Fichiers cachés (vista re...plus de windows!!
Fermé
goa125
Messages postés
164
Date d'inscription
dimanche 29 août 2010
Statut
Membre
Dernière intervention
22 février 2017
-
Modifié par goa125 le 26/05/2011 à 00:29
gen-hackman - 29 mai 2011 à 21:43
gen-hackman - 29 mai 2011 à 21:43
A voir également:
- Fichiers cachés (vista re...plus de windows!!
- Windows vista - Télécharger - Divers Utilitaires
- Clé de produit windows 10 gratuit - Guide
- Windows 10 ne démarre plus - Guide
- Montage video windows - Guide
- Windows 10 gratuit - Accueil - Mise à jour
114 réponses
goa125
Messages postés
164
Date d'inscription
dimanche 29 août 2010
Statut
Membre
Dernière intervention
22 février 2017
4
17 mai 2011 à 18:29
17 mai 2011 à 18:29
voici un rapport hijack si ça peut aider:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:25:35, on 17/05/2011
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.19048)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\WTablet\Pen_TabletUser.exe
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Windows\System32\WLTRAY.EXE
C:\Program Files\DellTPad\Apoint.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\DellTPad\HidFind.exe
C:\Windows\system32\conime.exe
C:\Program Files\DellTPad\Apntex.exe
C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
C:\PROGRA~1\Google\GOOGLE~1\SketchUp.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\PROGRA~1\COMMON~1\McAfee\MSC\McUICnt.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Users\lourenco\Downloads\HiJackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: McAfee Phishing Filter - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\progra~1\mcafee\msk\mskapbho.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20110127124833.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\Windows\system32\WLTRAY.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [Ycuqake] rundll32.exe "C:\Users\lourenco\AppData\Local\icstut.dll",Startup
O4 - Startup: OpenOffice.org 3.2.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O8 - Extra context menu item: Envoyer l'&image au périphérique Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O13 - Gopher Prefix:
O16 - DPF: {1F831FA7-42FC-11D4-95A6-0080AD30DCE1} (InstaFred) - file:///C:/Program%20Files/AutoCAD%20LT%202002%20Fra/InstFred.ocx
O16 - DPF: {78AF2F24-A9C3-11D3-BF8C-0060B0FCC122} (Contrôle d'AcDcToday) - file:///C:/Program%20Files/AutoCAD%20LT%202002%20Fra/AcDcToday.ocx
O16 - DPF: {AE563727-B4F5-11D4-A415-00108302FDFD} (NOXLATE-BANR) - file:///C:/Program%20Files/AutoCAD%20LT%202002%20Fra/InstBanr.ocx
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F281A59C-7B65-11D3-8617-0010830243BD} (Gestion d'AcPreview) - file:///C:/Program%20Files/AutoCAD%20LT%202002%20Fra/AcPreview.ocx
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Service McAfee Personal Firewall (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McShield - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - McAfee, Inc. - C:\Windows\system32\mfevtps.exe
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
O23 - Service: TabletServicePen - Wacom Technology, Corp. - C:\Windows\system32\Pen_Tablet.exe
O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\Windows\System32\WLTRYSVC.EXE
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:25:35, on 17/05/2011
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.19048)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\WTablet\Pen_TabletUser.exe
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Windows\System32\WLTRAY.EXE
C:\Program Files\DellTPad\Apoint.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\DellTPad\HidFind.exe
C:\Windows\system32\conime.exe
C:\Program Files\DellTPad\Apntex.exe
C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
C:\PROGRA~1\Google\GOOGLE~1\SketchUp.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\PROGRA~1\COMMON~1\McAfee\MSC\McUICnt.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Users\lourenco\Downloads\HiJackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: McAfee Phishing Filter - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\progra~1\mcafee\msk\mskapbho.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20110127124833.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\Windows\system32\WLTRAY.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [Ycuqake] rundll32.exe "C:\Users\lourenco\AppData\Local\icstut.dll",Startup
O4 - Startup: OpenOffice.org 3.2.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O8 - Extra context menu item: Envoyer l'&image au périphérique Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O13 - Gopher Prefix:
O16 - DPF: {1F831FA7-42FC-11D4-95A6-0080AD30DCE1} (InstaFred) - file:///C:/Program%20Files/AutoCAD%20LT%202002%20Fra/InstFred.ocx
O16 - DPF: {78AF2F24-A9C3-11D3-BF8C-0060B0FCC122} (Contrôle d'AcDcToday) - file:///C:/Program%20Files/AutoCAD%20LT%202002%20Fra/AcDcToday.ocx
O16 - DPF: {AE563727-B4F5-11D4-A415-00108302FDFD} (NOXLATE-BANR) - file:///C:/Program%20Files/AutoCAD%20LT%202002%20Fra/InstBanr.ocx
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F281A59C-7B65-11D3-8617-0010830243BD} (Gestion d'AcPreview) - file:///C:/Program%20Files/AutoCAD%20LT%202002%20Fra/AcPreview.ocx
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Service McAfee Personal Firewall (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: McShield - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - McAfee, Inc. - C:\Windows\system32\mfevtps.exe
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
O23 - Service: TabletServicePen - Wacom Technology, Corp. - C:\Windows\system32\Pen_Tablet.exe
O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\Windows\System32\WLTRYSVC.EXE
jlpjlp
Messages postés
51580
Date d'inscription
vendredi 18 mai 2007
Statut
Contributeur sécurité
Dernière intervention
3 mai 2022
5 040
Modifié par jlpjlp le 17/05/2011 à 18:35
Modifié par jlpjlp le 17/05/2011 à 18:35
slt
colle un rapport avec l'option 1 de roguekiller
colle un rapport avec l'option 1 de roguekiller
goa125
Messages postés
164
Date d'inscription
dimanche 29 août 2010
Statut
Membre
Dernière intervention
22 février 2017
4
17 mai 2011 à 18:56
17 mai 2011 à 18:56
voici le rapport jlpjlp:
RogueKiller V5.1.3 [16/05/2011] par Tigzy
contact sur https://www.luanagames.com/index.fr.html
mail: tigzyRK<at>gmail<dot>com
Remontees: https://www.luanagames.com/index.fr.html
Systeme d'exploitation: Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Demarrage : Mode normal
Utilisateur: lourenco [Droits d'admin]
Mode: Recherche -- Date : 17/05/2011 18:55:51
Processus malicieux: 0
Entrees de registre: 2
[BLACKLIST DLL] HKCU\[...]\Run : Ycuqake (rundll32.exe "C:\Users\lourenco\AppData\Local\icstut.dll",Startup) -> FOUND
[BLACKLIST DLL] HKUS\S-1-5-21-4294092055-1500686753-2937517991-1000[...]\Run : Ycuqake (rundll32.exe "C:\Users\lourenco\AppData\Local\icstut.dll",Startup) -> FOUND
Fichier HOSTS:
Termine : << RKreport[1].txt >>
RKreport[1].txt
RogueKiller V5.1.3 [16/05/2011] par Tigzy
contact sur https://www.luanagames.com/index.fr.html
mail: tigzyRK<at>gmail<dot>com
Remontees: https://www.luanagames.com/index.fr.html
Systeme d'exploitation: Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Demarrage : Mode normal
Utilisateur: lourenco [Droits d'admin]
Mode: Recherche -- Date : 17/05/2011 18:55:51
Processus malicieux: 0
Entrees de registre: 2
[BLACKLIST DLL] HKCU\[...]\Run : Ycuqake (rundll32.exe "C:\Users\lourenco\AppData\Local\icstut.dll",Startup) -> FOUND
[BLACKLIST DLL] HKUS\S-1-5-21-4294092055-1500686753-2937517991-1000[...]\Run : Ycuqake (rundll32.exe "C:\Users\lourenco\AppData\Local\icstut.dll",Startup) -> FOUND
Fichier HOSTS:
Termine : << RKreport[1].txt >>
RKreport[1].txt
goa125
Messages postés
164
Date d'inscription
dimanche 29 août 2010
Statut
Membre
Dernière intervention
22 février 2017
4
17 mai 2011 à 20:05
17 mai 2011 à 20:05
j'attend votre aide, je vient de voir que plusieurs elements manque dans certains logiciels par exemple , des plugins que je ne peut plus voir enfait ils sont la mai cachés , comme pour mes images qui avaient disparus bref c'est la cata :/ que faire??
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
goa125
Messages postés
164
Date d'inscription
dimanche 29 août 2010
Statut
Membre
Dernière intervention
22 février 2017
4
17 mai 2011 à 20:23
17 mai 2011 à 20:23
j'ai trouver ça sur le net: http://trojan-killer.net/how-to-uninstall-windows-vista-recovery-fake-system-defragmenter/?lang=fr doit_je essayé de suivre leur procédure et telecharger leur logiciel??
goa125
Messages postés
164
Date d'inscription
dimanche 29 août 2010
Statut
Membre
Dernière intervention
22 février 2017
4
17 mai 2011 à 21:04
17 mai 2011 à 21:04
bon, jevien de lancé malwarebytes, je ne sait toujours pas su je doi cliquer sur uninstall dans le dossier de cette m.. de windows recovery
help
help
goa125
Messages postés
164
Date d'inscription
dimanche 29 août 2010
Statut
Membre
Dernière intervention
22 février 2017
4
17 mai 2011 à 22:06
17 mai 2011 à 22:06
windows à planté, malwerbytes n'avait pas finni , je vais le relancer, j'ai un message qui apparait me disant que "catalyst control center" a cessé de fonctioner
le pc est lent au redémarage rien n'a changé , windows recovery est toujour installé
que faire??
le pc est lent au redémarage rien n'a changé , windows recovery est toujour installé
que faire??
goa125
Messages postés
164
Date d'inscription
dimanche 29 août 2010
Statut
Membre
Dernière intervention
22 février 2017
4
18 mai 2011 à 01:53
18 mai 2011 à 01:53
j'ai lancé malwerbytes, il m'a trouvé 30 erreurs, et m'a affiché que certains elements on été impossible a supprimé. voici le rapport:
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 28
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
c:\Users\lourenco\AppData\Local\icstut.dll (Trojan.Hiloti) -> Delete on reboot.
Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Ycuqake (Trojan.Hiloti) -> Value: Ycuqake -> Delete on reboot.
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
c:\Users\lourenco\AppData\Local\icstut.dll (Trojan.Hiloti) -> Delete on reboot.
c:\Users\lourenco\AppData\Local\Temp\0.6744806243776056.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\AEF9.tmp (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\AFC4.tmp (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\woxncerams.exe (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\sanxwmrcoe.exe (Trojan.Hiloti) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\setup1049512960.exe (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\setup2425749568.exe (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\setup2646046720.exe (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\setup2710137984.exe (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\setup2963377408.exe (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\setup3120549248.exe (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\setup3686443200.exe (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\setup463276800.exe (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\setup595649664.exe (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\setup60076160.exe (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\setup813656832.exe (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\tmp6498.tmp (Rootkit.TDSS.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\Low\datf250.tmp.exe (Trojan.FakeMS.MGen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\Low\_C335.tmp (Trojan.FakeMS.MGen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\Low\_C385.tmp (Trojan.Dropper) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\LocalLow\Sun\Java\deployment\cache\6.0\0\1df5d480-1320b3e1 (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\Users\lourenco\Desktop\rk_quarantine\icstut.dll.vir (Trojan.Hiloti) -> Quarantined and deleted successfully.
c:\Users\lourenco\downloads\installer_recover_my_files_4_6_8_1012_francais_french.exe (PUP.SmsPay.PGen) -> Quarantined and deleted successfully.
c:\Windows\Temp\set48E2.tmp (Malware.Gen) -> Quarantined and deleted successfully.
c:\Windows\Temp\setEC7F.tmp (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Roaming\Adobe\plugs\mmc182.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\programdata\46391032.exe (Trojan.Agent) -> Quarantined and deleted successfully.
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 28
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
c:\Users\lourenco\AppData\Local\icstut.dll (Trojan.Hiloti) -> Delete on reboot.
Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Ycuqake (Trojan.Hiloti) -> Value: Ycuqake -> Delete on reboot.
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
c:\Users\lourenco\AppData\Local\icstut.dll (Trojan.Hiloti) -> Delete on reboot.
c:\Users\lourenco\AppData\Local\Temp\0.6744806243776056.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\AEF9.tmp (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\AFC4.tmp (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\woxncerams.exe (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\sanxwmrcoe.exe (Trojan.Hiloti) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\setup1049512960.exe (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\setup2425749568.exe (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\setup2646046720.exe (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\setup2710137984.exe (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\setup2963377408.exe (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\setup3120549248.exe (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\setup3686443200.exe (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\setup463276800.exe (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\setup595649664.exe (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\setup60076160.exe (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\setup813656832.exe (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\tmp6498.tmp (Rootkit.TDSS.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\Low\datf250.tmp.exe (Trojan.FakeMS.MGen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\Low\_C335.tmp (Trojan.FakeMS.MGen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Local\Temp\Low\_C385.tmp (Trojan.Dropper) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\LocalLow\Sun\Java\deployment\cache\6.0\0\1df5d480-1320b3e1 (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\Users\lourenco\Desktop\rk_quarantine\icstut.dll.vir (Trojan.Hiloti) -> Quarantined and deleted successfully.
c:\Users\lourenco\downloads\installer_recover_my_files_4_6_8_1012_francais_french.exe (PUP.SmsPay.PGen) -> Quarantined and deleted successfully.
c:\Windows\Temp\set48E2.tmp (Malware.Gen) -> Quarantined and deleted successfully.
c:\Windows\Temp\setEC7F.tmp (Malware.Gen) -> Quarantined and deleted successfully.
c:\Users\lourenco\AppData\Roaming\Adobe\plugs\mmc182.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\programdata\46391032.exe (Trojan.Agent) -> Quarantined and deleted successfully.
goa125
Messages postés
164
Date d'inscription
dimanche 29 août 2010
Statut
Membre
Dernière intervention
22 février 2017
4
18 mai 2011 à 07:03
18 mai 2011 à 07:03
que faire ensuite?
goa125
Messages postés
164
Date d'inscription
dimanche 29 août 2010
Statut
Membre
Dernière intervention
22 février 2017
4
18 mai 2011 à 07:32
18 mai 2011 à 07:32
Nouveau problème, une fenetre s'affiche "processus hote pour les services windows a cessé de fonctionner...un pb est a lorigine du disfonctionement etc etc" si je ferme cette fenetre, ou pas l'ordinateur finnit par ce figé un instant, la barre des taches devient blanche etc etc :(
jlpjlp
Messages postés
51580
Date d'inscription
vendredi 18 mai 2007
Statut
Contributeur sécurité
Dernière intervention
3 mai 2022
5 040
18 mai 2011 à 09:25
18 mai 2011 à 09:25
ok
colle un rapport avec l'option 2 de rogue killer
puis remets un rapport d'analyse rapide avec malwarebyte
puis
Télécharge ZHPDiag ( de Nicolas coolman ).
https://www.zebulon.fr/telechargements/securite/systeme/zhpdiag.html
(outil de diagnostic)
Double clique sur le fichier d'installation, puis installe le avec les paramètres par défaut ( N'oublie pas de cocher " Créer une icône sur le bureau " )
Lance ZHPDiag en double cliquant sur l'icône présente sur ton bureau (Clique droit -> Executer en tant qu'admin ( vista )
Clique sur la loupe en haut à gauche, puis laisse l'outil scanner.
Une fois le scan terminé, clique sur l'icône en forme de disquette et enregistre le fichier sur ton bureau.
Rend toi sur Cjoint : http://www.cijoint.fr/
Clique sur "Parcourir " dans la partie " Joindre un fichier[...] "
Sélectionne le rapport ZHPdiag.txt qui se trouve sur ton bureau
Clique ensuite sur "Cliquez ici pour déposer le fichier " et copie/colle le lien dans ton prochain message
colle un rapport avec l'option 2 de rogue killer
puis remets un rapport d'analyse rapide avec malwarebyte
puis
Télécharge ZHPDiag ( de Nicolas coolman ).
https://www.zebulon.fr/telechargements/securite/systeme/zhpdiag.html
(outil de diagnostic)
Double clique sur le fichier d'installation, puis installe le avec les paramètres par défaut ( N'oublie pas de cocher " Créer une icône sur le bureau " )
Lance ZHPDiag en double cliquant sur l'icône présente sur ton bureau (Clique droit -> Executer en tant qu'admin ( vista )
Clique sur la loupe en haut à gauche, puis laisse l'outil scanner.
Une fois le scan terminé, clique sur l'icône en forme de disquette et enregistre le fichier sur ton bureau.
Rend toi sur Cjoint : http://www.cijoint.fr/
Clique sur "Parcourir " dans la partie " Joindre un fichier[...] "
Sélectionne le rapport ZHPdiag.txt qui se trouve sur ton bureau
Clique ensuite sur "Cliquez ici pour déposer le fichier " et copie/colle le lien dans ton prochain message
goa125
Messages postés
164
Date d'inscription
dimanche 29 août 2010
Statut
Membre
Dernière intervention
22 février 2017
4
18 mai 2011 à 20:09
18 mai 2011 à 20:09
désolé je n'étai pas dispo de la journée :/
rapport rogue killer:
RogueKiller V5.1.3 [16/05/2011] par Tigzy
contact sur https://www.luanagames.com/index.fr.html
mail: tigzyRK<at>gmail<dot>com
Remontees: https://www.luanagames.com/index.fr.html
Systeme d'exploitation: Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Demarrage : Mode normal
Utilisateur: lourenco [Droits d'admin]
Mode: Suppression -- Date : 18/05/2011 19:32:55
Processus malicieux: 0
Entrees de registre: 1
[BLACKLIST DLL] HKCU\[...]\Run : Ycuqake (rundll32.exe "C:\Users\lourenco\AppData\Local\icstut.dll",Startup) -> DELETED
Fichier HOSTS:
Termine : << RKreport[3].txt >>
RKreport[1].txt ; RKreport[2].txt ; RKreport[3].txt
Rapport malwearbytes:
Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org
Version de la base de données: 6599
Windows 6.0.6002 Service Pack 2
Internet Explorer 8.0.6001.19048
18/05/2011 19:43:18
mbam-log-2011-05-18 (19-43-18).txt
Type d'examen: Examen rapide
Elément(s) analysé(s): 162767
Temps écoulé: 9 minute(s), 18 seconde(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
(Aucun élément nuisible détecté)
rapport rogue killer:
RogueKiller V5.1.3 [16/05/2011] par Tigzy
contact sur https://www.luanagames.com/index.fr.html
mail: tigzyRK<at>gmail<dot>com
Remontees: https://www.luanagames.com/index.fr.html
Systeme d'exploitation: Windows Vista (6.0.6002 Service Pack 2) 32 bits version
Demarrage : Mode normal
Utilisateur: lourenco [Droits d'admin]
Mode: Suppression -- Date : 18/05/2011 19:32:55
Processus malicieux: 0
Entrees de registre: 1
[BLACKLIST DLL] HKCU\[...]\Run : Ycuqake (rundll32.exe "C:\Users\lourenco\AppData\Local\icstut.dll",Startup) -> DELETED
Fichier HOSTS:
Termine : << RKreport[3].txt >>
RKreport[1].txt ; RKreport[2].txt ; RKreport[3].txt
Rapport malwearbytes:
Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org
Version de la base de données: 6599
Windows 6.0.6002 Service Pack 2
Internet Explorer 8.0.6001.19048
18/05/2011 19:43:18
mbam-log-2011-05-18 (19-43-18).txt
Type d'examen: Examen rapide
Elément(s) analysé(s): 162767
Temps écoulé: 9 minute(s), 18 seconde(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
(Aucun élément nuisible détecté)
goa125
Messages postés
164
Date d'inscription
dimanche 29 août 2010
Statut
Membre
Dernière intervention
22 février 2017
4
18 mai 2011 à 20:11
18 mai 2011 à 20:11
et zhpdiag ici car je n'est pas réussi a le metre sur ci-joint , internet ne m'affichai pas la page suivante avec le lien:
Rapport de ZHPDiag v1.27.206 par Nicolas Coolman, Update du 18/05/2011
Run by lourenco at 18/05/2011 19:46:21
Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
---\\ Web Browser
MSIE: Internet Explorer v8.0.6001.19048
MFIE: Mozilla Firefox v3.6.17 (fr) (Defaut)
---\\ System Information
Windows Vista Home Premium Edition, 32-bit Service Pack 2 (Build 6002)
Processor: x86 Family 6 Model 23 Stepping 6, GenuineIntel
Operating System: 32 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3581 MB (67% free)
System Restore: Activé (Enable)
System drive C: has 138 GB (59%) free of 233 GB
---\\ Logged in mode
Computer Name: PORTABLEDELL
User Name: lourenco
All Users Names: lourenco, Administrateur,
Unselected Option: O45,O61,O62,O65,O66,O82
Logged in as Administrator
---\\ Environnement Variables
%AppData%=C:\Users\lourenco\AppData\Roaming
%LocalAppData%=C:\Users\lourenco\AppData\Local
%StartMenu%=C:\Users\lourenco\AppData\Roaming\Microsoft\Windows\Start Menu
---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 138 Go of 233 Go)
D:\ Hard drive, Flash drive, Thumb drive (Free 131 Go of 149 Go)
E:\ CD-ROM drive (Not Inserted)
Rapport de ZHPDiag v1.27.206 par Nicolas Coolman, Update du 18/05/2011
Run by lourenco at 18/05/2011 19:46:21
Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
---\\ Web Browser
MSIE: Internet Explorer v8.0.6001.19048
MFIE: Mozilla Firefox v3.6.17 (fr) (Defaut)
---\\ System Information
Windows Vista Home Premium Edition, 32-bit Service Pack 2 (Build 6002)
Processor: x86 Family 6 Model 23 Stepping 6, GenuineIntel
Operating System: 32 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3581 MB (67% free)
System Restore: Activé (Enable)
System drive C: has 138 GB (59%) free of 233 GB
---\\ Logged in mode
Computer Name: PORTABLEDELL
User Name: lourenco
All Users Names: lourenco, Administrateur,
Unselected Option: O45,O61,O62,O65,O66,O82
Logged in as Administrator
---\\ Environnement Variables
%AppData%=C:\Users\lourenco\AppData\Roaming
%LocalAppData%=C:\Users\lourenco\AppData\Local
%StartMenu%=C:\Users\lourenco\AppData\Roaming\Microsoft\Windows\Start Menu
---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 138 Go of 233 Go)
D:\ Hard drive, Flash drive, Thumb drive (Free 131 Go of 149 Go)
E:\ CD-ROM drive (Not Inserted)
goa125
Messages postés
164
Date d'inscription
dimanche 29 août 2010
Statut
Membre
Dernière intervention
22 février 2017
4
18 mai 2011 à 20:14
18 mai 2011 à 20:14
la suite (bug :/)
---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
---\\ Recherche particulière de fichiers génériques
[MD5.D07D4C3038F3578FFCE1C0237F2A1253] - (.Microsoft Corporation - Explorateur Windows.) (.11/04/2009 07:27:36.) -- C:\Windows\Explorer.exe [2926592]
[MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) (.21/01/2008 03:23:42.) -- C:\Windows\system32\Wininit.exe [96768]
[MD5.047CDEFF94B63F0A4791372B47427B60] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.22/02/2011 07:21:28.) -- C:\Windows\system32\wininet.dll [916480]
[MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.11/04/2009 07:28:13.) -- C:\Windows\system32\Winlogon.exe [314368]
[MD5.1F05B78AB91C9075565A9D8A4B880BC4] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.11/04/2009 07:32:26.) -- C:\Windows\system32\drivers\atapi.sys [19944]
[MD5.6A4A98CEE84CF9E99564510DDA4BAA47] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.11/04/2009 07:32:49.) -- C:\Windows\system32\drivers\ntfs.sys [1083880]
---\\ Processus lancés
[MD5.56A1CFFFFC8D646A0388DFBF3EC362CF] - (.Microsoft Corporation - Microsoft Tablet PC Input Component.) -- C:\Windows\SYSTEM32\WISPTIS.EXE [244224]
[MD5.7122B0AA2212B07BBFC49BD22215BF3B] - (.Microsoft Corporation - Tablet PC Input Panel Accessory.) -- C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe [304128]
[MD5.A876B5FEB247E65A138A88DFE73FCF32] - (.Wacom Technology, Corp. - Tablet user module for consumer driver.) -- C:\Windows\system32\WTablet\Pen_TabletUser.exe [132392]
[MD5.4B36C7D9710C60EA7725685753BBFA5C] - (.Dell Inc. - Dell Wireless WLAN Card Wireless Network Tr.) -- C:\Windows\System32\WLTRAY.EXE [3810304]
[MD5.F6DC033E6E576291C42287237B9E4C48] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\DellTPad\Apoint.exe [196608]
[MD5.52DB6CDAC5BC7A1FC884E97C41C91213] - (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [248040]
[MD5.874A7610503D482B4DE1C8BB87BC75F5] - (.McAfee, Inc. - McAfee Security Center.) -- C:\Program Files\McAfee.com\Agent\mcagent.exe [1193848]
[MD5.0CFBE2D135A73CA98381FC8CC8BC5A03] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe [421160]
[MD5.C794F7B464165827E99E586483D797A8] - (.Broadcom Corporation. - Bluetooth Tray Application.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe [780840]
[MD5.569E547273C25B019054A12A40400ECE] - (.OpenOffice.org - OpenOffice.org 3.2.) -- C:\Program Files\OpenOffice.org 3\program\soffice.exe [11318784]
[MD5.B3353D24F65E3520199E68FFC50BC667] - (.Alps Electric Co., Ltd. - ApMsgFwd.) -- C:\Program Files\DellTPad\ApMsgFwd.exe [46376]
[MD5.4B723F33D7331F20E06F3A2FD76EC1D5] - (.OpenOffice.org - OpenOffice.org 3.2.) -- C:\Program Files\OpenOffice.org 3\program\soffice.bin [11312128]
[MD5.C574C551637734B13278898FE2D12D15] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\DellTPad\HidFind.exe [40960]
[MD5.982067316CDD1D25C585DEB96418E1CF] - (.Broadcom Corporation. - Bluetooth Stack COM Server.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe [2308648]
[MD5.359937EFD1763DF9F8B8D166BD4CC022] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver for Windows NT/.) -- C:\Program Files\DellTPad\Apntex.exe [49152]
[MD5.6080A176D09435FC8E6E800996656E18] - (.Microsoft Corporation - Console IME.) -- C:\Windows\system32\conime.exe [69120]
[MD5.B19B204CABFA9F225618EDA4A90C1A2C] - (.Microsoft Corporation - Serveur de personnalisation d'entrée.) -- C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe [198656]
[MD5.5C73A2CDFAB36E07160F131AD0477483] - (.Antonio Da Cruz - PhotoFiltre Studio.) -- C:\Program Files\PhotoFiltre Studio\pf-studio.exe [3107840]
[MD5.D938FB6915EA338BDFC0DCF8773634C5] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [912344]
[MD5.E68C1EFDA668BFF3E2023C72E9EF7A93] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files\Mozilla Firefox\plugin-container.exe [16856]
[MD5.BF6D8EB94E4CAF23F7B330256BAE7A63] - (.McAfee, Inc. - McAfee.) -- C:\PROGRA~1\COMMON~1\McAfee\MSC\McUICnt.exe [439376]
[MD5.254AC97C9AF4DDF3F5F57855198527B7] - (.Microsoft Corporation - Windows Problem Reporting.) -- C:\Windows\system32\wermgr.exe [56320]
[MD5.62BB79160F86CD962F312C68C6239BFD] - (.Microsoft Corporation - Windows Update.) -- C:\Windows\system32\wuauclt.exe [53472]
[MD5.EBA8E0791E5A1ACCD87BF64A2CEC90E4] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [654848]
---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
M3 - MFPP: Plugins - [lourenco] -- C:\Program Files\Mozilla FireFox\searchplugins\amazon-france.xml
M3 - MFPP: Plugins - [lourenco] -- C:\Program Files\Mozilla FireFox\searchplugins\cnrtl-tlfi-fr.xml
M3 - MFPP: Plugins - [lourenco] -- C:\Program Files\Mozilla FireFox\searchplugins\eBay-france.xml
M3 - MFPP: Plugins - [lourenco] -- C:\Program Files\Mozilla FireFox\searchplugins\google.xml
M3 - MFPP: Plugins - [lourenco] -- C:\Program Files\Mozilla FireFox\searchplugins\wikipedia-fr.xml
M3 - MFPP: Plugins - [lourenco] -- C:\Program Files\Mozilla FireFox\searchplugins\yahoo-france.xml
P2 - FPN:Firefox Plugin Navigator . (.Sun Microsystems, Inc. - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- C:\Program Files\Mozilla Firefox\Plugins\npdeployJava1.dll
P2 - FPN:Firefox Plugin Navigator . (.mozilla.org - Default Plug-in.) -- C:\Program Files\Mozilla Firefox\Plugins\npnul32.dll
P2 - FPN:Firefox Plugin Navigator . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape "9.4.1".) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin2.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin3.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin4.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin5.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin6.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin7.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Pas de propriétaire - Pas de description.) -- C:\Windows\system32\Macromed\Flash\NPSWF32.dll
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Pas de propriétaire - Pas de description.) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 4.0.60310.0.) -- c:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll
P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=1.1.5] - (.the VideoLAN Team - Version 1.1.5, copyright 1996-2010 The VideoLAN Team<br><a href="http:.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll
M2 - MFEP: prefs.js [lourenco - jsegnppo.default\{20a82645-c095-46ed-80e3-08825760534b}] [MicrosoftCG] Microsoft .NET Framework Assistant v1.2.1 (.Microsoft.)
---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.microsoft.com/fr-fr/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.microsoft.com/fr-fr/
R0 - HKUS\S-1-5-21-4294092055-1500686753-2937517991-1000\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.microsoft.com/fr-fr/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.microsoft.com/fr-fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.microsoft.com/fr-fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKUS\S-1-5-21-4294092055-1500686753-2937517991-1000\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Internet Explorer.) (8.00.6001.18702 (longhorn_ie8_rtm(wmbla).090308-0339)) -- C:\Windows\system32\ieframe.dll
---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
---\\ ---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: McAfee Phishing Filter - {27B4851A-3207-45A2-B947-BE8AFE6163AB} . (.Pas de propriétaire - Pas de description.) -- c:\progra~1\mcafee\msk\mskapbho.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} Clé orpheline
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} . (.McAfee, Inc. - VSCore Script Scanner.) -- C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20110127124833.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - WindowsLiveLogin.dll.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Skype Technologies S.A. - Skype add-on for IE.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll
---\\ ---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [Windows Defender] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe
O4 - HKLM\..\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] . (.Dell Inc. - Dell Wireless WLAN Card Wireless Network Tr.) -- C:\Windows\system32\WLTRAY.exe
O4 - HKLM\..\Run: [Apoint] . (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\DellTPad\Apoint.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O4 - HKLM\..\Run: [mcui_exe] . (.McAfee, Inc. - McAfee Security Center.) -- C:\Program Files\McAfee.com\Agent\mcagent.exe
O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe
O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware (reboot)] . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
O4 - HKCU\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] oobefldr.dll
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] oobefldr.dll
O4 - HKUS\S-1-5-21-4294092055-1500686753-2937517991-1000\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
O4 - HKUS\S-1-5-21-4294092055-1500686753-2937517991-1000\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - Global Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk . (.Adobe Systems, Inc..) -- C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk . (.Broadcom Corporation..) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... . (.Pas de propriétaire - Pas de description.) -- C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O8 - Extra context menu item: Envoyer l'&image au périphérique Bluetooth... . (.Pas de propriétaire - Pas de description.) -- C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} . (...) -- C:\Program Files\Skype\Toolbars\Internet Explorer\icon.ico
O9 - Extra button: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} . (...) -- C:\Program Files\WIDCOMM\Bluetooth Software\bt_hot_icon.ico
---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\Windows\system32\wshbth.dll
O10 - WLSP:\000000000008\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files\Bonjour\mdnsNSP.dll
---\\ Objets ActiveX (Downloaded Program Files)(O16)
O16 - DPF: {1F831FA7-42FC-11D4-95A6-0080AD30DCE1} - (InstaFred) - (.Autodesk, Inc. - InstFred ActiveX Control Module.) -- C:\Program Files\AutoCAD LT 2002 Fra\InstFred.ocx
O16 - DPF: {78AF2F24-A9C3-11D3-BF8C-0060B0FCC122} - (Contrôle d'AcDcToday) - (.Autodesk - AcDcToday ActiveX Control Module.) -- C:\Program Files\AutoCAD LT 2002 Fra\AcDcToday.ocx
O16 - DPF: {AE563727-B4F5-11D4-A415-00108302FDFD} - (NOXLATE-BANR) - (.Autodesk, Inc. - InstBanr ActiveX Control Module.) -- C:\Program Files\AutoCAD LT 2002 Fra\InstBanr.ocx
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F281A59C-7B65-11D3-8617-0010830243BD} - (Gestion d'AcPreview) - (.Autodesk - AcPreview ActiveX Support.) -- C:\Program Files\AutoCAD LT 2002 Fra\AcPreview.ocx
---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{7AA5D1E9-AB78-4267-A691-B5E40D887A56}: DhcpNameServer = 212.27.40.240 212.27.40.241
O17 - HKLM\System\CCS\Services\Tcpip\..\{A2D3346B-BFB6-4B9A-B640-DFCE5C9B62CE}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{7AA5D1E9-AB78-4267-A691-B5E40D887A56}: DhcpNameServer = 212.27.40.240 212.27.40.241
O17 - HKLM\System\CS1\Services\Tcpip\..\{A2D3346B-BFB6-4B9A-B640-DFCE5C9B62CE}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS3\Services\Tcpip\..\{7AA5D1E9-AB78-4267-A691-B5E40D887A56}: DhcpNameServer = 212.27.40.240 212.27.40.241
O17 - HKLM\System\CS3\Services\Tcpip\..\{A2D3346B-BFB6-4B9A-B640-DFCE5C9B62CE}: DhcpNameServer = 192.168.1.1 192.168.1.11
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
---\\ Protocole additionnel et piratage de protocole (O18)
O18 - Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} . (.Skype Technologies S.A. - Skype add-on for IE.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype for COM API.) -- C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Contrôleur de site Web.) -- C:\Windows\System32\webcheck.dll
---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22)
O22 - SharedTaskScheduler: (no name) - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\Windows\system32\browseui.dll
---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: (Ati External Event Utility) . (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) - C:\Windows\system32\Ati2evxx.exe
O23 - Service: (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: (btwdins) . (.Broadcom Corporation. - Bluetooth Support Server.) - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: (iPod Service) . (.Apple Inc. - iPodService Module (32-bit).) - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: (McMPFSvc) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
O23 - Service: (mcmscsvc) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: (McNaiAnn) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: (McNASvc) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: (McODS) . (.McAfee, Inc. - McAfee VirusScan On-Demand Scan.) - C:\Program Files\McAfee\VirusScan\mcods.exe
O23 - Service: (McProxy) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: (McShield) . (.McAfee, Inc. - McAfee On-Access Scanner service.) - C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
O23 - Service: (mfefire) . (.McAfee, Inc. - McAfee Core Firewall Service.) - C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
O23 - Service: (mfevtp) . (.McAfee, Inc. - McAfee Process Validation Service.) - C:\Windows\system32\mfevtps.exe
O23 - Service: (MSK80Service) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
O23 - Service: (TabletServicePen) . (.Wacom Technology, Corp. - Tablet Service for consumer driver.) - C:\Windows\system32\Pen_Tablet.exe
O23 - Service: (wltrysvc) . (...) - C:\Windows\System32\WLTRYSVC.exe
---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
---\\ Tâches planifiées en automatique (O39)
[MD5.4B36C7D9710C60EA7725685753BBFA5C] [APT] [Launch BCM WLAN Tray] (.Dell Inc..) -- C:\Windows\system32\WLTRAY.exe
[MD5.408D342A757DACE3EA5404C11C019B20] [APT] [{0202026B-27AB-4480-A2C6-ED18C8E38FA0}] (.Pas de propriétaire.) -- C:\Users\lourenco\Desktop\photofiltre studio 8. 0.2\pfs-setup.exe
[MD5.A531E07BBF9BC1CF4EA8BA2F760E3FEE] [APT] [{BA59051C-7912-47EE-B9F9-D213E0493288}] (.Skype Technologies S.A..) -- C:\Program Files\Skype\Phone\Skype.exe
---\\ Pilotes lancés au démarrage (O41)
O41 - Driver: (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
O41 - Driver: C:\Windows\system32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: (i8042prt) . (.Microsoft Corporation - Pilote de port i8042.) - C:\Windows\System32\DRIVERS\i8042prt.sys
O41 - Driver: (kbdclass) . (.Microsoft Corporation - Pilote de la classe Clavier.) - C:\Windows\System32\DRIVERS\kbdclass.sys
O41 - Driver: (kbdhid) . (.Microsoft Corporation - Pilote de filtre clavier HID.) - C:\Windows\System32\DRIVERS\kbdhid.sys
O41 - Driver: (mfenlfk) . (.McAfee, Inc. - McAfee NDIS Light Filter Driver.) - C:\Windows\System32\DRIVERS\mfenlfk.sys
O41 - Driver: McAfee Inc. mfewfpk (mfewfpk) . (.McAfee, Inc. - Anti-Virus Mini-Firewall Driver.) - C:\Windows\System32\drivers\mfewfpk.sys
O41 - Driver: (mouclass) . (.Microsoft Corporation - Pilote de la classe Souris.) - C:\Windows\System32\DRIVERS\mouclass.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: (netbt) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\system32\drivers\pacer.sys (PSched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: (RasAcd) . (.Microsoft Corporation - RAS Automatic Connection Driver.) - C:\Windows\System32\DRIVERS\rasacd.sys
O41 - Driver: (rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: (RDPENCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\system32\tcpipcfg.dll (Smb) . (.Microsoft Corporation - SMB Transport driver.) - C:\Windows\System32\DRIVERS\smb.sys
O41 - Driver: C:\Windows\system32\tcpipcfg.dll (Tcpip) . (.Microsoft Corporation - TCP/IP Driver.) - C:\Windows\System32\drivers\tcpip.sys
O41 - Driver: C:\Windows\system32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Terminal Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
---\\ Recherche particulière de fichiers génériques
[MD5.D07D4C3038F3578FFCE1C0237F2A1253] - (.Microsoft Corporation - Explorateur Windows.) (.11/04/2009 07:27:36.) -- C:\Windows\Explorer.exe [2926592]
[MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) (.21/01/2008 03:23:42.) -- C:\Windows\system32\Wininit.exe [96768]
[MD5.047CDEFF94B63F0A4791372B47427B60] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.22/02/2011 07:21:28.) -- C:\Windows\system32\wininet.dll [916480]
[MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.11/04/2009 07:28:13.) -- C:\Windows\system32\Winlogon.exe [314368]
[MD5.1F05B78AB91C9075565A9D8A4B880BC4] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.11/04/2009 07:32:26.) -- C:\Windows\system32\drivers\atapi.sys [19944]
[MD5.6A4A98CEE84CF9E99564510DDA4BAA47] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.11/04/2009 07:32:49.) -- C:\Windows\system32\drivers\ntfs.sys [1083880]
---\\ Processus lancés
[MD5.56A1CFFFFC8D646A0388DFBF3EC362CF] - (.Microsoft Corporation - Microsoft Tablet PC Input Component.) -- C:\Windows\SYSTEM32\WISPTIS.EXE [244224]
[MD5.7122B0AA2212B07BBFC49BD22215BF3B] - (.Microsoft Corporation - Tablet PC Input Panel Accessory.) -- C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe [304128]
[MD5.A876B5FEB247E65A138A88DFE73FCF32] - (.Wacom Technology, Corp. - Tablet user module for consumer driver.) -- C:\Windows\system32\WTablet\Pen_TabletUser.exe [132392]
[MD5.4B36C7D9710C60EA7725685753BBFA5C] - (.Dell Inc. - Dell Wireless WLAN Card Wireless Network Tr.) -- C:\Windows\System32\WLTRAY.EXE [3810304]
[MD5.F6DC033E6E576291C42287237B9E4C48] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\DellTPad\Apoint.exe [196608]
[MD5.52DB6CDAC5BC7A1FC884E97C41C91213] - (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [248040]
[MD5.874A7610503D482B4DE1C8BB87BC75F5] - (.McAfee, Inc. - McAfee Security Center.) -- C:\Program Files\McAfee.com\Agent\mcagent.exe [1193848]
[MD5.0CFBE2D135A73CA98381FC8CC8BC5A03] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe [421160]
[MD5.C794F7B464165827E99E586483D797A8] - (.Broadcom Corporation. - Bluetooth Tray Application.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe [780840]
[MD5.569E547273C25B019054A12A40400ECE] - (.OpenOffice.org - OpenOffice.org 3.2.) -- C:\Program Files\OpenOffice.org 3\program\soffice.exe [11318784]
[MD5.B3353D24F65E3520199E68FFC50BC667] - (.Alps Electric Co., Ltd. - ApMsgFwd.) -- C:\Program Files\DellTPad\ApMsgFwd.exe [46376]
[MD5.4B723F33D7331F20E06F3A2FD76EC1D5] - (.OpenOffice.org - OpenOffice.org 3.2.) -- C:\Program Files\OpenOffice.org 3\program\soffice.bin [11312128]
[MD5.C574C551637734B13278898FE2D12D15] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\DellTPad\HidFind.exe [40960]
[MD5.982067316CDD1D25C585DEB96418E1CF] - (.Broadcom Corporation. - Bluetooth Stack COM Server.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe [2308648]
[MD5.359937EFD1763DF9F8B8D166BD4CC022] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver for Windows NT/.) -- C:\Program Files\DellTPad\Apntex.exe [49152]
[MD5.6080A176D09435FC8E6E800996656E18] - (.Microsoft Corporation - Console IME.) -- C:\Windows\system32\conime.exe [69120]
[MD5.B19B204CABFA9F225618EDA4A90C1A2C] - (.Microsoft Corporation - Serveur de personnalisation d'entrée.) -- C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe [198656]
[MD5.5C73A2CDFAB36E07160F131AD0477483] - (.Antonio Da Cruz - PhotoFiltre Studio.) -- C:\Program Files\PhotoFiltre Studio\pf-studio.exe [3107840]
[MD5.D938FB6915EA338BDFC0DCF8773634C5] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [912344]
[MD5.E68C1EFDA668BFF3E2023C72E9EF7A93] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files\Mozilla Firefox\plugin-container.exe [16856]
[MD5.BF6D8EB94E4CAF23F7B330256BAE7A63] - (.McAfee, Inc. - McAfee.) -- C:\PROGRA~1\COMMON~1\McAfee\MSC\McUICnt.exe [439376]
[MD5.254AC97C9AF4DDF3F5F57855198527B7] - (.Microsoft Corporation - Windows Problem Reporting.) -- C:\Windows\system32\wermgr.exe [56320]
[MD5.62BB79160F86CD962F312C68C6239BFD] - (.Microsoft Corporation - Windows Update.) -- C:\Windows\system32\wuauclt.exe [53472]
[MD5.EBA8E0791E5A1ACCD87BF64A2CEC90E4] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [654848]
---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
M3 - MFPP: Plugins - [lourenco] -- C:\Program Files\Mozilla FireFox\searchplugins\amazon-france.xml
M3 - MFPP: Plugins - [lourenco] -- C:\Program Files\Mozilla FireFox\searchplugins\cnrtl-tlfi-fr.xml
M3 - MFPP: Plugins - [lourenco] -- C:\Program Files\Mozilla FireFox\searchplugins\eBay-france.xml
M3 - MFPP: Plugins - [lourenco] -- C:\Program Files\Mozilla FireFox\searchplugins\google.xml
M3 - MFPP: Plugins - [lourenco] -- C:\Program Files\Mozilla FireFox\searchplugins\wikipedia-fr.xml
M3 - MFPP: Plugins - [lourenco] -- C:\Program Files\Mozilla FireFox\searchplugins\yahoo-france.xml
P2 - FPN:Firefox Plugin Navigator . (.Sun Microsystems, Inc. - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- C:\Program Files\Mozilla Firefox\Plugins\npdeployJava1.dll
P2 - FPN:Firefox Plugin Navigator . (.mozilla.org - Default Plug-in.) -- C:\Program Files\Mozilla Firefox\Plugins\npnul32.dll
P2 - FPN:Firefox Plugin Navigator . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape "9.4.1".) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin2.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin3.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin4.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin5.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin6.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin7.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Pas de propriétaire - Pas de description.) -- C:\Windows\system32\Macromed\Flash\NPSWF32.dll
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Pas de propriétaire - Pas de description.) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 4.0.60310.0.) -- c:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll
P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=1.1.5] - (.the VideoLAN Team - Version 1.1.5, copyright 1996-2010 The VideoLAN Team<br><a href="http:.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll
M2 - MFEP: prefs.js [lourenco - jsegnppo.default\{20a82645-c095-46ed-80e3-08825760534b}] [MicrosoftCG] Microsoft .NET Framework Assistant v1.2.1 (.Microsoft.)
---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.microsoft.com/fr-fr/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.microsoft.com/fr-fr/
R0 - HKUS\S-1-5-21-4294092055-1500686753-2937517991-1000\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.microsoft.com/fr-fr/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.microsoft.com/fr-fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.microsoft.com/fr-fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKUS\S-1-5-21-4294092055-1500686753-2937517991-1000\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Internet Explorer.) (8.00.6001.18702 (longhorn_ie8_rtm(wmbla).090308-0339)) -- C:\Windows\system32\ieframe.dll
---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
---\\ ---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: McAfee Phishing Filter - {27B4851A-3207-45A2-B947-BE8AFE6163AB} . (.Pas de propriétaire - Pas de description.) -- c:\progra~1\mcafee\msk\mskapbho.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} Clé orpheline
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} . (.McAfee, Inc. - VSCore Script Scanner.) -- C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20110127124833.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - WindowsLiveLogin.dll.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Skype Technologies S.A. - Skype add-on for IE.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll
---\\ ---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [Windows Defender] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe
O4 - HKLM\..\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] . (.Dell Inc. - Dell Wireless WLAN Card Wireless Network Tr.) -- C:\Windows\system32\WLTRAY.exe
O4 - HKLM\..\Run: [Apoint] . (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\DellTPad\Apoint.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O4 - HKLM\..\Run: [mcui_exe] . (.McAfee, Inc. - McAfee Security Center.) -- C:\Program Files\McAfee.com\Agent\mcagent.exe
O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe
O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware (reboot)] . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
O4 - HKCU\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] oobefldr.dll
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] oobefldr.dll
O4 - HKUS\S-1-5-21-4294092055-1500686753-2937517991-1000\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
O4 - HKUS\S-1-5-21-4294092055-1500686753-2937517991-1000\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - Global Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk . (.Adobe Systems, Inc..) -- C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk . (.Broadcom Corporation..) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... . (.Pas de propriétaire - Pas de description.) -- C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O8 - Extra context menu item: Envoyer l'&image au périphérique Bluetooth... . (.Pas de propriétaire - Pas de description.) -- C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} . (...) -- C:\Program Files\Skype\Toolbars\Internet Explorer\icon.ico
O9 - Extra button: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} . (...) -- C:\Program Files\WIDCOMM\Bluetooth Software\bt_hot_icon.ico
---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\Windows\system32\wshbth.dll
O10 - WLSP:\000000000008\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files\Bonjour\mdnsNSP.dll
---\\ Objets ActiveX (Downloaded Program Files)(O16)
O16 - DPF: {1F831FA7-42FC-11D4-95A6-0080AD30DCE1} - (InstaFred) - (.Autodesk, Inc. - InstFred ActiveX Control Module.) -- C:\Program Files\AutoCAD LT 2002 Fra\InstFred.ocx
O16 - DPF: {78AF2F24-A9C3-11D3-BF8C-0060B0FCC122} - (Contrôle d'AcDcToday) - (.Autodesk - AcDcToday ActiveX Control Module.) -- C:\Program Files\AutoCAD LT 2002 Fra\AcDcToday.ocx
O16 - DPF: {AE563727-B4F5-11D4-A415-00108302FDFD} - (NOXLATE-BANR) - (.Autodesk, Inc. - InstBanr ActiveX Control Module.) -- C:\Program Files\AutoCAD LT 2002 Fra\InstBanr.ocx
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F281A59C-7B65-11D3-8617-0010830243BD} - (Gestion d'AcPreview) - (.Autodesk - AcPreview ActiveX Support.) -- C:\Program Files\AutoCAD LT 2002 Fra\AcPreview.ocx
---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{7AA5D1E9-AB78-4267-A691-B5E40D887A56}: DhcpNameServer = 212.27.40.240 212.27.40.241
O17 - HKLM\System\CCS\Services\Tcpip\..\{A2D3346B-BFB6-4B9A-B640-DFCE5C9B62CE}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{7AA5D1E9-AB78-4267-A691-B5E40D887A56}: DhcpNameServer = 212.27.40.240 212.27.40.241
O17 - HKLM\System\CS1\Services\Tcpip\..\{A2D3346B-BFB6-4B9A-B640-DFCE5C9B62CE}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS3\Services\Tcpip\..\{7AA5D1E9-AB78-4267-A691-B5E40D887A56}: DhcpNameServer = 212.27.40.240 212.27.40.241
O17 - HKLM\System\CS3\Services\Tcpip\..\{A2D3346B-BFB6-4B9A-B640-DFCE5C9B62CE}: DhcpNameServer = 192.168.1.1 192.168.1.11
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
---\\ Protocole additionnel et piratage de protocole (O18)
O18 - Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} . (.Skype Technologies S.A. - Skype add-on for IE.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype for COM API.) -- C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Contrôleur de site Web.) -- C:\Windows\System32\webcheck.dll
---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22)
O22 - SharedTaskScheduler: (no name) - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\Windows\system32\browseui.dll
---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: (Ati External Event Utility) . (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) - C:\Windows\system32\Ati2evxx.exe
O23 - Service: (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: (btwdins) . (.Broadcom Corporation. - Bluetooth Support Server.) - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: (iPod Service) . (.Apple Inc. - iPodService Module (32-bit).) - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: (McMPFSvc) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
O23 - Service: (mcmscsvc) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: (McNaiAnn) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: (McNASvc) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: (McODS) . (.McAfee, Inc. - McAfee VirusScan On-Demand Scan.) - C:\Program Files\McAfee\VirusScan\mcods.exe
O23 - Service: (McProxy) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
O23 - Service: (McShield) . (.McAfee, Inc. - McAfee On-Access Scanner service.) - C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
O23 - Service: (mfefire) . (.McAfee, Inc. - McAfee Core Firewall Service.) - C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
O23 - Service: (mfevtp) . (.McAfee, Inc. - McAfee Process Validation Service.) - C:\Windows\system32\mfevtps.exe
O23 - Service: (MSK80Service) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
O23 - Service: (TabletServicePen) . (.Wacom Technology, Corp. - Tablet Service for consumer driver.) - C:\Windows\system32\Pen_Tablet.exe
O23 - Service: (wltrysvc) . (...) - C:\Windows\System32\WLTRYSVC.exe
---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
---\\ Tâches planifiées en automatique (O39)
[MD5.4B36C7D9710C60EA7725685753BBFA5C] [APT] [Launch BCM WLAN Tray] (.Dell Inc..) -- C:\Windows\system32\WLTRAY.exe
[MD5.408D342A757DACE3EA5404C11C019B20] [APT] [{0202026B-27AB-4480-A2C6-ED18C8E38FA0}] (.Pas de propriétaire.) -- C:\Users\lourenco\Desktop\photofiltre studio 8. 0.2\pfs-setup.exe
[MD5.A531E07BBF9BC1CF4EA8BA2F760E3FEE] [APT] [{BA59051C-7912-47EE-B9F9-D213E0493288}] (.Skype Technologies S.A..) -- C:\Program Files\Skype\Phone\Skype.exe
---\\ Pilotes lancés au démarrage (O41)
O41 - Driver: (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
O41 - Driver: C:\Windows\system32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: (i8042prt) . (.Microsoft Corporation - Pilote de port i8042.) - C:\Windows\System32\DRIVERS\i8042prt.sys
O41 - Driver: (kbdclass) . (.Microsoft Corporation - Pilote de la classe Clavier.) - C:\Windows\System32\DRIVERS\kbdclass.sys
O41 - Driver: (kbdhid) . (.Microsoft Corporation - Pilote de filtre clavier HID.) - C:\Windows\System32\DRIVERS\kbdhid.sys
O41 - Driver: (mfenlfk) . (.McAfee, Inc. - McAfee NDIS Light Filter Driver.) - C:\Windows\System32\DRIVERS\mfenlfk.sys
O41 - Driver: McAfee Inc. mfewfpk (mfewfpk) . (.McAfee, Inc. - Anti-Virus Mini-Firewall Driver.) - C:\Windows\System32\drivers\mfewfpk.sys
O41 - Driver: (mouclass) . (.Microsoft Corporation - Pilote de la classe Souris.) - C:\Windows\System32\DRIVERS\mouclass.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: (netbt) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\system32\drivers\pacer.sys (PSched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: (RasAcd) . (.Microsoft Corporation - RAS Automatic Connection Driver.) - C:\Windows\System32\DRIVERS\rasacd.sys
O41 - Driver: (rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: (RDPENCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\system32\tcpipcfg.dll (Smb) . (.Microsoft Corporation - SMB Transport driver.) - C:\Windows\System32\DRIVERS\smb.sys
O41 - Driver: C:\Windows\system32\tcpipcfg.dll (Tcpip) . (.Microsoft Corporation - TCP/IP Driver.) - C:\Windows\System32\drivers\tcpip.sys
O41 - Driver: C:\Windows\system32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Terminal Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
goa125
Messages postés
164
Date d'inscription
dimanche 29 août 2010
Statut
Membre
Dernière intervention
22 février 2017
4
18 mai 2011 à 20:17
18 mai 2011 à 20:17
et:
---\\ Logiciels installés (O42)
O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin
O42 - Logiciel: Adobe Photoshop 7.0 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Photoshop 7.0
O42 - Logiciel: Adobe Reader 9.4.1 - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-A94000000001}
O42 - Logiciel: AnswerWorks Runtime - (.Pas de propriétaire.) [HKLM] -- AnswerWorks 3.0
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {2DC94AFD-A6E2-4AB4-9132-4A3F8E07B386}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {CACAEB5F-174D-4C7C-AC56-A33289A807CA}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {C41300B9-185D-475E-BFEC-39EF732F19B1}
O42 - Logiciel: Archiveur WinRAR - (.Pas de propriétaire.) [HKLM] -- WinRAR archiver
O42 - Logiciel: Assistant de connexion Windows Live - (.Microsoft Corporation.) [HKLM] -- {DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
O42 - Logiciel: Audacity 1.2.6 - (.Pas de propriétaire.) [HKLM] -- Audacity_is1
O42 - Logiciel: AutoCAD LT 2002 - Français - (.Autodesk.) [HKLM] -- {5783F2D7-0109-040C-0000-0060B0CE6BBA}
O42 - Logiciel: Balls of Steel v1.0 - (.Pas de propriétaire.) [HKLM] -- Balls of Steel v1.0
O42 - Logiciel: Bigle 3D - (.ALC-WBC.) [HKLM] -- Bigle 3D
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {2A981294-F14C-4F0F-9627-D793270922F8}
O42 - Logiciel: Broadcom Gigabit NetLink Controller - (.Broadcom Corporation.) [HKLM] -- {9AF0B106-56F1-461B-A270-95BC1682E282}
O42 - Logiciel: Call of Juarez - Bound in Blood - (.Ubisoft.) [HKLM] -- InstallShield_{FEFAF112-4DA8-479C-89E2-7DE25091711A}
O42 - Logiciel: Catalyst Control Center - Branding - (.ATI.) [HKLM] -- {4CA09BF7-1CFC-44B8-80EA-7B4D15D12DC5}
O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM] -- {415B2719-AD3A-4944-B404-C472DB6085B3}
O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM] -- {83770D14-21B9-44B3-8689-F7B523F94560}
O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM] -- {669C7BD8-DAA2-49B6-966C-F1E2AAE6B17E}
O42 - Logiciel: Dell Resource CD - (.Nom de votre société.) [HKLM] -- {42929F0F-CE14-47AF-9FC7-FF297A603021}
O42 - Logiciel: Dell Touchpad - (.Alps Electric.) [HKLM] -- {9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}
O42 - Logiciel: Dell Wireless WLAN Card Utility - (.Dell Inc..) [HKLM] -- Broadcom 802.11 Application
O42 - Logiciel: Free Video Converter - (.Extensoft.) [HKLM] -- Free Video Converter
O42 - Logiciel: Google SketchUp 8 - (.Google, Inc..) [HKLM] -- {06BF1B44-DF6B-4EC8-BE2B-825CB989DDCC}
O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB953595
O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB958484
O42 - Logiciel: ITECIR Driver - (.ITE.) [HKLM] -- {FCED9B62-34FF-4C15-8A23-F65221F7874D}
O42 - Logiciel: Inkscape 0.48.0 - (.Pas de propriétaire.) [HKLM] -- Inkscape
O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- WinLiveSuite_Wave3
O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- {133742BA-6F46-4D3E-85AF-78631D9AD8B8}
O42 - Logiciel: Integrated Webcam Driver (1.06.03.0309) - (.Creative Technology Ltd..) [HKLM] -- Creative OA001
O42 - Logiciel: Java(TM) 6 Update 20 - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216020FF}
O42 - Logiciel: MPEG4E VFW - H.264/MPEG-4 AVC codec (remove only) - (.Pas de propriétaire.) [HKLM] -- MPEG4E
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
O42 - Logiciel: Malwarebytes' Anti-Malware - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1
O42 - Logiciel: McAfee Clean Up Tool - (.Pas de propriétaire.) [HKLM] -- McAfee Clean Up Tool
O42 - Logiciel: McAfee SecurityCenter - (.McAfee, Inc..) [HKLM] -- MSC
O42 - Logiciel: MediaCoder 0.7.5.4799 - (.Broad Intelligence.) [HKLM] -- MediaCoder
O42 - Logiciel: Microsoft .NET Framework 3.5 Language Pack SP1 - fra - (.Microsoft Corporation.) [HKLM] -- {3E31821C-7917-367E-938E-E65FC413EA31}
O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 SP1
O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile FRA Language Pack - (.Microsoft Corporation.) [HKLM] -- {0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E}
O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM] -- {770657D0-A123-3C07-8E44-1C83EC895118}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {7299052b-02a4-4627-81f2-1818da5d550d}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - KB2467175 - (.Microsoft Corporation.) [HKLM] -- {a0fe116e-9a8a-466f-aee0-625cb7c207e3}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 - (.Microsoft Corporation.) [HKLM] -- {86CE85E6-DBAC-3FFD-B977-E4B79F83C909}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
O42 - Logiciel: Module linguistique Microsoft .NET Framework 3.5 SP1- fra - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 Language Pack SP1 - fra
O42 - Logiciel: Module linguistique Microsoft .NET Framework 4 Client Profile FRA - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile FRA Language Pack
O42 - Logiciel: Mozilla Firefox (3.6.17) - (.Mozilla.) [HKLM] -- Mozilla Firefox (3.6.17)
O42 - Logiciel: OpenOffice.org 3.2 - (.OpenOffice.org.) [HKLM] -- {266517E6-D866-439D-919C-B8B1A52E6080}
O42 - Logiciel: Outil de téléchargement Windows Live - (.Microsoft Corporation.) [HKLM] -- {205C6BDD-7B73-42DE-8505-9A093F35A238}
O42 - Logiciel: Package de pilotes Windows - ITE Tech.Inc. (itecir) HIDClass (12/18/2007 5.0.0004.6) - (.ITE Tech.Inc..) [HKLM] -- 1A5A977E511ED61600002E176F048ED6FCBD8560
O42 - Logiciel: Pen Tablet - (.Wacom Technology Corp..) [HKLM] -- Pen Tablet Driver
O42 - Logiciel: PhotoFiltre Studio - (.Pas de propriétaire.) [HKLM] -- PhotoFiltre Studio
O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {57752979-A1C9-4C02-856B-FBB27AC4E02C}
O42 - Logiciel: RICOH R5C83x/84x Flash Media Controller Driver Ver.3.54.05 - (.RICOH.) [HKLM] -- {59F6A514-9813-47A3-948C-8A155460CC2A}
O42 - Logiciel: Recover My Files - (.GetData Pty Ltd.) [HKLM] -- Recover My Files_is1
O42 - Logiciel: SUPER © Version 2010.bld.42 (Nov 7, 2010) - (.eRightSoft.) [HKLM] -- SUPER ©
O42 - Logiciel: Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB2416473
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2446708
O42 - Logiciel: Skype Toolbars - (.Skype Technologies S.A..) [HKLM] -- {CD95D125-2992-4858-B3EF-5F6FB52FBAD6}
O42 - Logiciel: Skype(TM) 5.1 - (.Skype Technologies S.A..) [HKLM] -- {E633D396-5188-4E9D-8F6B-BFB8BF3467E8}
O42 - Logiciel: Toon Boom Studio 4.0 - (.Toon Boom Animation Inc..) [HKLM] -- {62616A4E-82E4-424A-A201-3D29ABB6B7FD}
O42 - Logiciel: Update for Microsoft .NET Framework 3.5 SP1 (KB963707) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707
O42 - Logiciel: VLC media player 1.1.5 - (.VideoLAN.) [HKLM] -- VLC media player
O42 - Logiciel: Visual Install Pack - (.Phoenixx.) [HKLM] -- {549CC831-2542-47F2-A855-2F41E50EF015}
O42 - Logiciel: Volo View Express - (.Pas de propriétaire.) [HKLM] -- Volo View Express
O42 - Logiciel: WIDCOMM Bluetooth Software 6.2.0.6600 - (.Dell.) [HKLM] -- {E464702F-5433-46EC-8F65-159276C0A54F}
O42 - Logiciel: Windows Live Call - (.Microsoft Corporation.) [HKLM] -- {B3B487E7-6171-4376-9074-B28082CEB504}
O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM] -- {3175E049-F9A9-4A3D-8F19-AC9FB04514D1}
O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {445B183D-F4F1-45C8-B9DB-F11355CA657B}
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM] -- {2A697B53-0DE3-42DA-B41D-C3F804B1C538}
O42 - Logiciel: µTorrent - (.Pas de propriétaire.) [HKLM] -- uTorrent
---\\ HKCU & HKLM Software Keys
[HKCU\Software\AC3Filter]
[HKCU\Software\ALC-WBC]
[HKCU\Software\ALWIL Software]
[HKCU\Software\ATI Technologies Inc.]
[HKCU\Software\ATI]
[HKCU\Software\Adobe]
[HKCU\Software\Alps]
[HKCU\Software\AppDataLow\Software\Microsoft]
[HKCU\Software\AppDataLow\Software]
[HKCU\Software\AppDataLow]
[HKCU\Software\Apple Computer, Inc.]
[HKCU\Software\Apple Inc.]
[HKCU\Software\Audacity]
[HKCU\Software\Autodesk]
[HKCU\Software\BitTorrent]
[HKCU\Software\Broadcom]
[HKCU\Software\Bugsplat]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\Convar]
[HKCU\Software\CoreAAC]
[HKCU\Software\Dell Computer Corporation]
[HKCU\Software\EPSON]
[HKCU\Software\Extensoft]
[HKCU\Software\Freeware]
[HKCU\Software\GetData]
[HKCU\Software\Google]
[HKCU\Software\Haali]
[HKCU\Software\Hewlett-Packard]
[HKCU\Software\HookNetwork]
[HKCU\Software\IM Providers]
[HKCU\Software\JavaSoft]
[HKCU\Software\KC Softwares]
[HKCU\Software\Kerkythea Rendering System]
[HKCU\Software\MPEG4E.COM]
[HKCU\Software\Macromedia]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\McAfee]
[HKCU\Software\Mozilla]
[HKCU\Software\Netscape]
[HKCU\Software\OpenOffice.org]
[HKCU\Software\Paul Glagla]
[HKCU\Software\Policies]
[HKCU\Software\Skype]
[HKCU\Software\Softonic]
[HKCU\Software\SpeedBit]
[HKCU\Software\Toon Boom Animation Inc.]
[HKCU\Software\Trend Micro]
[HKCU\Software\Visual Pinball]
[HKCU\Software\Widcomm]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\WinRAR]
[HKCU\Software\Zyrax Software]
[HKLM\Software\ALWIL Software]
[HKLM\Software\ASGVIS]
[HKLM\Software\ATI Technologies]
[HKLM\Software\ATI]
[HKLM\Software\Adobe]
[HKLM\Software\Alps]
[HKLM\Software\America Online]
[HKLM\Software\Apple Computer, Inc.]
[HKLM\Software\Apple Inc.]
[HKLM\Software\Autodesk]
[HKLM\Software\AviSynth]
[HKLM\Software\BcmSetup]
[HKLM\Software\Broadcom]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Creative Tech]
[HKLM\Software\Dell Computer Corporation]
[HKLM\Software\EPSON]
[HKLM\Software\Empire Interactive]
[HKLM\Software\Extensoft]
[HKLM\Software\GEAR Software]
[HKLM\Software\Google]
[HKLM\Software\Hewlett-Packard]
[HKLM\Software\ITE]
[HKLM\Software\InstalledOptions]
[HKLM\Software\Intel]
[HKLM\Software\JavaSoft]
[HKLM\Software\JreMetrics]
[HKLM\Software\Licenses]
[HKLM\Software\Macromedia]
[HKLM\Software\Malwarebytes' Anti-Malware]
[HKLM\Software\McAfee.com]
[HKLM\Software\McAfee]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\ODBC]
[HKLM\Software\OldTimer Tools]
[HKLM\Software\OpenOffice.org]
[HKLM\Software\Pinball Wizards]
[HKLM\Software\Policies]
[HKLM\Software\RICOH]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\Skype]
[HKLM\Software\Sonic]
[HKLM\Software\Sun Microsystems]
[HKLM\Software\Techland]
[HKLM\Software\Toon Boom Animation Inc.]
[HKLM\Software\VideoLAN]
[HKLM\Software\Volatile]
[HKLM\Software\WOW6432Node]
[HKLM\Software\Wacom]
[HKLM\Software\WexTech Systems]
[HKLM\Software\Widcomm]
[HKLM\Software\Wildfire Studios]
[HKLM\Software\WinRAR]
[HKLM\Software\mozilla.org]
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 09/01/2011 - 16:40:38 - [309557166] ----D- C:\Program Files\Adobe
O43 - CFD: 21/12/2010 - 12:54:10 - [0] ----D- C:\Program Files\Alwil Software
O43 - CFD: 27/04/2011 - 13:17:34 - [2306366] ----D- C:\Program Files\Apple Software Update
O43 - CFD: 21/12/2010 - 12:01:20 - [14279623] ----D- C:\Program Files\ATI
O43 - CFD: 21/12/2010 - 12:03:00 - [53084043] ----D- C:\Program Files\ATI Technologies
O43 - CFD: 14/05/2011 - 22:21:52 - [8690968] ----D- C:\Program Files\Audacity
O43 - CFD: 10/01/2011 - 14:48:12 - [73746786] ----D- C:\Program Files\AutoCAD LT 2002 Fra
O43 - CFD: 13/01/2011 - 10:37:12 - [146393] ----D- C:\Program Files\AviSynth 2.5
O43 - CFD: 15/05/2011 - 12:35:34 - [2336564] ----D- C:\Program Files\Bigle 3D
O43 - CFD: 27/04/2011 - 13:16:00 - [617029] ----D- C:\Program Files\Bonjour
O43 - CFD: 21/12/2010 - 11:38:26 - [346285] ----D- C:\Program Files\Broadcom
O43 - CFD: 21/12/2010 - 17:58:26 - [3100711] ----D- C:\Program Files\Cisco
O43 - CFD: 27/04/2011 - 13:15:48 - [492663882] ----D- C:\Program Files\Common Files
O43 - CFD: 22/12/2010 - 22:29:18 - [0] ----D- C:\Program Files\Convar
O43 - CFD: 12/03/2011 - 18:15:22 - [0] ----D- C:\Program Files\DAP
O43 - CFD: 11/03/2011 - 14:19:18 - [22747921] ----D- C:\Program Files\Dell
O43 - CFD: 24/12/2010 - 17:26:58 - [74919465] ----D- C:\Program Files\Dell Support Center
O43 - CFD: 24/12/2010 - 17:19:38 - [243831895] ----D- C:\Program Files\Dell Webcam
O43 - CFD: 21/12/2010 - 18:13:10 - [12270360] ----D- C:\Program Files\DellTPad
O43 - CFD: 21/12/2010 - 18:15:52 - [794080] ----D- C:\Program Files\DIFX
O43 - CFD: 20/04/2011 - 19:03:02 - [0] ----D- C:\Program Files\Empire Interactive
O43 - CFD: 13/01/2011 - 10:35:08 - [29038648] ----D- C:\Program Files\eRightSoft
O43 - CFD: 21/12/2010 - 11:14:58 - [0] -SH-D- C:\Program Files\Fichiers communs
O43 - CFD: 13/01/2011 - 11:07:24 - [36366167] ----D- C:\Program Files\Free Video Converter
O43 - CFD: 22/12/2010 - 22:32:32 - [13788558] ----D- C:\Program Files\GetData
O43 - CFD: 10/01/2011 - 14:49:06 - [77308484] ----D- C:\Program Files\Google
O43 - CFD: 13/01/2011 - 10:45:14 - [0] ----D- C:\Program Files\Haali
O43 - CFD: 24/12/2010 - 17:29:06 - [19187488] ----D- C:\Program Files\HyCam2
O43 - CFD: 15/05/2011 - 12:39:48 - [162783256] ----D- C:\Program Files\Inkscape
O43 - CFD: 20/04/2011 - 19:03:02 - [17425308] --H-D- C:\Program Files\InstallShield Installation Information
O43 - CFD: 21/12/2010 - 11:40:34 - [64714] ----D- C:\Program Files\Intel
O43 - CFD: 28/04/2011 - 03:29:24 - [5688590] ----D- C:\Program Files\Internet Explorer
O43 - CFD: 27/04/2011 - 13:19:22 - [1856627] ----D- C:\Program Files\iPod
O43 - CFD: 27/04/2011 - 13:20:14 - [127660511] ----D- C:\Program Files\iTunes
O43 - CFD: 21/12/2010 - 18:23:06 - [91513996] ----D- C:\Program Files\Java
O43 - CFD: 21/12/2010 - 18:24:52 - [16295712] ----D- C:\Program Files\JRE
O43 - CFD: 12/03/2011 - 18:22:04 - [9224388] ----D- C:\Program Files\Kerkythea Rendering System
O43 - CFD: 25/01/2011 - 01:37:20 - [4921892] ----D- C:\Program Files\Malwarebytes' Anti-Malware
O43 - CFD: 02/02/2011 - 21:10:44 - [514840194] ----D- C:\Program Files\McAfee
O43 - CFD: 03/02/2011 - 07:54:20 - [2087009] ----D- C:\Program Files\McAfee.com
O43 - CFD: 24/01/2011 - 21:29:36 - [97276034] ----D- C:\Program Files\MediaCoder
O43 - CFD: 03/02/2011 - 22:34:50 - [226432] ----D- C:\Program Files\Microsoft
O43 - CFD: 02/11/2006 - 14:37:36 - [93446071] ----D- C:\Program Files\Microsoft Games
O43 - CFD: 28/04/2011 - 03:31:26 - [38388859] ----D- C:\Program Files\Microsoft Silverlight
O43 - CFD: 21/12/2010 - 17:10:56 - [15715] ----D- C:\Program Files\Microsoft.NET
O43 - CFD: 26/12/2010 - 15:27:24 - [99342446] ----D- C:\Program Files\Movie Maker
O43 - CFD: 04/05/2011 - 21:55:02 - [32799480] ----D- C:\Program Files\Mozilla Firefox
O43 - CFD: 02/11/2006 - 14:37:36 - [25757] ----D- C:\Program Files\MSBuild
O43 - CFD: 21/12/2010 - 18:24:50 - [386500926] ----D- C:\Program Files\OpenOffice.org 3
O43 - CFD: 04/02/2011 - 09:14:16 - [5126647] ----D- C:\Program Files\PhotoFiltre Studio
O43 - CFD: 23/01/2011 - 15:58:36 - [13414995] ----D- C:\Program Files\Pinball
O43 - CFD: 16/01/2011 - 11:52:48 - [71929229] ----D- C:\Program Files\Pinball Wizards
O43 - CFD: 27/04/2011 - 13:18:26 - [76322555] ----D- C:\Program Files\QuickTime
O43 - CFD: 02/11/2006 - 14:37:36 - [38694657] ----D- C:\Program Files\Reference Assemblies
O43 - CFD: 12/01/2011 - 00:07:24 - [28275803] R---D- C:\Program Files\Skype
O43 - CFD: 09/01/2011 - 16:57:06 - [27655523] ----D- C:\Program Files\Tablet
O43 - CFD: 14/04/2011 - 00:45:36 - [63084532] ----D- C:\Program Files\Toon Boom Animation
O43 - CFD: 24/01/2011 - 22:06:28 - [388096] ----D- C:\Program Files\Trend Micro
O43 - CFD: 02/11/2006 - 15:01:56 - [0] --H-D- C:\Program Files\Uninstall Information
O43 - CFD: 23/03/2011 - 22:13:10 - [396152] ----D- C:\Program Files\uTorrent
O43 - CFD: 21/12/2010 - 18:21:36 - [80691317] ----D- C:\Program Files\VideoLAN
O43 - CFD: 10/01/2011 - 14:02:12 - [23905784] ----D- C:\Program Files\Volo View Express
O43 - CFD: 10/01/2011 - 14:02:22 - [4573] ----D- C:\Program Files\WexTech
O43 - CFD: 11/03/2011 - 15:18:08 - [17359239] ----D- C:\Program Files\WIDCOMM
O43 - CFD: 26/12/2010 - 15:27:24 - [1016832] ----D- C:\Program Files\Windows Calendar
O43 - CFD: 26/12/2010 - 15:27:24 - [2737152] ----D- C:\Program Files\Windows Collaboration
O43 - CFD: 26/12/2010 - 15:27:22 - [4490624] ----D- C:\Program Files\Windows Defender
O43 - CFD: 26/12/2010 - 15:27:24 - [7084664] ----D- C:\Program Files\Windows Journal
O43 - CFD: 03/02/2011 - 22:34:44 - [45806173] ----D- C:\Program Files\Windows Live
O43 - CFD: 03/02/2011 - 22:34:32 - [245112] ----D- C:\Program Files\Windows Live SkyDrive
O43 - CFD: 15/05/2011 - 03:02:06 - [9116344] ----D- C:\Program Files\Windows Mail
O43 - CFD: 26/12/2010 - 15:27:24 - [4498121] ----D- C:\Program Files\Windows Media Player
O43 - CFD: 21/12/2010 - 11:14:58 - [7957544] ----D- C:\Program Files\Windows NT
O43 - CFD: 26/12/2010 - 15:27:24 - [13528738] ----D- C:\Program Files\Windows Photo Gallery
O43 - CFD: 26/12/2010 - 16:53:46 - [134144] ----D- C:\Program Files\Windows Portable Devices
O43 - CFD: 26/12/2010 - 15:27:24 - [6527558] ----D- C:\Program Files\Windows Sidebar
O43 - CFD: 16/01/2011 - 00:51:04 - [3525705] ----D- C:\Program Files\WinRAR
O43 - CFD: 18/05/2011 - 19:46:34 - [4835797] ----D- C:\Program Files\ZHPDiag
O43 - CFD: 09/01/2011 - 16:40:38 - [56529242] ----D- C:\Program Files\Common Files\Adobe
O43 - CFD: 27/04/2011 - 13:19:22 - [91350844] ----D- C:\Program Files\Common Files\Apple
O43 - CFD: 10/01/2011 - 14:01:40 - [21523429] ----D- C:\Program Files\Common Files\Autodesk Shared
O43 - CFD: 20/04/2011 - 19:03:04 - [3952460] ----D- C:\Program Files\Common Files\InstallShield
O43 - CFD: 21/12/2010 - 18:24:26 - [1231815] ----D- C:\Program Files\Common Files\Java
O43 - CFD: 10/01/2011 - 14:02:22 - [1494909] ----D- C:\Program Files\Common Files\LHSPF
O43 - CFD: 02/02/2011 - 21:10:34 - [25267955] ----D- C:\Program Files\Common Files\McAfee
O43 - CFD: 03/02/2011 - 22:34:36 - [199669993] ----D- C:\Program Files\Common Files\microsoft shared
O43 - CFD: 02/11/2006 - 13:18:34 - [2702] ----D- C:\Program Files\Common Files\Services
O43 - CFD: 12/01/2011 - 00:06:36 - [2164104] ----D- C:\Program Files\Common Files\Skype
O43 - CFD: 02/11/2006 - 13:18:34 - [41101735] ----D- C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 26/12/2010 - 15:27:24 - [8737810] ----D- C:\Program Files\Common Files\System
O43 - CFD: 10/01/2011 - 14:02:22 - [315392] ----D- C:\Program Files\Common Files\Wextech Shared
O43 - CFD: 26/12/2010 - 14:23:08 - [39321492] ----D- C:\Program Files\Common Files\Windows Live
O43 - CFD: 01/01/2011 - 22:14:34 - [763] --H-D- C:\ProgramData\Adobe
O43 - CFD: 21/12/2010 - 12:54:10 - [214660] --H-D- C:\ProgramData\Alwil Software
O43 - CFD: 09/01/2011 - 16:58:34 - [9] --H-D- C:\ProgramData\AppData
O43 - CFD: 27/04/2011 - 13:15:48 - [32173568] --H-D- C:\ProgramData\Apple
O43 - CFD: 27/04/2011 - 13:19:22 - [65308456] --H-D- C:\ProgramData\Apple Computer
O43 - CFD: 02/11/2006 - 15:02:04 - [0] -SH-D- C:\ProgramData\Application Data
O43 - CFD: 23/03/2011 - 23:11:36 - [1750744] --H-D- C:\ProgramData\ASGVIS
O43 - CFD: 21/12/2010 - 12:06:50 - [300] --H-D- C:\ProgramData\ATI
O43 - CFD: 21/12/2010 - 11:14:58 - [0] ----D- C:\ProgramData\Bureau
O43 - CFD: 02/11/2006 - 15:02:04 - [0] ----D- C:\ProgramData\Desktop
O43 - CFD: 02/11/2006 - 15:02:04 - [0] ----D- C:\ProgramData\Documents
O43 - CFD: 21/12/2010 - 11:14:58 - [0] ----D- C:\ProgramData\Favoris
O43 - CFD: 02/11/2006 - 15:02:04 - [0] ----D- C:\ProgramData\Favorites
O43 - CFD: 10/01/2011 - 14:55:22 - [0] --H-D- C:\ProgramData\Google
O43 - CFD: 25/01/2011 - 01:37:20 - [6708406] --H-D- C:\ProgramData\Malwarebytes
O43 - CFD: 02/02/2011 - 21:16:36 - [42894314] --H-D- C:\ProgramData\McAfee
O43 - CFD: 21/12/2010 - 11:14:58 - [0] ----D- C:\ProgramData\Menu Démarrer
O43 - CFD: 03/02/2011 - 22:11:06 - [1658080636] -S--D- C:\ProgramData\Microsoft
O43 - CFD: 21/12/2010 - 11:14:58 - [0] ----D- C:\ProgramData\Modèles
O43 - CFD: 12/01/2011 - 00:06:34 - [21348464] --H-D- C:\ProgramData\Skype
O43 - CFD: 12/03/2011 - 18:14:32 - [0] --H-D- C:\ProgramData\SpeedBit
O43 - CFD: 02/11/2006 - 15:02:04 - [0] ----D- C:\ProgramData\Start Menu
O43 - CFD: 21/12/2010 - 18:24:26 - [119] --H-D- C:\ProgramData\Sun
O43 - CFD: 12/04/2011 - 00:52:06 - [0] --H-D- C:\ProgramData\TEMP
O43 - CFD: 02/11/2006 - 15:02:06 - [0] ----D- C:\ProgramData\Templates
O43 - CFD: 13/01/2011 - 10:44:28 - [3691] --H-D- C:\ProgramData\VideoConverter
O43 - CFD: 03/02/2011 - 19:47:00 - [0] --H-D- C:\ProgramData\WindowsSearch
O43 - CFD: 17/05/2011 - 16:54:24 - [5627225] --H-D- C:\Users\lourenco\AppData\Roaming\Adobe
O43 - CFD: 27/04/2011 - 13:52:54 - [214988] --H-D- C:\Users\lourenco\AppData\Roaming\Apple Computer
O43 - CFD: 21/12/2010 - 12:06:50 - [0] --H-D- C:\Users\lourenco\AppData\Roaming\ATI
O43 - CFD: 24/01/2011 - 21:29:30 - [15996] --H-D- C:\Users\lourenco\AppData\Roaming\Broad Intelligence
O43 - CFD: 13/01/2011 - 23:32:34 - [199] --H-D- C:\Users\lourenco\AppData\Roaming\dvdcss
O43 - CFD: 27/12/2010 - 21:42:54 - [0] --H-D- C:\Users\lourenco\AppData\Roaming\EPSON
O43 - CFD: 10/01/2011 - 14:56:10 - [396] --H-D- C:\Users\lourenco\AppData\Roaming\Google
O43 - CFD: 21/12/2010 - 11:16:38 - [0] --H-D- C:\Users\lourenco\AppData\Roaming\Identities
O43 - CFD: 15/05/2011 - 12:53:34 - [25918] --H-D- C:\Users\lourenco\AppData\Roaming\inkscape
O43 - CFD: 21/12/2010 - 17:55:10 - [0] --H-D- C:\Users\lourenco\AppData\Roaming\InstallShield
O43 - CFD: 23/01/2011 - 20:00:38 - [1372] --H-D- C:\Users\lourenco\AppData\Roaming\KC Softwares
O43 - CFD: 23/12/2010 - 00:15:04 - [42580] --H-D- C:\Users\lourenco\AppData\Roaming\Macromedia
O43 - CFD: 25/01/2011 - 01:37:26 - [14209454] --H-D- C:\Users\lourenco\AppData\Roaming\Malwarebytes
O43 - CFD: 02/11/2006 - 14:37:36 - [0] --H-D- C:\Users\lourenco\AppData\Roaming\Media Center Programs
O43 - CFD: 14/04/2011 - 11:48:20 - [5553512] -S--D- C:\Users\lourenco\AppData\Roaming\Microsoft
O43 - CFD: 21/12/2010 - 12:57:34 - [28506920] --H-D- C:\Users\lourenco\AppData\Roaming\Mozilla
O43 - CFD: 09/01/2011 - 16:54:00 - [2192549] --H-D- C:\Users\lourenco\AppData\Roaming\OpenOffice.org
O43 - CFD: 01/04/2011 - 01:09:30 - [4059865] --H-D- C:\Users\lourenco\AppData\Roaming\Skype
O43 - CFD: 01/04/2011 - 00:08:10 - [20800] --H-D- C:\Users\lourenco\AppData\Roaming\skypePM
O43 - CFD: 23/03/2011 - 22:59:44 - [1401793] --H-D- C:\Users\lourenco\AppData\Roaming\uTorrent
O43 - CFD: 13/04/2011 - 11:00:20 - [1384251] --H-D- C:\Users\lourenco\AppData\Roaming\vlc
O43 - CFD: 16/01/2011 - 00:51:24 - [0] --H-D- C:\Users\lourenco\AppData\Roaming\WinRAR
O43 - CFD: 18/05/2011 - 02:45:00 - [13387] --H-D- C:\Users\lourenco\AppData\Roaming\WTablet
O43 - CFD: 01/01/2011 - 22:14:18 - [128719] --H-D- C:\Users\lourenco\Appdata\Local\Adobe
O43 - CFD: 27/04/2011 - 13:17:38 - [0] --H-D- C:\Users\lourenco\Appdata\Local\Apple
O43 - CFD: 27/04/2011 - 13:20:54 - [2178654] --H-D- C:\Users\lourenco\Appdata\Local\Apple Computer
O43 - CFD: 21/12/2010 - 11:16:32 - [0] -SH-D- C:\Users\lourenco\Appdata\Local\Application Data
O43 - CFD: 21/12/2010 - 12:06:50 - [69625] --H-D- C:\Users\lourenco\Appdata\Local\ATI
O43 - CFD: 11/03/2011 - 15:23:36 - [0] --H-D- C:\Users\lourenco\Appdata\Local\Broadcom
O43 - CFD: 21/12/2010 - 11:16:32 - [0] -SH-D- C:\Users\lourenco\Appdata\Local\Historique
O43 - CFD: 03/02/2011 - 22:37:10 - [3099798980] --H-D- C:\Users\lourenco\Appdata\Local\Microsoft
O43 - CFD: 21/12/2010 - 12:57:28 - [80873582] --H-D- C:\Users\lourenco\Appdata\Local\Mozilla
O43 - CFD: 18/05/2011 - 19:47:04 - [1516859561] --H-D- C:\Users\lourenco\Appdata\Local\Temp
O43 - CFD: 21/12/2010 - 11:16:32 - [0] -SH-D- C:\Users\lourenco\Appdata\Local\Temporary Internet Files
O43 - CFD: 13/01/2011 - 11:07:24 - [21791] --H-D- C:\Users\lourenco\Appdata\Local\Video Converter
O43 - CFD: 06/03/2011 - 22:01:04 - [15901799] --H-D- C:\Users\lourenco\Appdata\Local\VirtualStore
O43 - CFD: 03/02/2011 - 22:03:58 - [65536] --H-D- C:\Users\lourenco\Appdata\Local\Windows Live
---\\ Logiciels installés (O42)
O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin
O42 - Logiciel: Adobe Photoshop 7.0 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Photoshop 7.0
O42 - Logiciel: Adobe Reader 9.4.1 - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-A94000000001}
O42 - Logiciel: AnswerWorks Runtime - (.Pas de propriétaire.) [HKLM] -- AnswerWorks 3.0
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {2DC94AFD-A6E2-4AB4-9132-4A3F8E07B386}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {CACAEB5F-174D-4C7C-AC56-A33289A807CA}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {C41300B9-185D-475E-BFEC-39EF732F19B1}
O42 - Logiciel: Archiveur WinRAR - (.Pas de propriétaire.) [HKLM] -- WinRAR archiver
O42 - Logiciel: Assistant de connexion Windows Live - (.Microsoft Corporation.) [HKLM] -- {DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
O42 - Logiciel: Audacity 1.2.6 - (.Pas de propriétaire.) [HKLM] -- Audacity_is1
O42 - Logiciel: AutoCAD LT 2002 - Français - (.Autodesk.) [HKLM] -- {5783F2D7-0109-040C-0000-0060B0CE6BBA}
O42 - Logiciel: Balls of Steel v1.0 - (.Pas de propriétaire.) [HKLM] -- Balls of Steel v1.0
O42 - Logiciel: Bigle 3D - (.ALC-WBC.) [HKLM] -- Bigle 3D
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {2A981294-F14C-4F0F-9627-D793270922F8}
O42 - Logiciel: Broadcom Gigabit NetLink Controller - (.Broadcom Corporation.) [HKLM] -- {9AF0B106-56F1-461B-A270-95BC1682E282}
O42 - Logiciel: Call of Juarez - Bound in Blood - (.Ubisoft.) [HKLM] -- InstallShield_{FEFAF112-4DA8-479C-89E2-7DE25091711A}
O42 - Logiciel: Catalyst Control Center - Branding - (.ATI.) [HKLM] -- {4CA09BF7-1CFC-44B8-80EA-7B4D15D12DC5}
O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM] -- {415B2719-AD3A-4944-B404-C472DB6085B3}
O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM] -- {83770D14-21B9-44B3-8689-F7B523F94560}
O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM] -- {669C7BD8-DAA2-49B6-966C-F1E2AAE6B17E}
O42 - Logiciel: Dell Resource CD - (.Nom de votre société.) [HKLM] -- {42929F0F-CE14-47AF-9FC7-FF297A603021}
O42 - Logiciel: Dell Touchpad - (.Alps Electric.) [HKLM] -- {9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}
O42 - Logiciel: Dell Wireless WLAN Card Utility - (.Dell Inc..) [HKLM] -- Broadcom 802.11 Application
O42 - Logiciel: Free Video Converter - (.Extensoft.) [HKLM] -- Free Video Converter
O42 - Logiciel: Google SketchUp 8 - (.Google, Inc..) [HKLM] -- {06BF1B44-DF6B-4EC8-BE2B-825CB989DDCC}
O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB953595
O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB958484
O42 - Logiciel: ITECIR Driver - (.ITE.) [HKLM] -- {FCED9B62-34FF-4C15-8A23-F65221F7874D}
O42 - Logiciel: Inkscape 0.48.0 - (.Pas de propriétaire.) [HKLM] -- Inkscape
O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- WinLiveSuite_Wave3
O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- {133742BA-6F46-4D3E-85AF-78631D9AD8B8}
O42 - Logiciel: Integrated Webcam Driver (1.06.03.0309) - (.Creative Technology Ltd..) [HKLM] -- Creative OA001
O42 - Logiciel: Java(TM) 6 Update 20 - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216020FF}
O42 - Logiciel: MPEG4E VFW - H.264/MPEG-4 AVC codec (remove only) - (.Pas de propriétaire.) [HKLM] -- MPEG4E
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
O42 - Logiciel: Malwarebytes' Anti-Malware - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1
O42 - Logiciel: McAfee Clean Up Tool - (.Pas de propriétaire.) [HKLM] -- McAfee Clean Up Tool
O42 - Logiciel: McAfee SecurityCenter - (.McAfee, Inc..) [HKLM] -- MSC
O42 - Logiciel: MediaCoder 0.7.5.4799 - (.Broad Intelligence.) [HKLM] -- MediaCoder
O42 - Logiciel: Microsoft .NET Framework 3.5 Language Pack SP1 - fra - (.Microsoft Corporation.) [HKLM] -- {3E31821C-7917-367E-938E-E65FC413EA31}
O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 SP1
O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile FRA Language Pack - (.Microsoft Corporation.) [HKLM] -- {0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E}
O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM] -- {770657D0-A123-3C07-8E44-1C83EC895118}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {7299052b-02a4-4627-81f2-1818da5d550d}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - KB2467175 - (.Microsoft Corporation.) [HKLM] -- {a0fe116e-9a8a-466f-aee0-625cb7c207e3}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 - (.Microsoft Corporation.) [HKLM] -- {86CE85E6-DBAC-3FFD-B977-E4B79F83C909}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
O42 - Logiciel: Module linguistique Microsoft .NET Framework 3.5 SP1- fra - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 Language Pack SP1 - fra
O42 - Logiciel: Module linguistique Microsoft .NET Framework 4 Client Profile FRA - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile FRA Language Pack
O42 - Logiciel: Mozilla Firefox (3.6.17) - (.Mozilla.) [HKLM] -- Mozilla Firefox (3.6.17)
O42 - Logiciel: OpenOffice.org 3.2 - (.OpenOffice.org.) [HKLM] -- {266517E6-D866-439D-919C-B8B1A52E6080}
O42 - Logiciel: Outil de téléchargement Windows Live - (.Microsoft Corporation.) [HKLM] -- {205C6BDD-7B73-42DE-8505-9A093F35A238}
O42 - Logiciel: Package de pilotes Windows - ITE Tech.Inc. (itecir) HIDClass (12/18/2007 5.0.0004.6) - (.ITE Tech.Inc..) [HKLM] -- 1A5A977E511ED61600002E176F048ED6FCBD8560
O42 - Logiciel: Pen Tablet - (.Wacom Technology Corp..) [HKLM] -- Pen Tablet Driver
O42 - Logiciel: PhotoFiltre Studio - (.Pas de propriétaire.) [HKLM] -- PhotoFiltre Studio
O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {57752979-A1C9-4C02-856B-FBB27AC4E02C}
O42 - Logiciel: RICOH R5C83x/84x Flash Media Controller Driver Ver.3.54.05 - (.RICOH.) [HKLM] -- {59F6A514-9813-47A3-948C-8A155460CC2A}
O42 - Logiciel: Recover My Files - (.GetData Pty Ltd.) [HKLM] -- Recover My Files_is1
O42 - Logiciel: SUPER © Version 2010.bld.42 (Nov 7, 2010) - (.eRightSoft.) [HKLM] -- SUPER ©
O42 - Logiciel: Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB2416473
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2446708
O42 - Logiciel: Skype Toolbars - (.Skype Technologies S.A..) [HKLM] -- {CD95D125-2992-4858-B3EF-5F6FB52FBAD6}
O42 - Logiciel: Skype(TM) 5.1 - (.Skype Technologies S.A..) [HKLM] -- {E633D396-5188-4E9D-8F6B-BFB8BF3467E8}
O42 - Logiciel: Toon Boom Studio 4.0 - (.Toon Boom Animation Inc..) [HKLM] -- {62616A4E-82E4-424A-A201-3D29ABB6B7FD}
O42 - Logiciel: Update for Microsoft .NET Framework 3.5 SP1 (KB963707) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707
O42 - Logiciel: VLC media player 1.1.5 - (.VideoLAN.) [HKLM] -- VLC media player
O42 - Logiciel: Visual Install Pack - (.Phoenixx.) [HKLM] -- {549CC831-2542-47F2-A855-2F41E50EF015}
O42 - Logiciel: Volo View Express - (.Pas de propriétaire.) [HKLM] -- Volo View Express
O42 - Logiciel: WIDCOMM Bluetooth Software 6.2.0.6600 - (.Dell.) [HKLM] -- {E464702F-5433-46EC-8F65-159276C0A54F}
O42 - Logiciel: Windows Live Call - (.Microsoft Corporation.) [HKLM] -- {B3B487E7-6171-4376-9074-B28082CEB504}
O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM] -- {3175E049-F9A9-4A3D-8F19-AC9FB04514D1}
O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {445B183D-F4F1-45C8-B9DB-F11355CA657B}
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM] -- {2A697B53-0DE3-42DA-B41D-C3F804B1C538}
O42 - Logiciel: µTorrent - (.Pas de propriétaire.) [HKLM] -- uTorrent
---\\ HKCU & HKLM Software Keys
[HKCU\Software\AC3Filter]
[HKCU\Software\ALC-WBC]
[HKCU\Software\ALWIL Software]
[HKCU\Software\ATI Technologies Inc.]
[HKCU\Software\ATI]
[HKCU\Software\Adobe]
[HKCU\Software\Alps]
[HKCU\Software\AppDataLow\Software\Microsoft]
[HKCU\Software\AppDataLow\Software]
[HKCU\Software\AppDataLow]
[HKCU\Software\Apple Computer, Inc.]
[HKCU\Software\Apple Inc.]
[HKCU\Software\Audacity]
[HKCU\Software\Autodesk]
[HKCU\Software\BitTorrent]
[HKCU\Software\Broadcom]
[HKCU\Software\Bugsplat]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\Convar]
[HKCU\Software\CoreAAC]
[HKCU\Software\Dell Computer Corporation]
[HKCU\Software\EPSON]
[HKCU\Software\Extensoft]
[HKCU\Software\Freeware]
[HKCU\Software\GetData]
[HKCU\Software\Google]
[HKCU\Software\Haali]
[HKCU\Software\Hewlett-Packard]
[HKCU\Software\HookNetwork]
[HKCU\Software\IM Providers]
[HKCU\Software\JavaSoft]
[HKCU\Software\KC Softwares]
[HKCU\Software\Kerkythea Rendering System]
[HKCU\Software\MPEG4E.COM]
[HKCU\Software\Macromedia]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\McAfee]
[HKCU\Software\Mozilla]
[HKCU\Software\Netscape]
[HKCU\Software\OpenOffice.org]
[HKCU\Software\Paul Glagla]
[HKCU\Software\Policies]
[HKCU\Software\Skype]
[HKCU\Software\Softonic]
[HKCU\Software\SpeedBit]
[HKCU\Software\Toon Boom Animation Inc.]
[HKCU\Software\Trend Micro]
[HKCU\Software\Visual Pinball]
[HKCU\Software\Widcomm]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\WinRAR]
[HKCU\Software\Zyrax Software]
[HKLM\Software\ALWIL Software]
[HKLM\Software\ASGVIS]
[HKLM\Software\ATI Technologies]
[HKLM\Software\ATI]
[HKLM\Software\Adobe]
[HKLM\Software\Alps]
[HKLM\Software\America Online]
[HKLM\Software\Apple Computer, Inc.]
[HKLM\Software\Apple Inc.]
[HKLM\Software\Autodesk]
[HKLM\Software\AviSynth]
[HKLM\Software\BcmSetup]
[HKLM\Software\Broadcom]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Creative Tech]
[HKLM\Software\Dell Computer Corporation]
[HKLM\Software\EPSON]
[HKLM\Software\Empire Interactive]
[HKLM\Software\Extensoft]
[HKLM\Software\GEAR Software]
[HKLM\Software\Google]
[HKLM\Software\Hewlett-Packard]
[HKLM\Software\ITE]
[HKLM\Software\InstalledOptions]
[HKLM\Software\Intel]
[HKLM\Software\JavaSoft]
[HKLM\Software\JreMetrics]
[HKLM\Software\Licenses]
[HKLM\Software\Macromedia]
[HKLM\Software\Malwarebytes' Anti-Malware]
[HKLM\Software\McAfee.com]
[HKLM\Software\McAfee]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\ODBC]
[HKLM\Software\OldTimer Tools]
[HKLM\Software\OpenOffice.org]
[HKLM\Software\Pinball Wizards]
[HKLM\Software\Policies]
[HKLM\Software\RICOH]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\Skype]
[HKLM\Software\Sonic]
[HKLM\Software\Sun Microsystems]
[HKLM\Software\Techland]
[HKLM\Software\Toon Boom Animation Inc.]
[HKLM\Software\VideoLAN]
[HKLM\Software\Volatile]
[HKLM\Software\WOW6432Node]
[HKLM\Software\Wacom]
[HKLM\Software\WexTech Systems]
[HKLM\Software\Widcomm]
[HKLM\Software\Wildfire Studios]
[HKLM\Software\WinRAR]
[HKLM\Software\mozilla.org]
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 09/01/2011 - 16:40:38 - [309557166] ----D- C:\Program Files\Adobe
O43 - CFD: 21/12/2010 - 12:54:10 - [0] ----D- C:\Program Files\Alwil Software
O43 - CFD: 27/04/2011 - 13:17:34 - [2306366] ----D- C:\Program Files\Apple Software Update
O43 - CFD: 21/12/2010 - 12:01:20 - [14279623] ----D- C:\Program Files\ATI
O43 - CFD: 21/12/2010 - 12:03:00 - [53084043] ----D- C:\Program Files\ATI Technologies
O43 - CFD: 14/05/2011 - 22:21:52 - [8690968] ----D- C:\Program Files\Audacity
O43 - CFD: 10/01/2011 - 14:48:12 - [73746786] ----D- C:\Program Files\AutoCAD LT 2002 Fra
O43 - CFD: 13/01/2011 - 10:37:12 - [146393] ----D- C:\Program Files\AviSynth 2.5
O43 - CFD: 15/05/2011 - 12:35:34 - [2336564] ----D- C:\Program Files\Bigle 3D
O43 - CFD: 27/04/2011 - 13:16:00 - [617029] ----D- C:\Program Files\Bonjour
O43 - CFD: 21/12/2010 - 11:38:26 - [346285] ----D- C:\Program Files\Broadcom
O43 - CFD: 21/12/2010 - 17:58:26 - [3100711] ----D- C:\Program Files\Cisco
O43 - CFD: 27/04/2011 - 13:15:48 - [492663882] ----D- C:\Program Files\Common Files
O43 - CFD: 22/12/2010 - 22:29:18 - [0] ----D- C:\Program Files\Convar
O43 - CFD: 12/03/2011 - 18:15:22 - [0] ----D- C:\Program Files\DAP
O43 - CFD: 11/03/2011 - 14:19:18 - [22747921] ----D- C:\Program Files\Dell
O43 - CFD: 24/12/2010 - 17:26:58 - [74919465] ----D- C:\Program Files\Dell Support Center
O43 - CFD: 24/12/2010 - 17:19:38 - [243831895] ----D- C:\Program Files\Dell Webcam
O43 - CFD: 21/12/2010 - 18:13:10 - [12270360] ----D- C:\Program Files\DellTPad
O43 - CFD: 21/12/2010 - 18:15:52 - [794080] ----D- C:\Program Files\DIFX
O43 - CFD: 20/04/2011 - 19:03:02 - [0] ----D- C:\Program Files\Empire Interactive
O43 - CFD: 13/01/2011 - 10:35:08 - [29038648] ----D- C:\Program Files\eRightSoft
O43 - CFD: 21/12/2010 - 11:14:58 - [0] -SH-D- C:\Program Files\Fichiers communs
O43 - CFD: 13/01/2011 - 11:07:24 - [36366167] ----D- C:\Program Files\Free Video Converter
O43 - CFD: 22/12/2010 - 22:32:32 - [13788558] ----D- C:\Program Files\GetData
O43 - CFD: 10/01/2011 - 14:49:06 - [77308484] ----D- C:\Program Files\Google
O43 - CFD: 13/01/2011 - 10:45:14 - [0] ----D- C:\Program Files\Haali
O43 - CFD: 24/12/2010 - 17:29:06 - [19187488] ----D- C:\Program Files\HyCam2
O43 - CFD: 15/05/2011 - 12:39:48 - [162783256] ----D- C:\Program Files\Inkscape
O43 - CFD: 20/04/2011 - 19:03:02 - [17425308] --H-D- C:\Program Files\InstallShield Installation Information
O43 - CFD: 21/12/2010 - 11:40:34 - [64714] ----D- C:\Program Files\Intel
O43 - CFD: 28/04/2011 - 03:29:24 - [5688590] ----D- C:\Program Files\Internet Explorer
O43 - CFD: 27/04/2011 - 13:19:22 - [1856627] ----D- C:\Program Files\iPod
O43 - CFD: 27/04/2011 - 13:20:14 - [127660511] ----D- C:\Program Files\iTunes
O43 - CFD: 21/12/2010 - 18:23:06 - [91513996] ----D- C:\Program Files\Java
O43 - CFD: 21/12/2010 - 18:24:52 - [16295712] ----D- C:\Program Files\JRE
O43 - CFD: 12/03/2011 - 18:22:04 - [9224388] ----D- C:\Program Files\Kerkythea Rendering System
O43 - CFD: 25/01/2011 - 01:37:20 - [4921892] ----D- C:\Program Files\Malwarebytes' Anti-Malware
O43 - CFD: 02/02/2011 - 21:10:44 - [514840194] ----D- C:\Program Files\McAfee
O43 - CFD: 03/02/2011 - 07:54:20 - [2087009] ----D- C:\Program Files\McAfee.com
O43 - CFD: 24/01/2011 - 21:29:36 - [97276034] ----D- C:\Program Files\MediaCoder
O43 - CFD: 03/02/2011 - 22:34:50 - [226432] ----D- C:\Program Files\Microsoft
O43 - CFD: 02/11/2006 - 14:37:36 - [93446071] ----D- C:\Program Files\Microsoft Games
O43 - CFD: 28/04/2011 - 03:31:26 - [38388859] ----D- C:\Program Files\Microsoft Silverlight
O43 - CFD: 21/12/2010 - 17:10:56 - [15715] ----D- C:\Program Files\Microsoft.NET
O43 - CFD: 26/12/2010 - 15:27:24 - [99342446] ----D- C:\Program Files\Movie Maker
O43 - CFD: 04/05/2011 - 21:55:02 - [32799480] ----D- C:\Program Files\Mozilla Firefox
O43 - CFD: 02/11/2006 - 14:37:36 - [25757] ----D- C:\Program Files\MSBuild
O43 - CFD: 21/12/2010 - 18:24:50 - [386500926] ----D- C:\Program Files\OpenOffice.org 3
O43 - CFD: 04/02/2011 - 09:14:16 - [5126647] ----D- C:\Program Files\PhotoFiltre Studio
O43 - CFD: 23/01/2011 - 15:58:36 - [13414995] ----D- C:\Program Files\Pinball
O43 - CFD: 16/01/2011 - 11:52:48 - [71929229] ----D- C:\Program Files\Pinball Wizards
O43 - CFD: 27/04/2011 - 13:18:26 - [76322555] ----D- C:\Program Files\QuickTime
O43 - CFD: 02/11/2006 - 14:37:36 - [38694657] ----D- C:\Program Files\Reference Assemblies
O43 - CFD: 12/01/2011 - 00:07:24 - [28275803] R---D- C:\Program Files\Skype
O43 - CFD: 09/01/2011 - 16:57:06 - [27655523] ----D- C:\Program Files\Tablet
O43 - CFD: 14/04/2011 - 00:45:36 - [63084532] ----D- C:\Program Files\Toon Boom Animation
O43 - CFD: 24/01/2011 - 22:06:28 - [388096] ----D- C:\Program Files\Trend Micro
O43 - CFD: 02/11/2006 - 15:01:56 - [0] --H-D- C:\Program Files\Uninstall Information
O43 - CFD: 23/03/2011 - 22:13:10 - [396152] ----D- C:\Program Files\uTorrent
O43 - CFD: 21/12/2010 - 18:21:36 - [80691317] ----D- C:\Program Files\VideoLAN
O43 - CFD: 10/01/2011 - 14:02:12 - [23905784] ----D- C:\Program Files\Volo View Express
O43 - CFD: 10/01/2011 - 14:02:22 - [4573] ----D- C:\Program Files\WexTech
O43 - CFD: 11/03/2011 - 15:18:08 - [17359239] ----D- C:\Program Files\WIDCOMM
O43 - CFD: 26/12/2010 - 15:27:24 - [1016832] ----D- C:\Program Files\Windows Calendar
O43 - CFD: 26/12/2010 - 15:27:24 - [2737152] ----D- C:\Program Files\Windows Collaboration
O43 - CFD: 26/12/2010 - 15:27:22 - [4490624] ----D- C:\Program Files\Windows Defender
O43 - CFD: 26/12/2010 - 15:27:24 - [7084664] ----D- C:\Program Files\Windows Journal
O43 - CFD: 03/02/2011 - 22:34:44 - [45806173] ----D- C:\Program Files\Windows Live
O43 - CFD: 03/02/2011 - 22:34:32 - [245112] ----D- C:\Program Files\Windows Live SkyDrive
O43 - CFD: 15/05/2011 - 03:02:06 - [9116344] ----D- C:\Program Files\Windows Mail
O43 - CFD: 26/12/2010 - 15:27:24 - [4498121] ----D- C:\Program Files\Windows Media Player
O43 - CFD: 21/12/2010 - 11:14:58 - [7957544] ----D- C:\Program Files\Windows NT
O43 - CFD: 26/12/2010 - 15:27:24 - [13528738] ----D- C:\Program Files\Windows Photo Gallery
O43 - CFD: 26/12/2010 - 16:53:46 - [134144] ----D- C:\Program Files\Windows Portable Devices
O43 - CFD: 26/12/2010 - 15:27:24 - [6527558] ----D- C:\Program Files\Windows Sidebar
O43 - CFD: 16/01/2011 - 00:51:04 - [3525705] ----D- C:\Program Files\WinRAR
O43 - CFD: 18/05/2011 - 19:46:34 - [4835797] ----D- C:\Program Files\ZHPDiag
O43 - CFD: 09/01/2011 - 16:40:38 - [56529242] ----D- C:\Program Files\Common Files\Adobe
O43 - CFD: 27/04/2011 - 13:19:22 - [91350844] ----D- C:\Program Files\Common Files\Apple
O43 - CFD: 10/01/2011 - 14:01:40 - [21523429] ----D- C:\Program Files\Common Files\Autodesk Shared
O43 - CFD: 20/04/2011 - 19:03:04 - [3952460] ----D- C:\Program Files\Common Files\InstallShield
O43 - CFD: 21/12/2010 - 18:24:26 - [1231815] ----D- C:\Program Files\Common Files\Java
O43 - CFD: 10/01/2011 - 14:02:22 - [1494909] ----D- C:\Program Files\Common Files\LHSPF
O43 - CFD: 02/02/2011 - 21:10:34 - [25267955] ----D- C:\Program Files\Common Files\McAfee
O43 - CFD: 03/02/2011 - 22:34:36 - [199669993] ----D- C:\Program Files\Common Files\microsoft shared
O43 - CFD: 02/11/2006 - 13:18:34 - [2702] ----D- C:\Program Files\Common Files\Services
O43 - CFD: 12/01/2011 - 00:06:36 - [2164104] ----D- C:\Program Files\Common Files\Skype
O43 - CFD: 02/11/2006 - 13:18:34 - [41101735] ----D- C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 26/12/2010 - 15:27:24 - [8737810] ----D- C:\Program Files\Common Files\System
O43 - CFD: 10/01/2011 - 14:02:22 - [315392] ----D- C:\Program Files\Common Files\Wextech Shared
O43 - CFD: 26/12/2010 - 14:23:08 - [39321492] ----D- C:\Program Files\Common Files\Windows Live
O43 - CFD: 01/01/2011 - 22:14:34 - [763] --H-D- C:\ProgramData\Adobe
O43 - CFD: 21/12/2010 - 12:54:10 - [214660] --H-D- C:\ProgramData\Alwil Software
O43 - CFD: 09/01/2011 - 16:58:34 - [9] --H-D- C:\ProgramData\AppData
O43 - CFD: 27/04/2011 - 13:15:48 - [32173568] --H-D- C:\ProgramData\Apple
O43 - CFD: 27/04/2011 - 13:19:22 - [65308456] --H-D- C:\ProgramData\Apple Computer
O43 - CFD: 02/11/2006 - 15:02:04 - [0] -SH-D- C:\ProgramData\Application Data
O43 - CFD: 23/03/2011 - 23:11:36 - [1750744] --H-D- C:\ProgramData\ASGVIS
O43 - CFD: 21/12/2010 - 12:06:50 - [300] --H-D- C:\ProgramData\ATI
O43 - CFD: 21/12/2010 - 11:14:58 - [0] ----D- C:\ProgramData\Bureau
O43 - CFD: 02/11/2006 - 15:02:04 - [0] ----D- C:\ProgramData\Desktop
O43 - CFD: 02/11/2006 - 15:02:04 - [0] ----D- C:\ProgramData\Documents
O43 - CFD: 21/12/2010 - 11:14:58 - [0] ----D- C:\ProgramData\Favoris
O43 - CFD: 02/11/2006 - 15:02:04 - [0] ----D- C:\ProgramData\Favorites
O43 - CFD: 10/01/2011 - 14:55:22 - [0] --H-D- C:\ProgramData\Google
O43 - CFD: 25/01/2011 - 01:37:20 - [6708406] --H-D- C:\ProgramData\Malwarebytes
O43 - CFD: 02/02/2011 - 21:16:36 - [42894314] --H-D- C:\ProgramData\McAfee
O43 - CFD: 21/12/2010 - 11:14:58 - [0] ----D- C:\ProgramData\Menu Démarrer
O43 - CFD: 03/02/2011 - 22:11:06 - [1658080636] -S--D- C:\ProgramData\Microsoft
O43 - CFD: 21/12/2010 - 11:14:58 - [0] ----D- C:\ProgramData\Modèles
O43 - CFD: 12/01/2011 - 00:06:34 - [21348464] --H-D- C:\ProgramData\Skype
O43 - CFD: 12/03/2011 - 18:14:32 - [0] --H-D- C:\ProgramData\SpeedBit
O43 - CFD: 02/11/2006 - 15:02:04 - [0] ----D- C:\ProgramData\Start Menu
O43 - CFD: 21/12/2010 - 18:24:26 - [119] --H-D- C:\ProgramData\Sun
O43 - CFD: 12/04/2011 - 00:52:06 - [0] --H-D- C:\ProgramData\TEMP
O43 - CFD: 02/11/2006 - 15:02:06 - [0] ----D- C:\ProgramData\Templates
O43 - CFD: 13/01/2011 - 10:44:28 - [3691] --H-D- C:\ProgramData\VideoConverter
O43 - CFD: 03/02/2011 - 19:47:00 - [0] --H-D- C:\ProgramData\WindowsSearch
O43 - CFD: 17/05/2011 - 16:54:24 - [5627225] --H-D- C:\Users\lourenco\AppData\Roaming\Adobe
O43 - CFD: 27/04/2011 - 13:52:54 - [214988] --H-D- C:\Users\lourenco\AppData\Roaming\Apple Computer
O43 - CFD: 21/12/2010 - 12:06:50 - [0] --H-D- C:\Users\lourenco\AppData\Roaming\ATI
O43 - CFD: 24/01/2011 - 21:29:30 - [15996] --H-D- C:\Users\lourenco\AppData\Roaming\Broad Intelligence
O43 - CFD: 13/01/2011 - 23:32:34 - [199] --H-D- C:\Users\lourenco\AppData\Roaming\dvdcss
O43 - CFD: 27/12/2010 - 21:42:54 - [0] --H-D- C:\Users\lourenco\AppData\Roaming\EPSON
O43 - CFD: 10/01/2011 - 14:56:10 - [396] --H-D- C:\Users\lourenco\AppData\Roaming\Google
O43 - CFD: 21/12/2010 - 11:16:38 - [0] --H-D- C:\Users\lourenco\AppData\Roaming\Identities
O43 - CFD: 15/05/2011 - 12:53:34 - [25918] --H-D- C:\Users\lourenco\AppData\Roaming\inkscape
O43 - CFD: 21/12/2010 - 17:55:10 - [0] --H-D- C:\Users\lourenco\AppData\Roaming\InstallShield
O43 - CFD: 23/01/2011 - 20:00:38 - [1372] --H-D- C:\Users\lourenco\AppData\Roaming\KC Softwares
O43 - CFD: 23/12/2010 - 00:15:04 - [42580] --H-D- C:\Users\lourenco\AppData\Roaming\Macromedia
O43 - CFD: 25/01/2011 - 01:37:26 - [14209454] --H-D- C:\Users\lourenco\AppData\Roaming\Malwarebytes
O43 - CFD: 02/11/2006 - 14:37:36 - [0] --H-D- C:\Users\lourenco\AppData\Roaming\Media Center Programs
O43 - CFD: 14/04/2011 - 11:48:20 - [5553512] -S--D- C:\Users\lourenco\AppData\Roaming\Microsoft
O43 - CFD: 21/12/2010 - 12:57:34 - [28506920] --H-D- C:\Users\lourenco\AppData\Roaming\Mozilla
O43 - CFD: 09/01/2011 - 16:54:00 - [2192549] --H-D- C:\Users\lourenco\AppData\Roaming\OpenOffice.org
O43 - CFD: 01/04/2011 - 01:09:30 - [4059865] --H-D- C:\Users\lourenco\AppData\Roaming\Skype
O43 - CFD: 01/04/2011 - 00:08:10 - [20800] --H-D- C:\Users\lourenco\AppData\Roaming\skypePM
O43 - CFD: 23/03/2011 - 22:59:44 - [1401793] --H-D- C:\Users\lourenco\AppData\Roaming\uTorrent
O43 - CFD: 13/04/2011 - 11:00:20 - [1384251] --H-D- C:\Users\lourenco\AppData\Roaming\vlc
O43 - CFD: 16/01/2011 - 00:51:24 - [0] --H-D- C:\Users\lourenco\AppData\Roaming\WinRAR
O43 - CFD: 18/05/2011 - 02:45:00 - [13387] --H-D- C:\Users\lourenco\AppData\Roaming\WTablet
O43 - CFD: 01/01/2011 - 22:14:18 - [128719] --H-D- C:\Users\lourenco\Appdata\Local\Adobe
O43 - CFD: 27/04/2011 - 13:17:38 - [0] --H-D- C:\Users\lourenco\Appdata\Local\Apple
O43 - CFD: 27/04/2011 - 13:20:54 - [2178654] --H-D- C:\Users\lourenco\Appdata\Local\Apple Computer
O43 - CFD: 21/12/2010 - 11:16:32 - [0] -SH-D- C:\Users\lourenco\Appdata\Local\Application Data
O43 - CFD: 21/12/2010 - 12:06:50 - [69625] --H-D- C:\Users\lourenco\Appdata\Local\ATI
O43 - CFD: 11/03/2011 - 15:23:36 - [0] --H-D- C:\Users\lourenco\Appdata\Local\Broadcom
O43 - CFD: 21/12/2010 - 11:16:32 - [0] -SH-D- C:\Users\lourenco\Appdata\Local\Historique
O43 - CFD: 03/02/2011 - 22:37:10 - [3099798980] --H-D- C:\Users\lourenco\Appdata\Local\Microsoft
O43 - CFD: 21/12/2010 - 12:57:28 - [80873582] --H-D- C:\Users\lourenco\Appdata\Local\Mozilla
O43 - CFD: 18/05/2011 - 19:47:04 - [1516859561] --H-D- C:\Users\lourenco\Appdata\Local\Temp
O43 - CFD: 21/12/2010 - 11:16:32 - [0] -SH-D- C:\Users\lourenco\Appdata\Local\Temporary Internet Files
O43 - CFD: 13/01/2011 - 11:07:24 - [21791] --H-D- C:\Users\lourenco\Appdata\Local\Video Converter
O43 - CFD: 06/03/2011 - 22:01:04 - [15901799] --H-D- C:\Users\lourenco\Appdata\Local\VirtualStore
O43 - CFD: 03/02/2011 - 22:03:58 - [65536] --H-D- C:\Users\lourenco\Appdata\Local\Windows Live
goa125
Messages postés
164
Date d'inscription
dimanche 29 août 2010
Statut
Membre
Dernière intervention
22 février 2017
4
18 mai 2011 à 20:49
18 mai 2011 à 20:49
je m'excuse m'ai je narrive pas a envoyer la suite sur cet ordinateur je vai faire autrement a tout de suite
goa125
Messages postés
164
Date d'inscription
dimanche 29 août 2010
Statut
Membre
Dernière intervention
22 février 2017
4
18 mai 2011 à 20:54
18 mai 2011 à 20:54
voila j'ai réussi sur un autre ordinateur , merci de me dire quoi faire ensuite :/
http://www.cijoint.fr/cjlink.php?file=cj201105/cijpIkT8rm.txt
http://www.cijoint.fr/cjlink.php?file=cj201105/cijpIkT8rm.txt
goa125
Messages postés
164
Date d'inscription
dimanche 29 août 2010
Statut
Membre
Dernière intervention
22 février 2017
4
18 mai 2011 à 20:55
18 mai 2011 à 20:55
http://www.cijoint.fr/cj201105/cijpIkT8rm.txt (je ne sait pas si celui d'avant marche voici le bon lien)
goa125
Messages postés
164
Date d'inscription
dimanche 29 août 2010
Statut
Membre
Dernière intervention
22 février 2017
4
19 mai 2011 à 00:30
19 mai 2011 à 00:30
j'utilise actuelement le logiciel sketchup pour mon travail sur le pc, et de nombreux bug aparaissent , c'est du a ce trojan, des messages apparaissent pour sketchup par exemple une fenetre c'est ouverte (une nouvelle version de sketchup est disponible ici etc ) il sagit dun meme type de fenetre sue les messages derreur qui apparaissent donc c'est ce trojan ou je ne cest quoi
:(
:(
goa125
Messages postés
164
Date d'inscription
dimanche 29 août 2010
Statut
Membre
Dernière intervention
22 février 2017
4
19 mai 2011 à 00:43
19 mai 2011 à 00:43
plus j'utilise les logiciels, plus les problèmes percistent, laspect de windows devient comme un vieu windows 95 etc fenetres grises, tt est ecri en anglais
comment me débarasser definivement de ca !!
comment me débarasser definivement de ca !!