys [195584]
[MD5.FFF28F9F6823EB1756C60F1649560BBF] - (.Microsoft Corporation - TDI Translation Driver.) (.22/08/2013 - 14:25:35.) -- C:\Windows\system32\Drivers\tdx.sys [107520]
[MD5.64CA2B4A49A8EAF495E435623ECCE7DB] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.19/06/2014 - 03:13:36.) -- C:\Windows\system32\Drivers\volsnap.sys [310080]
~ Generic Processes: Scanned in 00mn 00s



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 2/17
~ Mes Favoris (My Favorites) : 1/8
~ Mes Documents (My Documents) : 2/39
~ Mon Bureau (My Desktop) : 1/9
~ Menu demarrer (Programs) : 1/28
~ Hidden Files: Scanned in 00mn 00s



---\\ Processus lancés
[MD5.C049C40CAEE8900130BD5F80B594CC7B] - (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [95192] [PID.3828]
[MD5.22817081C475BA9506C34BBECC99279B] - (.CyberLink - CyberLink MediaLibrary Service.) -- C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvc_P2G8.exe [110344] [PID.5528]
[MD5.4E7B91EC801E7883D46BA4BFA86C37B2] - (.Lenovo - Lenovo Solution Center Notifications.) -- C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [852768] [PID.5624]
[MD5.D12326DFAF171CE1A5B2ADBDCA0150BA] - (.ClientConnect LTD - Lenovo Browser Guard.) -- C:\Program Files (x86)\LenovoBrowserGuard\LenovoBrowserGuard\bin\cltmng.exe [4798280] [PID.2304] =>PUP.ClientConnect
[MD5.45AA6841F97D8A9C390C22CDCD910D71] - (.ClientConnect LTD - Lenovo Browser Guard.) -- C:\Program Files (x86)\LenovoBrowserGuard\UI\bin\cltmngui.exe [3190600] [PID.2544] =>PUP.ClientConnect
[MD5.A566EC0E294991DDE9306878164FB8B4] - (...) -- C:\Program Files (x86)\Lenovo\CCSDK\WinGather.exe [397296] [PID.4216]
[MD5.D6F9E7D66604E063FAC7B5E0325E0281] - (...) -- C:\ProgramData\68f7eaff-0da4-47f4-8262-425ca2a087dd\plugins\3\plugin.exe [480520] [PID.3396]
[MD5.CBB4882C7174EB1569A7826FCF32C106] - (.Pas de propriétaire - NotificationsViewHost.) -- C:\Program Files (x86)\Lenovo\Lenovo Messenger\NotificationsViewHost.exe [462592] [PID.1744]
[MD5.B7CC155422176FE83E6C8961B7FCEA71] - (.Pokki - Host App Service.) -- C:\Users\audrey\AppData\Local\Pokki\Engine\HostAppService.exe [7853056] [PID.2900]
[MD5.CC05C14EEFF5E7813A49718BA88E59B0] - (.Microsoft Corporation - COM Surrogate.) -- C:\WINDOWS\SysWOW64\DllHost.exe [17216] [PID.4860]
[MD5.BC25F2634B8399A462A6957760AF06F2] - (.Symantec Corporation - Norton 360.) -- C:\Program Files (x86)\NortonInstaller\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360\A5E82D02\21.7.0.11\InstStub.exe [1072568] [PID.5472]
[MD5.46769F961E4AB53D76A9E734867E0E54] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [8208896] [PID.2312]
~ Processes Running: Scanned in 00mn 00s



---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\audrey\AppData\Local\Google\Chrome\User Data\Default\Preferences

---\\ Liste des dossiers d'extension Google Chrome
G2 - EXT: C:\Users\audrey\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [__MSG_appName__]
G2 - EXT: C:\Users\audrey\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [__MSG_appName__]
G2 - EXT: C:\Users\audrey\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [__MSG_appName__]
G2 - EXT: C:\Users\audrey\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [__MSG_appName__]
G2 - EXT: C:\Users\audrey\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [__MSG_appName__]
G2 - EXT: C:\Users\audrey\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejbdobdndcjhdmljipngpeoekdinlohe [Norton Home Page for Chrome]
G2 - EXT: C:\Users\audrey\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [__MSG_appName__]
G2 - EXT: C:\Users\audrey\AppData\Local\Google\Chrome\User Data\Default\Extensions\gaeefepfglcilcepkkdgdpiocemcclel [__MSG_appName__]
G2 - EXT: C:\Users\audrey\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [Bookmark Manager]
G2 - EXT: C:\Users\audrey\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [Chrome Hotword Shared Module]
G2 - EXT: C:\Users\audrey\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [__MSG_APP_NAME__]
G2 - EXT: C:\Users\audrey\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [__MSG_appName__]
~ Google Lines Browser: 24 Scanned in 00mn 02s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
P2 - FPN: [HKLM] [@microsoft.com/OfficeAuthz,version=14.0] - (.Microsoft Corporation - Office Authorization plug-in for NPAPI browsers.) -- C:\Program Files\Microsoft Office\Office14\NPAUTHZ.dll
~ Firefox Browser: 1 Scanned in 00mn 00s



---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.microsoft.com/fr-fr/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = https://www.microsoft.com/fr-fr/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?cobrand=lenovo13.msn.com&ocid=LENDHP&pc=MALNJS
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.microsoft.com/fr-fr/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.microsoft.com/fr-fr/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.microsoft.com/fr-fr/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.microsoft.com/fr-fr/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.9600.17728 (winblue_r9.150312-1720)) -- C:\Windows\SysWOW64\ieframe.dll
R3 - URLSearchHook: WebProtector [64Bits] - {CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D} . (.Web Protector - Web Protector Toolbar.) (27.2.0.1792) -- C:\Program Files (x86)\WebProtector\WebProtector.dll =>PUP.WebProtector
~ IE Browser: 17 Scanned in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s



---\\ Hosts file redirection (O1)
~ Le fichier hôte est sain (The hosts file is clean) (21)
~ Hosts File: Scanned in 00mn 00s



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Groove GFS Browser Helper [64Bits] - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.dll
O2 - BHO: Google Toolbar Helper [64Bits] - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Crazy Score [64Bits] - {f439aa7e-a2a0-4635-99a2-164180e848ca} . (...) -- C:\Program Files (x86)\Crazy Score\Extensions\f439aa7e-a2a0-4635-99a2-164180e848ca.dll
O2 - BHO: (no name) [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} Clé orpheline
~ BHO: 6 Scanned in 00mn 00s



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: Google Toolbar - [HKLM]{2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
~ Toolbar: Scanned in 00mn 00s



---\\ Applications lancées au démarrage du système (O4)
O4 - HKLM\..\Run: [ForteConfig] . (.Pas de propriétaire - FMAPP Application.) -- C:\Program Files\Conexant\ForteConfig\fmapp.exe
O4 - HKLM\..\Run: [SmartAudio] . (.Conexant Systems, Inc. - SmartAudio CPL (32bit).) -- C:\Program Files\CONEXANT\SAII\SACpl.exe
O4 - HKLM\..\Run: [cAudioFilterAgent] . (.Conexant Systems, Inc. - Conexant High Definition Audio Filter Agent.) -- C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe
O4 - HKLM\..\Run: [ETDCtrl] C:\Program Files (x86)\Elantech\ETDCtrl.exe (.not file.)
O4 - HKLM\..\Run: [BtServer] . (.Realtek Semiconductor Corporation - Realtek Bluetooth BTServer Application.) -- C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe
O4 - HKLM\..\Run: [RtsFT] . (.Realtek semiconductor - RTFTrack.) -- C:\Windows\RTFTrack.exe
O4 - HKLM\..\Run: [PhoneCompanion] . (.Lenovo - Lenovo Phone Companion.) -- C:\Program Files\Lenovo PhoneCompanion\Phone Companion.exe
O4 - HKLM\..\Run: [Energy Manager] . (.Lenovo(beijing) Limited - Lenovo Energy Manager.) -- C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe
O4 - HKLM\..\Run: [Lenovo Utility] . (.Lenovo(beijing) Limited - Lenovo Utility.) -- C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe
O4 - HKCU\..\Run: [Pokki] %LOCALAPPDATA%\Pokki\Engine\HostAppServiceUpdater.exe" /LOGON
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_0C3DE8C88123F7A031D00EF697CF4A3E] . (.The Chromium Authors - Chromium.) -- C:\Users\audrey\AppData\Local\Chromium\Application\chrome.exe
O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe =>.Advanced Micro Devices, Inc
O4 - HKLM\..\Wow6432Node\Run: [CLMLServer_For_P2G8] . (.CyberLink - CyberLink MediaLibrary Service.) -- C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvc_P2G8.exe
O4 - HKLM\..\Wow6432Node\Run: [CLVirtualDrive] . (.CyberLink Corp. - CyberLink Virtual Drive.) -- C:\Program Files (x86)\Lenovo\Power2Go\VirtualDrive.exe
O4 - HKLM\..\Wow6432Node\Run: [BCSSync] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-142262107-4085524199-2421343257-1002\..\Run: [Pokki] %LOCALAPPDATA%\Pokki\Engine\HostAppServiceUpdater.exe" /LOGON
O4 - HKUS\S-1-5-21-142262107-4085524199-2421343257-1002\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd
O4 - HKUS\S-1-5-21-142262107-4085524199-2421343257-1002\..\Run: [GoogleChromeAutoLaunch_0C3DE8C88123F7A031D00EF697CF4A3E] . (.The Chromium Authors - Chromium.) -- C:\Users\audrey\AppData\Local\Chromium\Application\chrome.exe
~ Application: Scanned in 00mn 00s



---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ IE Control Panel: 1 Scanned in 00mn 00s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\WINDOWS\system32\napinsp.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\WINDOWS\system32\pnrpnsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\WINDOWS\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\WINDOWS\system32\NLAapi.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\system32\mswsock.dll =>.Microsoft Corporation
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\WINDOWS\system32\winrnr.dll
O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\WINDOWS\system32\wshbth.dll
~ Winsock: 7 Scanned in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{67C60EC8-3906-4EBE-A003-B8F091796583}: DhcpNameServer = 150.203.1.2
O17 - HKLM\System\CCS\Services\Tcpip\..\{9E4F8520-9493-40F5-A5B1-1CA1A9B474D1}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\..\{67C60EC8-3906-4EBE-A003-B8F091796583}: DhcpDomain = 150.203.1.2
O17 - HKLM\System\CCS\Services\Tcpip\..\{9E4F8520-9493-40F5-A5B1-1CA1A9B474D1}: DhcpDomain = lan
O17 - HKLM\System\CS1\Services\Tcpip\..\{67C60EC8-3906-4EBE-A003-B8F091796583}: DhcpNameServer = 150.203.1.2
O17 - HKLM\System\CS1\Services\Tcpip\..\{9E4F8520-9493-40F5-A5B1-1CA1A9B474D1}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{67C60EC8-3906-4EBE-A003-B8F091796583}: DhcpDomain = 150.203.1.2
O17 - HKLM\System\CS1\Services\Tcpip\..\{9E4F8520-9493-40F5-A5B1-1CA1A9B474D1}: DhcpDomain = lan
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
~ Domain: Scanned in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: text/xml [64Bits] - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - AppInit_DLLs: . (.ClientConnect LTD - Lenovo Browser Guard.) - C:\Program Files (x86)\LenovoBrowserGuard\LenovoBrowserGuard\bin\SPVC64Loader.dll =>PUP.ClientConnect
~ AppInit DLL: Scanned in 00mn 00s



---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ SSODL: 1 Scanned in 00mn 00s



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe
O23 - Service: AMD FUEL Service (AMD FUEL Service) . (.Advanced Micro Devices, Inc. - Service Fusion Utility.) - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: BTDevManager (BTDevManager) . (.Pas de propriétaire - Realtek Bluetooth BTDevManager Service Appl.) - C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe
O23 - Service: CCSDK (CCSDK) . (...) - C:\Program Files (x86)\Lenovo\CCSDK\CCSDK.exe
O23 - Service: Lenovo Browser Guard Service (CltMngSvc) . (.ClientConnect LTD - Lenovo Browser Guard.) - C:\Program Files (x86)\LenovoBrowserGuard\Main\bin\CltMngSvc.exe =>PUP.ClientConnect
O23 - Service: C:\WINDOWS\system32\CxAudMsg64.exe (CxAudMsg) . (.Conexant Systems Inc. - Conexant Audio Message Service.) - C:\WINDOWS\system32\CxAudMsg64.exe
O23 - Service: Elan Service (ETDService) . (.ELAN Microelectronics Corp. - Elan Service.) - C:\Program Files\Elantech\ETDService.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc
O23 - Service: Lenovo System Agent Service (Lenovo System Agent Service) . (.LENOVO INCORPORATED. - Lenovo System Agent Service.) - C:\Program Files\Lenovo\iMController\SystemAgentService.exe
O23 - Service: Lenovo WiFiHotspot Service (LenovoWiFiHotspotSvr) . (.Lenovo(beijing) Limited - Lenovo WiFiHotspot.) - C:\Windows\System32\LenovoWiFiHotspotSvr.exe
O23 - Service: LiveUpdateWPP Manager (LiveUpdateWPP Manager) . (.LiveWPPUpdate - Maintaining Web Protector Plus synchronized.) - C:\Program Files (x86)\LiveUpdateWPP\LiveUpdateWPP.exe =>PUP.BProtector
O23 - Service: LUService (LUService) . (.Lenovo(beijing) Limited - Lenovo Updates Service.) - C:\Program Files (x86)\Lenovo\Lenovo Updates\LUService.exe
O23 - Service: Maxthon Core Update Service (MaxthonUpdateSvc) . (.Maxthon - Pas de description.) - C:\Program Files (x86)\Maxthon\Modules\Service\Update\MaxthonUpdateSvc.exe
O23 - Service: NitroPDFDriverCreatorReadSpool9 (NitroDriverReadSpool9) . (.Nitro PDF Software - Nitro PDF Spool Service.) - C:\Program Files\Common Files\Nitro\Pro\9.0\NitroPDFDriverService9x64.exe
O23 - Service: Nalpeiron Licensing Service (nlsX86cc) . (.Nalpeiron Ltd. - This service enables products that use the.) - C:\WINDOWS\SysWOW64\NLSSRV32.exe
O23 - Service: Lenovo PhoneCompanionPusher Service (PhoneCompanionPusher) . (.Lenovo - PhoneCompanionPusher.) - C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe
O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) . (.Pas de propriétaire - RichVideo Module.) - C:\Program Files\CyberLink\Shared files\RichVideo64.exe
O23 - Service: Conexant SmartAudio service (SAService) . (.Conexant Systems, Inc. - SmartAudio Service Application.) - C:\Windows\SysWOW64\SAsrv.exe
O23 - Service: Service Mgr CrazyScore (Service Mgr CrazyScore) . (...) - C:\ProgramData\68f7eaff-0da4-47f4-8262-425ca2a087dd\plugincontainer.exe =>PUP.CrazyScore
O23 - Service: (tbaseprovisioning) . (.Advanced Micro Devices, Inc. - tbaseprovisioning.) - C:\Windows\SysWOW64\tbaseprovisioning.exe
O23 - Service: TeamViewer 10 (TeamViewer) . (.TeamViewer GmbH - TeamViewer 10.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: Update Mgr CrazyScore (Update Mgr CrazyScore) . (...) - C:\Program Files (x86)\Common Files\68f7eaff-0da4-47f4-8262-425ca2a087dd\updater.exe =>PUP.CrazyScore
O23 - Service: VeriFaceSrv (VeriFaceSrv) . (...) - C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfConnectorService.exe
~ Services: 23 Scanned in 00mn 11s



---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Desktop Component: 4 Scanned in 00mn 00s



---\\ Enumère les données de BootExecute (BEX) (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (aswBoot.exe /M:5cbec4dd9 /wow /dir:"C:\Program Files\AVAST Software\Avast") - File not found
~ BEX: 2 Scanned in 00mn 00s



---\\ Tâches planifiées en automatique (O39)
[MD5.A75228DE9117A017BC7A3B44953B2648] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [5529880]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA1d0694bbc29f1ab] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648]
[MD5.0855F59DD1171C18B30A3C8338D85E18] [APT] [Maxthon Update] (.Maxthon International ltd..) -- C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe [256824]
[MD5.C049C40CAEE8900130BD5F80B594CC7B] [APT] [PDVDServ Task] (.CyberLink Corp..) -- C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [95192]
[MD5.00000000000000000000000000000000] [APT] [Web Protector Plus] (...) -- C:\Program Files (x86)\WebProtectorPlus\WebProtectorPlus.exe (.not file.) [0] =>PUP.WebProtector
[MD5.00000000000000000000000000000000] [APT] [Web Protector Plus Server] (...) -- C:\Program Files (x86)\WebProtectorPlus\server64\WebProtectorPlusServer.exe (.not file.) [0] =>PUP.WebProtector
[MD5.48B4A3D1010B614DE3AD84373D00821C] [APT] [Dependency Package Auto Update] (...) -- C:\Program Files\Lenovo\iMController\AutoUpdate.exe [74168]
[MD5.5FD8CD6A9E437AFD78A44792086B3F09] [APT] [Experience Improvement] (.Lenovo.) -- C:\Program Files\Lenovo\ExperienceImprovement\LenovoExperienceImprovement.exe [291072]
[MD5.4ED257E79FF969D096B40BFE72EB02CE] [APT] [LSCHardwareScan] (...) -- C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [148768]
[MD5.4ED257E79FF969D096B40BFE72EB02CE] [APT] [LSCHardwareScanPostpone] (...) -- C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [148768]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1096]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [1096]
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1108]
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [1108]
O39 - APT: GoogleUpdateTaskMachineUA1d0694bbc29f1ab - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d0694bbc29f1ab.job [1100]
O39 - APT: GoogleUpdateTaskMachineUA1d0694bbc29f1ab - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA1d0694bbc29f1ab [1100]
~ Scheduled Task: 18 Scanned in 00mn 07s



---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe =>.Microsoft Corporation
O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Disable SSL3 [64Bits] - {7D715857-A67C-4C2F-A929-038448584D63} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\WINDOWS\System32\ie4uinit.exe
O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll
~ Active Setup: 10 Scanned in 00mn 00s



---\\ Pilotes lancés au démarrage du système (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: C:\Windows\System32\drivers\ahcache.sys (ahcache) . (.Microsoft Corporation - Application Compatibility Cache.) - C:\Windows\System32\DRIVERS\ahcache.sys
O41 - Driver: (BasicDisplay) . (.Microsoft Corporation - Microsoft Basic Display Driver.) - C:\Windows\system32\drivers\BasicDisplay.sys
O41 - Driver: (BasicRender) . (.Microsoft Corporation - Microsoft Basic Render Driver.) - C:\Windows\system32\drivers\BasicRender.sys
O41 - Driver: cdrom.inf (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys
O41 - Driver: (CLVirtualDrive) . (.CyberLink - It is a virtual device driver which could c.) - C:\Windows\system32\DRIVERS\CLVirtualDrive.sys
O41 - Driver: C:\Windows\System32\drivers\dam.sys (dam) . (.Microsoft Corporation - DAM Kernel Driver.) - C:\Windows\System32\drivers\dam.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (Dfsc) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: mssmbios.inf (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys
O41 - Driver: netnb.inf (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: npsvctrig.inf (npsvctrig) . (.Microsoft Corporation - Named pipe service triggers.) - C:\Windows\system32\drivers\npsvctrig.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\system32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\system32\DRIVERS\tdx.sys
O41 - Driver: C:\Windows\System32\drivers\vwififlt.sys (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\system32\DRIVERS\vwififlt.sys
~ Drivers: 34 Scanned in 00mn 00s



---\\ Logiciels installés (O42)
O42 - Logiciel: AMD Accelerated Video Transcoding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {EB1E97FF-6F5D-7AA8-2AC7-B7530A76A6FC}
O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {665D4B18-EA91-BE16-3212-218C63F5DC4E}
O42 - Logiciel: AMD Quick Stream - (.AppEx Networks.) [HKLM][64Bits] -- {E9EED4AE-682B-4501-9574-D09A21717599}_is1
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {34927EBC-98D4-4D53-98BE-510DF5999F50}
O42 - Logiciel: Buzzdock - (.Alactro LLC.) [HKLM][64Bits] -- {cfd32d46-7d3f-483f-bace-7172aec5592d} =>PUP.BuzzDock
O42 - Logiciel: CCSDK - (.Lenovo.) [HKLM][64Bits] -- {AE75190B-11B4-4F90-8254-DAB275CF2557}_is1
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner
O42 - Logiciel: Catalyst Control Center - Branding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {E6614A2D-1087-B322-3052-1F5C7C8A396B}
O42 - Logiciel: Chromium - (.Chromium.) [HKCU][64Bits] -- Chromium
O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {64BF0187-F3D2-498B-99EA-163AF9AE6EC9}
O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {AF312B06-5C5C-468E-89B3-BE6DE2645722}
O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F}
O42 - Logiciel: Conexant HD Audio - (.Conexant.) [HKLM][64Bits] -- CNXT_AUDIO_HDA
O42 - Logiciel: Crazy Score - (.Crazy Score.) [HKLM][64Bits] -- Crazy Score
O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}
O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- {2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}
O42 - Logiciel: CyberLink PowerDirector 10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}
O42 - Logiciel: CyberLink PowerDirector 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}
O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] -- {1D2682EA-75DD-44B6-BF2D-CD3C49EAD012}
O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] -- {3117B53D-A409-4D99-A0DE-11A1A40696FA}
O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] -- {4430150F-61B3-4142-BE04-EAC68C8DDA18}
O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] -- {4AF6C9BC-D8DB-4286-94D9-474CE54ADAA2}
O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] -- {503B47A9-E34A-4841-ADD7-417191D5DB5E}
O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] -- {546FF45D-2467-4950-AAFB-0A06ACBB6B2C}
O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] -- {5B2190E9-199D-450A-94B3-4D6826C770C2}
O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] -- {5BEFE1E1-F597-4B79-913B-15FFDB25B744}
O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] -- {63DE35C9-B080-4D03-B110-99E14FD35BCE}
O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] -- {65316098-0220-4D5C-B37A-6136083A0897}
O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] -- {E966DBE4-5075-465E-BA81-BC9A3A3204B3}
O42 - Logiciel: Dependency Package Update - (.Lenovo Inc..) [HKLM][64Bits] -- {0788641D-D31A-478D-BB34-C41564AE9F93}
O42 - Logiciel: Dependency Package Update - (.Lenovo Inc..) [HKLM][64Bits] -- {5252431C-288E-409D-ADCF-24407E0E6F70}
O42 - Logiciel: Dependency Package Update - (.Lenovo Inc..) [HKLM][64Bits] -- {FFED38DF-94DC-4FF9-96C1-A6990EDA6B03}
O42 - Logiciel: Dolby Digital Plus Advanced Audio - (.Dolby Laboratories Inc.) [HKLM][64Bits] -- {B0BFC63F-EA07-419E-960B-3FB2ED5DD0B2}
O42 - Logiciel: Energy Manager - (.Lenovo.) [HKLM][64Bits] -- InstallShield_{AC768037-7079-4658-AC24-2897650E0ABE}
O42 - Logiciel: Energy Manager - (.Lenovo.) [HKLM][64Bits] -- {AC768037-7079-4658-AC24-2897650E0ABE}
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {18455581-E099-4BA8-BC6B-F34B2F06600C}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Host App Service - (.Pokki.) [HKCU][64Bits] -- Pokki
O42 - Logiciel: Lenovo Browser Guard - (.ClientConnect LTD.) [HKLM][64Bits] -- LenovoBrowserGuard =>PUP.ClientConnect
O42 - Logiciel: Lenovo Dependency Package - (.Lenovo Group Limited.) [HKLM][64Bits] -- Lenovo Dependency Package_is1
O42 - Logiciel: Lenovo EasyCamera - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}
O42 - Logiciel: Lenovo Experience Improvement - (.Lenovo.) [HKLM][64Bits] -- LenovoExperienceImprovement
O42 - Logiciel: Lenovo FusionEngine - (.Lenovo, Inc..) [HKLM][64Bits] -- Lenovo FusionEngine
O42 - Logiciel: Lenovo Mobile Phone Wireless Import - (.Lenovo.) [HKLM][64Bits] -- InstallShield_{DFB2E0D6-8DDE-49A4-B8F7-03C14DACCBA6}
O42 - Logiciel: Lenovo Mobile Phone Wireless Import - (.Lenovo.) [HKLM][64Bits] -- {DFB2E0D6-8DDE-49A4-B8F7-03C14DACCBA6}
O42 - Logiciel: Lenovo OneKey Recovery - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}
O42 - Logiciel: Lenovo OneKey Recovery - (.CyberLink Corp..) [HKLM][64Bits] -- {46F4D124-20E5-4D12-BE52-EC177A7A4B42}
O42 - Logiciel: Lenovo PhoneCompanion - (.Lenovo.) [HKLM][64Bits] -- InstallShield_{0F82EA83-B0C5-4AB9-9695-DFE92C5FD57B}
O42 - Logiciel: Lenovo PhoneCompanion - (.Lenovo.) [HKLM][64Bits] -- {0F82EA83-B0C5-4AB9-9695-DFE92C5FD57B}
O42 - Logiciel: Lenovo Photo Master - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{BC94C56A-3649-420C-8756-2ADEBE399D33}
O42 - Logiciel: Lenovo Photo Master - (.CyberLink Corp..) [HKLM][64Bits] -- {BC94C56A-3649-420C-8756-2ADEBE399D33}
O42 - Logiciel: Lenovo PowerDVD10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}
O42 - Logiciel: Lenovo PowerDVD10 - (.CyberLink Corp..) [HKLM][64Bits] -- {DEC235ED-58A4-4517-A278-C41E8DAEAB3B}
O42 - Logiciel: Lenovo Solution Center - (.Lenovo Group Limited.) [HKLM][64Bits] -- {13BD494D-9ACD-420B-A291-E145DED92EF6}
O42 - Logiciel: Lenovo Updates - (.Lenovo.) [HKLM][64Bits] -- InstallShield_{A2E1E9F0-0B68-4166-8C7F-85B563B84DF4}
O42 - Logiciel: Lenovo Updates - (.Lenovo.) [HKLM][64Bits] -- {A2E1E9F0-0B68-4166-8C7F-85B563B84DF4}
O42 - Logiciel: Lenovo VeriFace Pro - (.Lenovo.) [HKLM][64Bits] -- Lenovo VeriFace
O42 - Logiciel: Lenovo Web Start - (.Pokki.) [HKCU][64Bits] -- Pokki_04bb6df446330549a2cb8d67fbd1a745025b7bd1
O42 - Logiciel: Lenovo pointing device - (.ELAN Microelectronic Corp..) [HKLM][64Bits] -- Elantech
O42 - Logiciel: LiveUpdateWPP - (.Anti-phishing database updater for Web Protector Plus. This service keeps your computer updated with the newest database of known Internet threats..) [HKLM][64Bits] -- LiveUpdateWPP =>PUP.WebProtector
O42 - Logiciel: Manuels d'utilisateur - (.Lenovo.) [HKLM][64Bits] -- {F07C2CF8-4C53-4EC3-8162-A6221E36EB88}
O42 - Logiciel: Maxthon Cloud Browser - (.Maxthon International Limited.) [HKLM][64Bits] -- Maxthon3
O42 - Logiciel: Metric Collection SDK 35 - (.Lenovo Group Limited.) [HKLM][64Bits] -- {C2B5B5B0-2545-4E94-B4BA-548D4BF0B196}
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe
O42 - Logiciel: Nitro Pro 9 - (.Nitro.) [HKLM][64Bits] -- {7D914F94-B2BC-44EA-9260-D7EE9F20C0A8}
O42 - Logiciel: OEM Application Profile - (.Nom de votre société.) [HKLM][64Bits] -- {8F92E0CF-620B-5C20-F292-59C93567B06D}
O42 - Logiciel: Package de pilotes Windows - Lenovo (ACPIVPC) System (09/24/2013 19.29.2.3 - (.Lenovo.) [HKLM][64Bits] -- EE9B1F2037C580F36D92FA431CC02BFF04C31F15
O42 - Logiciel: Package de pilotes Windows - Lenovo (WUDFRd) LenovoVhid (07/25/2013 10.30. - (.Lenovo.) [HKLM][64Bits] -- 6BCA401E9CBEED970D75F55FA5320F60D11984E9
O42 - Logiciel: REALTEK Bluetooth Driver - (.REALTEK Semiconductor Corp..) [HKLM][64Bits] -- {9D3D8C60-A5EF-4123-B2B9-172095903AB}
O42 - Logiciel: REALTEK Wireless LAN Driver - (.REALTEK Semiconductor Corp..) [HKLM][64Bits] -- {9DAABC60-A5EF-41FF-B2B9-17329590CD5}
O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A}
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
O42 - Logiciel: SHAREit - (.Lenovo Group Limited.) [HKLM][64Bits] -- SHAREit_is1
O42 - Logiciel: Sage 100 Comptabilité - (.Sage.) [HKLM][64Bits] -- {93A837CB-5919-4BBA-B1AE-2E42F0E00794}
O42 - Logiciel: Start Menu - (.Pokki.) [HKCU][64Bits] -- Pokki_Start_Menu
O42 - Logiciel: Superfish Inc. VisualDiscovery - (.Superfish.) [HKLM][64Bits] -- Superfish Inc. VisualDiscovery =>PUP.VisualDiscovery
O42 - Logiciel: TeamViewer 10 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer
O42 - Logiciel: UESDK - (.Lenovo.) [HKLM][64Bits] -- {EB3F6640-58AE-4886-B8BA-466B6939A933}_is1
O42 - Logiciel: User Manuals - (.Lenovo.) [HKLM][64Bits] -- InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}
O42 - Logiciel: Web Protector IE - (.WebProtector.) [HKLM][64Bits] -- WebProtector =>PUP.WebProtector
O42 - Logiciel: Web Protector Plus (uninstall only) - (...) [HKLM][64Bits] -- WebProtectorPlus =>PUP.WebProtector
~ Logic: 60 Scanned in 00mn 00s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\ATI]
[HKCU\Software\AppDataLow]
[HKCU\Software\BugSplat]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\Conexant]
[HKCU\Software\CyberLink]
[HKCU\Software\Elantech]
[HKCU\Software\Google]
[HKCU\Software\ICSW1.8]
[HKCU\Software\Imprimante PDF Sage]
[HKCU\Software\Lenovo]
[HKCU\Software\Macromedia]
[HKCU\Software\Mine]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Netscape]
[HKCU\Software\Nitro]
[HKCU\Software\Norton]
[HKCU\Software\ODBC]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\ProductSetup] =>Adware.InstallCore
[HKCU\Software\Realtek]
[HKCU\Software\RegisteredApplications]
[HKCU\Software\SYNCJM]
[HKCU\Software\Sage]
[HKCU\Software\TeamViewer]
[HKCU\Software\Wow6432Node]
[HKCU\Software\ZebHelpProcess Helper]
[HKCU\Software\nuevos-programas.com]
[HKLM\Software\AMD]
[HKLM\Software\ATI Technologies]
[HKLM\Software\ATI]
[HKLM\Software\AppEx Accelerator]
[HKLM\Software\AppEx Networks]
[HKLM\Software\CNXT_UIU_MUTEX]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Cnxt_Uiu_Parms]
[HKLM\Software\Conexant]
[HKLM\Software\CyberLink]
[HKLM\Software\Dolby]
[HKLM\Software\GEAR Software]
[HKLM\Software\Google]
[HKLM\Software\InstalledOptions]
[HKLM\Software\Intel]
[HKLM\Software\Khronos]
[HKLM\Software\Lenovo]
[HKLM\Software\Macromedia]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Nitro]
[HKLM\Software\Norton]
[HKLM\Software\ODBC]
[HKLM\Software\PDR_Upgrade]
[HKLM\Software\Piriform]
[HKLM\Software\Policies]
[HKLM\Software\RTLSetup]
[HKLM\Software\Realtek Semiconductor Corp.]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\Speedchecker Limited] =>PUP.InternetSpeedChecker
[HKLM\Software\UIU]
[HKLM\Software\Volatile]
[HKLM\Software\Wow6432Node\ATI Technologies]
[HKLM\Software\Wow6432Node\ATI]
[HKLM\Software\Wow6432Node\Adobe]
[HKLM\Software\Wow6432Node\Apple Inc.]
[HKLM\Software\Wow6432Node\Classes]
[HKLM\Software\Wow6432Node\Clients]
[HKLM\Software\Wow6432Node\Conexant]
[HKLM\Software\Wow6432Node\CrazyScore] =>PUP.CrazyScore
[HKLM\Software\Wow6432Node\CyberLink]
[HKLM\Software\Wow6432Node\FusionEngine]
[HKLM\Software\Wow6432Node\Google]
[HKLM\Software\Wow6432Node\Intel]
[HKLM\Software\Wow6432Node\Khronos]
[HKLM\Software\Wow6432Node\Lake]
[HKLM\Software\Wow6432Node\Lenovo]
[HKLM\Software\Wow6432Node\Macromedia]
[HKLM\Software\Wow6432Node\MozillaPlugins]
[HKLM\Software\Wow6432Node\Mozilla]
[HKLM\Software\Wow6432Node\Nalpeiron]
[HKLM\Software\Wow6432Node\Nitro]
[HKLM\Software\Wow6432Node\Norton]
[HKLM\Software\Wow6432Node\Nuance]
[HKLM\Software\Wow6432Node\ODBC]
[HKLM\Software\Wow6432Node\Policies]
[HKLM\Software\Wow6432Node\REALTEK Semiconductor Corp.]
[HKLM\Software\Wow6432Node\Realtek]
[HKLM\Software\Wow6432Node\RegisteredApplications]
[HKLM\Software\Wow6432Node\RtWLan]
[HKLM\Software\Wow6432Node\Sage]
[HKLM\Software\Wow6432Node\VisualDiscovery] =>PUP.VisualDiscovery
[HKLM\Software\Wow6432Node]
~ Key Software: 250 Scanned in 00mn 00s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 03/12/2014 - 22:50:53 - [] ----D C:\Program Files (x86)\Adobe
O43 - CFD: 03/12/2014 - 21:41:50 - [] ----D C:\Program Files (x86)\AMD AVT
O43 - CFD: 03/12/2014 - 21:41:49 - [] ----D C:\Program Files (x86)\ATI Technologies
O43 - CFD: 03/12/2014 - 21:52:30 - [] ----D C:\Program Files (x86)\Cisco
O43 - CFD: 12/05/2015 - 07:51:31 - [] ----D C:\Program Files (x86)\Common Files
O43 - CFD: 11/05/2015 - 00:00:09 - [] ----D C:\Program Files (x86)\Crazy Score
O43 - CFD: 03/12/2014 - 22:48:21 - [] ----D C:\Program Files (x86)\Cyberlink
O43 - CFD: 28/03/2015 - 13:38:15 - [] ----D C:\Program Files (x86)\Google
O43 - CFD: 07/05/2015 - 14:33:51 - [] --H-D C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 15/05/2015 - 18:01:35 - [] ----D C:\Program Files (x86)\Internet Explorer
O43 - CFD: 11/04/2015 - 15:07:01 - [] ----D C:\Program Files (x86)\Lenovo
O43 - CFD: 28/03/2015 - 13:00:03 - [] ----D C:\Program Files (x86)\LenovoBrowserGuard =>PUP.LenovoBrowserGuard
O43 - CFD: 16/05/2015 - 12:05:46 - [] ----D C:\Program Files (x86)\LiveUpdateWPP
O43 - CFD: 07/05/2015 - 14:34:09 - [] ----D C:\Program Files (x86)\Maestria
O43 - CFD: 03/12/2014 - 22:39:03 - [] ----D C:\Program Files (x86)\Maxthon
O43 - CFD: 04/05/2015 - 09:31:52 - [] ----D C:\Program Files (x86)\Microsoft Analysis Services
O43 - CFD: 04/05/2015 - 09:39:16 - [] ----D C:\Program Files (x86)\Microsoft Office
O43 - CFD: 04/05/2015 - 09:39:13 - [] ----D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 04/05/2015 - 09:39:13 - [] ----D C:\Program Files (x86)\Microsoft Sync Framework
O43 - CFD: 04/05/2015 - 09:39:51 - [] ----D C:\Program Files (x86)\Microsoft Synchronization Services
O43 - CFD: 04/05/2015 - 09:34:40 - [] ----D C:\Program Files (x86)\Microsoft Visual Studio 8
O43 - CFD: 28/03/2015 - 13:29:25 - [] ----D C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 04/05/2015 - 09:40:24 - [] ----D C:\Program Files (x86)\MSBuild
O43 - CFD: 03/12/2014 - 22:56:51 - [0] ----D C:\Program Files (x86)\New Folder
O43 - CFD: 03/12/2014 - 22:36:18 - [] ----D C:\Program Files (x86)\Nitro
O43 - CFD: 16/05/2015 - 13:02:47 - [] ----D C:\Program Files (x86)\Norton 360
O43 - CFD: 11/05/2015 - 00:06:56 - [] ----D C:\Program Files (x86)\NortonInstaller
O43 - CFD: 03/12/2014 - 21:59:15 - [] ----D C:\Program Files (x86)\Realtek
O43 - CFD: 03/12/2014 - 21:51:20 - [] ----D C:\Program Files (x86)\REALTEK PCIE Wireless LAN Driver
O43 - CFD: 02/04/2014 - 18:49:05 - [] ----D C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 11/04/2015 - 14:40:47 - [] ----D C:\Program Files (x86)\TeamViewer
O43 - CFD: 11/05/2015 - 00:00:12 - [] ----D C:\Program Files (x86)\WebProtector =>PUP.WebProtect
O43 - CFD: 12/05/2015 - 15:08:00 - [] ----D C:\Program Files (x86)\WebProtectorPlus =>PUP.WebProtect
O43 - CFD: 12/04/2015 - 23:31:44 - [] ----D C:\Program Files (x86)\Windows Defender
O43 - CFD: 13/05/2015 - 14:27:24 - [] ----D C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 13/05/2015 - 14:27:24 - [] ----D C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 13/05/2015 - 14:27:24 - [] ----D C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 22/08/2013 - 17:36:30 - [] ----D C:\Program Files (x86)\Windows NT
O43 - CFD: 13/05/2015 - 14:27:24 - [] ----D C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 13/05/2015 - 14:27:24 - [] ----D C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 22/08/2013 - 17:36:30 - [] -SH-D C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 22/08/2013 - 17:36:30 - [] ----D C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 16/05/2015 - 13:04:26 - [] ----D C:\Program Files (x86)\ZHPDiag =>.Nicolas Coolman
O43 - CFD: 16/05/2015 - 12:05:50 - [] ----D C:\Program Files (x86)\Common Files\68f7eaff-0da4-47f4-8262-425ca2a087dd
O43 - CFD: 28/03/2015 - 22:41:55 - [] ----D C:\Program Files (x86)\Common Files\Adobe AIR
O43 - CFD: 03/12/2014 - 21:41:50 - [] ----D C:\Program Files (x86)\Common Files\ATI Technologies
O43 - CFD: 03/12/2014 - 22:50:11 - [] ----D C:\Program Files (x86)\Common Files\CyberLink
O43 - CFD: 10/05/2015 - 23:55:51 - [] ----D C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 07/05/2015 - 14:30:56 - [] ----D C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 03/12/2014 - 22:38:37 - [] ----D C:\Program Files (x86)\Common Files\LENOVO
O43 - CFD: 04/05/2015 - 10:24:53 - [] ----D C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 03/12/2014 - 23:02:41 - [] ----D C:\Program Files (x86)\Common Files\Nikon
O43 - CFD: 03/12/2014 - 22:36:18 - [] ----D C:\Program Files (x86)\Common Files\Nitro
O43 - CFD: 07/05/2015 - 14:34:20 - [] ----D C:\Program Files (x86)\Common Files\SAGE
O43 - CFD: 22/08/2013 - 17:36:33 - [] ----D C:\Program Files (x86)\Common Files\Services
O43 - CFD: 12/05/2015 - 07:51:31 - [0] ----D C:\Program Files (x86)\Common Files\Symantec Shared
O43 - CFD: 13/05/2015 - 14:27:23 - [] ----D C:\Program Files (x86)\Common Files\System
O43 - CFD: 16/05/2015 - 12:06:05 - [] ----D C:\ProgramData\68f7eaff-0da4-47f4-8262-425ca2a087dd
O43 - CFD: 03/12/2014 - 22:50:54 - [] ----D C:\ProgramData\Adobe
O43 - CFD: 03/12/2014 - 21:41:51 - [] ----D C:\ProgramData\AMD
O43 - CFD: 22/08/2013 - 16:45:52 - [] -SH-D C:\ProgramData\Application Data
O43 - CFD: 28/03/2015 - 13:01:15 - [] ----D C:\ProgramData\ATI
O43 - CFD: 28/03/2015 - 17:00:27 - [] ----D C:\ProgramData\AVAST Software
O43 - CFD: 28/03/2015 - 19:49:27 - [] -SH-D C:\ProgramData\Bureau
O43 - CFD: 03/12/2014 - 21:46:17 - [] ----D C:\ProgramData\Conexant
O43 - CFD: 16/05/2015 - 12:53:05 - [] ----D C:\ProgramData\CyberLink
O43 - CFD: 22/08/2013 - 16:45:52 - [] -SH-D C:\ProgramData\Desktop
O43 - CFD: 22/08/2013 - 16:45:52 - [] -SH-D C:\ProgramData\Documents
O43 - CFD: 03/12/2014 - 23:03:36 - [] ----D C:\ProgramData\Downloaded Installations
O43 - CFD: 10/05/2015 - 23:37:09 - [] ----D C:\ProgramData\Energy Manager
O43 - CFD: 28/03/2015 - 13:38:18 - [] ----D C:\ProgramData\Google
O43 - CFD: 03/12/2014 - 23:00:14 - [] ----D C:\ProgramData\install_clap
O43 - CFD: 29/03/2015 - 18:15:32 - [] ----D C:\ProgramData\Lenovo
O43 - CFD: 03/12/2014 - 23:16:07 - [] ----D C:\ProgramData\LU
O43 - CFD: 11/05/2015 - 10:06:06 - [] ----D C:\ProgramData\McAfee
O43 - CFD: 28/03/2015 - 19:49:27 - [] -SH-D C:\ProgramData\Menu Démarrer
O43 - CFD: 13/05/2015 - 14:30:29 - [] -S--D C:\ProgramData\Microsoft
O43 - CFD: 11/05/2015 - 00:22:34 - [] ----D C:\ProgramData\Microsoft Help
O43 - CFD: 28/03/2015 - 13:32:29 - [] ----D C:\ProgramData\Microsoft OneDrive
O43 - CFD: 28/03/2015 - 19:49:27 - [] -SH-D C:\ProgramData\Modèles
O43 - CFD: 03/12/2014 - 22:36:17 - [] ----D C:\ProgramData\Nitro
O43 - CFD: 11/05/2015 - 00:20:37 - [] ----D C:\ProgramData\Norton
O43 - CFD: 16/05/2015 - 13:00:53 - [] ----D C:\ProgramData\NortonInstaller
O43 - CFD: 28/03/2015 - 13:33:58 - [0] ----D C:\ProgramData\Office2013
O43 - CFD: 03/12/2014 - 22:40:29 - [] ----D C:\ProgramData\OneKey Recovery
O43 - CFD: 03/12/2014 - 23:00:52 - [] ----D C:\ProgramData\Package Cache
O43 - CFD: 03/12/2014 - 22:35:13 - [] ----D C:\ProgramData\Pokki
O43 - CFD: 03/12/2014 - 21:56:55 - [] ----D C:\ProgramData\Realtek
O43 - CFD: 10/05/2015 - 23:55:50 - [] ----D C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 07/05/2015 - 14:34:36 - [] ----D C:\ProgramData\Sage
O43 - CFD: 22/08/2013 - 16:45:52 - [] -SH-D C:\ProgramData\Start Menu
O43 - CFD: 03/12/2014 - 23:00:16 - [] ----D C:\ProgramData\Temp
O43 - CFD: 22/08/2013 - 16:45:52 - [] -SH-D C:\ProgramData\Templates
O43 - CFD: 13/05/2015 - 14:30:24 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 13/05/2015 - 14:30:24 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 13/05/2015 - 14:30:24 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 03/12/2014 - 21:41:33 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
O43 - CFD: 03/12/2014 - 21:41:55 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Quick Stream
O43 - CFD: 11/04/2015 - 14:42:02 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 03/12/2014 - 22:50:13 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink Power2Go 8
O43 - CFD: 03/12/2014 - 22:48:25 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDirector 10
O43 - CFD: 03/12/2014 - 21:49:50 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby
O43 - CFD: 16/05/2015 - 02:24:05 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 28/03/2015 - 13:07:55 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
O43 - CFD: 03/12/2014 - 23:02:41 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo Photo Master
O43 - CFD: 22/08/2013 - 17:36:33 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 03/12/2014 - 22:39:06 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maxthon Cloud Browser
O43 - CFD: 11/05/2015 - 00:22:15 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 07/05/2015 - 14:34:50 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sage
O43 - CFD: 04/05/2015 - 09:41:35 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
O43 - CFD: 22/08/2013 - 17:36:33 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 13/05/2015 - 14:30:25 - [] R---D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 18/03/2014 - 11:38:02 - [0] R-H-D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 11/05/2015 - 00:00:06 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Web Protector Plus =>PUP.WebProtector
O43 - CFD: 16/05/2015 - 13:04:26 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP =>.Nicolas Coolman
O43 - CFD: 28/03/2015 - 17:13:30 - [] ----D C:\Users\audrey\AppData\Roaming\Adobe
O43 - CFD: 28/03/2015 - 13:01:15 - [] ----D C:\Users\audrey\AppData\Roaming\ATI
O43 - CFD: 14/05/2015 - 22:15:07 - [] ----D C:\Users\audrey\AppData\Roaming\googleico
O43 - CFD: 13/05/2015 - 20:20:14 - [] ----D C:\Users\audrey\AppData\Roaming\Identities
O43 - CFD: 28/03/2015 - 23:10:25 - [] ----D C:\Users\audrey\AppData\Roaming\LSC
O43 - CFD: 03/12/2014 - 22:50:53 - [] ----D C:\Users\audrey\AppData\Roaming\Macromedia
O43 - CFD: 11/04/2015 - 17:07:46 - [] ----D C:\Users\audrey\AppData\Roaming\Maxthon3
O43 - CFD: 12/05/2015 - 22:43:34 - [] -S--D C:\Users\audrey\AppData\Roaming\Microsoft
O43 - CFD: 10/05/2015 - 23:59:47 - [] ----D C:\Users\audrey\AppData\Roaming\Mozilla
O43 - CFD: 30/03/2015 - 23:05:16 - [] ----D C:\Users\audrey\AppData\Roaming\My Bluetooth
O43 - CFD: 06/04/2015 - 13:59:28 - [] ----D C:\Users\audrey\AppData\Roaming\Nitro
O43 - CFD: 07/05/2015 - 14:41:25 - [] ----D C:\Users\audrey\AppData\Roaming\Sage
O43 - CFD: 11/04/2015 - 15:11:05 - [] ----D C:\Users\audrey\AppData\Roaming\TeamViewer
O43 - CFD: 10/05/2015 - 23:59:39 - [0] ----D C:\Users\audrey\AppData\Roaming\WebExtend
O43 - CFD: 16/05/2015 - 13:06:04 - [] ----D C:\Users\audrey\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 28/03/2015 - 17:14:37 - [] ----D C:\Users\audrey\AppData\Local\Adobe
O43 - CFD: 28/03/2015 - 13:02:35 - [] ----D C:\Users\audrey\AppData\Local\AMD
O43 - CFD: 28/03/2015 - 12:59:06 - [] -SH-D C:\Users\audrey\AppData\Local\Application Data
O43 - CFD: 28/03/2015 - 13:01:15 - [] ----D C:\Users\audrey\AppData\Local\ATI
O43 - CFD: 11/05/2015 - 00:05:04 - [] ----D C:\Users\audrey\AppData\Local\Chromium
O43 - CFD: 13/05/2015 - 20:24:07 - [] ----D C:\Users\audrey\AppData\Local\Diagnostics
O43 - CFD: 13/04/2015 - 01:10:53 - [] -SH-D C:\Users\audrey\AppData\Local\EmieBrowserModeList
O43 - CFD: 28/03/2015 - 13:09:46 - [] -SH-D C:\Users\audrey\AppData\Local\EmieSiteList
O43 - CFD: 28/03/2015 - 13:09:46 - [] -SH-D C:\Users\audrey\AppData\Local\EmieUserList
O43 - CFD: 28/03/2015 - 14:27:28 - [] ----D C:\Users\audrey\AppData\Local\Google
O43 - CFD: 28/03/2015 - 12:59:06 - [] -SH-D C:\Users\audrey\AppData\Local\Historique
O43 - CFD: 28/03/2015 - 17:18:06 - [] ----D C:\Users\audrey\AppData\Local\Lenovo
O43 - CFD: 28/03/2015 - 13:00:08 - [] ----D C:\Users\audrey\AppData\Local\LenovoBrowserGuard =>PUP.LenovoBrowserGuard
O43 - CFD: 16/05/2015 - 02:42:59 - [] ----D C:\Users\audrey\AppData\Local\Microsoft
O43 - CFD: 04/05/2015 - 09:31:23 - [0] ----D C:\Users\audrey\AppData\Local\Microsoft Help
O43 - CFD: 10/05/2015 - 23:43:10 - [] ----D C:\Users\audrey\AppData\Local\Packages
O43 - CFD: 16/05/2015 - 11:50:15 - [] ----D C:\Users\audrey\AppData\Local\Pokki
O43 - CFD: 28/03/2015 - 13:01:05 - [] ----D C:\Users\audrey\AppData\Local\Power2Go8
O43 - CFD: 16/05/2015 - 13:04:36 - [] ----D C:\Users\audrey\AppData\Local\Temp
O43 - CFD: 28/03/2015 - 12:59:06 - [] -SH-D C:\Users\audrey\AppData\Local\Temporary Internet Files
O43 - CFD: 07/05/2015 - 14:41:28 - [] ----D C:\Users\audrey\AppData\Local\VirtualStore
O43 - CFD: 03/12/2014 - 21:34:12 - [] R---D C:\Users\audrey\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 22/08/2013 - 17:36:32 - [] R---D C:\Users\audrey\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 13/04/2015 - 01:09:25 - [] R---D C:\Users\audrey\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 28/03/2015 - 13:01:04 - [] ----D C:\Users\audrey\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo
O43 - CFD: 22/08/2013 - 17:36:32 - [] ----D C:\Users\audrey\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 13/04/2015 - 01:09:25 - [] R---D C:\Users\audrey\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 02/09/2014 - 20:18:09 - [] R---D C:\Users\audrey\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
~ Program Folder: 158 Scanned in 00mn 00s



---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.DAA6AAD525D12F8985695B882301336F] - 04/05/2015 - 08:32:56 ---A- . (...) -- C:\Windows\win.ini [167]
O44 - LFC:[MD5.8EB7E70C2D348FE2476A2E3F2D585E3D] - 10/05/2015 - 20:10:25 ---A- . (.Microsoft Corporation - Common Log File System Driver.) -- C:\Windows\System32\Drivers\clfs.sys [377152]
O44 - LFC:[MD5.EFC011253AE4F21DE600907AD9F0263D] - 10/05/2015 - 20:10:25 ---A- . (.Microsoft Corporation - Common Log Marshalling Win32 DLL.) -- C:\Windows\System32\clfsw32.dll [75264]
O44 - LFC:[MD5.4A112AD7D9C7289FE9945D05E97019D0] - 10/05/2015 - 20:10:48 ---A- . (.Microsoft Corporation - Windows Update Wu exports.) -- C:\Windows\System32\wuaext.dll [17408]
O44 - LFC:[MD5.DDFFE37C690F8D0AB05309C11AE8A740] - 10/05/2015 - 20:10:49 ---A- . (.Microsoft Corporation - Windows Update client proxy stub 2.) -- C:\Windows\System32\wups2.dll [52224]
O44 - LFC:[MD5.A6D023786B16C2C6FEC235A69F60A5B2] - 10/05/2015 - 20:10:49 ---A- . (.Microsoft Corporation - Windows Update client proxy stub for intern.) -- C:\Windows\System32\wu.upgrade.ps.dll [15360]
O44 - LFC:[MD5.35FAB05339F7083611B12ED7143AFA81] - 10/05/2015 - 20:10:50 ---A- . (.Microsoft Corporation - Authentication Provider.) -- C:\Windows\System32\storewuauth.dll [200192]
O44 - LFC:[MD5.1EB1732C67D40598222103776F7AF829] - 10/05/2015 - 20:10:50 ---A- . (.Microsoft Corporation - Windows Update client proxy stub.) -- C:\Windows\System32\wups.dll [66048]
O44 - LFC:[MD5.3BAAE060A97C0F9AD48AFE3330B577E5] - 10/05/2015 - 20:10:51 ---A- . (.Microsoft Corporation - Windows Setup UI.) -- C:\Windows\System32\WinSetupUI.dll [267264]
O44 - LFC:[MD5.5F3D70B19BCAC985DA90F22CA2FF45E4] - 10/05/2015 - 20:10:52 ---A- . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3678720]
O44 - LFC:[MD5.8DE0A3EC9024DC2AF1DE8BDCE4AEA2C6] - 10/05/2015 - 20:10:53 ---A- . (.Microsoft Corporation - Expérience utilisateur du client Windows Up.) -- C:\Windows\System32\wucltux.dll [2373632]
O44 - LFC:[MD5.A40A005B63E305A0509A69A604659944] - 10/05/2015 - 20:10:53 ---A- . (.Microsoft Corporation - Windows Update.) -- C:\Windows\System32\wuauclt.exe [133256]
O44 - LFC:[MD5.47C04EEA5C1C3D27744E123F3AF25E57] - 10/05/2015 - 20:10:54 ---A- . (.Microsoft Corporation - API du client Windows Update.) -- C:\Windows\System32\wuapi.dll [891392]
O44 - LFC:[MD5.BF5F10811E8249075D48153E8766184D] - 10/05/2015 - 20:10:54 ---A- . (.Microsoft Corporation - Windows Update Application Launcher.) -- C:\Windows\System32\wuapp.exe [35840]
O44 - LFC:[MD5.49B0AE13918B1456C1EFB284E4DC52D1] - 10/05/2015 - 20:10:54 ---A- . (.Microsoft Corporation - Windows Update Modern WuApp.) -- C:\Windows\System32\WUSettingsProvider.dll [408064]
O44 - LFC:[MD5.4C6D7A1AA4EB4DA0382484ECF38040A7] - 10/05/2015 - 20:10:54 ---A- . (.Microsoft Corporation - Windows Update Vista Web Control.) -- C:\Windows\System32\wuwebv.dll [140288]
O44 - LFC:[MD5.A6B426B5502174F2FDC5D2CA174E6B6C] - 10/05/2015 - 20:10:55 ---A- . (.Microsoft Corporation - Windows Update WUDriver Stub.) -- C:\Windows\System32\wudriver.dll [95744]
O44 - LFC:[MD5.31E9837295401C2470027AF7DD75C4D2] - 10/05/2015 - 20:15:35 ---A- . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll [259072]
O44 - LFC:[MD5.2CBD6D22499EB13A2666F62EF33D00E2] - 10/05/2015 - 20:15:53 ---A- . (...) -- C:\Windows\System32\ieuinit.inf [16303]
O44 - LFC:[MD5.ECB062B9A1B9A6AA42EEE92B1F0894AA] - 10/05/2015 - 20:16:20 ---A- . (.Microsoft Corporation - Framebuffer Display Driver.) -- C:\Windows\System32\workerdd.dll [14336]
O44 - LFC:[MD5.9A7A7E45DAED2E8C2816716D8D28236A] - 10/05/2015 - 20:16:21 ---A- . (.Microsoft Corporation - Service du gestionnaire de session locale.) -- C:\Windows\System32\lsm.dll [780800]
O44 - LFC:[MD5.E87A6D3B8FECD5B93BC0CFBB48C27970] - 10/05/2015 - 20:16:25 ---A- . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\Windows\System32\Drivers\http.sys [991552]
O44 - LFC:[MD5.DB2A64D1A82226DCEFF4076725BD5577] - 10/05/2015 - 20:16:28 ---A- . (.Microsoft Corporation - AMD64 Wow64 CPU.) -- C:\Windows\System32\wow64cpu.dll [13312]
O44 - LFC:[MD5.D2451F8CF7EAA14531E3731C06D
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 628
16 mai 2015 à 22:57
Faire ce qui est demandé.
0