Publicité intempestive
ebola
-
Utilisateur anonyme -
Utilisateur anonyme -
Bonjour,
j'ai un gros problème de pages web publicitaires qui s'ouvrent automatiquement, cela lors de la visite de site mais Maintenant suite a un problème d'antivirus qui n'étai plus actif sur mon pc et dont je ne me suis pas rendu compte tout de suite, j'ai des Pages publicitaire qui s'ouvrent toutes les 45mn je n'en peut plus ça m'execre. Es des pop-up? ou des spy-ware? et y a il un fichier type a suprimer?
j'ai un gros problème de pages web publicitaires qui s'ouvrent automatiquement, cela lors de la visite de site mais Maintenant suite a un problème d'antivirus qui n'étai plus actif sur mon pc et dont je ne me suis pas rendu compte tout de suite, j'ai des Pages publicitaire qui s'ouvrent toutes les 45mn je n'en peut plus ça m'execre. Es des pop-up? ou des spy-ware? et y a il un fichier type a suprimer?
A voir également:
- Publicité intempestive
- Supprimer publicité - Guide
- Bloquer publicité youtube - Accueil - Streaming
- Publicité sms - Guide
- Un bloqueur de publicité empêche la lecture. veuillez le désactiver pour démarrer la vidéo - Forum Réseaux sociaux
- Un bloqueur de publicité empêche la lecture. Veuillez le désacti - Forum Logiciels
11 réponses
Bonsoir
On va regarder cela de plus près
* Télécharge ZHPDiag (de Nicolas Coolman)
http://www.premiumorange.com/zeb-help-process/zhpdiag.html
Au cas où le premier lien ne marcherai pas, clique sur celui de dessous
ftp://zebulon.fr/ZHPDiag2.exe
* Laisse toi guider lors de l'installation, il se lancera automatiquement à la fin.
* Surtout, n'oublie pas d'installer son icône sur le bureau
* Clique sur l'icône représentant une loupe (« Lancer le diagnostic »)
* Enregistre le rapport sur ton Bureau à l'aide de l'icône représentant une disquette
Héberge le rapport ICI
On va regarder cela de plus près
* Télécharge ZHPDiag (de Nicolas Coolman)
http://www.premiumorange.com/zeb-help-process/zhpdiag.html
Au cas où le premier lien ne marcherai pas, clique sur celui de dessous
ftp://zebulon.fr/ZHPDiag2.exe
* Laisse toi guider lors de l'installation, il se lancera automatiquement à la fin.
* Surtout, n'oublie pas d'installer son icône sur le bureau
* Clique sur l'icône représentant une loupe (« Lancer le diagnostic »)
* Enregistre le rapport sur ton Bureau à l'aide de l'icône représentant une disquette
Héberge le rapport ICI
Rapport de ZHPDiag v1.27.214 par Nicolas Coolman, Update du 25/05/2011
Run by Tangue-man at 28/05/2011 14:51:26
Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
---\\ Web Browser
MSIE: Internet Explorer v8.0.7600.16385
GCIE: Google Chrome v11.0.696.71 (Defaut)
---\\ System Information
Windows 7 Ultimate Edition, 64-bit (Build 7600)
Processor: Intel64 Family 6 Model 15 Stepping 13, GenuineIntel
Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 2038 MB (62% free)
System Restore: Activé (Enable)
System drive C: has 31 GB (20%) free of 149 GB
---\\ Logged in mode
Computer Name: TANGUE-MAN-PC
User Name: Tangue-man
All Users Names: Tangue-man, HomeGroupUser$, Administrateur,
Unselected Option: O45,O61,O62,O65,O66,O82
Logged in as Administrator
---\\ Environnement Variables
%AppData%=C:\Users\Tangue-man\AppData\Roaming
%LocalAppData%=C:\Users\Tangue-man\AppData\Local
%StartMenu%=C:\Users\Tangue-man\AppData\Roaming\Microsoft\Windows\Start Menu
---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 31 Go of 149 Go)
D:\ CD-ROM drive (Not Inserted)
E:\ CD-ROM drive (Not Inserted)
---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
---\\ Recherche particulière de fichiers génériques
[MD5.0862495E0C825893DB75EF44FAEA8E93] - (.Microsoft Corporation - Explorateur Windows.) (.26/02/2011 07:23:14.) -- C:\Windows\Explorer.exe [2870272]
[MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 02:14:45.) -- C:\Windows\system32\Wininit.exe [96256]
[MD5.214605C48AE416BC067C39D227CFCC57] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.24/02/2011 06:32:44.) -- C:\Windows\system32\wininet.dll [981504]
---\\ Processus lancés
[MD5.27870BDDDE2BB30C134247512D8A6156] - (.PCTuto - autoupdater.) -- C:\Users\Tangue-man\AppData\Roaming\PCtuto\UpdatePCTuto\autoupdater.exe [663168]
[MD5.C0063DB87FB34539697460ED1A231F60] - (.Pas de propriétaire - BlueSoleil Bttray.) -- C:\Program Files (x86)\IVT Corporation\BlueSoleil\BtTray.exe [279552]
[MD5.3EEC83341AECDE670C2CE16EBED5D66C] - (.PCTUTO - PCTUTO.) -- C:\Program Files (x86)\PCTuto\pctuto.exe [982656]
[MD5.11E8D8272FDBE213ADE3DAD91427CE35] - (.OpenOffice.org - OpenOffice.org 3.3.) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe [11322880]
[MD5.FA7DC6B50DABDDC74DB3B6CE2F834572] - (.SweetIM Technologies Ltd. - SweetIM Instant Messenger Enhancer.) -- C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe [114992]
[MD5.AA16204FD1F75637E8EAEB593A8FA597] - (.PowerISO Computing, Inc. - PowerISO Virtual Drive Manager.) -- C:\Program Files (x86)\PowerISO(instal)\PWRISOVM.EXE [180224]
[MD5.2337EC951C4AF6E1AF65D10BD9615BEB] - (.OpenOffice.org - OpenOffice.org 3.3.) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin [11314688]
[MD5.B56CE93D73125AEB4872D999D91B7348] - (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe [270128]
[MD5.A588671AF9BE28C22B4BEDE74F60DEE9] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files (x86)\ZHPDiag(instal)\ZHPDiag.exe [657408]
---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
P2 - FPN: [HKLM] [@microsoft.com/OfficeAuthz,version=14.0] - (.Microsoft Corporation - Office Authorization plug-in for NPAPI browsers.) -- C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.dll
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Users\Tangue-man\AppData\Local\Google\Update\1.3.21.53\npGoogleUpdate3.dll
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Users\Tangue-man\AppData\Local\Google\Update\1.3.21.53\npGoogleUpdate3.dll
---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
G1 - GCS: Preference [User Data\Default] None
G0 - GCSP: Preference [User Data\Default][HomePage] http://home.sweetim.com
G2 - GCE: Preference [User Data\Default] [bjeikeheijdjdfjbmknpefojickbkmom] Offerbox v.2.1.3714.137 (Activé)
G2 - GCE: Preference [User Data\Default] [dhfnkfaeekjcmeadbdcohacjdjdmlmia] AT_MattWMoore v.3 (Activé)
---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com
R0 - HKUS\S-1-5-21-3880304560-787929789-3870122161-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKUS\S-1-5-21-3880304560-787929789-3870122161-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R3 - URLSearchHook: SweetIM ToolbarURLSearchHook Class [64Bits] - {EEE6C35D-6118-11DC-9C72-001320C79847} . (.SweetIM Technologies Ltd. - SweetIM Toolbar Helper Module.) (4, 1, 0, 3) -- C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgHelper.dl
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
---\\ ---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: VMApplet=C:\WINDOWS\system32\SystemPropertiesPerformance.exe
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Groove GFS Browser Helper [64Bits] - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL
O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: AcroIEHelperStub [64Bits] - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: PCTBHO [64Bits] - {293A63F7-C3B6-423a-9845-901AC0A7EE6E} . (.PCTUTO - ....) -- C:\Program Files (x86)\PCTuto\pctutoBHO.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SWEETIE [64Bits] - {EEE6C35C-6118-11DC-9C72-001320C79847} . (.SweetIM Technologies Ltd. - SweetIM Toolbar for Internet Explorer.) -- C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
---\\ ---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [BCSSync] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files\Microsoft Office\Office14\BCSSync.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe (.not file.)
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe (.not file.)
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe (.not file.)
O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RAVCpl64.exe
O4 - HKLM\..\Run: [Skytel] . (.Realtek Semiconductor Corp. - Realtek Voice Manager.) -- C:\Windows\Skytel.exe
O4 - HKLM\..\Run: [egui] . (.ESET - Eset GUI.) -- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
O4 - HKLM\..\Wow6432Node\Run: [BtTray] . (.Pas de propriétaire - BlueSoleil Bttray.) -- C:\Program Files (x86)\IVT Corporation\BlueSoleil\BtTray.exe
O4 - HKLM\..\Wow6432Node\Run: [PCTuto] . (.PCTUTO - PCTUTO.) -- C:\Program Files (x86)\PCTuto\pctuto.exe
O4 - HKLM\..\Wow6432Node\Run: [SweetIM] . (.SweetIM Technologies Ltd. - SweetIM Instant Messenger Enhancer.) -- C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
O4 - HKLM\..\Wow6432Node\Run: [PWRISOVM.EXE] . (.PowerISO Computing, Inc. - PowerISO Virtual Drive Manager.) -- C:\Program Files (x86)\PowerISO(instal)\PWRISOVM.exe
O4 - HKLM\..\Wow6432Node\RunOnce: [autoupdater] . (.PCTuto - autoupdater.) -- C:\Users\Tangue-man\AppData\Roaming\PCtuto\UpdatePCTuto\autoupdater.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (.not file.)
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (.not file.)
O4 - Global Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk . (...) -- C:\Program Files\Rainmeter (installe)\Rainmeter.exe
O4 - Global Startup: C:\Users\Tangue-man\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk . (...) -- C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe
---\\ ---\\ Autres liens utilisateurs (O4)
O4 - Global Startup: C:\Users\Tangue-man\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Tangue-man\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Tangue-man\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Tangue-man\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk . (.BitTorrent, Inc..) -- C:\Program Files (x86)\uTorrent\uTorrent.exe
---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
O8 - Extra context menu item: &Envoyer à OneNote . (.Microsoft Corporation - Microsoft OneNote Internet Explorer Add-in.) -- C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll
O8 - Extra context menu item: E&xporter vers Microsoft Excel . (.Microsoft Corporation - Microsoft Excel.) -- C:\PROGRA~1\MICROS~2\Office14\EXCEL.exe
---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: &Envoyer à OneNote [64Bits] - {2670000A-7350-4f3c-8081-5663EE0C6C49} . (.Microsoft Corporation - Microsoft OneNote Internet Explorer Add-in.) -- C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll
O9 - Extra button: Notes &liées OneNote [64Bits] - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} . (.Microsoft Corporation - Microsoft OneNote Internet Explorer Add-in.) -- C:\PROGRA~1\MICROS~2\Office14\ONBTTN~1.dll
---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\Windows\system32\wshbth.dll
---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{1576E180-AC16-4A32-9C42-463C5C5A6FB2}: DhcpNameServer = 212.27.40.241 212.27.40.240
O17 - HKLM\System\CS1\Services\Tcpip\..\{1576E180-AC16-4A32-9C42-463C5C5A6FB2}: DhcpNameServer = 212.27.40.241 212.27.40.240
O17 - HKLM\System\CS2\Services\Tcpip\..\{1576E180-AC16-4A32-9C42-463C5C5A6FB2}: DhcpNameServer = 212.27.40.241 212.27.40.240
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.241 212.27.40.240
---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui . (.Pas de propriétaire - Pas de description.) -- igfxdev.dll
O20 - Winlogon Notify: WB . (.Pas de propriétaire - Pas de description.) -- C:\PROGRA~2\WBLIND~1\WINDOW~1\fast64.dll (.not file.)
---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: (BlueSoleilCS) . (.Pas de propriétaire - BlueSoleilCS Module.) - C:\Program Files (x86)\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
O23 - Service: (BsHelpCS) . (.Pas de propriétaire - BsHelpCS Module.) - C:\Program Files (x86)\IVT Corporation\BlueSoleil\BsHelpCS.exe
O23 - Service: (EhttpSrv) . (.ESET - Eset HTTP Server Service.) - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: (ekrn) . (.ESET - Eset Service.) - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: (maconfservice) . (.CybelSoft - Service de détection matériel.) - C:\Program Files (x86)\ma-config.com\maconfservice.exe
O23 - Service: (Microsoft SharePoint Workspace Audit Service) - Clé orpheline
O23 - Service: (TuneUp.UtilitiesSvc) . (.TuneUp Software - TuneUp Utilities Service.) - C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe
---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3880304560-787929789-3870122161-1000Core.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3880304560-787929789-3870122161-1000UA.job
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [Google Updater and Installer] (.Google Inc..) -- C:\Users\Tangue-man\AppData\Local\Google\Update\GoogleUpdate.exe
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-3880304560-787929789-3870122161-1000Core] (.Google Inc..) -- C:\Users\Tangue-man\AppData\Local\Google\Update\GoogleUpdate.exe
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-3880304560-787929789-3870122161-1000UA] (.Google Inc..) -- C:\Users\Tangue-man\AppData\Local\Google\Update\GoogleUpdate.exe
[MD5.BAD6BEA0DE1F69C82BDB74378CE0C20A] [APT] [Programme de mise ... jour en ligne de Adobe] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[MD5.7E0E1AEC85A1534CAD3FA9BB21ACFC1B] [APT] [TuneUpUtilities_Task_BkGndMaintenance2011] (.TuneUp Software.) -- C:\Program Files (x86)\TuneUp Utilities 2011\OneClick.exe
[MD5.00000000000000000000000000000000] [APT] [{06731725-6CCE-4087-BAEC-5E5363FF7878}] (.Pas de propriétaire.) -- C:\Users\Tangue-man\Downloads\NOD V3.0.642\NOD32.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{F103429F-E74F-48CC-A82F-0C9D4E3CC61E}] (.Pas de propriétaire.) -- C:\Users\Tangue-man\Downloads\D2+LOD Blizz installer + extras Frez server\D2-1.12A-enGB\Installer.exe (.not file.)
---\\ Pilotes lancés au démarrage (O41)
O41 - Driver: C:\Windows\system32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\System32\DRIVERS\blbdrive.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
O41 - Driver: C:\Windows\system32\cscsvc.dll (CSC) . (.Microsoft Corporation - Windows Client Side Caching Driver.) - C:\Windows\System32\drivers\csc.sys
O41 - Driver: C:\Windows\system32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\system32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
O41 - Driver: (easdrv) . (.ESET - Eset AntiStealth driver.) - C:\Windows\System32\DRIVERS\easdrv.sys
O41 - Driver: (epfwtdir) . (...) - C:\Windows\System32\DRIVERS\epfwtdir.sys
O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\System32\DRIVERS\mssmbios.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\system32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\system32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\system32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys
O41 - Driver: C:\Windows\system32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: C:\Windows\system32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys
---\\ Logiciels installés (O42)
O42 - Logiciel: Adobe Reader X (10.0.1) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AA0000000001}
O42 - Logiciel: Archiveur WinRAR - (.Pas de propriétaire.) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: Bluesoleil 5.4.245.0 - (.IVT Corporation.) [HKLM] -- {87CE97D7-7181-4602-B99C-44A7CD763DFA}
O42 - Logiciel: Commandos 3 - Destination Berlin - (.Pas de propriétaire.) [HKLM][64Bits] -- {C270BC04-1540-4673-960F-A546B2C860CD}
O42 - Logiciel: Definition update for Microsoft Office 2010 (KB982726) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{D3F93D50-A2B8-4386-AA58-0D84E3F4AF06}
O42 - Logiciel: ESET NOD32 Antivirus - (.ESET spol s r. o..) [HKLM] -- {F0FBC32E-050F-44A4-BA4C-3AAD412CE307}
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU] -- Google Chrome
O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- HDMI
O42 - Logiciel: Java(TM) 6 Update 23 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83216023FF}
O42 - Logiciel: Java(TM) SE Development Kit 6 Update 23 - (.Oracle.) [HKLM][64Bits] -- {32A3A4F4-B792-11D6-A78A-00B0D0160230}
O42 - Logiciel: Lyrics Plugin for Windows Media Player - (.Lyrics Plugin.) [HKLM][64Bits] -- {43002AE2-4093-49E0-A03D-990EE184C568}
O42 - Logiciel: Ma-Config.com - (.Cybelsoft.) [HKLM][64Bits] -- {7DB4CB30-B94A-4282-AC8A-C86F615AA45B}
O42 - Logiciel: Marvell Miniport Driver - (.Marvell.) [HKLM][64Bits] -- Marvell Miniport Driver
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}
O42 - Logiciel: Microsoft Office Access MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-0015-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Excel MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-0016-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Groove MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-00BA-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office InfoPath MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-0044-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Office 32-bit Components 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-0043-0000-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office OneNote MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-00A1-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Outlook MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001A-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office PowerPoint MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-0018-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Professional Plus 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Professionnel Plus 2010 - (.Microsoft Corporation.) [HKLM] -- Office14.PROPLUS
O42 - Logiciel: Microsoft Office Proof (Arabic) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001F-0401-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (Dutch) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001F-0413-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (English) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001F-0409-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001F-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (German) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001F-0407-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (Spanish) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001F-0C0A-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proofing (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-002C-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Publisher MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-0019-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Shared 32-bit MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-0043-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Shared MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-006E-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Word MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001B-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 - (.Microsoft Corporation.) [HKLM] -- {8338783A-0968-3B85-AFC7-BAAE0A63DC50}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 - (.Microsoft Corporation.) [HKLM][64Bits] -- {86CE85E6-DBAC-3FFD-B977-E4B79F83C909}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {4B6C7001-C7D6-3710-913E-5BC23FCE91E6}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
O42 - Logiciel: Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 - (.Microsoft Corporation.) [HKLM] -- {DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}
O42 - Logiciel: OpenOffice.org 3.3 - (.OpenOffice.org.) [HKLM][64Bits] -- {7E0610A2-E336-40B3-B685-C4905E97EC9A}
O42 - Logiciel: PCTuto 2.0 - (.PCTuto.) [HKLM][64Bits] -- PCTuto_is1
O42 - Logiciel: PCTuto Avast 2.0 - (.PCTuto.) [HKLM][64Bits] -- PCTuto Avast_is1
O42 - Logiciel: PowerISO - (.PowerISO Computing, Inc..) [HKLM][64Bits] -- PowerISO
O42 - Logiciel: Rainmeter - (.Pas de propriétaire.) [HKLM][64Bits] -- Rainmeter
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: STATISTICA - (.StatSoft.) [HKLM][64Bits] -- {76C2ABD2-E1B4-49A3-A301-912F53FF1E57}
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2160841) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2160841
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2446708
O42 - Logiciel: Security Update for Microsoft Excel 2010 (KB2466146) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{2831ADCB-B339-4493-A899-2740DEF239CB}
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB2289078) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{416C3BAC-567F-4E84-9E3B-E98970E2603B}
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB2289161) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{B3DFFE7D-FAA1-4B0D-AB1A-AF140A56BD84}
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB2289161) - (.Microsoft.) [HKLM] -- {90140000-0043-0000-1000-0000000FF1CE}_Office14.PROPLUS_{B3DFFE7D-FAA1-4B0D-AB1A-AF140A56BD84}
O42 - Logiciel: Security Update for Microsoft PowerPoint 2010 (KB2519975) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{5E1328DB-EA1D-4FDB-B2FA-84CD56D9C19A}
O42 - Logiciel: Security Update for Microsoft Publisher 2010 (KB2409055) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{DED7FBC4-7528-4C64-9F94-8174AC522A33}
O42 - Logiciel: Security Update for Microsoft Word 2010 (KB2345000) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{FAE58C3D-8C0C-41D7-B95B-507B84ACB0C6}
O42 - Logiciel: SweetIM Toolbar for Internet Explorer 4.1 - (.SweetIM Technologies Ltd..) [HKLM][64Bits] -- {A1194237-547A-461d-BD44-B97B1574A7DA}
O42 - Logiciel: SweetIM for Messenger 3.4 - (.SweetIM Technologies Ltd..) [HKLM][64Bits] -- {F70AE624-2B41-476F-BC9C-0A7F158C3F15}
O42 - Logiciel: System Requirements Lab for Intel - (.Husdawg, LLC.) [HKLM][64Bits] -- {F7FC9307-374E-4017-8E9D-DE1154780480}
O42 - Logiciel: TuneUp Utilities 2011 - (.TuneUp Software.) [HKLM][64Bits] -- TuneUp Utilities 2011
O42 - Logiciel: Update for Microsoft .NET Framework 4 Client Profile (KB2473228) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2473228
O42 - Logiciel: Update for Microsoft Office 2010 (KB2202188) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{139222A0-48AF-44FF-BC3B-2112086FAF18}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2413186) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{276D6229-D1A9-4A22-BD8A-7E043897E230}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2413186) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{B4B16F09-574E-448C-BC90-DC8DF2ECA01E}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2413186) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{BC4F8B0E-191C-4226-8016-01EF1D0294FF}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2494150) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{428CB7A0-1068-4CE1-8835-39C7ECD297ED}
O42 - Logiciel: Update for Microsoft OneNote 2010 (KB2493983) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{FED950AB-20E9-426D-8A7D-60A110F291AB}
O42 - Logiciel: Update for Microsoft Outlook Social Connector (KB2441641) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{AEE4CC56-C18F-4ED6-BFD0-2D5FFB94DE9F}
O42 - Logiciel: UpdatePCTuto 2.0 - (.PCtuto.) [HKLM][64Bits] -- UpdatePCTuto_is1
O42 - Logiciel: VLC media player 1.1.6 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player
O42 - Logiciel: µTorrent - (.Pas de propriétaire.) [HKCU] -- uTorrent
---\\ HKCU & HKLM Software Keys
[HKCU\Software\AC3filter]
[HKCU\Software\Adobe]
[HKCU\Software\Antanda]
[HKCU\Software\AppDataLow\Software\Microsoft]
[HKCU\Software\AppDataLow\Software]
[HKCU\Software\AppDataLow]
[HKCU\Software\Battle.net]
[HKCU\Software\BitTorrent]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\CoreVorbis]
[HKCU\Software\DivX]
[HKCU\Software\DownloadMR]
[HKCU\Software\ESET]
[HKCU\Software\FLEXlm License Manager]
[HKCU\Software\GLIDE3toOpenGL]
[HKCU\Software\GNU]
[HKCU\Software\Gabest]
[HKCU\Software\Google]
[HKCU\Software\Haali]
[HKCU\Software\Intel]
[HKCU\Software\JavaSoft]
[HKCU\Software\Local AppWizard-Generated Applications]
[HKCU\Software\Lyrics Plugin]
[HKCU\Software\MONOGRAM]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Netscape]
[HKCU\Software\ODBC]
[HKCU\Software\OfferBox]
[HKCU\Software\OpenOffice.org]
[HKCU\Software\PCTuto]
[HKCU\Software\Policies]
[HKCU\Software\PowerISO]
[HKCU\Software\Pyro]
[HKCU\Software\Realtek]
[HKCU\Software\RocketDock]
[HKCU\Software\STATISTICAPDF]
[HKCU\Software\Softonic]
[HKCU\Software\Stardock]
[HKCU\Software\StatSoft]
[HKCU\Software\SweetIM]
[HKCU\Software\System Requirements Lab]
[HKCU\Software\TuneUp]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\WinRAR]
[HKCU\Software\Wow6432Node]
[HKCU\Software\cybelsoft]
[HKCU\Software\madFlac]
[HKLM\Software\ATI Technologies]
[HKLM\Software\Adobe]
[HKLM\Software\Agere]
[HKLM\Software\Battle.net]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\ESET]
[HKLM\Software\GNU]
[HKLM\Software\Google]
[HKLM\Software\HaaliMkx]
[HKLM\Software\IVT Corporation]
[HKLM\Software\Intel]
[HKLM\Software\JavaSoft]
[HKLM\Software\LSI]
[HKLM\Software\Marvell]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\NSIS]
[HKLM\Software\Nico Mak Computing]
[HKLM\Software\ODBC]
[HKLM\Software\OfferBox]
[HKLM\Software\OpenOffice.org]
[HKLM\Software\PCTuto]
[HKLM\Software\Policies]
[HKLM\Software\Pyro Studios]
[HKLM\Software\Pyro]
[HKLM\Software\Realtek Semiconductor Corp.]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\SRS Labs]
[HKLM\Software\Sonic]
[HKLM\Software\Stardock]
[HKLM\Software\StatSoft]
[HKLM\Software\SweetIM]
[HKLM\Software\TuneUp]
[HKLM\Software\VideoLAN]
[HKLM\Software\WidCommUpdate]
[HKLM\Software\WinRAR]
[HKLM\Software\Wow6432Node]
[HKLM\Software\cybelsoft]
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 11/04/2011 - 16:26:28 - [283102200] ----D- C:\Program Files\Common Files
O43 - CFD: 14/07/2009 - 17:35:14 - [90257428] ----D- C:\Program Files\DVD Maker
O43 - CFD: 20/05/2011 - 17:59:20 - [51008513] ----D- C:\Program Files\ESET
O43 - CFD: 11/04/2011 - 15:53:46 - [0] -SH-D- C:\Program Files\Fichiers communs
O43 - CFD: 14/04/2011 - 09:53:48 - [5174573] ----D- C:\Program Files\Internet Explorer
O43 - CFD: 11/04/2011 - 16:20:22 - [66182091] ----D- C:\Program Files\Microsoft Analysis Services
O43 - CFD: 14/07/2009 - 17:35:14 - [149236786] ----D- C:\Program Files\Microsoft Games
O43 - CFD: 11/04/2011 - 16:24:40 - [1139007132] ----D- C:\Program Files\Microsoft Office
O43 - CFD: 11/04/2011 - 16:24:38 - [2966976] ----D- C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 11/04/2011 - 16:24:38 - [1014647] ----D- C:\Program Files\Microsoft Sync Framework
O43 - CFD: 11/04/2011 - 16:25:18 - [326800] ----D- C:\Program Files\Microsoft Synchronization Services
O43 - CFD: 14/07/2009 - 07:32:40 - [25757] ----D- C:\Program Files\MSBuild
O43 - CFD: 12/04/2011 - 13:46:24 - [5584634] ----D- C:\Program Files\Rainmeter (installe)
O43 - CFD: 14/07/2009 - 07:32:40 - [36253865] ----D- C:\Program Files\Reference Assemblies
O43 - CFD: 14/07/2009 - 07:09:28 - [0] --H-D- C:\Program Files\Uninstall Information
O43 - CFD: 14/07/2009 - 17:24:10 - [4039168] ----D- C:\Program Files\Windows Defender
O43 - CFD: 14/07/2009 - 17:35:14 - [9224824] ----D- C:\Program Files\Windows Journal
O43 - CFD: 12/04/2011 - 08:51:30 - [6667264] ----D- C:\Program Files\Windows Mail
O43 - CFD: 12/04/2011 - 08:51:12 - [7687085] ----D- C:\Program Files\Windows Media Player
O43 - CFD: 11/04/2011 - 15:53:46 - [12627124] ----D- C:\Program Files\Windows NT
O43 - CFD: 14/07/2009 - 17:24:10 - [5516568] ----D- C:\Program Files\Windows Photo Viewer
O43 - CFD: 14/07/2009 - 07:32:40 - [235008] ----D- C:\Program Files\Windows Portable Devices
O43 - CFD: 14/07/2009 - 17:24:10 - [7421029] ----D- C:\Program Files\Windows Sidebar
O43 - CFD: 11/04/2011 - 16:26:28 - [99136] ----D- C:\Program Files\Common Files\DESIGNER
O43 - CFD: 12/04/2011 - 13:46:20 - [269841543] ----D- C:\Program Files\Common Files\Microsoft Shared
O43 - CFD: 14/07/2009 - 05:20:10 - [2702] ----D- C:\Program Files\Common Files\Services
O43 - CFD: 14/07/2009 - 05:20:10 - [608768] ----D- C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 11/04/2011 - 16:20:52 - [12550051] ----D- C:\Program Files\Common Files\System
O43 - CFD: 16/04/2011 - 11:04:42 - [136894119] ----D- C:\ProgramData\Adobe
O43 - CFD: 14/07/2009 - 07:08:58 - [0] -SH-D- C:\ProgramData\Application Data
O43 - CFD: 11/04/2011 - 15:53:46 - [0] -SH-D- C:\ProgramData\Bureau
O43 - CFD: 14/07/2009 - 07:08:58 - [0] -SH-D- C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - 07:08:58 - [0] -SH-D- C:\ProgramData\Documents
O43 - CFD: 20/05/2011 - 17:59:20 - [59920862] ----D- C:\ProgramData\ESET
O43 - CFD: 11/04/2011 - 15:53:46 - [0] -SH-D- C:\ProgramData\Favoris
O43 - CFD: 14/07/2009 - 07:08:58 - [0] -SH-D- C:\ProgramData\Favorites
O43 - CFD: 08/05/2011 - 18:32:52 - [1295801] ----D- C:\ProgramData\ma-config.com
O43 - CFD: 11/04/2011 - 15:53:46 - [0] -SH-D- C:\ProgramData\Menu Démarrer
O43 - CFD: 14/04/2011 - 11:01:28 - [154448971] -S--D- C:\ProgramData\Microsoft
O43 - CFD: 14/04/2011 - 09:40:56 - [16632] ----D- C:\ProgramData\Microsoft Help
O43 - CFD: 11/04/2011 - 15:53:46 - [0] -SH-D- C:\ProgramData\Modèles
O43 - CFD: 11/04/2011 - 17:41:38 - [1040] ----D- C:\ProgramData\PC Drivers HeadQuarters
O43 - CFD: 14/07/2009 - 07:08:58 - [0] -SH-D- C:\ProgramData\Start Menu
O43 - CFD: 09/05/2011 - 13:15:22 - [272] ----D- C:\ProgramData\StatSoft
O43 - CFD: 01/05/2011 - 18:30:00 - [104795] ----D- C:\ProgramData\SweetIM
O43 - CFD: 14/07/2009 - 07:08:58 - [0] -SH-D- C:\ProgramData\Templates
O43 - CFD: 09/05/2011 - 20:21:54 - [0] ----D- C:\ProgramData\TorrentEasy
O43 - CFD: 11/04/2011 - 16:05:28 - [6342740] ----D- C:\ProgramData\TuneUp Software
O43 - CFD: 11/04/2011 - 17:42:00 - [0] ----D- C:\ProgramData\UAB
O43 - CFD: 11/04/2011 - 16:13:10 - [25467906] ----D- C:\ProgramData\Win7codecs
O43 - CFD: 12/04/2011 - 09:02:46 - [0] ----D- C:\ProgramData\WinZip
O43 - CFD: 16/04/2011 - 11:03:52 - [1941130] ----D- C:\Users\Tangue-man\AppData\Roaming\Adobe
O43 - CFD: 12/04/2011 - 15:53:00 - [31264] ----D- C:\Users\Tangue-man\AppData\Roaming\Bump Technologies, Inc
O43 - CFD: 11/04/2011 - 15:54:12 - [0] ----D- C:\Users\Tangue-man\AppData\Roaming\Identities
O43 - CFD: 11/04/2011 - 18:40:14 - [0] ----D- C:\Users\Tangue-man\AppData\Roaming\InstallShield
O43 - CFD: 11/04/2011 - 16:08:18 - [24722] ----D- C:\Users\Tangue-man\AppData\Roaming\Macromedia
O43 - CFD: 14/07/2009 - 17:35:04 - [0] ----D- C:\Users\Tangue-man\AppData\Roaming\Media Center Programs
O43 - CFD: 20/05/2011 - 21:01:10 - [17256429] -S--D- C:\Users\Tangue-man\AppData\Roaming\Microsoft
O43 - CFD: 03/05/2011 - 19:16:42 - [267590] ----D- C:\Users\Tangue-man\AppData\Roaming\OfferBox
O43 - CFD: 13/04/2011 - 20:03:38 - [1531929] ----D- C:\Users\Tangue-man\AppData\Roaming\OpenOffice.org
O43 - CFD: 01/05/2011 - 18:29:56 - [2162089] ----D- C:\Users\Tangue-man\AppData\Roaming\PCtuto
O43 - CFD: 12/04/2011 - 14:17:00 - [458887] ----D- C:\Users\Tangue-man\AppData\Roaming\Rainmeter
O43 - CFD: 09/05/2011 - 12:58:20 - [7757] ----D- C:\Users\Tangue-man\AppData\Roaming\StatSoft
O43 - CFD: 09/05/2011 - 16:53:06 - [405304] ----D- C:\Users\Tangue-man\AppData\Roaming\SystemRequirementsLab
O43 - CFD: 11/04/2011 - 16:03:08 - [35626] ----D- C:\Users\Tangue-man\AppData\Roaming\TuneUp Software
O43 - CFD: 28/05/2011 - 14:51:10 - [1875702] ----D- C:\Users\Tangue-man\AppData\Roaming\uTorrent
O43 - CFD: 22/05/2011 - 21:12:12 - [1519979] ----D- C:\Users\Tangue-man\AppData\Roaming\vlc
O43 - CFD: 11/04/2011 - 16:13:10 - [1025] ----D- C:\Users\Tangue-man\AppData\Roaming\Win7codecs
O43 - CFD: 11/04/2011 - 17:37:14 - [0] ----D- C:\Users\Tangue-man\AppData\Roaming\WinRAR
O43 - CFD: 16/04/2011 - 11:03:52 - [14544100] ----D- C:\Users\Tangue-man\Appdata\Local\Adobe
O43 - CFD: 11/04/2011 - 15:53:58 - [0] -SH-D- C:\Users\Tangue-man\Appdata\Local\Application Data
O43 - CFD: 11/04/2011 - 16:04:44 - [1230129] ----D- C:\Users\Tangue-man\Appdata\Local\Apps
O43 - CFD: 11/04/2011 - 18:10:36 - [2607] ----D- C:\Users\Tangue-man\Appdata\Local\bluesoleil
O43 - CFD: 11/04/2011 - 16:05:00 - [0] ----D- C:\Users\Tangue-man\Appdata\Local\Deployment
O43 - CFD: 27/05/2011 - 08:41:00 - [1207629] ----D- C:\Users\Tangue-man\Appdata\Local\Diagnostics
O43 - CFD: 25/04/2011 - 11:45:32 - [80819] ----D- C:\Users\Tangue-man\Appdata\Local\ElevatedDiagnostics
O43 - CFD: 12/04/2011 - 16:58:14 - [5043040] ----D- C:\Users\Tangue-man\Appdata\Local\ESET
O43 - CFD: 11/04/2011 - 16:06:50 - [694616450] ----D- C:\Users\Tangue-man\Appdata\Local\Google
O43 - CFD: 11/04/2011 - 15:53:58 - [0] -SH-D- C:\Users\Tangue-man\Appdata\Local\Historique
O43 - CFD: 01/05/2011 - 10:14:22 - [46154077] ----D- C:\Users\Tangue-man\Appdata\Local\Microsoft
O43 - CFD: 24/05/2011 - 07:11:02 - [323747] ----D- C:\Users\Tangue-man\Appdata\Local\Microsoft Games
O43 - CFD: 13/05/2011 - 08:17:26 - [136604] ----D- C:\Users\Tangue-man\Appdata\Local\Microsoft Help
O43 - CFD: 19/05/2011 - 19:21:12 - [0] ----D- C:\Users\Tangue-man\Appdata\Local\PackageAware
O43 - CFD: 01/05/2011 - 18:29:52 - [474056] ----D- C:\Users\Tangue-man\Appdata\Local\PCTuto
O43 - CFD: 11/04/2011 - 17:41:54 - [3091] ----D- C:\Users\Tangue-man\Appdata\Local\PC_Drivers_Headquarters
O43 - CFD: 28/05/2011 - 14:50:58 - [200653] ----D- C:\Users\Tangue-man\Appdata\Local\Temp
O43 - CFD: 11/04/2011 - 15:54:00 - [0] -SH-D- C:\Users\Tangue-man\Appdata\Local\Temporary Internet Files
O43 - CFD: 12/05/2011 - 19:39:44 - [6674326] ----D- C:\Users\Tangue-man\Appdata\Local\VirtualStore
O43 - CFD: 13/05/2011 - 07:56:06 - [26171224] ----D- C:\Users\Tangue-man\Appdata\Local\Xenocode
O43 - CFD: 11/04/2011 - 18:57:44 - [114227921] ----D- C:\Program Files (x86)\Adobe
O43 - CFD: 21/05/2011 - 15:57:14 - [190324394] ----D- C:\Program Files (x86)\Common Files
O43 - CFD: 21/05/2011 - 15:44:48 - [1952669826] ----D- C:\Program Files (x86)\Eidos
O43 - CFD: 21/05/2011 - 15:45:14 - [10419329] --H-D- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 20/05/2011 - 22:56:10 - [96757] ----D- C:\Program Files (x86)\Intel
O43 - CFD: 14/04/2011 - 09:53:48 - [4477221] ----D- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 11/04/2011 - 17:44:40 - [6377404] ----D- C:\Program Files (x86)\IVT Corporation
O43 - CFD: 11/04/2011 - 16:12:18 - [293305056] ----D- C:\Program Files (x86)\Java
O43 - CFD: 08/05/2011 - 18:32:58 - [6093848] ----D- C:\Program Files (x86)\ma-config.com
O43 - CFD: 11/04/2011 - 17:37:32 - [4572390] ----D- C:\Program Files (x86)\Marvell
O43 - CFD: 11/04/2011 - 16:20:22 - [39769547] ----D- C:\Program Files (x86)\Microsoft Analysis Services
O43 - CFD: 11/04/2011 - 16:19:38 - [29589124] ----D- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 11/04/2011 - 16:22:12 - [1378033] ----D- C:\Program Files (x86)\Microsoft Visual Studio 8
O43 - CFD: 12/04/2011 - 10:49:28 - [8167779] ----D- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 11/04/2011 - 16:25:00 - [26521] ----D- C:\Program Files (x86)\MSBuild
O43 - CFD: 13/04/2011 - 20:01:50 - [354552581] ----D- C:\Program Files (x86)\OpenOffice.org 3
O43 - CFD: 11/04/2011 - 17:40:48 - [7181565] ----D- C:\Program Files (x86)\PC Drivers HeadQuarters
O43 - CFD: 01/05/2011 - 18:30:00 - [7922221] ----D- C:\Program Files (x86)\PCTuto
O43 - CFD: 21/05/2011 - 15:38:06 - [4085428] ----D- C:\Program Files (x86)\PowerISO(instal)
O43 - CFD: 11/04/2011 - 18:42:28 - [14086761] ----D- C:\Program Files (x86)\Realtek
O43 - CFD: 14/07/2009 - 07:32:40 - [38597377] ----D- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 09/05/2011 - 13:12:40 - [467518393] ----D- C:\Program Files (x86)\StatSoft
O43 - CFD: 01/05/2011 - 18:30:08 - [8851323] ----D- C:\Program Files (x86)\SweetIM
O43 - CFD: 09/05/2011 - 16:50:38 - [718080] ----D- C:\Program Files (x86)\SystemRequirementsLab
O43 - CFD: 11/04/2011 - 16:05:30 - [61690712] ----D- C:\Program Files (x86)\TuneUp Utilities 2011
O43 - CFD: 14/07/2009 - 06:57:08 - [0] --H-D- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 11/04/2011 - 16:13:54 - [270128] ----D- C:\Program Files (x86)\uTorrent
O43 - CFD: 20/05/2011 - 23:07:52 - [81535531] ----D- C:\Program Files (x86)\VideoLAN
O43 - CFD: 11/04/2011 - 16:13:08 - [47371488] ----D- C:\Program Files (x86)\Win7codecs
O43 - CFD: 14/07/2009 - 17:24:10 - [524800] ----D- C:\Program Files (x86)\Windows Defender
O43 - CFD: 12/04/2011 - 08:51:30 - [6180864] ----D- C:\Program Files (x86)\Windows Mail
O43 - CFD: 12/04/2011 - 14:42:38 - [5292817] ----D- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 14/07/2009 - 07:32:40 - [12197556] ----D- C:\Program Files (x86)\Windows NT
O43 - CFD: 14/07/2009 - 17:24:10 - [4417800] ----D- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 14/07/2009 - 07:32:42 - [189440] ----D- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 14/07/2009 - 17:24:10 - [6370888] ----D- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 11/04/2011 - 16:11:40 - [3525705] ----D- C:\Program Files (x86)\WinRAR
O43 - CFD: 28/05/2011 - 14:51:30 - [3956949] ----D- C:\Program Files (x86)\ZHPDiag(instal)
O43 - CFD: 11/04/2011 - 18:57:54 - [3515885] ----D- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 21/05/2011 - 15:44:30 - [4981540] ----D- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 14/04/2011 - 09:36:16 - [130325313] ----D- C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 14/07/2009 - 05:20:10 - [2702] ----D- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 14/07/2009 - 05:20:10 - [41103783] ----D- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 21/05/2011 - 15:57:14 - [0] ----D- C:\Program Files (x86)\Common Files\SWF Studio
O43 - CFD: 14/07/2009 - 17:24:10 - [10395171] ----D- C:\Program Files (x86)\Common Files\System
---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.3C2390C954B8D18ABF262E78F8B9CD66] - 28/05/2011 - 13:48:32 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [1549700]
O44 - LFC:[MD5.4C27C7A281DAD686E4E261FD5546605B] - 28/05/2011 - 13:48:32 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [106388]
O44 - LFC:[MD5.0136F53AA3615ECC232B03B7AEE8EE74] - 28/05/2011 - 13:48:32 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [130754]
O44 - LFC:[MD5.8CEAFF677E01FB43A95811EC7F3B6601] - 28/05/2011 - 13:48:32 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [616008]
O44 - LFC:[MD5.43EF8E168685ED42DFB87D31EB939FCF] - 28/05/2011 - 13:48:32 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [704480]
O44 - LFC:[MD5.A78EB05FF2319E757999EB99398E42F3] - 28/05/2011 - 13:43:46 ---A- . (...) -- C:\Windows\setupact.log [41021]
O44 - LFC:[MD5.5E85AD5884AC01674A7EFBF40EE44021] - 28/05/2011 - 13:43:45 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.17000000000000000000000054EF1800] - 28/05/2011 - 13:43:08 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1701155]
O44 - LFC:[MD5.8F54712D976620C513F6E4F19DCA2D76] - 28/05/2011 - 08:58:11 ---A- . (...) -- C:\PhysicalDisk0_MBR.bin [512]
O44 - LFC:[MD5.24789A92F7FBEAE1C5BDB314E28A9EBF] - 23/05/2011 - 21:56:12 --HA- . (...) -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [9584]
O44 - LFC:[MD5.24789A92F7FBEAE1C5BDB314E28A9EBF] - 23/05/2011 - 21:56:12 --HA- . (...) -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [9584]
O44 - LFC:[MD5.6F32F672C5FDE1E6B2545B0AAACA65D2] - 21/05/2011 - 14:57:09 ---A- . (...) -- C:\Windows\DirectX.log [2826]
O44 - LFC:[MD5.45E016F87ED0A34EE2ACE619566565D8] - 21/05/2011 - 09:34:19 ---A- . (...) -- C:\Windows\DPINST.LOG [15582]
O44 - LFC:[MD5.13B5123EE54F8798038E7035EF62919E] - 20/05/2011 - 22:46:49 ---A- . (...) -- C:\Windows\PFRO.log [18672]
O44 - LFC:[MD5.341C4D4F2B3E6C502284B2CB4C33A5A1] - 20/05/2011 - 20:18:12 R---- . (...) -- C:\Windows\YukonInstall.log [369]
O44 - LFC:[MD5.3B537010CB11DD1C5214492FC3078BDA] - 20/05/2011 - 20:18:10 ---A- . (...) -- C:\Windows\ykinstutil.log [16628]
O44 - LFC:[MD5.89F40FE58136331667E54C939C273923] - 20/05/2011 - 18:59:50 ---A- . (...) -- C:\Windows\ntbtlog.txt [245026]
O44 - LFC:[MD5.B1A72BD14A812664B405F42D7171A886] - 20/05/2011 - 16:08:37 ---A- . (...) -- C:\RHDSetup.log [140]
O44 - LFC:[MD5.BDB904902500628C6C510CD723800558] - 20/05/2011 - 16:08:37 ---A- . (...) -- C:\setup.log [87]
O44 - LFC:[MD5.403768E42CB8703E3057405F721D20B7] - 08/05/2011 - 17:25:13 ---A- . (...) -- C:\Windows\WinInit.Ini [253]
---\\ Opérations et fonctions au démarrage de Windows Explorer (O46)
O46 - SEH:ShellExecuteHooks - Groove GFS Stub Execution Hook [64Bits] - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL
---\\ Trojan Driver Search Data (HKLM) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \drivers.desc\"wdmaud.drv"="Pilote de fonction UAA 1.1 Microsoft pour High Definition Audio" . (.Pas de propriétaire - Pas de description.) -- (.not file.)
---\\ Microsoft Control Security Providers (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll
---\\ Microsoft Windows Policies System (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
---\\ Microsoft Windows Policies Explorer (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0
---\\ Liste des Drivers Système (O58)
O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\system32\drivers\adp94xx.sys [491088]
O58 - SDL:[MD5.597F78224EE9224EA1A13D6350CED962] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\system32\drivers\adpahci.sys [339536]
O58 - SDL:[MD5.E109549C90F62FB570B9540C4B148E54] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\system32\drivers\adpu320.sys [182864]
O58 - SDL:[MD5.98022774D9930ECBB292E70DB7601DF6] - 10/06/2009 - 22:01:06 ---A- . (.LSI Corp - SoftModem Device Driver.) -- C:\Windows\system32\drivers\agrsm64.sys [1146880]
O58 - SDL:[MD5.5812713A477A3AD7363C7438CA2EE038] - 14/07/2009 - 02:52:21 ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\system32\drivers\aliide.sys [15440]
O58 - SDL:[MD5.EC7EBAB00A4D8448BAB68D1E49B4BEB9] - 11/03/2011 - 07:22:41 ---A- . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\system32\drivers\amdsata.sys [107904]
O58 - SDL:[MD5.F67F933E79241ED32FF46A4F29B5120B] - 14/07/2009 - 02:52:20 ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows -.) -- C:\Windows\system32\drivers\amdsbs.sys [194128]
O58 - SDL:[MD5.DB27766102C7BF7E95140A2AA81D042E] - 11/03/2011 - 07:22:40 ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\system32\drivers\amdxata.sys [27008]
O58 - SDL:[MD5.C484F8CEB1717C540242531DB7845C4E] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\system32\drivers\arc.sys [87632]
O58 - SDL:[MD5.019AF6924AEFE7839F61C830227FE79C] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\system32\drivers\arcsas.sys [97856]
O58 - SDL:[MD5.B5ACE6968304A3900EEB1EBFD9622DF2] - 10/06/2009 - 21:34:23 ---A- . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver..) -- C:\Windows\system32\drivers\b57nd60a.sys [270848]
O58 - SDL:[MD5.00676B9CA4CD1ABAB2A53496DDCBB258] - 25/11/2008 - 14:23:34 ---A- . (.IVT Corporation. - Bluelet Audio Driver.) -- C:\Windows\system32\drivers\blueletaudio.sys [36360]
O58 - SDL:[MD5.97176276E8C701633E5F2ECA212C262D] - 25/11/2008 - 14:23:42 ---A- . (.IVT Corporation. - Bluelet Audio Driver.) -- C:\Windows\system32\drivers\BlueletSCOAudio.sys [36872]
O58 - SDL:[MD5.F09EEE9EDC320B5E1501F749FDE686C8] - 10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\system32\drivers\BrFiltLo.sys [18432]
O58 - SDL:[MD5.B114D3098E9BDB8BEA8B053685831BE6] - 10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\system32\drivers\BrFiltUp.sys [8704]
O58 - SDL:[MD5.43BEA8D483BF1870F018E2D02E06A5BD] - 14/07/2009 - 02:19:07 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\system32\drivers\BrSerId.sys [286720]
O58 - SDL:[MD5.A6ECA2151B08A09CACECA35C07F05B42] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\system32\drivers\BrSerWdm.sys [47104]
O58 - SDL:[MD5.B79968002C277E869CF38BD22CD61524] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\system32\drivers\BrUsbMdm.sys [14976]
O58 - SDL:[MD5.A87528880231C54E75EA7A44943B38BF] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\system32\drivers\BrUsbSer.sys [14720]
O58 - SDL:[MD5.118DC6A465A42559B2D778DB234B0904] - 03/01/2009 - 15:40:26 ---A- . (.IVT Corporation. - Bluetooth USB Device Driver.) -- C:\Windows\system32\drivers\btcusb.sys [47880]
O58 - SDL:[MD5.992D8C032884DC4C837C40BF52CB5C89] - 07/01/2009 - 22:38:18 ---A- . (.IVT Corporation. - Bluetooth HID BUS Driver.) -- C:\Windows\system32\drivers\BtHidBus.sys [24840]
O58 - SDL:[MD5.40AAAB64465E42C72B6411AAEB3EEF0F] - 07/12/2008 - 11:44:56 ---A- . (...) -- C:\Windows\system32\drivers\btnetBus.sys [35848]
O58 - SDL:[MD5.3E5B191307609F7514148C6832BB0842] - 10/06/2009 - 21:34:28 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\system32\drivers\bxvbda.sys [468480]
O58 - SDL:[MD5.E19D3F095812725D88F9001985B94EDD] - 14/07/2009 - 02:52:31 ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\cmdide.sys [17488]
O58 - SDL:[MD5.332CE31BF279F07C5A5542630E5CFB3E] - 01/07/2008 - 07:56:26 ---A- . (.ESET - Amon monitor.) -- C:\Windows\system32\drivers\eamon.sys [44552]
O58 - SDL:[MD5.2F6EC0BCE4DDC82EC1C8812D07C19337] - 01/07/2008 - 07:57:18 ---A- . (.ESET - Eset AntiStealth driver.) -- C:\Windows\system32\drivers\easdrv.sys [53256]
O58 - SDL:[MD5.0E5DA5369A0FCAEA12456DD852545184] - 14/07/2009 - 02:47:48 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\system32\drivers\elxstor.sys [530496]
O58 - SDL:[MD5.348D66DF8C226C3E31BBF60181D2357F] - 01/07/2008 - 08:05:02 ---A- . (...) -- C:\Windows\system32\drivers\epfwtdir.sys [37384]
O58 - SDL:[MD5.DC5D737F51BE844D8C82C695EB17372F] - 10/06/2009 - 21:34:33 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\system32\drivers\evbda.sys [3286016]
O58 - SDL:[MD5.F2523EF6460FC42405B12248338AB2F0] - 10/06/2009 - 21:31:59 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\system32\drivers\hcw85cir.sys [31232]
O58 - SDL:[MD5.0886D440058F203EBA0E1825E4355914] - 14/07/2009 - 02:47:48 ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\system32\drivers\HpSAMD.sys [77888]
O58 - SDL:[MD5.B75E45C564E944A2657167D197AB29DA] - 11/03/2011 - 07:23:00 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\system32\drivers\iaStorV.sys [410496]
O58 - SDL:[MD5.24CC43ECDEEFD4C19FBBEE4951B647F1] - 23/09/2009 - 18:23:02 ---A- . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\system32\drivers\igdkmd64.sys [6180832]
O58 - SDL:[MD5.5C18831C61933628F5BB0EA2675B9D21] - 14/07/2009 - 02:48:04 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\system32\drivers\iirsp.sys [44112]
O58 - SDL:[MD5.1C6D68A0BF108A5B3D40B2E84AE3CCDA] - 02/07/2008 - 13:58:50 ---A- . (.IVT Corporation. - IVT Bluetooth Bus Device Driver.) -- C:\Windows\system32\drivers\IvtBtBus.sys [31624]
O58 - SDL:[MD5.1A93E54EB0ECE102495A51266DCDB6A6] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_fc.sys [114752]
O58 - SDL:[MD5.1047184A9FDC8BDBFF857175875EE810] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas.sys [106560]
O58 - SDL:[MD5.30F5C0DE1EE8B5BC9306C1F0E4A75F93] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas2.sys [65600]
O58 - SDL:[MD5.0504EACAFF0D3C8AED161C4B0D369D4A] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_scsi.sys [115776]
O58 - SDL:[MD5.A55805F747C6EDB6A9080D7C633BD0F4] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for.) -- C:\Windows\system32\drivers\megasas.sys [35392]
O58 - SDL:[MD5.BAF74CE0072480C3B6B7C13B2A94D6B3] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\system32\drivers\MegaSR.sys [284736]
O58 - SDL:[MD5.64428DFDAF6E88366CB51F45A79C5F69] - 10/06/2009 - 21:35:28 ---A- . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\system32\drivers\netw5v64.sys [5434368]
O58 - SDL:[MD5.54762E37F65C20652532DBDAC53698F6] - 07/10/2010 - 13:11:50 ---A- . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\system32\drivers\NETwLv64.sys [7533568]
O58 - SDL:[MD5.77889813BE4D166CDAB78DDBA990DA92] - 14/07/2009 - 02:48:26 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\system32\drivers\nfrd960.sys [51264]
O58 - SDL:[MD5.A4D9C9A608A97F59307C2F2600EDC6A4] - 11/03/2011 - 07:23:06 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\system32\drivers\nvraid.sys [148352]
O58 - SDL:[MD5.6C1D5F70E7A6A3FD1C90D840EDC048B9] - 11/03/2011 - 07:23:06 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\system32\drivers\nvstor.sys [166272]
O58 - SDL:[MD5.A53A15A11EBFD21077463EE2C7AFEEF0] - 14/07/2009 - 02:45:46 ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\system32\drivers\ql2300.sys [1524816]
O58 - SDL:[MD5.4F6D12B51DE1AAEFF7DC58C4D75423C8] - 14/07/2009 - 02:45:45 ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\system32\drivers\ql40xx.sys [128592]
O58 - SDL:[MD5.2A43F9E6DBDE12BC0C104785C3B3F5DF] - 18/11/2006 - 12:07:48 ---A- . (.REDC - RICOH xD SM Driver.) -- C:\Windows\system32\drivers\rixdpx64.sys [55296]
O58 - SDL:[MD5.FDB31B20F0DAC5F33FB46DDB02C0E5FD] - 17/04/2007 - 17:34:00 ---A- . (.Realtek Semiconductor Corp. - Realtek(r) H
Run by Tangue-man at 28/05/2011 14:51:26
Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
---\\ Web Browser
MSIE: Internet Explorer v8.0.7600.16385
GCIE: Google Chrome v11.0.696.71 (Defaut)
---\\ System Information
Windows 7 Ultimate Edition, 64-bit (Build 7600)
Processor: Intel64 Family 6 Model 15 Stepping 13, GenuineIntel
Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 2038 MB (62% free)
System Restore: Activé (Enable)
System drive C: has 31 GB (20%) free of 149 GB
---\\ Logged in mode
Computer Name: TANGUE-MAN-PC
User Name: Tangue-man
All Users Names: Tangue-man, HomeGroupUser$, Administrateur,
Unselected Option: O45,O61,O62,O65,O66,O82
Logged in as Administrator
---\\ Environnement Variables
%AppData%=C:\Users\Tangue-man\AppData\Roaming
%LocalAppData%=C:\Users\Tangue-man\AppData\Local
%StartMenu%=C:\Users\Tangue-man\AppData\Roaming\Microsoft\Windows\Start Menu
---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 31 Go of 149 Go)
D:\ CD-ROM drive (Not Inserted)
E:\ CD-ROM drive (Not Inserted)
---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
---\\ Recherche particulière de fichiers génériques
[MD5.0862495E0C825893DB75EF44FAEA8E93] - (.Microsoft Corporation - Explorateur Windows.) (.26/02/2011 07:23:14.) -- C:\Windows\Explorer.exe [2870272]
[MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 02:14:45.) -- C:\Windows\system32\Wininit.exe [96256]
[MD5.214605C48AE416BC067C39D227CFCC57] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.24/02/2011 06:32:44.) -- C:\Windows\system32\wininet.dll [981504]
---\\ Processus lancés
[MD5.27870BDDDE2BB30C134247512D8A6156] - (.PCTuto - autoupdater.) -- C:\Users\Tangue-man\AppData\Roaming\PCtuto\UpdatePCTuto\autoupdater.exe [663168]
[MD5.C0063DB87FB34539697460ED1A231F60] - (.Pas de propriétaire - BlueSoleil Bttray.) -- C:\Program Files (x86)\IVT Corporation\BlueSoleil\BtTray.exe [279552]
[MD5.3EEC83341AECDE670C2CE16EBED5D66C] - (.PCTUTO - PCTUTO.) -- C:\Program Files (x86)\PCTuto\pctuto.exe [982656]
[MD5.11E8D8272FDBE213ADE3DAD91427CE35] - (.OpenOffice.org - OpenOffice.org 3.3.) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe [11322880]
[MD5.FA7DC6B50DABDDC74DB3B6CE2F834572] - (.SweetIM Technologies Ltd. - SweetIM Instant Messenger Enhancer.) -- C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe [114992]
[MD5.AA16204FD1F75637E8EAEB593A8FA597] - (.PowerISO Computing, Inc. - PowerISO Virtual Drive Manager.) -- C:\Program Files (x86)\PowerISO(instal)\PWRISOVM.EXE [180224]
[MD5.2337EC951C4AF6E1AF65D10BD9615BEB] - (.OpenOffice.org - OpenOffice.org 3.3.) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin [11314688]
[MD5.B56CE93D73125AEB4872D999D91B7348] - (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe [270128]
[MD5.A588671AF9BE28C22B4BEDE74F60DEE9] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files (x86)\ZHPDiag(instal)\ZHPDiag.exe [657408]
---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
P2 - FPN: [HKLM] [@microsoft.com/OfficeAuthz,version=14.0] - (.Microsoft Corporation - Office Authorization plug-in for NPAPI browsers.) -- C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.dll
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Users\Tangue-man\AppData\Local\Google\Update\1.3.21.53\npGoogleUpdate3.dll
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Users\Tangue-man\AppData\Local\Google\Update\1.3.21.53\npGoogleUpdate3.dll
---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
G1 - GCS: Preference [User Data\Default] None
G0 - GCSP: Preference [User Data\Default][HomePage] http://home.sweetim.com
G2 - GCE: Preference [User Data\Default] [bjeikeheijdjdfjbmknpefojickbkmom] Offerbox v.2.1.3714.137 (Activé)
G2 - GCE: Preference [User Data\Default] [dhfnkfaeekjcmeadbdcohacjdjdmlmia] AT_MattWMoore v.3 (Activé)
---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com
R0 - HKUS\S-1-5-21-3880304560-787929789-3870122161-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKUS\S-1-5-21-3880304560-787929789-3870122161-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R3 - URLSearchHook: SweetIM ToolbarURLSearchHook Class [64Bits] - {EEE6C35D-6118-11DC-9C72-001320C79847} . (.SweetIM Technologies Ltd. - SweetIM Toolbar Helper Module.) (4, 1, 0, 3) -- C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgHelper.dl
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
---\\ ---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: VMApplet=C:\WINDOWS\system32\SystemPropertiesPerformance.exe
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Groove GFS Browser Helper [64Bits] - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL
O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: AcroIEHelperStub [64Bits] - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: PCTBHO [64Bits] - {293A63F7-C3B6-423a-9845-901AC0A7EE6E} . (.PCTUTO - ....) -- C:\Program Files (x86)\PCTuto\pctutoBHO.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SWEETIE [64Bits] - {EEE6C35C-6118-11DC-9C72-001320C79847} . (.SweetIM Technologies Ltd. - SweetIM Toolbar for Internet Explorer.) -- C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
---\\ ---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [BCSSync] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files\Microsoft Office\Office14\BCSSync.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe (.not file.)
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe (.not file.)
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe (.not file.)
O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RAVCpl64.exe
O4 - HKLM\..\Run: [Skytel] . (.Realtek Semiconductor Corp. - Realtek Voice Manager.) -- C:\Windows\Skytel.exe
O4 - HKLM\..\Run: [egui] . (.ESET - Eset GUI.) -- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
O4 - HKLM\..\Wow6432Node\Run: [BtTray] . (.Pas de propriétaire - BlueSoleil Bttray.) -- C:\Program Files (x86)\IVT Corporation\BlueSoleil\BtTray.exe
O4 - HKLM\..\Wow6432Node\Run: [PCTuto] . (.PCTUTO - PCTUTO.) -- C:\Program Files (x86)\PCTuto\pctuto.exe
O4 - HKLM\..\Wow6432Node\Run: [SweetIM] . (.SweetIM Technologies Ltd. - SweetIM Instant Messenger Enhancer.) -- C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
O4 - HKLM\..\Wow6432Node\Run: [PWRISOVM.EXE] . (.PowerISO Computing, Inc. - PowerISO Virtual Drive Manager.) -- C:\Program Files (x86)\PowerISO(instal)\PWRISOVM.exe
O4 - HKLM\..\Wow6432Node\RunOnce: [autoupdater] . (.PCTuto - autoupdater.) -- C:\Users\Tangue-man\AppData\Roaming\PCtuto\UpdatePCTuto\autoupdater.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (.not file.)
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (.not file.)
O4 - Global Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk . (...) -- C:\Program Files\Rainmeter (installe)\Rainmeter.exe
O4 - Global Startup: C:\Users\Tangue-man\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk . (...) -- C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe
---\\ ---\\ Autres liens utilisateurs (O4)
O4 - Global Startup: C:\Users\Tangue-man\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Tangue-man\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Tangue-man\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Tangue-man\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk . (.BitTorrent, Inc..) -- C:\Program Files (x86)\uTorrent\uTorrent.exe
---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
O8 - Extra context menu item: &Envoyer à OneNote . (.Microsoft Corporation - Microsoft OneNote Internet Explorer Add-in.) -- C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll
O8 - Extra context menu item: E&xporter vers Microsoft Excel . (.Microsoft Corporation - Microsoft Excel.) -- C:\PROGRA~1\MICROS~2\Office14\EXCEL.exe
---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: &Envoyer à OneNote [64Bits] - {2670000A-7350-4f3c-8081-5663EE0C6C49} . (.Microsoft Corporation - Microsoft OneNote Internet Explorer Add-in.) -- C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll
O9 - Extra button: Notes &liées OneNote [64Bits] - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} . (.Microsoft Corporation - Microsoft OneNote Internet Explorer Add-in.) -- C:\PROGRA~1\MICROS~2\Office14\ONBTTN~1.dll
---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\Windows\system32\wshbth.dll
---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{1576E180-AC16-4A32-9C42-463C5C5A6FB2}: DhcpNameServer = 212.27.40.241 212.27.40.240
O17 - HKLM\System\CS1\Services\Tcpip\..\{1576E180-AC16-4A32-9C42-463C5C5A6FB2}: DhcpNameServer = 212.27.40.241 212.27.40.240
O17 - HKLM\System\CS2\Services\Tcpip\..\{1576E180-AC16-4A32-9C42-463C5C5A6FB2}: DhcpNameServer = 212.27.40.241 212.27.40.240
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.241 212.27.40.240
---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui . (.Pas de propriétaire - Pas de description.) -- igfxdev.dll
O20 - Winlogon Notify: WB . (.Pas de propriétaire - Pas de description.) -- C:\PROGRA~2\WBLIND~1\WINDOW~1\fast64.dll (.not file.)
---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: (BlueSoleilCS) . (.Pas de propriétaire - BlueSoleilCS Module.) - C:\Program Files (x86)\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
O23 - Service: (BsHelpCS) . (.Pas de propriétaire - BsHelpCS Module.) - C:\Program Files (x86)\IVT Corporation\BlueSoleil\BsHelpCS.exe
O23 - Service: (EhttpSrv) . (.ESET - Eset HTTP Server Service.) - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: (ekrn) . (.ESET - Eset Service.) - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: (maconfservice) . (.CybelSoft - Service de détection matériel.) - C:\Program Files (x86)\ma-config.com\maconfservice.exe
O23 - Service: (Microsoft SharePoint Workspace Audit Service) - Clé orpheline
O23 - Service: (TuneUp.UtilitiesSvc) . (.TuneUp Software - TuneUp Utilities Service.) - C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe
---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3880304560-787929789-3870122161-1000Core.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3880304560-787929789-3870122161-1000UA.job
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [Google Updater and Installer] (.Google Inc..) -- C:\Users\Tangue-man\AppData\Local\Google\Update\GoogleUpdate.exe
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-3880304560-787929789-3870122161-1000Core] (.Google Inc..) -- C:\Users\Tangue-man\AppData\Local\Google\Update\GoogleUpdate.exe
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-3880304560-787929789-3870122161-1000UA] (.Google Inc..) -- C:\Users\Tangue-man\AppData\Local\Google\Update\GoogleUpdate.exe
[MD5.BAD6BEA0DE1F69C82BDB74378CE0C20A] [APT] [Programme de mise ... jour en ligne de Adobe] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[MD5.7E0E1AEC85A1534CAD3FA9BB21ACFC1B] [APT] [TuneUpUtilities_Task_BkGndMaintenance2011] (.TuneUp Software.) -- C:\Program Files (x86)\TuneUp Utilities 2011\OneClick.exe
[MD5.00000000000000000000000000000000] [APT] [{06731725-6CCE-4087-BAEC-5E5363FF7878}] (.Pas de propriétaire.) -- C:\Users\Tangue-man\Downloads\NOD V3.0.642\NOD32.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{F103429F-E74F-48CC-A82F-0C9D4E3CC61E}] (.Pas de propriétaire.) -- C:\Users\Tangue-man\Downloads\D2+LOD Blizz installer + extras Frez server\D2-1.12A-enGB\Installer.exe (.not file.)
---\\ Pilotes lancés au démarrage (O41)
O41 - Driver: C:\Windows\system32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\System32\DRIVERS\blbdrive.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
O41 - Driver: C:\Windows\system32\cscsvc.dll (CSC) . (.Microsoft Corporation - Windows Client Side Caching Driver.) - C:\Windows\System32\drivers\csc.sys
O41 - Driver: C:\Windows\system32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\system32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
O41 - Driver: (easdrv) . (.ESET - Eset AntiStealth driver.) - C:\Windows\System32\DRIVERS\easdrv.sys
O41 - Driver: (epfwtdir) . (...) - C:\Windows\System32\DRIVERS\epfwtdir.sys
O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\System32\DRIVERS\mssmbios.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\system32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\system32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\system32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys
O41 - Driver: C:\Windows\system32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: C:\Windows\system32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys
---\\ Logiciels installés (O42)
O42 - Logiciel: Adobe Reader X (10.0.1) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AA0000000001}
O42 - Logiciel: Archiveur WinRAR - (.Pas de propriétaire.) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: Bluesoleil 5.4.245.0 - (.IVT Corporation.) [HKLM] -- {87CE97D7-7181-4602-B99C-44A7CD763DFA}
O42 - Logiciel: Commandos 3 - Destination Berlin - (.Pas de propriétaire.) [HKLM][64Bits] -- {C270BC04-1540-4673-960F-A546B2C860CD}
O42 - Logiciel: Definition update for Microsoft Office 2010 (KB982726) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{D3F93D50-A2B8-4386-AA58-0D84E3F4AF06}
O42 - Logiciel: ESET NOD32 Antivirus - (.ESET spol s r. o..) [HKLM] -- {F0FBC32E-050F-44A4-BA4C-3AAD412CE307}
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU] -- Google Chrome
O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- HDMI
O42 - Logiciel: Java(TM) 6 Update 23 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83216023FF}
O42 - Logiciel: Java(TM) SE Development Kit 6 Update 23 - (.Oracle.) [HKLM][64Bits] -- {32A3A4F4-B792-11D6-A78A-00B0D0160230}
O42 - Logiciel: Lyrics Plugin for Windows Media Player - (.Lyrics Plugin.) [HKLM][64Bits] -- {43002AE2-4093-49E0-A03D-990EE184C568}
O42 - Logiciel: Ma-Config.com - (.Cybelsoft.) [HKLM][64Bits] -- {7DB4CB30-B94A-4282-AC8A-C86F615AA45B}
O42 - Logiciel: Marvell Miniport Driver - (.Marvell.) [HKLM][64Bits] -- Marvell Miniport Driver
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}
O42 - Logiciel: Microsoft Office Access MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-0015-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Excel MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-0016-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Groove MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-00BA-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office InfoPath MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-0044-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Office 32-bit Components 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-0043-0000-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office OneNote MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-00A1-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Outlook MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001A-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office PowerPoint MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-0018-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Professional Plus 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Professionnel Plus 2010 - (.Microsoft Corporation.) [HKLM] -- Office14.PROPLUS
O42 - Logiciel: Microsoft Office Proof (Arabic) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001F-0401-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (Dutch) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001F-0413-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (English) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001F-0409-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001F-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (German) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001F-0407-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (Spanish) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001F-0C0A-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proofing (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-002C-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Publisher MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-0019-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Shared 32-bit MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-0043-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Shared MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-006E-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Word MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001B-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 - (.Microsoft Corporation.) [HKLM] -- {8338783A-0968-3B85-AFC7-BAAE0A63DC50}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 - (.Microsoft Corporation.) [HKLM][64Bits] -- {86CE85E6-DBAC-3FFD-B977-E4B79F83C909}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {4B6C7001-C7D6-3710-913E-5BC23FCE91E6}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
O42 - Logiciel: Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 - (.Microsoft Corporation.) [HKLM] -- {DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}
O42 - Logiciel: OpenOffice.org 3.3 - (.OpenOffice.org.) [HKLM][64Bits] -- {7E0610A2-E336-40B3-B685-C4905E97EC9A}
O42 - Logiciel: PCTuto 2.0 - (.PCTuto.) [HKLM][64Bits] -- PCTuto_is1
O42 - Logiciel: PCTuto Avast 2.0 - (.PCTuto.) [HKLM][64Bits] -- PCTuto Avast_is1
O42 - Logiciel: PowerISO - (.PowerISO Computing, Inc..) [HKLM][64Bits] -- PowerISO
O42 - Logiciel: Rainmeter - (.Pas de propriétaire.) [HKLM][64Bits] -- Rainmeter
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: STATISTICA - (.StatSoft.) [HKLM][64Bits] -- {76C2ABD2-E1B4-49A3-A301-912F53FF1E57}
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2160841) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2160841
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2446708
O42 - Logiciel: Security Update for Microsoft Excel 2010 (KB2466146) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{2831ADCB-B339-4493-A899-2740DEF239CB}
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB2289078) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{416C3BAC-567F-4E84-9E3B-E98970E2603B}
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB2289161) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{B3DFFE7D-FAA1-4B0D-AB1A-AF140A56BD84}
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB2289161) - (.Microsoft.) [HKLM] -- {90140000-0043-0000-1000-0000000FF1CE}_Office14.PROPLUS_{B3DFFE7D-FAA1-4B0D-AB1A-AF140A56BD84}
O42 - Logiciel: Security Update for Microsoft PowerPoint 2010 (KB2519975) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{5E1328DB-EA1D-4FDB-B2FA-84CD56D9C19A}
O42 - Logiciel: Security Update for Microsoft Publisher 2010 (KB2409055) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{DED7FBC4-7528-4C64-9F94-8174AC522A33}
O42 - Logiciel: Security Update for Microsoft Word 2010 (KB2345000) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{FAE58C3D-8C0C-41D7-B95B-507B84ACB0C6}
O42 - Logiciel: SweetIM Toolbar for Internet Explorer 4.1 - (.SweetIM Technologies Ltd..) [HKLM][64Bits] -- {A1194237-547A-461d-BD44-B97B1574A7DA}
O42 - Logiciel: SweetIM for Messenger 3.4 - (.SweetIM Technologies Ltd..) [HKLM][64Bits] -- {F70AE624-2B41-476F-BC9C-0A7F158C3F15}
O42 - Logiciel: System Requirements Lab for Intel - (.Husdawg, LLC.) [HKLM][64Bits] -- {F7FC9307-374E-4017-8E9D-DE1154780480}
O42 - Logiciel: TuneUp Utilities 2011 - (.TuneUp Software.) [HKLM][64Bits] -- TuneUp Utilities 2011
O42 - Logiciel: Update for Microsoft .NET Framework 4 Client Profile (KB2473228) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2473228
O42 - Logiciel: Update for Microsoft Office 2010 (KB2202188) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{139222A0-48AF-44FF-BC3B-2112086FAF18}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2413186) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{276D6229-D1A9-4A22-BD8A-7E043897E230}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2413186) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{B4B16F09-574E-448C-BC90-DC8DF2ECA01E}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2413186) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{BC4F8B0E-191C-4226-8016-01EF1D0294FF}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2494150) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{428CB7A0-1068-4CE1-8835-39C7ECD297ED}
O42 - Logiciel: Update for Microsoft OneNote 2010 (KB2493983) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{FED950AB-20E9-426D-8A7D-60A110F291AB}
O42 - Logiciel: Update for Microsoft Outlook Social Connector (KB2441641) - (.Microsoft.) [HKLM] -- {90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{AEE4CC56-C18F-4ED6-BFD0-2D5FFB94DE9F}
O42 - Logiciel: UpdatePCTuto 2.0 - (.PCtuto.) [HKLM][64Bits] -- UpdatePCTuto_is1
O42 - Logiciel: VLC media player 1.1.6 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player
O42 - Logiciel: µTorrent - (.Pas de propriétaire.) [HKCU] -- uTorrent
---\\ HKCU & HKLM Software Keys
[HKCU\Software\AC3filter]
[HKCU\Software\Adobe]
[HKCU\Software\Antanda]
[HKCU\Software\AppDataLow\Software\Microsoft]
[HKCU\Software\AppDataLow\Software]
[HKCU\Software\AppDataLow]
[HKCU\Software\Battle.net]
[HKCU\Software\BitTorrent]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\CoreVorbis]
[HKCU\Software\DivX]
[HKCU\Software\DownloadMR]
[HKCU\Software\ESET]
[HKCU\Software\FLEXlm License Manager]
[HKCU\Software\GLIDE3toOpenGL]
[HKCU\Software\GNU]
[HKCU\Software\Gabest]
[HKCU\Software\Google]
[HKCU\Software\Haali]
[HKCU\Software\Intel]
[HKCU\Software\JavaSoft]
[HKCU\Software\Local AppWizard-Generated Applications]
[HKCU\Software\Lyrics Plugin]
[HKCU\Software\MONOGRAM]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Netscape]
[HKCU\Software\ODBC]
[HKCU\Software\OfferBox]
[HKCU\Software\OpenOffice.org]
[HKCU\Software\PCTuto]
[HKCU\Software\Policies]
[HKCU\Software\PowerISO]
[HKCU\Software\Pyro]
[HKCU\Software\Realtek]
[HKCU\Software\RocketDock]
[HKCU\Software\STATISTICAPDF]
[HKCU\Software\Softonic]
[HKCU\Software\Stardock]
[HKCU\Software\StatSoft]
[HKCU\Software\SweetIM]
[HKCU\Software\System Requirements Lab]
[HKCU\Software\TuneUp]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\WinRAR]
[HKCU\Software\Wow6432Node]
[HKCU\Software\cybelsoft]
[HKCU\Software\madFlac]
[HKLM\Software\ATI Technologies]
[HKLM\Software\Adobe]
[HKLM\Software\Agere]
[HKLM\Software\Battle.net]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\ESET]
[HKLM\Software\GNU]
[HKLM\Software\Google]
[HKLM\Software\HaaliMkx]
[HKLM\Software\IVT Corporation]
[HKLM\Software\Intel]
[HKLM\Software\JavaSoft]
[HKLM\Software\LSI]
[HKLM\Software\Marvell]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\NSIS]
[HKLM\Software\Nico Mak Computing]
[HKLM\Software\ODBC]
[HKLM\Software\OfferBox]
[HKLM\Software\OpenOffice.org]
[HKLM\Software\PCTuto]
[HKLM\Software\Policies]
[HKLM\Software\Pyro Studios]
[HKLM\Software\Pyro]
[HKLM\Software\Realtek Semiconductor Corp.]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\SRS Labs]
[HKLM\Software\Sonic]
[HKLM\Software\Stardock]
[HKLM\Software\StatSoft]
[HKLM\Software\SweetIM]
[HKLM\Software\TuneUp]
[HKLM\Software\VideoLAN]
[HKLM\Software\WidCommUpdate]
[HKLM\Software\WinRAR]
[HKLM\Software\Wow6432Node]
[HKLM\Software\cybelsoft]
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 11/04/2011 - 16:26:28 - [283102200] ----D- C:\Program Files\Common Files
O43 - CFD: 14/07/2009 - 17:35:14 - [90257428] ----D- C:\Program Files\DVD Maker
O43 - CFD: 20/05/2011 - 17:59:20 - [51008513] ----D- C:\Program Files\ESET
O43 - CFD: 11/04/2011 - 15:53:46 - [0] -SH-D- C:\Program Files\Fichiers communs
O43 - CFD: 14/04/2011 - 09:53:48 - [5174573] ----D- C:\Program Files\Internet Explorer
O43 - CFD: 11/04/2011 - 16:20:22 - [66182091] ----D- C:\Program Files\Microsoft Analysis Services
O43 - CFD: 14/07/2009 - 17:35:14 - [149236786] ----D- C:\Program Files\Microsoft Games
O43 - CFD: 11/04/2011 - 16:24:40 - [1139007132] ----D- C:\Program Files\Microsoft Office
O43 - CFD: 11/04/2011 - 16:24:38 - [2966976] ----D- C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 11/04/2011 - 16:24:38 - [1014647] ----D- C:\Program Files\Microsoft Sync Framework
O43 - CFD: 11/04/2011 - 16:25:18 - [326800] ----D- C:\Program Files\Microsoft Synchronization Services
O43 - CFD: 14/07/2009 - 07:32:40 - [25757] ----D- C:\Program Files\MSBuild
O43 - CFD: 12/04/2011 - 13:46:24 - [5584634] ----D- C:\Program Files\Rainmeter (installe)
O43 - CFD: 14/07/2009 - 07:32:40 - [36253865] ----D- C:\Program Files\Reference Assemblies
O43 - CFD: 14/07/2009 - 07:09:28 - [0] --H-D- C:\Program Files\Uninstall Information
O43 - CFD: 14/07/2009 - 17:24:10 - [4039168] ----D- C:\Program Files\Windows Defender
O43 - CFD: 14/07/2009 - 17:35:14 - [9224824] ----D- C:\Program Files\Windows Journal
O43 - CFD: 12/04/2011 - 08:51:30 - [6667264] ----D- C:\Program Files\Windows Mail
O43 - CFD: 12/04/2011 - 08:51:12 - [7687085] ----D- C:\Program Files\Windows Media Player
O43 - CFD: 11/04/2011 - 15:53:46 - [12627124] ----D- C:\Program Files\Windows NT
O43 - CFD: 14/07/2009 - 17:24:10 - [5516568] ----D- C:\Program Files\Windows Photo Viewer
O43 - CFD: 14/07/2009 - 07:32:40 - [235008] ----D- C:\Program Files\Windows Portable Devices
O43 - CFD: 14/07/2009 - 17:24:10 - [7421029] ----D- C:\Program Files\Windows Sidebar
O43 - CFD: 11/04/2011 - 16:26:28 - [99136] ----D- C:\Program Files\Common Files\DESIGNER
O43 - CFD: 12/04/2011 - 13:46:20 - [269841543] ----D- C:\Program Files\Common Files\Microsoft Shared
O43 - CFD: 14/07/2009 - 05:20:10 - [2702] ----D- C:\Program Files\Common Files\Services
O43 - CFD: 14/07/2009 - 05:20:10 - [608768] ----D- C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 11/04/2011 - 16:20:52 - [12550051] ----D- C:\Program Files\Common Files\System
O43 - CFD: 16/04/2011 - 11:04:42 - [136894119] ----D- C:\ProgramData\Adobe
O43 - CFD: 14/07/2009 - 07:08:58 - [0] -SH-D- C:\ProgramData\Application Data
O43 - CFD: 11/04/2011 - 15:53:46 - [0] -SH-D- C:\ProgramData\Bureau
O43 - CFD: 14/07/2009 - 07:08:58 - [0] -SH-D- C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - 07:08:58 - [0] -SH-D- C:\ProgramData\Documents
O43 - CFD: 20/05/2011 - 17:59:20 - [59920862] ----D- C:\ProgramData\ESET
O43 - CFD: 11/04/2011 - 15:53:46 - [0] -SH-D- C:\ProgramData\Favoris
O43 - CFD: 14/07/2009 - 07:08:58 - [0] -SH-D- C:\ProgramData\Favorites
O43 - CFD: 08/05/2011 - 18:32:52 - [1295801] ----D- C:\ProgramData\ma-config.com
O43 - CFD: 11/04/2011 - 15:53:46 - [0] -SH-D- C:\ProgramData\Menu Démarrer
O43 - CFD: 14/04/2011 - 11:01:28 - [154448971] -S--D- C:\ProgramData\Microsoft
O43 - CFD: 14/04/2011 - 09:40:56 - [16632] ----D- C:\ProgramData\Microsoft Help
O43 - CFD: 11/04/2011 - 15:53:46 - [0] -SH-D- C:\ProgramData\Modèles
O43 - CFD: 11/04/2011 - 17:41:38 - [1040] ----D- C:\ProgramData\PC Drivers HeadQuarters
O43 - CFD: 14/07/2009 - 07:08:58 - [0] -SH-D- C:\ProgramData\Start Menu
O43 - CFD: 09/05/2011 - 13:15:22 - [272] ----D- C:\ProgramData\StatSoft
O43 - CFD: 01/05/2011 - 18:30:00 - [104795] ----D- C:\ProgramData\SweetIM
O43 - CFD: 14/07/2009 - 07:08:58 - [0] -SH-D- C:\ProgramData\Templates
O43 - CFD: 09/05/2011 - 20:21:54 - [0] ----D- C:\ProgramData\TorrentEasy
O43 - CFD: 11/04/2011 - 16:05:28 - [6342740] ----D- C:\ProgramData\TuneUp Software
O43 - CFD: 11/04/2011 - 17:42:00 - [0] ----D- C:\ProgramData\UAB
O43 - CFD: 11/04/2011 - 16:13:10 - [25467906] ----D- C:\ProgramData\Win7codecs
O43 - CFD: 12/04/2011 - 09:02:46 - [0] ----D- C:\ProgramData\WinZip
O43 - CFD: 16/04/2011 - 11:03:52 - [1941130] ----D- C:\Users\Tangue-man\AppData\Roaming\Adobe
O43 - CFD: 12/04/2011 - 15:53:00 - [31264] ----D- C:\Users\Tangue-man\AppData\Roaming\Bump Technologies, Inc
O43 - CFD: 11/04/2011 - 15:54:12 - [0] ----D- C:\Users\Tangue-man\AppData\Roaming\Identities
O43 - CFD: 11/04/2011 - 18:40:14 - [0] ----D- C:\Users\Tangue-man\AppData\Roaming\InstallShield
O43 - CFD: 11/04/2011 - 16:08:18 - [24722] ----D- C:\Users\Tangue-man\AppData\Roaming\Macromedia
O43 - CFD: 14/07/2009 - 17:35:04 - [0] ----D- C:\Users\Tangue-man\AppData\Roaming\Media Center Programs
O43 - CFD: 20/05/2011 - 21:01:10 - [17256429] -S--D- C:\Users\Tangue-man\AppData\Roaming\Microsoft
O43 - CFD: 03/05/2011 - 19:16:42 - [267590] ----D- C:\Users\Tangue-man\AppData\Roaming\OfferBox
O43 - CFD: 13/04/2011 - 20:03:38 - [1531929] ----D- C:\Users\Tangue-man\AppData\Roaming\OpenOffice.org
O43 - CFD: 01/05/2011 - 18:29:56 - [2162089] ----D- C:\Users\Tangue-man\AppData\Roaming\PCtuto
O43 - CFD: 12/04/2011 - 14:17:00 - [458887] ----D- C:\Users\Tangue-man\AppData\Roaming\Rainmeter
O43 - CFD: 09/05/2011 - 12:58:20 - [7757] ----D- C:\Users\Tangue-man\AppData\Roaming\StatSoft
O43 - CFD: 09/05/2011 - 16:53:06 - [405304] ----D- C:\Users\Tangue-man\AppData\Roaming\SystemRequirementsLab
O43 - CFD: 11/04/2011 - 16:03:08 - [35626] ----D- C:\Users\Tangue-man\AppData\Roaming\TuneUp Software
O43 - CFD: 28/05/2011 - 14:51:10 - [1875702] ----D- C:\Users\Tangue-man\AppData\Roaming\uTorrent
O43 - CFD: 22/05/2011 - 21:12:12 - [1519979] ----D- C:\Users\Tangue-man\AppData\Roaming\vlc
O43 - CFD: 11/04/2011 - 16:13:10 - [1025] ----D- C:\Users\Tangue-man\AppData\Roaming\Win7codecs
O43 - CFD: 11/04/2011 - 17:37:14 - [0] ----D- C:\Users\Tangue-man\AppData\Roaming\WinRAR
O43 - CFD: 16/04/2011 - 11:03:52 - [14544100] ----D- C:\Users\Tangue-man\Appdata\Local\Adobe
O43 - CFD: 11/04/2011 - 15:53:58 - [0] -SH-D- C:\Users\Tangue-man\Appdata\Local\Application Data
O43 - CFD: 11/04/2011 - 16:04:44 - [1230129] ----D- C:\Users\Tangue-man\Appdata\Local\Apps
O43 - CFD: 11/04/2011 - 18:10:36 - [2607] ----D- C:\Users\Tangue-man\Appdata\Local\bluesoleil
O43 - CFD: 11/04/2011 - 16:05:00 - [0] ----D- C:\Users\Tangue-man\Appdata\Local\Deployment
O43 - CFD: 27/05/2011 - 08:41:00 - [1207629] ----D- C:\Users\Tangue-man\Appdata\Local\Diagnostics
O43 - CFD: 25/04/2011 - 11:45:32 - [80819] ----D- C:\Users\Tangue-man\Appdata\Local\ElevatedDiagnostics
O43 - CFD: 12/04/2011 - 16:58:14 - [5043040] ----D- C:\Users\Tangue-man\Appdata\Local\ESET
O43 - CFD: 11/04/2011 - 16:06:50 - [694616450] ----D- C:\Users\Tangue-man\Appdata\Local\Google
O43 - CFD: 11/04/2011 - 15:53:58 - [0] -SH-D- C:\Users\Tangue-man\Appdata\Local\Historique
O43 - CFD: 01/05/2011 - 10:14:22 - [46154077] ----D- C:\Users\Tangue-man\Appdata\Local\Microsoft
O43 - CFD: 24/05/2011 - 07:11:02 - [323747] ----D- C:\Users\Tangue-man\Appdata\Local\Microsoft Games
O43 - CFD: 13/05/2011 - 08:17:26 - [136604] ----D- C:\Users\Tangue-man\Appdata\Local\Microsoft Help
O43 - CFD: 19/05/2011 - 19:21:12 - [0] ----D- C:\Users\Tangue-man\Appdata\Local\PackageAware
O43 - CFD: 01/05/2011 - 18:29:52 - [474056] ----D- C:\Users\Tangue-man\Appdata\Local\PCTuto
O43 - CFD: 11/04/2011 - 17:41:54 - [3091] ----D- C:\Users\Tangue-man\Appdata\Local\PC_Drivers_Headquarters
O43 - CFD: 28/05/2011 - 14:50:58 - [200653] ----D- C:\Users\Tangue-man\Appdata\Local\Temp
O43 - CFD: 11/04/2011 - 15:54:00 - [0] -SH-D- C:\Users\Tangue-man\Appdata\Local\Temporary Internet Files
O43 - CFD: 12/05/2011 - 19:39:44 - [6674326] ----D- C:\Users\Tangue-man\Appdata\Local\VirtualStore
O43 - CFD: 13/05/2011 - 07:56:06 - [26171224] ----D- C:\Users\Tangue-man\Appdata\Local\Xenocode
O43 - CFD: 11/04/2011 - 18:57:44 - [114227921] ----D- C:\Program Files (x86)\Adobe
O43 - CFD: 21/05/2011 - 15:57:14 - [190324394] ----D- C:\Program Files (x86)\Common Files
O43 - CFD: 21/05/2011 - 15:44:48 - [1952669826] ----D- C:\Program Files (x86)\Eidos
O43 - CFD: 21/05/2011 - 15:45:14 - [10419329] --H-D- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 20/05/2011 - 22:56:10 - [96757] ----D- C:\Program Files (x86)\Intel
O43 - CFD: 14/04/2011 - 09:53:48 - [4477221] ----D- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 11/04/2011 - 17:44:40 - [6377404] ----D- C:\Program Files (x86)\IVT Corporation
O43 - CFD: 11/04/2011 - 16:12:18 - [293305056] ----D- C:\Program Files (x86)\Java
O43 - CFD: 08/05/2011 - 18:32:58 - [6093848] ----D- C:\Program Files (x86)\ma-config.com
O43 - CFD: 11/04/2011 - 17:37:32 - [4572390] ----D- C:\Program Files (x86)\Marvell
O43 - CFD: 11/04/2011 - 16:20:22 - [39769547] ----D- C:\Program Files (x86)\Microsoft Analysis Services
O43 - CFD: 11/04/2011 - 16:19:38 - [29589124] ----D- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 11/04/2011 - 16:22:12 - [1378033] ----D- C:\Program Files (x86)\Microsoft Visual Studio 8
O43 - CFD: 12/04/2011 - 10:49:28 - [8167779] ----D- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 11/04/2011 - 16:25:00 - [26521] ----D- C:\Program Files (x86)\MSBuild
O43 - CFD: 13/04/2011 - 20:01:50 - [354552581] ----D- C:\Program Files (x86)\OpenOffice.org 3
O43 - CFD: 11/04/2011 - 17:40:48 - [7181565] ----D- C:\Program Files (x86)\PC Drivers HeadQuarters
O43 - CFD: 01/05/2011 - 18:30:00 - [7922221] ----D- C:\Program Files (x86)\PCTuto
O43 - CFD: 21/05/2011 - 15:38:06 - [4085428] ----D- C:\Program Files (x86)\PowerISO(instal)
O43 - CFD: 11/04/2011 - 18:42:28 - [14086761] ----D- C:\Program Files (x86)\Realtek
O43 - CFD: 14/07/2009 - 07:32:40 - [38597377] ----D- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 09/05/2011 - 13:12:40 - [467518393] ----D- C:\Program Files (x86)\StatSoft
O43 - CFD: 01/05/2011 - 18:30:08 - [8851323] ----D- C:\Program Files (x86)\SweetIM
O43 - CFD: 09/05/2011 - 16:50:38 - [718080] ----D- C:\Program Files (x86)\SystemRequirementsLab
O43 - CFD: 11/04/2011 - 16:05:30 - [61690712] ----D- C:\Program Files (x86)\TuneUp Utilities 2011
O43 - CFD: 14/07/2009 - 06:57:08 - [0] --H-D- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 11/04/2011 - 16:13:54 - [270128] ----D- C:\Program Files (x86)\uTorrent
O43 - CFD: 20/05/2011 - 23:07:52 - [81535531] ----D- C:\Program Files (x86)\VideoLAN
O43 - CFD: 11/04/2011 - 16:13:08 - [47371488] ----D- C:\Program Files (x86)\Win7codecs
O43 - CFD: 14/07/2009 - 17:24:10 - [524800] ----D- C:\Program Files (x86)\Windows Defender
O43 - CFD: 12/04/2011 - 08:51:30 - [6180864] ----D- C:\Program Files (x86)\Windows Mail
O43 - CFD: 12/04/2011 - 14:42:38 - [5292817] ----D- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 14/07/2009 - 07:32:40 - [12197556] ----D- C:\Program Files (x86)\Windows NT
O43 - CFD: 14/07/2009 - 17:24:10 - [4417800] ----D- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 14/07/2009 - 07:32:42 - [189440] ----D- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 14/07/2009 - 17:24:10 - [6370888] ----D- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 11/04/2011 - 16:11:40 - [3525705] ----D- C:\Program Files (x86)\WinRAR
O43 - CFD: 28/05/2011 - 14:51:30 - [3956949] ----D- C:\Program Files (x86)\ZHPDiag(instal)
O43 - CFD: 11/04/2011 - 18:57:54 - [3515885] ----D- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 21/05/2011 - 15:44:30 - [4981540] ----D- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 14/04/2011 - 09:36:16 - [130325313] ----D- C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 14/07/2009 - 05:20:10 - [2702] ----D- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 14/07/2009 - 05:20:10 - [41103783] ----D- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 21/05/2011 - 15:57:14 - [0] ----D- C:\Program Files (x86)\Common Files\SWF Studio
O43 - CFD: 14/07/2009 - 17:24:10 - [10395171] ----D- C:\Program Files (x86)\Common Files\System
---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.3C2390C954B8D18ABF262E78F8B9CD66] - 28/05/2011 - 13:48:32 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [1549700]
O44 - LFC:[MD5.4C27C7A281DAD686E4E261FD5546605B] - 28/05/2011 - 13:48:32 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [106388]
O44 - LFC:[MD5.0136F53AA3615ECC232B03B7AEE8EE74] - 28/05/2011 - 13:48:32 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [130754]
O44 - LFC:[MD5.8CEAFF677E01FB43A95811EC7F3B6601] - 28/05/2011 - 13:48:32 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [616008]
O44 - LFC:[MD5.43EF8E168685ED42DFB87D31EB939FCF] - 28/05/2011 - 13:48:32 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [704480]
O44 - LFC:[MD5.A78EB05FF2319E757999EB99398E42F3] - 28/05/2011 - 13:43:46 ---A- . (...) -- C:\Windows\setupact.log [41021]
O44 - LFC:[MD5.5E85AD5884AC01674A7EFBF40EE44021] - 28/05/2011 - 13:43:45 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.17000000000000000000000054EF1800] - 28/05/2011 - 13:43:08 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1701155]
O44 - LFC:[MD5.8F54712D976620C513F6E4F19DCA2D76] - 28/05/2011 - 08:58:11 ---A- . (...) -- C:\PhysicalDisk0_MBR.bin [512]
O44 - LFC:[MD5.24789A92F7FBEAE1C5BDB314E28A9EBF] - 23/05/2011 - 21:56:12 --HA- . (...) -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [9584]
O44 - LFC:[MD5.24789A92F7FBEAE1C5BDB314E28A9EBF] - 23/05/2011 - 21:56:12 --HA- . (...) -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [9584]
O44 - LFC:[MD5.6F32F672C5FDE1E6B2545B0AAACA65D2] - 21/05/2011 - 14:57:09 ---A- . (...) -- C:\Windows\DirectX.log [2826]
O44 - LFC:[MD5.45E016F87ED0A34EE2ACE619566565D8] - 21/05/2011 - 09:34:19 ---A- . (...) -- C:\Windows\DPINST.LOG [15582]
O44 - LFC:[MD5.13B5123EE54F8798038E7035EF62919E] - 20/05/2011 - 22:46:49 ---A- . (...) -- C:\Windows\PFRO.log [18672]
O44 - LFC:[MD5.341C4D4F2B3E6C502284B2CB4C33A5A1] - 20/05/2011 - 20:18:12 R---- . (...) -- C:\Windows\YukonInstall.log [369]
O44 - LFC:[MD5.3B537010CB11DD1C5214492FC3078BDA] - 20/05/2011 - 20:18:10 ---A- . (...) -- C:\Windows\ykinstutil.log [16628]
O44 - LFC:[MD5.89F40FE58136331667E54C939C273923] - 20/05/2011 - 18:59:50 ---A- . (...) -- C:\Windows\ntbtlog.txt [245026]
O44 - LFC:[MD5.B1A72BD14A812664B405F42D7171A886] - 20/05/2011 - 16:08:37 ---A- . (...) -- C:\RHDSetup.log [140]
O44 - LFC:[MD5.BDB904902500628C6C510CD723800558] - 20/05/2011 - 16:08:37 ---A- . (...) -- C:\setup.log [87]
O44 - LFC:[MD5.403768E42CB8703E3057405F721D20B7] - 08/05/2011 - 17:25:13 ---A- . (...) -- C:\Windows\WinInit.Ini [253]
---\\ Opérations et fonctions au démarrage de Windows Explorer (O46)
O46 - SEH:ShellExecuteHooks - Groove GFS Stub Execution Hook [64Bits] - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL
---\\ Trojan Driver Search Data (HKLM) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \drivers.desc\"wdmaud.drv"="Pilote de fonction UAA 1.1 Microsoft pour High Definition Audio" . (.Pas de propriétaire - Pas de description.) -- (.not file.)
---\\ Microsoft Control Security Providers (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll
---\\ Microsoft Windows Policies System (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
---\\ Microsoft Windows Policies Explorer (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0
---\\ Liste des Drivers Système (O58)
O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\system32\drivers\adp94xx.sys [491088]
O58 - SDL:[MD5.597F78224EE9224EA1A13D6350CED962] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\system32\drivers\adpahci.sys [339536]
O58 - SDL:[MD5.E109549C90F62FB570B9540C4B148E54] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\system32\drivers\adpu320.sys [182864]
O58 - SDL:[MD5.98022774D9930ECBB292E70DB7601DF6] - 10/06/2009 - 22:01:06 ---A- . (.LSI Corp - SoftModem Device Driver.) -- C:\Windows\system32\drivers\agrsm64.sys [1146880]
O58 - SDL:[MD5.5812713A477A3AD7363C7438CA2EE038] - 14/07/2009 - 02:52:21 ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\system32\drivers\aliide.sys [15440]
O58 - SDL:[MD5.EC7EBAB00A4D8448BAB68D1E49B4BEB9] - 11/03/2011 - 07:22:41 ---A- . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\system32\drivers\amdsata.sys [107904]
O58 - SDL:[MD5.F67F933E79241ED32FF46A4F29B5120B] - 14/07/2009 - 02:52:20 ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows -.) -- C:\Windows\system32\drivers\amdsbs.sys [194128]
O58 - SDL:[MD5.DB27766102C7BF7E95140A2AA81D042E] - 11/03/2011 - 07:22:40 ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\system32\drivers\amdxata.sys [27008]
O58 - SDL:[MD5.C484F8CEB1717C540242531DB7845C4E] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\system32\drivers\arc.sys [87632]
O58 - SDL:[MD5.019AF6924AEFE7839F61C830227FE79C] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\system32\drivers\arcsas.sys [97856]
O58 - SDL:[MD5.B5ACE6968304A3900EEB1EBFD9622DF2] - 10/06/2009 - 21:34:23 ---A- . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver..) -- C:\Windows\system32\drivers\b57nd60a.sys [270848]
O58 - SDL:[MD5.00676B9CA4CD1ABAB2A53496DDCBB258] - 25/11/2008 - 14:23:34 ---A- . (.IVT Corporation. - Bluelet Audio Driver.) -- C:\Windows\system32\drivers\blueletaudio.sys [36360]
O58 - SDL:[MD5.97176276E8C701633E5F2ECA212C262D] - 25/11/2008 - 14:23:42 ---A- . (.IVT Corporation. - Bluelet Audio Driver.) -- C:\Windows\system32\drivers\BlueletSCOAudio.sys [36872]
O58 - SDL:[MD5.F09EEE9EDC320B5E1501F749FDE686C8] - 10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\system32\drivers\BrFiltLo.sys [18432]
O58 - SDL:[MD5.B114D3098E9BDB8BEA8B053685831BE6] - 10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\system32\drivers\BrFiltUp.sys [8704]
O58 - SDL:[MD5.43BEA8D483BF1870F018E2D02E06A5BD] - 14/07/2009 - 02:19:07 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\system32\drivers\BrSerId.sys [286720]
O58 - SDL:[MD5.A6ECA2151B08A09CACECA35C07F05B42] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\system32\drivers\BrSerWdm.sys [47104]
O58 - SDL:[MD5.B79968002C277E869CF38BD22CD61524] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\system32\drivers\BrUsbMdm.sys [14976]
O58 - SDL:[MD5.A87528880231C54E75EA7A44943B38BF] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\system32\drivers\BrUsbSer.sys [14720]
O58 - SDL:[MD5.118DC6A465A42559B2D778DB234B0904] - 03/01/2009 - 15:40:26 ---A- . (.IVT Corporation. - Bluetooth USB Device Driver.) -- C:\Windows\system32\drivers\btcusb.sys [47880]
O58 - SDL:[MD5.992D8C032884DC4C837C40BF52CB5C89] - 07/01/2009 - 22:38:18 ---A- . (.IVT Corporation. - Bluetooth HID BUS Driver.) -- C:\Windows\system32\drivers\BtHidBus.sys [24840]
O58 - SDL:[MD5.40AAAB64465E42C72B6411AAEB3EEF0F] - 07/12/2008 - 11:44:56 ---A- . (...) -- C:\Windows\system32\drivers\btnetBus.sys [35848]
O58 - SDL:[MD5.3E5B191307609F7514148C6832BB0842] - 10/06/2009 - 21:34:28 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\system32\drivers\bxvbda.sys [468480]
O58 - SDL:[MD5.E19D3F095812725D88F9001985B94EDD] - 14/07/2009 - 02:52:31 ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\cmdide.sys [17488]
O58 - SDL:[MD5.332CE31BF279F07C5A5542630E5CFB3E] - 01/07/2008 - 07:56:26 ---A- . (.ESET - Amon monitor.) -- C:\Windows\system32\drivers\eamon.sys [44552]
O58 - SDL:[MD5.2F6EC0BCE4DDC82EC1C8812D07C19337] - 01/07/2008 - 07:57:18 ---A- . (.ESET - Eset AntiStealth driver.) -- C:\Windows\system32\drivers\easdrv.sys [53256]
O58 - SDL:[MD5.0E5DA5369A0FCAEA12456DD852545184] - 14/07/2009 - 02:47:48 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\system32\drivers\elxstor.sys [530496]
O58 - SDL:[MD5.348D66DF8C226C3E31BBF60181D2357F] - 01/07/2008 - 08:05:02 ---A- . (...) -- C:\Windows\system32\drivers\epfwtdir.sys [37384]
O58 - SDL:[MD5.DC5D737F51BE844D8C82C695EB17372F] - 10/06/2009 - 21:34:33 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\system32\drivers\evbda.sys [3286016]
O58 - SDL:[MD5.F2523EF6460FC42405B12248338AB2F0] - 10/06/2009 - 21:31:59 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\system32\drivers\hcw85cir.sys [31232]
O58 - SDL:[MD5.0886D440058F203EBA0E1825E4355914] - 14/07/2009 - 02:47:48 ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\system32\drivers\HpSAMD.sys [77888]
O58 - SDL:[MD5.B75E45C564E944A2657167D197AB29DA] - 11/03/2011 - 07:23:00 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\system32\drivers\iaStorV.sys [410496]
O58 - SDL:[MD5.24CC43ECDEEFD4C19FBBEE4951B647F1] - 23/09/2009 - 18:23:02 ---A- . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\system32\drivers\igdkmd64.sys [6180832]
O58 - SDL:[MD5.5C18831C61933628F5BB0EA2675B9D21] - 14/07/2009 - 02:48:04 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\system32\drivers\iirsp.sys [44112]
O58 - SDL:[MD5.1C6D68A0BF108A5B3D40B2E84AE3CCDA] - 02/07/2008 - 13:58:50 ---A- . (.IVT Corporation. - IVT Bluetooth Bus Device Driver.) -- C:\Windows\system32\drivers\IvtBtBus.sys [31624]
O58 - SDL:[MD5.1A93E54EB0ECE102495A51266DCDB6A6] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_fc.sys [114752]
O58 - SDL:[MD5.1047184A9FDC8BDBFF857175875EE810] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas.sys [106560]
O58 - SDL:[MD5.30F5C0DE1EE8B5BC9306C1F0E4A75F93] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas2.sys [65600]
O58 - SDL:[MD5.0504EACAFF0D3C8AED161C4B0D369D4A] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_scsi.sys [115776]
O58 - SDL:[MD5.A55805F747C6EDB6A9080D7C633BD0F4] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for.) -- C:\Windows\system32\drivers\megasas.sys [35392]
O58 - SDL:[MD5.BAF74CE0072480C3B6B7C13B2A94D6B3] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\system32\drivers\MegaSR.sys [284736]
O58 - SDL:[MD5.64428DFDAF6E88366CB51F45A79C5F69] - 10/06/2009 - 21:35:28 ---A- . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\system32\drivers\netw5v64.sys [5434368]
O58 - SDL:[MD5.54762E37F65C20652532DBDAC53698F6] - 07/10/2010 - 13:11:50 ---A- . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\system32\drivers\NETwLv64.sys [7533568]
O58 - SDL:[MD5.77889813BE4D166CDAB78DDBA990DA92] - 14/07/2009 - 02:48:26 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\system32\drivers\nfrd960.sys [51264]
O58 - SDL:[MD5.A4D9C9A608A97F59307C2F2600EDC6A4] - 11/03/2011 - 07:23:06 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\system32\drivers\nvraid.sys [148352]
O58 - SDL:[MD5.6C1D5F70E7A6A3FD1C90D840EDC048B9] - 11/03/2011 - 07:23:06 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\system32\drivers\nvstor.sys [166272]
O58 - SDL:[MD5.A53A15A11EBFD21077463EE2C7AFEEF0] - 14/07/2009 - 02:45:46 ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\system32\drivers\ql2300.sys [1524816]
O58 - SDL:[MD5.4F6D12B51DE1AAEFF7DC58C4D75423C8] - 14/07/2009 - 02:45:45 ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\system32\drivers\ql40xx.sys [128592]
O58 - SDL:[MD5.2A43F9E6DBDE12BC0C104785C3B3F5DF] - 18/11/2006 - 12:07:48 ---A- . (.REDC - RICOH xD SM Driver.) -- C:\Windows\system32\drivers\rixdpx64.sys [55296]
O58 - SDL:[MD5.FDB31B20F0DAC5F33FB46DDB02C0E5FD] - 17/04/2007 - 17:34:00 ---A- . (.Realtek Semiconductor Corp. - Realtek(r) H
Je ne veux pas le rapport ici, car ça passe pas, il est trop long, et il est pas entier
Héberge le rapport, et donne le lien
Héberge le rapport, et donne le lien
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Effectivement, y'a pas mal de programmes parasites qui provoquent des
fenêtres publicitaires
Télécharge Ad-Remover (de C_XX) sur ton bureau:
http://www.teamxscript.org/adremoverTelechargement.html ( Lien officiel )
https://www.androidworld.fr/ ( Miroir )
[b]Désactive l'anti-virus[/b]
Double clique sur le fichier que tu viens de télécharger, à l'écran qui apparait, clique sur [b]Scanner[/b].
Laisse travailler l'outil.
Poste le rapport qui s'affiche à l'écran quand l'analyse est terminée.
Il est sauvegardé dans [b]C:\Ad-Remover-SCAN[1].txt[/b]
fenêtres publicitaires
Télécharge Ad-Remover (de C_XX) sur ton bureau:
http://www.teamxscript.org/adremoverTelechargement.html ( Lien officiel )
https://www.androidworld.fr/ ( Miroir )
[b]Désactive l'anti-virus[/b]
Double clique sur le fichier que tu viens de télécharger, à l'écran qui apparait, clique sur [b]Scanner[/b].
Laisse travailler l'outil.
Poste le rapport qui s'affiche à l'écran quand l'analyse est terminée.
Il est sauvegardé dans [b]C:\Ad-Remover-SCAN[1].txt[/b]
Télécharge ZHPFScript.txt sur ton bureau
http://sd-1.archive-host.com/membres/up/203669918515832581/ZHPFScript.txt
Lance ZHPFix à partir du raccourci du bureau
Clique sur le H (coller les lignes helpeur)
Fait un glisser/déposer de ZHPFScript.txt dans ZHPFix
Clique sur le bouton GO pour lancer le nettoyage
Héberge le rapport, et donne le lien
O.o°*??? Ex Nathandre aux 12938 messages depuis le 27.10.2008 °.Oø¤º°'°º¤ø
http://sd-1.archive-host.com/membres/up/203669918515832581/ZHPFScript.txt
Lance ZHPFix à partir du raccourci du bureau
Clique sur le H (coller les lignes helpeur)
Fait un glisser/déposer de ZHPFScript.txt dans ZHPFix
Clique sur le bouton GO pour lancer le nettoyage
Héberge le rapport, et donne le lien
O.o°*??? Ex Nathandre aux 12938 messages depuis le 27.10.2008 °.Oø¤º°'°º¤ø
Bien, pourrais tu me refaire ZHPDiag et héberger le rapport pour que je vois
ce qu'il reste à nettoyer
ce qu'il reste à nettoyer
Oui, par rapport au rapport que tu m'as fourni, j'ai rédigé un script
Maudite barre d'outil SweetIM
Copie les lignes suivantes en gras ci dessous, c'est à dire
que tu sélectionnes les lignes indiquées en gras avec ta souris, tu fait
clic droit dessus>copier
O42 - Logiciel: PCTuto 2.0 - (.PCTuto.) [HKLM][64Bits] -- PCTuto_is1 => Infection BT (Spyware.AgenceExclusive)
O42 - Logiciel: PCTuto Avast 2.0 - (.PCTuto.) [HKLM][64Bits] -- PCTuto Avast_is1 => Infection BT (Spyware.AgenceExclusive)
[HKCR\Interface\{E2ED56B6-35FC-4484-9530-EC87FB458E78}] => Infection PUP (PUP.Eorezo)
O20 - Winlogon Notify: WB . (.Pas de propriétaire - Pas de description.) -- C:\PROGRA~2\WBLIND~1\WINDOW~1\fast64.dll (.not file.) => Fichier absent
O23 - Service: (Microsoft SharePoint Workspace Audit Service) - Clé orpheline => Orphean Key not necessary
[MD5.00000000000000000000000000000000] [APT] [{06731725-6CCE-4087-BAEC-5E5363FF7878}] (.Pas de propriétaire.) -- C:\Users\Tangue-man\Downloads\NOD V3.0.642\NOD32.exe (.not file.) => Fichier absent
[MD5.00000000000000000000000000000000] [APT] [{F103429F-E74F-48CC-A82F-0C9D4E3CC61E}] (.Pas de propriétaire.) -- C:\Users\Tangue-man\Downloads\D2+LOD Blizz installer + extras Frez server\D2-1.12A-enGB\Installer.exe (.not file.) => Fichier absent
O42 - Logiciel: SweetIM Toolbar for Internet Explorer 4.1 - (.SweetIM Technologies Ltd..) [HKLM][64Bits] -- {A1194237-547A-461d-BD44-B97B1574A7DA} => SweetIM Toolbar
* Lance ZHPFix, soit à partir d'un raccourci sur le bureau, soit à partir de
ZHPDiag (avec Vista/Seven, clic droit dessus, et sur exécuter en
tant qu'administrateur)
Clique sur l'icône représentant la lettre H (« coller les lignes Helper »)
- Les lignes se collent automatiquement dans ZHPFix, sinon colle les lignes
- Clique sur le bouton « GO » pour lancer le nettoyage,
- Copie/colle la totalité du rapport dans ta prochaine réponse
Redémarre ton PC
Ensuite, poste moi un nouveau rapport ZHPDiag
Maudite barre d'outil SweetIM
Copie les lignes suivantes en gras ci dessous, c'est à dire
que tu sélectionnes les lignes indiquées en gras avec ta souris, tu fait
clic droit dessus>copier
O42 - Logiciel: PCTuto 2.0 - (.PCTuto.) [HKLM][64Bits] -- PCTuto_is1 => Infection BT (Spyware.AgenceExclusive)
O42 - Logiciel: PCTuto Avast 2.0 - (.PCTuto.) [HKLM][64Bits] -- PCTuto Avast_is1 => Infection BT (Spyware.AgenceExclusive)
[HKCR\Interface\{E2ED56B6-35FC-4484-9530-EC87FB458E78}] => Infection PUP (PUP.Eorezo)
O20 - Winlogon Notify: WB . (.Pas de propriétaire - Pas de description.) -- C:\PROGRA~2\WBLIND~1\WINDOW~1\fast64.dll (.not file.) => Fichier absent
O23 - Service: (Microsoft SharePoint Workspace Audit Service) - Clé orpheline => Orphean Key not necessary
[MD5.00000000000000000000000000000000] [APT] [{06731725-6CCE-4087-BAEC-5E5363FF7878}] (.Pas de propriétaire.) -- C:\Users\Tangue-man\Downloads\NOD V3.0.642\NOD32.exe (.not file.) => Fichier absent
[MD5.00000000000000000000000000000000] [APT] [{F103429F-E74F-48CC-A82F-0C9D4E3CC61E}] (.Pas de propriétaire.) -- C:\Users\Tangue-man\Downloads\D2+LOD Blizz installer + extras Frez server\D2-1.12A-enGB\Installer.exe (.not file.) => Fichier absent
O42 - Logiciel: SweetIM Toolbar for Internet Explorer 4.1 - (.SweetIM Technologies Ltd..) [HKLM][64Bits] -- {A1194237-547A-461d-BD44-B97B1574A7DA} => SweetIM Toolbar
* Lance ZHPFix, soit à partir d'un raccourci sur le bureau, soit à partir de
ZHPDiag (avec Vista/Seven, clic droit dessus, et sur exécuter en
tant qu'administrateur)
Clique sur l'icône représentant la lettre H (« coller les lignes Helper »)
- Les lignes se collent automatiquement dans ZHPFix, sinon colle les lignes
- Clique sur le bouton « GO » pour lancer le nettoyage,
- Copie/colle la totalité du rapport dans ta prochaine réponse
Redémarre ton PC
Ensuite, poste moi un nouveau rapport ZHPDiag
Bonsoir
Excuse moi, je t'ai oublié
Pourrais tu me refaire ZHPDiag, héberger le rapport et me donner le lien
Excuse moi, je t'ai oublié
Pourrais tu me refaire ZHPDiag, héberger le rapport et me donner le lien
bonjour je voudrais savoir si toute cette procedure serait bonne pour moi je marche ac windows seven et mozilla firefox 4 et moi aussi depuis qq semaines j'ai toute les x minutes des pages publicitaire qui s'ouvrent c vraiment enervant ,merci
bonjour,
les procedures changent d'un pc à un autre, donc je t'invite à crer ton propre message sur le forum.
Aide toi de cette vidéo pour poster ton message :
http://sd-1.archive-host.com/membres/up/68979205412808752/CCM/demo_creer_son_message.htm
Patiente et un helper finira par te prendre en charge ;)
Merci de ta compréhension
un petit coucou à nath :-)
les procedures changent d'un pc à un autre, donc je t'invite à crer ton propre message sur le forum.
Aide toi de cette vidéo pour poster ton message :
http://sd-1.archive-host.com/membres/up/68979205412808752/CCM/demo_creer_son_message.htm
Patiente et un helper finira par te prendre en charge ;)
Merci de ta compréhension
un petit coucou à nath :-)
Bonjour ebola
Un petit bonjour à Electricien en passant
ebola
tu as une maudite barre d'outil SweetIM, qui colle comme une mouche à m****
Copie les lignes suivantes en gras ci dessous, c'est à dire
que tu sélectionnes les lignes indiquées en gras avec ta souris, tu fait
clic droit dessus>copier
[HKCR\CLSID\{82ac53b4-164c-4b07-a016-437a8388b81a}] =>Toolbar.SweetIM
[HKCR\Interface\{E2ED56B6-35FC-4484-9530-EC87FB458E78}] =>PUP.Eorezo
[HKCR\Interface\{eee6c358-6118-11dc-9c72-001320c79847}] =>Toolbar.SweetIM
[HKCR\Interface\{eee6c35a-6118-11dc-9c72-001320c79847}] =>Toolbar.SweetIM
[HKCR\CLSID\{eee6c35b-6118-11dc-9c72-001320c79847}] =>Toolbar.SweetIM
C:\ProgramData\SweetIM =>Toolbar.SweetIM
C:\Program Files (x86)\SweetIM =>Toolbar.SweetIM
O2 - BHO: SWEETIE [64Bits] - {EEE6C35C-6118-11DC-9C72-001320C79847} . (.SweetIM Technologies Ltd. - SweetIM Toolbar for Internet Explorer.) -- C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O4 - HKLM\..\Wow6432Node\Run: [SweetIM] . (.SweetIM Technologies Ltd. - SweetIM Instant Messenger Enhancer.) -- C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
O42 - Logiciel: SweetIM Toolbar for Internet Explorer 4.1 - (.SweetIM Technologies Ltd..) [HKLM][64Bits] -- {A1194237-547A-461d-BD44-B97B1574A7DA}
O42 - Logiciel: SweetIM for Messenger 3.4 - (.SweetIM Technologies Ltd..) [HKLM][64Bits] -- {F70AE624-2B41-476F-BC9C-0A7F158C3F15}
* Lance ZHPFix, soit à partir d'un raccourci sur le bureau, soit à partir de
ZHPDiag (avec Vista/Seven, clic droit dessus, et sur exécuter en
tant qu'administrateur)
Clique sur l'icône représentant la lettre H (« coller les lignes Helper »)
- Les lignes se collent automatiquement dans ZHPFix, sinon colle les lignes
- Clique sur le bouton « GO » pour lancer le nettoyage,
- Copie/colle la totalité du rapport dans ta prochaine réponse
Redémarre ton PC
Ensuite, poste moi un nouveau rapport ZHPDiag
Un petit bonjour à Electricien en passant
ebola
tu as une maudite barre d'outil SweetIM, qui colle comme une mouche à m****
Copie les lignes suivantes en gras ci dessous, c'est à dire
que tu sélectionnes les lignes indiquées en gras avec ta souris, tu fait
clic droit dessus>copier
[HKCR\CLSID\{82ac53b4-164c-4b07-a016-437a8388b81a}] =>Toolbar.SweetIM
[HKCR\Interface\{E2ED56B6-35FC-4484-9530-EC87FB458E78}] =>PUP.Eorezo
[HKCR\Interface\{eee6c358-6118-11dc-9c72-001320c79847}] =>Toolbar.SweetIM
[HKCR\Interface\{eee6c35a-6118-11dc-9c72-001320c79847}] =>Toolbar.SweetIM
[HKCR\CLSID\{eee6c35b-6118-11dc-9c72-001320c79847}] =>Toolbar.SweetIM
C:\ProgramData\SweetIM =>Toolbar.SweetIM
C:\Program Files (x86)\SweetIM =>Toolbar.SweetIM
O2 - BHO: SWEETIE [64Bits] - {EEE6C35C-6118-11DC-9C72-001320C79847} . (.SweetIM Technologies Ltd. - SweetIM Toolbar for Internet Explorer.) -- C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O4 - HKLM\..\Wow6432Node\Run: [SweetIM] . (.SweetIM Technologies Ltd. - SweetIM Instant Messenger Enhancer.) -- C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
O42 - Logiciel: SweetIM Toolbar for Internet Explorer 4.1 - (.SweetIM Technologies Ltd..) [HKLM][64Bits] -- {A1194237-547A-461d-BD44-B97B1574A7DA}
O42 - Logiciel: SweetIM for Messenger 3.4 - (.SweetIM Technologies Ltd..) [HKLM][64Bits] -- {F70AE624-2B41-476F-BC9C-0A7F158C3F15}
* Lance ZHPFix, soit à partir d'un raccourci sur le bureau, soit à partir de
ZHPDiag (avec Vista/Seven, clic droit dessus, et sur exécuter en
tant qu'administrateur)
Clique sur l'icône représentant la lettre H (« coller les lignes Helper »)
- Les lignes se collent automatiquement dans ZHPFix, sinon colle les lignes
- Clique sur le bouton « GO » pour lancer le nettoyage,
- Copie/colle la totalité du rapport dans ta prochaine réponse
Redémarre ton PC
Ensuite, poste moi un nouveau rapport ZHPDiag