Format du document : text/plain
Prévisualisation
~ ZHPDiag v2015.6.29.74 by Nicolas Coolman (2015\06\29)
~ Run by RIMAV (Administrator) (2015/06/29 19:13:20)
~ Site : http://www.nicolascoolman.fr
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Scanner
~ Report : H:\Documents and Settings\RIMAV\Bureau\ZHPDiag.txt
~ UAC : Deactivate
~ Boot Mode : Normal (Normal boot)
~ Windows XP, 32-bit Service Pack 3 (Build 2600)
---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 15 Model 4 Stepping 7, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
~ Total physical RAM (KB): 1038176
~ System Restore: Activé (Enable)
~ System drive H: has 198 GB free of 476 GB
---\\ Mode de connexion au système (3) - 0s
~ Computer Name: RIMA
~ User Name: RIMAV
~ Logged in as Administrator
---\\ Enumération des unités disques (1) - 7s
~ Drive H: has 198 GB free of 476 GB (System)
---\\ Etat du Centre de Sécurité Windows (10) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
---\\ Recherche particulière de fichiers génériques (22) - 1s
[MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - (.Microsoft Corporation - Explorateur Windows.) () -- H:\WINDOWS\Explorer.exe [1037824]
[MD5.93AD0B78C7357A05F50E594EC7C22300] - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) () -- H:\WINDOWS\System32\rundll32.exe [33792]
[MD5.E1948B1F45A176FB4A0251446A5AE86D] - (.Microsoft Corporation - Internet Extensions for Win32.) () -- H:\WINDOWS\System32\wininet.dll [920064]
[MD5.DD73D6B9F6B4CB630CF35B438B540174] - (.Microsoft Corporation - Application d'ouverture de session Windows.) () -- H:\WINDOWS\System32\Winlogon.exe [512000]
[MD5.1E44BC1E83D8FD2305F8D452DB109CF9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- H:\WINDOWS\System32\drivers\AFD.sys [138496]
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] - (.Microsoft Corporation - IDE/ATAPI Port Driver.) () -- H:\WINDOWS\System32\drivers\atapi.sys [96512]
[MD5.C885B02847F5D2FD45A24E219ED93B32] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- H:\WINDOWS\System32\drivers\Cdfs.sys [63744]
[MD5.1F4260CC5B42272D71F79E570A27A4FE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- H:\WINDOWS\System32\drivers\Cdrom.sys [62976]
[MD5.31F923EB2170FC172C81ABDA0045D18C] - (.Microsoft Corporation - Pilote de cryptographie FIPS.) () -- H:\WINDOWS\System32\drivers\Fips.sys [44672]
[MD5.573C7D0A32852B48F3058CFD8026F511] - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) () -- H:\WINDOWS\System32\drivers\HDAudBus.sys [144384]
[MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - (.Microsoft Corporation - Pilote de port i8042.) () -- H:\WINDOWS\System32\drivers\i8042prt.sys [54144]
[MD5.083A052659F5310DD8B6A6CB05EDCF8E] - (.Microsoft Corporation - IMAPI Kernel Driver.) () -- H:\WINDOWS\System32\drivers\Imapi.sys [42112]
[MD5.CC748EA12C6EFFDE940EE98098BF96BB] - (.Microsoft Corporation - IP Network Address Translator.) () -- H:\WINDOWS\System32\drivers\IpNat.sys [152832]
[MD5.23C74D75E36E7158768DD63D92789A91] - (.Microsoft Corporation - IPSec Driver.) () -- H:\WINDOWS\System32\drivers\IPSec.sys [75264]
[MD5.7D304A5EB4344EBEEAB53A2FE3FFB9F0] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- H:\WINDOWS\System32\drivers\MRxSmb.sys [456320]
[MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - (.Microsoft Corporation - MBT Transport driver.) () -- H:\WINDOWS\System32\drivers\netBT.sys [162816]
[MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - (.Microsoft Corporation - NT File System Driver.) () -- H:\WINDOWS\System32\drivers\ntfs.sys [574976]
[MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - (.Microsoft Corporation - Pilote de port parallèle.) () -- H:\WINDOWS\System32\drivers\Parport.sys [80384]
[MD5.11B4A627BC9614B885C4969BFA5FF8A6] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- H:\WINDOWS\System32\drivers\Rasl2tp.sys [51328]
[MD5.15CABD0F7C00C47C70124907916AF3F1] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- H:\WINDOWS\System32\drivers\rdpdr.sys [196224]
[MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) () -- H:\WINDOWS\System32\drivers\redbook.sys [58752]
[MD5.46DE1126684369BACE4849E4FC8C43CA] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- H:\WINDOWS\System32\drivers\volsnap.sys [53376]
---\\ Processus lancés (25) - 3s
[MD5.48E430297DA757F5CC2793CCFACAD5E7] - (.Microsoft Corporation - Gestionnaire de session Windows NT.) -- H:\WINDOWS\system32\smss.exe [50688] [PID.620]
[MD5.C3FB1D70CB88722267949694BA51759E] - (.Microsoft Corporation - Applications Services et Contrôleur.) -- H:\WINDOWS\system32\services.exe [111104] [PID.752]
[MD5.1892E1DB0B6431720B98B52AE9388C28] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- H:\Program Files\Avira\AntiVir Desktop\sched.exe [450808] [PID.1544]
[MD5.1892E1DB0B6431720B98B52AE9388C28] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- H:\Program Files\Avira\AntiVir Desktop\avguard.exe [450808] [PID.1848]
[MD5.8301243BDE5B6CD316D79C0191D50D9A] - (.Microsoft Corporation - Media Center Receiver Service.) -- H:\WINDOWS\ehome\ehrecvr.exe [237568] [PID.1912]
[MD5.980EEEA91776357518892C5544768E2B] - (.Microsoft Corporation - Service de planification Media Center.) -- H:\WINDOWS\ehome\ehSched.exe [103424] [PID.1980]
[MD5.E87885A59FDC241B6575943A75E495D9] - (.Oracle Corporation - Java Quick Starter Service.) -- H:\Program Files\Java\jre7\bin\jqs.exe [182696] [PID.2036]
[MD5.0DDFDCAA92C7F553328DB06BA599BEA9] - (.Logitech Inc. - Logitech LVPrcSrv Module..) -- H:\Program Files\Fichiers communs\logishrd\LVMVFM\LVPrcSrv.exe [154136] [PID.216]
[MD5.9927E906D7997D22E67E476710127070] - (.CybelSoft - Service de détection matériel.) -- H:\Program Files\ma-config.com\MaConfigAgent.exe [2117448] [PID.268]
[MD5.9DB596995A20B8C636ED8763AD942361] - (.RaMMicHaeL - Unchecky Service.) -- H:\Program Files\Unchecky\bin\unchecky_svc.exe [164600] [PID.1972]
[MD5.74FB105B0A785C4896851DBF5AD4017B] - (.Avira Operations GmbH & Co. KG - AntiVir shadow copy service.) -- H:\Program Files\Avira\AntiVir Desktop\avshadow.exe [429304] [PID.1892]
[MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - (.Microsoft Corporation - Explorateur Windows.) -- H:\WINDOWS\explorer.exe [1037824] [PID.2228]
[MD5.9C69E6A25F5500501B14AF43311F8D8B] - (.Microsoft Corporation - Media Center Tray Applet.) -- H:\WINDOWS\ehome\ehtray.exe [64512] [PID.2856]
[MD5.44C86D7970E00204CA677880489A5746] - (.Intel Corporation - hkcmd Module.) -- H:\WINDOWS\system32\hkcmd.exe [86016] [PID.2968]
[MD5.4CEAEE08310DAF5F86155839A5953DF2] - (.Intel Corporation - persistence Module.) -- H:\WINDOWS\system32\igfxpers.exe [81920] [PID.2980]
[MD5.E18770ED0BA0BA5BBAE0ABBE456F3482] - (.SigmaTel, Inc. - Sigmatel Audio system tray application.) -- H:\WINDOWS\stsystra.exe [282624] [PID.2996]
[MD5.2589FFE360BED8F824CBC6171CB5B874] - (...) -- H:\Program Files\Logitech\Logitech WebCam Software\LWS.exe [2793304] [PID.3284]
[MD5.A6ABD4AF02AB03676DEA55F383ABC7C2] - (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- H:\Program Files\Avira\AntiVir Desktop\avgnt.exe [730416] [PID.3300]
[MD5.59DC5BB82E4C8E0B3EADCFDBC44BA6E4] - (.Microsoft Corporation - CTF Loader.) -- H:\WINDOWS\system32\ctfmon.exe [15360] [PID.3320]
[MD5.CD23E258D4FBD764C2E94540C8DD6599] - (.RaMMicHaeL - Unchecky Background Process.) -- H:\Program Files\Unchecky\bin\Unchecky_bg.exe [402168] [PID.3364]
[MD5.DAEFB050AC8FEE4F1097FCF7CB97220E] - (.Microsoft Corporation - Media Center Media Status Aggregator Servic.) -- H:\WINDOWS\ehome\ehmsas.exe [46592] [PID.3604]
[MD5.E1473471169EC64C57B49F9C984DFB1A] - (.Logitech Inc. - Logitech Vid.) -- H:\Program Files\Logitech\Logitech Vid\Vid.exe [5458704] [PID.3728]
[MD5.98D472ECFBC0E8ED25A0483E765F42B6] - (...) -- H:\Program Files\Fichiers communs\logishrd\LQCVFX\COCIManager.exe [560472] [PID.3824]
[MD5.923FE895B22B22A9CA03C72F3D15CE20] - (.Mozilla Corporation - Firefox.) -- H:\Program Files\Mozilla Firefox\firefox.exe [376944] [PID.2224]
[MD5.AE69B52701C5D5453D1AA0564B760B58] - (.Nicolas Coolman - ZHPDiag.) -- H:\Documents and Settings\RIMAV\Application Data\ZHP\ZHPDiag3.exe [1797120] [PID.3400]
---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (18) - 2s
P2 - EXT: (...) -- H:\Program Files\Mozilla Firefox\browser\searchplugins\amazon-france.xml
P2 - EXT: (...) -- H:\Program Files\Mozilla Firefox\browser\searchplugins\bing.xml
P2 - EXT: (...) -- H:\Program Files\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml
P2 - EXT: (...) -- H:\Program Files\Mozilla Firefox\browser\searchplugins\ddg.xml
P2 - EXT: (...) -- H:\Program Files\Mozilla Firefox\browser\searchplugins\eBay-france.xml
P2 - EXT: (...) -- H:\Program Files\Mozilla Firefox\browser\searchplugins\google.xml
P2 - EXT: (...) -- H:\Program Files\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml
P2 - EXT: (...) -- H:\Program Files\Mozilla Firefox\browser\searchplugins\yahoo-france.xml
P2 - EXT: (.Mozilla - Default.) -- H:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- H:\WINDOWS\system32\Macromed\Flash\NPSWF32_18_0_0_194.dll
P2 - FPN: [HKLM] [@google.com/npPicasa3,version=3.0.0] - (.Google, Inc..) -- H:\Program Files\Google\Picasa3\npPicasa3.dll
P2 - FPN: [HKLM] [@java.com/DTPlugin,version=10.60.2] - (.Oracle Corporation.) -- H:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=10.60.2] - (.Oracle Corporation.) -- H:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (.Microsoft Corporation.) -- h:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll
P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation.) -- h:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
P2 - FPN: [HKLM] [@mozilla.zeniko.ch/SumatraPDF_Browser_Plugin] - (.Simon Bünzli.) -- H:\Program Files\SumatraPDF\npPdfViewer.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=1.1.11] - (.VideoLAN.) -- H:\Program Files\VideoLAN\VLC\npvlc.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.2] - (.VideoLAN.) -- H:\Program Files\VideoLAN\VLC\npvlc.dll
---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (15) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R0 - HKCU\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bigseekpro.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://www.google.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
---\\ Internet Explorer, Proxy Management (R5) (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=H:\WINDOWS\System32\Userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=H:\WINDOWS\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"
---\\ Hosts file redirection (O1) (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (0)
---\\ Browser Helper Object de navigateur (BHO) (O2) (4) - 0s
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} (Orphean)
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (Orphean)
O2 - BHO: (no name) - {9030D464-4C02-4ABF-8ECC-5164760863C6} (Orphean)
O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} (Orphean)
---\\ Internet Explorer Toolbars (O3) (2) - 1s
O3 - Toolbar: 0x8145E001EE4ED011BFE900AA005B4383100000000000000001E032F401000000 - [HKCU]{01E04581-4EEE-11D0-BFE9-00AA005B4383} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- H:\WINDOWS\system32\browseui.dll
O3 - Toolbar: 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{0E5CBF21-D15F-11D0-8301-00AA005B4383} . (.Microsoft Corporation - DLL commune du shell Windows.) -- H:\WINDOWS\system32\shell32.dll
---\\ Applications lancées au démarrage du sytème (O4) (13) - 0s
O4 - HKLM\..\Run: [ehTray] . (.Microsoft Corporation - Media Center Tray Applet.) -- H:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- H:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- H:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- H:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SigmatelSysTrayApp] . (.SigmaTel, Inc. - Sigmatel Audio system tray application.) -- H:\WINDOWS\stsystra.exe
O4 - HKCU\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- H:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Logitech Vid] . (.Logitech Inc. - Logitech Vid.) -- H:\Program Files\Logitech\Logitech Vid\Vid.exe
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- H:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- H:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- H:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- H:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-21-1229272821-1303643608-839522115-1003\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- H:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-21-1229272821-1303643608-839522115-1003\..\Run: [Logitech Vid] . (.Logitech Inc. - Logitech Vid.) -- H:\Program Files\Logitech\Logitech Vid\Vid.exe
---\\ Modification Domaine/Adresses DNS (O17) (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CS3\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254
---\\ Protocole additionnel (O18) (1) - 0s
O18 - Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype4COM.) -- H:\Program Files\Fichiers communs\Skype\Skype4COM.dll
---\\ Liste des services NT non Microsoft et non désactivés (O23) (10) - 1s
O23 - Service: Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG - Antivirus MailScanner LSP Service.) - H:\Program Files\Avira\AntiVir Desktop\avmailc.exe
O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - H:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - H:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG - AntiVir WebGuard Service.) - H:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) . (.Oracle Corporation - Java Quick Starter Service.) - H:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: Process Monitor (LVPrcSrv) . (.Logitech Inc. - Logitech LVPrcSrv Module..) - H:\Program Files\Fichiers communs\logishrd\LVMVFM\LVPrcSrv.exe
O23 - Service: Ma-Config Agent (MaConfigAgent) . (.CybelSoft - Service de détection matériel.) - H:\Program Files\ma-config.com\MaConfigAgent.exe
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - H:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - H:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Unchecky (Unchecky) . (.RaMMicHaeL - Unchecky Service.) - H:\Program Files\Unchecky\bin\unchecky_svc.exe
---\\ Tâches planifiées en automatique (O39) (1) - 1s
O39 - APT:Automatic Planified Task - (...) -- H:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002]
---\\ Logiciels installés (O42) (44) - 9s
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR
O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI
O42 - Logiciel: Avira Antivirus v15.0.11.574 - (.Avira Operations GmbH & Co. KG.) [HKLM] -- Avira Antivirus
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
O42 - Logiciel: FormatFactory 3.2.0.1 - (.Free Time.) [HKLM] -- FormatFactory
O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (...) [HKLM] -- HDMI
O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8
O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- KB931906
O42 - Logiciel: Hotfix for Windows XP (KB954550-v5) - (.Microsoft Corporation.) [HKLM] -- KB954550-v5
O42 - Logiciel: Hotfix for Windows XP (KB976002-v5) - (.Microsoft Corporation.) [HKLM] -- KB976002-v5
O42 - Logiciel: Malwarebytes Anti-Malware version 2.1.6.1022 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes Anti-Malware_is1
O42 - Logiciel: Mozilla Firefox 38.0.5 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 38.0.5 (x86 fr)
O42 - Logiciel: Mozilla Thunderbird 31.7.0 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Thunderbird 31.7.0 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService
O42 - Logiciel: MSN - (...) [HKLM] -- MSNINST
O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM] -- Picasa 3
O42 - Logiciel: Intel(R) PRO Network Connections Drivers - (...) [HKLM] -- PROSet
O42 - Logiciel: SeaTools for Windows 1.4.0.2 - (.Seagate Technology.) [HKLM] -- SeaTools for Windows
O42 - Logiciel: SumatraPDF 2.5.2 - (.Krzysztof Kowalczyk.) [HKLM] -- SumatraPDF
O42 - Logiciel: Unchecky v0.3.7.5 - (.RaMMicHaeL.) [HKLM] -- Unchecky
O42 - Logiciel: WhoCrashed 5.03 - (.Resplendence Software Projects Sp..) [HKLM] -- WhoCrashed_is1
O42 - Logiciel: Windows Media Format Runtime - (...) [HKLM] -- Windows Media Format Runtime
O42 - Logiciel: Windows XP Service Pack 3 - (.Microsoft Corporation.) [HKLM] -- Windows XP Service
O42 - Logiciel: WinRAR 5.10 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver
O42 - Logiciel: Adobe Flash Player 15 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- {047904BA-C065-40D5-969A-C7D91CA93D62}
O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
O42 - Logiciel: Ma-Config.com - (.Cybelsoft.) [HKLM] -- {2188D50C-BA8A-47AD-8477-17B5BE12532D}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
O42 - Logiciel: Skype 7.5 - (.Skype Technologies S.A..) [HKLM] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}
O42 - Logiciel: Java(TM) 6 Update 34 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216034FF}
O42 - Logiciel: Java 7 Update 60 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83217045FF}
O42 - Logiciel: adsl TV - (.adsl TV / FM.) [HKLM] -- {3AFDD2C6-8663-46B5-B195-6CEB00D44768}
O42 - Logiciel: Logitech Vid - (.Logitech Inc..) [HKLM] -- {4FBCEA31-5D18-4212-9231-DE7CF1BE7DBB}
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {7BBAEC47-1CC0-4CB8-ADB4-531B78DBD1DD}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {8E5233E1-7495-44FB-8DEB-4BE906D59619}
O42 - Logiciel: Sonic Encoders - (.Sonic Solutions.) [HKLM] -- {9941F0AA-B903-4AF4-A055-83A9815CC011}
O42 - Logiciel: Segoe UI - (.Microsoft Corp.) [HKLM] -- {A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}
O42 - Logiciel: SigmaTel Audio - (.SigmaTel.) [HKLM] -- {A462213D-EED4-42C2-9A60-7BDD4D4B0B17}
O42 - Logiciel: Logitech Webcam Software - (.Logitech Inc..) [HKLM] -- {C27BC2A2-30DD-4014-B22E-63EB0DB572F9}
O42 - Logiciel: Box Edit - (.Box.) [HKLM] -- {D1D914C0-319C-4503-9C9E-8354CCBB0EC6}
O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
O42 - Logiciel: Dell Resource CD - (.Dell Inc..) [HKLM] -- {FCD9CD52-7222-4672-94A0-A722BA702FD0}
O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKCU] -- Dropbox
---\\ HKCU & HKLM Software Keys (94) - 9s
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\Avira
HKLM\SOFTWARE\AviSynth
HKLM\SOFTWARE\Bunndle
HKLM\SOFTWARE\C07ft5Y
HKLM\SOFTWARE\cybelsoft
HKLM\SOFTWARE\Dell
HKLM\SOFTWARE\Dell Computer Corporation
HKLM\SOFTWARE\DivXNetworks
HKLM\SOFTWARE\Dropbox
HKLM\SOFTWARE\Gemplus
HKLM\SOFTWARE\GNU
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\HaaliMkx
HKLM\SOFTWARE\IM Providers
HKLM\SOFTWARE\InstalledOptions
HKLM\SOFTWARE\InstallShield
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\JavaRa
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\Licenses
HKLM\SOFTWARE\LogiShrd
HKLM\SOFTWARE\Logitech
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\McAfee.com
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\Piriform
HKLM\SOFTWARE\Program Groups
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\Schlumberger
HKLM\SOFTWARE\SeaToolsforWindows
HKLM\SOFTWARE\Secunia
HKLM\SOFTWARE\Secure
HKLM\SOFTWARE\SigmaTel
HKLM\SOFTWARE\Skype
HKLM\SOFTWARE\Sonic
HKLM\SOFTWARE\SUPERAntiSpyware.com
HKLM\SOFTWARE\Sysinternals
HKLM\SOFTWARE\Unchecky
HKLM\SOFTWARE\VideoLAN
HKLM\SOFTWARE\Windows
HKLM\SOFTWARE\Windows 3.1 Migration Status
HKLM\SOFTWARE\WinRAR
HKLM\SOFTWARE\X-AVCSD
HKLM\SOFTWARE\ZSMC
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AOER
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Astonsoft
HKCU\SOFTWARE\Avira
HKCU\SOFTWARE\BitDefender
HKCU\SOFTWARE\Box
HKCU\SOFTWARE\Convar
HKCU\SOFTWARE\Dell Computer Corporation
HKCU\SOFTWARE\Dropbox
HKCU\SOFTWARE\FreeTime
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\HookNetwork
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\Leadertech
HKCU\SOFTWARE\LogiShrd
HKCU\SOFTWARE\Logitech
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Malwarebytes' Anti-Malware
HKCU\SOFTWARE\Modern UI Test
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\PDF Architect
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\Resplendence Sp
HKCU\SOFTWARE\Secunia
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Software
HKCU\SOFTWARE\SUPERAntiSpyware.com
HKCU\SOFTWARE\Sysinternals
HKCU\SOFTWARE\Thunderbird
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Unchecky
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/ (164) - 9s
O43 - CFD: 2015/04/00 - 58:50:50 - [0] D -- H:\Program Files\3c3d865e-4bcc-4bb4-8dff-9e4d138e934a
O43 - CFD: 2014/07/10 - 12:53:53 - [] D -- H:\Program Files\Adobe
O43 - CFD: 2015/05/30 - 03:21:21 - [] D -- H:\Program Files\adslTV
O43 - CFD: 2013/01/11 - 04:00:00 - [0] D -- H:\Program Files\Astonsoft
O43 - CFD: 2015/06/52 - 52:01:01 - [] D -- H:\Program Files\Avira
O43 - CFD: 2014/07/10 - 25:52:52 - [] D -- H:\Program Files\CCleaner
O43 - CFD: 2011/05/62 - 05:02:02 - [0] D -- H:\Program Files\ComPlus Applications
O43 - CFD: 2014/06/01 - 43:24:24 - [] D -- H:\Program Files\Convar
O43 - CFD: 2012/12/41 - 58:11:11 - [] D -- H:\Program Files\Dell
O43 - CFD: 2013/10/30 - 59:20:20 - [] D -- H:\Program Files\Dropbox
O43 - CFD: 2013/05/50 - 59:47:47 - [] D -- H:\Program Files\eMule
O43 - CFD: 2014/10/41 - 54:10:10 - [] D -- H:\Program Files\Fichiers communs
O43 - CFD: 2013/12/31 - 05:03:03 - [] D -- H:\Program Files\FreeTime
O43 - CFD: 2012/05/01 - 39:16:16 - [0] D -- H:\Program Files\GemMasterFrench
O43 - CFD: 2015/05/71 - 47:58:58 - [] D -- H:\Program Files\Google
O43 - CFD: 2012/12/41 - 42:06:06 - [] HD -- H:\Program Files\InstallShield Installation Information
O43 - CFD: 2011/05/62 - 32:00:00 - [] D -- H:\Program Files\Intel
O43 - CFD: 2014/06/41 - 07:27:27 - [] D -- H:\Program Files\Internet Explorer
O43 - CFD: 2014/07/10 - 08:37:37 - [] D -- H:\Program Files\Java
O43 - CFD: 2014/10/41 - 57:25:25 - [] D -- H:\Program Files\Logitech
O43 - CFD: 2015/01/22 - 33:17:17 - [] D -- H:\Program Files\ma-config.com
O43 - CFD: 2015/06/32 - 30:23:23 - [] D -- H:\Program Files\Malwarebytes Anti-Malware
O43 - CFD: 2011/05/71 - 22:18:18 - [] D -- H:\Program Files\Messenger
O43 - CFD: 2011/05/22 - 28:26:26 - [] D -- H:\Program Files\Microsoft
O43 - CFD: 2014/10/60 - 25:47:47 - [] D -- H:\Program Files\Microsoft CAPICOM 2.1.0.2
O43 - CFD: 2011/05/62 - 08:49:49 - [] D -- H:\Program Files\microsoft frontpage
O43 - CFD: 2015/06/71 - 40:47:47 - [] D -- H:\Program Files\Microsoft Office
O43 - CFD: 2014/07/41 - 07:06:06 - [] D -- H:\Program Files\Microsoft Silverlight
O43 - CFD: 2015/06/71 - 42:41:41 - [] D -- H:\Program Files\Microsoft.NET
O43 - CFD: 2011/05/71 - 37:52:52 - [] D -- H:\Program Files\Movie Maker
O43 - CFD: 2015/06/41 - 41:42:42 - [] D -- H:\Program Files\Mozilla Firefox
O43 - CFD: 2015/06/50 - 14:43:43 - [] D -- H:\Program Files\Mozilla Maintenance Service
O43 - CFD: 2015/05/01 - 51:48:48 - [] D -- H:\Program Files\Mozilla Thunderbird
O43 - CFD: 2014/06/41 - 37:01:01 - [] D -- H:\Program Files\MSBuild
O43 - CFD: 2015/06/71 - 40:32:32 - [] D -- H:\Program Files\MSECache
O43 - CFD: 2011/09/12 - 08:37:37 - [] D -- H:\Program Files\MSN
O43 - CFD: 2011/05/62 - 04:24:24 - [] D -- H:\Program Files\MSN Gaming Zone
O43 - CFD: 2011/05/71 - 05:43:43 - [] D -- H:\Program Files\NetMeeting
O43 - CFD: 2011/05/62 - 04:58:58 - [] D -- H:\Program Files\Online Services
O43 - CFD: 2014/07/51 - 23:00:00 - [] D -- H:\Program Files\OpenOffice 4
O43 - CFD: 2012/05/21 - 44:04:04 - [] D -- H:\Program Files\Outlook Express
O43 - CFD: 2014/06/41 - 36:56:56 - [] D -- H:\Program Files\Reference Assemblies
O43 - CFD: 2015/06/71 - 49:38:38 - [] D -- H:\Program Files\Seagate
O43 - CFD: 2014/07/11 - 22:09:09 - [] D -- H:\Program Files\Secunia
O43 - CFD: 2011/05/62 - 07:05:05 - [] D -- H:\Program Files\Services en ligne
O43 - CFD: 2011/05/62 - 25:41:41 - [] D -- H:\Program Files\SigmaTel
O43 - CFD: 2015/06/31 - 41:23:23 - [] RD -- H:\Program Files\Skype
O43 - CFD: 2014/07/10 - 15:17:17 - [] D -- H:\Program Files\SumatraPDF
O43 - CFD: 2015/05/62 - 31:57:57 - [] D -- H:\Program Files\Unchecky
O43 - CFD: 2011/05/62 - 20:33:33 - [0] HD -- H:\Program Files\Uninstall Information
O43 - CFD: 2013/10/81 - 14:26:26 - [] D -- H:\Program Files\uTorrent
O43 - CFD: 2014/07/22 - 25:55:55 - [] D -- H:\Program Files\VideoLAN
O43 - CFD: 2015/06/70 - 53:49:49 - [] D -- H:\Program Files\WhoCrashed
O43 - CFD: 2013/02/51 - 34:42:42 - [] D -- H:\Program Files\Windows Live
O43 - CFD: 2011/05/22 - 28:10:10 - [] D -- H:\Program Files\Windows Live SkyDrive
O43 - CFD: 2011/05/62 - 19:02:02 - [] D -- H:\Program Files\Windows Media Player
O43 - CFD: 2011/05/71 - 05:42:42 - [] D -- H:\Program Files\Windows NT
O43 - CFD: 2011/05/62 - 04:47:47 - [] D -- H:\Program Files\Windows Plus
O43 - CFD: 2011/12/52 - 11:24:24 - [] D -- H:\Program Files\Windows Sidebar
O43 - CFD: 2011/05/62 - 07:06:06 - [0] HD -- H:\Program Files\WindowsUpdate
O43 - CFD: 2014/07/21 - 53:10:10 - [] D -- H:\Program Files\WinRAR
O43 - CFD: 2011/05/62 - 08:49:49 - [] D -- H:\Program Files\xerox
O43 - CFD: 2015/04/01 - 38:51:51 - [] RD -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 2015/06/60 - 05:19:19 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Avira
O43 - CFD: 2014/07/10 - 25:54:54 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\CCleaner
O43 - CFD: 2011/05/62 - 22:14:14 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Dell Accessories
O43 - CFD: 2014/09/01 - 09:43:43 - [0] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 2011/05/62 - 04:58:58 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Extensions Windows Media
O43 - CFD: 2014/01/81 - 29:02:02 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Java
O43 - CFD: 2011/05/62 - 05:05:05 - [] RD -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux
O43 - CFD: 2014/10/41 - 57:29:29 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Logitech
O43 - CFD: 2015/01/22 - 33:13:13 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\ma-config.com
O43 - CFD: 2015/05/70 - 00:13:13 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Malwarebytes Anti-Malware
O43 - CFD: 2014/07/41 - 02:30:30 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Silverlight
O43 - CFD: 2011/05/62 - 16:53:53 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration
O43 - CFD: 2011/05/40 - 54:32:32 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Picasa 3
O43 - CFD: 2014/10/92 - 05:22:22 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Skype
O43 - CFD: 2014/07/11 - 47:20:20 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Unchecky
O43 - CFD: 2015/06/70 - 53:44:44 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\WhoCrashed
O43 - CFD: 2013/09/71 - 07:40:40 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Windows Live
O43 - CFD: 2014/07/11 - 34:14:14 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR
O43 - CFD: 2014/07/10 - 12:52:52 - [] D -- H:\Documents and Settings\All Users\Application Data\Adobe
O43 - CFD: 2012/12/41 - 36:15:15 - [] D -- H:\Documents and Settings\All Users\Application Data\Avanquest Software
O43 - CFD: 2015/06/60 - 03:33:33 - [] D -- H:\Documents and Settings\All Users\Application Data\Avira
O43 - CFD: 2014/10/71 - 44:29:29 - [] D -- H:\Documents and Settings\All Users\Application Data\LogiShrd
O43 - CFD: 2015/01/22 - 33:12:12 - [] D -- H:\Documents and Settings\All Users\Application Data\ma-config.com
O43 - CFD: 2014/06/41 - 49:01:01 - [] D -- H:\Documents and Settings\All Users\Application Data\Malwarebytes
O43 - CFD: 2012/08/70 - 48:54:54 - [] D -- H:\Documents and Settings\All Users\Application Data\McAfee
O43 - CFD: 2015/06/71 - 12:00:00 - [] SD -- H:\Documents and Settings\All Users\Application Data\Microsoft
O43 - CFD: 2012/04/52 - 33:11:11 - [] D -- H:\Documents and Settings\All Users\Application Data\Mozilla
O43 - CFD: 2011/12/70 - 20:43:43 - [] D -- H:\Documents and Settings\All Users\Application Data\Nero
O43 - CFD: 2015/06/81 - 08:18:18 - [] D -- H:\Documents and Settings\All Users\Application Data\Package Cache
O43 - CFD: 2012/12/41 - 00:16:16 - [0] D -- H:\Documents and Settings\All Users\Application Data\PDF Architect
O43 - CFD: 2015/06/31 - 41:43:43 - [] D -- H:\Documents and Settings\All Users\Application Data\Skype
O43 - CFD: 2011/06/71 - 36:57:57 - [] D -- H:\Documents and Settings\All Users\Application Data\Sun
O43 - CFD: 2014/06/22 - 03:33:33 - [0] D -- H:\Documents and Settings\All Users\Application Data\TEMP
O43 - CFD: 2014/09/01 - 28:12:12 - [] D -- H:\Documents and Settings\All Users\Application Data\Unchecky
O43 - CFD: 2013/05/50 - 11:57:57 - [] D -- H:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
O43 - CFD: 2014/09/10 - 11:41:41 - [] D -- H:\Program Files\Fichiers communs\Adobe AIR
O43 - CFD: 2011/06/51 - 48:31:31 - [] D -- H:\Program Files\Fichiers communs\InstallShield
O43 - CFD: 2014/06/40 - 12:21:21 - [] D -- H:\Program Files\Fichiers communs\Java
O43 - CFD: 2015/01/10 - 43:14:14 - [] D -- H:\Program Files\Fichiers communs\logishrd
O43 - CFD: 2015/06/71 - 40:54:54 - [] D -- H:\Program Files\Fichiers communs\Microsoft Shared
O43 - CFD: 2011/05/62 - 06:25:25 - [] D -- H:\Program Files\Fichiers communs\MSSoap
O43 - CFD: 2011/05/62 - 01:01:01 - [] D -- H:\Program Files\Fichiers communs\ODBC
O43 - CFD: 2011/05/62 - 06:29:29 - [] D -- H:\Program Files\Fichiers communs\Services
O43 - CFD: 2014/10/92 - 05:20:20 - [] D -- H:\Program Files\Fichiers communs\Skype
O43 - CFD: 2011/05/62 - 01:00:00 - [] D -- H:\Program Files\Fichiers communs\SpeechEngines
O43 - CFD: 2011/05/71 - 05:40:40 - [] D -- H:\Program Files\Fichiers communs\System
O43 - CFD: 2011/05/22 - 22:45:45 - [] D -- H:\Program Files\Fichiers communs\Windows Live
O43 - CFD: 2011/05/62 - 46:56:56 - [] D -- H:\Program Files\Fichiers communs\Wise Installation Wizard
O43 - CFD: 2011/05/32 - 00:58:58 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Adobe
O43 - CFD: 2012/12/41 - 53:27:27 - [] D -- H:\Documents and Settings\RIMAV\Application Data\APP_NAME_NON_STRING
O43 - CFD: 2015/06/60 - 05:13:13 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Avira
O43 - CFD: 2011/05/32 - 01:40:40 - [] D -- H:\Documents and Settings\RIMAV\Application Data\com.zoosk.Desktop.096E6A67431258A508A2446A847B240591D2C99B.1
O43 - CFD: 2012/03/81 - 35:28:28 - [] D -- H:\Documents and Settings\RIMAV\Application Data\DeepBurner
O43 - CFD: 2015/06/91 - 37:34:34 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Dropbox
O43 - CFD: 2012/07/62 - 47:58:58 - [] D -- H:\Documents and Settings\RIMAV\Application Data\dvdcss
O43 - CFD: 2012/02/92 - 14:51:51 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Google
O43 - CFD: 2011/09/51 - 59:50:50 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Identities
O43 - CFD: 2014/07/81 - 03:32:32 - [] D -- H:\Documents and Settings\RIMAV\Application Data\KastorFreeAudioConverter
O43 - CFD: 2014/10/41 - 57:16:16 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Leadertech
O43 - CFD: 2011/05/62 - 53:22:22 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Macromedia
O43 - CFD: 2011/06/12 - 19:56:56 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Malwarebytes
O43 - CFD: 2014/07/11 - 57:30:30 - [] SD -- H:\Documents and Settings\RIMAV\Application Data\Microsoft
O43 - CFD: 2011/05/62 - 36:12:12 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Mozilla
O43 - CFD: 2011/12/52 - 59:43:43 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Nero
O43 - CFD: 2013/12/20 - 12:54:54 - [] D -- H:\Documents and Settings\RIMAV\Application Data\OpenOffice
O43 - CFD: 2012/12/41 - 55:55:55 - [] D -- H:\Documents and Settings\RIMAV\Application Data\PDF Architect
O43 - CFD: 2012/12/41 - 36:58:58 - [] D -- H:\Documents and Settings\RIMAV\Application Data\PDF Pro 10
O43 - CFD: 2012/09/41 - 10:32:32 - [] D -- H:\Documents and Settings\RIMAV\Application Data\QuickScan
O43 - CFD: 2015/06/31 - 26:22:22 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Skype
O43 - CFD: 2014/07/61 - 55:11:11 - [] D -- H:\Documents and Settings\RIMAV\Application Data\SumatraPDF
O43 - CFD: 2011/06/71 - 35:03:03 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Sun
O43 - CFD: 2012/06/11 - 07:55:55 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Thunderbird
O43 - CFD: 2014/04/81 - 11:26:26 - [0] D -- H:\Documents and Settings\RIMAV\Application Data\uTorrent
O43 - CFD: 2014/12/20 - 01:19:19 - [] D -- H:\Documents and Settings\RIMAV\Application Data\vlc
O43 - CFD: 2011/05/62 - 37:13:13 - [] D -- H:\Documents and Settings\RIMAV\Application Data\WinRAR
O43 - CFD: 2015/06/91 - 13:42:42 - [] D -- H:\Documents and Settings\RIMAV\Application Data\ZHP
O43 - CFD: 2015/06/70 - 07:46:46 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Adobe
O43 - CFD: 2014/07/02 - 28:56:56 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\ApplicationHistory
O43 - CFD: 2014/07/02 - 28:57:57 - [0] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\avgchrome
O43 - CFD: 2014/07/02 - 28:57:57 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Box Edit
O43 - CFD: 2013/11/72 - 50:00:00 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Downloaded Installations
O43 - CFD: 2015/04/00 - 18:43:43 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Google
O43 - CFD: 2011/05/62 - 02:58:58 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Identities
O43 - CFD: 2014/10/41 - 57:37:37 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\LogiShrd
O43 - CFD: 2015/06/71 - 12:00:00 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Microsoft
O43 - CFD: 2011/05/62 - 36:09:09 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Mozilla
O43 - CFD: 2012/01/42 - 31:28:28 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\PCHealth
O43 - CFD: 2014/07/11 - 22:28:28 - [0] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Secunia PSI
O43 - CFD: 2014/03/70 - 45:38:38 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Skype
O43 - CFD: 2012/10/71 - 19:02:02 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Sun
O43 - CFD: 2014/07/30 - 12:50:50 - [0] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Temp
O43 - CFD: 2012/06/61 - 58:14:14 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Thunderbird
O43 - CFD: 2013/05/90 - 43:57:57 - [0] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\WMTools Downloaded Files
O43 - CFD: 2011/05/62 - 55:11:11 - [] RD -- H:\Documents and Settings\RIMAV\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 2014/10/22 - 14:22:22 - [] D -- H:\Documents and Settings\RIMAV\Menu Démarrer\Programmes\adsl TV
O43 - CFD: 2014/06/01 - 43:24:24 - [] D -- H:\Documents and Settings\RIMAV\Menu Démarrer\Programmes\Convar
O43 - CFD: 2015/04/01 - 03:17:17 - [] D -- H:\Documents and Settings\RIMAV\Menu Démarrer\Programmes\Dropbox
O43 - CFD: 2015/04/01 - 03:41:41 - [] RD -- H:\Documents and Settings\RIMAV\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 2013/12/51 - 00:42:42 - [] D -- H:\Documents and Settings\RIMAV\Menu Démarrer\Programmes\FormatFactory
O43 - CFD: 2012/02/61 - 19:45:45 - [] RD -- H:\Documents and Settings\RIMAV\Menu Démarrer\Programmes\Outils d'administration
O43 - CFD: 2014/07/11 - 34:14:14 - [] D -- H:\Documents and Settings\RIMAV\Menu Démarrer\Programmes\WinRAR
---\\ Enumération des clés de registre StartupReg (SMSR) (O53 (1) - 0s
O53 - SMSR:HKLM\...\startupreg\Google+ Auto Backup [Key] . (...) -- H:\Program Files\Google\Google+ Auto Backup\Google+ Auto Backup.exe (.not file.)
---\\ Liste des pilotes du système (SDL) (O58) (93) - 17s
O58 - SDL:2014/07/10 15:32:57 N . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- H:\WINDOWS\System32\drivers\48230029.sys [110296]
O58 - SDL:2008/04/13 20:36:39 A . (.Advanced Micro Devices, Inc. - AMD Win2000 AGP Filter.) -- H:\WINDOWS\System32\drivers\amdagp.sys [43008]
O58 - SDL:2004/08/03 22:29:30 A . (.ATI Technologies Inc. - ATI WDM BT829 MiniDriver (A).) -- H:\WINDOWS\System32\drivers\ati1btxx.sys [56623]
O58 - SDL:2004/08/03 22:29:30 A . (.ATI Technologies Inc. - ATI Specialized MVD VBI Codec.) -- H:\WINDOWS\System32\drivers\ati1mdxx.sys [11615]
O58 - SDL:2004/08/03 22:29:30 A . (.ATI Technologies Inc. - ATI Specialized PCD VBI Codec.) -- H:\WINDOWS\System32\drivers\ati1pdxx.sys [12047]
O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI Rage Theater Audio WDM Minidriver.) -- H:\WINDOWS\System32\drivers\ati1raxx.sys [30671]
O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI WDM Rage Theater MiniDriver.) -- H:\WINDOWS\System32\drivers\ati1rvxx.sys [63663]
O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI WDM TV Sound MiniDriver.) -- H:\WINDOWS\System32\drivers\ati1snxx.sys [26367]
O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI WDM Teletext Decoder.) -- H:\WINDOWS\System32\drivers\ati1ttxx.sys [21343]
O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI WDM TVTuner MiniDriver.) -- H:\WINDOWS\System32\drivers\ati1tuxx.sys [36463]
O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI WDM CrossBar MiniDriver.) -- H:\WINDOWS\System32\drivers\ati1xbxx.sys [29455]
O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI WDM TVAUDIO_CrossBar MiniDriver.) -- H:\WINDOWS\System32\drivers\ati1xsxx.sys [34735]
O58 - SDL:2004/08/04 00:38:42 A . (.ATI Technologies Inc. - Pilote de miniport ATI RAGE 128.) -- H:\WINDOWS\System32\drivers\ati2mtaa.sys [327168]
O58 - SDL:2004/08/04 00:38:44 A . (.ATI Technologies Inc. - Pilote de miniport ATI RAGE 128.) -- H:\WINDOWS\System32\drivers\ati2mtag.sys [701440]
O58 - SDL:2004/08/03 22:29:28 A . (.ATI Technologies Inc. - ATI WDM BT829 MiniDriver (A).) -- H:\WINDOWS\System32\drivers\atinbtxx.sys [57856]
O58 - SDL:2004/08/03 22:29:30 A . (.ATI Technologies Inc. - ATI Specialized MVD VBI Codec RT2.) -- H:\WINDOWS\System32\drivers\atinmdxx.sys [13824]
O58 - SDL:2004/08/03 22:29:30 A . (.ATI Technologies Inc. - ATI Specialized PCD VBI Codec RT2.) -- H:\WINDOWS\System32\drivers\atinpdxx.sys [14336]
O58 - SDL:2004/08/03 22:29:30 A . (.ATI Technologies Inc. - ATI Rage Theater Audio WDM Minidriver.) -- H:\WINDOWS\System32\drivers\atinraxx.sys [52224]
O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI WDM Rage Theater MiniDriver RT2.) -- H:\WINDOWS\System32\drivers\atinrvxx.sys [104960]
O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI WDM TV Sound MiniDriver.) -- H:\WINDOWS\System32\drivers\atinsnxx.sys [28672]
O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI WDM Teletext Decoder.) -- H:\WINDOWS\System32\drivers\atinttxx.sys [13824]
O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI WDM TVTuner MiniDriver.) -- H:\WINDOWS\System32\drivers\atintuxx.sys [73216]
O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI WDM CrossBar MiniDriver.) -- H:\WINDOWS\System32\drivers\atinxbxx.sys [31744]
O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI WDM TVAUDIO_CrossBar MiniDriver RT2.) -- H:\WINDOWS\System32\drivers\atinxsxx.sys [63488]
O58 - SDL:2015/06/25 23:58:34 N . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- H:\WINDOWS\System32\drivers\avgntflt.sys [108448]
O58 - SDL:2015/06/25 23:58:34 N . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- H:\WINDOWS\System32\drivers\avipbb.sys [136728]
O58 - SDL:2015/06/25 23:58:34 N . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- H:\WINDOWS\System32\drivers\avkmgr.sys [37896]
O58 - SDL:2004/12/13 23:14:00 N . (.Adaptec, Inc. - DELL CERC SATA1.5/6ch Miniport Driver.) -- H:\WINDOWS\System32\drivers\cercsr6.sys [39904]
O58 - SDL:2004/08/10 14:00:00 A . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- H:\WINDOWS\System32\drivers\cinemst2.sys [262528]
O58 - SDL:2004/08/10 14:00:00 A . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- H:\WINDOWS\System32\drivers\cpqdap01.sys [11776]
O58 - SDL:2008/04/14 04:05:07 A . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- H:\WINDOWS\System32\drivers\dmboot.sys [800256]
O58 - SDL:2008/04/14 04:05:12 A . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- H:\WINDOWS\System32\drivers\dmio.sys [154496]
O58 - SDL:2004/08/10 14:00:00 A . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- H:\WINDOWS\System32\drivers\dmload.sys [5888]
O58 - SDL:2006/06/05 13:49:08 N . (.Intel Corporation - Intel(R) PRO/1000 Adapter NDIS 5.2 deserial.) -- H:\WINDOWS\System32\drivers\e1e5132.sys [230400]
O58 - SDL:2008/04/13 18:36:05 N . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- H:\WINDOWS\System32\drivers\hdaudbus.sys [144384]
O58 - SDL:2004/08/12 17:45:52 N . (.Windows (R) Server 2003 DDK provider - High Definition Audio Function Driver v1.0.) -- H:\WINDOWS\System32\drivers\Hdaudio.sys [113664]
O58 - SDL:2004/08/03 22:41:48 A . (.Conexant Systems, Inc. - HSF_HWB2 WDM driver.) -- H:\WINDOWS\System32\drivers\hsfbs2s2.sys [220032]
O58 - SDL:2004/08/03 22:41:50 A . (.Conexant Systems, Inc. - HSF_CNXT driver.) -- H:\WINDOWS\System32\drivers\hsfcxts2.sys [685056]
O58 - SDL:2004/08/03 22:41:56 A . (.Conexant Systems, Inc. - HSF_DP driver.) -- H:\WINDOWS\System32\drivers\hsfdpsp2.sys [1041536]
O58 - SDL:2006/05/11 18:30:52 N . (.Intel Corporation - Intel Matrix Storage Manager driver.) -- H:\WINDOWS\System32\drivers\iaStor.sys [247808]
O58 - SDL:2006/07/21 21:12:16 N . (.Intel Corporation - Intel Graphics Miniport Driver.) -- H:\WINDOWS\System32\drivers\igxpmp32.sys [1095968]
O58 - SDL:2009/04/30 23:55:58 N . (.Logitech Inc. - Logitech Webcam Software Driver.) -- H:\WINDOWS\System32\drivers\LV302V32.SYS [2687512]
O58 - SDL:2003/06/27 05:05:38 R . (.Logitech Inc. - Video Minidriver.) -- H:\WINDOWS\System32\drivers\lvcm.sys [472332]
O58 - SDL:2009/10/07 01:46:36 N . (...) -- H:\WINDOWS\System32\drivers\LVPr2Mon.sys [25752]
O58 - SDL:2003/06/27 05:03:48 R . (.Logitech Inc. - USB Statistic Driver.) -- H:\WINDOWS\System32\drivers\LVUSBSta.sys [12112]
O58 - SDL:2015/04/14 09:37:42 N . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- H:\WINDOWS\System32\drivers\mbam.sys [23256]
O58 - SDL:2015/04/14 09:37:48 N . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- H:\WINDOWS\System32\drivers\mbamchameleon.sys [120024]
O58 - SDL:2015/06/23 22:48:08 N . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- H:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [119512]
O58 - SDL:2004/08/03 22:41:56 N . (.Conexant - Diagnostic Interface DRIVER.) -- H:\WINDOWS\System32\drivers\mdmxsdk.sys [11868]
O58 - SDL:2004/08/03 22:41:40 A . (.Smart Link - .) -- H:\WINDOWS\System32\drivers\mtlmnt5.sys [126686]
O58 - SDL:2004/08/03 22:41:38 A . (.Smart Link - .) -- H:\WINDOWS\System32\drivers\mtlstrm.sys [1309184]
O58 - SDL:2004/08/03 22:29:38 A . (.Matrox Graphics Inc. - Matrox Parhelia Miniport Driver.) -- H:\WINDOWS\System32\drivers\mtxparhm.sys [452736]
O58 - SDL:2004/08/10 14:00:00 A . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- H:\WINDOWS\System32\drivers\nikedrv.sys [12032]
O58 - SDL:2004/08/03 22:41:40 A . (.Smart Link - .) -- H:\WINDOWS\System32\drivers\ntmtlfax.sys [180360]
O58 - SDL:2004/08/03 22:29:56 A . (.NVIDIA Corporation - NVIDIA Compatible Windows 2000 Miniport Dri.) -- H:\WINDOWS\System32\drivers\nv4_mini.sys [1897408]
O58 - SDL:2004/08/10 14:00:00 A . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- H:\WINDOWS\System32\drivers\ptilink.sys [17792]
O58 - SDL:2005/06/04 20:02:08 N . (.Sonic Solutions - Px Engine Device Driver for Windows 2000/XP.) -- H:\WINDOWS\System32\drivers\pxhelp20.sys [20576]
O58 - SDL:2004/08/03 22:41:40 A . (.Smart Link - .) -- H:\WINDOWS\System32\drivers\recagent.sys [13776]
O58 - SDL:2004/08/10 14:00:00 A . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- H:\WINDOWS\System32\drivers\rio8drv.sys [12032]
O58 - SDL:2004/08/10 14:00:00 A . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- H:\WINDOWS\System32\drivers\riodrv.sys [12032]
O58 - SDL:2004/08/03 22:29:52 A . (.S3 Graphics, Inc. - S3 ProSavage(DDR) & Twister Miniport Driver.) -- H:\WINDOWS\System32\drivers\s3gnbm.sys [166912]
O58 - SDL:2008/04/13 18:39:15 N . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- H:\WINDOWS\System32\drivers\secdrv.sys [20480]
O58 - SDL:2008/04/13 20:36:39 A . (.Silicon Integrated Systems Corporation - SiS NT AGP Filter.) -- H:\WINDOWS\System32\drivers\sisagp.sys [40960]
O58 - SDL:2004/08/03 22:41:42 A . (.Smart Link - .) -- H:\WINDOWS\System32\drivers\slnt7554.sys [129535]
O58 - SDL:2004/08/03 22:41:44 A . (.Smart Link - .) -- H:\WINDOWS\System32\drivers\slntamr.sys [404990]
O58 - SDL:2004/08/03 22:41:46 A . (.Smart Link - .) -- H:\WINDOWS\System32\drivers\slnthal.sys [95424]
O58 - SDL:2004/08/03 22:41:46 A . (.Smart Link - .) -- H:\WINDOWS\System32\drivers\slwdmsup.sys [13240]
O58 - SDL:2015/06/25 23:58:34 N . (.Avira Operations GmbH & Co. KG - AVIRA SnapShot Driver.) -- H:\WINDOWS\System32\drivers\ssmdrv.sys [31848]
O58 - SDL:2006/03/20 16:06:04 N . (.SigmaTel, Inc. - NDRC.) -- H:\WINDOWS\System32\drivers\sthda.sys [1156648]
O58 - SDL:2004/08/10 14:00:00 A . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- H:\WINDOWS\System32\drivers\tsbvcap.sys [21376]
O58 - SDL:2004/08/10 14:00:00 A . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- H:\WINDOWS\System32\drivers\vdmindvd.sys [58112]
O58 - SDL:2004/08/03 22:29:40 A . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Gra.) -- H:\WINDOWS\System32\drivers\wadv07nt.sys [11807]
O58 - SDL:2004/08/03 22:29:40 A . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Gra.) -- H:\WINDOWS\System32\drivers\wadv08nt.sys [11295]
O58 - SDL:2004/08/03 22:29:42 A . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Gra.) -- H:\WINDOWS\System32\drivers\wadv09nt.sys [11871]
O58 - SDL:2004/08/03 22:29:42 A . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Gra.) -- H:\WINDOWS\System32\drivers\wadv11nt.sys [11935]
O58 - SDL:2004/08/03 22:29:46 A . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Gra.) -- H:\WINDOWS\System32\drivers\watv06nt.sys [22271]
O58 - SDL:2004/08/03 22:29:46 A . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Gra.) -- H:\WINDOWS\System32\drivers\watv10nt.sys [25471]
O58 - SDL:2000/11/02 00:10:30 N . (.Jungo - WinDriver Device Driver 4.33.) -- H:\WINDOWS\System32\drivers\windrvr.sys [164180]
O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\ansi.sys [9037]
O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\country.sys [27097]
O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\himem.sys [4912]
O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\key01.sys [42809]
O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\keyboard.sys [42537]
O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\ntdos.sys [27916]
O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\ntdos404.sys [29146]
O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\ntdos411.sys [29370]
O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\ntdos412.sys [29274]
O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\ntdos804.sys [29146]
O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\ntio.sys [34000]
O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\ntio404.sys [34560]
O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\ntio411.sys [35648]
O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\ntio412.sys [35424]
O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\ntio804.sys [34560]
---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (4) - 29s
O61 - LFC: 2015/06/25 23:49:01 N . (..) -- H:\Documents and Settings\RIMAV\Mes documents\Téléchargements\avira_free_antivirus_fr.exe [166198536]
O61 - LFC: 2015/06/27 15:37:30 N . (..) -- H:\Documents and Settings\RIMAV\Mes documents\Téléchargements\SeaToolsforWindowsSetup.exe [25527544]
O61 - LFC: 2015/06/28 18:48:50 A . (.PortableApps.com.) -- H:\Documents and Settings\RIMAV\Mes documents\Téléchargements\SIWPortable_2011-2011.10.29.0.10.29.paf.exe [2548777]
O61 - LFC: 2015/06/27 01:48:51 N . (.Resplendence Software Projects Sp..) -- H:\Documents and Settings\RIMAV\Mes documents\Téléchargements\whocrashedSetup.exe [2727584]
---\\ Associations Shell Spawning (O67) (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- H:\WINDOWS\system32\shell32.dll
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- H:\Program Files\Internet Explorer\iexplore.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- H:\WINDOWS\system32\wscript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- H:\WINDOWS\regedit.exe
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- H:\Program Files\Mozilla Firefox\firefox.exe
---\\ Menu de démarrage Internet (SMI) (O68) (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- H:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- H:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- H:\WINDOWS\system32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- H:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- H:\WINDOWS\system32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- H:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- H:\WINDOWS\system32\ie4uinit.exe
---\\ Recherche d'infection sur les navigateurs internet (SBI (7) - 9s
O69 - SBI: prefs.js [RIMAV - am96p433.default] user_pref("extensions.sizlsearch.aul", "1402589214111"); =>PUP.SizlSearch
O69 - SBI: prefs.js [RIMAV - am96p433.default] user_pref("extensions.sizlsearch.irl", true); =>PUP.SizlSearch
O69 - SBI: prefs.js [RIMAV - am96p433.default] user_pref("extensions.sizlsearch.is", "adssFR"); =>PUP.SizlSearch
O69 - SBI: prefs.js [RIMAV - am96p433.default] user_pref("extensions.sizlsearch.ug", "3EDBEB4F-A70E-40AB-9AA5-2FEDF28B79BB"); =>PUP.SizlSearch
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {510F0D05-4DBF-439C-8EAB-956021612C6C} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (@ieframe.dll,-12512) - http://www.bing.com/
---\\ Scan Additionnel (O88) (1) - 0s
~ Aucun élément malicieux trouvé.
---\\ Récapitulatif des détections trouvées sur votre station (1) - 0s
http://www.nicolascoolman.fr/pup-sizlsearch/ =>PUP.SizlSearch
~ End of the scan, 25026 items in 101 seconds (598)(0)()