Pages web qui s'ouvrent lentement

Résolu
Bonsoir,

Depuis quelques temps mes pages web s'ouvrent lentement.
Je suis sous internet explorer 8
J'ai mis ccleaner, spybot, defragmenté le disque, nettoyé le disque mais rien n'y fait.
J'ai réinitialisé ma box, appelé mon FAI et tout est ok.

Je suis à court d'idées, si quelqu'un veut bien m'aider je suis preneuse !!
Merci d'avance

26 réponses

Résumé de la discussion

Des lenteurs d'ouverture des pages web sur Internet Explorer 8 concernent l'utilisateur, malgré des nettoyages, des défragmentations et une réinitialisation de la box, alors que le FAI a été vérifié. Plusieurs réponses convergent vers une éventuelle infection, avec Avast et Malwarebytes signalant des éléments potentiellement malveillants, et des adwares tels que ShopperReports et ClickPotato détectés puis mis en quarantaine. Des rapports techniques détaillent des modifications dans les clés de registre et des éléments du démarrage, avec des listes de processus et de modules potentiellement infectés, renforçant la piste d'une infection complexe. Des recommandations implicites suggèrent de poursuivre le nettoyage et d'examiner les programmes au démarrage, sans conclure sur l'état du fil et en considérant une éventuelle réinstallation système si nécessaire.

Bobot (l’IA à votre service)
  1. Contributeur sécurité
    Bonsoir,

    On va essayer de s'en occuper.

    Déjà, test ton débit ici puis copie le petit texte en dessous.

    Ensuite quelques petites questions :

    1-Quelle est ta connexion (routeur, Freebox, Livebox...) ?

    2-À combien de mètres environ en es-tu ?

    3-Combien êtes-vous sur la même connexion ?

    4-Est-ce tout le temps ou au bout d'un certain que ça commence à aller plus lentement ?

    Merci et bonne nuit !

    Gabriel.
    0
    1. Je te remercie de m'aider

      Voici le resultat du test :

      Votre FAI : Free ADSL (Free Proxad)
      Débit descendant : 5842 kbps (730.3 Ko/s) - Débit montant : 860 kbps (107.5 Ko/s) - Ping : 67 ms
      Testé sur https://www.degrouptest.com/test-debit.php - mardi 1 mars 2011 23:57:58 - Test n°14454910

      Down : 730.3 - Up : 107.5

      Je suis seule sur la connexion, le probleme ne se pose que depuis qq jours mais depuis c'est en permanance.
      0
      1. Contributeur sécurité
        Ok, ta connexion est bonne, je suspecte le virus...
        Avant de poster un nouveau message dans le Forum Virus/Sécurité, je vais te poser quelques questions :

        1-As-tu un antivirus ?

        2-Si oui, lequel est-ce et fais une analyse et dis moi si il a détécté quelque chose.

        3-Est-ce les pages qui mettent du temps ou est-ce dans les pages (ou alors les deux) ?

        4-Est-ce que ton ordinateur va lentement ailleurs que sur Internet ?

        5-Je vais te demander de faire un scan ZHPdiag, je pourrai voir les virus eventuels et ta configuration surtout, ensuite tu postera, après avoir répondu et après ma demande, un nouveau sujet dans le Forum Virus/Sécurité pour faire nettoyer ton PC par les professionnels.

        Voilà, et merci d'avoir répondu à mes questions si rapidement !

        Gabriel.
        0
        1. Contributeur sécurité
          Désolé, j'ai oublié la procédure ZHPdiag, fais ceci :

          ----->ZHPDIAG<-----

          Télécharge ZHPDiag ( de Nicolas coolman ).
          https://www.zebulon.fr/telechargements/securite/systeme/zhpdiag.html

          (outil de diagnostic)

          Double clique sur le fichier d'installation, puis installe le avec les paramètres par défaut ( N'oublie pas de cocher " Créer une icône sur le bureau " )

          Lance ZHPDiag en double cliquant sur l'icône présente sur ton bureau (Clique droit -> Executer en tant qu'admin ( vista )

          Clique sur la loupe en haut à gauche, puis laisse l'outil scanner.

          Une fois le scan terminé, clique sur l'icône en forme de disquette et enregistre le fichier sur ton bureau.

          Rend toi sur http://pjjoint.malekal.com/

          Clique sur "Parcourir "

          Sélectionne le rapport ZHPdiag.txt qui se trouve sur ton bureau

          Clique ensuite sur "Envoyer le fichier " et copie/colle le lien dans ton prochain message

          Voilà, c'est tout !

          Gabriel.
          0
          1. salut

            et le pc... il est relié en wifi a ta box ?
            si oui... il me semble qu'il y a deux possibilités pour la connexion...
            2 SSID (nom/appellation de ta box) apparaissant lors de l'affichage des réseaux disponible... les 2 du meme nom mais un avec en plus Wep d'écrit...
            celui sans... c'est pour l'utilisateur principale, le second (avec Wep) et pour les invités... autres pc, psp, et autres...
            sinon des erreurs dans la base de registre peut être...
            0
            1. Contributeur sécurité
              C'est possible, mais quand même, ça sens le virus à plein nez !^^
              0
          2. 1. Mon antivirus est avast.
            3. c'est les deux qui mettent du temps
            4. c'est vrai que l'ouverture des autres programmes me semble plus lente

            Pour les scan je te poste les resultats
            0
            1. Contributeur sécurité
              D'accord, merci, mais je sens que c'est un virus, c'est quasi sûr !!!

              Je ne te réponderai que peut-être demain, mais je reste encore 15-20 minutes...

              Merci !

              Gabriel.
              0
              1. du côté d'avast rien a signaler et voici le rapport ZHPdiag :

                Rapport de ZHPDiag v1.27.1626 par Nicolas Coolman, Update du 01/03/2011
                Run by Céline at 02/03/2011 00:28:15
                Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
                Contact : nicolascoolman@yahoo.fr

                ---\\ Web Browser
                MSIE: Internet Explorer v8.0.7600.16385

                ---\\ System Information
                Windows 7 Home Premium Edition, 64-bit (Build 7600)
                Processor: Intel64 Family 6 Model 23 Stepping 10, GenuineIntel
                Operating System: 64 Bits
                Boot mode: Normal (Normal boot)
                Total RAM: 3998 MB (56% free)
                System Restore: Activé (Enable)
                System drive C: has 406 GB (89%) free of 453 GB

                ---\\ Logged in mode
                Computer Name: CÉLINE-PC
                User Name: Céline
                All Users Names: HomeGroupUser$, Céline, Administrateur,
                Unselected Option: O45,O61,O62,O65,O66,O82
                Logged in as Administrator

                ---\\ Environnement Variables
                %AppData%=C:\Users\Céline\AppData\Roaming
                %LocalAppData%=C:\Users\Céline\AppData\Local
                %StartMenu%=C:\Users\Céline\AppData\Roaming\Microsoft\Windows\Start Menu

                ---\\ DOS/Devices
                C:\ Hard drive, Flash drive, Thumb drive (Free 406 Go of 453 Go)
                D:\ Hard drive, Flash drive, Thumb drive (Free 2 Go of 13 Go)
                E:\ CD-ROM drive (Not Inserted)

                ---\\ Security Center & Tools Informations
                [HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK
                [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK
                [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
                [HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
                [HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK
                [HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
                [HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
                [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
                [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
                [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK
                [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK
                [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
                [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK
                [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK
                [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK
                [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
                [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] DisableTaskMgr: OK
                [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] DisableRegistryTools: OK
                [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] NoDispScrSavPage: OK
                [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
                [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK
                [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
                [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK

                ---\\ Recherche particulière de fichiers génériques
                [MD5.9AAAEC8DAC27AA17B053E6352AD233AE] - (.Microsoft Corporation - Explorateur Windows.) (.31/10/2009 07:34:59.) -- C:\Windows\Explorer.exe [2870272]
                [MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 02:14:45.) -- C:\Windows\System32\Wininit.exe [96256]
                [MD5.78B9ADA2BC8946AF7B17678E0D07A773] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.21/12/2010 06:38:22.) -- C:\Windows\System32\wininet.dll [981504]

                ---\\ Processus lancés
                [MD5.9157189DC07511ECBBE1D2615D8A2FED] - (.Hewlett-Packard - HP Advisor.) -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe [1668664]
                [MD5.CCF2234A35077CA217A61C9CACC48198] - (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2363392]
                [MD5.5D61BE7DB55B026A5D61A3EED09D0EAD] - (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408]
                [MD5.75A83DB4023D635EBEB4DD3EA574EDCB] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [24103720]
                [MD5.896A1DB9A972AD2339C2E8569EC926D1] - (.Safer Networking Limited - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2144088]
                [MD5.A2814FED5A47B00BBC99AC58F93B9337] - (.CyberLink Corp. - HP QuickPlay Resident Program.) -- C:\Program Files (x86)\Hp\QuickPlay\QPService.exe [468264]
                [MD5.8F89E6CB82E6DB45BC993D423CD0FDBD] - (. Hewlett-Packard Development Company, L.P. - Quick Launch Buttons.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe [323640]
                [MD5.93DB1FF92B03D24738A71E6E4992DFD3] - (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [248552]
                [MD5.5516C26A6AF8EB4E2CAB48EC98A74398] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe [54576]
                [MD5.0A7E9FDF3BF1980CA09FEEAC7F52EFBC] - (.ALWIL Software - avast! service GUI component.) -- C:\Program Files\Alwil Software\Avast4\ashDisp.exe [81000]
                [MD5.BAD6BEA0DE1F69C82BDB74378CE0C20A] - (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [932288]
                [MD5.11E8D8272FDBE213ADE3DAD91427CE35] - (.OpenOffice.org - OpenOffice.org 3.3.) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe [11322880]
                [MD5.2D5966E168AD595193F4A1C4DD76B20E] - (.Spigot, Inc. - Search Settings.) -- C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe [524288]
                [MD5.2337EC951C4AF6E1AF65D10BD9615BEB] - (.OpenOffice.org - OpenOffice.org 3.3.) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin [11314688]
                [MD5.AA08B68EF4E35EFA170CF85A44B23B70] - (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe [673040]
                [MD5.0DE3C7622EC33126579B1742260F08C2] - (.Pas de propriétaire - HpqToaster Module.) -- C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe [632888]
                [MD5.88C44CA9A052AEAEC0C91A57CE5AB41A] - (.Google Inc. - Google Toolbar Broker.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe [304304]
                [MD5.A51D1C449E9CA956F477F9BFBE67A5C8] - (.Adobe Systems, Inc. - Adobe® Flash® Player Installer/Uninstaller.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10i_ActiveX.exe [232912]
                [MD5.D804D54E70E15078DFF46F9543A5E151] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [632320]

                ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
                M0 - MFSP: prefs.js [Céline - lsbfz5ig.default] http://www.fissa.com/en/?s=h&c=1010168614&suid=EkrYENzyX&d=5&pid=23

                ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
                G0 - GCSP: Preference [User Data\Default][HomePage] https://www.google.com/?gws_rd=ssl
                G2 - GCE: Preference [User Data\Default] [kngejcchcedjdemdaeneneeahmjnpaec] Interest Recognizer for Moovida v.3.4.1545.153 (Activé)

                ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
                R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?gws_rd=ssl
                R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.microsoft.com/fr-fr/
                R0 - HKUS\S-1-5-21-2318527353-3992521209-3721548211-1001\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?gws_rd=ssl
                R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
                R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
                R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com
                R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.microsoft.com/fr-fr/
                R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
                R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
                R1 - HKUS\S-1-5-21-2318527353-3992521209-3721548211-1001\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
                R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (8.00.7600.16385 (win7_rtm.090713-1255)) -- C:\Windows\System32\ieframe.dll
                R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 0

                ---\\ Internet Explorer, Proxy Management (R5)
                R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
                R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
                R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
                R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
                R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
                R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

                ---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
                F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,
                F2 - REG:system.ini: VMApplet=C:\WINDOWS\system32\SystemPropertiesPerformance.exe

                ---\\ Browser Helper Objects de navigateur (O2)
                O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                O2 - BHO: Google Toolbar Helper [64Bits] - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
                O2 - BHO: Google Toolbar Notifier BHO [64Bits] - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg64.dll
                O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll

                ---\\ Internet Explorer Toolbars (O3)
                O3 - Toolbar: Google Toolbar [64Bits] - {2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll

                ---\\ Applications démarrées par registre & par dossier (O4)
                O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
                O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jusched.exe
                O4 - HKLM\..\Run: [SysTrayApp] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe
                O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe (.not file.)
                O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe (.not file.)
                O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe (.not file.)
                O4 - HKCU\..\Run: [HPADVISOR] . (.Hewlett-Packard - HP Advisor.) -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe
                O4 - HKCU\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
                O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
                O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe
                O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe
                O4 - HKCU\..\Run: [SpybotSD TeaTimer] . (.Safer Networking Limited - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
                O4 - HKLM\..\Wow6432Node\Run: [QPService] . (.CyberLink Corp. - HP QuickPlay Resident Program.) -- C:\Program Files (x86)\HP\QuickPlay\QPService.exe
                O4 - HKLM\..\Wow6432Node\Run: [UCam_Menu] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe
                O4 - HKLM\..\Wow6432Node\Run: [QlbCtrl.exe] . (. Hewlett-Packard Development Company, L.P. - Quick Launch Buttons.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
                O4 - HKLM\..\Wow6432Node\Run: [UpdatePRCShortCut] Clé orpheline
                O4 - HKLM\..\Wow6432Node\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe
                O4 - HKLM\..\Wow6432Node\Run: [Easybits Recovery] . (.EasyBits Software AS - Pas de description.) -- C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe
                O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
                O4 - HKLM\..\Wow6432Node\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
                O4 - HKLM\..\Wow6432Node\Run: [avast!] . (.ALWIL Software - avast! service GUI component.) -- C:\Program Files\Alwil Software\Avast4\ashDisp.exe
                O4 - HKLM\..\Wow6432Node\Run: [WirelessAssistant] . (.Hewlett-Packard Company - HP Wireless Assistant Main Program.) -- C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
                O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
                O4 - HKLM\..\Wow6432Node\Run: [SearchSettings] . (.Spigot, Inc. - Search Settings.) -- C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe
                O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
                O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
                O4 - HKUS\S-1-5-21-2318527353-3992521209-3721548211-1001\..\Run: [HPADVISOR] . (.Hewlett-Packard - HP Advisor.) -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe
                O4 - HKUS\S-1-5-21-2318527353-3992521209-3721548211-1001\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
                O4 - HKUS\S-1-5-21-2318527353-3992521209-3721548211-1001\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                O4 - HKUS\S-1-5-21-2318527353-3992521209-3721548211-1001\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
                O4 - HKUS\S-1-5-21-2318527353-3992521209-3721548211-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe
                O4 - HKUS\S-1-5-21-2318527353-3992521209-3721548211-1001\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe
                O4 - HKUS\S-1-5-21-2318527353-3992521209-3721548211-1001\..\Run: [SpybotSD TeaTimer] . (.Safer Networking Limited - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
                O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (.not file.)
                O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (.not file.)
                O4 - Global Startup: C:\Users\Céline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk . (...) -- C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe

                ---\\ Autres liens utilisateurs (O4)
                O4 - Global Startup: C:\Users\Céline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
                O4 - Global Startup: C:\Users\Céline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
                O4 - Global Startup: C:\Users\Céline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Moovida.lnk . (.Fluendo Embedded.) -- C:\Program Files (x86)\Fluendo\Moovida\Moovida.exe
                O4 - Global Startup: C:\Users\Céline\Desktop\DivX Movies.lnk . (...) -- C:\Users\Céline\Videos\DivX Movies
                O4 - Global Startup: C:\Users\Céline\Desktop\Geoportail.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
                O4 - Global Startup: C:\Users\Céline\Desktop\Windows Live Mail.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Windows Live\Mail\wlmail.exe
                O4 - Global Startup: C:\Users\Céline\Desktop\Windows Live Messenger .lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
                O4 - Global Startup: C:\Users\Céline\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Inkscape.lnk . (.inkscape.org.) -- C:\Program Files (x86)\Inkscape\inkscape.exe
                O4 - Global Startup: C:\Users\Céline\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
                O4 - Global Startup: C:\Users\Céline\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk . (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
                O4 - Global Startup: C:\Users\Céline\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - Clé orpheline
                O4 - Global Startup: C:\Users\Céline\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - Clé orpheline

                ---\\ Winsock hijacker (Layered Service Provider) (O10)
                O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
                O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
                O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
                O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
                O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
                O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
                O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL
                O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL

                ---\\ Modification Domaine/Adresses DNS (O17)
                O17 - HKLM\System\CCS\Services\Tcpip\..\{9B5502C2-B11B-46AC-A0B8-BC5416556E91}: DhcpNameServer = 212.27.40.240 212.27.40.241
                O17 - HKLM\System\CS1\Services\Tcpip\..\{9B5502C2-B11B-46AC-A0B8-BC5416556E91}: DhcpNameServer = 212.27.40.240 212.27.40.241
                O17 - HKLM\System\CS2\Services\Tcpip\..\{9B5502C2-B11B-46AC-A0B8-BC5416556E91}: DhcpNameServer = 212.27.40.240 212.27.40.241
                O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.240 212.27.40.241

                ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
                O20 - Winlogon Notify: igfxcui . (.Pas de propriétaire - Pas de description.) -- igfxdev.dll

                ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
                O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.

                ---\\ Liste des services NT non Microsoft et non désactivés (O23)
                O23 - Service: (AESTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe
                O23 - Service: (Application Updater) . (.Spigot, Inc. - Application Updater.) - C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe
                O23 - Service: (aswUpdSv) . (.ALWIL Software - avast! Antivirus updating service.) - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
                O23 - Service: (avast! Antivirus) . (.ALWIL Software - avast! antivirus service.) - C:\Program Files\Alwil Software\Avast4\ashServ.exe
                O23 - Service: (avast! Mail Scanner) . (.ALWIL Software - avast! e-Mail Scanner Service.) - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
                O23 - Service: (avast! Web Scanner) . (.ALWIL Software - avast! Web Scanner.) - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
                O23 - Service: (CCALib8) . (.Canon Inc. - Canon Camera Access Library 8.) - C:\Program Files (x86)\Canon\CAL\CALMAIN.exe
                O23 - Service: (Com4QLBEx) . (.Hewlett-Packard Development Company, L.P. - Com for QLB application.) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
                O23 - Service: (GameConsoleService) . (.WildTangent, Inc. - GameConsoleService.) - C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe
                O23 - Service: (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
                O23 - Service: (gusvc) . (.Google - gusvc.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
                O23 - Service: (HP Health Check Service) . (.Hewlett-Packard Company - HP Support Assistant.) - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
                O23 - Service: (HPDrvMntSvc.exe) . (.Hewlett-Packard Company - HP Quick Synchronization Service.) - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
                O23 - Service: (hpqwmiex) . (.Hewlett-Packard Company - hpqwmiex Module.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
                O23 - Service: (LightScribeService) . (.Hewlett-Packard Company - LightScribe Service.) - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
                O23 - Service: (RichVideo) . (.Pas de propriétaire - RichVideo Module.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
                O23 - Service: (SBSDWSCService) . (.Safer Networking Ltd. - Spybot-S&D Security Center integration.) - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
                O23 - Service: (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\STacSV64.exe
                O23 - Service: (wlidsvc) . (.Microsoft Corp. - Microsoft® Windows Live ID Service.) - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.exe

                ---\\ Enumération Active Desktop & MHTML Editor (O24)
                O24 - Default MHTML Editor: Last - .(.Pas de propriétaire - Pas de description.) - (.not file.)

                ---\\ Tâches planifiées en automatique (O39)
                O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
                O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
                O39 - APT:Automatic Planified Task - C:\Windows\Tasks\HPCeeScheduleForCéline.job
                [MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
                [MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
                [MD5.455B6AF8235787AB6E36193FBD9BB0AA] [APT] [HPCeeScheduleForC'line] (.Hewlett-Packard.) -- C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
                [MD5.00000000000000000000000000000000] [APT] [{44566940-F9A1-4D20-B388-A1B51472C6CF}] (.Pas de propriétaire.) -- E:\MSETUP4.exe (.not file.)
                [MD5.00000000000000000000000000000000] [APT] [{5259111F-7DE9-4BE5-BB80-0C70D8F3BD87}] (.Pas de propriétaire.) -- E:\MSETUP4.exe (.not file.)
                [MD5.00000000000000000000000000000000] [APT] [{71807CE0-8372-4710-8D1E-0EA30CE6EB3B}] (.Pas de propriétaire.) -- E:\MSETUP4.exe (.not file.)
                [MD5.00000000000000000000000000000000] [APT] [{CE67E62C-83C6-4EB5-AD30-A416862F4540}] (.Pas de propriétaire.) -- E:\MSETUP4.exe (.not file.)
                [MD5.00000000000000000000000000000000] [APT] [{E77557B2-4C12-4194-A912-434295154843}] (.Pas de propriétaire.) -- E:\MSETUP4.exe (.not file.)
                [MD5.00000000000000000000000000000000] [APT] [{F1AA88F9-E0AE-4910-AE77-232314AC3ECA}] (.Pas de propriétaire.) -- E:\MSETUP4.exe (.not file.)
                [MD5.FDC7C934ADB8C3B51A3C21781B608673] [APT] [PC Health Analysis] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
                [MD5.FDC7C934ADB8C3B51A3C21781B608673] [APT] [PC Tuneup] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe

                ---\\ Pilotes lancés au démarrage (O41)
                O41 - Driver: C:\Windows\system32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
                O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\DRIVERS\blbdrive.sys
                O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
                O41 - Driver: C:\Windows\system32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
                O41 - Driver: C:\Windows\system32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
                O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\DRIVERS\mssmbios.sys
                O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
                O41 - Driver: C:\Windows\system32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
                O41 - Driver: C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
                O41 - Driver: C:\Windows\system32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
                O41 - Driver: C:\Windows\system32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
                O41 - Driver: C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
                O41 - Driver: C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
                O41 - Driver: C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys
                O41 - Driver: (Serial) . (.Microsoft Corporation - Pilote de périphérique série.) - C:\Windows\system32\DRIVERS\serial.sys
                O41 - Driver: C:\Windows\system32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
                O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\DRIVERS\termdd.sys
                O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
                O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys
                O41 - Driver: C:\Windows\system32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
                O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys

                ---\\ Logiciels installés (O42)
                O42 - Logiciel: AOL Toolbar 5.0 - (.AOL LLC.) [HKLM][64Bits] -- AOL Toolbar
                O42 - Logiciel: Acrobat.com - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {287ECFA4-719A-2143-A09B-D6A12DE54E40}
                O42 - Logiciel: ActiveCheck component for HP Active Support Library - (.Hewlett-Packard.) [HKLM][64Bits] -- {254C37AA-6B72-4300-84F6-98A82419187E}
                O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- Adobe AIR
                O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- {A2BCA9F1-566C-4805-97D1-7FDC93386723}
                O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX
                O42 - Logiciel: Adobe Reader 9.4.1 MUI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-FFFF-7B44-A91000000001}
                O42 - Logiciel: ArcSoft PhotoStudio 5.5 - (.ArcSoft.) [HKLM][64Bits] -- {85309D89-7BE9-4094-BB17-24999C6118FC}
                O42 - Logiciel: Atheros Driver Installation Program - (.Atheros.) [HKLM][64Bits] -- {C3A32068-8AB1-4327-BB16-BED9C6219DC7}
                O42 - Logiciel: CANON iMAGE GATEWAY Task - (.Pas de propriétaire.) [HKLM][64Bits] -- CANON iMAGE GATEWAY Task
                O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
                O42 - Logiciel: Canon Camera Access Library - (.Pas de propriétaire.) [HKLM][64Bits] -- CAL
                O42 - Logiciel: Canon Camera Support Core Library - (.Pas de propriétaire.) [HKLM][64Bits] -- CSCLIB
                O42 - Logiciel: Canon Camera Window DC_DV 5 for ZoomBrowser EX - (.Pas de propriétaire.) [HKLM][64Bits] -- CameraWindowDVC5
                O42 - Logiciel: Canon Camera Window DC_DV 6 for ZoomBrowser EX - (.Pas de propriétaire.) [HKLM][64Bits] -- CameraWindowDVC6
                O42 - Logiciel: Canon Camera Window MC 6 for ZoomBrowser EX - (.Pas de propriétaire.) [HKLM][64Bits] -- CameraWindowMC
                O42 - Logiciel: Canon G.726 WMP-Decoder - (.Pas de propriétaire.) [HKLM][64Bits] -- Canon G.726 WMP-Decoder
                O42 - Logiciel: Canon Inkjet Printer Driver Add-On Module - (.Pas de propriétaire.) [HKLM] -- CANONIJINBOXADDON100
                O42 - Logiciel: Canon Internet Library for ZoomBrowser EX - (.Pas de propriétaire.) [HKLM][64Bits] -- Canon Internet Library for ZoomBrowser EX
                O42 - Logiciel: Canon MP Navigator 2.0 - (.Pas de propriétaire.) [HKLM][64Bits] -- MP Navigator 2.0
                O42 - Logiciel: Canon MP500 - (.Pas de propriétaire.) [HKLM] -- {BA4DF4C3-196E-4128-969A-00996B5A46F8}
                O42 - Logiciel: Canon MovieEdit Task for ZoomBrowser EX - (.Pas de propriétaire.) [HKLM][64Bits] -- MovieEditTask
                O42 - Logiciel: Canon RAW Image Task for ZoomBrowser EX - (.Pas de propriétaire.) [HKLM][64Bits] -- RAW Image Task
                O42 - Logiciel: Canon RemoteCapture Task for ZoomBrowser EX - (.Pas de propriétaire.) [HKLM][64Bits] -- RemoteCaptureTask
                O42 - Logiciel: Canon Utilities ZoomBrowser EX - (.Pas de propriétaire.) [HKLM][64Bits] -- ZoomBrowser EX
                O42 - Logiciel: CyberLink DVD Suite - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}
                O42 - Logiciel: CyberLink DVD Suite - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}
                O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}
                O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D}
                O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
                O42 - Logiciel: Fissa - (.Secure Digital Services.) [HKLM][64Bits] -- Fissa
                O42 - Logiciel: Galerie de photos Windows Live - (.Microsoft Corporation.) [HKLM][64Bits] -- {488F0347-C4A7-4374-91A7-30818BEDA710}
                O42 - Logiciel: Google Earth Plug-in - (.Google.) [HKLM][64Bits] -- {171E6C1E-B5FC-11DF-B115-005056C00008}
                O42 - Logiciel: Google SketchUp 7 - (.Google, Inc..) [HKLM][64Bits] -- {5AD045DF-11AA-473D-B4AA-2A4F0E213047}
                O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {18455581-E099-4BA8-BC6B-F34B2F06600C}
                O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
                O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
                O42 - Logiciel: HP Advisor - (.Hewlett-Packard.) [HKLM][64Bits] -- {B53E61D7-7C80-40DF-82D2-CF5390D6D20A}
                O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FA4960-B038-49EB-891B-9F95930AA544}
                O42 - Logiciel: HP DVD Play 3.7 - (.Hewlett-Packard.) [HKLM][64Bits] -- {45D707E9-F3C4-11D9-A373-0050BAE317E1}
                O42 - Logiciel: HP Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent hp Master Uninstall
                O42 - Logiciel: HP Quick Launch Buttons - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {34D2AB40-150D-475D-AE32-BD23FB5EE355}
                O42 - Logiciel: HP Setup - (.Hewlett-Packard.) [HKLM][64Bits] -- {F3B912F5-EB57-45AA-B3D1-EB532BCF6EF8}
                O42 - Logiciel: HP Support Assistant - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {08DB3902-2CE0-474D-BCE3-0177766CE9F1}
                O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {D46D081B-F60E-467E-A7C4-117B70D76731}
                O42 - Logiciel: HP User Guides 0148 - (.Hewlett-Packard.) [HKLM][64Bits] -- {9D3318E1-5A9F-4A95-A7A1-7E045403AE34}
                O42 - Logiciel: HP Wireless Assistant - (.Hewlett-Packard.) [HKLM][64Bits] -- {4E432692-A736-4F77-AF77-F9078CF88D31}
                O42 - Logiciel: HPAsset component for HP Active Support Library - (.Hewlett-Packard.) [HKLM][64Bits] -- {669D4A35-146B-4314-89F1-1AC3D7B88367}
                O42 - Logiciel: IDT Audio - (.IDT.) [HKLM][64Bits] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}
                O42 - Logiciel: Inkscape 0.48.0 - (.Pas de propriétaire.) [HKLM][64Bits] -- Inkscape
                O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- HDMI
                O42 - Logiciel: Internet TV pour Windows Media Center - (.Microsoft Corporation.) [HKLM][64Bits] -- {9D318C86-AF4C-409F-A6AC-7183FF4CF424}
                O42 - Logiciel: Java(TM) 6 Update 14 (64-bit) - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F86416014FF}
                O42 - Logiciel: Java(TM) 6 Update 23 - (.Sun Microsystems, Inc..) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83216014FF}
                O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}
                O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}
                O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243}
                O42 - Logiciel: LightScribe System Software - (.LightScribe.) [HKLM][64Bits] -- {82EF29B1-9B60-4142-A155-0599216DD053}
                O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
                O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9}
                O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
                O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
                O42 - Logiciel: Magic Desktop - (.EasyBits Software AS.) [HKLM][64Bits] -- EasyBits Magic Desktop
                O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile
                O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}
                O42 - Logiciel: Microsoft .NET Framework 4 Client Profile FRA Language Pack - (.Microsoft Corporation.) [HKLM] -- {4B5F58F7-C7D1-3CE3-9B37-B657F0852643}
                O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-0016-040C-0000-0000000FF1CE}_HOMESTUDENTR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
                O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-0018-040C-0000-0000000FF1CE}_HOMESTUDENTR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
                O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001B-040C-0000-0000000FF1CE}_HOMESTUDENTR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
                O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{E64BA721-2310-4B55-BE5A-2925F9706192}
                O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-002A-040C-1000-0000000FF1CE}_HOMESTUDENTR_{B165D3C2-40AE-4D39-86F7-E5C87C4264C0}
                O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-006E-040C-0000-0000000FF1CE}_HOMESTUDENTR_{B165D3C2-40AE-4D39-86F7-E5C87C4264C0}
                O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-00A1-040C-0000-0000000FF1CE}_HOMESTUDENTR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
                O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
                O42 - Logiciel: Microsoft Office Excel MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0016-040C-0000-0000000FF1CE}
                O42 - Logiciel: Microsoft Office Home and Student 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- HOMESTUDENTR
                O42 - Logiciel: Microsoft Office Home and Student 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}
                O42 - Logiciel: Microsoft Office Office 64-bit Components 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-002A-0000-1000-0000000FF1CE}
                O42 - Logiciel: Microsoft Office OneNote MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-00A1-040C-0000-0000000FF1CE}
                O42 - Logiciel: Microsoft Office PowerPoint MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0018-040C-0000-0000000FF1CE}
                O42 - Logiciel: Microsoft Office PowerPoint Viewer 2007 (French) - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00AF-040C-0000-0000000FF1CE}
                O42 - Logiciel: Microsoft Office Proof (Arabic) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0401-0000-0000000FF1CE}
                O42 - Logiciel: Microsoft Office Proof (Dutch) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0413-0000-0000000FF1CE}
                O42 - Logiciel: Microsoft Office Proof (English) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0409-0000-0000000FF1CE}
                O42 - Logiciel: Microsoft Office Proof (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-040C-0000-0000000FF1CE}
                O42 - Logiciel: Microsoft Office Proof (German) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0407-0000-0000000FF1CE}
                O42 - Logiciel: Microsoft Office Proof (Spanish) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0C0A-0000-0000000FF1CE}
                O42 - Logiciel: Microsoft Office Proofing (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-002C-040C-0000-0000000FF1CE}
                O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0401-0000-0000000FF1CE}_HOMESTUDENTR_{14809F99-C601-4D4A-9391-F1E8FAA964C5}
                O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0407-0000-0000000FF1CE}_HOMESTUDENTR_{A0516415-ED61-419A-981D-93596DA74165}
                O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
                O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{F580DDD5-8D37-4998-968E-EBB76BB86787}
                O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0413-0000-0000000FF1CE}_HOMESTUDENTR_{D66D5A44-E480-4BA4-B4F2-C554F6B30EBB}
                O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{187308AB-5FA7-4F14-9AB9-D290383A10D9}
                O42 - Logiciel: Microsoft Office Shared 64-bit MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-002A-040C-1000-0000000FF1CE}
                O42 - Logiciel: Microsoft Office Shared MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-006E-040C-0000-0000000FF1CE}
                O42 - Logiciel: Microsoft Office Suite Activation Assistant - (.Microsoft Corporation.) [HKLM][64Bits] -- {E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}
                O42 - Logiciel: Microsoft Office Word MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001B-040C-0000-0000000FF1CE}
                O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU] - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
                O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
                O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM] -- {B6E3757B-5E77-3915-866A-CCFC4B8D194C}
                O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM][64Bits] -- {770657D0-A123-3C07-8E44-1C83EC895118}
                O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM] -- {071c9b48-7c32-4621-a0ac-3f809523288f}
                O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {7299052b-02a4-4627-81f2-1818da5d550d}
                O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {4B6C7001-C7D6-3710-913E-5BC23FCE91E6}
                O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
                O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM][64Bits] -- {3B160861-7250-451E-B5EE-8B92BF30A710}
                O42 - Logiciel: Module de compatibilité pour Microsoft Office System 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0020-040C-0000-0000000FF1CE}
                O42 - Logiciel: Module linguistique Microsoft .NET Framework 4 Client Profile FRA - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile FRA Language Pack
                O42 - Logiciel: Moovida - (.Secure Digital Services.) [HKLM][64Bits] -- {6084C211-01A1-464E-97A0-09772E122B50}
                O42 - Logiciel: Mozilla Firefox (3.6) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox (3.6)
                O42 - Logiciel: OpenOffice.org 3.3 - (.OpenOffice.org.) [HKLM][64Bits] -- {7E0610A2-E336-40B3-B685-C4905E97EC9A}
                O42 - Logiciel: PDFCreator - (.Frank Heindörfer, Philip Chinery.) [HKLM][64Bits] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}
                O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}
                O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658}
                O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}
                O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {CB099890-1D5F-11D5-9EA9-0050BAE317E1}
                O42 - Logiciel: PowerRecover - (.CyberLink Corp..) [HKLM][64Bits] -- {44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}
                O42 - Logiciel: QLBCASL - (.Hewlett-Packard.) [HKLM][64Bits] -- {F1D7AC58-554A-4A58-B784-B61558B1449A}
                O42 - Logiciel: Realtek 8136 8168 8169 Ethernet Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
                O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {96AE7E41-E34E-47D0-AC07-1091A8127911}
                O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2288621) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{5C497F0B-2061-4CC9-A61C-6B45B867354D}
                O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2288931) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{CD769337-C8AC-46DB-A7DC-643E50089263}
                O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2289158) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{210B16C0-CEBD-4DE9-B474-04A7E8735E16}
                O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2344875) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6FC5C4C1-D7AE-44C3-94B7-6424FC3E752F}
                O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2345043) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{536FB502-775F-4494-BACE-C02CC90B7A5B}
                O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB969559) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
                O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB976321) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{7F207DCA-3399-40CB-A968-6E5991B1421A}
                O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2160841) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2160841
                O42 - Logiciel: Security Update for Microsoft Office Excel 2007 (KB2345035) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{B23002DD-34EC-4988-B810-A5E2A0BF04F1}
                O42 - Logiciel: Security Update for Microsoft Office InfoPath 2007 (KB979441) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{8CCB781A-CF6B-4FCB-B6D8-59C64DF5C6DB}
                O42 - Logiciel: Security Update for Microsoft Office PowerPoint 2007 (KB982158) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{F5B70033-E79C-4569-90BF-BC9B4E4F3F46}
                O42 - Logiciel: Security Update for Microsoft Office PowerPoint Viewer (KB2413381) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3DED0A62-44C8-4E00-A785-5212F297A9D9}
                O42 - Logiciel: Security Update for Microsoft Office Visio Viewer 2007 (KB973709) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
                O42 - Logiciel: Security Update for Microsoft Office Word 2007 (KB2344993) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{7A5B74FA-7A92-4FC9-821A-2DD5D4E73E48}
                O42 - Logiciel: Security Update for Microsoft Office system 2007 (972581) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF}
                O42 - Logiciel: Security Update for Microsoft Office system 2007 (KB974234) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{FCD742B9-7A55-44BC-A776-F795F21FEDDC}
                O42 - Logiciel: Skype(TM) 4.0 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24D753CA-6AE9-4E30-8F5F-EFC93E08BF3D}
                O42 - Logiciel: Spybot - Search & Destroy - (.Safer Networking Limited.) [HKLM][64Bits] -- {B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1
                O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM] -- SynTPDeinstKey
                O42 - Logiciel: TerraExplorer - (.Skyline Software Systems, Inc..) [HKLM][64Bits] -- TerraExplorer
                O42 - Logiciel: Update for 2007 Microsoft Office System (KB2284654) - (.Microsoft.) [HKLM][64Bits] -- {90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{FB166E7C-8AA6-48C8-B726-1F25BEE7825A}
                O42 - Logiciel: Update for 2007 Microsoft Office System (KB967642) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}
                O42 - Logiciel: Update for Microsoft Office OneNote 2007 (KB980729) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{329050A9-EF80-40F9-B633-74508F54C1FF}
                O42 - Logiciel: VLC media player 1.0.5 - (.VideoLAN Team.) [HKLM][64Bits] -- VLC media player
                O42 - Logiciel: Veetle TV 0.9.18 - (.Veetle, Inc.) [HKLM][64Bits] -- Veetle TV
                O42 - Logiciel: Windows Live - (.Microsoft Corporation.) [HKLM][64Bits] -- WinLiveSuite
                O42 - Logiciel: Windows Live - (.Microsoft Corporation.) [HKLM][64Bits] -- {34319F1F-7CF2-4CC9-B357-1AE7D2FF3AC5}
                O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM][64Bits] -- {D45240D3-B6B3-4FF9-B243-54ECE3E10066}
                O42 - Logiciel: Windows Live FolderShare - (.Microsoft Corporation.) [HKLM][64Bits] -- {2075CB0A-D26F-4DAA-B424-5079296B43BA}
                O42 - Logiciel: Windows Live ID Sign-in Assistant - (.Microsoft Corporation.) [HKLM] -- {1B8ABA62-74F0-47ED-B18C-A43128E591B8}
                O42 - Logiciel: Windows Live Installer - (.Microsoft Corporation.) [HKLM][64Bits] -- {0B0F231F-CE6A-483D-AA23-77B364F75917}
                O42 - Logiciel: Windows Live Language Selector - (.Microsoft Corporation.) [HKLM] -- {5EB6F3CB-46F4-451F-A028-7F6D8D35D7D0}
                O42 - Logiciel: Windows Live MIME IFilter - (.Microsoft Corporation.) [HKLM] -- {DA54F80E-261C-41A2-A855-549A144F2F59}
                O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM][64Bits] -- {9D56775A-93F3-44A3-8092-840E3826DE30}
                O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM][64Bits] -- {9FAE6E8D-E686-49F5-A574-0A58DFD9580C}
                O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {6057E21C-ABE9-4059-AE3E-3BEB9925E660}
                O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {EB4DF488-AAEF-406F-A341-CB2AAA315B90}
                O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM][64Bits] -- {6DEC8BD5-7574-47FA-B080-492BBBE2FEA3}
                O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM][64Bits] -- {92EA4134-10D1-418A-91E1-5A0453131A38}
                O42 - Logiciel: Windows Live PIMT Platform - (.Microsoft Corporation.) [HKLM][64Bits] -- {4CBABDFD-49F8-47FD-BE7D-ECDE7270525A}
                O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM][64Bits] -- {A9BDCA6B-3653-467B-AC83-94367DA3BFE3}
                O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM][64Bits] -- {C893D8C0-1BA0-4517-B11C-E89B65E72F70}
                O42 - Logiciel: Windows Live Photo Gallery - (.Microsoft Corporation.) [HKLM][64Bits] -- {3336F667-9049-4D46-98B6-4C743EEBC5B1}
                O42 - Logiciel: Windows Live SOXE - (.Microsoft Corporation.) [HKLM][64Bits] -- {682B3E4F-696A-42DE-A41C-4C07EA1678B4}
                O42 - Logiciel: Windows Live SOXE Definitions - (.Microsoft Corporation.) [HKLM][64Bits] -- {200FEC62-3C34-4D60-9CE8-EC372E01C08F}
                O42 - Logiciel: Windows Live UX Platform - (.Microsoft Corporation.) [HKLM][64Bits] -- {CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}
                O42 - Logiciel: Windows Live UX Platform Language Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {09F56A49-A7B1-4AAB-95B9-D13094254AD1}
                O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM][64Bits] -- {3B9A92DA-6374-4872-B646-253F18624D5F}
                O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM][64Bits] -- {A726AE06-AAA3-43D1-87E3-70F510314F04}
                O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM][64Bits] -- {AAAFC670-569B-4A2F-82B4-42945E0DE3EF}
                O42 - Logiciel: Windows Live Writer Resources - (.Microsoft Corporation.) [HKLM][64Bits] -- {62687B11-58B5-4A18-9BC3-9DF4CE03F194}
                O42 - Logiciel: avast! Antivirus - (.Alwil Software.) [HKLM][64Bits] -- avast!
                O42 - Logiciel: muvee Reveal - (.muvee Technologies Pte Ltd.) [HKLM][64Bits] -- {293F900D-3743-A8CC-46AD-5AFBFF8E29CF}
                O42 - Logiciel: pdfforge Toolbar v4.1 - (.Spigot, Inc..) [HKLM][64Bits] -- {B1BFDF6B-3C03-46fe-B5D7-BABB0063D8E0}

                ---\\ HKCU & HKLM Software Keys
                [HKCU\Software\ALWIL Software]
                [HKCU\Software\AOL]
                [HKCU\Software\Adobe]
                [HKCU\Software\AppDataLow\Google]
                [HKCU\Software\AppDataLow\Software\Microsoft]
                [HKCU\Software\AppDataLow\Software\Search Settings]
                [HKCU\Software\AppDataLow\Software\pdfforge]
                [HKCU\Software\AppDataLow\Software]
                [HKCU\Software\AppDataLow]
                [HKCU\Software\ArcSoft]
                [HKCU\Software\Boonty]
                [HKCU\Software\Bugsplat]
                [HKCU\Software\CanonBJ]
                [HKCU\Software\Canon]
                [HKCU\Software\Classes]
                [HKCU\Software\Clients]
                [HKCU\Software\CyberLink]
                [HKCU\Software\DivXNetworks]
                [HKCU\Software\EasyBits]
                [HKCU\Software\FissaSearch]
                [HKCU\Software\Google]
                [HKCU\Software\Hewlett-Packard]
                [HKCU\Software\IM Providers]
                [HKCU\Software\Intel]
                [HKCU\Software\JavaSoft]
                [HKCU\Software\LightScribe]
                [HKCU\Software\Macromedia]
                [HKCU\Software\Macrovision]
                [HKCU\Software\MainConcept (Muvee)]
                [HKCU\Software\MozillaPlugins]
                [HKCU\Software\Netscape]
                [HKCU\Software\Norton]
                [HKCU\Software\ODBC]
                [HKCU\Software\OfferBox]
                [HKCU\Software\OpenOffice.org]
                [HKCU\Software\PDFCreator]
                [HKCU\Software\Piriform]
                [HKCU\Software\Policies]
                [HKCU\Software\Safer Networking Limited]
                [HKCU\Software\Skyline]
                [HKCU\Software\Skype]
                [HKCU\Software\Spointer]
                [HKCU\Software\Synaptics]
                [HKCU\Software\Trolltech]
                [HKCU\Software\Veetle]
                [HKCU\Software\Wow6432Node]
                [HKCU\Software\YahooPartnerToolbar]
                [HKCU\Software\clickpotatolitesa]
                [HKCU\Software\med_scangnrlst]
                [HKLM\Software\ATI Technologies]
                [HKLM\Software\Agere]
                [HKLM\Software\BrowserChoice]
                [HKLM\Software\CXT]
                [HKLM\Software\CanonBJ]
                [HKLM\Software\Canon]
                [HKLM\Software\Classes]
                [HKLM\Software\Clients]
                [HKLM\Software\DivX]
                [HKLM\Software\HPQ]
                [HKLM\Software\Hewlett-Packard]
                [HKLM\Software\IDT]
                [HKLM\Software\InstalledOptions]
                [HKLM\Software\Intel]
                [HKLM\Software\JavaSoft]
                [HKLM\Software\LSI]
                [HKLM\Software\MozillaPlugins]
                [HKLM\Software\ODBC]
                [HKLM\Software\Piriform]
                [HKLM\Software\Policies]
                [HKLM\Software\RTLSetup]
                [HKLM\Software\Realtek Semiconductor Corp.]
                [HKLM\Software\Realtek]
                [HKLM\Software\RegisteredApplications]
                [HKLM\Software\Sonic]
                [HKLM\Software\Symantec]
                [HKLM\Software\Synaptics]
                [HKLM\Software\Volatile]
                [HKLM\Software\WildTangent]
                [HKLM\Software\Wow6432Node]

                ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
                O43 - CFD: 14/01/2010 - 14:33:52 - [142668469] ----D- C:\Program Files\Alwil Software
                O43 - CFD: 15/01/2010 - 11:03:48 - [14734453] --H-D- C:\Program Files\CanonBJ
                O43 - CFD: 01/03/2011 - 21:35:44 - [7184728] ----D- C:\Program Files\CCleaner
                O43 - CFD: 15/01/2010 - 10:57:00 - [43748065] ----D- C:\Program Files\Common Files
                O43 - CFD: 01/03/2011 - 22:59:34 - [1774080] ----D- C:\Program Files\DivX
                O43 - CFD: 25/09/2009 - 10:17:56 - [90257428] ----D- C:\Program Files\DVD Maker
                O43 - CFD: 14/01/2010 - 14:18:04 - [0] -SH-D- C:\Program Files\Fichiers communs
                O43 - CFD: 14/01/2010 - 14:46:30 - [1613008] ----D- C:\Program Files\Google
                O43 - CFD: 19/08/2009 - 13:51:26 - [179200] ----D- C:\Program Files\Hewlett-Packard
                O43 - CFD: 25/09/2009 - 00:28:24 - [43914760] ----D- C:\Program Files\IDT
                O43 - CFD: 13/02/2011 - 20:40:14 - [5176327] ----D- C:\Program Files\Internet Explorer
                O43 - CFD: 19/08/2009 - 16:11:58 - [79489695] ----D- C:\Program Files\Java
                O43 - CFD: 25/09/2009 - 10:17:56 - [149236786] ----D- C:\Program Files\Microsoft Games
                O43 - CFD: 19/08/2009 - 15:04:56 - [1141526] ----D- C:\Program Files\Microsoft Office
                O43 - CFD: 14/07/2009 - 06:32:40 - [25757] ----D- C:\Program Files\MSBuild
                O43 - CFD: 14/01/2010 - 14:20:48 - [126093] R---D- C:\Program Files\Online Services
                O43 - CFD: 14/07/2009 - 06:32:40 - [36253865] ----D- C:\Program Files\Reference Assemblies
                O43 - CFD: 25/09/2009 - 00:26:56 - [38665055] ----D- C:\Program Files\Synaptics
                O43 - CFD: 14/07/2009 - 06:09:28 - [0] --H-D- C:\Program Files\Uninstall Information
                O43 - CFD: 19/08/2009 - 23:40:26 - [4039168] ----D- C:\Program Files\Windows Defender
                O43 - CFD: 26/11/2010 - 10:36:00 - [43896] ----D- C:\Program Files\Windows Live
                O43 - CFD: 12/01/2011 - 23:49:00 - [6667264] ----D- C:\Program Files\Windows Mail
                O43 - CFD: 15/10/2010 - 07:06:06 - [7687085] ----D- C:\Program Files\Windows Media Player
                O43 - CFD: 14/01/2010 - 14:18:04 - [12627124] ----D- C:\Program Files\Windows NT
                O43 - CFD: 19/08/2009 - 23:40:26 - [5516568] ----D- C:\Program Files\Windows Photo Viewer
                O43 - CFD: 14/07/2009 - 06:32:40 - [235008] ----D- C:\Program Files\Windows Portable Devices
                O43 - CFD: 14/01/2010 - 14:20:46 - [11374124] ----D- C:\Program Files\Windows Sidebar
                O43 - CFD: 15/01/2010 - 10:57:00 - [291555] ----D- C:\Program Files\Common Files\Canon
                O43 - CFD: 23/02/2011 - 17:23:08 - [30835069] ----D- C:\Program Files\Common Files\Microsoft Shared
                O43 - CFD: 14/07/2009 - 04:20:10 - [2702] ----D- C:\Program Files\Common Files\Services
                O43 - CFD: 14/07/2009 - 04:20:10 - [608768] ----D- C:\Program Files\Common Files\SpeechEngines
                O43 - CFD: 19/08/2009 - 23:43:10 - [12009971] ----D- C:\Program Files\Common Files\System
                O43 - CFD: 27/08/2010 - 15:36:10 - [45895835] ----D- C:\ProgramData\Adobe
                O43 - CFD: 19/08/2009 - 15:40:46 - [13624086] ----D- C:\ProgramData\AOL
                O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Application Data
                O43 - CFD: 25/09/2009 - 00:29:18 - [8975] ----D- C:\ProgramData\Atheros
                O43 - CFD: 14/01/2010 - 14:18:04 - [0] -SH-D- C:\ProgramData\Bureau
                O43 - CFD: 14/01/2010 - 18:37:52 - [9616176] --H-D- C:\ProgramData\CanonBJ
                O43 - CFD: 29/10/2010 - 05:10:12 - [11088254] ----D- C:\ProgramData\ClickPotatoLiteSA
                O43 - CFD: 17/01/2010 - 19:05:18 - [58292] ----D- C:\ProgramData\CyberLink
                O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Desktop
                O43 - CFD: 01/03/2011 - 22:59:48 - [641797] ----D- C:\ProgramData\DivX
                O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Documents
                O43 - CFD: 14/01/2010 - 14:18:04 - [0] -SH-D- C:\ProgramData\Favoris
                O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Favorites
                O43 - CFD: 21/04/2010 - 22:08:44 - [536260] ----D- C:\ProgramData\Google
                O43 - CFD: 12/01/2011 - 13:23:20 - [48164171] ----D- C:\ProgramData\Hewlett-Packard
                O43 - CFD: 14/01/2010 - 14:18:04 - [0] -SH-D- C:\ProgramData\Menu Démarrer
                O43 - CFD: 16/02/2011 - 18:27:58 - [219088668] -S--D- C:\ProgramData\Microsoft
                O43 - CFD: 12/01/2011 - 23:03:58 - [57688] ----D- C:\ProgramData\Microsoft Help
                O43 - CFD: 14/01/2010 - 14:18:04 - [0] -SH-D- C:\ProgramData\Modèles
                O43 - CFD: 01/03/2011 - 23:04:38 - [276] ----D- C:\ProgramData\Norton
                O43 - CFD: 19/08/2009 - 14:06:54 - [6491999] ----D- C:\ProgramData\NortonInstaller
                O43 - CFD: 14/01/2010 - 18:10:54 - [144] ----D- C:\ProgramData\PC Drivers HeadQuarters
                O43 - CFD: 06/02/2011 - 22:03:22 - [214620] ----D- C:\ProgramData\Recovery
                O43 - CFD: 14/10/2010 - 19:35:36 - [116048] ----D- C:\ProgramData\Skyline
                O43 - CFD: 17/01/2010 - 19:04:10 - [20024424] ----D- C:\ProgramData\Skype
                O43 - CFD: 01/03/2011 - 22:53:56 - [65215561] ----D- C:\ProgramData\Spybot - Search & Destroy
                O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Start Menu
                O43 - CFD: 28/10/2010 - 21:30:44 - [154] ----D- C:\ProgramData\Sun
                O43 - CFD: 01/03/2011 - 23:04:36 - [155] ----D- C:\ProgramData\Symantec
                O43 - CFD: 25/09/2009 - 00:50:20 - [524643] ----D- C:\ProgramData\Temp
                O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Templates
                O43 - CFD: 26/01/2011 - 11:48:18 - [832] ----D- C:\ProgramData\Trymedia
                O43 - CFD: 16/10/2010 - 20:15:58 - [2965536781] ----D- C:\ProgramData\WildTangent
                O43 - CFD: 20/01/2010 - 10:46:26 - [5686989] ----D- C:\Users\Céline\AppData\Roaming\Adobe
                O43 - CFD: 19/01/2010 - 09:48:16 - [2288] ----D- C:\Users\Céline\AppData\Roaming\ArcSoft
                O43 - CFD: 02/02/2011 - 00:13:20 - [14421] ----D- C:\Users\Céline\AppData\Roaming\Blender Foundation
                O43 - CFD: 08/02/2011 - 10:23:28 - [0] ----D- C:\Users\Céline\AppData\Roaming\Canon
                O43 - CFD: 16/10/2010 - 07:29:30 - [0] ----D- C:\Users\Céline\AppData\Roaming\ClickPotatoLite
                O43 - CFD: 13/01/2011 - 12:03:32 - [119343] ----D- C:\Users\Céline\AppData\Roaming\CyberLink
                O43 - CFD: 23/11/2010 - 10:43:48 - [155648] ----D- C:\Users\Céline\AppData\Roaming\DivX
                O43 - CFD: 18/11/2010 - 00:16:40 - [199] ----D- C:\Users\Céline\AppData\Roaming\dvdcss
                O43 - CFD: 16/10/2010 - 07:28:00 - [37289] ----D- C:\Users\Céline\AppData\Roaming\FissaSearch
                O43 - CFD: 21/04/2010 - 22:09:32 - [608] ----D- C:\Users\Céline\AppData\Roaming\Google
                O43 - CFD: 29/01/2010 - 18:
                0
                1. ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
                  O44 - LFC:[MD5.97A11F4013AF127BC468DCF3A7A26E93] - 01/03/2011 - 23:57:07 --HA- . (...) -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [23248]
                  O44 - LFC:[MD5.97A11F4013AF127BC468DCF3A7A26E93] - 01/03/2011 - 23:57:07 --HA- . (...) -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [23248]
                  O44 - LFC:[MD5.0B000000000000000000000038EE1800] - 01/03/2011 - 23:50:10 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1904573]
                  O44 - LFC:[MD5.D74E3C688AA4F552EB9F55CB8EA67170] - 01/03/2011 - 23:46:21 ---A- . (...) -- C:\Windows\setupact.log [56]
                  O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 01/03/2011 - 23:46:21 ---A- . (...) -- C:\Windows\setuperr.log [0]
                  O44 - LFC:[MD5.83222CDFCCACD77E2CC4C57F6AAB3422] - 01/03/2011 - 23:46:19 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
                  O44 - LFC:[MD5.E053F282541CC5E62E2416C68B2F6167] - 24/02/2011 - 23:29:22 ---A- . (...) -- C:\Windows\SysNative\FNTCACHE.DAT [381832]
                  O44 - LFC:[MD5.158D85C26868E8A9903A726CE145F66B] - 11/02/2011 - 22:16:49 ---A- . (.Adobe Systems - Windows NT OpenType/Type 1 API Library..) -- C:\Windows\SysNative\atmlib.dll [46080]
                  O44 - LFC:[MD5.158D85C26868E8A9903A726CE145F66B] - 11/02/2011 - 22:16:49 ---A- . (.Adobe Systems - Windows NT OpenType/Type 1 API Library..) -- C:\Windows\System32\atmlib.dll [34304]
                  O44 - LFC:[MD5.BF973CEDCD012D23F194BBF0A9B218E6] - 11/02/2011 - 22:16:49 ---A- . (.Adobe Systems Incorporated - Windows NT OpenType/Type 1 Font Driver.) -- C:\Windows\SysNative\atmfd.dll [366080]
                  O44 - LFC:[MD5.BF973CEDCD012D23F194BBF0A9B218E6] - 11/02/2011 - 22:16:49 ---A- . (.Adobe Systems Incorporated - Windows NT OpenType/Type 1 Font Driver.) -- C:\Windows\System32\atmfd.dll [294400]

                  ---\\ Déni du service (Local Security Authority) (O48)
                  O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
                  O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l'Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll
                  O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll

                  ---\\ Trojan Driver Search Data (HKLM) (O52)
                  O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
                  O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm

                  ---\\ Microsoft Control Security Providers (O54)
                  O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll
                  O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll

                  ---\\ Microsoft Windows Policies System (O55)
                  O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5
                  O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
                  O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
                  O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
                  O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
                  O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
                  O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
                  O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
                  O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
                  O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
                  O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=
                  O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=
                  O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
                  O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
                  O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
                  O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
                  O55 - MWPS:[HKLM\...\Policies\System] - "HideFastUserSwitching"=0
                  O55 - MWPS:[HKCU\...\Policies\System] - "WallpaperStyle"=2
                  O55 - MWPS:[HKCU\...\Policies\System] - "DisableLockWorkstation"=0
                  O55 - MWPS:[HKCU\...\Policies\System] - "DisableTaskMgr"=0
                  O55 - MWPS:[HKCU\...\Policies\System] - "DisableChangePassword"=0

                  ---\\ Microsoft Windows Policies Explorer (O56)
                  O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1
                  O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
                  O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0

                  ---\\ Liste des Drivers Système (O58)
                  O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\system32\drivers\adp94xx.sys [491088]
                  O58 - SDL:[MD5.597F78224EE9224EA1A13D6350CED962] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\system32\drivers\adpahci.sys [339536]
                  O58 - SDL:[MD5.E109549C90F62FB570B9540C4B148E54] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\system32\drivers\adpu320.sys [182864]
                  O58 - SDL:[MD5.98022774D9930ECBB292E70DB7601DF6] - 10/06/2009 - 22:01:06 ---A- . (.LSI Corp - SoftModem Device Driver.) -- C:\Windows\system32\drivers\agrsm64.sys [1146880]
                  O58 - SDL:[MD5.5812713A477A3AD7363C7438CA2EE038] - 14/07/2009 - 02:52:21 ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\system32\drivers\aliide.sys [15440]
                  O58 - SDL:[MD5.7A4B413614C055935567CF88A9734D38] - 14/07/2009 - 02:52:21 ---A- . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\system32\drivers\amdsata.sys [106576]
                  O58 - SDL:[MD5.F67F933E79241ED32FF46A4F29B5120B] - 14/07/2009 - 02:52:20 ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows -.) -- C:\Windows\system32\drivers\amdsbs.sys [194128]
                  O58 - SDL:[MD5.B4AD0CACBAB298671DD6F6EF7E20679D] - 14/07/2009 - 02:52:21 ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\system32\drivers\amdxata.sys [28752]
                  O58 - SDL:[MD5.C484F8CEB1717C540242531DB7845C4E] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\system32\drivers\arc.sys [87632]
                  O58 - SDL:[MD5.019AF6924AEFE7839F61C830227FE79C] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\system32\drivers\arcsas.sys [97856]
                  O58 - SDL:[MD5.5BAB6D80435F9DFF95A7E86C69110B32] - 25/11/2009 - 00:50:05 ---A- . (.ALWIL Software - avast! File System Access Blocking Driver.) -- C:\Windows\system32\drivers\aswFsBlk.sys [22096]
                  O58 - SDL:[MD5.6067EC1C153F07A9E8E76B45DF4D9F8D] - 25/11/2009 - 00:49:56 ---A- . (.ALWIL Software - avast! File System Minifilter for Windows 2003/Vista.) -- C:\Windows\system32\drivers\aswMonFlt.sys [65616]
                  O58 - SDL:[MD5.E4928B11D24FC5490C92ED74ECD922D0] - 25/11/2009 - 00:49:00 ---A- . (.ALWIL Software - avast! TDI RDR Driver.) -- C:\Windows\system32\drivers\aswRdr.sys [27216]
                  O58 - SDL:[MD5.C6C9A87DD1BA5815082CD900EBE0BFB1] - 25/11/2009 - 00:50:25 ---A- . (.ALWIL Software - avast! self protection module.) -- C:\Windows\system32\drivers\aswSP.sys [89680]
                  O58 - SDL:[MD5.D6CD3F4C869ADF746C87B7188743664F] - 25/11/2009 - 00:49:10 ---A- . (.ALWIL Software - avast! TDI Filter Driver.) -- C:\Windows\system32\drivers\aswTdi.sys [53840]
                  O58 - SDL:[MD5.38562A6A9CB10844759EAF2B01A7FCD3] - 22/09/2009 - 02:47:14 ---A- . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driver.) -- C:\Windows\system32\drivers\athrx.sys [1484800]
                  O58 - SDL:[MD5.B5ACE6968304A3900EEB1EBFD9622DF2] - 10/06/2009 - 21:34:23 ---A- . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver..) -- C:\Windows\system32\drivers\b57nd60a.sys [270848]
                  O58 - SDL:[MD5.F09EEE9EDC320B5E1501F749FDE686C8] - 10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\system32\drivers\BrFiltLo.sys [18432]
                  O58 - SDL:[MD5.B114D3098E9BDB8BEA8B053685831BE6] - 10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\system32\drivers\BrFiltUp.sys [8704]
                  O58 - SDL:[MD5.43BEA8D483BF1870F018E2D02E06A5BD] - 14/07/2009 - 02:19:07 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\system32\drivers\BrSerId.sys [286720]
                  O58 - SDL:[MD5.A6ECA2151B08A09CACECA35C07F05B42] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\system32\drivers\BrSerWdm.sys [47104]
                  O58 - SDL:[MD5.B79968002C277E869CF38BD22CD61524] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\system32\drivers\BrUsbMdm.sys [14976]
                  O58 - SDL:[MD5.A87528880231C54E75EA7A44943B38BF] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\system32\drivers\BrUsbSer.sys [14720]
                  O58 - SDL:[MD5.3E5B191307609F7514148C6832BB0842] - 10/06/2009 - 21:34:28 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\system32\drivers\bxvbda.sys [468480]
                  O58 - SDL:[MD5.E19D3F095812725D88F9001985B94EDD] - 14/07/2009 - 02:52:31 ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\cmdide.sys [17488]
                  O58 - SDL:[MD5.0E5DA5369A0FCAEA12456DD852545184] - 14/07/2009 - 02:47:48 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\system32\drivers\elxstor.sys [530496]
                  O58 - SDL:[MD5.DC5D737F51BE844D8C82C695EB17372F] - 10/06/2009 - 21:34:33 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\system32\drivers\evbda.sys [3286016]
                  O58 - SDL:[MD5.F2523EF6460FC42405B12248338AB2F0] - 10/06/2009 - 21:31:59 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\system32\drivers\hcw85cir.sys [31232]
                  O58 - SDL:[MD5.9AF482D058BE59CC28BCE52E7C4B747C] - 29/04/2009 - 07:48:32 ---A- . (.Hewlett-Packard Development Company, L.P. - HpqKbFiltr Keyboard Filter Driver.) -- C:\Windows\system32\drivers\HpqKbFiltr.sys [18432]
                  O58 - SDL:[MD5.0886D440058F203EBA0E1825E4355914] - 14/07/2009 - 02:47:48 ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\system32\drivers\HpSAMD.sys [77888]
                  O58 - SDL:[MD5.D83EFB6FD45DF9D55E9A1AFC63640D50] - 14/07/2009 - 02:48:04 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\system32\drivers\iaStorV.sys [410688]
                  O58 - SDL:[MD5.677AA5991026A65ADA128C4B59CF2BAD] - 25/08/2010 - 19:36:04 ---A- . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\system32\drivers\igdkmd64.sys [10611552]
                  O58 - SDL:[MD5.5C18831C61933628F5BB0EA2675B9D21] - 14/07/2009 - 02:48:04 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\system32\drivers\iirsp.sys [44112]
                  O58 - SDL:[MD5.D485D3BD3E2179AA86853A182F70699F] - 26/05/2009 - 13:13:10 ---A- . (.Intel(R) Corporation - Intel(R) High Definition Audio HDMI.) -- C:\Windows\system32\drivers\IntcHdmi.sys [138752]
                  O58 - SDL:[MD5.1A93E54EB0ECE102495A51266DCDB6A6] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_fc.sys [114752]
                  O58 - SDL:[MD5.1047184A9FDC8BDBFF857175875EE810] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas.sys [106560]
                  O58 - SDL:[MD5.30F5C0DE1EE8B5BC9306C1F0E4A75F93] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas2.sys [65600]
                  O58 - SDL:[MD5.0504EACAFF0D3C8AED161C4B0D369D4A] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_scsi.sys [115776]
                  O58 - SDL:[MD5.A55805F747C6EDB6A9080D7C633BD0F4] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for.) -- C:\Windows\system32\drivers\megasas.sys [35392]
                  O58 - SDL:[MD5.BAF74CE0072480C3B6B7C13B2A94D6B3] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\system32\drivers\MegaSR.sys [284736]
                  O58 - SDL:[MD5.64428DFDAF6E88366CB51F45A79C5F69] - 10/06/2009 - 21:35:28 ---A- . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\system32\drivers\netw5v64.sys [5434368]
                  O58 - SDL:[MD5.77889813BE4D166CDAB78DDBA990DA92] - 14/07/2009 - 02:48:26 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\system32\drivers\nfrd960.sys [51264]
                  O58 - SDL:[MD5.3E38712941E9BB4DDBEE00AFFE3FED3D] - 14/07/2009 - 02:48:27 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\system32\drivers\nvraid.sys [149056]
                  O58 - SDL:[MD5.477DC4D6DEB99BE37084C9AC6D013DA1] - 14/07/2009 - 02:45:45 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\system32\drivers\nvstor.sys [167488]
                  O58 - SDL:[MD5.A53A15A11EBFD21077463EE2C7AFEEF0] - 14/07/2009 - 02:45:46 ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\system32\drivers\ql2300.sys [1524816]
                  O58 - SDL:[MD5.4F6D12B51DE1AAEFF7DC58C4D75423C8] - 14/07/2009 - 02:45:45 ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\system32\drivers\ql40xx.sys [128592]
                  O58 - SDL:[MD5.ABCB5A38A0D85BDF69B7877E1AD1EED5] - 01/03/2009 - 23:05:32 ---A- . (.Realtek Corporation - Realtek 8101E/8168/8169 NDIS 6.20 64-bit Driver.) -- C:\Windows\system32\drivers\Rt64win7.sys [187392]
                  O58 - SDL:[MD5.A5DF2F732A6C95554E548FCB6932BD31] - 24/06/2009 - 20:00:18 ---A- . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/Vista/Win7.) -- C:\Windows\system32\drivers\RtsUStor.sys [216576]
                  O58 - SDL:[MD5.3EA8A16169C26AFBEB544E0E48421186] - 10/06/2009 - 21:37:19 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\system32\drivers\secdrv.sys [23040]
                  O58 - SDL:[MD5.843CAF1E5FDE1FFD5FF768F23A51E2E1] - 14/07/2009 - 02:45:45 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\system32\drivers\sisraid2.sys [43584]
                  O58 - SDL:[MD5.6A6C106D42E9FFFF8B9FCB4F754F6DA4] - 14/07/2009 - 02:45:46 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\system32\drivers\sisraid4.sys [80464]
                  O58 - SDL:[MD5.F3817967ED533D08327DC73BC4D5542A] - 14/07/2009 - 02:45:55 ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\system32\drivers\stexstor.sys [24656]
                  O58 - SDL:[MD5.DFFBC024DFC7BB05B2129E05CBC7A201] - 23/03/2010 - 13:53:06 ---A- . (.IDT, Inc. - IDT PC Audio.) -- C:\Windows\system32\drivers\stwrt64.sys [505344]
                  O58 - SDL:[MD5.3A706A967295E16511E40842B1A2761D] - 27/05/2010 - 21:32:56 ---A- . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\system32\drivers\SynTP.sys [320560]
                  O58 - SDL:[MD5.E5689D93FFE4E5D66C0178761240DD54] - 14/07/2009 - 02:45:55 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\viaide.sys [17488]
                  O58 - SDL:[MD5.5E2016EA6EBACA03C04FEAC5F330D997] - 14/07/2009 - 02:45:55 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\system32\drivers\vsmraid.sys [161872]
                  O58 - SDL:[MD5.0C4540311E11664B245A263E1154CEF8] - 10/06/2009 - 22:01:11 ---A- . (.Conexant Systems, Inc. - HSF_HWAZL WDM driver.) -- C:\Windows\system32\drivers\VSTAZL6.SYS [292864]
                  O58 - SDL:[MD5.18E40C245DBFAF36FD0134A7EF2DF396] - 10/06/2009 - 22:01:11 ---A- . (.Conexant Systems, Inc. - HSF_CNXT driver.) -- C:\Windows\system32\drivers\VSTCNXT6.SYS [740864]
                  O58 - SDL:[MD5.02071D207A9858FBE3A48CBFD59C4A04] - 10/06/2009 - 22:01:11 ---A- . (.Conexant Systems, Inc. - HSF_DP driver.) -- C:\Windows\system32\drivers\VSTDPV6.SYS [1485312]
                  O58 - SDL:[MD5.B3EEACF62445E24FBB2CD4B0FB4DB026] - 10/06/2009 - 21:35:33 ---A- . (.Marvell - Miniport Driver for Marvell Yukon Ethernet Controller..) -- C:\Windows\system32\drivers\yk62x64.sys [389120]

                  ---\\ Liste des outils de nettoyage (O63)
                  O63 - Logiciel: ZHPDiag 1.27 - (.Nicolas Coolman.) [HKLM][64Bits] -- ZHPDiag_is1

                  ---\\ Liste des services Legacy (O64)
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\adp94xx.sys - adp94xx (adp94xx) .(.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) - LEGACY_ADP94XX
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\adpahci.sys - adpahci (adpahci) .(.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) - LEGACY_ADPAHCI
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\adpu320.sys - adpu320 (adpu320) .(.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) - LEGACY_ADPU320
                  O64 - Services: CurCS - C:\Windows\system32\drivers\afd.sys (AFD) .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\aliide.sys - aliide (aliide) .(.Acer Laboratories Inc. - ALi mini IDE Driver.) - LEGACY_ALIIDE
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\amdide.sys - amdide (amdide) .(.Microsoft Corporation - Pilote IDE AMD.) - LEGACY_AMDIDE
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\amdsata.sys - amdsata (amdsata) .(.Advanced Micro Devices - AHCI 1.2 Device Driver.) - LEGACY_AMDSATA
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\amdsbs.sys - amdsbs (amdsbs) .(.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) - LEGACY_AMDSBS
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\arc.sys - arc (arc) .(.Adaptec, Inc. - Adaptec RAID Storport Driver.) - LEGACY_ARC
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\arcsas.sys - Pilote miniport de boîte de réception Windows Adaptec SAS/SATA-II RAID (arcsas) .(.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) - LEGACY_ARCSAS
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\aswFsBlk.sys - aswFsBlk (aswFsBlk) .(.ALWIL Software - avast! File System Access Blocking Driver.) - LEGACY_ASWFSBLK
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\aswMonFlt.sys - aswMonFlt (aswMonFlt) .(.ALWIL Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT
                  O64 - Services: CurCS - C:\Windows\system32\Drivers\ASWRDR.sys - (.not file.) - aswRdr (aswRdr) .(...) - LEGACY_ASWRDR
                  O64 - Services: CurCS - C:\Windows\system32\Drivers\ASWSP.sys - (.not file.) - avast! Self Protection (aswSP) .(...) - LEGACY_ASWSP
                  O64 - Services: CurCS - C:\Windows\system32\Drivers\ASWTDI.sys - (.not file.) - avast! Network Shield Support (aswTdi) .(...) - LEGACY_ASWTDI
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\atapi.sys - IDE Channel (atapi) .(.Microsoft Corporation - ATAPI IDE Miniport Driver.) - LEGACY_ATAPI
                  O64 - Services: CurCS - C:\Windows\system32\Drivers\BEEP.sys - (.not file.) - Beep (Beep) .(...) - LEGACY_BEEP
                  O64 - Services: CurCS - C:\Windows\system32\browser.dll (bowser) .(.Microsoft Corporation - DLL du service Explorateur d'ordinateurs.) - LEGACY_BOWSER
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\cdfs.sys - CD/DVD File System Reader (cdfs) .(.Microsoft Corporation - CD-ROM File System Driver.) - LEGACY_CDFS
                  O64 - Services: CurCS - C:\Windows\system32\clfs.sys (CLFS) .(.Microsoft Corporation - Common Log File System Driver.) - LEGACY_CLFS
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\cmdide.sys - cmdide (cmdide) .(.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) - LEGACY_CMDIDE
                  O64 - Services: CurCS - C:\Windows\System32\Drivers\cng.sys - CNG (CNG) .(.Microsoft Corporation - Kernel Cryptography, Next Generation.) - LEGACY_CNG
                  O64 - Services: CurCS - C:\Windows\system32\drivers\dfsc.sys (DfsC) .(.Microsoft Corporation - DFS Namespace Client Driver.) - LEGACY_DFSC
                  O64 - Services: CurCS - C:\Windows\system32\drivers\discache.sys (discache) .(.Microsoft Corporation - System Indexer/Cache Driver.) - LEGACY_DISCACHE
                  O64 - Services: CurCS - C:\Windows\system32\drivers\dxgkrnl.sys - LDDM Graphics Subsystem (DXGKrnl) .(.Microsoft Corporation - DirectX Graphics Kernel.) - LEGACY_DXGKRNL
                  O64 - Services: CurCS - (.not file.) - Symantec Eraser Control driver (eeCtrl) .(...) - LEGACY_EECTRL
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\elxstor.sys - elxstor (elxstor) .(.Emulex - Storport Miniport Driver for LightPulse HBA.) - LEGACY_ELXSTOR
                  O64 - Services: CurCS - C:\Windows\system32\Drivers\FASTFAT.sys - (.not file.) - FAT12/16/32 File System Driver (fastfat) .(...) - LEGACY_FASTFAT
                  O64 - Services: CurCS - C:\Windows\system32\drivers\fileinfo.sys (FileInfo) .(.Microsoft Corporation - FileInfo Filter Driver.) - LEGACY_FILEINFO
                  O64 - Services: CurCS - C:\Windows\system32\drivers\fltmgr.sys (FltMgr) .(.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) - LEGACY_FLTMGR
                  O64 - Services: CurCS - C:\Windows\system32\Drivers\FS_REC.sys - Fs_Rec (Fs_Rec) .(...) - LEGACY_FS_REC
                  O64 - Services: CurCS - C:\Windows\system32\drivers\fvevol.sys (fvevol) .(.Microsoft Corporation - BitLocker Drive Encryption Driver.) - LEGACY_FVEVOL
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\HpSAMD.sys - HpSAMD (HpSAMD) .(.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) - LEGACY_HPSAMD
                  O64 - Services: CurCS - C:\Windows\system32\drivers\http.sys (HTTP) .(.Microsoft Corporation - HTTP Pile du protocole.) - LEGACY_HTTP
                  O64 - Services: CurCS - C:\Windows\system32\drivers\hwpolicy.sys (hwpolicy) .(.Microsoft Corporation - Hardware Policy Driver.) - LEGACY_HWPOLICY
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\iaStorV.sys - Contrôleur RAID Intel Windows 7 (iaStorV) .(.Intel Corporation - Intel Matrix Storage Manager driver - x64.) - LEGACY_IASTORV
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\iirsp.sys - iirsp (iirsp) .(.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) - LEGACY_IIRSP
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\intelide.sys - intelide (intelide) .(.Microsoft Corporation - Intel PCI IDE Driver.) - LEGACY_INTELIDE
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\isapnp.sys - isapnp (isapnp) .(.Microsoft Corporation - Pilote de bus PNP ISA.) - LEGACY_ISAPNP
                  O64 - Services: CurCS - C:\Windows\System32\Drivers\ksecdd.sys - KSecDD (KSecDD) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECDD
                  O64 - Services: CurCS - C:\Windows\System32\Drivers\ksecpkg.sys - KSecPkg (KSecPkg) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECPKG
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\lltdio.sys - Link-Layer Topology Discovery Mapper I/O Driver (lltdio) .(.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) - LEGACY_LLTDIO
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\lsi_fc.sys - LSI_FC (LSI_FC) .(.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) - LEGACY_LSI_FC
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\lsi_sas.sys - LSI_SAS (LSI_SAS) .(.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) - LEGACY_LSI_SAS
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\lsi_sas2.sys - LSI_SAS2 (LSI_SAS2) .(.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) - LEGACY_LSI_SAS2
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\lsi_scsi.sys - LSI_SCSI (LSI_SCSI) .(.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) - LEGACY_LSI_SCSI
                  O64 - Services: CurCS - C:\Windows\system32\drivers\luafv.sys (luafv) .(.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) - LEGACY_LUAFV
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\megasas.sys - megasas (megasas) .(.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) - LEGACY_MEGASAS
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\MegaSR.sys - MegaSR (MegaSR) .(.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) - LEGACY_MEGASR
                  O64 - Services: CurCS - C:\Windows\system32\drivers\mountmgr.sys (mountmgr) .(.Microsoft Corporation - Gestionnaire des points de montage.) - LEGACY_MOUNTMGR
                  O64 - Services: CurCS - C:\Windows\system32\FirewallAPI.dll (mpsdrv) .(.Microsoft Corporation - API du Pare-feu Windows.) - LEGACY_MPSDRV
                  O64 - Services: CurCS - C:\Windows\system32\webclnt.dll (MRxDAV) .(.Microsoft Corporation - Fichier DLL du service DAV pour le Web.) - LEGACY_MRXDAV
                  O64 - Services: CurCS - C:\Windows\system32\wkssvc.dll (mrxsmb) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB
                  O64 - Services: CurCS - C:\Windows\system32\wkssvc.dll (mrxsmb10) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB10
                  O64 - Services: CurCS - C:\Windows\system32\wkssvc.dll (mrxsmb20) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB20
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\msdsm.sys - Module spécifique de périphériques à chemins d'accès multiples Microsoft (msdsm) .(.Microsoft Corporation - Module spécifique de périphériques Microsof.) - LEGACY_MSDSM
                  O64 - Services: CurCS - C:\Windows\system32\Drivers\MSFS.sys - Msfs (Msfs) .(...) - LEGACY_MSFS
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\msisadrv.sys - msisadrv (msisadrv) .(.Microsoft Corporation - ISA Driver.) - LEGACY_MSISADRV
                  O64 - Services: CurCS - C:\Windows\system32\drivers\mup.sys (Mup) .(.Microsoft Corporation - Multiple UNC Provider Driver.) - LEGACY_MUP
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\nwifi.sys - NativeWiFi Filter (NativeWifiP) .(.Microsoft Corporation - Pilote de miniport WiFi natif.) - LEGACY_NATIVEWIFIP
                  O64 - Services: CurCS - C:\Windows\system32\drivers\ndis.sys (NDIS) .(.Microsoft Corporation - Pilote NDIS 6.20.) - LEGACY_NDIS
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\ndisuio.sys - NDIS Usermode I/O Protocol (Ndisuio) .(.Microsoft Corporation - Pilote d'E/S du mode utilisateur NDIS.) - LEGACY_NDISUIO
                  O64 - Services: CurCS - C:\Windows\system32\Drivers\NDPROXY.sys - NDProxy (NDProxy) .(...) - LEGACY_NDPROXY
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\netbios.sys - NetBIOS Interface (NetBIOS) .(.Microsoft Corporation - NetBIOS interface driver.) - LEGACY_NETBIOS
                  O64 - Services: CurCS - C:\Windows\system32\drivers\netbt.sys (NetBT) .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\nfrd960.sys - nfrd960 (nfrd960) .(.IBM Corporation - IBM ServeRAID Controller Driver.) - LEGACY_NFRD960
                  O64 - Services: CurCS - C:\Windows\system32\Drivers\NPFS.sys - Npfs (Npfs) .(...) - LEGACY_NPFS
                  O64 - Services: CurCS - C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) .(.Microsoft Corporation - NSI Proxy.) - LEGACY_NSIPROXY
                  O64 - Services: CurCS - C:\Windows\system32\Drivers\NTFS.sys - Ntfs (Ntfs) .(...) - LEGACY_NTFS
                  O64 - Services: CurCS - C:\Windows\system32\Drivers\NULL.sys - Null (Null) .(...) - LEGACY_NULL
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\nvraid.sys - nvraid (nvraid) .(.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) - LEGACY_NVRAID
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\nvstor.sys - nvstor (nvstor) .(.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) - LEGACY_NVSTOR
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\pciide.sys - pciide (pciide) .(.Microsoft Corporation - Generic PCI IDE Bus Driver.) - LEGACY_PCIIDE
                  O64 - Services: CurCS - C:\Windows\System32\drivers\pcw.sys - Performance Counters for Windows Driver (pcw) .(.Microsoft Corporation - Performance Counters for Windows Driver.) - LEGACY_PCW
                  O64 - Services: CurCS - C:\Windows\System32\drivers\peauth.sys - PEAUTH (PEAUTH) .(.Microsoft Corporation - Protected Environment Authentication and Au.) - LEGACY_PEAUTH
                  O64 - Services: CurCS - C:\Windows\system32\drivers\pacer.sys (Psched) .(.Microsoft Corporation - Planificateur de paquets QoS.) - LEGACY_PSCHED
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\ql2300.sys - Pilote de miniport QLogic Fibre Channel (ql2300) .(.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) - LEGACY_QL2300
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\ql40xx.sys - Pilote de miniport QLogic iSCSI (ql40xx) .(.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) - LEGACY_QL40XX
                  O64 - Services: CurCS - C:\Windows\system32\wkssvc.dll (rdbss) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_RDBSS
                  O64 - Services: CurCS - C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) .(.Microsoft Corporation - RDP Miniport.) - LEGACY_RDPCDD
                  O64 - Services: CurCS - C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) .(.Microsoft Corporation - RDP Encoder Miniport.) - LEGACY_RDPENCDD
                  O64 - Services: CurCS - C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) .(.Microsoft Corporation - RDP Reflector Driver Miniport.) - LEGACY_RDPREFMP
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\rspndr.sys - Link-Layer Topology Discovery Responder (rspndr) .(.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) - LEGACY_RSPNDR
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\sbp2port.sys - Pilote de bus de transport/protocole SBP-2 (sbp2port) .(.Microsoft Corporation - SBP-2 Protocol Driver.) - LEGACY_SBP2PORT
                  O64 - Services: CurCS - C:\Windows\system32\Drivers\SECDRV.sys - (.not file.) - Security Driver (secdrv) .(...) - LEGACY_SECDRV
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\SiSRaid2.sys - SiSRaid2 (SiSRaid2) .(.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) - LEGACY_SISRAID2
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\sisraid4.sys - SiSRaid4 (SiSRaid4) .(.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) - LEGACY_SISRAID4
                  O64 - Services: CurCS - C:\Windows\system32\Drivers\SPLDR.sys - (.not file.) - Security Processor Loader Driver (spldr) .(...) - LEGACY_SPLDR
                  O64 - Services: CurCS - C:\Windows\system32\srvsvc.dll (srv) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV
                  O64 - Services: CurCS - C:\Windows\system32\srvsvc.dll (srv2) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV2
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\srvnet.sys - srvnet (srvnet) .(.Microsoft Corporation - Server Network driver.) - LEGACY_SRVNET
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\stexstor.sys - stexstor (stexstor) .(.Promise Technology - Promise SuperTrak EX Series Driver for Win.) - LEGACY_STEXSTOR
                  O64 - Services: CurCS - C:\Windows\system32\tcpipcfg.dll (Tcpip) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TCPIP
                  O64 - Services: CurCS - C:\Windows\System32\drivers\tcpipreg.sys - TCP/IP Registry Compatibility (tcpipreg) .(.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) - LEGACY_TCPIPREG
                  O64 - Services: CurCS - C:\Windows\system32\tcpipcfg.dll (tdx) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TDX
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\udfs.sys - udfs (udfs) .(.Microsoft Corporation - UDF File System Driver.) - LEGACY_UDFS
                  O64 - Services: CurCS - C:\Windows\system32\drivers\vga.sys - VgaSave (VgaSave) .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\viaide.sys - viaide (viaide) .(.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) - LEGACY_VIAIDE
                  O64 - Services: CurCS - C:\Windows\system32\drivers\volmgrx.sys (volmgrx) .(.Microsoft Corporation - Pilote d'extension du gestionnaire de volum.) - LEGACY_VOLMGRX
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\volsnap.sys - Volumes de stockage (volsnap) .(.Microsoft Corporation - Pilote de cliché instantané du volume.) - LEGACY_VOLSNAP
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\vsmraid.sys - vsmraid (vsmraid) .(.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) - LEGACY_VSMRAID
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\vwififlt.sys - Virtual WiFi Filter Driver (vwififlt) .(.Microsoft Corporation - Virtual WiFi Filter Driver.) - LEGACY_VWIFIFLT
                  O64 - Services: CurCS - C:\Windows\system32\rascfg.dll (Wanarpv6) .(.Microsoft Corporation - Objets de configuration RAS.) - LEGACY_WANARPV6
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\wd.sys - Pilote du Minuteur de surveillance Microsoft (Wd) .(.Microsoft Corporation - Microsoft Watchdog Timer Driver.) - LEGACY_WD
                  O64 - Services: CurCS - C:\Windows\System32\drivers\Wdf01000.sys - Kernel Mode Driver Frameworks service (Wdf01000) .(.Microsoft Corporation - Runtime de l'infrastructure de pilotes en m.) - LEGACY_WDF01000
                  O64 - Services: CurCS - C:\Windows\System32\DRIVERS\wfplwf.sys - WFP Lightweight Filter (WfpLwf) .(.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - LEGACY_WFPLWF
                  O64 - Services: CurCS - C:\Windows\System32\drivers\wimmount.sys - WIMMount (WIMMount) .(.Microsoft Corporation - Wim file system Driver.) - LEGACY_WIMMOUNT
                  O64 - Services: CurCS - C:\Windows\System32\drivers\WudfPf.sys - User Mode Driver Frameworks Platform Driver (WudfPf) .(.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) - LEGACY_WUDFPF

                  ---\\ File Associations Shell Spawning (O67)
                  O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] "%1" %* (.not file.)
                  O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
                  O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] "%1" %* (.not file.)
                  O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] "%1" %* (.not file.)
                  O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] "%1" %* (.not file.)
                  O67 - Shell Spawning: <.html> <htmlfile>[HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
                  O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
                  O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
                  O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
                  O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] "%1" %* (.not file.)
                  O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
                  O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] "%1" %* (.not file.)
                  O67 - Shell Spawning: <.com> <comfile>[HKCR\..\open\Command] "%1" %* (.not file.)
                  O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] "%1" %* (.not file.)
                  O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCR\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
                  O67 - Shell Spawning: <.js> <JSFile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
                  O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe

                  ---\\ Start Menu Internet (O68)
                  O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
                  O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe

                  ---\\ Search Browser Infection (O69)
                  O69 - SBI: SearchScopes [HKCU] {56FE2731-5995-410E-A077-2A2774529F93} - (Kelkoo) - http://fr.kelkoopartners.net
                  O69 - SBI: SearchScopes [HKCU] {5F5D59D2-5CD3-47DB-8AF9-484104C05C9D} - (Yahoo!) - https://fr.search.yahoo.com/
                  O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} [DefaultScope] - (Google) - https://www.google.com/?gws_rd=ssl
                  O69 - SBI: SearchScopes [HKCU] {74920F74-6634-43F0-A3B6-F3704F8909EF} - (AOL Recherche) - http://slirsredirect.search.aol.com
                  O69 - SBI: SearchScopes [HKCU] {A0226662-1428-4C02-A1CD-E0A8EAA6CB16} - (Yahoo! Search) - https://fr.search.yahoo.com/
                  O69 - SBI: SearchScopes [HKCU] {b41306c6-96d0-442a-bcc4-b0f621e82ce9} - (Fissa) - https://fissa.com/

                  ---\\ Firewall Active Exception List (FirewallRules) (O87)
                  O87 - FAEL: "MCX-McrMgr-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Media Center Extender Manager.) -- C:\Windows\ehome\mcrmgr.exe
                  O87 - FAEL: "MCX-Prov-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - MCX2 Provisioning library.) -- C:\Windows\ehome\mcx2prov.exe
                  O87 - FAEL: "NetPres-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
                  O87 - FAEL: "NetPres-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
                  O87 - FAEL: "NetPres-WSD-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
                  O87 - FAEL: "NetPres-WSD-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
                  O87 - FAEL: "NetPres-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
                  O87 - FAEL: "NetPres-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
                  O87 - FAEL: "RemoteSvcAdmin-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\services.exe (.not file.)
                  O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\services.exe (.not file.)
                  O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" |Out - Domain - P6 - TRUE | .(...) -- C:\Windows\system32\lsass.exe (.not file.)
                  O87 - FAEL: "FPS-SpoolSvc-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\spoolsv.exe (.not file.)
                  O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\spoolsv.exe (.not file.)
                  O87 - FAEL: "TCP Query User{7FD6319B-E5E1-4F71-9862-91BF5F166599}C:\windows\system32\mmc.exe" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Microsoft Management Console.) -- C:\windows\system32\mmc.exe
                  O87 - FAEL: "UDP Query User{4012A078-E99D-4343-A29D-9A599C03DE5A}C:\windows\system32\mmc.exe" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Microsoft Management Console.) -- C:\windows\system32\mmc.exe
                  O87 - FAEL: "TCP Query User{C046A360-4CBC-450B-A9C3-CA09557676F6}C:\program files (x86)\internet explorer\iexplore.exe" | In - Private - P6 - TRUE | .(.Microsoft Corporation.) -- C:\program files (x86)\internet explorer\iexplore.exe
                  O87 - FAEL: "UDP Query User{9ED5FC7F-E2F5-4BA5-895C-8DCBE178135F}C:\program files (x86)\internet explorer\iexplore.exe" | In - Private - P17 - TRUE | .(.Microsoft Corporation.) -- C:\program files (x86)\internet explorer\iexplore.exe
                  O87 - FAEL: "TCP Query User{19820BEE-F9A5-4CEF-9E49-5820AC80B204}C:\program files (x86)\windows live\messenger\msnmsgr.exe" | In - Private - P6 - TRUE | .(.Microsoft Corporation.) -- C:\program files (x86)\windows live\messenger\msnmsgr.exe
                  O87 - FAEL: "UDP Query User{12EC75D6-ABBC-43CA-B323-73CBB591B4A8}C:\program files (x86)\windows live\messenger\msnmsgr.exe" | In - Private - P17 - TRUE | .(.Microsoft Corporation.) -- C:\program files (x86)\windows live\messenger\msnmsgr.exe
                  O87 - FAEL: "TCP Query User{7991B995-D295-4C55-B0FE-94A196CD001C}C:\program files (x86)\windows live\contacts\wlcomm.exe" | In - Private - P6 - TRUE | .(.Microsoft Corporation.) -- C:\program files (x86)\windows live\contacts\wlcomm.exe
                  O87 - FAEL: "UDP Query User{6EB31C96-C8AF-4279-AAF1-F1E4305BE10C}C:\program files (x86)\windows live\contacts\wlcomm.exe" | In - Private - P17 - TRUE | .(.Microsoft Corporation.) -- C:\program files (x86)\windows live\contacts\wlcomm.exe

                  ---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
                  SR - | Auto 02/03/2009 89600 | (AESTFilters) . (.Andrea Electronics Corporation.) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe
                  SR - | Auto 22/10/2010 386560 | (Application Updater) . (.Spigot, Inc..) - C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe
                  SR - | Auto 25/11/2009 18752 | (aswUpdSv) . (.ALWIL Software.) - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
                  SR - | Auto 25/11/2009 138680 | (avast! Antivirus) . (.ALWIL Software.) - C:\Program Files\Alwil Software\Avast4\ashServ.exe
                  SR - | Demand 25/11/2009 254040 | (avast! Mail Scanner) . (.ALWIL Software.) - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
                  SR - | Demand 25/11/2009 352920 | (avast! Web Scanner) . (.ALWIL Software.) - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
                  SS - | Auto 30/09/2005 96341 | (CCALib8) . (.Canon Inc..) - C:\Program Files (x86)\Canon\CAL\CALMAIN.exe
                  SR - | Demand 12/01/2010 227896 | (Com4QLBEx) . (.Hewlett-Packard Development Company, L.P..) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
                  SS - | Demand 30/09/2010 246520 | (GameConsoleService) . (.WildTangent, Inc..) - C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe
                  SS - | Auto 14/01/2010 135664 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
                  SS - | Demand 14/01/2010 182768 | (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
                  SR - | Auto 15/11/2010 126520 | (HP Health Check Service) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
                  SR - | Auto 14/10/2010 92216 | (HPDrvMntSvc.exe) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
                  SR - | Demand 14/10/2010 751672 | (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
                  SR - | Auto 17/06/2009 73728 | (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
                  SR - | Auto 21/01/2009 247152 | (RichVideo) . (.Pas de propriétaire.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
                  SR - | Auto 26/01/2009 1153368 | (SBSDWSCService) . (.Safer Networking Ltd..) - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
                  SR - | Auto 23/03/2010 247808 | (STacSV) . (.IDT, Inc..) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\STacSV64.exe
                  SR - | Auto 14/07/2009 20992 | C:\Windows\system32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\system32\svchost.exe

                  ---\\ Recherche Master Boot Record Infection (MBR)(O80)
                  Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.1 by Gmer, http://www.gmer.net
                  Run by Céline at 02/03/2011 00:30:20

                  device: opened successfully
                  user: error reading MBR

                  Disk trace:
                  error: Read Descripteur non valide
                  kernel: error reading MBR

                  ---\\ Recherche Master Boot Record Infection (MBRCheck)(O80)
                  Written by ad13, http://ad13.geekstog
                  Run by Céline at 02/03/2011 00:30:20
                  Use the desktop link 'MBRCheck' to have full report
                  Dump file Name : C:\PhysicalDisk0_MBR.bin

                  ---\\ Infection BT - BHO/Toolbar (Possible)
                  [MD5.2D5966E168AD595193F4A1C4DD76B20E] - (.Spigot, Inc. - Search Settings.) -- C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe [524288]
                  O4 - HKLM\..\Wow6432Node\Run: [SearchSettings] . (.Spigot, Inc. - Search Settings.) -- C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe
                  [HKCU\Software\AppDataLow\Software\Search Settings]

                  End of the scan (1046 lines in 02mn 05s)(0)
                  0
                  1. Vu la fin du rapport ça n'a pas l'air de sentir bon !!!
                    0
                    1. Contributeur sécurité
                      bonjour

                      2011N2 a raison

                      fais ceci stp

                      1)

                      * Télécharge de AD-Remover sur ton Bureau. (Merci à C_XX)
                      http://www.teamxscript.org/adremoverTelechargement.html

                      /!\ Déconnecte-toi d'internet et ferme toutes applications en cours /!\

                      Désactive provisoirement et seulement le temps de l'utilisation de ADremover, la protection en temps réel de ton Antivirus et de tes Antispywares, qui peuvent gêner fortement la procédure de recherche et de nettoyage de l'outil.

                      - Double-clique sur l'icône Ad-remover située sur ton Bureau.
                      - Sur la page, clique sur le bouton « NETTOYER »
                      - Confirme lancement du scan
                      - Laisse travailler l'outil.
                      - Poste le rapport qui apparaît à la fin.

                      (Le rapport est sauvegardé aussi sous C:\Ad-report(Scan/clean).Txt)

                      (CTRL+A pour tout sélectionner, CTRL+C pour copier et CTRL+V pour coller)
                      ___________

                      2)

                      Téléchargez MalwareByte's Anti-Malware (que tu pourras garder ensuite)

                      https://www.commentcamarche.net/telecharger/securite/14361-malwarebytes-anti-malware/

                      . Enregistres le sur le bureau
                      . Double cliques sur le fichier téléchargé pour lancer le processus d'installation.
                      . Dans l'onglet "mise à jour", cliques sur le bouton Recherche de mise à jour
                      . Si le pare-feu demande l'autorisation de se connecter pour malwarebytes, accepte
                      . Une fois la mise à jour terminé
                      . Rend-toi dans l'onglet, Recherche
                      . Sélectionnes Exécuter un examen rapide
                      . Cliques sur Rechercher
                      . Le scan démarre.
                      . A la fin de l'analyse, un message s'affiche : L'examen s'est terminé normalement. Cliquez sur 'Afficher les résultats' pour afficher tous les objets trouvés.
                      . Cliques sur Ok pour poursuivre.
                      . Si des malwares ont été détectés, clique sur Afficher les résultats
                      . Sélectionnes tout (ou laisses cochés) et cliques sur Supprimer la sélection Malwarebytes va détruire les fichiers et clés de registre et en mettre une copie dans la quarantaine.
                      . Malwarebytes va ouvrir le bloc-notes et y copier le rapport d'analyse.
                      . Rends toi dans l'onglet rapport/log
                      . Tu cliques dessus pour l'afficher, une fois affiché
                      . Tu cliques sur edition en haut du boc notes, et puis sur sélectionner tous
                      . Tu recliques sur edition et puis sur copier et tu reviens sur le forum et dans ta réponse
                      . tu cliques droit dans le cadre de la reponse et coller

                      Si tu as besoin d'aide regarde ces tutoriels :
                      Aide: https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
                      http://www.infos-du-net.com/forum/278396-11-tuto-malwarebytes-anti-malware-mbam

                      ___________

                      3)

                      Fais un nouveau rapport ZHPdiag stp

                      Rend toi sur http://pjjoint.malekal.com/

                      Clique sur "Parcourir "

                      Sélectionne le rapport ZHPdiag.txt qui se trouve sur ton bureau

                      Clique ensuite sur "Envoyer le fichier " et copie/colle le lien dans ton prochain message
                      0
                      1. voici le rapport d'AD remover :

                        ====== RAPPORT D'AD-REMOVER 2.0.0.2,F | UNIQUEMENT XP/VISTA/7 =======

                        Mis à jour par TeamXscript le 01/03/11
                        Contact: AdRemover[DOT]contact[AT]gmail[DOT]com
                        Site web: http://www.teamxscript.org

                        C:\Program Files (x86)\Ad-Remover\main.exe (CLEAN [1]) -> Lancé à 00:46:37 le 02/03/2011, Mode normal

                        Microsoft Windows 7 Édition Familiale Premium (X64)
                        Céline@CÉLINE-PC (Hewlett-Packard Compaq Presario CQ71 Notebook PC)

                        ============== ACTION(S) ==============

                        Service: "Application Updater" Stoppé et supprimé

                        Dossier supprimé: C:\Program Files (x86)\Mozilla FireFox\extensions\{27E679CC-6AAB-4B2A-BB87-096FE4178464}
                        Fichier supprimé: C:\Program Files (x86)\Mozilla FireFox\extensions\pdfforge@mybrowserbar.com
                        Dossier supprimé: C:\Program Files (x86)\Application Updater
                        Dossier supprimé: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ClickPotato
                        Dossier supprimé: C:\Users\Céline\AppData\Roaming\ClickPotatoLite
                        Dossier supprimé: C:\Program Files (x86)\ClickPotatoLite
                        Dossier supprimé: C:\ProgramData\ClickPotatoLiteSA
                        Dossier supprimé: C:\Users\Céline\AppData\Roaming\FissaSearch
                        Dossier supprimé: C:\Users\Céline\AppData\LocalLow\pdfforge
                        Dossier supprimé: C:\Program Files (x86)\pdfforge Toolbar
                        Dossier supprimé: C:\Program Files (x86)\QueryExplorer
                        Dossier supprimé: C:\Users\Céline\AppData\LocalLow\Search Settings
                        Dossier supprimé: C:\Program Files (x86)\Common Files\Spigot
                        Dossier supprimé: C:\ProgramData\Trymedia
                        Dossier supprimé: C:\Users\Céline\AppData\Roaming\OfferBox
                        Dossier supprimé: C:\Program Files (x86)\Fluendo
                        Fichier supprimé: C:\Program Files (x86)\Mozilla Firefox\plugins\npclntax_ClickPotatoLiteSA.dll

                        (!) -- Fichiers temporaires supprimés.

                        -- Fichier ouvert: C:\Users\Céline\AppData\Roaming\Mozilla\FireFox\Profiles\lsbfz5ig.default\Prefs.js --
                        Ligne supprimée: user_pref("browser.search.selectedEngine", "Fissa");
                        Ligne supprimée: user_pref("extensions.Fissa.lastRunTime", "Fri, 28 Jan 2011 16:20:48 GMT");
                        -- Fichier Fermé --

                        Clé supprimée: HKLM\Software\Classes\CLSID\{58EFBE9C-4621-4d79-90E7-8BEE265CA951}
                        Clé supprimée: HKLM\Software\Classes\CLSID\{7935436E-8F14-4C84-9ECF-BEB791296619}
                        Clé supprimée: HKLM\Software\Classes\Interface\{7935436E-8F14-4C84-9ECF-BEB791296619}
                        Clé supprimée: HKLM\Software\Classes\CLSID\{B3DBB2D5-5F06-4EC2-904D-812ECE520509}
                        Clé supprimée: HKLM\Software\Classes\Interface\{B3DBB2D5-5F06-4EC2-904D-812ECE520509}
                        Clé supprimée: HKLM\Software\Classes\CLSID\{B922D405-6D13-4A2B-AE89-08A030DA4402}
                        Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B922D405-6D13-4A2B-AE89-08A030DA4402}
                        Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B922D405-6D13-4A2B-AE89-08A030DA4402}
                        Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B922D405-6D13-4A2B-AE89-08A030DA4402}
                        Clé supprimée: HKLM\Software\Classes\CLSID\{C4A743DE-EAAC-4cd0-9BF6-378E8141868B}
                        Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C4A743DE-EAAC-4cd0-9BF6-378E8141868B}
                        Clé supprimée: HKLM\Software\Classes\CLSID\{DCE997C8-5920-4c09-99EE-59F46634FE2C}
                        Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DCE997C8-5920-4c09-99EE-59F46634FE2C}
                        Clé supprimée: HKLM\Software\Classes\CLSID\{E2A7BD67-0EAF-497f-B05B-748D7BF3C421}
                        Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E2A7BD67-0EAF-497f-B05B-748D7BF3C421}
                        Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E2A7BD67-0EAF-497f-B05B-748D7BF3C421}
                        Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E2A7BD67-0EAF-497f-B05B-748D7BF3C421}
                        Clé supprimée: HKLM\Software\Classes\Interface\{7CF4E72E-C9C0-4CA8-A039-1F5BAD426CCE}
                        Clé supprimée: HKLM\Software\Classes\Interface\{81B32B9F-AFDC-4F7E-8F13-E39BB8ECF638}
                        Clé supprimée: HKLM\Software\Classes\Interface\{925C24DC-0C0B-4AE7-98F5-18252822C89C}
                        Clé supprimée: HKLM\Software\Classes\Interface\{CA1BC665-4B6B-435C-80C1-0E12D993ED49}
                        Clé supprimée: HKLM\Software\Classes\Interface\{D5AB027D-C91A-4324-8C78-12CF1A588C48}
                        Clé supprimée: HKLM\Software\Classes\Interface\{E5DB89B8-5BE1-461C-A7EF-89B68211889D}
                        Clé supprimée: HKLM\Software\Classes\TypeLib\{14816CF6-426C-40D7-904C-E5600F015EC2}
                        Clé supprimée: HKLM\Software\Classes\TypeLib\{282D18C0-5424-44F4-A531-55F9AC5B8FD8}
                        Clé supprimée: HKLM\Software\Classes\TypeLib\{FD06B491-1EA6-4F5C-86D2-C86D3A3A3731}
                        Clé supprimée: HKLM\Software\Classes\ClickPotatoLiteAx.Info
                        Clé supprimée: HKLM\Software\Classes\ClickPotatoLiteAx.Info.1
                        Clé supprimée: HKLM\Software\Classes\ClickPotatoLiteAX.UserProfiles
                        Clé supprimée: HKLM\Software\Classes\ClickPotatoLiteAX.UserProfiles.1
                        Clé supprimée: HKLM\Software\Classes\MenuButtonIE.ButtonIE
                        Clé supprimée: HKLM\Software\Classes\MenuButtonIE.ButtonIE.1
                        Clé supprimée: HKLM\Software\Classes\ShopperReports.Reporter
                        Clé supprimée: HKLM\Software\Classes\ShopperReports.Reporter.1
                        Clé supprimée: HKLM\Software\Classes\AppID\MenuButtonIE.DLL
                        Clé supprimée: HKLM\Software\Classes\AppID\{11C27351-716B-4052-9361-E3B0A3F8221C}
                        Clé supprimée: HKLM\Software\Application Updater
                        Clé supprimée: HKLM\Software\ClickPotatoLite
                        Clé supprimée: HKLM\Software\pdfforge
                        Clé supprimée: HKLM\Software\Search Settings
                        Clé supprimée: HKLM\Software\Trymedia Systems
                        Clé supprimée: HKCU\Software\OfferBox
                        Clé supprimée: HKCU\Software\FissaSearch
                        Clé supprimée: HKCU\Software\Spointer
                        Clé supprimée: HKCU\Software\ClickPotatoLiteSA
                        Clé supprimée: HKCU\Software\AppDataLow\Software\pdfforge
                        Clé supprimée: HKCU\Software\AppDataLow\Software\Search Settings
                        Clé supprimée: HKLM\Software\Classes\Installer\Products\B6FDFB1B30C3ef645B7DABBB00368D0E
                        Clé supprimée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{b41306c6-96d0-442a-bcc4-b0f621e82ce9}
                        Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5DB24F50-8C65-4772-9844-47FE8701BE57}
                        Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A078F691-9C07-4AF2-BF43-35E79EECF8B7}
                        Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Fissa
                        Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B1BFDF6B-3C03-46fe-B5D7-BABB0063D8E0}
                        Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A7CDDCDC-BEEB-4685-A062-978F5E07CEEE}
                        Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B58926D6-CFB0-45D2-9C28-4B5A0F0368AE}
                        Clé supprimée: HKLM\Software\Classes\AppID\{0D82ACD6-A652-4496-A298-2BDE705F4227}
                        Clé supprimée: HKLM\Software\Classes\AppID\{7025E484-D4B0-441a-9F0B-69063BD679CE}
                        Clé supprimée: HKLM\Software\Classes\AppID\{8258B35C-05B8-4c0e-9525-9BCCC70F8F2D}
                        Clé supprimée: HKLM\Software\Classes\AppID\{A89256AD-EC17-4a83-BEF5-4B8BC4F39306}
                        Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{69725738-CD68-4f36-8D02-8C43722EE5DA}
                        Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B58926D6-CFB0-45D2-9C28-4B5A0F0368AE}

                        Valeur supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform|SRS_IT_E8790571B2765E5437AB98
                        Valeur supprimée: HKLM\Software\Mozilla\Firefox\Extensions|clickpotatolite@clickpotatolite.com
                        Valeur supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Run|SearchSettings
                        Valeur supprimée: HKLM\Software\Microsoft\Internet Explorer\Toolbar|{B922D405-6D13-4A2B-AE89-08A030DA4402}

                        ============== SCAN ADDITIONNEL ==============

                        **** Mozilla Firefox Version [3.6 (fr)] ****

                        HKLM_Extensions|moovida@spointer.com - C:\Program Files (x86)\Fluendo\Moovida\spointer\extensions\moovida@spointer.com (x)

                        -- C:\Users\Céline\AppData\Roaming\Mozilla\FireFox\Profiles\lsbfz5ig.default --
                        Prefs.js - browser.startup.homepage, hxxp://www.fissa.com/en/?s=h&c=1010168614&suid=EkrYENzyX&d=5&pid=23
                        Prefs.js - browser.startup.homepage_override.mstone, rv:1.9.2
                        Prefs.js - keyword.URL, hxxp://fr.search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&type=827316&p=

                        ========================================

                        **** Internet Explorer Version [8.0.7600.16385] ****

                        HKCU_Main|Default_Page_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
                        HKCU_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
                        HKCU_Main|Search bar - hxxp://go.microsoft.com/fwlink/?linkid=54896
                        HKCU_Main|Start Page - hxxp://fr.msn.com/
                        HKLM_Main|Default_Page_URL - hxxp://go.microsoft.com/fwlink/?LinkId=54896
                        HKLM_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
                        HKLM_Main|Search bar - hxxp://search.msn.com/spbasic.htm
                        HKLM_Main|Search Page - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
                        HKLM_Main|Start Page - hxxp://fr.msn.com/
                        HKCU_SearchScopes\{56FE2731-5995-410E-A077-2A2774529F93} - "Kelkoo" (hxxp://fr.kelkoopartners.net/ctl/do/search?siteSearchQuery={searchTerms}&fromfor...)
                        HKLM_SearchScopes\{56FE2731-5995-410E-A077-2A2774529F93} - "Kelkoo" (hxxp://fr.kelkoopartners.net/ctl/do/search?siteSearchQuery={searchTerms}&fromfor...)
                        HKCU_Toolbar\WebBrowser|{DE9C389F-3316-41A7-809B-AA305ED9D922} (C:\Program Files (x86)\AOL\AOL Toolbar 5.0\aoltb.dll)
                        HKLM_Toolbar|{DE9C389F-3316-41A7-809B-AA305ED9D922} (C:\Program Files (x86)\AOL\AOL Toolbar 5.0\aoltb.dll)
                        HKCU_ElevationPolicy\{6052BF20-EA23-4A04-B3C1-A20EFE01A95A} - C:\Program Files (x86)\Veetle\Player\vtl_hfs.exe (?)
                        HKCU_ElevationPolicy\{680FA47E-AB59-46BE-B594-7358726E108B} - C:\Program Files (x86)\Veetle\Player\player.exe (?)
                        HKCU_ElevationPolicy\{E8BC6C2B-DD90-4397-96EB-2AAF0E48ABE6} - C:\Program Files (x86)\Veetle\Player\vtl_hfax.exe (?)
                        HKLM_ElevationPolicy\{07d873dc-b9b9-44f5-af0b-fb59fa54fb7a} - C:\Windows\SysWOW64\wpcer.exe (x)
                        HKLM_ElevationPolicy\{0a402d70-1f10-4ae7-bec9-286a98240695} - C:\Windows\SysWOW64\winfxdocobj.exe (x)
                        HKLM_ElevationPolicy\{6052BF20-EA23-4A04-B3C1-A20EFE01A95A} - C:\Program Files (x86)\Veetle\Player\vtl_hfs.exe (?)
                        HKLM_ElevationPolicy\{680FA47E-AB59-46BE-B594-7358726E108B} - C:\Program Files (x86)\Veetle\Player\player.exe (?)
                        HKLM_ElevationPolicy\{70f641fd-9ffc-4d5b-a4dc-962af4ed7999} - C:\Program Files (x86)\Internet Explorer\iedw.exe (x)
                        HKLM_ElevationPolicy\{ADADAEE2-457A-4984-A57C-E01C3A2BA612} - c:\program files (x86)\aol\aol toolbar 5.0\AolTbServer.exe (AOL LLC)
                        HKLM_ElevationPolicy\{B43A0C1E-B63F-4691-B68F-CD807A45DA01} - C:\Windows\system32\TSWbPrxy.exe (x)
                        HKLM_ElevationPolicy\{E8BC6C2B-DD90-4397-96EB-2AAF0E48ABE6} - C:\Program Files (x86)\Veetle\Player\vtl_hfax.exe (?)
                        HKLM_Extensions\{DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - "?" (?)
                        BHO\{7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - "AOL Toolbar BHO" (C:\Program Files (x86)\AOL\AOL Toolbar 5.0\aoltb.dll)

                        ========================================

                        C:\Program Files (x86)\Ad-Remover\Quarantine: 715 Fichier(s)
                        C:\Program Files (x86)\Ad-Remover\Backup: 15 Fichier(s)

                        C:\Ad-Report-CLEAN[1].txt - 02/03/2011 00:47:08 (11023 Octet(s))

                        Fin à: 00:48:26, 02/03/2011

                        ============== E.O.F ==============
                        0
                        1. Rapport MalwareByte's Anti-Malware :

                          Malwarebytes' Anti-Malware 1.50
                          www.malwarebytes.org

                          Version de la base de données: 5922

                          Windows 6.1.7600
                          Internet Explorer 8.0.7600.16385

                          02/03/2011 00:59:44
                          mbam-log-2011-03-02 (00-59-44).txt

                          Type d'examen: Examen rapide
                          Elément(s) analysé(s): 162701
                          Temps écoulé: 3 minute(s), 17 seconde(s)

                          Processus mémoire infecté(s): 0
                          Module(s) mémoire infecté(s): 0
                          Clé(s) du Registre infectée(s): 2
                          Valeur(s) du Registre infectée(s): 0
                          Elément(s) de données du Registre infecté(s): 0
                          Dossier(s) infecté(s): 0
                          Fichier(s) infecté(s): 0

                          Processus mémoire infecté(s):
                          (Aucun élément nuisible détecté)

                          Module(s) mémoire infecté(s):
                          (Aucun élément nuisible détecté)

                          Clé(s) du Registre infectée(s):
                          HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{A7CDDCDC-BEEB-4685-A062-978F5E07CEEE} (Adware.ShopperReports) -> Quarantined and deleted successfully.
                          HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{B58926D6-CFB0-45D2-9C28-4B5A0F0368AE} (Adware.ClickPotato) -> Quarantined and deleted successfully.

                          Valeur(s) du Registre infectée(s):
                          (Aucun élément nuisible détecté)

                          Elément(s) de données du Registre infecté(s):
                          (Aucun élément nuisible détecté)

                          Dossier(s) infecté(s):
                          (Aucun élément nuisible détecté)

                          Fichier(s) infecté(s):
                          (Aucun élément nuisible détecté)
                          0
                          1. Et enfin dernier rapport :

                            Rapport de ZHPDiag v1.27.1626 par Nicolas Coolman, Update du 01/03/2011
                            Run by Céline at 02/03/2011 01:02:16
                            Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
                            Contact : nicolascoolman@yahoo.fr

                            ---\\ Web Browser
                            MSIE: Internet Explorer v8.0.7600.16385

                            ---\\ System Information
                            Windows 7 Home Premium Edition, 64-bit (Build 7600)
                            Processor: Intel64 Family 6 Model 23 Stepping 10, GenuineIntel
                            Operating System: 64 Bits
                            Boot mode: Normal (Normal boot)
                            Total RAM: 3998 MB (65% free)
                            System Restore: Activé (Enable)
                            System drive C: has 406 GB (89%) free of 453 GB

                            ---\\ Logged in mode
                            Computer Name: CÉLINE-PC
                            User Name: Céline
                            All Users Names: HomeGroupUser$, Céline, Administrateur,
                            Unselected Option: O45,O61,O62,O65,O66,O82
                            Logged in as Administrator

                            ---\\ Environnement Variables
                            %AppData%=C:\Users\Céline\AppData\Roaming
                            %LocalAppData%=C:\Users\Céline\AppData\Local
                            %StartMenu%=C:\Users\Céline\AppData\Roaming\Microsoft\Windows\Start Menu

                            ---\\ DOS/Devices
                            C:\ Hard drive, Flash drive, Thumb drive (Free 406 Go of 453 Go)
                            D:\ Hard drive, Flash drive, Thumb drive (Free 2 Go of 13 Go)
                            E:\ CD-ROM drive (Not Inserted)

                            ---\\ Security Center & Tools Informations
                            [HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK
                            [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK
                            [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
                            [HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
                            [HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK
                            [HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
                            [HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
                            [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
                            [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
                            [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK
                            [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK
                            [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
                            [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK
                            [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK
                            [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK
                            [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
                            [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] DisableTaskMgr: OK
                            [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] DisableRegistryTools: OK
                            [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] NoDispScrSavPage: OK
                            [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
                            [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK
                            [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
                            [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK

                            ---\\ Recherche particulière de fichiers génériques
                            [MD5.9AAAEC8DAC27AA17B053E6352AD233AE] - (.Microsoft Corporation - Explorateur Windows.) (.31/10/2009 07:34:59.) -- C:\Windows\Explorer.exe [2870272]
                            [MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 02:14:45.) -- C:\Windows\System32\Wininit.exe [96256]
                            [MD5.78B9ADA2BC8946AF7B17678E0D07A773] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.21/12/2010 06:38:22.) -- C:\Windows\System32\wininet.dll [981504]

                            ---\\ Processus lancés
                            [MD5.9157189DC07511ECBBE1D2615D8A2FED] - (.Hewlett-Packard - HP Advisor.) -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe [1668664]
                            [MD5.CCF2234A35077CA217A61C9CACC48198] - (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2363392]
                            [MD5.5D61BE7DB55B026A5D61A3EED09D0EAD] - (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408]
                            [MD5.75A83DB4023D635EBEB4DD3EA574EDCB] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [24103720]
                            [MD5.896A1DB9A972AD2339C2E8569EC926D1] - (.Safer Networking Limited - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2144088]
                            [MD5.11E8D8272FDBE213ADE3DAD91427CE35] - (.OpenOffice.org - OpenOffice.org 3.3.) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe [11322880]
                            [MD5.2337EC951C4AF6E1AF65D10BD9615BEB] - (.OpenOffice.org - OpenOffice.org 3.3.) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin [11314688]
                            [MD5.A2814FED5A47B00BBC99AC58F93B9337] - (.CyberLink Corp. - HP QuickPlay Resident Program.) -- C:\Program Files (x86)\Hp\QuickPlay\QPService.exe [468264]
                            [MD5.8F89E6CB82E6DB45BC993D423CD0FDBD] - (. Hewlett-Packard Development Company, L.P. - Quick Launch Buttons.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe [323640]
                            [MD5.93DB1FF92B03D24738A71E6E4992DFD3] - (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [248552]
                            [MD5.5516C26A6AF8EB4E2CAB48EC98A74398] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe [54576]
                            [MD5.0A7E9FDF3BF1980CA09FEEAC7F52EFBC] - (.ALWIL Software - avast! service GUI component.) -- C:\Program Files\Alwil Software\Avast4\ashDisp.exe [81000]
                            [MD5.BAD6BEA0DE1F69C82BDB74378CE0C20A] - (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [932288]
                            [MD5.0DE3C7622EC33126579B1742260F08C2] - (.Pas de propriétaire - HpqToaster Module.) -- C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe [632888]
                            [MD5.AA08B68EF4E35EFA170CF85A44B23B70] - (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe [673040]
                            [MD5.88C44CA9A052AEAEC0C91A57CE5AB41A] - (.Google Inc. - Google Toolbar Broker.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe [304304]
                            [MD5.A51D1C449E9CA956F477F9BFBE67A5C8] - (.Adobe Systems, Inc. - Adobe® Flash® Player Installer/Uninstaller.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10i_ActiveX.exe [232912]
                            [MD5.D804D54E70E15078DFF46F9543A5E151] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [632320]

                            ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
                            M0 - MFSP: prefs.js [Céline - lsbfz5ig.default] http://www.fissa.com/en/?s=h&c=1010168614&suid=EkrYENzyX&d=5&pid=23

                            ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
                            G0 - GCSP: Preference [User Data\Default][HomePage] https://www.google.com/?gws_rd=ssl
                            G2 - GCE: Preference [User Data\Default] [kngejcchcedjdemdaeneneeahmjnpaec] Interest Recognizer for Moovida v.3.4.1545.153 (Activé)

                            ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
                            R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
                            R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.microsoft.com/fr-fr/
                            R0 - HKUS\S-1-5-21-2318527353-3992521209-3721548211-1001\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
                            R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.microsoft.com/fr-fr/
                            R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.microsoft.com/fr-fr/
                            R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
                            R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com
                            R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.microsoft.com/fr-fr/
                            R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
                            R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
                            R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (8.00.7600.16385 (win7_rtm.090713-1255)) -- C:\Windows\System32\ieframe.dll
                            R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 0

                            ---\\ Internet Explorer, Proxy Management (R5)
                            R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
                            R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
                            R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
                            R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
                            R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
                            R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

                            ---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
                            F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,
                            F2 - REG:system.ini: VMApplet=C:\WINDOWS\system32\SystemPropertiesPerformance.exe

                            ---\\ Browser Helper Objects de navigateur (O2)
                            O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                            O2 - BHO: Google Toolbar Helper [64Bits] - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
                            O2 - BHO: Google Toolbar Notifier BHO [64Bits] - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg64.dll
                            O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll

                            ---\\ Internet Explorer Toolbars (O3)
                            O3 - Toolbar: Google Toolbar [64Bits] - {2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll

                            ---\\ Applications démarrées par registre & par dossier (O4)
                            O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
                            O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jusched.exe
                            O4 - HKLM\..\Run: [SysTrayApp] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe
                            O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe (.not file.)
                            O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe (.not file.)
                            O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe (.not file.)
                            O4 - HKCU\..\Run: [HPADVISOR] . (.Hewlett-Packard - HP Advisor.) -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe
                            O4 - HKCU\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
                            O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                            O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
                            O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe
                            O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe
                            O4 - HKCU\..\Run: [SpybotSD TeaTimer] . (.Safer Networking Limited - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
                            O4 - HKLM\..\Wow6432Node\Run: [QPService] . (.CyberLink Corp. - HP QuickPlay Resident Program.) -- C:\Program Files (x86)\HP\QuickPlay\QPService.exe
                            O4 - HKLM\..\Wow6432Node\Run: [UCam_Menu] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe
                            O4 - HKLM\..\Wow6432Node\Run: [QlbCtrl.exe] . (. Hewlett-Packard Development Company, L.P. - Quick Launch Buttons.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
                            O4 - HKLM\..\Wow6432Node\Run: [UpdatePRCShortCut] Clé orpheline
                            O4 - HKLM\..\Wow6432Node\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe
                            O4 - HKLM\..\Wow6432Node\Run: [Easybits Recovery] . (.EasyBits Software AS - Pas de description.) -- C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe
                            O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
                            O4 - HKLM\..\Wow6432Node\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
                            O4 - HKLM\..\Wow6432Node\Run: [avast!] . (.ALWIL Software - avast! service GUI component.) -- C:\Program Files\Alwil Software\Avast4\ashDisp.exe
                            O4 - HKLM\..\Wow6432Node\Run: [WirelessAssistant] . (.Hewlett-Packard Company - HP Wireless Assistant Main Program.) -- C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
                            O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
                            O4 - HKLM\..\Wow6432Node\RunOnce: [Malwarebytes' Anti-Malware] . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
                            O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
                            O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
                            O4 - HKUS\S-1-5-21-2318527353-3992521209-3721548211-1001\..\Run: [HPADVISOR] . (.Hewlett-Packard - HP Advisor.) -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe
                            O4 - HKUS\S-1-5-21-2318527353-3992521209-3721548211-1001\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
                            O4 - HKUS\S-1-5-21-2318527353-3992521209-3721548211-1001\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                            O4 - HKUS\S-1-5-21-2318527353-3992521209-3721548211-1001\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
                            O4 - HKUS\S-1-5-21-2318527353-3992521209-3721548211-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe
                            O4 - HKUS\S-1-5-21-2318527353-3992521209-3721548211-1001\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe
                            O4 - HKUS\S-1-5-21-2318527353-3992521209-3721548211-1001\..\Run: [SpybotSD TeaTimer] . (.Safer Networking Limited - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
                            O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (.not file.)
                            O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (.not file.)
                            O4 - Global Startup: C:\Users\Céline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk . (...) -- C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe

                            ---\\ Autres liens utilisateurs (O4)
                            O4 - Global Startup: C:\Users\Céline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
                            O4 - Global Startup: C:\Users\Céline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
                            O4 - Global Startup: C:\Users\Céline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Moovida.lnk . (...) -- C:\Program Files (x86)\Fluendo\Moovida\Moovida.exe (.not file.)
                            O4 - Global Startup: C:\Users\Céline\Desktop\AD-R.lnk . (...) -- C:\Program Files (x86)\Ad-Remover\main.exe
                            O4 - Global Startup: C:\Users\Céline\Desktop\DivX Movies.lnk . (...) -- C:\Users\Céline\Videos\DivX Movies
                            O4 - Global Startup: C:\Users\Céline\Desktop\Geoportail.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
                            O4 - Global Startup: C:\Users\Céline\Desktop\Windows Live Mail.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Windows Live\Mail\wlmail.exe
                            O4 - Global Startup: C:\Users\Céline\Desktop\Windows Live Messenger .lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
                            O4 - Global Startup: C:\Users\Céline\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Inkscape.lnk . (.inkscape.org.) -- C:\Program Files (x86)\Inkscape\inkscape.exe
                            O4 - Global Startup: C:\Users\Céline\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
                            O4 - Global Startup: C:\Users\Céline\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk . (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
                            O4 - Global Startup: C:\Users\Céline\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - Clé orpheline
                            O4 - Global Startup: C:\Users\Céline\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - Clé orpheline

                            ---\\ Winsock hijacker (Layered Service Provider) (O10)
                            O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
                            O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
                            O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
                            O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
                            O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
                            O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
                            O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL
                            O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL

                            ---\\ Modification Domaine/Adresses DNS (O17)
                            O17 - HKLM\System\CCS\Services\Tcpip\..\{9B5502C2-B11B-46AC-A0B8-BC5416556E91}: DhcpNameServer = 212.27.40.240 212.27.40.241
                            O17 - HKLM\System\CS1\Services\Tcpip\..\{9B5502C2-B11B-46AC-A0B8-BC5416556E91}: DhcpNameServer = 212.27.40.240 212.27.40.241
                            O17 - HKLM\System\CS2\Services\Tcpip\..\{9B5502C2-B11B-46AC-A0B8-BC5416556E91}: DhcpNameServer = 212.27.40.240 212.27.40.241
                            O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.240 212.27.40.241

                            ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
                            O20 - Winlogon Notify: igfxcui . (.Pas de propriétaire - Pas de description.) -- igfxdev.dll

                            ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
                            O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.

                            ---\\ Liste des services NT non Microsoft et non désactivés (O23)
                            O23 - Service: (AESTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe
                            O23 - Service: (aswUpdSv) . (.ALWIL Software - avast! Antivirus updating service.) - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
                            O23 - Service: (avast! Antivirus) . (.ALWIL Software - avast! antivirus service.) - C:\Program Files\Alwil Software\Avast4\ashServ.exe
                            O23 - Service: (avast! Mail Scanner) . (.ALWIL Software - avast! e-Mail Scanner Service.) - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
                            O23 - Service: (avast! Web Scanner) . (.ALWIL Software - avast! Web Scanner.) - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
                            O23 - Service: (CCALib8) . (.Canon Inc. - Canon Camera Access Library 8.) - C:\Program Files (x86)\Canon\CAL\CALMAIN.exe
                            O23 - Service: (Com4QLBEx) . (.Hewlett-Packard Development Company, L.P. - Com for QLB application.) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
                            O23 - Service: (GameConsoleService) . (.WildTangent, Inc. - GameConsoleService.) - C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe
                            O23 - Service: (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
                            O23 - Service: (gusvc) . (.Google - gusvc.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
                            O23 - Service: (HP Health Check Service) . (.Hewlett-Packard Company - HP Support Assistant.) - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
                            O23 - Service: (HPDrvMntSvc.exe) . (.Hewlett-Packard Company - HP Quick Synchronization Service.) - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
                            O23 - Service: (hpqwmiex) . (.Hewlett-Packard Company - hpqwmiex Module.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
                            O23 - Service: (LightScribeService) . (.Hewlett-Packard Company - LightScribe Service.) - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
                            O23 - Service: (RichVideo) . (.Pas de propriétaire - RichVideo Module.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
                            O23 - Service: (SBSDWSCService) . (.Safer Networking Ltd. - Spybot-S&D Security Center integration.) - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
                            O23 - Service: (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\STacSV64.exe
                            O23 - Service: (wlidsvc) . (.Microsoft Corp. - Microsoft® Windows Live ID Service.) - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.exe

                            ---\\ Enumération Active Desktop & MHTML Editor (O24)
                            O24 - Default MHTML Editor: Last - .(.Pas de propriétaire - Pas de description.) - (.not file.)

                            ---\\ Tâches planifiées en automatique (O39)
                            O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
                            O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
                            O39 - APT:Automatic Planified Task - C:\Windows\Tasks\HPCeeScheduleForCéline.job
                            [MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
                            [MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
                            [MD5.455B6AF8235787AB6E36193FBD9BB0AA] [APT] [HPCeeScheduleForC'line] (.Hewlett-Packard.) -- C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
                            [MD5.00000000000000000000000000000000] [APT] [{44566940-F9A1-4D20-B388-A1B51472C6CF}] (.Pas de propriétaire.) -- E:\MSETUP4.exe (.not file.)
                            [MD5.00000000000000000000000000000000] [APT] [{5259111F-7DE9-4BE5-BB80-0C70D8F3BD87}] (.Pas de propriétaire.) -- E:\MSETUP4.exe (.not file.)
                            [MD5.00000000000000000000000000000000] [APT] [{71807CE0-8372-4710-8D1E-0EA30CE6EB3B}] (.Pas de propriétaire.) -- E:\MSETUP4.exe (.not file.)
                            [MD5.00000000000000000000000000000000] [APT] [{CE67E62C-83C6-4EB5-AD30-A416862F4540}] (.Pas de propriétaire.) -- E:\MSETUP4.exe (.not file.)
                            [MD5.00000000000000000000000000000000] [APT] [{E77557B2-4C12-4194-A912-434295154843}] (.Pas de propriétaire.) -- E:\MSETUP4.exe (.not file.)
                            [MD5.00000000000000000000000000000000] [APT] [{F1AA88F9-E0AE-4910-AE77-232314AC3ECA}] (.Pas de propriétaire.) -- E:\MSETUP4.exe (.not file.)
                            [MD5.FDC7C934ADB8C3B51A3C21781B608673] [APT] [PC Health Analysis] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
                            [MD5.FDC7C934ADB8C3B51A3C21781B608673] [APT] [PC Tuneup] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe

                            ---\\ Pilotes lancés au démarrage (O41)
                            O41 - Driver: C:\Windows\system32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
                            O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\DRIVERS\blbdrive.sys
                            O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
                            O41 - Driver: C:\Windows\system32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
                            O41 - Driver: C:\Windows\system32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
                            O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\DRIVERS\mssmbios.sys
                            O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
                            O41 - Driver: C:\Windows\system32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
                            O41 - Driver: C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
                            O41 - Driver: C:\Windows\system32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
                            O41 - Driver: C:\Windows\system32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
                            O41 - Driver: C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
                            O41 - Driver: C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
                            O41 - Driver: C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys
                            O41 - Driver: (Serial) . (.Microsoft Corporation - Pilote de périphérique série.) - C:\Windows\system32\DRIVERS\serial.sys
                            O41 - Driver: C:\Windows\system32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
                            O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\DRIVERS\termdd.sys
                            O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
                            O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys
                            O41 - Driver: C:\Windows\system32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
                            O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys

                            ---\\ Logiciels installés (O42)
                            O42 - Logiciel: AOL Toolbar 5.0 - (.AOL LLC.) [HKLM][64Bits] -- AOL Toolbar
                            O42 - Logiciel: Acrobat.com - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {287ECFA4-719A-2143-A09B-D6A12DE54E40}
                            O42 - Logiciel: ActiveCheck component for HP Active Support Library - (.Hewlett-Packard.) [HKLM][64Bits] -- {254C37AA-6B72-4300-84F6-98A82419187E}
                            O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- Adobe AIR
                            O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- {A2BCA9F1-566C-4805-97D1-7FDC93386723}
                            O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX
                            O42 - Logiciel: Adobe Reader 9.4.1 MUI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-FFFF-7B44-A91000000001}
                            O42 - Logiciel: ArcSoft PhotoStudio 5.5 - (.ArcSoft.) [HKLM][64Bits] -- {85309D89-7BE9-4094-BB17-24999C6118FC}
                            O42 - Logiciel: Atheros Driver Installation Program - (.Atheros.) [HKLM][64Bits] -- {C3A32068-8AB1-4327-BB16-BED9C6219DC7}
                            O42 - Logiciel: CANON iMAGE GATEWAY Task - (.Pas de propriétaire.) [HKLM][64Bits] -- CANON iMAGE GATEWAY Task
                            O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
                            O42 - Logiciel: Canon Camera Access Library - (.Pas de propriétaire.) [HKLM][64Bits] -- CAL
                            O42 - Logiciel: Canon Camera Support Core Library - (.Pas de propriétaire.) [HKLM][64Bits] -- CSCLIB
                            O42 - Logiciel: Canon Camera Window DC_DV 5 for ZoomBrowser EX - (.Pas de propriétaire.) [HKLM][64Bits] -- CameraWindowDVC5
                            O42 - Logiciel: Canon Camera Window DC_DV 6 for ZoomBrowser EX - (.Pas de propriétaire.) [HKLM][64Bits] -- CameraWindowDVC6
                            O42 - Logiciel: Canon Camera Window MC 6 for ZoomBrowser EX - (.Pas de propriétaire.) [HKLM][64Bits] -- CameraWindowMC
                            O42 - Logiciel: Canon G.726 WMP-Decoder - (.Pas de propriétaire.) [HKLM][64Bits] -- Canon G.726 WMP-Decoder
                            O42 - Logiciel: Canon Inkjet Printer Driver Add-On Module - (.Pas de propriétaire.) [HKLM] -- CANONIJINBOXADDON100
                            O42 - Logiciel: Canon Internet Library for ZoomBrowser EX - (.Pas de propriétaire.) [HKLM][64Bits] -- Canon Internet Library for ZoomBrowser EX
                            O42 - Logiciel: Canon MP Navigator 2.0 - (.Pas de propriétaire.) [HKLM][64Bits] -- MP Navigator 2.0
                            O42 - Logiciel: Canon MP500 - (.Pas de propriétaire.) [HKLM] -- {BA4DF4C3-196E-4128-969A-00996B5A46F8}
                            O42 - Logiciel: Canon MovieEdit Task for ZoomBrowser EX - (.Pas de propriétaire.) [HKLM][64Bits] -- MovieEditTask
                            O42 - Logiciel: Canon RAW Image Task for ZoomBrowser EX - (.Pas de propriétaire.) [HKLM][64Bits] -- RAW Image Task
                            O42 - Logiciel: Canon RemoteCapture Task for ZoomBrowser EX - (.Pas de propriétaire.) [HKLM][64Bits] -- RemoteCaptureTask
                            O42 - Logiciel: Canon Utilities ZoomBrowser EX - (.Pas de propriétaire.) [HKLM][64Bits] -- ZoomBrowser EX
                            O42 - Logiciel: CyberLink DVD Suite - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}
                            O42 - Logiciel: CyberLink DVD Suite - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}
                            O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}
                            O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D}
                            O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
                            O42 - Logiciel: Galerie de photos Windows Live - (.Microsoft Corporation.) [HKLM][64Bits] -- {488F0347-C4A7-4374-91A7-30818BEDA710}
                            O42 - Logiciel: Google Earth Plug-in - (.Google.) [HKLM][64Bits] -- {171E6C1E-B5FC-11DF-B115-005056C00008}
                            O42 - Logiciel: Google SketchUp 7 - (.Google, Inc..) [HKLM][64Bits] -- {5AD045DF-11AA-473D-B4AA-2A4F0E213047}
                            O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {18455581-E099-4BA8-BC6B-F34B2F06600C}
                            O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
                            O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
                            O42 - Logiciel: HP Advisor - (.Hewlett-Packard.) [HKLM][64Bits] -- {B53E61D7-7C80-40DF-82D2-CF5390D6D20A}
                            O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FA4960-B038-49EB-891B-9F95930AA544}
                            O42 - Logiciel: HP DVD Play 3.7 - (.Hewlett-Packard.) [HKLM][64Bits] -- {45D707E9-F3C4-11D9-A373-0050BAE317E1}
                            O42 - Logiciel: HP Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent hp Master Uninstall
                            O42 - Logiciel: HP Quick Launch Buttons - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {34D2AB40-150D-475D-AE32-BD23FB5EE355}
                            O42 - Logiciel: HP Setup - (.Hewlett-Packard.) [HKLM][64Bits] -- {F3B912F5-EB57-45AA-B3D1-EB532BCF6EF8}
                            O42 - Logiciel: HP Support Assistant - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {08DB3902-2CE0-474D-BCE3-0177766CE9F1}
                            O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {D46D081B-F60E-467E-A7C4-117B70D76731}
                            O42 - Logiciel: HP User Guides 0148 - (.Hewlett-Packard.) [HKLM][64Bits] -- {9D3318E1-5A9F-4A95-A7A1-7E045403AE34}
                            O42 - Logiciel: HP Wireless Assistant - (.Hewlett-Packard.) [HKLM][64Bits] -- {4E432692-A736-4F77-AF77-F9078CF88D31}
                            O42 - Logiciel: HPAsset component for HP Active Support Library - (.Hewlett-Packard.) [HKLM][64Bits] -- {669D4A35-146B-4314-89F1-1AC3D7B88367}
                            O42 - Logiciel: IDT Audio - (.IDT.) [HKLM][64Bits] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}
                            O42 - Logiciel: Inkscape 0.48.0 - (.Pas de propriétaire.) [HKLM][64Bits] -- Inkscape
                            O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- HDMI
                            O42 - Logiciel: Internet TV pour Windows Media Center - (.Microsoft Corporation.) [HKLM][64Bits] -- {9D318C86-AF4C-409F-A6AC-7183FF4CF424}
                            O42 - Logiciel: Java(TM) 6 Update 14 (64-bit) - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F86416014FF}
                            O42 - Logiciel: Java(TM) 6 Update 23 - (.Sun Microsystems, Inc..) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83216014FF}
                            O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}
                            O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}
                            O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243}
                            O42 - Logiciel: LightScribe System Software - (.LightScribe.) [HKLM][64Bits] -- {82EF29B1-9B60-4142-A155-0599216DD053}
                            O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
                            O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9}
                            O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
                            O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
                            O42 - Logiciel: Magic Desktop - (.EasyBits Software AS.) [HKLM][64Bits] -- EasyBits Magic Desktop
                            O42 - Logiciel: Malwarebytes' Anti-Malware - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes' Anti-Malware_is1
                            O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile
                            O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}
                            O42 - Logiciel: Microsoft .NET Framework 4 Client Profile FRA Language Pack - (.Microsoft Corporation.) [HKLM] -- {4B5F58F7-C7D1-3CE3-9B37-B657F0852643}
                            O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-0016-040C-0000-0000000FF1CE}_HOMESTUDENTR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
                            O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-0018-040C-0000-0000000FF1CE}_HOMESTUDENTR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
                            O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001B-040C-0000-0000000FF1CE}_HOMESTUDENTR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
                            O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{E64BA721-2310-4B55-BE5A-2925F9706192}
                            O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-002A-040C-1000-0000000FF1CE}_HOMESTUDENTR_{B165D3C2-40AE-4D39-86F7-E5C87C4264C0}
                            O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-006E-040C-0000-0000000FF1CE}_HOMESTUDENTR_{B165D3C2-40AE-4D39-86F7-E5C87C4264C0}
                            O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-00A1-040C-0000-0000000FF1CE}_HOMESTUDENTR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
                            O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
                            O42 - Logiciel: Microsoft Office Excel MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0016-040C-0000-0000000FF1CE}
                            O42 - Logiciel: Microsoft Office Home and Student 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- HOMESTUDENTR
                            O42 - Logiciel: Microsoft Office Home and Student 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}
                            O42 - Logiciel: Microsoft Office Office 64-bit Components 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-002A-0000-1000-0000000FF1CE}
                            O42 - Logiciel: Microsoft Office OneNote MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-00A1-040C-0000-0000000FF1CE}
                            O42 - Logiciel: Microsoft Office PowerPoint MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0018-040C-0000-0000000FF1CE}
                            O42 - Logiciel: Microsoft Office PowerPoint Viewer 2007 (French) - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00AF-040C-0000-0000000FF1CE}
                            O42 - Logiciel: Microsoft Office Proof (Arabic) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0401-0000-0000000FF1CE}
                            O42 - Logiciel: Microsoft Office Proof (Dutch) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0413-0000-0000000FF1CE}
                            O42 - Logiciel: Microsoft Office Proof (English) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0409-0000-0000000FF1CE}
                            O42 - Logiciel: Microsoft Office Proof (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-040C-0000-0000000FF1CE}
                            O42 - Logiciel: Microsoft Office Proof (German) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0407-0000-0000000FF1CE}
                            O42 - Logiciel: Microsoft Office Proof (Spanish) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0C0A-0000-0000000FF1CE}
                            O42 - Logiciel: Microsoft Office Proofing (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-002C-040C-0000-0000000FF1CE}
                            O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0401-0000-0000000FF1CE}_HOMESTUDENTR_{14809F99-C601-4D4A-9391-F1E8FAA964C5}
                            O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0407-0000-0000000FF1CE}_HOMESTUDENTR_{A0516415-ED61-419A-981D-93596DA74165}
                            O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
                            O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{F580DDD5-8D37-4998-968E-EBB76BB86787}
                            O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0413-0000-0000000FF1CE}_HOMESTUDENTR_{D66D5A44-E480-4BA4-B4F2-C554F6B30EBB}
                            O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{187308AB-5FA7-4F14-9AB9-D290383A10D9}
                            O42 - Logiciel: Microsoft Office Shared 64-bit MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-002A-040C-1000-0000000FF1CE}
                            O42 - Logiciel: Microsoft Office Shared MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-006E-040C-0000-0000000FF1CE}
                            O42 - Logiciel: Microsoft Office Suite Activation Assistant - (.Microsoft Corporation.) [HKLM][64Bits] -- {E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}
                            O42 - Logiciel: Microsoft Office Word MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001B-040C-0000-0000000FF1CE}
                            O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU] - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
                            O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
                            O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM] -- {B6E3757B-5E77-3915-866A-CCFC4B8D194C}
                            O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM][64Bits] -- {770657D0-A123-3C07-8E44-1C83EC895118}
                            O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM] -- {071c9b48-7c32-4621-a0ac-3f809523288f}
                            O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {7299052b-02a4-4627-81f2-1818da5d550d}
                            O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {4B6C7001-C7D6-3710-913E-5BC23FCE91E6}
                            O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
                            O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM][64Bits] -- {3B160861-7250-451E-B5EE-8B92BF30A710}
                            O42 - Logiciel: Module de compatibilité pour Microsoft Office System 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0020-040C-0000-0000000FF1CE}
                            O42 - Logiciel: Module linguistique Microsoft .NET Framework 4 Client Profile FRA - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile FRA Language Pack
                            O42 - Logiciel: Moovida - (.Secure Digital Services.) [HKLM][64Bits] -- {6084C211-01A1-464E-97A0-09772E122B50}
                            O42 - Logiciel: Mozilla Firefox (3.6) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox (3.6)
                            O42 - Logiciel: OpenOffice.org 3.3 - (.OpenOffice.org.) [HKLM][64Bits] -- {7E0610A2-E336-40B3-B685-C4905E97EC9A}
                            O42 - Logiciel: PDFCreator - (.Frank Heindörfer, Philip Chinery.) [HKLM][64Bits] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}
                            O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}
                            O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658}
                            O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}
                            O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {CB099890-1D5F-11D5-9EA9-0050BAE317E1}
                            O42 - Logiciel: PowerRecover - (.CyberLink Corp..) [HKLM][64Bits] -- {44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}
                            O42 - Logiciel: QLBCASL - (.Hewlett-Packard.) [HKLM][64Bits] -- {F1D7AC58-554A-4A58-B784-B61558B1449A}
                            O42 - Logiciel: Realtek 8136 8168 8169 Ethernet Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
                            O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {96AE7E41-E34E-47D0-AC07-1091A8127911}
                            O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2288621) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{5C497F0B-2061-4CC9-A61C-6B45B867354D}
                            O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2288931) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{CD769337-C8AC-46DB-A7DC-643E50089263}
                            O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2289158) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{210B16C0-CEBD-4DE9-B474-04A7E8735E16}
                            O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2344875) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6FC5C4C1-D7AE-44C3-94B7-6424FC3E752F}
                            O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2345043) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{536FB502-775F-4494-BACE-C02CC90B7A5B}
                            O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB969559) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
                            O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB976321) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{7F207DCA-3399-40CB-A968-6E5991B1421A}
                            O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2160841) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2160841
                            O42 - Logiciel: Security Update for Microsoft Office Excel 2007 (KB2345035) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{B23002DD-34EC-4988-B810-A5E2A0BF04F1}
                            O42 - Logiciel: Security Update for Microsoft Office InfoPath 2007 (KB979441) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{8CCB781A-CF6B-4FCB-B6D8-59C64DF5C6DB}
                            O42 - Logiciel: Security Update for Microsoft Office PowerPoint 2007 (KB982158) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{F5B70033-E79C-4569-90BF-BC9B4E4F3F46}
                            O42 - Logiciel: Security Update for Microsoft Office PowerPoint Viewer (KB2413381) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3DED0A62-44C8-4E00-A785-5212F297A9D9}
                            O42 - Logiciel: Security Update for Microsoft Office Visio Viewer 2007 (KB973709) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
                            O42 - Logiciel: Security Update for Microsoft Office Word 2007 (KB2344993) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{7A5B74FA-7A92-4FC9-821A-2DD5D4E73E48}
                            O42 - Logiciel: Security Update for Microsoft Office system 2007 (972581) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF}
                            O42 - Logiciel: Security Update for Microsoft Office system 2007 (KB974234) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{FCD742B9-7A55-44BC-A776-F795F21FEDDC}
                            O42 - Logiciel: Skype(TM) 4.0 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24D753CA-6AE9-4E30-8F5F-EFC93E08BF3D}
                            O42 - Logiciel: Spybot - Search & Destroy - (.Safer Networking Limited.) [HKLM][64Bits] -- {B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1
                            O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM] -- SynTPDeinstKey
                            O42 - Logiciel: TerraExplorer - (.Skyline Software Systems, Inc..) [HKLM][64Bits] -- TerraExplorer
                            O42 - Logiciel: Update for 2007 Microsoft Office System (KB2284654) - (.Microsoft.) [HKLM][64Bits] -- {90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{FB166E7C-8AA6-48C8-B726-1F25BEE7825A}
                            O42 - Logiciel: Update for 2007 Microsoft Office System (KB967642) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}
                            O42 - Logiciel: Update for Microsoft Office OneNote 2007 (KB980729) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{329050A9-EF80-40F9-B633-74508F54C1FF}
                            O42 - Logiciel: VLC media player 1.0.5 - (.VideoLAN Team.) [HKLM][64Bits] -- VLC media player
                            O42 - Logiciel: Veetle TV 0.9.18 - (.Veetle, Inc.) [HKLM][64Bits] -- Veetle TV
                            O42 - Logiciel: Windows Live - (.Microsoft Corporation.) [HKLM][64Bits] -- WinLiveSuite
                            O42 - Logiciel: Windows Live - (.Microsoft Corporation.) [HKLM][64Bits] -- {34319F1F-7CF2-4CC9-B357-1AE7D2FF3AC5}
                            O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM][64Bits] -- {D45240D3-B6B3-4FF9-B243-54ECE3E10066}
                            O42 - Logiciel: Windows Live FolderShare - (.Microsoft Corporation.) [HKLM][64Bits] -- {2075CB0A-D26F-4DAA-B424-5079296B43BA}
                            O42 - Logiciel: Windows Live ID Sign-in Assistant - (.Microsoft Corporation.) [HKLM] -- {1B8ABA62-74F0-47ED-B18C-A43128E591B8}
                            O42 - Logiciel: Windows Live Installer - (.Microsoft Corporation.) [HKLM][64Bits] -- {0B0F231F-CE6A-483D-AA23-77B364F75917}
                            O42 - Logiciel: Windows Live Language Selector - (.Microsoft Corporation.) [HKLM] -- {5EB6F3CB-46F4-451F-A028-7F6D8D35D7D0}
                            O42 - Logiciel: Windows Live MIME IFilter - (.Microsoft Corporation.) [HKLM] -- {DA54F80E-261C-41A2-A855-549A144F2F59}
                            O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM][64Bits] -- {9D56775A-93F3-44A3-8092-840E3826DE30}
                            O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM][64Bits] -- {9FAE6E8D-E686-49F5-A574-0A58DFD9580C}
                            O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {6057E21C-ABE9-4059-AE3E-3BEB9925E660}
                            O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {EB4DF488-AAEF-406F-A341-CB2AAA315B90}
                            O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM][64Bits] -- {6DEC8BD5-7574-47FA-B080-492BBBE2FEA3}
                            O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM][64Bits] -- {92EA4134-10D1-418A-91E1-5A0453131A38}
                            O42 - Logiciel: Windows Live PIMT Platform - (.Microsoft Corporation.) [HKLM][64Bits] -- {4CBABDFD-49F8-47FD-BE7D-ECDE7270525A}
                            O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM][64Bits] -- {A9BDCA6B-3653-467B-AC83-94367DA3BFE3}
                            O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM][64Bits] -- {C893D8C0-1BA0-4517-B11C-E89B65E72F70}
                            O42 - Logiciel: Windows Live Photo Gallery - (.Microsoft Corporation.) [HKLM][64Bits] -- {3336F667-9049-4D46-98B6-4C743EEBC5B1}
                            O42 - Logiciel: Windows Live SOXE - (.Microsoft Corporation.) [HKLM][64Bits] -- {682B3E4F-696A-42DE-A41C-4C07EA1678B4}
                            O42 - Logiciel: Windows Live SOXE Definitions - (.Microsoft Corporation.) [HKLM][64Bits] -- {200FEC62-3C34-4D60-9CE8-EC372E01C08F}
                            O42 - Logiciel: Windows Live UX Platform - (.Microsoft Corporation.) [HKLM][64Bits] -- {CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}
                            O42 - Logiciel: Windows Live UX Platform Language Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {09F56A49-A7B1-4AAB-95B9-D13094254AD1}
                            O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM][64Bits] -- {3B9A92DA-6374-4872-B646-253F18624D5F}
                            O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM][64Bits] -- {A726AE06-AAA3-43D1-87E3-70F510314F04}
                            O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM][64Bits] -- {AAAFC670-569B-4A2F-82B4-42945E0DE3EF}
                            O42 - Logiciel: Windows Live Writer Resources - (.Microsoft Corporation.) [HKLM][64Bits] -- {62687B11-58B5-4A18-9BC3-9DF4CE03F194}
                            O42 - Logiciel: avast! Antivirus - (.Alwil Software.) [HKLM][64Bits] -- avast!
                            O42 - Logiciel: muvee Reveal - (.muvee Technologies Pte Ltd.) [HKLM][64Bits] -- {293F900D-3743-A8CC-46AD-5AFBFF8E29CF}

                            ---\\ HKCU & HKLM Software Keys
                            [HKCU\Software\ALWIL Software]
                            [HKCU\Software\AOL]
                            [HKCU\Software\Ad-Remover]
                            [HKCU\Software\Adobe]
                            [HKCU\Software\AppDataLow\Google]
                            [HKCU\Software\AppDataLow\Software\Microsoft]
                            [HKCU\Software\AppDataLow\Software]
                            [HKCU\Software\AppDataLow]
                            [HKCU\Software\ArcSoft]
                            [HKCU\Software\Boonty]
                            [HKCU\Software\Bugsplat]
                            [HKCU\Software\CanonBJ]
                            [HKCU\Software\Canon]
                            [HKCU\Software\Classes]
                            [HKCU\Software\Clients]
                            [HKCU\Software\CyberLink]
                            [HKCU\Software\DivXNetworks]
                            [HKCU\Software\EasyBits]
                            [HKCU\Software\Google]
                            [HKCU\Software\Hewlett-Packard]
                            [HKCU\Software\IM Providers]
                            [HKCU\Software\Intel]
                            [HKCU\Software\JavaSoft]
                            [HKCU\Software\LightScribe]
                            [HKCU\Software\Macromedia]
                            [HKCU\Software\Macrovision]
                            [HKCU\Software\MainConcept (Muvee)]
                            [HKCU\Software\Malwarebytes' Anti-Malware]
                            [HKCU\Software\MozillaPlugins]
                            [HKCU\Software\Netscape]
                            [HKCU\Software\Norton]
                            [HKCU\Software\ODBC]
                            [HKCU\Software\OpenOffice.org]
                            [HKCU\Software\PDFCreator]
                            [HKCU\Software\Piriform]
                            [HKCU\Software\Policies]
                            [HKCU\Software\Safer Networking Limited]
                            [HKCU\Software\Skyline]
                            [HKCU\Software\Skype]
                            [HKCU\Software\Synaptics]
                            [HKCU\Software\Trolltech]
                            [HKCU\Software\Veetle]
                            [HKCU\Software\Wow6432Node]
                            [HKCU\Software\YahooPartnerToolbar]
                            [HKCU\Software\med_scangnrlst]
                            [HKLM\Software\ATI Technologies]
                            [HKLM\Software\Agere]
                            [HKLM\Software\BrowserChoice]
                            [HKLM\Software\CXT]
                            [HKLM\Software\CanonBJ]
                            [HKLM\Software\Canon]
                            [HKLM\Software\Classes]
                            [HKLM\Software\Clients]
                            [HKLM\Software\DivX]
                            [HKLM\Software\HPQ]
                            [HKLM\Software\Hewlett-Packard]
                            [HKLM\Software\IDT]
                            [HKLM\Software\InstalledOptions]
                            [HKLM\Software\Intel]
                            [HKLM\Software\JavaSoft]
                            [HKLM\Software\LSI]
                            [HKLM\Software\MozillaPlugins]
                            [HKLM\Software\ODBC]
                            [HKLM\Software\Piriform]
                            [HKLM\Software\Policies]
                            [HKLM\Software\RTLSetup]
                            [HKLM\Software\Realtek Semiconductor Corp.]
                            [HKLM\Software\Realtek]
                            [HKLM\Software\RegisteredApplications]
                            [HKLM\Software\Sonic]
                            [HKLM\Software\Symantec]
                            [HKLM\Software\Synaptics]
                            [HKLM\Software\Volatile]
                            [HKLM\Software\WildTangent]
                            [HKLM\Software\Wow6432Node]
                            0
                            1. ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
                              O43 - CFD: 14/01/2010 - 14:33:52 - [142668875] ----D- C:\Program Files\Alwil Software
                              O43 - CFD: 15/01/2010 - 11:03:48 - [14734453] --H-D- C:\Program Files\CanonBJ
                              O43 - CFD: 01/03/2011 - 21:35:44 - [7184728] ----D- C:\Program Files\CCleaner
                              O43 - CFD: 15/01/2010 - 10:57:00 - [43748065] ----D- C:\Program Files\Common Files
                              O43 - CFD: 01/03/2011 - 22:59:34 - [1774080] ----D- C:\Program Files\DivX
                              O43 - CFD: 25/09/2009 - 10:17:56 - [90257428] ----D- C:\Program Files\DVD Maker
                              O43 - CFD: 14/01/2010 - 14:18:04 - [0] -SH-D- C:\Program Files\Fichiers communs
                              O43 - CFD: 14/01/2010 - 14:46:30 - [1613008] ----D- C:\Program Files\Google
                              O43 - CFD: 19/08/2009 - 13:51:26 - [179200] ----D- C:\Program Files\Hewlett-Packard
                              O43 - CFD: 25/09/2009 - 00:28:24 - [43914760] ----D- C:\Program Files\IDT
                              O43 - CFD: 13/02/2011 - 20:40:14 - [5176327] ----D- C:\Program Files\Internet Explorer
                              O43 - CFD: 19/08/2009 - 16:11:58 - [79489695] ----D- C:\Program Files\Java
                              O43 - CFD: 25/09/2009 - 10:17:56 - [149236786] ----D- C:\Program Files\Microsoft Games
                              O43 - CFD: 19/08/2009 - 15:04:56 - [1141526] ----D- C:\Program Files\Microsoft Office
                              O43 - CFD: 14/07/2009 - 06:32:40 - [25757] ----D- C:\Program Files\MSBuild
                              O43 - CFD: 14/01/2010 - 14:20:48 - [126093] R---D- C:\Program Files\Online Services
                              O43 - CFD: 14/07/2009 - 06:32:40 - [36253865] ----D- C:\Program Files\Reference Assemblies
                              O43 - CFD: 25/09/2009 - 00:26:56 - [38665055] ----D- C:\Program Files\Synaptics
                              O43 - CFD: 14/07/2009 - 06:09:28 - [0] --H-D- C:\Program Files\Uninstall Information
                              O43 - CFD: 19/08/2009 - 23:40:26 - [4039168] ----D- C:\Program Files\Windows Defender
                              O43 - CFD: 26/11/2010 - 10:36:00 - [43896] ----D- C:\Program Files\Windows Live
                              O43 - CFD: 12/01/2011 - 23:49:00 - [6667264] ----D- C:\Program Files\Windows Mail
                              O43 - CFD: 15/10/2010 - 07:06:06 - [7687085] ----D- C:\Program Files\Windows Media Player
                              O43 - CFD: 14/01/2010 - 14:18:04 - [12627124] ----D- C:\Program Files\Windows NT
                              O43 - CFD: 19/08/2009 - 23:40:26 - [5516568] ----D- C:\Program Files\Windows Photo Viewer
                              O43 - CFD: 14/07/2009 - 06:32:40 - [235008] ----D- C:\Program Files\Windows Portable Devices
                              O43 - CFD: 14/01/2010 - 14:20:46 - [11374124] ----D- C:\Program Files\Windows Sidebar
                              O43 - CFD: 15/01/2010 - 10:57:00 - [291555] ----D- C:\Program Files\Common Files\Canon
                              O43 - CFD: 23/02/2011 - 17:23:08 - [30835069] ----D- C:\Program Files\Common Files\Microsoft Shared
                              O43 - CFD: 14/07/2009 - 04:20:10 - [2702] ----D- C:\Program Files\Common Files\Services
                              O43 - CFD: 14/07/2009 - 04:20:10 - [608768] ----D- C:\Program Files\Common Files\SpeechEngines
                              O43 - CFD: 19/08/2009 - 23:43:10 - [12009971] ----D- C:\Program Files\Common Files\System
                              O43 - CFD: 27/08/2010 - 15:36:10 - [45895835] ----D- C:\ProgramData\Adobe
                              O43 - CFD: 19/08/2009 - 15:40:46 - [13624086] ----D- C:\ProgramData\AOL
                              O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Application Data
                              O43 - CFD: 25/09/2009 - 00:29:18 - [8975] ----D- C:\ProgramData\Atheros
                              O43 - CFD: 14/01/2010 - 14:18:04 - [0] -SH-D- C:\ProgramData\Bureau
                              O43 - CFD: 14/01/2010 - 18:37:52 - [9616176] --H-D- C:\ProgramData\CanonBJ
                              O43 - CFD: 17/01/2010 - 19:05:18 - [58292] ----D- C:\ProgramData\CyberLink
                              O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Desktop
                              O43 - CFD: 01/03/2011 - 22:59:48 - [641797] ----D- C:\ProgramData\DivX
                              O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Documents
                              O43 - CFD: 14/01/2010 - 14:18:04 - [0] -SH-D- C:\ProgramData\Favoris
                              O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Favorites
                              O43 - CFD: 21/04/2010 - 22:08:44 - [536260] ----D- C:\ProgramData\Google
                              O43 - CFD: 12/01/2011 - 13:23:20 - [48173031] ----D- C:\ProgramData\Hewlett-Packard
                              O43 - CFD: 02/03/2011 - 00:54:40 - [6309218] ----D- C:\ProgramData\Malwarebytes
                              O43 - CFD: 14/01/2010 - 14:18:04 - [0] -SH-D- C:\ProgramData\Menu Démarrer
                              O43 - CFD: 16/02/2011 - 18:27:58 - [218011227] -S--D- C:\ProgramData\Microsoft
                              O43 - CFD: 12/01/2011 - 23:03:58 - [57688] ----D- C:\ProgramData\Microsoft Help
                              O43 - CFD: 14/01/2010 - 14:18:04 - [0] -SH-D- C:\ProgramData\Modèles
                              O43 - CFD: 01/03/2011 - 23:04:38 - [276] ----D- C:\ProgramData\Norton
                              O43 - CFD: 19/08/2009 - 14:06:54 - [6491999] ----D- C:\ProgramData\NortonInstaller
                              O43 - CFD: 14/01/2010 - 18:10:54 - [144] ----D- C:\ProgramData\PC Drivers HeadQuarters
                              O43 - CFD: 06/02/2011 - 22:03:22 - [214620] ----D- C:\ProgramData\Recovery
                              O43 - CFD: 14/10/2010 - 19:35:36 - [116048] ----D- C:\ProgramData\Skyline
                              O43 - CFD: 17/01/2010 - 19:04:10 - [20024424] ----D- C:\ProgramData\Skype
                              O43 - CFD: 01/03/2011 - 22:53:56 - [65258573] ----D- C:\ProgramData\Spybot - Search & Destroy
                              O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Start Menu
                              O43 - CFD: 28/10/2010 - 21:30:44 - [154] ----D- C:\ProgramData\Sun
                              O43 - CFD: 01/03/2011 - 23:04:36 - [155] ----D- C:\ProgramData\Symantec
                              O43 - CFD: 25/09/2009 - 00:50:20 - [524643] ----D- C:\ProgramData\Temp
                              O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Templates
                              O43 - CFD: 16/10/2010 - 20:15:58 - [2965536781] ----D- C:\ProgramData\WildTangent
                              O43 - CFD: 20/01/2010 - 10:46:26 - [5686989] ----D- C:\Users\Céline\AppData\Roaming\Adobe
                              O43 - CFD: 19/01/2010 - 09:48:16 - [2288] ----D- C:\Users\Céline\AppData\Roaming\ArcSoft
                              O43 - CFD: 02/02/2011 - 00:13:20 - [14421] ----D- C:\Users\Céline\AppData\Roaming\Blender Foundation
                              O43 - CFD: 08/02/2011 - 10:23:28 - [0] ----D- C:\Users\Céline\AppData\Roaming\Canon
                              O43 - CFD: 13/01/2011 - 12:03:32 - [119343] ----D- C:\Users\Céline\AppData\Roaming\CyberLink
                              O43 - CFD: 23/11/2010 - 10:43:48 - [155648] ----D- C:\Users\Céline\AppData\Roaming\DivX
                              O43 - CFD: 18/11/2010 - 00:16:40 - [199] ----D- C:\Users\Céline\AppData\Roaming\dvdcss
                              O43 - CFD: 21/04/2010 - 22:09:32 - [608] ----D- C:\Users\Céline\AppData\Roaming\Google
                              O43 - CFD: 29/01/2010 - 18:23:36 - [98422] ----D- C:\Users\Céline\AppData\Roaming\Hewlett-Packard
                              O43 - CFD: 14/02/2010 - 17:05:10 - [396] ----D- C:\Users\Céline\AppData\Roaming\HP Support Assistant
                              O43 - CFD: 14/01/2010 - 14:20:54 - [35061] ----D- C:\Users\Céline\AppData\Roaming\HP TCS
                              O43 - CFD: 12/01/2011 - 13:31:08 - [90932] ----D- C:\Users\Céline\AppData\Roaming\hpqlog
                              O43 - CFD: 14/02/2010 - 17:05:10 - [2823] ----D- C:\Users\Céline\AppData\Roaming\HpUpdate
                              O43 - CFD: 14/01/2010 - 14:27:42 - [0] ----D- C:\Users\Céline\AppData\Roaming\Identities
                              O43 - CFD: 02/02/2011 - 22:11:34 - [26432] ----D- C:\Users\Céline\AppData\Roaming\inkscape
                              O43 - CFD: 14/01/2010 - 14:28:56 - [1693] ----D- C:\Users\Céline\AppData\Roaming\Macromedia
                              O43 - CFD: 02/03/2011 - 00:54:44 - [2038] ----D- C:\Users\Céline\AppData\Roaming\Malwarebytes
                              O43 - CFD: 25/09/2009 - 10:17:56 - [0] ----D- C:\Users\Céline\AppData\Roaming\Media Center Programs
                              O43 - CFD: 28/01/2011 - 17:16:42 - [19023576] -S--D- C:\Users\Céline\AppData\Roaming\Microsoft
                              O43 - CFD: 21/02/2011 - 18:25:20 - [621910] ----D- C:\Users\Céline\AppData\Roaming\moovida-1
                              O43 - CFD: 11/02/2011 - 22:09:08 - [3563] ----D- C:\Users\Céline\AppData\Roaming\Mozilla
                              O43 - CFD: 23/02/2011 - 17:30:48 - [1524315] ----D- C:\Users\Céline\AppData\Roaming\OpenOffice.org
                              O43 - CFD: 17/01/2010 - 20:04:12 - [488] ----D- C:\Users\Céline\AppData\Roaming\Skype
                              O43 - CFD: 18/11/2010 - 00:44:46 - [480301] ----D- C:\Users\Céline\AppData\Roaming\vlc
                              O43 - CFD: 18/01/2010 - 13:02:50 - [668] ----D- C:\Users\Céline\AppData\Roaming\WildTangent
                              O43 - CFD: 17/01/2011 - 21:08:28 - [295] ----D- C:\Users\Céline\AppData\Roaming\Windows Live Writer
                              O43 - CFD: 06/02/2011 - 21:13:32 - [16632] ----D- C:\Users\Céline\AppData\Roaming\_MDLogs
                              O43 - CFD: 02/03/2011 - 00:46:38 - [183272737] ----D- C:\Program Files (x86)\Ad-Remover
                              O43 - CFD: 19/08/2009 - 15:30:36 - [687770678] ----D- C:\Program Files (x86)\Adobe
                              O43 - CFD: 19/08/2009 - 15:40:46 - [2956756] ----D- C:\Program Files (x86)\AOL
                              O43 - CFD: 15/01/2010 - 11:06:10 - [25492761] ----D- C:\Program Files (x86)\ArcSoft
                              O43 - CFD: 25/09/2009 - 00:29:12 - [1511472] ----D- C:\Program Files (x86)\Atheros
                              O43 - CFD: 02/02/2011 - 00:13:16 - [0] ----D- C:\Program Files (x86)\Blender Foundation
                              O43 - CFD: 15/01/2010 - 11:10:36 - [136810352] ----D- C:\Program Files (x86)\Canon
                              O43 - CFD: 02/03/2011 - 00:48:08 - [993855407] ----D- C:\Program Files (x86)\Common Files
                              O43 - CFD: 25/09/2009 - 00:50:42 - [1093959398] ----D- C:\Program Files (x86)\CyberLink
                              O43 - CFD: 01/03/2011 - 22:59:44 - [1597761] ----D- C:\Program Files (x86)\DivX
                              O43 - CFD: 15/06/2010 - 20:12:02 - [94373396] ----D- C:\Program Files (x86)\EasyBits For Kids
                              O43 - CFD: 21/09/2010 - 05:05:46 - [131926488] ----D- C:\Program Files (x86)\Google
                              O43 - CFD: 01/03/2011 - 23:02:58 - [0] ----D- C:\Program Files (x86)\Governor of Poker
                              O43 - CFD: 12/01/2011 - 13:27:40 - [425817080] ----D- C:\Program Files (x86)\Hewlett-Packard
                              O43 - CFD: 25/09/2009 - 00:47:14 - [77385871] ----D- C:\Program Files (x86)\Hp
                              O43 - CFD: 19/08/2009 - 14:41:16 - [695294585] ----D- C:\Program Files (x86)\HP Games
                              O43 - CFD: 02/02/2011 - 21:57:28 - [162801736] ----D- C:\Program Files (x86)\Inkscape
                              O43 - CFD: 12/01/2011 - 13:28:32 - [189411743] --H-D- C:\Program Files (x86)\InstallShield Installation Information
                              O43 - CFD: 12/01/2011 - 23:56:50 - [948760] ----D- C:\Program Files (x86)\Intel
                              O43 - CFD: 13/02/2011 - 20:40:14 - [4478987] ----D- C:\Program Files (x86)\Internet Explorer
                              O43 - CFD: 12/01/2011 - 23:41:18 - [90771883] ----D- C:\Program Files (x86)\Java
                              O43 - CFD: 02/03/2011 - 00:54:42 - [4934086] ----D- C:\Program Files (x86)\Malwarebytes' Anti-Malware
                              O43 - CFD: 19/08/2009 - 15:06:36 - [369726695] ----D- C:\Program Files (x86)\Microsoft Office
                              O43 - CFD: 19/08/2009 - 15:07:28 - [7791803] ----D- C:\Program Files (x86)\Microsoft Office Suite Activation Assistant
                              O43 - CFD: 16/02/2011 - 17:25:10 - [38371963] ----D- C:\Program Files (x86)\Microsoft Silverlight
                              O43 - CFD: 25/09/2009 - 00:57:14 - [1829877] ----D- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
                              O43 - CFD: 12/01/2011 - 23:04:32 - [145421942] ----D- C:\Program Files (x86)\Microsoft Works
                              O43 - CFD: 27/06/2010 - 08:57:30 - [8167779] ----D- C:\Program Files (x86)\Microsoft.NET
                              O43 - CFD: 11/02/2011 - 22:09:02 - [20870776] ----D- C:\Program Files (x86)\Mozilla Firefox
                              O43 - CFD: 14/07/2009 - 06:32:40 - [25757] ----D- C:\Program Files (x86)\MSBuild
                              O43 - CFD: 14/01/2010 - 18:39:42 - [0] ----D- C:\Program Files (x86)\MSXML 4.0
                              O43 - CFD: 25/09/2009 - 00:51:52 - [60122585] ----D- C:\Program Files (x86)\muvee Technologies
                              O43 - CFD: 14/01/2010 - 14:20:48 - [19902807] R---D- C:\Program Files (x86)\Online Services
                              O43 - CFD: 23/02/2011 - 17:27:16 - [354552610] ----D- C:\Program Files (x86)\OpenOffice.org 3
                              O43 - CFD: 17/01/2011 - 21:01:04 - [26923810] ----D- C:\Program Files (x86)\PDFCreator
                              O43 - CFD: 25/09/2009 - 00:28:32 - [9545175] ----D- C:\Program Files (x86)\Realtek
                              O43 - CFD: 14/07/2009 - 06:32:40 - [38597377] ----D- C:\Program Files (x86)\Reference Assemblies
                              O43 - CFD: 14/10/2010 - 19:35:34 - [34248154] ----D- C:\Program Files (x86)\Skyline
                              O43 - CFD: 17/01/2010 - 19:04:10 - [24104226] R---D- C:\Program Files (x86)\Skype
                              O43 - CFD: 01/03/2011 - 21:37:54 - [54785024] ----D- C:\Program Files (x86)\Spybot - Search & Destroy
                              O43 - CFD: 14/07/2009 - 05:57:08 - [0] --H-D- C:\Program Files (x86)\Uninstall Information
                              O43 - CFD: 19/02/2011 - 19:06:14 - [10428379] ----D- C:\Program Files (x86)\Veetle
                              O43 - CFD: 20/06/2010 - 22:11:48 - [78593361] ----D- C:\Program Files (x86)\VideoLAN
                              O43 - CFD: 19/08/2009 - 23:40:26 - [524800] ----D- C:\Program Files (x86)\Windows Defender
                              O43 - CFD: 26/11/2010 - 10:37:26 - [146614464] ----D- C:\Program Files (x86)\Windows Live
                              O43 - CFD: 12/01/2011 - 23:49:00 - [6180864] ----D- C:\Program Files (x86)\Windows Mail
                              O43 - CFD: 15/10/2010 - 07:06:06 - [5336849] ----D- C:\Program Files (x86)\Windows Media Player
                              O43 - CFD: 14/07/2009 - 06:32:40 - [12197556] ----D- C:\Program Files (x86)\Windows NT
                              O43 - CFD: 19/08/2009 - 23:40:26 - [4417800] ----D- C:\Program Files (x86)\Windows Photo Viewer
                              O43 - CFD: 14/07/2009 - 06:32:42 - [189440] ----D- C:\Program Files (x86)\Windows Portable Devices
                              O43 - CFD: 14/01/2010 - 14:20:46 - [5994166] ----D- C:\Program Files (x86)\Windows Sidebar
                              O43 - CFD: 02/03/2011 - 01:02:28 - [3568484] ----D- C:\Program Files (x86)\ZHPDiag
                              O43 - CFD: 15/01/2010 - 10:57:00 - [291555] ----D- C:\Program Files\Common Files\Canon
                              O43 - CFD: 23/02/2011 - 17:23:08 - [30835069] ----D- C:\Program Files\Common Files\Microsoft Shared
                              O43 - CFD: 14/07/2009 - 04:20:10 - [2702] ----D- C:\Program Files\Common Files\Services
                              O43 - CFD: 14/07/2009 - 04:20:10 - [608768] ----D- C:\Program Files\Common Files\SpeechEngines
                              O43 - CFD: 19/08/2009 - 23:43:10 - [12009971] ----D- C:\Program Files\Common Files\System

                              ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
                              O44 - LFC:[MD5.4264264375589D733EA5C9051E7AD851] - 02/03/2011 - 00:57:17 --HA- . (...) -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [23248]
                              O44 - LFC:[MD5.4264264375589D733EA5C9051E7AD851] - 02/03/2011 - 00:57:17 --HA- . (...) -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [23248]
                              O44 - LFC:[MD5.0E000000000000000000000038EE1800] - 02/03/2011 - 00:55:18 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1914984]
                              O44 - LFC:[MD5.AC849B99E032F4017BB1CE37934DD4AF] - 02/03/2011 - 00:51:47 ---A- . (...) -- C:\Windows\setupact.log [112]
                              O44 - LFC:[MD5.415CE50CFC83BC7415823975E4E65A78] - 02/03/2011 - 00:51:44 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
                              O44 - LFC:[MD5.AF9BA2EE7214E43D238B5F183DDE7CC8] - 02/03/2011 - 00:48:27 ---A- . (...) -- C:\Ad-Report-CLEAN[1].txt [11163]
                              O44 - LFC:[MD5.3DD2E74747A80D59AB1119B0734AFFFF] - 02/03/2011 - 00:30:20 ---A- . (...) -- C:\PhysicalDisk0_MBR.bin [512]
                              O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 01/03/2011 - 23:46:21 ---A- . (...) -- C:\Windows\setuperr.log [0]
                              O44 - LFC:[MD5.E053F282541CC5E62E2416C68B2F6167] - 24/02/2011 - 23:29:22 ---A- . (...) -- C:\Windows\SysNative\FNTCACHE.DAT [381832]
                              O44 - LFC:[MD5.158D85C26868E8A9903A726CE145F66B] - 11/02/2011 - 22:16:49 ---A- . (.Adobe Systems - Windows NT OpenType/Type 1 API Library..) -- C:\Windows\SysNative\atmlib.dll [46080]
                              O44 - LFC:[MD5.158D85C26868E8A9903A726CE145F66B] - 11/02/2011 - 22:16:49 ---A- . (.Adobe Systems - Windows NT OpenType/Type 1 API Library..) -- C:\Windows\System32\atmlib.dll [34304]
                              O44 - LFC:[MD5.BF973CEDCD012D23F194BBF0A9B218E6] - 11/02/2011 - 22:16:49 ---A- . (.Adobe Systems Incorporated - Windows NT OpenType/Type 1 Font Driver.) -- C:\Windows\SysNative\atmfd.dll [366080]
                              O44 - LFC:[MD5.BF973CEDCD012D23F194BBF0A9B218E6] - 11/02/2011 - 22:16:49 ---A- . (.Adobe Systems Incorporated - Windows NT OpenType/Type 1 Font Driver.) -- C:\Windows\System32\atmfd.dll [294400]

                              ---\\ Déni du service (Local Security Authority) (O48)
                              O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
                              O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l'Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll
                              O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll

                              ---\\ Trojan Driver Search Data (HKLM) (O52)
                              O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
                              O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm

                              ---\\ Microsoft Control Security Providers (O54)
                              O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll
                              O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll

                              ---\\ Microsoft Windows Policies System (O55)
                              O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5
                              O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
                              O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
                              O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
                              O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
                              O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
                              O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
                              O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
                              O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
                              O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
                              O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=
                              O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=
                              O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
                              O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
                              O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
                              O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
                              O55 - MWPS:[HKLM\...\Policies\System] - "HideFastUserSwitching"=0
                              O55 - MWPS:[HKCU\...\Policies\System] - "WallpaperStyle"=2
                              O55 - MWPS:[HKCU\...\Policies\System] - "DisableLockWorkstation"=0
                              O55 - MWPS:[HKCU\...\Policies\System] - "DisableTaskMgr"=0
                              O55 - MWPS:[HKCU\...\Policies\System] - "DisableChangePassword"=0

                              ---\\ Microsoft Windows Policies Explorer (O56)
                              O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1
                              O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
                              O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0

                              ---\\ Liste des Drivers Système (O58)
                              O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\system32\drivers\adp94xx.sys [491088]
                              O58 - SDL:[MD5.597F78224EE9224EA1A13D6350CED962] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\system32\drivers\adpahci.sys [339536]
                              O58 - SDL:[MD5.E109549C90F62FB570B9540C4B148E54] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\system32\drivers\adpu320.sys [182864]
                              O58 - SDL:[MD5.98022774D9930ECBB292E70DB7601DF6] - 10/06/2009 - 22:01:06 ---A- . (.LSI Corp - SoftModem Device Driver.) -- C:\Windows\system32\drivers\agrsm64.sys [1146880]
                              O58 - SDL:[MD5.5812713A477A3AD7363C7438CA2EE038] - 14/07/2009 - 02:52:21 ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\system32\drivers\aliide.sys [15440]
                              O58 - SDL:[MD5.7A4B413614C055935567CF88A9734D38] - 14/07/2009 - 02:52:21 ---A- . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\system32\drivers\amdsata.sys [106576]
                              O58 - SDL:[MD5.F67F933E79241ED32FF46A4F29B5120B] - 14/07/2009 - 02:52:20 ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows -.) -- C:\Windows\system32\drivers\amdsbs.sys [194128]
                              O58 - SDL:[MD5.B4AD0CACBAB298671DD6F6EF7E20679D] - 14/07/2009 - 02:52:21 ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\system32\drivers\amdxata.sys [28752]
                              O58 - SDL:[MD5.C484F8CEB1717C540242531DB7845C4E] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\system32\drivers\arc.sys [87632]
                              O58 - SDL:[MD5.019AF6924AEFE7839F61C830227FE79C] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\system32\drivers\arcsas.sys [97856]
                              O58 - SDL:[MD5.5BAB6D80435F9DFF95A7E86C69110B32] - 25/11/2009 - 00:50:05 ---A- . (.ALWIL Software - avast! File System Access Blocking Driver.) -- C:\Windows\system32\drivers\aswFsBlk.sys [22096]
                              O58 - SDL:[MD5.6067EC1C153F07A9E8E76B45DF4D9F8D] - 25/11/2009 - 00:49:56 ---A- . (.ALWIL Software - avast! File System Minifilter for Windows 2003/Vista.) -- C:\Windows\system32\drivers\aswMonFlt.sys [65616]
                              O58 - SDL:[MD5.E4928B11D24FC5490C92ED74ECD922D0] - 25/11/2009 - 00:49:00 ---A- . (.ALWIL Software - avast! TDI RDR Driver.) -- C:\Windows\system32\drivers\aswRdr.sys [27216]
                              O58 - SDL:[MD5.C6C9A87DD1BA5815082CD900EBE0BFB1] - 25/11/2009 - 00:50:25 ---A- . (.ALWIL Software - avast! self protection module.) -- C:\Windows\system32\drivers\aswSP.sys [89680]
                              O58 - SDL:[MD5.D6CD3F4C869ADF746C87B7188743664F] - 25/11/2009 - 00:49:10 ---A- . (.ALWIL Software - avast! TDI Filter Driver.) -- C:\Windows\system32\drivers\aswTdi.sys [53840]
                              O58 - SDL:[MD5.38562A6A9CB10844759EAF2B01A7FCD3] - 22/09/2009 - 02:47:14 ---A- . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driver.) -- C:\Windows\system32\drivers\athrx.sys [1484800]
                              O58 - SDL:[MD5.B5ACE6968304A3900EEB1EBFD9622DF2] - 10/06/2009 - 21:34:23 ---A- . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver..) -- C:\Windows\system32\drivers\b57nd60a.sys [270848]
                              O58 - SDL:[MD5.F09EEE9EDC320B5E1501F749FDE686C8] - 10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\system32\drivers\BrFiltLo.sys [18432]
                              O58 - SDL:[MD5.B114D3098E9BDB8BEA8B053685831BE6] - 10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\system32\drivers\BrFiltUp.sys [8704]
                              O58 - SDL:[MD5.43BEA8D483BF1870F018E2D02E06A5BD] - 14/07/2009 - 02:19:07 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\system32\drivers\BrSerId.sys [286720]
                              O58 - SDL:[MD5.A6ECA2151B08A09CACECA35C07F05B42] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\system32\drivers\BrSerWdm.sys [47104]
                              O58 - SDL:[MD5.B79968002C277E869CF38BD22CD61524] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\system32\drivers\BrUsbMdm.sys [14976]
                              O58 - SDL:[MD5.A87528880231C54E75EA7A44943B38BF] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\system32\drivers\BrUsbSer.sys [14720]
                              O58 - SDL:[MD5.3E5B191307609F7514148C6832BB0842] - 10/06/2009 - 21:34:28 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\system32\drivers\bxvbda.sys [468480]
                              O58 - SDL:[MD5.E19D3F095812725D88F9001985B94EDD] - 14/07/2009 - 02:52:31 ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\cmdide.sys [17488]
                              O58 - SDL:[MD5.0E5DA5369A0FCAEA12456DD852545184] - 14/07/2009 - 02:47:48 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\system32\drivers\elxstor.sys [530496]
                              O58 - SDL:[MD5.DC5D737F51BE844D8C82C695EB17372F] - 10/06/2009 - 21:34:33 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\system32\drivers\evbda.sys [3286016]
                              O58 - SDL:[MD5.F2523EF6460FC42405B12248338AB2F0] - 10/06/2009 - 21:31:59 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\system32\drivers\hcw85cir.sys [31232]
                              O58 - SDL:[MD5.9AF482D058BE59CC28BCE52E7C4B747C] - 29/04/2009 - 07:48:32 ---A- . (.Hewlett-Packard Development Company, L.P. - HpqKbFiltr Keyboard Filter Driver.) -- C:\Windows\system32\drivers\HpqKbFiltr.sys [18432]
                              O58 - SDL:[MD5.0886D440058F203EBA0E1825E4355914] - 14/07/2009 - 02:47:48 ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\system32\drivers\HpSAMD.sys [77888]
                              O58 - SDL:[MD5.D83EFB6FD45DF9D55E9A1AFC63640D50] - 14/07/2009 - 02:48:04 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\system32\drivers\iaStorV.sys [410688]
                              O58 - SDL:[MD5.677AA5991026A65ADA128C4B59CF2BAD] - 25/08/2010 - 19:36:04 ---A- . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\system32\drivers\igdkmd64.sys [10611552]
                              O58 - SDL:[MD5.5C18831C61933628F5BB0EA2675B9D21] - 14/07/2009 - 02:48:04 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\system32\drivers\iirsp.sys [44112]
                              O58 - SDL:[MD5.D485D3BD3E2179AA86853A182F70699F] - 26/05/2009 - 13:13:10 ---A- . (.Intel(R) Corporation - Intel(R) High Definition Audio HDMI.) -- C:\Windows\system32\drivers\IntcHdmi.sys [138752]
                              O58 - SDL:[MD5.1A93E54EB0ECE102495A51266DCDB6A6] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_fc.sys [114752]
                              O58 - SDL:[MD5.1047184A9FDC8BDBFF857175875EE810] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas.sys [106560]
                              O58 - SDL:[MD5.30F5C0DE1EE8B5BC9306C1F0E4A75F93] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas2.sys [65600]
                              O58 - SDL:[MD5.0504EACAFF0D3C8AED161C4B0D369D4A] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_scsi.sys [115776]
                              O58 - SDL:[MD5.DE5D0DD632EE6977979799DE64CE0951] - 29/11/2010 - 17:42:06 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\system32\drivers\mbam.sys [24152]
                              O58 - SDL:[MD5.A55805F747C6EDB6A9080D7C633BD0F4] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for.) -- C:\Windows\system32\drivers\megasas.sys [35392]
                              O58 - SDL:[MD5.BAF74CE0072480C3B6B7C13B2A94D6B3] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\system32\drivers\MegaSR.sys [284736]
                              O58 - SDL:[MD5.64428DFDAF6E88366CB51F45A79C5F69] - 10/06/2009 - 21:35:28 ---A- . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\system32\drivers\netw5v64.sys [5434368]
                              O58 - SDL:[MD5.77889813BE4D166CDAB78DDBA990DA92] - 14/07/2009 - 02:48:26 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\system32\drivers\nfrd960.sys [51264]
                              O58 - SDL:[MD5.3E38712941E9BB4DDBEE00AFFE3FED3D] - 14/07/2009 - 02:48:27 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\system32\drivers\nvraid.sys [149056]
                              O58 - SDL:[MD5.477DC4D6DEB99BE37084C9AC6D013DA1] - 14/07/2009 - 02:45:45 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\system32\drivers\nvstor.sys [167488]
                              O58 - SDL:[MD5.A53A15A11EBFD21077463EE2C7AFEEF0] - 14/07/2009 - 02:45:46 ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\system32\drivers\ql2300.sys [1524816]
                              O58 - SDL:[MD5.4F6D12B51DE1AAEFF7DC58C4D75423C8] - 14/07/2009 - 02:45:45 ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\system32\drivers\ql40xx.sys [128592]
                              O58 - SDL:[MD5.ABCB5A38A0D85BDF69B7877E1AD1EED5] - 01/03/2009 - 23:05:32 ---A- . (.Realtek Corporation - Realtek 8101E/8168/8169 NDIS 6.20 64-bit Driver.) -- C:\Windows\system32\drivers\Rt64win7.sys [187392]
                              O58 - SDL:[MD5.A5DF2F732A6C95554E548FCB6932BD31] - 24/06/2009 - 20:00:18 ---A- . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/Vista/Win7.) -- C:\Windows\system32\drivers\RtsUStor.sys [216576]
                              O58 - SDL:[MD5.3EA8A16169C26AFBEB544E0E48421186] - 10/06/2009 - 21:37:19 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\system32\drivers\secdrv.sys [23040]
                              O58 - SDL:[MD5.843CAF1E5FDE1FFD5FF768F23A51E2E1] - 14/07/2009 - 02:45:45 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\system32\drivers\sisraid2.sys [43584]
                              O58 - SDL:[MD5.6A6C106D42E9FFFF8B9FCB4F754F6DA4] - 14/07/2009 - 02:45:46 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\system32\drivers\sisraid4.sys [80464]
                              O58 - SDL:[MD5.F3817967ED533D08327DC73BC4D5542A] - 14/07/2009 - 02:45:55 ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\system32\drivers\stexstor.sys [24656]
                              O58 - SDL:[MD5.DFFBC024DFC7BB05B2129E05CBC7A201] - 23/03/2010 - 13:53:06 ---A- . (.IDT, Inc. - IDT PC Audio.) -- C:\Windows\system32\drivers\stwrt64.sys [505344]
                              O58 - SDL:[MD5.3A706A967295E16511E40842B1A2761D] - 27/05/2010 - 21:32:56 ---A- . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\system32\drivers\SynTP.sys [320560]
                              O58 - SDL:[MD5.E5689D93FFE4E5D66C0178761240DD54] - 14/07/2009 - 02:45:55 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\viaide.sys [17488]
                              O58 - SDL:[MD5.5E2016EA6EBACA03C04FEAC5F330D997] - 14/07/2009 - 02:45:55 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\system32\drivers\vsmraid.sys [161872]
                              O58 - SDL:[MD5.0C4540311E11664B245A263E1154CEF8] - 10/06/2009 - 22:01:11 ---A- . (.Conexant Systems, Inc. - HSF_HWAZL WDM driver.) -- C:\Windows\system32\drivers\VSTAZL6.SYS [292864]
                              O58 - SDL:[MD5.18E40C245DBFAF36FD0134A7EF2DF396] - 10/06/2009 - 22:01:11 ---A- . (.Conexant Systems, Inc. - HSF_CNXT driver.) -- C:\Windows\system32\drivers\VSTCNXT6.SYS [740864]
                              O58 - SDL:[MD5.02071D207A9858FBE3A48CBFD59C4A04] - 10/06/2009 - 22:01:11 ---A- . (.Conexant Systems, Inc. - HSF_DP driver.) -- C:\Windows\system32\drivers\VSTDPV6.SYS [1485312]
                              O58 - SDL:[MD5.B3EEACF62445E24FBB2CD4B0FB4DB026] - 10/06/2009 - 21:35:33 ---A- . (.Marvell - Miniport Driver for Marvell Yukon Ethernet Controller..) -- C:\Windows\system32\drivers\yk62x64.sys [389120]
                              O58 - SDL:[MD5.E74DC2F3F9675A6025A4AA020EDD4341] - 29/11/2010 - 17:42:18 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\SysWOW64\drivers\mbamswissarmy.sys [38224]

                              ---\\ Liste des outils de nettoyage (O63)
                              O63 - Logiciel: Ad-Remover par C_XX - (.C_XX.) [HKLM][64Bits] -- Ad-Remover
                              O63 - Logiciel: ZHPDiag 1.27 - (.Nicolas Coolman.) [HKLM][64Bits] -- ZHPDiag_is1

                              ---\\ Liste des services Legacy (O64)
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\adp94xx.sys - adp94xx (adp94xx) .(.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) - LEGACY_ADP94XX
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\adpahci.sys - adpahci (adpahci) .(.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) - LEGACY_ADPAHCI
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\adpu320.sys - adpu320 (adpu320) .(.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) - LEGACY_ADPU320
                              O64 - Services: CurCS - C:\Windows\system32\drivers\afd.sys (AFD) .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\aliide.sys - aliide (aliide) .(.Acer Laboratories Inc. - ALi mini IDE Driver.) - LEGACY_ALIIDE
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\amdide.sys - amdide (amdide) .(.Microsoft Corporation - Pilote IDE AMD.) - LEGACY_AMDIDE
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\amdsata.sys - amdsata (amdsata) .(.Advanced Micro Devices - AHCI 1.2 Device Driver.) - LEGACY_AMDSATA
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\amdsbs.sys - amdsbs (amdsbs) .(.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) - LEGACY_AMDSBS
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\arc.sys - arc (arc) .(.Adaptec, Inc. - Adaptec RAID Storport Driver.) - LEGACY_ARC
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\arcsas.sys - Pilote miniport de boîte de réception Windows Adaptec SAS/SATA-II RAID (arcsas) .(.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) - LEGACY_ARCSAS
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\aswFsBlk.sys - aswFsBlk (aswFsBlk) .(.ALWIL Software - avast! File System Access Blocking Driver.) - LEGACY_ASWFSBLK
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\aswMonFlt.sys - aswMonFlt (aswMonFlt) .(.ALWIL Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT
                              O64 - Services: CurCS - C:\Windows\system32\Drivers\ASWRDR.sys - (.not file.) - aswRdr (aswRdr) .(...) - LEGACY_ASWRDR
                              O64 - Services: CurCS - C:\Windows\system32\Drivers\ASWSP.sys - (.not file.) - avast! Self Protection (aswSP) .(...) - LEGACY_ASWSP
                              O64 - Services: CurCS - C:\Windows\system32\Drivers\ASWTDI.sys - (.not file.) - avast! Network Shield Support (aswTdi) .(...) - LEGACY_ASWTDI
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\atapi.sys - IDE Channel (atapi) .(.Microsoft Corporation - ATAPI IDE Miniport Driver.) - LEGACY_ATAPI
                              O64 - Services: CurCS - C:\Windows\system32\Drivers\BEEP.sys - (.not file.) - Beep (Beep) .(...) - LEGACY_BEEP
                              O64 - Services: CurCS - C:\Windows\system32\browser.dll (bowser) .(.Microsoft Corporation - DLL du service Explorateur d'ordinateurs.) - LEGACY_BOWSER
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\cdfs.sys - CD/DVD File System Reader (cdfs) .(.Microsoft Corporation - CD-ROM File System Driver.) - LEGACY_CDFS
                              O64 - Services: CurCS - C:\Windows\system32\clfs.sys (CLFS) .(.Microsoft Corporation - Common Log File System Driver.) - LEGACY_CLFS
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\cmdide.sys - cmdide (cmdide) .(.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) - LEGACY_CMDIDE
                              O64 - Services: CurCS - C:\Windows\System32\Drivers\cng.sys - CNG (CNG) .(.Microsoft Corporation - Kernel Cryptography, Next Generation.) - LEGACY_CNG
                              O64 - Services: CurCS - C:\Windows\system32\drivers\dfsc.sys (DfsC) .(.Microsoft Corporation - DFS Namespace Client Driver.) - LEGACY_DFSC
                              O64 - Services: CurCS - C:\Windows\system32\drivers\discache.sys (discache) .(.Microsoft Corporation - System Indexer/Cache Driver.) - LEGACY_DISCACHE
                              O64 - Services: CurCS - C:\Windows\system32\drivers\dxgkrnl.sys - LDDM Graphics Subsystem (DXGKrnl) .(.Microsoft Corporation - DirectX Graphics Kernel.) - LEGACY_DXGKRNL
                              O64 - Services: CurCS - (.not file.) - Symantec Eraser Control driver (eeCtrl) .(...) - LEGACY_EECTRL
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\elxstor.sys - elxstor (elxstor) .(.Emulex - Storport Miniport Driver for LightPulse HBA.) - LEGACY_ELXSTOR
                              O64 - Services: CurCS - C:\Windows\system32\Drivers\FASTFAT.sys - (.not file.) - FAT12/16/32 File System Driver (fastfat) .(...) - LEGACY_FASTFAT
                              O64 - Services: CurCS - C:\Windows\system32\drivers\fileinfo.sys (FileInfo) .(.Microsoft Corporation - FileInfo Filter Driver.) - LEGACY_FILEINFO
                              O64 - Services: CurCS - C:\Windows\system32\drivers\fltmgr.sys (FltMgr) .(.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) - LEGACY_FLTMGR
                              O64 - Services: CurCS - C:\Windows\system32\Drivers\FS_REC.sys - Fs_Rec (Fs_Rec) .(...) - LEGACY_FS_REC
                              O64 - Services: CurCS - C:\Windows\system32\drivers\fvevol.sys (fvevol) .(.Microsoft Corporation - BitLocker Drive Encryption Driver.) - LEGACY_FVEVOL
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\HpSAMD.sys - HpSAMD (HpSAMD) .(.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) - LEGACY_HPSAMD
                              O64 - Services: CurCS - C:\Windows\system32\drivers\http.sys (HTTP) .(.Microsoft Corporation - HTTP Pile du protocole.) - LEGACY_HTTP
                              O64 - Services: CurCS - C:\Windows\system32\drivers\hwpolicy.sys (hwpolicy) .(.Microsoft Corporation - Hardware Policy Driver.) - LEGACY_HWPOLICY
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\iaStorV.sys - Contrôleur RAID Intel Windows 7 (iaStorV) .(.Intel Corporation - Intel Matrix Storage Manager driver - x64.) - LEGACY_IASTORV
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\iirsp.sys - iirsp (iirsp) .(.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) - LEGACY_IIRSP
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\intelide.sys - intelide (intelide) .(.Microsoft Corporation - Intel PCI IDE Driver.) - LEGACY_INTELIDE
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\isapnp.sys - isapnp (isapnp) .(.Microsoft Corporation - Pilote de bus PNP ISA.) - LEGACY_ISAPNP
                              O64 - Services: CurCS - C:\Windows\System32\Drivers\ksecdd.sys - KSecDD (KSecDD) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECDD
                              O64 - Services: CurCS - C:\Windows\System32\Drivers\ksecpkg.sys - KSecPkg (KSecPkg) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECPKG
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\lltdio.sys - Link-Layer Topology Discovery Mapper I/O Driver (lltdio) .(.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) - LEGACY_LLTDIO
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\lsi_fc.sys - LSI_FC (LSI_FC) .(.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) - LEGACY_LSI_FC
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\lsi_sas.sys - LSI_SAS (LSI_SAS) .(.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) - LEGACY_LSI_SAS
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\lsi_sas2.sys - LSI_SAS2 (LSI_SAS2) .(.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) - LEGACY_LSI_SAS2
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\lsi_scsi.sys - LSI_SCSI (LSI_SCSI) .(.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) - LEGACY_LSI_SCSI
                              O64 - Services: CurCS - C:\Windows\system32\drivers\luafv.sys (luafv) .(.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) - LEGACY_LUAFV
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\megasas.sys - megasas (megasas) .(.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) - LEGACY_MEGASAS
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\MegaSR.sys - MegaSR (MegaSR) .(.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) - LEGACY_MEGASR
                              O64 - Services: CurCS - C:\Windows\system32\drivers\mountmgr.sys (mountmgr) .(.Microsoft Corporation - Gestionnaire des points de montage.) - LEGACY_MOUNTMGR
                              O64 - Services: CurCS - C:\Windows\system32\FirewallAPI.dll (mpsdrv) .(.Microsoft Corporation - API du Pare-feu Windows.) - LEGACY_MPSDRV
                              O64 - Services: CurCS - C:\Windows\system32\webclnt.dll (MRxDAV) .(.Microsoft Corporation - Fichier DLL du service DAV pour le Web.) - LEGACY_MRXDAV
                              O64 - Services: CurCS - C:\Windows\system32\wkssvc.dll (mrxsmb) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB
                              O64 - Services: CurCS - C:\Windows\system32\wkssvc.dll (mrxsmb10) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB10
                              O64 - Services: CurCS - C:\Windows\system32\wkssvc.dll (mrxsmb20) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB20
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\msdsm.sys - Module spécifique de périphériques à chemins d'accès multiples Microsoft (msdsm) .(.Microsoft Corporation - Module spécifique de périphériques Microsof.) - LEGACY_MSDSM
                              O64 - Services: CurCS - C:\Windows\system32\Drivers\MSFS.sys - Msfs (Msfs) .(...) - LEGACY_MSFS
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\msisadrv.sys - msisadrv (msisadrv) .(.Microsoft Corporation - ISA Driver.) - LEGACY_MSISADRV
                              O64 - Services: CurCS - C:\Windows\system32\drivers\mup.sys (Mup) .(.Microsoft Corporation - Multiple UNC Provider Driver.) - LEGACY_MUP
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\nwifi.sys - NativeWiFi Filter (NativeWifiP) .(.Microsoft Corporation - Pilote de miniport WiFi natif.) - LEGACY_NATIVEWIFIP
                              O64 - Services: CurCS - C:\Windows\system32\drivers\ndis.sys (NDIS) .(.Microsoft Corporation - Pilote NDIS 6.20.) - LEGACY_NDIS
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\ndisuio.sys - NDIS Usermode I/O Protocol (Ndisuio) .(.Microsoft Corporation - Pilote d'E/S du mode utilisateur NDIS.) - LEGACY_NDISUIO
                              O64 - Services: CurCS - C:\Windows\system32\Drivers\NDPROXY.sys - NDProxy (NDProxy) .(...) - LEGACY_NDPROXY
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\netbios.sys - NetBIOS Interface (NetBIOS) .(.Microsoft Corporation - NetBIOS interface driver.) - LEGACY_NETBIOS
                              O64 - Services: CurCS - C:\Windows\system32\drivers\netbt.sys (NetBT) .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\nfrd960.sys - nfrd960 (nfrd960) .(.IBM Corporation - IBM ServeRAID Controller Driver.) - LEGACY_NFRD960
                              O64 - Services: CurCS - C:\Windows\system32\Drivers\NPFS.sys - Npfs (Npfs) .(...) - LEGACY_NPFS
                              O64 - Services: CurCS - C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) .(.Microsoft Corporation - NSI Proxy.) - LEGACY_NSIPROXY
                              O64 - Services: CurCS - C:\Windows\system32\Drivers\NTFS.sys - Ntfs (Ntfs) .(...) - LEGACY_NTFS
                              O64 - Services: CurCS - C:\Windows\system32\Drivers\NULL.sys - Null (Null) .(...) - LEGACY_NULL
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\nvraid.sys - nvraid (nvraid) .(.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) - LEGACY_NVRAID
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\nvstor.sys - nvstor (nvstor) .(.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) - LEGACY_NVSTOR
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\pciide.sys - pciide (pciide) .(.Microsoft Corporation - Generic PCI IDE Bus Driver.) - LEGACY_PCIIDE
                              O64 - Services: CurCS - C:\Windows\System32\drivers\pcw.sys - Performance Counters for Windows Driver (pcw) .(.Microsoft Corporation - Performance Counters for Windows Driver.) - LEGACY_PCW
                              O64 - Services: CurCS - C:\Windows\System32\drivers\peauth.sys - PEAUTH (PEAUTH) .(.Microsoft Corporation - Protected Environment Authentication and Au.) - LEGACY_PEAUTH
                              O64 - Services: CurCS - C:\Windows\system32\drivers\pacer.sys (Psched) .(.Microsoft Corporation - Planificateur de paquets QoS.) - LEGACY_PSCHED
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\ql2300.sys - Pilote de miniport QLogic Fibre Channel (ql2300) .(.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) - LEGACY_QL2300
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\ql40xx.sys - Pilote de miniport QLogic iSCSI (ql40xx) .(.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) - LEGACY_QL40XX
                              O64 - Services: CurCS - C:\Windows\system32\wkssvc.dll (rdbss) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_RDBSS
                              O64 - Services: CurCS - C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) .(.Microsoft Corporation - RDP Miniport.) - LEGACY_RDPCDD
                              O64 - Services: CurCS - C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) .(.Microsoft Corporation - RDP Encoder Miniport.) - LEGACY_RDPENCDD
                              O64 - Services: CurCS - C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) .(.Microsoft Corporation - RDP Reflector Driver Miniport.) - LEGACY_RDPREFMP
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\rspndr.sys - Link-Layer Topology Discovery Responder (rspndr) .(.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) - LEGACY_RSPNDR
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\sbp2port.sys - Pilote de bus de transport/protocole SBP-2 (sbp2port) .(.Microsoft Corporation - SBP-2 Protocol Driver.) - LEGACY_SBP2PORT
                              O64 - Services: CurCS - C:\Windows\system32\Drivers\SECDRV.sys - (.not file.) - Security Driver (secdrv) .(...) - LEGACY_SECDRV
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\SiSRaid2.sys - SiSRaid2 (SiSRaid2) .(.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) - LEGACY_SISRAID2
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\sisraid4.sys - SiSRaid4 (SiSRaid4) .(.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) - LEGACY_SISRAID4
                              O64 - Services: CurCS - C:\Windows\system32\Drivers\SPLDR.sys - (.not file.) - Security Processor Loader Driver (spldr) .(...) - LEGACY_SPLDR
                              O64 - Services: CurCS - C:\Windows\system32\srvsvc.dll (srv) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV
                              O64 - Services: CurCS - C:\Windows\system32\srvsvc.dll (srv2) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV2
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\srvnet.sys - srvnet (srvnet) .(.Microsoft Corporation - Server Network driver.) - LEGACY_SRVNET
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\stexstor.sys - stexstor (stexstor) .(.Promise Technology - Promise SuperTrak EX Series Driver for Win.) - LEGACY_STEXSTOR
                              O64 - Services: CurCS - C:\Windows\system32\tcpipcfg.dll (Tcpip) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TCPIP
                              O64 - Services: CurCS - C:\Windows\System32\drivers\tcpipreg.sys - TCP/IP Registry Compatibility (tcpipreg) .(.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) - LEGACY_TCPIPREG
                              O64 - Services: CurCS - C:\Windows\system32\tcpipcfg.dll (tdx) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TDX
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\udfs.sys - udfs (udfs) .(.Microsoft Corporation - UDF File System Driver.) - LEGACY_UDFS
                              O64 - Services: CurCS - C:\Windows\system32\drivers\vga.sys - VgaSave (VgaSave) .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\viaide.sys - viaide (viaide) .(.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) - LEGACY_VIAIDE
                              O64 - Services: CurCS - C:\Windows\system32\drivers\volmgrx.sys (volmgrx) .(.Microsoft Corporation - Pilote d'extension du gestionnaire de volum.) - LEGACY_VOLMGRX
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\volsnap.sys - Volumes de stockage (volsnap) .(.Microsoft Corporation - Pilote de cliché instantané du volume.) - LEGACY_VOLSNAP
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\vsmraid.sys - vsmraid (vsmraid) .(.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) - LEGACY_VSMRAID
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\vwififlt.sys - Virtual WiFi Filter Driver (vwififlt) .(.Microsoft Corporation - Virtual WiFi Filter Driver.) - LEGACY_VWIFIFLT
                              O64 - Services: CurCS - C:\Windows\system32\rascfg.dll (Wanarpv6) .(.Microsoft Corporation - Objets de configuration RAS.) - LEGACY_WANARPV6
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\wd.sys - Pilote du Minuteur de surveillance Microsoft (Wd) .(.Microsoft Corporation - Microsoft Watchdog Timer Driver.) - LEGACY_WD
                              O64 - Services: CurCS - C:\Windows\System32\drivers\Wdf01000.sys - Kernel Mode Driver Frameworks service (Wdf01000) .(.Microsoft Corporation - Runtime de l'infrastructure de pilotes en m.) - LEGACY_WDF01000
                              O64 - Services: CurCS - C:\Windows\System32\DRIVERS\wfplwf.sys - WFP Lightweight Filter (WfpLwf) .(.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - LEGACY_WFPLWF
                              O64 - Services: CurCS - C:\Windows\System32\drivers\wimmount.sys - WIMMount (WIMMount) .(.Microsoft Corporation - Wim file system Driver.) - LEGACY_WIMMOUNT
                              O64 - Services: CurCS - C:\Windows\System32\drivers\WudfPf.sys - User Mode Driver Frameworks Platform Driver (WudfPf) .(.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) - LEGACY_WUDFPF

                              ---\\ File Associations Shell Spawning (O67)
                              O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] "%1" %* (.not file.)
                              O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
                              O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] "%1" %* (.not file.)
                              O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] "%1" %* (.not file.)
                              O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] "%1" %* (.not file.)
                              O67 - Shell Spawning: <.html> <htmlfile>[HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
                              O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
                              O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
                              O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
                              O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] "%1" %* (.not file.)
                              O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
                              O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] "%1" %* (.not file.)
                              O67 - Shell Spawning: <.com> <comfile>[HKCR\..\open\Command] "%1" %* (.not file.)
                              O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] "%1" %* (.not file.)
                              O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCR\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
                              O67 - Shell Spawning: <.js> <JSFile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
                              O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe

                              ---\\ Start Menu Internet (O68)
                              O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
                              O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe

                              ---\\ Search Browser Infection (O69)
                              O69 - SBI: SearchScopes [HKCU] ${searchCLSID} - (@ieframe.dll,-12512) - https://www.bing.com/?fdr=lc&toHttps=1&redig=FA6AD360E0BE4C719380F8C470A3D3A8
                              O69 - SBI: SearchScopes [HKCU] {56FE2731-5995-410E-A077-2A2774529F93} - (Kelkoo) - http://fr.kelkoopartners.net
                              O69 - SBI: SearchScopes [HKCU] {5F5D59D2-5CD3-47DB-8AF9-484104C05C9D} - (Yahoo!) - https://fr.search.yahoo.com/
                              O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} [DefaultScope] - (Google) - https://www.google.com/?gws_rd=ssl
                              O69 - SBI: SearchScopes [HKCU] {74920F74-6634-43F0-A3B6-F3704F8909EF} - (AOL Recherche) - http://slirsredirect.search.aol.com
                              O69 - SBI: SearchScopes [HKCU] {A0226662-1428-4C02-A1CD-E0A8EAA6CB16} - (Yahoo! Search) - https://fr.search.yahoo.com/

                              ---\\ Firewall Active Exception List (FirewallRules) (O87)
                              O87 - FAEL: "MCX-McrMgr-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Media Center Extender Manager.) -- C:\Windows\ehome\mcrmgr.exe
                              O87 - FAEL: "MCX-Prov-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - MCX2 Provisioning library.) -- C:\Windows\ehome\mcx2prov.exe
                              O87 - FAEL: "NetPres-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
                              O87 - FAEL: "NetPres-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
                              O87 - FAEL: "NetPres-WSD-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
                              O87 - FAEL: "NetPres-WSD-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
                              O87 - FAEL: "NetPres-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
                              O87 - FAEL: "NetPres-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
                              O87 - FAEL: "RemoteSvcAdmin-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\services.exe (.not file.)
                              O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\services.exe (.not file.)
                              O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" |Out - Domain - P6 - TRUE | .(...) -- C:\Windows\system32\lsass.exe (.not file.)
                              O87 - FAEL: "FPS-SpoolSvc-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\spoolsv.exe (.not file.)
                              O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\spoolsv.exe (.not file.)
                              O87 - FAEL: "TCP Query User{7FD6319B-E5E1-4F71-9862-91BF5F166599}C:\windows\system32\mmc.exe" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Microsoft Management Console.) -- C:\windows\system32\mmc.exe
                              O87 - FAEL: "UDP Query User{4012A078-E99D-4343-A29D-9A599C03DE5A}C:\windows\system32\mmc.exe" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Microsoft Management Console.) -- C:\windows\system32\mmc.exe
                              O87 - FAEL: "TCP Query User{C046A360-4CBC-450B-A9C3-CA09557676F6}C:\program files (x86)\internet explorer\iexplore.exe" | In - Private - P6 - TRUE | .(.Microsoft Corporation.) -- C:\program files (x86)\internet explorer\iexplore.exe
                              O87 - FAEL: "UDP Query User{9ED5FC7F-E2F5-4BA5-895C-8DCBE178135F}C:\program files (x86)\internet explorer\iexplore.exe" | In - Private - P17 - TRUE | .(.Microsoft Corporation.) -- C:\program files (x86)\internet explorer\iexplore.exe
                              O87 - FAEL: "TCP Query User{19820BEE-F9A5-4CEF-9E49-5820AC80B204}C:\program files (x86)\windows live\messenger\msnmsgr.exe" | In - Private - P6 - TRUE | .(.Microsoft Corporation.) -- C:\program files (x86)\windows live\messenger\msnmsgr.exe
                              O87 - FAEL: "UDP Query User{12EC75D6-ABBC-43CA-B323-73CBB591B4A8}C:\program files (x86)\windows live\messenger\msnmsgr.exe" | In - Private - P17 - TRUE | .(.Microsoft Corporation.) -- C:\program files (x86)\windows live\messenger\msnmsgr.exe
                              O87 - FAEL: "TCP Query User{7991B995-D295-4C55-B0FE-94A196CD001C}C:\program files (x86)\windows live\contacts\wlcomm.exe" | In - Private - P6 - TRUE | .(.Microsoft Corporation.) -- C:\program files (x86)\windows live\contacts\wlcomm.exe
                              O87 - FAEL: "UDP Query User{6EB31C96-C8AF-4279-AAF1-F1E4305BE10C}C:\program files (x86)\windows live\contacts\wlcomm.exe" | In - Private - P17 - TRUE | .(.Microsoft Corporation.) -- C:\program files (x86)\windows live\contacts\wlcomm.exe

                              ---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
                              SR - | Auto 02/03/2009 89600 | (AESTFilters) . (.Andrea Electronics Corporation.) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe
                              SR - | Auto 25/11/2009 18752 | (aswUpdSv) . (.ALWIL Software.) - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
                              SR - | Auto 25/11/2009 138680 | (avast! Antivirus) . (.ALWIL Software.) - C:\Program Files\Alwil Software\Avast4\ashServ.exe
                              SR - | Demand 25/11/2009 254040 | (avast! Mail Scanner) . (.ALWIL Software.) - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
                              SR - | Demand 25/11/2009 352920 | (avast! Web Scanner) . (.ALWIL Software.) - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
                              SR - | Auto 30/09/2005 96341 | (CCALib8) . (.Canon Inc..) - C:\Program Files (x86)\Canon\CAL\CALMAIN.exe
                              SR - | Demand 12/01/2010 227896 | (Com4QLBEx) . (.Hewlett-Packard Development Company, L.P..) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
                              SS - | Demand 30/09/2010 246520 | (GameConsoleService) . (.WildTangent, Inc..) - C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe
                              SS - | Auto 14/01/2010 135664 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
                              SS - | Demand 14/01/2010 182768 | (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
                              SR - | Auto 15/11/2010 126520 | (HP Health Check Service) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
                              SR - | Auto 14/10/2010 92216 | (HPDrvMntSvc.exe) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
                              SR - | Demand 14/10/2010 751672 | (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
                              SR - | Auto 17/06/2009 73728 | (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
                              SR - | Auto 21/01/2009 247152 | (RichVideo) . (.Pas de propriétaire.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
                              SR - | Auto 26/01/2009 1153368 | (SBSDWSCService) . (.Safer Networking Ltd..) - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
                              SR - | Auto 23/03/2010 247808 | (STacSV) . (.IDT, Inc..) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\STacSV64.exe
                              SR - | Auto 14/07/2009 20992 | C:\Windows\system32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\system32\svchost.exe

                              ---\\ Recherche Master Boot Record Infection (MBR)(O80)
                              Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.1 by Gmer, http://www.gmer.net
                              Run by Céline at 02/03/2011 01:05:14

                              device: opened successfully
                              user: error reading MBR

                              Disk trace:
                              error: Read Descripteur non valide
                              kernel: error reading MBR

                              ---\\ Recherche Master Boot Record Infection (MBRCheck)(O80)
                              Written by ad13, http://ad13.geekstog
                              Run by Céline at 02/03/2011 01:05:14
                              Use the desktop link 'MBRCheck' to have full report
                              Dump file Name : C:\PhysicalDisk0_MBR.bin

                              End of the scan (1032 lines in 02mn 58s)(0)
                              0
                              1. Contributeur sécurité
                                Rend toi sur http://pjjoint.malekal.com/

                                Clique sur "Parcourir "

                                Sélectionne le rapport ZHPdiag.txt qui se trouve sur ton bureau

                                Clique ensuite sur "Envoyer le fichier " et copie/colle le lien dans ton prochain message
                                0
                                1. Contributeur sécurité
                                  ok

                                  1)

                                  Copie tout le texte présent en gras ci-dessous ( tu le selectionnes avec ta souris / Clique droit dessus et choisis "copier" ou fait Ctrl+C )

                                  M0 - MFSP: prefs.js [Céline - lsbfz5ig.default] http://www.fissa.com/en/?s=h&c=1010168614&suid=EkrYENzyX&d=5&pid=23

                                  Puis Lance ZHPFix depuis le raccourci du bureau .

                                  * Une fois l'outil ZHPFix ouvert , clique sur le bouton [ H ] ( "coller les lignes Helper" ) .

                                  * Dans l'encadré principal tu verras donc les lignes que tu as copié précédemment apparaitrent .

                                  Vérifie que toutes les lignes que je t'ai demandé de copier (et seulement elles) sont dans la fenêtre.

                                  Clique sur " Ok " , puis " Tous " et enfin " Nettoyer ".

                                  Copie/Colle le rapport à l'écran dans ton prochain message

                                  le rapport se trouve dans le dossier de zhpdiag dans program files sous le nom de ZHPFixReport

                                  __________

                                  2)

                                  desinstalle spybot inutile et freine le pc

                                  _________

                                  3)

                                  redemarre le pc et dis moi si tu as encore des soucis
                                  0
                                  1. Rapport de ZHPFix 1.12.3256 par Nicolas Coolman, Update du 23/02/2011
                                    Fichier d'export Registre :
                                    Run by Céline at 02/03/2011 01:23:20
                                    Windows 7 Home Premium Edition, 64-bit (Build 7600)
                                    Web site : http://www.premiumorange.com/zeb-help-process/zhpfix.html
                                    Contact : nicolascoolman@yahoo.fr

                                    ========== Préférences navigateur ==========
                                    M0 - MFSP: prefs.js [Céline - lsbfz5ig.default] http://www.fissa.com/en/?s=h&c=1010168614&suid=EkrYENzyX&d=5&pid=23 => Valeur supprimée avec succès

                                    ========== Récapitulatif ==========
                                    1 : Préférences navigateur

                                    End of the scan
                                    0
                                    • 1
                                    • 2