Virus trojan:win32/vundo.gen!au

Bonjour,

Mon ordinateur est infecté par un virus troyen (trojan:win32/vundo.gen!au).

J'ai lu pas mal de post sur ce sujet ca ma l'air juste hyper compliqué, et hyper long...
Et surtout j'ai cru comprendre qu'il ny avait pas de solutions universel pour ce genre de virus , que ca se regle au cas par cas...

Donc si il y a une bonne ame pour me guider et me sortir de cette galere ce serai avec plaisir!!!!

23 réponses

  1. j'ai fais un rapport hijackthis, ca peu aider..
    merci d'avance:

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 14:23:26, on 13/10/2011
    Platform: Windows Vista SP1 (WinNT 6.00.1905)
    MSIE: Internet Explorer v7.00 (7.00.6001.18639)
    Boot mode: Normal

    Running processes:
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Windows\system32\taskeng.exe
    C:\Windows\System32\rundll32.exe
    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    C:\Program Files\IDT\WDM\sttray.exe
    C:\Program Files\HP\QuickPlay\QPService.exe
    C:\Program Files\Windows Defender\MSASCui.exe
    C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
    C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
    C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
    C:\Program Files\CyberLink\Shared files\brs.exe
    C:\Program Files\SweetIM\Messenger\SweetIM.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
    C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
    C:\Program Files\DAEMON Tools Lite\daemon.exe
    C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
    C:\Windows\System32\rundll32.exe
    C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
    C:\Program Files\Hewlett-Packard\Shared\hpqToaster.exe
    C:\Games\Game Alarm\Updater.exe
    C:\Games\Game Alarm\gamealarm.exe
    C:\Windows\system32\wbem\unsecapp.exe
    C:\Program Files\Google\Google Toolbar\GoogleToolbarUser_32.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Windows\system32\wuauclt.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
    C:\Windows\system32\SearchFilterHost.exe
    C:\Program Files\Skype\Toolbars\Shared\SkypeNames2.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=fr_fr&c=91&bd=Presario&pf=cnnb
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=fr_fr&c=91&bd=Presario&pf=cnnb
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    R3 - URLSearchHook: (no name) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\pdfforge Toolbar\SearchSettings.dll
    R3 - URLSearchHook: uTorrentBar_FR Toolbar - {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} - C:\Program Files\uTorrentBar_FR\tbuTor.dll
    O1 - Hosts: ::1 localhost
    O2 - BHO: uTorrentBar_FR Toolbar - {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} - C:\Program Files\uTorrentBar_FR\tbuTor.dll
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll
    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
    O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll
    O2 - BHO: pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\pdfforgeToolbarIE.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
    O2 - BHO: (no name) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\pdfforge Toolbar\SearchSettings.dll
    O3 - Toolbar: pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\pdfforgeToolbarIE.dll
    O3 - Toolbar: uTorrentBar_FR Toolbar - {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} - C:\Program Files\uTorrentBar_FR\tbuTor.dll
    O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll
    O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    O4 - HKLM\..\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
    O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
    O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
    O4 - HKLM\..\Run: [UpdatePSTShortCut] "C:\Program Files\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\DVD Suite" UpdateWithCreateOnce "Software\CyberLink\PowerStarter"
    O4 - HKLM\..\Run: [UCam_Menu] "C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\2.0"
    O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
    O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
    O4 - HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
    O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
    O4 - HKLM\..\Run: [SearchSettings] C:\Program Files\pdfforge Toolbar\SearchSettings.exe
    O4 - HKLM\..\Run: [BDRegion] C:\Program Files\Cyberlink\Shared Files\brs.exe
    O4 - HKLM\..\Run: [SweetIM] C:\Program Files\SweetIM\Messenger\SweetIM.exe
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [CanalPlayer] "C:\Program Files\Lecteur CANALPLAY\CanalPlayer.exe"
    O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
    O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
    O4 - HKCU\..\Run: [HPAdvisor] C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe autorun=AUTORUN
    O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe"
    O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
    O4 - HKCU\..\Run: [Google Update] "C:\Users\Compaq\AppData\Local\Google\Update\GoogleUpdate.exe" /c
    O4 - HKCU\..\Run: [rasmon.dll] rundll32.exe "C:\Windows\TEMP\rasmon.dll",watch
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
    O4 - HKUS\S-1-5-18\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden (User 'Default user')
    O4 - Startup: Game Alarm.lnk = C:\Games\Game Alarm\gamealarm.exe
    O4 - Startup: LimeWire On Startup.lnk = C:\Program Files\LimeWire\LimeWire.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
    O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
    O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll/cmsidewiki.html
    O9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    O13 - Gopher Prefix:
    O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
    O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_fa807195\aestsrv.exe
    O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
    O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
    O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: Boonty Games - BOONTY - C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe
    O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
    O23 - Service: Service Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
    O23 - Service: Service Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
    O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
    O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
    O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
    O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
    O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
    O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe
    O23 - Service: Prncap (prncap.exe) - Unknown owner - C:\Windows\system32\prncap.exe
    O23 - Service: Recovery Service for Windows - Unknown owner - C:\Program Files\SMINST\BLService.exe
    O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
    O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_fa807195\STacSV.exe
    0
    1. Bonjour popov4083,

      Tu as une infection Vundo qui est un adware (Trojan) et qui crée des fichiers à extension .dll dans le répertoire system32. Je pense que tu as attrapé ceci en cliquant sur un lien contenu dans un courrier indésirable.

      Voilà ce que nous allons faire:

      Etape 1:

      [*] Télécharge Malwarebytes
      [*] Tu auras un tutoriel à ta disposition pour l'installer et l'utiliser correctement.
      [*] Fais la mise à jour du logiciel (elle se fait normalement à l'installation)
      [*] Lance une analyse complète en cliquant sur "Exécuter un examen complet"
      [*] Sélectionne les disques que tu veux analyser et clique sur "Lancer l'ex[amen"
      [*] L'analyse peut durer un bon moment.....
      [*] Une fois l'analyse terminée, clique sur "OK" puis sur "Afficher les résultats"
      [*] Vérifie que tout est bien coché et clique sur "Supprimer la sélection" => et ensuite sur "OK"
      [*] Un rapport va s'ouvrir dans le bloc note... Fais un copié/collé du rapport dans ta prochaine réponse sur le forum

      * Il se pourrait que certains fichiers demandent à être supprimés au redémarrage du PC... Fais-le en cliquant sur "oui" à la question posée.

      Etape 2:


      Utilise ce logiciel de diagnostic :

      * Télécharge ZHPDiag (de Nicolas Coolman)
      * Laisse toi guider lors de l'installation, il se lancera automatiquement à la fin.
      * Clique sur l'icône représentant une loupe (« Lancer le diagnostic »)
      * Enregistre le rapport sur ton Bureau à l'aide de l'icône représentant une disquette
      * Héberge le rapport ZHPDiag.txt sur ce site, puis copie/colle le lien fourni dans ta prochaine réponse sur le forum

      A bientôt.
      0
      1. bonsoir heraultais34600,

        Merci pour ta reponse,

        J'ai fais comme tu me la dis , tout d'abors un scan avec malwarebytes voici le rapport:

        Malwarebytes' Anti-Malware 1.51.2.1300
        www.malwarebytes.org

        Version de la base de données: 7935

        Windows 6.0.6001 Service Pack 1
        Internet Explorer 7.0.6001.18000

        13/10/2011 17:27:22
        mbam-log-2011-10-13 (17-27-22).txt

        Type d'examen: Examen complet (C:\|D:\|)
        Elément(s) analysé(s): 364615
        Temps écoulé: 1 heure(s), 50 minute(s), 19 seconde(s)

        Processus mémoire infecté(s): 0
        Module(s) mémoire infecté(s): 1
        Clé(s) du Registre infectée(s): 2
        Valeur(s) du Registre infectée(s): 1
        Elément(s) de données du Registre infecté(s): 0
        Dossier(s) infecté(s): 0
        Fichier(s) infecté(s): 16

        Processus mémoire infecté(s):
        (Aucun élément nuisible détecté)

        Module(s) mémoire infecté(s):
        c:\Windows\Temp\srvapi.dll (Backdoor.FKulead) -> Delete on reboot.

        Clé(s) du Registre infectée(s):
        HKEY_CURRENT_USER\SOFTWARE\fcn (Rogue.Residue) -> Quarantined and deleted successfully.
        HKEY_CURRENT_USER\Software\Winsudate (Adware.GibMedia) -> Quarantined and deleted successfully.

        Valeur(s) du Registre infectée(s):
        HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\srvapi.dll (Backdoor.FKulead) -> Value: srvapi.dll -> Quarantined and deleted successfully.

        Elément(s) de données du Registre infecté(s):
        (Aucun élément nuisible détecté)

        Dossier(s) infecté(s):
        (Aucun élément nuisible détecté)

        Fichier(s) infecté(s):
        c:\Windows\Temp\srvapi.dll (Backdoor.FKulead) -> Quarantined and deleted successfully.
        c:\Windows\Temp\bootnet32.dll (Backdoor.FKulead) -> Quarantined and deleted successfully.
        c:\Windows\Temp\csrdll.dll (Backdoor.FKulead) -> Quarantined and deleted successfully.
        c:\Windows\Temp\netres10.dll (Backdoor.FKulead) -> Quarantined and deleted successfully.
        c:\Windows\Temp\odbcstream.dll (Backdoor.FKulead) -> Delete on reboot.
        c:\Windows\Temp\oleprov32.dll (Backdoor.FKulead) -> Quarantined and deleted successfully.
        c:\Windows\Temp\rasmon.dll (Backdoor.FKulead) -> Quarantined and deleted successfully.
        c:\Windows\Temp\hidext.dll (Backdoor.FKulead) -> Quarantined and deleted successfully.
        c:\Windows\Temp\hidstream.dll (Backdoor.FKulead) -> Quarantined and deleted successfully.
        c:\Windows\Temp\ifapi.dll (Backdoor.FKulead) -> Quarantined and deleted successfully.
        c:\Windows\Temp\ifperf.dll (Backdoor.FKulead) -> Quarantined and deleted successfully.
        c:\Windows\Temp\imapiutil.dll (Backdoor.FKulead) -> Quarantined and deleted successfully.
        c:\Windows\Temp\wincpl.dll (Backdoor.FKulead) -> Quarantined and deleted successfully.
        c:\Windows\Temp\wlancpl.dll (Backdoor.FKulead) -> Quarantined and deleted successfully.
        c:\Windows\Temp\mapiext40.dll (Backdoor.FKulead) -> Quarantined and deleted successfully.
        c:\Windows\System32\gnuhashes.ini (Trojan.Tracur) -> Quarantined and deleted successfully.

        et ensuite le rapport zhpdiag que voici:

        Rapport de ZHPDiag v1.28.1367 par Nicolas Coolman, Update du 05/10/2011
        Run by Compaq at 13/10/2011 17:50:14
        Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
        State : Version à jour.

        ---\\ Web Browser
        MSIE: Internet Explorer v7.0.6001.18000
        MFIE: Mozilla Firefox 6.0.2 v6.0.2 (Defaut)
        GCIE: Google Chrome v14.0.835.202

        ---\\ Windows Product Information
        Windows Vista Home Basic Edition, 32-bit Service Pack 1 (Build 6001)
        Windows Server License Manager Script : OK
        ~ Vista, OEM_SLP channel
        System Locked Preinstallation (OEM_SLP) : OK
        Windows ID Activation : OK
        ~ Windows Partial Key : 44MV3
        Windows License : OK
        Windows Automatic Updates : OK

        ---\\ System Information
        ~ Processor: x86 Family 6 Model 23 Stepping 10, GenuineIntel
        ~ Operating System: 32 Bits
        Boot mode: Normal (Normal boot)
        Total RAM: 3038 MB (62% free)
        System Restore: Activé (Enable)
        System drive C: has 84 GB (37%) free of 223 GB

        ---\\ Logged in mode
        ~ Computer Name: PC-DE-TOURNADE
        ~ User Name: Compaq
        ~ All Users Names: Compaq, Administrateur,
        ~ Unselected Option: O45,O61,O62,O65,O66,O82
        Logged in as Administrator

        ---\\ Environnement Variables
        ~ System Unit : C:\
        ~ %AppData% : C:\Users\Compaq\AppData\Roaming\
        ~ %Desktop% : C:\Users\Compaq\Desktop\
        ~ %Favorites% : C:\Users\Compaq\Favorites\
        ~ %LocalAppData% : C:\Users\Compaq\AppData\Local\
        ~ %StartMenu% : C:\Users\Compaq\AppData\Roaming\Microsoft\Windows\Start Menu\
        ~ %Windir% : C:\Windows\
        ~ %System% : C:\Windows\system32\

        ---\\ DOS/Devices
        C:\ Hard drive, Flash drive, Thumb drive (Free 84 Go of 223 Go)
        D:\ Hard drive, Flash drive, Thumb drive (Free 2 Go of 10 Go)
        E:\ CD-ROM drive (Not Inserted)
        Z:\ CD-ROM drive (Not Inserted)

        ---\\ Security Center & Tools Informations
        [HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK
        [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK
        [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
        [HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
        [HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK
        [HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
        [HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK
        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK
        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK
        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK
        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: OK
        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK
        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK
        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
        [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK
        [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK
        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
        [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
        [HKLM\SYSTEM\CurrentControlSet\Services] wscsvc : OK
        ~ Scan Security Center in 00mn 00s

        ---\\ Recherche particulière de fichiers génériques
        [MD5.4F554999D7D5F05DAAEBBA7B5BA1089D] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2009 - 11:21:43.) -- C:\Windows\Explorer.exe [2927104]
        [MD5.4B555106290BD117334E9A08761C035A] - (....) (.02/11/2006 - 10:45:37.) -- C:\Windows\system32\rundll32.exe [44544]
        [MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) (.21/01/2008 - 03:33:13.) -- C:\Windows\system32\Wininit.exe [96768]
        [MD5.DA5A72211661C7F162B332FEA4F09A69] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.20/06/2011 - 16:00:34.) -- C:\Windows\system32\wininet.dll [833024]
        [MD5.C2610B6BDBEFC053BBDAB4F1B965CB24] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.21/01/2008 - 03:34:38.) -- C:\Windows\system32\Winlogon.exe [314880]
        [MD5.95F5FF73B076576C41740F1A842B9B57] - (....) (.25/02/2009 - 10:48:08.) -- C:\Windows\system32\fr-FR\user32.dll.mui [20480]
        [MD5.48EB99503533C27AC6135648E5474457] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.20/06/2011 - 14:16:42.) -- C:\Windows\system32\drivers\AFD.sys [273408] *1916
        [MD5.9C0E70031905ADBF94EDB9EA14AF943B] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.21/01/2008 - 11:06:53.) -- C:\Windows\system32\drivers\atapi.sys [21560] *1844
        [MD5.7ADD03E75BEB9E6DD102C3081D29840A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.21/01/2008 - 03:33:23.) -- C:\Windows\system32\drivers\Cdfs.sys [70144] *1844
        [MD5.1EC25CEA0DE6AC4718BF89F9E1778B57] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.21/01/2008 - 03:32:23.) -- C:\Windows\system32\drivers\Cdrom.sys [67072] *1820
        [MD5.A3E9FA213F443AC77C7746119D13FEEC] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/06/2011 - 15:24:14.) -- C:\Windows\system32\drivers\DfsC.sys [75264] *1884
        [MD5.C87B1EE051C0464491C1A7B03FA0BC99] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.21/01/2008 - 03:32:47.) -- C:\Windows\system32\drivers\HDAudBus.sys [53760] *1900
        [MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - (.Microsoft Corporation - Pilote de port i8042.) (.21/01/2008 - 03:32:45.) -- C:\Windows\system32\drivers\i8042prt.sys [54784] *1900
        [MD5.8793643A67B42CEC66490B2A0CF92D68] - (.Microsoft Corporation - IP Network Address Translator.) (.21/01/2008 - 03:34:06.) -- C:\Windows\system32\drivers\IpNat.sys [100864] *1868
        [MD5.5734A0F2BE7E495F7D3ED6EFD4B9F5A1] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.20/06/2011 - 13:49:35.) -- C:\Windows\system32\drivers\MRxSmb.sys [105984] *1852
        [MD5.7C5FEE5B1C5728507CD96FB4A13E7A02] - (.Microsoft Corporation - MBT Transport driver.) (.21/01/2008 - 03:34:49.) -- C:\Windows\system32\drivers\netBT.sys [184320] *1828
        [MD5.B4EFFE29EB4F15538FD8A9681108492D] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.21/01/2008 - 03:33:23.) -- C:\Windows\system32\drivers\ntfs.sys [1081912] *1916
        [MD5.0FA9B5055484649D63C303FE404E5F4D] - (.Microsoft Corporation - Pilote de port parallèle.) (.02/11/2006 - 09:51:30.) -- C:\Windows\system32\drivers\Parport.sys [79360] *1900
        [MD5.A214ADBAF4CB47DD2728859EF31F26B0] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.21/01/2008 - 03:34:44.) -- C:\Windows\system32\drivers\Rasl2tp.sys [76288] *1916
        [MD5.FBC0BACD9C3D7F6956853F64A66E252D] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.21/01/2008 - 03:32:22.) -- C:\Windows\system32\drivers\rdpdr.sys [248832] *1868
        [MD5.D09276B1FAB033CE1D40DCBDF303D10F] - (.Microsoft Corporation - TDI Translation Driver.) (.21/01/2008 - 03:34:42.) -- C:\Windows\system32\drivers\tdx.sys [71680] *1820
        ~ Scan Generic Processes in 00mn 01s

        ---\\ Etat des fichiers cachés (Caché/Total)
        ~ Mes images (My Pictures) : 13/6303
        ~ Mes musiques (My Musics) : 3/100
        ~ Mes Videos (My Videos) : 1/2
        ~ Mes Favoris (My Favorites) : 2/29
        ~ Mes Documents (My Documents) : 37/2312
        ~ Mon Bureau (My Desktop) : 3/704
        ~ Menu demarrer (Programs) : 8/54
        ~ Scan Hidden Files in 00mn 08s

        ---\\ Processus lancés
        [MD5.4B555106290BD117334E9A08761C035A] - (...) -- C:\Windows\System32\rundll32.exe [44544] [PID.]
        [MD5.6C4878F3483B959891408B804DE4475C] - (.Synaptics, Inc. - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1410344] [PID.3540]
        [MD5.540FCB7DB4A289EE56557FB5EC3D16AC] - (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray.exe [483420] [PID.3584]
        [MD5.5E5208A733BBCC4571F384754A9A6746] - (.CyberLink Corp. - HP QuickPlay Resident Program.) -- C:\Program Files\HP\QuickPlay\QPService.exe [468264] [PID.3604]
        [MD5.0D392EDE3B97E0B3131B2F63EF1DB94E] - (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe [1008184] [PID.3672]
        [MD5.2C45AF6FB8AADD7959078CC1B13B1A65] - (. Hewlett-Packard Development Company, L.P. - Quick Launch Buttons.) -- C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe [206128] [PID.3684]
        [MD5.690A6DF02625A46ABEE250C6151B7FBA] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\HP\HP Software Update\hpwuSchd2.exe [54576] [PID.3800]
        [MD5.692493B9136287C06DE23F7CE823FC40] - (.Hewlett-Packard - HP Wireless Assistant main program.) -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [432432] [PID.3852]
        [MD5.23EAC9506A6A2E2888DA9500E70C8DE2] - (.cyberlink - brs.) -- C:\Program Files\CyberLink\Shared files\brs.exe [75048] [PID.3892]
        [MD5.B99E33D026ABF2EDE890CED8E0FD223B] - (.SweetIM Technologies Ltd. - SweetIM Instant Messenger Enhancer.) -- C:\Program Files\SweetIM\Messenger\SweetIM.exe [111928] [PID.3912]
        [MD5.869A67EE7C237DD9F9104854CAE0A9CD] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe [141608] [PID.3932]
        [MD5.9D5E8B45BD348DF0882C69EED0E83111] - (.Avira GmbH - Antivirus System Tray Tool.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [281768] [PID.3956]
        [MD5.4A9295C9BE22739D030AB072E9A0B169] - (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2363392] [PID.4020]
        [MD5.9ADF96751477E200FA75F07DDC4CBF86] - (.DT Soft Ltd - DAEMON Tools main application.) -- C:\Program Files\DAEMON Tools Lite\daemon.exe [486856] [PID.4048]
        [MD5.5D61BE7DB55B026A5D61A3EED09D0EAD] - (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408] [PID.]
        [MD5.F28C33D2589F7B89185F3B9445641F84] - (.Pas de propriétaire - HpqToaster Module.) -- C:\Program Files\Hewlett-Packard\Shared\hpqToaster.exe [628016] [PID.804]
        [MD5.C8649EDF4955DE896A7AED515C932B09] - (.Synaptics, Inc. - Synaptics Pointing Device Helper.) -- C:\Program Files\Synaptics\SynTP\SynTPHelper.exe [103720] [PID.3820]
        [MD5.0222A3F90781E355D096F7A133916A75] - (...) -- C:\Games\Game Alarm\Updater.exe [491520] [PID.1248]
        [MD5.884836383419A7D60ABFC977C5792203] - (.Europe Support Ltd. N.V. - Gamealarm.) -- C:\Games\Game Alarm\gamealarm.exe [19721216] [PID.3620]
        [MD5.62BB79160F86CD962F312C68C6239BFD] - (.Microsoft Corporation - Windows Update.) -- C:\Windows\system32\wuauclt.exe [53472] [PID.4028]
        [MD5.77B9A891222FB46B13E414B99E1AF842] - (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe [634648] [PID.3076]
        [MD5.745EE2C6FB0B43C9F00E017F5E5D7317] - (.Google Inc. - Google Toolbar Broker.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbarUser_32.exe [307376] [PID.1656]
        [MD5.7B2E3899314974CC40D93A6CD7C855C8] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [2134016] [PID.4632]
        [MD5.F96EBC5A624349D81DCC7600A3C5DC43] - (.Microsoft Corporation - Console IME.) -- C:\Windows\system32\conime.exe [69120] [PID.6084]
        [MD5.31F3ABA02E5531E4B96977BA475EAA31] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 179.3.) -- C:\Windows\system32\nvvsvc.exe [203296] [PID.]
        [MD5.B56EE2666F0B6019B6206FB3664BAF03] - (.IDT, Inc. - IDT PC Audio.) -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_fa807195\STacSV.exe [249938] [PID.]
        [MD5.0BA91E1358AD25236863039BB2609A2E] - (.Microsoft Corporation - Service de gestion des licences Microsoft.) -- C:\Windows\system32\SLsvc.exe [2623488] [PID.]
        [MD5.A5BCBAF0477C4869B67E0195AEA4A9CD] - (.Avira GmbH - Antivirus Scheduler.) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe [136360] [PID.]
        [MD5.087B04CA45E2F059A55709B0B8F95EA9] - (.Andrea Electronics Corporation - Andrea filters APO access service (32-bit).) -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_fa807195\aestsrv.exe [81920] [PID.]
        [MD5.3CCE4AFA4AACDB28E01A148394212186] - (.Avira GmbH - Antivirus On-Access Service.) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe [269480] [PID.]
        [MD5.2E3E53A6AEF23E24F402C7855B9B1542] - (.Apple Inc. - Apple Mobile Device Service.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [144176] [PID.]
        [MD5.5AB58C337AC65837FE404462AD6265AB] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [345376] [PID.]
        [MD5.CDE000884FD7BAF0C1FDFE029B0891DE] - (.Avira GmbH - AntiVir shadow copy service.) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe [76968] [PID.]
        [MD5.ABF90FC5A127F481219B873C1B8DFC1C] - (.Hewlett-Packard Company - LightScribe Service.) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe [73728] [PID.]
        [MD5.831883B107684301F48ACE752C963984] - (...) -- C:\Windows\system32\PnkBstrA.exe [66872] [PID.]
        [MD5.E24106A5EAECDDFF00B25497049DD65F] - (...) -- C:\Windows\system32\PnkBstrB.exe [107832] [PID.]
        [MD5.8F3A6566F88D9FC3819D5A32263F72E6] - (...) -- C:\Windows\system32\prncap.exe [1274057] [PID.]
        [MD5.2063D6B51FD874E67502B31A9FDBA685] - (.Pas de propriétaire - STServices.) -- C:\Program Files\SMINST\BLService.exe [365952] [PID.]
        [MD5.498EB62A160674E793FA40FD65390625] - (.Pas de propriétaire - RichVideo Module.) -- C:\Program Files\CyberLink\Shared files\RichVideo.exe [247152] [PID.]
        [MD5.188FF0ADF66768D53AD94F43972E1E9A] - (.Hewlett-Packard Development Company, L.P. - hpqwmiex Module.) -- C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [223232] [PID.]
        [MD5.2F27104F5D6ED63FDAC38CACB9D19DFD] - (.Hewlett-Packard Development Company, L.P. - Com for QLB application.) -- C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [222512] [PID.]
        [MD5.630D74599070824AF3DC63A894ADCDFC] - (.Apple Inc. - iPodService Module (32-bit).) -- C:\Program Files\iPod\bin\iPodService.exe [540968] [PID.]
        [MD5.A19B0BB5A7EB6DF2DD4A0711D36955EE] - (.Hewlett-Packard - HP Health Check Service.) -- c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [94208] [PID.]
        ~ Scan Processes Running in 00mn 01s

        ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
        C:\Users\Compaq\AppData\Local\Google\Chrome\User Data\Default\Preferences
        G1 - GCS: Preference [User Data\Default] None
        G0 - GCSP: Preference [User Data\Default][HomePage] https://www.google.com/?gws_rd=ssl
        ~ Scan Google Browser in 00mn 00s

        ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
        C:\Users\Compaq\AppData\Roaming\Mozilla\Firefox\Profiles\vtbd3xgy.default\prefs.js
        C:\Users\Compaq\AppData\Roaming\Mozilla\Firefox\Profiles\vtbd3xgy.default\user.js (.not file.)
        M3 - MFPP: Plugins - [Compaq] -- C:\Program Files\Mozilla FireFox\searchplugins\amazon-france.xml
        M3 - MFPP: Plugins - [Compaq] -- C:\Program Files\Mozilla FireFox\searchplugins\bing.xml
        M3 - MFPP: Plugins - [Compaq] -- C:\Program Files\Mozilla FireFox\searchplugins\cnrtl-tlfi-fr.xml
        M3 - MFPP: Plugins - [Compaq] -- C:\Program Files\Mozilla FireFox\searchplugins\eBay-france.xml
        M3 - MFPP: Plugins - [Compaq] -- C:\Program Files\Mozilla FireFox\searchplugins\google.xml
        M3 - MFPP: Plugins - [Compaq] -- C:\Program Files\Mozilla FireFox\searchplugins\wikipedia-fr.xml
        M3 - MFPP: Plugins - [Compaq] -- C:\Program Files\Mozilla FireFox\searchplugins\yahoo-france.xml
        M0 - MFSP: prefs.js [Compaq - vtbd3xgy.default] https://fr.yahoo.com/
        M2 - MFEP: prefs.js [Compaq - vtbd3xgy.default\{05eeb91a-aef7-4f8a-978f-fb83e7b03f8e}] [] uTorrentBar_FR Community Toolbar v3.7.0.6 (.Conduit Ltd..)
        M2 - MFEP: prefs.js [Compaq - vtbd3xgy.default\{20a82645-c095-46ed-80e3-08825760534b}] [MicrosoftCG] Microsoft .NET Framework Assistant v1.2.1 (.Microsoft.)
        M2 - MFEP: prefs.js [Compaq - vtbd3xgy.default\{635abd67-4fe9-1b23-4f01-e679fa7484c1}] [yahoo.ytff] Yahoo! Toolbar v2.3.11.20110727115843 (.Yahoo!.)
        M2 - MFEP: prefs.js [Compaq - vtbd3xgy.default\{9CCE52B0-5079-4177-9586-1BF6575E62DE}(53)] [] Plugin CanalPlay v1.0.0.1 (.Canal+ Distribution.)
        P2 - FPN:Firefox Plugin Navigator . (.Sun Microsystems, Inc. - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- C:\Program Files\Mozilla Firefox\Plugins\npdeployJava1.dll
        P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin.dll
        P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin2.dll
        P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin3.dll
        P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin4.dll
        P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin5.dll
        P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin6.dll
        P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin7.dll
        P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF32.dll
        P2 - FPN: [HKLM] [@adobe.com/ShockwavePlayer] - (.Adobe Systems, Inc. - Adobe Shockwave for Director Netscape plug-in, version 11.6.) -- C:\Windows\system32\Adobe\Director\np32dsw.dll
        P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (...) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
        P2 - FPN: [HKLM] [@google.com/npPicasa3,version=3.0.0] - (.Google, Inc. - Picasa plugin.) -- C:\Program Files\Google\Picasa3\npPicasa3.dll
        P2 - FPN: [HKLM] [@java.com/JavaPlugin] - (.Sun Microsystems, Inc. - Next Generation Java Plug-in 1.6.0_21 for Mozilla browsers.) -- C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
        P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 4.0.60831.0.) -- c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll
        P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
        P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.69\npGoogleUpdate3.dll
        P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.69\npGoogleUpdate3.dll
        P2 - FPN: [HKLM] [@videolan.org/vlc,version=1.0.1] - (.the VideoLAN Team - Version 1.0.1, copyright 1996-2009 The VideoLAN Team<br><a href="http:.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll
        P2 - FPN: [HKCU] [@talk.google.com/GoogleTalkPlugin] - (.Google - Version 2.3.2.0.) -- C:\Users\Compaq\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll
        P2 - FPN: [HKCU] [@talk.google.com/O3DPlugin] - (.Pas de propriétaire - Google Talk Plugin Video Accelerator version:0.1.44.11.) -- C:\Users\Compaq\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll
        P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Users\Compaq\AppData\Local\Google\Update\1.3.21.69\npGoogleUpdate3.dll
        P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Users\Compaq\AppData\Local\Google\Update\1.3.21.69\npGoogleUpdate3.dll
        P2 - FPN: [HKCU] [@yahoo.com/BrowserPlus,version=2.6.0] - (.Yahoo! Inc. - BrowserPlus -- Improve your browser! -- https://fr.yahoo.com/?p=us -- C:\Users\Compaq\AppData\Local\Yahoo!\BrowserPlus\2.6.0\Plugins\npybrowserplus_2.6.0.dll
        ~ Scan Firefox Browser in 00mn 00s

        ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
        R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://home.sweetim.com/
        R0 - HKUS\S-1-5-21-140602420-3683421237-1408863200-1000\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
        R1 - HKUS\S-1-5-21-140602420-3683421237-1408863200-1000\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
        R3 - URLSearchHook: uTorrentBar_FR Toolbar - {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} . (.Conduit Ltd. - Conduit Toolbar.) (6.2.7.3) -- C:\Program Files\uTorrentBar_FR\tbuTor.dll
        R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Internet Explorer.) (7.00.6000.16386 (vista_rtm.061101-2205)) -- C:\Windows\system32\ieframe.dll
        R3 - URLSearchHook: (no name) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} . (.Spigot, Inc. - Search Settings IE.) (1, 2, 2, 2) -- C:\Program Files\pdfforge Toolbar\SearchSettings.dll
        R3 - URLSearchHook: uTorrentBar_FR Toolbar - {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} . (.Conduit Ltd. - Conduit Toolbar.) (6.2.7.3) -- C:\Program Files\uTorrentBar_FR\tbuTor.dll
        R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 0
        ~ Scan IE Browser in 00mn 00s

        ---\\ Internet Explorer, Proxy Management (R5)
        R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
        R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
        R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
        R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
        R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
        R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
        R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
        ~ Scan Proxy management in 00mn 00s

        ---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
        F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,
        F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"
        ~ Scan Keys in 00mn 00s

        ---\\ Redirection du fichier Hosts (O1)
        ~ Le fichier hosts est sain (The hosts file is clean).
        ~ Scan Hosts File in 00mn 00s

        ---\\ Browser Helper Objects de navigateur (O2)
        O2 - BHO: uTorrentBar_FR Toolbar - {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} . (.Conduit Ltd. - Conduit Toolbar.) -- C:\Program Files\uTorrentBar_FR\tbuTor.dll
        O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
        O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} . (.Conduit Ltd. - Conduit Toolbar.) -- C:\Program Files\ConduitEngine\ConduitEngine.dll
        O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} Clé orpheline
        O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - WindowsLiveLogin.dll.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
        O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
        O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Skype Technologies S.A. - Skype add-on for IE.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
        O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll
        O2 - BHO: pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} . (.Spigot, Inc. - Widgi Toolbar for Internet Explorer.) -- C:\Program Files\pdfforge Toolbar\pdfforgeToolbarIE.dll
        O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll
        O2 - BHO: (no name) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} . (.Spigot, Inc. - Search Settings IE.) -- C:\Program Files\pdfforge Toolbar\SearchSettings.dll
        ~ Scan BHO in 00mn 00s

        ---\\ Internet Explorer Toolbars (O3)
        O3 - Toolbar: pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} . (.Spigot, Inc. - Widgi Toolbar for Internet Explorer.) -- C:\Program Files\pdfforge Toolbar\pdfforgeToolbarIE.dll
        O3 - Toolbar: uTorrentBar_FR Toolbar - {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} . (.Conduit Ltd. - Conduit Toolbar.) -- C:\Program Files\uTorrentBar_FR\tbuTor.dll
        O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} . (.Conduit Ltd. - Conduit Toolbar.) -- C:\Program Files\ConduitEngine\ConduitEngine.dll
        O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
        ~ Scan Toolbar in 00mn 00s

        ---\\ Applications démarrées par registre & par dossier (O4)
        O4 - HKLM\..\Run: [NvCplDaemon] . (.NVIDIA Corporation - NVIDIA Display Properties Extension.) -- C:\Windows\system32\NvCpl.dll
        O4 - HKLM\..\Run: [NvMediaCenter] . (.NVIDIA Corporation - NVIDIA Media Center Library.) -- C:\Windows\system32\NvMcTray.dll
        O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics, Inc. - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
        O4 - HKLM\..\Run: [SysTrayApp] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray.exe
        O4 - HKLM\..\Run: [QPService] . (.CyberLink Corp. - HP QuickPlay Resident Program.) -- C:\Program Files\HP\QuickPlay\QPService.exe
        O4 - HKLM\..\Run: [UpdateLBPShortCut] . (.CyberLink Corp. - StartMen Application.) -- C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe
        O4 - HKLM\..\Run: [UpdatePSTShortCut] Clé orpheline
        O4 - HKLM\..\Run: [UCam_Menu] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe
        O4 - HKLM\..\Run: [Windows Defender] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe
        O4 - HKLM\..\Run: [QlbCtrl.exe] . (. Hewlett-Packard Development Company, L.P. - Quick Launch Buttons.) -- C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
        O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
        O4 - HKLM\..\Run: [UpdateP2GoShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe
        O4 - HKLM\..\Run: [HP Health Check Scheduler] . (.Hewlett-Packard - HP Health Check Scheduler.) -- c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
        O4 - HKLM\..\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
        O4 - HKLM\..\Run: [WirelessAssistant] . (.Hewlett-Packard - HP Wireless Assistant main program.) -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
        O4 - HKLM\..\Run: [SearchSettings] . (.Spigot, Inc. - Search Settings application.) -- C:\Program Files\pdfforge Toolbar\SearchSettings.exe
        O4 - HKLM\..\Run: [BDRegion] . (.cyberlink - brs.) -- C:\Program Files\Cyberlink\Shared Files\brs.exe
        O4 - HKLM\..\Run: [SweetIM] . (.SweetIM Technologies Ltd. - SweetIM Instant Messenger Enhancer.) -- C:\Program Files\SweetIM\Messenger\SweetIM.exe
        O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe
        O4 - HKLM\..\Run: [CanalPlayer] C:\Program Files\Lecteur CANALPLAY\CanalPlayer.exe (.not file.)
        O4 - HKLM\..\Run: [avgnt] . (.Avira GmbH - Antivirus System Tray Tool.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
        O4 - HKCU\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
        O4 - HKCU\..\Run: [HPAdvisor] C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe (.not file.)
        O4 - HKCU\..\Run: [DAEMON Tools Lite] . (.DT Soft Ltd - DAEMON Tools main application.) -- C:\Program Files\DAEMON Tools Lite\daemon.exe
        O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
        O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Compaq\AppData\Local\Google\Update\GoogleUpdate.exe
        O4 - HKCU\..\Run: [odbcstream.dll] C:\Windows\TEMP\odbcstream.dll (.not file.)
        O4 - HKUS\S-1-5-18\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
        O4 - HKUS\S-1-5-18\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
        O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
        O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] oobefldr.dll
        O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
        O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] oobefldr.dll
        O4 - HKUS\S-1-5-21-140602420-3683421237-1408863200-1000\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
        O4 - HKUS\S-1-5-21-140602420-3683421237-1408863200-1000\..\Run: [HPAdvisor] C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe (.not file.)
        O4 - HKUS\S-1-5-21-140602420-3683421237-1408863200-1000\..\Run: [DAEMON Tools Lite] . (.DT Soft Ltd - DAEMON Tools main application.) -- C:\Program Files\DAEMON Tools Lite\daemon.exe
        O4 - HKUS\S-1-5-21-140602420-3683421237-1408863200-1000\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
        O4 - HKUS\S-1-5-21-140602420-3683421237-1408863200-1000\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Compaq\AppData\Local\Google\Update\GoogleUpdate.exe
        O4 - HKUS\S-1-5-21-140602420-3683421237-1408863200-1000\..\Run: [odbcstream.dll] C:\Windows\TEMP\odbcstream.dll (.not file.)
        ~ Scan Application in 00mn 00s

        ---\\ Autres liens utilisateurs (O4)
        O4 - Global Startup: C:\Users\Compaq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
        O4 - Global Startup: C:\Users\Compaq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Mail\WinMail.exe
        O4 - Global Startup: C:\Users\Compaq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
        O4 - Global Startup: C:\Users\Compaq\Desktop\HijackThis.lnk . (...) -- C:\Program Files\Trend Micro\HijackThis\HijackThis.exe (.not file.)
        O4 - Global Startup: C:\Users\Compaq\Desktop\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
        O4 - Global Startup: C:\Users\Compaq\Desktop\LimeWire 5.6.2.lnk . (.Lime Wire, LLC.) -- C:\Program Files\LimeWire\LimeWire.exe
        O4 - Global Startup: C:\Users\Compaq\Desktop\VirtualDJ Home FREE.lnk . (.Atomix Productions.) -- C:\Program Files\VirtualDJ\virtualdj_home.exe
        O4 - Global Startup: C:\Users\Compaq\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Démarrer Outlook Express.lnk . (.Microsoft Corporation.) -- C:\Program Files\Microsoft Office\Office10\OUTLOOK.EXE
        O4 - Global Startup: C:\Users\Compaq\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk . (.Google Inc..) -- C:\Program Files\Google\Chrome\Application\chrome.exe
        O4 - Global Startup: C:\Users\Compaq\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk . (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe
        O4 - Global Startup: C:\Users\Compaq\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
        ~ Scan Global Startup in 00mn 00s

        ---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
        O8 - Extra context menu item: Add to Google Photos Screensa&ver . (.Google Inc. - Google Photos Screensaver.) -- C:\Windows\system32\GPhotos.scr
        O8 - Extra context menu item: E&xporter vers Microsoft Excel . (.Microsoft Corporation - Microsoft Excel.) -- C:\PROGRA~1\MICROS~3\Office10\EXCEL.exe
        O8 - Extra context menu item: Google Sidewiki... . (.Google Inc. - Google Toolbar for Internet Explorer.) -- C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll
        ~ Scan IE Menu Contextuel in 00mn 00s

        ---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
        O9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} . (...) -- C:\Program Files\Skype\Toolbars\Internet Explorer\icon.ico
        ~ Scan IE Extra Buttons in 00mn 00s

        ---\\ Winsock hijacker (Layered Service Provider) (O10)
        O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
        O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
        O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
        O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
        O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
        O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
        O10 - WLSP:\000000000007\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files\Bonjour\mdnsNSP.dll
        ~ Scan Winsock in 00mn 00s

        ---\\ Modification Domaine/Adresses DNS (O17)
        O17 - HKLM\System\CCS\Services\Tcpip\..\{2E108660-0076-478A-93D4-8BC949A34FBF}: DhcpNameServer = 192.168.1.254
        O17 - HKLM\System\CCS\Services\Tcpip\..\{2E108660-0076-478A-93D4-8BC949A34FBF}: DhcpDomain = lan
        O17 - HKLM\System\CS1\Services\Tcpip\..\{2E108660-0076-478A-93D4-8BC949A34FBF}: DhcpNameServer = 192.168.1.254
        O17 - HKLM\System\CS1\Services\Tcpip\..\{2E108660-0076-478A-93D4-8BC949A34FBF}: DhcpDomain = lan
        O17 - HKLM\System\CS2\Services\Tcpip\..\{2E108660-0076-478A-93D4-8BC949A34FBF}: DhcpNameServer = 192.168.1.254
        O17 - HKLM\System\CS2\Services\Tcpip\..\{2E108660-0076-478A-93D4-8BC949A34FBF}: DhcpDomain = lan
        ~ Scan Domain in 00mn 00s

        ---\\ Protocole additionnel (O18)
        O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\system32\mshtml.dll
        O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
        O18 - Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} . (.Microsoft Corporation - Microsoft SharePoint Portal Server Object M.) -- C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL
        O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\msvidctl.dll
        O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
        O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
        O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
        O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
        O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll
        O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\system32\mshtml.dll
        O18 - Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
        O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
        O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\system32\mshtml.dll
        O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\system32\inetcomm.dll
        O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
        O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll
        O18 - Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll
        O18 - Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
        O18 - Handler: mso-offdap - {3D9F03FA-7A94-11D3-BE81-0050048385D1} . (.Microsoft Corporation - Microsoft Office XP Web Components.) -- C:\PROGRA~1\COMMON~1\MICROS~1\WEBCOM~1\10\OWC10.DLL
        O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\system32\mshtml.dll
        O18 - Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} . (.Skype Technologies S.A. - Skype add-on for IE.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
        O18 - Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype for COM API.) -- C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
        O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\msvidctl.dll
        O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\system32\mshtml.dll
        O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\system32\mscoree.dll
        O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\system32\mscoree.dll
        O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\system32\mscoree.dll
        O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
        O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
        ~ Scan Protocole Additionnel in 00mn 00s

        ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
        O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Contrôleur de site Web.) -- C:\Windows\system32\webcheck.dll
        ~ Scan SSODL in 00mn 00s

        ---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22)
        O22 - SharedTaskScheduler: (no name) - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\Windows\system32\browseui.dll
        ~ Scan STS/SSO in 00mn 00s

        ---\\ Liste des services NT non Microsoft et non désactivés (O23)
        O23 - Service: Andrea ST Filters Service (AESTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (32-bit).) - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_fa807195\aestsrv.exe
        O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) . (.Avira GmbH - Antivirus Scheduler.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe
        O23 - Service: Avira AntiVir Guard (AntiVirService) . (.Avira GmbH - Antivirus On-Access Service.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
        O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - Apple Mobile Device Service.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
        O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
        O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe
        O23 - Service: HP Health Check Service (HP Health Check Service) . (.Hewlett-Packard - HP Health Check Service.) - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
        O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company - LightScribe Service.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
        O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 179.3.) - C:\Windows\system32\nvvsvc.exe
        O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\Windows\system32\PnkBstrA.exe
        O23 - Service: PnkBstrB (PnkBstrB) . (...) - C:\Windows\system32\PnkBstrB.exe
        O23 - Service: Prncap (prncap.exe) . (...) - C:\Windows\system32\prncap.exe
        O23 - Service: Recovery Service for Windows (Recovery Service for Windows) . (.Pas de propriétaire - STServices.) - C:\Program Files\SMINST\BLService.exe
        O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Pas de propriétaire - RichVideo Module.) - C:\Program Files\CyberLink\Shared files\RichVideo.exe
        O23 - Service: Audio Service (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_fa807195\STacSV.exe
        O23 - Service: Power Control [2010/03/07 13:46:36] ({B154377D-700F-42cc-9474-23858FBDF4BD}) . (.CyberLink Corp. - Pas de description.) - C:\Program Files\CyberLink\PowerDVD9\000.fcl
        ~ Scan Services in 00mn 00s

        ---\\ Enumération Active Desktop & MHTML Editor (O24)
        O24 - Default MHTML Editor: Last - .(.Microsoft Corporation - Microsoft Word.) - C:\Program Files\Microsoft Office\Office10\WINWORD.exe
        ~ Scan Desktop Component in 00mn 00s

        ---\\ Tâches planifiées en automatique (O39)
        O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
        O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
        O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-140602420-3683421237-1408863200-1000Core.job
        O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-140602420-3683421237-1408863200-1000UA.job
        O39 - APT:Automatic Planified Task - C:\Windows\Tasks\RegClean Pro_DEFAULT.job
        O39 - APT:Automatic Planified Task - C:\Windows\Tasks\RegClean Pro_UPDATES.job
        [MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe
        [MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe
        [MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskUserS-1-5-21-140602420-3683421237-1408863200-1000Core] (.Google Inc..) -- C:\Users\Compaq\AppData\Local\Google\Update\GoogleUpdate.exe
        [MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskUserS-1-5-21-140602420-3683421237-1408863200-1000UA] (.Google Inc..) -- C:\Users\Compaq\AppData\Local\Google\Update\GoogleUpdate.exe
        [MD5.AE37F6508716D2DD6122744C46686BEC] [APT] [HP Health Check] (.Hewlett-Packard.) -- c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
        [MD5.364A9C1A338355035B74342D42FC4F43] [APT] [RegClean Pro] (.Systweak Inc.) -- C:\Program Files\RegClean Pro\RegCleanPro.exe
        [MD5.364A9C1A338355035B74342D42FC4F43] [APT] [RegClean Pro_DEFAULT] (.Systweak Inc.) -- C:\Program Files\RegClean Pro\RegCleanPro.exe
        [MD5.364A9C1A338355035B74342D42FC4F43] [APT] [RegClean Pro_UPDATES] (.Systweak Inc.) -- C:\Program Files\RegClean Pro\RegCleanPro.exe
        [MD5.70B6D0C45256B688B7DBC10E922FB402] [APT] [{4771AB95-BCC9-47FB-9905-284DC3E0C215}] (.Skype Technologies S.A..) -- C:\Program Files\Skype\Phone\Skype.exe
        ~ Scan Scheduled Task in 00mn 03s

        ---\\ Pilotes lancés au démarrage (O41)
        O41 - Driver: (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
        O41 - Driver: (avipbb) . (.Avira GmbH - Avira Driver for Security Enhancement.) - C:\Windows\system32\DRIVERS\avipbb.sys
        O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\DRIVERS\cdrom.sys
        O41 - Driver: C:\Windows\system32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\system32\Drivers\dfsc.sys
        O41 - Driver: (i8042prt) . (.Microsoft Corporation - Pilote de port i8042.) - C:\Windows\system32\DRIVERS\i8042prt.sys
        O41 - Driver: (kbdclass) . (.Microsoft Corporation - Pilote de la classe Clavier.) - C:\Windows\system32\DRIVERS\kbdclass.sys
        O41 - Driver: (kbdhid) . (.Microsoft Corporation - Pilote de filtre clavier HID.) - C:\Windows\system32\DRIVERS\kbdhid.sys
        O41 - Driver: (mouclass) . (.Microsoft Corporation - Pilote de la classe Souris.) - C:\Windows\system32\DRIVERS\mouclass.sys
        O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\system32\DRIVERS\netbios.sys
        O41 - Driver: (netbt) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\system32\DRIVERS\netbt.sys
        O41 - Driver: (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\system32\drivers\nsiproxy.sys
        O41 - Driver: C:\Windows\system32\drivers\pacer.sys (PSched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\system32\DRIVERS\pacer.sys
        O41 - Driver: (RasAcd) . (.Microsoft Corporation - RAS Automatic Connection Driver.) - C:\Windows\system32\DRIVERS\rasacd.sys
        O41 - Driver: (rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\Windows\system32\DRIVERS\rdbss.sys
        O41 - Driver: (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\system32\DRIVERS\RDPCDD.sys
        O41 - Driver: (RDPENCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\system32\drivers\rdpencdd.sys
        O41 - Driver: C:\Windows\system32\tcpipcfg.dll (Smb) . (.Microsoft Corporation - SMB Transport driver.) - C:\Windows\system32\DRIVERS\smb.sys
        O41 - Driver: (ssmdrv) . (.Avira GmbH - AVIRA SnapShot Driver.) - C:\Windows\system32\DRIVERS\ssmdrv.sys
        O41 - Driver: C:\Windows\system32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\system32\DRIVERS\tdx.sys
        O41 - Driver: (TermDD) . (.Microsoft Corporation - Terminal Server Driver.) - C:\Windows\system32\DRIVERS\termdd.sys
        O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
        O41 - Driver: (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\system32\DRIVERS\wanarp.sys
        ~ Scan Drivers in 00mn 00s

        ---\\ Logiciels installés (O42)
        O42 - Logiciel: Activation Assistant for the 2007 Microsoft Office suites - (.Microsoft Corporation.) [HKLM] -- Activation Assistant for the 2007 Microsoft Office suites
        O42 - Logiciel: ActiveCheck component for HP Active Support Library - (.Hewlett-Packard.) [HKLM] -- {254C37AA-6B72-4300-84F6-98A82419187E}
        O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
        O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin
        O42 - Logiciel: Adobe Reader 9 - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-A90000000001}
        O42 - Logiciel: Adobe Shockwave Player - (.Adobe Systems, Inc..) [HKLM] -- {AD72CFB4-C2BF-424E-9DF0-C7BAD1F30A11}
        O42 - Logiciel: Adobe Shockwave Player 11.6 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player
        O42 - Logiciel: Age of Empires III - (.Microsoft Game Studios.) [HKLM] -- InstallShield_{70F8B183-99EB-4304-BA35-080E2DFFD2A3}
        O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {B2D328BE-45AD-4D92-96F9-2151490A203E}
        O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {85991ED2-010C-4930-96FA-52F43C2CE98A}
        O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {C41300B9-185D-475E-BFEC-39EF732F19B1}
        O42 - Logiciel: Assistant de connexion Windows Live - (.Microsoft Corporation.) [HKLM] -- {DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
        O42 - Logiciel: Atheros Driver Installation Program - (.Atheros.) [HKLM] -- {C3A32068-8AB1-4327-BB16-BED9C6219DC7}
        O42 - Logiciel: Avira AntiVir Personal - Free Antivirus - (.Avira GmbH.) [HKLM] -- Avira AntiVir Desktop
        O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {0CB9668D-F979-4F31-B8B8-67FE90F929F8}
        O42 - Logiciel: Call of Juarez - (.Ubisoft.) [HKLM] -- InstallShield_{3E7940A4-495B-4DC5-B5C9-D2EE1DE9E5EF}
        O42 - Logiciel: Compatibility Pack for the 2007 Office system - (.Microsoft Corporation.) [HKLM] -- {90120000-0020-0409-0000-0000000FF1CE}
        O42 - Logiciel: Conduit Engine - (.Conduit Ltd..) [HKLM] -- conduitEngine
        O42 - Logiciel: CyberLink DVD Suite - (.CyberLink Corp..) [HKLM] -- InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}
        O42 - Logiciel: CyberLink DVD Suite - (.CyberLink Corp..) [HKLM] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}
        O42 - Logiciel: CyberLink PowerDVD 9 - (.CyberLink Corp..) [HKLM] -- InstallShield_{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}
        O42 - Logiciel: CyberLink PowerDVD 9 - (.CyberLink Corp..) [HKLM] -- {A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}
        O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}
        O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D}
        O42 - Logiciel: ESU for Microsoft Vista - (.Hewlett-Packard.) [HKLM] -- {3877C901-7B90-4727-A639-B6ED2DD59D43}
        O42 - Logiciel: Favorit (nucjq) - (.Pas de propriétaire.) [HKLM] -- nucjq
        O42 - Logiciel: Fissa - (.Secure Digital Services.) [HKLM] -- Fissa
        O42 - Logiciel: Game Alarm - (.Pas de propriétaire.) [HKCU] -- gamealarm-DEFAULT
        O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome
        O42 - Logiciel: Google Talk Plugin - (.Google.) [HKLM] -- {82705358-3BD6-3CD5-AA9A-B8F058BE3A29}
        O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C}
        O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
        O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
        O42 - Logiciel: HP Active Support Library - (.Hewlett-Packard.) [HKLM] -- {CE7E3BE0-2DD3-4416-A690-F9E4A99A8CFF}
        O42 - Logiciel: HP Common Access Service Library - (.Hewlett-Packard.) [HKLM] -- {732A3F80-008B-4350-BD58-EC5AE98707B8}
        O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM] -- {57A5AEC1-97FC-474D-92C4-908FCC2253D4}
        O42 - Logiciel: HP DVD Play 3.7 - (.Hewlett-Packard.) [HKLM] -- {45D707E9-F3C4-11D9-A373-0050BAE317E1}
        O42 - Logiciel: HP Help and Support - (.Hewlett-Packard Company.) [HKLM] -- {0054A0F6-00C9-4498-B821-B5C9578F433E}
        O42 - Logiciel: HP Quick Launch Buttons 6.40 M1 - (.Hewlett-Packard.) [HKLM] -- {34D2AB40-150D-475D-AE32-BD23FB5EE355}
        O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM] -- {47F36D92-E58E-456D-B73C-3382737E4C42}
        O42 - Logiciel: HP User Guides 0138 - (.Hewlett-Packard.) [HKLM] -- {17050C48-16CB-4500-A102-CEAD750CE11E}
        O42 - Logiciel: HP Wireless Assistant - (.Hewlett-Packard.) [HKLM] -- {E5E29403-3D25-40C6-892B-F9FEE2A95585}
        O42 - Logiciel: HPAsset component for HP Active Support Library - (.Hewlett-Packard.) [HKLM] -- {669D4A35-146B-4314-89F1-1AC3D7B88367}
        O42 - Logiciel: HPNetworkAssistant - (.Hewlett-Packard..) [HKLM] -- {228C6B46-64E2-404E-898A-EF0830603EF4}
        O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB953595
        O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB958484
        O42 - Logiciel: IDT Audio - (.IDT.) [HKLM] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}
        O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- WinLiveSuite_Wave3
        O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- {46ABBC54-1872-4AA3-95E2-F2C063A63F31}
        O42 - Logiciel: Java(TM) 6 Update 21 - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216011FF}
        O42 - Logiciel: Kit Internet Mobile Bouygues Telecom - (.Pas de propriétaire.) [HKLM] -- {93D34EE3-99B3-4DB1-8B0A-0A657466F90D}
        O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}
        O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243}
        O42 - Logiciel: LightScribe System Software 1.14.17.1 - (.LightScribe.) [HKLM] -- {0E7DBD52-B097-4F2B-A7C7-F105B0D20FDB}
        O42 - Logiciel: LimeWire 5.6.2 - (.Lime Wire, LLC.) [HKLM] -- LimeWire
        O42 - Logiciel: Logiciel d'archivage WinRAR - (.Pas de propriétaire.) [HKLM] -- WinRAR archiver
        O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
        O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
        O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
        O42 - Logiciel: Malwarebytes' Anti-Malware version 1.51.2.1300 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1
        O42 - Logiciel: Microsoft .NET Framework 3.5 Language Pack SP1 - fra - (.Microsoft Corporation.) [HKLM] -- {3E31821C-7917-367E-938E-E65FC413EA31}
        O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 SP1
        O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
        O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile
        O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}
        O42 - Logiciel: Microsoft .NET Framework 4 Client Profile FRA Language Pack - (.Microsoft Corporation.) [HKLM] -- {0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E}
        O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
        O42 - Logiciel: Microsoft Office PowerPoint Viewer 2007 (French) - (.Microsoft Corporation.) [HKLM] -- {95120000-00AF-040C-0000-0000000FF1CE}
        O42 - Logiciel: Microsoft Office XP Professional - (.Microsoft Corporation.) [HKLM] -- {9211040C-6000-11D3-8CFE-0050048383C9}
        O42 - Log
        0
        1. ouups je t'ai copier le texte qui est en faite un peu long, voici le lien du cite:

          http://www.cijoint.fr/cjlink.php?file=cj201110/cijz0ukuGn.txt

          Pour info j'ai encore le virus present sur l'ordi..

          merci d'avance pour ton aide
          0
          1. Bonsoir,

            Je prends le temps d'analyser le rapport puis je reviendrai sur le forum un peu plus tard.
            A demain.
            0
        2. Bonsoir popov4083,

          Houlala!!!!!! je viens d'examiner ZHPDiag et c'est une vrai fourmilière ton ordinateur.
          Alors voici ce que tu vas faire:

          /!\ Attention /!\
          Le logiciel qui suit peut faire des dégâts en cas de mauvaise utilisation ! A utiliser uniquement avec une aide appropriée.

          /!\ Désactive tous tes logiciels de protection /!\

          * Télécharge ComboFix (de sUBs) sur ton Bureau.
          * Fais un clic droit sur ComboFix.exe puis sélectionne "Exécuter en tant qu'administrateur" afin de le lancer.
          * Ne touche à rien pendant le scan.
          * Lorsque la recherche sera terminée, un rapport apparaîtra. Poste ce rapport (C:\Combofix.txt) ICI.

          Tutoriel officiel de Combofix : https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix

          A bientôt.
          0
          1. bonjour heraultais 34600

            J'ai fais ce que tu m'as demander, voici le rapport:

            http://www.cijoint.fr/cjlink.php?file=cj201110/cijvvhtsyB.txt

            Merci de ton aide

            a bientot
            0
            1. Bonsoir popov4083,

              Phase 1:
              Télécharge le fichier joint sur ce lien
              Enregistre-le sur ton bureau
              Fais glisser ce fichier sur l'icône de ComboFix
              L'outil va travailler et ton ordinateur doit rebooter
              Après passage du script, récupère le rapport de combofix et envoie-le moi (Il sera enregistré sous C:\Combofix.txt )

              Phase 2:
              Relance ZHPDiag et renvoie-moi le rapport.

              A bientôt.
              0
              1. Bonjour Heraultais34600,

                Petit souci sur le dernier truc que tu m'as demander, lorsque je fais glisser le doc txt sur combofix, il me demande cfspript est en cours d'execution, et il mets que le nom cfscript semble mal ecrit!!!!
                et la combofix s'arrete....
                ???

                A bientot
                0
                1. Bonsoir popov4083,

                  Vérifie bien que le fichier texte s'appelle CFScript.txt

                  D'après ce que tu me dis il semblerait s'appeler CFSpript.txt (ce n'est pas bon. OK!!)
                  0
                2. Effectivement j'ai du renommer le fichier txt, il avait un tout autre nom...

                  Donc tout d abord le rapport combofix:

                  http://www.cijoint.fr/cjlink.php?file=cj201110/cijEP0TxYs.txt

                  ensuite le rapport ZHPDiag:

                  http://www.cijoint.fr/cjlink.php?file=cj201110/cijaWRp5CK.txt

                  Voila,

                  merci et a bientôt
                  0
              2. Bonsoir popov4083,

                Beaucoup d'infections dont un rootkit, alors on va commencer par lui.

                Etape 1:

                Télécharge Reload_TDSSKiller sur ton bureau
                Clic droit dessus puis sélectionne "Exécuter en tant qu'administrateur
                Choisis : télécharger la derniere version
                Relance-le comme ci-dessus
                Sélectionne "lancer le nettoyage"
                TDSSKiller va s'ouvrir , clique sur "Start Scan"
                Une fois qu'il a terminé , redemarre s'il te le demande pour finir de nettoyer sinon, ferme tdssKiller et le rapport s'affichera sur le bureau
                Enregistre ce rapport puis envoies-le sur ce site
                Copie/Colle le lien dans ta prochaine réponse.

                Etape 2:

                Relance ComboFix puis envoie-moi le rapport

                A+
                0
                1. Salut Heraultais34600,

                  le rapport de tdsskiller:

                  http://www.cijoint.fr/cj201110/cijAu2y0SW.txt

                  et le nouveau rapport de combofix:

                  http://www.cijoint.fr/cjlink.php?file=cj201110/cijBV8AFg5.txt

                  Merci
                  0
                  1. Bonsoir popov4083,

                    Bien TDSSKiller a supprimé un rootkit, nous allons poursuivre avec ComboFix qui a commencé à faire du nettoyage.

                    Etape 1:

                    Mets en surbrillance tout ce qui est gras ci-dessous

                    KillAll::
                    File::
                    C:\Users\Compaq\AppData\Local\epaakba.bat
                    C:\Windows\system32\prncap.exe
                    Folder::
                    C:\Windows\system32\7D018101675AB0F4CECC95EACE72256E
                    Reboot::
                    Quit::

                    Fais un clic droit puis sélectionne "copier"
                    Colle le texte dans le bloc-notes
                    Enregistre ce fichier sur ton bureau sous le nom CFScript.txt (très important, ne change pas le nom)
                    Fais glisser ce fichier (CFScript.txt) sur l'icône de ComboFix
                    A la fin du travail, l'ordinateur doit redémarrer
                    Après le redémarrage envoie-moi le rapport qu'aura établit ComboFix

                    Etape2:


                    Refais un scan de ZHPDiag et envoie-moi le rapport.

                    A bientôt.
                    0
                    1. salut heraulais34600,

                      J'ai fais ce que tu m'as demandé,

                      tout d'abord le rapport combofix:

                      http://www.cijoint.fr/cjlink.php?file=cj201110/cijRlnFdUr.txt

                      Ensuite le rapport ZHPdiad:

                      http://www.cijoint.fr/cjlink.php?file=cj201110/cijAeZBoYu.txt

                      Bon visiblement mon ordi a l'air bien pourri, vais peu etre penser a changer mon antivirus.....

                      merci a toi

                      A plus
                      0
                      1. Bonjour Popov4083,

                        Tu dis:
                        Bon visiblement mon ordi a l'air bien pourri, vais peut être penser a changer mon antivirus.....

                        Ton ordinateur n'est pas pourri, ton système d'exploitation est bien infecté !!!!!

                        Bien ComboFix a fait du nettoyage. Nous allons poursuivre la désinfection, tu vas faire ceci:

                        Etape 1:
                        Télécharge AdwCleaner ( d'Xplode ) sur ton bureau.
                        Lance-le, clique sur [Recherche] puis patiente le temps du scan.
                        Une fois le scan fini, un rapport s'ouvrira.
                        Note : Le rapport est également sauvegardé sous C:\AdwCleaner[R1].txt
                        Sauvegarde ce rapport puis envoie-le sur www.cijoint.fr
                        Envoie-moi le lien de ce rapport.

                        Etape 2:
                        Désinstalle Java
                        Puis va sur ce lien pour installer la nouvelle version.
                        Un logiciel non à jour comporte des failles de sécurité qui favorisent l'entrée des infections par ces failles de sécurité.

                        Etape 3:
                        Mets à jour ton système il semblerait pas à jour

                        Mets à jour Internet Explorer. Même si tu ne t'en sers pas, il doit impérativement être mis à jour (toujours ces failles de sécurité)

                        Mets à jour Adobe reader (nous sommes à la version 10)

                        Tu as Avira Antivir comme Antivirus. C'est un bon antivirus gratuit. Tes infections ne sont pas directement liées à l'antivirus mais davantage à ton comportement de sécurité.
                        ATTENTION par exemple aux sites de jeux, aux sites de partage de fichiers. Un réseau de partage de fichiers n'est pas du tout sûr et devient donc un premier vecteur d'infections.

                        Voilà à plus tard car il reste encore de la désinfection à entreprendre.
                        0
                        1. salut,

                          Voila c'est fait, j'ai fais toute les mises à jour possible.

                          le rapport de adwcleaner:

                          http://www.cijoint.fr/cjlink.php?file=cj201110/cijaXyRDwE.txt

                          Merci d'avance
                          et bon fin de week end!!

                          tchuss
                          0
                          1. Bonsoir popov4083,

                            Eh bien dis donc c'était la totale ton ordinateur, tu crois pas?

                            Allez on poursuite:
                            Relance AdwCleaner qui est sur ton bureau, clique sur [Suppression] puis patiente le temps du travail.
                            Une fois le travail fini, un rapport s'ouvrira.
                            Note : Le rapport est également sauvegardé sous C:\AdwCleaner[S1].txt
                            Sauvegarde ce rapport puis envoie-le sur www.cijoint.fr
                            Envoie-moi le lien de ce rapport.

                            Après toutes ces étapes dis-moi comment se comporte ton ordinateur?
                            A+
                            0
                            1. Salut,

                              Ca y est j'ai fais supprimer sur adwcleaner, voici le rapport:

                              la page ci joint.fr n'existe plus....
                              je te fais un copier coller!!

                              Pour un info mon ordi se comporte plutot normalement, il est peut etre un peu plus lent depuis j'ai supprimé depuis adwcleaner, mais dans tous les cas je n'ai plus de troyen sur l'ordi.!!!
                              Vais essayer de le redémarrer!!

                              merci à toute

                              # AdwCleaner v1.315 - Rapport créé le 02/11/2011 à 14:35:07
                              # Mis à jour le 27/10/11 à 14h par Xplode
                              # Système d'exploitation : Windows Vista (TM) Home Basic Service Pack 2 (32 bits)
                              # Nom d'utilisateur : Compaq - PC-DE-TOURNADE (Droits Limités)
                              # Exécuté depuis : C:\Users\Compaq\Desktop\adwcleaner0.exe
                              # Option [Suppression]

                              ***** [KillNav] *****

                              # firefox.exe [PID:3288] -> Tué

                              ***** [Processus] *****

                              Tué : [PID:3564] Updater.exe

                              ***** [Services] *****

                              ***** [Fichiers / Dossiers] *****

                              Dossier Supprimé : C:\ProgramData\SweetIM
                              Dossier Supprimé : C:\Users\Compaq\AppData\Roaming\FissaSearch
                              Dossier Supprimé : C:\Users\Compaq\AppData\LocalLow\Conduit
                              Dossier Supprimé : C:\Users\Compaq\AppData\LocalLow\ConduitEngine
                              Dossier Supprimé : C:\Users\Compaq\AppData\LocalLow\Search Settings
                              Dossier Supprimé : C:\Users\Compaq\AppData\LocalLow\pdfforge
                              Dossier Supprimé : C:\Users\Compaq\AppData\LocalLow\PriceGong
                              Dossier Supprimé : C:\Program Files\Conduit
                              Dossier Supprimé : C:\Program Files\ConduitEngine
                              Dossier Supprimé : C:\Program Files\pdfforge Toolbar
                              Dossier Supprimé : C:\Program Files\SweetIM
                              Dossier Supprimé : C:\Users\Compaq\AppData\Roaming\Mozilla\Firefox\Profiles\vtbd3xgy.default\Conduit
                              Dossier Supprimé : C:\Users\Compaq\AppData\Roaming\Mozilla\Firefox\Profiles\vtbd3xgy.default\ConduitCommon

                              ***** [Registre] *****

                              Clé Supprimée : HKCU\Software\FissaSearch
                              Clé Supprimée : HKCU\Software\Headlight
                              Clé Supprimée : HKCU\Software\Search Settings
                              Clé Supprimée : HKCU\Software\SweetIm
                              Clé Supprimée : HKCU\Software\AppDataLow\Toolbar
                              Clé Supprimée : HKCU\Software\AppDataLow\Software\Conduit
                              Clé Supprimée : HKCU\Software\AppDataLow\Software\conduitEngine
                              Clé Supprimée : HKCU\Software\AppDataLow\Software\pdfforge
                              Clé Supprimée : HKCU\Software\AppDataLow\Software\PriceGong
                              Clé Supprimée : HKLM\SOFTWARE\Conduit
                              Clé Supprimée : HKLM\SOFTWARE\conduitEngine
                              Clé Supprimée : HKLM\SOFTWARE\pdfforge
                              Clé Supprimée : HKLM\SOFTWARE\Search Settings
                              Clé Supprimée : HKLM\SOFTWARE\SweetIM
                              Clé Supprimée : HKLM\SOFTWARE\Classes\Conduit.Engine
                              Clé Supprimée : HKLM\SOFTWARE\Classes\MediaPlayer.GraphicsUtils
                              Clé Supprimée : HKLM\SOFTWARE\Classes\MgMediaPlayer.GifAnimator
                              Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{3c471948-f874-49f5-b338-4f214a2ee0b1}
                              Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{A4A0CB15-8465-4F58-A7E5-73084EA2A064}
                              Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{82AC53B4-164C-4B07-A016-437A8388B81A}
                              Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{F4EBB1E2-21F3-4786-8CF4-16EC5925867F}
                              Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{A439801C-961D-452C-AB42-7848E9CBD289}
                              Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{4D3B167E-5FD8-4276-8FD7-9DF19C1E4D19}
                              Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
                              Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B922D405-6D13-4A2B-AE89-08A030DA4402}
                              Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\SweetIM.exe
                              Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\conduitEngine

                              ***** [Navigateurs] *****

                              -\\ Internet Explorer v7.0.6002.18005

                              Remplacé : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main - Start Page] = hxxp://home.sweetim.com --> hxxp://www.google.fr

                              -\\ Mozilla Firefox v7.0.1 (fr)

                              Profil : vtbd3xgy.default
                              Fichier : C:\Users\Compaq\AppData\Roaming\Mozilla\Firefox\Profiles\vtbd3xgy.default\prefs.js

                              Supprimée : user_pref("CT2851639..clientLogIsEnabled", true);
                              Supprimée : user_pref("CT2851639..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");
                              Supprimée : user_pref("CT2851639..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation");
                              Supprimée : user_pref("CT2851639.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
                              Supprimée : user_pref("CT2851639.AppTrackingLastCheckTime", "Sun Oct 30 2011 20:34:03 GMT+0100");
                              Supprimée : user_pref("CT2851639.CTID", "CT2851639");
                              Supprimée : user_pref("CT2851639.CurrentServerDate", "2-11-2011");
                              Supprimée : user_pref("CT2851639.DialogsAlignMode", "LTR");
                              Supprimée : user_pref("CT2851639.DialogsGetterLastCheckTime", "Sun Oct 30 2011 09:30:00 GMT+0100");
                              Supprimée : user_pref("CT2851639.DownloadReferralCookieData", "");
                              Supprimée : user_pref("CT2851639.EMailNotifierPollDate", "Wed Nov 02 2011 14:29:56 GMT+0100");
                              Supprimée : user_pref("CT2851639.FeedLastCount2548968607390276962", 550);
                              Supprimée : user_pref("CT2851639.FeedPollDate129351529712775081", "Tue Jun 21 2011 20:59:51 GMT+0200");
                              Supprimée : user_pref("CT2851639.FeedPollDate129351529712775087", "Tue Jun 21 2011 20:59:51 GMT+0200");
                              Supprimée : user_pref("CT2851639.FeedPollDate129351529712775093", "Tue Jun 21 2011 20:59:51 GMT+0200");
                              Supprimée : user_pref("CT2851639.FeedPollDate129351529712775099", "Tue Jun 21 2011 20:59:51 GMT+0200");
                              Supprimée : user_pref("CT2851639.FeedPollDate129351529712775105", "Tue Jun 21 2011 20:59:51 GMT+0200");
                              Supprimée : user_pref("CT2851639.FeedPollDate129351529712775111", "Tue Jun 21 2011 20:59:51 GMT+0200");
                              Supprimée : user_pref("CT2851639.FeedPollDate129351529712775117", "Tue Jun 21 2011 20:59:51 GMT+0200");
                              Supprimée : user_pref("CT2851639.FeedPollDate129351529712775123", "Tue Jun 21 2011 20:59:51 GMT+0200");
                              Supprimée : user_pref("CT2851639.FeedPollDate129351529712775129", "Tue Jun 21 2011 20:59:51 GMT+0200");
                              Supprimée : user_pref("CT2851639.FeedPollDate129351529712775135", "Tue Jun 21 2011 20:59:51 GMT+0200");
                              Supprimée : user_pref("CT2851639.FeedPollDate129351529712775141", "Tue Jun 21 2011 20:59:51 GMT+0200");
                              Supprimée : user_pref("CT2851639.FeedPollDate2429156812186649977", "Tue Nov 01 2011 22:54:11 GMT+0100");
                              Supprimée : user_pref("CT2851639.FeedPollDate2429156813040823546", "Tue Nov 01 2011 22:54:10 GMT+0100");
                              Supprimée : user_pref("CT2851639.FeedPollDate2429156813130095866", "Tue Nov 01 2011 22:54:09 GMT+0100");
                              Supprimée : user_pref("CT2851639.FeedPollDate2429156813224203613", "Tue Nov 01 2011 22:54:09 GMT+0100");
                              Supprimée : user_pref("CT2851639.FeedPollDate2429156813230837251", "Tue Nov 01 2011 22:54:10 GMT+0100");
                              Supprimée : user_pref("CT2851639.FeedPollDate2429156813454291735", "Tue Nov 01 2011 22:54:10 GMT+0100");
                              Supprimée : user_pref("CT2851639.FeedPollDate2429156813729834876", "Tue Nov 01 2011 22:54:09 GMT+0100");
                              Supprimée : user_pref("CT2851639.FeedPollDate2429156813860870021", "Tue Nov 01 2011 22:54:11 GMT+0100");
                              Supprimée : user_pref("CT2851639.FeedPollDate2429156814264681793", "Tue Nov 01 2011 22:54:10 GMT+0100");
                              Supprimée : user_pref("CT2851639.FeedPollDate2429156814863075366", "Tue Nov 01 2011 22:54:10 GMT+0100");
                              Supprimée : user_pref("CT2851639.FeedPollDate2429156815257761081", "Tue Nov 01 2011 22:54:10 GMT+0100");
                              Supprimée : user_pref("CT2851639.FeedTTL129351529712775081", 10);
                              Supprimée : user_pref("CT2851639.FeedTTL129351529712775105", 15);
                              Supprimée : user_pref("CT2851639.FeedTTL129351529712775117", 5);
                              Supprimée : user_pref("CT2851639.FeedTTL129351529712775129", 5);
                              Supprimée : user_pref("CT2851639.FeedTTL2429156813040823546", 15);
                              Supprimée : user_pref("CT2851639.FeedTTL2429156813130095866", 10);
                              Supprimée : user_pref("CT2851639.FeedTTL2429156813454291735", 5);
                              Supprimée : user_pref("CT2851639.FeedTTL2429156814264681793", 5);
                              Supprimée : user_pref("CT2851639.FirstServerDate", "6-1-2011");
                              Supprimée : user_pref("CT2851639.FirstTime", true);
                              Supprimée : user_pref("CT2851639.FirstTimeFF3", true);
                              Supprimée : user_pref("CT2851639.FixPageNotFoundErrors", false);
                              Supprimée : user_pref("CT2851639.GroupingServerCheckInterval", 1440);
                              Supprimée : user_pref("CT2851639.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
                              Supprimée : user_pref("CT2851639.HasUserGlobalKeys", true);
                              Supprimée : user_pref("CT2851639.HomePageProtectorEnabled", false);
                              Supprimée : user_pref("CT2851639.Initialize", true);
                              Supprimée : user_pref("CT2851639.InitializeCommonPrefs", true);
                              Supprimée : user_pref("CT2851639.InstallationAndCookieDataSentCount", 3);
                              Supprimée : user_pref("CT2851639.InstallationType", "UnknownIntegration");
                              Supprimée : user_pref("CT2851639.InstalledDate", "Thu Jan 06 2011 14:31:00 GMT+0100");
                              Supprimée : user_pref("CT2851639.IsAlertDBUpdated", true);
                              Supprimée : user_pref("CT2851639.IsGrouping", false);
                              Supprimée : user_pref("CT2851639.IsMulticommunity", false);
                              Supprimée : user_pref("CT2851639.IsOpenThankYouPage", true);
                              Supprimée : user_pref("CT2851639.IsOpenUninstallPage", false);
                              Supprimée : user_pref("CT2851639.LanguagePackLastCheckTime", "Tue Nov 01 2011 22:54:10 GMT+0100");
                              Supprimée : user_pref("CT2851639.LanguagePackReloadIntervalMM", 1440);
                              Supprimée : user_pref("CT2851639.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx");
                              Supprimée : user_pref("CT2851639.LastLogin_3.2.5.2", "Mon May 16 2011 17:56:54 GMT+0200");
                              Supprimée : user_pref("CT2851639.LastLogin_3.3.3.2", "Tue Aug 16 2011 22:24:46 GMT+0200");
                              Supprimée : user_pref("CT2851639.LastLogin_3.6.0.10", "Fri Sep 23 2011 12:08:41 GMT+0200");
                              Supprimée : user_pref("CT2851639.LastLogin_3.7.0.6", "Tue Nov 01 2011 22:54:09 GMT+0100");
                              Supprimée : user_pref("CT2851639.LatestVersion", "3.7.0.6");
                              Supprimée : user_pref("CT2851639.Locale", "fr");
                              Supprimée : user_pref("CT2851639.MCDetectTooltipHeight", "83");
                              Supprimée : user_pref("CT2851639.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
                              Supprimée : user_pref("CT2851639.MCDetectTooltipWidth", "295");
                              Supprimée : user_pref("CT2851639.MyStuffEnabledAtInstallation", true);
                              Supprimée : user_pref("CT2851639.SHRINK_TOOLBAR", 1);
                              Supprimée : user_pref("CT2851639.SearchBoxWidth", 159);
                              Supprimée : user_pref("CT2851639.SearchEngineBeforeUnload", "chrome://browser-region/locale/region.properties");
                              Supprimée : user_pref("CT2851639.SearchFromAddressBarIsInit", true);
                              Supprimée : user_pref("CT2851639.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2851639&q=");
                              Supprimée : user_pref("CT2851639.SearchInNewTabEnabled", true);
                              Supprimée : user_pref("CT2851639.SearchInNewTabIntervalMM", 1440);
                              Supprimée : user_pref("CT2851639.SearchInNewTabLastCheckTime", "Tue Nov 01 2011 22:54:09 GMT+0100");
                              Supprimée : user_pref("CT2851639.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID");
                              Supprimée : user_pref("CT2851639.SearchInNewTabUsageUrl", "hxxp://usage.hosting.toolbar.conduit-services.com/usage.ashx?ctid=EB_TOOLBAR_ID");
                              Supprimée : user_pref("CT2851639.SearchInNewTabUserEnabled", false);
                              Supprimée : user_pref("CT2851639.SearchProtectorEnabled", false);
                              Supprimée : user_pref("CT2851639.SearchProtectorToolbarDisabled", false);
                              Supprimée : user_pref("CT2851639.ServiceMapLastCheckTime", "Tue Nov 01 2011 22:54:09 GMT+0100");
                              Supprimée : user_pref("CT2851639.SettingsLastCheckTime", "Wed Nov 02 2011 14:29:45 GMT+0100");
                              Supprimée : user_pref("CT2851639.SettingsLastUpdate", "1313478221");
                              Supprimée : user_pref("CT2851639.ThirdPartyComponentsInterval", 504);
                              Supprimée : user_pref("CT2851639.ThirdPartyComponentsLastCheck", "Wed Oct 26 2011 17:56:51 GMT+0200");
                              Supprimée : user_pref("CT2851639.ThirdPartyComponentsLastUpdate", "1255348267");
                              Supprimée : user_pref("CT2851639.TrusteLinkUrl", "hxxp://trust.conduit.com/CT2851639");
                              Supprimée : user_pref("CT2851639.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,client.conduit-storage.com,OurToolbar.com,CommunityToolbars.com,ForumToolbar.com,MyBlogToolbar.com,MyCityToolbar.com,MyCollegeToolbar.com,MyFamilyToolbar.com,MyForumToolbar.com,MyLibraryToolbar.com,MyRadioToolbar.com,MyStoreToolbar.com,MyTownToolbar.com,MyUniversityToolbar.com,OurChurchToolbar.com,MyXangaToolbar.com,Media-Toolbar.com,LoyaltyToolbar.com,MyTeamToolbar.com,GreatToolbars.com,OurOrganizationToolbar.com,OurBusinessToolbar.com,Toolbar.fm");
                              Supprimée : user_pref("CT2851639.UserID", "UN73609699901570547");
                              Supprimée : user_pref("CT2851639.ValidationData_Search", 2);
                              Supprimée : user_pref("CT2851639.ValidationData_Toolbar", 2);
                              Supprimée : user_pref("CT2851639.WeatherNetwork", "");
                              Supprimée : user_pref("CT2851639.WeatherPollDate", "Tue Nov 01 2011 22:54:11 GMT+0100");
                              Supprimée : user_pref("CT2851639.WeatherUnit", "C");
                              Supprimée : user_pref("CT2851639.alertChannelId", "1243674");
                              Supprimée : user_pref("CT2851639.approveUntrustedApps", false);
                              Supprimée : user_pref("CT2851639.backendstorage.cb_firstuse0100", "31");
                              Supprimée : user_pref("CT2851639.backendstorage.cbfirsttime", "4672692053657020333020323031312032303A31353A333020474D542B30323030");
                              Supprimée : user_pref("CT2851639.backendstorage.enableinj", "");
                              Supprimée : user_pref("CT2851639.backendstorage.url_history", "6A6176617363726970743A6368616E6765725F67726F75706528273327293B");
                              Supprimée : user_pref("CT2851639.backendstorage.url_history_time", "31333230313834393738313737");
                              Supprimée : user_pref("CT2851639.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.conduit.com;apps.conduit.com;services.apps.conduit.com\",\"AppsDetectionUrlPattern\":\"hxxp://appdownload.conduit.com/\",\"RevertSettingsEnabled\":\"FALSE\"}");
                              Supprimée : user_pref("CT2851639.globalFirstTimeInfoLastCheckTime", "Tue Nov 01 2011 22:54:10 GMT+0100");
                              Supprimée : user_pref("CT2851639.homepageProtectorEnableByLogin", true);
                              Supprimée : user_pref("CT2851639.initDone", true);
                              Supprimée : user_pref("CT2851639.isAppTrackingManagerOn", true);
                              Supprimée : user_pref("CT2851639.myStuffEnabled", true);
                              Supprimée : user_pref("CT2851639.myStuffPublihserMinWidth", 400);
                              Supprimée : user_pref("CT2851639.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&octid=EB_ORIGINAL_CTID");
                              Supprimée : user_pref("CT2851639.myStuffServiceIntervalMM", 1440);
                              Supprimée : user_pref("CT2851639.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE_GUID&lut=EB_MY_STUFF_LUT");
                              Supprimée : user_pref("CT2851639.oldAppsList", "129351529700431300,129351529700743801,111,1000234,129351529700900053,1000034,129422840102831305,129351529701212556,2548968607390276962,129351529703087570,129351529703087571,129544678881551249,1000080,1000082,1000,1001,1002,1003,1004,1005,1006,1007,1008,1009,1010,1011,1012");
                              Supprimée : user_pref("CT2851639.revertSettingsEnabled", true);
                              Supprimée : user_pref("CT2851639.searchProtectorDialogDelayInSec", 10);
                              Supprimée : user_pref("CT2851639.searchProtectorEnableByLogin", true);
                              Supprimée : user_pref("CT2851639.testingCtid", "");
                              Supprimée : user_pref("CT2851639.toolbarAppMetaDataLastCheckTime", "Tue Nov 01 2011 22:54:10 GMT+0100");
                              Supprimée : user_pref("CT2851639.toolbarContextMenuLastCheckTime", "Sat Oct 29 2011 22:28:44 GMT+0200");
                              Supprimée : user_pref("CT2851639.usagesFlag", 2);
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/1243674/1239347/FR", "\"0\"");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/909619/905414/FR", "\"0\"");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT2851639", "\"1290675760\"");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=fr", "kLE3EoupXhh+3ayzzXGurA==");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=fr", "TA2mKqdBHssHhc1ui1OGgQ==");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=fr", "ev2KSD8BFMMs2dxsoAqMuw==");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=fr", "hOlcV9OHcX1OR8Faic1Xmg==");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.alert.conduit-services.com/alert/dlg.pkg", "\"07879643d3acc1:0\"");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.engine.conduit-services.com/DLG.pkg?ver=3.3.3.2", "\"8028f138140cc1:0\"");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.3.3.2", "\"07b2625f8cb1:0\"");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.6.0.10", "\"80ee9485875dcc1:0\"");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.7.0.6", "\"80ee9485875dcc1:0\"");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://facebook.conduit-services.com/Settings.ashx?locale=fr&browserType=FF&toolbarVersion=3.6.0.10", "\"2a84ff-82f-49024409b8900\"");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://newtab.conduit-hosting.com/newtab/?ctid=CT2851639", "\"2a84ff-82f-49024409b8900\"");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT2851639", "\"634553316085800000\"");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/toolbar/", "\"634402944764300000\"");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://settings.engine.conduit-services.com/?browser=FF&lut=0", "634293235860000000");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://settings.engine.conduit-services.com/?browser=FF&lut=1/11/2011 5:25:10 PM", "634335443890000000");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://settings.engine.conduit-services.com/?browser=FF&lut=12/30/2010 4:33:06 PM", "634293235860000000");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://settings.engine.conduit-services.com/?browser=FF&lut=2/17/2011 12:59:49 PM", "634339976460000000");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://settings.engine.conduit-services.com/?browser=FF&lut=2/22/2011 6:54:06 PM", "634356118310000000");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://settings.engine.conduit-services.com/?browser=FF&lut=3/13/2011 11:17:11 AM", "634356118310000000");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://settings.toolbar.conduit-services.com/?ctid=CT2851639&octid=CT2851639", "\"1313478221\"");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://settings.toolbar.search.conduit.com/root/CT2851639/CT2851639", "\"1311168866\"");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://tracking.usage.app.conduit-services.com/FirstTime.ashx?current=True", "\"2a84ff-82f-49024409b8900\"");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=EB_LOCALE", "\"634510680517330000\"");
                              Supprimée : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=fr", "\"864b96cefc08a4496f11285e75305e25\"");
                              Supprimée : user_pref("CommunityToolbar.EngineOwner", "");
                              Supprimée : user_pref("CommunityToolbar.EngineOwnerGuid", "{05eeb91a-aef7-4f8a-978f-fb83e7b03f8e}");
                              Supprimée : user_pref("CommunityToolbar.EngineOwnerToolbarId", "utorrentbar_fr");
                              Supprimée : user_pref("CommunityToolbar.IsEngineShown", true);
                              Supprimée : user_pref("CommunityToolbar.IsMyStuffImportedToEngine", true);
                              Supprimée : user_pref("CommunityToolbar.LatestLibsPath", "file:///C:\\Users\\Compaq\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\vtbd3xgy.default\\conduitCommon\\modules\\3.7.0.6");
                              Supprimée : user_pref("CommunityToolbar.LatestToolbarVersionInstalled", "3.7.0.6");
                              Supprimée : user_pref("CommunityToolbar.MiniIPageGadgetPosition.hxxp://cdn.triplegames.com/shared/apps/gamearcade/arcade.htm?ctId=CT2851639", "228x494");
                              Supprimée : user_pref("CommunityToolbar.MiniIPageGadgetPosition.hxxp://listen.grooveshark.com/ ", "279x117");
                              Supprimée : user_pref("CommunityToolbar.MiniIPageGadgetSize.hxxp://cdn.triplegames.com/shared/apps/gamearcade/arcade.htm?ctId=CT2851639", "744x662");
                              Supprimée : user_pref("CommunityToolbar.MiniIPageGadgetSize.hxxp://youtube.conduitapps.com/v115/gadget.php?appMode=standard ", "483x534");
                              Supprimée : user_pref("CommunityToolbar.OriginalEngineOwner", "CT2851639");
                              Supprimée : user_pref("CommunityToolbar.OriginalEngineOwnerGuid", "{05eeb91a-aef7-4f8a-978f-fb83e7b03f8e}");
                              Supprimée : user_pref("CommunityToolbar.OriginalEngineOwnerToolbarId", "utorrentbar_fr");
                              Supprimée : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "chrome://browser-region/locale/region.properties");
                              Supprimée : user_pref("CommunityToolbar.ToolbarsList", "CT2851639");
                              Supprimée : user_pref("CommunityToolbar.ToolbarsList2", "ConduitEngine,CT2851639");
                              Supprimée : user_pref("CommunityToolbar.alert.alertDialogsGetterLastCheckTime", "Tue May 17 2011 20:54:51 GMT+0200");
                              Supprimée : user_pref("CommunityToolbar.alert.alertInfoInterval", 1440);
                              Supprimée : user_pref("CommunityToolbar.alert.alertInfoLastCheckTime", "Tue Aug 16 2011 08:34:30 GMT+0200");
                              Supprimée : user_pref("CommunityToolbar.alert.clientsServerUrl", "hxxp://alert.client.conduit.com");
                              Supprimée : user_pref("CommunityToolbar.alert.locale", "en");
                              Supprimée : user_pref("CommunityToolbar.alert.loginIntervalMin", 1440);
                              Supprimée : user_pref("CommunityToolbar.alert.loginLastCheckTime", "Tue Aug 16 2011 23:50:09 GMT+0200");
                              Supprimée : user_pref("CommunityToolbar.alert.loginLastUpdateTime", "1313487611");
                              Supprimée : user_pref("CommunityToolbar.alert.messageShowTimeSec", 20);
                              Supprimée : user_pref("CommunityToolbar.alert.servicesServerUrl", "hxxp://alert.services.conduit.com");
                              Supprimée : user_pref("CommunityToolbar.alert.showTrayIcon", false);
                              Supprimée : user_pref("CommunityToolbar.alert.userCloseIntervalMin", 300);
                              Supprimée : user_pref("CommunityToolbar.alert.userId", "c344ea49-57ae-43ec-a9bb-f956ba0162a3");
                              Supprimée : user_pref("CommunityToolbar.facebook.settingsLastCheckTime", "Tue Nov 01 2011 22:54:09 GMT+0100");
                              Supprimée : user_pref("CommunityToolbar.globalUserId", "91fc5d7d-6120-47d8-8532-53585c5801b5");
                              Supprimée : user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true);
                              Supprimée : user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true);
                              Supprimée : user_pref("CommunityToolbar.killedEngine", true);
                              Supprimée : user_pref("CommunityToolbar.notifications.alertDialogsGetterLastCheckTime", "Wed Oct 26 2011 12:20:16 GMT+0200");
                              Supprimée : user_pref("CommunityToolbar.notifications.alertInfoInterval", 1440);
                              Supprimée : user_pref("CommunityToolbar.notifications.alertInfoLastCheckTime", "Tue Nov 01 2011 22:54:18 GMT+0100");
                              Supprimée : user_pref("CommunityToolbar.notifications.clientsServerUrl", "hxxp://alert.client.conduit.com");
                              Supprimée : user_pref("CommunityToolbar.notifications.locale", "en");
                              Supprimée : user_pref("CommunityToolbar.notifications.loginIntervalMin", 1440);
                              Supprimée : user_pref("CommunityToolbar.notifications.loginLastCheckTime", "Tue Nov 01 2011 22:54:10 GMT+0100");
                              Supprimée : user_pref("CommunityToolbar.notifications.loginLastUpdateTime", "1313487611");
                              Supprimée : user_pref("CommunityToolbar.notifications.messageShowTimeSec", 20);
                              Supprimée : user_pref("CommunityToolbar.notifications.servicesServerUrl", "hxxp://alert.services.conduit.com");
                              Supprimée : user_pref("CommunityToolbar.notifications.showTrayIcon", false);
                              Supprimée : user_pref("CommunityToolbar.notifications.userCloseIntervalMin", 300);
                              Supprimée : user_pref("CommunityToolbar.notifications.userId", "900ed083-58a0-4306-9b98-342c5907c4b3");
                              Supprimée : user_pref("CommunityToolbar.undefined", "");

                              -\\ Google Chrome v [Impossible d'obtenir la version]

                              Fichier : C:\Users\Compaq\AppData\Local\Google\Chrome\User Data\Default\Preferences

                              [OK] Le fichier ne contient aucune entrée illégitime.

                              *************************

                              AdwCleaner[R1].txt - [23850 octets] - [30/10/2011 09:32:38]
                              AdwCleaner[S1].txt - [23867 octets] - [02/11/2011 14:35:07]

                              *************************

                              Dossier Temporaire : 66 dossier(s)et 35 fichier(s) supprimés

                              ########## EOF - C:\AdwCleaner[S1].txt - [24089 octets] ##########
                              0
                              1. Bonsoir popov4083,

                                Tu me dis:
                                ---------------------------------------------------------------------------------------------------
                                Pour un info mon ordi se comporte plutot normalement, il est peut etre un peu plus lent depuis j'ai supprimé depuis adwcleaner, mais dans tous les cas je n'ai plus de troyen sur l'ordi.!!!
                                ---------------------------------------------------------------------------------------------------

                                Je l'espère !!!!!

                                Relance ZHPDiag pour un dernier contrôle et envoie-moi le rapport.
                                Si celui-ci est bon, nous passerons à la désinstallation des outils de désinfection et à l'optimisation de ton ordinateur.

                                Bonne soirée.
                                0
                                1. salut,

                                  Voici le rapport zhpdiag, j'espere qu'on tiens le bon bout!!!!

                                  A toute

                                  Rapport de ZHPDiag v1.28.1367 par Nicolas Coolman, Update du 05/10/2011
                                  Run by Compaq at 04/11/2011 14:01:09
                                  Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
                                  State : Nouvelle version disponible

                                  ---\\ Web Browser
                                  MSIE: Internet Explorer v7.0.6002.18005 (Defaut)
                                  MFIE: Mozilla Firefox 7.0.1 v7.0.1
                                  GCIE: Google Chrome v15.0.874.106

                                  ---\\ Windows Product Information
                                  Windows Vista Home Basic Edition, 32-bit Service Pack 2 (Build 6002)
                                  Windows Server License Manager Script : OK
                                  ~ Vista, OEM_SLP channel
                                  System Locked Preinstallation (OEM_SLP) : OK
                                  Windows ID Activation : OK
                                  ~ Windows Partial Key : 44MV3
                                  Windows License : OK
                                  Windows Automatic Updates : OK

                                  ---\\ System Information
                                  ~ Processor: x86 Family 6 Model 23 Stepping 10, GenuineIntel
                                  ~ Operating System: 32 Bits
                                  Boot mode: Normal (Normal boot)
                                  Total RAM: 3038 MB (62% free)
                                  System Restore: Activé (Enable)
                                  System drive C: has 105 GB (47%) free of 223 GB

                                  ---\\ Logged in mode
                                  ~ Computer Name: PC-DE-TOURNADE
                                  ~ User Name: Compaq
                                  ~ All Users Names: Compaq, Administrateur,
                                  ~ Unselected Option: O45,O61,O62,O65,O66,O82
                                  Logged in as Administrator

                                  ---\\ Environnement Variables
                                  ~ System Unit : C:\
                                  ~ %AppData% : C:\Users\Compaq\AppData\Roaming\
                                  ~ %Desktop% : C:\Users\Compaq\Desktop\
                                  ~ %Favorites% : C:\Users\Compaq\Favorites\
                                  ~ %LocalAppData% : C:\Users\Compaq\AppData\Local\
                                  ~ %StartMenu% : C:\Users\Compaq\AppData\Roaming\Microsoft\Windows\Start Menu\
                                  ~ %Windir% : C:\Windows\
                                  ~ %System% : C:\Windows\system32\

                                  ---\\ DOS/Devices
                                  C:\ Hard drive, Flash drive, Thumb drive (Free 105 Go of 223 Go)
                                  D:\ Hard drive, Flash drive, Thumb drive (Free 2 Go of 10 Go)
                                  E:\ CD-ROM drive (Not Inserted)

                                  ---\\ Security Center & Tools Informations
                                  [HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK
                                  [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK
                                  [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
                                  [HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
                                  [HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK
                                  [HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
                                  [HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
                                  [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
                                  [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
                                  [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK
                                  [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK
                                  [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
                                  [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK
                                  [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK
                                  [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: OK
                                  [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK
                                  [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoFolderOptions: OK
                                  [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK
                                  [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoStartMenuSubFolder: OK
                                  [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoResolveSearch: OK
                                  [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoClose: OK
                                  [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK
                                  [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK
                                  [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK
                                  [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoDispScrSavPage: OK
                                  [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
                                  [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
                                  [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK
                                  [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK
                                  [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
                                  [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
                                  [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
                                  [HKLM\SYSTEM\CurrentControlSet\Services] wscsvc : OK
                                  ~ Scan Security Center in 00mn 00s

                                  ---\\ Recherche particulière de fichiers génériques
                                  [MD5.D07D4C3038F3578FFCE1C0237F2A1253] - (.Microsoft Corporation - Explorateur Windows.) (.20/10/2009 - 07:27:36.) -- C:\Windows\Explorer.exe [2926592]
                                  [MD5.4B555106290BD117334E9A08761C035A] - (....) (.02/11/2006 - 10:45:37.) -- C:\Windows\system32\rundll32.exe [44544]
                                  [MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) (.21/01/2008 - 03:33:13.) -- C:\Windows\system32\Wininit.exe [96768]
                                  [MD5.C9551BC170B717B5C9BAEEE972BF3409] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.30/10/2011 - 17:15:15.) -- C:\Windows\system32\wininet.dll [834048]
                                  [MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.20/10/2009 - 07:28:13.) -- C:\Windows\system32\Winlogon.exe [314368]
                                  [MD5.95F5FF73B076576C41740F1A842B9B57] - (....) (.25/02/2009 - 10:48:08.) -- C:\Windows\system32\fr-FR\user32.dll.mui [20480]
                                  [MD5.3911B972B55FEA0478476B2E777B29FA] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.20/06/2011 - 14:58:27.) -- C:\Windows\system32\drivers\AFD.sys [273408] 1916
                                  [MD5.1F05B78AB91C9075565A9D8A4B880BC4] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.20/10/2009 - 07:32:26.) -- C:\Windows\system32\drivers\atapi.sys [19944] 1836
                                  [MD5.7ADD03E75BEB9E6DD102C3081D29840A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.21/01/2008 - 03:33:23.) -- C:\Windows\system32\drivers\Cdfs.sys [70144] 1844
                                  [MD5.6B4BFFB9BECD728097024276430DB314] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/10/2009 - 05:39:17.) -- C:\Windows\system32\drivers\Cdrom.sys [67072] 1812
                                  [MD5.622C41A07CA7E6DD91770F50D532CB6C] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/06/2011 - 15:59:03.) -- C:\Windows\system32\drivers\DfsC.sys [75264] 1884
                                  [MD5.062452B7FFD68C8C042A6261FE8DFF4A] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/10/2009 - 05:42:42.) -- C:\Windows\system32\drivers\HDAudBus.sys [561152] 1916
                                  [MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - (.Microsoft Corporation - Pilote de port i8042.) (.21/01/2008 - 03:32:45.) -- C:\Windows\system32\drivers\i8042prt.sys [54784] 1900
                                  [MD5.8793643A67B42CEC66490B2A0CF92D68] - (.Microsoft Corporation - IP Network Address Translator.) (.21/01/2008 - 03:34:06.) -- C:\Windows\system32\drivers\IpNat.sys [100864] 1868
                                  [MD5.1E94971C4B446AB2290DEB71D01CF0C2] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.20/06/2011 - 14:24:40.) -- C:\Windows\system32\drivers\MRxSmb.sys [106496] 1852
                                  [MD5.ECD64230A59CBD93C85F1CD1CAB9F3F6] - (.Microsoft Corporation - MBT Transport driver.) (.20/10/2009 - 05:45:37.) -- C:\Windows\system32\drivers\netBT.sys [185856] 1820
                                  [MD5.6A4A98CEE84CF9E99564510DDA4BAA47] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.20/10/2009 - 07:32:49.) -- C:\Windows\system32\drivers\ntfs.sys [1083880] 1916
                                  [MD5.0FA9B5055484649D63C303FE404E5F4D] - (.Microsoft Corporation - Pilote de port parallèle.) (.02/11/2006 - 09:51:30.) -- C:\Windows\system32\drivers\Parport.sys [79360] 1900
                                  [MD5.A214ADBAF4CB47DD2728859EF31F26B0] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.21/01/2008 - 03:34:44.) -- C:\Windows\system32\drivers\Rasl2tp.sys [76288] 1916
                                  [MD5.FBC0BACD9C3D7F6956853F64A66E252D] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.21/01/2008 - 03:32:22.) -- C:\Windows\system32\drivers\rdpdr.sys [248832] 1868
                                  [MD5.76B06EB8A01FC8624D699E7045303E54] - (.Microsoft Corporation - TDI Translation Driver.) (.20/10/2009 - 05:45:56.) -- C:\Windows\system32\drivers\tdx.sys [72192] 1812
                                  ~ Scan Generic Processes in 00mn 00s

                                  ---\\ Etat des fichiers cachés (Caché/Total)
                                  ~ Mes images (My Pictures) : 13/6305
                                  ~ Mes musiques (My Musics) : 3/99
                                  ~ Mes Videos (My Videos) : 1/2
                                  ~ Mes Favoris (My Favorites) : 2/29
                                  ~ Mes Documents (My Documents) : 75/2331
                                  ~ Mon Bureau (My Desktop) : 25/870
                                  ~ Menu demarrer (Programs) : 8/51
                                  ~ Scan Hidden Files in 00mn 08s

                                  ---\\ Processus lancés
                                  [MD5.6C4878F3483B959891408B804DE4475C] - (.Synaptics, Inc. - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1410344] [PID.3552]
                                  [MD5.5E5208A733BBCC4571F384754A9A6746] - (.CyberLink Corp. - HP QuickPlay Resident Program.) -- C:\Program Files\HP\QuickPlay\QPService.exe [468264] [PID.3560]
                                  [MD5.2C45AF6FB8AADD7959078CC1B13B1A65] - (. Hewlett-Packard Development Company, L.P. - Quick Launch Buttons.) -- C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe [206128] [PID.3688]
                                  [MD5.690A6DF02625A46ABEE250C6151B7FBA] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\HP\HP Software Update\hpwuSchd2.exe [54576] [PID.3760]
                                  [MD5.692493B9136287C06DE23F7CE823FC40] - (.Hewlett-Packard - HP Wireless Assistant main program.) -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [432432] [PID.3768]
                                  [MD5.23EAC9506A6A2E2888DA9500E70C8DE2] - (.cyberlink - brs.) -- C:\Program Files\CyberLink\Shared files\brs.exe [75048] [PID.3780]
                                  [MD5.9D5E8B45BD348DF0882C69EED0E83111] - (.Avira GmbH - Antivirus System Tray Tool.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [281768] [PID.3812]
                                  [MD5.6E3245DF783E58375B3465F03274743E] - (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [254696] [PID.3840]
                                  [MD5.540FCB7DB4A289EE56557FB5EC3D16AC] - (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray.exe [483420] [PID.3908]
                                  [MD5.4B555106290BD117334E9A08761C035A] - (...) -- C:\Windows\System32\rundll32.exe [44544] [PID.]
                                  [MD5.4A9295C9BE22739D030AB072E9A0B169] - (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2363392] [PID.3944]
                                  [MD5.5D61BE7DB55B026A5D61A3EED09D0EAD] - (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408] [PID.]
                                  [MD5.41A33469C820FCA1F564BFF067C9598A] - (.Trend Micro Inc. - Online Storage Client.) -- C:\Program Files\Trend Micro SafeSync\HrfsClient.exe [2214672] [PID.3976]
                                  [MD5.0222A3F90781E355D096F7A133916A75] - (...) -- C:\Games\Game Alarm\Updater.exe [491520] [PID.884]
                                  [MD5.F28C33D2589F7B89185F3B9445641F84] - (.Pas de propriétaire - HpqToaster Module.) -- C:\Program Files\Hewlett-Packard\Shared\hpqToaster.exe [628016] [PID.3644]
                                  [MD5.C7345A1537179386FF074507550F058A] - (.Europe Support Ltd. N.V. - Gamealarm.) -- C:\Games\Game Alarm\gamealarm.exe [19721728] [PID.1964]
                                  [MD5.C8649EDF4955DE896A7AED515C932B09] - (.Synaptics, Inc. - Synaptics Pointing Device Helper.) -- C:\Program Files\Synaptics\SynTP\SynTPHelper.exe [103720] [PID.3028]
                                  [MD5.62BB79160F86CD962F312C68C6239BFD] - (.Microsoft Corporation - Windows Update.) -- C:\Windows\system32\wuauclt.exe [53472] [PID.3988]
                                  [MD5.7B2E3899314974CC40D93A6CD7C855C8] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [2134016] [PID.1088]
                                  [MD5.6080A176D09435FC8E6E800996656E18] - (.Microsoft Corporation - Console IME.) -- C:\Windows\system32\conime.exe [69120] [PID.436]
                                  [MD5.31F3ABA02E5531E4B96977BA475EAA31] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 179.3.) -- C:\Windows\system32\nvvsvc.exe [203296] [PID.]
                                  [MD5.B56EE2666F0B6019B6206FB3664BAF03] - (.IDT, Inc. - IDT PC Audio.) -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_fa807195\STacSV.exe [249938] [PID.]
                                  [MD5.862BB4CBC05D80C5B45BE430E5EF872F] - (.Microsoft Corporation - Service de gestion des licences Microsoft.) -- C:\Windows\system32\SLsvc.exe [3408896] [PID.]
                                  [MD5.A5BCBAF0477C4869B67E0195AEA4A9CD] - (.Avira GmbH - Antivirus Scheduler.) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe [136360] [PID.]
                                  [MD5.11A52CF7B265631DEEB24C6149309EFF] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [64952] [PID.]
                                  [MD5.087B04CA45E2F059A55709B0B8F95EA9] - (.Andrea Electronics Corporation - Andrea filters APO access service (32-bit).) -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_fa807195\aestsrv.exe [81920] [PID.]
                                  [MD5.3CCE4AFA4AACDB28E01A148394212186] - (.Avira GmbH - Antivirus On-Access Service.) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe [269480] [PID.]
                                  [MD5.2E3E53A6AEF23E24F402C7855B9B1542] - (.Apple Inc. - Apple Mobile Device Service.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [144176] [PID.]
                                  [MD5.5AB58C337AC65837FE404462AD6265AB] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [345376] [PID.]
                                  [MD5.ABF90FC5A127F481219B873C1B8DFC1C] - (.Hewlett-Packard Company - LightScribe Service.) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe [73728] [PID.]
                                  [MD5.831883B107684301F48ACE752C963984] - (...) -- C:\Windows\system32\PnkBstrA.exe [66872] [PID.]
                                  [MD5.E24106A5EAECDDFF00B25497049DD65F] - (...) -- C:\Windows\system32\PnkBstrB.exe [107832] [PID.]
                                  [MD5.2063D6B51FD874E67502B31A9FDBA685] - (.Pas de propriétaire - STServices.) -- C:\Program Files\SMINST\BLService.exe [365952] [PID.]
                                  [MD5.CDE000884FD7BAF0C1FDFE029B0891DE] - (.Avira GmbH - AntiVir shadow copy service.) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe [76968] [PID.]
                                  [MD5.498EB62A160674E793FA40FD65390625] - (.Pas de propriétaire - RichVideo Module.) -- C:\Program Files\CyberLink\Shared files\RichVideo.exe [247152] [PID.]
                                  [MD5.188FF0ADF66768D53AD94F43972E1E9A] - (.Hewlett-Packard Development Company, L.P. - hpqwmiex Module.) -- C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [223232] [PID.]
                                  [MD5.2F27104F5D6ED63FDAC38CACB9D19DFD] - (.Hewlett-Packard Development Company, L.P. - Com for QLB application.) -- C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [222512] [PID.]
                                  [MD5.8F125A891819A2E692A9EB67C650F5EC] - (.Trend Micro Inc. - Online Storage Sync Service.) -- C:\Program Files\Trend Micro SafeSync\hrfscore.exe [3750672] [PID.]
                                  [MD5.A19B0BB5A7EB6DF2DD4A0711D36955EE] - (.Hewlett-Packard - HP Health Check Service.) -- c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [94208] [PID.]
                                  ~ Scan Processes Running in 00mn 01s

                                  ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
                                  C:\Users\Compaq\AppData\Local\Google\Chrome\User Data\Default\Preferences
                                  G1 - GCS: Preference [User Data\Default] None
                                  G0 - GCSP: Preference [User Data\Default][HomePage] https://www.google.com/?gws_rd=ssl
                                  ~ Scan Google Browser in 00mn 00s

                                  ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
                                  C:\Users\Compaq\AppData\Roaming\Mozilla\Firefox\Profiles\vtbd3xgy.default\prefs.js
                                  C:\Users\Compaq\AppData\Roaming\Mozilla\Firefox\Profiles\vtbd3xgy.default\user.js (.not file.)
                                  M3 - MFPP: Plugins - [Compaq] -- C:\Users\Compaq\AppData\Roaming\Mozilla\Firefox\Profiles\vtbd3xgy.default\searchplugins\conduit.xml
                                  M3 - MFPP: Plugins - [Compaq] -- C:\Program Files\Mozilla FireFox\searchplugins\amazon-france.xml
                                  M3 - MFPP: Plugins - [Compaq] -- C:\Program Files\Mozilla FireFox\searchplugins\bing.xml
                                  M3 - MFPP: Plugins - [Compaq] -- C:\Program Files\Mozilla FireFox\searchplugins\cnrtl-tlfi-fr.xml
                                  M3 - MFPP: Plugins - [Compaq] -- C:\Program Files\Mozilla FireFox\searchplugins\eBay-france.xml
                                  M3 - MFPP: Plugins - [Compaq] -- C:\Program Files\Mozilla FireFox\searchplugins\google.xml
                                  M3 - MFPP: Plugins - [Compaq] -- C:\Program Files\Mozilla FireFox\searchplugins\wikipedia-fr.xml
                                  M3 - MFPP: Plugins - [Compaq] -- C:\Program Files\Mozilla FireFox\searchplugins\yahoo-france.xml
                                  M0 - MFSP: prefs.js [Compaq - vtbd3xgy.default] https://fr.yahoo.com/
                                  M2 - MFEP: prefs.js [Compaq - vtbd3xgy.default\{05eeb91a-aef7-4f8a-978f-fb83e7b03f8e}] [] uTorrentBar_FR Community Toolbar v3.7.0.6 (.Conduit Ltd..)
                                  M2 - MFEP: prefs.js [Compaq - vtbd3xgy.default\{20a82645-c095-46ed-80e3-08825760534b}] [MicrosoftCG] Microsoft .NET Framework Assistant v1.2.1 (.Microsoft.)
                                  M2 - MFEP: prefs.js [Compaq - vtbd3xgy.default\{635abd67-4fe9-1b23-4f01-e679fa7484c1}] [yahoo.ytff] Yahoo! Toolbar v2.4.2.20111006100951 (.Yahoo!.)
                                  M2 - MFEP: prefs.js [Compaq - vtbd3xgy.default\{9CCE52B0-5079-4177-9586-1BF6575E62DE}(53)] [] Plugin CanalPlay v1.0.0.1 (.Canal+ Distribution.)
                                  P2 - FPN:Firefox Plugin Navigator . (.Sun Microsystems, Inc. - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- C:\Program Files\Mozilla Firefox\Plugins\npdeployJava1.dll
                                  P2 - FPN:Firefox Plugin Navigator . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 10.1.1.) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll
                                  P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin.dll
                                  P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin2.dll
                                  P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin3.dll
                                  P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin4.dll
                                  P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin5.dll
                                  P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin6.dll
                                  P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin7.dll
                                  P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF32.dll
                                  P2 - FPN: [HKLM] [@adobe.com/ShockwavePlayer] - (.Adobe Systems, Inc. - Adobe Shockwave for Director Netscape plug-in, version 11.6.) -- C:\Windows\system32\Adobe\Director\np32dsw.dll
                                  P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (...) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
                                  P2 - FPN: [HKLM] [@google.com/npPicasa3,version=3.0.0] - (.Google, Inc. - Picasa plugin.) -- C:\Program Files\Google\Picasa3\npPicasa3.dll
                                  P2 - FPN: [HKLM] [@java.com/JavaPlugin] - (.Sun Microsystems, Inc. - Next Generation Java Plug-in 1.6.0_29 for Mozilla browsers.) -- C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
                                  P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 4.0.60831.0.) -- c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll
                                  P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
                                  P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll
                                  P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll
                                  P2 - FPN: [HKLM] [@videolan.org/vlc,version=1.0.1] - (.the VideoLAN Team - Version 1.0.1, copyright 1996-2009 The VideoLAN Team<br><a href="http:.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll
                                  P2 - FPN: [HKLM] [Adobe Reader] - (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 10.1.1.) -- C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
                                  P2 - FPN: [HKCU] [@talk.google.com/GoogleTalkPlugin] - (.Google - Version 2.4.6.4433.) -- C:\Users\Compaq\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll
                                  P2 - FPN: [HKCU] [@talk.google.com/O3DPlugin] - (.Pas de propriétaire - Google Talk Plugin Video Accelerator version:0.1.44.13.) -- C:\Users\Compaq\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll
                                  P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Users\Compaq\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll
                                  P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Users\Compaq\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll
                                  P2 - FPN: [HKCU] [@yahoo.com/BrowserPlus,version=2.6.0] - (.Yahoo! Inc. - BrowserPlus -- Improve your browser! -- https://fr.yahoo.com/?p=us -- C:\Users\Compaq\AppData\Local\Yahoo!\BrowserPlus\2.6.0\Plugins\npybrowserplus_2.6.0.dll
                                  ~ Scan Firefox Browser in 00mn 00s

                                  ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
                                  R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
                                  R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
                                  R0 - HKUS\S-1-5-21-140602420-3683421237-1408863200-1000\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
                                  R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
                                  R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
                                  R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
                                  R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = https://www.bing.com/?toHttps=1&redig=17DBE7D168544FA98200E890A8051984
                                  R1 - HKUS\S-1-5-21-140602420-3683421237-1408863200-1000\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
                                  R3 - URLSearchHook: (no name) - {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} . (...) (No version) -- (.not file.)
                                  R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Internet Explorer.) (7.00.6000.16386 (vista_rtm.061101-2205)) -- C:\Windows\system32\ieframe.dll
                                  R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2
                                  ~ Scan IE Browser in 00mn 00s

                                  ---\\ Internet Explorer, Proxy Management (R5)
                                  R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
                                  R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
                                  R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
                                  R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
                                  R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
                                  R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
                                  R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
                                  ~ Scan Proxy management in 00mn 00s

                                  ---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
                                  F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,
                                  F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"
                                  ~ Scan Keys in 00mn 00s

                                  ---\\ Redirection du fichier Hosts (O1)
                                  ~ Le fichier hosts est sain (The hosts file is clean).
                                  ~ Scan Hosts File in 00mn 00s

                                  ---\\ Browser Helper Objects de navigateur (O2)
                                  O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
                                  O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} Clé orpheline
                                  O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - WindowsLiveLogin.dll.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                                  O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
                                  O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Skype Technologies S.A. - Skype add-on for IE.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
                                  O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll
                                  O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll
                                  ~ Scan BHO in 00mn 00s

                                  ---\\ Internet Explorer Toolbars (O3)
                                  O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
                                  ~ Scan Toolbar in 00mn 00s

                                  ---\\ Applications démarrées par registre & par dossier (O4)
                                  O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics, Inc. - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
                                  O4 - HKLM\..\Run: [QPService] . (.CyberLink Corp. - HP QuickPlay Resident Program.) -- C:\Program Files\HP\QuickPlay\QPService.exe
                                  O4 - HKLM\..\Run: [UpdateLBPShortCut] . (.CyberLink Corp. - StartMen Application.) -- C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe
                                  O4 - HKLM\..\Run: [UpdatePSTShortCut] Clé orpheline
                                  O4 - HKLM\..\Run: [UCam_Menu] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe
                                  O4 - HKLM\..\Run: [QlbCtrl.exe] . (. Hewlett-Packard Development Company, L.P. - Quick Launch Buttons.) -- C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
                                  O4 - HKLM\..\Run: [UpdateP2GoShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe
                                  O4 - HKLM\..\Run: [HP Health Check Scheduler] . (.Hewlett-Packard - HP Health Check Scheduler.) -- c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
                                  O4 - HKLM\..\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
                                  O4 - HKLM\..\Run: [WirelessAssistant] . (.Hewlett-Packard - HP Wireless Assistant main program.) -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
                                  O4 - HKLM\..\Run: [BDRegion] . (.cyberlink - brs.) -- C:\Program Files\Cyberlink\Shared Files\brs.exe
                                  O4 - HKLM\..\Run: [avgnt] . (.Avira GmbH - Antivirus System Tray Tool.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
                                  O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe
                                  O4 - HKLM\..\Run: [SysTrayApp] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray.exe
                                  O4 - HKLM\..\Run: [NvCplDaemon] . (.NVIDIA Corporation - NVIDIA Display Properties Extension.) -- C:\Windows\system32\NvCpl.dll
                                  O4 - HKLM\..\Run: [NvMediaCenter] . (.NVIDIA Corporation - NVIDIA Media Center Library.) -- C:\Windows\system32\NvMcTray.dll
                                  O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
                                  O4 - HKCU\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
                                  O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                                  O4 - HKCU\..\Run: [DAEMON Tools Lite] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe
                                  O4 - HKUS\S-1-5-18\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
                                  O4 - HKUS\S-1-5-18\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
                                  O4 - HKUS\S-1-5-21-140602420-3683421237-1408863200-1000\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
                                  O4 - HKUS\S-1-5-21-140602420-3683421237-1408863200-1000\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                                  O4 - HKUS\S-1-5-21-140602420-3683421237-1408863200-1000\..\Run: [DAEMON Tools Lite] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe
                                  ~ Scan Application in 00mn 00s

                                  ---\\ Autres liens utilisateurs (O4)
                                  O4 - Global Startup: C:\Users\Compaq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
                                  O4 - Global Startup: C:\Users\Compaq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Mail\WinMail.exe
                                  O4 - Global Startup: C:\Users\Compaq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
                                  O4 - Global Startup: C:\Users\Compaq\Desktop\ComboFix.exe - Raccourci.lnk . (.Swearware.) -- C:\Users\Compaq\Downloads\ComboFix.exe
                                  O4 - Global Startup: C:\Users\Compaq\Desktop\HijackThis.lnk . (.Trend Micro Inc..) -- C:\Program Files\Trend Micro\HijackThis\HJS.exe
                                  O4 - Global Startup: C:\Users\Compaq\Desktop\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
                                  O4 - Global Startup: C:\Users\Compaq\Desktop\LimeWire 5.6.2.lnk . (.Lime Wire, LLC.) -- C:\Program Files\LimeWire\LimeWire.exe
                                  O4 - Global Startup: C:\Users\Compaq\Desktop\VirtualDJ Home FREE.lnk . (.Atomix Productions.) -- C:\Program Files\VirtualDJ\virtualdj_home.exe
                                  O4 - Global Startup: C:\Users\Compaq\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Démarrer Outlook Express.lnk . (.Microsoft Corporation.) -- C:\Program Files\Microsoft Office\Office10\OUTLOOK.EXE
                                  O4 - Global Startup: C:\Users\Compaq\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk . (.Google Inc..) -- C:\Program Files\Google\Chrome\Application\chrome.exe
                                  O4 - Global Startup: C:\Users\Compaq\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
                                  O4 - Global Startup: C:\Users\Compaq\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk . (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe
                                  O4 - Global Startup: C:\Users\Compaq\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
                                  ~ Scan Global Startup in 00mn 00s

                                  ---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
                                  O8 - Extra context menu item: Add to Google Photos Screensa&ver . (.Google Inc. - Google Photos Screensaver.) -- C:\Windows\system32\GPhotos.scr
                                  O8 - Extra context menu item: E&xporter vers Microsoft Excel . (.Microsoft Corporation - Microsoft Excel.) -- C:\PROGRA~1\MICROS~3\Office10\EXCEL.exe
                                  O8 - Extra context menu item: Google Sidewiki... . (.Google Inc. - Google Toolbar for Internet Explorer.) -- C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll
                                  ~ Scan IE Menu Contextuel in 00mn 00s

                                  ---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
                                  O9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} . (...) -- C:\Program Files\Skype\Toolbars\Internet Explorer\icon.ico
                                  ~ Scan IE Extra Buttons in 00mn 00s

                                  ---\\ Winsock hijacker (Layered Service Provider) (O10)
                                  O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
                                  O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
                                  O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
                                  O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
                                  O10 - WLSP:\000000000005\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files\Bonjour\mdnsNSP.dll
                                  O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
                                  O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
                                  ~ Scan Winsock in 00mn 00s

                                  ---\\ Modification Domaine/Adresses DNS (O17)
                                  O17 - HKLM\System\CCS\Services\Tcpip\..\{2E108660-0076-478A-93D4-8BC949A34FBF}: DhcpNameServer = 192.168.1.254
                                  O17 - HKLM\System\CCS\Services\Tcpip\..\{3DCDDA88-F2D2-4D89-947A-52561400A43A}: DhcpNameServer = 192.168.1.1
                                  O17 - HKLM\System\CCS\Services\Tcpip\..\{2E108660-0076-478A-93D4-8BC949A34FBF}: DhcpDomain = lan
                                  O17 - HKLM\System\CS1\Services\Tcpip\..\{2E108660-0076-478A-93D4-8BC949A34FBF}: DhcpNameServer = 192.168.1.254
                                  O17 - HKLM\System\CS1\Services\Tcpip\..\{3DCDDA88-F2D2-4D89-947A-52561400A43A}: DhcpNameServer = 192.168.1.1
                                  O17 - HKLM\System\CS1\Services\Tcpip\..\{2E108660-0076-478A-93D4-8BC949A34FBF}: DhcpDomain = lan
                                  O17 - HKLM\System\CS2\Services\Tcpip\..\{2E108660-0076-478A-93D4-8BC949A34FBF}: DhcpNameServer = 192.168.1.254
                                  O17 - HKLM\System\CS2\Services\Tcpip\..\{3DCDDA88-F2D2-4D89-947A-52561400A43A}: DhcpNameServer = 192.168.1.1
                                  O17 - HKLM\System\CS2\Services\Tcpip\..\{2E108660-0076-478A-93D4-8BC949A34FBF}: DhcpDomain = lan
                                  ~ Scan Domain in 00mn 00s

                                  ---\\ Protocole additionnel (O18)
                                  O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\system32\mshtml.dll
                                  O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
                                  O18 - Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} . (.Microsoft Corporation - Microsoft SharePoint Portal Server Object M.) -- C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL
                                  O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\msvidctl.dll
                                  O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
                                  O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
                                  O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
                                  O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
                                  O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
                                  O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll
                                  O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\system32\mshtml.dll
                                  O18 - Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
                                  O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
                                  O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\system32\mshtml.dll
                                  O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\system32\inetcomm.dll
                                  O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
                                  O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll
                                  O18 - Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll
                                  O18 - Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
                                  O18 - Handler: mso-offdap - {3D9F03FA-7A94-11D3-BE81-0050048385D1} . (.Microsoft Corporation - Microsoft Office XP Web Components.) -- C:\PROGRA~1\COMMON~1\MICROS~1\WEBCOM~1\10\OWC10.DLL
                                  O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\system32\mshtml.dll
                                  O18 - Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} . (.Skype Technologies S.A. - Skype add-on for IE.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
                                  O18 - Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype for COM API.) -- C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
                                  O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\msvidctl.dll
                                  O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\system32\mshtml.dll
                                  O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\system32\mscoree.dll
                                  O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\system32\mscoree.dll
                                  O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\system32\mscoree.dll
                                  O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
                                  O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
                                  ~ Scan Protocole Additionnel in 00mn 00s

                                  ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
                                  O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Contrôleur de site Web.) -- C:\Windows\system32\webcheck.dll
                                  ~ Scan SSODL in 00mn 00s

                                  ---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22)
                                  O22 - SharedTaskScheduler: (no name) - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\Windows\system32\browseui.dll
                                  ~ Scan STS/SSO in 00mn 00s

                                  ---\\ Liste des services NT non Microsoft et non désactivés (O23)
                                  O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
                                  O23 - Service: Andrea ST Filters Service (AESTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (32-bit).) - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_fa807195\aestsrv.exe
                                  O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) . (.Avira GmbH - Antivirus Scheduler.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe
                                  O23 - Service: Avira AntiVir Guard (AntiVirService) . (.Avira GmbH - Antivirus On-Access Service.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
                                  O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - Apple Mobile Device Service.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
                                  O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
                                  O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe
                                  O23 - Service: HP Health Check Service (HP Health Check Service) . (.Hewlett-Packard - HP Health Check Service.) - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
                                  O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company - LightScribe Service.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
                                  O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 179.3.) - C:\Windows\system32\nvvsvc.exe
                                  O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\Windows\system32\PnkBstrA.exe
                                  O23 - Service: PnkBstrB (PnkBstrB) . (...) - C:\Windows\system32\PnkBstrB.exe
                                  O23 - Service: Recovery Service for Windows (Recovery Service for Windows) . (.Pas de propriétaire - STServices.) - C:\Program Files\SMINST\BLService.exe
                                  O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Pas de propriétaire - RichVideo Module.) - C:\Program Files\CyberLink\Shared files\RichVideo.exe
                                  O23 - Service: Audio Service (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_fa807195\STacSV.exe
                                  O23 - Service: Power Control [2010/03/07 13:46:36] ({B154377D-700F-42cc-9474-23858FBDF4BD}) . (.CyberLink Corp. - Pas de description.) - C:\Program Files\CyberLink\PowerDVD9\000.fcl
                                  ~ Scan Services in 00mn 00s

                                  ---\\ Enumération Active Desktop & MHTML Editor (O24)
                                  O24 - Default MHTML Editor: Last - .(.Microsoft Corporation - Microsoft Word.) - C:\Program Files\Microsoft Office\Office10\WINWORD.exe
                                  ~ Scan Desktop Component in 00mn 00s

                                  ---\\ Tâches planifiées en automatique (O39)
                                  O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
                                  O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
                                  O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-140602420-3683421237-1408863200-1000Core.job
                                  O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-140602420-3683421237-1408863200-1000UA.job
                                  [MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe
                                  [MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe
                                  [MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskUserS-1-5-21-140602420-3683421237-1408863200-1000Core] (.Google Inc..) -- C:\Users\Compaq\AppData\Local\Google\Update\GoogleUpdate.exe
                                  [MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskUserS-1-5-21-140602420-3683421237-1408863200-1000UA] (.Google Inc..) -- C:\Users\Compaq\AppData\Local\Google\Update\GoogleUpdate.exe
                                  [MD5.AE37F6508716D2DD6122744C46686BEC] [APT] [HP Health Check] (.Hewlett-Packard.) -- c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
                                  [MD5.70B6D0C45256B688B7DBC10E922FB402] [APT] [{4771AB95-BCC9-47FB-9905-284DC3E0C215}] (.Skype Technologies S.A..) -- C:\Program Files\Skype\Phone\Skype.exe
                                  ~ Scan Scheduled Task in 00mn 03s

                                  ---\\ Pilotes lancés au démarrage (O41)
                                  O41 - Driver: (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
                                  O41 - Driver: (avipbb) . (.Avira GmbH - Avira Driver for Security Enhancement.) - C:\Windows\system32\DRIVERS\avipbb.sys
                                  O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\DRIVERS\cdrom.sys
                                  O41 - Driver: C:\Windows\system32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\system32\Drivers\dfsc.sys
                                  O41 - Driver: (i8042prt) . (.Microsoft Corporation - Pilote de port i8042.) - C:\Windows\system32\DRIVERS\i8042prt.sys
                                  O41 - Driver: (kbdclass) . (.Microsoft Corporation - Pilote de la classe Clavier.) - C:\Windows\system32\DRIVERS\kbdclass.sys
                                  O41 - Driver: (kbdhid) . (.Microsoft Corporation - Pilote de filtre clavier HID.) - C:\Windows\system32\DRIVERS\kbdhid.sys
                                  O41 - Driver: (mouclass) . (.Microsoft Corporation - Pilote de la classe Souris.) - C:\Windows\system32\DRIVERS\mouclass.sys
                                  O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\system32\DRIVERS\netbios.sys
                                  O41 - Driver: (netbt) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\system32\DRIVERS\netbt.sys
                                  O41 - Driver: (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\system32\drivers\nsiproxy.sys
                                  O41 - Driver: C:\Windows\system32\drivers\pacer.sys (PSched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\system32\DRIVERS\pacer.sys
                                  O41 - Driver: (RasAcd) . (.Microsoft Corporation - RAS Automatic Connection Driver.) - C:\Windows\system32\DRIVERS\rasacd.sys
                                  O41 - Driver: (rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\Windows\system32\DRIVERS\rdbss.sys
                                  O41 - Driver: (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\system32\DRIVERS\RDPCDD.sys
                                  O41 - Driver: (RDPENCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\system32\drivers\rdpencdd.sys
                                  O41 - Driver: C:\Windows\system32\tcpipcfg.dll (Smb) . (.Microsoft Corporation - SMB Transport driver.) - C:\Windows\system32\DRIVERS\smb.sys
                                  O41 - Driver: (ssmdrv) . (.Avira GmbH - AVIRA SnapShot Driver.) - C:\Windows\system32\DRIVERS\ssmdrv.sys
                                  O41 - Driver: C:\Windows\system32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\system32\DRIVERS\tdx.sys
                                  O41 - Driver: (TermDD) . (.Microsoft Corporation - Terminal Server Driver.) - C:\Windows\system32\DRIVERS\termdd.sys
                                  O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
                                  O41 - Driver: (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\system32\DRIVERS\wanarp.sys
                                  ~ Scan Drivers in 00mn 00s

                                  ---\\ Logiciels installés (O42)
                                  O42 - Logiciel: Activation Assistant for the 2007 Microsoft Office suites - (.Microsoft Corporation.) [HKLM] -- Activation Assistant for the 2007 Microsoft Office suites
                                  O42 - Logiciel: ActiveCheck component for HP Active Support Library - (.Hewlett-Packard.) [HKLM] -- {254C37AA-6B72-4300-84F6-98A82419187E}
                                  O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
                                  O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin
                                  O42 - Logiciel: Adobe Reader X (10.1.1) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AA1000000001}
                                  O42 - Logiciel: Adobe Shockwave Player - (.Adobe Systems, Inc..) [HKLM] -- {AD72CFB4-C2BF-424E-9DF0-C7BAD1F30A11}
                                  O42 - Logiciel: Adobe Shockwave Player 11.6 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player
                                  O42 - Logiciel: Age of Empires III - (.Microsoft Game Studios.) [HKLM] -- InstallShield_{70F8B183-99EB-4304-BA35-080E2DFFD2A3}
                                  O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {B2D328BE-45AD-4D92-96F9-2151490A203E}
                                  O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {85991ED2-010C-4930-96FA-52F43C2CE98A}
                                  O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {C41300B9-185D-475E-BFEC-39EF732F19B1}
                                  O42 - Logiciel: Assistant de connexion Windows Live - (.Microsoft Corporation.) [HKLM] -- {DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
                                  O42 - Logiciel: Atheros Driver Installation Program - (.Atheros.) [HKLM] -- {C3A32068-8AB1-4327-BB16-BED9C6219DC7}
                                  O42 - Logiciel: Avira AntiVir Personal - Free Antivirus - (.Avira GmbH.) [HKLM] -- Avira AntiVir Desktop
                                  O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {0CB9668D-F979-4F31-B8B8-67FE90F929F8}
                                  O42 - Logiciel: Call of Duty(R) 2 - (.Activision.) [HKLM] -- InstallShield_{D0A05794-48C2-4424-A15A-9F20FCFDD374}
                                  O42 - Logiciel: Call of Juarez - (.Ubisoft.) [HKLM] -- InstallShield_{3E7940A4-495B-4DC5-B5C9-D2EE1DE9E5EF}
                                  O42 - Logiciel: Compatibility Pack for the 2007 Office system - (.Microsoft Corporation.) [HKLM] -- {90120000-0020-0409-0000-0000000FF1CE}
                                  O42 - Logiciel: CyberLink DVD Suite - (.CyberLink Corp..) [HKLM] -- InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}
                                  O42 - Logiciel: CyberLink DVD Suite - (.CyberLink Corp..) [HKLM] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}
                                  O42 - Logiciel: CyberLink PowerDVD 9 - (.CyberLink Corp..) [HKLM] -- InstallShield_{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}
                                  O42 - Logiciel: CyberLink PowerDVD 9 - (.CyberLink Corp..) [HKLM] -- {A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}
                                  O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}
                                  O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D}
                                  O42 - Logiciel: DAEMON Tools Lite - (.DT Soft Ltd.) [HKLM] -- DAEMON Tools Lite
                                  O42 - Logiciel: ESU for Microsoft Vista - (.Hewlett-Packard.) [HKLM] -- {3877C901-7B90-4727-A639-B6ED2DD59D43}
                                  O42 - Logiciel: Favorit (nucjq) - (.Pas de propriétaire.) [HKLM] -- nucjq
                                  O42 - Logiciel: Fissa - (.Secure Digital Services.) [HKLM] -- Fissa
                                  O42 - Logiciel: Game Alarm - (.Pas de propriétaire.) [HKCU] -- gamealarm-DEFAULT
                                  O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome
                                  O42 - Logiciel: Google Talk Plugin - (.Google.) [HKLM] -- {A66DBCC6-8802-3D15-9FDF-9552742C08B0}
                                  O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C}
                                  O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
                                  O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
                                  O42 - Logiciel: HP Active Support Library - (.Hewlett-Packard.) [HKLM] -- {CE7E3BE0-2DD3-4416-A690-F9E4A99A8CFF}
                                  O42 - Logiciel: HP Common Access Service Library - (.Hewlett-Packard.) [HKLM] -- {732A3F80-008B-4350-BD58-EC5AE98707B8}
                                  O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM] -- {57A5AEC1-97FC-474D-92C4-908FCC2253D4}
                                  O42 - Logiciel: HP DVD Play 3.7 - (.Hewlett-Packard.) [HKLM] -- {45D707E9-F3C4-11D9-A373-0050BAE317E1}
                                  O42 - Logiciel: HP Help and Support - (.Hewlett-Packard Company.) [HKLM] -- {0054A0F6-00C9-4498-B821-B5C9578F433E}
                                  O42 - Logiciel: HP Quick Launch Buttons 6.40 M1 - (.Hewlett-Packard.) [HKLM] -- {34D2AB40-150D-475D-AE32-BD23FB5EE355}
                                  O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM] -- {47F36D92-E58E-456D-B73C-3382737E4C42}
                                  O42 - Logiciel: HP User Guides 0138 - (.Hewlett-Packard.) [HKLM] -- {17050C48-16CB-4500-A102-CEAD750CE11E}
                                  O42 - Logiciel: HP Wireless Assistant - (.Hewlett-Packard.) [HKLM] -- {E5E29403-3D25-40C6-892B-F9FEE2A95585}
                                  O42 - Logiciel: HPAsset component for HP Active Support Library - (.Hewlett-Packard.) [HKLM] -- {669D4A35-146B-4314-89F1-1AC3D7B88367}
                                  O42 - Logiciel: HPNetworkAssistant - (.Hewlett-Packard..) [HKLM] -- {228C6B46-64E2-404E-898A-EF0830603EF4}
                                  O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB953595
                                  O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB958484
                                  O42 - Logiciel: IDT Audio - (.IDT.) [HKLM] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}
                                  O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- WinLiveSuite_Wave3
                                  O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- {46ABBC54-1872-4AA3-95E2-F2C063A63F31}
                                  O42 - Logiciel: Java(TM) 6 Update 29 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216029FF}
                                  O42 - Logiciel: Kit Internet Mobile Bouygues Telecom - (.Pas de propriétaire.) [HKLM] -- {93D34EE3-99B3-4DB1-8B0A-0A657466F90D}
                                  O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}
                                  O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243}
                                  O42 - Logiciel: LightScribe System Software 1.14.17.1 - (.LightScribe.) [HKLM] -- {0E7DBD52-B097-4F2B-A7C7-F105B0D20FDB}
                                  O42 - Logiciel: LimeWire 5.6.2 - (.Lime Wire, LLC.) [HKLM] -- LimeWire
                                  O42 - Logiciel: Logiciel d'archivage WinRAR - (.Pas de propriétaire.) [HKLM] -- WinRAR archiver
                                  O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
                                  O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
                                  O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
                                  O42 - Logiciel: Malwarebytes' Anti-Malware version 1.51.2.1300 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1
                                  O42 - Logiciel: Microsoft .NET Framework 3.5 Language Pack SP1 - fra - (.Microsoft Corporation.) [HKLM] -- {3E31821C-7917-367E-938E-E65FC413EA31}
                                  O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 SP1
                                  O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
                                  O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile
                                  O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}
                                  O42 - Logiciel: Microsoft .NET Framework 4 Client Profile FRA Language Pack - (.Microsoft Corporation.) [HKLM] -- {0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E}
                                  O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
                                  O42 - Logiciel: Microsoft Office PowerPoint Viewer 2007 (French) - (.Microsoft Corporation.) [HKLM] -- {95120000-00AF-040C-0000-0000000FF1CE}
                                  O42 - Logiciel: Microsoft Office XP Professional - (.Microsoft Corporation.) [HKLM] -- {9211040C-6000-11D3-8CFE-0050048383C9}
                                  O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
                                  O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM] -- {770657D0-A123-3C07-8E44-1C83EC895118}
                                  O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
                                  O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
                                  O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F}
                                  O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {3B160861-7250-451E-B5EE-8B92BF30A710}
                                  O42 - Logiciel: Module linguistique Microsoft .NET Framework 3.5 SP1- fra - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 Language Pack SP1 - fra
                                  O42 - Logiciel: Module linguistique Microsoft .NET Framework 4 Client Profile FRA - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile FRA Language Pack
                                  O42 - Logiciel: Mozilla Firefox 7.0.1 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 7.0.1 (x86 fr)
                                  O42 - Logiciel: NVIDIA Drivers - (.NVIDIA Corporation.) [HKLM] -- NVIDIA Drivers
                                  O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM] -- {5DB65884-C963-4454-AABA-4CA3089281FA}
                                  O42 - Logiciel: Need for Speed(TM) SHIFT - (.Electronic Arts.) [HKLM] -- {BBF0A67B-5DBA-452F-9D2E-6F168BC226E4}
                                  O42 - Logiciel: Neffy 1,3,29,0 - (.CDNetworks.) [HKLM] -- Neffy
                                  O42 - Logiciel: Outil de téléchargement Windows Live - (.Microsoft Corporation.) [HKLM] -- {205C6BDD-7B73-42DE-8505-9A093F35A238}
                                  O42 - Logiciel: PDFCreator - (.Frank Heindörfer, Philip Chinery.) [HKLM] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}
                                  O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM] -- Picasa 3
                                  O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}
                                  O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM] -- {40BF1E83-20EB-11D8-97C5-0009C5020658}
                                  O42 - Logiciel: PunkBuster Services - (.Pas de propriétaire.) [HKLM] -- PunkBusterSvc
                                  O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {3D9892BB-A751-4E48-ADC8-E4289956CE1D}
                                  O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM] -- {DC24971E-1946-445D-8A82-CE685433FA7D}
                                  O42 - Logiciel: Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB2416473
                                  O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2446708
                                  O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2478663
                                  O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2518870
                                  O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2539636
                                  O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2572078
                                  O42 - Logiciel: Security Update for Module linguistique Microsoft .NET Framework 4 Client Profile FRA (KB2518870) - (.Microsoft Corporation.) [HKLM] -- {0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E}.KB2518870
                                  O42 - Logiciel: Skype Toolbars - (.Skype Technologies S.A..) [HKLM] -- {981029E0-7FC9-4CF3-AB39-6F133621921A}
                                  O42 - Logiciel: Skype(TM) 4.2 - (.Skype Technologies S.A..) [HKLM] -- {D103C4BA-F905-437A-8049-DB24763BBE36}
                                  O42 - Logiciel: SweetIM for Messenger 3.1 - (.SweetIM Technologies Ltd..) [HKLM] -- {DA95E878-B181-4366-A433-6145592707A8}
                                  O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics.) [HKLM] -- SynTPDeinstKey
                                  O42 - Logiciel: Trend Micro SafeSync - (.Trend Micro.) [HKLM] -- HFRS_is1
                                  O42 - Logiciel: Update for Microsoft .NET Framework 3.5 SP1 (KB963707) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707
                                  O42 - Logiciel: Update for Microsoft .NET Framework 4 Client Profile (KB2468871) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2468871
                                  O42 - Logiciel: Update for Microsoft .NET Framework 4 Client Profile (KB2533523) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2533523
                                  O42 - Logiciel: VLC media player 1.0.1 - (.VideoLAN Team.) [HKLM] -- VLC media player
                                  O42 - Logiciel: VirtualDJ Home FREE - (.Atomix Productions.) [HKLM] -- {5E1375CB-6792-4464-8715-CC3EC83D48FA}
                                  O42 - Logiciel: Windows Live Call - (.Microsoft Corporation.) [HKLM] -- {82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
                                  O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM] -- {ED00D08A-3C5F-488D-93A0-A04F21F23956}
                                  O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {770F1BEC-2871-4E70-B837-FB8525FFA3B1}
                                  O42 - Logiciel: Yahoo! BrowserPlus 2.6.0 - (.Yahoo! Inc..) [HKCU] -- Yahoo! BrowserPlus
                                  O42 - Logiciel: eMule - (.Pas de propriétaire.) [HKLM] -- e
                                  0
                                  1. Bonsoir popov,

                                    Ton rapport est incomplet car trop long pour entrer sur le forum.
                                    Utilise ce lien pour déposer ton rapport et envoie-moi le lien stp.

                                    A+
                                    0
                                    1. Salut heraultais34600,

                                      Argh!!! sais pas comment ca marche le lien que tu m as donné!!! Il me réoriente directe sur un cite payant!!!!

                                      A plus
                                      0
                                      • 1
                                      • 2