cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ Rapport de ZHPDiag v2014.9.10.132 - Nicolas Coolman (10/09/2014)
~ Lancé par vero et gégé (12/09/2014 16:45:29)
~ Adresse du Site Web http://nicolascoolman.fr
~ Adresse du Forum http://forum.nicolascoolman.fr
~ Traduit par Nicolas Coolman
~ Etat de la version : Version à jour.
~ Liste blanche : Désactivée par l'utilisateur
~ Elévation des Privilèges : OK
~ User Account Control (UAC): Not Found


---\\ Navigateurs Internet
MSIE: Internet Explorer v8.0.6001.18702
GCIE: Google Chrome v37.0.2062.120 (Defaut)

---\\ Informations sur les produits Windows
~ Langage: Français
Microsoft Windows XP, 32-bit Service Pack 3 (Build 2600)
Windows Automatic Updates : OK
Windows Genuine Advantage : OK

---\\ Logiciels de protection du système
Bitdefender Internet Security 2015 v18.14.0.1088

---\\ Logiciels d'optimisation du système
CCleaner v4.14

---\\ Logiciels de partage PeerToPeer

---\\ Surveillance de Logiciels
Adobe Reader XI

---\\ Informations sur le système
~ Processor: x86 Family 15 Model 4 Stepping 9, GenuineIntel
~ Operating System: 32 Bits
Boot mode: Normal (Normal boot)
Total RAM: 1022 MB (43% free)
System Restore: Activé (Enable)
System drive C: has 49 GB (59%) free of 82 GB

---\\ Mode de connexion au système
~ Computer Name: SN115315010313
~ User Name: vero et gégé
~ All Users Names: vero et gégé, SUPPORT_388945a0, HelpAssistant, ASPNET, Administrateur,
~ Unselected Option: None
Logged in as Administrator

---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : D:\Documents and Settings\vero et gégé\Application Data\ZHP\
~ %AppData% : D:\Documents and Settings\vero et gégé\Application Data\
~ %Desktop% : D:\Documents and Settings\vero et gégé\Bureau\
~ %Favorites% : D:\Documents and Settings\vero et gégé\Favoris\
~ %LocalAppData% : D:\Documents and Settings\vero et gégé\Local Settings\Application Data\
~ %StartMenu% : D:\Documents and Settings\vero et gégé\Menu Démarrer\
~ %Windir% : C:\WINDOWS\
~ %System% : C:\WINDOWS\system32\

---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 49 Go of 82 Go)
D: Hard drive, Flash drive, Thumb drive (Free 32 Go of 109 Go)
E: CD-ROM drive (Not Inserted)
F: Floppy drive, Flash card reader, USB Key (Not Inserted)
G: Hard drive, Flash drive, Thumb drive (Free 375 Go of 466 Go)
H: Floppy drive, Flash card reader, USB Key (Free 21 Go of 30 Go)
I: Floppy drive, Flash card reader, USB Key (Not Inserted)
J: CD-ROM drive (Not Inserted)
K: Floppy drive, Flash card reader, USB Key (Not Inserted)
L: Floppy drive, Flash card reader, USB Key (Not Inserted)



---\\ Etat du Centre de Sécurité Windows
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Security Center: 44 Scanned in 00mn 00s



---\\ Recherche particulière de fichiers génériques
[MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - (.Microsoft Corporation - Explorateur Windows.) (.14/04/2008 - 03:34:03.) -- C:\WINDOWS\Explorer.exe [1037824]
[MD5.E1948B1F45A176FB4A0251446A5AE86D] - (.Microsoft Corporation - Internet Extensions for Win32.) (.06/03/2014 - 18:58:52.) -- C:\WINDOWS\system32\wininet.dll [920064]
[MD5.DD73D6B9F6B4CB630CF35B438B540174] - (.Microsoft Corporation - Application d'ouverture de session Windows NT.) (.14/04/2008 - 03:34:28.) -- C:\WINDOWS\system32\Winlogon.exe [512000]
[MD5.1E44BC1E83D8FD2305F8D452DB109CF9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.17/08/2011 - 14:49:54.) -- C:\WINDOWS\system32\Drivers\AFD.sys [138496]
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] - (.Microsoft Corporation - IDE/ATAPI Port Driver.) (.13/04/2008 - 19:40:30.) -- C:\WINDOWS\system32\Drivers\atapi.sys [96512]
[MD5.C885B02847F5D2FD45A24E219ED93B32] - (.Microsoft Corporation - CD-ROM File System Driver.) (.13/04/2008 - 20:14:21.) -- C:\WINDOWS\system32\Drivers\Cdfs.sys [63744]
[MD5.1F4260CC5B42272D71F79E570A27A4FE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.13/04/2008 - 19:40:46.) -- C:\WINDOWS\system32\Drivers\Cdrom.sys [62976]
[MD5.31F923EB2170FC172C81ABDA0045D18C] - (.Microsoft Corporation - Pilote de cryptographie FIPS.) (.14/04/2008 - 02:57:38.) -- C:\WINDOWS\system32\Drivers\Fips.sys [44672]
[MD5.573C7D0A32852B48F3058CFD8026F511] - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) (.13/04/2008 - 17:36:05.) -- C:\WINDOWS\system32\Drivers\HDAudBus.sys [144384]
[MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - (.Microsoft Corporation - Pilote de port i8042.) (.14/04/2008 - 03:00:52.) -- C:\WINDOWS\system32\Drivers\i8042prt.sys [54144]
[MD5.083A052659F5310DD8B6A6CB05EDCF8E] - (.Microsoft Corporation - IMAPI Kernel Driver.) (.13/04/2008 - 19:40:58.) -- C:\WINDOWS\system32\Drivers\Imapi.sys [42112]
[MD5.CC748EA12C6EFFDE940EE98098BF96BB] - (.Microsoft Corporation - IP Network Address Translator.) (.13/04/2008 - 19:57:15.) -- C:\WINDOWS\system32\Drivers\IpNat.sys [152832]
[MD5.23C74D75E36E7158768DD63D92789A91] - (.Microsoft Corporation - IPSec Driver.) (.13/04/2008 - 20:19:42.) -- C:\WINDOWS\system32\Drivers\IPSec.sys [75264]
[MD5.7D304A5EB4344EBEEAB53A2FE3FFB9F0] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.15/07/2011 - 14:29:31.) -- C:\WINDOWS\system32\Drivers\MRxSmb.sys [456320]
[MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - (.Microsoft Corporation - MBT Transport driver.) (.13/04/2008 - 20:21:00.) -- C:\WINDOWS\system32\Drivers\netBT.sys [162816]
[MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - (.Microsoft Corporation - NT File System Driver.) (.13/04/2008 - 20:15:53.) -- C:\WINDOWS\system32\Drivers\ntfs.sys [574976]
[MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/04/2008 - 03:09:40.) -- C:\WINDOWS\system32\Drivers\Parport.sys [80384]
[MD5.11B4A627BC9614B885C4969BFA5FF8A6] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.13/04/2008 - 20:19:43.) -- C:\WINDOWS\system32\Drivers\Rasl2tp.sys [51328]
[MD5.15CABD0F7C00C47C70124907916AF3F1] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.13/04/2008 - 19:32:51.) -- C:\WINDOWS\system32\Drivers\rdpdr.sys [196224]
[MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) (.14/04/2008 - 02:57:34.) -- C:\WINDOWS\system32\Drivers\redbook.sys [58752]
[MD5.46DE1126684369BACE4849E4FC8C43CA] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.14/04/2008 - 02:56:04.) -- C:\WINDOWS\system32\Drivers\volsnap.sys [53376]
~ Generic Processes: Scanned in 00mn 00s



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 3/5
~ Mes musiques (My Musics) : 1/3
~ Mes Videos (My Videos) : 2/7
~ Mes Favoris (My Favorites) : 1/178
~ Mes Documents (My Documents) : 3/2274
~ Mon Bureau (My Desktop) : 0/12
~ Menu demarrer (Programs) : 1/40
~ Hidden Files: Scanned in 00mn 05s



---\\ Processus lancés
[MD5.029DD18E9A887429EE1F62E844A9FA4D] - (.Bitdefender - Bitdefender Security Service.) -- C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe [1238936] [PID.428]
[MD5.6BDCE382BB72AB6990D57F288AC640BE] - (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) -- C:\WINDOWS\system32\Ati2evxx.exe [425984] [PID.292]
[MD5.133F82B6391F3390BECFA429C23FB2BE] - (.CrypKey (Canada) Ltd. - CrypKey License Service.) -- C:\WINDOWS\system32\crypserv.exe [122880] [PID.1332]
[MD5.5D1347AA5AE6E2F77D7F4F8372D95AC9] - (.Microsoft Corporation - Media Center Receiver Service.) -- C:\WINDOWS\eHome\ehRecvr.exe [237568] [PID.1392]
[MD5.980EEEA91776357518892C5544768E2B] - (.Microsoft Corporation - Service de planification Media Center.) -- C:\WINDOWS\eHome\ehSched.exe [103424] [PID.1556]
[MD5.0796C1E47ADB9825269E64B9DAB4E741] - (.Teruten - FsUsbDevice.) -- C:\WINDOWS\system32\FsUsbExService.exe [233472] [PID.1608]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [116648] [PID.392]
[MD5.BF918C9473D64BBD53C22C47045883F5] - (.Oracle Corporation - Java Quick Starter Service.) -- C:\Program Files\Java\jre7\bin\jqs.exe [182696] [PID.3116]
[MD5.0A03E85A641F2672796D34F506066594] - (.TomTom - Windows Service for TomTom HOME.) -- C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe [93040] [PID.3940]
[MD5.CA90D2C55EB3BB90687677BEA3DB0B59] - (.Ulead Systems, Inc. - ULCDRSvr.) -- C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe [49152] [PID.196]
[MD5.1B494121D63DD8D820F6655BD758F866] - (.Bitdefender - Bitdefender Update Service.) -- C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe [54424] [PID.476]
[MD5.5A0C788C5BC5F2C993CB60940ADCF95E] - (.X10 - X10 Module.) -- C:\Program Files\Common Files\X10\Common\X10nets.exe [20480] [PID.732]
[MD5.0DAD93BB0FECF5016AE3C06CBB0A873B] - (.Microsoft Corporation - COM Surrogate.) -- C:\WINDOWS\system32\dllhost.exe [5120] [PID.2896]
[MD5.F759F5AE393F7141E540282A99AD3586] - (.Bitdefender - Bitdefender Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe [1685432] [PID.720]
[MD5.4E534A59198D80FFC824F7FFE58D6658] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe [507776] [PID.3504]
[MD5.F6573840989C4E8ED2EBF8B0644CF500] - (.SFR - Propriétés de la connexion SFR.) -- C:\Program Files\SFR\Kit\9props.exe [959880] [PID.3552]
[MD5.BD709E1369189201C555A099E700BA33] - (.Bitdefender - Bitdefender Wallet Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe [686320] [PID.2648]
[MD5.015A3219861C47D917EEA9601BA107F0] - (.Bitdefender - Wallet Apps Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxapps.exe [279488] [PID.692]
[MD5.4543367E50BD35E7D1269D42841B156E] - (.Hewlett-Packard Development Company, L.P. - HP Digital Imaging Monitor.) -- C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [288472] [PID.3780]
[MD5.87BCF7A6A70060A48F9F5E6F80228A3F] - (.Hewlett-Packard Development Company, L.P. - HP Photosmart Premier.) -- C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe [479232] [PID.796]
[MD5.88029974B1C9995CFA3BD9560BBA2EEF] - (.Hewlett-Packard Development Company, L.P. - HP CUE Status.) -- C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe [239320] [PID.1228]
[MD5.2E0B0A051FFAA86E358465BB0880D453] - (.Microsoft Corporation - Windows Update.) -- C:\WINDOWS\system32\wuauclt.exe [53784] [PID.816]
[MD5.3738B621703B1749CBB216DCFD46D8ED] - (.Mozilla Corporation - Thunderbird.) -- C:\Program Files\Mozilla Thunderbird\thunderbird.exe [389744] [PID.1760]
[MD5.6E1D3273E66EADDA1EA105250E63C3CC] - (.Microsoft Corporation - Windows Error Reporting Dump Reporting Tool.) -- C:\WINDOWS\system32\dumprep.exe [10752] [PID.4544]
[MD5.80B582A109C0E361408409183D18FDEB] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [8102400] [PID.5172]
~ Processes Running: Scanned in 00mn 02s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
P2 - FPN:Firefox Plugin Navigator . (.Microsoft Corporation - Office Plugin for Netscape Navigator.) -- C:\Program Files\Mozilla Firefox\Plugins\NPOFF12.DLL
P2 - FPN:Firefox Plugin Navigator . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 11.0.8.) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll
P2 - FPN: [HKLM] [@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf] - (.Tracker Software Products (Canada) Ltd. - PDF-XChange Viewer Netscape Gecko Plugin.) -- C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll
P2 - FPN: [HKLM] [@Google.com/GoogleEarthPlugin] - (.Google - GEPlugin.) -- C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll =>.Google Inc
P2 - FPN: [HKLM] [@google.com/npPicasa3,version=3.0.0] - (.Google, Inc. - Picasa plugin.) -- C:\Program Files\Google\Picasa3\npPicasa3.dll
P2 - FPN: [HKLM] [@java.com/DTPlugin,version=11.20.2] - (.Oracle Corporation - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- C:\Program Files\Java\jre1.8.0_20\bin\dtplugin\npDeployJava1.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=11.20.2] - (.Oracle Corporation - Next Generation Java Plug-in 11.20.2 for Mozilla browsers.) -- C:\Program Files\Java\jre1.8.0_20\bin\plugin2\npjp2.dll
P2 - FPN: [HKLM] [@Microsoft.com/DownloadManager,version=1.1] - (...) -- (.not file.)
P2 - FPN: [HKLM] [@microsoft.com/OfficeAuthz,version=14.0] - (.Microsoft Corporation - Office Authorization plug-in for NPAPI browsers.) -- C:\Program Files\Microsoft Office\Office14\NPAUTHZ.dll
P2 - FPN: [HKLM] [@microsoft.com/SharePoint,version=14.0] - (.Microsoft Corporation - The plug-in allows you to open and edit files using Microsoft Office a.) -- C:\Program Files\Microsoft Office\Office14\NPSPWRAP.dll
P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=14.0.8117.0416] - (...) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (.not file.)
P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.0.6] - (...) -- C:\Program Files\adslTV\VLC\npvlc.dll (.not file.)
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.0] - (...) -- C:\Program Files\adslTV\VLC\npvlc.dll (.not file.)
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.2] - (...) -- C:\Program Files\adslTV\VLC\npvlc.dll (.not file.)
P2 - FPN: [HKLM] [Adobe Reader] - (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 11.0.8.) -- C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
P2 - FPN: [HKLM] [adobe.com/AdobeAAMDetect] - (.Adobe Systems - A plugin to detect whether the Adobe Application Manager is installed.) -- C:\Program Files\Fichiers communs\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll
P2 - FPN: [HKCU] [@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf] - (.Tracker Software Products (Canada) Ltd. - PDF-XChange Viewer Netscape Gecko Plugin.) -- C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll
P2 - FPN: [HKCU] [sony.com/MediaGoDetector] - (.Sony Network Entertainment International LL - Media Go Detector Plug-in.) -- C:\Program Files\Sony\Media Go\npMediaGoDetector.dll
~ Firefox Browser: 21 Scanned in 00mn 00s



---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = http://www.google.com
R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Sony Network Entertainment International LL - Media Go Detector Plug-in.) (No version) -- (.not file.)
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 0
R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2
~ IE Browser: 15 Scanned in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
~ Proxy management: Scanned in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\WINDOWS\System32\Userinit.exe,
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"
~ Keys: Scanned in 00mn 00s



---\\ Hosts file redirection (O1)
~ Le fichier hôte est sain (The hosts file is clean) (1)
~ Hosts File: Scanned in 00mn 00s



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: (no name) - AutorunsDisabled Clé orpheline
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_20\bin\ssv.dll
O2 - BHO: Adobe Acrobat Create PDF Helper - {AE7CD045-E861-484f-8273-0445EE161910} . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files\Fichiers communs\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\Office14\URLREDIR.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_20\bin\jp2ssv.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files\Fichiers communs\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll
~ BHO: 14 Scanned in 00mn 01s



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: Adobe Acrobat Create PDF Toolbar - [HKLM]{47833539-D0C5-4125-9FA8-0819E2EAAC93} . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files\Fichiers communs\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll
O3 - Toolbar: Bitdefender Wallet - [HKLM]{1DAC0C53-7D23-4AB3-856A-B04D98CD982A} . (.Bitdefender - Bitdefender Password Manager Internet Explo.) -- C:\Program Files\Bitdefender\Bitdefender 2015\pmbxie.dll
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{47833539-D0C5-4125-9FA8-0819E2EAAC93} Clé orpheline
~ Toolbar: Scanned in 00mn 00s



---\\ Applications lancées au démarrage du système (O4)
O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\qttask.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe =>.Oracle Corporation
O4 - HKLM\..\Run: [Bdagent] . (.Bitdefender - Bitdefender Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe
O4 - HKLM\..\Run: [DWQueuedReporting] . (.Microsoft Corporation - Watson Subscriber for SENS Network Notifica.) -- C:\Program Files\Fichiers communs\Microsoft Shared\DW\DWTRIG20.exe
O4 - HKCU\..\Run: [Connexion SFR 9props.exe] . (.SFR - Propriétés de la connexion SFR.) -- C:\Program Files\SFR\Kit\9props.exe
O4 - HKCU\..\Run: [Bitdefender Wallet Agent] . (.Bitdefender - Bitdefender Wallet Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe
O4 - HKCU\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-21-648750196-529253911-563172511-1005\..\Run: [Connexion SFR 9props.exe] . (.SFR - Propriétés de la connexion SFR.) -- C:\Program Files\SFR\Kit\9props.exe
O4 - HKUS\S-1-5-21-648750196-529253911-563172511-1005\..\Run: [Bitdefender Wallet Agent] . (.Bitdefender - Bitdefender Wallet Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe
O4 - HKUS\S-1-5-21-648750196-529253911-563172511-1005\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
~ Application: Scanned in 00mn 00s



---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} -- C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (.not file.)
O9 - Extra button: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} . (.Microsoft Corporation - Microsoft OneNote Internet Explorer Add-in.) -- C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll =>.Microsoft Corporation
O9 - Extra button: Notes &liées OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} . (.Microsoft Corporation - Microsoft OneNote Internet Explorer Add-in.) -- C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll =>.Microsoft Corporation
O9 - Extra button: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} -- Clé orpheline
O9 - Extra button: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} -- Clé orpheline
~ IE Extra Buttons: Scanned in 00mn 00s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\system32\mswsock.dll =>.Microsoft Corporation
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\WINDOWS\system32\winrnr.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\system32\mswsock.dll =>.Microsoft Corporation
~ Winsock: 3 Scanned in 00mn 00s



---\\ Piratage de l'Option 'Rétablir les paramètres Web' (O14)
O14 - IERESET.INF: START_PAGE_URL=START_PAGE_URL=http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
~ IE Paramètres WEB: Scanned in 00mn 00s



---\\ Site dans la Zone de confiance d'Internet Explorer (O15)
O15 - Trusted Zone: [HKCU\...\Domains] *.clonewarsadventures.com
O15 - Trusted Zone: [HKCU\...\Domains] *.freerealms.com
O15 - Trusted Zone: [HKCU\...\Domains] *.soe.com
O15 - Trusted Zone: [HKCU\...\Domains] *.sony.com
~ IE Zone Confiance: Scanned in 00mn 04s



---\\ Objets ActiveX (Downloaded Program Files)(O16)
O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} ((no name)) - http://www.casimages.com/iu/ImageUploader5.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} ((no name)) - http://messenger.zone.msn.com/MessengerGamesContent/GameContent/fr/uno1/GAME_UNO1.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} ((no name)) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1360530182572
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} ((no name)) - http://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab
O16 - DPF: {B479199A-1242-4E3C-AD81-7F0DF801B4AE} ((no name)) - http://download.microsoft.com/download/C/9/C/C9C3D86D-84AC-4AF0-8584-842756A66467/MicrosoftDownloadManager.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} ((no name)) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
~ Objets ActiveX: Scanned in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{58676BB4-512A-4665-92F2-6DC951C392F7}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{58676BB4-512A-4665-92F2-6DC951C392F7}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{58676BB4-512A-4665-92F2-6DC951C392F7}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
~ Domain: Scanned in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (...) --
O18 - Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE14\MSOXMLMF.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: AtiExtEvent . (.ATI Technologies Inc. - ATI External Event Utility DLL Module.) -- C:\WINDOWS\system32\Ati2evxx.dll
O20 - Winlogon Notify: crypt32chain . (.Microsoft Corporation - Crypto API32.) -- C:\WINDOWS\system32\crypt32.dll
O20 - Winlogon Notify: cryptnet . (.Microsoft Corporation - Crypto Network Related API.) -- C:\WINDOWS\system32\cryptnet.dll
O20 - Winlogon Notify: cscdll . (.Microsoft Corporation - Agent réseau hors connexion.) -- C:\WINDOWS\system32\cscdll.dll
O20 - Winlogon Notify: dimsntfy . (.Microsoft Corporation - DIMS Notification Handler.) -- C:\WINDOWS\system32\dimsntfy.dll
O20 - Winlogon Notify: ScCertProp . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\WINDOWS\system32\wlnotify.dll
O20 - Winlogon Notify: Schedule . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\WINDOWS\system32\wlnotify.dll
O20 - Winlogon Notify: sclgntfy . (.Microsoft Corporation - DLL secondaire de notification de service d.) -- C:\WINDOWS\system32\sclgntfy.dll
O20 - Winlogon Notify: SensLogn . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\WINDOWS\system32\WlNotify.dll
O20 - Winlogon Notify: termsrv . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\WINDOWS\system32\wlnotify.dll
O20 - Winlogon Notify: wlballoon . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\WINDOWS\system32\wlnotify.dll
~ Winlogon: Scanned in 00mn 00s



---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll
O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\SHELL32.dll
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Web Site Monitor.) -- C:\WINDOWS\system32\webcheck.dll
O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} . (.Microsoft Corporation - Objet du service d'environnement Systray.) -- C:\WINDOWS\system32\stobject.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} . (.Microsoft Corporation - Windows Portable Device Shell Service Objec.) -- C:\WINDOWS\system32\WPDShServiceObj.dll
~ SSODL: 5 Scanned in 00mn 00s



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: (Ati HotKey Poller) . (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart (ATI Smart) . (.Pas de propriétaire - ATI Smart.) - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Avira Service Host (Avira.OE.ServiceHost) . (...) - C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe (.not file.)
O23 - Service: Crypkey License (Crypkey License) . (.CrypKey (Canada) Ltd. - CrypKey License Service.) - C:\WINDOWS\system32\crypserv.exe
O23 - Service: FsUsbExService (FsUsbExService) . (.Teruten - FsUsbDevice.) - C:\WINDOWS\system32\FsUsbExService.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.Hewlett-Packard Company - SolutionsFrameworkService.) - C:\Program Files\Hp\Common\HPSupportSolutionsFrameworkService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) . (.Oracle Corporation - Java Quick Starter Service.) - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: Pml Driver HPZ12 (Pml Driver HPZ12) . (.HP - PML Driver.) - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: TomTomHOMEService (TomTomHOMEService) . (.TomTom - Windows Service for TomTom HOME.) - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) . (.Ulead Systems, Inc. - ULCDRSvr.) - C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: Bitdefender Desktop Update Service (UPDATESRV) . (.Bitdefender - Bitdefender Update Service.) - C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe
O23 - Service: Bitdefender Virus Shield (VSSERV) . (.Bitdefender - Bitdefender Security Service.) - C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe
O23 - Service: X10 Device Network Service (x10nets) . (.X10 - X10 Module.) - C:\Program Files\Common Files\X10\Common\X10nets.exe
~ Services: 14 Scanned in 00mn 10s



---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Desktop Component 0: (no name) - file:http://www.ohplaisir.com/images/kamasutra/apercu/11.jpg
O24 - Default MHTML Editor: Last - .(...) - C:\Program Files\Microsoft Office\Office12\WINWORD.exe (.not file.)
O24 - Desktop General: BackupWallPaper - .(...) - D:\Documents and Settings\vero et gégé\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop General: WallPaper - .(...) - D:\Documents and Settings\vero et gégé\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
~ Desktop Component: 4 Scanned in 00mn 00s



---\\ Enumère les données de BootExecute (BEX) (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (SBBD.exe /d \Device\HarddiskVolume1\Program Files\Ad-Aware Antivirus\Definitions) - File not found
~ BEX: 2 Scanned in 00mn 00s



---\\ Tâches planifiées en automatique (O39)
[MD5.F4BF3ADDDDC1AD372604F13C2B0C1F65] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [262320]
[MD5.298A1809604F11B5B6F0932DB074948A] [APT] [Configurer mon PC] (.Packard Bell BV.) -- C:\Apps\SMP\PCSETUP.exe [1422848]
[MD5.87AC7DA15823EFA1CA13C2A5907A63EF] [APT] [Extension de garantie] (.Packard Bell BV.) -- C:\APPS\SMP\PBCARNOT.exe [421888]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [116648]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [116648]
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT: Configurer mon PC - (.Packard Bell BV.) -- C:\WINDOWS\Tasks\Configurer mon PC.job [252]
O39 - APT: Extension de garantie - (.Packard Bell BV.) -- C:\WINDOWS\Tasks\Extension de garantie.job [242]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1064]
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1068]
O39 - APT: - (..) -- C:\WINDOWS\Tasks\Notification de fin de service de Microsoft Windows XP - à la connexion.job [236]
O39 - APT: - (..) -- C:\WINDOWS\Tasks\Notification de fin de service de Microsoft Windows XP -mensuellement.job [230]
~ Scheduled Task: 13 Scanned in 00mn 00s



---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Mise à jour de la version d’Internet Explorer - <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} . (.Microsoft Corporation - IE Per User Active Setup Uninstall Utility.) -- C:\WINDOWS\system32\ieudinit.exe
O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Utilitaire d'installation du Lecteur Windows Media de Microsoft.) -- C:\WINDOWS\inf\unregmp2.exe =>.Microsoft Corporation
O40 - ASIC: Internet Explorer - >{26923b43-4d38-484f-9b9e-de460746276c} . (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Explorer par utilisateur.) -- C:\WINDOWS\system32\ie4uinit.exe.mui
O40 - ASIC: Browser Customizations - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} . (.Microsoft Corporation - IEAK branding.) -- C:\WINDOWS\system32\iedkcs32.dll
O40 - ASIC: Outlook Express - >{881dd1c5-3dcf-431b-b061-f3f88e8be88a} . (.Microsoft Corporation - Windows NT User Data Migration Tool.) -- C:\WINDOWS\system32\shmgrate.exe =>.Microsoft Corporation
O40 - ASIC: Microsoft NetShow Player - {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\WINDOWS\system32\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player 6.4 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\WINDOWS\system32\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\WINDOWS\system32\themeui.dll
O40 - ASIC: Microsoft Outlook Express 6 - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Bibliothèque d'installation Outlook Express.) -- C:\Program Files\Outlook Express\setup50.exe =>.Microsoft Corporation
O40 - ASIC: NetMeeting 3.01 - {44BBA842-CC51-11CF-AAFA-00AA00B6015B} . (...) -- C:\WINDOWS\INF\msnetmtg.inf
O40 - ASIC: Windows Messenger 4.7 - {5945c046-1e7d-11d1-bc44-00c04fd912be} . (...) -- C:\WINDOWS\INF\msmsgs.inf
O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\WINDOWS\system32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (...) -- C:\WINDOWS\INF\wmp11.inf =>.Microsoft Corporation
O40 - ASIC: Carnet d'adresses 6 - {7790769C-0471-11d2-AF11-00C04FA35D02} . (.Microsoft Corporation - Bibliothèque d'installation Outlook Express.) -- C:\Program Files\Outlook Express\setup50.exe =>.Microsoft Corporation
O40 - ASIC: Mise à jour du Bureau Windows - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll
O40 - ASIC: Internet Explorer - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Explorer par utilisateur.) -- C:\WINDOWS\system32\ie4uinit.exe.mui
O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\WINDOWS\system32\mscories.dll
O40 - ASIC: Google Chrome - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google Inc. - Google Chrome Installer.) -- C:\Program Files\Google\Chrome\Application\37.0.2062.120\Installer\chrmstp.exe
O40 - ASIC: Installed Component - S-1-5-21-648750196-529253911-563172511-1005 - <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} -- Not Hexadécimal CLSID
O40 - ASIC: Installed Component - S-1-5-21-648750196-529253911-563172511-1005 - >{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS -- Not Hexadécimal CLSID
~ Active Setup: 20 Scanned in 00mn 00s



---\\ Pilotes lancés au démarrage du système (O41)
O41 - Driver: (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\WINDOWS\system32\drivers\afd.sys
O41 - Driver: (bdftdif) . (.BitDefender LLC - BitDefender Firewall TDI Filter Driver.) - C:\Program Files\Fichiers communs\Bitdefender\Bitdefender Firewall\bdftdif.sys
O41 - Driver: (bdselfpr) . (.BitDefender LLC - BitDefender Self Protection Driver.) - C:\Program Files\Bitdefender\Bitdefender 2015\bdselfpr.sys
O41 - Driver: (Cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\WINDOWS\system32\DRIVERS\cdrom.sys
O41 - Driver: (dtsoftbus01) . (.DT Soft Ltd - DAEMON Tools Virtual Bus Driver.) - C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys
O41 - Driver: (i8042prt) . (.Microsoft Corporation - Pilote de port i8042.) - C:\WINDOWS\system32\DRIVERS\i8042prt.sys
O41 - Driver: (Imapi) . (.Microsoft Corporation - IMAPI Kernel Driver.) - C:\WINDOWS\system32\DRIVERS\imapi.sys
O41 - Driver: (intelppm) . (.Microsoft Corporation - Pilote de périphérique processeur.) - C:\WINDOWS\system32\DRIVERS\intelppm.sys
O41 - Driver: (IPSec) . (.Microsoft Corporation - IPSec Driver.) - C:\WINDOWS\system32\DRIVERS\ipsec.sys
O41 - Driver: (Kbdclass) . (.Microsoft Corporation - Pilote de la classe Clavier.) - C:\WINDOWS\system32\DRIVERS\kbdclass.sys
O41 - Driver: (kbdhid) . (.Microsoft Corporation - Pilote de filtre souris HID.) - C:\WINDOWS\system32\DRIVERS\kbdhid.sys
O41 - Driver: (Mouclass) . (.Microsoft Corporation - Pilote de la classe Souris.) - C:\WINDOWS\system32\DRIVERS\mouclass.sys
O41 - Driver: (MRxSmb) . (.Microsoft Corporation - Windows NT SMB Minirdr.) - C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\WINDOWS\system32\DRIVERS\netbios.sys
O41 - Driver: (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\WINDOWS\system32\DRIVERS\netbt.sys
O41 - Driver: (NetworkX) . (...) - C:\WINDOWS\system32\ckldrv.sys
O41 - Driver: (Processor) . (.Microsoft Corporation - Pilote de périphérique processeur.) - C:\WINDOWS\system32\DRIVERS\processr.sys
O41 - Driver: (RasAcd) . (.Microsoft Corporation - RAS Automatic Connection Driver.) - C:\WINDOWS\system32\DRIVERS\rasacd.sys
O41 - Driver: (Rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\WINDOWS\system32\DRIVERS\rdbss.sys
O41 - Driver: (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
O41 - Driver: (redbook) . (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) - C:\WINDOWS\system32\DRIVERS\redbook.sys
O41 - Driver: (SBRE) . (. - .) - C:\WINDOWS\system32\drivers\SBREdrv.sys (.not file.)
O41 - Driver: (Tcpip) . (.Microsoft Corporation - TCP/IP Protocol Driver.) - C:\WINDOWS\system32\DRIVERS\tcpip.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Terminal Server Driver.) - C:\WINDOWS\system32\DRIVERS\termdd.sys
O41 - Driver: Carte vidéo VGA. (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\WINDOWS\system32\drivers\vga.sys
O41 - Driver: Windows Socket 2.0 Non-IFS Service Provider Support Environment (WS2IFSL) . (.Microsoft Corporation - Winsock2 IFS Layer.) - C:\WINDOWS\system32\drivers\ws2ifsl.sys
~ Drivers: 78 Scanned in 00mn 00s



---\\ Logiciels installés (O42)
O42 - Logiciel: ATI - Utilitaire de désinstallation du logiciel - (...) [HKLM] -- All ATI Software
O42 - Logiciel: ATI Catalyst Control Center - (...) [HKLM] -- {639E8743-9438-4C91-9123-2AECD247950C}
O42 - Logiciel: ATI Display Driver - (...) [HKLM] -- ATI Display Driver
O42 - Logiciel: ATI Parental Control & Encoder - (.Nom de votre société.) [HKLM] -- {36CDA33B-909B-4719-97D1-C4B99309BDC7}
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {A0087DDE-69D0-11E2-AD57-43CA6188709B}
O42 - Logiciel: Adobe Acrobat XI Pro - (.Adobe Systems.) [HKLM] -- {AC76BA86-1033-FFFF-7760-000000000006}
O42 - Logiciel: Adobe Community Help - (.Adobe Systems Incorporated.) [HKLM] -- chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
O42 - Logiciel: Adobe Community Help - (.Adobe Systems Incorporated.) [HKLM] -- {0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}
O42 - Logiciel: Adobe Reader 9.3.3 - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-A93000000001}
O42 - Logiciel: Adobe Reader XI (11.0.08) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AB0000000001}
O42 - Logiciel: Avira v1.1.17.31000 - (.Avira Operations GmbH & Co. KG.) [HKLM] -- {C7C541AC-B0F5-4D7C-BA2F-34A70D213FF0}
O42 - Logiciel: Belkin Desktop PCI Card Driver - (.Belkin.) [HKLM] -- {50D47CE8-9C16-42D1-A8D8-B143B22E232A}
O42 - Logiciel: Bitdefender Internet Security 2015 - (.Bitdefender.) [HKLM] -- Bitdefender
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
O42 - Logiciel: Codeur Windows Media Série 9 - (.Microsoft Corporation.) [HKLM] -- {E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome
O42 - Logiciel: Google Earth Plug-in - (.Google.) [HKLM] -- {4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E} =>.Google Inc
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: HP Customer Participation Program 7.0 - (.HP.) [HKLM] -- HPExtendedCapabilities
O42 - Logiciel: HP Photosmart Essential - (.HP.) [HKLM] -- {EB21A812-671B-4D08-B974-2A347F0D8F70} =>.Hewlett-Packard Co
O42 - Logiciel: HP Product Assistant - (.Hewlett-Packard.) [HKLM] -- {36FDBE6E-6684-462B-AE98-9A39A1B200CC}
O42 - Logiciel: HP Product Detection - (.HP.) [HKLM] -- {A436F67F-687E-4736-BD2B-537121A804CF}
O42 - Logiciel: HP Support Solutions Framework - (.Hewlett-Packard Company.) [HKLM] -- {23CCE784-A812-4647-AEFF-1DCCD4E57478}
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM] -- {2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3}
O42 - Logiciel: Hewlett-Packard ACLM.NET v1.1.0.0 - (.Hewlett-Packard.) [HKLM] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F}
O42 - Logiciel: Installation de la neuf BOX - (...) [HKLM] -- {B7520B9A-3500-4A60-B8D2-E8A7C4AAF306}
O42 - Logiciel: InstantShareAlert - (.HP.) [HKLM] -- {069730C2-755A-485B-A205-27A1AAFA836A}
O42 - Logiciel: Java 8 Update 20 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218020F0}
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {8E5233E1-7495-44FB-8DEB-4BE906D59619}
O42 - Logiciel: LauncherMA - (.Micro Application.) [HKLM] -- {C06EFB22-B5DB-46C5-9215-BCB5C19C0858}
O42 - Logiciel: Lecteur Windows Media 11 - (...) [HKLM] -- Windows Media Player =>.Microsoft Corporation
O42 - Logiciel: MCE Software Encoder 1.0 - (...) [HKLM] -- {7655E113-C306-11D9-A373-0050BAE317E1}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2721691) - (.Microsoft Corporation.) [HKLM] -- {355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB973685) - (.Microsoft Corporation.) [HKLM] -- {859DFA95-E4A6-48CD-B88E-A3E483E89B44}
O42 - Logiciel: MSXML 4.0 SP3 Parser - (.Microsoft Corporation.) [HKLM] -- {196467F1-C11F-4F76-858B-5812ADC83B94}
O42 - Logiciel: Macromedia Shockwave Player - (.Macromedia, Inc..) [HKLM] -- {7D1D6A24-65D4-454C-8815-4F08A5FFF12C}
O42 - Logiciel: Media Go - (.Sony.) [HKLM] -- {F66C4A41-C3A8-4523-AB6C-BAA1DB38305C}
O42 - Logiciel: Media Go Network Downloader - (.Sony.) [HKLM] -- {5562F05F-908C-4F15-9B3C-98D5FD32DCAB}
O42 - Logiciel: Media Go Video Playback Engine 2.4.129.12060 - (.Sony.) [HKLM] -- {7C5AEEE1-6D7C-8922-4548-7BF9096077EC}
O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
O42 - Logiciel: Microsoft Download Manager - (.Microsoft Corporation.) [HKLM] -- {654977DB-0001-0002-0001-EABD228DDE8B}
O42 - Logiciel: Microsoft Internationalized Domain Names Mitigation APIs - (.Microsoft Corporation.) [HKLM] -- IDNMitigationAPIs
O42 - Logiciel: Microsoft Kernel-Mode Driver Framework Feature Pack 1.7 - (.Microsoft Corporation.) [HKLM] -- Wdf01007
O42 - Logiciel: Microsoft Kernel-Mode Driver Framework Feature Pack 1.9 - (.Microsoft Corporation.) [HKLM] -- Wdf01009
O42 - Logiciel: Microsoft National Language Support Downlevel APIs - (.Microsoft Corporation.) [HKLM] -- NLSDownlevelMapping
O42 - Logiciel: Microsoft Sync Framework Runtime Native v1.0 (x86) - (.Microsoft Corporation.) [HKLM] -- {8A74E887-8F0F-4017-AF53-CBA42211AAA5}
O42 - Logiciel: Microsoft Sync Framework Services Native v1.0 (x86) - (.Microsoft Corporation.) [HKLM] -- {BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
O42 - Logiciel: MonAlbumPhoto - (.MonAlbumPhoto.) [HKLM] -- MonAlbumPhoto_is1
O42 - Logiciel: MonPoids - (.MLSofts.) [HKLM] -- {866037A8-60F8-4B26-9904-6EBEF8C7CF1C}
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService
O42 - Logiciel: Mozilla Thunderbird 31.1.1 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Thunderbird 31.1.1 (x86 fr) =>.Mozilla Corporation
O42 - Logiciel: PDF-Viewer - (.Tracker Software Products Ltd.) [HKLM] -- {A278382D-4F1B-4D47-9885-8523F7261E8D}_is1
O42 - Logiciel: PhotoFiltre 7 - (...) [HKCU] -- PhotoFiltre 7
O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM] -- Picasa 3
O42 - Logiciel: PowerDVD - (...) [HKLM] -- {6811CAA0-BF12-11D4-9EA1-0050BAE317E1}
O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {B67BAFBA-4C9F-48FA-9496-933E3B255044}
O42 - Logiciel: Realtek AC'97 Audio - (.Realtek Semiconductor Corp..) [HKLM] -- {FB08F381-6533-4108-B7DD-039E11FBC27E}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: SFR - Kit de connexion - (.SFR.) [HKLM] -- SFR_Kit
O42 - Logiciel: SFR - Media Center - (.SFR.) [HKLM] -- SFR_Media Center
O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM] -- InstallShield_{758C8301-2696-4855-AF45-534B1200980A}
O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM] -- {758C8301-2696-4855-AF45-534B1200980A}
O42 - Logiciel: Samsung PC Studio 2.1 - (.Samsung.) [HKLM] -- InstallShield_{D48C9BFC-FBCF-4F29-B97D-822ED6D497FE}
O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- KB931906
O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
O42 - Logiciel: Segoe UI - (.Microsoft Corp.) [HKLM] -- {A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}
O42 - Logiciel: Shop for HP Supplies - (.HP.) [HKLM] -- Shop for HP Supplies
O42 - Logiciel: Skype™ 6.18 - (.Skype Technologies S.A..) [HKLM] -- {7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}
O42 - Logiciel: Sonic Encoders - (.Sonic Solutions.) [HKLM] -- {9941F0AA-B903-4AF4-A055-83A9815CC011}
O42 - Logiciel: Sonic MyDVD - (.Sonic Solutions.) [HKLM] -- {21657574-BD54-48A2-9450-EB03B2C7FC29}
O42 - Logiciel: Sonic RecordNow! - (.Sonic Solutions.) [HKLM] -- {9541FED0-327F-4DF0-8B96-EF57EF622F19}
O42 - Logiciel: Sony Mobile Update Engine - (.Sony Mobile Communications AB.) [HKLM] -- Update Engine
O42 - Logiciel: Sony PC Companion 2.10.211 - (.Sony.) [HKLM] -- {F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}
O42 - Logiciel: TomTom HOME - (.Nom de votre société.) [HKLM] -- {7A2BB1C8-903D-4585-9F3B-CADD67D07D37}
O42 - Logiciel: TomTom HOME Visual Studio Merge Modules - (.TomTom International B.V..) [HKLM] -- {8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}
O42 - Logiciel: Unlocker 1.9.1 - (.Cedrick Collomb.) [HKLM] -- Unlocker
O42 - Logiciel: Updater - (.Creative Island Media, LLC.) [HKLM] -- {D54E3D9F-FEB8-4D2D-A138-B69A5C80080B}
O42 - Logiciel: Visionneuse Microsoft PowerPoint - (.Microsoft Corporation.) [HKLM] -- {95140000-00AF-040C-0000-0000000FF1CE}
O42 - Logiciel: Visual Studio C++ 10.0 Runtime - (.TomTom International B.V..) [HKLM] -- {4412F224-3849-4461-A3E9-DEEF8D252790}
O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8
O42 - Logiciel: Windows Media Format 11 runtime - (...) [HKLM] -- Windows Media Format Runtime
O42 - Logiciel: Windows Media Format 11 runtime - (.Microsoft Corporation.) [HKLM] -- WMFDist11
O42 - Logiciel: Windows Media Player 11 - (.Microsoft Corporation.) [HKLM] -- wmp11 =>.Microsoft Corporation
O42 - Logiciel: Windows Media Player Firefox Plugin - (.Microsoft Corp.) [HKLM] -- {69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4} =>.Microsoft Corporation
O42 - Logiciel: X10 Hardware(TM) - (...) [HKLM] -- X10Hardware
O42 - Logiciel: neroxml - (.Nero AG.) [HKLM] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B}
~ Logic: 57 Scanned in 00mn 01s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\7-Zip]
[HKCU\Software\AC3Filter]
[HKCU\Software\ATI]
[HKCU\Software\Adobe]
[HKCU\Software\Aerofox]
[HKCU\Software\AppDataLow]
[HKCU\Software\Apple Computer, Inc.]
[HKCU\Software\Aurigma]
[HKCU\Software\Auslogics]
[HKCU\Software\Avast Software]
[HKCU\Software\Avira]
[HKCU\Software\BCGP AppWizard-Generated Applications]
[HKCU\Software\BVRP Software]
[HKCU\Software\Bitdefender]
[HKCU\Software\CDDB]
[HKCU\Software\Chromium]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\Cyberlink]
[HKCU\Software\DSP-worx]
[HKCU\Software\Dawn]
[HKCU\Software\DivXNetworks]
[HKCU\Software\DriverTuner]
[HKCU\Software\DriverTuner_Init]
[HKCU\Software\EaseUS]
[HKCU\Software\East Imperial Soft]
[HKCU\Software\EpmNewsInfo]
[HKCU\Software\F-Secure]
[HKCU\Software\FSCR Master]
[HKCU\Software\Foxit Software]
[HKCU\Software\GNU]
[HKCU\Software\GSpot Appliance Corp]
[HKCU\Software\Gabest]
[HKCU\Software\Google]
[HKCU\Software\Goto Software]
[HKCU\Software\HP]
[HKCU\Software\Haali]
[HKCU\Software\Hewlett-Packard]
[HKCU\Software\HookNetwork]
[HKCU\Software\IM Providers]
[HKCU\Software\ITNConv]
[HKCU\Software\Innovative Solutions]
[HKCU\Software\Integrator]
[HKCU\Software\Intel]
[HKCU\Software\InterVideo]
[HKCU\Software\JavaSoft]
[HKCU\Software\Kernel for Outlook PST Repair last1437yy]
[HKCU\Software\Leadertech]
[HKCU\Software\Licenses]
[HKCU\Software\Ligos]
[HKCU\Software\Local AppWizard-Generated Applications]
[HKCU\Software\LogiShrd]
[HKCU\Software\Macromedia]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Mozilla]
[HKCU\Software\NEC Computers International]
[HKCU\Software\Nero]
[HKCU\Software\Netscape]
[HKCU\Software\Neuf]
[HKCU\Software\ODBC]
[HKCU\Software\OpenOffice.org]
[HKCU\Software\PC SOFT]
[HKCU\Software\PCTuneUp]
[HKCU\Software\POINKA]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\RatioMaster.NET]
[HKCU\Software\RealNetworks]
[HKCU\Software\Realtek]
[HKCU\Software\SUPERAntiSpyware.com]
[HKCU\Software\Safer Networking Limited]
[HKCU\Software\Samsung]
[HKCU\Software\Seifert]
[HKCU\Software\Skype]
[HKCU\Software\SlimWare Utilities Inc]
[HKCU\Software\Soft-R Research]
[HKCU\Software\SoftwareMarketing]
[HKCU\Software\SolidDocuments]
[HKCU\Software\Sonic]
[HKCU\Software\Sony Corporation]
[HKCU\Software\Sony]
[HKCU\Software\Sysinternals]
[HKCU\Software\TeleCharger]
[HKCU\Software\Terravirtual]
[HKCU\Software\TomTom]
[HKCU\Software\Tracker Software]
[HKCU\Software\Trolltech]
[HKCU\Software\TuneUp]
[HKCU\Software\Ulead Systems]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\WinRAR]
[HKCU\Software\Winamp]
[HKCU\Software\X10]
[HKCU\Software\XPRepairPro4]
[HKCU\Software\Yahoo]
[HKCU\Software\ej-technologies]
[HKLM\Software\7-Zip]
[HKLM\Software\AMC]
[HKLM\Software\ATI Technologies]
[HKLM\Software\ATI]
[HKLM\Software\AVAST Software]
[HKLM\Software\AVC3]
[HKLM\Software\Adobe]
[HKLM\Software\AppDataLow]
[HKLM\Software\Apple Computer, Inc.]
[HKLM\Software\AviSynth]
[HKLM\Software\Avira]
[HKLM\Software\BitDefender]
[HKLM\Software\BitdefenderSavedSettings]
[HKLM\Software\C07ft5Y]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Creative Tech]
[HKLM\Software\CyberLink]
[HKLM\Software\DivXNetworks]
[HKLM\Software\EASEUS]
[HKLM\Software\EnigmaSoftwareGroup]
[HKLM\Software\Foxit Software]
[HKLM\Software\GMixon]
[HKLM\Software\Gemplus]
[HKLM\Software\GlarySoft]
[HKLM\Software\Google]
[HKLM\Software\Goto Software]
[HKLM\Software\HP]
[HKLM\Software\Hewlett-Packard]
[HKLM\Software\IM Providers]
[HKLM\Software\Innovative Solutions]
[HKLM\Software\InstallShield]
[HKLM\Software\Intel]
[HKLM\Software\JavaSoft]
[HKLM\Software\JreMetrics]
[HKLM\Software\KWorld MultiMedia]
[HKLM\Software\LEAD Technologies, Inc.]
[HKLM\Software\MAP-DN]
[HKLM\Software\MAXSOFT-OCRON]
[HKLM\Software\MCCI]
[HKLM\Software\MLSoft]
[HKLM\Software\Macromedia]
[HKLM\Software\MarkAny]
[HKLM\Software\MicroVision]
[HKLM\Software\Mircrosoft]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\NEC Computers International]
[HKLM\Software\NGD Studios]
[HKLM\Software\Nero]
[HKLM\Software\Neuf]
[HKLM\Software\OD2]
[HKLM\Software\ODBC]
[HKLM\Software\Piriform]
[HKLM\Software\Policies]
[HKLM\Software\Program Groups]
[HKLM\Software\RealNetworks]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\Rocket Division Software]
[HKLM\Software\SBAMSvc]
[HKLM\Software\SUPERAntiSpyware.com]
[HKLM\Software\Safer Networking Limited]
[HKLM\Software\Samsung]
[HKLM\Software\Skype]
[HKLM\Software\SlimWare Utilities Inc]
[HKLM\Software\SmartPCFixer]
[HKLM\Software\SolidDocuments]
[HKLM\Software\Sonic]
[HKLM\Software\Sony Corporation]
[HKLM\Software\Sony Mobile]
[HKLM\Software\Sony]
[HKLM\Software\SymNRT]
[HKLM\Software\Taronja]
[HKLM\Software\TerraVirtual]
[HKLM\Software\Tracker Software]
[HKLM\Software\TrendMicro]
[HKLM\Software\TuneUp]
[HKLM\Software\Ulead Systems]
[HKLM\Software\Unreal]
[HKLM\Software\Windows 3.1 Migration Status]
[HKLM\Software\Wow6432Node]
[HKLM\Software\Yahoo]
[HKLM\Software\anset]
[HKLM\Software\fssg]
[HKLM\Software\logishrd]
[HKLM\Software\mozilla.org]
~ Key Software: 332 Scanned in 00mn 01s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 15/08/2014 - 14:48:10 - [] ----D C:\Program Files\Adobe
O43 - CFD: 18/06/2014 - 10:00:44 - [0] ----D C:\Program Files\adslTV
O43 - CFD: 18/10/2013 - 06:15:15 - [] ----D C:\Program Files\ATI
O43 - CFD: 15/10/2013 - 23:11:40 - [] ----D C:\Program Files\ATI Technologies
O43 - CFD: 01/06/2014 - 13:31:16 - [] ----D C:\Program Files\AVAST Software
O43 - CFD: 19/06/2014 - 17:17:07 - [] ----D C:\Program Files\AviSynth 2.5
O43 - CFD: 16/10/2013 - 17:15:20 - [] ----D C:\Program Files\Belkin
O43 - CFD: 31/08/2014 - 09:08:53 - [] ----D C:\Program Files\Bitdefender
O43 - CFD: 01/06/2014 - 08:37:38 - [] ----D C:\Program Files\CCleaner
O43 - CFD: 21/06/2009 - 15:30:23 - [] ----D C:\Program Files\Common Files
O43 - CFD: 30/05/2014 - 22:37:06 - [] ----D C:\Program Files\EaseUS
O43 - CFD: 23/06/2014 - 08:40:45 - [0] ----D C:\Program Files\eRightSoft
O43 - CFD: 08/09/2014 - 07:45:31 - [] ----D C:\Program Files\Fichiers communs
O43 - CFD: 12/01/2014 - 01:03:36 - [] ----D C:\Program Files\Google
O43 - CFD: 09/02/2014 - 16:30:07 - [] ----D C:\Program Files\HP
O43 - CFD: 10/07/2014 - 17:52:59 - [] --H-D C:\Program Files\InstallShield Installation Information
O43 - CFD: 10/04/2014 - 03:06:12 - [] ----D C:\Program Files\Internet Explorer
O43 - CFD: 08/08/2014 - 10:44:53 - [] ----D C:\Program Files\ITN Converter
O43 - CFD: 07/09/2014 - 23:02:01 - [] ----D C:\Program Files\Java
O43 - CFD: 23/09/2004 - 19:15:10 - [] ----D C:\Program Files\microsoft frontpage
O43 - CFD: 15/01/2014 - 04:51:45 - [] ----D C:\Program Files\Microsoft Office
O43 - CFD: 13/01/2014 - 20:31:45 - [] ----D C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 04/10/2009 - 11:29:40 - [] ----D C:\Program Files\Microsoft Sync Framework
O43 - CFD: 13/01/2014 - 20:34:40 - [] ----D C:\Program Files\Microsoft Synchronization Services
O43 - CFD: 13/01/2014 - 20:19:22 - [] ----D C:\Program Files\Microsoft Visual Studio 8
O43 - CFD: 13/01/2014 - 20:31:45 - [] ----D C:\Program Files\Microsoft.NET
O43 - CFD: 03/11/2013 - 23:18:47 - [] ----D C:\Program Files\MLSofts
O43 - CFD: 14/12/2013 - 07:09:50 - [] ----D C:\Program Files\monAlbumPhoto
O43 - CFD: 15/05/2014 - 06:52:27 - [] ----D C:\Program Files\Movie Maker
O43 - CFD: 25/08/2014 - 16:54:31 - [] ----D C:\Program Files\Mozilla Firefox
O43 - CFD: 12/09/2014 - 06:19:11 - [] ----D C:\Program Files\Mozilla Maintenance Service
O43 - CFD: 12/09/2014 - 06:19:14 - [] ----D C:\Program Files\Mozilla Thunderbird =>.Mozilla Corporation
O43 - CFD: 15/05/2014 - 10:49:15 - [] ----D C:\Program Files\Mozilla Thunderbird(2) =>.Mozilla Corporation
O43 - CFD: 13/01/2014 - 20:38:03 - [] ----D C:\Program Files\MSBuild
O43 - CFD: 18/03/2013 - 21:54:21 - [] ----D C:\Program Files\MSECache
O43 - CFD: 15/05/2014 - 08:35:55 - [] ----D C:\Program Files\MSN
O43 - CFD: 23/09/2004 - 18:59:50 - [] ----D C:\Program Files\MSN Gaming Zone
O43 - CFD: 20/04/2012 - 16:21:14 - [] ----D C:\Program Files\MSXML 4.0
O43 - CFD: 24/06/2009 - 13:36:29 - [] ----D C:\Program Files\NetMeeting
O43 - CFD: 21/06/2009 - 16:14:29 - [] ----D C:\Program Files\neuf telecom
O43 - CFD: 15/05/2014 - 10:46:02 - [] ----D C:\Program Files\Outlook Express =>.Microsoft Corporation
O43 - CFD: 26/10/2013 - 17:33:59 - [] ----D C:\Program Files\PhotoFiltre 7
O43 - CFD: 30/12/2013 - 08:41:52 - [] ----D C:\Program Files\QuickTime
O43 - CFD: 19/01/2013 - 22:13:59 - [] ----D C:\Program Files\real
O43 - CFD: 10/09/2011 - 09:43:53 - [] ----D C:\Program Files\Realtek
O43 - CFD: 19/05/2014 - 03:03:51 - [] ----D C:\Program Files\Reference Assemblies
O43 - CFD: 23/09/2004 - 19:08:52 - [] ----D C:\Program Files\Services en ligne
O43 - CFD: 02/06/2013 - 23:49:42 - [] ----D C:\Program Files\SFR
O43 - CFD: 08/09/2014 - 09:52:28 - [] ----D C:\Program Files\SIW
O43 - CFD: 31/08/2014 - 20:53:14 - [] R---D C:\Program Files\Skype
O43 - CFD: 22/05/2014 - 19:44:14 - [] ----D C:\Program Files\Sonic
O43 - CFD: 10/07/2014 - 21:56:52 - [] ----D C:\Program Files\Sony
O43 - CFD: 10/07/2014 - 21:51:17 - [] ----D C:\Program Files\Sony Media Go Install
O43 - CFD: 24/07/2014 - 16:51:35 - [] ----D C:\Program Files\Sony Mobile
O43 - CFD: 28/05/2014 - 23:01:43 - [0] ----D C:\Program Files\SUPERAntiSpyware
O43 - CFD: 27/08/2014 - 17:50:15 - [] ----D C:\Program Files\TomTom HOME 2
O43 - CFD: 01/07/2014 - 21:33:49 - [] ----D C:\Program Files\Tracker Software
O43 - CFD: 08/09/2014 - 21:28:21 - [0] ----D C:\Program Files\Trend Micro
O43 - CFD: 23/09/2004 - 19:25:48 - [0] --H-D C:\Program Files\Uninstall Information
O43 - CFD: 28/04/2013 - 07:09:41 - [] ----D C:\Program Files\Unlocker
O43 - CFD: 01/07/2014 - 17:20:17 - [0] ----D C:\Program Files\VideoLAN
O43 - CFD: 20/03/2014 - 13:47:18 - [] ----D C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 24/06/2009 - 13:36:26 - [] ----D C:\Program Files\Windows NT
O43 - CFD: 23/09/2004 - 19:15:10 - [] ----D C:\Program Files\xerox
O43 - CFD: 12/09/2014 - 16:30:57 - [] ----D C:\Program Files\ZHPDiag =>.Nicolas Coolman
O43 - CFD: 05/03/2014 - 10:55:10 - [] ----D C:\Program Files\Fichiers communs\Adobe
O43 - CFD: 02/06/2013 - 13:31:30 - [] ----D C:\Program Files\Fichiers communs\Adobe AIR
O43 - CFD: 30/12/2013 - 08:29:44 - [] ----D C:\Program Files\Fichiers communs\Adobe(2)
O43 - CFD: 10/09/2014 - 16:59:56 - [] ----D C:\Program Files\Fichiers communs\Bitdefender
O43 - CFD: 17/05/2014 - 07:30:01 - [] ----D C:\Program Files\Fichiers communs\DESIGNER
O43 - CFD: 22/06/2009 - 15:45:15 - [] ----D C:\Program Files\Fichiers communs\Hewlett-Packard
O43 - CFD: 22/06/2009 - 15:48:53 - [] ----D C:\Program Files\Fichiers communs\HP
O43 - CFD: 21/06/2009 - 15:48:55 - [] ----D C:\Program Files\Fichiers communs\InstallShield
O43 - CFD: 08/09/2014 - 07:45:31 - [] ----D C:\Program Files\Fichiers communs\Java
O43 - CFD: 07/03/2014 - 12:56:33 - [] ----D C:\Program Files\Fichiers communs\Microsoft Shared
O43 - CFD: 23/09/2004 - 19:07:56 - [] ----D C:\Program Files\Fichiers communs\MSSoap
O43 - CFD: 12/01/2013 - 10:30:33 - [] ----D C:\Program Files\Fichiers communs\Real
O43 - CFD: 23/09/2004 - 19:07:58 - [] ----D C:\Program Files\Fichiers communs\Services
O43 - CFD: 31/08/2014 - 20:53:13 - [] ----D C:\Program Files\Fichiers communs\Skype
O43 - CFD: 24/10/2013 - 16:33:27 - [] ----D C:\Program Files\Fichiers communs\Sonic Shared
O43 - CFD: 10/07/2014 - 21:57:58 - [] ----D C:\Program Files\Fichiers communs\Sony Shared
O43 - CFD: 23/09/2004 - 18:53:12 - [] ----D C:\Program Files\Fichiers communs\SpeechEngines
O43 - CFD: 21/06/2009 - 15:48:11 - [] ----D C:\Program Files\Fichiers communs\SureThing Shared
O43 - CFD: 15/01/2014 - 04:04:46 - [] ----D C:\Program Files\Fichiers communs\System
O43 - CFD: 21/06/2009 - 15:50:08 - [] ----D C:\Program Files\Fichiers communs\Ulead Systems
O43 - CFD: 17/05/2014 - 07:32:12 - [] ----D C:\Program Files\Fichiers communs\Wise Installation Wizard
O43 - CFD: 07/03/2014 - 12:08:12 - [] ----D D:\Documents and Settings\All Users\Application Data\457526110897790d
O43 - CFD: 01/06/2013 - 10:33:46 - [] ----D D:\Documents and Settings\All Users\Application Data\720f0000-d67f-453a-758d-327cc61ae0bf
O43 - CFD: 18/02/2014 - 22:27:20 - [] ----D D:\Documents and Settings\All Users\Application Data\Adobe
O43 - CFD: 05/03/2008 - 16:46:49 - [] ----D D:\Documents and Settings\All Users\Application Data\Ahead
O43 - CFD: 21/01/2014 - 18:03:17 - [] ----D D:\Documents and Settings\All Users\Application Data\albumphoto
O43 - CFD: 21/01/2014 - 22:12:11 - [] ----D D:\Documents and Settings\All Users\Application Data\AOL
O43 - CFD: 15/06/2013 - 16:32:52 - [] ----D D:\Documents and Settings\All Users\Application Data\Astroburn Lite
O43 - CFD: 01/06/2014 - 13:29:41 - [] ----D D:\Documents and Settings\All Users\Application Data\AVAST Software
O43 - CFD: 06/09/2014 - 07:28:15 - [] ----D D:\Documents and Settings\All Users\Application Data\bdch
O43 - CFD: 11/09/2014 - 17:09:10 - [] ----D D:\Documents and Settings\All Users\Application Data\BDLogging
O43 - CFD: 10/09/2014 - 17:09:03 - [] ----D D:\Documents and Settings\All Users\Application Data\Bitdefender
O43 - CFD: 22/12/2010 - 22:40:10 - [] ----D D:\Documents and Settings\All Users\Application Data\Blizzard
O43 - CFD: 09/02/2014 - 10:27:36 - [] ----D D:\Documents and Settings\All Users\Application Data\BlueSprig
O43 - CFD: 15/09/2012 - 17:54:10 - [] --H-D D:\Documents and Settings\All Users\Application Data\Common Files
O43 - CFD: 03/04/2006 - 13:23:23 - [] ----D D:\Documents and Settings\All Users\Application Data\CyberLink
O43 - CFD: 15/06/2013 - 09:47:01 - [] ----D D:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite =>.DT Soft Ltd
O43 - CFD: 25/03/2008 - 09:55:53 - [] ----D D:\Documents and Settings\All Users\Application Data\Downloaded Installations
O43 - CFD: 10/09/2011 - 09:32:08 - [] ----D D:\Documents and Settings\All Users\Application Data\Driver Whiz
O43 - CFD: 25/03/2012 - 21:54:54 - [] ----D D:\Documents and Settings\All Users\Application Data\DriverBoost
O43 - CFD: 02/06/2013 - 23:43:44 - [] ----D D:\Documents and Settings\All Users\Application Data\F-Secure
O43 - CFD: 07/03/2014 - 14:24:03 - [] ----D D:\Documents and Settings\All Users\Application Data\GFI Software
O43 - CFD: 15/10/2013 - 21:12:44 - [] ----D D:\Documents and Settings\All Users\Application Data\GlarySoft
O43 - CFD: 01/06/2014 - 08:00:54 - [0] ----D D:\Documents and Settings\All Users\Application Data\Google
O43 - CFD: 01/06/2014 - 08:01:15 - [] ----D D:\Documents and Settings\All Users\Application Data\Google Updater
O43 - CFD: 08/12/2007 - 15:45:21 - [] ----D D:\Documents and Settings\All Users\Application Data\Google Updater(2)
O43 - CFD: 08/12/2007 - 15:41:10 - [] ----D D:\Documents and Settings\All Users\Application Data\Google Updater(3)
O43 - CFD: 23/02/2014 - 11:35:58 - [] ----D D:\Documents and Settings\All Users\Application Data\GreatSoft
O43 - CFD: 01/06/2014 - 10:30:44 - [] ----D D:\Documents and Settings\All Users\Application Data\HP
O43 - CFD: 24/06/2009 - 12:25:18 - [] ----D D:\Documents and Settings\All Users\Application Data\HP Product Assistant
O43 - CFD: 07/03/2014 - 12:57:00 - [] ----D D:\Documents and Settings\All Users\Application Data\Lavasoft
O43 - CFD: 09/09/2013 - 11:14:11 - [] ----D D:\Documents and Settings\All Users\Application Data\Logishrd
O43 - CFD: 06/09/2014 - 07:01:55 - [] ----D D:\Documents and Settings\All Users\Application Data\Malwarebytes
O43 - CFD: 09/02/2014 - 10:30:57 - [] -S--D D:\Documents and Settings\All Users\Application Data\Microsoft
O43 - CFD: 10/09/2014 - 06:47:28 - [] ----D D:\Documents and Settings\All Users\Application Data\Microsoft Help
O43 - CFD: 02/09/2014 - 21:28:47 - [] ----D D:\Documents and Settings\All Users\Application Data\Mozilla
O43 - CFD: 08/09/2014 - 07:44:30 - [] ----D D:\Documents and Settings\All Users\Application Data\Oracle
O43 - CFD: 31/08/2014 - 15:43:58 - [] ----D D:\Documents and Settings\All Users\Application Data\Package Cache
O43 - CFD: 10/09/2011 - 10:26:12 - [] ----D D:\Documents and Settings\All Users\Application Data\PC Drivers HeadQuarters
O43 - CFD: 30/12/2013 - 08:41:54 - [] ----D D:\Documents and Settings\All Users\Application Data\PC Tools
O43 - CFD: 14/01/2014 - 23:26:07 - [] ----D D:\Documents and Settings\All Users\Application Data\Poinka Mes Comptes
O43 - CFD: 03/04/2006 - 13:13:46 - [] ----D D:\Documents and Settings\All Users\Application Data\QuickTime
O43 - CFD: 30/12/2013 - 08:41:54 - [] ----D D:\Documents and Settings\All Users\Application Data\Real
O43 - CFD: 18/02/2014 - 19:04:06 - [] ----D D:\Documents and Settings\All Users\Application Data\regid.1986-12.com.adobe
O43 - CFD: 30/12/2013 - 08:41:54 - [] ----D D:\Documents and Settings\All Users\Application Data\Samsung
O43 - CFD: 31/08/2014 - 20:53:23 - [] ----D D:\Documents and Settings\All Users\Application Data\Skype
O43 - CFD: 22/09/2006 - 22:16:24 - [] ----D D:\Documents and Settings\All Users\Application Data\Sonic
O43 - CFD: 10/07/2014 - 17:52:59 - [] ----D D:\Documents and Settings\All Users\Application Data\Sony
O43 - CFD: 10/07/2014 - 21:54:16 - [] ----D D:\Documents and Settings\All Users\Application Data\Sony Corporation
O43 - CFD: 24/07/2014 - 16:51:35 - [] ----D D:\Documents and Settings\All Users\Application Data\Sony Mobile
O43 - CFD: 28/12/2013 - 23:06:26 - [] ----D D:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
O43 - CFD: 01/04/2010 - 07:23:43 - [] ----D D:\Documents and Settings\All Users\Application Data\Sun
O43 - CFD: 16/05/2014 - 18:19:47 - [] ----D D:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
O43 - CFD: 28/07/2011 - 16:14:26 - [] ----D D:\Documents and Settings\All Users\Application Data\TomTom
O43 - CFD: 20/03/2014 - 13:02:50 - [] ----D D:\Documents and Settings\All Users\Application Data\TuneUp Software
O43 - CFD: 30/12/2013 - 08:41:54 - [] ----D D:\Documents and Settings\All Users\Application Data\Ulead Systems
O43 - CFD: 13/01/2012 - 07:50:31 - [] ----D D:\Documents and Settings\All Users\Application Data\VadeRetro
O43 - CFD: 28/11/2013 - 15:18:41 - [] ----D D:\Documents and Settings\All Users\Application Data\Weskysoft
O43 - CFD: 06/09/2014 - 07:41:15 - [] ----D D:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
O43 - CFD: 21/05/2012 - 18:14:58 - [] ----D D:\Documents and Settings\All Users\Application Data\WinZip
O43 - CFD: 07/05/2006 - 20:26:37 - [] ----D D:\Documents and Settings\All Users\Application Data\X10 Settings
O43 - CFD: 16/05/2012 - 17:17:58 - [] ----D D:\Documents and Settings\All Users\Application Data\Yahoo!
O43 - CFD: 20/03/2014 - 18:16:51 - [0] ----D D:\Documents and Settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
O43 - CFD: 20/03/2014 - 18:16:51 - [0] -SH-D D:\Documents and Settings\All Users\Application Data\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
O43 - CFD: 25/11/2013 - 09:40:02 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\Absolute Uninstaller
O43 - CFD: 07/03/2014 - 14:28:21 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\Ad-Aware Antivirus
O43 - CFD: 18/02/2014 - 22:31:43 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\Adobe
O43 - CFD: 21/05/2014 - 17:06:59 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\ATI
O43 - CFD: 30/11/2013 - 10:11:20 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\Auslogics
O43 - CFD: 10/09/2014 - 16:59:41 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\Bitdefender
O43 - CFD: 15/04/2014 - 20:57:04 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\BleachBit
O43 - CFD: 08/02/2014 - 11:23:29 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\BlueSprig
O43 - CFD: 08/02/2014 - 15:19:18 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\DAEMON Tools Lite =>.DT Soft Ltd
O43 - CFD: 30/12/2013 - 14:21:53 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\DivX
O43 - CFD: 08/09/2014 - 08:32:36 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\ElevatedDiagnostics
O43 - CFD: 14/01/2014 - 23:51:48 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\Foxit Software
O43 - CFD: 15/02/2014 - 10:21:51 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\GIRDAC
O43 - CFD: 18/02/2014 - 22:38:16 - [0] ----D D:\Documents and Settings\vero et gégé\Application Data\GlarySoft
O43 - CFD: 24/08/2012 - 08:12:21 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\HP
O43 - CFD: 20/03/2014 - 18:16:58 - [0] ----D D:\Documents and Settings\vero et gégé\Application Data\HpUpdate
O43 - CFD: 06/11/2010 - 09:36:51 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\HTML Executable
O43 - CFD: 19/06/2014 - 11:35:20 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\Image Zone Express
O43 - CFD: 30/12/2013 - 08:42:10 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\inkscape
O43 - CFD: 21/06/2014 - 07:46:50 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\Leadertech
O43 - CFD: 25/01/2012 - 17:53:07 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\Macromedia
O43 - CFD: 09/06/2014 - 09:12:25 - [] -S--D D:\Documents and Settings\vero et gégé\Application Data\Microsoft
O43 - CFD: 27/08/2014 - 17:51:27 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\Mozilla
O43 - CFD: 03/07/2009 - 13:16:00 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\OD2
O43 - CFD: 08/09/2014 - 07:44:32 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\Oracle
O43 - CFD: 16/06/2013 - 09:05:31 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\PC Tools Performance Toolkit
O43 - CFD: 26/10/2013 - 18:11:00 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\PhotoFiltre 7
O43 - CFD: 31/08/2013 - 20:55:50 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\Printer Info Cache
O43 - CFD: 31/08/2014 - 09:11:56 - [0] ----D D:\Documents and Settings\vero et gégé\Application Data\QuickScan
O43 - CFD: 19/01/2013 - 22:14:08 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\Real
O43 - CFD: 12/04/2013 - 21:48:34 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\Samsung
O43 - CFD: 02/09/2014 - 17:03:37 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\Skype
O43 - CFD: 10/04/2011 - 18:02:59 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\Soft-R Research
O43 - CFD: 24/08/2012 - 10:43:02 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\Softland
O43 - CFD: 17/02/2014 - 13:40:19 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\SolidDocuments
O43 - CFD: 12/07/2010 - 20:28:16 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\Sonic
O43 - CFD: 10/07/2014 - 22:03:02 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\Sony
O43 - CFD: 21/06/2009 - 17:15:36 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\Sun
O43 - CFD: 24/01/2014 - 23:08:13 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\SUPERAntiSpyware.com
O43 - CFD: 02/09/2014 - 21:30:24 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\Thunderbird =>.Mozilla Corporation
O43 - CFD: 28/07/2011 - 16:13:59 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\TomTom
O43 - CFD: 20/03/2014 - 12:56:26 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\TuneUp Software
O43 - CFD: 30/12/2013 - 08:42:10 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\Ulead Systems
O43 - CFD: 21/06/2009 - 16:22:43 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\VadeRetro
O43 - CFD: 21/06/2014 - 13:23:12 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\vlc
O43 - CFD: 03/02/2014 - 08:05:23 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\Windows Desktop Search
O43 - CFD: 05/01/2014 - 17:50:49 - [0] ----D D:\Documents and Settings\vero et gégé\Application Data\WinRAR
O43 - CFD: 21/06/2014 - 13:23:15 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\Youtube Downloader HD
O43 - CFD: 12/09/2014 - 16:46:05 - [] ----D D:\Documents and Settings\vero et gégé\Application Data\ZHP =>.Nicolas Coolman
O43 - CFD: 02/06/2013 - 13:33:39 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\Apple Computer
O43 - CFD: 10/09/2014 - 17:28:43 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\ApplicationHistory
O43 - CFD: 17/02/2014 - 17:46:36 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\assembly
O43 - CFD: 21/05/2014 - 17:06:59 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\ATI
O43 - CFD: 20/03/2014 - 20:58:08 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\Avg2014
O43 - CFD: 22/09/2013 - 22:11:14 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\avgchrome
O43 - CFD: 06/09/2014 - 07:29:17 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\bdch
O43 - CFD: 31/12/2013 - 09:18:28 - [0] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\cache
O43 - CFD: 17/05/2014 - 08:37:55 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\Chromium
O43 - CFD: 23/02/2014 - 11:29:25 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\Comodo
O43 - CFD: 17/02/2014 - 17:46:33 - [0] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\Deployment
O43 - CFD: 27/08/2014 - 17:45:44 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\Downloaded Installations
O43 - CFD: 26/04/2013 - 17:35:27 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\F-Secure
O43 - CFD: 01/06/2014 - 08:16:54 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\Google
O43 - CFD: 13/08/2009 - 17:58:29 - [0] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\Help
O43 - CFD: 23/06/2009 - 03:17:21 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\HP
O43 - CFD: 21/06/2009 - 16:22:23 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\Identities
O43 - CFD: 10/02/2013 - 11:23:34 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\Innovative Solutions
O43 - CFD: 23/06/2009 - 03:18:07 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\IsolatedStorage
O43 - CFD: 07/03/2014 - 12:09:15 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\LogMeIn Hamachi
O43 - CFD: 11/12/2010 - 10:08:07 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\MediaMonkey
O43 - CFD: 03/02/2014 - 08:05:37 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\Microsoft
O43 - CFD: 14/05/2012 - 19:39:36 - [0] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\Microsoft Help
O43 - CFD: 04/01/2014 - 22:05:11 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\Nero
O43 - CFD: 31/03/2012 - 16:21:56 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\Neuf
O43 - CFD: 11/07/2013 - 04:22:31 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\PCHealth
O43 - CFD: 20/05/2014 - 22:22:22 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\PC_Drivers_Headquarters
O43 - CFD: 18/04/2012 - 00:09:42 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\ROUTE 66 Sync 9
O43 - CFD: 08/12/2012 - 18:20:43 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\Samsung
O43 - CFD: 12/09/2014 - 16:27:35 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\SearchProtect =>PUP.SearchProtect
O43 - CFD: 19/04/2014 - 07:57:38 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\Skype
O43 - CFD: 15/10/2013 - 22:37:28 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\SlimWare Utilities Inc
O43 - CFD: 15/02/2014 - 15:49:06 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\SolidDocuments
O43 - CFD: 10/07/2014 - 22:05:10 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\Sony
O43 - CFD: 01/01/2013 - 11:48:47 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\Sun
O43 - CFD: 17/04/2014 - 17:42:28 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\Temp
O43 - CFD: 02/09/2014 - 21:30:31 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\Thunderbird =>.Mozilla Corporation
O43 - CFD: 28/11/2013 - 15:12:11 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\TomTom
O43 - CFD: 20/04/2014 - 21:20:38 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\TuneUp Software
O43 - CFD: 14/01/2014 - 23:25:24 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\WDSetup
O43 - CFD: 19/06/2014 - 16:48:27 - [0] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\WMTools Downloaded Files
O43 - CFD: 30/08/2011 - 20:57:20 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\Yahoo
O43 - CFD: 21/01/2014 - 22:06:14 - [0] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\{3248F0A6-6813-11D6-A77B-00B0D0150040}
O43 - CFD: 29/11/2013 - 16:24:10 - [] ----D D:\Documents and Settings\vero et gégé\Local Settings\Application Data\{DD4E68DA-DBCD-4C1F-B85E-FF8A7BEBE383}
O43 - CFD: 30/12/2013 - 08:42:10 - [] R---D D:\Documents and Settings\vero et gégé\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 19/05/2014 - 01:01:12 - [] ----D D:\Documents and Settings\vero et gégé\Menu Démarrer\Programmes\adsl TV
O43 - CFD: 15/05/2014 - 21:25:05 - [] R---D D:\Documents and Settings\vero et gégé\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 03/11/2013 - 23:18:49 - [] ----D D:\Documents and Settings\vero et gégé\Menu Démarrer\Programmes\MLSofts
O43 - CFD: 22/07/2009 - 12:12:28 - [] R---D D:\Documents and Settings\vero et gégé\Menu Démarrer\Programmes\Outils d'administration
O43 - CFD: 26/10/2013 - 17:33:59 - [] ----D D:\Documents and Settings\vero et gégé\Menu Démarrer\Programmes\PhotoFiltre 7
O43 - CFD: 28/01/2014 - 00:03:42 - [0] ----D D:\Documents and Settings\vero et gégé\Menu Démarrer\Programmes\TomTom
O43 - CFD: 24/02/2013 - 10:59:58 - [] ----D D:\Documents and Settings\vero et gégé\Menu Démarrer\Programmes\Unlocker
O43 - CFD: 19/05/2014 - 01:01:13 - [0] ----D D:\Documents and Settings\vero et gégé\Menu Démarrer\Programmes\WinRAR
~ Program Folder: 251 Scanned in 00mn 01s



---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 03/09/2014 - 17:40:24 ---A- . (...) -- C:\WINDOWS\setuperr.log [0]
O44 - LFC:[MD5.76AA79DE9A41F2F78BF3CD27773BF4CE] - 03/09/2014 - 17:41:37 ---A- . (...) -- C:\WINDOWS\imsins.BAK [575]
O44 - LFC:[MD5.6DCCB965A65F8A64992DB4D0334B476A] - 03/09/2014 - 17:42:36 ---A- . (...) -- C:\WINDOWS\msmqinst.log [10850]
O44 - LFC:[MD5.7D9EFDCA4EB1658FF4E070F4B1205F32] - 03/09/2014 - 17:44:09 ---A- . (...) -- C:\WINDOWS\netfxocm.log [2367]
O44 - LFC:[MD5.C12106D0BF6E7882765AE69EB6B581BC] - 03/09/2014 - 17:47:19 ---A- . (...) -- C:\WINDOWS\FaxSetup.log [12717]
O44 - LFC:[MD5.509572801B7F7E776E28CC3971537091] - 03/09/2014 - 17:47:26 ---A- . (...) -- C:\WINDOWS\msgsocm.log [919]
O44 - LFC:[MD5.F5FD3AC990D235F2BDCB797D83516B07] - 03/09/2014 - 17:47:26 ---A- . (...) -- C:\WINDOWS\ocgen.log [14110]
O44 - LFC:[MD5.FCABC51A115701238B0DB2B150F3D22B] - 03/09/2014 - 17:47:27 ---A- . (...) -- C:\WINDOWS\imsins.log [3690]
O44 - LFC:[MD5.7E35BE7394821334F6F577F3BF2E9025] - 03/09/2014 - 17:47:27 ---A- . (...) -- C:\WINDOWS\ocmsn.log [701]
O44 - LFC:[MD5.D1F9F75294D2A774C1259196FBE08D4F] - 03/09/2014 - 17:47:27 ---A- . (...) -- C:\WINDOWS\plusoc.log [2812]
O44 - LFC:[MD5.F37EBF94CE9B77B0DD8DD9618EFA1ED6] - 03/09/2014 - 17:47:27 ---A- . (...) -- C:\WINDOWS\tabletoc.log [622]
O44 - LFC:[MD5.F009F2FBFCCD6F8E6254F7003DD27AD7] - 03/09/2014 - 17:47:27 ---A- . (...) -- C:\WINDOWS\tsoc.log [8336]
O44 - LFC:[MD5.F8D1A1A41A90594E555FFFBAD6B6030E] - 03/09/2014 - 17:47:28 ---A- . (...) -- C:\WINDOWS\comsetup.log [4934]
O44 - LFC:[MD5.7323654A2EBA9472DAF5BB92B392C281] - 03/09/2014 - 17:47:28 ---A- . (...) -- C:\WINDOWS\iis6.log [41090]
O44 - LFC:[MD5.777AE88F61667BBADCB7F92D66586856] - 03/09/2014 - 17:47:28 ---A- . (...) -- C:\WINDOWS\ntdtcsetup.log [3873]
O44 - LFC:[MD5.DCCE8F81AC79074565658A6884C82867] - 03/09/2014 - 17:47:29 ---A- . (...) -- C:\WINDOWS\MedCtrOC.log [4314]
O44 - LFC:[MD5.DD26693305D37A71B490809E18D74302] - 03/09/2014 - 17:47:29 ---A- . (...) -- C:\WINDOWS\ehOCGen.log [2139]
O44 - LFC:[MD5.F85F8C44C19436A7D1525525BE2447DA] - 05/09/2014 - 06:55:48 ---A- . (...) -- C:\PhysicalDisk0_MBR.bin [512]
O44 - LFC:[MD5.3D70A0AA2111592F939AA431DD3A54C0] - 06/09/2014 - 05:34:45 ---A- . (...) -- C:\bdlog.txt [6500]
O44 - LFC:[MD5.29BD3542938FBE0C68F1D895141EEB78] - 07/09/2014 - 21:45:09 ---A- . (.Oracle Corporation - Java Control Panel.) -- C:\WINDOWS\system32\javacpl.cpl [146432]
O44 - LFC:[MD5.9F90ABB82122AA9796CED77D0B9CDB31] - 07/09/2014 - 21:45:09 ---A- . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\WINDOWS\system32\java.exe [176552]
O44 - LFC:[MD5.9976A25384786083866C4DB1810D5962] - 07/09/2014 - 21:45:11 ---A- . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\WINDOWS\system32\javaw.exe [176552]
O44 - LFC:[MD5.3A54EE6C9C9908362AA34133DE667C99] - 07/09/2014 - 21:45:11 ---A- . (.Oracle Corporation - Java(TM) Web Start Launcher.) -- C:\WINDOWS\system32\javaws.exe [272296]
O44 - LFC:[MD5.D451950BDA63A61DF09AB89D957C11FB] - 07/09/2014 - 21:45:40 ---A- . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\WINDOWS\system32\WindowsAccessBridge.dll [96680]
O44 - LFC:[MD5.74034A016831141D9B813BB16ACCBBE5] - 08/09/2014 - 07:09:26 ---A- . (...) -- C:\WINDOWS\system32\wpa.dbl [1158]
O44 - LFC:[MD5.2C0A9EF6FC654087748406F6D45AF620] - 10/09/2014 - 02:17:58 ---A- . (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) -- C:\WINDOWS\system32\MRT.exe [98758480]
O44 - LFC:[MD5.3B5CA8EB6748D234F117AB203491F6F9] - 10/09/2014 - 15:59:44 ---A- . (.BitDefender LLC - BitDefender Gonzales FileSystem Driver.) -- C:\WINDOWS\system32\Drivers\gzflt.sys [165744]
O44 - LFC:[MD5.1F1E5D6E937476A32CBC8AEC17C4B7BC] - 10/09/2014 - 15:59:52 ---A- . (.BitDefender S.R.L. - Trufos Kernel Module.) -- C:\WINDOWS\system32\Drivers\trufos.sys [385096]
O44 - LFC:[MD5.75762F5F9A41D9F73BB001B923C1BC38] - 10/09/2014 - 16:09:39 ---A- . (...) -- C:\WINDOWS\setupapi.log [70212]
O44 - LFC:[MD5.B86A708C3D607FFF2E0C5CC26681726A] - 10/09/2014 - 16:19:49 ---A- . (...) -- C:\WINDOWS\SchedLgU.Txt [32496]
O44 - LFC:[MD5.78777AC2C81020629751FB233A6BBA24] - 10/09/2014 - 16:21:04 ---A- . (...) -- C:\WINDOWS\errord.log [216]
O44 - LFC:[MD5.6A2CB42966136854F4464516FBB4AE72] - 10/09/2014 - 16:21:21 -S-A- . (...) -- C:\WINDOWS\bootstat.dat [2048]
O44 - LFC:[MD5.5B18ECA8CF5406C2BE53FD80240B65D3] - 10/09/2014 - 16:23:40 ---A- . (...) -- C:\WINDOWS\error.log [992]
O44 - LFC:[MD5.3AEE0A582998E916843985387B0F6DA4] - 10/09/2014 - 16:24:20 ---A- . (...) -- C:\WINDOWS\wiaservc.log [50]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 10/09/2014 - 16:26:00 ---A- . (...) -- C:\WINDOWS\0.log [0]
O44 - LFC:[MD5.F5BF197E8D5BD61B26AE8119920234C7] - 10/09/2014 - 16:26:01 ---A- . (...) -- C:\WINDOWS\wiadebug.log [159]
O44 - LFC:[MD5.3A9A54E9FF21A4825E9B40A89674F085] - 11/09/2014 - 20:33:36 ---A- . (...) -- C:\WINDOWS\setupact.log [60]
O44 - LFC:[MD5.042CB80FDA421EAAB91CD760E127A0A6] - 12/09/2014 - 09:05:48 ---A- . (...) -- C:\WINDOWS\WindowsUpdate.log [1181423]
O44 - LFC:[MD5.D83ADAF82A89289BB13A69F7B4F5757C] - 31/08/2014 - 08:34:32 ---A- . (.BitDefender - Active Virus Control filter driver.) -- C:\WINDOWS\system32\Drivers\avc3.sys [1060312]
O44 - LFC:[MD5.247E94E2D40AC81EEE5F9D34748079F5] - 31/08/2014 - 08:34:33 ---A- . (.BitDefender - Active Virus Control Kernel Filtering drive.) -- C:\WINDOWS\system32\Drivers\avckf.sys [528248]
O44 - LFC:[MD5.7F9B99B564E7C9FBB6729ED95B5BBB24] - 31/08/2014 - 08:34:33 ---A- . (.BitDefender - BitDefender AntiVirus Active Virus Control.) -- C:\WINDOWS\system32\Drivers\avchv.sys [242504]
O44 - LFC:[MD5.A1777C97C2FEA21D7166752AA2CCCBE8] - 31/08/2014 - 08:36:05 ---A- . (.BitDefender SRL - BitDefender SandBox Filter Driver.) -- C:\WINDOWS\system32\Drivers\bdsandbox.sys [66832]
O44 - LFC:[MD5.281356CC2E8706740C16F248EBDBD461] - 31/08/2014 - 08:36:05 ---A- . (.BitDefender SRL - BitDefender SandBox User Interface Skinning.) -- C:\WINDOWS\system32\bdsandboxuiskin.dll [74512]
O44 - LFC:[MD5.E0DC4DCC3C3E9C8D481DFD67CDEEF932] - 31/08/2014 - 08:36:05 ---A- . (.BitDefender SRL - BitDefender SandBox User Mode Filter Librar.) -- C:\WINDOWS\system32\bdsandboxuh.dll [27168]
O44 - LFC:[MD5.F7E74BB09DAC0A0E782AAD020B22103E] - 31/08/2014 - 08:36:08 ---A- . (.BitDefender LLC - BitDefender Firewall NDIS Filter Driver.) -- C:\WINDOWS\system32\Drivers\bdfndisf.sys [116688]
O44 - LFC:[MD5.B82A4AE7C1259411421D2389BD1AB058] - 31/08/2014 - 09:36:05 ---A- . (.BitDefender - FileVault Disk Driver.) -- C:\WINDOWS\system32\Drivers\bdvedisk.sys [72704]
O44 - LFC:[MD5.FE61D1F8B825BC7A329A18A6CDB2A12B] - 31/08/2014 - 14:13:48 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\WINDOWS\system32\FlashPlayerCPLApp.cpl [71344]
O44 - LFC:[MD5.5ECA7197CC7C56C353AE941CE1186666] - 31/08/2014 - 14:13:55 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\WINDOWS\system32\FlashPlayerApp.exe [699568]
~ Files: 48 Scanned in 00mn 09s



---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.0AE0D9A50103B11179BD505D1943DAC1] - 12/09/2014 - 15:27:41 ---A- - C:\WINDOWS\Prefetch\SEARCHPROTECT_W_PRECHECKER.EX-351607AC.pf =>PUP.SearchProtect
O45 - LFCP:[MD5.915CF09EE1AA6B1223C65DAC30D5348E] - 12/09/2014 - 15:28:03 ---A- - C:\WINDOWS\Prefetch\WAJAM_VALIDATE.EXE-0F179C0C.pf =>PUP.Wajam
~ Prefetcher: 2 Scanned in 00mn 00s



---\\ Opérations et fonctions au démarrage de Windows Explorer (O46)
O46 - SEH:ShellExecuteHooks - URL Exec Hook - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - shell32.dll
O46 - SEH:ShellExecuteHooks - Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~1\Microsoft Office\Office14\GROOVEEX.DLL
O46 - SEH:ShellExecuteHooks - (no name) - {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\PROGRA~1\Microsoft Office\Office14\GROOVEEX.DLL
~ ShellExecuteHooks: Scanned in 00mn 00s



---\\ Export de clé d'application autorisée (O47)
O47 - AAKE:Key Export SP - "%windir%\Network Diagnostic\xpnetdiag.exe" [Enabled] .(.Microsoft Corporation.) -- C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O47 - AAKE:Key Export SP - "C:\WINDOWS\system32\dpvsetup.exe" [Enabled] .(.Microsoft Corporation.) -- C:\WINDOWS\system32\dpvsetup.exe
O47 - AAKE:Key Export SP - "C:\WINDOWS\system32\muzapp.exe" [Enabled] .(.Musiccity Co.Ltd..) -- C:\WINDOWS\system32\muzapp.exe
O47 - AAKE:Key Export SP - "C:\WINDOWS\system32\msiexec.exe" [Enabled] .(.Microsoft Corporation.) -- C:\WINDOWS\system32\msiexec.exe
O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe" [Enabled] .(.Hewlett-Packard Development Company, L.P..) -- C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe" [Enabled] .(.Hewlett-Packard Development Company, L.P..) -- C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe
O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe" [Enabled] .(.Hewlett-Packard Development Company, L.P..) -- C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe
O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe" [Enabled] .(.Hewlett-Packard Development Company, L.P..) -- C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe
O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hposid01.exe" [Enabled] .(.Hewlett-Packard Development Company, L.P..) -- C:\Program Files\HP\Digital Imaging\bin\hposid01.exe
O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe" [Enabled] .(..) -- C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe
O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe" [Enabled] .(.Hewlett-Packard.) -- C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe
O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe" [Enabled] .(.Hewlett-Packard Development Company, L.P..) -- C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe
O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe" [Enabled] .(.Hewlett-Packard.) -- C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe
O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe" [Enabled] .(.Hewlett-Packard Development Company, L.P..) -- C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe
O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\Unload\HpqPhUnl.exe" [Enabled] .(.Hewlett-Packard.) -- C:\Program Files\HP\Digital Imaging\Unload\HpqPhUnl.exe
O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\Unload\HpqDIA.exe" [Enabled] .(.Pas de propriétaire.) -- C:\Program Files\HP\Digital Imaging\Unload\HpqDIA.exe
O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe" [Enabled] .(.Hewlett-Packard Development Company, L.P..) -- C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe
O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe" [Enabled] .(.Hewlett-Packard Development Company, L.P..) -- C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe
O47 - AAKE:Key Export SP - "C:\Program Files\SFR\Media Center\httpd\httpd.exe" [Enabled] .(.Apache Software Foundation.) -- C:\Program Files\SFR\Media Center\httpd\httpd.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Microsoft Office\Office14\GROOVE.EXE" [Enabled] .(.Microsoft Corporation.) -- C:\Program Files\Microsoft Office\Office14\GROOVE.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Microsoft Office\Office14\ONENOTE.EXE" [Enabled] .(.Microsoft Corporation.) -- C:\Program Files\Microsoft Office\Office14\ONENOTE.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE" [Enabled] .(.Microsoft Corporation.) -- C:\Program Files\Microsoft Office\Office14\OUTLOOK.exe
O47 - AAKE:Key Export SP - "C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\vbc.exe" [Enabled] .(.Microsoft Corporation.) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\vbc.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe" [Enabled] .(.Pas de propriétaire.) -- C:\Program Files\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe
O47 - AAKE:Key Export SP - "C:\Program Files\ITN Converter\ITNConv.exe" [Enabled] .(.Benichou Software.) -- C:\Program Files\ITN Converter\ITNConv.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Google\Chrome\Application\chrome.exe" [Enabled] .(.Google Inc..) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Skype\Phone\Skype.exe" [Enabled] .(.Skype Technologies S.A..) -- C:\Program Files\Skype\Phone\Skype.exe
O47 - AAKE:Key Export SP - "C:\Program Files\ma-config.com\MaConfigAgent.exe" [Enabled] .(...) -- C:\Program Files\ma-config.com\MaConfigAgent.exe (.not file.)
O47 - AAKE:Key Export DP - "%windir%\system32\sessmgr.exe" [Enabled] .(.Microsoft Corporation.) -- C:\WINDOWS\system32\sessmgr.exe
O47 - AAKE:Key Export DP - "%windir%\Network Diagnostic\xpnetdiag.exe" [Enabled] .(.Microsoft Corporation.) -- C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O47 - AAKE:Key Export DP - "C:\Program Files\AOL 9.0\waol.exe" [Enabled] .(...) -- C:\Program Files\AOL 9.0\waol.exe (.not file.)
~ Keys Export: 31 Scanned in 00mn 00s



---\\ Déni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\WINDOWS\system32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l'Éditeur de configuration de sécurité Windows.) -- C:\WINDOWS\system32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Kerberos Security Package.) -- C:\WINDOWS\system32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\WINDOWS\system32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\WINDOWS\system32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\WINDOWS\system32\wdigest.dll
~ LSA: 6 Scanned in 00mn 00s



---\\ Contrôle du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmboot.sys . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disque NT.) -- C:\WINDOWS\system32\Drivers\dmboot.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmio.sys . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\system32\Drivers\dmio.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmload.sys . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\system32\Drivers\dmload.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (...) -- C:\WINDOWS\system32\Drivers\sermouse.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sr.sys . (.Microsoft Corporation - Pilote de filtre de système de fichiers pour la restauration du système.) -- C:\WINDOWS\system32\Drivers\sr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\WINDOWS\system32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\WINDOWS\system32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\Wdf01000.sys . (.Microsoft Corporation - Kernel Mode Driver Framework Runtime.) -- C:\WINDOWS\system32\Drivers\Wdf01000.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmboot.sys . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disque NT.) -- C:\WINDOWS\system32\Drivers\dmboot.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmio.sys . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\system32\Drivers\dmio.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmload.sys . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\system32\Drivers\dmload.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ip6fw.sys . (.Microsoft Corporation - IPv6 Windows Firewall Driver.) -- C:\WINDOWS\system32\Drivers\ip6fw.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\system32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpcdd.sys . (.Microsoft Corporation - RDP Miniport.) -- C:\WINDOWS\system32\Drivers\rdpcdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpdd.sys . (...) -- C:\WINDOWS\system32\Drivers\rdpdd.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpwd.sys . (.Microsoft Corporation - RDP Terminal Stack Driver (US/Canada Only, Not for Export).) -- C:\WINDOWS\system32\Drivers\rdpwd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (...) -- C:\WINDOWS\system32\Drivers\sermouse.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sr.sys . (.Microsoft Corporation - Pilote de filtre de système de fichiers pour la restauration du système.) -- C:\WINDOWS\system32\Drivers\sr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\tdpipe.sys . (.Microsoft Corporation - Named Pipe Transport Driver.) -- C:\WINDOWS\system32\Drivers\tdpipe.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\tdtcp.sys . (.Microsoft Corporation - TCP Transport Driver.) -- C:\WINDOWS\system32\Drivers\tdtcp.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\WINDOWS\system32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\WINDOWS\system32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\Wdf01000.sys . (.Microsoft Corporation - Kernel Mode Driver Framework Runtime.) -- C:\WINDOWS\system32\Drivers\Wdf01000.sys
~ CSB: 23 Scanned in 00mn 00s



---\\ Image File Execution Options (IFEO) (O50)
O50 - IFEO:Image File Execution Options - Your Image File Name Here without a path - ntsd -d
~ IFEO: Scanned in 00mn 00s



---\\ Recherche d'infection sur les pilotes (HKLM)(TDSD) (O52)
O52 - TDSD: \Drivers32\"msacm.trspch"="tssoft32.acm" . (.DSP GROUP, INC. - Codec audio TrueSpeech(TM) DSP Group pour MSACM V3.50.) -- C:\WINDOWS\system32\tssoft32.acm
O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Cinepak® Codec.) -- C:\WINDOWS\system32\iccvid.dll
O52 - TDSD: \Drivers32\"VIDC.I420"="i420vfw.dll" . (.www.helixcommunity.org - Helix I420 YUV Codec.) -- C:\WINDOWS\system32\i420vfw.dll
O52 - TDSD: \Drivers32\"vidc.iv31"="ir32_32.dll" . (...) -- C:\WINDOWS\system32\ir32_32.dll
O52 - TDSD: \Drivers32\"vidc.iv32"="ir32_32.dll" . (...) -- C:\WINDOWS\system32\ir32_32.dll
O52 - TDSD: \Drivers32\"vidc.iv41"="ir41_32.ax" . (.Intel Corporation - Intel Indeo® Video 4.5.) -- C:\WINDOWS\system32\ir41_32.ax
O52 - TDSD: \Drivers32\"msacm.sl_anet"="sl_anet.acm" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\WINDOWS\system32\sl_anet.acm
O52 - TDSD: \Drivers32\"msacm.iac2"="C:\WINDOWS\system32\iac25_32.ax" . (.Intel Corporation - Indeo® audio software.) -- C:\WINDOWS\system32\iac25_32.ax
O52 - TDSD: \Drivers32\"vidc.iv50"="ir50_32.dll" . (.Intel Corporation - Intel Indeo® video 5.10.) -- C:\WINDOWS\system32\ir50_32.dll
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\WINDOWS\system32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\WINDOWS\system32\l3codeca.acm
O52 - TDSD: \Drivers32\"msacm.ac3filter"="ac3filter.acm" . (...) -- C:\WINDOWS\system32\ac3filter.acm
O52 - TDSD: \Drivers32\"vidc.yv12"="yv12vfw.dll" . (.www.helixcommunity.org - Helix YV12 YUV Codec.) -- C:\WINDOWS\system32\yv12vfw.dll
O52 - TDSD: \drivers.desc\"sl_anet.acm"="Sipro Lab Telecom Audio Codec" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\WINDOWS\system32\sl_anet.acm
O52 - TDSD: \drivers.desc\"C:\WINDOWS\system32\iac25_32.ax"="Indeo® audio software" . (.Intel Corporation - Indeo® audio software.) -- C:\WINDOWS\system32\iac25_32.ax
O52 - TDSD: \drivers.desc\"C:\WINDOWS\system32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\WINDOWS\system32\l3codeca.acm
O52 - TDSD: \drivers.desc\"ac3filter.acm"="AC3Filter ACM codec" . (...) -- C:\WINDOWS\system32\ac3filter.acm
O52 - TDSD: \drivers.desc\"tssoft32.acm"="tssoft32.acm" . (.DSP GROUP, INC. - Codec audio TrueSpeech(TM) DSP Group pour MSACM V3.50.) -- C:\WINDOWS\system32\tssoft32.acm
O52 - TDSD: \drivers.desc\"iccvid.dll"="iccvid.dll" . (.Radius Inc. - Cinepak® Codec.) -- C:\WINDOWS\system32\iccvid.dll
O52 - TDSD: \drivers.desc\"ir32_32.dll"="ir32_32.dll" . (...) -- C:\WINDOWS\system32\ir32_32.dll
O52 - TDSD: \drivers.desc\"ir41_32.ax"="ir41_32" . (.Intel Corporation - Intel Indeo® Video 4.5.) -- C:\WINDOWS\system32\ir41_32.ax
O52 - TDSD: \drivers.desc\"i420vfw.dll"="i420vfw.dll" . (.www.helixcommunity.org - Helix I420 YUV Codec.) -- C:\WINDOWS\system32\i420vfw.dll
O52 - TDSD: \drivers.desc\"yv12vfw.dll"="yv12vfw.dll" . (.www.helixcommunity.org - Helix YV12 YUV Codec.) -- C:\WINDOWS\system32\yv12vfw.dll
~ TDSD: 22 Scanned in 00mn 00s



---\\ Enumération des clés de registre StartupReg (SMSR) (O53)
O53 - SMSR:HKLM\...\startupreg\ACTIVBOARD [Key] . (.NEC Computers International - Activboard Application.) -- c:\apps\ABoard\ABoard.exe
O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated
O53 - SMSR:HKLM\...\startupreg\ctfmon.exe [Key] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O53 - SMSR:HKLM\...\startupreg\DWQueuedReporting [Key] . (.Microsoft Corporation - Watson Subscriber for SENS Network Notifica.) -- C:\Program Files\FICHIE~1\MICROS~1\DW\dwtrig20.exe
O53 - SMSR:HKLM\...\startupreg\PHIME2002ASync [Key] . (.Microsoft Corporation - 微軟新注音輸入法 2002a.) -- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.exe
O53 - SMSR:HKLM\...\startupreg\QuickTime Task [Key] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\qttask.exe
O53 - SMSR:HKLM\...\startupreg\SmpcSys [Key] . (.Packard Bell BV - SmpSys.exe.) -- C:\APPS\SMP\smpsys.exe
O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe =>.Oracle Corporation
O53 - SMSR:HKLM\...\startupreg\TomTomHOME.exe [Key] . (.TomTom - System Tray application for TomTom HOME.) -- C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe
O53 - SMSR:HKLM\...\startupreg\VX3000 [Key] . (.Microsoft Corporation - Microsoft LifeCam Device Application.) -- C:\WINDOWS\vVX3000.exe
~ SMSR Keys: 14 Scanned in 00mn 00s



---\\ Enumération des clés de registre SecurityProviders (MCSP) (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Client DPA pour plate-forme 32 bit.) -- C:\WINDOWS\system32\msapsspc.dll
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\WINDOWS\system32\schannel.dll
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Package d'authentification Digest SSPI.) -- C:\WINDOWS\system32\digest.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Client DPA pour plate-forme 32 bit.) -- C:\WINDOWS\system32\msapsspc.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\WINDOWS\system32\schannel.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Package d'authentification Digest SSPI.) -- C:\WINDOWS\system32\digest.dll
~ MSCP: 6 Scanned in 00mn 00s



---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "InstallVisualStyle"=1
O55 - MWPS:[HKLM\...\Policies\System] - "InstallTheme"=1
O55 - MWPS:[HKCU\...\Policies\System] - "disableregistrytools"=0
~ MWPS: 8 Scanned in 00mn 00s



---\\ Enumération des clés de registre PoliciesExplorer (MWPE) (O56)
O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveTypeAutoRun"=323
O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveAutoRun"=67108863
O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDrives"=0
O56 - MWPE:[HKCU\...\policies\Explorer] - "NoInstrumentation"=
O56 - MWPE:[HKCU\...\policies\Explorer] - "NoLowDiskSpaceChecks"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "HonorAutoRunSetting"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoCDBurning"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoDriveAutoRun"=67108863
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoDriveTypeAutoRun"=323
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoDrives"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoSetActiveDesktop"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=0
~ MWPE Keys: 12 Scanned in 00mn 00s



---\\ Liste des pilotes du système (SDL) (O58)
O58 - SDL:01/01/2000 - 01:00:00 ----- . (.NXP Semiconductors Germany GmbH - 3xHybrid.) -- C:\WINDOWS\system32\Drivers\3xHybrid.sys [1115392]
O58 - SDL:24/09/2008 - 09:40:22 R---- . (.Realtek Semiconductor Corp. - Realtek AC'97 Audio Driver (WDM).) -- C:\WINDOWS\system32\Drivers\alcxwdm.sys [4122368]
O58 - SDL:17/08/2001 - 20:51:56 ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\WINDOWS\system32\Drivers\aliide.sys [5248]
O58 - SDL:01/01/2000 - 01:00:00 ---A- . (.Creative - Creative WDM 3D Audio Driver.) -- C:\WINDOWS\system32\Drivers\Ambfilt.sys [1691480]
O58 - SDL:13/04/2008 - 19:36:39 ---A- . (.Advanced Micro Devices, Inc. - AMD Win2000 AGP Filter.) -- C:\WINDOWS\system32\Drivers\amdagp.sys [43008]
O58 - SDL:17/08/2001 - 20:52:00 ---A- . (.Advanced System Products, Inc. - AdvanSys SCSI Controller Driver.) -- C:\WINDOWS\system32\Drivers\asc.sys [26496]
O58 - SDL:17/08/2001 - 20:51:58 ---A- . (.Advanced System Products, Inc. - AdvanSys Ultra-Wide PCI SCSI Driver.) -- C:\WINDOWS\system32\Drivers\asc3550.sys [14848]
O58 - SDL:16/05/2014 - 19:00:42 ----- . (.AVAST Software - avast! TDI Redirect Driver.) -- C:\WINDOWS\system32\Drivers\aswrdr.sys.1400263438015 [54832]
O58 - SDL:16/05/2014 - 19:00:43 ----- . (.AVAST Software - avast! Virtualization Driver.) -- C:\WINDOWS\system32\Drivers\aswsnx.sys.1400263438015 [776976]
O58 - SDL:03/08/2004 - 21:29:30 ----- . (.ATI Technologies Inc. - ATI WDM BT829 MiniDriver (A).) -- C:\WINDOWS\system32\Drivers\ati1btxx.sys [56623]
O58 - SDL:03/08/2004 - 21:29:30 ----- . (.ATI Technologies Inc. - ATI Specialized MVD VBI Codec.) -- C:\WINDOWS\system32\Drivers\ati1mdxx.sys [11615]
O58 - SDL:03/08/2004 - 21:29:30 ----- . (.ATI Technologies Inc. - ATI Specialized PCD VBI Codec.) -- C:\WINDOWS\system32\Drivers\ati1pdxx.sys [12047]
O58 - SDL:03/08/2004 - 21:29:32 ----- . (.ATI Technologies Inc. - ATI Rage Theater Audio WDM Minidriver.) -- C:\WINDOWS\system32\Drivers\ati1raxx.sys [30671]
O58 - SDL:03/08/2004 - 21:29:32 ----- . (.ATI Technologies Inc. - ATI WDM Rage Theater MiniDriver.) -- C:\WINDOWS\system32\Drivers\ati1rvxx.sys [63663]
O58 - SDL:03/08/2004 - 21:29:32 ----- . (.ATI Technologies Inc. - ATI WDM TV Sound MiniDriver.) -- C:\WINDOWS\system32\Drivers\ati1snxx.sys [26367]
O58 - SDL:03/08/2004 - 21:29:32 ----- . (.ATI Technologies Inc. - ATI WDM Teletext Decoder.) -- C:\WINDOWS\system32\Drivers\ati1ttxx.sys [21343]
O58 - SDL:03/08/2004 - 21:29:32 ----- . (.ATI Technologies Inc. - ATI WDM TVTuner MiniDriver.) -- C:\WINDOWS\system32\Drivers\ati1tuxx.sys [36463]
O58 - SDL:03/08/2004 - 21:29:32 ----- . (.ATI Technologies Inc. - ATI WDM CrossBar MiniDriver.) -- C:\WINDOWS\system32\Drivers\ati1xbxx.sys [29455]
O58 - SDL:03/08/2004 - 21:29:32 ----- . (.ATI Technologies Inc. - ATI WDM TVAUDIO_CrossBar MiniDriver.) -- C:\WINDOWS\system32\Drivers\ati1xsxx.sys [34735]
O58 - SDL:03/08/2004 - 23:38:42 ----- . (.ATI Technologies Inc. - Pilote de miniport ATI RAGE 128.) -- C:\WINDOWS\system32\Drivers\ati2mtaa.sys [327168]
O58 - SDL:01/01/2000 - 01:00:00 ---A- . (.ATI Technologies Inc. - ATI Radeon WindowsNT Miniport Driver.) -- C:\WINDOWS\system32\Drivers\ati2mtag.sys [1754624]
O58 - SDL:03/08/2004 - 21:29:28 ----- . (.ATI Technologies Inc. - ATI WDM BT829 MiniDriver (A).) -- C:\WINDOWS\system32\Drivers\atinbtxx.sys [57856]
O58 - SDL:03/08/2004 - 21:29:30 ----- . (.ATI Technologies Inc. - ATI Specialized MVD VBI Codec RT2.) -- C:\WINDOWS\system32\Drivers\atinmdxx.sys [13824]
O58 - SDL:03/08/2004 - 21:29:30 ----- . (.ATI Technologies Inc. - ATI Specialized PCD VBI Codec RT2.) -- C:\WINDOWS\system32\Drivers\atinpdxx.sys [14336]
O58 - SDL:03/08/2004 - 21:29:30 ----- . (.ATI Technologies Inc. - ATI Rage Theater Audio WDM Minidriver.) -- C:\WINDOWS\system32\Drivers\atinraxx.sys [52224]
O58 - SDL:03/08/2004 - 21:29:32 ----- . (.ATI Technologies Inc. - ATI WDM Rage Theater MiniDriver RT2.) -- C:\WINDOWS\system32\Drivers\atinrvxx.sys [104960]
O58 - SDL:03/08/2004 - 21:29:32 ----- . (.ATI Technologies Inc. - ATI WDM TV Sound MiniDriver.) -- C:\WINDOWS\system32\Drivers\atinsnxx.sys [28672]
O58 - SDL:03/08/2004 - 21:29:32 ----- . (.ATI Technologies Inc. - ATI WDM Teletext Decoder.) -- C:\WINDOWS\system32\Drivers\atinttxx.sys [13824]
O58 - SDL:03/08/2004 - 21:29:32 ----- . (.ATI Technologies Inc. - ATI WDM TVTuner MiniDriver.) -- C:\WINDOWS\system32\Drivers\atintuxx.sys [73216]
O58 - SDL:03/08/2004 - 21:29:32 ----- . (.ATI Technologies Inc. - ATI WDM CrossBar MiniDriver.) -- C:\WINDOWS\system32\Drivers\atinxbxx.sys [31744]
O58 - SDL:03/08/2004 - 21:29:32 ----- . (.ATI Technologies Inc. - ATI WDM TVAUDIO_CrossBar MiniDriver RT2.) -- C:\WINDOWS\system32\Drivers\atinxsxx.sys [63488]
O58 - SDL:16/05/2014 - 11:58:48 ---A- . (.BitDefender - Active Virus Control filter driver.) -- C:\WINDOWS\system32\Drivers\avc3.sys [1060312]
O58 - SDL:02/11/2012 - 12:17:14 ---A- . (.BitDefender - BitDefender AntiVirus Active Virus Control Hypervisor driver.) -- C:\WINDOWS\system32\Drivers\avchv.sys [242504]
O58 - SDL:16/05/2014 - 12:02:38 ---A- . (.BitDefender - Active Virus Control Kernel Filtering driver.) -- C:\WINDOWS\system32\Drivers\avckf.sys [528248]
O58 - SDL:13/11/2013 - 14:41:22 ---A- . (.BitDefender LLC - BitDefender Firewall NDIS Filter Driver.) -- C:\WINDOWS\system32\Drivers\bdfndisf.sys [116688]
O58 - SDL:04/11/2013 - 14:47:30 ---A- . (.BitDefender SRL - BitDefender SandBox Filter Driver.) -- C:\WINDOWS\system32\Drivers\bdsandbox.sys [66832]
O58 - SDL:31/08/2014 - 09:36:05 ---A- . (.BitDefender - FileVault Disk Driver.) -- C:\WINDOWS\system32\Drivers\bdvedisk.sys [72704]
O58 - SDL:19/08/2005 - 02:00:00 ----- . (.Sonic Solutions - CDR4 CD and DVD Place Holder Driver (see PxHelp).) -- C:\WINDOWS\system32\Drivers\cdr4_xp.sys [2432]
O58 - SDL:19/08/2005 - 02:00:00 ----- . (.Sonic Solutions - CDRAL Place Holder Driver (see PxHelp).) -- C:\WINDOWS\system32\Drivers\cdralw2k.sys [2560]
O58 - SDL:10/08/2004 - 13:00:00 ---A- . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\system32\Drivers\cinemst2.sys [262528]
O58 - SDL:23/08/2001 - 16:04:44 ---A- . (.CMD Technology, Inc. - Pilote de bus PCI IDE CMD.) -- C:\WINDOWS\system32\Drivers\cmdide.sys [6656]
O58 - SDL:10/08/2004 - 13:00:00 ---A- . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\system32\Drivers\cpqdap01.sys [11776]
O58 - SDL:17/08/2001 - 20:52:16 ---A- . (.Mylex Corporation - Mylex Disk Array Controller Driver.) -- C:\WINDOWS\system32\Drivers\dac2w2k.sys [179584]
O58 - SDL:05/02/2013 - 16:52:46 ----- . (.Devguru Co., Ltd - Device Error Recovery SDK(x86).) -- C:\WINDOWS\system32\Drivers\dgderdrv.sys [20032]
O58 - SDL:14/04/2008 - 03:05:07 ---A- . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disque NT.) -- C:\WINDOWS\system32\Drivers\dmboot.sys [800256]
O58 - SDL:14/04/2008 - 03:05:12 ---A- . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\system32\Drivers\dmio.sys [154496]
O58 - SDL:10/08/2004 - 13:00:00 ---A- . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\system32\Drivers\dmload.sys [5888]
O58 - SDL:15/06/2013 - 07:16:17 ----- . (.DT Soft Ltd - DAEMON Tools Virtual Bus Driver.) -- C:\WINDOWS\system32\Drivers\dtsoftbus01.sys [242240]
O58 - SDL:28/11/2013 - 14:21:17 ---A- . (.Creative Technology Ltd. - ENSONIQ AudioPCI 97 WDM Audio Miniport.) -- C:\WINDOWS\system32\Drivers\es1371mp.sys [40704]
O58 - SDL:22/06/2012 - 10:01:32 ----- . (...) -- C:\WINDOWS\system32\Drivers\EsgScanner.sys [19984]
O58 - SDL:10/07/2014 - 20:33:00 ---A- . (.Sony Mobile Communications - SOMC USB Flash Driver Filter.) -- C:\WINDOWS\system32\Drivers\ggflt.sys [13528]
O58 - SDL:10/07/2014 - 20:33:01 ---A- . (.Sony Mobile Communications - SOMC USB Flash Driver.) -- C:\WINDOWS\system32\Drivers\ggsomc.sys [26328]
O58 - SDL:23/08/2013 - 12:48:39 ---A- . (.BitDefender LLC - BitDefender Gonzales FileSystem Driver.) -- C:\WINDOWS\system32\Drivers\gzflt.sys [165744]
O58 - SDL:03/02/2010 - 14:56:56 --H-- . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\WINDOWS\system32\Drivers\hamachi.sys [26176]
O58 - SDL:13/04/2008 - 17:36:05 ----- . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\system32\Drivers\hdaudbus.sys [144384]
O58 - SDL:07/01/2005 - 16:07:16 ----- . (.Windows (R) Server 2003 DDK provider - High Definition Audio Function Driver v1.0a.) -- C:\WINDOWS\system32\Drivers\Hdaudio.sys [145920]
O58 - SDL:13/04/2006 - 01:04:40 ----- . (.HP - IEEE-1284.4-1999 Driver (Windows 2000).) -- C:\WINDOWS\system32\Drivers\HPZid412.sys [49664]
O58 - SDL:13/04/2006 - 01:04:40 ----- . (.HP - IEEE-1284.4-1999 Print Class Driver.) -- C:\WINDOWS\system32\Drivers\HPZipr12.sys [16496]
O58 - SDL:13/04/2006 - 01:04:40 ----- . (.HP - 1284.4<->Usb Datalink Driver (Windows 2000).) -- C:\WINDOWS\system32\Drivers\HPZius12.sys [21568]
O58 - SDL:03/08/2004 - 21:41:48 ----- . (.Conexant Systems, Inc. - HSF_HWB2 WDM driver.) -- C:\WINDOWS\system32\Drivers\hsfbs2s2.sys [220032]
O58 - SDL:03/08/2004 - 21:41:50 ----- . (.Conexant Systems, Inc. - HSF_CNXT driver.) -- C:\WINDOWS\system32\Drivers\hsfcxts2.sys [685056]
O58 - SDL:03/08/2004 - 21:41:56 ----- . (.Conexant Systems, Inc. - HSF_DP driver.) -- C:\WINDOWS\system32\Drivers\hsfdpsp2.sys [1041536]
O58 - SDL:22/06/2010 - 17:01:52 ----- . (.Windows (R) Win 7 DDK provider - RawPacket NDIS Protocol Driver.) -- C:\WINDOWS\system32\Drivers\htcnprot.sys [21248]
O58 - SDL:17/12/2008 - 07:00:12 ----- . (.Logitech Inc. - Logitech Kernel Audio Improvement Filter Driver.) -- C:\WINDOWS\system32\Drivers\lvrs.sys [768024]
O58 - SDL:17/12/2008 - 07:01:20 ----- . (.Logitech Inc. - USB Statistic Driver.) -- C:\WINDOWS\system32\Drivers\LVUSBSta.sys [41752]
O58 - SDL:17/12/2008 - 07:01:42 ----- . (.Logitech Inc. - Logitech USB Video Class Driver.) -- C:\WINDOWS\system32\Drivers\lvuvc.sys [6364440]
O58 - SDL:17/12/2008 - 07:02:06 ----- . (.Logitech Inc. - Logitech USB Video Class Filter Driver.) -- C:\WINDOWS\system32\Drivers\lvuvcflt.sys [23832]
O58 - SDL:03/08/2004 - 21:41:56 ----- . (.Conexant - Diagnostic Interface DRIVER.) -- C:\WINDOWS\system32\Drivers\mdmxsdk.sys [11868]
O58 - SDL:01/01/2000 - 01:00:00 ---A- . (.Creative Technology Ltd. - Creative WDM Audio Driver (32-bit).) -- C:\WINDOWS\system32\Drivers\Monfilt.sys [1395800]
O58 - SDL:17/08/2001 - 20:52:12 ---A- . (.American Megatrends Inc. - MegaRAID RAID Controller Driver for Windows Whistler 32.) -- C:\WINDOWS\system32\Drivers\mraid35x.sys [17280]
O58 - SDL:03/08/2004 - 21:41:40 ----- . (.Smart Link - Pas de description.) -- C:\WINDOWS\system32\Drivers\mtlmnt5.sys [126686]
O58 - SDL:03/08/2004 - 21:41:38 ----- . (.Smart Link - Pas de description.) -- C:\WINDOWS\system32\Drivers\mtlstrm.sys [1309184]
O58 - SDL:03/08/2004 - 21:29:38 ----- . (.Matrox Graphics Inc. - Matrox Parhelia Miniport Driver.) -- C:\WINDOWS\system32\Drivers\mtxparhm.sys [452736]
O58 - SDL:10/08/2004 - 13:00:00 ---A- . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\system32\Drivers\nikedrv.sys [12032]
O58 - SDL:03/08/2004 - 21:41:40 ----- . (.Smart Link - Pas de description.) -- C:\WINDOWS\system32\Drivers\ntmtlfax.sys [180360]
O58 - SDL:03/08/2004 - 21:29:56 ----- . (.NVIDIA Corporation - NVIDIA Compatible Windows 2000 Miniport Driver, Version 56.73.) -- C:\WINDOWS\system32\Drivers\nv4_mini.sys [1897408]
O58 - SDL:19/11/2005 - 02:13:18 ----- . (.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 SPR Protocol Driver.) -- C:\WINDOWS\system32\Drivers\PCASp50.sys [20096]
O58 - SDL:28/11/2013 - 14:21:21 ---A- . (.AMD Inc. - NDIS 5.0 driver.) -- C:\WINDOWS\system32\Drivers\pcntpci5.sys [35328]
O58 - SDL:10/08/2004 - 13:00:00 ---A- . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Library.) -- C:\WINDOWS\system32\Drivers\ptilink.sys [17792]
O58 - SDL:20/11/2008 - 20:19:06 ---A- . (.Sonic Solutions - Px Engine Device Driver for Windows 2000/XP.) -- C:\WINDOWS\system32\Drivers\pxhelp20.sys [43872]
O58 - SDL:17/08/2001 - 20:52:20 ---A- . (.QLogic Corporation - Miniport Driver for QLogic ISP PCI Adapters.) -- C:\WINDOWS\system32\Drivers\ql1080.sys [40320]
O58 - SDL:17/08/2001 - 20:52:20 ---A- . (.QLogic Corporation - Miniport Driver for QLogic ISP PCI Adapters.) -- C:\WINDOWS\system32\Drivers\ql12160.sys [45312]
O58 - SDL:17/08/2001 - 20:52:18 ---A- . (.QLogic Corporation - Miniport Driver for QLogic ISP PCI Adapters.) -- C:\WINDOWS\system32\Drivers\ql1280.sys [49024]
O58 - SDL:03/08/2004 - 21:41:40 ----- . (.Smart Link - Pas de description.) -- C:\WINDOWS\system32\Drivers\recagent.sys [13776]
O58 - SDL:10/08/2004 - 13:00:00 ---A- . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\system32\Drivers\rio8drv.sys [12032]
O58 - SDL:10/08/2004 - 13:00:00 ---A- . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\system32\Drivers\riodrv.sys [12032]
O58 - SDL:01/01/2000 - 01:00:00 ---A- . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function Driver.) -- C:\WINDOWS\system32\Drivers\RtkHDAud.sys [5444680]
O58 - SDL:30/09/2005 - 10:11:42 ----- . (.Realtek Semiconductor Corporation - Realtek 10/100/1000 NDIS 5.1 Driver.) -- C:\WINDOWS\system32\Drivers\Rtnicxp.sys [78720]
O58 - SDL:03/08/2004 - 21:29:52 ----- . (.S3 Graphics, Inc. - S3 ProSavage(DDR) & Twister Miniport Driver.) -- C:\WINDOWS\system32\Drivers\s3gnbm.sys [166912]
O58 - SDL:13/04/2008 - 17:39:15 ----- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\WINDOWS\system32\Drivers\secdrv.sys [20480]
O58 - SDL:13/04/2008 - 19:36:39 ---A- . (.Silicon Integrated Systems Corporation - SiS NT AGP Filter.) -- C:\WINDOWS\system32\Drivers\sisagp.sys [40960]
O58 - SDL:03/08/2004 - 21:41:42 ----- . (.Smart Link - Pas de description.) -- C:\WINDOWS\system32\Drivers\slnt7554.sys [129535]
O58 - SDL:03/08/2004 - 21:41:44 ----- . (.Smart Link - Pas de description.) -- C:\WINDOWS\system32\Drivers\slntamr.sys [404990]
O58 - SDL:03/08/2004 - 21:41:46 ----- . (.Smart Link - Pas de description.) -- C:\WINDOWS\system32\Drivers\slnthal.sys [95424]
O58 - SDL:03/08/2004 - 21:41:46 ----- . (.Smart Link - Pas de description.) -- C:\WINDOWS\system32\Drivers\slwdmsup.sys [13240]
O58 - SDL:17/08/2001 - 21:07:44 ---A- . (.Adaptec, Inc. - Adaptec AIC-6x60 series SCSI miniport.) -- C:\WINDOWS\system32\Drivers\sparrow.sys [19072]
O58 - SDL:22/12/2005 - 12:24:52 ----- . (.MCCI - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\Drivers\sscdcm.sys [11877]
O58 - SDL:22/12/2005 - 12:24:54 ----- . (.MCCI - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\Drivers\sscdwh.sys [11188]
O58 - SDL:22/02/2013 - 08:17:00 ----- . (.MCCI - SAMSUNG USB Mobile Device.) -- C:\WINDOWS\system32\Drivers\ss_bbus.sys [98432]
O58 - SDL:27/06/2012 - 09:37:56 ----- . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\Drivers\ss_bcm.sys [12416]
O58 - SDL:22/02/2013 - 08:17:00 ----- . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\Drivers\ss_bcmnt.sys [12416]
O58 - SDL:22/02/2013 - 08:17:00 ----- . (.MCCI Corporation - SAMSUNG USB Mobile Modem Filter.) -- C:\WINDOWS\system32\Drivers\ss_bmdfl.sys [14848]
O58 - SDL:22/02/2013 - 08:17:00 ----- . (.MCCI Corporation - SAMSUNG USB Mobile Modem.) -- C:\WINDOWS\system32\Drivers\ss_bmdm.sys [123648]
O58 - SDL:22/02/2013 - 08:17:00 ----- . (.MCCI Corporation - SAMSUNG USB Mobile Logging Device Driver.) -- C:\WINDOWS\system32\Drivers\ss_bserd.sys [100224]
O58 - SDL:27/06/2012 - 09:37:56 ----- . (.MCCI Corporation - SAMSUNG USB Mobile Device (Windows 2000/XP support functions).) -- C:\WINDOWS\system32\Drivers\ss_bwh.sys [12288]
O58 - SDL:22/02/2013 - 08:17:00 ----- . (.MCCI Corporation - SAMSUNG USB Mobile Device (Windows 2000/XP support functions).) -- C:\WINDOWS\system32\Drivers\ss_bwhnt.sys [12288]
O58 - SDL:16/11/2009 - 21:02:38 ----- . (...) -- C:\WINDOWS\system32\Drivers\StarOpen.sys [5632]
O58 - SDL:17/08/2001 - 21:07:34 ---A- . (.Symbios Logic Inc. - Symbios Logic Inc. SCSI Miniport Driver.) -- C:\WINDOWS\system32\Drivers\symc810.sys [16256]
O58 - SDL:17/08/2001 - 21:07:36 ---A- . (.LSI Logic - Symbios 8XX SCSI Miniport Driver.) -- C:\WINDOWS\system32\Drivers\symc8xx.sys [32640]
O58 - SDL:17/08/2001 - 21:07:40 ---A- . (.LSI Logic - Symbios Hi-Perf SCSI Miniport Driver.) -- C:\WINDOWS\system32\Drivers\sym_hi.sys [28384]
O58 - SDL:17/08/2001 - 21:07:42 ---A- . (.LSI Logic - Symbios Ultra3 SCSI Miniport Driver.) -- C:\WINDOWS\system32\Drivers\sym_u3.sys [30688]
O58 - SDL:16/05/2014 - 17:50:08 ----- . (.AVAST Software - avast! self protection module.) -- C:\WINDOWS\system32\Drivers\tdzixpsb.sys [411552]
O58 - SDL:02/07/2014 - 16:47:10 ---A- . (.BitDefender S.R.L. - Trufos Kernel Module.) -- C:\WINDOWS\system32\Drivers\trufos.sys [385096]
O58 - SDL:10/08/2004 - 13:00:00 ---A- . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\system32\Drivers\tsbvcap.sys [21376]
O58 - SDL:17/08/2001 - 20:52:22 ---A- . (.Promise Technology, Inc. - Gestionnaire de miniport ULTRA66 de Promise.) -- C:\WINDOWS\system32\Drivers\ultra.sys [36736]
O58 - SDL:10/08/2004 - 13:00:00 ---A- . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\system32\Drivers\vdmindvd.sys [58112]
O58 - SDL:28/11/2013 - 14:21:28 ----- . (.VMware, Inc. - VMware PCI VMCI Bus Device.) -- C:\WINDOWS\system32\Drivers\vmci.sys [54960]
O58 - SDL:28/11/2013 - 14:21:31 ----- . (.VMware, Inc. - VMware Replay Debugging Driver.) -- C:\WINDOWS\system32\Drivers\vmdebug.sys [19504]
O58 - SDL:28/11/2013 - 14:21:34 ----- . (.VMware, Inc. - VMware HGFS File System Driver.) -- C:\WINDOWS\system32\Drivers\vmhgfs.sys [117552]
O58 - SDL:28/11/2013 - 14:21:37 ----- . (.VMware, Inc. - VMware Pointing Device Driver.) -- C:\WINDOWS\system32\Drivers\vmmouse.sys [11696]
O58 - SDL:28/11/2013 - 14:21:39 ----- . (.VMware, Inc. - VMware SCSI Controller Driver.) -- C:\WINDOWS\system32\Drivers\vmscsi.sys [17968]
O58 - SDL:28/11/2013 - 14:21:45 ----- . (.VMware, Inc. - VMware PCI Ethernet Adapter.) -- C:\WINDOWS\system32\Drivers\vmxnet.sys [36400]
O58 - SDL:28/11/2013 - 14:21:42 ----- . (.VMware, Inc. - VMware SVGA II Miniport.) -- C:\WINDOWS\system32\Drivers\vmx_svga.sys [63920]
O58 - SDL:03/08/2004 - 21:29:40 ----- . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Graphics Driver.) -- C:\WINDOWS\system32\Drivers\wadv07nt.sys [11807]
O58 - SDL:03/08/2004 - 21:29:40 ----- . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Graphics Driver.) -- C:\WINDOWS\system32\Drivers\wadv08nt.sys [11295]
O58 - SDL:03/08/2004 - 21:29:42 ----- . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Graphics Driver.) -- C:\WINDOWS\system32\Drivers\wadv09nt.sys [11871]
O58 - SDL:03/08/2004 - 21:29:42 ----- . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Graphics Driver.) -- C:\WINDOWS\system32\Drivers\wadv11nt.sys [11935]
O58 - SDL:10/01/2003 - 15:13:04 ----- . (.America Online, Inc. - Wan Miniport (ATW).) -- C:\WINDOWS\system32\Drivers\wanatw4.sys [33588]
O58 - SDL:03/08/2004 - 21:29:46 ----- . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Graphics Driver.) -- C:\WINDOWS\system32\Drivers\watv06nt.sys [22271]
O58 - SDL:03/08/2004 - 21:29:46 ----- . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Graphics Driver.) -- C:\WINDOWS\system32\Drivers\watv10nt.sys [25471]
O58 - SDL:28/11/2005 - 09:45:16 ----- . (.X10 Wireless Technology, Inc. - X10 HID Control Interface.) -- C:\WINDOWS\system32\Drivers\x10hid.sys [7040]
O58 - SDL:10/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ansi.sys [9037]
O58 - SDL:17/03/2008 - 17:45:52 ----- . (...) -- C:\WINDOWS\system32\Ckldrv.sys [19584]
O58 - SDL:10/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\country.sys [27097]
O58 - SDL:22/06/2012 - 10:01:32 ----- . (...) -- C:\WINDOWS\system32\ESGScanner.sys [19984]
O58 - SDL:20/03/2013 - 09:07:16 ----- . (...) -- C:\WINDOWS\system32\FsUsbExDisk.Sys [37344]
O58 - SDL:03/02/2010 - 14:56:56 --H-- . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\WINDOWS\system32\hamachi.sys [26176]
O58 - SDL:10/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\himem.sys [4912]
O58 - SDL:10/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\key01.sys [42809]
O58 - SDL:10/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\keyboard.sys [42537]
O58 - SDL:10/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos.sys [27916]
O58 - SDL:10/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos404.sys [29146]
O58 - SDL:10/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos411.sys [29370]
O58 - SDL:10/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos412.sys [29274]
O58 - SDL:10/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos804.sys [29146]
O58 - SDL:10/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntio.sys [34000]
O58 - SDL:10/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntio404.sys [34560]
O58 - SDL:10/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntio411.sys [35648]
O58 - SDL:10/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntio412.sys [35424]
O58 - SDL:10/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntio804.sys [34560]
~ Drivers: 150 Scanned in 00mn 05s



---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)
O61 - LFC: 05/09/2014 - 16:46:57 ---A- . (.Malwarebytes Corporation.) -- D:\Documents and Settings\vero et gégé\Mes documents\Downloads\mbam-clean-2.1.1.1001 (1).exe [321848]
O61 - LFC: 05/09/2014 - 16:46:57 ---A- . (.Malwarebytes Corporation.) -- D:\Documents and Settings\vero et gégé\Mes documents\Downloads\mbam-clean-2.1.1.1001.exe [321848]
O61 - LFC: 06/09/2014 - 16:46:57 ---A- . (.Malwarebytes Corporation.) -- D:\Documents and Settings\vero et gégé\Mes documents\Downloads\mbam-setup-2.0.2.1012 (1).exe [17292760]
O61 - LFC: 07/09/2014 - 16:46:57 ---A- . (.Oracle Corporation.) -- D:\Documents and Settings\vero et gégé\Mes documents\Downloads\jre-8u20-windows-i586.exe [33733032]
O61 - LFC: 08/09/2014 - 16:46:57 ---A- . (...) -- D:\Documents and Settings\vero et gégé\Mes documents\Downloads\MaConfig_win.exe [255880]
O61 - LFC: 08/09/2014 - 16:46:57 ---A- . (.LionSea Software co., ltd.) -- D:\Documents and Settings\vero et gégé\Mes documents\Downloads\setup.exe [2938144]
O61 - LFC: 08/09/2014 - 16:46:57 ---A- . (.Microsoft Corporation.) -- D:\Documents and Settings\vero et gégé\Mes documents\Downloads\MicrosoftFixit-portable.exe [347440]
O61 - LFC: 08/09/2014 - 16:46:57 ---A- . (.Microsoft Corporation.) -- D:\Documents and Settings\vero et gégé\Mes documents\Downloads\MicrosoftFixit.AudioPlayback.RNP.133358821283463.7.1.Run.exe [347816]
O61 - LFC: 08/09/2014 - 16:46:57 ---A- . (.Topala Software Solutions.) -- D:\Documents and Settings\vero et gégé\Mes documents\Downloads\siw-setup-build1029 (1).exe [5714221]
O61 - LFC: 08/09/2014 - 16:46:57 ---A- . (.Topala Software Solutions.) -- D:\Documents and Settings\vero et gégé\Mes documents\Downloads\siw-setup-build1029.exe [5714221]
O61 - LFC: 09/09/2014 - 16:46:48 ---A- . (...) -- D:\Documents and Settings\vero et gégé\Local Settings\Application Data\Google\Chrome\User Data\nacl_validation_cache.bin [164]
O61 - LFC: 12/09/2014 - 16:46:57 ---A- . (.Nicolas Coolman.) -- D:\Documents and Settings\vero et gégé\Mes documents\Downloads\ZHPDiag2.exe [6858810] =>.Nicolas Coolman
O61 - LFC: 12/09/2014 - 16:46:57 ---A- . (.Software Installer.) -- D:\Documents and Settings\vero et gégé\Mes documents\Downloads\Setup (1).exe [274296]
~ 35 Fichiers temporaires (Temporary files)
~ 1 Fichiers cookies (Cookies files)
~ Files: 13 Scanned in 00mn 19s



---\\ Liste des outils de désinfection (LATC) (O63)
O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman
~ ADS: Scanned in 00mn 00s



---\\ Liste les services legacy du registre (LALS) (O64)
O64 - Services: CurCS - 17/08/2001 - C:\WINDOWS\system32\DRIVERS\aliide.sys (AliIde) .(.Acer Laboratories Inc. - ALi mini IDE Driver.) - LEGACY_ALIIDE
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\DRIVERS\amdagp.sys (amdagp) .(.Advanced Micro Devices, Inc. - AMD Win2000 AGP Filter.) - LEGACY_AMDAGP
O64 - Services: CurCS - 17/08/2001 - C:\WINDOWS\system32\DRIVERS\asc.sys (asc) .(.Advanced System Products, Inc. - AdvanSys SCSI Controller Driver.) - LEGACY_ASC
O64 - Services: CurCS - 17/08/2001 - C:\WINDOWS\system32\DRIVERS\asc3550.sys (asc3550) .(.Advanced System Products, Inc. - AdvanSys Ultra-Wide PCI SCSI Driver.) - LEGACY_ASC3550
O64 - Services: CurCS - 01/01/2000 - C:\WINDOWS\system32\Ati2evxx.exe (Ati HotKey Poller) .(.ATI Technologies Inc. - ATI External Event Utility EXE Module.) - LEGACY_ATI_HOTKEY_POLLER
O64 - Services: CurCS - 16/05/2014 - C:\WINDOWS\system32\DRIVERS\avc3.sys (avc3) .(.BitDefender - Active Virus Control filter driver.) - LEGACY_AVC3
O64 - Services: CurCS - 07/02/2012 - C:\Program Files\Fichiers communs\Bitdefender\Bitdefender Firewall\bdftdif.sys (bdftdif) .(.BitDefender LLC - BitDefender Firewall TDI Filter Driver.) - LEGACY_BDFTDIF
O64 - Services: CurCS - 26/07/2013 - C:\Program Files\Bitdefender\Bitdefender 2015\bdselfpr.sys (bdselfpr) .(.BitDefender LLC - BitDefender Self Protection Driver.) - LEGACY_BDSELFPR
O64 - Services: CurCS - 23/08/2001 - C:\WINDOWS\system32\DRIVERS\cmdide.sys (CmdIde) .(.CMD Technology, Inc. - Pilote de bus PCI IDE CMD.) - LEGACY_CMDIDE
O64 - Services: CurCS - 08/05/2008 - C:\WINDOWS\system32\crypserv.exe (Crypkey License) .(.CrypKey (Canada) Ltd. - CrypKey License Service.) - LEGACY_CRYPKEY_LICENSE
O64 - Services: CurCS - 17/08/2001 - C:\WINDOWS\system32\DRIVERS\dac2w2k.sys (dac2w2k) .(.Mylex Corporation - Mylex Disk Array Controller Driver.) - LEGACY_DAC2W2K
O64 - Services: CurCS - 10/08/2004 - C:\WINDOWS\system32\drivers\dmload.sys (dmload) .(.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) - LEGACY_DMLOAD
O64 - Services: CurCS - 20/03/2013 - C:\WINDOWS\system32\FsUsbExDisk.sys (FsUsbExDisk) .(...) - LEGACY_FSUSBEXDISK
O64 - Services: CurCS - 20/03/2013 - C:\WINDOWS\system32\FsUsbExService.exe (FsUsbExService) .(.Teruten - FsUsbDevice.) - LEGACY_FSUSBEXSERVICE
O64 - Services: CurCS - 23/08/2013 - C:\WINDOWS\system32\DRIVERS\gzflt.sys (gzflt) .(.BitDefender LLC - BitDefender Gonzales FileSystem Driver.) - LEGACY_GZFLT
O64 - Services: CurCS - 25/07/2014 - C:\Program Files\Java\jre7\bin\jqs.exe (JavaQuickStarterService) .(.Oracle Corporation - Java Quick Starter Service.) - LEGACY_JAVAQUICKSTARTERSERVICE
O64 - Services: CurCS - 17/08/2001 - C:\WINDOWS\system32\DRIVERS\mraid35x.sys (mraid35x) .(.American Megatrends Inc. - MegaRAID RAID Controller Driver for Windows.) - LEGACY_MRAID35X
O64 - Services: CurCS - 17/03/2008 - C:\WINDOWS\system32\ckldrv.sys (NetworkX) .(...) - LEGACY_NETWORKX
O64 - Services: CurCS - 17/08/2001 - C:\WINDOWS\system32\DRIVERS\ql1080.sys (ql1080) .(.QLogic Corporation - Miniport Driver for QLogic ISP PCI Adapters.) - LEGACY_QL1080
O64 - Services: CurCS - 17/08/2001 - C:\WINDOWS\system32\DRIVERS\ql12160.sys (ql12160) .(.QLogic Corporation - Miniport Driver for QLogic ISP PCI Adapters.) - LEGACY_QL12160
O64 - Services: CurCS - 17/08/2001 - C:\WINDOWS\system32\DRIVERS\ql1280.sys (ql1280) .(.QLogic Corporation - Miniport Driver for QLogic ISP PCI Adapters.) - LEGACY_QL1280
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\DRIVERS\sisagp.sys (sisagp) .(.Silicon Integrated Systems Corporation - SiS NT AGP Filter.) - LEGACY_SISAGP
O64 - Services: CurCS - 17/08/2001 - C:\WINDOWS\system32\DRIVERS\sparrow.sys (Sparrow) .(.Adaptec, Inc. - Adaptec AIC-6x60 series SCSI miniport.) - LEGACY_SPARROW
O64 - Services: CurCS - 17/08/2001 - C:\WINDOWS\system32\DRIVERS\symc810.sys (symc810) .(.Symbios Logic Inc. - Symbios Logic Inc. SCSI Miniport Driver.) - LEGACY_SYMC810
O64 - Services: CurCS - 17/08/2001 - C:\WINDOWS\system32\DRIVERS\symc8xx.sys (symc8xx) .(.LSI Logic - Symbios 8XX SCSI Miniport Driver.) - LEGACY_SYMC8XX
O64 - Services: CurCS - 17/08/2001 - C:\WINDOWS\system32\DRIVERS\sym_hi.sys (sym_hi) .(.LSI Logic - Symbios Hi-Perf SCSI Miniport Driver.) - LEGACY_SYM_HI
O64 - Services: CurCS - 17/08/2001 - C:\WINDOWS\system32\DRIVERS\sym_u3.sys (sym_u3) .(.LSI Logic - Symbios Ultra3 SCSI Miniport Driver.) - LEGACY_SYM_U3
O64 - Services: CurCS - 05/06/2014 - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe (TomTomHOMEService) .(.TomTom - Windows Service for TomTom HOME.) - LEGACY_TOMTOMHOMESERVICE
O64 - Services: CurCS - 02/07/2014 - C:\WINDOWS\system32\DRIVERS\trufos.sys (trufos) .(.BitDefender S.R.L. - Trufos Kernel Module.) - LEGACY_TRUFOS
O64 - Services: CurCS - 26/02/2004 - C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe (UleadBurningHelper) .(.Ulead Systems, Inc. - ULCDRSvr.) - LEGACY_ULEADBURNINGHELPER
O64 - Services: CurCS - 17/08/2001 - C:\WINDOWS\system32\DRIVERS\ultra.sys (ultra) .(.Promise Technology, Inc. - Gestionnaire de miniport ULTRA66 de Promise.) - LEGACY_ULTRA
O64 - Services: CurCS - 04/07/2010 - C:\Program Files\Unlocker\UnlockerDriver5.sys (UnlockerDriver5) .(...) - LEGACY_UNLOCKERDRIVER5
O64 - Services: CurCS - 08/08/2014 - C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe (UPDATESRV) .(.Bitdefender - Bitdefender Update Service.) - LEGACY_UPDATESRV
O64 - Services: CurCS - 11/08/2014 - C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe (VSSERV) .(.Bitdefender - Bitdefender Security Service.) - LEGACY_VSSERV
O64 - Services: CurCS - 12/11/2001 - C:\Program Files\Common Files\X10\Common\X10nets.exe (x10nets) .(.X10 - X10 Module.) - LEGACY_X10NETS
~ Legacy: 274 Scanned in 00mn 01s



---\\ Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\IEXPLORE.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\system32\WScript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Not Key.)
~ FASS Keys: 10 Scanned in 00mn 00s



---\\ Menu de démarrage Internet (SMI) (O68)
O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
~ Keys: Scanned in 00mn 00s



---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69)
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com
O69 - SBI: SearchScopes [HKCU] {641647D6-EA4E-48BD-A461-486CF329C094} - (Google) - http://www.google.com
O69 - SBI: SearchScopes [HKCU] {D8DCE488-62E9-4B41-84C1-5274E3D0862F} - (http://www.google.com) - http://www.google.com
~ Keys: Scanned in 00mn 00s



---\\ Enumère les service demarrés par Svchost (SSS) (O83)
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\WINDOWS\system32\appmgmts.dll [176640]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496]
O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [78336]
O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464]
O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576]
O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488]
O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\system32\ersvc.dll [23040]
O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - Pas de description.) -- C:\WINDOWS\system32\es.dll [253952]
O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: HidServ (HidServ) . (.Microsoft Corporation - HID Audio Service.) -- C:\WINDOWS\system32\hidserv.dll [21504]
O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [99840]
O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [132096]
O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\system32\msgsvc.dll [33792]
O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144]
O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\system32\mswsock.dll [247808] =>.Microsoft Corporation
O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [53248]
O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560]
O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secondaire.) -- C:\WINDOWS\system32\seclogon.dll [18944]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à Microsoft NAT.) -- C:\WINDOWS\system32\ipnathlp.dll [332800]
O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\WINDOWS\system32\tapisrv.dll [249856]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112]
O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176]
O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483840]
O83 - Search Svchost Services: Wmi (Wmi) . (.Microsoft Corporation - API avancées Windows 32.) -- C:\WINDOWS\system32\advapi32.dll [685568]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [145408]
O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896]
O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024]
O83 - Search Svchost Services: MHN (MHN) . (.Microsoft Corporation - Windows NT.) -- C:\WINDOWS\system32\mhn.dll [85504]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\WINDOWS\system32\qmgr.dll [409088]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll [38400]
O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- C:\WINDOWS\system32\MsPMSNSv.dll [27136]
O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440]
~ Services: 41 Scanned in 00mn 00s



---\\ Recherche particulière à la racine du système (SPRF) (O84)
[MD5.AB0882A6D1078584946F0AD07775F045] [SPRF][31/08/2014] (...) -- D:\Documents and Settings\All Users\Application Data\1409468917.bdinstall.bin [819779]
[MD5.EC1956B57A845E2EEA71F70DC4172E5C] [SPRF][10/09/2014] (...) -- D:\Documents and Settings\All Users\Application Data\1410360740.bdinstall.bin [519634]
[MD5.697A839B04CB4A381321F4DCBDF7E1BA] [SPRF][04/01/2008] (...) -- D:\Documents and Settings\All Users\Application Data\ezsid.dat [32]
[MD5.B6381489F9C8612AFFD4A2765ABD341C] [SPRF][15/08/2012] (...) -- D:\Documents and Settings\vero et gégé\Bureau\iexplore.exe [218184]
[MD5.B6129700128E27EB7B235710CC4B2492] [SPRF][30/08/2010] (.www.moofdev.net - Ratio Master.) -- D:\Documents and Settings\vero et gégé\Bureau\RM.exe [278528]
[MD5.0D57647E31FF4B5195DA14E009D45CCF] [SPRF][28/06/2009] (...) -- D:\Documents and Settings\vero et gégé\Bureau\winzip120fr.exe [9287008]
[MD5.6FA156DF0D46F56A9F75E3862AFB7DCB] [SPRF][28/06/2009] (...) -- D:\Documents and Settings\vero et gégé\Bureau\wrar380fr.exe [1299975]
[MD5.CB61DB4D34578D913440FE0356879CDD] [SPRF][01/06/2014] (.AVAST Software - avast! Antivirus Installer.) -- C:\Program Files\avast_free_antivirus_setup.exe [94714880]
[MD5.1C6C0DF25A42124C69FEF1125458E92F] [SPRF][01/06/2014] (. Appsinstall - setup manager.) -- C:\Program Files\Combofix.exe [506672]
[MD5.3D290F96FCEBC0C5A5CD211322D5A0C1] [SPRF][01/06/2014] (.Mozilla - Firefox.) -- C:\Program Files\Firefox Setup 29.0.1.exe [29160992]
[MD5.9542ABBE2E0AC19DAD5C6077C208952B] [SPRF][01/06/2014] (.Mozilla - Firefox.) -- C:\Program Files\Firefox Setup Stub 29.0.1.exe [283368]
~ Files: 11 Scanned in 00mn 12s



---\\ Enumère les données de la clé NameSpace (MNS) (O92)
O92 - MNS: Web Folders - {BDEADF00-C265-11D0-BCED-00A0C90AB50F}
~ MNS: 1 Scanned in 00mn 00s



---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SS - | Demand 31/08/2014 262320 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
SS - | Auto 10/02/2010 593920 | (ATI Smart) . (...) - C:\WINDOWS\system32\ati2sgag.exe
SS - | Auto 10/07/1658 0 | (Avira.OE.ServiceHost) . (...) - C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe
SS - | Demand 08/08/2014 69880 | (BdDesktopParental) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2015\bdparentalservice.exe
SS - | Demand 14/04/2008 225280 | (dmadmin) . (.Microsoft Corp., Veritas Software.) - C:\WINDOWS\system32\dmadmin.exe
SS - | Auto 21/08/2013 116648 | (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 21/08/2013 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 21/06/2009 182768 | (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
SS - | Auto 17/12/2013 46904 | (HPSupportSolutionsFrameworkService) . (.Hewlett-Packard Company.) - C:\Program Files\Hp\Common\HPSupportSolutionsFrameworkService.exe
SS - | Demand 10/09/2014 119408 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
SS - | Auto 09/08/2007 73728 | (Pml Driver HPZ12) . (.HP.) - C:\WINDOWS\system32\HPZipm12.exe
SS - | Auto 23/10/2013 172192 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe
SS - | Demand 04/02/2013 155824 | (Sony PC Companion) . (.Avanquest Software.) - C:\Program Files\Sony\Sony PC Companion\PCCService.exe
SR - | Auto 01/01/2000 425984 | (Ati HotKey Poller) . (.ATI Technologies Inc..) - C:\WINDOWS\system32\Ati2evxx.exe
SR - | Auto 08/05/2008 122880 | (Crypkey License) . (.CrypKey (Canada) Ltd..) - C:\WINDOWS\system32\crypserv.exe
SR - | Auto 20/03/2013 233472 | (FsUsbExService) . (.Teruten.) - C:\WINDOWS\system32\FsUsbExService.exe
SR - | Auto 25/07/2014 182696 | (JavaQuickStarterService) . (.Oracle Corporation.) - C:\Program Files\Java\jre7\bin\jqs.exe
SR - | Auto 05/06/2014 93040 | (TomTomHOMEService) . (.TomTom.) - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
SR - | Auto 26/02/2004 49152 | (UleadBurningHelper) . (.Ulead Systems, Inc..) - C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
SR - | Auto 08/08/2014 54424 | (UPDATESRV) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe
SR - | Auto 11/08/2014 1238936 | (VSSERV) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe
SR - | Auto 12/11/2001 20480 | (x10nets) . (.X10.) - C:\Program Files\Common Files\X10\Common\X10nets.exe
~ Services: Scanned in 00mn 32s



---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80)
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
Run by vero et gégé at 12/09/2014 16:51:29
device: opened successfully
user: MBR read successfully
Disk trace:
called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys atapi.sys hal.dll pciide.sys PCIIDEX.SYS
1 ntkrnlpa!IofCallDriver[0x804EF200] >> \Device\Harddisk0\DR0[0x86F78AB8]
3 CLASSPNP[0xF7710FD7] >> ntkrnlpa!IofCallDriver[0x804EF200] >> \Device\Ide\IdeDeviceP2T0L0-7[0x86F4CB00]
kernel: MBR read successfully
user & kernel MBR OK
~ MBR: 12 Scanned in 00mn 02s



---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80)
Written by ad13, http://ad13.geekstog
Run by vero et gégé at 12/09/2014 16:51:31
********* Dump file Name *********
C:\PhysicalDisk0_MBR.bin
~ MBR: Scanned in 00mn 04s



---\\ Scan Additionnel (O88)
Database Version : 13026 - (10/09/2014)
Clés trouvées (Keys found) : 0
Valeurs trouvées (Values found) : 0
Dossiers trouvés (Folders found) : 1
Fichiers trouvés (Files found) : 0

D:\Documents and Settings\vero et gégé\Local Settings\Application Data\SearchProtect =>PUP.SearchProtect^
~ Additionnel Scan: 346532 Items scanned in 01mn 31s



---\\ Informations complémentaires sur les modules
~ http://nicolascoolman.fr/r5-internet-explorer-proxy-management-iepm/ =>.Internet Explorer, Proxy Management (R5)
~ http://nicolascoolman.fr/o2-browser-helper-objects-de-navigateur/ =>.Browser Helper Objects de navigateur (O2)
~ http://nicolascoolman.fr/o3-internet-explorer-toolbars/ =>.Internet Explorer Toolbars (O3)
~ http://nicolascoolman.fr/o4-applications-demarrees-par-le-registre/ =>.Applications lancées au démarrage du système (O4)
~ http://nicolascoolman.fr/o50-image-file-execution-options-zhpdiag/ =>.Image File Execution Options (IFEO) (O50)
~ AMI: 5 Scanned in 00mn 00s



---\\ Récapitulatif des détections trouvées sur votre station
http://nicolascoolman.fr/pup-searchprotect =>PUP.SearchProtect
http://nicolascoolman.fr/pup-wajam =>PUP.Wajam
~ MSI: 2 link(s) detected in 00mn 00s



End of the scan (1625 lines in 07mn 45s)(0)

Publicité


Signaler le contenu de ce document

Publicité