A voir également:
- Page d'ouverture 404 not found nginx
- Supprimer une page word - Guide
- Page d'ouverture google - Guide
- Traduire une page - Guide
- Word numéro de page 1/2 - Guide
22 réponses
la suite:
---\\ HKCU & HKLM Software Keys
[HKCU\Software\3ivx]
[HKCU\Software\3rd Eye Solutions]
[HKCU\Software\AC3filter]
[HKCU\Software\ALWIL Software]
[HKCU\Software\AVAST Software]
[HKCU\Software\AVS4YOU]
[HKCU\Software\Ad-Remover]
[HKCU\Software\Adobe]
[HKCU\Software\Ahead]
[HKCU\Software\AppDataLow\RealNetworks]
[HKCU\Software\AppDataLow]
[HKCU\Software\Apple Computer, Inc.]
[HKCU\Software\Apple Inc.]
[HKCU\Software\BST]
[HKCU\Software\CDDB]
[HKCU\Software\Canon]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\Conduit]
[HKCU\Software\CoreAAC]
[HKCU\Software\CoreVorbis]
[HKCU\Software\DivXNetworks]
[HKCU\Software\FileHippo.com]
[HKCU\Software\Freecom]
[HKCU\Software\GNU]
[HKCU\Software\GSpot Appliance Corp]
[HKCU\Software\Gabest]
[HKCU\Software\Google]
[HKCU\Software\Haali]
[HKCU\Software\IM Providers]
[HKCU\Software\InstallShield]
[HKCU\Software\Intel]
[HKCU\Software\InterVideo]
[HKCU\Software\Lake]
[HKCU\Software\Ligos]
[HKCU\Software\Local AppWizard-Generated Applications]
[HKCU\Software\LucasArts]
[HKCU\Software\Macromedia]
[HKCU\Software\MainConcept]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\Motive]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Mozilla]
[HKCU\Software\Netscape]
[HKCU\Software\Neuf]
[HKCU\Software\ODBC]
[HKCU\Software\Opendisc]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\RealNetworks]
[HKCU\Software\Research In Motion]
[HKCU\Software\Roxio]
[HKCU\Software\Safer Networking Limited]
[HKCU\Software\Sonic Solutions]
[HKCU\Software\Sonic]
[HKCU\Software\Sony Corporation]
[HKCU\Software\Synaptics]
[HKCU\Software\TOSHIBA]
[HKCU\Software\Un peu de géographie]
[HKCU\Software\VB and VBA Program Settings]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\WinRAR]
[HKCU\Software\Winamp]
[HKCU\Software\Yahoo]
[HKCU\Software\baKno]
[HKCU\Software\eMule]
[HKCU\Software\keyhole.com]
[HKCU\Software\srs]
[HKCU\Software\vShare.tv]
[HKLM\Software\3ivx]
[HKLM\Software\781]
[HKLM\Software\8ec]
[HKLM\Software\ALWIL Software]
[HKLM\Software\ASProtect]
[HKLM\Software\ATI Technologies Inc.]
[HKLM\Software\ATI Technologies]
[HKLM\Software\AVAST Software]
[HKLM\Software\AVS4YOU]
[HKLM\Software\Adobe]
[HKLM\Software\AdwCleaner]
[HKLM\Software\Agere]
[HKLM\Software\Agnitum]
[HKLM\Software\Ahead]
[HKLM\Software\Apple Computer, Inc.]
[HKLM\Software\Apple Inc.]
[HKLM\Software\Avg]
[HKLM\Software\Boonty]
[HKLM\Software\BroadJump]
[HKLM\Software\C07ft5Y]
[HKLM\Software\CDDB]
[HKLM\Software\Canon]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Conduit]
[HKLM\Software\Data Fellows]
[HKLM\Software\Debug]
[HKLM\Software\F-Secure]
[HKLM\Software\GNU]
[HKLM\Software\Gabest]
[HKLM\Software\Gemplus]
[HKLM\Software\Google]
[HKLM\Software\Hewlett-Packard]
[HKLM\Software\InstallShield]
[HKLM\Software\InstalledOptions]
[HKLM\Software\InterVideo]
[HKLM\Software\JavaSoft]
[HKLM\Software\KLCodecPack]
[HKLM\Software\Lake]
[HKLM\Software\LanSetup]
[HKLM\Software\Licenses]
[HKLM\Software\LucasArts]
[HKLM\Software\MDC]
[HKLM\Software\Macromedia]
[HKLM\Software\Macrovision]
[HKLM\Software\Malwarebytes' Anti-Malware]
[HKLM\Software\Motive]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\Neuf]
[HKLM\Software\Nullsoft]
[HKLM\Software\ODBC]
[HKLM\Software\Oak Technology]
[HKLM\Software\OldTimer Tools]
[HKLM\Software\On2 Technologies]
[HKLM\Software\PCTools]
[HKLM\Software\PRR]
[HKLM\Software\Philips]
[HKLM\Software\Piriform]
[HKLM\Software\Policies]
[HKLM\Software\Preview Systems]
[HKLM\Software\Program Groups]
[HKLM\Software\REALTEK Semiconductor Corporation]
[HKLM\Software\RealNetworks]
[HKLM\Software\Realtek Semiconductor Corp.]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\Research In Motion]
[HKLM\Software\Roxio]
[HKLM\Software\SECURITOO]
[HKLM\Software\Safer Networking Limited]
[HKLM\Software\Schlumberger]
[HKLM\Software\Secure]
[HKLM\Software\SoftShape]
[HKLM\Software\Symantec]
[HKLM\Software\Synaptics]
[HKLM\Software\TOSHIBA]
[HKLM\Software\TelevisionFanatic]
[HKLM\Software\TrendMicro]
[HKLM\Software\Webteh]
[HKLM\Software\WinRAR]
[HKLM\Software\Windows 3.1 Migration Status]
[HKLM\Software\Xing Technology Corp.]
[HKLM\Software\Yahoo]
[HKLM\Software\mozilla.org]
[HKLM\Software\srs]
~ Scan Softwares in 00mn 00s
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 16/03/2012 - 15:16:14 - [0] ----D- C:\Program Files\Ad-Remover
O43 - CFD: 17/03/2012 - 11:57:30 - [302,279] ----D- C:\Program Files\Adobe
O43 - CFD: 26/12/2004 - 15:40:58 - [71,633] ----D- C:\Program Files\Ahead
O43 - CFD: 11/04/2005 - 20:37:26 - [0,005] ----D- C:\Program Files\aod
O43 - CFD: 17/03/2012 - 12:28:46 - [2,316] ----D- C:\Program Files\Apple Software Update
O43 - CFD: 28/04/2008 - 20:21:18 - [0,063] ----D- C:\Program Files\ATI Technologies
O43 - CFD: 14/03/2012 - 16:36:52 - [202,953] ----D- C:\Program Files\AVAST Software
O43 - CFD: 06/02/2006 - 00:35:22 - [13,218] ----D- C:\Program Files\AVPersonal
O43 - CFD: 04/08/2010 - 13:09:32 - [0] ----D- C:\Program Files\AVS4YOU
O43 - CFD: 19/09/2010 - 13:24:54 - [315,941] ----D- C:\Program Files\Canon
O43 - CFD: 19/09/2010 - 13:19:56 - [14,859] --H-D- C:\Program Files\CanonBJ
O43 - CFD: 14/03/2012 - 15:24:40 - [4,358] ----D- C:\Program Files\CCleaner
O43 - CFD: 15/11/2005 - 01:09:26 - [6,490] ----D- C:\Program Files\Common Files
O43 - CFD: 18/05/2004 - 12:53:26 - [0] ----D- C:\Program Files\ComPlus Applications
O43 - CFD: 15/03/2012 - 19:45:36 - [-1974,330] ----D- C:\Program Files\eMule
O43 - CFD: 11/04/2005 - 20:40:32 - [6,372] ----D- C:\Program Files\ffdshow
O43 - CFD: 17/03/2012 - 12:46:24 - [397,152] ----D- C:\Program Files\Fichiers communs
O43 - CFD: 17/03/2012 - 11:35:46 - [0,363] ----D- C:\Program Files\FileHippo.com
O43 - CFD: 04/03/2009 - 17:08:54 - [10,054] ----D- C:\Program Files\GEOGRAPHIE
O43 - CFD: 17/03/2012 - 12:50:18 - [276,936] ----D- C:\Program Files\Google
O43 - CFD: 01/12/2008 - 14:48:58 - [8,634] ----D- C:\Program Files\Hewlett-Packard
O43 - CFD: 24/11/2005 - 21:26:22 - [0,029] ----D- C:\Program Files\HP
O43 - CFD: 15/10/2011 - 09:20:00 - [43,541] --H-D- C:\Program Files\InstallShield Installation Information
O43 - CFD: 20/03/2012 - 20:49:24 - [4,551] ----D- C:\Program Files\Internet Explorer
O43 - CFD: 18/05/2004 - 14:07:10 - [31,699] ----D- C:\Program Files\InterVideo
O43 - CFD: 21/11/2005 - 19:19:26 - [0,895] ----D- C:\Program Files\iPod
O43 - CFD: 21/11/2005 - 19:19:26 - [30,267] ----D- C:\Program Files\iTunes
O43 - CFD: 18/05/2004 - 13:17:58 - [0,027] ----D- C:\Program Files\Java
O43 - CFD: 20/03/2012 - 20:54:20 - [4,298] ----D- C:\Program Files\K-Lite Codec Pack
O43 - CFD: 18/04/2009 - 14:06:40 - [0,266] ----D- C:\Program Files\ltmoh
O43 - CFD: 14/10/2011 - 15:38:10 - [1183,300] ----D- C:\Program Files\LucasArts
O43 - CFD: 04/03/2012 - 22:31:10 - [11,405] ----D- C:\Program Files\Malwarebytes' Anti-Malware
O43 - CFD: 19/03/2012 - 22:53:28 - [2,140] ----D- C:\Program Files\Messenger
O43 - CFD: 25/09/2009 - 11:16:00 - [0,216] ----D- C:\Program Files\Microsoft
O43 - CFD: 18/11/2008 - 19:44:36 - [0,764] ----D- C:\Program Files\Microsoft CAPICOM 2.1.0.2
O43 - CFD: 18/05/2004 - 12:56:58 - [0] ----D- C:\Program Files\microsoft frontpage
O43 - CFD: 19/10/2004 - 11:18:16 - [72,293] ----D- C:\Program Files\Microsoft Office
O43 - CFD: 14/10/2011 - 15:30:36 - [0] ----D- C:\Program Files\moh
O43 - CFD: 15/11/2005 - 10:26:20 - [1,245] ----D- C:\Program Files\Motive
O43 - CFD: 20/03/2012 - 20:54:44 - [16,290] ----D- C:\Program Files\Movie Maker
O43 - CFD: 17/03/2012 - 22:39:30 - [38,599] ----D- C:\Program Files\Mozilla Firefox
O43 - CFD: 17/03/2012 - 19:13:18 - [0,199] ----D- C:\Program Files\Mozilla Maintenance Service
O43 - CFD: 09/09/2008 - 16:32:06 - [35,950] ----D- C:\Program Files\MSN
O43 - CFD: 18/05/2004 - 12:52:36 - [8,341] ----D- C:\Program Files\MSN Gaming Zone
O43 - CFD: 19/03/2012 - 21:34:12 - [0] ----D- C:\Program Files\MSXML 4.0
O43 - CFD: 21/12/2011 - 19:35:10 - [0,007] ----D- C:\Program Files\MSXML 6.0
O43 - CFD: 18/03/2012 - 18:44:28 - [3,133] ----D- C:\Program Files\NetMeeting
O43 - CFD: 15/11/2005 - 10:26:10 - [26,442] ----D- C:\Program Files\Numericable
O43 - CFD: 28/03/2010 - 15:26:38 - [1,774] ----D- C:\Program Files\Orange
O43 - CFD: 19/03/2012 - 21:51:12 - [4,176] ----D- C:\Program Files\Outlook Express
O43 - CFD: 15/01/2006 - 19:58:04 - [14,515] ----D- C:\Program Files\Philips
O43 - CFD: 01/12/2008 - 14:52:30 - [0,002] ----D- C:\Program Files\QuickTime
O43 - CFD: 17/03/2012 - 12:47:14 - [90,959] ----D- C:\Program Files\Real
O43 - CFD: 21/12/2011 - 20:19:58 - [72,083] ----D- C:\Program Files\Research In Motion
O43 - CFD: 21/12/2011 - 20:30:50 - [127,892] ----D- C:\Program Files\Roxio
O43 - CFD: 18/05/2004 - 12:54:18 - [0,003] ----D- C:\Program Files\Services en ligne
O43 - CFD: 26/07/2010 - 14:35:38 - [14,184] ----D- C:\Program Files\SFR
O43 - CFD: 07/02/2009 - 14:36:38 - [0,553] ----D- C:\Program Files\SopCast
O43 - CFD: 14/03/2012 - 18:31:58 - [62,315] ----D- C:\Program Files\Spybot - Search & Destroy
O43 - CFD: 17/03/2012 - 19:27:12 - [139,782] ----D- C:\Program Files\Spybot - Search & Destroy 2
O43 - CFD: 14/03/2012 - 19:01:04 - [1,382] ----D- C:\Program Files\SpywareGuard
O43 - CFD: 18/05/2004 - 14:08:08 - [1,945] ----D- C:\Program Files\srslabs
O43 - CFD: 18/03/2012 - 12:32:12 - [8,911] ----D- C:\Program Files\Synaptics
O43 - CFD: 15/02/2012 - 20:35:56 - [0,393] ----D- C:\Program Files\TelevisionFanatic
O43 - CFD: 18/05/2004 - 14:08:38 - [29,716] ----D- C:\Program Files\TOSHIBA
O43 - CFD: 18/05/2004 - 13:10:20 - [6,022] --H-D- C:\Program Files\Uninstall Information
O43 - CFD: 01/07/2006 - 23:51:34 - [15,569] ----D- C:\Program Files\Webteh
O43 - CFD: 19/03/2012 - 22:17:48 - [59,383] ----D- C:\Program Files\Winamp
O43 - CFD: 17/03/2012 - 13:48:42 - [0,148] ----D- C:\Program Files\Winamp Detect
O43 - CFD: 25/09/2009 - 11:15:54 - [43,742] ----D- C:\Program Files\Windows Live
O43 - CFD: 25/09/2009 - 11:15:30 - [0,234] ----D- C:\Program Files\Windows Live SkyDrive
O43 - CFD: 17/12/2008 - 12:48:56 - [0,002] ----D- C:\Program Files\Windows Live Toolbar
O43 - CFD: 17/03/2012 - 18:25:06 - [3,415] ----D- C:\Program Files\Windows Media Connect 2
O43 - CFD: 18/03/2012 - 18:43:52 - [24,504] ----D- C:\Program Files\Windows Media Player
O43 - CFD: 18/03/2012 - 18:43:46 - [3,760] ----D- C:\Program Files\Windows NT
O43 - CFD: 15/11/2005 - 10:27:30 - [0,009] --H-D- C:\Program Files\WindowsUpdate
O43 - CFD: 17/03/2012 - 19:08:54 - [3,881] ----D- C:\Program Files\WinRAR
O43 - CFD: 18/05/2004 - 12:56:58 - [0] ----D- C:\Program Files\xerox
O43 - CFD: 23/11/2006 - 11:04:50 - [2,483] ----D- C:\Program Files\Yahoo!
O43 - CFD: 23/03/2012 - 19:30:50 - [10,091] ----D- C:\Program Files\ZHPDiag
O43 - CFD: 15/11/2005 - 10:27:00 - [6,490] ----D- C:\Program Files\Common Files\Motive
O43 - CFD: 18/05/2004 - 13:19:58 - [0] ----D- C:\Program Files\Common Files\System
O43 - CFD: 17/03/2012 - 11:58:40 - [50,839] ----D- C:\Program Files\Fichiers Communs\Adobe
O43 - CFD: 26/12/2004 - 15:40:52 - [8,403] ----D- C:\Program Files\Fichiers Communs\Ahead
O43 - CFD: 17/03/2012 - 12:26:34 - [84,043] ----D- C:\Program Files\Fichiers Communs\Apple
O43 - CFD: 04/08/2010 - 13:09:02 - [0] ----D- C:\Program Files\Fichiers Communs\AVSMedia
O43 - CFD: 24/01/2009 - 19:30:30 - [0,066] ----D- C:\Program Files\Fichiers Communs\BOONTY Shared
O43 - CFD: 19/09/2010 - 13:24:42 - [0,001] ----D- C:\Program Files\Fichiers Communs\CANON
O43 - CFD: 19/10/2004 - 11:18:42 - [0,082] ----D- C:\Program Files\Fichiers Communs\Designer
O43 - CFD: 28/04/2008 - 18:40:34 - [0,001] ----D- C:\Program Files\Fichiers Communs\France Telecom
O43 - CFD: 21/12/2011 - 20:29:36 - [19,357] ----D- C:\Program Files\Fichiers Communs\InstallShield
O43 - CFD: 25/01/2009 - 17:18:52 - [0,258] ----D- C:\Program Files\Fichiers Communs\Macrovision Shared
O43 - CFD: 29/07/2010 - 21:17:18 - [76,438] ----D- C:\Program Files\Fichiers Communs\Microsoft Shared
O43 - CFD: 18/05/2004 - 12:53:52 - [0,542] ----D- C:\Program Files\Fichiers Communs\MSSoap
O43 - CFD: 18/05/2004 - 13:48:44 - [0] ----D- C:\Program Files\Fichiers Communs\ODBC
O43 - CFD: 17/03/2012 - 12:40:02 - [1,160] ----D- C:\Program Files\Fichiers Communs\Real
O43 - CFD: 21/12/2011 - 20:18:22 - [31,922] ----D- C:\Program Files\Fichiers Communs\Research In Motion
O43 - CFD: 21/12/2011 - 20:31:08 - [99,553] ----D- C:\Program Files\Fichiers Communs\Roxio Shared
O43 - CFD: 18/05/2004 - 12:53:56 - [0,008] ----D- C:\Program Files\Fichiers Communs\Services
O43 - CFD: 21/12/2011 - 20:29:38 - [3,333] ----D- C:\Program Files\Fichiers Communs\Sonic Shared
O43 - CFD: 18/05/2004 - 13:48:40 - [3,612] ----D- C:\Program Files\Fichiers Communs\SpeechEngines
O43 - CFD: 18/05/2004 - 14:08:08 - [0,121] ----D- C:\Program Files\Fichiers Communs\SRS
O43 - CFD: 05/12/2005 - 21:28:36 - [0,246] ----D- C:\Program Files\Fichiers Communs\Symantec Shared
O43 - CFD: 18/03/2012 - 18:43:06 - [13,349] ----D- C:\Program Files\Fichiers Communs\System
O43 - CFD: 11/05/2005 - 08:08:38 - [3,483] ----D- C:\Program Files\Fichiers Communs\Vbox
O43 - CFD: 25/09/2009 - 11:09:42 - [0] ----D- C:\Program Files\Fichiers Communs\Windows Live
O43 - CFD: 17/03/2012 - 12:46:24 - [0,336] ----D- C:\Program Files\Fichiers Communs\xing shared
O43 - CFD: 27/03/2009 - 11:35:30 - [10,146] ----D- C:\Documents and Settings\leclercq\Application Data\Adobe
O43 - CFD: 29/11/2005 - 09:44:12 - [0] ----D- C:\Documents and Settings\leclercq\Application Data\AdobeUM
O43 - CFD: 17/03/2012 - 18:34:34 - [0,097] ----D- C:\Documents and Settings\leclercq\Application Data\Apple Computer
O43 - CFD: 29/07/2010 - 21:23:56 - [0] ----D- C:\Documents and Settings\leclercq\Application Data\AVS4YOU
O43 - CFD: 18/03/2012 - 00:17:40 - [26,635] ----D- C:\Documents and Settings\leclercq\Application Data\BSplayer
O43 - CFD: 17/03/2012 - 11:43:04 - [0,006] ----D- C:\Documents and Settings\leclercq\Application Data\BSplayer Pro
O43 - CFD: 16/11/2008 - 17:02:28 - [0] ----D- C:\Documents and Settings\leclercq\Application Data\Capcom
O43 - CFD: 09/09/2008 - 18:43:56 - [0,035] ----D- C:\Documents and Settings\leclercq\Application Data\Google
O43 - CFD: 18/05/2004 - 13:14:16 - [0] ----D- C:\Documents and Settings\leclercq\Application Data\Identities
O43 - CFD: 21/12/2011 - 20:34:12 - [0,000] ----D- C:\Documents and Settings\leclercq\Application Data\InstallShield
O43 - CFD: 20/12/2004 - 19:00:02 - [0,033] ----D- C:\Documents and Settings\leclercq\Application Data\InterVideo
O43 - CFD: 29/04/2008 - 12:25:58 - [0] ----D- C:\Documents and Settings\leclercq\Application Data\Lavasoft
O43 - CFD: 18/11/2005 - 16:26:36 - [1,768] ----D- C:\Documents and Settings\leclercq\Application Data\Macromedia
O43 - CFD: 04/03/2012 - 22:31:16 - [0,262] ----D- C:\Documents and Settings\leclercq\Application Data\Malwarebytes
O43 - CFD: 19/03/2012 - 21:41:40 - [2,000] -S--D- C:\Documents and Settings\leclercq\Application Data\Microsoft
O43 - CFD: 19/12/2008 - 18:19:46 - [20,349] ----D- C:\Documents and Settings\leclercq\Application Data\Mozilla
O43 - CFD: 09/09/2008 - 16:32:04 - [0,236] ----D- C:\Documents and Settings\leclercq\Application Data\MSN6
O43 - CFD: 14/02/2009 - 15:51:28 - [0,000] ----D- C:\Documents and Settings\leclercq\Application Data\PCToolsFirewallPlus
O43 - CFD: 17/03/2012 - 12:53:22 - [55,903] ----D- C:\Documents and Settings\leclercq\Application Data\Real
O43 - CFD: 21/12/2011 - 21:53:04 - [6,954] ----D- C:\Documents and Settings\leclercq\Application Data\Research In Motion
O43 - CFD: 21/12/2011 - 20:57:34 - [4,370] ----D- C:\Documents and Settings\leclercq\Application Data\Roxio
O43 - CFD: 18/05/2004 - 13:18:10 - [0,241] ----D- C:\Documents and Settings\leclercq\Application Data\Sun
O43 - CFD: 18/11/2005 - 16:09:08 - [0,013] ----D- C:\Documents and Settings\leclercq\Application Data\Symantec
O43 - CFD: 18/05/2004 - 14:05:10 - [0] ----D- C:\Documents and Settings\leclercq\Application Data\toshiba
O43 - CFD: 05/09/2011 - 20:26:28 - [3,438] ----D- C:\Documents and Settings\leclercq\Application Data\U3
O43 - CFD: 29/05/2009 - 23:41:28 - [0] ----D- C:\Documents and Settings\leclercq\Application Data\WinRAR
O43 - CFD: 11/05/2005 - 08:44:40 - [0] ----D- C:\Documents and Settings\leclercq\Local Settings\Application Data\Adobe
O43 - CFD: 17/03/2012 - 12:29:00 - [0] ----D- C:\Documents and Settings\leclercq\Local Settings\Application Data\Apple
O43 - CFD: 10/12/2005 - 13:12:02 - [0,019] ----D- C:\Documents and Settings\leclercq\Local Settings\Application Data\Apple Computer
O43 - CFD: 20/03/2012 - 21:00:08 - [0,003] ----D- C:\Documents and Settings\leclercq\Local Settings\Application Data\ApplicationHistory
O43 - CFD: 17/03/2012 - 12:59:28 - [15,894] ----D- C:\Documents and Settings\leclercq\Local Settings\Application Data\Google
O43 - CFD: 28/12/2004 - 15:48:30 - [0,630] ----D- C:\Documents and Settings\leclercq\Local Settings\Application Data\Identities
O43 - CFD: 20/03/2012 - 18:23:40 - [38,022] ----D- C:\Documents and Settings\leclercq\Local Settings\Application Data\Microsoft
O43 - CFD: 17/12/2008 - 12:42:06 - [63,129] ----D- C:\Documents and Settings\leclercq\Local Settings\Application Data\Mozilla
O43 - CFD: 17/03/2012 - 12:50:22 - [0] ----D- C:\Documents and Settings\leclercq\Local Settings\Application Data\Real
O43 - CFD: 15/03/2009 - 20:42:54 - [0] ----D- C:\Documents and Settings\leclercq\Local Settings\Application Data\TVU Networks
O43 - CFD: 25/12/2004 - 16:26:38 - [0] ----D- C:\Documents and Settings\leclercq\Local Settings\Application Data\WMTools Downloaded Files
O43 - CFD: 18/05/2004 - 13:17:54 - [8,880] ----D- C:\Documents and Settings\leclercq\Local Settings\Application Data\{7148F0A6-6813-11D6-A77B-00B0D0142040}
~ Scan Program Folder in 00mn 45s
---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.B60722D1066CD49614ED871300303377] - 23/03/2012 - 18:55:28 ---A- . (...) -- C:\WINDOWS\WindowsUpdate.log [1406287]
O44 - LFC:[MD5.248354220DA8F1C9D8CFC16E115CBF68] - 23/03/2012 - 17:45:55 ---A- . (...) -- C:\WINDOWS\system32\pool.bin [256]
O44 - LFC:[MD5.1AD73B2A9CFF73F77D57099C096DBB19] - 23/03/2012 - 17:10:13 ---A- . (...) -- C:\WINDOWS\wiadebug.log [159]
O44 - LFC:[MD5.74939CE07DDE96F34CE54820611A8305] - 23/03/2012 - 17:10:12 ---A- . (...) -- C:\WINDOWS\wiaservc.log [50]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 23/03/2012 - 17:08:51 ---A- . (...) -- C:\WINDOWS\0.log [0]
O44 - LFC:[MD5.6A2CB42966136854F4464516FBB4AE72] - 23/03/2012 - 17:08:48 -S-A- . (...) -- C:\WINDOWS\bootstat.dat [2048]
O44 - LFC:[MD5.ACF5F9F1649751B9B56A28FF3F18BDFE] - 22/03/2012 - 21:13:56 ---A- . (...) -- C:\WINDOWS\SchedLgU.Txt [32358]
O44 - LFC:[MD5.489259ED0945278DE654B1DBE88CA3B4] - 22/03/2012 - 20:32:15 -SHA- . (...) -- C:\WINDOWS\Thumbs.db [7680]
O44 - LFC:[MD5.A7EB72E5C2D3DC418666AE4F5A6F2D38] - 20/03/2012 - 21:18:05 ---A- . (...) -- C:\WINDOWS\system32\PerfStringBackup.INI [1041316]
O44 - LFC:[MD5.F996D0FC7CA65987326E968DE36EC76D] - 20/03/2012 - 21:18:05 ---A- . (...) -- C:\WINDOWS\system32\perfc009.dat [65076]
O44 - LFC:[MD5.8AAA63C2AF8C99050E12C5D0D7FB6414] - 20/03/2012 - 21:18:05 ---A- . (...) -- C:\WINDOWS\system32\perfc00C.dat [78690]
O44 - LFC:[MD5.37B05826E060BB41A55289F3AC247C40] - 20/03/2012 - 21:18:05 ---A- . (...) -- C:\WINDOWS\system32\perfh009.dat [409278]
O44 - LFC:[MD5.5453496105A8C59B07499A402F187F78] - 20/03/2012 - 21:18:05 ---A- . (...) -- C:\WINDOWS\system32\perfh00C.dat [477588]
O44 - LFC:[MD5.92601FEC165A476DB93B3387D23C7A51] - 20/03/2012 - 21:02:37 ---A- . (...) -- C:\WINDOWS\FaxSetup.log [49461]
O44 - LFC:[MD5.49976FA84BD971C70AF0D0CADD6E01AC] - 20/03/2012 - 21:02:37 ---A- . (...) -- C:\WINDOWS\KB951376-v2.log [14640]
O44 - LFC:[MD5.BB27AEB0CBEC49A7374120714DAB01C4] - 20/03/2012 - 21:02:37 ---A- . (...) -- C:\WINDOWS\comsetup.log [16246]
O44 - LFC:[MD5.E8D6DC71565FA049D56AF597E17B683D] - 20/03/2012 - 21:02:37 ---A- . (...) -- C:\WINDOWS\iis6.log [7851]
O44 - LFC:[MD5.84C20FA2CD6FC452855AAC5137269573] - 20/03/2012 - 21:02:37 ---A- . (...) -- C:\WINDOWS\imsins.log [1374]
O44 - LFC:[MD5.CCF4843B64B1A65D37317F8907C7CA97] - 20/03/2012 - 21:02:37 ---A- . (...) -- C:\WINDOWS\msgsocm.log [2472]
O44 - LFC:[MD5.446744681615FDF908EE46C63FACE1CF] - 20/03/2012 - 21:02:37 ---A- . (...) -- C:\WINDOWS\ntdtcsetup.log [9853]
O44 - LFC:[MD5.CB640172609194CAAC48D23C39FC79FB] - 20/03/2012 - 21:02:37 ---A- . (...) -- C:\WINDOWS\ocgen.log [23648]
O44 - LFC:[MD5.2D530D4B5ED38B969844B4EAD74B2658] - 20/03/2012 - 21:02:37 ---A- . (...) -- C:\WINDOWS\ocmsn.log [2736]
O44 - LFC:[MD5.D17BDE6191816F8CD31B60C2519EEA1B] - 20/03/2012 - 21:02:37 ---A- . (...) -- C:\WINDOWS\setupapi.log [12295]
O44 - LFC:[MD5.90EA0882D18EC6FA2A4906A5CA8403BC] - 20/03/2012 - 21:02:37 ---A- . (...) -- C:\WINDOWS\tsoc.log [18875]
O44 - LFC:[MD5.3EC706521A3ED15AE64148B96EF4639B] - 20/03/2012 - 21:02:17 ---A- . (...) -- C:\WINDOWS\KB952954.log [18415]
O44 - LFC:[MD5.67ACE9FDF5E27568166E8751C382DC90] - 20/03/2012 - 21:02:17 ---A- . (...) -- C:\WINDOWS\imsins.BAK [1374]
O44 - LFC:[MD5.8846C54006A61F430CFF0FEC9E8722B5] - 20/03/2012 - 21:02:14 ---A- . (...) -- C:\WINDOWS\updspapi.log [4827]
O44 - LFC:[MD5.C2BF1EE56F3D7F789D6E017284A5D9F5] - 20/03/2012 - 21:01:55 ---A- . (...) -- C:\WINDOWS\KB959426.log [18010]
O44 - LFC:[MD5.D0C534D342C19DF44CC9F08FB8E6AABF] - 20/03/2012 - 21:01:28 ---A- . (...) -- C:\WINDOWS\KB2345886.log [19141]
O44 - LFC:[MD5.2007513CF74BF5C47AB1978CE566803A] - 20/03/2012 - 21:01:03 ---A- . (...) -- C:\WINDOWS\KB970430.log [19637]
O44 - LFC:[MD5.7CD03BD4045E41CB107AD52BA74F3565] - 20/03/2012 - 20:51:15 ---A- . (...) -- C:\WINDOWS\KB2647516-IE8.log [16863]
O44 - LFC:[MD5.D12B012085864EEE0C9CB88C8ED326D8] - 20/03/2012 - 20:47:04 ---A- . (...) -- C:\WINDOWS\KB2510531-IE8.log [7871]
O44 - LFC:[MD5.D627DF7168ED3802657F93A175C86AB0] - 20/03/2012 - 20:46:46 ---A- . (...) -- C:\WINDOWS\KB2544521-IE8.log [7787]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 20/03/2012 - 20:46:41 ---A- . (...) -- C:\WINDOWS\setupact.log [0]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 20/03/2012 - 20:46:41 ---A- . (...) -- C:\WINDOWS\setuperr.log [0]
O44 - LFC:[MD5.6709E2001A8DF24E564D24D456BAEF8C] - 20/03/2012 - 18:20:17 ---A- . (...) -- C:\WINDOWS\system32\FNTCACHE.DAT [161136]
O44 - LFC:[MD5.E649D3B5505CE30E7FB57038F9B3151E] - 19/03/2012 - 21:53:39 ---A- . (...) -- C:\WINDOWS\system32\TZLog.log [5142]
O44 - LFC:[MD5.5C174F8108BAB900D3AB1DF1A29A58E5] - 18/03/2012 - 20:14:52 ---A- . (...) -- C:\WINDOWS\system32\spupdwxp.log [90]
O44 - LFC:[MD5.4E7C1CDC3E2AA5D7DF3753D5A1A757FD] - 18/03/2012 - 20:12:46 ---A- . (...) -- C:\WINDOWS\system32\wpa.dbl [1158]
O44 - LFC:[MD5.2DD45D0879992D420BB2F86E5B72AE5F] - 18/03/2012 - 19:43:30 RSHA- . (...) -- C:\boot.ini [216]
O44 - LFC:[MD5.B2DE3452DE03674C6CEC68B8C8CE7C78] - 18/03/2012 - 18:12:39 ---A- . (...) -- C:\ntdetect.com [47564]
O44 - LFC:[MD5.7794C3221F670DE270586A2CF6E68383] - 18/03/2012 - 18:12:37 ---A- . (...) -- C:\ntldr [252240]
O44 - LFC:[MD5.A06C386CC3CF9CFAA37C23A61699F0E0] - 18/03/2012 - 13:05:12 ---A- . (...) -- C:\WINDOWS\orun32.ini [931]
O44 - LFC:[MD5.90BDA3A1C23ACDCDF695C1F51F066277] - 18/03/2012 - 12:20:45 ---A- . (...) -- C:\WINDOWS\system32\amcompat.tlb [16832]
O44 - LFC:[MD5.49B6BA0569D3936F3BE609D60D7E6ADA] - 18/03/2012 - 12:20:45 ---A- . (...) -- C:\WINDOWS\system32\nscompat.tlb [23392]
O44 - LFC:[MD5.625503707B10E843432CDA4ABCAA5DC3] - 18/03/2012 - 12:09:38 ---A- . (...) -- C:\WINDOWS\system32\spdwnwxp.log [396]
O44 - LFC:[MD5.A9C25C9A8F9DA7F25C14D84C4CE845A3] - 17/03/2012 - 19:24:10 ---A- . (.Safer Networking Limited - Pas de description.) -- C:\WINDOWS\system32\sdnclean.exe [15224]
O44 - LFC:[MD5.608465F7D653BD90AFC25BA69B6ACC98] - 17/03/2012 - 19:19:43 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\WINDOWS\system32\FlashPlayerApp.exe [417440]
O44 - LFC:[MD5.AB8F5FB5829E6EC3A8935AA3B722B707] - 17/03/2012 - 19:19:43 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\WINDOWS\system32\FlashPlayerCPLApp.cpl [70304]
O44 - LFC:[MD5.06064FD9A88FAB866E0B35CB17D9105B] - 17/03/2012 - 18:25:39 ---A- . (...) -- C:\WINDOWS\win.ini [517]
O44 - LFC:[MD5.CBB5502FB7ED2900E99AEE15D830E676] - 17/03/2012 - 12:48:18 ---A- . (...) -- C:\WINDOWS\winamp.ini [1065]
O44 - LFC:[MD5.1147A1B21D23716CA6DFBB94955E3F58] - 17/03/2012 - 12:44:33 ---A- . (.RealNetworks, Inc. - Real Player(tm) ActiveX Control.) -- C:\WINDOWS\system32\rmoc3260.dll [198832]
O44 - LFC:[MD5.B74E422BC81236042529DC8A42A18423] - 17/03/2012 - 12:42:11 ---A- . (.RealNetworks, Inc. - 32 bit DirectX helper DLL.) -- C:\WINDOWS\system32\pndx5032.dll [5632]
O44 - LFC:[MD5.33833B3EDA1B07EBD367FA9B38B23E60] - 17/03/2012 - 12:42:10 ---A- . (.RealNetworks, Inc. - 16 bit DirectX helper DLL.) -- C:\WINDOWS\system32\pndx5016.dll [6656]
O44 - LFC:[MD5.B4EB68502E52EBDC0B2C55EA3445284C] - 17/03/2012 - 12:41:53 ---A- . (.Progressive Networks - Pas de description.) -- C:\WINDOWS\system32\pncrt.dll [272896]
O44 - LFC:[MD5.A8BA02E8AF5533E1BEA605F192CEBD40] - 16/03/2012 - 12:49:07 ---A- . (...) -- C:\Ad-Report-SCAN[1].txt [2866]
O44 - LFC:[MD5.142E2860EA3F4700A5646D276BC127C9] - 16/03/2012 - 12:21:17 ---A- . (...) -- C:\AdwCleaner[S1].txt [1578]
O44 - LFC:[MD5.D225676E33E8A1D174D57552C01C339A] - 16/03/2012 - 12:20:19 ---A- . (...) -- C:\AdwCleaner[R1].txt [1389]
O44 - LFC:[MD5.9681A655BE1D8AFF0D1A352504E4AF0C] - 14/03/2012 - 16:39:47 ---A- . (...) -- C:\WINDOWS\system32\CONFIG.NT [3120]
O44 - LFC:[MD5.6964EE1C0160B21E00967681F9128568] - 07/03/2012 - 01:15:19 ---A- . (.AVAST Software - avast! Screen Saver stub.) -- C:\WINDOWS\avastSS.scr [41184]
O44 - LFC:[MD5.4AD63592D55E91ABB4E29541358CEAEE] - 07/03/2012 - 01:15:14 ---A- . (.AVAST Software - avast! start-up scanner.) -- C:\WINDOWS\system32\aswBoot.exe [201352]
O44 - LFC:[MD5.DCB199B967375753B5019EC15F008F53] - 07/03/2012 - 01:03:51 ---A- . (.AVAST Software - avast! Virtualization Driver.) -- C:\WINDOWS\system32\drivers\aswSnx.sys [612184]
O44 - LFC:[MD5.B32873E5A1443C0A1E322266E203BF10] - 07/03/2012 - 01:03:38 ---A- . (.AVAST Software - avast! self protection module.) -- C:\WINDOWS\system32\drivers\aswSP.sys [337880]
O44 - LFC:[MD5.DA12626FD9A67F4E917E2F2FBE1E1764] - 07/03/2012 - 01:02:00 ---A- . (.AVAST Software - avast! TDI Redirect Driver.) -- C:\WINDOWS\system32\drivers\aswRdr.sys [35672]
O44 - LFC:[MD5.6FF544175A9180C5D88534D3D9C9A9F7] - 07/03/2012 - 01:01:53 ---A- . (.AVAST Software - avast! TDI Filter Driver.) -- C:\WINDOWS\system32\drivers\aswTdi.sys [53848]
O44 - LFC:[MD5.8C30B7DDD2F1D8D138EBE40345AF2B11] - 07/03/2012 - 01:01:39 ---A- . (.AVAST Software - avast! File System Filter Driver for Window.) -- C:\WINDOWS\system32\drivers\aswmon2.sys [95704]
O44 - LFC:[MD5.970848A56D5D9D0D616F1D94DA017495] - 07/03/2012 - 01:01:35 ---A- . (.AVAST Software - avast! File System Filter Driver for Window.) -- C:\WINDOWS\system32\drivers\aswmon.sys [89048]
O44 - LFC:[MD5.0AE43C6C411254049279C2EE55630F95] - 07/03/2012 - 01:01:30 ---A- . (.AVAST Software - avast! File System Access Blocking Driver.) -- C:\WINDOWS\system32\drivers\aswFsBlk.sys [20696]
O44 - LFC:[MD5.473F97EDC5A5312F3665AB2921196C0C] - 07/03/2012 - 00:58:29 ---A- . (.AVAST Software - avast! Base Kernel-Mode Device Driver for W.) -- C:\WINDOWS\system32\drivers\aavmker4.sys [24920]
O44 - LFC:[MD5.B7CA8CC3F978201856B6AB82F40953C3] - 04/03/2012 - 22:30:56 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\WINDOWS\system32\drivers\mbam.sys [20464]
O44 - LFC:[MD5.871A8700917ECC40491006EE155A1A02] - 04/03/2012 - 22:02:47 ---A- . (...) -- C:\WINDOWS\system32\c_7265217.nls [179716]
O44 - LFC:[MD5.8737F6F4C8EC1E2A9EA5516F1B3AE1AD] - 28/12/2006 - 12:01:32 ---A- . (...) -- C:\WINDOWS\002965_.tmp [19569]
~ Scan Files in 00mn 41s
---\\ Export de clé d'application autorisée (O47)
O47 - AAKE:Key Export SP - "C:\Program Files\Orange\Connectivity\ConnectivityManager.exe" [Enabled] .(...) -- C:\Program Files\Orange\Connectivity\ConnectivityManager.exe (.not file.)
O47 - AAKE:Key Export SP - "%windir%\Network Diagnostic\xpnetdiag.exe" [Enabled] .(.Microsoft Corporation - Network Diagnostic for Windows XP.) -- C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O47 - AAKE:Key Export SP - "%windir%\system32\sessmgr.exe" [Enabled] .(.Microsoft Corporation - Gestionnaire de session de l'aide sur le Bureau à distance de Microsoft®.) -- C:\WINDOWS\system32\sessmgr.exe
O47 - AAKE:Key Export DP - "%windir%\Network Diagnostic\xpnetdiag.exe" [Enabled] .(.Microsoft Corporation - Network Diagnostic for Windows XP.) -- C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O47 - AAKE:Key Export DP - "%windir%\system32\sessmgr.exe" [Enabled] .(.Microsoft Corporation - Gestionnaire de session de l'aide sur le Bureau à distance de Microsoft®.) -- C:\WINDOWS\system32\sessmgr.exe
~ Scan Keys in 00mn 00s
---\\ Déni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\WINDOWS\system32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l'Éditeur de configuration de sécurité Windows.) -- C:\WINDOWS\system32\scecli.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l'Éditeur de configuration de sécurité Windows.) -- C:\WINDOWS\system32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Kerberos Security Package.) -- C:\WINDOWS\system32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\WINDOWS\system32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\WINDOWS\system32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\WINDOWS\system32\wdigest.dll
~ Scan Keys in 00mn 00s
---\\ Contrôle du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmboot.sys . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disque NT.) -- C:\WINDOWS\system32\Drivers\dmboot.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmio.sys . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\system32\Drivers\dmio.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmload.sys . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\system32\Drivers\dmload.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (...) -- C:\WINDOWS\system32\Drivers\sermouse.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sr.sys . (.Microsoft Corporation - Pilote de filtre de système de fichiers pour la restauration du système.) -- C:\WINDOWS\system32\Drivers\sr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\WINDOWS\system32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\WINDOWS\system32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmboot.sys . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disque NT.) -- C:\WINDOWS\system32\Drivers\dmboot.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmio.sys . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\system32\Drivers\dmio.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmload.sys . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\system32\Drivers\dmload.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ip6fw.sys . (.Microsoft Corporation - IPv6 Windows Firewall Driver.) -- C:\WINDOWS\system32\Drivers\ip6fw.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\system32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpcdd.sys . (.Microsoft Corporation - RDP Miniport.) -- C:\WINDOWS\system32\Drivers\rdpcdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpdd.sys . (...) -- C:\WINDOWS\system32\Drivers\rdpdd.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpwd.sys . (.Microsoft Corporation - RDP Terminal Stack Driver (US/Canada Only, Not for Export).) -- C:\WINDOWS\system32\Drivers\rdpwd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (...) -- C:\WINDOWS\system32\Drivers\sermouse.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sr.sys . (.Microsoft Corporation - Pilote de filtre de système de fichiers pour la restauration du système.) -- C:\WINDOWS\system32\Drivers\sr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\tdpipe.sys . (.Microsoft Corporation - Named Pipe Transport Driver.) -- C:\WINDOWS\system32\Drivers\tdpipe.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\tdtcp.sys . (.Microsoft Corporation - TCP Transport Driver.) -- C:\WINDOWS\system32\Drivers\tdtcp.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\WINDOWS\system32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\WINDOWS\system32\Drivers\vgasave.sys (.not file.)
~ Scan CSB in 00mn 00s
---\\ Image File Execution Options (IFEO) (O50)
O50 - IFEO:Image File Execution Options - Your Image File Name Here without a path - ntsd -d
~ Scan IFEO in 00mn 00s
---\\ MountPoints2 Shell Key (O51) (None)
---\\ Trojan Driver Search Data (HKLM) (O52)
O52 - TDSD: \Drivers32\"msacm.trspch"="tssoft32.acm" . (.DSP GROUP, INC. - Codec audio TrueSpeech(TM) DSP Group pour MSACM V3.50.) -- C:\WINDOWS\system32\tssoft32.acm
O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Cinepak® Codec.) -- C:\WINDOWS\system32\iccvid.dll
O52 - TDSD: \Drivers32\"vidc.I420"="i263_32.drv" . (.Intel Corporation - Intel I.263 Video Driver 2.55.012.) -- C:\WINDOWS\system32\I263_32.drv
O52 - TDSD: \Drivers32\"vidc.iv31"="Ir32_32.dll" . (...) -- C:\WINDOWS\system32\Ir32_32.dll
O52 - TDSD: \Drivers32\"vidc.iv32"="Ir32_32.dll" . (...) -- C:\WINDOWS\system32\Ir32_32.dll
O52 - TDSD: \Drivers32\"msacm.sl_anet"="sl_anet.acm" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\WINDOWS\system32\sl_anet.acm
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\WINDOWS\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\WINDOWS\system32\l3codeca.acm
O52 - TDSD: \Drivers32\"vidc.iv41"="Ir41_32.ax" . (.Intel Corporation - Intel Indeo® Video 4.5.) -- C:\WINDOWS\system32\ir41_32.ax
O52 - TDSD: \Drivers32\"msacm.iac2"="C:\WINDOWS\System32\iac25_32.ax" . (.Ligos Corporation - Indeo® Audio Software.) -- C:\WINDOWS\system32\iac25_32.ax
O52 - TDSD: \Drivers32\"vidc.iv50"="ir50_32.dll" . (.Ligos Corporation - Ligos Indeo XP (Indeo® Video 5.2).) -- C:\WINDOWS\system32\Ir50_32.dll
O52 - TDSD: \Drivers32\"vidc.DIVX"="divx.dll" . (.DivXNetworks, Inc. - DivX® Codec for Windows.) -- C:\WINDOWS\system32\divx.dll
O52 - TDSD: \Drivers32\"vidc.XVID"="xvidvfw.dll" . (...) -- C:\WINDOWS\system32\xvidvfw.dll
O52 - TDSD: \Drivers32\"msacm.lameacm"="lameACM.acm" . (.http://www.mp3dev.org/ - Lame MP3 codec engine.) -- C:\WINDOWS\system32\lameACM.acm
O52 - TDSD: \Drivers32\"vidc.3ivx"="3ivxVfWCodec.dll" . (.3ivx.com - 3ivx D4 4.5.1 Video for Windows Codec.) -- C:\WINDOWS\system32\3ivxVfWCodec.dll
O52 - TDSD: \Drivers32\"vidc.3iv2"="3ivxVfWCodec.dll" . (.3ivx.com - 3ivx D4 4.5.1 Video for Windows Codec.) -- C:\WINDOWS\system32\3ivxVfWCodec.dll
O52 - TDSD: \Drivers32\"msacm.divxa32"="divxa32.acm" . (.Kristal Studi - DivX WMA Audi.) -- C:\WINDOWS\system32\divxa32.acm
O52 - TDSD: \Drivers32\"VIDC.HFYU"="huffyuv.dll" . (.Disappearing Inc. - Huffyuv lossless video codec.) -- C:\WINDOWS\system32\huffyuv.dll
O52 - TDSD: \Drivers32\"VIDC.i263"="i263_32.drv" . (.Intel Corporation - Intel I.263 Video Driver 2.55.012.) -- C:\WINDOWS\system32\I263_32.drv
O52 - TDSD: \Drivers32\"msacm.imc"="imc32.acm" . (.Intel Corporation - Intel Music Coder for MSACM.) -- C:\WINDOWS\system32\IMC32.acm
O52 - TDSD: \Drivers32\"VIDC.IV40"="Ir41_32.ax" . (.Intel Corporation - Intel Indeo® Video 4.5.) -- C:\WINDOWS\system32\ir41_32.ax
O52 - TDSD: \Drivers32\"VIDC.VP60"="vp6vfw.dll" . (.On2.com - VP6 VIDEO FOR WINDOWS CODEC.) -- C:\WINDOWS\system32\vp6vfw.dll
O52 - TDSD: \Drivers32\"VIDC.VP61"="vp6vfw.dll" . (.On2.com - VP6 VIDEO FOR WINDOWS CODEC.) -- C:\WINDOWS\system32\vp6vfw.dll
O52 - TDSD: \Drivers32\"VIDC.VP62"="vp6vfw.dll" . (.On2.com - VP6 VIDEO FOR WINDOWS CODEC.) -- C:\WINDOWS\system32\vp6vfw.dll
O52 - TDSD: \Drivers32\"VIDC.VP31"="vp31vfw.dll" . (.On2.com - On2_VP3.) -- C:\WINDOWS\system32\vp31vfw.dll
O52 - TDSD: \Drivers32\"msacm.ac3acm"="ac3acm.acm" . (.fccHandler - AC-3 ACM Decompressor.) -- C:\WINDOWS\system32\ac3acm.acm
O52 - TDSD: \Drivers32\"vidc.ffds"="C:\PROGRA~1\ffdshow\ffdshow.ax" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"sl_anet.acm"="Sipro Lab Telecom Audio Codec" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\WINDOWS\system32\sl_anet.acm
O52 - TDSD: \drivers.desc\"C:\WINDOWS\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\WINDOWS\system32\l3codeca.acm
O52 - TDSD: \drivers.desc\"iac25_32.ax"="Indeo® audio software" . (.Ligos Corporation - Indeo® Audio Software.) -- C:\WINDOWS\system32\iac25_32.ax
O52 - TDSD: \drivers.desc\"ir50_32.dll"="Ligos Indeo® XP Video 5.2" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"divx.dll"="DivX Pro CE 5.1.1" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"xvidvfw.dll"="XviD MPEG-4 Video Codec" . (...) -- C:\WINDOWS\system32\xvidvfw.dll
O52 - TDSD: \drivers.desc\"lameACM.acm"="Lame ACM MP3 CODEC v3.95.1" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"3ivxVfWCodec.dll"="3ivx D4 4.5" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"divxa32.acm"="DivX ;) Audio" . (.Kristal Studi - DivX WMA Audi.) -- C:\WINDOWS\system32\divxa32.acm
O52 - TDSD: \drivers.desc\"huffyuv.dll"="Huffyuv lossless codec" . (.Disappearing Inc. - Huffyuv lossless video codec.) -- C:\WINDOWS\system32\huffyuv.dll
O52 - TDSD: \drivers.desc\"i263_32.drv"="Intel I.263 Video Driver 2.55.1.16" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"imc32.acm"="Intel Music Coder" . (.Intel Corporation - Intel Music Coder for MSACM.) -- C:\WINDOWS\system32\IMC32.acm
O52 - TDSD: \drivers.desc\"Ir32_32.dll"="Intel Indeo 3.2" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"Ir41_32.ax"="Indeo v.4.51.16.2 Interactive codec" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"vp6vfw.dll"="On2 VP6 codec" . (.On2.com - VP6 VIDEO FOR WINDOWS CODEC.) -- C:\WINDOWS\system32\vp6vfw.dll
O52 - TDSD: \drivers.desc\"vp31vfw.dll"="On2 VP3 codec" . (.On2.com - On2_VP3.) -- C:\WINDOWS\system32\vp31vfw.dll
O52 - TDSD: \drivers.desc\"ac3acm.acm"="AC3 ACM Decompressor" . (.fccHandler - AC-3 ACM Decompressor.) -- C:\WINDOWS\system32\ac3acm.acm
O52 - TDSD: \drivers.desc\"C:\WINDOWS\System32\iac25_32.ax"="Indeo® Audio Software" . (.Ligos Corporation - Indeo® Audio Software.) -- C:\WINDOWS\system32\iac25_32.ax
O52 - TDSD: \drivers.desc\"C:\PROGRA~1\ffdshow\ffdshow.ax"="ffdshow Video Codec" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"msg711.acm"="Microsoft CCITT G.711 Audio CODEC" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"msgsm32.acm"="Microsoft GSM 6.10 Audio CODEC" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"tssoft32.acm"="DSP Group TrueSpeech(TM) Audio CODEC" . (.DSP GROUP, INC. - Codec audio TrueSpeech(TM) DSP Group pour MSACM V3.50.) -- C:\WINDOWS\system32\tssoft32.acm
O52 - TDSD: \drivers.desc\"iccvid.dll"="Cinepak Codec by Radius Inc." . (...) -- (.not file.)
~ Scan Keys in 00mn 05s
---\\ ShareTools MSconfig StartupReg (O53) (None)
---\\ Microsoft Control Security Providers (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Client DPA pour plate-forme 32 bit.) -- C:\WINDOWS\system32\msapsspc.dll
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\WINDOWS\system32\schannel.dll
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Package d'authentification Digest SSPI.) -- C:\WINDOWS\system32\digest.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Client DPA pour plate-forme 32 bit.) -- C:\WINDOWS\system32\msapsspc.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\WINDOWS\system32\schannel.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Package d'authentification Digest SSPI.) -- C:\WINDOWS\system32\digest.dll
~ Scan Keys in 00mn 00s
---\\ Microsoft Windows Policies System (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
~ Scan Keys in 00mn 00s
---\\ Microsoft Windows Policies Explorer (O56)
O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveTypeAutoRun"=145
~ Scan Keys in 00mn 00s
---\\ Liste des Drivers Système (O58)
O58 - SDL:[MD5.473F97EDC5A5312F3665AB2921196C0C] - 07/03/2012 - 00:58:29 ---A- . (.AVAST Software - avast! Base Kernel-Mode Device Driver for Windows NT/2000/XP.) -- C:\WINDOWS\system32\drivers\aavmker4.sys [24920]
O58 - SDL:[MD5.052343CD49C8DA20C48958CFE73C7D44] - 20/02/2004 - 14:00:44 ---A- . (.Agere Systems - SoftModem Device Driver.) -- C:\WINDOWS\system32\drivers\AGRSM.sys [1265388]
O58 - SDL:[MD5.BA88534A3CEB6161E7432438B9EA4F54] - 24/02/2004 - 10:08:52 ---A- . (.Sensaura - Sensaura WDM 3D Audio Driver.) -- C:\WINDOWS\system32\drivers\ALCXSENS.SYS [400384]
O58 - SDL:[MD5.5FF6F7E58C798F1474C0BBFFC23CB78D] - 21/06/2004 - 15:53:20 ---A- . (.Realtek Semiconductor Corp. - Realtek AC'97 Audio Driver (WDM).) -- C:\WINDOWS\system32\drivers\ALCXWDM.SYS [626204]
O58 - SDL:[MD5.0AE43C6C411254049279C2EE55630F95] - 07/03/2012 - 01:01:30 ---A- . (.AVAST Software - avast! File System Access Blocking Driver.) -- C:\WINDOWS\system32\drivers\aswFsBlk.sys [20696]
O58 - SDL:[MD5.970848A56D5D9D0D616F1D94DA017495] - 07/03/2012 - 01:01:35 ---A- . (.AVAST Software - avast! File System Filter Driver for Windows NT/2000.) -- C:\WINDOWS\system32\drivers\aswmon.sys [89048]
O58 - SDL:[MD5.8C30B7DDD2F1D8D138EBE40345AF2B11] - 07/03/2012 - 01:01:39 ---A- . (.AVAST Software - avast! File System Filter Driver for Windows XP.) -- C:\WINDOWS\system32\drivers\aswmon2.sys [95704]
O58 - SDL:[MD5.DA12626FD9A67F4E917E2F2FBE1E1764] - 07/03/2012 - 01:02:00 ---A- . (.AVAST Software - avast! TDI Redirect Driver.) -- C:\WINDOWS\system32\drivers\aswRdr.sys [35672]
O58 - SDL:[MD5.DCB199B967375753B5019EC15F008F53] - 07/03/2012 - 01:03:51 ---A- . (.AVAST Software - avast! Virtualization Driver.) -- C:\WINDOWS\system32\drivers\aswSnx.sys [612184]
O58 - SDL:[MD5.B32873E5A1443C0A1E322266E203BF10] - 07/03/2012 - 01:03:38 ---A- . (.AVAST Software - avast! self protection module.) -- C:\WINDOWS\system32\drivers\aswSP.sys [337880]
O58 - SDL:[MD5.6FF544175A9180C5D88534D3D9C9A9F7] - 07/03/2012 - 01:01:53 ---A- . (.AVAST Software - avast! TDI Filter Driver.) -- C:\WINDOWS\system32\drivers\aswTdi.sys [53848]
O58 - SDL:[MD5.43CB9E73A60D27AD069046B88CC4EFEB] - 03/04/2008 - 04:03:08 ---A- . (.Atheros Communications, Inc. - Driver for Atheros AR5008 Wireless Network Adapter.) -- C:\WINDOWS\system32\drivers\athw.sys [1333152]
O58 - SDL:[MD5.59485150D0388E07772EAD4999A5AFC2] - 09/03/2004 - 18:28:38 ---A- . (.ATI Technologies Inc. - ATI Radeon Miniport Driver.) -- C:\WINDOWS\system32\drivers\ati2mtag.sys [680448]
O58 - SDL:[MD5.899C9F94ED5EC5EFF71AA6E17A084419] - 14/04/2004 - 13:52:22 ---A- . (.ATI Technologies Inc. - ATI IDE BUS Master Controller Driver.) -- C:\WINDOWS\system32\drivers\atiide.sys [5632]
O58 - SDL:[MD5.906FCF0D1DC5B573015BBD21EF54BD88] - 27/10/2003 - 11:59:00 ---A- . (.ATI Technologies Inc. - ATI AGP GART Driver.) -- C:\WINDOWS\system32\drivers\atisgkaf.SYS [13842]
O58 - SDL:[MD5.08F60F40D1A2A95A1F12EDDBD9F25C1C] - 25/01/2009 - 17:18:26 ---A- . (.Macrovision Europe Ltd - Macrovision SECURITY Driver.) -- C:\WINDOWS\system32\drivers\CdaC15BA.SYS [12464]
O58 - SDL:[MD5.837EEF65AF62D4E8A37C41D3879F7274] - 02/02/2007 - 04:00:00 ---A- . (.Sonic Solutions - CDR4 CD and DVD Place Holder Driver (see PxHelp).) -- C:\WINDOWS\system32\drivers\cdr4_xp.sys [9336]
O58 - SDL:[MD5.579DA2F9F5401F55DAE2CF8779D61DFC] - 02/02/2007 - 04:00:00 ---A- . (.Sonic Solutions - CDRAL Place Holder Driver (see PxHelp).) -- C:\WINDOWS\system32\drivers\cdralw2k.sys [9464]
O58 - SDL:[MD5.C9B25AE9B8ABD983C5AD3F8CBFAB0F9C] - 24/04/2003 - 12:00:00 ---A- . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\system32\drivers\cinemst2.sys [262528]
O58 - SDL:[MD5.9624293E55AD405415862B504CA95B73] - 24/04/2003 - 12:00:00 ---A- . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\system32\drivers\cpqdap01.sys [11776]
O58 - SDL:[MD5.32A73A8952580B284A47290ADB62032A] - 02/02/2005 - 01:21:04 ---A- . (.GEAR Software Inc. - CDRom Class Filter Driver.) -- C:\WINDOWS\system32\drivers\GEARAspiWDM.sys [14408]
O58 - SDL:[MD5.B7CA8CC3F978201856B6AB82F40953C3] - 10/12/2011 - 15:24:06 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\WINDOWS\system32\drivers\mbam.sys [20464]
O58 - SDL:[MD5.5CD3966B9DBEC34787783D44DC2AE6B8] - 27/02/2004 - 00:31:38 ---A- . (.Toshiba Corporation - Toshiba Notebook PC SMI Driver.) -- C:\WINDOWS\system32\drivers\NBSMI.sys [4224]
O58 - SDL:[MD5.1265EB253ED4EBE4ACB3BD5F548FF796] - 29/01/2003 - 12:35:00 ---A- . (.TOSHIBA Corporation. - Network Device Usermode I/O protocol.) -- C:\WINDOWS\system32\drivers\Netdevio.sys [12032]
O58 - SDL:[MD5.BE984D604D91C217355CDD3737AAD25D] - 24/04/2003 - 12:00:00 ---A- . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\system32\drivers\nikedrv.sys [12032]
O58 - SDL:[MD5.07C02C892E8E1A72D6BF35004F0E9C5E] - 19/11/2005 - 02:13:18 ---A- . (.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 SPR Protocol Driver.) -- C:\WINDOWS\system32\drivers\PCASp50.sys [20096]
O58 - SDL:[MD5.444F122E68DB44C0589227781F3C8B3F] - 01/04/2004 - 16:30:46 ---A- . (.Padus, Inc. - Padus(R) ASPI Shell.) -- C:\WINDOWS\system32\drivers\pfc.sys [10368]
O58 - SDL:[MD5.80D317BD1C3DBC5D4FE7B1678C60CADD] - 24/04/2003 - 12:00:00 ---A- . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Library.) -- C:\WINDOWS\system32\drivers\ptilink.sys [17792]
O58 - SDL:[MD5.2C4FB2E9F039287767C384E46EE91030] - 09/01/2009 - 16:18:02 R--A- . (.Research in Motion Ltd - RIM Virtual Serial Driver.) -- C:\WINDOWS\system32\drivers\RimSerial.sys [27136]
O58 - SDL:[MD5.F17713D108ACA124A139FDE877EEF68A] - 20/05/2008 - 19:33:50 ---A- . (.Research In Motion Limited - BlackBerry Device Driver.) -- C:\WINDOWS\system32\drivers\RimUsb.sys [22784]
O58 - SDL:[MD5.A56FE08EC7473E8580A390BB1081CDD7] - 24/04/2003 - 12:00:00 ---A- . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\system32\drivers\rio8drv.sys [12032]
O58 - SDL:[MD5.0A854DF84C77A0BE205BFEAB2AE4F0EC] - 24/04/2003 - 12:00:00 ---A- . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\system32\drivers\riodrv.sys [12032]
O58 - SDL:[MD5.D507C1400284176573224903819FFDA3] - 13/04/2008 - 09:35:40 ---A- . (.Realtek Semiconductor Corporation - Realtek RTL8139 NDIS 5.0 Driver.) -- C:\WINDOWS\system32\drivers\rtl8139.sys [20992]
O58 - SDL:[MD5.D88F6C53B637ABE4C23DE29DB40A9F05] - 05/12/2003 - 17:53:00 ---A- . (.Realtek Semiconductor Corporation - Realtek 10/100/1000 NDIS 5.1 Driver.) -- C:\WINDOWS\system32\drivers\Rtlnic51.sys [68352]
O58 - SDL:[MD5.90A3935D05B494A5A39D37E71F09A677] - 13/04/2008 - 09:39:16 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\WINDOWS\system32\drivers\secdrv.sys [20480]
O58 - SDL:[MD5.F5FEC5B4B985FBF81927844E75DD5BD1] - 05/11/2002 - 15:00:46 ---A- . (.SMC - SMC IrCC NDIS 5.0 IrDA FIR Device Driver.) -- C:\WINDOWS\system32\drivers\smcirda.sys [39424]
O58 - SDL:[MD5.D5803CEAFC64FCF475FE6B6756B41BB8] - 22/01/2004 - 15:04:16 ---A- . (.Synaptics, Inc. - Synaptics Touchpad Driver.) -- C:\WINDOWS\system32\drivers\SynTP.sys [178816]
O58 - SDL:[MD5.913938A5382BFB2487AACAEA408A14D2] - 10/12/2002 - 14:13:22 ---A- . (.Texas Instruments Inc. - tiumflt.sys.) -- C:\WINDOWS\system32\drivers\tiumflt.sys [7552]
O58 - SDL:[MD5.65E8E81C2F40ABCE9DB98FD232F86BF8] - 18/02/2003 - 17:02:06 ---A- . (.Texas Instruments Inc. - tiumfwl.sys.) -- C:\WINDOWS\system32\drivers\tiumfwl.sys [42092]
O58 - SDL:[MD5.B3B20CD6AB0C9EF8FEEF9FBBE04F1CB2] - 06/04/2002 - 18:50:56 ---A- . (...) -- C:\WINDOWS\system32\drivers\TOSSMBNT.sys [19607]
O58 - SDL:[MD5.D74A8EC75305F1D3CFDE7C7FC1BD62A9] - 24/04/2003 - 12:00:00 ---A- . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\system32\drivers\tsbvcap.sys [21376]
O58 - SDL:[MD5.55E01061C74A8CEFFF58DC36114A8D3F] - 24/04/2003 - 12:00:00 ---A- . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\system32\drivers\vdmindvd.sys [58112]
O58 - SDL:[MD5.6D3ADA4CE95CECA7BCE527A08C4C474E] - 24/04/2003 - 12:00:00 ---A- . (...) -- C:\WINDOWS\system32\ansi.sys [9037]
O58 - SDL:[MD5.0FE9F16075C9ACB941C957B7C649176E] - 24/04/2003 - 12:00:00 ---A- . (...) -- C:\WINDOWS\system32\country.sys [27097]
O58 - SDL:[MD5.C6D29F29DE7427B1B0775E53E577B623] - 24/04/2003 - 12:00:00 ---A- . (...) -- C:\WINDOWS\system32\himem.sys [4912]
O58 - SDL:[MD5.582BCDD47CF4B68B5CB528F18E3CB808] - 24/04/2003 - 12:00:00 ---A- . (...) -- C:\WINDOWS\system32\key01.sys [42809]
O58 - SDL:[MD5.FBBCFEC1379C5C02D88A361993EDF1B8] - 24/04/2003 - 12:00:00 ---A- . (...) -- C:\WINDOWS\system32\keyboard.sys [42537]
O58 - SDL:[MD5.7D30A74B5FB9FE3B245A6CE5FBCD71D5] - 24/04/2003 - 12:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos.sys [27916]
O58 - SDL:[MD5.CF9ED169FF86D935E47999E82359E898] - 24/04/2003 - 12:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos404.sys [29146]
O58 - SDL:[MD5.03B945AC0481CD8BB161C3569D8ED1C3] - 24/04/2003 - 12:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos411.sys [29370]
O58 - SDL:[MD5.BBC957DC18C17CC027EB80B7C77F2AEA] - 24/04/2003 - 12:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos412.sys [29274]
O58 - SDL:[MD5.3CFFAEFFF23B0D208214A6D3061A5B1B] - 24/04/2003 - 12:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos804.sys [29146]
O58 - SDL:[MD5.CAAA108FD7BF71989946B39704323455] - 13/04/2008 - 09:49:52 ---A- . (...) -- C:\WINDOWS\system32\ntio.sys [34000]
O58 - SDL:[MD5.6F73F50162DEF60C84B725C18CD9140F] - 13/04/2008 - 09:49:44 ---A- . (...) -- C:\WINDOWS\system32\ntio404.sys [34560]
O58 - SDL:[MD5.0FDD5E69C1FF3B58043D44F2CC743D45] - 13/04/2008 - 09:49:40 ---A- . (...) -- C:\WINDOWS\system32\ntio411.sys [35648]
O58 - SDL:[MD5.8842837C4D8311BF8E72BEE8CCC42217] - 13/04/2008 - 09:49:44 ---A- . (...) -- C:\WINDOWS\system32\ntio412.sys [35424]
O58 - SDL:[MD5.6B56CEB3C6F9D5CD7293DBD9FE23B311] - 13/04/2008 - 09:49:42 ---A- . (...) -- C:\WINDOWS\system32\ntio804.sys [34560]
O58 - SDL:[MD5.B670C5D89F0726B7A2A7DFB4E968CDF8] - 23/09/2003 - 10:38:34 ---A- . (.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 MPR Protocol Driver.) -- C:\WINDOWS\system32\pcampr5.sys [34688]
O58 - SDL:[MD5.ECD2F9D67B06606064DAF6961A6D5EFE] - 01/03/2006 - 18:53:54 ---A- . (.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 Protocol Driver.) -- C:\WINDOWS\system32\pcandis5.sys [32128]
~ Scan Drivers in 00mn 08s
---\\ Liste des outils de nettoyage (O63)
O63 - Logiciel: HijackThis 2.0.2 - (.TrendMicro.) [HKLM] -- HijackThis
O63 - Logiciel: ZHPDiag 1.28 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
~ Scan ADS in 00mn 00s
---\\ Liste des services Legacy (O64)
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\Aavmker4.sys (Aavmker4) .(.AVAST Software - avast! Base Kernel-Mode Device Driver for W.) - LEGACY_AAVMKER4
O64 - Services: CurCS - 17/03/2012 - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe (AdobeFlashPlayerUpdateSvc) .(.Adobe Systems Incorporated - Adobe® Flash® Player Update Service 11.2 r2.) - LEGACY_ADOBEFLASHPLAYERUPDATESVC
O64 - Services: CurCS - 27/02/2012 - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Mobile Device) .(.Apple Inc. - MobileDeviceService.) - LEGACY_APPLE_MOBILE_DEVICE
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (AppMgmt) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_APPMGMT
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswFsBlk.sys (aswFsBlk) .(.AVAST Software - avast! File System Access Blocking Driver.) - LEGACY_ASWFSBLK
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswMon2.sys (aswMon2) .(.AVAST Software - avast! File System Filter Driver for Window.) - LEGACY_ASWMON2
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswRdr.sys (aswRdr) .(.AVAST Software - avast! TDI Redirect Driver.) - LEGACY_ASWRDR
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswSnx.sys (aswSnx) .(.AVAST Software - avast! Virtualization Driver.) - LEGACY_ASWSNX
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswSP.sys (aswSP) .(.AVAST Software - avast! self protection module.) - LEGACY_ASWSP
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswTdi.sys (aswTdi) .(.AVAST Software - avast! TDI Filter Driver.) - LEGACY_ASWTDI
O64 - Services: CurCS - 09/03/2004 - C:\WINDOWS\system32\Ati2evxx.exe - Ati HotKey Poller (Ati HotKey Poller) .(...) - LEGACY_ATI_HOTKEY_POLLER
O64 - Services: CurCS - 07/03/2012 - C:\Program Files\AVAST Software\Avast\AvastSvc.exe (avast! Antivirus) .(.AVAST Software - avast! Service.) - LEGACY_AVAST!_ANTIVIRUS
O64 - Services: CurCS - 13/10/2005 - C:\Program Files\AVPersonal\AVWUPSRV.exe (AVWUpSrv) .(.H+BEDV Datentechnik GmbH, Germany - AntiVir Software Update Service for Windows.) - LEGACY_AVWUPSRV
O64 - Services: CurCS - 24/01/2009 - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe (Boonty Games) .(.BOONTY - System Level Service Utility.) - LEGACY_BOONTY_GAMES
O64 - Services: CurCS - 25/01/2009 - C:\WINDOWS\system32\drivers\CDAC11BA.exe (C-DillaCdaC11BA) .(.Macrovision - Macrovision RTS Service.) - LEGACY_C-DILLACDAC11BA
O64 - Services: CurCS - 25/01/2009 - C:\WINDOWS\system32\drivers\CdaC15BA.sys (CdaC15BA) .(.Macrovision Europe Ltd - Macrovision SECURITY Driver.) - LEGACY_CDAC15BA
O64 - Services: CurCS - 04/03/2004 - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe (CFSvcs) .(.TOSHIBA CORPORATION - Service of ConfigFree..) - LEGACY_CFSVCS
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\System32\dllhost.exe (COMSysApp) .(.Microsoft Corporation - COM Surrogate.) - LEGACY_COMSYSAPP
O64 - Services: CurCS - ??\??\???? - (DcomLaunch) .(. - .) - LEGACY_DCOMLAUNCH
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\drivers\dmboot.sys (dmboot) .(.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) - LEGACY_DMBOOT
O64 - Services: CurCS - 24/04/2003 - C:\WINDOWS\system32\drivers\dmload.sys (dmload) .(.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) - LEGACY_DMLOAD
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (Dnscache) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_DNSCACHE
O64 - Services: CurCS - 17/03/2012 - C:\Program Files\Google\Update\GoogleUpdate.exe (gupdate) .(.Google Inc. - Programme d'installation de Google.) - LEGACY_GUPDATE
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (helpsvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_HELPSVC
O64 - Services: CurCS - 20/10/2009 - C:\WINDOWS\system32\Drivers\HTTP.sys (HTTP) .(.Microsoft Corporation - HTTP Protocol Stack.) - LEGACY_HTTP
O64 - Services: CurCS - 22/10/2004 - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe (IDriverT) .(.Macrovision Corporation - IDriverT Module.) - LEGACY_IDRIVERT
O64 - Services: CurCS - 18/10/2005 - C:\Program Files\iPod\bin\iPodService.exe (iPodService) .(.Apple Computer, Inc. - iPodService Module.) - LEGACY_IPODSERVICE
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (LmHosts) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_LMHOSTS
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\Mup.sys (Mup) .(.Microsoft Corporation - Multiple UNC Provider driver.) - LEGACY_MUP
O64 - Services: CurCS - 29/01/2003 - C:\WINDOWS\system32\DRIVERS\netdevio.sys (Netdevio) .(.TOSHIBA Corporation. - Network Device Usermode I/O protocol.) - LEGACY_NETDEVIO
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (Nla) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_NLA
O64 - Services: CurCS - 23/09/2003 - C:\WINDOWS\system32\PCAMPR5.sys (PCAMPR5) .(.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 MPR Protocol Driver.) - LEGACY_PCAMPR5
O64 - Services: CurCS - 01/03/2006 - C:\WINDOWS\system32\PCANDIS5.sys (PCANDIS5) .(.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 Protocol Driver.) - LEGACY_PCANDIS5
O64 - Services: CurCS - 19/11/2005 - C:\WINDOWS\system32\Drivers\PCASp50.sys (PCASp50) .(.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 SPR Protocol Driver.) - LEGACY_PCASP50
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\lsass.exe (PolicyAgent) .(.Microsoft Corporation - LSA Shell (Export Version).) - LEGACY_POLICYAGENT
O64 - Services: CurCS - 06/12/2007 - C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe (Roxio Upnp Server 9) .(.Sonic Solutions - RoxioUpnpService9 Module.) - LEGACY_ROXIO_UPNP_SERVER_9
O64 - Services: CurCS - 08/07/2009 - C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe (RoxLiveShare9) .(.Sonic Solutions - Roxio LiveShare Service.) - LEGACY_ROXLIVESHARE9
O64 - Services: CurCS - 08/07/2009 - C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe (RoxMediaDB9) .(.Sonic Solutions - RoxMediaDB9 Module.) - LEGACY_ROXMEDIADB9
O64 - Services: CurCS - 08/07/2009 - C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe (RoxWatch9) .(.Sonic Solutions - RoxSniffer9 Module.) - LEGACY_ROXWATCH9
O64 - Services: CurCS - ??\??\???? - (RpcSs) .(. - .) - LEGACY_RPCSS
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\lsass.exe (SamSs) .(.Microsoft Corporation - LSA Shell (Export Version).) - LEGACY_SAMSS
O64 - Services: CurCS - 07/02/2012 - C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe (SDScannerService) .(.Safer-Networking Ltd. - Spybot-S&D 2 Scanner Service.) - LEGACY_SDSCANNERSERVICE
O64 - Services: CurCS - 07/02/2012 - C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe (SDUpdateService) .(.Safer-Networking Ltd. - Spybot-S&D 2 Background update service.) - LEGACY_SDUPDATESERVICE
O64 - Ser
---\\ HKCU & HKLM Software Keys
[HKCU\Software\3ivx]
[HKCU\Software\3rd Eye Solutions]
[HKCU\Software\AC3filter]
[HKCU\Software\ALWIL Software]
[HKCU\Software\AVAST Software]
[HKCU\Software\AVS4YOU]
[HKCU\Software\Ad-Remover]
[HKCU\Software\Adobe]
[HKCU\Software\Ahead]
[HKCU\Software\AppDataLow\RealNetworks]
[HKCU\Software\AppDataLow]
[HKCU\Software\Apple Computer, Inc.]
[HKCU\Software\Apple Inc.]
[HKCU\Software\BST]
[HKCU\Software\CDDB]
[HKCU\Software\Canon]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\Conduit]
[HKCU\Software\CoreAAC]
[HKCU\Software\CoreVorbis]
[HKCU\Software\DivXNetworks]
[HKCU\Software\FileHippo.com]
[HKCU\Software\Freecom]
[HKCU\Software\GNU]
[HKCU\Software\GSpot Appliance Corp]
[HKCU\Software\Gabest]
[HKCU\Software\Google]
[HKCU\Software\Haali]
[HKCU\Software\IM Providers]
[HKCU\Software\InstallShield]
[HKCU\Software\Intel]
[HKCU\Software\InterVideo]
[HKCU\Software\Lake]
[HKCU\Software\Ligos]
[HKCU\Software\Local AppWizard-Generated Applications]
[HKCU\Software\LucasArts]
[HKCU\Software\Macromedia]
[HKCU\Software\MainConcept]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\Motive]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Mozilla]
[HKCU\Software\Netscape]
[HKCU\Software\Neuf]
[HKCU\Software\ODBC]
[HKCU\Software\Opendisc]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\RealNetworks]
[HKCU\Software\Research In Motion]
[HKCU\Software\Roxio]
[HKCU\Software\Safer Networking Limited]
[HKCU\Software\Sonic Solutions]
[HKCU\Software\Sonic]
[HKCU\Software\Sony Corporation]
[HKCU\Software\Synaptics]
[HKCU\Software\TOSHIBA]
[HKCU\Software\Un peu de géographie]
[HKCU\Software\VB and VBA Program Settings]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\WinRAR]
[HKCU\Software\Winamp]
[HKCU\Software\Yahoo]
[HKCU\Software\baKno]
[HKCU\Software\eMule]
[HKCU\Software\keyhole.com]
[HKCU\Software\srs]
[HKCU\Software\vShare.tv]
[HKLM\Software\3ivx]
[HKLM\Software\781]
[HKLM\Software\8ec]
[HKLM\Software\ALWIL Software]
[HKLM\Software\ASProtect]
[HKLM\Software\ATI Technologies Inc.]
[HKLM\Software\ATI Technologies]
[HKLM\Software\AVAST Software]
[HKLM\Software\AVS4YOU]
[HKLM\Software\Adobe]
[HKLM\Software\AdwCleaner]
[HKLM\Software\Agere]
[HKLM\Software\Agnitum]
[HKLM\Software\Ahead]
[HKLM\Software\Apple Computer, Inc.]
[HKLM\Software\Apple Inc.]
[HKLM\Software\Avg]
[HKLM\Software\Boonty]
[HKLM\Software\BroadJump]
[HKLM\Software\C07ft5Y]
[HKLM\Software\CDDB]
[HKLM\Software\Canon]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Conduit]
[HKLM\Software\Data Fellows]
[HKLM\Software\Debug]
[HKLM\Software\F-Secure]
[HKLM\Software\GNU]
[HKLM\Software\Gabest]
[HKLM\Software\Gemplus]
[HKLM\Software\Google]
[HKLM\Software\Hewlett-Packard]
[HKLM\Software\InstallShield]
[HKLM\Software\InstalledOptions]
[HKLM\Software\InterVideo]
[HKLM\Software\JavaSoft]
[HKLM\Software\KLCodecPack]
[HKLM\Software\Lake]
[HKLM\Software\LanSetup]
[HKLM\Software\Licenses]
[HKLM\Software\LucasArts]
[HKLM\Software\MDC]
[HKLM\Software\Macromedia]
[HKLM\Software\Macrovision]
[HKLM\Software\Malwarebytes' Anti-Malware]
[HKLM\Software\Motive]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\Neuf]
[HKLM\Software\Nullsoft]
[HKLM\Software\ODBC]
[HKLM\Software\Oak Technology]
[HKLM\Software\OldTimer Tools]
[HKLM\Software\On2 Technologies]
[HKLM\Software\PCTools]
[HKLM\Software\PRR]
[HKLM\Software\Philips]
[HKLM\Software\Piriform]
[HKLM\Software\Policies]
[HKLM\Software\Preview Systems]
[HKLM\Software\Program Groups]
[HKLM\Software\REALTEK Semiconductor Corporation]
[HKLM\Software\RealNetworks]
[HKLM\Software\Realtek Semiconductor Corp.]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\Research In Motion]
[HKLM\Software\Roxio]
[HKLM\Software\SECURITOO]
[HKLM\Software\Safer Networking Limited]
[HKLM\Software\Schlumberger]
[HKLM\Software\Secure]
[HKLM\Software\SoftShape]
[HKLM\Software\Symantec]
[HKLM\Software\Synaptics]
[HKLM\Software\TOSHIBA]
[HKLM\Software\TelevisionFanatic]
[HKLM\Software\TrendMicro]
[HKLM\Software\Webteh]
[HKLM\Software\WinRAR]
[HKLM\Software\Windows 3.1 Migration Status]
[HKLM\Software\Xing Technology Corp.]
[HKLM\Software\Yahoo]
[HKLM\Software\mozilla.org]
[HKLM\Software\srs]
~ Scan Softwares in 00mn 00s
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 16/03/2012 - 15:16:14 - [0] ----D- C:\Program Files\Ad-Remover
O43 - CFD: 17/03/2012 - 11:57:30 - [302,279] ----D- C:\Program Files\Adobe
O43 - CFD: 26/12/2004 - 15:40:58 - [71,633] ----D- C:\Program Files\Ahead
O43 - CFD: 11/04/2005 - 20:37:26 - [0,005] ----D- C:\Program Files\aod
O43 - CFD: 17/03/2012 - 12:28:46 - [2,316] ----D- C:\Program Files\Apple Software Update
O43 - CFD: 28/04/2008 - 20:21:18 - [0,063] ----D- C:\Program Files\ATI Technologies
O43 - CFD: 14/03/2012 - 16:36:52 - [202,953] ----D- C:\Program Files\AVAST Software
O43 - CFD: 06/02/2006 - 00:35:22 - [13,218] ----D- C:\Program Files\AVPersonal
O43 - CFD: 04/08/2010 - 13:09:32 - [0] ----D- C:\Program Files\AVS4YOU
O43 - CFD: 19/09/2010 - 13:24:54 - [315,941] ----D- C:\Program Files\Canon
O43 - CFD: 19/09/2010 - 13:19:56 - [14,859] --H-D- C:\Program Files\CanonBJ
O43 - CFD: 14/03/2012 - 15:24:40 - [4,358] ----D- C:\Program Files\CCleaner
O43 - CFD: 15/11/2005 - 01:09:26 - [6,490] ----D- C:\Program Files\Common Files
O43 - CFD: 18/05/2004 - 12:53:26 - [0] ----D- C:\Program Files\ComPlus Applications
O43 - CFD: 15/03/2012 - 19:45:36 - [-1974,330] ----D- C:\Program Files\eMule
O43 - CFD: 11/04/2005 - 20:40:32 - [6,372] ----D- C:\Program Files\ffdshow
O43 - CFD: 17/03/2012 - 12:46:24 - [397,152] ----D- C:\Program Files\Fichiers communs
O43 - CFD: 17/03/2012 - 11:35:46 - [0,363] ----D- C:\Program Files\FileHippo.com
O43 - CFD: 04/03/2009 - 17:08:54 - [10,054] ----D- C:\Program Files\GEOGRAPHIE
O43 - CFD: 17/03/2012 - 12:50:18 - [276,936] ----D- C:\Program Files\Google
O43 - CFD: 01/12/2008 - 14:48:58 - [8,634] ----D- C:\Program Files\Hewlett-Packard
O43 - CFD: 24/11/2005 - 21:26:22 - [0,029] ----D- C:\Program Files\HP
O43 - CFD: 15/10/2011 - 09:20:00 - [43,541] --H-D- C:\Program Files\InstallShield Installation Information
O43 - CFD: 20/03/2012 - 20:49:24 - [4,551] ----D- C:\Program Files\Internet Explorer
O43 - CFD: 18/05/2004 - 14:07:10 - [31,699] ----D- C:\Program Files\InterVideo
O43 - CFD: 21/11/2005 - 19:19:26 - [0,895] ----D- C:\Program Files\iPod
O43 - CFD: 21/11/2005 - 19:19:26 - [30,267] ----D- C:\Program Files\iTunes
O43 - CFD: 18/05/2004 - 13:17:58 - [0,027] ----D- C:\Program Files\Java
O43 - CFD: 20/03/2012 - 20:54:20 - [4,298] ----D- C:\Program Files\K-Lite Codec Pack
O43 - CFD: 18/04/2009 - 14:06:40 - [0,266] ----D- C:\Program Files\ltmoh
O43 - CFD: 14/10/2011 - 15:38:10 - [1183,300] ----D- C:\Program Files\LucasArts
O43 - CFD: 04/03/2012 - 22:31:10 - [11,405] ----D- C:\Program Files\Malwarebytes' Anti-Malware
O43 - CFD: 19/03/2012 - 22:53:28 - [2,140] ----D- C:\Program Files\Messenger
O43 - CFD: 25/09/2009 - 11:16:00 - [0,216] ----D- C:\Program Files\Microsoft
O43 - CFD: 18/11/2008 - 19:44:36 - [0,764] ----D- C:\Program Files\Microsoft CAPICOM 2.1.0.2
O43 - CFD: 18/05/2004 - 12:56:58 - [0] ----D- C:\Program Files\microsoft frontpage
O43 - CFD: 19/10/2004 - 11:18:16 - [72,293] ----D- C:\Program Files\Microsoft Office
O43 - CFD: 14/10/2011 - 15:30:36 - [0] ----D- C:\Program Files\moh
O43 - CFD: 15/11/2005 - 10:26:20 - [1,245] ----D- C:\Program Files\Motive
O43 - CFD: 20/03/2012 - 20:54:44 - [16,290] ----D- C:\Program Files\Movie Maker
O43 - CFD: 17/03/2012 - 22:39:30 - [38,599] ----D- C:\Program Files\Mozilla Firefox
O43 - CFD: 17/03/2012 - 19:13:18 - [0,199] ----D- C:\Program Files\Mozilla Maintenance Service
O43 - CFD: 09/09/2008 - 16:32:06 - [35,950] ----D- C:\Program Files\MSN
O43 - CFD: 18/05/2004 - 12:52:36 - [8,341] ----D- C:\Program Files\MSN Gaming Zone
O43 - CFD: 19/03/2012 - 21:34:12 - [0] ----D- C:\Program Files\MSXML 4.0
O43 - CFD: 21/12/2011 - 19:35:10 - [0,007] ----D- C:\Program Files\MSXML 6.0
O43 - CFD: 18/03/2012 - 18:44:28 - [3,133] ----D- C:\Program Files\NetMeeting
O43 - CFD: 15/11/2005 - 10:26:10 - [26,442] ----D- C:\Program Files\Numericable
O43 - CFD: 28/03/2010 - 15:26:38 - [1,774] ----D- C:\Program Files\Orange
O43 - CFD: 19/03/2012 - 21:51:12 - [4,176] ----D- C:\Program Files\Outlook Express
O43 - CFD: 15/01/2006 - 19:58:04 - [14,515] ----D- C:\Program Files\Philips
O43 - CFD: 01/12/2008 - 14:52:30 - [0,002] ----D- C:\Program Files\QuickTime
O43 - CFD: 17/03/2012 - 12:47:14 - [90,959] ----D- C:\Program Files\Real
O43 - CFD: 21/12/2011 - 20:19:58 - [72,083] ----D- C:\Program Files\Research In Motion
O43 - CFD: 21/12/2011 - 20:30:50 - [127,892] ----D- C:\Program Files\Roxio
O43 - CFD: 18/05/2004 - 12:54:18 - [0,003] ----D- C:\Program Files\Services en ligne
O43 - CFD: 26/07/2010 - 14:35:38 - [14,184] ----D- C:\Program Files\SFR
O43 - CFD: 07/02/2009 - 14:36:38 - [0,553] ----D- C:\Program Files\SopCast
O43 - CFD: 14/03/2012 - 18:31:58 - [62,315] ----D- C:\Program Files\Spybot - Search & Destroy
O43 - CFD: 17/03/2012 - 19:27:12 - [139,782] ----D- C:\Program Files\Spybot - Search & Destroy 2
O43 - CFD: 14/03/2012 - 19:01:04 - [1,382] ----D- C:\Program Files\SpywareGuard
O43 - CFD: 18/05/2004 - 14:08:08 - [1,945] ----D- C:\Program Files\srslabs
O43 - CFD: 18/03/2012 - 12:32:12 - [8,911] ----D- C:\Program Files\Synaptics
O43 - CFD: 15/02/2012 - 20:35:56 - [0,393] ----D- C:\Program Files\TelevisionFanatic
O43 - CFD: 18/05/2004 - 14:08:38 - [29,716] ----D- C:\Program Files\TOSHIBA
O43 - CFD: 18/05/2004 - 13:10:20 - [6,022] --H-D- C:\Program Files\Uninstall Information
O43 - CFD: 01/07/2006 - 23:51:34 - [15,569] ----D- C:\Program Files\Webteh
O43 - CFD: 19/03/2012 - 22:17:48 - [59,383] ----D- C:\Program Files\Winamp
O43 - CFD: 17/03/2012 - 13:48:42 - [0,148] ----D- C:\Program Files\Winamp Detect
O43 - CFD: 25/09/2009 - 11:15:54 - [43,742] ----D- C:\Program Files\Windows Live
O43 - CFD: 25/09/2009 - 11:15:30 - [0,234] ----D- C:\Program Files\Windows Live SkyDrive
O43 - CFD: 17/12/2008 - 12:48:56 - [0,002] ----D- C:\Program Files\Windows Live Toolbar
O43 - CFD: 17/03/2012 - 18:25:06 - [3,415] ----D- C:\Program Files\Windows Media Connect 2
O43 - CFD: 18/03/2012 - 18:43:52 - [24,504] ----D- C:\Program Files\Windows Media Player
O43 - CFD: 18/03/2012 - 18:43:46 - [3,760] ----D- C:\Program Files\Windows NT
O43 - CFD: 15/11/2005 - 10:27:30 - [0,009] --H-D- C:\Program Files\WindowsUpdate
O43 - CFD: 17/03/2012 - 19:08:54 - [3,881] ----D- C:\Program Files\WinRAR
O43 - CFD: 18/05/2004 - 12:56:58 - [0] ----D- C:\Program Files\xerox
O43 - CFD: 23/11/2006 - 11:04:50 - [2,483] ----D- C:\Program Files\Yahoo!
O43 - CFD: 23/03/2012 - 19:30:50 - [10,091] ----D- C:\Program Files\ZHPDiag
O43 - CFD: 15/11/2005 - 10:27:00 - [6,490] ----D- C:\Program Files\Common Files\Motive
O43 - CFD: 18/05/2004 - 13:19:58 - [0] ----D- C:\Program Files\Common Files\System
O43 - CFD: 17/03/2012 - 11:58:40 - [50,839] ----D- C:\Program Files\Fichiers Communs\Adobe
O43 - CFD: 26/12/2004 - 15:40:52 - [8,403] ----D- C:\Program Files\Fichiers Communs\Ahead
O43 - CFD: 17/03/2012 - 12:26:34 - [84,043] ----D- C:\Program Files\Fichiers Communs\Apple
O43 - CFD: 04/08/2010 - 13:09:02 - [0] ----D- C:\Program Files\Fichiers Communs\AVSMedia
O43 - CFD: 24/01/2009 - 19:30:30 - [0,066] ----D- C:\Program Files\Fichiers Communs\BOONTY Shared
O43 - CFD: 19/09/2010 - 13:24:42 - [0,001] ----D- C:\Program Files\Fichiers Communs\CANON
O43 - CFD: 19/10/2004 - 11:18:42 - [0,082] ----D- C:\Program Files\Fichiers Communs\Designer
O43 - CFD: 28/04/2008 - 18:40:34 - [0,001] ----D- C:\Program Files\Fichiers Communs\France Telecom
O43 - CFD: 21/12/2011 - 20:29:36 - [19,357] ----D- C:\Program Files\Fichiers Communs\InstallShield
O43 - CFD: 25/01/2009 - 17:18:52 - [0,258] ----D- C:\Program Files\Fichiers Communs\Macrovision Shared
O43 - CFD: 29/07/2010 - 21:17:18 - [76,438] ----D- C:\Program Files\Fichiers Communs\Microsoft Shared
O43 - CFD: 18/05/2004 - 12:53:52 - [0,542] ----D- C:\Program Files\Fichiers Communs\MSSoap
O43 - CFD: 18/05/2004 - 13:48:44 - [0] ----D- C:\Program Files\Fichiers Communs\ODBC
O43 - CFD: 17/03/2012 - 12:40:02 - [1,160] ----D- C:\Program Files\Fichiers Communs\Real
O43 - CFD: 21/12/2011 - 20:18:22 - [31,922] ----D- C:\Program Files\Fichiers Communs\Research In Motion
O43 - CFD: 21/12/2011 - 20:31:08 - [99,553] ----D- C:\Program Files\Fichiers Communs\Roxio Shared
O43 - CFD: 18/05/2004 - 12:53:56 - [0,008] ----D- C:\Program Files\Fichiers Communs\Services
O43 - CFD: 21/12/2011 - 20:29:38 - [3,333] ----D- C:\Program Files\Fichiers Communs\Sonic Shared
O43 - CFD: 18/05/2004 - 13:48:40 - [3,612] ----D- C:\Program Files\Fichiers Communs\SpeechEngines
O43 - CFD: 18/05/2004 - 14:08:08 - [0,121] ----D- C:\Program Files\Fichiers Communs\SRS
O43 - CFD: 05/12/2005 - 21:28:36 - [0,246] ----D- C:\Program Files\Fichiers Communs\Symantec Shared
O43 - CFD: 18/03/2012 - 18:43:06 - [13,349] ----D- C:\Program Files\Fichiers Communs\System
O43 - CFD: 11/05/2005 - 08:08:38 - [3,483] ----D- C:\Program Files\Fichiers Communs\Vbox
O43 - CFD: 25/09/2009 - 11:09:42 - [0] ----D- C:\Program Files\Fichiers Communs\Windows Live
O43 - CFD: 17/03/2012 - 12:46:24 - [0,336] ----D- C:\Program Files\Fichiers Communs\xing shared
O43 - CFD: 27/03/2009 - 11:35:30 - [10,146] ----D- C:\Documents and Settings\leclercq\Application Data\Adobe
O43 - CFD: 29/11/2005 - 09:44:12 - [0] ----D- C:\Documents and Settings\leclercq\Application Data\AdobeUM
O43 - CFD: 17/03/2012 - 18:34:34 - [0,097] ----D- C:\Documents and Settings\leclercq\Application Data\Apple Computer
O43 - CFD: 29/07/2010 - 21:23:56 - [0] ----D- C:\Documents and Settings\leclercq\Application Data\AVS4YOU
O43 - CFD: 18/03/2012 - 00:17:40 - [26,635] ----D- C:\Documents and Settings\leclercq\Application Data\BSplayer
O43 - CFD: 17/03/2012 - 11:43:04 - [0,006] ----D- C:\Documents and Settings\leclercq\Application Data\BSplayer Pro
O43 - CFD: 16/11/2008 - 17:02:28 - [0] ----D- C:\Documents and Settings\leclercq\Application Data\Capcom
O43 - CFD: 09/09/2008 - 18:43:56 - [0,035] ----D- C:\Documents and Settings\leclercq\Application Data\Google
O43 - CFD: 18/05/2004 - 13:14:16 - [0] ----D- C:\Documents and Settings\leclercq\Application Data\Identities
O43 - CFD: 21/12/2011 - 20:34:12 - [0,000] ----D- C:\Documents and Settings\leclercq\Application Data\InstallShield
O43 - CFD: 20/12/2004 - 19:00:02 - [0,033] ----D- C:\Documents and Settings\leclercq\Application Data\InterVideo
O43 - CFD: 29/04/2008 - 12:25:58 - [0] ----D- C:\Documents and Settings\leclercq\Application Data\Lavasoft
O43 - CFD: 18/11/2005 - 16:26:36 - [1,768] ----D- C:\Documents and Settings\leclercq\Application Data\Macromedia
O43 - CFD: 04/03/2012 - 22:31:16 - [0,262] ----D- C:\Documents and Settings\leclercq\Application Data\Malwarebytes
O43 - CFD: 19/03/2012 - 21:41:40 - [2,000] -S--D- C:\Documents and Settings\leclercq\Application Data\Microsoft
O43 - CFD: 19/12/2008 - 18:19:46 - [20,349] ----D- C:\Documents and Settings\leclercq\Application Data\Mozilla
O43 - CFD: 09/09/2008 - 16:32:04 - [0,236] ----D- C:\Documents and Settings\leclercq\Application Data\MSN6
O43 - CFD: 14/02/2009 - 15:51:28 - [0,000] ----D- C:\Documents and Settings\leclercq\Application Data\PCToolsFirewallPlus
O43 - CFD: 17/03/2012 - 12:53:22 - [55,903] ----D- C:\Documents and Settings\leclercq\Application Data\Real
O43 - CFD: 21/12/2011 - 21:53:04 - [6,954] ----D- C:\Documents and Settings\leclercq\Application Data\Research In Motion
O43 - CFD: 21/12/2011 - 20:57:34 - [4,370] ----D- C:\Documents and Settings\leclercq\Application Data\Roxio
O43 - CFD: 18/05/2004 - 13:18:10 - [0,241] ----D- C:\Documents and Settings\leclercq\Application Data\Sun
O43 - CFD: 18/11/2005 - 16:09:08 - [0,013] ----D- C:\Documents and Settings\leclercq\Application Data\Symantec
O43 - CFD: 18/05/2004 - 14:05:10 - [0] ----D- C:\Documents and Settings\leclercq\Application Data\toshiba
O43 - CFD: 05/09/2011 - 20:26:28 - [3,438] ----D- C:\Documents and Settings\leclercq\Application Data\U3
O43 - CFD: 29/05/2009 - 23:41:28 - [0] ----D- C:\Documents and Settings\leclercq\Application Data\WinRAR
O43 - CFD: 11/05/2005 - 08:44:40 - [0] ----D- C:\Documents and Settings\leclercq\Local Settings\Application Data\Adobe
O43 - CFD: 17/03/2012 - 12:29:00 - [0] ----D- C:\Documents and Settings\leclercq\Local Settings\Application Data\Apple
O43 - CFD: 10/12/2005 - 13:12:02 - [0,019] ----D- C:\Documents and Settings\leclercq\Local Settings\Application Data\Apple Computer
O43 - CFD: 20/03/2012 - 21:00:08 - [0,003] ----D- C:\Documents and Settings\leclercq\Local Settings\Application Data\ApplicationHistory
O43 - CFD: 17/03/2012 - 12:59:28 - [15,894] ----D- C:\Documents and Settings\leclercq\Local Settings\Application Data\Google
O43 - CFD: 28/12/2004 - 15:48:30 - [0,630] ----D- C:\Documents and Settings\leclercq\Local Settings\Application Data\Identities
O43 - CFD: 20/03/2012 - 18:23:40 - [38,022] ----D- C:\Documents and Settings\leclercq\Local Settings\Application Data\Microsoft
O43 - CFD: 17/12/2008 - 12:42:06 - [63,129] ----D- C:\Documents and Settings\leclercq\Local Settings\Application Data\Mozilla
O43 - CFD: 17/03/2012 - 12:50:22 - [0] ----D- C:\Documents and Settings\leclercq\Local Settings\Application Data\Real
O43 - CFD: 15/03/2009 - 20:42:54 - [0] ----D- C:\Documents and Settings\leclercq\Local Settings\Application Data\TVU Networks
O43 - CFD: 25/12/2004 - 16:26:38 - [0] ----D- C:\Documents and Settings\leclercq\Local Settings\Application Data\WMTools Downloaded Files
O43 - CFD: 18/05/2004 - 13:17:54 - [8,880] ----D- C:\Documents and Settings\leclercq\Local Settings\Application Data\{7148F0A6-6813-11D6-A77B-00B0D0142040}
~ Scan Program Folder in 00mn 45s
---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.B60722D1066CD49614ED871300303377] - 23/03/2012 - 18:55:28 ---A- . (...) -- C:\WINDOWS\WindowsUpdate.log [1406287]
O44 - LFC:[MD5.248354220DA8F1C9D8CFC16E115CBF68] - 23/03/2012 - 17:45:55 ---A- . (...) -- C:\WINDOWS\system32\pool.bin [256]
O44 - LFC:[MD5.1AD73B2A9CFF73F77D57099C096DBB19] - 23/03/2012 - 17:10:13 ---A- . (...) -- C:\WINDOWS\wiadebug.log [159]
O44 - LFC:[MD5.74939CE07DDE96F34CE54820611A8305] - 23/03/2012 - 17:10:12 ---A- . (...) -- C:\WINDOWS\wiaservc.log [50]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 23/03/2012 - 17:08:51 ---A- . (...) -- C:\WINDOWS\0.log [0]
O44 - LFC:[MD5.6A2CB42966136854F4464516FBB4AE72] - 23/03/2012 - 17:08:48 -S-A- . (...) -- C:\WINDOWS\bootstat.dat [2048]
O44 - LFC:[MD5.ACF5F9F1649751B9B56A28FF3F18BDFE] - 22/03/2012 - 21:13:56 ---A- . (...) -- C:\WINDOWS\SchedLgU.Txt [32358]
O44 - LFC:[MD5.489259ED0945278DE654B1DBE88CA3B4] - 22/03/2012 - 20:32:15 -SHA- . (...) -- C:\WINDOWS\Thumbs.db [7680]
O44 - LFC:[MD5.A7EB72E5C2D3DC418666AE4F5A6F2D38] - 20/03/2012 - 21:18:05 ---A- . (...) -- C:\WINDOWS\system32\PerfStringBackup.INI [1041316]
O44 - LFC:[MD5.F996D0FC7CA65987326E968DE36EC76D] - 20/03/2012 - 21:18:05 ---A- . (...) -- C:\WINDOWS\system32\perfc009.dat [65076]
O44 - LFC:[MD5.8AAA63C2AF8C99050E12C5D0D7FB6414] - 20/03/2012 - 21:18:05 ---A- . (...) -- C:\WINDOWS\system32\perfc00C.dat [78690]
O44 - LFC:[MD5.37B05826E060BB41A55289F3AC247C40] - 20/03/2012 - 21:18:05 ---A- . (...) -- C:\WINDOWS\system32\perfh009.dat [409278]
O44 - LFC:[MD5.5453496105A8C59B07499A402F187F78] - 20/03/2012 - 21:18:05 ---A- . (...) -- C:\WINDOWS\system32\perfh00C.dat [477588]
O44 - LFC:[MD5.92601FEC165A476DB93B3387D23C7A51] - 20/03/2012 - 21:02:37 ---A- . (...) -- C:\WINDOWS\FaxSetup.log [49461]
O44 - LFC:[MD5.49976FA84BD971C70AF0D0CADD6E01AC] - 20/03/2012 - 21:02:37 ---A- . (...) -- C:\WINDOWS\KB951376-v2.log [14640]
O44 - LFC:[MD5.BB27AEB0CBEC49A7374120714DAB01C4] - 20/03/2012 - 21:02:37 ---A- . (...) -- C:\WINDOWS\comsetup.log [16246]
O44 - LFC:[MD5.E8D6DC71565FA049D56AF597E17B683D] - 20/03/2012 - 21:02:37 ---A- . (...) -- C:\WINDOWS\iis6.log [7851]
O44 - LFC:[MD5.84C20FA2CD6FC452855AAC5137269573] - 20/03/2012 - 21:02:37 ---A- . (...) -- C:\WINDOWS\imsins.log [1374]
O44 - LFC:[MD5.CCF4843B64B1A65D37317F8907C7CA97] - 20/03/2012 - 21:02:37 ---A- . (...) -- C:\WINDOWS\msgsocm.log [2472]
O44 - LFC:[MD5.446744681615FDF908EE46C63FACE1CF] - 20/03/2012 - 21:02:37 ---A- . (...) -- C:\WINDOWS\ntdtcsetup.log [9853]
O44 - LFC:[MD5.CB640172609194CAAC48D23C39FC79FB] - 20/03/2012 - 21:02:37 ---A- . (...) -- C:\WINDOWS\ocgen.log [23648]
O44 - LFC:[MD5.2D530D4B5ED38B969844B4EAD74B2658] - 20/03/2012 - 21:02:37 ---A- . (...) -- C:\WINDOWS\ocmsn.log [2736]
O44 - LFC:[MD5.D17BDE6191816F8CD31B60C2519EEA1B] - 20/03/2012 - 21:02:37 ---A- . (...) -- C:\WINDOWS\setupapi.log [12295]
O44 - LFC:[MD5.90EA0882D18EC6FA2A4906A5CA8403BC] - 20/03/2012 - 21:02:37 ---A- . (...) -- C:\WINDOWS\tsoc.log [18875]
O44 - LFC:[MD5.3EC706521A3ED15AE64148B96EF4639B] - 20/03/2012 - 21:02:17 ---A- . (...) -- C:\WINDOWS\KB952954.log [18415]
O44 - LFC:[MD5.67ACE9FDF5E27568166E8751C382DC90] - 20/03/2012 - 21:02:17 ---A- . (...) -- C:\WINDOWS\imsins.BAK [1374]
O44 - LFC:[MD5.8846C54006A61F430CFF0FEC9E8722B5] - 20/03/2012 - 21:02:14 ---A- . (...) -- C:\WINDOWS\updspapi.log [4827]
O44 - LFC:[MD5.C2BF1EE56F3D7F789D6E017284A5D9F5] - 20/03/2012 - 21:01:55 ---A- . (...) -- C:\WINDOWS\KB959426.log [18010]
O44 - LFC:[MD5.D0C534D342C19DF44CC9F08FB8E6AABF] - 20/03/2012 - 21:01:28 ---A- . (...) -- C:\WINDOWS\KB2345886.log [19141]
O44 - LFC:[MD5.2007513CF74BF5C47AB1978CE566803A] - 20/03/2012 - 21:01:03 ---A- . (...) -- C:\WINDOWS\KB970430.log [19637]
O44 - LFC:[MD5.7CD03BD4045E41CB107AD52BA74F3565] - 20/03/2012 - 20:51:15 ---A- . (...) -- C:\WINDOWS\KB2647516-IE8.log [16863]
O44 - LFC:[MD5.D12B012085864EEE0C9CB88C8ED326D8] - 20/03/2012 - 20:47:04 ---A- . (...) -- C:\WINDOWS\KB2510531-IE8.log [7871]
O44 - LFC:[MD5.D627DF7168ED3802657F93A175C86AB0] - 20/03/2012 - 20:46:46 ---A- . (...) -- C:\WINDOWS\KB2544521-IE8.log [7787]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 20/03/2012 - 20:46:41 ---A- . (...) -- C:\WINDOWS\setupact.log [0]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 20/03/2012 - 20:46:41 ---A- . (...) -- C:\WINDOWS\setuperr.log [0]
O44 - LFC:[MD5.6709E2001A8DF24E564D24D456BAEF8C] - 20/03/2012 - 18:20:17 ---A- . (...) -- C:\WINDOWS\system32\FNTCACHE.DAT [161136]
O44 - LFC:[MD5.E649D3B5505CE30E7FB57038F9B3151E] - 19/03/2012 - 21:53:39 ---A- . (...) -- C:\WINDOWS\system32\TZLog.log [5142]
O44 - LFC:[MD5.5C174F8108BAB900D3AB1DF1A29A58E5] - 18/03/2012 - 20:14:52 ---A- . (...) -- C:\WINDOWS\system32\spupdwxp.log [90]
O44 - LFC:[MD5.4E7C1CDC3E2AA5D7DF3753D5A1A757FD] - 18/03/2012 - 20:12:46 ---A- . (...) -- C:\WINDOWS\system32\wpa.dbl [1158]
O44 - LFC:[MD5.2DD45D0879992D420BB2F86E5B72AE5F] - 18/03/2012 - 19:43:30 RSHA- . (...) -- C:\boot.ini [216]
O44 - LFC:[MD5.B2DE3452DE03674C6CEC68B8C8CE7C78] - 18/03/2012 - 18:12:39 ---A- . (...) -- C:\ntdetect.com [47564]
O44 - LFC:[MD5.7794C3221F670DE270586A2CF6E68383] - 18/03/2012 - 18:12:37 ---A- . (...) -- C:\ntldr [252240]
O44 - LFC:[MD5.A06C386CC3CF9CFAA37C23A61699F0E0] - 18/03/2012 - 13:05:12 ---A- . (...) -- C:\WINDOWS\orun32.ini [931]
O44 - LFC:[MD5.90BDA3A1C23ACDCDF695C1F51F066277] - 18/03/2012 - 12:20:45 ---A- . (...) -- C:\WINDOWS\system32\amcompat.tlb [16832]
O44 - LFC:[MD5.49B6BA0569D3936F3BE609D60D7E6ADA] - 18/03/2012 - 12:20:45 ---A- . (...) -- C:\WINDOWS\system32\nscompat.tlb [23392]
O44 - LFC:[MD5.625503707B10E843432CDA4ABCAA5DC3] - 18/03/2012 - 12:09:38 ---A- . (...) -- C:\WINDOWS\system32\spdwnwxp.log [396]
O44 - LFC:[MD5.A9C25C9A8F9DA7F25C14D84C4CE845A3] - 17/03/2012 - 19:24:10 ---A- . (.Safer Networking Limited - Pas de description.) -- C:\WINDOWS\system32\sdnclean.exe [15224]
O44 - LFC:[MD5.608465F7D653BD90AFC25BA69B6ACC98] - 17/03/2012 - 19:19:43 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\WINDOWS\system32\FlashPlayerApp.exe [417440]
O44 - LFC:[MD5.AB8F5FB5829E6EC3A8935AA3B722B707] - 17/03/2012 - 19:19:43 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\WINDOWS\system32\FlashPlayerCPLApp.cpl [70304]
O44 - LFC:[MD5.06064FD9A88FAB866E0B35CB17D9105B] - 17/03/2012 - 18:25:39 ---A- . (...) -- C:\WINDOWS\win.ini [517]
O44 - LFC:[MD5.CBB5502FB7ED2900E99AEE15D830E676] - 17/03/2012 - 12:48:18 ---A- . (...) -- C:\WINDOWS\winamp.ini [1065]
O44 - LFC:[MD5.1147A1B21D23716CA6DFBB94955E3F58] - 17/03/2012 - 12:44:33 ---A- . (.RealNetworks, Inc. - Real Player(tm) ActiveX Control.) -- C:\WINDOWS\system32\rmoc3260.dll [198832]
O44 - LFC:[MD5.B74E422BC81236042529DC8A42A18423] - 17/03/2012 - 12:42:11 ---A- . (.RealNetworks, Inc. - 32 bit DirectX helper DLL.) -- C:\WINDOWS\system32\pndx5032.dll [5632]
O44 - LFC:[MD5.33833B3EDA1B07EBD367FA9B38B23E60] - 17/03/2012 - 12:42:10 ---A- . (.RealNetworks, Inc. - 16 bit DirectX helper DLL.) -- C:\WINDOWS\system32\pndx5016.dll [6656]
O44 - LFC:[MD5.B4EB68502E52EBDC0B2C55EA3445284C] - 17/03/2012 - 12:41:53 ---A- . (.Progressive Networks - Pas de description.) -- C:\WINDOWS\system32\pncrt.dll [272896]
O44 - LFC:[MD5.A8BA02E8AF5533E1BEA605F192CEBD40] - 16/03/2012 - 12:49:07 ---A- . (...) -- C:\Ad-Report-SCAN[1].txt [2866]
O44 - LFC:[MD5.142E2860EA3F4700A5646D276BC127C9] - 16/03/2012 - 12:21:17 ---A- . (...) -- C:\AdwCleaner[S1].txt [1578]
O44 - LFC:[MD5.D225676E33E8A1D174D57552C01C339A] - 16/03/2012 - 12:20:19 ---A- . (...) -- C:\AdwCleaner[R1].txt [1389]
O44 - LFC:[MD5.9681A655BE1D8AFF0D1A352504E4AF0C] - 14/03/2012 - 16:39:47 ---A- . (...) -- C:\WINDOWS\system32\CONFIG.NT [3120]
O44 - LFC:[MD5.6964EE1C0160B21E00967681F9128568] - 07/03/2012 - 01:15:19 ---A- . (.AVAST Software - avast! Screen Saver stub.) -- C:\WINDOWS\avastSS.scr [41184]
O44 - LFC:[MD5.4AD63592D55E91ABB4E29541358CEAEE] - 07/03/2012 - 01:15:14 ---A- . (.AVAST Software - avast! start-up scanner.) -- C:\WINDOWS\system32\aswBoot.exe [201352]
O44 - LFC:[MD5.DCB199B967375753B5019EC15F008F53] - 07/03/2012 - 01:03:51 ---A- . (.AVAST Software - avast! Virtualization Driver.) -- C:\WINDOWS\system32\drivers\aswSnx.sys [612184]
O44 - LFC:[MD5.B32873E5A1443C0A1E322266E203BF10] - 07/03/2012 - 01:03:38 ---A- . (.AVAST Software - avast! self protection module.) -- C:\WINDOWS\system32\drivers\aswSP.sys [337880]
O44 - LFC:[MD5.DA12626FD9A67F4E917E2F2FBE1E1764] - 07/03/2012 - 01:02:00 ---A- . (.AVAST Software - avast! TDI Redirect Driver.) -- C:\WINDOWS\system32\drivers\aswRdr.sys [35672]
O44 - LFC:[MD5.6FF544175A9180C5D88534D3D9C9A9F7] - 07/03/2012 - 01:01:53 ---A- . (.AVAST Software - avast! TDI Filter Driver.) -- C:\WINDOWS\system32\drivers\aswTdi.sys [53848]
O44 - LFC:[MD5.8C30B7DDD2F1D8D138EBE40345AF2B11] - 07/03/2012 - 01:01:39 ---A- . (.AVAST Software - avast! File System Filter Driver for Window.) -- C:\WINDOWS\system32\drivers\aswmon2.sys [95704]
O44 - LFC:[MD5.970848A56D5D9D0D616F1D94DA017495] - 07/03/2012 - 01:01:35 ---A- . (.AVAST Software - avast! File System Filter Driver for Window.) -- C:\WINDOWS\system32\drivers\aswmon.sys [89048]
O44 - LFC:[MD5.0AE43C6C411254049279C2EE55630F95] - 07/03/2012 - 01:01:30 ---A- . (.AVAST Software - avast! File System Access Blocking Driver.) -- C:\WINDOWS\system32\drivers\aswFsBlk.sys [20696]
O44 - LFC:[MD5.473F97EDC5A5312F3665AB2921196C0C] - 07/03/2012 - 00:58:29 ---A- . (.AVAST Software - avast! Base Kernel-Mode Device Driver for W.) -- C:\WINDOWS\system32\drivers\aavmker4.sys [24920]
O44 - LFC:[MD5.B7CA8CC3F978201856B6AB82F40953C3] - 04/03/2012 - 22:30:56 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\WINDOWS\system32\drivers\mbam.sys [20464]
O44 - LFC:[MD5.871A8700917ECC40491006EE155A1A02] - 04/03/2012 - 22:02:47 ---A- . (...) -- C:\WINDOWS\system32\c_7265217.nls [179716]
O44 - LFC:[MD5.8737F6F4C8EC1E2A9EA5516F1B3AE1AD] - 28/12/2006 - 12:01:32 ---A- . (...) -- C:\WINDOWS\002965_.tmp [19569]
~ Scan Files in 00mn 41s
---\\ Export de clé d'application autorisée (O47)
O47 - AAKE:Key Export SP - "C:\Program Files\Orange\Connectivity\ConnectivityManager.exe" [Enabled] .(...) -- C:\Program Files\Orange\Connectivity\ConnectivityManager.exe (.not file.)
O47 - AAKE:Key Export SP - "%windir%\Network Diagnostic\xpnetdiag.exe" [Enabled] .(.Microsoft Corporation - Network Diagnostic for Windows XP.) -- C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O47 - AAKE:Key Export SP - "%windir%\system32\sessmgr.exe" [Enabled] .(.Microsoft Corporation - Gestionnaire de session de l'aide sur le Bureau à distance de Microsoft®.) -- C:\WINDOWS\system32\sessmgr.exe
O47 - AAKE:Key Export DP - "%windir%\Network Diagnostic\xpnetdiag.exe" [Enabled] .(.Microsoft Corporation - Network Diagnostic for Windows XP.) -- C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O47 - AAKE:Key Export DP - "%windir%\system32\sessmgr.exe" [Enabled] .(.Microsoft Corporation - Gestionnaire de session de l'aide sur le Bureau à distance de Microsoft®.) -- C:\WINDOWS\system32\sessmgr.exe
~ Scan Keys in 00mn 00s
---\\ Déni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\WINDOWS\system32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l'Éditeur de configuration de sécurité Windows.) -- C:\WINDOWS\system32\scecli.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l'Éditeur de configuration de sécurité Windows.) -- C:\WINDOWS\system32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Kerberos Security Package.) -- C:\WINDOWS\system32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\WINDOWS\system32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\WINDOWS\system32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\WINDOWS\system32\wdigest.dll
~ Scan Keys in 00mn 00s
---\\ Contrôle du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmboot.sys . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disque NT.) -- C:\WINDOWS\system32\Drivers\dmboot.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmio.sys . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\system32\Drivers\dmio.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmload.sys . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\system32\Drivers\dmload.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (...) -- C:\WINDOWS\system32\Drivers\sermouse.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sr.sys . (.Microsoft Corporation - Pilote de filtre de système de fichiers pour la restauration du système.) -- C:\WINDOWS\system32\Drivers\sr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\WINDOWS\system32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\WINDOWS\system32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmboot.sys . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disque NT.) -- C:\WINDOWS\system32\Drivers\dmboot.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmio.sys . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\system32\Drivers\dmio.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmload.sys . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\system32\Drivers\dmload.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ip6fw.sys . (.Microsoft Corporation - IPv6 Windows Firewall Driver.) -- C:\WINDOWS\system32\Drivers\ip6fw.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\system32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpcdd.sys . (.Microsoft Corporation - RDP Miniport.) -- C:\WINDOWS\system32\Drivers\rdpcdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpdd.sys . (...) -- C:\WINDOWS\system32\Drivers\rdpdd.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpwd.sys . (.Microsoft Corporation - RDP Terminal Stack Driver (US/Canada Only, Not for Export).) -- C:\WINDOWS\system32\Drivers\rdpwd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (...) -- C:\WINDOWS\system32\Drivers\sermouse.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sr.sys . (.Microsoft Corporation - Pilote de filtre de système de fichiers pour la restauration du système.) -- C:\WINDOWS\system32\Drivers\sr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\tdpipe.sys . (.Microsoft Corporation - Named Pipe Transport Driver.) -- C:\WINDOWS\system32\Drivers\tdpipe.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\tdtcp.sys . (.Microsoft Corporation - TCP Transport Driver.) -- C:\WINDOWS\system32\Drivers\tdtcp.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\WINDOWS\system32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\WINDOWS\system32\Drivers\vgasave.sys (.not file.)
~ Scan CSB in 00mn 00s
---\\ Image File Execution Options (IFEO) (O50)
O50 - IFEO:Image File Execution Options - Your Image File Name Here without a path - ntsd -d
~ Scan IFEO in 00mn 00s
---\\ MountPoints2 Shell Key (O51) (None)
---\\ Trojan Driver Search Data (HKLM) (O52)
O52 - TDSD: \Drivers32\"msacm.trspch"="tssoft32.acm" . (.DSP GROUP, INC. - Codec audio TrueSpeech(TM) DSP Group pour MSACM V3.50.) -- C:\WINDOWS\system32\tssoft32.acm
O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Cinepak® Codec.) -- C:\WINDOWS\system32\iccvid.dll
O52 - TDSD: \Drivers32\"vidc.I420"="i263_32.drv" . (.Intel Corporation - Intel I.263 Video Driver 2.55.012.) -- C:\WINDOWS\system32\I263_32.drv
O52 - TDSD: \Drivers32\"vidc.iv31"="Ir32_32.dll" . (...) -- C:\WINDOWS\system32\Ir32_32.dll
O52 - TDSD: \Drivers32\"vidc.iv32"="Ir32_32.dll" . (...) -- C:\WINDOWS\system32\Ir32_32.dll
O52 - TDSD: \Drivers32\"msacm.sl_anet"="sl_anet.acm" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\WINDOWS\system32\sl_anet.acm
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\WINDOWS\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\WINDOWS\system32\l3codeca.acm
O52 - TDSD: \Drivers32\"vidc.iv41"="Ir41_32.ax" . (.Intel Corporation - Intel Indeo® Video 4.5.) -- C:\WINDOWS\system32\ir41_32.ax
O52 - TDSD: \Drivers32\"msacm.iac2"="C:\WINDOWS\System32\iac25_32.ax" . (.Ligos Corporation - Indeo® Audio Software.) -- C:\WINDOWS\system32\iac25_32.ax
O52 - TDSD: \Drivers32\"vidc.iv50"="ir50_32.dll" . (.Ligos Corporation - Ligos Indeo XP (Indeo® Video 5.2).) -- C:\WINDOWS\system32\Ir50_32.dll
O52 - TDSD: \Drivers32\"vidc.DIVX"="divx.dll" . (.DivXNetworks, Inc. - DivX® Codec for Windows.) -- C:\WINDOWS\system32\divx.dll
O52 - TDSD: \Drivers32\"vidc.XVID"="xvidvfw.dll" . (...) -- C:\WINDOWS\system32\xvidvfw.dll
O52 - TDSD: \Drivers32\"msacm.lameacm"="lameACM.acm" . (.http://www.mp3dev.org/ - Lame MP3 codec engine.) -- C:\WINDOWS\system32\lameACM.acm
O52 - TDSD: \Drivers32\"vidc.3ivx"="3ivxVfWCodec.dll" . (.3ivx.com - 3ivx D4 4.5.1 Video for Windows Codec.) -- C:\WINDOWS\system32\3ivxVfWCodec.dll
O52 - TDSD: \Drivers32\"vidc.3iv2"="3ivxVfWCodec.dll" . (.3ivx.com - 3ivx D4 4.5.1 Video for Windows Codec.) -- C:\WINDOWS\system32\3ivxVfWCodec.dll
O52 - TDSD: \Drivers32\"msacm.divxa32"="divxa32.acm" . (.Kristal Studi - DivX WMA Audi.) -- C:\WINDOWS\system32\divxa32.acm
O52 - TDSD: \Drivers32\"VIDC.HFYU"="huffyuv.dll" . (.Disappearing Inc. - Huffyuv lossless video codec.) -- C:\WINDOWS\system32\huffyuv.dll
O52 - TDSD: \Drivers32\"VIDC.i263"="i263_32.drv" . (.Intel Corporation - Intel I.263 Video Driver 2.55.012.) -- C:\WINDOWS\system32\I263_32.drv
O52 - TDSD: \Drivers32\"msacm.imc"="imc32.acm" . (.Intel Corporation - Intel Music Coder for MSACM.) -- C:\WINDOWS\system32\IMC32.acm
O52 - TDSD: \Drivers32\"VIDC.IV40"="Ir41_32.ax" . (.Intel Corporation - Intel Indeo® Video 4.5.) -- C:\WINDOWS\system32\ir41_32.ax
O52 - TDSD: \Drivers32\"VIDC.VP60"="vp6vfw.dll" . (.On2.com - VP6 VIDEO FOR WINDOWS CODEC.) -- C:\WINDOWS\system32\vp6vfw.dll
O52 - TDSD: \Drivers32\"VIDC.VP61"="vp6vfw.dll" . (.On2.com - VP6 VIDEO FOR WINDOWS CODEC.) -- C:\WINDOWS\system32\vp6vfw.dll
O52 - TDSD: \Drivers32\"VIDC.VP62"="vp6vfw.dll" . (.On2.com - VP6 VIDEO FOR WINDOWS CODEC.) -- C:\WINDOWS\system32\vp6vfw.dll
O52 - TDSD: \Drivers32\"VIDC.VP31"="vp31vfw.dll" . (.On2.com - On2_VP3.) -- C:\WINDOWS\system32\vp31vfw.dll
O52 - TDSD: \Drivers32\"msacm.ac3acm"="ac3acm.acm" . (.fccHandler - AC-3 ACM Decompressor.) -- C:\WINDOWS\system32\ac3acm.acm
O52 - TDSD: \Drivers32\"vidc.ffds"="C:\PROGRA~1\ffdshow\ffdshow.ax" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"sl_anet.acm"="Sipro Lab Telecom Audio Codec" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\WINDOWS\system32\sl_anet.acm
O52 - TDSD: \drivers.desc\"C:\WINDOWS\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\WINDOWS\system32\l3codeca.acm
O52 - TDSD: \drivers.desc\"iac25_32.ax"="Indeo® audio software" . (.Ligos Corporation - Indeo® Audio Software.) -- C:\WINDOWS\system32\iac25_32.ax
O52 - TDSD: \drivers.desc\"ir50_32.dll"="Ligos Indeo® XP Video 5.2" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"divx.dll"="DivX Pro CE 5.1.1" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"xvidvfw.dll"="XviD MPEG-4 Video Codec" . (...) -- C:\WINDOWS\system32\xvidvfw.dll
O52 - TDSD: \drivers.desc\"lameACM.acm"="Lame ACM MP3 CODEC v3.95.1" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"3ivxVfWCodec.dll"="3ivx D4 4.5" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"divxa32.acm"="DivX ;) Audio" . (.Kristal Studi - DivX WMA Audi.) -- C:\WINDOWS\system32\divxa32.acm
O52 - TDSD: \drivers.desc\"huffyuv.dll"="Huffyuv lossless codec" . (.Disappearing Inc. - Huffyuv lossless video codec.) -- C:\WINDOWS\system32\huffyuv.dll
O52 - TDSD: \drivers.desc\"i263_32.drv"="Intel I.263 Video Driver 2.55.1.16" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"imc32.acm"="Intel Music Coder" . (.Intel Corporation - Intel Music Coder for MSACM.) -- C:\WINDOWS\system32\IMC32.acm
O52 - TDSD: \drivers.desc\"Ir32_32.dll"="Intel Indeo 3.2" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"Ir41_32.ax"="Indeo v.4.51.16.2 Interactive codec" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"vp6vfw.dll"="On2 VP6 codec" . (.On2.com - VP6 VIDEO FOR WINDOWS CODEC.) -- C:\WINDOWS\system32\vp6vfw.dll
O52 - TDSD: \drivers.desc\"vp31vfw.dll"="On2 VP3 codec" . (.On2.com - On2_VP3.) -- C:\WINDOWS\system32\vp31vfw.dll
O52 - TDSD: \drivers.desc\"ac3acm.acm"="AC3 ACM Decompressor" . (.fccHandler - AC-3 ACM Decompressor.) -- C:\WINDOWS\system32\ac3acm.acm
O52 - TDSD: \drivers.desc\"C:\WINDOWS\System32\iac25_32.ax"="Indeo® Audio Software" . (.Ligos Corporation - Indeo® Audio Software.) -- C:\WINDOWS\system32\iac25_32.ax
O52 - TDSD: \drivers.desc\"C:\PROGRA~1\ffdshow\ffdshow.ax"="ffdshow Video Codec" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"msg711.acm"="Microsoft CCITT G.711 Audio CODEC" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"msgsm32.acm"="Microsoft GSM 6.10 Audio CODEC" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"tssoft32.acm"="DSP Group TrueSpeech(TM) Audio CODEC" . (.DSP GROUP, INC. - Codec audio TrueSpeech(TM) DSP Group pour MSACM V3.50.) -- C:\WINDOWS\system32\tssoft32.acm
O52 - TDSD: \drivers.desc\"iccvid.dll"="Cinepak Codec by Radius Inc." . (...) -- (.not file.)
~ Scan Keys in 00mn 05s
---\\ ShareTools MSconfig StartupReg (O53) (None)
---\\ Microsoft Control Security Providers (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Client DPA pour plate-forme 32 bit.) -- C:\WINDOWS\system32\msapsspc.dll
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\WINDOWS\system32\schannel.dll
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Package d'authentification Digest SSPI.) -- C:\WINDOWS\system32\digest.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Client DPA pour plate-forme 32 bit.) -- C:\WINDOWS\system32\msapsspc.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\WINDOWS\system32\schannel.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Package d'authentification Digest SSPI.) -- C:\WINDOWS\system32\digest.dll
~ Scan Keys in 00mn 00s
---\\ Microsoft Windows Policies System (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
~ Scan Keys in 00mn 00s
---\\ Microsoft Windows Policies Explorer (O56)
O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveTypeAutoRun"=145
~ Scan Keys in 00mn 00s
---\\ Liste des Drivers Système (O58)
O58 - SDL:[MD5.473F97EDC5A5312F3665AB2921196C0C] - 07/03/2012 - 00:58:29 ---A- . (.AVAST Software - avast! Base Kernel-Mode Device Driver for Windows NT/2000/XP.) -- C:\WINDOWS\system32\drivers\aavmker4.sys [24920]
O58 - SDL:[MD5.052343CD49C8DA20C48958CFE73C7D44] - 20/02/2004 - 14:00:44 ---A- . (.Agere Systems - SoftModem Device Driver.) -- C:\WINDOWS\system32\drivers\AGRSM.sys [1265388]
O58 - SDL:[MD5.BA88534A3CEB6161E7432438B9EA4F54] - 24/02/2004 - 10:08:52 ---A- . (.Sensaura - Sensaura WDM 3D Audio Driver.) -- C:\WINDOWS\system32\drivers\ALCXSENS.SYS [400384]
O58 - SDL:[MD5.5FF6F7E58C798F1474C0BBFFC23CB78D] - 21/06/2004 - 15:53:20 ---A- . (.Realtek Semiconductor Corp. - Realtek AC'97 Audio Driver (WDM).) -- C:\WINDOWS\system32\drivers\ALCXWDM.SYS [626204]
O58 - SDL:[MD5.0AE43C6C411254049279C2EE55630F95] - 07/03/2012 - 01:01:30 ---A- . (.AVAST Software - avast! File System Access Blocking Driver.) -- C:\WINDOWS\system32\drivers\aswFsBlk.sys [20696]
O58 - SDL:[MD5.970848A56D5D9D0D616F1D94DA017495] - 07/03/2012 - 01:01:35 ---A- . (.AVAST Software - avast! File System Filter Driver for Windows NT/2000.) -- C:\WINDOWS\system32\drivers\aswmon.sys [89048]
O58 - SDL:[MD5.8C30B7DDD2F1D8D138EBE40345AF2B11] - 07/03/2012 - 01:01:39 ---A- . (.AVAST Software - avast! File System Filter Driver for Windows XP.) -- C:\WINDOWS\system32\drivers\aswmon2.sys [95704]
O58 - SDL:[MD5.DA12626FD9A67F4E917E2F2FBE1E1764] - 07/03/2012 - 01:02:00 ---A- . (.AVAST Software - avast! TDI Redirect Driver.) -- C:\WINDOWS\system32\drivers\aswRdr.sys [35672]
O58 - SDL:[MD5.DCB199B967375753B5019EC15F008F53] - 07/03/2012 - 01:03:51 ---A- . (.AVAST Software - avast! Virtualization Driver.) -- C:\WINDOWS\system32\drivers\aswSnx.sys [612184]
O58 - SDL:[MD5.B32873E5A1443C0A1E322266E203BF10] - 07/03/2012 - 01:03:38 ---A- . (.AVAST Software - avast! self protection module.) -- C:\WINDOWS\system32\drivers\aswSP.sys [337880]
O58 - SDL:[MD5.6FF544175A9180C5D88534D3D9C9A9F7] - 07/03/2012 - 01:01:53 ---A- . (.AVAST Software - avast! TDI Filter Driver.) -- C:\WINDOWS\system32\drivers\aswTdi.sys [53848]
O58 - SDL:[MD5.43CB9E73A60D27AD069046B88CC4EFEB] - 03/04/2008 - 04:03:08 ---A- . (.Atheros Communications, Inc. - Driver for Atheros AR5008 Wireless Network Adapter.) -- C:\WINDOWS\system32\drivers\athw.sys [1333152]
O58 - SDL:[MD5.59485150D0388E07772EAD4999A5AFC2] - 09/03/2004 - 18:28:38 ---A- . (.ATI Technologies Inc. - ATI Radeon Miniport Driver.) -- C:\WINDOWS\system32\drivers\ati2mtag.sys [680448]
O58 - SDL:[MD5.899C9F94ED5EC5EFF71AA6E17A084419] - 14/04/2004 - 13:52:22 ---A- . (.ATI Technologies Inc. - ATI IDE BUS Master Controller Driver.) -- C:\WINDOWS\system32\drivers\atiide.sys [5632]
O58 - SDL:[MD5.906FCF0D1DC5B573015BBD21EF54BD88] - 27/10/2003 - 11:59:00 ---A- . (.ATI Technologies Inc. - ATI AGP GART Driver.) -- C:\WINDOWS\system32\drivers\atisgkaf.SYS [13842]
O58 - SDL:[MD5.08F60F40D1A2A95A1F12EDDBD9F25C1C] - 25/01/2009 - 17:18:26 ---A- . (.Macrovision Europe Ltd - Macrovision SECURITY Driver.) -- C:\WINDOWS\system32\drivers\CdaC15BA.SYS [12464]
O58 - SDL:[MD5.837EEF65AF62D4E8A37C41D3879F7274] - 02/02/2007 - 04:00:00 ---A- . (.Sonic Solutions - CDR4 CD and DVD Place Holder Driver (see PxHelp).) -- C:\WINDOWS\system32\drivers\cdr4_xp.sys [9336]
O58 - SDL:[MD5.579DA2F9F5401F55DAE2CF8779D61DFC] - 02/02/2007 - 04:00:00 ---A- . (.Sonic Solutions - CDRAL Place Holder Driver (see PxHelp).) -- C:\WINDOWS\system32\drivers\cdralw2k.sys [9464]
O58 - SDL:[MD5.C9B25AE9B8ABD983C5AD3F8CBFAB0F9C] - 24/04/2003 - 12:00:00 ---A- . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\system32\drivers\cinemst2.sys [262528]
O58 - SDL:[MD5.9624293E55AD405415862B504CA95B73] - 24/04/2003 - 12:00:00 ---A- . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\system32\drivers\cpqdap01.sys [11776]
O58 - SDL:[MD5.32A73A8952580B284A47290ADB62032A] - 02/02/2005 - 01:21:04 ---A- . (.GEAR Software Inc. - CDRom Class Filter Driver.) -- C:\WINDOWS\system32\drivers\GEARAspiWDM.sys [14408]
O58 - SDL:[MD5.B7CA8CC3F978201856B6AB82F40953C3] - 10/12/2011 - 15:24:06 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\WINDOWS\system32\drivers\mbam.sys [20464]
O58 - SDL:[MD5.5CD3966B9DBEC34787783D44DC2AE6B8] - 27/02/2004 - 00:31:38 ---A- . (.Toshiba Corporation - Toshiba Notebook PC SMI Driver.) -- C:\WINDOWS\system32\drivers\NBSMI.sys [4224]
O58 - SDL:[MD5.1265EB253ED4EBE4ACB3BD5F548FF796] - 29/01/2003 - 12:35:00 ---A- . (.TOSHIBA Corporation. - Network Device Usermode I/O protocol.) -- C:\WINDOWS\system32\drivers\Netdevio.sys [12032]
O58 - SDL:[MD5.BE984D604D91C217355CDD3737AAD25D] - 24/04/2003 - 12:00:00 ---A- . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\system32\drivers\nikedrv.sys [12032]
O58 - SDL:[MD5.07C02C892E8E1A72D6BF35004F0E9C5E] - 19/11/2005 - 02:13:18 ---A- . (.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 SPR Protocol Driver.) -- C:\WINDOWS\system32\drivers\PCASp50.sys [20096]
O58 - SDL:[MD5.444F122E68DB44C0589227781F3C8B3F] - 01/04/2004 - 16:30:46 ---A- . (.Padus, Inc. - Padus(R) ASPI Shell.) -- C:\WINDOWS\system32\drivers\pfc.sys [10368]
O58 - SDL:[MD5.80D317BD1C3DBC5D4FE7B1678C60CADD] - 24/04/2003 - 12:00:00 ---A- . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Library.) -- C:\WINDOWS\system32\drivers\ptilink.sys [17792]
O58 - SDL:[MD5.2C4FB2E9F039287767C384E46EE91030] - 09/01/2009 - 16:18:02 R--A- . (.Research in Motion Ltd - RIM Virtual Serial Driver.) -- C:\WINDOWS\system32\drivers\RimSerial.sys [27136]
O58 - SDL:[MD5.F17713D108ACA124A139FDE877EEF68A] - 20/05/2008 - 19:33:50 ---A- . (.Research In Motion Limited - BlackBerry Device Driver.) -- C:\WINDOWS\system32\drivers\RimUsb.sys [22784]
O58 - SDL:[MD5.A56FE08EC7473E8580A390BB1081CDD7] - 24/04/2003 - 12:00:00 ---A- . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\system32\drivers\rio8drv.sys [12032]
O58 - SDL:[MD5.0A854DF84C77A0BE205BFEAB2AE4F0EC] - 24/04/2003 - 12:00:00 ---A- . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\system32\drivers\riodrv.sys [12032]
O58 - SDL:[MD5.D507C1400284176573224903819FFDA3] - 13/04/2008 - 09:35:40 ---A- . (.Realtek Semiconductor Corporation - Realtek RTL8139 NDIS 5.0 Driver.) -- C:\WINDOWS\system32\drivers\rtl8139.sys [20992]
O58 - SDL:[MD5.D88F6C53B637ABE4C23DE29DB40A9F05] - 05/12/2003 - 17:53:00 ---A- . (.Realtek Semiconductor Corporation - Realtek 10/100/1000 NDIS 5.1 Driver.) -- C:\WINDOWS\system32\drivers\Rtlnic51.sys [68352]
O58 - SDL:[MD5.90A3935D05B494A5A39D37E71F09A677] - 13/04/2008 - 09:39:16 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\WINDOWS\system32\drivers\secdrv.sys [20480]
O58 - SDL:[MD5.F5FEC5B4B985FBF81927844E75DD5BD1] - 05/11/2002 - 15:00:46 ---A- . (.SMC - SMC IrCC NDIS 5.0 IrDA FIR Device Driver.) -- C:\WINDOWS\system32\drivers\smcirda.sys [39424]
O58 - SDL:[MD5.D5803CEAFC64FCF475FE6B6756B41BB8] - 22/01/2004 - 15:04:16 ---A- . (.Synaptics, Inc. - Synaptics Touchpad Driver.) -- C:\WINDOWS\system32\drivers\SynTP.sys [178816]
O58 - SDL:[MD5.913938A5382BFB2487AACAEA408A14D2] - 10/12/2002 - 14:13:22 ---A- . (.Texas Instruments Inc. - tiumflt.sys.) -- C:\WINDOWS\system32\drivers\tiumflt.sys [7552]
O58 - SDL:[MD5.65E8E81C2F40ABCE9DB98FD232F86BF8] - 18/02/2003 - 17:02:06 ---A- . (.Texas Instruments Inc. - tiumfwl.sys.) -- C:\WINDOWS\system32\drivers\tiumfwl.sys [42092]
O58 - SDL:[MD5.B3B20CD6AB0C9EF8FEEF9FBBE04F1CB2] - 06/04/2002 - 18:50:56 ---A- . (...) -- C:\WINDOWS\system32\drivers\TOSSMBNT.sys [19607]
O58 - SDL:[MD5.D74A8EC75305F1D3CFDE7C7FC1BD62A9] - 24/04/2003 - 12:00:00 ---A- . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\system32\drivers\tsbvcap.sys [21376]
O58 - SDL:[MD5.55E01061C74A8CEFFF58DC36114A8D3F] - 24/04/2003 - 12:00:00 ---A- . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\system32\drivers\vdmindvd.sys [58112]
O58 - SDL:[MD5.6D3ADA4CE95CECA7BCE527A08C4C474E] - 24/04/2003 - 12:00:00 ---A- . (...) -- C:\WINDOWS\system32\ansi.sys [9037]
O58 - SDL:[MD5.0FE9F16075C9ACB941C957B7C649176E] - 24/04/2003 - 12:00:00 ---A- . (...) -- C:\WINDOWS\system32\country.sys [27097]
O58 - SDL:[MD5.C6D29F29DE7427B1B0775E53E577B623] - 24/04/2003 - 12:00:00 ---A- . (...) -- C:\WINDOWS\system32\himem.sys [4912]
O58 - SDL:[MD5.582BCDD47CF4B68B5CB528F18E3CB808] - 24/04/2003 - 12:00:00 ---A- . (...) -- C:\WINDOWS\system32\key01.sys [42809]
O58 - SDL:[MD5.FBBCFEC1379C5C02D88A361993EDF1B8] - 24/04/2003 - 12:00:00 ---A- . (...) -- C:\WINDOWS\system32\keyboard.sys [42537]
O58 - SDL:[MD5.7D30A74B5FB9FE3B245A6CE5FBCD71D5] - 24/04/2003 - 12:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos.sys [27916]
O58 - SDL:[MD5.CF9ED169FF86D935E47999E82359E898] - 24/04/2003 - 12:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos404.sys [29146]
O58 - SDL:[MD5.03B945AC0481CD8BB161C3569D8ED1C3] - 24/04/2003 - 12:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos411.sys [29370]
O58 - SDL:[MD5.BBC957DC18C17CC027EB80B7C77F2AEA] - 24/04/2003 - 12:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos412.sys [29274]
O58 - SDL:[MD5.3CFFAEFFF23B0D208214A6D3061A5B1B] - 24/04/2003 - 12:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos804.sys [29146]
O58 - SDL:[MD5.CAAA108FD7BF71989946B39704323455] - 13/04/2008 - 09:49:52 ---A- . (...) -- C:\WINDOWS\system32\ntio.sys [34000]
O58 - SDL:[MD5.6F73F50162DEF60C84B725C18CD9140F] - 13/04/2008 - 09:49:44 ---A- . (...) -- C:\WINDOWS\system32\ntio404.sys [34560]
O58 - SDL:[MD5.0FDD5E69C1FF3B58043D44F2CC743D45] - 13/04/2008 - 09:49:40 ---A- . (...) -- C:\WINDOWS\system32\ntio411.sys [35648]
O58 - SDL:[MD5.8842837C4D8311BF8E72BEE8CCC42217] - 13/04/2008 - 09:49:44 ---A- . (...) -- C:\WINDOWS\system32\ntio412.sys [35424]
O58 - SDL:[MD5.6B56CEB3C6F9D5CD7293DBD9FE23B311] - 13/04/2008 - 09:49:42 ---A- . (...) -- C:\WINDOWS\system32\ntio804.sys [34560]
O58 - SDL:[MD5.B670C5D89F0726B7A2A7DFB4E968CDF8] - 23/09/2003 - 10:38:34 ---A- . (.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 MPR Protocol Driver.) -- C:\WINDOWS\system32\pcampr5.sys [34688]
O58 - SDL:[MD5.ECD2F9D67B06606064DAF6961A6D5EFE] - 01/03/2006 - 18:53:54 ---A- . (.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 Protocol Driver.) -- C:\WINDOWS\system32\pcandis5.sys [32128]
~ Scan Drivers in 00mn 08s
---\\ Liste des outils de nettoyage (O63)
O63 - Logiciel: HijackThis 2.0.2 - (.TrendMicro.) [HKLM] -- HijackThis
O63 - Logiciel: ZHPDiag 1.28 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
~ Scan ADS in 00mn 00s
---\\ Liste des services Legacy (O64)
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\Aavmker4.sys (Aavmker4) .(.AVAST Software - avast! Base Kernel-Mode Device Driver for W.) - LEGACY_AAVMKER4
O64 - Services: CurCS - 17/03/2012 - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe (AdobeFlashPlayerUpdateSvc) .(.Adobe Systems Incorporated - Adobe® Flash® Player Update Service 11.2 r2.) - LEGACY_ADOBEFLASHPLAYERUPDATESVC
O64 - Services: CurCS - 27/02/2012 - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Mobile Device) .(.Apple Inc. - MobileDeviceService.) - LEGACY_APPLE_MOBILE_DEVICE
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (AppMgmt) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_APPMGMT
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswFsBlk.sys (aswFsBlk) .(.AVAST Software - avast! File System Access Blocking Driver.) - LEGACY_ASWFSBLK
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswMon2.sys (aswMon2) .(.AVAST Software - avast! File System Filter Driver for Window.) - LEGACY_ASWMON2
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswRdr.sys (aswRdr) .(.AVAST Software - avast! TDI Redirect Driver.) - LEGACY_ASWRDR
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswSnx.sys (aswSnx) .(.AVAST Software - avast! Virtualization Driver.) - LEGACY_ASWSNX
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswSP.sys (aswSP) .(.AVAST Software - avast! self protection module.) - LEGACY_ASWSP
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswTdi.sys (aswTdi) .(.AVAST Software - avast! TDI Filter Driver.) - LEGACY_ASWTDI
O64 - Services: CurCS - 09/03/2004 - C:\WINDOWS\system32\Ati2evxx.exe - Ati HotKey Poller (Ati HotKey Poller) .(...) - LEGACY_ATI_HOTKEY_POLLER
O64 - Services: CurCS - 07/03/2012 - C:\Program Files\AVAST Software\Avast\AvastSvc.exe (avast! Antivirus) .(.AVAST Software - avast! Service.) - LEGACY_AVAST!_ANTIVIRUS
O64 - Services: CurCS - 13/10/2005 - C:\Program Files\AVPersonal\AVWUPSRV.exe (AVWUpSrv) .(.H+BEDV Datentechnik GmbH, Germany - AntiVir Software Update Service for Windows.) - LEGACY_AVWUPSRV
O64 - Services: CurCS - 24/01/2009 - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe (Boonty Games) .(.BOONTY - System Level Service Utility.) - LEGACY_BOONTY_GAMES
O64 - Services: CurCS - 25/01/2009 - C:\WINDOWS\system32\drivers\CDAC11BA.exe (C-DillaCdaC11BA) .(.Macrovision - Macrovision RTS Service.) - LEGACY_C-DILLACDAC11BA
O64 - Services: CurCS - 25/01/2009 - C:\WINDOWS\system32\drivers\CdaC15BA.sys (CdaC15BA) .(.Macrovision Europe Ltd - Macrovision SECURITY Driver.) - LEGACY_CDAC15BA
O64 - Services: CurCS - 04/03/2004 - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe (CFSvcs) .(.TOSHIBA CORPORATION - Service of ConfigFree..) - LEGACY_CFSVCS
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\System32\dllhost.exe (COMSysApp) .(.Microsoft Corporation - COM Surrogate.) - LEGACY_COMSYSAPP
O64 - Services: CurCS - ??\??\???? - (DcomLaunch) .(. - .) - LEGACY_DCOMLAUNCH
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\drivers\dmboot.sys (dmboot) .(.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) - LEGACY_DMBOOT
O64 - Services: CurCS - 24/04/2003 - C:\WINDOWS\system32\drivers\dmload.sys (dmload) .(.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) - LEGACY_DMLOAD
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (Dnscache) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_DNSCACHE
O64 - Services: CurCS - 17/03/2012 - C:\Program Files\Google\Update\GoogleUpdate.exe (gupdate) .(.Google Inc. - Programme d'installation de Google.) - LEGACY_GUPDATE
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (helpsvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_HELPSVC
O64 - Services: CurCS - 20/10/2009 - C:\WINDOWS\system32\Drivers\HTTP.sys (HTTP) .(.Microsoft Corporation - HTTP Protocol Stack.) - LEGACY_HTTP
O64 - Services: CurCS - 22/10/2004 - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe (IDriverT) .(.Macrovision Corporation - IDriverT Module.) - LEGACY_IDRIVERT
O64 - Services: CurCS - 18/10/2005 - C:\Program Files\iPod\bin\iPodService.exe (iPodService) .(.Apple Computer, Inc. - iPodService Module.) - LEGACY_IPODSERVICE
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (LmHosts) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_LMHOSTS
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\Mup.sys (Mup) .(.Microsoft Corporation - Multiple UNC Provider driver.) - LEGACY_MUP
O64 - Services: CurCS - 29/01/2003 - C:\WINDOWS\system32\DRIVERS\netdevio.sys (Netdevio) .(.TOSHIBA Corporation. - Network Device Usermode I/O protocol.) - LEGACY_NETDEVIO
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (Nla) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_NLA
O64 - Services: CurCS - 23/09/2003 - C:\WINDOWS\system32\PCAMPR5.sys (PCAMPR5) .(.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 MPR Protocol Driver.) - LEGACY_PCAMPR5
O64 - Services: CurCS - 01/03/2006 - C:\WINDOWS\system32\PCANDIS5.sys (PCANDIS5) .(.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 Protocol Driver.) - LEGACY_PCANDIS5
O64 - Services: CurCS - 19/11/2005 - C:\WINDOWS\system32\Drivers\PCASp50.sys (PCASp50) .(.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 SPR Protocol Driver.) - LEGACY_PCASP50
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\lsass.exe (PolicyAgent) .(.Microsoft Corporation - LSA Shell (Export Version).) - LEGACY_POLICYAGENT
O64 - Services: CurCS - 06/12/2007 - C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe (Roxio Upnp Server 9) .(.Sonic Solutions - RoxioUpnpService9 Module.) - LEGACY_ROXIO_UPNP_SERVER_9
O64 - Services: CurCS - 08/07/2009 - C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe (RoxLiveShare9) .(.Sonic Solutions - Roxio LiveShare Service.) - LEGACY_ROXLIVESHARE9
O64 - Services: CurCS - 08/07/2009 - C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe (RoxMediaDB9) .(.Sonic Solutions - RoxMediaDB9 Module.) - LEGACY_ROXMEDIADB9
O64 - Services: CurCS - 08/07/2009 - C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe (RoxWatch9) .(.Sonic Solutions - RoxSniffer9 Module.) - LEGACY_ROXWATCH9
O64 - Services: CurCS - ??\??\???? - (RpcSs) .(. - .) - LEGACY_RPCSS
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\lsass.exe (SamSs) .(.Microsoft Corporation - LSA Shell (Export Version).) - LEGACY_SAMSS
O64 - Services: CurCS - 07/02/2012 - C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe (SDScannerService) .(.Safer-Networking Ltd. - Spybot-S&D 2 Scanner Service.) - LEGACY_SDSCANNERSERVICE
O64 - Services: CurCS - 07/02/2012 - C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe (SDUpdateService) .(.Safer-Networking Ltd. - Spybot-S&D 2 Background update service.) - LEGACY_SDUPDATESERVICE
O64 - Ser
et la fin:
---\\ Liste des services Legacy (O64)
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\Aavmker4.sys (Aavmker4) .(.AVAST Software - avast! Base Kernel-Mode Device Driver for W.) - LEGACY_AAVMKER4
O64 - Services: CurCS - 17/03/2012 - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe (AdobeFlashPlayerUpdateSvc) .(.Adobe Systems Incorporated - Adobe® Flash® Player Update Service 11.2 r2.) - LEGACY_ADOBEFLASHPLAYERUPDATESVC
O64 - Services: CurCS - 27/02/2012 - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Mobile Device) .(.Apple Inc. - MobileDeviceService.) - LEGACY_APPLE_MOBILE_DEVICE
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (AppMgmt) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_APPMGMT
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswFsBlk.sys (aswFsBlk) .(.AVAST Software - avast! File System Access Blocking Driver.) - LEGACY_ASWFSBLK
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswMon2.sys (aswMon2) .(.AVAST Software - avast! File System Filter Driver for Window.) - LEGACY_ASWMON2
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswRdr.sys (aswRdr) .(.AVAST Software - avast! TDI Redirect Driver.) - LEGACY_ASWRDR
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswSnx.sys (aswSnx) .(.AVAST Software - avast! Virtualization Driver.) - LEGACY_ASWSNX
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswSP.sys (aswSP) .(.AVAST Software - avast! self protection module.) - LEGACY_ASWSP
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswTdi.sys (aswTdi) .(.AVAST Software - avast! TDI Filter Driver.) - LEGACY_ASWTDI
O64 - Services: CurCS - 09/03/2004 - C:\WINDOWS\system32\Ati2evxx.exe - Ati HotKey Poller (Ati HotKey Poller) .(...) - LEGACY_ATI_HOTKEY_POLLER
O64 - Services: CurCS - 07/03/2012 - C:\Program Files\AVAST Software\Avast\AvastSvc.exe (avast! Antivirus) .(.AVAST Software - avast! Service.) - LEGACY_AVAST!_ANTIVIRUS
O64 - Services: CurCS - 13/10/2005 - C:\Program Files\AVPersonal\AVWUPSRV.exe (AVWUpSrv) .(.H+BEDV Datentechnik GmbH, Germany - AntiVir Software Update Service for Windows.) - LEGACY_AVWUPSRV
O64 - Services: CurCS - 24/01/2009 - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe (Boonty Games) .(.BOONTY - System Level Service Utility.) - LEGACY_BOONTY_GAMES
O64 - Services: CurCS - 25/01/2009 - C:\WINDOWS\system32\drivers\CDAC11BA.exe (C-DillaCdaC11BA) .(.Macrovision - Macrovision RTS Service.) - LEGACY_C-DILLACDAC11BA
O64 - Services: CurCS - 25/01/2009 - C:\WINDOWS\system32\drivers\CdaC15BA.sys (CdaC15BA) .(.Macrovision Europe Ltd - Macrovision SECURITY Driver.) - LEGACY_CDAC15BA
O64 - Services: CurCS - 04/03/2004 - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe (CFSvcs) .(.TOSHIBA CORPORATION - Service of ConfigFree..) - LEGACY_CFSVCS
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\System32\dllhost.exe (COMSysApp) .(.Microsoft Corporation - COM Surrogate.) - LEGACY_COMSYSAPP
O64 - Services: CurCS - ??\??\???? - (DcomLaunch) .(. - .) - LEGACY_DCOMLAUNCH
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\drivers\dmboot.sys (dmboot) .(.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) - LEGACY_DMBOOT
O64 - Services: CurCS - 24/04/2003 - C:\WINDOWS\system32\drivers\dmload.sys (dmload) .(.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) - LEGACY_DMLOAD
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (Dnscache) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_DNSCACHE
O64 - Services: CurCS - 17/03/2012 - C:\Program Files\Google\Update\GoogleUpdate.exe (gupdate) .(.Google Inc. - Programme d'installation de Google.) - LEGACY_GUPDATE
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (helpsvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_HELPSVC
O64 - Services: CurCS - 20/10/2009 - C:\WINDOWS\system32\Drivers\HTTP.sys (HTTP) .(.Microsoft Corporation - HTTP Protocol Stack.) - LEGACY_HTTP
O64 - Services: CurCS - 22/10/2004 - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe (IDriverT) .(.Macrovision Corporation - IDriverT Module.) - LEGACY_IDRIVERT
O64 - Services: CurCS - 18/10/2005 - C:\Program Files\iPod\bin\iPodService.exe (iPodService) .(.Apple Computer, Inc. - iPodService Module.) - LEGACY_IPODSERVICE
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (LmHosts) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_LMHOSTS
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\Mup.sys (Mup) .(.Microsoft Corporation - Multiple UNC Provider driver.) - LEGACY_MUP
O64 - Services: CurCS - 29/01/2003 - C:\WINDOWS\system32\DRIVERS\netdevio.sys (Netdevio) .(.TOSHIBA Corporation. - Network Device Usermode I/O protocol.) - LEGACY_NETDEVIO
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (Nla) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_NLA
O64 - Services: CurCS - 23/09/2003 - C:\WINDOWS\system32\PCAMPR5.sys (PCAMPR5) .(.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 MPR Protocol Driver.) - LEGACY_PCAMPR5
O64 - Services: CurCS - 01/03/2006 - C:\WINDOWS\system32\PCANDIS5.sys (PCANDIS5) .(.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 Protocol Driver.) - LEGACY_PCANDIS5
O64 - Services: CurCS - 19/11/2005 - C:\WINDOWS\system32\Drivers\PCASp50.sys (PCASp50) .(.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 SPR Protocol Driver.) - LEGACY_PCASP50
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\lsass.exe (PolicyAgent) .(.Microsoft Corporation - LSA Shell (Export Version).) - LEGACY_POLICYAGENT
O64 - Services: CurCS - 06/12/2007 - C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe (Roxio Upnp Server 9) .(.Sonic Solutions - RoxioUpnpService9 Module.) - LEGACY_ROXIO_UPNP_SERVER_9
O64 - Services: CurCS - 08/07/2009 - C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe (RoxLiveShare9) .(.Sonic Solutions - Roxio LiveShare Service.) - LEGACY_ROXLIVESHARE9
O64 - Services: CurCS - 08/07/2009 - C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe (RoxMediaDB9) .(.Sonic Solutions - RoxMediaDB9 Module.) - LEGACY_ROXMEDIADB9
O64 - Services: CurCS - 08/07/2009 - C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe (RoxWatch9) .(.Sonic Solutions - RoxSniffer9 Module.) - LEGACY_ROXWATCH9
O64 - Services: CurCS - ??\??\???? - (RpcSs) .(. - .) - LEGACY_RPCSS
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\lsass.exe (SamSs) .(.Microsoft Corporation - LSA Shell (Export Version).) - LEGACY_SAMSS
O64 - Services: CurCS - 07/02/2012 - C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe (SDScannerService) .(.Safer-Networking Ltd. - Spybot-S&D 2 Scanner Service.) - LEGACY_SDSCANNERSERVICE
O64 - Services: CurCS - 07/02/2012 - C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe (SDUpdateService) .(.Safer-Networking Ltd. - Spybot-S&D 2 Background update service.) - LEGACY_SDUPDATESERVICE
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (seclogon) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SECLOGON
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (ShellHWDetection) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SHELLHWDETECTION
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (stisvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_STISVC
O64 - Services: CurCS - ??\??\???? - (TermService) .(. - .) - LEGACY_TERMSERVICE
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (WebClient) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_WEBCLIENT
~ Scan Services in 00mn 01s
---\\ File Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll
O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> <FirefoxHTML>[HKLM\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\system32\WScript.exe
O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe
O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O67 - Shell Spawning: <.com> <>[HKU\..\open\Command] (.Not Key.)
O67 - Shell Spawning: <.exe> <>[HKU\..\open\Command] (.Not Key.)
O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll
O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCR\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O67 - Shell Spawning: <.js> <JSFile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\system32\WScript.exe
O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe
~ Scan Keys in 00mn 00s
---\\ Start Menu Internet (O68)
O68 - StartMenuInternet: <chrome.exe> <>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\google\chrome\application\chrome.exe
O68 - StartMenuInternet: <firefox.exe> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: <MSN Explorer> <>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - msn.) -- C:\Program Files\MSN\MSNCoreFiles\MSN6.exe
O68 - StartMenuInternet: <firefox.exe> <Mozilla Firefox>[HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe
O68 - StartMenuInternet: <firefox.exe> <Mozilla Firefox>[HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe
O68 - StartMenuInternet: <firefox.exe> <Mozilla Firefox>[HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe
~ Scan Keys in 00mn 00s
---\\ Recherche des services démarrés par Svchost (O83)
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (...) -- C:\WINDOWS\system32\appmgmts.dll [0]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496]
O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [77824]
O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464]
O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576]
O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488]
O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\system32\ersvc.dll [23040]
O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - Pas de description.) -- C:\WINDOWS\system32\es.dll [253952]
O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: HidServ (HidServ) . (...) -- C:\WINDOWS\system32\hidserv.dll [0]
O83 - Search Svchost Services: Irmon (Irmon) . (.Microsoft Corporation - Moniteur infrarouge.) -- C:\WINDOWS\system32\irmon.dll [29184]
O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [99840]
O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [132096]
O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\system32\msgsvc.dll [33792]
O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144]
O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\system32\mswsock.dll [247808]
O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [53248]
O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560]
O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secondaire.) -- C:\WINDOWS\system32\seclogon.dll [18944]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à Microsoft NAT.) -- C:\WINDOWS\system32\ipnathlp.dll [332800]
O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\WINDOWS\system32\tapisrv.dll [249856]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112]
O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176]
O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483840]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [145408]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Service Terminal Server.) -- C:\WINDOWS\system32\termsrv.dll [297984]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\WINDOWS\system32\qmgr.dll [409088]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- C:\WINDOWS\system32\mspmsnsv.dll [27136]
O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll [38400]
O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440]
O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024]
O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896]
~ Scan Services in 00mn 02s
---\\ Recherche particuliere à la racine de certains dossiers (O84)
[MD5.064F7AA1A3C1FDAA2621F767DFD12E66] [SPRF][19/03/2012] (...) -- C:\Documents and Settings\leclercq\Local Settings\Application Data\fusioncache.dat [131]
[MD5.51F26C0051E97A91145971FE5BC632FF] [SPRF][25/04/2009] (.Adobe Systems Incorporated - Adobe® Flash® Player Plugin Installer.) -- C:\Documents and Settings\leclercq\Bureau\install_flash_player.exe [1878888]
[MD5.B6C9FF0D2F94CCD4A6D98921B17032A7] [SPRF][12/07/2009] (...) -- C:\Documents and Settings\leclercq\Bureau\sa70s209sndx.exe [16474840]
[MD5.46D05CE174437A224C8A77047D010AE9] [SPRF][18/03/2012] (.Microsoft Corporation - Self-Extracting Cabinet.) -- C:\Documents and Settings\leclercq\Bureau\WindowsServer2003.WindowsXP-KB914961-SP2-x64-ENU.exe [367964016]
[MD5.A9A9A86E7330BFFAF64AE2ACFB73D959] [SPRF][18/03/2012] (.Microsoft Corporation - Auto-extraction de fichier CAB.) -- C:\Documents and Settings\leclercq\Bureau\WindowsXP-KB936929-SP3-x86-FRA.exe [324222504]
[MD5.6FA156DF0D46F56A9F75E3862AFB7DCB] [SPRF][24/07/2009] (...) -- C:\Documents and Settings\leclercq\Bureau\wrar380fr.exe [1299975]
[MD5.8CE7705CB43B03BB7970B04087C7758F] [SPRF][30/06/2006] (.InstallShield Software Corporation - InstallShield Update Service Setup Player Module.) -- C:\WINDOWS\Downloaded Program Files\dwusplay.dll [29616]
[MD5.D715A946E66028CDB04C9E9F8C7137F5] [SPRF][20/03/2007] (.InstallShield Software Corporation - InstallShield Update Service Setup Player.) -- C:\WINDOWS\Downloaded Program Files\dwusplay.exe [205744]
[MD5.2D54DAECBA60EB03F9E63DD50669F634] [SPRF][24/10/2008] (.Macrovision Corporation - Macrovision Software Manager Web Agent.) -- C:\WINDOWS\Downloaded Program Files\isusweb.dll [488736]
~ Scan Files in 05mn 32s
---\\ Scan Additionnel (O88)
Database Version : 9067 - (06/03/2012)
Clés trouvées (Keys found) : 3
Valeurs trouvées (Values found) : 0
Dossiers trouvés (Folders found) : 0
Fichiers trouvés (Files found) : 0
[HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{8F97BFF8-488B-4107-BCEE-B161AB4E4183}] =>Toolbar.Agent
[HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A1B48071-416D-474E-A13B-BE5456E7FC31}] =>Toolbar.Agent
[HKCU\Software\vShare.tv] =>PUP.VShareRedir
~ Scan Additionnel in 00mn 54s
---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SS - | Demand 17/03/2012 253600 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
SR - | Auto 27/02/2012 55144 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SS - | Auto 0 | (aswUpdSv) . (...) - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
SR - | Auto 397312 | (Ati HotKey Poller) . (...) - C:\WINDOWS\system32\ati2evxx.exe
SR - | Auto 07/03/2012 44768 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
SR - | Auto 13/10/2005 45096 | C:\Program Files\AVPersonal\AVWUPSRV.exe (AVWUpSrv) . (.H+BEDV Datentechnik GmbH, Germany.) - C:\Program Files\AVPersonal\AVWUPSRV.exe
SS - | Demand 24/01/2009 69120 | (Boonty Games) . (.BOONTY.) - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
SR - | Auto 25/01/2009 54784 | (C-DillaCdaC11BA) . (.Macrovision.) - C:\WINDOWS\system32\drivers\CDAC11BA.exe
SR - | Auto 04/03/2004 28672 | (CFSvcs) . (.TOSHIBA CORPORATION.) - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
SS - | Demand 13/04/2008 225280 | (dmadmin) . (.Microsoft Corp., Veritas Software.) - C:\WINDOWS\system32\dmadmin.exe
SS - | Auto 17/03/2012 136176 | (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 17/03/2012 136176 | (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 22/10/2004 73728 | (IDriverT) . (.Macrovision Corporation.) - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
SR - | Demand 18/10/2005 323584 | (iPodService) . (.Apple Computer, Inc..) - C:\Program Files\iPod\bin\iPodService.exe
SS - | Demand 15/03/2012 129976 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
SS - | Demand 06/12/2007 88560 | (Roxio UPnP Renderer 9) . (.Sonic Solutions.) - C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe
SS - | Auto 06/12/2007 362992 | (Roxio Upnp Server 9) . (.Sonic Solutions.) - C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe
SS - | Auto 08/07/2009 313840 | (RoxLiveShare9) . (.Sonic Solutions.) - C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe
SS - | Demand 08/07/2009 1108464 | (RoxMediaDB9) . (.Sonic Solutions.) - C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
SS - | Auto 08/07/2009 170480 | (RoxWatch9) . (.Sonic Solutions.) - C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
SS - | Auto 07/02/2012 1181104 | (SDScannerService) . (.Safer-Networking Ltd..) - C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe
SR - | Auto 07/02/2012 1185704 | (SDUpdateService) . (.Safer-Networking Ltd..) - C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe
~ Scan Services in 01mn 11s
End of the scan (1427 lines in 09mn 51s)(0)
---\\ Liste des services Legacy (O64)
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\Aavmker4.sys (Aavmker4) .(.AVAST Software - avast! Base Kernel-Mode Device Driver for W.) - LEGACY_AAVMKER4
O64 - Services: CurCS - 17/03/2012 - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe (AdobeFlashPlayerUpdateSvc) .(.Adobe Systems Incorporated - Adobe® Flash® Player Update Service 11.2 r2.) - LEGACY_ADOBEFLASHPLAYERUPDATESVC
O64 - Services: CurCS - 27/02/2012 - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Mobile Device) .(.Apple Inc. - MobileDeviceService.) - LEGACY_APPLE_MOBILE_DEVICE
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (AppMgmt) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_APPMGMT
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswFsBlk.sys (aswFsBlk) .(.AVAST Software - avast! File System Access Blocking Driver.) - LEGACY_ASWFSBLK
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswMon2.sys (aswMon2) .(.AVAST Software - avast! File System Filter Driver for Window.) - LEGACY_ASWMON2
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswRdr.sys (aswRdr) .(.AVAST Software - avast! TDI Redirect Driver.) - LEGACY_ASWRDR
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswSnx.sys (aswSnx) .(.AVAST Software - avast! Virtualization Driver.) - LEGACY_ASWSNX
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswSP.sys (aswSP) .(.AVAST Software - avast! self protection module.) - LEGACY_ASWSP
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswTdi.sys (aswTdi) .(.AVAST Software - avast! TDI Filter Driver.) - LEGACY_ASWTDI
O64 - Services: CurCS - 09/03/2004 - C:\WINDOWS\system32\Ati2evxx.exe - Ati HotKey Poller (Ati HotKey Poller) .(...) - LEGACY_ATI_HOTKEY_POLLER
O64 - Services: CurCS - 07/03/2012 - C:\Program Files\AVAST Software\Avast\AvastSvc.exe (avast! Antivirus) .(.AVAST Software - avast! Service.) - LEGACY_AVAST!_ANTIVIRUS
O64 - Services: CurCS - 13/10/2005 - C:\Program Files\AVPersonal\AVWUPSRV.exe (AVWUpSrv) .(.H+BEDV Datentechnik GmbH, Germany - AntiVir Software Update Service for Windows.) - LEGACY_AVWUPSRV
O64 - Services: CurCS - 24/01/2009 - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe (Boonty Games) .(.BOONTY - System Level Service Utility.) - LEGACY_BOONTY_GAMES
O64 - Services: CurCS - 25/01/2009 - C:\WINDOWS\system32\drivers\CDAC11BA.exe (C-DillaCdaC11BA) .(.Macrovision - Macrovision RTS Service.) - LEGACY_C-DILLACDAC11BA
O64 - Services: CurCS - 25/01/2009 - C:\WINDOWS\system32\drivers\CdaC15BA.sys (CdaC15BA) .(.Macrovision Europe Ltd - Macrovision SECURITY Driver.) - LEGACY_CDAC15BA
O64 - Services: CurCS - 04/03/2004 - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe (CFSvcs) .(.TOSHIBA CORPORATION - Service of ConfigFree..) - LEGACY_CFSVCS
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\System32\dllhost.exe (COMSysApp) .(.Microsoft Corporation - COM Surrogate.) - LEGACY_COMSYSAPP
O64 - Services: CurCS - ??\??\???? - (DcomLaunch) .(. - .) - LEGACY_DCOMLAUNCH
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\drivers\dmboot.sys (dmboot) .(.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) - LEGACY_DMBOOT
O64 - Services: CurCS - 24/04/2003 - C:\WINDOWS\system32\drivers\dmload.sys (dmload) .(.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) - LEGACY_DMLOAD
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (Dnscache) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_DNSCACHE
O64 - Services: CurCS - 17/03/2012 - C:\Program Files\Google\Update\GoogleUpdate.exe (gupdate) .(.Google Inc. - Programme d'installation de Google.) - LEGACY_GUPDATE
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (helpsvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_HELPSVC
O64 - Services: CurCS - 20/10/2009 - C:\WINDOWS\system32\Drivers\HTTP.sys (HTTP) .(.Microsoft Corporation - HTTP Protocol Stack.) - LEGACY_HTTP
O64 - Services: CurCS - 22/10/2004 - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe (IDriverT) .(.Macrovision Corporation - IDriverT Module.) - LEGACY_IDRIVERT
O64 - Services: CurCS - 18/10/2005 - C:\Program Files\iPod\bin\iPodService.exe (iPodService) .(.Apple Computer, Inc. - iPodService Module.) - LEGACY_IPODSERVICE
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (LmHosts) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_LMHOSTS
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\Mup.sys (Mup) .(.Microsoft Corporation - Multiple UNC Provider driver.) - LEGACY_MUP
O64 - Services: CurCS - 29/01/2003 - C:\WINDOWS\system32\DRIVERS\netdevio.sys (Netdevio) .(.TOSHIBA Corporation. - Network Device Usermode I/O protocol.) - LEGACY_NETDEVIO
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (Nla) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_NLA
O64 - Services: CurCS - 23/09/2003 - C:\WINDOWS\system32\PCAMPR5.sys (PCAMPR5) .(.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 MPR Protocol Driver.) - LEGACY_PCAMPR5
O64 - Services: CurCS - 01/03/2006 - C:\WINDOWS\system32\PCANDIS5.sys (PCANDIS5) .(.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 Protocol Driver.) - LEGACY_PCANDIS5
O64 - Services: CurCS - 19/11/2005 - C:\WINDOWS\system32\Drivers\PCASp50.sys (PCASp50) .(.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 SPR Protocol Driver.) - LEGACY_PCASP50
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\lsass.exe (PolicyAgent) .(.Microsoft Corporation - LSA Shell (Export Version).) - LEGACY_POLICYAGENT
O64 - Services: CurCS - 06/12/2007 - C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe (Roxio Upnp Server 9) .(.Sonic Solutions - RoxioUpnpService9 Module.) - LEGACY_ROXIO_UPNP_SERVER_9
O64 - Services: CurCS - 08/07/2009 - C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe (RoxLiveShare9) .(.Sonic Solutions - Roxio LiveShare Service.) - LEGACY_ROXLIVESHARE9
O64 - Services: CurCS - 08/07/2009 - C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe (RoxMediaDB9) .(.Sonic Solutions - RoxMediaDB9 Module.) - LEGACY_ROXMEDIADB9
O64 - Services: CurCS - 08/07/2009 - C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe (RoxWatch9) .(.Sonic Solutions - RoxSniffer9 Module.) - LEGACY_ROXWATCH9
O64 - Services: CurCS - ??\??\???? - (RpcSs) .(. - .) - LEGACY_RPCSS
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\lsass.exe (SamSs) .(.Microsoft Corporation - LSA Shell (Export Version).) - LEGACY_SAMSS
O64 - Services: CurCS - 07/02/2012 - C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe (SDScannerService) .(.Safer-Networking Ltd. - Spybot-S&D 2 Scanner Service.) - LEGACY_SDSCANNERSERVICE
O64 - Services: CurCS - 07/02/2012 - C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe (SDUpdateService) .(.Safer-Networking Ltd. - Spybot-S&D 2 Background update service.) - LEGACY_SDUPDATESERVICE
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (seclogon) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SECLOGON
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (ShellHWDetection) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SHELLHWDETECTION
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (stisvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_STISVC
O64 - Services: CurCS - ??\??\???? - (TermService) .(. - .) - LEGACY_TERMSERVICE
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\svchost.exe (WebClient) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_WEBCLIENT
~ Scan Services in 00mn 01s
---\\ File Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll
O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> <FirefoxHTML>[HKLM\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\system32\WScript.exe
O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe
O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O67 - Shell Spawning: <.com> <>[HKU\..\open\Command] (.Not Key.)
O67 - Shell Spawning: <.exe> <>[HKU\..\open\Command] (.Not Key.)
O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll
O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCR\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O67 - Shell Spawning: <.js> <JSFile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\system32\WScript.exe
O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe
~ Scan Keys in 00mn 00s
---\\ Start Menu Internet (O68)
O68 - StartMenuInternet: <chrome.exe> <>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\google\chrome\application\chrome.exe
O68 - StartMenuInternet: <firefox.exe> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: <MSN Explorer> <>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - msn.) -- C:\Program Files\MSN\MSNCoreFiles\MSN6.exe
O68 - StartMenuInternet: <firefox.exe> <Mozilla Firefox>[HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe
O68 - StartMenuInternet: <firefox.exe> <Mozilla Firefox>[HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe
O68 - StartMenuInternet: <firefox.exe> <Mozilla Firefox>[HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe
~ Scan Keys in 00mn 00s
---\\ Recherche des services démarrés par Svchost (O83)
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (...) -- C:\WINDOWS\system32\appmgmts.dll [0]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496]
O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [77824]
O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464]
O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576]
O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488]
O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\system32\ersvc.dll [23040]
O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - Pas de description.) -- C:\WINDOWS\system32\es.dll [253952]
O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: HidServ (HidServ) . (...) -- C:\WINDOWS\system32\hidserv.dll [0]
O83 - Search Svchost Services: Irmon (Irmon) . (.Microsoft Corporation - Moniteur infrarouge.) -- C:\WINDOWS\system32\irmon.dll [29184]
O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [99840]
O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [132096]
O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\system32\msgsvc.dll [33792]
O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144]
O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\system32\mswsock.dll [247808]
O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [53248]
O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560]
O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secondaire.) -- C:\WINDOWS\system32\seclogon.dll [18944]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à Microsoft NAT.) -- C:\WINDOWS\system32\ipnathlp.dll [332800]
O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\WINDOWS\system32\tapisrv.dll [249856]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112]
O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176]
O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483840]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [145408]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Service Terminal Server.) -- C:\WINDOWS\system32\termsrv.dll [297984]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\WINDOWS\system32\qmgr.dll [409088]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- C:\WINDOWS\system32\mspmsnsv.dll [27136]
O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll [38400]
O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440]
O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024]
O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896]
~ Scan Services in 00mn 02s
---\\ Recherche particuliere à la racine de certains dossiers (O84)
[MD5.064F7AA1A3C1FDAA2621F767DFD12E66] [SPRF][19/03/2012] (...) -- C:\Documents and Settings\leclercq\Local Settings\Application Data\fusioncache.dat [131]
[MD5.51F26C0051E97A91145971FE5BC632FF] [SPRF][25/04/2009] (.Adobe Systems Incorporated - Adobe® Flash® Player Plugin Installer.) -- C:\Documents and Settings\leclercq\Bureau\install_flash_player.exe [1878888]
[MD5.B6C9FF0D2F94CCD4A6D98921B17032A7] [SPRF][12/07/2009] (...) -- C:\Documents and Settings\leclercq\Bureau\sa70s209sndx.exe [16474840]
[MD5.46D05CE174437A224C8A77047D010AE9] [SPRF][18/03/2012] (.Microsoft Corporation - Self-Extracting Cabinet.) -- C:\Documents and Settings\leclercq\Bureau\WindowsServer2003.WindowsXP-KB914961-SP2-x64-ENU.exe [367964016]
[MD5.A9A9A86E7330BFFAF64AE2ACFB73D959] [SPRF][18/03/2012] (.Microsoft Corporation - Auto-extraction de fichier CAB.) -- C:\Documents and Settings\leclercq\Bureau\WindowsXP-KB936929-SP3-x86-FRA.exe [324222504]
[MD5.6FA156DF0D46F56A9F75E3862AFB7DCB] [SPRF][24/07/2009] (...) -- C:\Documents and Settings\leclercq\Bureau\wrar380fr.exe [1299975]
[MD5.8CE7705CB43B03BB7970B04087C7758F] [SPRF][30/06/2006] (.InstallShield Software Corporation - InstallShield Update Service Setup Player Module.) -- C:\WINDOWS\Downloaded Program Files\dwusplay.dll [29616]
[MD5.D715A946E66028CDB04C9E9F8C7137F5] [SPRF][20/03/2007] (.InstallShield Software Corporation - InstallShield Update Service Setup Player.) -- C:\WINDOWS\Downloaded Program Files\dwusplay.exe [205744]
[MD5.2D54DAECBA60EB03F9E63DD50669F634] [SPRF][24/10/2008] (.Macrovision Corporation - Macrovision Software Manager Web Agent.) -- C:\WINDOWS\Downloaded Program Files\isusweb.dll [488736]
~ Scan Files in 05mn 32s
---\\ Scan Additionnel (O88)
Database Version : 9067 - (06/03/2012)
Clés trouvées (Keys found) : 3
Valeurs trouvées (Values found) : 0
Dossiers trouvés (Folders found) : 0
Fichiers trouvés (Files found) : 0
[HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{8F97BFF8-488B-4107-BCEE-B161AB4E4183}] =>Toolbar.Agent
[HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A1B48071-416D-474E-A13B-BE5456E7FC31}] =>Toolbar.Agent
[HKCU\Software\vShare.tv] =>PUP.VShareRedir
~ Scan Additionnel in 00mn 54s
---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SS - | Demand 17/03/2012 253600 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
SR - | Auto 27/02/2012 55144 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SS - | Auto 0 | (aswUpdSv) . (...) - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
SR - | Auto 397312 | (Ati HotKey Poller) . (...) - C:\WINDOWS\system32\ati2evxx.exe
SR - | Auto 07/03/2012 44768 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
SR - | Auto 13/10/2005 45096 | C:\Program Files\AVPersonal\AVWUPSRV.exe (AVWUpSrv) . (.H+BEDV Datentechnik GmbH, Germany.) - C:\Program Files\AVPersonal\AVWUPSRV.exe
SS - | Demand 24/01/2009 69120 | (Boonty Games) . (.BOONTY.) - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
SR - | Auto 25/01/2009 54784 | (C-DillaCdaC11BA) . (.Macrovision.) - C:\WINDOWS\system32\drivers\CDAC11BA.exe
SR - | Auto 04/03/2004 28672 | (CFSvcs) . (.TOSHIBA CORPORATION.) - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
SS - | Demand 13/04/2008 225280 | (dmadmin) . (.Microsoft Corp., Veritas Software.) - C:\WINDOWS\system32\dmadmin.exe
SS - | Auto 17/03/2012 136176 | (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 17/03/2012 136176 | (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 22/10/2004 73728 | (IDriverT) . (.Macrovision Corporation.) - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
SR - | Demand 18/10/2005 323584 | (iPodService) . (.Apple Computer, Inc..) - C:\Program Files\iPod\bin\iPodService.exe
SS - | Demand 15/03/2012 129976 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
SS - | Demand 06/12/2007 88560 | (Roxio UPnP Renderer 9) . (.Sonic Solutions.) - C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe
SS - | Auto 06/12/2007 362992 | (Roxio Upnp Server 9) . (.Sonic Solutions.) - C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe
SS - | Auto 08/07/2009 313840 | (RoxLiveShare9) . (.Sonic Solutions.) - C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe
SS - | Demand 08/07/2009 1108464 | (RoxMediaDB9) . (.Sonic Solutions.) - C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
SS - | Auto 08/07/2009 170480 | (RoxWatch9) . (.Sonic Solutions.) - C:\Program Files\Fichiers communs\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
SS - | Auto 07/02/2012 1181104 | (SDScannerService) . (.Safer-Networking Ltd..) - C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe
SR - | Auto 07/02/2012 1185704 | (SDUpdateService) . (.Safer-Networking Ltd..) - C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe
~ Scan Services in 01mn 11s
End of the scan (1427 lines in 09mn 51s)(0)