Mon pc s éteint sans raison

leroilion 2008 Messages postés 18 Statut Membre -  
jacques.gache Messages postés 34829 Statut Contributeur sécurité -
bonjour,
depuis quelques jours mon pc s'éteint sans raison apparente
j ai remarqué sur le disque D mp sig stub j 'ai supposé que c'etait a cause de lui mais de toute facon ,impossible de le supprimer
quelqu'un peut il m'aider ?
merci d'avance pour votre aide

4 réponses

  1. jacques.gache Messages postés 34829 Statut Contributeur sécurité 1 645
     
    bonjour, ton pc est un portable ou un fixe ??

    postes un diagnostique pur y voir pus claire

    [list]
    [*]Télécharge ZHPDiag sur le site officiel de Nicolas Coolman : https://nicolascoolman.eu

    [*] lance le cela va te créer un icône sur ton bureau et faire apparaître l'interface.

    [*]Cliquez sur « Scanner » pour démarrer la recherche.

    [*]En cours de recherche, un compteur indique le nombre de détections.

    [*]Laisser s »effectuer la recherche jusqu'à ce que la barre de progression atteigne le 100%

    [*]A la fin de la recherche, un clic sur le bouton « Rapport » permet d'afficher le rapport dans le bloc-notes.

    "Pour annuler la recherche, cliquez sur la touche « Echap »."

    [*]Héberge le rapport [b]ZHPDiag.txt[/b] présent sur ton bureau sur le site ci dessous, puis copie/colle le lien fourni dans ta prochaine réponse : [/list]

    https://www.cjoint.com/

    0
  2. leroilion 2008 Messages postés 18 Statut Membre
     
    bonjour,
    merci pour ton aide
    avant de faire quoi que ce soit je vais restaurer mon système
    si ca ne marche pas j'essayerais ta méthode
    j'ai déja fait un nettoyage complet et sauvgardé mes fichiers au cas ou
    par contre sais tu ce qu'est MPSig Stub ? impossible de le supprimer alors que j'ai vérifié j'ai bien toutes les autorisations sur ce fichier .
    c 'est bizarre
    cordialmnt a+
    0
    1. jacques.gache Messages postés 34829 Statut Contributeur sécurité 1 645
       
      bonjour, ton Mpsigstub semble être un truc de chez microsoft , sauf si c'est un malware déguiser !!! tu me posteras un zhpdiag quand tu voudras , @+
      0
      1. leroilion2008 > jacques.gache Messages postés 34829 Statut Contributeur sécurité
         
        re,
        qu'estce qu'un zhpdiag ?
        désolée, mais je suis loin d'etre top en informatique
        mpsig stub est bien de microsoft, mais comme tu dis est ce le vrai ?
        si c'était le cas j aurais du pouvoir le supprimer car jai les autorisations
        si j'arrive a restaurer le système cela devrait s'arranger j'attends la réponse d'asus
        (sont pas rapides )
        j apprends au fur et a mesure des problémes
        des fois je trouve la solution et d'autre pas
        merci encore de m aider
        0
      2. leroilion2008 > leroilion2008
         
        re,
        j'ai vu ce que c'était
        mais maintenant j'ai peur de telecharger des fichiers que je ne connais pas
        je vais voir ca
        0
  3. leroilion2008
     
    re,re,
    voici le rapport de zhpdiag
    ~ ZHPDiag v2015.7.4.83 Par Nicolas Coolman (2015\07\04)
    ~ Démarré par marieantoinette (Administrator) (2015/07/05 09:06:26)
    ~ Site: http://www.nicolascoolman.fr
    ~ Facebook: https://www.facebook.com/nicolascoolman1
    ~ Etat de la version: Version OK
    ~ Mode: Scanner
    ~ Rapport: C:\Users\marieantoinette\Desktop\ZHPDiag.txt
    ~ Rapport: C:\Users\marieantoinette\AppData\Roaming\ZHP\ZHPDiag.txt
    ~ UAC: Activate
    ~ Démarrage du système: Normal (Normal boot)
    ~ Windows 8.1, 64-bit (Build 9600)

    ---\\ Navigateurs Internet (3) - 0s
    GCIE: Google Chrome v43.0.2357.130
    MFIE: Mozilla v38.0.5
    MSIE: Internet Explorer v11.0.9600.17842

    ---\\ Informations sur les produits Windows (8) - 3s
    ~ Windows Server License Manager Script : OK
    ~ Licence Script File Génération : OK
    ~ Windows(R) Operating System, OEM_DM channel
    Windows ID Activation : OK
    ~ Windows Partial Key : HXH36
    Windows License : OK
    ~ Windows Remaining Initializations Number : 999
    Windows Activation Technologies : OK

    ---\\ Logiciels d'optimisation (1) - 0s
    CCleaner v4.16

    ---\\ Surveillance de Logiciels (2) - 0s
    Adobe Flash Player 18 NPAPI
    Adobe Acrobat Reader DC - Français

    ---\\ Informations sur le système (6) - 0s
    ~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
    ~ Operating System: 64-bit
    ~ Boot mode: Normal (Normal boot)
    ~ Total physical RAM (KB): 4077100
    ~ System Restore: Activé (Enable)
    ~ System drive C: has 247 GB free of 285 GB

    ---\\ Mode de connexion au système (3) - 0s
    ~ Computer Name: MANETTE
    ~ User Name: marieantoinette
    ~ Logged in as Administrator

    ---\\ Enumération des unités disques (2) - 0s
    ~ Drive C: has 247 GB free of 285 GB (System)
    ~ Drive D: has 407 GB free of 407 GB

    ---\\ Recherche particulière de fichiers génériques (23) - 1s
    [MD5.C10A66189DC8C090E7C84873EDCEBC88] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2501368]
    [MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [54784]
    [MD5.A570A64292214C43E0BA50E6A72A6380] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [145920]
    [MD5.417F80E4AFBA1AA9EBBD618F1C6D9165] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [2426880]
    [MD5.EC498BAE1F0D3E0E401C963F8D76C437] - (.Microsoft Corporation - Application d'ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [572416]
    [MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [447488]
    [MD5.E37F897ED7B5AFF79B1398258DB96BD9] - (.Microsoft Corporation - DLL client de l'API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [19456]
    [MD5.374E27295F0A9DCAA8FC96370F9BEEA5] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [563200]
    [MD5.74B14192CF79A72F7536B27CB8814FBD] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [26464]
    [MD5.2FA6510E33F7DEFEC03658B74101A9B9] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [88576]
    [MD5.C6796EA22B513E3457514D92DCDB1A3D] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [164352]
    [MD5.A03F362C5557E238CBFA914689C77248] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [134144]
    [MD5.D4B7ED39C7900384D9E5C1283F1E7926] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [76800]
    [MD5.D887446F3F6051C60C26F4FD1FC8D43F] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [107520]
    [MD5.B7342B3C58E91107F6E946A93D9D4EFD] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [142848]
    [MD5.31233271EDE50D1BBB220F78AFA60486] - (.Microsoft Corporation - Minirdr SMB Windows NT.) () -- C:\Windows\System32\drivers\MRxSmb.sys [405504]
    [MD5.0217532E19A748F0E5D569307363D5FD] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [282624]
    [MD5.7F68063A5A0461E02BC860CE0E6BFDDC] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [2025792]
    [MD5.764B1121867B2D9B31C491668AC72B2B] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [94208]
    [MD5.BBB6272B7F46C4640A8CDB8A70C3450F] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [120832]
    [MD5.680C1DAE268B6FB67FA21B389A8B79EF] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) () -- C:\Windows\System32\drivers\rdpdr.sys [195584]
    [MD5.FFF28F9F6823EB1756C60F1649560BBF] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [107520]
    [MD5.64CA2B4A49A8EAF495E435623ECCE7DB] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [310080]

    ---\\ Processus lancés (29) - 2s
    [MD5.415695F5A54E91E869EEBFEA261361A6] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 331.6.) -- C:\WINDOWS\system32\nvvsvc.exe [922912] [PID.80]
    [MD5.9F778BA5129A23C7AEBCE965C69F5EA3] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1196832] [PID.416]
    [MD5.415695F5A54E91E869EEBFEA261361A6] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 331.6.) -- C:\Windows\system32\nvvsvc.exe [922912] [PID.392]
    [MD5.E40AF754F43E3B44E2D6DE829267AD52] - (.ASUSTek Computer Inc. - ASLDR Service.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe [110976] [PID.1512]
    [MD5.DBC598E47E7A382E60E2A4745D41FEF9] - (.ASUS - GFNEXSrv.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [96896] [PID.1560]
    [MD5.6A122B4F0E5293CACFA8A5F2CBA9B356] - (.ASUS - ASUS InstantOn Program.) -- C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe [277120] [PID.1876]
    [MD5.68030FF4B7669E15916910885E2E6160] - (.Diskeeper Corporation - ExpressCache Service.) -- C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe [79664] [PID.1352]
    [MD5.C99F8E90DE4B8F0C7FE15BB1CBCD29DC] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [635104] [PID.1044]
    [MD5.ADC5A921A818633D7CA599446AE1A9BF] - (.ASUSTek Computer Inc. - ASUS Wakeup Service.) -- C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe [45488] [PID.2180]
    [MD5.8969286F44A62758AACBD38F27D59BF5] - (.ASUSTek Computer Inc. - HControl.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe [184704] [PID.3012]
    [MD5.3A8D1E216D2F16551B37234E6E7341CB] - (.ASUS - ASUS InstantOn Program.) -- C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe [590208] [PID.3020]
    [MD5.C2CBE7C1A0F8415DD9608DD80A0131EC] - (.ASUSTek Computer INC. - ASUS Patch For Touch Panel.) -- C:\ProgramData\AsTouchPanel\AsPatchTouchPanel64.exe [158336] [PID.3064]
    [MD5.C570FD825751F7805CE226F68C4605DE] - (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [54488] [PID.1320]
    [MD5.0BC5A4142F38A6BB35DECD01A2BC2ED7] - (.ASUS - Power4Gear Hybrid.) -- C:\Program Files\ASUS\P4G\BatteryLife.exe [1018240] [PID.2168]
    [MD5.C81E206D2DDBD18396506C2978F2C6BA] - (...) -- C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe [171224] [PID.1992]
    [MD5.97432AB9F1B3B3E63E778C1E69E71E91] - (.ASUSTek Computer Inc. - ASUS USB Charger Plus.) -- C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [1124032] [PID.2268]
    [MD5.4F870EF9292559AB9DE6F31527A1DCBF] - (.ASUSTek Computer Inc. - KBFiltr.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe [113312] [PID.3048]
    [MD5.0778262CA898BC6419D61A061F824C9E] - (.ASUSTeK Computer Inc. - VivoBook.) -- C:\Program Files\ASUS\ASUS VivoBook\VivoBook.exe [631728] [PID.3180]
    [MD5.2D32F0EF950AED6AD007D042676FD39E] - (.ASUSTek Computer Inc. - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [328064] [PID.3304]
    [MD5.0B50F07E63EE15383CDFDC26D7A3D3E3] - (.ASUSTek Computer Inc. - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [205184] [PID.3312]
    [MD5.10E1BFE28D8C261646C1815A49C37639] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2450208] [PID.3880]
    [MD5.07BCBB58E1D3ABFCB788C8399425799C] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13267016] [PID.1832]
    [MD5.DC1E9A0B09A6068BA2E48E04F0F7F406] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1276488] [PID.3008]
    [MD5.B7995C675014EEBE77A0BEB7AFCCFC08] - (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [91432] [PID.4184]
    [MD5.B3028223BF38796C9CB5B08DA0E481FF] - (.AsusTek - ASUS Smart Gesture Loader.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe [171832] [PID.4384]
    [MD5.563E3487FA8226968C8D5722D694388D] - (.ASUSTeK Computer Inc. - ASUS Quick Gesture Exe.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe [22840] [PID.4636]
    [MD5.25A7E7174C622D3B8D0D2681EE87E4FA] - (.ASUSTeK Computer Inc. - ASUS Quick Gesture Exe.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe [20792] [PID.4652]
    [MD5.CA74DAB2ADB24BFFD01166F0A4179FB6] - (.AsusTek - ASUS Smart Gesture Center.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe [272184] [PID.4660]
    [MD5.CAF861C79395C9A77DA707AF23C3BA92] - (.AsusTek - ASUS Smart Gesture Helper.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe [170296] [PID.3892]

    ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (2) - 0s
    G2 - GCE: Extension [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
    G2 - GCE: Extension [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.

    ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (11) - 1s
    M0 - MFSP: prefs.js [marieantoinette - z2iaoj4c.default-1404899716521] http://www.google.fr/
    P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\amazon-france.xml
    P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\bing.xml
    P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml
    P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\ddg.xml
    P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\eBay-france.xml
    P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\google.xml
    P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml
    P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo-france.xml
    P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
    P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_194.dll

    ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (18) - 0s
    R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.orange.fr/
    R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
    R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
    R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
    R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.fr
    R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
    R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
    R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
    R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
    R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
    R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
    R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
    R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
    R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
    R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
    R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
    R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
    R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

    ---\\ Internet Explorer, Proxy Management (R5) (3) - 0s
    R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
    R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
    R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

    ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s
    F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.)
    F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.)
    F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.)

    ---\\ Hosts file redirection (O1) (1) - 0s
    ~ Le fichier hôte est sain (The hosts file is clean) (21)

    ---\\ Browser Helper Object de navigateur (BHO) (O2) (3) - 0s
    O2 - BHO: RichMediaViewV1release808 [64Bits] - {04334a16-adb0-4678-b224-2a7f5eaced8b} (Orphean) =>PUP.MediaViewer
    O2 - BHO: MediaBuzzV1mode7089 [64Bits] - {485b69c8-f651-4cf1-bbec-02b10b873c59} (Orphean) =>PUP.MediaBuzz
    O2 - BHO: MediaWatchV1home306 [64Bits] - {8a0168b9-423d-4b6f-b92e-6d239c3d1074} (Orphean) =>PUP.MediaWatch

    ---\\ Applications lancées au démarrage du sytème (O4) (14) - 1s
    O4 - HKLM\..\Run: [DptfPolicyLpmServiceHelper] . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe
    O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\WINDOWS\system32\hkcmd.exe
    O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\WINDOWS\system32\igfxpers.exe
    O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
    O4 - HKLM\..\Run: [RtHDVBg] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
    O4 - HKCU\..\Run: [Software updater] . (...) -- C:\Users\marieantoinette\AppData\Roaming\FreeSoftwareUpdater\updater.exe
    O4 - HKLM\..\Wow6432Node\Run: [Adobe Reader Speed Launcher] C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe (.not file.)
    O4 - HKLM\..\Wow6432Node\Run: [ASUSPRP] . (.ASUSTek Computer Inc. - ASUS Product Register Program.) -- C:\Program Files (x86)\ASUS\APRP\aprp.exe
    O4 - HKLM\..\Wow6432Node\Run: [ASUSWebStorage] . (.ASUS Cloud Corporation - ASUS WebStorage Panel.) -- C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.10.123\AsusWSPanel.exe
    O4 - HKLM\..\Wow6432Node\Run: [RemoteControl10] . (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
    O4 - HKLM\..\Wow6432Node\Run: [ATLauncher] C:\Program Files\McAfeeEx\McAfeeAntiTheft\ATLauncher.exe (.not file.)
    O4 - HKLM\..\Wow6432Node\Run: [ATUninstallIcon] C:\Program Files\McAfeeEx\McAfeeAntiTheft\ATLauncher.exe (.not file.)
    O4 - HKUS\S-1-5-21-2281275832-3701324745-2742605977-1002\..\Run: [Software updater] . (...) -- C:\Users\marieantoinette\AppData\Roaming\FreeSoftwareUpdater\updater.exe

    ---\\ Modification Domaine/Adresses DNS (O17) (4) - 0s
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.88.1
    O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
    O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.88.1

    ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) (1) - 0s
    O20 - AppInit_DLLs: . (.NVIDIA Corporation - NVIDIA shim initialization dll, Version 331.) - C:\Windows\system32\nvinitx.dll

    ---\\ Liste des services NT non Microsoft et non désactivés (O23) (19) - 1s
    O23 - Service: McAfee Application Installer Cleanup (0195411397310776) (0195411397310776mcinstcleanup) . (...) - C:\WINDOWS\TEMP\019541~1.EXE (.not file.)
    O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
    O23 - Service: ASLDR Service (ASLDRService) . (.ASUSTek Computer Inc. - ASLDR Service.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
    O23 - Service: ASUS InstantOn Service (ASUS InstantOn) . (.ASUS - ASUS InstantOn Program.) - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe
    O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS - GFNEXSrv.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
    O23 - Service: @oem5.inf,%WIN32_DPTF_PARTICIPANT_PROC_SERVICE_DISPLAY_NAME (DptfParticipantProcessorService) . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) - C:\Windows\system32\DptfParticipantProcessorService.exe
    O23 - Service: @oem5.inf,%WIN32_DPTF_POLICY_LPM_SERVICE_DISPLAY_NAME%;Inte (DptfPolicyLpmService) . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) - C:\Windows\system32\DptfPolicyLpmService.exe
    O23 - Service: ExpressCache (ExpressCache) . (.Diskeeper Corporation - ExpressCache Service.) - C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe
    O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe
    O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation - Intel(R) ME Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
    O23 - Service: Intel(R) Rapid Start Technology Service (irstrtsv) . (.Intel Corporation - Intel(R) Rapid Start Technology Service.) - C:\Windows\SysWOW64\irstrtsv.exe
    O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
    O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
    O23 - Service: McAfee PC Task Scheduler Service (McSchedulerSvc) . (...) - C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe (.not file.)
    O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 331.6.) - C:\WINDOWS\system32\nvvsvc.exe
    O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
    O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
    O23 - Service: ASUS Wake Service (WakeupService) . (.ASUSTek Computer Inc. - ASUS Wakeup Service.) - C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe

    ---\\ Tâches planifiées en automatique (O39) (23) - 1s
    O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002]
    O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1088]
    O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1092]
    O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [3886]
    O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3890]
    O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ASUS Live Update1 [3474]
    O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ASUS Live Update2 [3464]
    O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ASUS P4G [3054]
    O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ASUS Patch for Touch Panel [3258]
    O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ASUS Splendid ACMON [2986]
    O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ASUS Splendid ColorU [3002]
    O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ASUS Touchpad Launcher (x64) [3540]
    O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ASUS USB Charger Plus [3026]
    O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ASUS VivoBook [2920]
    O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\BoxSoftwareUpdate [3284] =>Adware.Boxore
    O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2792]
    O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\Desk 365 RunAsStdUser [3402] =>Hijacker.22Find
    O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3828]
    O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4064]
    O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-2281275832-3701324745-2742605977-1002 [3114]
    O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\Update Checker [3382]
    O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\User_Feed_Synchronization-{25AA3F9F-6888-4042-A655-E8D8D1140673} [3972]
    O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{07C81E0B-876D-4CFE-A3EA-84060390EDAF} [3134]

    ---\\ Logiciels installés (O42) (56) - 5s
    O42 - Logiciel: Windows Driver Package - ASUS (ATP) Mouse (01/10/2013 1.0.0.170) - (.ASUS.) [HKLM][64Bits] -- 4A9DE1E9EBC800B7F01739D4DE7363EF6751BDF5
    O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner
    O42 - Logiciel: ASUS VivoBook - (.ASUS.) [HKLM][64Bits] -- {04FDBE69-F9FD-42A2-9008-E5CE7F60C6BE}
    O42 - Logiciel: ExpressCache - (.Diskeeper Corporation.) [HKLM][64Bits] -- {2EBEFDA8-F905-4C39-AC1C-D5ABE7B3E0AE}
    O42 - Logiciel: ASUS Power4Gear Hybrid - (.ASUS.) [HKLM][64Bits] -- {9B6239BF-4E85-4590-8D72-51E30DB1A9AA}
    O42 - Logiciel: NVIDIA Pilote graphique 331.65 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver
    O42 - Logiciel: NVIDIA Logiciel système PhysX 9.13.0604 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX
    O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.24.2 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver
    O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77}
    O42 - Logiciel: Shared C Run-time for x64 - (.McAfee.) [HKLM][64Bits] -- {EF79C448-6946-4D71-8134-03407888C054}
    O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {F4404AFD-2EF3-40C1-8C09-29E5F3B6972B}
    O42 - Logiciel: Intel(R) Rapid Start Technology - (.Intel Corporation.) [HKLM][64Bits] -- 3D073343-CEEB-4ce7-85AC-A69A7631B5D6
    O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI
    O42 - Logiciel: ASUS WebStorage Sync Agent - (.ASUS Cloud Corporation.) [HKLM][64Bits] -- ASUS WebStorage
    O42 - Logiciel: Intel(R) Dynamic Platform and Thermal Framework - (.Intel Corporation.) [HKLM][64Bits] -- FFD10ECE-F715-4a86-9BD8-F6F47DA5DA1C
    O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
    O42 - Logiciel: ASUSDVD - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}
    O42 - Logiciel: Media Player - (.Media Player.) [HKLM][64Bits] -- MediaPlayerV1alpha8617
    O42 - Logiciel: Mozilla Firefox 38.0.5 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 38.0.5 (x86 fr)
    O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService
    O42 - Logiciel: MyBitCast 2.0 - (.ASUS.) [HKLM][64Bits] -- MyBitCast
    O42 - Logiciel: scrabbleproB 1.1.3 - (.scrabblepro.) [HKLM][64Bits] -- scrabbleproB_is1
    O42 - Logiciel: Video Player - (.Video Player.) [HKLM][64Bits] -- Video Player
    O42 - Logiciel: PDFCreator - (.pdfforge.) [HKLM][64Bits] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}
    O42 - Logiciel: ASUS Splendid Video Enhancement Technology - (.ASUS.) [HKLM][64Bits] -- {0969AF05-4FF6-4C00-9406-43599238DE0D}
    O42 - Logiciel: ASUS LifeFrame3 - (.ASUS.) [HKLM][64Bits] -- {1DBD1F12-ED93-49C0-A7CC-56CBDE488158}
    O42 - Logiciel: Qualcomm Atheros Client Installation Program - (.Qualcomm Atheros.) [HKLM][64Bits] -- {28006915-2739-4EBE-B5E8-49B25D32EB33}
    O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {3282FBE1-35FC-48D8-98CA-115A5EF1F9B4}
    O42 - Logiciel: Fotogalerie - (.Microsoft Corporation.) [HKLM][64Bits] -- {3CBD94C1-BA15-488C-888B-D8DD296CC6DC}
    O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {446CC8CE-0E90-44F7-ADD0-774B243EF090}
    O42 - Logiciel: ASUS Smart Gesture - (.ASUS.) [HKLM][64Bits] -- {4D3286A6-F6AB-498A-82A4-E4F040529F3D}
    O42 - Logiciel: ASUS Tutor - (.ASUS.) [HKLM][64Bits] -- {58172D66-2F69-4215-9AEC-ED8196023736}
    O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
    O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A}
    O42 - Logiciel: ASUS InstantOn - (.ASUS.) [HKLM][64Bits] -- {749F674B-2674-47E8-879C-5626A06B2A91}
    O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {817750FA-EC6A-485D-9901-0683AE6FFDF1}
    O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
    O42 - Logiciel: ASUS Instant Connect - (.ASUS.) [HKLM][64Bits] -- {89ECB85A-D933-4CEA-9116-5CBC9C2ED95B}
    O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
    O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}
    O42 - Logiciel: WinFlash - (.ASUS.) [HKLM][64Bits] -- {8F21291E-0444-4B1D-B9F9-4370A73E346D}
    O42 - Logiciel: ASUS USB Charger Plus - (.ASUS.) [HKLM][64Bits] -- {A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}
    O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
    O42 - Logiciel: ATK Package - (.ASUS.) [HKLM][64Bits] -- {AB5C933E-5C7D-4D30-B314-9C83A49B94BE}
    O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824144531}
    O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100}
    O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {C1594429-8296-4652-BF54-9DBE4932A44C}
    O42 - Logiciel: Raccolta foto - (.Microsoft Corporation.) [HKLM][64Bits] -- {D04EBB49-C985-4A38-8695-62000861293A}
    O42 - Logiciel: ASUSDVD - (.CyberLink Corp..) [HKLM][64Bits] -- {DEC235ED-58A4-4517-A278-C41E8DAEAB3B}
    O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
    O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}
    O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
    O42 - Logiciel: ASUS Live Update - (.ASUS.) [HKLM][64Bits] -- {FA540E67-095C-4A1B-97BA-4D547DEC9AF4}
    O42 - Logiciel: Intel(R) SDK for OpenCL - CPU Only Runtime Package - (.Intel Corporation.) [HKLM][64Bits] -- {FCB3772C-B7D0-4933-B1A9-3707EBACC573}
    O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe
    O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent

    ---\\ HKCU & HKLM Software Keys (85) - 5s
    HKLM\SOFTWARE\Wow6432Node\Adobe
    HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies
    HKLM\SOFTWARE\Wow6432Node\ASIO
    HKLM\SOFTWARE\Wow6432Node\AsLdr
    HKLM\SOFTWARE\Wow6432Node\ASUS
    HKLM\SOFTWARE\Wow6432Node\Atheros
    HKLM\SOFTWARE\Wow6432Node\Better Surf Plus =>PUP.BetterSurf
    HKLM\SOFTWARE\Wow6432Node\Better-Surf =>PUP.BetterSurf
    HKLM\SOFTWARE\Wow6432Node\BetterSurf =>PUP.BetterSurf
    HKLM\SOFTWARE\Wow6432Node\Boxore =>Adware.Boxore
    HKLM\SOFTWARE\Wow6432Node\Client
    HKLM\SOFTWARE\Wow6432Node\CyberLink
    HKLM\SOFTWARE\Wow6432Node\deskSvc =>Hijacker.22Find
    HKLM\SOFTWARE\Wow6432Node\ECAREME
    HKLM\SOFTWARE\Wow6432Node\Google
    HKLM\SOFTWARE\Wow6432Node\hdcode
    HKLM\SOFTWARE\Wow6432Node\InstallShield
    HKLM\SOFTWARE\Wow6432Node\Intel
    HKLM\SOFTWARE\Wow6432Node\Khronos
    HKLM\SOFTWARE\Wow6432Node\Lake
    HKLM\SOFTWARE\Wow6432Node\Macromedia
    HKLM\SOFTWARE\Wow6432Node\McAfee
    HKLM\SOFTWARE\Wow6432Node\MediaBuzzV1 =>PUP.MediaBuzz
    HKLM\SOFTWARE\Wow6432Node\MediaBuzzV1mode7089 =>PUP.MediaBuzz
    HKLM\SOFTWARE\Wow6432Node\MediaPlayerV1
    HKLM\SOFTWARE\Wow6432Node\MediaPlayerV1alpha842
    HKLM\SOFTWARE\Wow6432Node\MediaPlayerV1alpha8617
    HKLM\SOFTWARE\Wow6432Node\MediaViewerV1
    HKLM\SOFTWARE\Wow6432Node\MediaViewerV1alpha589
    HKLM\SOFTWARE\Wow6432Node\MediaViewV1
    HKLM\SOFTWARE\Wow6432Node\MediaViewV1alpha190
    HKLM\SOFTWARE\Wow6432Node\MediaViewV1alpha2736
    HKLM\SOFTWARE\Wow6432Node\MediaWatchV1
    HKLM\SOFTWARE\Wow6432Node\MediaWatchV1home306
    HKLM\SOFTWARE\Wow6432Node\Mozilla
    HKLM\SOFTWARE\Wow6432Node\mozilla.org
    HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
    HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation
    HKLM\SOFTWARE\Wow6432Node\ODBC
    HKLM\SOFTWARE\Wow6432Node\PDFCreator
    HKLM\SOFTWARE\Wow6432Node\Qualcomm Atheros
    HKLM\SOFTWARE\Wow6432Node\Realtek
    HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
    HKLM\SOFTWARE\Wow6432Node\RichMediaViewV1
    HKLM\SOFTWARE\Wow6432Node\RichMediaViewV1release808
    HKLM\SOFTWARE\Wow6432Node\Skype
    HKLM\SOFTWARE\Wow6432Node\Software
    HKLM\SOFTWARE\Wow6432Node\SuppHelpDir
    HKLM\SOFTWARE\Wow6432Node\V9
    HKLM\SOFTWARE\Wow6432Node\Video Player
    HKLM\SOFTWARE\Wow6432Node\VideoPlayerV3 =>Adware.CrossRider
    HKLM\SOFTWARE\Wow6432Node\Volatile
    HKLM\SOFTWARE\Wow6432Node\Webexp Enhanced
    HKLM\SOFTWARE\Wow6432Node\WebexpEnhancedV1 =>PUP.WebexpEnhanced
    HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
    HKCU\SOFTWARE\Adobe
    HKCU\SOFTWARE\AppDataLow
    HKCU\SOFTWARE\ASUS
    HKCU\SOFTWARE\BitTorrent
    HKCU\SOFTWARE\Boxore =>Adware.Boxore
    HKCU\SOFTWARE\CyberLink
    HKCU\SOFTWARE\ECAREME
    HKCU\SOFTWARE\Google
    HKCU\SOFTWARE\IM Providers
    HKCU\SOFTWARE\Intel
    HKCU\SOFTWARE\Lake
    HKCU\SOFTWARE\lollipop =>Adware.Lollipop
    HKCU\SOFTWARE\Macromedia
    HKCU\SOFTWARE\McAfee
    HKCU\SOFTWARE\Mine
    HKCU\SOFTWARE\Mozilla
    HKCU\SOFTWARE\MozillaPlugins
    HKCU\SOFTWARE\Netscape
    HKCU\SOFTWARE\NVIDIA Corporation
    HKCU\SOFTWARE\PDFCreator
    HKCU\SOFTWARE\Piriform
    HKCU\SOFTWARE\Realtek
    HKCU\SOFTWARE\RegisteredApplications
    HKCU\SOFTWARE\Skype
    HKCU\SOFTWARE\Software
    HKCU\SOFTWARE\Trolltech
    HKCU\SOFTWARE\VB and VBA Program Settings
    HKCU\SOFTWARE\ZebHelpProcess Helper
    HKCU\SOFTWARE\AppDataLow\Software
    HKCU\SOFTWARE\AppDataLow\Software\Lyrics_Monkey

    ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (151) - 4s
    O43 - CFD: 2015/06/14 20:37:23 - [] D -- C:\Program Files (x86)\Adobe
    O43 - CFD: 2013/09/05 21:05:51 - [0] D -- C:\Program Files (x86)\AGEIA Technologies
    O43 - CFD: 2015/06/03 22:31:32 - [] D -- C:\Program Files (x86)\ASUS
    O43 - CFD: 2015/06/26 12:10:03 - [] D -- C:\Program Files (x86)\Common Files
    O43 - CFD: 2013/03/31 11:39:38 - [] D -- C:\Program Files (x86)\CyberLink
    O43 - CFD: 2015/06/02 15:20:01 - [] D -- C:\Program Files (x86)\Google
    O43 - CFD: 2013/03/31 11:41:04 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
    O43 - CFD: 2013/12/31 00:38:34 - [] D -- C:\Program Files (x86)\Intel
    O43 - CFD: 2015/06/14 19:53:31 - [] D -- C:\Program Files (x86)\Internet Explorer
    O43 - CFD: 2012/11/27 06:07:02 - [] D -- C:\Program Files (x86)\Microsoft Office
    O43 - CFD: 2012/11/27 06:09:40 - [] D -- C:\Program Files (x86)\Microsoft SkyDrive
    O43 - CFD: 2012/11/27 06:10:28 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
    O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\Microsoft.NET
    O43 - CFD: 2013/10/21 20:49:43 - [] D -- C:\Program Files (x86)\Movies Toolbar =>PUP.MoviesToolbar
    O43 - CFD: 2015/06/06 17:16:36 - [] D -- C:\Program Files (x86)\Mozilla Firefox
    O43 - CFD: 2015/06/06 17:16:36 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service
    O43 - CFD: 2013/12/31 00:22:55 - [] D -- C:\Program Files (x86)\MSBuild
    O43 - CFD: 2013/12/31 00:38:35 - [] D -- C:\Program Files (x86)\NVIDIA Corporation
    O43 - CFD: 2013/10/21 22:07:52 - [0] D -- C:\Program Files (x86)\Optimizer Pro =>PUP.OptimizerPro
    O43 - CFD: 2013/09/07 08:23:04 - [] D -- C:\Program Files (x86)\PDFCreator
    O43 - CFD: 2013/03/31 11:23:35 - [] D -- C:\Program Files (x86)\Qualcomm Atheros
    O43 - CFD: 2013/03/31 11:37:23 - [] D -- C:\Program Files (x86)\Realtek
    O43 - CFD: 2013/12/31 00:22:55 - [] D -- C:\Program Files (x86)\Reference Assemblies
    O43 - CFD: 2013/09/06 20:07:11 - [] D -- C:\Program Files (x86)\scrabbleproB1.1
    O43 - CFD: 2013/09/06 21:45:03 - [] D -- C:\Program Files (x86)\Software
    O43 - CFD: 2013/03/31 11:34:34 - [0] HD -- C:\Program Files (x86)\Temp
    O43 - CFD: 2015/03/14 21:18:47 - [] D -- C:\Program Files (x86)\Windows Defender
    O43 - CFD: 2012/11/27 06:10:27 - [] D -- C:\Program Files (x86)\Windows Live
    O43 - CFD: 2015/03/14 21:09:33 - [] D -- C:\Program Files (x86)\Windows Mail
    O43 - CFD: 2015/03/14 21:09:33 - [] D -- C:\Program Files (x86)\Windows Media Player
    O43 - CFD: 2015/03/14 21:09:33 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
    O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\Windows NT
    O43 - CFD: 2015/03/14 21:09:32 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
    O43 - CFD: 2015/03/14 21:09:33 - [] D -- C:\Program Files (x86)\Windows Portable Devices
    O43 - CFD: 2013/12/31 00:38:37 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
    O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\WindowsPowerShell
    O43 - CFD: 2015/03/14 21:18:43 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
    O43 - CFD: 2015/03/14 21:18:52 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
    O43 - CFD: 2015/03/14 21:18:43 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
    O43 - CFD: 2015/06/03 22:31:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
    O43 - CFD: 2013/12/31 00:38:39 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUSDVD
    O43 - CFD: 2014/08/23 22:35:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
    O43 - CFD: 2013/12/31 00:40:06 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
    O43 - CFD: 2013/12/31 00:40:06 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
    O43 - CFD: 2013/08/22 17:36:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
    O43 - CFD: 2013/12/31 00:40:06 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator
    O43 - CFD: 2013/12/31 00:40:06 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\scrabbleproB1.1
    O43 - CFD: 2013/08/22 17:36:33 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
    O43 - CFD: 2015/03/14 21:18:43 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
    O43 - CFD: 2013/11/14 09:16:50 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
    O43 - CFD: 2015/06/14 20:37:04 - [] D -- C:\ProgramData\Adobe
    O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Application Data
    O43 - CFD: 2013/03/31 11:51:17 - [] D -- C:\ProgramData\AsTouchPanel
    O43 - CFD: 2013/09/05 16:34:56 - [] D -- C:\ProgramData\ASUS
    O43 - CFD: 2012/11/27 06:09:15 - [] D -- C:\ProgramData\ASUS WebStorage
    O43 - CFD: 2012/11/27 06:08:26 - [] D -- C:\ProgramData\ASUSLogos
    O43 - CFD: 2013/10/21 21:38:14 - [0] D -- C:\ProgramData\Babylon =>PUP.Babylon
    O43 - CFD: 2013/10/21 21:23:07 - [0] D -- C:\ProgramData\BitGuard =>PUP.BitGuard
    O43 - CFD: 2013/09/07 18:40:00 - [] D -- C:\ProgramData\BoxUpdChk =>Adware.Boxore
    O43 - CFD: 2013/10/21 21:23:07 - [0] D -- C:\ProgramData\Browser Manager
    O43 - CFD: 2013/10/21 21:23:07 - [0] D -- C:\ProgramData\BrowserProtect =>Hijacker.Eazel
    O43 - CFD: 2013/12/31 00:51:13 - [0] SHD -- C:\ProgramData\Bureau
    O43 - CFD: 2013/09/05 16:03:51 - [] D -- C:\ProgramData\ChangeFolderView
    O43 - CFD: 2014/04/11 22:42:54 - [] D -- C:\ProgramData\CyberLink
    O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Desktop
    O43 - CFD: 2013/03/31 11:41:47 - [] D -- C:\ProgramData\Diskeeper Corporation
    O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Documents
    O43 - CFD: 2013/09/05 16:00:51 - [] D -- C:\ProgramData\FolderView
    O43 - CFD: 2013/03/31 11:33:58 - [] D -- C:\ProgramData\Intel
    O43 - CFD: 2013/09/20 08:16:47 - [] D -- C:\ProgramData\McAfee
    O43 - CFD: 2013/12/31 00:51:13 - [0] SHD -- C:\ProgramData\Menu Démarrer
    O43 - CFD: 2014/12/12 10:35:30 - [] SD -- C:\ProgramData\Microsoft
    O43 - CFD: 2015/06/04 18:21:36 - [] D -- C:\ProgramData\Microsoft OneDrive
    O43 - CFD: 2012/11/27 06:09:40 - [] D -- C:\ProgramData\Microsoft SkyDrive
    O43 - CFD: 2013/12/31 00:51:13 - [0] SHD -- C:\ProgramData\Modèles
    O43 - CFD: 2013/09/06 13:53:48 - [] D -- C:\ProgramData\Mozilla
    O43 - CFD: 2013/09/05 21:05:57 - [] D -- C:\ProgramData\NVIDIA
    O43 - CFD: 2013/12/31 00:31:08 - [] D -- C:\ProgramData\NVIDIA Corporation
    O43 - CFD: 2015/07/03 15:58:43 - [] D -- C:\ProgramData\P4G
    O43 - CFD: 2013/12/31 00:38:40 - [] D -- C:\ProgramData\PRICache
    O43 - CFD: 2013/03/31 11:23:27 - [] D -- C:\ProgramData\Qualcomm Atheros
    O43 - CFD: 2015/03/14 21:09:25 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
    O43 - CFD: 2013/10/29 18:10:05 - [0] D -- C:\ProgramData\SafetyNut =>PUP.MoviesToolbar
    O43 - CFD: 2015/06/26 12:10:04 - [] D -- C:\ProgramData\Skype
    O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Start Menu
    O43 - CFD: 2013/03/31 11:40:12 - [] D -- C:\ProgramData\Temp
    O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Templates
    O43 - CFD: 2013/03/31 11:52:43 - [] D -- C:\ProgramData\USBChargerPlus
    O43 - CFD: 2013/09/06 18:41:24 - [] D -- C:\Program Files (x86)\Common Files\337
    O43 - CFD: 2015/06/14 20:37:24 - [] D -- C:\Program Files (x86)\Common Files\Adobe
    O43 - CFD: 2014/07/18 15:56:31 - [] D -- C:\Program Files (x86)\Common Files\Config
    O43 - CFD: 2013/03/31 11:34:05 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
    O43 - CFD: 2013/12/31 00:30:25 - [] D -- C:\Program Files (x86)\Common Files\Intel
    O43 - CFD: 2013/09/06 08:46:17 - [] D -- C:\Program Files (x86)\Common Files\mcafee
    O43 - CFD: 2013/12/31 00:38:33 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared
    O43 - CFD: 2013/03/31 11:33:37 - [] D -- C:\Program Files (x86)\Common Files\postureAgent
    O43 - CFD: 2013/08/22 17:36:33 - [] D -- C:\Program Files (x86)\Common Files\Services
    O43 - CFD: 2015/03/14 21:09:26 - [] D -- C:\Program Files (x86)\Common Files\System
    O43 - CFD: 2012/11/27 06:09:32 - [] D -- C:\Program Files (x86)\Common Files\Windows Live
    O43 - CFD: 2015/06/21 13:01:44 - [] D -- C:\Users\marieantoinette\AppData\Roaming\Adobe
    O43 - CFD: 2013/09/05 16:02:04 - [] D -- C:\Users\marieantoinette\AppData\Roaming\ASUS WebStorage
    O43 - CFD: 2013/10/21 21:38:13 - [] D -- C:\Users\marieantoinette\AppData\Roaming\Babylon =>PUP.Babylon
    O43 - CFD: 2014/07/04 15:11:42 - [] D -- C:\Users\marieantoinette\AppData\Roaming\Crash Reports
    O43 - CFD: 2014/04/11 22:41:45 - [] D -- C:\Users\marieantoinette\AppData\Roaming\CyberLink
    O43 - CFD: 2013/10/30 18:15:25 - [] D -- C:\Users\marieantoinette\AppData\Roaming\Desk 365 =>Hijacker.22Find
    O43 - CFD: 2013/10/30 18:15:25 - [] D -- C:\Users\marieantoinette\AppData\Roaming\FreeSoftwareUpdater
    O43 - CFD: 2013/12/31 01:09:46 - [] D -- C:\Users\marieantoinette\AppData\Roaming\Identities
    O43 - CFD: 2013/09/05 16:00:12 - [] D -- C:\Users\marieantoinette\AppData\Roaming\Macromedia
    O43 - CFD: 2014/04/12 00:13:10 - [] SD -- C:\Users\marieantoinette\AppData\Roaming\Microsoft
    O43 - CFD: 2013/09/17 16:35:35 - [] D -- C:\Users\marieantoinette\AppData\Roaming\Mozilla
    O43 - CFD: 2013/09/07 08:22:44 - [] D -- C:\Users\marieantoinette\AppData\Roaming\pdfforge
    O43 - CFD: 2014/07/04 15:11:42 - [] D -- C:\Users\marieantoinette\AppData\Roaming\Profiles
    O43 - CFD: 2015/06/26 12:09:17 - [] D -- C:\Users\marieantoinette\AppData\Roaming\Skype
    O43 - CFD: 2015/06/04 22:59:10 - [] D -- C:\Users\marieantoinette\AppData\Roaming\uTorrent
    O43 - CFD: 2015/07/05 09:06:38 - [] D -- C:\Users\marieantoinette\AppData\Roaming\ZHP
    O43 - CFD: 2015/06/14 20:33:07 - [] D -- C:\Users\marieantoinette\AppData\Local\Adobe
    O43 - CFD: 2013/12/31 00:36:55 - [0] SHD -- C:\Users\marieantoinette\AppData\Local\Application Data
    O43 - CFD: 2013/09/05 16:28:06 - [] D -- C:\Users\marieantoinette\AppData\Local\Apps
    O43 - CFD: 2013/09/05 16:34:55 - [] D -- C:\Users\marieantoinette\AppData\Local\ASUS
    O43 - CFD: 2014/04/11 23:29:29 - [] D -- C:\Users\marieantoinette\AppData\Local\Cyberlink
    O43 - CFD: 2015/06/21 23:28:50 - [] D -- C:\Users\marieantoinette\AppData\Local\Diagnostics
    O43 - CFD: 2013/10/10 19:53:44 - [0] D -- C:\Users\marieantoinette\AppData\Local\ElevatedDiagnostics
    O43 - CFD: 2015/04/19 17:14:30 - [] SHD -- C:\Users\marieantoinette\AppData\Local\EmieBrowserModeList
    O43 - CFD: 2014/06/26 11:17:25 - [] SHD -- C:\Users\marieantoinette\AppData\Local\EmieSiteList
    O43 - CFD: 2014/06/26 11:17:25 - [] SHD -- C:\Users\marieantoinette\AppData\Local\EmieUserList
    O43 - CFD: 2013/10/22 21:13:11 - [] D -- C:\Users\marieantoinette\AppData\Local\eMule
    O43 - CFD: 2014/05/14 11:36:30 - [] D -- C:\Users\marieantoinette\AppData\Local\Google
    O43 - CFD: 2015/06/06 19:25:45 - [] D -- C:\Users\marieantoinette\AppData\Local\GWX
    O43 - CFD: 2013/12/31 00:36:55 - [0] SHD -- C:\Users\marieantoinette\AppData\Local\Historique
    O43 - CFD: 2014/07/03 09:49:47 - [] D -- C:\Users\marieantoinette\AppData\Local\Intel_Corporation
    O43 - CFD: 2013/09/06 21:35:53 - [0] D -- C:\Users\marieantoinette\AppData\Local\Lollipop =>Adware.Lollipop
    O43 - CFD: 2013/09/06 18:54:10 - [] D -- C:\Users\marieantoinette\AppData\Local\Macromedia
    O43 - CFD: 2015/06/04 18:21:36 - [] D -- C:\Users\marieantoinette\AppData\Local\Microsoft
    O43 - CFD: 2013/10/30 18:12:48 - [] D -- C:\Users\marieantoinette\AppData\Local\Mozilla
    O43 - CFD: 2014/01/01 21:44:55 - [] D -- C:\Users\marieantoinette\AppData\Local\Packages
    O43 - CFD: 2014/07/04 15:11:42 - [] D -- C:\Users\marieantoinette\AppData\Local\Profiles
    O43 - CFD: 2013/09/07 08:20:43 - [] D -- C:\Users\marieantoinette\AppData\Local\Programs
    O43 - CFD: 2015/06/21 12:57:24 - [] D -- C:\Users\marieantoinette\AppData\Local\Skype
    O43 - CFD: 2013/09/06 18:40:31 - [] D -- C:\Users\marieantoinette\AppData\Local\Software
    O43 - CFD: 2013/10/21 20:50:15 - [] D -- C:\Users\marieantoinette\AppData\Local\somotomoviestoolbar1 =>Adware.MegaSearch
    O43 - CFD: 2015/07/05 09:04:27 - [] D -- C:\Users\marieantoinette\AppData\Local\Temp
    O43 - CFD: 2013/12/31 00:36:55 - [0] SHD -- C:\Users\marieantoinette\AppData\Local\Temporary Internet Files
    O43 - CFD: 2013/09/25 20:46:20 - [] D -- C:\Users\marieantoinette\AppData\Local\VirtualStore
    O43 - CFD: 2013/10/21 21:37:45 - [] D -- C:\Users\marieantoinette\AppData\Local\Wajam =>PUP.Wajam
    O43 - CFD: 2013/08/22 17:36:32 - [] RD -- C:\Users\marieantoinette\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
    O43 - CFD: 2013/08/22 17:36:32 - [] RD -- C:\Users\marieantoinette\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
    O43 - CFD: 2015/03/14 21:30:17 - [] RD -- C:\Users\marieantoinette\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
    O43 - CFD: 2013/09/05 21:11:03 - [0] D -- C:\Users\marieantoinette\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
    O43 - CFD: 2013/08/22 17:36:32 - [] D -- C:\Users\marieantoinette\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
    O43 - CFD: 2015/03/14 21:30:17 - [] RD -- C:\Users\marieantoinette\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
    O43 - CFD: 2013/12/31 00:37:35 - [] RD -- C:\Users\marieantoinette\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools

    ---\\ Liste des pilotes du système (SDL) (O58) (56) - 5s
    O58 - SDL:2013/08/22 14:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\drivers\3ware.sys [108896]
    O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\Windows\System32\drivers\adp80xx.sys [782176]
    O58 - SDL:2012/09/18 13:51:54 A . (.ASUSTek Computer Inc. - ASUS Charger driver.) -- C:\Windows\System32\drivers\AiCharger.sys [17152]
    O58 - SDL:2013/08/22 14:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [79200]
    O58 - SDL:2013/08/22 14:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [259424]
    O58 - SDL:2013/08/22 14:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [25952]
    O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [114016]
    O58 - SDL:2013/11/04 04:32:06 A . (.ASUS - HID driver for ASUS Wireless Radio Control.) -- C:\Windows\System32\drivers\AsHIDSwitch64.sys [20280]
    O58 - SDL:2013/01/16 15:11:34 A . (.ASUS Corporation - Asus TP Filter Driver.) -- C:\Windows\System32\drivers\AsusTP.sys [65784]
    O58 - SDL:2013/06/18 16:45:02 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\Windows\System32\drivers\athw8x.sys [3680256]
    O58 - SDL:2013/08/14 04:42:44 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\Windows\System32\drivers\athwbx.sys [3837440]
    O58 - SDL:2013/08/13 01:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\Windows\System32\drivers\bcmfn2.sys [17624]
    O58 - SDL:2013/08/22 14:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [531296]
    O58 - SDL:2013/01/18 09:20:42 A . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\Windows\System32\drivers\DptfDevDram.sys [107920]
    O58 - SDL:2013/01/18 09:20:42 A . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\Windows\System32\drivers\DptfDevFan.sys [43408]
    O58 - SDL:2013/01/18 09:20:42 A . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\Windows\System32\drivers\DptfDevGen.sys [65424]
    O58 - SDL:2013/01/18 09:20:42 A . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\Windows\System32\drivers\DptfDevProc.sys [229776]
    O58 - SDL:2013/01/18 09:20:42 A . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\Windows\System32\drivers\DptfManager.sys [363920]
    O58 - SDL:2013/08/22 14:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3357024]
    O58 - SDL:2012/03/30 13:54:16 A . (.Diskeeper Corporation - ExpressCache Filesystem Filter Driver.) -- C:\Windows\System32\drivers\excfs.sys [23344]
    O58 - SDL:2012/03/30 13:54:16 A . (.Diskeeper Corporation - ExpressCache Driver.) -- C:\Windows\System32\drivers\excsd.sys [95024]
    O58 - SDL:2012/07/02 16:16:02 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [62784]
    O58 - SDL:2013/08/22 14:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [64352]
    O58 - SDL:2013/07/30 20:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568]
    O58 - SDL:2013/07/25 21:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320]
    O58 - SDL:2012/12/07 08:45:34 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\drivers\iaStorA.sys [652344]
    O58 - SDL:2013/08/10 02:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\Windows\System32\drivers\iaStorAV.sys [651248]
    O58 - SDL:2013/08/22 14:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [412000]
    O58 - SDL:2013/10/01 14:02:30 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [4177920]
    O58 - SDL:2012/10/08 11:02:52 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [342528]
    O58 - SDL:2013/08/23 00:51:12 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\Windows\System32\drivers\intelaud.sys [39320]
    O58 - SDL:2012/07/30 14:27:52 A . (.Intel Corporation - Intel(R) Rapid Start Technology Driver.) -- C:\Windows\System32\drivers\irstrtdv.sys [43800]
    O58 - SDL:2013/08/23 00:51:12 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\Windows\System32\drivers\iwdbus.sys [26008]
    O58 - SDL:2012/08/02 05:22:48 A . (. - Keyboard Filter Driver.) -- C:\Windows\System32\drivers\kbfiltr.sys [14992]
    O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [109408]
    O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [93536]
    O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas3.sys [81760]
    O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sss.sys [82784]
    O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [56672]
    O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\megasr.sys [575840]
    O58 - SDL:2013/08/22 14:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\drivers\mvumis.sys [63840]
    O58 - SDL:2013/12/10 09:13:12 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [12572960]
    O58 - SDL:2013/12/10 09:13:16 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvpciflt.sys [32544]
    O58 - SDL:2013/08/22 14:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [150368]
    O58 - SDL:2013/08/22 14:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [168288]
    O58 - SDL:2013/06/18 16:46:17 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\Windows\System32\drivers\Rt630x64.sys [591360]
    O58 - SDL:2013/01/23 13:00:48 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [3308360]
    O58 - SDL:2012/06/13 12:23:58 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\Windows\System32\drivers\RtsBaStor.sys [294544]
    O58 - SDL:2013/08/22 17:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040]
    O58 - SDL:2013/08/22 14:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [44896]
    O58 - SDL:2013/08/22 14:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [81760]
    O58 - SDL:2013/08/22 14:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\Windows\System32\drivers\stexstor.sys [31072]
    O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [19808]
    O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [168800]
    O58 - SDL:2013/08/22 14:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\drivers\VSTXRAID.SYS [305504]
    O58 - SDL:2012/09/19 01:15:20 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\Windows\System32\athw8x.sys [3653632]

    ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (3) - 18s
    O61 - LFC: 2015/07/01 13:16:28 A . (..) -- C:\Users\marieantoinette\Downloads\Firefox Setup 38.0.5.exe [40444736]
    O61 - LFC: 2015/07/05 08:36:28 A . (..) -- C:\Users\marieantoinette\AppData\Roaming\sp_data.sys [62]
    O61 - LFC: 2015/07/03 19:12:52 A . (..) -- C:\Users\marieantoinette\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849]

    ---\\ Associations Shell Spawning (O67) (10) - 0s
    O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (...) -- "%1" %*
    O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
    O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (...) -- "%1" %*
    O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] (...) -- "%1" %*
    O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %*
    O67 - Shell Spawning: <.html> <htmlfile>[HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
    O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe
    O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
    O67 - Shell Spawning: <.scr> <scrfile>[HKLM\..\open\Command] (...) -- "%1" /S
    O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe

    ---\\ Menu de démarrage Internet (SMI) (O68) (12) - 0s
    O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
    O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
    O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
    O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
    O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
    O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
    O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe

    ---\\ Enumère les services démarrés par Svchost (SSS) (O83) (34) - 1s
    O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d'application.) -- C:\Windows\System32\aelupsvc.dll [214528]
    O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [156160]
    O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [156160]
    O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [329216]
    O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1360896]
    O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [1084416]
    O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [926208]
    O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [31744]
    O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d'application.) -- C:\Windows\System32\appinfo.dll [110080]
    O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [151040]
    O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [110592]
    O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1265152]
    O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [230400]
    O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [71168]
    O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d'ordinateurs.) -- C:\Windows\System32\browser.dll [135168]
    O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [225280]
    O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [339968]
    O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84992]
    O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [101376]
    O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [348672]
    O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d'infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [521728]
    O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\system32\wlidsvc.dll [1639424]
    O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [59392]
    O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d'installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [206848]
    O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\ncasvc.dll [166400]
    O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d'.) -- C:\Windows\System32\rasauto.dll [102912]
    O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d'accès à dista.) -- C:\Windows\System32\rasmans.dll [542208]
    O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d'interface dynamique.) -- C:\Windows\System32\mprdim.dll [226816]
    O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d'événements systèm.) -- C:\Windows\System32\sens.dll [73728]
    O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\Windows\System32\ipnathlp.dll [452608]
    O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [313344]
    O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [3678720]
    O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [933376]
    O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [640000]

    ---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) (21) - 11s
    SR - Auto [2015/06/12 09:25:00] [ 82112] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
    SS - Demand [2015/06/26 12:26:31] [ 268976] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
    SR - Auto [2012/10/05 16:55:50] [ 110976] ASLDR Service (ASLDRService) . (.ASUSTek Computer Inc..) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
    SR - Auto [2012/04/13 11:14:00] [ 277120] ASUS InstantOn Service (ASUS InstantOn) . (.ASUS.) - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe
    SR - Auto [2011/11/21 15:1
    0
  4. jacques.gache Messages postés 34829 Statut Contributeur sécurité 1 645
     
    bonjour, pourrais tu poster le rapport de zhpdiag comme demander en passant par un hébergeur car il est trop long et donc il est pas complet regarde toi même , merci

    tu va sur https://www.cjoint.com/ tu recherche le rapport , tu le sélectionnes, tu fais créer le lien , tu copie celui ci et tu le colle dans ta prochaine réponse , merci
    0