Pare feu et flash player
Fermé
Goldboy55
Messages postés
16
Date d'inscription
dimanche 18 septembre 2011
Statut
Membre
Dernière intervention
11 avril 2018
-
28 avril 2012 à 07:37
Utilisateur anonyme - 28 avril 2012 à 12:48
Utilisateur anonyme - 28 avril 2012 à 12:48
A voir également:
- Pare feu et flash player
- Flash player download - Télécharger - Divers Web & Internet
- Flash drive tester - Télécharger - Divers Utilitaires
- Adobe shockwave player - Télécharger - Divers Web & Internet
- Swf file player - Télécharger - Lecture
- Real player gratuit - Télécharger - Lecture
20 réponses
Utilisateur anonyme
28 avril 2012 à 09:50
28 avril 2012 à 09:50
bonjour,
pas cool ce qui t'arrive !
* Télécharge ZHPDiag sur ton bureau :
https://www.zebulon.fr/telechargements/securite/systeme/zhpdiag.html
ou
http://www.premiumorange.com/zeb-help-process/zhpdiag.html
ou
https://www.commentcamarche.net/telecharger/utilitaires/24803-zhpdiag/
* Laisse toi guider lors de l'installation, il se lancera automatiquement à la fin.
/!\Utilisateur de Vista et Seven : Clique droit sur le logo de ZHPdiag, « exécuter en tant qu'Administrateur »
* Clique sur l'icône représentant une loupe (« Lancer le diagnostic »)
* Enregistre le rapport sur ton Bureau à l'aide de l'icône représentant une disquette
* Héberge le rapport ZHPDiag.txt sur Cjoint, puis copie/colle le lien fourni dans ta prochaine réponse sur le forum :
https://www.cjoint.com/ => https://www.commentcamarche.net/faq/29493-utiliser-cjoint-pour-heberger-des-fichiers
ou :
http://dl.free.fr
ou :
http://ww38.toofiles.com/fr/documents-upload.html
ou :
https://www.terafiles.net/
tuto zhpdiag :
http://www.premiumorange.com/zeb-help-process/zhpdiag.html
pas cool ce qui t'arrive !
* Télécharge ZHPDiag sur ton bureau :
https://www.zebulon.fr/telechargements/securite/systeme/zhpdiag.html
ou
http://www.premiumorange.com/zeb-help-process/zhpdiag.html
ou
https://www.commentcamarche.net/telecharger/utilitaires/24803-zhpdiag/
* Laisse toi guider lors de l'installation, il se lancera automatiquement à la fin.
/!\Utilisateur de Vista et Seven : Clique droit sur le logo de ZHPdiag, « exécuter en tant qu'Administrateur »
* Clique sur l'icône représentant une loupe (« Lancer le diagnostic »)
* Enregistre le rapport sur ton Bureau à l'aide de l'icône représentant une disquette
* Héberge le rapport ZHPDiag.txt sur Cjoint, puis copie/colle le lien fourni dans ta prochaine réponse sur le forum :
https://www.cjoint.com/ => https://www.commentcamarche.net/faq/29493-utiliser-cjoint-pour-heberger-des-fichiers
ou :
http://dl.free.fr
ou :
http://ww38.toofiles.com/fr/documents-upload.html
ou :
https://www.terafiles.net/
tuto zhpdiag :
http://www.premiumorange.com/zeb-help-process/zhpdiag.html
Goldboy55
Messages postés
16
Date d'inscription
dimanche 18 septembre 2011
Statut
Membre
Dernière intervention
11 avril 2018
28 avril 2012 à 09:55
28 avril 2012 à 09:55
Bonjour,
Merci de ton aide que je vais suivre à la lettre
Merci de ton aide que je vais suivre à la lettre
Goldboy55
Messages postés
16
Date d'inscription
dimanche 18 septembre 2011
Statut
Membre
Dernière intervention
11 avril 2018
28 avril 2012 à 10:02
28 avril 2012 à 10:02
Rapport de ZHPDiag v1.30.17 par Nicolas Coolman, Update du 25/04/2012
Run by Christian at 28/04/2012 09:58:28
Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
Web site : http://nicolascoolman.skyrock.com/
State : Version à jour.
---\\ Web Browser
MSIE: Internet Explorer v9.0.8112.16421
GCIE: Google Chrome v18.0.1025.162 (Defaut)
---\\ Windows Product Information
~ Langage: Français
Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601)
Windows Server License Manager Script : OK
~ Windows(R) 7, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : 3Q6C9
Windows License : OK
~ Windows Remaining Initializations Number : 1
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK
---\\ System Information
~ Processor: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 6091 MB (60% free)
System Restore: Activé (Enable)
System drive C: has 162 GB (24%) free of 674 GB
---\\ Logged in mode
~ Computer Name: SUPERVISEUR-HP
~ User Name: Christian
~ All Users Names: HomeGroupUser$, Christian, Administrateur,
~ Unselected Option: O45,O61,O62,O65,O66,O82,O89
Logged in as Administrator
---\\ Environnement Variables
~ System Unit : C:\
~ %AppData% : C:\Users\Christian\AppData\Roaming\
~ %Desktop% : C:\Users\Christian\Desktop\
~ %Favorites% : C:\Users\Christian\Favorites\
~ %LocalAppData% : C:\Users\Christian\AppData\Local\
~ %StartMenu% : C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\
---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 162 Go of 674 Go)
D:\ Floppy drive, Flash card reader, USB Key (Free 0 Go of 2 Go)
E:\ Hard drive, Flash drive, Thumb drive (Free 2 Go of 21 Go)
F:\ Hard drive, Flash drive, Thumb drive (Free 1 Go of 4 Go)
G:\ CD-ROM drive (Not Inserted)
---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoDispScrSavPage: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowMyComputer: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Scan Security Center in 00mn 00s
---\\ Recherche particulière de fichiers génériques
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) (.04/11/2011 - 22:57:32.) -- C:\Windows\Explorer.exe [2871808]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:39:52.) -- C:\Windows\System32\Wininit.exe [129024]
[MD5.228443FF3A1FB0B974D278F7C6403FAD] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.28/02/2012 - 07:49:56.) -- C:\Windows\System32\wininet.dll [1390080]
[MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.21/11/2010 - 04:24:29.) -- C:\Windows\System32\Winlogon.exe [390656]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) (.21/11/2010 - 04:24:16.) -- C:\Windows\System32\sppcomapi.dll [232448]
[MD5.1C7857B62DE5994A75B054A9FD4C3825] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.28/12/2011 - 04:59:24.) -- C:\Windows\system32\Drivers\AFD.sys [498688]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.21/11/2010 - 04:23:47.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.21/11/2010 - 04:24:32.) -- C:\Windows\system32\Drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.21/11/2010 - 04:23:47.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 01:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224]
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.04/11/2011 - 22:59:54.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.21/11/2010 - 04:23:51.) -- C:\Windows\system32\Drivers\netBT.sys [261632]
[MD5.A2F74975097F52A00745F9637451FDD8] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.05/11/2011 - 23:04:16.) -- C:\Windows\system32\Drivers\ntfs.sys [1659776]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 01:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.21/11/2010 - 04:24:33.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 01:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184]
[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.21/11/2010 - 04:24:32.) -- C:\Windows\system32\Drivers\tdx.sys [119296]
[MD5.DF8126BD41180351A093A3AD2FC8903B] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.04/11/2011 - 22:55:34.) -- C:\Windows\system32\Drivers\volsnap.sys [296320]
~ Scan Generic Processes in 00mn 00s
---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : Non accessible (Not found)
~ Mes musiques (My Musics) : 15/83
~ Mes Videos (My Videos) : Non accessible (Not found)
~ Mes Favoris (My Favorites) : 2/125
~ Mes Documents (My Documents) : 5/562
~ Mon Bureau (My Desktop) : 1/15
~ Menu demarrer (Programs) : 6/25
~ Scan Hidden Files in 00mn 00s
---\\ Processus lancés
[MD5.A6B060B72FD17BFE6458114CF3417DF0] - (.HP - TouchControl.) -- C:\Program Files (x86)\HP SimplePass 2011\TouchControl.exe [653128] [PID.7332]
[MD5.219A9AFF51D841F97ABBE06909A36132] - (.Uniblue Systems Limited - Uniblue RegistryBooster Monitor.) -- C:\Program Files (x86)\Uniblue\RegistryBooster\rbmonitor.exe [25984] [PID.8260]
[MD5.3E20865C7F84CDEFF9307B048B6E1671] - (.HP - BioMonitor.) -- C:\Program Files (x86)\HP SimplePass 2011\BioMonitor.exe [142664] [PID.6656]
[MD5.469FCB8AF1B9427F19999CCAF7440575] - (.OrdinarySoft - Start Menu program.) -- C:\Program Files (x86)\Vista Start Menu\VistaStartMenu.exe [2752416] [PID.4440]
[MD5.5D61BE7DB55B026A5D61A3EED09D0EAD] - (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408] [PID.]
[MD5.2AF3E6CFA72105628D32344C8BBBCD58] - (.TomTom - MyTomTom.) -- C:\Program Files (x86)\MyTomTom 3\MyTomTomSA.exe [435672] [PID.4480]
[MD5.390679F7A217A5E73D756276C40AE887] - (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2260480] [PID.8160]
[MD5.219EC7D00A64F9A6548E47FA0DB0FAC8] - (.Siber Systems - RoboForm TaskBar Icon.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe [109296] [PID.6300]
[MD5.28B64BF1F90F92FF7EE38467A9A08706] - (.Avira Operations GmbH & Co. KG - Avira System Tray Tool.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [258512] [PID.6668]
[MD5.1B82BCF0B8F9228B39F75B0DFA079A21] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe [462408] [PID.9148]
[MD5.C637FC4638A96165256B28D38DE7B953] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe [49208] [PID.5324]
[MD5.98A078F838A70F84E1BD490D7C7675F4] - (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254696] [PID.7828]
[MD5.B7F55E2AE978D3D34F7876EE5D689AAE] - (.CyberLink - YouCam Mirage.) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [136488] [PID.5860]
[MD5.391DDA05D6299F09FF41B4339FB963EC] - (.Microsoft Corporation - Microsoft Outlook.) -- C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.exe [15963936] [PID.8000]
[MD5.904E13BA41AF2E353A32CF351CA53639] - (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe [748336] [PID.4672]
[MD5.F9E3D1D9EB6FC407BC6672C2197108D6] - (.Google Inc. - Google Toolbar Broker.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe [307824] [PID.6652]
[MD5.25413EF2A35590CD7FF13D2BBE5D1152] - (.Adobe Systems Incorporated - Adobe® Flash® Player Installer/Uninstaller.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_2_202_233_ActiveX.exe [353440] [PID.6572]
[MD5.B4DAFB3C1E8D616761167F93065223C8] - (...) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [4509184] [PID.6220]
[MD5.EC3949088F617ACC056FC1AB54A6A13B] - (.HP - HP Service.) -- C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe [260424] [PID.]
[MD5.36AB0187EA15A4E8A86C08FC67FFDF85] - (.Avira Operations GmbH & Co. KG - Avira Scheduler.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [86224] [PID.]
[MD5.B33CF4DE909A5B30F526D82053A63C8E] - (.ABBYY - ABBYY network license server.) -- C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048] [PID.]
[MD5.62B7936F9036DD6ED36E6A7EFA805DC0] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [63928] [PID.]
[MD5.E09BB638B7B46DF053ACCE212EA3D6F4] - (.Avira Operations GmbH & Co. KG - Avira Firewall Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avfwsvc.exe [616400] [PID.]
[MD5.0B0ED25051DCD25852164E25B657086B] - (.Avira Operations GmbH & Co. KG - Avira On-Access Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [110032] [PID.]
[MD5.2AD4EEFBEFAA921091BF0DAD793C7B0D] - (.LULU software - Pas de description.) -- C:\Program Files (x86)\FIXIO PC Utilities\FIXIO PC Cleaner\FIXIO Service.exe [191600] [PID.]
[MD5.E6AB9E7FF923928E9F549FDDFCEDB28A] - (.Hewlett-Packard Company - HP Quick Synchronization Service.) -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [227896] [PID.]
[MD5.77C15D7E8F002A173EEBFF0B20CD697D] - (.Hewlett-Packard Development Company, L.P. - HP Quick Launch WMI Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [34872] [PID.]
[MD5.6C85719A21B3F62C2C76280F4BD36C7B] - (.Intel Corporation - Intel IPT Host Interface Service.) -- C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe [212944] [PID.]
[MD5.794D4B48DFB6E999537C7C3947863463] - (.Safer Networking Ltd. - Spybot-S&D Security Center integration.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [1153368] [PID.]
[MD5.6E021D6DA429AD7288FE8322E2BBA96B] - (.Vodafone - VMCService.) -- C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe [14336] [PID.]
[MD5.991FB8163B54298C7A48CC8DC510C44E] - (.Avira Operations GmbH & Co. KG - Avira MailGuard Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc.exe [342480] [PID.]
[MD5.21A95FAB12717A4D847966F739244629] - (.Avira Operations GmbH & Co. KG - Avira WebGuard Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.exe [463824] [PID.]
[MD5.E79A8E33BD136D14BAE1FA20EB2EF124] - (.Intel Corporation - IAStorDataSvc.) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [13592] [PID.]
[MD5.D75C4B4A8FE6D7FD74A7EECDBAEC729F] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [326168] [PID.]
[MD5.BA400ED640BCA1EAE5C727AE17C10207] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [654408] [PID.]
[MD5.758C2CE427C343F780A205E28555C98D] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2656280] [PID.]
~ Scan Processes Running in 00mn 00s
---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Preferences
G1 - GCS: Preference [User Data\Default] None
~ Scan Google Browser in 00mn 00s
---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
P2 - FPN: [HKLM] [@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf] - (.Tracker Software Products Ltd. - PDF-XChange Viewer Netscape Gecko Plugin.) -- C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll
P2 - FPN: [HKLM] [@microsoft.com/OfficeAuthz,version=14.0] - (.Microsoft Corporation - Office Authorization plug-in for NPAPI browsers.) -- C:\Program Files\Microsoft Office\Office14\NPAUTHZ.dll
P2 - FPN: [HKCU] [@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf] - (.Tracker Software Products Ltd. - PDF-XChange Viewer Netscape Gecko Plugin.) -- C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll
~ Scan Firefox Browser in 00mn 00s
---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/?gws_rd=ssl
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = https://www.google.com/?gws_rd=ssl
R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)) -- C:\Windows\SysWOW64\ieframe.dll
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
~ Scan IE Browser in 00mn 00s
---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Scan Proxy management in 00mn 00s
---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Scan Keys in 00mn 00s
---\\ Redirection du fichier Hosts (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Scan Hosts File in 00mn 00s
~ Nombre de lignes (Lines number): 22
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: RoboForm BHO [64Bits] - {724d43a9-0d85-11d4-9908-00400523e39a} . (.Siber Systems Inc. - RoboForm Main Module.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
O2 - BHO: TSBHO Class [64Bits] - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} . (.HP - Website Log On.) -- C:\Program Files (x86)\HP SimplePass 2011\x64\IEBHO.dll
O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Easy Photo Print [64Bits] - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} . (.SEIKO EPSON CORPORATION / CyCom Technology - Epson Easy Photo Print (TBL x64).) -- C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll
O2 - BHO: Google Toolbar Helper [64Bits] - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\Office14\URLREDIR.dll
O2 - BHO: AcroIEHelperStub [64Bits] - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection [64Bits] - {53707962-6F74-2D53-2644-206D7942484F} . (.Safer Networking Limited - SBSD IE Protection.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: RoboForm BHO [64Bits] - {724d43a9-0d85-11d4-9908-00400523e39a} . (.Siber Systems Inc. - RoboForm Main Module.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre6\bin\ssv.dll
O2 - BHO: TSBHO Class [64Bits] - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} . (.HP - Website Log On.) -- C:\Program Files (x86)\HP SimplePass 2011\IEBHO.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live ID [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\
O2 - BHO: (no name) [64Bits] - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} Clé orpheline
O2 - BHO: Windows Live Messenger Companion Helper [64Bits] - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} . (.Microsoft Corporation - Windows Live Messenger Companion Core.) -- C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: Google Toolbar Helper [64Bits] - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
~ Scan BHO in 00mn 00s
---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: &RoboForm Toolbar [64Bits] - {724d43a0-0d85-11d4-9908-00400523e39a} . (.Siber Systems Inc. - RoboForm Main Module.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
O3 - Toolbar: Google Toolbar [64Bits] - {2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
O3 - Toolbar: Easy Photo Print [64Bits] - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} . (.SEIKO EPSON CORPORATION / CyCom Technology - Epson Easy Photo Print (TBL x64).) -- C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll
~ Scan Toolbar in 00mn 00s
---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [SetDefault] . (.Hewlett-Packard Development Company, L.P. - SetDefault.) -- C:\Program Files\Hewlett-Packard\HP LaunchBox\SetDefault.exe
O4 - HKLM\..\Run: [HP LaserJet Professional M1530 MFP Series Fax] . (.Hewlett-Packard Company - hppfaxprintersrv.) -- C:\Program Files (x86)\HP\Digital Imaging\Fax\Fax Driver 0.6 Base\hppfaxprintersrv.exe
O4 - HKCU\..\Run: [VistaStartMenu] . (.OrdinarySoft - Start Menu program.) -- C:\Program Files (x86)\Vista Start Menu\VistaStartMenu.exe
O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
O4 - HKCU\..\Run: [MyTomTomSA.exe] . (.TomTom - MyTomTom.) -- C:\Program Files (x86)\MyTomTom 3\MyTomTomSA.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [RoboForm] . (.Siber Systems - RoboForm TaskBar Icon.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe
O4 - HKLM\..\Wow6432Node\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Avira System Tray Tool.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
O4 - HKLM\..\Wow6432Node\Run: [ToolboxFX] . (.Hewlett-Packard Company - HPTLBXFX.) -- C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe
O4 - HKLM\..\Wow6432Node\Run: [Malwarebytes' Anti-Malware] . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
O4 - HKLM\..\Wow6432Node\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-21-3813990618-657574580-487364974-1000\..\Run: [VistaStartMenu] . (.OrdinarySoft - Start Menu program.) -- C:\Program Files (x86)\Vista Start Menu\VistaStartMenu.exe
O4 - HKUS\S-1-5-21-3813990618-657574580-487364974-1000\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-21-3813990618-657574580-487364974-1000\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
O4 - HKUS\S-1-5-21-3813990618-657574580-487364974-1000\..\Run: [MyTomTomSA.exe] . (.TomTom - MyTomTom.) -- C:\Program Files (x86)\MyTomTom 3\MyTomTomSA.exe
O4 - HKUS\S-1-5-21-3813990618-657574580-487364974-1000\..\Run: [SpybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-21-3813990618-657574580-487364974-1000\..\Run: [RoboForm] . (.Siber Systems - RoboForm TaskBar Icon.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
~ Scan Application in 00mn 00s
---\\ Autres liens utilisateurs (O4)
O4 - Global Startup: C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Christian\Desktop\Google Chrome.lnk . (.Google Inc..) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - Global Startup: C:\Users\Christian\Desktop\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Christian\Desktop\Ordinateur.lnk - Clé orpheline
O4 - Global Startup: C:\Users\Christian\Desktop\Spybot - Search & Destroy.lnk . (.Safer Networking Limited.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe
O4 - Global Startup: C:\Users\Christian\Desktop\TubeMaster++.lnk . (.GgSofts.) -- C:\Program Files (x86)\TubeMaster++\tm++.exe
O4 - Global Startup: C:\Users\Christian\Desktop\Uniblue RegistryBooster.lnk . (.Uniblue Systems Limited.) -- C:\Program Files (x86)\Uniblue\RegistryBooster\RegistryBooster.exe
O4 - Global Startup: C:\Users\Christian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk . (.Google Inc..) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - Global Startup: C:\Users\Christian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Christian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Malwarebytes Anti-Malware.lnk . (.Malwarebytes Corporation.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
O4 - Global Startup: C:\Users\Christian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Outlook.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXE
O4 - Global Startup: C:\Users\Christian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Uniblue RegistryBooster.lnk . (.Uniblue Systems Limited.) -- C:\Program Files (x86)\Uniblue\RegistryBooster\Launcher.exe
O4 - Global Startup: C:\Users\Christian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Vista Start Menu.lnk . (.OrdinarySoft.) -- C:\Program Files (x86)\Vista Start Menu\VistaStartMenu.exe
~ Scan Global Startup in 00mn 00s
---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ Scan IE Control Panel in 00mn 00s
---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
O8 - Extra context menu item: Barre RoboForm - (.not file.) - file:\\C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: Enregistrer les formulaires - (.not file.) - file:\\C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O8 - Extra context menu item: Personnaliser le menu - (.not file.) - file:\\C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: Remplir les formulaires - (.not file.) - file:\\C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html
~ Scan IE Menu Contextuel in 00mn 00s
---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: &Envoyer à OneNote [64Bits] - {2670000A-7350-4f3c-8081-5663EE0C6C49} -- C:\Program Files (x86)\MICROS~2\Office14\ONBttnIE.dll (.not file.)
O9 - Extra button: Remplir les formulaires [64Bits] - {320AF880-6646-11D3-ABEE-C5DBF3571F46} . (.Siber Systems Inc. - RoboForm Main Module.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra button: Enregistrer les formulaires [64Bits] - {320AF880-6646-11D3-ABEE-C5DBF3571F49} . (.Siber Systems Inc. - RoboForm Main Module.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra button: Barre RoboForm [64Bits] - {724d43aa-0d85-11d4-9908-00400523e39a} . (.Siber Systems Inc. - RoboForm Main Module.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra button: Notes &liées OneNote [64Bits] - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} -- C:\Program Files (x86)\MICROS~2\Office14\ONBTTN~1.dll (.not file.)
~ Scan IE Extra Buttons in 00mn 00s
---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll
O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll
~ Scan Winsock in 00mn 00s
---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{EEB652E5-80C5-4940-9B16-AEBC17A800C6}: DhcpNameServer = 212.27.40.240 212.27.40.241
O17 - HKLM\System\CS1\Services\Tcpip\..\{EEB652E5-80C5-4940-9B16-AEBC17A800C6}: DhcpNameServer = 212.27.40.240 212.27.40.241
O17 - HKLM\System\CS2\Services\Tcpip\..\{EEB652E5-80C5-4940-9B16-AEBC17A800C6}: DhcpNameServer = 212.27.40.240 212.27.40.241
~ Scan Domain in 00mn 00s
---\\ Protocole additionnel (O18)
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\msvidctl.dll
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\system32\inetcomm.dll
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll
O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: skype4com [64Bits] - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype for COM API.) -- C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\msvidctl.dll
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll
O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
O18 - Filter: text/xml [64Bits] - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.dll
~ Scan Protocole Additionnel in 00mn 00s
---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll
~ Scan Winlogon in 00mn 00s
---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ Scan SSODL in 00mn 00s
---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: ABBYY FineReader 9.0 Sprint Licensing Se (ABBYY.Licensing.FineReader.Sprint.9.0) . (.ABBYY - ABBYY network license server.) - C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe
O23 - Service: Avira Firewall (AntiVirFirewallService) . (.Avira Operations GmbH & Co. KG - Avira Firewall Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avfwsvc.exe
O23 - Service: Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG - Avira MailGuard Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc.exe
O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Avira Scheduler.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Avira On-Access Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG - Avira WebGuard Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.exe
O23 - Service: FIXIO Service (FIXIO Service) . (.LULU software - Pas de description.) - C:\Program Files (x86)\FIXIO PC Utilities\FIXIO PC Cleaner\FIXIO Service.exe
O23 - Service: TrueSuiteService (FPLService) . (.HP - HP Service.) - C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP LaserJet Service (HP LaserJet Service) . (.HP - HP LaserJet Service.) - C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe
O23 - Service: HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company - HP Support Assistant Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Auto (HPAuto) . (.Hewlett-Packard - HP Usage Improvement Tracking.) - C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe
O23 - Service: HP Client Services (HPClientSvc) . (.Hewlett-Packard Company - HP Client Services.) - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) . (.Hewlett-Packard Company - HP Quick Synchronization Service.) - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HPWMISVC (HPWMISVC) . (.Hewlett-Packard Development Company, L.P. - HP Quick Launch WMI Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc. - Realtek Card Reader Icon Tool..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: Intel(R) Identity Protection Technology (jhi_service) . (.Intel Corporation - Intel IPT Host Interface Service.) - C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
O23 - Service: Intel(R) Management and Security Applica (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) . (.Safer Networking Ltd. - Spybot-S&D Security Center integration.) - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: C:\Windows\System32\stlang64.dll (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: Intel(R) Management and Security Applica (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: Vodafone Mobile Connect Service (VMCService) . (.Vodafone - VMCService.) - C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe
O23 - Service: (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
~ Scan Services in 00mn 00s
---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Scan Desktop Component in 00mn 00s
---\\ BootExecute (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ Scan Keys in 00mn 00s
---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3813990618-657574580-487364974-1000Core.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\FIXIOPCCleaner.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\HPCeeScheduleForChristian.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\HPCeeScheduleForSUPERVISEUR-HP$.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\RegistryBooster.job
[MD5.459AC130C6AB892B1CD5D7544626EFC5] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
[MD5.5447AF432CDA61159ADDE218C468FFD9] [APT] [AdobeAAMUpdater-1.0-Superviseur-HP-Christian] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe
[MD5.00000000000000000000000000000000] [APT] [Express Files Updater] (...) -- C:\Program Files (x86)\ExpressFiles\EFupdater.exe (.not file.)
[MD5.364A13F60FBD2FD659C4352FE4237BF1] [APT] [FIXIOPCCleaner] (.LULU software.) -- C:\Program Files (x86)\FIXIO PC Utilities\FIXIO PC Cleaner\FIXIO PC Cleaner.exe
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
[MD5.8AA3B22B716A04AC8DD13318A40D708D] [APT] [HPCeeScheduleForChristian] (.Hewlett-Packard.) -- C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
[MD5.8AA3B22B716A04AC8DD13318A40D708D] [APT] [HPCeeScheduleForSUPERVISEUR-HP$] (.Hewlett-Packard.) -- C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
[MD5.6E17843E1E65F8DE34861692667CD3FC] [APT] [HPLJCustParticipation] (.Hewlett Packard.) -- C:\Program Files (x86)\HP\HPLJUT\HPLJUTSCH.exe
[MD5.B7F55E2AE978D3D34F7876EE5D689AAE] [APT] [MirageAgent] (.CyberLink.) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
[MD5.219A9AFF51D841F97ABBE06909A36132] [APT] [RegistryBooster] (.Uniblue Systems Limited.) -- C:\Program Files (x86)\Uniblue\RegistryBooster\rbmonitor.exe
[MD5.219EC7D00A64F9A6548E47FA0DB0FAC8] [APT] [Run RoboForm TaskBar Icon] (.Siber Systems.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe
[MD5.00000000000000000000000000000000] [APT] [{7C21FB57-6BF3-45A5-B179-E85B70D7510F}] (...) -- H:\Setup.exe (.not file.)
[MD5.486A0A170E6E96DC89A49B2BC2CFB007] [APT] [{A1036BED-1707-4988-A2AE-140DAEB7A098}] (...) -- C:\Users\Christian\Downloads\sexy14.exe
[MD5.00000000000000000000000000000000] [APT] [{B4BB25B0-7C92-47B4-896B-D9A8DA1EB185}] (...) -- C:\Users\Christian\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GJK3ORIM\erunt-setup.exe (.not file.)
[MD5.1DB8C2220EFDBA97F671F46F6A8DE51E] [APT] [HP Support Assistant Quick Start] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPSFMessenger\HPSFMsgr.exe
[MD5.7A14C25B7EC229B7F8B3E457779C83CC] [APT] [HP Total Care Tune-Up] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPTuneUp.exe
[MD5.0757398E1539E633CEC5179A3BCA5F4F] [APT] [PC Health Analysis] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
[MD5.0757398E1539E633CEC5179A3BCA5F4F] [APT] [PC Tuneup] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
[MD5.A87F567F053191361B617D7908F8E062] [APT] [Update Check] (.Hewlett-Packard.) -- C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater\HPSFUpdater.exe
~ Scan Scheduled Task in 00mn 02s
---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Internet Explorer [64Bits] - >{26923b43-4d38-484f-9b9e-de460746276c} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: Browser Customizations [64Bits] - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} . (.Microsoft Corporation - Personnalisation d'IEAK.) -- C:\Windows\System32\iedkcs32.dll
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Windows Media Player.) -- C:\Windows\System32\wmp.dll
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll
~ Scan Active Setup in 00mn 00s
---\\ Pilotes lancés au démarrage (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (avfwot) . (.Avira GmbH - TDI filtering kernel driver.) - C:\Windows\System32\DRIVERS\avfwot.sys
O41 - Driver: (avipbb) . (.Avira GmbH - Avira Driver for Security Enhancement.) - C:\Windows\System32\DRIVERS\avipbb.sys
O41 - Driver: (avkmgr) . (.Avira GmbH - Avira Manager Driver.) - C:\Windows\System32\DRIVERS\avkmgr.sys
O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\drivers\blbdrive.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys
O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys
O41 - Driver: Environnement de prise en charge de Fournisseur de services non-IFS Windows Sockets 2.0 (ws2ifsl) . (.Microsoft Corporation - Couche IFS Winsock2.) - C:\Windows\system32\drivers\ws2ifsl.sys
~ Scan Drivers in 00mn 00s
---\\ Logiciels installés (O42)
O42 - Logiciel: 64 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM] -- {C788B026-20BD-4E96-B698-533F1D6C5013}
O42 - Logiciel: 64 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM] -- {FF21C3E6-97FD-474F-9518-8DCBE94C2854}
O42 - Logiciel: ABBYY FineReader 9.0 Sprint - (.ABBYY.) [HKLM] -- ABBYY FineReader 9.0 Sprint
O42 - Logiciel: ABBYY FineReader 9.0 Sprint - (.ABBYY.) [HKLM] -- {F9000000-0018-0000-0000-074957833700}
O42 - Logiciel: ACDSee Gestionnaire de photos 12 - (.ACD Systems International Inc..) [HKLM] -- {A5CBD7C5-CF16-443F-A4F2-3503C9DE311B}
O42 - Logiciel: AMD APP SDK Runtime - (.Advanced Micro Devices Inc..) [HKLM] -- {503F672D-6C84-448A-8F8F-4BC35AC83441}
O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM] -- {70F55D70-7E5F-6291-4924-2F7640F19BFE}
O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM] -- Adobe AIR
O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM] -- {A2BCA9F1-566C-4805-97D1-7FDC93386723}
O42 - Logiciel: Adobe Community Help - (.Adobe Systems Incorporated.) [HKLM] -- {0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}
O42 - Logiciel: Adobe Flash Player 11 ActiveX 64-bit - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Photoshop CS5 - (.Adobe Systems Incorporated.) [HKLM] -- {15FEDA5F-141C-4127-8D7E-B962D1742728}
O42 - Logiciel: Adobe Reader X (10.1.3) MUI - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-FFFF-7B44-AA0000000001}
O42 - Logiciel: Adobe Shockwave Player 11.6 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player
O42 - Logiciel: AuthenTec TrueAPI - (.AuthenTec, Inc..) [HKLM] -- {054EF02F-95D8-48F4-9EEB-2F9CE3072ED8}
O42 - Logiciel: Avira Internet Security 2012 - (.Avira.) [HKLM] -- Avira AntiVir Desktop
O42 - Logiciel: BenVista PhotoZoom Pro 3.1 - (.BenVista Ltd.) [HKLM] -- PhotoZoom Pro 3
O42 - Logiciel: ByeBye 2.0.0 - (.Les Gratuiciels de Jean-Bernard.) [HKLM] -- {ED2DA2A3-E700-4640-AAF5-24F5CAAAD429}_is1
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
O42 - Logiciel: Catalyst Control Center - Branding - (.Advanced Micro Devices, Inc..) [HKLM] -- {08523528-BA2F-43BB-87E3-252C081872B9}
O42 - Logiciel: Complément Messenger - (.Microsoft Corporation.) [HKLM] -- {6E5324C1-84FC-4F76-9A3A-C65E07F80EE6}
O42 - Logiciel: Contrôle ActiveX Windows Live Mesh pour connexions à distance - (.Microsoft Corporation.) [HKLM] -- {55D003F4-9599-44BF-BA9E-95D060730DD3}
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D}
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{4FE6ABAF-20F3-4F5F-A966-380FDAE9A31A}
O42 - Logiciel: EPSON SX130 Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM] -- EPSON SX130 Series
O42 - Logiciel: EPSON Scan - (.Seiko Epson Corporation.) [HKLM] -- EPSON Scanner
O42 - Logiciel: ESU for Microsoft Windows 7 SP1 - (.Hewlett-Packard.) [HKLM] -- {E96CAA2A-0244-4A2A-8403-0C3C9534778B}
O42 - Logiciel: Epson Easy Photo Print 2 - (.SEIKO EPSON CORPORATION.) [HKLM] -- {A02D7029-C4EF-44C1-9FD4-C0D3CA518113}
O42 - Logiciel: Epson Event Manager - (.SEIKO EPSON CORPORATION.) [HKLM] -- {8A17C27D-0325-400C-8AA9-DAA6B16CBD74}
O42 - Logiciel: Evernote v. 4.2.3 - (.Evernote Corp..) [HKLM] -- {F761359C-9CED-45AE-9A51-9D6605CD55C4}
O42 - Logiciel: FIXIO PC Cleaner - (.LULU Software.) [HKLM] -- {CA57AF13-452F-4DBD-B5AB-35B09B600D08}
O42 - Logiciel: Galerie de photos Windows Live - (.Microsoft Corporation.) [HKLM] -- {488F0347-C4A7-4374-91A7-30818BEDA710}
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome
O42 - Logiciel: Google Earth Plug-in - (.Google.) [HKLM] -- {33286280-8617-11E1-8FF6-B8AC6F97B88E}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Google Earth - (.Google.) [HKLM] -- {28E82311-8616-11E1-BEB0-B8AC6F97B88E}
O42 - Logiciel: HP Auto - (.Hewlett-Packard Company.) [HKLM] -- {CC4D56B7-6F18-470B-8734-ABCD75BCF4F1}
O42 - Logiciel: HP Client Services - (.Hewlett-Packard.) [HKLM] -- {2856A1C2-70C5-4EC3-AFF7-E5B51E5530A2}
O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM] -- {07FA4960-B038-49EB-891B-9F95930AA544}
O42 - Logiciel: HP Documentation - (.Hewlett-Packard.) [HKLM] -- {BC6CB499-9F29-4B41-8B8B-FA7248525256}
O42 - Logiciel: HP FWUpdateEDO3 - (.Hewlett-Packard Company.) [HKLM] -- {A82D0C46-EBDF-4B27-A731-D06EF2056E81}
O42 - Logiciel: HP LJ M1530 MFP Series HP Scan - (.Hewlett-Packard Co..) [HKLM] -- {C05002F1-06F8-4A15-B6F8-E4DC655C28AA}
O42 - Logiciel: HP LaserJet Professional M1530 MFP Series - (.Hewlett-Packard.) [HKLM] -- {74280B5D-A0AF-46c5-9C85-D9EA078262F1}
O42 - Logiciel: HP Launch Box - (.Hewlett-Packard Company.) [HKLM] -- {BF1E75D0-E7AF-4BEA-9FBC-567F0C54BDF9}
O42 - Logiciel: HP On Screen Display - (.Hewlett-Packard Company.) [HKLM] -- {ED1BD69A-07E3-418C-91F1-D856582581BF}
O42 - Logiciel: HP Power Manager - (.Hewlett-Packard Company.) [HKLM] -- {E44578C7-4667-4124-8BC2-1161BCA54978}
O42 - Logiciel: HP Quick Launch - (.Hewlett-Packard Company.) [HKLM] -- {00A42832-B21A-4296-B5F4-D296D0BC4A3E}
O42 - Logiciel: HP QuickWeb - (.Hewlett-Packard Company.) [HKLM] -- {BB4FC2AD-DF12-4EE1-8AA7-2C0A26B5E2FB}
O42 - Logiciel: HP Recovery Manager - (.Hewlett-Packard.) [HKLM] -- {DBCD5E64-7379-4648-9444-8A6558DCB614}
O42 - Logiciel: HP Security Assistant - (.Hewlett-Packard.) [HKLM] -- {562608FE-2051-4488-BF22-8CE4C03046AC}
O42 - Logiciel: HP Setup - (.Hewlett-Packard Company.) [HKLM] -- {F5E7D9AF-60F6-4A30-87E3-4EA94D322CE1}
O42 - Logiciel: HP Setup Manager - (.Hewlett-Packard Company.) [HKLM] -- {AE856388-AFAD-4753-81DF-D96B19D0A17C}
O42 - Logiciel: HP SimplePass PE 2011 - (.Hewlett-Packard.) [HKLM] -- {4741965C-AFD0-4D00-81D1-1039F96D4DC3}
O42 - Logiciel: HP Software Framework - (.Hewlett-Packard Company.) [HKLM] -- {108B5486-584E-42AA-B108-71A173255ECB}
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM] -- {2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3}
O42 - Logiciel: HPLaserJetHelp_LearnCenter - (.Hewlett-Packard.) [HKLM] -- {B2AA0F22-E167-4C4A-BAE2-E0025028E61B}
O42 - Logiciel: Hewlett-Packard ACLM.NET v1.1.2.0 - (.Hewlett-Packard.) [HKLM] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F}
O42 - Logiciel: I.R.I.S. OCR - (.HP.) [HKLM] -- {CA6BCA2F-EDEB-408F-850B-31404BE16A61}
O42 - Logiciel: IDT Audio - (.IDT.) [HKLM] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}
O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421}
O42 - Logiciel: Intel(R) Display Audio Driver - (.Intel Corporation.) [HKLM] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}
O42 - Logiciel: Intel(R) Identity Protection Technology 1.1.2.0 - (.Intel Corporation.) [HKLM] -- {C01A86F5-56E7-101F-9BC9-E3F1025EB779}
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A}
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC}
O42 - Logiciel: Java(TM) 6 Update 22 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216022F0}
O42 - Logiciel: Java(TM) 6 Update 24 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216024F0}
O42 - Logiciel: Java(TM) 6 Update 32 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216032FF}
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}
O42 - Logiciel: MSVC80_x64_v2 - (.Nokia.) [HKLM] -- {4D668D4F-FAA2-4726-834C-31F4614F312E}
O42 - Logiciel: MSVC80_x86_v2 - (.Nokia.) [HKLM] -- {6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}
O42 - Logiciel: MSVC90_x64 - (.Nokia.) [HKLM] -- {AB071C8B-873C-459F-ACA9-9EBE03C3E89B}
O42 - Logiciel: MSVC90_x86 - (.Nokia.) [HKLM] -- {AF111648-99A1-453E-81DD-80DBBF6DAD0D}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9}
O42 - Logiciel: MSXML 4.0 SP2 (K
Run by Christian at 28/04/2012 09:58:28
Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
Web site : http://nicolascoolman.skyrock.com/
State : Version à jour.
---\\ Web Browser
MSIE: Internet Explorer v9.0.8112.16421
GCIE: Google Chrome v18.0.1025.162 (Defaut)
---\\ Windows Product Information
~ Langage: Français
Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601)
Windows Server License Manager Script : OK
~ Windows(R) 7, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : 3Q6C9
Windows License : OK
~ Windows Remaining Initializations Number : 1
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK
---\\ System Information
~ Processor: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 6091 MB (60% free)
System Restore: Activé (Enable)
System drive C: has 162 GB (24%) free of 674 GB
---\\ Logged in mode
~ Computer Name: SUPERVISEUR-HP
~ User Name: Christian
~ All Users Names: HomeGroupUser$, Christian, Administrateur,
~ Unselected Option: O45,O61,O62,O65,O66,O82,O89
Logged in as Administrator
---\\ Environnement Variables
~ System Unit : C:\
~ %AppData% : C:\Users\Christian\AppData\Roaming\
~ %Desktop% : C:\Users\Christian\Desktop\
~ %Favorites% : C:\Users\Christian\Favorites\
~ %LocalAppData% : C:\Users\Christian\AppData\Local\
~ %StartMenu% : C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\
---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 162 Go of 674 Go)
D:\ Floppy drive, Flash card reader, USB Key (Free 0 Go of 2 Go)
E:\ Hard drive, Flash drive, Thumb drive (Free 2 Go of 21 Go)
F:\ Hard drive, Flash drive, Thumb drive (Free 1 Go of 4 Go)
G:\ CD-ROM drive (Not Inserted)
---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoDispScrSavPage: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowMyComputer: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Scan Security Center in 00mn 00s
---\\ Recherche particulière de fichiers génériques
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) (.04/11/2011 - 22:57:32.) -- C:\Windows\Explorer.exe [2871808]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:39:52.) -- C:\Windows\System32\Wininit.exe [129024]
[MD5.228443FF3A1FB0B974D278F7C6403FAD] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.28/02/2012 - 07:49:56.) -- C:\Windows\System32\wininet.dll [1390080]
[MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.21/11/2010 - 04:24:29.) -- C:\Windows\System32\Winlogon.exe [390656]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) (.21/11/2010 - 04:24:16.) -- C:\Windows\System32\sppcomapi.dll [232448]
[MD5.1C7857B62DE5994A75B054A9FD4C3825] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.28/12/2011 - 04:59:24.) -- C:\Windows\system32\Drivers\AFD.sys [498688]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.21/11/2010 - 04:23:47.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.21/11/2010 - 04:24:32.) -- C:\Windows\system32\Drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.21/11/2010 - 04:23:47.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 01:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224]
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.04/11/2011 - 22:59:54.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.21/11/2010 - 04:23:51.) -- C:\Windows\system32\Drivers\netBT.sys [261632]
[MD5.A2F74975097F52A00745F9637451FDD8] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.05/11/2011 - 23:04:16.) -- C:\Windows\system32\Drivers\ntfs.sys [1659776]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 01:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.21/11/2010 - 04:24:33.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 01:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184]
[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.21/11/2010 - 04:24:32.) -- C:\Windows\system32\Drivers\tdx.sys [119296]
[MD5.DF8126BD41180351A093A3AD2FC8903B] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.04/11/2011 - 22:55:34.) -- C:\Windows\system32\Drivers\volsnap.sys [296320]
~ Scan Generic Processes in 00mn 00s
---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : Non accessible (Not found)
~ Mes musiques (My Musics) : 15/83
~ Mes Videos (My Videos) : Non accessible (Not found)
~ Mes Favoris (My Favorites) : 2/125
~ Mes Documents (My Documents) : 5/562
~ Mon Bureau (My Desktop) : 1/15
~ Menu demarrer (Programs) : 6/25
~ Scan Hidden Files in 00mn 00s
---\\ Processus lancés
[MD5.A6B060B72FD17BFE6458114CF3417DF0] - (.HP - TouchControl.) -- C:\Program Files (x86)\HP SimplePass 2011\TouchControl.exe [653128] [PID.7332]
[MD5.219A9AFF51D841F97ABBE06909A36132] - (.Uniblue Systems Limited - Uniblue RegistryBooster Monitor.) -- C:\Program Files (x86)\Uniblue\RegistryBooster\rbmonitor.exe [25984] [PID.8260]
[MD5.3E20865C7F84CDEFF9307B048B6E1671] - (.HP - BioMonitor.) -- C:\Program Files (x86)\HP SimplePass 2011\BioMonitor.exe [142664] [PID.6656]
[MD5.469FCB8AF1B9427F19999CCAF7440575] - (.OrdinarySoft - Start Menu program.) -- C:\Program Files (x86)\Vista Start Menu\VistaStartMenu.exe [2752416] [PID.4440]
[MD5.5D61BE7DB55B026A5D61A3EED09D0EAD] - (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408] [PID.]
[MD5.2AF3E6CFA72105628D32344C8BBBCD58] - (.TomTom - MyTomTom.) -- C:\Program Files (x86)\MyTomTom 3\MyTomTomSA.exe [435672] [PID.4480]
[MD5.390679F7A217A5E73D756276C40AE887] - (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2260480] [PID.8160]
[MD5.219EC7D00A64F9A6548E47FA0DB0FAC8] - (.Siber Systems - RoboForm TaskBar Icon.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe [109296] [PID.6300]
[MD5.28B64BF1F90F92FF7EE38467A9A08706] - (.Avira Operations GmbH & Co. KG - Avira System Tray Tool.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [258512] [PID.6668]
[MD5.1B82BCF0B8F9228B39F75B0DFA079A21] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe [462408] [PID.9148]
[MD5.C637FC4638A96165256B28D38DE7B953] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe [49208] [PID.5324]
[MD5.98A078F838A70F84E1BD490D7C7675F4] - (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254696] [PID.7828]
[MD5.B7F55E2AE978D3D34F7876EE5D689AAE] - (.CyberLink - YouCam Mirage.) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [136488] [PID.5860]
[MD5.391DDA05D6299F09FF41B4339FB963EC] - (.Microsoft Corporation - Microsoft Outlook.) -- C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.exe [15963936] [PID.8000]
[MD5.904E13BA41AF2E353A32CF351CA53639] - (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe [748336] [PID.4672]
[MD5.F9E3D1D9EB6FC407BC6672C2197108D6] - (.Google Inc. - Google Toolbar Broker.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe [307824] [PID.6652]
[MD5.25413EF2A35590CD7FF13D2BBE5D1152] - (.Adobe Systems Incorporated - Adobe® Flash® Player Installer/Uninstaller.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_2_202_233_ActiveX.exe [353440] [PID.6572]
[MD5.B4DAFB3C1E8D616761167F93065223C8] - (...) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [4509184] [PID.6220]
[MD5.EC3949088F617ACC056FC1AB54A6A13B] - (.HP - HP Service.) -- C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe [260424] [PID.]
[MD5.36AB0187EA15A4E8A86C08FC67FFDF85] - (.Avira Operations GmbH & Co. KG - Avira Scheduler.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [86224] [PID.]
[MD5.B33CF4DE909A5B30F526D82053A63C8E] - (.ABBYY - ABBYY network license server.) -- C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048] [PID.]
[MD5.62B7936F9036DD6ED36E6A7EFA805DC0] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [63928] [PID.]
[MD5.E09BB638B7B46DF053ACCE212EA3D6F4] - (.Avira Operations GmbH & Co. KG - Avira Firewall Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avfwsvc.exe [616400] [PID.]
[MD5.0B0ED25051DCD25852164E25B657086B] - (.Avira Operations GmbH & Co. KG - Avira On-Access Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [110032] [PID.]
[MD5.2AD4EEFBEFAA921091BF0DAD793C7B0D] - (.LULU software - Pas de description.) -- C:\Program Files (x86)\FIXIO PC Utilities\FIXIO PC Cleaner\FIXIO Service.exe [191600] [PID.]
[MD5.E6AB9E7FF923928E9F549FDDFCEDB28A] - (.Hewlett-Packard Company - HP Quick Synchronization Service.) -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [227896] [PID.]
[MD5.77C15D7E8F002A173EEBFF0B20CD697D] - (.Hewlett-Packard Development Company, L.P. - HP Quick Launch WMI Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [34872] [PID.]
[MD5.6C85719A21B3F62C2C76280F4BD36C7B] - (.Intel Corporation - Intel IPT Host Interface Service.) -- C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe [212944] [PID.]
[MD5.794D4B48DFB6E999537C7C3947863463] - (.Safer Networking Ltd. - Spybot-S&D Security Center integration.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [1153368] [PID.]
[MD5.6E021D6DA429AD7288FE8322E2BBA96B] - (.Vodafone - VMCService.) -- C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe [14336] [PID.]
[MD5.991FB8163B54298C7A48CC8DC510C44E] - (.Avira Operations GmbH & Co. KG - Avira MailGuard Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc.exe [342480] [PID.]
[MD5.21A95FAB12717A4D847966F739244629] - (.Avira Operations GmbH & Co. KG - Avira WebGuard Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.exe [463824] [PID.]
[MD5.E79A8E33BD136D14BAE1FA20EB2EF124] - (.Intel Corporation - IAStorDataSvc.) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [13592] [PID.]
[MD5.D75C4B4A8FE6D7FD74A7EECDBAEC729F] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [326168] [PID.]
[MD5.BA400ED640BCA1EAE5C727AE17C10207] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [654408] [PID.]
[MD5.758C2CE427C343F780A205E28555C98D] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2656280] [PID.]
~ Scan Processes Running in 00mn 00s
---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Preferences
G1 - GCS: Preference [User Data\Default] None
~ Scan Google Browser in 00mn 00s
---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
P2 - FPN: [HKLM] [@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf] - (.Tracker Software Products Ltd. - PDF-XChange Viewer Netscape Gecko Plugin.) -- C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll
P2 - FPN: [HKLM] [@microsoft.com/OfficeAuthz,version=14.0] - (.Microsoft Corporation - Office Authorization plug-in for NPAPI browsers.) -- C:\Program Files\Microsoft Office\Office14\NPAUTHZ.dll
P2 - FPN: [HKCU] [@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf] - (.Tracker Software Products Ltd. - PDF-XChange Viewer Netscape Gecko Plugin.) -- C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll
~ Scan Firefox Browser in 00mn 00s
---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/?gws_rd=ssl
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = https://www.google.com/?gws_rd=ssl
R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)) -- C:\Windows\SysWOW64\ieframe.dll
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
~ Scan IE Browser in 00mn 00s
---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Scan Proxy management in 00mn 00s
---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Scan Keys in 00mn 00s
---\\ Redirection du fichier Hosts (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Scan Hosts File in 00mn 00s
~ Nombre de lignes (Lines number): 22
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: RoboForm BHO [64Bits] - {724d43a9-0d85-11d4-9908-00400523e39a} . (.Siber Systems Inc. - RoboForm Main Module.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
O2 - BHO: TSBHO Class [64Bits] - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} . (.HP - Website Log On.) -- C:\Program Files (x86)\HP SimplePass 2011\x64\IEBHO.dll
O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Easy Photo Print [64Bits] - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} . (.SEIKO EPSON CORPORATION / CyCom Technology - Epson Easy Photo Print (TBL x64).) -- C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll
O2 - BHO: Google Toolbar Helper [64Bits] - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\Office14\URLREDIR.dll
O2 - BHO: AcroIEHelperStub [64Bits] - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection [64Bits] - {53707962-6F74-2D53-2644-206D7942484F} . (.Safer Networking Limited - SBSD IE Protection.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: RoboForm BHO [64Bits] - {724d43a9-0d85-11d4-9908-00400523e39a} . (.Siber Systems Inc. - RoboForm Main Module.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre6\bin\ssv.dll
O2 - BHO: TSBHO Class [64Bits] - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} . (.HP - Website Log On.) -- C:\Program Files (x86)\HP SimplePass 2011\IEBHO.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live ID [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\
O2 - BHO: (no name) [64Bits] - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} Clé orpheline
O2 - BHO: Windows Live Messenger Companion Helper [64Bits] - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} . (.Microsoft Corporation - Windows Live Messenger Companion Core.) -- C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: Google Toolbar Helper [64Bits] - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
~ Scan BHO in 00mn 00s
---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: &RoboForm Toolbar [64Bits] - {724d43a0-0d85-11d4-9908-00400523e39a} . (.Siber Systems Inc. - RoboForm Main Module.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
O3 - Toolbar: Google Toolbar [64Bits] - {2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
O3 - Toolbar: Easy Photo Print [64Bits] - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} . (.SEIKO EPSON CORPORATION / CyCom Technology - Epson Easy Photo Print (TBL x64).) -- C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll
~ Scan Toolbar in 00mn 00s
---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [SetDefault] . (.Hewlett-Packard Development Company, L.P. - SetDefault.) -- C:\Program Files\Hewlett-Packard\HP LaunchBox\SetDefault.exe
O4 - HKLM\..\Run: [HP LaserJet Professional M1530 MFP Series Fax] . (.Hewlett-Packard Company - hppfaxprintersrv.) -- C:\Program Files (x86)\HP\Digital Imaging\Fax\Fax Driver 0.6 Base\hppfaxprintersrv.exe
O4 - HKCU\..\Run: [VistaStartMenu] . (.OrdinarySoft - Start Menu program.) -- C:\Program Files (x86)\Vista Start Menu\VistaStartMenu.exe
O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
O4 - HKCU\..\Run: [MyTomTomSA.exe] . (.TomTom - MyTomTom.) -- C:\Program Files (x86)\MyTomTom 3\MyTomTomSA.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [RoboForm] . (.Siber Systems - RoboForm TaskBar Icon.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe
O4 - HKLM\..\Wow6432Node\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Avira System Tray Tool.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
O4 - HKLM\..\Wow6432Node\Run: [ToolboxFX] . (.Hewlett-Packard Company - HPTLBXFX.) -- C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe
O4 - HKLM\..\Wow6432Node\Run: [Malwarebytes' Anti-Malware] . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
O4 - HKLM\..\Wow6432Node\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-21-3813990618-657574580-487364974-1000\..\Run: [VistaStartMenu] . (.OrdinarySoft - Start Menu program.) -- C:\Program Files (x86)\Vista Start Menu\VistaStartMenu.exe
O4 - HKUS\S-1-5-21-3813990618-657574580-487364974-1000\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-21-3813990618-657574580-487364974-1000\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
O4 - HKUS\S-1-5-21-3813990618-657574580-487364974-1000\..\Run: [MyTomTomSA.exe] . (.TomTom - MyTomTom.) -- C:\Program Files (x86)\MyTomTom 3\MyTomTomSA.exe
O4 - HKUS\S-1-5-21-3813990618-657574580-487364974-1000\..\Run: [SpybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-21-3813990618-657574580-487364974-1000\..\Run: [RoboForm] . (.Siber Systems - RoboForm TaskBar Icon.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
~ Scan Application in 00mn 00s
---\\ Autres liens utilisateurs (O4)
O4 - Global Startup: C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Christian\Desktop\Google Chrome.lnk . (.Google Inc..) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - Global Startup: C:\Users\Christian\Desktop\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Christian\Desktop\Ordinateur.lnk - Clé orpheline
O4 - Global Startup: C:\Users\Christian\Desktop\Spybot - Search & Destroy.lnk . (.Safer Networking Limited.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe
O4 - Global Startup: C:\Users\Christian\Desktop\TubeMaster++.lnk . (.GgSofts.) -- C:\Program Files (x86)\TubeMaster++\tm++.exe
O4 - Global Startup: C:\Users\Christian\Desktop\Uniblue RegistryBooster.lnk . (.Uniblue Systems Limited.) -- C:\Program Files (x86)\Uniblue\RegistryBooster\RegistryBooster.exe
O4 - Global Startup: C:\Users\Christian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk . (.Google Inc..) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - Global Startup: C:\Users\Christian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Christian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Malwarebytes Anti-Malware.lnk . (.Malwarebytes Corporation.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
O4 - Global Startup: C:\Users\Christian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Outlook.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXE
O4 - Global Startup: C:\Users\Christian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Uniblue RegistryBooster.lnk . (.Uniblue Systems Limited.) -- C:\Program Files (x86)\Uniblue\RegistryBooster\Launcher.exe
O4 - Global Startup: C:\Users\Christian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Vista Start Menu.lnk . (.OrdinarySoft.) -- C:\Program Files (x86)\Vista Start Menu\VistaStartMenu.exe
~ Scan Global Startup in 00mn 00s
---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ Scan IE Control Panel in 00mn 00s
---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
O8 - Extra context menu item: Barre RoboForm - (.not file.) - file:\\C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: Enregistrer les formulaires - (.not file.) - file:\\C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O8 - Extra context menu item: Personnaliser le menu - (.not file.) - file:\\C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: Remplir les formulaires - (.not file.) - file:\\C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html
~ Scan IE Menu Contextuel in 00mn 00s
---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: &Envoyer à OneNote [64Bits] - {2670000A-7350-4f3c-8081-5663EE0C6C49} -- C:\Program Files (x86)\MICROS~2\Office14\ONBttnIE.dll (.not file.)
O9 - Extra button: Remplir les formulaires [64Bits] - {320AF880-6646-11D3-ABEE-C5DBF3571F46} . (.Siber Systems Inc. - RoboForm Main Module.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra button: Enregistrer les formulaires [64Bits] - {320AF880-6646-11D3-ABEE-C5DBF3571F49} . (.Siber Systems Inc. - RoboForm Main Module.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra button: Barre RoboForm [64Bits] - {724d43aa-0d85-11d4-9908-00400523e39a} . (.Siber Systems Inc. - RoboForm Main Module.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra button: Notes &liées OneNote [64Bits] - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} -- C:\Program Files (x86)\MICROS~2\Office14\ONBTTN~1.dll (.not file.)
~ Scan IE Extra Buttons in 00mn 00s
---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll
O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll
~ Scan Winsock in 00mn 00s
---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{EEB652E5-80C5-4940-9B16-AEBC17A800C6}: DhcpNameServer = 212.27.40.240 212.27.40.241
O17 - HKLM\System\CS1\Services\Tcpip\..\{EEB652E5-80C5-4940-9B16-AEBC17A800C6}: DhcpNameServer = 212.27.40.240 212.27.40.241
O17 - HKLM\System\CS2\Services\Tcpip\..\{EEB652E5-80C5-4940-9B16-AEBC17A800C6}: DhcpNameServer = 212.27.40.240 212.27.40.241
~ Scan Domain in 00mn 00s
---\\ Protocole additionnel (O18)
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\msvidctl.dll
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\system32\inetcomm.dll
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll
O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: skype4com [64Bits] - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype for COM API.) -- C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\msvidctl.dll
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll
O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
O18 - Filter: text/xml [64Bits] - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.dll
~ Scan Protocole Additionnel in 00mn 00s
---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll
~ Scan Winlogon in 00mn 00s
---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ Scan SSODL in 00mn 00s
---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: ABBYY FineReader 9.0 Sprint Licensing Se (ABBYY.Licensing.FineReader.Sprint.9.0) . (.ABBYY - ABBYY network license server.) - C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe
O23 - Service: Avira Firewall (AntiVirFirewallService) . (.Avira Operations GmbH & Co. KG - Avira Firewall Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avfwsvc.exe
O23 - Service: Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG - Avira MailGuard Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc.exe
O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Avira Scheduler.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Avira On-Access Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG - Avira WebGuard Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.exe
O23 - Service: FIXIO Service (FIXIO Service) . (.LULU software - Pas de description.) - C:\Program Files (x86)\FIXIO PC Utilities\FIXIO PC Cleaner\FIXIO Service.exe
O23 - Service: TrueSuiteService (FPLService) . (.HP - HP Service.) - C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP LaserJet Service (HP LaserJet Service) . (.HP - HP LaserJet Service.) - C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe
O23 - Service: HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company - HP Support Assistant Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Auto (HPAuto) . (.Hewlett-Packard - HP Usage Improvement Tracking.) - C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe
O23 - Service: HP Client Services (HPClientSvc) . (.Hewlett-Packard Company - HP Client Services.) - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) . (.Hewlett-Packard Company - HP Quick Synchronization Service.) - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HPWMISVC (HPWMISVC) . (.Hewlett-Packard Development Company, L.P. - HP Quick Launch WMI Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc. - Realtek Card Reader Icon Tool..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: Intel(R) Identity Protection Technology (jhi_service) . (.Intel Corporation - Intel IPT Host Interface Service.) - C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
O23 - Service: Intel(R) Management and Security Applica (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) . (.Safer Networking Ltd. - Spybot-S&D Security Center integration.) - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: C:\Windows\System32\stlang64.dll (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: Intel(R) Management and Security Applica (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: Vodafone Mobile Connect Service (VMCService) . (.Vodafone - VMCService.) - C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe
O23 - Service: (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
~ Scan Services in 00mn 00s
---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Scan Desktop Component in 00mn 00s
---\\ BootExecute (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ Scan Keys in 00mn 00s
---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3813990618-657574580-487364974-1000Core.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\FIXIOPCCleaner.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\HPCeeScheduleForChristian.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\HPCeeScheduleForSUPERVISEUR-HP$.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\RegistryBooster.job
[MD5.459AC130C6AB892B1CD5D7544626EFC5] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
[MD5.5447AF432CDA61159ADDE218C468FFD9] [APT] [AdobeAAMUpdater-1.0-Superviseur-HP-Christian] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe
[MD5.00000000000000000000000000000000] [APT] [Express Files Updater] (...) -- C:\Program Files (x86)\ExpressFiles\EFupdater.exe (.not file.)
[MD5.364A13F60FBD2FD659C4352FE4237BF1] [APT] [FIXIOPCCleaner] (.LULU software.) -- C:\Program Files (x86)\FIXIO PC Utilities\FIXIO PC Cleaner\FIXIO PC Cleaner.exe
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
[MD5.8AA3B22B716A04AC8DD13318A40D708D] [APT] [HPCeeScheduleForChristian] (.Hewlett-Packard.) -- C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
[MD5.8AA3B22B716A04AC8DD13318A40D708D] [APT] [HPCeeScheduleForSUPERVISEUR-HP$] (.Hewlett-Packard.) -- C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
[MD5.6E17843E1E65F8DE34861692667CD3FC] [APT] [HPLJCustParticipation] (.Hewlett Packard.) -- C:\Program Files (x86)\HP\HPLJUT\HPLJUTSCH.exe
[MD5.B7F55E2AE978D3D34F7876EE5D689AAE] [APT] [MirageAgent] (.CyberLink.) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
[MD5.219A9AFF51D841F97ABBE06909A36132] [APT] [RegistryBooster] (.Uniblue Systems Limited.) -- C:\Program Files (x86)\Uniblue\RegistryBooster\rbmonitor.exe
[MD5.219EC7D00A64F9A6548E47FA0DB0FAC8] [APT] [Run RoboForm TaskBar Icon] (.Siber Systems.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe
[MD5.00000000000000000000000000000000] [APT] [{7C21FB57-6BF3-45A5-B179-E85B70D7510F}] (...) -- H:\Setup.exe (.not file.)
[MD5.486A0A170E6E96DC89A49B2BC2CFB007] [APT] [{A1036BED-1707-4988-A2AE-140DAEB7A098}] (...) -- C:\Users\Christian\Downloads\sexy14.exe
[MD5.00000000000000000000000000000000] [APT] [{B4BB25B0-7C92-47B4-896B-D9A8DA1EB185}] (...) -- C:\Users\Christian\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GJK3ORIM\erunt-setup.exe (.not file.)
[MD5.1DB8C2220EFDBA97F671F46F6A8DE51E] [APT] [HP Support Assistant Quick Start] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPSFMessenger\HPSFMsgr.exe
[MD5.7A14C25B7EC229B7F8B3E457779C83CC] [APT] [HP Total Care Tune-Up] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPTuneUp.exe
[MD5.0757398E1539E633CEC5179A3BCA5F4F] [APT] [PC Health Analysis] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
[MD5.0757398E1539E633CEC5179A3BCA5F4F] [APT] [PC Tuneup] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
[MD5.A87F567F053191361B617D7908F8E062] [APT] [Update Check] (.Hewlett-Packard.) -- C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater\HPSFUpdater.exe
~ Scan Scheduled Task in 00mn 02s
---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Internet Explorer [64Bits] - >{26923b43-4d38-484f-9b9e-de460746276c} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: Browser Customizations [64Bits] - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} . (.Microsoft Corporation - Personnalisation d'IEAK.) -- C:\Windows\System32\iedkcs32.dll
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Windows Media Player.) -- C:\Windows\System32\wmp.dll
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll
~ Scan Active Setup in 00mn 00s
---\\ Pilotes lancés au démarrage (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (avfwot) . (.Avira GmbH - TDI filtering kernel driver.) - C:\Windows\System32\DRIVERS\avfwot.sys
O41 - Driver: (avipbb) . (.Avira GmbH - Avira Driver for Security Enhancement.) - C:\Windows\System32\DRIVERS\avipbb.sys
O41 - Driver: (avkmgr) . (.Avira GmbH - Avira Manager Driver.) - C:\Windows\System32\DRIVERS\avkmgr.sys
O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\drivers\blbdrive.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys
O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys
O41 - Driver: Environnement de prise en charge de Fournisseur de services non-IFS Windows Sockets 2.0 (ws2ifsl) . (.Microsoft Corporation - Couche IFS Winsock2.) - C:\Windows\system32\drivers\ws2ifsl.sys
~ Scan Drivers in 00mn 00s
---\\ Logiciels installés (O42)
O42 - Logiciel: 64 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM] -- {C788B026-20BD-4E96-B698-533F1D6C5013}
O42 - Logiciel: 64 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM] -- {FF21C3E6-97FD-474F-9518-8DCBE94C2854}
O42 - Logiciel: ABBYY FineReader 9.0 Sprint - (.ABBYY.) [HKLM] -- ABBYY FineReader 9.0 Sprint
O42 - Logiciel: ABBYY FineReader 9.0 Sprint - (.ABBYY.) [HKLM] -- {F9000000-0018-0000-0000-074957833700}
O42 - Logiciel: ACDSee Gestionnaire de photos 12 - (.ACD Systems International Inc..) [HKLM] -- {A5CBD7C5-CF16-443F-A4F2-3503C9DE311B}
O42 - Logiciel: AMD APP SDK Runtime - (.Advanced Micro Devices Inc..) [HKLM] -- {503F672D-6C84-448A-8F8F-4BC35AC83441}
O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM] -- {70F55D70-7E5F-6291-4924-2F7640F19BFE}
O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM] -- Adobe AIR
O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM] -- {A2BCA9F1-566C-4805-97D1-7FDC93386723}
O42 - Logiciel: Adobe Community Help - (.Adobe Systems Incorporated.) [HKLM] -- {0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}
O42 - Logiciel: Adobe Flash Player 11 ActiveX 64-bit - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Photoshop CS5 - (.Adobe Systems Incorporated.) [HKLM] -- {15FEDA5F-141C-4127-8D7E-B962D1742728}
O42 - Logiciel: Adobe Reader X (10.1.3) MUI - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-FFFF-7B44-AA0000000001}
O42 - Logiciel: Adobe Shockwave Player 11.6 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player
O42 - Logiciel: AuthenTec TrueAPI - (.AuthenTec, Inc..) [HKLM] -- {054EF02F-95D8-48F4-9EEB-2F9CE3072ED8}
O42 - Logiciel: Avira Internet Security 2012 - (.Avira.) [HKLM] -- Avira AntiVir Desktop
O42 - Logiciel: BenVista PhotoZoom Pro 3.1 - (.BenVista Ltd.) [HKLM] -- PhotoZoom Pro 3
O42 - Logiciel: ByeBye 2.0.0 - (.Les Gratuiciels de Jean-Bernard.) [HKLM] -- {ED2DA2A3-E700-4640-AAF5-24F5CAAAD429}_is1
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
O42 - Logiciel: Catalyst Control Center - Branding - (.Advanced Micro Devices, Inc..) [HKLM] -- {08523528-BA2F-43BB-87E3-252C081872B9}
O42 - Logiciel: Complément Messenger - (.Microsoft Corporation.) [HKLM] -- {6E5324C1-84FC-4F76-9A3A-C65E07F80EE6}
O42 - Logiciel: Contrôle ActiveX Windows Live Mesh pour connexions à distance - (.Microsoft Corporation.) [HKLM] -- {55D003F4-9599-44BF-BA9E-95D060730DD3}
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D}
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{4FE6ABAF-20F3-4F5F-A966-380FDAE9A31A}
O42 - Logiciel: EPSON SX130 Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM] -- EPSON SX130 Series
O42 - Logiciel: EPSON Scan - (.Seiko Epson Corporation.) [HKLM] -- EPSON Scanner
O42 - Logiciel: ESU for Microsoft Windows 7 SP1 - (.Hewlett-Packard.) [HKLM] -- {E96CAA2A-0244-4A2A-8403-0C3C9534778B}
O42 - Logiciel: Epson Easy Photo Print 2 - (.SEIKO EPSON CORPORATION.) [HKLM] -- {A02D7029-C4EF-44C1-9FD4-C0D3CA518113}
O42 - Logiciel: Epson Event Manager - (.SEIKO EPSON CORPORATION.) [HKLM] -- {8A17C27D-0325-400C-8AA9-DAA6B16CBD74}
O42 - Logiciel: Evernote v. 4.2.3 - (.Evernote Corp..) [HKLM] -- {F761359C-9CED-45AE-9A51-9D6605CD55C4}
O42 - Logiciel: FIXIO PC Cleaner - (.LULU Software.) [HKLM] -- {CA57AF13-452F-4DBD-B5AB-35B09B600D08}
O42 - Logiciel: Galerie de photos Windows Live - (.Microsoft Corporation.) [HKLM] -- {488F0347-C4A7-4374-91A7-30818BEDA710}
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome
O42 - Logiciel: Google Earth Plug-in - (.Google.) [HKLM] -- {33286280-8617-11E1-8FF6-B8AC6F97B88E}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Google Earth - (.Google.) [HKLM] -- {28E82311-8616-11E1-BEB0-B8AC6F97B88E}
O42 - Logiciel: HP Auto - (.Hewlett-Packard Company.) [HKLM] -- {CC4D56B7-6F18-470B-8734-ABCD75BCF4F1}
O42 - Logiciel: HP Client Services - (.Hewlett-Packard.) [HKLM] -- {2856A1C2-70C5-4EC3-AFF7-E5B51E5530A2}
O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM] -- {07FA4960-B038-49EB-891B-9F95930AA544}
O42 - Logiciel: HP Documentation - (.Hewlett-Packard.) [HKLM] -- {BC6CB499-9F29-4B41-8B8B-FA7248525256}
O42 - Logiciel: HP FWUpdateEDO3 - (.Hewlett-Packard Company.) [HKLM] -- {A82D0C46-EBDF-4B27-A731-D06EF2056E81}
O42 - Logiciel: HP LJ M1530 MFP Series HP Scan - (.Hewlett-Packard Co..) [HKLM] -- {C05002F1-06F8-4A15-B6F8-E4DC655C28AA}
O42 - Logiciel: HP LaserJet Professional M1530 MFP Series - (.Hewlett-Packard.) [HKLM] -- {74280B5D-A0AF-46c5-9C85-D9EA078262F1}
O42 - Logiciel: HP Launch Box - (.Hewlett-Packard Company.) [HKLM] -- {BF1E75D0-E7AF-4BEA-9FBC-567F0C54BDF9}
O42 - Logiciel: HP On Screen Display - (.Hewlett-Packard Company.) [HKLM] -- {ED1BD69A-07E3-418C-91F1-D856582581BF}
O42 - Logiciel: HP Power Manager - (.Hewlett-Packard Company.) [HKLM] -- {E44578C7-4667-4124-8BC2-1161BCA54978}
O42 - Logiciel: HP Quick Launch - (.Hewlett-Packard Company.) [HKLM] -- {00A42832-B21A-4296-B5F4-D296D0BC4A3E}
O42 - Logiciel: HP QuickWeb - (.Hewlett-Packard Company.) [HKLM] -- {BB4FC2AD-DF12-4EE1-8AA7-2C0A26B5E2FB}
O42 - Logiciel: HP Recovery Manager - (.Hewlett-Packard.) [HKLM] -- {DBCD5E64-7379-4648-9444-8A6558DCB614}
O42 - Logiciel: HP Security Assistant - (.Hewlett-Packard.) [HKLM] -- {562608FE-2051-4488-BF22-8CE4C03046AC}
O42 - Logiciel: HP Setup - (.Hewlett-Packard Company.) [HKLM] -- {F5E7D9AF-60F6-4A30-87E3-4EA94D322CE1}
O42 - Logiciel: HP Setup Manager - (.Hewlett-Packard Company.) [HKLM] -- {AE856388-AFAD-4753-81DF-D96B19D0A17C}
O42 - Logiciel: HP SimplePass PE 2011 - (.Hewlett-Packard.) [HKLM] -- {4741965C-AFD0-4D00-81D1-1039F96D4DC3}
O42 - Logiciel: HP Software Framework - (.Hewlett-Packard Company.) [HKLM] -- {108B5486-584E-42AA-B108-71A173255ECB}
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM] -- {2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3}
O42 - Logiciel: HPLaserJetHelp_LearnCenter - (.Hewlett-Packard.) [HKLM] -- {B2AA0F22-E167-4C4A-BAE2-E0025028E61B}
O42 - Logiciel: Hewlett-Packard ACLM.NET v1.1.2.0 - (.Hewlett-Packard.) [HKLM] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F}
O42 - Logiciel: I.R.I.S. OCR - (.HP.) [HKLM] -- {CA6BCA2F-EDEB-408F-850B-31404BE16A61}
O42 - Logiciel: IDT Audio - (.IDT.) [HKLM] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}
O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421}
O42 - Logiciel: Intel(R) Display Audio Driver - (.Intel Corporation.) [HKLM] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}
O42 - Logiciel: Intel(R) Identity Protection Technology 1.1.2.0 - (.Intel Corporation.) [HKLM] -- {C01A86F5-56E7-101F-9BC9-E3F1025EB779}
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A}
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC}
O42 - Logiciel: Java(TM) 6 Update 22 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216022F0}
O42 - Logiciel: Java(TM) 6 Update 24 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216024F0}
O42 - Logiciel: Java(TM) 6 Update 32 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216032FF}
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}
O42 - Logiciel: MSVC80_x64_v2 - (.Nokia.) [HKLM] -- {4D668D4F-FAA2-4726-834C-31F4614F312E}
O42 - Logiciel: MSVC80_x86_v2 - (.Nokia.) [HKLM] -- {6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}
O42 - Logiciel: MSVC90_x64 - (.Nokia.) [HKLM] -- {AB071C8B-873C-459F-ACA9-9EBE03C3E89B}
O42 - Logiciel: MSVC90_x86 - (.Nokia.) [HKLM] -- {AF111648-99A1-453E-81DD-80DBBF6DAD0D}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9}
O42 - Logiciel: MSXML 4.0 SP2 (K
Utilisateur anonyme
28 avril 2012 à 10:03
28 avril 2012 à 10:03
le rapport est incomplet
* Enregistre le rapport sur ton Bureau à l'aide de l'icône représentant une disquette
* Héberge le rapport ZHPDiag.txt sur Cjoint, puis copie/colle le lien fourni dans ta prochaine réponse sur le forum :
https://www.cjoint.com/ => https://www.commentcamarche.net/faq/29493-utiliser-cjoint-pour-heberger-des-fichiers
* Enregistre le rapport sur ton Bureau à l'aide de l'icône représentant une disquette
* Héberge le rapport ZHPDiag.txt sur Cjoint, puis copie/colle le lien fourni dans ta prochaine réponse sur le forum :
https://www.cjoint.com/ => https://www.commentcamarche.net/faq/29493-utiliser-cjoint-pour-heberger-des-fichiers
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Goldboy55
Messages postés
16
Date d'inscription
dimanche 18 septembre 2011
Statut
Membre
Dernière intervention
11 avril 2018
28 avril 2012 à 10:09
28 avril 2012 à 10:09
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: Malwarebytes Anti-Malware version 1.61.0.1400 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1
O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E}
O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM] -- {50816F92-1652-4A7C-B9BC-48F682742C4B}
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile FRA Language Pack - (.Microsoft Corporation.) [HKLM] -- {4B5F58F7-C7D1-3CE3-9B37-B657F0852643}
O42 - Logiciel: Microsoft Office 2010 Service Pack 1 (SP1) - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{047B0968-E622-4FAA-9B4B-121FA109EDDE}
O42 - Logiciel: Microsoft Office 2010 Service Pack 1 (SP1) - (.Microsoft.) [HKLM] -- {90140000-002A-0000-1000-0000000FF1CE}_Office14.STANDARD_{967EF02C-5C7E-4718-8FCB-BDC050190CCF}
O42 - Logiciel: Microsoft Office Excel MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-0016-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Office 64-bit Components 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-002A-0000-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office OneNote MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-00A1-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Outlook Connector - (.Microsoft Corporation.) [HKLM] -- {95140000-0080-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Outlook MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001A-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office PowerPoint MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-0018-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (Arabic) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001F-0401-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (Dutch) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001F-0413-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (English) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001F-0409-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001F-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (German) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001F-0407-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (Spanish) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001F-0C0A-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proofing (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-002C-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Publisher MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-0019-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Shared 64-bit MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-002A-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Shared MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-006E-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Standard 2010 - (.Microsoft Corporation.) [HKLM] -- Office14.STANDARD
O42 - Logiciel: Microsoft Office Standard 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Word MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001B-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU] - (.Microsoft Corporation.) [HKLM] -- {F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM] -- {071c9b48-7c32-4621-a0ac-3f809523288f}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM] -- {6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM] -- {ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {837b34e3-7c30-493c-8f6a-2b0f04e2912c}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {8220EEFE-38CD-377E-8595-13398D740ACE}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {4B6C7001-C7D6-3710-913E-5BC23FCE91E6}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM] -- {5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F}
O42 - Logiciel: Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM] -- {1D8E6291-B0D5-35EC-8441-6616F567A0F7}
O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM] -- {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
O42 - Logiciel: Microsoft_VC100_CRT_SP1_x64 - (.Nokia.) [HKLM] -- {680EDA59-9266-44B4-949E-0C24F65DFF82}
O42 - Logiciel: Microsoft_VC100_CRT_SP1_x86 - (.Nokia.) [HKLM] -- {E3B64CC5-C011-40C0-92BC-7316CD5E5688}
O42 - Logiciel: Microsoft_VC80_ATL_x86 - (.Adobe.) [HKLM] -- {0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}
O42 - Logiciel: Microsoft_VC80_ATL_x86_x64 - (.Adobe.) [HKLM] -- {925D058B-564A-443A-B4B2-7E90C6432E55}
O42 - Logiciel: Microsoft_VC80_CRT_x86 - (.Adobe.) [HKLM] -- {92D58719-BBC1-4CC3-A08B-56C9E884CC2C}
O42 - Logiciel: Microsoft_VC80_CRT_x86_x64 - (.Adobe.) [HKLM] -- {4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}
O42 - Logiciel: Microsoft_VC80_MFCLOC_x86 - (.Adobe.) [HKLM] -- {D92BBB52-82FF-42ED-8A3C-4E062F944AB7}
O42 - Logiciel: Microsoft_VC80_MFCLOC_x86_x64 - (.Adobe.) [HKLM] -- {1E9FC118-651D-4934-97BE-E53CAE5C7D45}
O42 - Logiciel: Microsoft_VC80_MFC_x86 - (.Adobe.) [HKLM] -- {D1A19B02-817E-4296-A45B-07853FD74D57}
O42 - Logiciel: Microsoft_VC80_MFC_x86_x64 - (.Adobe.) [HKLM] -- {C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}
O42 - Logiciel: Microsoft_VC90_ATL_x86 - (.Adobe.) [HKLM] -- {033E378E-6AD3-4AD5-BDEB-CBD69B31046C}
O42 - Logiciel: Microsoft_VC90_ATL_x86_x64 - (.Adobe.) [HKLM] -- {8557397C-A42D-486F-97B3-A2CBC2372593}
O42 - Logiciel: Microsoft_VC90_CRT_x86 - (.Adobe.) [HKLM] -- {08D2E121-7F6A-43EB-97FD-629B44903403}
O42 - Logiciel: Microsoft_VC90_CRT_x86_x64 - (.Adobe.) [HKLM] -- {92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}
O42 - Logiciel: Microsoft_VC90_MFC_x86 - (.Adobe.) [HKLM] -- {635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}
O42 - Logiciel: Microsoft_VC90_MFC_x86_x64 - (.Adobe.) [HKLM] -- {A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}
O42 - Logiciel: Module linguistique Microsoft .NET Framework 4 Client Profile FRA - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile FRA Language Pack
O42 - Logiciel: MyTomTom 3.1.0.530 - (.TomTom.) [HKLM] -- MyTomTom
O42 - Logiciel: Nikon Message Center 2 - (.Nikon.) [HKLM] -- {B014EE44-9197-4513-9613-71E6EB1B514E}
O42 - Logiciel: Nokia Connectivity Cable Driver - (.Nokia.) [HKLM] -- {AF88496B-4BBA-4922-97E9-2582D3A28358}
O42 - Logiciel: Nokia Suite - (.Nokia.) [HKLM] -- Nokia Suite
O42 - Logiciel: Nokia Suite - (.Nokia.) [HKLM] -- {DB24A9E5-A068-43DD-88D0-B51BED3C0B99}
O42 - Logiciel: OpenOffice.org 3.3 - (.OpenOffice.org.) [HKLM] -- {05653DE1-6567-40C6-B930-39D399B64369}
O42 - Logiciel: PC Connectivity Solution - (.Nokia.) [HKLM] -- {55EB7967-5BB1-4EA2-8AFF-B2F9E487E553}
O42 - Logiciel: PDF Settings CS5 - (.Adobe Systems Incorporated.) [HKLM] -- {A78FE97A-C0C8-49CE-89D0-EDD524A17392}
O42 - Logiciel: PDF-Viewer - (.Tracker Software Products Ltd.) [HKLM] -- {A278382D-4F1B-4D47-9885-8523F7261E8D}_is1
O42 - Logiciel: PDFCreator - (.Frank Heindörfer, Philip Chinery.) [HKLM] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}
O42 - Logiciel: Package de pilotes Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0) - (.Nokia.) [HKLM] -- FCEC33AD40CEA5E0FC4CEE6E42041A0DA189652D
O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM] -- Picasa 3
O42 - Logiciel: Picture Control Utility x64 - (.Nikon.) [HKLM] -- {11953C65-BB4E-4CA4-B0F0-2600A4B20040}
O42 - Logiciel: Pilote vidéo Pinnacle - (.Pinnacle Systems.) [HKLM] -- {6DE721A5-5E89-4D74-994C-652BB3C0672E}
O42 - Logiciel: Pinnacle Instant DVD Recorder - (.Pinnacle Systems.) [HKLM] -- {C1212AE3-DBB9-4365-8473-F8ABC7B06BBB}
O42 - Logiciel: PlayerTuto.com 2.0.6 - (.Weecast SAS.) [HKLM] -- {2B7FD473-DF96-40D4-9EE3-A427B450B1BC}_is1
O42 - Logiciel: Portrait Professional 10.8 - (.Anthropics Technology Ltd..) [HKLM] -- PortraitProfessional10_is1
O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM] -- {C1594429-8296-4652-BF54-9DBE4932A44C}
O42 - Logiciel: RoboForm 7-7-6 (All Users) - (.Siber Systems.) [HKLM] -- AI RoboForm
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2518870
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2572078
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2633870
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2656351
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2656368
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB2553091) - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{07CA44F3-F5B3-4D12-8C91-EDC5FE91D45C}
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB2553096) - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{10802A6D-EDBF-4383-BCBD-9D5B32F56D35}
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB2589320) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{DCE6D0BF-93E4-46C5-9A7C-F1EFF9707C02}
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB2598039) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{01F2485C-FAEE-47E7-986E-B4F2FFC22D57}
O42 - Logiciel: Security Update for Microsoft PowerPoint 2010 (KB2553185) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{61461470-8168-4F4B-97B7-617AF354F028}
O42 - Logiciel: Security Update for Microsoft SharePoint Workspace 2010 (KB2566445) - (.Microsoft.) [HKLM] -- {90140000-002A-0000-1000-0000000FF1CE}_Office14.STANDARD_{337A3FB9-281D-4EC8-9CC1-7F6DDAC2359F}
O42 - Logiciel: Security Update for Module linguistique Microsoft .NET Framework 4 Client Profile FRA (KB2518870) - (.Microsoft Corporation.) [HKLM] -- {4B5F58F7-C7D1-3CE3-9B37-B657F0852643}.KB2518870
O42 - Logiciel: Skype(TM) 5.8 - (.Skype Technologies S.A..) [HKLM] -- {EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}
O42 - Logiciel: Spybot - Search & Destroy - (.Safer Networking Limited.) [HKLM] -- {B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1
O42 - Logiciel: Synaptics TouchPad Driver - (.Synaptics Incorporated.) [HKLM] -- SynTPDeinstKey
O42 - Logiciel: TubeMaster++ 2.6 - (.GgSofts.) [HKLM] -- TubeMaster++
O42 - Logiciel: Uniblue RegistryBooster - (.Uniblue Systems Ltd.) [HKLM] -- Uniblue RegistryBooster
O42 - Logiciel: Update for Microsoft .NET Framework 4 Client Profile (KB2468871) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2468871
O42 - Logiciel: Update for Microsoft .NET Framework 4 Client Profile (KB2533523) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2533523
O42 - Logiciel: Update for Microsoft .NET Framework 4 Client Profile (KB2600217) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2600217
O42 - Logiciel: Update for Microsoft Excel 2010 (KB2553439) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{3D1F379C-AA64-4823-90A4-A8DDD4B48C21}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2494150) - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{3FCFD88F-4D13-4F38-8625-ABABEA7F61EA}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2553065) - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{A8686D24-1E89-43A1-973E-05A258D2B3F8}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2553181) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{48E1B6C2-7299-4F3F-AA63-42F0ACE55AA4}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{C8694FF0-8203-483B-A07A-2BC40433167D}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2553385) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{28FAC187-7C0E-413A-B90A-76F19D0FBF30}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2566458) - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{EFB525A0-E1C0-4E32-9968-FE401BC87363}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{ED31DE9A-3E13-4E2C-9106-E0D8AFFB9FA6}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2597091) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{4D98EEEA-A31B-42FA-991A-F989594F4DA5}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2597091) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-002A-0000-1000-0000000FF1CE}_Office14.STANDARD_{4D98EEEA-A31B-42FA-991A-F989594F4DA5}
O42 - Logiciel: Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{BEBC2484-290C-46AD-9834-6DAD1FA80273}
O42 - Logiciel: Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-002A-0000-1000-0000000FF1CE}_Office14.STANDARD_{BEBC2484-290C-46AD-9834-6DAD1FA80273}
O42 - Logiciel: Update for Microsoft Outlook 2010 (KB2553248) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{38990592-F6A1-4A26-96C7-0600E36AE794}
O42 - Logiciel: Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{BC6DFBFD-16DD-47E1-A7EF-2C062930FA4F}
O42 - Logiciel: VIP Access SDK (1.0.1.2) - (.Symantec Inc..) [HKLM] -- VIP Access SDK
O42 - Logiciel: VLC media player 2.0.1 - (.VideoLAN.) [HKLM] -- VLC media player
O42 - Logiciel: ViewNX 2 - (.Nikon.) [HKLM] -- {635BE602-BB9C-4C59-8CC5-93F9366E8A21}
O42 - Logiciel: VisiPics V1.30 - (.Ozone.) [HKLM] -- VisiPics_is1
O42 - Logiciel: Vista Start Menu 3.88 - (.OrdinarySoft.) [HKLM] -- Vista Start Menu_is1
O42 - Logiciel: Visual Studio C++ 10.0 Runtime - (.TomTom International B.V..) [HKLM] -- {4412F224-3849-4461-A3E9-DEEF8D252790}
O42 - Logiciel: Vodafone Mobile Connect Lite - (.Vodafone.) [HKLM] -- {C656142F-EFE1-44CD-BFAD-6CBC6DCB9860}
O42 - Logiciel: WinPcap 4.1.2 - (.CACE Technologies.) [HKLM] -- WinPcapInst
O42 - Logiciel: WinRAR 4.11 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver
O42 - Logiciel: Windows Live - (.Microsoft Corporation.) [HKLM] -- WinLiveSuite
O42 - Logiciel: Windows Live - (.Microsoft Corporation.) [HKLM] -- {34319F1F-7CF2-4CC9-B357-1AE7D2FF3AC5}
O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM] -- {D45240D3-B6B3-4FF9-B243-54ECE3E10066}
O42 - Logiciel: Windows Live Essentials - (.Microsoft Corporation.) [HKLM] -- {FE044230-9CA5-43F7-9B58-5AC5A28A1F33}
O42 - Logiciel: Windows Live Family Safety - (.Microsoft Corporation.) [HKLM] -- {02A5BD31-16AC-45DF-BE9F-A3167BC4AFB2}
O42 - Logiciel: Windows Live Family Safety - (.Microsoft Corporation.) [HKLM] -- {0D87AE67-14EB-4C10-88A5-DA6C3181EB18}
O42 - Logiciel: Windows Live Family Safety - (.Microsoft Corporation.) [HKLM] -- {BFBE6E95-5724-47EC-85A0-74D436AD938F}
O42 - Logiciel: Windows Live ID Sign-in Assistant - (.Microsoft Corporation.) [HKLM] -- {1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}
O42 - Logiciel: Windows Live Installer - (.Microsoft Corporation.) [HKLM] -- {0B0F231F-CE6A-483D-AA23-77B364F75917}
O42 - Logiciel: Windows Live Language Selector - (.Microsoft Corporation.) [HKLM] -- {027E5FAB-1476-4C59-AAB4-32EF28520399}
O42 - Logiciel: Windows Live MIME IFilter - (.Microsoft Corporation.) [HKLM] -- {DA54F80E-261C-41A2-A855-549A144F2F59}
O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM] -- {9D56775A-93F3-44A3-8092-840E3826DE30}
O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM] -- {9FAE6E8D-E686-49F5-A574-0A58DFD9580C}
O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM] -- {C66824E4-CBB3-4851-BB3F-E8CFD6350923}
O42 - Logiciel: Windows Live Mesh - (.Microsoft Corporation.) [HKLM] -- {841F1FB4-FDF8-461C-A496-3E1CFD84C0B5}
O42 - Logiciel: Windows Live Mesh - (.Microsoft Corporation.) [HKLM] -- {A0C91188-C88F-4E86-93E6-CD7C9A266649}
O42 - Logiciel: Windows Live Mesh - (.Microsoft Corporation.) [HKLM] -- {DECDCB7C-58CC-4865-91AF-627F9798FE48}
O42 - Logiciel: Windows Live Mesh ActiveX Control for Remote Connections - (.Microsoft Corporation.) [HKLM] -- {2902F983-B4C1-44BA-B85D-5C6D52E2C441}
O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {2A3FC24C-6EC0-4519-A52B-FDA4EA9B2D24}
O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {AB61A2E9-37D3-485D-9085-19FBDF8CEF4A}
O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {E5B21F11-6933-4E0B-A25C-7963E3C07D11}
O42 - Logiciel: Windows Live Messenger Companion Core - (.Microsoft Corporation.) [HKLM] -- {78A96B4C-A643-4D0F-98C2-A8E16A6669F9}
O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM] -- {19BA08F7-C728-469C-8A35-BFBD3633BE08}
O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM] -- {6DEC8BD5-7574-47FA-B080-492BBBE2FEA3}
O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM] -- {92EA4134-10D1-418A-91E1-5A0453131A38}
O42 - Logiciel: Windows Live PIMT Platform - (.Microsoft Corporation.) [HKLM] -- {83C292B7-38A5-440B-A731-07070E81A64F}
O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM] -- {A9BDCA6B-3653-467B-AC83-94367DA3BFE3}
O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM] -- {C893D8C0-1BA0-4517-B11C-E89B65E72F70}
O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM] -- {D436F577-1695-4D2F-8B44-AC76C99E0002}
O42 - Logiciel: Windows Live Photo Gallery - (.Microsoft Corporation.) [HKLM] -- {3336F667-9049-4D46-98B6-4C743EEBC5B1}
O42 - Logiciel: Windows Live Photo Gallery - (.Microsoft Corporation.) [HKLM] -- {34F4D9A4-42C2-4348-BEF4-E553C84549E7}
O42 - Logiciel: Windows Live Remote Client - (.Microsoft Corporation.) [HKLM] -- {DF6D988A-EEA0-4277-AAB8-158E086E439B}
O42 - Logiciel: Windows Live Remote Client Resources - (.Microsoft Corporation.) [HKLM] -- {847B0532-55E3-4AAF-8D7B-E3A1A7CD17E5}
O42 - Logiciel: Windows Live Remote Client Resources - (.Microsoft Corporation.) [HKLM] -- {B750FA38-7AB0-42CB-ACBB-E7DBE9FF603F}
O42 - Logiciel: Windows Live Remote Service - (.Microsoft Corporation.) [HKLM] -- {E02A6548-6FDE-40E2-8ED9-119D7D7E641F}
O42 - Logiciel: Windows Live Remote Service Resources - (.Microsoft Corporation.) [HKLM] -- {5E2CD4FB-4538-4831-8176-05D653C3E6D4}
O42 - Logiciel: Windows Live Remote Service Resources - (.Microsoft Corporation.) [HKLM] -- {656DEEDE-F6AC-47CA-A568-A1B4E34B5760}
O42 - Logiciel: Windows Live SOXE - (.Microsoft Corporation.) [HKLM] -- {682B3E4F-696A-42DE-A41C-4C07EA1678B4}
O42 - Logiciel: Windows Live SOXE Definitions - (.Microsoft Corporation.) [HKLM] -- {200FEC62-3C34-4D60-9CE8-EC372E01C08F}
O42 - Logiciel: Windows Live UX Platform - (.Microsoft Corporation.) [HKLM] -- {CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}
O42 - Logiciel: Windows Live UX Platform Language Pack - (.Microsoft Corporation.) [HKLM] -- {05E379CC-F626-4E7D-8354-463865B303BF}
O42 - Logiciel: Windows Live UX Platform Language Pack - (.Microsoft Corporation.) [HKLM] -- {579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}
O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM] -- {3B9A92DA-6374-4872-B646-253F18624D5F}
O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM] -- {A726AE06-AAA3-43D1-87E3-70F510314F04}
O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM] -- {AAAFC670-569B-4A2F-82B4-42945E0DE3EF}
O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM] -- {AAF454FC-82CA-4F29-AB31-6A109485E76E}
O42 - Logiciel: Windows Live Writer Resources - (.Microsoft Corporation.) [HKLM] -- {62687B11-58B5-4A18-9BC3-9DF4CE03F194}
O42 - Logiciel: Windows Live Writer Resources - (.Microsoft Corporation.) [HKLM] -- {DDC8BDEE-DCAC-404D-8257-3E8D4B782467}
O42 - Logiciel: Xvid MPEG-4 Video Codec - (.Pas de propriétaire.) [HKLM] -- Xvid_is1
O42 - Logiciel: opensource - (.Your Company Name.) [HKLM] -- {3677D4D8-E5E0-49FC-B86E-06541CF00BBE}
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726}
---\\ HKCU & HKLM Software Keys
[HKCU\Software\ABBYY]
[HKCU\Software\ACD Systems]
[HKCU\Software\ATI]
[HKCU\Software\Adobe]
[HKCU\Software\AlterGeo]
[HKCU\Software\Anthropics]
[HKCU\Software\AppDataLow\Google]
[HKCU\Software\AppDataLow\Software\Adobe]
[HKCU\Software\AppDataLow\Software\Microsoft]
[HKCU\Software\AppDataLow\Software]
[HKCU\Software\AppDataLow]
[HKCU\Software\AuthenTec]
[HKCU\Software\Avira]
[HKCU\Software\Badoo]
[HKCU\Software\BenVista]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\CyberLink]
[HKCU\Software\EPSON]
[HKCU\Software\EasyBits]
[HKCU\Software\Evernote]
[HKCU\Software\FIXIO PC Utilities]
[HKCU\Software\Google]
[HKCU\Software\HP]
[HKCU\Software\Hewlett-Packard]
[HKCU\Software\HookNetwork]
[HKCU\Software\I.R.I.S.]
[HKCU\Software\IGearSettings]
[HKCU\Software\IM Providers]
[HKCU\Software\Intel]
[HKCU\Software\JavaSoft]
[HKCU\Software\Macromedia]
[HKCU\Software\MainConcept (Nikon)]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Netscape]
[HKCU\Software\Nikon]
[HKCU\Software\Nokia]
[HKCU\Software\ODBC]
[HKCU\Software\OpenOffice.org]
[HKCU\Software\OrdinarySoft]
[HKCU\Software\Organic]
[HKCU\Software\Ozone]
[HKCU\Software\PDFCreator]
[HKCU\Software\PPD Plugins]
[HKCU\Software\People]
[HKCU\Software\Pinnacle Systems]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\Safer Networking Limited]
[HKCU\Software\Siber Systems]
[HKCU\Software\Skype]
[HKCU\Software\Symantec]
[HKCU\Software\Synaptics]
[HKCU\Software\SysInternals]
[HKCU\Software\TomTom]
[HKCU\Software\Tracker Software]
[HKCU\Software\Trolltech]
[HKCU\Software\VOB]
[HKCU\Software\Vodafone]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\WinRAR]
[HKCU\Software\Wow6432Node]
[HKLM\Software\ABBYY]
[HKLM\Software\ACD Systems]
[HKLM\Software\AMD]
[HKLM\Software\ATI Technologies]
[HKLM\Software\ATI]
[HKLM\Software\Adobe]
[HKLM\Software\AdwCleaner]
[HKLM\Software\AppDataLow]
[HKLM\Software\AuthenTec]
[HKLM\Software\Avira]
[HKLM\Software\BenVista]
[HKLM\Software\CBSTEST]
[HKLM\Software\CXT]
[HKLM\Software\Caphyon]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\CyberLink]
[HKLM\Software\Cyberlink]
[HKLM\Software\DivXNetworks]
[HKLM\Software\EPSON]
[HKLM\Software\EasyBits]
[HKLM\Software\Evernote]
[HKLM\Software\Google]
[HKLM\Software\HPQ]
[HKLM\Software\Hewlett-Packard]
[HKLM\Software\IDT]
[HKLM\Software\ImageMagick]
[HKLM\Software\InstalledOptions]
[HKLM\Software\Insyde]
[HKLM\Software\Intel]
[HKLM\Software\JavaSoft]
[HKLM\Software\JreMetrics]
[HKLM\Software\Khronos]
[HKLM\Software\Macromedia]
[HKLM\Software\Malwarebytes' Anti-Malware (Trial)]
[HKLM\Software\Malwarebytes' Anti-Malware]
[HKLM\Software\MimarSinan]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\Nikon]
[HKLM\Software\Nokia]
[HKLM\Software\ODBC]
[HKLM\Software\One Time Password Providers]
[HKLM\Software\OpenOffice.org]
[HKLM\Software\PC Connectivity Solution]
[HKLM\Software\PCSuite]
[HKLM\Software\PDFCreator]
[HKLM\Software\Piano Med]
[HKLM\Software\Pinnacle Systems]
[HKLM\Software\Piriform]
[HKLM\Software\Planets]
[HKLM\Software\Plug-Ins]
[HKLM\Software\Policies]
[HKLM\Software\RTLSetup]
[HKLM\Software\Realtek Semiconductor Corp.]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\Safer Networking Limited]
[HKLM\Software\Siber Systems]
[HKLM\Software\Skype]
[HKLM\Software\Sonic]
[HKLM\Software\Sony Corporation]
[HKLM\Software\Symantec]
[HKLM\Software\Synaptics]
[HKLM\Software\TGUID]
[HKLM\Software\TomTom]
[HKLM\Software\Tracker Software]
[HKLM\Software\Uniblue]
[HKLM\Software\VideoLAN]
[HKLM\Software\Vodafone]
[HKLM\Software\Volatile]
[HKLM\Software\WildTangent]
[HKLM\Software\Win32 Services]
[HKLM\Software\WinPcap]
[HKLM\Software\WinRAR]
[HKLM\Software\Windows]
[HKLM\Software\Wow6432Node]
[HKLM\Software\X-AVCSD]
~ Scan Softwares in 00mn 00s
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 30/03/2012 - 15:13:14 - [173,312] ----D C:\Program Files (x86)\ABBYY FineReader 9.0 Sprint
O43 - CFD: 28/03/2012 - 22:28:35 - [109,252] ----D C:\Program Files (x86)\ACD Systems
O43 - CFD: 28/03/2012 - 20:45:57 - [1086,261] ----D C:\Program Files (x86)\Adobe
O43 - CFD: 29/12/2011 - 10:17:59 - [2,323] ----D C:\Program Files (x86)\AMD APP
O43 - CFD: 29/12/2011 - 10:17:48 - [66,593] ----D C:\Program Files (x86)\ATI Technologies
O43 - CFD: 28/03/2012 - 18:08:17 - [191,885] ----D C:\Program Files (x86)\Avira
O43 - CFD: 30/03/2012 - 13:43:54 - [1,064] ----D C:\Program Files (x86)\ByeBye
O43 - CFD: 28/04/2012 - 08:40:17 - [716,632] ----D C:\Program Files (x86)\Common Files
O43 - CFD: 29/12/2011 - 10:29:09 - [209,862] ----D C:\Program Files (x86)\CyberLink
O43 - CFD: 30/03/2012 - 15:06:40 - [7,994] ----D C:\Program Files (x86)\epson
O43 - CFD: 30/03/2012 - 15:08:28 - [169,674] ----D C:\Program Files (x86)\Epson Software
O43 - CFD: 28/03/2012 - 23:09:14 - [11,942] ----D C:\Program Files (x86)\FIXIO PC Utilities
O43 - CFD: 21/04/2012 - 06:29:40 - [525,234] ----D C:\Program Files (x86)\Google
O43 - CFD: 29/03/2012 - 17:10:43 - [453,001] ----D C:\Program Files (x86)\Hewlett-Packard
O43 - CFD: 09/04/2012 - 14:26:21 - [171,894] ----D C:\Program Files (x86)\HP
O43 - CFD: 15/04/2012 - 13:19:00 - [35,738] ----D C:\Program Files (x86)\HP Games
O43 - CFD: 29/12/2011 - 10:31:07 - [53,912] ----D C:\Program Files (x86)\HP SimplePass 2011
O43 - CFD: 30/03/2012 - 15:08:26 - [53,063] ----D C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 29/12/2011 - 10:22:44 - [37,927] ----D C:\Program Files (x86)\Intel
O43 - CFD: 12/04/2012 - 08:25:03 - [4,917] ----D C:\Program Files (x86)\Internet Explorer
O43 - CFD: 05/04/2012 - 23:56:58 - [254,873] ----D C:\Program Files (x86)\Java
O43 - CFD: 12/04/2012 - 08:25:59 - [11,573] ----D C:\Program Files (x86)\Malwarebytes' Anti-Malware
O43 - CFD: 29/03/2012 - 17:01:22 - [0] ----D C:\Program Files (x86)\Microsoft
O43 - CFD: 28/03/2012 - 18:53:44 - [38,002] ----D C:\Program Files (x86)\Microsoft Analysis Services
O43 - CFD: 28/03/2012 - 22:04:39 - [744,558] ----D C:\Program Files (x86)\Microsoft Office
O43 - CFD: 29/03/2012 - 23:42:50 - [36,634] ----D C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 04/11/2011 - 15:41:19 - [1,745] ----D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 31/03/2012 - 00:25:47 - [7,789] ----D C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 14/07/2009 - 07:32:38 - [0,025] ----D C:\Program Files (x86)\MSBuild
O43 - CFD: 28/03/2012 - 19:07:41 - [6,099] ----D C:\Program Files (x86)\MSECache
O43 - CFD: 29/03/2012 - 23:24:07 - [0] ----D C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 03/04/2012 - 11:34:10 - [17,414] ----D C:\Program Files (x86)\MyTomTom 3
O43 - CFD: 29/03/2012 - 20:38:46 - [45,255] ----D C:\Program Files (x86)\Nikon
O43 - CFD: 28/03/2012 - 23:33:13 - [132,890] ----D C:\Program Files (x86)\Nokia
O43 - CFD: 28/03/2012 - 17:47:43 - [20,218] R---D C:\Program Files (x86)\Online Services
O43 - CFD: 01/04/2012 - 20:24:26 - [353,458] ----D C:\Program Files (x86)\OpenOffice.org 3
O43 - CFD: 28/03/2012 - 23:32:40 - [20,785] ----D C:\Program Files (x86)\PC Connectivity Solution
O43 - CFD: 28/03/2012 - 23:47:59 - [34,655] ----D C:\Program Files (x86)\PDFCreator
O43 - CFD: 28/03/2012 - 23:13:33 - [12,705] ----D C:\Program Files (x86)\PhotoZoom Pro 3
O43 - CFD: 31/03/2012 - 11:43:04 - [78,384] ----D C:\Program Files (x86)\Pinnacle
O43 - CFD: 28/03/2012 - 23:36:34 - [56,148] ----D C:\Program Files (x86)\PlayerTuto.com
O43 - CFD: 28/03/2012 - 22:53:12 - [67,375] ----D C:\Program Files (x86)\Portrait Professional 10
O43 - CFD: 29/12/2011 - 10:20:08 - [16,710] ----D C:\Program Files (x86)\Realtek
O43 - CFD: 14/07/2009 - 07:32:38 - [37,345] ----D C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 28/03/2012 - 18:27:46 - [48,858] ----D C:\Program Files (x86)\Siber Systems
O43 - CFD: 28/03/2012 - 23:58:53 - [16,513] R---D C:\Program Files (x86)\Skype
O43 - CFD: 29/03/2012 - 21:42:05 - [0] ----D C:\Program Files (x86)\Software
O43 - CFD: 15/04/2012 - 10:00:51 - [67,332] ----D C:\Program Files (x86)\Spybot - Search & Destroy
O43 - CFD: 03/04/2012 - 11:34:12 - [0,021] ----D C:\Program Files (x86)\TomTom International B.V
O43 - CFD: 28/04/2012 - 09:35:37 - [10,323] ----D C:\Program Files (x86)\TubeMaster++
O43 - CFD: 12/04/2012 - 08:41:20 - [17,341] ----D C:\Program Files (x86)\Uniblue
O43 - CFD: 14/07/2009 - 06:57:06 - [0] ----D C:\Program Files (x86)\Uninstall Information
O43 - CFD: 28/03/2012 - 21:19:00 - [0] ----D C:\Program Files (x86)\Video Codec
O43 - CFD: 28/03/2012 - 23:27:14 - [88,797] ----D C:\Program Files (x86)\VideoLAN
O43 - CFD: 29/03/2012 - 20:30:16 - [5,113] ----D C:\Program Files (x86)\VisiPics
O43 - CFD: 28/03/2012 - 18:40:07 - [6,048] ----D C:\Program Files (x86)\Vista Start Menu
O43 - CFD: 31/03/2012 - 11:31:15 - [20,756] ----D C:\Program Files (x86)\Vodafone
O43 - CFD: 29/03/2012 - 23:39:35 - [0,500] ----D C:\Program Files (x86)\Windows Defender
O43 - CFD: 29/03/2012 - 17:07:23 - [187,472] ----D C:\Program Files (x86)\Windows Live
O43 - CFD: 29/03/2012 - 23:39:36 - [5,895] ----D C:\Program Files (x86)\Windows Mail
O43 - CFD: 29/03/2012 - 23:39:36 - [5,092] ----D C:\Program Files (x86)\Windows Media Player
O43 - CFD: 14/07/2009 - 07:32:38 - [11,632] ----D C:\Program Files (x86)\Windows NT
O43 - CFD: 29/03/2012 - 23:39:36 - [4,213] ----D C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 21/11/2010 - 05:31:38 - [0,181] ----D C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 29/03/2012 - 23:39:39 - [5,717] ----D C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 05/04/2012 - 23:55:55 - [0,227] ----D C:\Program Files (x86)\WinPcap
O43 - CFD: 28/03/2012 - 20:25:00 - [4,110] ----D C:\Program Files (x86)\WinRAR
O43 - CFD: 28/03/2012 - 21:19:04 - [1,361] ----D C:\Program Files (x86)\Xvid
O43 - CFD: 28/04/2012 - 09:58:35 - [11,407] ----D C:\Program Files (x86)\ZHPDiag
O43 - CFD: 30/03/2012 - 15:12:26 - [7,724] ----D C:\Program Files (x86)\Common Files\ABBYY
O43 - CFD: 28/03/2012 - 22:28:39 - [12,730] ----D C:\Program Files (x86)\Common Files\ACD Systems
O43 - CFD: 28/03/2012 - 19:57:36 - [324,330] ----D C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 28/03/2012 - 19:55:22 - [30,670] ----D C:\Program Files (x86)\Common Files\Adobe AIR
O43 - CFD: 29/12/2011 - 10:31:00 - [15,264] ----D C:\Program Files (x86)\Common Files\AuthenTec
O43 - CFD: 28/03/2012 - 22:04:49 - [0,201] ----D C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 31/03/2012 - 11:31:15 - [3,638] ----D C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 29/12/2011 - 10:18:13 - [13,605] ----D C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 29/12/2011 - 10:27:54 - [0,007] ----D C:\Program Files (x86)\Common Files\Intel Corporation
O43 - CFD: 28/04/2012 - 08:40:17 - [1,201] ----D C:\Program Files (x86)\Common Files\Java
O43 - CFD: 30/03/2012 - 08:45:58 - [212,337] ----D C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 29/03/2012 - 20:13:31 - [11,223] ----D C:\Program Files (x86)\Common Files\Nikon
O43 - CFD: 28/03/2012 - 23:33:13 - [10,590] ----D C:\Program Files (x86)\Common Files\Nokia
O43 - CFD: 31/03/2012 - 11:47:50 - [17,956] ----D C:\Program Files (x86)\Common Files\Pinnacle
O43 - CFD: 29/12/2011 - 10:18:59 - [0,155] ----D C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 14/07/2009 - 05:20:08 - [0,003] ----D C:\Program Files (x86)\Common Files\Services
O43 - CFD: 28/03/2012 - 23:58:53 - [2,056] ----D C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 14/07/2009 - 05:20:08 - [39,200] ----D C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 29/03/2012 - 23:40:45 - [13,743] ----D C:\Program Files (x86)\Common Files\System
O43 - CFD: 04/11/2011 - 15:38:34 - [0] ----D C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 30/03/2012 - 15:12:26 - [1,804] ----D C:\ProgramData\ABBYY
O43 - CFD: 28/03/2012 - 22:28:37 - [0,186] ----D C:\ProgramData\ACD Systems
O43 - CFD: 02/04/2012 - 21:46:15 - [408,230] ----D C:\ProgramData\Adobe
O43 - CFD: 14/07/2009 - 07:08:56 - [0] ----D C:\ProgramData\Application Data
O43 - CFD: 29/12/2011 - 10:43:56 - [0,000] ----D C:\ProgramData\ATI
O43 - CFD: 28/03/2012 - 18:22:00 - [65,020] ----D C:\ProgramData\Avira
O43 - CFD: 28/03/2012 - 16:46:02 - [0] ----D C:\ProgramData\Bureau
O43 - CFD: 28/03/2012 - 23:58:00 - [0,000] ----D C:\ProgramData\Common Files
O43 - CFD: 29/03/2012 - 21:58:33 - [0,006] ----D C:\ProgramData\CyberLink
O43 - CFD: 14/07/2009 - 07:08:56 - [0] ----D C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - 07:08:56 - [0] ----D C:\ProgramData\Documents
O43 - CFD: 29/12/2011 - 10:31:05 - [51,440] ----D C:\ProgramData\Downloaded Installations
O43 - CFD: 29/03/2012 - 20:13:26 - [0,000] ----D C:\ProgramData\EnterNHelp
O43 - CFD: 02/04/2012 - 22:21:37 - [8,183] ----D C:\ProgramData\EPSON
O43 - CFD: 28/03/2012 - 16:46:02 - [0] ----D C:\ProgramData\Favoris
O43 - CFD: 14/07/2009 - 07:08:56 - [0] ----D C:\ProgramData\Favorites
O43 - CFD: 29/03/2012 - 23:02:48 - [1,163] ----D C:\ProgramData\Google
O43 - CFD: 02/04/2012 - 13:39:48 - [51,389] ----D C:\ProgramData\Hewlett-Packard
O43 - CFD: 02/04/2012 - 13:42:44 - [0,001] ----D C:\ProgramData\HP
O43 - CFD: 31/03/2012 - 11:32:00 - [0,001] ----D C:\ProgramData\InstallShield
O43 - CFD: 29/12/2011 - 10:42:55 - [0,001] ----D C:\ProgramData\Intel
O43 - CFD: 05/04/2012 - 20:43:57 - [16,365] ----D C:\ProgramData\Malwarebytes
O43 - CFD: 28/03/2012 - 16:46:02 - [0] ----D C:\ProgramData\Menu Démarrer
O43 - CFD: 15/04/2012 - 19:28:08 - [363,686] -S--D C:\ProgramData\Microsoft
O43 - CFD: 12/04/2012 - 07:57:26 - [0,058] ----D C:\ProgramData\Microsoft Help
O43 - CFD: 28/03/2012 - 16:46:02 - [0] ----D C:\ProgramData\Modèles
O43 - CFD: 29/03/2012 - 20:33:44 - [0,133] ----D C:\ProgramData\Nikon
O43 - CFD: 28/03/2012 - 23:33:13 - [77,523] ----D C:\ProgramData\Nokia
O43 - CFD: 28/03/2012 - 23:32:01 - [453,223] ----D C:\ProgramData\NokiaInstallerCache
O43 - CFD: 28/03/2012 - 23:33:52 - [0,169] ----D C:\ProgramData\PC Suite
O43 - CFD: 31/03/2012 - 11:45:58 - [168,308] ----D C:\ProgramData\Pinnacle
O43 - CFD: 29/12/2011 - 10:21:04 - [4,250] ----D C:\ProgramData\Ralink Driver
O43 - CFD: 28/03/2012 - 20:07:56 - [0,003] ----D C:\ProgramData\regid.1986-12.com.adobe
O43 - CFD: 28/03/2012 - 18:28:34 - [0,000] ----D C:\ProgramData\RoboForm
O43 - CFD: 28/03/2012 - 23:58:53 - [36,135] ----D C:\ProgramData\Skype
O43 - CFD: 29/03/2012 - 21:42:05 - [0] ----D C:\ProgramData\Software
O43 - CFD: 27/04/2012 - 20:04:05 - [9,291] ----D C:\ProgramData\Spybot - Search & Destroy
O43 - CFD: 14/07/2009 - 07:08:56 - [0] ----D C:\ProgramData\Start Menu
O43 - CFD: 28/03/2012 - 23:22:20 - [0,000] ----D C:\ProgramData\Sun
O43 - CFD: 29/12/2011 - 10:42:57 - [0,002] ----D C:\ProgramData\Synaptics
O43 - CFD: 29/12/2011 - 10:35:28 - [0,086] ----D C:\ProgramData\Temp
O43 - CFD: 14/07/2009 - 07:08:56 - [0] ----D C:\ProgramData\Templates
O43 - CFD: 30/03/2012 - 15:10:14 - [0,003] ----D C:\ProgramData\UDL
O43 - CFD: 29/03/2012 - 20:13:26 - [0,000] ----D C:\ProgramData\Ultima_T15
O43 - CFD: 31/03/2012 - 11:31:31 - [0,000] ----D C:\ProgramData\Vodafone
O43 - CFD: 15/04/2012 - 13:15:27 - [0,545] ----D C:\ProgramData\WildTangent
O43 - CFD: 16/04/2012 - 07:42:57 - [7,897] --H-D C:\ProgramData\{6AD8E59C-250C-4201-B5BA-56ADEF76FF46}
O43 - CFD: 04/11/2011 - 15:48:36 - [45,653] ----D C:\ProgramData\{A8DA1505-E615-42BB-BB77-74D5CC91FE7E}
O43 - CFD: 28/03/2012 - 22:30:00 - [0,000] ----D C:\Users\Christian\AppData\Roaming\ACD Systems
O43 - CFD: 01/04/2012 - 09:50:13 - [17,997] ----D C:\Users\Christian\AppData\Roaming\Adobe
O43 - CFD: 31/03/2012 - 21:09:38 - [0,001] ----D C:\Users\Christian\AppData\Roaming\Anthropics
O43 - CFD: 28/03/2012 - 17:52:43 - [0] ----D C:\Users\Christian\AppData\Roaming\ATI
O43 - CFD: 29/03/2012 - 18:04:19 - [0,006] ----D C:\Users\Christian\AppData\Roaming\Autodesk
O43 - CFD: 28/03/2012 - 18:13:52 - [0,593] ----D C:\Users\Christian\AppData\Roaming\Avira
O43 - CFD: 29/03/2012 - 21:58:02 - [0] ----D C:\Users\Christian\AppData\Roaming\CyberLink
O43 - CFD: 02/04/2012 - 22:21:36 - [0,008] ----D C:\Users\Christian\AppData\Roaming\Epson
O43 - CFD: 28/03/2012 - 23:10:34 - [5,030] ----D C:\Users\Christian\AppData\Roaming\FIXIO PC Utilities
O43 - CFD: 29/03/2012 - 23:06:48 - [0,011] ----D C:\Users\Christian\AppData\Roaming\Google
O43 - CFD: 14/04/2012 - 18:48:15 - [0,026] ----D C:\Users\Christian\AppData\Roaming\Hewlett-Packard
O43 - CFD: 02/04/2012 - 13:39:48 - [0,000] ----D C:\Users\Christian\AppData\Roaming\Hewlett-Packard Company
O43 - CFD: 16/04/2012 - 07:42:57 - [0] ----D C:\Users\Christian\AppData\Roaming\hpqlog
O43 - CFD: 16/04/2012 - 15:04:27 - [0,001] ----D C:\Users\Christian\AppData\Roaming\HpUpdate
O43 - CFD: 28/03/2012 - 17:51:16 - [0] ----D C:\Users\Christian\AppData\Roaming\Identities
O43 - CFD: 30/03/2012 - 15:07:49 - [0] ----D C:\Users\Christian\AppData\Roaming\InstallShield
O43 - CFD: 28/03/2012 - 17:57:16 - [0,001] ----D C:\Users\Christian\AppData\Roaming\Macromedia
O43 - CFD: 05/04/2012 - 20:44:04 - [0,155] ----D C:\Users\Christian\AppData\Roaming\Malwarebytes
O43 - CFD: 29/12/2011 - 19:06:24 - [0] ----D C:\Users\Christian\AppData\Roaming\Media Center Programs
O43 - CFD: 06/04/2012 - 05:51:37 - [38,508] -S--D C:\Users\Christian\AppData\Roaming\Microsoft
O43 - CFD: 28/03/2012 - 21:30:14 - [2,271] ----D C:\Users\Christian\AppData\Roaming\Mozilla
O43 - CFD: 31/03/2012 - 19:35:37 - [0,000] ----D C:\Users\Christian\AppData\Roaming\Nikon
O43 - CFD: 01/04/2012 - 23:21:19 - [2,199] ----D C:\Users\Christian\AppData\Roaming\Nokia
O43 - CFD: 01/04/2012 - 23:21:20 - [0,050] ----D C:\Users\Christian\AppData\Roaming\Nokia Suite
O43 - CFD: 01/04/2012 - 20:25:28 - [1,430] ----D C:\Users\Christian\AppData\Roaming\OpenOffice.org
O43 - CFD: 01/04/2012 - 23:24:47 - [0,419] ----D C:\Users\Christian\AppData\Roaming\PC Suite
O43 - CFD: 28/03/2012 - 18:29:36 - [0,077] ----D C:\Users\Christian\AppData\Roaming\RoboForm
O43 - CFD: 06/04/2012 - 05:51:38 - [1,843] ----D C:\Users\Christian\AppData\Roaming\Skype
O43 - CFD: 28/03/2012 - 21:02:36 - [0,006] ----D C:\Users\Christian\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
O43 - CFD: 28/03/2012 - 16:47:01 - [0] ----D C:\Users\Christian\AppData\Roaming\Symantec
O43 - CFD: 28/03/2012 - 17:51:42 - [0] ----D C:\Users\Christian\AppData\Roaming\Synaptics
O43 - CFD: 05/04/2012 - 11:05:20 - [0] ----D C:\Users\Christian\AppData\Roaming\Tracker Software
O43 - CFD: 28/03/2012 - 22:57:58 - [6,857] ----D C:\Users\Christian\AppData\Roaming\Uniblue
O43 - CFD: 16/04/2012 - 17:57:20 - [0,092] ----D C:\Users\Christian\AppData\Roaming\Vista Start Menu
O43 - CFD: 25/04/2012 - 21:05:33 - [0,077] ----D C:\Users\Christian\AppData\Roaming\vlc
O43 - CFD: 31/03/2012 - 11:32:02 - [2,700] ----D C:\Users\Christian\AppData\Roaming\Vodafone
O43 - CFD: 28/03/2012 - 23:36:34 - [0,019] ----D C:\Users\Christian\AppData\Roaming\Weecast
O43 - CFD: 28/03/2012 - 20:39:43 - [0,000] ----D C:\Users\Christian\AppData\Roaming\WinRAR
O43 - CFD: 28/03/2012 - 19:28:54 - [0,003] ----D C:\Users\Christian\AppData\Roaming\_MDLogs
O43 - CFD: 30/03/2012 - 15:12:55 - [0] ----D C:\Users\Christian\AppData\Local\ABBYY
O43 - CFD: 28/03/2012 - 22:30:01 - [0,759] ----D C:\Users\Christian\AppData\Local\ACD Systems
O43 - CFD: 31/03/2012 - 23:32:10 - [279,098] ----D C:\Users\Christian\AppData\Local\Adobe
O43 - CFD: 28/03/2012 - 16:46:16 - [0] ----D C:\Users\Christian\AppData\Local\Application Data
O43 - CFD: 28/03/2012 - 17:52:43 - [0,056] ----D C:\Users\Christian\AppData\Local\ATI
O43 - CFD: 28/03/2012 - 16:47:40 - [0,003] ----D C:\Users\Christian\AppData\Local\AuthenTec
O43 - CFD: 23/04/2012 - 19:19:31 - [35,539] ----D C:\Users\Christian\AppData\Local\CrashDumps
O43 - CFD: 29/03/2012 - 21:58:02 - [0,005] ----D C:\Users\Christian\AppData\Local\CyberLink
O43 - CFD: 15/04/2012 - 13:59:15 - [13,385] ----D C:\Users\Christian\AppData\Local\Diagnostics
O43 - CFD: 31/03/2012 - 11:46:41 - [137,721] ----D C:\Users\Christian\AppData\Local\Downloaded Installations
O43 - CFD: 01/04/2012 - 22:01:28 - [0] ----D C:\Users\Christian\AppData\Local\Evernote
O43 - CFD: 08/04/2012 - 10:41:04 - [1,050] ----D C:\Users\Christian\AppData\Local\Facebook
O43 - CFD: 29/03/2012 - 23:03:06 - [403,608] ----D C:\Users\Christian\AppData\Local\Google
O43 - CFD: 28/03/2012 - 17:48:11 - [0,826] ----D C:\Users\Christian\AppData\Local\Hewlett-Packard
O43 - CFD: 14/04/2012 - 18:48:14 - [0,003] ----D C:\Users\Christian\AppData\Local\Hewlett-Packard_Company
O43 - CFD: 28/03/2012 - 16:46:16 - [0] ----D C:\Users\Christian\AppData\Local\Historique
O43 - CFD: 02/04/2012 - 13:47:57 - [0,029] ----D C:\Users\Christian\AppData\Local\HP
O43 - CFD: 12/04/2012 - 11:44:49 - [-2031,164] ----D C:\Users\Christian\AppData\Local\Microsoft
O43 - CFD: 23/04/2012 - 10:42:50 - [0,547] ----D C:\Users\Christian\AppData\Local\Microsoft Games
O43 - CFD: 30/03/2012 - 09:36:48 - [0,079] ----D C:\Users\Christian\AppData\Local\Microsoft Help
O43 - CFD: 31/03/2012 - 19:35:37 - [4,260] ----D C:\Users\Christian\AppData\Local\Nikon
O43 - CFD: 28/03/2012 - 23:33:56 - [0,470] ----D C:\Users\Christian\AppData\Local\Nokia
O43 - CFD: 31/03/2012 - 11:51:10 - [0,001] ----D C:\Users\Christian\AppData\Local\NokiaAccount
O43 - CFD: 28/03/2012 - 22:57:42 - [0] ----D C:\Users\Christian\AppData\Local\PackageAware
O43 - CFD: 16/04/2012 - 07:42:57 - [0] ----D C:\Users\Christian\AppData\Local\Pinnacle
O43 - CFD: 28/03/2012 - 16:48:11 - [0,000] ----D C:\Users\Christian\AppData\Local\RemEngine
O43 - CFD: 28/03/2012 - 22:32:30 - [0] ----D C:\Users\Christian\AppData\Local\Software
O43 - CFD: 28/04/2012 - 09:56:20 - [3,264] ----D C:\Users\Christian\AppData\Local\Temp
O43 - CFD: 28/03/2012 - 16:46:16 - [0] ----D C:\Users\Christian\AppData\Local\Temporary Internet Files
O43 - CFD: 03/04/2012 - 11:34:16 - [0,111] ----D C:\Users\Christian\AppData\Local\TomTom
O43 - CFD: 01/04/2012 - 22:26:11 - [270,770] ----D C:\Users\Christian\AppData\Local\VirtualStore
O43 - CFD: 28/04/2012 - 08:09:51 - [0,059] ----D C:\Users\Christian\AppData\Local\Windows Live
O43 - CFD: 28/03/2012 - 19:20:37 - [0] ----D C:\Users\Christian\AppData\Local\{016380D2-29FD-4747-8DB9-0D02804813B6}
O43 - CFD: 05/04/2012 - 19:00:56 - [0] ----D C:\Users\Christian\AppData\Local\{02A400BD-DD97-4ECD-A90C-26FF6D8903EF}
O43 - CFD: 19/04/2012 - 13:24:05 - [0] ----D C:\Users\Christian\AppData\Local\{02E9BE2F-41E4-44D8-AB9D-45C2D127D2FC}
O43 - CFD: 20/04/2012 - 10:28:13 - [0] ----D C:\Users\Christian\AppData\Local\{0701A6DC-88F3-475F-8979-6F19CEF753AD}
O43 - CFD: 10/04/2012 - 07:30:53 - [0] ----D C:\Users\Christian\AppData\Local\{0BBB39F1-C2AF-4EE6-A09B-5C927F9FCEC8}
O43 - CFD: 16/04/2012 - 19:49:10 - [0] ----D C:\Users\Christian\AppData\Local\{0DC03053-4373-48B6-97BB-8F81B107A023}
O43 - CFD: 08/04/2012 - 11:29:22 - [0] ----D C:\Users\Christian\AppData\Local\{1256C65B-468E-4C6E-ABF0-0D9ACA4C1AD6}
O43 - CFD: 26/04/2012 - 06:25:41 - [0] ----D C:\Users\Christian\AppData\Local\{14750432-52BA-43AF-B8B5-901A56247D23}
O43 - CFD: 03/04/2012 - 06:54:36 - [0] ----D C:\Users\Christian\AppData\Local\{1598D104-9D91-4285-9670-B6122574CD49}
O43 - CFD: 01/04/2012 - 14:09:53 - [0] ----D C:\Users\Christian\AppData\Local\{1EED4E41-0042-45B3-9CCF-E26D61553D70}
O43 - CFD: 13/04/2012 - 23:53:39 - [0] ----D C:\Users\Christian\AppData\Local\{1F29C955-BD4C-4E86-B705-9D7A2FB9D959}
O43 - CFD: 07/04/2012 - 09:07:59 - [0] ----D C:\Users\Christian\AppData\Local\{20C8B1F8-5E75-41A7-A12D-CD6A68C48250}
O43 - CFD: 12/04/2012 - 20:39:06 - [0] ----D C:\Users\Christian\AppData\Local\{23676AA9-6D86-4A1D-A602-EC3E376704E3}
O43 - CFD: 26/04/2012 - 06:25:53 - [0] ----D C:\Users\Christian\AppData\Local\{28CE5770-F23A-4154-AFF5-A572D4C3A43F}
O43 - CFD: 22/04/2012 - 23:11:14 - [0] ----D C:\Users\Christian\AppData\Local\{2DE9B07E-8918-4C03-9982-858004527F10}
O43 - CFD: 10/04/2012 - 20:16:33 - [0] ----D C:\Users\Christian\AppData\Local\{2EE104A6-D61B-4299-8A43-1D3CB0D6ECE6}
O43 - CFD: 21/04/2012 - 08:17:23 - [0] ----D C:\Users\Christian\AppData\Local\{343B6863-C2BA-4D87-9E4B-BEA196EBDDD6}
O43 - CFD: 12/04/2012 - 08:28:50 - [0] ----D C:\Users\Christian\AppData\Local\{346049D0-A011-431A-9BF8-1288AC4C5FFC}
O43 - CFD: 30/03/2012 - 21:07:49 - [0] ----D C:\Users\Christian\AppData\Local\{34EA9907-F7D9-46AB-A151-9ED33E9EE19B}
O43 - CFD: 24/04/2012 - 20:45:45 - [0] ----D C:\Users\Christian\AppData\Local\{3AE8CC4D-9C02-4B9D-BBEF-BC4894496D1B}
O43 - CFD: 01/04/2012 - 01:16:20 - [0] ----D C:\Users\Christian\AppData\Local\{463A8329-3F07-4B2B-910D-DB833644E10A}
O43 - CFD: 27/04/2012 - 20:09:06 - [0] ----D C:\Users\Christian\AppData\Local\{47DFC876-846E-4D2C-ABFA-76A38E99AAF7}
O43 - CFD: 02/04/2012 - 17:28:39 - [0] ----D C:\Users\Christian\AppData\Local\{4AC7715C-6144-4C0E-A9FF-6256B963D558}
O43 - CFD: 12/04/2012 - 20:39:06 - [0] ----D C:\Users\Christian\AppData\Local\{55D1AEDB-A6C4-4F7D-A1E7-61E904F5B054}
O43 - CFD: 30/03/2012 - 21:07:38 - [0] ----D C:\Users\Christian\AppData\Local\{5E327949-88F1-459A-8D3B-15D1DBA14389}
O43 - CFD: 05/04/2012 - 19:56:28 - [0] ----D C:\Users\Christian\AppData\Local\{62431264-21D4-4154-BC6F-F3240B0B7E31}
O43 - CFD: 11/04/2012 - 15:40:31 - [0] ----D C:\Users\Christian\AppData\Local\{62740ABA-C222-4E8D-93D8-1DD83EA60484}
O43 - CFD: 05/04/2012 - 20:43:25 - [0] ----D C:\Users\Christian\AppData\Local\{6346F745-4E79-41F4-88E5-959D6485CFF0}
O43 - CFD: 05/04/2012 - 19:00:45 - [0] ----D C:\Users\Christian\AppData\Local\{63A7978A-C219-451A-B4F9-EDBB9FF61997}
O43 - CFD: 14/04/2012 - 22:59:46 - [0] ----D C:\Users\Christian\AppData\Local\{69D77470-B2A7-4D9E-A0A9-0DA93BCA57A5}
O43 - CFD: 14/04/2012 - 16:03:30 - [0] ----D C:\Users\Christian\AppData\Local\{6A59EFC0-8B78-4EFA-AA44-954E1F586A4D}
O43 - CFD: 01/04/2012 - 01:16:09 - [0] ----D C:\Users\Christian\AppData\Local\{7164B01A-8A01-41EC-8C62-87EFD825F086}
O43 - CFD: 13/04/2012 - 23:53:50 - [0] ----D C:\Users\Christian\AppData\Local\{7238293E-D00C-43B9-A194-1EAFA53BF70C}
O43 - CFD: 25/04/2012 - 18:25:12 - [0] ----D C:\Users\Christian\AppData\Local\{72C22367-2851-48F8-9025-E276DC64E4DE}
O43 - CFD: 03/04/2012 - 20:11:29 - [0] ----D C:\Users\Christian\AppData\Local\{742C73CF-3237-464D-87EE-9F6027D85C38}
O43 - CFD: 15/04/2012 - 11:20:51 - [0] ----D C:\Users\Christian\AppData\Local\{74ED5A67-31B4-4B18-84FA-585C86DFF2CB}
O43 - CFD: 29/03/2012 - 17:08:29 - [0] ----D C:\Users\Christian\AppData\Local\{76ECD492-A58D-41BA-A28F-B16AFDE415A4}
O43 - CFD: 30/03/2012 - 08:43:32 - [0] ----D C:\Users\Christian\AppData\Local\{7966AEED-0C4C-4C06-B761-CAEA59DC5DC9}
O43 - CFD: 05/04/2012 - 19:56:39 - [0] ----D C:\Users\Christian\AppData\Local\{7A090F26-6F24-45EC-8262-BBDB48EA7393}
O43 - CFD: 25/04/2012 - 08:56:48 - [0] ----D C:\Users\Christian\AppData\Local\{81FB9A5A-D700-437C-A65B-CCCD0DB89DD6}
O43 - CFD: 05/04/2012 - 20:43:14 - [0] ----D C:\Users\Christian\AppData\Local\{834F29A1-BF3C-4A0F-A1A4-F5F286DCF168}
O43 - CFD: 07/04/2012 - 21:55:12 - [0] ----D C:\Users\Christian\AppData\Local\{887E20E7-0B39-4049-BB62-7D75E59D4D12}
O43 - CFD: 07/04/2012 - 09:07:48 - [0] ----D C:\Users\Christian\AppData\Local\{8B5AF968-7980-46D8-9ABE-B03C82A4EBBA}
O43 - CFD: 09/04/2012 - 07:55:59 - [0] ----D C:\Users\Christian\AppData\Local\{8CA52709-22EA-4307-B96B-4E952D0FFCB5}
O43 - CFD: 01/04/2012 - 14:10:04 - [0] ----D C:\Users\Christian\AppData\Local\{8F7FEF90-4A35-4983-A646-8EA4F199F4CA}
O43 - CFD: 08/04/2012 - 11:29:11 - [0] ----D C:\Users\Christian\AppData\Local\{8F990778-21D8-4EA3-9063-DD11D2F17912}
O43 - CFD: 09/04/2012 - 07:44:04 - [0] ----D C:\Users\Christian\AppData\Local\{93A4749D-E656-4B83-AB07-D5E5A1A6DD7F}
O43 - CFD: 29/03/2012 - 15:13:29 - [0] ----D C:\Users\Christian\AppData\Local\{949C5E72-7189-4F8B-825A-355A7C970AEF}
O43 - CFD: 06/04/2012 - 09:26:44 - [0] ----D C:\Users\Christian\AppData\Local\{951AF614-AC19-4A51-831E-A9A12477FFE9}
O43 - CFD: 21/04/2012 - 08:17:35 - [0] ----D C:\Users\Christian\AppData\Local\{969AEF61-BA5C-4458-B939-86AB402A158C}
O43 - CFD: 03/04/2012 - 19:35:51 - [0] ----D C:\Users\Christian\AppData\Local\{9AC64421-A215-4F04-A35A-A187965E2906}
O43 - CFD: 19/04/2012 - 13:23:54 - [0] ----D C:\Users\Christian\AppData\Local\{A37E2EF7-683E-4A40-9264-783A65AC7AD8}
O43 - CFD: 20/04/2012 - 10:28:02 - [0] ----D C:\Users\Christian\AppData\Local\{A7132EC8-7298-4387-ABF1-7FD0037472A5}
O43 - CFD: 16/04/2012 - 07:48:50 - [0] ----D C:\Users\Christian\AppData\Local\{AD94E9DE-27FA-4085-B06E-CB28B45D03BF}
O43 - CFD: 09/04/2012 - 07:44:15 - [0] ----D C:\Users\Christian\AppData\Local\{AE5B8C06-53D9-4461-BE97-C27428EC7184}
O43 - CFD: 03/04/2012 - 20:11:18 - [0] ----D C:\Users\Christian\AppData\Local\{B08E5309-FD14-40A0-9BDF-5A36AC336500}
O43 - CFD: 16/04/2012 - 19:49:22 - [0] ----D C:\Users\Christian\AppData\Local\{B3655D58-0AE9-4075-AFA3-5345A084BE25}
O43 - CFD: 12/04/2012 - 08:29:01 - [0] ----D C:\Users\Christian\AppData\Local\{B44AA780-E798-4863-8910-85394F422E4C}
O43 - CFD: 11/04/2012 - 15:40:42 - [0] ----D C:\Users\Christian\AppData\Local\{B8ACB72B-7BF0-4AA4-A898-65B675C66788}
O43 - CFD: 25/04/2012 - 18:24:59 - [0] ----D C:\Users\Christian\AppData\Local\{BFB2A31B-95BE-4A51-ADB1-065576ED96B9}
O43 - CFD: 22/04/2012 - 23:11:03 - [0] ----D C:\Users\Christian\AppData\Local\{C18D7B8F-8048-4A8E-8267-AF91E5A1BBBF}
O43 - CFD: 30/03/2012 - 08:42:45 - [0] ----D C:\Users\Christian\AppData\Local\{C3ADD385-B97F-4CCF-9207-83A32F4DA767}
O43 - CFD: 03/04/2012 - 06:54:24 - [0] ----D C:\Users\Christian\AppData\Local\{C8FFE6EE-CADB-4C42-AFED-1CE92E8FC5E7}
O43 - CFD: 24/04/2012 - 20:45:34 - [0] ----D C:\Users\Christian\AppData\Local\{CA1DD83B-D441-4817-9890-7791FBC199E8}
O43 - CFD: 04/04/2012 - 20:57:14 - [0] ----D C:\Users\Christian\AppData\Local\{CC1538C9-7B5D-4125-94F9-51D3F6F479C5}
O43 - CFD: 22/04/2012 - 11:10:42 - [0] ----D C:\Users\Christian\AppData\Local\{CC67EC4E-5665-4A4B-BE14-E0CBD4FDD3D5}
O43 - CFD: 27/04/2012 - 20:08:55 - [0] ----D C:\Users\Christian\AppData\Local\{CD55B21B-1AD8-446F-8B88-132C2761E9B3}
O43 - CFD: 31/03/2012 - 12:00:29 - [0] ----D C:\Users\Christian\AppData\Local\{CE0771DB-F79A-4F8D-AE83-5580ADA00F28}
O43 - CFD: 05/04/2012 - 19:57:54 - [0] ----D C:\Users\Christian\AppData\Local\{CECF066D-2BDF-4753-98C1-667E530EC6A0}
O43 - CFD: 31/03/2012 - 12:00:18 - [0] ----D C:\Users\Christian\AppData\Local\{CEEBF3E3-8224-47FF-B468-D5B93480B1E6}
O43 - CFD: 28/03/2012 - 19:21:06 - [0] ----D C:\Users\Christian\AppData\Local\{CF86CA14-90C2-46FF-AF19-08772A23A2C1}
O43 - CFD: 15/04/2012 - 11:20:40 - [0] ----D C:\Users\Christian\AppData\Local\{D2491F16-196D-41EE-A56C-5B2A5B071613}
O43 - CFD: 27/04/2012 - 08:08:34 - [0] ----D C:\Users\Christian\AppData\Local\{D41EB9EF-5F52-4FB5-AE25-8CAF01338E6B}
O43 - CFD: 31/03/2012 - 11:30:58 - [11,083] ----D C:\Users\Christian\AppData\Local\{D53238E8-3427-491E-A57E-097FA966AAC1}
O43 - CFD: 28/04/2012 - 08:09:35 - [0] ----D C:\Users\Christian\AppData\Local\{D7C52278-CB44-431E-A292-310D83399A7A}
O43 - CFD: 28/04/2012 - 08:09:46 - [0] ----D C:\Users\Christian\AppData\Local\{DA282D2E-61B9-4F73-B89F-35C458198A7A}
O43 - CFD: 10/04/2012 - 07:30:42 - [0] ----D C:\Users\Christian\AppData\Local\{DA7BCEF5-9108-4F68-925E-230D346BCB88}
O43 - CFD: 05/04/2012 - 19:00:45 - [0] ----D C:\Users\Christian\AppData\Local\{DE62E55F-BE4E-4445-BFE0-0D905C1FB175}
O43 - CFD: 02/04/2012 - 17:28:50 - [0] ----D C:\Users\Christian\AppData\Local\{E0199454-D13E-41B2-9808-F987B3901EA8}
O43 - CFD: 13/04/2012 - 23:52:49 - [0] ----D C:\Users\Christian\AppData\Local\{E65F1CD4-D598-4D6F-9B77-B08E3A288BF2}
O43 - CFD: 14/04/2012 - 22:59:46 - [0] ----D C:\Users\Christian\AppData\Local\{E6872BE4-1792-47D4-84B7-89EE2261496D}
O43 - CFD: 04/04/2012 - 20:57:03 - [0] ----D C:\Users\Christian\AppData\Local\{E949FD73-4CD8-4E7E-8A61-A56039998AE8}
O43 - CFD: 13/04/2012 - 23:52:49 - [0] ----D C:\Users\Christian\AppData\Local\{EC0C3C93-BD76-4321-9BB2-E9E3A743E148}
O43 - CFD: 10/04/2012 - 20:16:44 - [0] ----D C:\Users\Christian\AppData\Local\{EE2713BB-E927-46B0-9493-2C7FD72B75E9}
O43 - CFD: 09/04/2012 - 07:56:10 - [0] ----D C:\Users\Christian\AppData\Local\{F5B10482-6D76-4344-9B27-681B38213295}
O43 - CFD: 03/04/2012 - 19:36:02 - [0] ----D C:\Users\Christian\AppData\Local\{F931B273-2D24-4D27-B42C-F6AB3FCBF09F}
O43 - CFD: 14/07/2009 - 06:54:32 - [0,014] R---D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 30/03/2012 - 08:41:22 - [0,000] R---D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 10/04/2012 - 07:52:45 - [0] ----D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Facebook
O43 - CFD: 02/04/2012 - 13:38:44 - [0,001] ----D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HP
O43 - CFD: 14/07/2009 - 06:49:38 - [0,001] R---D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 28/04/2012 - 09:56:50 - [0] R---D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 09/04/2012 - 07:52:02 - [0,001] ----D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TubeMaster++
O43 - CFD: 28/03/2012 - 20:25:00 - [0,003] ----D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 30/03/2012 - 15:13:14 - [173,312] ----D C:\Program Files (x86)\ABBYY FineReader 9.0 Sprint
O43 - CFD: 28/03/2012 - 22:28:35 - [109,252] ----D C:\Program Files (x86)\ACD Systems
O43 - CFD: 28/03/2012 - 20:45:57 - [1086,261] ----D C:\Program Files (x86)\Adobe
O43 - CFD: 29/12/2011 - 10:17:59 - [2,323] ----D C:\Program Files (x86)\AMD APP
O43 - CFD: 29/12/2011 - 10:17:48 - [66,593] ----D C:\Program Files (x86)\ATI Technologies
O43 - CFD: 28/03/2012 - 18:08:17 - [191,885] ----D C:\Program Files (x86)\Avira
O43 - CFD: 30/03/2012 - 13:43:54 - [1,064] ----D C:\Program Files (x86)\ByeBye
O43 - CFD: 28/04/2012 - 08:40:17 - [716,632] ----D C:\Program Files (x86)\Common Files
O43 - CFD: 29/12/2011 - 10:29:09 - [209,862] ----D C:\Program Files (x86)\CyberLink
O43 - CFD: 30/03/2012 - 15:06:40 - [7,994] ----D C:\Program Files (x86)\epson
O43 - CFD: 30/03/2012 - 15:08:28 - [169,674] ----D C:\Program Files (x86)\Epson Software
O43 - CFD: 28/03/2012 - 23:09:14 - [11,942] ----D C:\Program Files (x86)\FIXIO PC Utilities
O43 - CFD: 21/04/2012 - 06:29:40 - [525,234] ----D C:\Program Files (x86)\Google
O43 - CFD: 29/03/2012 - 17:10:43 - [453,001] ----D C:\Program Files (x86)\Hewlett-Packard
O43 - CFD: 09/04/2012 - 14:26:21 - [171,894] ----D C:\Program Files (x86)\HP
O43 - CFD: 15/04/2012 - 13:19:00 - [35,738] ----D C:\Program Files (x86)\HP Games
O43 - CFD: 29/12/2011 - 10:31:07 - [53,912] ----D C:\Program Files (x86)\HP SimplePass 2011
O43 - CFD: 30/03/2012 - 15:08:26 - [53,063] ----D C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 29/12/2011 - 10:22:44 - [37,927] ----D C:\Program Files (x86)\Intel
O43 - CFD: 12/04/2012 - 08:25:03 - [4,917] ----D C:\Program Files (x86)\Internet Explorer
O43 - CFD: 05/04/2012 - 23:56:58 - [254,873] ----D C:\Program Files (x86)\Java
O43 - CFD: 12/04/2012 - 08:25:59 - [11,573] ----D C:\Program Files (x86)\Malwarebytes' Anti-Malware
O43 - CFD: 29/03/2012 - 17:01:22 - [0] ----D C:\Program Files (x86)\Microsoft
O43 - CFD: 28/03/2012 - 18:53:44 - [38,002] ----D C:\Program Files (x86)\Microsoft Analysis Services
O43 - CFD: 28/03/2012 - 22:04:39 - [744,558] ----D C:\Program Files (x86)\Microsoft Office
O43 - CFD: 29/03/2012 - 23:42:50 - [36,634] ----D C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 04/11/2011 - 15:41:19 - [1,745] ----D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 31/03/2012 - 00:25:47 - [7,789] ----D C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 14/07/2009 - 07:32:38 - [0,025] ----D C:\Program Files (x86)\MSBuild
O43 - CFD: 28/03/2012 - 19:07:41 - [6,099] ----D C:\Program Files (x86)\MSECache
O43 - CFD: 29/03/2012 - 23:24:07 - [0] ----D C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 03/04/2012 - 11:34:10 - [17,414] ----D C:\Program Files (x86)\MyTomTom 3
O43 - CFD: 29/03/2012 - 20:38:46 - [45,255] ----D C:\Program Files (x86)\Nikon
O43 - CFD: 28/03/2012 - 23:33:13 - [132,890] ----D C:\Program Files (x86)\Nokia
O43 - CFD: 28/03/2012 - 17:47:43 - [20,218] R---D C:\Program Files (x86)\Online Services
O43 - CFD: 01/04/2012 - 20:24:26 - [353,458] ----D C:\Program Files (x86)\OpenOffice.org 3
O43 - CFD: 28/03/2012 - 23:32:40 - [20,785] ----D C:\Program Files (x86)\PC Connectivity Solution
O43 - CFD: 28/03/2012 - 23:47:59 - [34,655] ----D C:\Program Files (x86)\PDFCreator
O43 - CFD: 28/03/2012 - 23:13:33 - [12,705] ----D C:\Program Files (x86)\PhotoZoom Pro 3
O43 - CFD: 31/03/2012 - 11:43:04 - [78,384] ----D C:\Program Files (x86)\Pinnacle
O43 - CFD: 28/03/2012 - 23:36:34 - [56,148] ----D C:\Program Files (x86)\PlayerTuto.com
O43 - CFD: 28/03/2012 - 22:53:12 - [67,375] ----D C:\Program Files (x86)\Portrait Professional 10
O43 - CFD: 29/12/2011 - 10:20:08 - [16,710] ----D C:\Program Files (x86)\Realtek
O43 - CFD: 14/07/2009 - 07:32:38 - [37,345] ----D C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 28/03/2012 - 18:27:46 - [48,858] ----D C:\Program Files (x86)\Siber Systems
O43 - CFD: 28/03/2012 - 23:58:53 - [16,513] R---D C:\Program Files (x86)\Skype
O43 - CFD: 29/03/2012 - 21:42:05 - [0] ----D C:\Program Files (x86)\Software
O43 - CFD: 15/04/2012 - 10:00:51 - [67,332] ----D C:\Program Files (x86)\Spybot - Search & Destroy
O43 - CFD: 03/04/2012 - 11:34:12 - [0,021] ----D C:\Program Files (x86)\TomTom International B.V
O43 - CFD: 28/04/2012 - 09:35:37 - [10,323] ----D C:\Program Files (x86)\TubeMaster++
O43 - CFD: 12/04/2012 - 08:41:20 - [17,341] ----D C:\Program Files (x86)\Uniblue
O43 - CFD: 14/07/2009 - 06:57:06 - [0] ----D C:\Program Files (x86)\Uninstall Information
O43 - CFD: 28/03/2012 - 21:19:00 - [0] ----D C:\Program Files (x86)\Video Codec
O43 - CFD: 28/03/2012 - 23:27:14 - [88,797] ----D C:\Program Files (x86)\VideoLAN
O43 - CFD: 29/03/2012 - 20:30:16 - [5,113] ----D C:\Program Files (x86)\VisiPics
O43 - CFD: 28/03/2012 - 18:40:07 - [6,048] ----D C:\Program Files (x86)
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: Malwarebytes Anti-Malware version 1.61.0.1400 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1
O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E}
O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM] -- {50816F92-1652-4A7C-B9BC-48F682742C4B}
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile FRA Language Pack - (.Microsoft Corporation.) [HKLM] -- {4B5F58F7-C7D1-3CE3-9B37-B657F0852643}
O42 - Logiciel: Microsoft Office 2010 Service Pack 1 (SP1) - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{047B0968-E622-4FAA-9B4B-121FA109EDDE}
O42 - Logiciel: Microsoft Office 2010 Service Pack 1 (SP1) - (.Microsoft.) [HKLM] -- {90140000-002A-0000-1000-0000000FF1CE}_Office14.STANDARD_{967EF02C-5C7E-4718-8FCB-BDC050190CCF}
O42 - Logiciel: Microsoft Office Excel MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-0016-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Office 64-bit Components 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-002A-0000-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office OneNote MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-00A1-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Outlook Connector - (.Microsoft Corporation.) [HKLM] -- {95140000-0080-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Outlook MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001A-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office PowerPoint MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-0018-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (Arabic) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001F-0401-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (Dutch) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001F-0413-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (English) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001F-0409-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001F-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (German) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001F-0407-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (Spanish) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001F-0C0A-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proofing (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-002C-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Publisher MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-0019-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Shared 64-bit MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-002A-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Shared MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-006E-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Standard 2010 - (.Microsoft Corporation.) [HKLM] -- Office14.STANDARD
O42 - Logiciel: Microsoft Office Standard 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Word MUI (French) 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-001B-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU] - (.Microsoft Corporation.) [HKLM] -- {F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM] -- {071c9b48-7c32-4621-a0ac-3f809523288f}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM] -- {6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM] -- {ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {837b34e3-7c30-493c-8f6a-2b0f04e2912c}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {8220EEFE-38CD-377E-8595-13398D740ACE}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {4B6C7001-C7D6-3710-913E-5BC23FCE91E6}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM] -- {5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F}
O42 - Logiciel: Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM] -- {1D8E6291-B0D5-35EC-8441-6616F567A0F7}
O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM] -- {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
O42 - Logiciel: Microsoft_VC100_CRT_SP1_x64 - (.Nokia.) [HKLM] -- {680EDA59-9266-44B4-949E-0C24F65DFF82}
O42 - Logiciel: Microsoft_VC100_CRT_SP1_x86 - (.Nokia.) [HKLM] -- {E3B64CC5-C011-40C0-92BC-7316CD5E5688}
O42 - Logiciel: Microsoft_VC80_ATL_x86 - (.Adobe.) [HKLM] -- {0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}
O42 - Logiciel: Microsoft_VC80_ATL_x86_x64 - (.Adobe.) [HKLM] -- {925D058B-564A-443A-B4B2-7E90C6432E55}
O42 - Logiciel: Microsoft_VC80_CRT_x86 - (.Adobe.) [HKLM] -- {92D58719-BBC1-4CC3-A08B-56C9E884CC2C}
O42 - Logiciel: Microsoft_VC80_CRT_x86_x64 - (.Adobe.) [HKLM] -- {4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}
O42 - Logiciel: Microsoft_VC80_MFCLOC_x86 - (.Adobe.) [HKLM] -- {D92BBB52-82FF-42ED-8A3C-4E062F944AB7}
O42 - Logiciel: Microsoft_VC80_MFCLOC_x86_x64 - (.Adobe.) [HKLM] -- {1E9FC118-651D-4934-97BE-E53CAE5C7D45}
O42 - Logiciel: Microsoft_VC80_MFC_x86 - (.Adobe.) [HKLM] -- {D1A19B02-817E-4296-A45B-07853FD74D57}
O42 - Logiciel: Microsoft_VC80_MFC_x86_x64 - (.Adobe.) [HKLM] -- {C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}
O42 - Logiciel: Microsoft_VC90_ATL_x86 - (.Adobe.) [HKLM] -- {033E378E-6AD3-4AD5-BDEB-CBD69B31046C}
O42 - Logiciel: Microsoft_VC90_ATL_x86_x64 - (.Adobe.) [HKLM] -- {8557397C-A42D-486F-97B3-A2CBC2372593}
O42 - Logiciel: Microsoft_VC90_CRT_x86 - (.Adobe.) [HKLM] -- {08D2E121-7F6A-43EB-97FD-629B44903403}
O42 - Logiciel: Microsoft_VC90_CRT_x86_x64 - (.Adobe.) [HKLM] -- {92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}
O42 - Logiciel: Microsoft_VC90_MFC_x86 - (.Adobe.) [HKLM] -- {635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}
O42 - Logiciel: Microsoft_VC90_MFC_x86_x64 - (.Adobe.) [HKLM] -- {A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}
O42 - Logiciel: Module linguistique Microsoft .NET Framework 4 Client Profile FRA - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile FRA Language Pack
O42 - Logiciel: MyTomTom 3.1.0.530 - (.TomTom.) [HKLM] -- MyTomTom
O42 - Logiciel: Nikon Message Center 2 - (.Nikon.) [HKLM] -- {B014EE44-9197-4513-9613-71E6EB1B514E}
O42 - Logiciel: Nokia Connectivity Cable Driver - (.Nokia.) [HKLM] -- {AF88496B-4BBA-4922-97E9-2582D3A28358}
O42 - Logiciel: Nokia Suite - (.Nokia.) [HKLM] -- Nokia Suite
O42 - Logiciel: Nokia Suite - (.Nokia.) [HKLM] -- {DB24A9E5-A068-43DD-88D0-B51BED3C0B99}
O42 - Logiciel: OpenOffice.org 3.3 - (.OpenOffice.org.) [HKLM] -- {05653DE1-6567-40C6-B930-39D399B64369}
O42 - Logiciel: PC Connectivity Solution - (.Nokia.) [HKLM] -- {55EB7967-5BB1-4EA2-8AFF-B2F9E487E553}
O42 - Logiciel: PDF Settings CS5 - (.Adobe Systems Incorporated.) [HKLM] -- {A78FE97A-C0C8-49CE-89D0-EDD524A17392}
O42 - Logiciel: PDF-Viewer - (.Tracker Software Products Ltd.) [HKLM] -- {A278382D-4F1B-4D47-9885-8523F7261E8D}_is1
O42 - Logiciel: PDFCreator - (.Frank Heindörfer, Philip Chinery.) [HKLM] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}
O42 - Logiciel: Package de pilotes Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0) - (.Nokia.) [HKLM] -- FCEC33AD40CEA5E0FC4CEE6E42041A0DA189652D
O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM] -- Picasa 3
O42 - Logiciel: Picture Control Utility x64 - (.Nikon.) [HKLM] -- {11953C65-BB4E-4CA4-B0F0-2600A4B20040}
O42 - Logiciel: Pilote vidéo Pinnacle - (.Pinnacle Systems.) [HKLM] -- {6DE721A5-5E89-4D74-994C-652BB3C0672E}
O42 - Logiciel: Pinnacle Instant DVD Recorder - (.Pinnacle Systems.) [HKLM] -- {C1212AE3-DBB9-4365-8473-F8ABC7B06BBB}
O42 - Logiciel: PlayerTuto.com 2.0.6 - (.Weecast SAS.) [HKLM] -- {2B7FD473-DF96-40D4-9EE3-A427B450B1BC}_is1
O42 - Logiciel: Portrait Professional 10.8 - (.Anthropics Technology Ltd..) [HKLM] -- PortraitProfessional10_is1
O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM] -- {C1594429-8296-4652-BF54-9DBE4932A44C}
O42 - Logiciel: RoboForm 7-7-6 (All Users) - (.Siber Systems.) [HKLM] -- AI RoboForm
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2518870
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2572078
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2633870
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2656351
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2656368
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB2553091) - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{07CA44F3-F5B3-4D12-8C91-EDC5FE91D45C}
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB2553096) - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{10802A6D-EDBF-4383-BCBD-9D5B32F56D35}
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB2589320) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{DCE6D0BF-93E4-46C5-9A7C-F1EFF9707C02}
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB2598039) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{01F2485C-FAEE-47E7-986E-B4F2FFC22D57}
O42 - Logiciel: Security Update for Microsoft PowerPoint 2010 (KB2553185) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{61461470-8168-4F4B-97B7-617AF354F028}
O42 - Logiciel: Security Update for Microsoft SharePoint Workspace 2010 (KB2566445) - (.Microsoft.) [HKLM] -- {90140000-002A-0000-1000-0000000FF1CE}_Office14.STANDARD_{337A3FB9-281D-4EC8-9CC1-7F6DDAC2359F}
O42 - Logiciel: Security Update for Module linguistique Microsoft .NET Framework 4 Client Profile FRA (KB2518870) - (.Microsoft Corporation.) [HKLM] -- {4B5F58F7-C7D1-3CE3-9B37-B657F0852643}.KB2518870
O42 - Logiciel: Skype(TM) 5.8 - (.Skype Technologies S.A..) [HKLM] -- {EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}
O42 - Logiciel: Spybot - Search & Destroy - (.Safer Networking Limited.) [HKLM] -- {B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1
O42 - Logiciel: Synaptics TouchPad Driver - (.Synaptics Incorporated.) [HKLM] -- SynTPDeinstKey
O42 - Logiciel: TubeMaster++ 2.6 - (.GgSofts.) [HKLM] -- TubeMaster++
O42 - Logiciel: Uniblue RegistryBooster - (.Uniblue Systems Ltd.) [HKLM] -- Uniblue RegistryBooster
O42 - Logiciel: Update for Microsoft .NET Framework 4 Client Profile (KB2468871) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2468871
O42 - Logiciel: Update for Microsoft .NET Framework 4 Client Profile (KB2533523) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2533523
O42 - Logiciel: Update for Microsoft .NET Framework 4 Client Profile (KB2600217) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2600217
O42 - Logiciel: Update for Microsoft Excel 2010 (KB2553439) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{3D1F379C-AA64-4823-90A4-A8DDD4B48C21}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2494150) - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{3FCFD88F-4D13-4F38-8625-ABABEA7F61EA}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2553065) - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{A8686D24-1E89-43A1-973E-05A258D2B3F8}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2553181) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{48E1B6C2-7299-4F3F-AA63-42F0ACE55AA4}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{C8694FF0-8203-483B-A07A-2BC40433167D}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2553385) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{28FAC187-7C0E-413A-B90A-76F19D0FBF30}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2566458) - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{EFB525A0-E1C0-4E32-9968-FE401BC87363}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{ED31DE9A-3E13-4E2C-9106-E0D8AFFB9FA6}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2597091) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{4D98EEEA-A31B-42FA-991A-F989594F4DA5}
O42 - Logiciel: Update for Microsoft Office 2010 (KB2597091) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-002A-0000-1000-0000000FF1CE}_Office14.STANDARD_{4D98EEEA-A31B-42FA-991A-F989594F4DA5}
O42 - Logiciel: Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{BEBC2484-290C-46AD-9834-6DAD1FA80273}
O42 - Logiciel: Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-002A-0000-1000-0000000FF1CE}_Office14.STANDARD_{BEBC2484-290C-46AD-9834-6DAD1FA80273}
O42 - Logiciel: Update for Microsoft Outlook 2010 (KB2553248) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{38990592-F6A1-4A26-96C7-0600E36AE794}
O42 - Logiciel: Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{BC6DFBFD-16DD-47E1-A7EF-2C062930FA4F}
O42 - Logiciel: VIP Access SDK (1.0.1.2) - (.Symantec Inc..) [HKLM] -- VIP Access SDK
O42 - Logiciel: VLC media player 2.0.1 - (.VideoLAN.) [HKLM] -- VLC media player
O42 - Logiciel: ViewNX 2 - (.Nikon.) [HKLM] -- {635BE602-BB9C-4C59-8CC5-93F9366E8A21}
O42 - Logiciel: VisiPics V1.30 - (.Ozone.) [HKLM] -- VisiPics_is1
O42 - Logiciel: Vista Start Menu 3.88 - (.OrdinarySoft.) [HKLM] -- Vista Start Menu_is1
O42 - Logiciel: Visual Studio C++ 10.0 Runtime - (.TomTom International B.V..) [HKLM] -- {4412F224-3849-4461-A3E9-DEEF8D252790}
O42 - Logiciel: Vodafone Mobile Connect Lite - (.Vodafone.) [HKLM] -- {C656142F-EFE1-44CD-BFAD-6CBC6DCB9860}
O42 - Logiciel: WinPcap 4.1.2 - (.CACE Technologies.) [HKLM] -- WinPcapInst
O42 - Logiciel: WinRAR 4.11 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver
O42 - Logiciel: Windows Live - (.Microsoft Corporation.) [HKLM] -- WinLiveSuite
O42 - Logiciel: Windows Live - (.Microsoft Corporation.) [HKLM] -- {34319F1F-7CF2-4CC9-B357-1AE7D2FF3AC5}
O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM] -- {D45240D3-B6B3-4FF9-B243-54ECE3E10066}
O42 - Logiciel: Windows Live Essentials - (.Microsoft Corporation.) [HKLM] -- {FE044230-9CA5-43F7-9B58-5AC5A28A1F33}
O42 - Logiciel: Windows Live Family Safety - (.Microsoft Corporation.) [HKLM] -- {02A5BD31-16AC-45DF-BE9F-A3167BC4AFB2}
O42 - Logiciel: Windows Live Family Safety - (.Microsoft Corporation.) [HKLM] -- {0D87AE67-14EB-4C10-88A5-DA6C3181EB18}
O42 - Logiciel: Windows Live Family Safety - (.Microsoft Corporation.) [HKLM] -- {BFBE6E95-5724-47EC-85A0-74D436AD938F}
O42 - Logiciel: Windows Live ID Sign-in Assistant - (.Microsoft Corporation.) [HKLM] -- {1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}
O42 - Logiciel: Windows Live Installer - (.Microsoft Corporation.) [HKLM] -- {0B0F231F-CE6A-483D-AA23-77B364F75917}
O42 - Logiciel: Windows Live Language Selector - (.Microsoft Corporation.) [HKLM] -- {027E5FAB-1476-4C59-AAB4-32EF28520399}
O42 - Logiciel: Windows Live MIME IFilter - (.Microsoft Corporation.) [HKLM] -- {DA54F80E-261C-41A2-A855-549A144F2F59}
O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM] -- {9D56775A-93F3-44A3-8092-840E3826DE30}
O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM] -- {9FAE6E8D-E686-49F5-A574-0A58DFD9580C}
O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM] -- {C66824E4-CBB3-4851-BB3F-E8CFD6350923}
O42 - Logiciel: Windows Live Mesh - (.Microsoft Corporation.) [HKLM] -- {841F1FB4-FDF8-461C-A496-3E1CFD84C0B5}
O42 - Logiciel: Windows Live Mesh - (.Microsoft Corporation.) [HKLM] -- {A0C91188-C88F-4E86-93E6-CD7C9A266649}
O42 - Logiciel: Windows Live Mesh - (.Microsoft Corporation.) [HKLM] -- {DECDCB7C-58CC-4865-91AF-627F9798FE48}
O42 - Logiciel: Windows Live Mesh ActiveX Control for Remote Connections - (.Microsoft Corporation.) [HKLM] -- {2902F983-B4C1-44BA-B85D-5C6D52E2C441}
O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {2A3FC24C-6EC0-4519-A52B-FDA4EA9B2D24}
O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {AB61A2E9-37D3-485D-9085-19FBDF8CEF4A}
O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {E5B21F11-6933-4E0B-A25C-7963E3C07D11}
O42 - Logiciel: Windows Live Messenger Companion Core - (.Microsoft Corporation.) [HKLM] -- {78A96B4C-A643-4D0F-98C2-A8E16A6669F9}
O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM] -- {19BA08F7-C728-469C-8A35-BFBD3633BE08}
O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM] -- {6DEC8BD5-7574-47FA-B080-492BBBE2FEA3}
O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM] -- {92EA4134-10D1-418A-91E1-5A0453131A38}
O42 - Logiciel: Windows Live PIMT Platform - (.Microsoft Corporation.) [HKLM] -- {83C292B7-38A5-440B-A731-07070E81A64F}
O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM] -- {A9BDCA6B-3653-467B-AC83-94367DA3BFE3}
O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM] -- {C893D8C0-1BA0-4517-B11C-E89B65E72F70}
O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM] -- {D436F577-1695-4D2F-8B44-AC76C99E0002}
O42 - Logiciel: Windows Live Photo Gallery - (.Microsoft Corporation.) [HKLM] -- {3336F667-9049-4D46-98B6-4C743EEBC5B1}
O42 - Logiciel: Windows Live Photo Gallery - (.Microsoft Corporation.) [HKLM] -- {34F4D9A4-42C2-4348-BEF4-E553C84549E7}
O42 - Logiciel: Windows Live Remote Client - (.Microsoft Corporation.) [HKLM] -- {DF6D988A-EEA0-4277-AAB8-158E086E439B}
O42 - Logiciel: Windows Live Remote Client Resources - (.Microsoft Corporation.) [HKLM] -- {847B0532-55E3-4AAF-8D7B-E3A1A7CD17E5}
O42 - Logiciel: Windows Live Remote Client Resources - (.Microsoft Corporation.) [HKLM] -- {B750FA38-7AB0-42CB-ACBB-E7DBE9FF603F}
O42 - Logiciel: Windows Live Remote Service - (.Microsoft Corporation.) [HKLM] -- {E02A6548-6FDE-40E2-8ED9-119D7D7E641F}
O42 - Logiciel: Windows Live Remote Service Resources - (.Microsoft Corporation.) [HKLM] -- {5E2CD4FB-4538-4831-8176-05D653C3E6D4}
O42 - Logiciel: Windows Live Remote Service Resources - (.Microsoft Corporation.) [HKLM] -- {656DEEDE-F6AC-47CA-A568-A1B4E34B5760}
O42 - Logiciel: Windows Live SOXE - (.Microsoft Corporation.) [HKLM] -- {682B3E4F-696A-42DE-A41C-4C07EA1678B4}
O42 - Logiciel: Windows Live SOXE Definitions - (.Microsoft Corporation.) [HKLM] -- {200FEC62-3C34-4D60-9CE8-EC372E01C08F}
O42 - Logiciel: Windows Live UX Platform - (.Microsoft Corporation.) [HKLM] -- {CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}
O42 - Logiciel: Windows Live UX Platform Language Pack - (.Microsoft Corporation.) [HKLM] -- {05E379CC-F626-4E7D-8354-463865B303BF}
O42 - Logiciel: Windows Live UX Platform Language Pack - (.Microsoft Corporation.) [HKLM] -- {579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}
O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM] -- {3B9A92DA-6374-4872-B646-253F18624D5F}
O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM] -- {A726AE06-AAA3-43D1-87E3-70F510314F04}
O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM] -- {AAAFC670-569B-4A2F-82B4-42945E0DE3EF}
O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM] -- {AAF454FC-82CA-4F29-AB31-6A109485E76E}
O42 - Logiciel: Windows Live Writer Resources - (.Microsoft Corporation.) [HKLM] -- {62687B11-58B5-4A18-9BC3-9DF4CE03F194}
O42 - Logiciel: Windows Live Writer Resources - (.Microsoft Corporation.) [HKLM] -- {DDC8BDEE-DCAC-404D-8257-3E8D4B782467}
O42 - Logiciel: Xvid MPEG-4 Video Codec - (.Pas de propriétaire.) [HKLM] -- Xvid_is1
O42 - Logiciel: opensource - (.Your Company Name.) [HKLM] -- {3677D4D8-E5E0-49FC-B86E-06541CF00BBE}
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726}
---\\ HKCU & HKLM Software Keys
[HKCU\Software\ABBYY]
[HKCU\Software\ACD Systems]
[HKCU\Software\ATI]
[HKCU\Software\Adobe]
[HKCU\Software\AlterGeo]
[HKCU\Software\Anthropics]
[HKCU\Software\AppDataLow\Google]
[HKCU\Software\AppDataLow\Software\Adobe]
[HKCU\Software\AppDataLow\Software\Microsoft]
[HKCU\Software\AppDataLow\Software]
[HKCU\Software\AppDataLow]
[HKCU\Software\AuthenTec]
[HKCU\Software\Avira]
[HKCU\Software\Badoo]
[HKCU\Software\BenVista]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\CyberLink]
[HKCU\Software\EPSON]
[HKCU\Software\EasyBits]
[HKCU\Software\Evernote]
[HKCU\Software\FIXIO PC Utilities]
[HKCU\Software\Google]
[HKCU\Software\HP]
[HKCU\Software\Hewlett-Packard]
[HKCU\Software\HookNetwork]
[HKCU\Software\I.R.I.S.]
[HKCU\Software\IGearSettings]
[HKCU\Software\IM Providers]
[HKCU\Software\Intel]
[HKCU\Software\JavaSoft]
[HKCU\Software\Macromedia]
[HKCU\Software\MainConcept (Nikon)]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Netscape]
[HKCU\Software\Nikon]
[HKCU\Software\Nokia]
[HKCU\Software\ODBC]
[HKCU\Software\OpenOffice.org]
[HKCU\Software\OrdinarySoft]
[HKCU\Software\Organic]
[HKCU\Software\Ozone]
[HKCU\Software\PDFCreator]
[HKCU\Software\PPD Plugins]
[HKCU\Software\People]
[HKCU\Software\Pinnacle Systems]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\Safer Networking Limited]
[HKCU\Software\Siber Systems]
[HKCU\Software\Skype]
[HKCU\Software\Symantec]
[HKCU\Software\Synaptics]
[HKCU\Software\SysInternals]
[HKCU\Software\TomTom]
[HKCU\Software\Tracker Software]
[HKCU\Software\Trolltech]
[HKCU\Software\VOB]
[HKCU\Software\Vodafone]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\WinRAR]
[HKCU\Software\Wow6432Node]
[HKLM\Software\ABBYY]
[HKLM\Software\ACD Systems]
[HKLM\Software\AMD]
[HKLM\Software\ATI Technologies]
[HKLM\Software\ATI]
[HKLM\Software\Adobe]
[HKLM\Software\AdwCleaner]
[HKLM\Software\AppDataLow]
[HKLM\Software\AuthenTec]
[HKLM\Software\Avira]
[HKLM\Software\BenVista]
[HKLM\Software\CBSTEST]
[HKLM\Software\CXT]
[HKLM\Software\Caphyon]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\CyberLink]
[HKLM\Software\Cyberlink]
[HKLM\Software\DivXNetworks]
[HKLM\Software\EPSON]
[HKLM\Software\EasyBits]
[HKLM\Software\Evernote]
[HKLM\Software\Google]
[HKLM\Software\HPQ]
[HKLM\Software\Hewlett-Packard]
[HKLM\Software\IDT]
[HKLM\Software\ImageMagick]
[HKLM\Software\InstalledOptions]
[HKLM\Software\Insyde]
[HKLM\Software\Intel]
[HKLM\Software\JavaSoft]
[HKLM\Software\JreMetrics]
[HKLM\Software\Khronos]
[HKLM\Software\Macromedia]
[HKLM\Software\Malwarebytes' Anti-Malware (Trial)]
[HKLM\Software\Malwarebytes' Anti-Malware]
[HKLM\Software\MimarSinan]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\Nikon]
[HKLM\Software\Nokia]
[HKLM\Software\ODBC]
[HKLM\Software\One Time Password Providers]
[HKLM\Software\OpenOffice.org]
[HKLM\Software\PC Connectivity Solution]
[HKLM\Software\PCSuite]
[HKLM\Software\PDFCreator]
[HKLM\Software\Piano Med]
[HKLM\Software\Pinnacle Systems]
[HKLM\Software\Piriform]
[HKLM\Software\Planets]
[HKLM\Software\Plug-Ins]
[HKLM\Software\Policies]
[HKLM\Software\RTLSetup]
[HKLM\Software\Realtek Semiconductor Corp.]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\Safer Networking Limited]
[HKLM\Software\Siber Systems]
[HKLM\Software\Skype]
[HKLM\Software\Sonic]
[HKLM\Software\Sony Corporation]
[HKLM\Software\Symantec]
[HKLM\Software\Synaptics]
[HKLM\Software\TGUID]
[HKLM\Software\TomTom]
[HKLM\Software\Tracker Software]
[HKLM\Software\Uniblue]
[HKLM\Software\VideoLAN]
[HKLM\Software\Vodafone]
[HKLM\Software\Volatile]
[HKLM\Software\WildTangent]
[HKLM\Software\Win32 Services]
[HKLM\Software\WinPcap]
[HKLM\Software\WinRAR]
[HKLM\Software\Windows]
[HKLM\Software\Wow6432Node]
[HKLM\Software\X-AVCSD]
~ Scan Softwares in 00mn 00s
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 30/03/2012 - 15:13:14 - [173,312] ----D C:\Program Files (x86)\ABBYY FineReader 9.0 Sprint
O43 - CFD: 28/03/2012 - 22:28:35 - [109,252] ----D C:\Program Files (x86)\ACD Systems
O43 - CFD: 28/03/2012 - 20:45:57 - [1086,261] ----D C:\Program Files (x86)\Adobe
O43 - CFD: 29/12/2011 - 10:17:59 - [2,323] ----D C:\Program Files (x86)\AMD APP
O43 - CFD: 29/12/2011 - 10:17:48 - [66,593] ----D C:\Program Files (x86)\ATI Technologies
O43 - CFD: 28/03/2012 - 18:08:17 - [191,885] ----D C:\Program Files (x86)\Avira
O43 - CFD: 30/03/2012 - 13:43:54 - [1,064] ----D C:\Program Files (x86)\ByeBye
O43 - CFD: 28/04/2012 - 08:40:17 - [716,632] ----D C:\Program Files (x86)\Common Files
O43 - CFD: 29/12/2011 - 10:29:09 - [209,862] ----D C:\Program Files (x86)\CyberLink
O43 - CFD: 30/03/2012 - 15:06:40 - [7,994] ----D C:\Program Files (x86)\epson
O43 - CFD: 30/03/2012 - 15:08:28 - [169,674] ----D C:\Program Files (x86)\Epson Software
O43 - CFD: 28/03/2012 - 23:09:14 - [11,942] ----D C:\Program Files (x86)\FIXIO PC Utilities
O43 - CFD: 21/04/2012 - 06:29:40 - [525,234] ----D C:\Program Files (x86)\Google
O43 - CFD: 29/03/2012 - 17:10:43 - [453,001] ----D C:\Program Files (x86)\Hewlett-Packard
O43 - CFD: 09/04/2012 - 14:26:21 - [171,894] ----D C:\Program Files (x86)\HP
O43 - CFD: 15/04/2012 - 13:19:00 - [35,738] ----D C:\Program Files (x86)\HP Games
O43 - CFD: 29/12/2011 - 10:31:07 - [53,912] ----D C:\Program Files (x86)\HP SimplePass 2011
O43 - CFD: 30/03/2012 - 15:08:26 - [53,063] ----D C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 29/12/2011 - 10:22:44 - [37,927] ----D C:\Program Files (x86)\Intel
O43 - CFD: 12/04/2012 - 08:25:03 - [4,917] ----D C:\Program Files (x86)\Internet Explorer
O43 - CFD: 05/04/2012 - 23:56:58 - [254,873] ----D C:\Program Files (x86)\Java
O43 - CFD: 12/04/2012 - 08:25:59 - [11,573] ----D C:\Program Files (x86)\Malwarebytes' Anti-Malware
O43 - CFD: 29/03/2012 - 17:01:22 - [0] ----D C:\Program Files (x86)\Microsoft
O43 - CFD: 28/03/2012 - 18:53:44 - [38,002] ----D C:\Program Files (x86)\Microsoft Analysis Services
O43 - CFD: 28/03/2012 - 22:04:39 - [744,558] ----D C:\Program Files (x86)\Microsoft Office
O43 - CFD: 29/03/2012 - 23:42:50 - [36,634] ----D C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 04/11/2011 - 15:41:19 - [1,745] ----D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 31/03/2012 - 00:25:47 - [7,789] ----D C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 14/07/2009 - 07:32:38 - [0,025] ----D C:\Program Files (x86)\MSBuild
O43 - CFD: 28/03/2012 - 19:07:41 - [6,099] ----D C:\Program Files (x86)\MSECache
O43 - CFD: 29/03/2012 - 23:24:07 - [0] ----D C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 03/04/2012 - 11:34:10 - [17,414] ----D C:\Program Files (x86)\MyTomTom 3
O43 - CFD: 29/03/2012 - 20:38:46 - [45,255] ----D C:\Program Files (x86)\Nikon
O43 - CFD: 28/03/2012 - 23:33:13 - [132,890] ----D C:\Program Files (x86)\Nokia
O43 - CFD: 28/03/2012 - 17:47:43 - [20,218] R---D C:\Program Files (x86)\Online Services
O43 - CFD: 01/04/2012 - 20:24:26 - [353,458] ----D C:\Program Files (x86)\OpenOffice.org 3
O43 - CFD: 28/03/2012 - 23:32:40 - [20,785] ----D C:\Program Files (x86)\PC Connectivity Solution
O43 - CFD: 28/03/2012 - 23:47:59 - [34,655] ----D C:\Program Files (x86)\PDFCreator
O43 - CFD: 28/03/2012 - 23:13:33 - [12,705] ----D C:\Program Files (x86)\PhotoZoom Pro 3
O43 - CFD: 31/03/2012 - 11:43:04 - [78,384] ----D C:\Program Files (x86)\Pinnacle
O43 - CFD: 28/03/2012 - 23:36:34 - [56,148] ----D C:\Program Files (x86)\PlayerTuto.com
O43 - CFD: 28/03/2012 - 22:53:12 - [67,375] ----D C:\Program Files (x86)\Portrait Professional 10
O43 - CFD: 29/12/2011 - 10:20:08 - [16,710] ----D C:\Program Files (x86)\Realtek
O43 - CFD: 14/07/2009 - 07:32:38 - [37,345] ----D C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 28/03/2012 - 18:27:46 - [48,858] ----D C:\Program Files (x86)\Siber Systems
O43 - CFD: 28/03/2012 - 23:58:53 - [16,513] R---D C:\Program Files (x86)\Skype
O43 - CFD: 29/03/2012 - 21:42:05 - [0] ----D C:\Program Files (x86)\Software
O43 - CFD: 15/04/2012 - 10:00:51 - [67,332] ----D C:\Program Files (x86)\Spybot - Search & Destroy
O43 - CFD: 03/04/2012 - 11:34:12 - [0,021] ----D C:\Program Files (x86)\TomTom International B.V
O43 - CFD: 28/04/2012 - 09:35:37 - [10,323] ----D C:\Program Files (x86)\TubeMaster++
O43 - CFD: 12/04/2012 - 08:41:20 - [17,341] ----D C:\Program Files (x86)\Uniblue
O43 - CFD: 14/07/2009 - 06:57:06 - [0] ----D C:\Program Files (x86)\Uninstall Information
O43 - CFD: 28/03/2012 - 21:19:00 - [0] ----D C:\Program Files (x86)\Video Codec
O43 - CFD: 28/03/2012 - 23:27:14 - [88,797] ----D C:\Program Files (x86)\VideoLAN
O43 - CFD: 29/03/2012 - 20:30:16 - [5,113] ----D C:\Program Files (x86)\VisiPics
O43 - CFD: 28/03/2012 - 18:40:07 - [6,048] ----D C:\Program Files (x86)\Vista Start Menu
O43 - CFD: 31/03/2012 - 11:31:15 - [20,756] ----D C:\Program Files (x86)\Vodafone
O43 - CFD: 29/03/2012 - 23:39:35 - [0,500] ----D C:\Program Files (x86)\Windows Defender
O43 - CFD: 29/03/2012 - 17:07:23 - [187,472] ----D C:\Program Files (x86)\Windows Live
O43 - CFD: 29/03/2012 - 23:39:36 - [5,895] ----D C:\Program Files (x86)\Windows Mail
O43 - CFD: 29/03/2012 - 23:39:36 - [5,092] ----D C:\Program Files (x86)\Windows Media Player
O43 - CFD: 14/07/2009 - 07:32:38 - [11,632] ----D C:\Program Files (x86)\Windows NT
O43 - CFD: 29/03/2012 - 23:39:36 - [4,213] ----D C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 21/11/2010 - 05:31:38 - [0,181] ----D C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 29/03/2012 - 23:39:39 - [5,717] ----D C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 05/04/2012 - 23:55:55 - [0,227] ----D C:\Program Files (x86)\WinPcap
O43 - CFD: 28/03/2012 - 20:25:00 - [4,110] ----D C:\Program Files (x86)\WinRAR
O43 - CFD: 28/03/2012 - 21:19:04 - [1,361] ----D C:\Program Files (x86)\Xvid
O43 - CFD: 28/04/2012 - 09:58:35 - [11,407] ----D C:\Program Files (x86)\ZHPDiag
O43 - CFD: 30/03/2012 - 15:12:26 - [7,724] ----D C:\Program Files (x86)\Common Files\ABBYY
O43 - CFD: 28/03/2012 - 22:28:39 - [12,730] ----D C:\Program Files (x86)\Common Files\ACD Systems
O43 - CFD: 28/03/2012 - 19:57:36 - [324,330] ----D C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 28/03/2012 - 19:55:22 - [30,670] ----D C:\Program Files (x86)\Common Files\Adobe AIR
O43 - CFD: 29/12/2011 - 10:31:00 - [15,264] ----D C:\Program Files (x86)\Common Files\AuthenTec
O43 - CFD: 28/03/2012 - 22:04:49 - [0,201] ----D C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 31/03/2012 - 11:31:15 - [3,638] ----D C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 29/12/2011 - 10:18:13 - [13,605] ----D C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 29/12/2011 - 10:27:54 - [0,007] ----D C:\Program Files (x86)\Common Files\Intel Corporation
O43 - CFD: 28/04/2012 - 08:40:17 - [1,201] ----D C:\Program Files (x86)\Common Files\Java
O43 - CFD: 30/03/2012 - 08:45:58 - [212,337] ----D C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 29/03/2012 - 20:13:31 - [11,223] ----D C:\Program Files (x86)\Common Files\Nikon
O43 - CFD: 28/03/2012 - 23:33:13 - [10,590] ----D C:\Program Files (x86)\Common Files\Nokia
O43 - CFD: 31/03/2012 - 11:47:50 - [17,956] ----D C:\Program Files (x86)\Common Files\Pinnacle
O43 - CFD: 29/12/2011 - 10:18:59 - [0,155] ----D C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 14/07/2009 - 05:20:08 - [0,003] ----D C:\Program Files (x86)\Common Files\Services
O43 - CFD: 28/03/2012 - 23:58:53 - [2,056] ----D C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 14/07/2009 - 05:20:08 - [39,200] ----D C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 29/03/2012 - 23:40:45 - [13,743] ----D C:\Program Files (x86)\Common Files\System
O43 - CFD: 04/11/2011 - 15:38:34 - [0] ----D C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 30/03/2012 - 15:12:26 - [1,804] ----D C:\ProgramData\ABBYY
O43 - CFD: 28/03/2012 - 22:28:37 - [0,186] ----D C:\ProgramData\ACD Systems
O43 - CFD: 02/04/2012 - 21:46:15 - [408,230] ----D C:\ProgramData\Adobe
O43 - CFD: 14/07/2009 - 07:08:56 - [0] ----D C:\ProgramData\Application Data
O43 - CFD: 29/12/2011 - 10:43:56 - [0,000] ----D C:\ProgramData\ATI
O43 - CFD: 28/03/2012 - 18:22:00 - [65,020] ----D C:\ProgramData\Avira
O43 - CFD: 28/03/2012 - 16:46:02 - [0] ----D C:\ProgramData\Bureau
O43 - CFD: 28/03/2012 - 23:58:00 - [0,000] ----D C:\ProgramData\Common Files
O43 - CFD: 29/03/2012 - 21:58:33 - [0,006] ----D C:\ProgramData\CyberLink
O43 - CFD: 14/07/2009 - 07:08:56 - [0] ----D C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - 07:08:56 - [0] ----D C:\ProgramData\Documents
O43 - CFD: 29/12/2011 - 10:31:05 - [51,440] ----D C:\ProgramData\Downloaded Installations
O43 - CFD: 29/03/2012 - 20:13:26 - [0,000] ----D C:\ProgramData\EnterNHelp
O43 - CFD: 02/04/2012 - 22:21:37 - [8,183] ----D C:\ProgramData\EPSON
O43 - CFD: 28/03/2012 - 16:46:02 - [0] ----D C:\ProgramData\Favoris
O43 - CFD: 14/07/2009 - 07:08:56 - [0] ----D C:\ProgramData\Favorites
O43 - CFD: 29/03/2012 - 23:02:48 - [1,163] ----D C:\ProgramData\Google
O43 - CFD: 02/04/2012 - 13:39:48 - [51,389] ----D C:\ProgramData\Hewlett-Packard
O43 - CFD: 02/04/2012 - 13:42:44 - [0,001] ----D C:\ProgramData\HP
O43 - CFD: 31/03/2012 - 11:32:00 - [0,001] ----D C:\ProgramData\InstallShield
O43 - CFD: 29/12/2011 - 10:42:55 - [0,001] ----D C:\ProgramData\Intel
O43 - CFD: 05/04/2012 - 20:43:57 - [16,365] ----D C:\ProgramData\Malwarebytes
O43 - CFD: 28/03/2012 - 16:46:02 - [0] ----D C:\ProgramData\Menu Démarrer
O43 - CFD: 15/04/2012 - 19:28:08 - [363,686] -S--D C:\ProgramData\Microsoft
O43 - CFD: 12/04/2012 - 07:57:26 - [0,058] ----D C:\ProgramData\Microsoft Help
O43 - CFD: 28/03/2012 - 16:46:02 - [0] ----D C:\ProgramData\Modèles
O43 - CFD: 29/03/2012 - 20:33:44 - [0,133] ----D C:\ProgramData\Nikon
O43 - CFD: 28/03/2012 - 23:33:13 - [77,523] ----D C:\ProgramData\Nokia
O43 - CFD: 28/03/2012 - 23:32:01 - [453,223] ----D C:\ProgramData\NokiaInstallerCache
O43 - CFD: 28/03/2012 - 23:33:52 - [0,169] ----D C:\ProgramData\PC Suite
O43 - CFD: 31/03/2012 - 11:45:58 - [168,308] ----D C:\ProgramData\Pinnacle
O43 - CFD: 29/12/2011 - 10:21:04 - [4,250] ----D C:\ProgramData\Ralink Driver
O43 - CFD: 28/03/2012 - 20:07:56 - [0,003] ----D C:\ProgramData\regid.1986-12.com.adobe
O43 - CFD: 28/03/2012 - 18:28:34 - [0,000] ----D C:\ProgramData\RoboForm
O43 - CFD: 28/03/2012 - 23:58:53 - [36,135] ----D C:\ProgramData\Skype
O43 - CFD: 29/03/2012 - 21:42:05 - [0] ----D C:\ProgramData\Software
O43 - CFD: 27/04/2012 - 20:04:05 - [9,291] ----D C:\ProgramData\Spybot - Search & Destroy
O43 - CFD: 14/07/2009 - 07:08:56 - [0] ----D C:\ProgramData\Start Menu
O43 - CFD: 28/03/2012 - 23:22:20 - [0,000] ----D C:\ProgramData\Sun
O43 - CFD: 29/12/2011 - 10:42:57 - [0,002] ----D C:\ProgramData\Synaptics
O43 - CFD: 29/12/2011 - 10:35:28 - [0,086] ----D C:\ProgramData\Temp
O43 - CFD: 14/07/2009 - 07:08:56 - [0] ----D C:\ProgramData\Templates
O43 - CFD: 30/03/2012 - 15:10:14 - [0,003] ----D C:\ProgramData\UDL
O43 - CFD: 29/03/2012 - 20:13:26 - [0,000] ----D C:\ProgramData\Ultima_T15
O43 - CFD: 31/03/2012 - 11:31:31 - [0,000] ----D C:\ProgramData\Vodafone
O43 - CFD: 15/04/2012 - 13:15:27 - [0,545] ----D C:\ProgramData\WildTangent
O43 - CFD: 16/04/2012 - 07:42:57 - [7,897] --H-D C:\ProgramData\{6AD8E59C-250C-4201-B5BA-56ADEF76FF46}
O43 - CFD: 04/11/2011 - 15:48:36 - [45,653] ----D C:\ProgramData\{A8DA1505-E615-42BB-BB77-74D5CC91FE7E}
O43 - CFD: 28/03/2012 - 22:30:00 - [0,000] ----D C:\Users\Christian\AppData\Roaming\ACD Systems
O43 - CFD: 01/04/2012 - 09:50:13 - [17,997] ----D C:\Users\Christian\AppData\Roaming\Adobe
O43 - CFD: 31/03/2012 - 21:09:38 - [0,001] ----D C:\Users\Christian\AppData\Roaming\Anthropics
O43 - CFD: 28/03/2012 - 17:52:43 - [0] ----D C:\Users\Christian\AppData\Roaming\ATI
O43 - CFD: 29/03/2012 - 18:04:19 - [0,006] ----D C:\Users\Christian\AppData\Roaming\Autodesk
O43 - CFD: 28/03/2012 - 18:13:52 - [0,593] ----D C:\Users\Christian\AppData\Roaming\Avira
O43 - CFD: 29/03/2012 - 21:58:02 - [0] ----D C:\Users\Christian\AppData\Roaming\CyberLink
O43 - CFD: 02/04/2012 - 22:21:36 - [0,008] ----D C:\Users\Christian\AppData\Roaming\Epson
O43 - CFD: 28/03/2012 - 23:10:34 - [5,030] ----D C:\Users\Christian\AppData\Roaming\FIXIO PC Utilities
O43 - CFD: 29/03/2012 - 23:06:48 - [0,011] ----D C:\Users\Christian\AppData\Roaming\Google
O43 - CFD: 14/04/2012 - 18:48:15 - [0,026] ----D C:\Users\Christian\AppData\Roaming\Hewlett-Packard
O43 - CFD: 02/04/2012 - 13:39:48 - [0,000] ----D C:\Users\Christian\AppData\Roaming\Hewlett-Packard Company
O43 - CFD: 16/04/2012 - 07:42:57 - [0] ----D C:\Users\Christian\AppData\Roaming\hpqlog
O43 - CFD: 16/04/2012 - 15:04:27 - [0,001] ----D C:\Users\Christian\AppData\Roaming\HpUpdate
O43 - CFD: 28/03/2012 - 17:51:16 - [0] ----D C:\Users\Christian\AppData\Roaming\Identities
O43 - CFD: 30/03/2012 - 15:07:49 - [0] ----D C:\Users\Christian\AppData\Roaming\InstallShield
O43 - CFD: 28/03/2012 - 17:57:16 - [0,001] ----D C:\Users\Christian\AppData\Roaming\Macromedia
O43 - CFD: 05/04/2012 - 20:44:04 - [0,155] ----D C:\Users\Christian\AppData\Roaming\Malwarebytes
O43 - CFD: 29/12/2011 - 19:06:24 - [0] ----D C:\Users\Christian\AppData\Roaming\Media Center Programs
O43 - CFD: 06/04/2012 - 05:51:37 - [38,508] -S--D C:\Users\Christian\AppData\Roaming\Microsoft
O43 - CFD: 28/03/2012 - 21:30:14 - [2,271] ----D C:\Users\Christian\AppData\Roaming\Mozilla
O43 - CFD: 31/03/2012 - 19:35:37 - [0,000] ----D C:\Users\Christian\AppData\Roaming\Nikon
O43 - CFD: 01/04/2012 - 23:21:19 - [2,199] ----D C:\Users\Christian\AppData\Roaming\Nokia
O43 - CFD: 01/04/2012 - 23:21:20 - [0,050] ----D C:\Users\Christian\AppData\Roaming\Nokia Suite
O43 - CFD: 01/04/2012 - 20:25:28 - [1,430] ----D C:\Users\Christian\AppData\Roaming\OpenOffice.org
O43 - CFD: 01/04/2012 - 23:24:47 - [0,419] ----D C:\Users\Christian\AppData\Roaming\PC Suite
O43 - CFD: 28/03/2012 - 18:29:36 - [0,077] ----D C:\Users\Christian\AppData\Roaming\RoboForm
O43 - CFD: 06/04/2012 - 05:51:38 - [1,843] ----D C:\Users\Christian\AppData\Roaming\Skype
O43 - CFD: 28/03/2012 - 21:02:36 - [0,006] ----D C:\Users\Christian\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
O43 - CFD: 28/03/2012 - 16:47:01 - [0] ----D C:\Users\Christian\AppData\Roaming\Symantec
O43 - CFD: 28/03/2012 - 17:51:42 - [0] ----D C:\Users\Christian\AppData\Roaming\Synaptics
O43 - CFD: 05/04/2012 - 11:05:20 - [0] ----D C:\Users\Christian\AppData\Roaming\Tracker Software
O43 - CFD: 28/03/2012 - 22:57:58 - [6,857] ----D C:\Users\Christian\AppData\Roaming\Uniblue
O43 - CFD: 16/04/2012 - 17:57:20 - [0,092] ----D C:\Users\Christian\AppData\Roaming\Vista Start Menu
O43 - CFD: 25/04/2012 - 21:05:33 - [0,077] ----D C:\Users\Christian\AppData\Roaming\vlc
O43 - CFD: 31/03/2012 - 11:32:02 - [2,700] ----D C:\Users\Christian\AppData\Roaming\Vodafone
O43 - CFD: 28/03/2012 - 23:36:34 - [0,019] ----D C:\Users\Christian\AppData\Roaming\Weecast
O43 - CFD: 28/03/2012 - 20:39:43 - [0,000] ----D C:\Users\Christian\AppData\Roaming\WinRAR
O43 - CFD: 28/03/2012 - 19:28:54 - [0,003] ----D C:\Users\Christian\AppData\Roaming\_MDLogs
O43 - CFD: 30/03/2012 - 15:12:55 - [0] ----D C:\Users\Christian\AppData\Local\ABBYY
O43 - CFD: 28/03/2012 - 22:30:01 - [0,759] ----D C:\Users\Christian\AppData\Local\ACD Systems
O43 - CFD: 31/03/2012 - 23:32:10 - [279,098] ----D C:\Users\Christian\AppData\Local\Adobe
O43 - CFD: 28/03/2012 - 16:46:16 - [0] ----D C:\Users\Christian\AppData\Local\Application Data
O43 - CFD: 28/03/2012 - 17:52:43 - [0,056] ----D C:\Users\Christian\AppData\Local\ATI
O43 - CFD: 28/03/2012 - 16:47:40 - [0,003] ----D C:\Users\Christian\AppData\Local\AuthenTec
O43 - CFD: 23/04/2012 - 19:19:31 - [35,539] ----D C:\Users\Christian\AppData\Local\CrashDumps
O43 - CFD: 29/03/2012 - 21:58:02 - [0,005] ----D C:\Users\Christian\AppData\Local\CyberLink
O43 - CFD: 15/04/2012 - 13:59:15 - [13,385] ----D C:\Users\Christian\AppData\Local\Diagnostics
O43 - CFD: 31/03/2012 - 11:46:41 - [137,721] ----D C:\Users\Christian\AppData\Local\Downloaded Installations
O43 - CFD: 01/04/2012 - 22:01:28 - [0] ----D C:\Users\Christian\AppData\Local\Evernote
O43 - CFD: 08/04/2012 - 10:41:04 - [1,050] ----D C:\Users\Christian\AppData\Local\Facebook
O43 - CFD: 29/03/2012 - 23:03:06 - [403,608] ----D C:\Users\Christian\AppData\Local\Google
O43 - CFD: 28/03/2012 - 17:48:11 - [0,826] ----D C:\Users\Christian\AppData\Local\Hewlett-Packard
O43 - CFD: 14/04/2012 - 18:48:14 - [0,003] ----D C:\Users\Christian\AppData\Local\Hewlett-Packard_Company
O43 - CFD: 28/03/2012 - 16:46:16 - [0] ----D C:\Users\Christian\AppData\Local\Historique
O43 - CFD: 02/04/2012 - 13:47:57 - [0,029] ----D C:\Users\Christian\AppData\Local\HP
O43 - CFD: 12/04/2012 - 11:44:49 - [-2031,164] ----D C:\Users\Christian\AppData\Local\Microsoft
O43 - CFD: 23/04/2012 - 10:42:50 - [0,547] ----D C:\Users\Christian\AppData\Local\Microsoft Games
O43 - CFD: 30/03/2012 - 09:36:48 - [0,079] ----D C:\Users\Christian\AppData\Local\Microsoft Help
O43 - CFD: 31/03/2012 - 19:35:37 - [4,260] ----D C:\Users\Christian\AppData\Local\Nikon
O43 - CFD: 28/03/2012 - 23:33:56 - [0,470] ----D C:\Users\Christian\AppData\Local\Nokia
O43 - CFD: 31/03/2012 - 11:51:10 - [0,001] ----D C:\Users\Christian\AppData\Local\NokiaAccount
O43 - CFD: 28/03/2012 - 22:57:42 - [0] ----D C:\Users\Christian\AppData\Local\PackageAware
O43 - CFD: 16/04/2012 - 07:42:57 - [0] ----D C:\Users\Christian\AppData\Local\Pinnacle
O43 - CFD: 28/03/2012 - 16:48:11 - [0,000] ----D C:\Users\Christian\AppData\Local\RemEngine
O43 - CFD: 28/03/2012 - 22:32:30 - [0] ----D C:\Users\Christian\AppData\Local\Software
O43 - CFD: 28/04/2012 - 09:56:20 - [3,264] ----D C:\Users\Christian\AppData\Local\Temp
O43 - CFD: 28/03/2012 - 16:46:16 - [0] ----D C:\Users\Christian\AppData\Local\Temporary Internet Files
O43 - CFD: 03/04/2012 - 11:34:16 - [0,111] ----D C:\Users\Christian\AppData\Local\TomTom
O43 - CFD: 01/04/2012 - 22:26:11 - [270,770] ----D C:\Users\Christian\AppData\Local\VirtualStore
O43 - CFD: 28/04/2012 - 08:09:51 - [0,059] ----D C:\Users\Christian\AppData\Local\Windows Live
O43 - CFD: 28/03/2012 - 19:20:37 - [0] ----D C:\Users\Christian\AppData\Local\{016380D2-29FD-4747-8DB9-0D02804813B6}
O43 - CFD: 05/04/2012 - 19:00:56 - [0] ----D C:\Users\Christian\AppData\Local\{02A400BD-DD97-4ECD-A90C-26FF6D8903EF}
O43 - CFD: 19/04/2012 - 13:24:05 - [0] ----D C:\Users\Christian\AppData\Local\{02E9BE2F-41E4-44D8-AB9D-45C2D127D2FC}
O43 - CFD: 20/04/2012 - 10:28:13 - [0] ----D C:\Users\Christian\AppData\Local\{0701A6DC-88F3-475F-8979-6F19CEF753AD}
O43 - CFD: 10/04/2012 - 07:30:53 - [0] ----D C:\Users\Christian\AppData\Local\{0BBB39F1-C2AF-4EE6-A09B-5C927F9FCEC8}
O43 - CFD: 16/04/2012 - 19:49:10 - [0] ----D C:\Users\Christian\AppData\Local\{0DC03053-4373-48B6-97BB-8F81B107A023}
O43 - CFD: 08/04/2012 - 11:29:22 - [0] ----D C:\Users\Christian\AppData\Local\{1256C65B-468E-4C6E-ABF0-0D9ACA4C1AD6}
O43 - CFD: 26/04/2012 - 06:25:41 - [0] ----D C:\Users\Christian\AppData\Local\{14750432-52BA-43AF-B8B5-901A56247D23}
O43 - CFD: 03/04/2012 - 06:54:36 - [0] ----D C:\Users\Christian\AppData\Local\{1598D104-9D91-4285-9670-B6122574CD49}
O43 - CFD: 01/04/2012 - 14:09:53 - [0] ----D C:\Users\Christian\AppData\Local\{1EED4E41-0042-45B3-9CCF-E26D61553D70}
O43 - CFD: 13/04/2012 - 23:53:39 - [0] ----D C:\Users\Christian\AppData\Local\{1F29C955-BD4C-4E86-B705-9D7A2FB9D959}
O43 - CFD: 07/04/2012 - 09:07:59 - [0] ----D C:\Users\Christian\AppData\Local\{20C8B1F8-5E75-41A7-A12D-CD6A68C48250}
O43 - CFD: 12/04/2012 - 20:39:06 - [0] ----D C:\Users\Christian\AppData\Local\{23676AA9-6D86-4A1D-A602-EC3E376704E3}
O43 - CFD: 26/04/2012 - 06:25:53 - [0] ----D C:\Users\Christian\AppData\Local\{28CE5770-F23A-4154-AFF5-A572D4C3A43F}
O43 - CFD: 22/04/2012 - 23:11:14 - [0] ----D C:\Users\Christian\AppData\Local\{2DE9B07E-8918-4C03-9982-858004527F10}
O43 - CFD: 10/04/2012 - 20:16:33 - [0] ----D C:\Users\Christian\AppData\Local\{2EE104A6-D61B-4299-8A43-1D3CB0D6ECE6}
O43 - CFD: 21/04/2012 - 08:17:23 - [0] ----D C:\Users\Christian\AppData\Local\{343B6863-C2BA-4D87-9E4B-BEA196EBDDD6}
O43 - CFD: 12/04/2012 - 08:28:50 - [0] ----D C:\Users\Christian\AppData\Local\{346049D0-A011-431A-9BF8-1288AC4C5FFC}
O43 - CFD: 30/03/2012 - 21:07:49 - [0] ----D C:\Users\Christian\AppData\Local\{34EA9907-F7D9-46AB-A151-9ED33E9EE19B}
O43 - CFD: 24/04/2012 - 20:45:45 - [0] ----D C:\Users\Christian\AppData\Local\{3AE8CC4D-9C02-4B9D-BBEF-BC4894496D1B}
O43 - CFD: 01/04/2012 - 01:16:20 - [0] ----D C:\Users\Christian\AppData\Local\{463A8329-3F07-4B2B-910D-DB833644E10A}
O43 - CFD: 27/04/2012 - 20:09:06 - [0] ----D C:\Users\Christian\AppData\Local\{47DFC876-846E-4D2C-ABFA-76A38E99AAF7}
O43 - CFD: 02/04/2012 - 17:28:39 - [0] ----D C:\Users\Christian\AppData\Local\{4AC7715C-6144-4C0E-A9FF-6256B963D558}
O43 - CFD: 12/04/2012 - 20:39:06 - [0] ----D C:\Users\Christian\AppData\Local\{55D1AEDB-A6C4-4F7D-A1E7-61E904F5B054}
O43 - CFD: 30/03/2012 - 21:07:38 - [0] ----D C:\Users\Christian\AppData\Local\{5E327949-88F1-459A-8D3B-15D1DBA14389}
O43 - CFD: 05/04/2012 - 19:56:28 - [0] ----D C:\Users\Christian\AppData\Local\{62431264-21D4-4154-BC6F-F3240B0B7E31}
O43 - CFD: 11/04/2012 - 15:40:31 - [0] ----D C:\Users\Christian\AppData\Local\{62740ABA-C222-4E8D-93D8-1DD83EA60484}
O43 - CFD: 05/04/2012 - 20:43:25 - [0] ----D C:\Users\Christian\AppData\Local\{6346F745-4E79-41F4-88E5-959D6485CFF0}
O43 - CFD: 05/04/2012 - 19:00:45 - [0] ----D C:\Users\Christian\AppData\Local\{63A7978A-C219-451A-B4F9-EDBB9FF61997}
O43 - CFD: 14/04/2012 - 22:59:46 - [0] ----D C:\Users\Christian\AppData\Local\{69D77470-B2A7-4D9E-A0A9-0DA93BCA57A5}
O43 - CFD: 14/04/2012 - 16:03:30 - [0] ----D C:\Users\Christian\AppData\Local\{6A59EFC0-8B78-4EFA-AA44-954E1F586A4D}
O43 - CFD: 01/04/2012 - 01:16:09 - [0] ----D C:\Users\Christian\AppData\Local\{7164B01A-8A01-41EC-8C62-87EFD825F086}
O43 - CFD: 13/04/2012 - 23:53:50 - [0] ----D C:\Users\Christian\AppData\Local\{7238293E-D00C-43B9-A194-1EAFA53BF70C}
O43 - CFD: 25/04/2012 - 18:25:12 - [0] ----D C:\Users\Christian\AppData\Local\{72C22367-2851-48F8-9025-E276DC64E4DE}
O43 - CFD: 03/04/2012 - 20:11:29 - [0] ----D C:\Users\Christian\AppData\Local\{742C73CF-3237-464D-87EE-9F6027D85C38}
O43 - CFD: 15/04/2012 - 11:20:51 - [0] ----D C:\Users\Christian\AppData\Local\{74ED5A67-31B4-4B18-84FA-585C86DFF2CB}
O43 - CFD: 29/03/2012 - 17:08:29 - [0] ----D C:\Users\Christian\AppData\Local\{76ECD492-A58D-41BA-A28F-B16AFDE415A4}
O43 - CFD: 30/03/2012 - 08:43:32 - [0] ----D C:\Users\Christian\AppData\Local\{7966AEED-0C4C-4C06-B761-CAEA59DC5DC9}
O43 - CFD: 05/04/2012 - 19:56:39 - [0] ----D C:\Users\Christian\AppData\Local\{7A090F26-6F24-45EC-8262-BBDB48EA7393}
O43 - CFD: 25/04/2012 - 08:56:48 - [0] ----D C:\Users\Christian\AppData\Local\{81FB9A5A-D700-437C-A65B-CCCD0DB89DD6}
O43 - CFD: 05/04/2012 - 20:43:14 - [0] ----D C:\Users\Christian\AppData\Local\{834F29A1-BF3C-4A0F-A1A4-F5F286DCF168}
O43 - CFD: 07/04/2012 - 21:55:12 - [0] ----D C:\Users\Christian\AppData\Local\{887E20E7-0B39-4049-BB62-7D75E59D4D12}
O43 - CFD: 07/04/2012 - 09:07:48 - [0] ----D C:\Users\Christian\AppData\Local\{8B5AF968-7980-46D8-9ABE-B03C82A4EBBA}
O43 - CFD: 09/04/2012 - 07:55:59 - [0] ----D C:\Users\Christian\AppData\Local\{8CA52709-22EA-4307-B96B-4E952D0FFCB5}
O43 - CFD: 01/04/2012 - 14:10:04 - [0] ----D C:\Users\Christian\AppData\Local\{8F7FEF90-4A35-4983-A646-8EA4F199F4CA}
O43 - CFD: 08/04/2012 - 11:29:11 - [0] ----D C:\Users\Christian\AppData\Local\{8F990778-21D8-4EA3-9063-DD11D2F17912}
O43 - CFD: 09/04/2012 - 07:44:04 - [0] ----D C:\Users\Christian\AppData\Local\{93A4749D-E656-4B83-AB07-D5E5A1A6DD7F}
O43 - CFD: 29/03/2012 - 15:13:29 - [0] ----D C:\Users\Christian\AppData\Local\{949C5E72-7189-4F8B-825A-355A7C970AEF}
O43 - CFD: 06/04/2012 - 09:26:44 - [0] ----D C:\Users\Christian\AppData\Local\{951AF614-AC19-4A51-831E-A9A12477FFE9}
O43 - CFD: 21/04/2012 - 08:17:35 - [0] ----D C:\Users\Christian\AppData\Local\{969AEF61-BA5C-4458-B939-86AB402A158C}
O43 - CFD: 03/04/2012 - 19:35:51 - [0] ----D C:\Users\Christian\AppData\Local\{9AC64421-A215-4F04-A35A-A187965E2906}
O43 - CFD: 19/04/2012 - 13:23:54 - [0] ----D C:\Users\Christian\AppData\Local\{A37E2EF7-683E-4A40-9264-783A65AC7AD8}
O43 - CFD: 20/04/2012 - 10:28:02 - [0] ----D C:\Users\Christian\AppData\Local\{A7132EC8-7298-4387-ABF1-7FD0037472A5}
O43 - CFD: 16/04/2012 - 07:48:50 - [0] ----D C:\Users\Christian\AppData\Local\{AD94E9DE-27FA-4085-B06E-CB28B45D03BF}
O43 - CFD: 09/04/2012 - 07:44:15 - [0] ----D C:\Users\Christian\AppData\Local\{AE5B8C06-53D9-4461-BE97-C27428EC7184}
O43 - CFD: 03/04/2012 - 20:11:18 - [0] ----D C:\Users\Christian\AppData\Local\{B08E5309-FD14-40A0-9BDF-5A36AC336500}
O43 - CFD: 16/04/2012 - 19:49:22 - [0] ----D C:\Users\Christian\AppData\Local\{B3655D58-0AE9-4075-AFA3-5345A084BE25}
O43 - CFD: 12/04/2012 - 08:29:01 - [0] ----D C:\Users\Christian\AppData\Local\{B44AA780-E798-4863-8910-85394F422E4C}
O43 - CFD: 11/04/2012 - 15:40:42 - [0] ----D C:\Users\Christian\AppData\Local\{B8ACB72B-7BF0-4AA4-A898-65B675C66788}
O43 - CFD: 25/04/2012 - 18:24:59 - [0] ----D C:\Users\Christian\AppData\Local\{BFB2A31B-95BE-4A51-ADB1-065576ED96B9}
O43 - CFD: 22/04/2012 - 23:11:03 - [0] ----D C:\Users\Christian\AppData\Local\{C18D7B8F-8048-4A8E-8267-AF91E5A1BBBF}
O43 - CFD: 30/03/2012 - 08:42:45 - [0] ----D C:\Users\Christian\AppData\Local\{C3ADD385-B97F-4CCF-9207-83A32F4DA767}
O43 - CFD: 03/04/2012 - 06:54:24 - [0] ----D C:\Users\Christian\AppData\Local\{C8FFE6EE-CADB-4C42-AFED-1CE92E8FC5E7}
O43 - CFD: 24/04/2012 - 20:45:34 - [0] ----D C:\Users\Christian\AppData\Local\{CA1DD83B-D441-4817-9890-7791FBC199E8}
O43 - CFD: 04/04/2012 - 20:57:14 - [0] ----D C:\Users\Christian\AppData\Local\{CC1538C9-7B5D-4125-94F9-51D3F6F479C5}
O43 - CFD: 22/04/2012 - 11:10:42 - [0] ----D C:\Users\Christian\AppData\Local\{CC67EC4E-5665-4A4B-BE14-E0CBD4FDD3D5}
O43 - CFD: 27/04/2012 - 20:08:55 - [0] ----D C:\Users\Christian\AppData\Local\{CD55B21B-1AD8-446F-8B88-132C2761E9B3}
O43 - CFD: 31/03/2012 - 12:00:29 - [0] ----D C:\Users\Christian\AppData\Local\{CE0771DB-F79A-4F8D-AE83-5580ADA00F28}
O43 - CFD: 05/04/2012 - 19:57:54 - [0] ----D C:\Users\Christian\AppData\Local\{CECF066D-2BDF-4753-98C1-667E530EC6A0}
O43 - CFD: 31/03/2012 - 12:00:18 - [0] ----D C:\Users\Christian\AppData\Local\{CEEBF3E3-8224-47FF-B468-D5B93480B1E6}
O43 - CFD: 28/03/2012 - 19:21:06 - [0] ----D C:\Users\Christian\AppData\Local\{CF86CA14-90C2-46FF-AF19-08772A23A2C1}
O43 - CFD: 15/04/2012 - 11:20:40 - [0] ----D C:\Users\Christian\AppData\Local\{D2491F16-196D-41EE-A56C-5B2A5B071613}
O43 - CFD: 27/04/2012 - 08:08:34 - [0] ----D C:\Users\Christian\AppData\Local\{D41EB9EF-5F52-4FB5-AE25-8CAF01338E6B}
O43 - CFD: 31/03/2012 - 11:30:58 - [11,083] ----D C:\Users\Christian\AppData\Local\{D53238E8-3427-491E-A57E-097FA966AAC1}
O43 - CFD: 28/04/2012 - 08:09:35 - [0] ----D C:\Users\Christian\AppData\Local\{D7C52278-CB44-431E-A292-310D83399A7A}
O43 - CFD: 28/04/2012 - 08:09:46 - [0] ----D C:\Users\Christian\AppData\Local\{DA282D2E-61B9-4F73-B89F-35C458198A7A}
O43 - CFD: 10/04/2012 - 07:30:42 - [0] ----D C:\Users\Christian\AppData\Local\{DA7BCEF5-9108-4F68-925E-230D346BCB88}
O43 - CFD: 05/04/2012 - 19:00:45 - [0] ----D C:\Users\Christian\AppData\Local\{DE62E55F-BE4E-4445-BFE0-0D905C1FB175}
O43 - CFD: 02/04/2012 - 17:28:50 - [0] ----D C:\Users\Christian\AppData\Local\{E0199454-D13E-41B2-9808-F987B3901EA8}
O43 - CFD: 13/04/2012 - 23:52:49 - [0] ----D C:\Users\Christian\AppData\Local\{E65F1CD4-D598-4D6F-9B77-B08E3A288BF2}
O43 - CFD: 14/04/2012 - 22:59:46 - [0] ----D C:\Users\Christian\AppData\Local\{E6872BE4-1792-47D4-84B7-89EE2261496D}
O43 - CFD: 04/04/2012 - 20:57:03 - [0] ----D C:\Users\Christian\AppData\Local\{E949FD73-4CD8-4E7E-8A61-A56039998AE8}
O43 - CFD: 13/04/2012 - 23:52:49 - [0] ----D C:\Users\Christian\AppData\Local\{EC0C3C93-BD76-4321-9BB2-E9E3A743E148}
O43 - CFD: 10/04/2012 - 20:16:44 - [0] ----D C:\Users\Christian\AppData\Local\{EE2713BB-E927-46B0-9493-2C7FD72B75E9}
O43 - CFD: 09/04/2012 - 07:56:10 - [0] ----D C:\Users\Christian\AppData\Local\{F5B10482-6D76-4344-9B27-681B38213295}
O43 - CFD: 03/04/2012 - 19:36:02 - [0] ----D C:\Users\Christian\AppData\Local\{F931B273-2D24-4D27-B42C-F6AB3FCBF09F}
O43 - CFD: 14/07/2009 - 06:54:32 - [0,014] R---D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 30/03/2012 - 08:41:22 - [0,000] R---D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 10/04/2012 - 07:52:45 - [0] ----D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Facebook
O43 - CFD: 02/04/2012 - 13:38:44 - [0,001] ----D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HP
O43 - CFD: 14/07/2009 - 06:49:38 - [0,001] R---D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 28/04/2012 - 09:56:50 - [0] R---D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 09/04/2012 - 07:52:02 - [0,001] ----D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TubeMaster++
O43 - CFD: 28/03/2012 - 20:25:00 - [0,003] ----D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 30/03/2012 - 15:13:14 - [173,312] ----D C:\Program Files (x86)\ABBYY FineReader 9.0 Sprint
O43 - CFD: 28/03/2012 - 22:28:35 - [109,252] ----D C:\Program Files (x86)\ACD Systems
O43 - CFD: 28/03/2012 - 20:45:57 - [1086,261] ----D C:\Program Files (x86)\Adobe
O43 - CFD: 29/12/2011 - 10:17:59 - [2,323] ----D C:\Program Files (x86)\AMD APP
O43 - CFD: 29/12/2011 - 10:17:48 - [66,593] ----D C:\Program Files (x86)\ATI Technologies
O43 - CFD: 28/03/2012 - 18:08:17 - [191,885] ----D C:\Program Files (x86)\Avira
O43 - CFD: 30/03/2012 - 13:43:54 - [1,064] ----D C:\Program Files (x86)\ByeBye
O43 - CFD: 28/04/2012 - 08:40:17 - [716,632] ----D C:\Program Files (x86)\Common Files
O43 - CFD: 29/12/2011 - 10:29:09 - [209,862] ----D C:\Program Files (x86)\CyberLink
O43 - CFD: 30/03/2012 - 15:06:40 - [7,994] ----D C:\Program Files (x86)\epson
O43 - CFD: 30/03/2012 - 15:08:28 - [169,674] ----D C:\Program Files (x86)\Epson Software
O43 - CFD: 28/03/2012 - 23:09:14 - [11,942] ----D C:\Program Files (x86)\FIXIO PC Utilities
O43 - CFD: 21/04/2012 - 06:29:40 - [525,234] ----D C:\Program Files (x86)\Google
O43 - CFD: 29/03/2012 - 17:10:43 - [453,001] ----D C:\Program Files (x86)\Hewlett-Packard
O43 - CFD: 09/04/2012 - 14:26:21 - [171,894] ----D C:\Program Files (x86)\HP
O43 - CFD: 15/04/2012 - 13:19:00 - [35,738] ----D C:\Program Files (x86)\HP Games
O43 - CFD: 29/12/2011 - 10:31:07 - [53,912] ----D C:\Program Files (x86)\HP SimplePass 2011
O43 - CFD: 30/03/2012 - 15:08:26 - [53,063] ----D C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 29/12/2011 - 10:22:44 - [37,927] ----D C:\Program Files (x86)\Intel
O43 - CFD: 12/04/2012 - 08:25:03 - [4,917] ----D C:\Program Files (x86)\Internet Explorer
O43 - CFD: 05/04/2012 - 23:56:58 - [254,873] ----D C:\Program Files (x86)\Java
O43 - CFD: 12/04/2012 - 08:25:59 - [11,573] ----D C:\Program Files (x86)\Malwarebytes' Anti-Malware
O43 - CFD: 29/03/2012 - 17:01:22 - [0] ----D C:\Program Files (x86)\Microsoft
O43 - CFD: 28/03/2012 - 18:53:44 - [38,002] ----D C:\Program Files (x86)\Microsoft Analysis Services
O43 - CFD: 28/03/2012 - 22:04:39 - [744,558] ----D C:\Program Files (x86)\Microsoft Office
O43 - CFD: 29/03/2012 - 23:42:50 - [36,634] ----D C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 04/11/2011 - 15:41:19 - [1,745] ----D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 31/03/2012 - 00:25:47 - [7,789] ----D C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 14/07/2009 - 07:32:38 - [0,025] ----D C:\Program Files (x86)\MSBuild
O43 - CFD: 28/03/2012 - 19:07:41 - [6,099] ----D C:\Program Files (x86)\MSECache
O43 - CFD: 29/03/2012 - 23:24:07 - [0] ----D C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 03/04/2012 - 11:34:10 - [17,414] ----D C:\Program Files (x86)\MyTomTom 3
O43 - CFD: 29/03/2012 - 20:38:46 - [45,255] ----D C:\Program Files (x86)\Nikon
O43 - CFD: 28/03/2012 - 23:33:13 - [132,890] ----D C:\Program Files (x86)\Nokia
O43 - CFD: 28/03/2012 - 17:47:43 - [20,218] R---D C:\Program Files (x86)\Online Services
O43 - CFD: 01/04/2012 - 20:24:26 - [353,458] ----D C:\Program Files (x86)\OpenOffice.org 3
O43 - CFD: 28/03/2012 - 23:32:40 - [20,785] ----D C:\Program Files (x86)\PC Connectivity Solution
O43 - CFD: 28/03/2012 - 23:47:59 - [34,655] ----D C:\Program Files (x86)\PDFCreator
O43 - CFD: 28/03/2012 - 23:13:33 - [12,705] ----D C:\Program Files (x86)\PhotoZoom Pro 3
O43 - CFD: 31/03/2012 - 11:43:04 - [78,384] ----D C:\Program Files (x86)\Pinnacle
O43 - CFD: 28/03/2012 - 23:36:34 - [56,148] ----D C:\Program Files (x86)\PlayerTuto.com
O43 - CFD: 28/03/2012 - 22:53:12 - [67,375] ----D C:\Program Files (x86)\Portrait Professional 10
O43 - CFD: 29/12/2011 - 10:20:08 - [16,710] ----D C:\Program Files (x86)\Realtek
O43 - CFD: 14/07/2009 - 07:32:38 - [37,345] ----D C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 28/03/2012 - 18:27:46 - [48,858] ----D C:\Program Files (x86)\Siber Systems
O43 - CFD: 28/03/2012 - 23:58:53 - [16,513] R---D C:\Program Files (x86)\Skype
O43 - CFD: 29/03/2012 - 21:42:05 - [0] ----D C:\Program Files (x86)\Software
O43 - CFD: 15/04/2012 - 10:00:51 - [67,332] ----D C:\Program Files (x86)\Spybot - Search & Destroy
O43 - CFD: 03/04/2012 - 11:34:12 - [0,021] ----D C:\Program Files (x86)\TomTom International B.V
O43 - CFD: 28/04/2012 - 09:35:37 - [10,323] ----D C:\Program Files (x86)\TubeMaster++
O43 - CFD: 12/04/2012 - 08:41:20 - [17,341] ----D C:\Program Files (x86)\Uniblue
O43 - CFD: 14/07/2009 - 06:57:06 - [0] ----D C:\Program Files (x86)\Uninstall Information
O43 - CFD: 28/03/2012 - 21:19:00 - [0] ----D C:\Program Files (x86)\Video Codec
O43 - CFD: 28/03/2012 - 23:27:14 - [88,797] ----D C:\Program Files (x86)\VideoLAN
O43 - CFD: 29/03/2012 - 20:30:16 - [5,113] ----D C:\Program Files (x86)\VisiPics
O43 - CFD: 28/03/2012 - 18:40:07 - [6,048] ----D C:\Program Files (x86)
Goldboy55
Messages postés
16
Date d'inscription
dimanche 18 septembre 2011
Statut
Membre
Dernière intervention
11 avril 2018
28 avril 2012 à 10:09
28 avril 2012 à 10:09
---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.2A7602E1706AA8F6FB7FFE61E8BC13D2] - 28/04/2012 - 06:55:11 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1761847]
O44 - LFC:[MD5.1B52748CCE7AE7043D97FCF72101CCCB] - 28/04/2012 - 06:51:49 ---A- . (...) -- C:\Windows\setupact.log [784]
O44 - LFC:[MD5.81A3E6FD1B50BEB921DCE47384B7BD22] - 28/04/2012 - 06:51:48 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.2090AA64A253C81941A76F92838DE8C5] - 28/04/2012 - 06:50:37 ---A- . (...) -- C:\AdwCleaner[S1].txt [3050]
O44 - LFC:[MD5.B8EC877048966932AA7ACD9FF902CBC0] - 28/04/2012 - 06:49:32 ---A- . (...) -- C:\AdwCleaner[R2].txt [3579]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 26/04/2012 - 11:54:27 . (...) -- C:\Windows\System32\HP_ActiveX_Patch_NOT_DETECTED.txt [0]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 26/04/2012 - 11:54:27 ---A- . (...) -- C:\Windows\SysNative\HP_ActiveX_Patch_NOT_DETECTED.txt [0]
O44 - LFC:[MD5.51BF01BAF7C37BFA4D0F2E312260409F] - 24/04/2012 - 09:44:53 . (...) -- C:\Windows\System32\perfc009.dat [106388]
O44 - LFC:[MD5.06F4A1AC395566976A6D2DD6F2476466] - 24/04/2012 - 09:44:53 . (...) -- C:\Windows\System32\perfc00C.dat [130754]
O44 - LFC:[MD5.292D73475BE80053866F13626BBE8C34] - 24/04/2012 - 09:44:53 . (...) -- C:\Windows\System32\perfh009.dat [616008]
O44 - LFC:[MD5.91B1D84E3D4674DD0279F05DFA4C2512] - 24/04/2012 - 09:44:53 . (...) -- C:\Windows\System32\perfh00C.dat [704480]
O44 - LFC:[MD5.4CA3500495312D7627DEB1A65A47FCC0] - 24/04/2012 - 09:44:53 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [1549700]
O44 - LFC:[MD5.51BF01BAF7C37BFA4D0F2E312260409F] - 24/04/2012 - 09:44:53 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [106388]
O44 - LFC:[MD5.06F4A1AC395566976A6D2DD6F2476466] - 24/04/2012 - 09:44:53 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [130754]
O44 - LFC:[MD5.292D73475BE80053866F13626BBE8C34] - 24/04/2012 - 09:44:53 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [616008]
O44 - LFC:[MD5.91B1D84E3D4674DD0279F05DFA4C2512] - 24/04/2012 - 09:44:53 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [704480]
O44 - LFC:[MD5.4CA3500495312D7627DEB1A65A47FCC0] - 24/04/2012 - 09:44:53 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1549700]
O44 - LFC:[MD5.E185BDA84E5F03F4E1D8DCA30E209277] - 15/04/2012 - 18:49:48 ---A- . (...) -- C:\Windows\epplauncher.mif [1912]
O44 - LFC:[MD5.0F3BD3A59059C5EE654394918629D9F1] - 15/04/2012 - 16:05:20 ---A- . (...) -- C:\Windows\PFRO.log [2292]
O44 - LFC:[MD5.5527A7E25E2C11DF9D344B01B20C25B2] - 15/04/2012 - 15:24:09 ---A- . (...) -- C:\AdwCleaner[R1].txt [3103]
O44 - LFC:[MD5.63E96963840D00DDA60BB80FC95100E6] - 15/04/2012 - 14:45:01 ---A- . (...) -- C:\PhysicalMBR.bin [512]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 15/04/2012 - 12:22:11 ---A- . (...) -- C:\Windows\setuperr.log [0]
O44 - LFC:[MD5.A951FAD08A64CDD1633995F013A9B2F6] - 15/04/2012 - 09:16:53 ---A- . (...) -- C:\Windows\wininit.ini [772]
O44 - LFC:[MD5.DBC08862A71459E74F7538B432C114CC] - 04/04/2012 - 14:56:40 . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [24904]
O44 - LFC:[MD5.FA1D4EA3387C6916C5B6318D97E6EFBB] - 02/04/2012 - 21:30:59 . (...) -- C:\Windows\System32\FNTCACHE.DAT [5012792]
O44 - LFC:[MD5.FA1D4EA3387C6916C5B6318D97E6EFBB] - 02/04/2012 - 21:30:59 ---A- . (...) -- C:\Windows\SysNative\FNTCACHE.DAT [5012792]
O44 - LFC:[MD5.30A933B9564C7B090F349C6E2F1F6DB8] - 02/04/2012 - 12:42:05 . (.Hewlett-Packard Company - port monitor UI.) -- C:\Windows\System32\hppfaxprintermonui5.dll [22072]
O44 - LFC:[MD5.593789385C1AC39E01C21C0CE8541A04] - 02/04/2012 - 12:42:05 . (.Hewlett-Packard Company - port monitor.) -- C:\Windows\System32\hppfaxprintermon5.dll [27704]
O44 - LFC:[MD5.30A933B9564C7B090F349C6E2F1F6DB8] - 02/04/2012 - 12:42:05 ----- . (.Hewlett-Packard Company - port monitor UI.) -- C:\Windows\SysNative\hppfaxprintermonui5.dll [22072]
O44 - LFC:[MD5.593789385C1AC39E01C21C0CE8541A04] - 02/04/2012 - 12:42:05 ----- . (.Hewlett-Packard Company - port monitor.) -- C:\Windows\SysNative\hppfaxprintermon5.dll [27704]
O44 - LFC:[MD5.499E597760E7C6041F7E5238D1F6CF41] - 02/04/2012 - 12:42:04 . (...) -- C:\Windows\System32\hppfaxprinter5.ini [242]
O44 - LFC:[MD5.DD7716784DC716CA04810E3C6E872356] - 02/04/2012 - 12:42:04 . (...) -- C:\Windows\System32\winzvprt5.sys [608]
O44 - LFC:[MD5.499E597760E7C6041F7E5238D1F6CF41] - 02/04/2012 - 12:42:04 ---A- . (...) -- C:\Windows\SysNative\hppfaxprinter5.ini [242]
O44 - LFC:[MD5.DD7716784DC716CA04810E3C6E872356] - 02/04/2012 - 12:42:04 -SHA- . (...) -- C:\Windows\SysNative\winzvprt5.sys [608]
O44 - LFC:[MD5.4477177A66C9F76B76B051C70B9EC1E3] - 02/04/2012 - 12:36:35 . (.Hewlett Packard - HP Scan Coinstaller.) -- C:\Windows\System32\hppscancoins64.dll [217656]
O44 - LFC:[MD5.05F062A5A7A8D22CF9AD31A5C77270F0] - 02/04/2012 - 12:36:35 . (.Hewlett-Packard - Hewlett-Packard WIA minidriver..) -- C:\Windows\System32\hpxp1530_x64.dll [976440]
O44 - LFC:[MD5.8BBC53158A1569C00DAA6682438DBF4F] - 02/04/2012 - 12:36:35 . (.Hewlett-Packard - TULIP Scan Module.) -- C:\Windows\System32\hpptsp06_x64.dll [1150520]
O44 - LFC:[MD5.4477177A66C9F76B76B051C70B9EC1E3] - 02/04/2012 - 12:36:35 ---A- . (.Hewlett Packard - HP Scan Coinstaller.) -- C:\Windows\SysNative\hppscancoins64.dll [217656]
O44 - LFC:[MD5.05F062A5A7A8D22CF9AD31A5C77270F0] - 02/04/2012 - 12:36:35 ---A- . (.Hewlett-Packard - Hewlett-Packard WIA minidriver..) -- C:\Windows\SysNative\hpxp1530_x64.dll [976440]
O44 - LFC:[MD5.8BBC53158A1569C00DAA6682438DBF4F] - 02/04/2012 - 12:36:35 ---A- . (.Hewlett-Packard - TULIP Scan Module.) -- C:\Windows\SysNative\hpptsp06_x64.dll [1150520]
O44 - LFC:[MD5.AA2790DDA5EBE22FE5AAC11DA1103E5B] - 02/04/2012 - 12:36:28 . (.Hewlett Packard - LEDM FAX.) -- C:\Windows\System32\Drivers\hppdfaxio.sys [23576]
O44 - LFC:[MD5.15AB9844A2541628EC36D3B6C22FA885] - 02/04/2012 - 12:36:28 . (.Hewlett Packard - hppfax.) -- C:\Windows\System32\hpmldmfax02.dll [235520]
O44 - LFC:[MD5.15AB9844A2541628EC36D3B6C22FA885] - 02/04/2012 - 12:36:28 ---A- . (.Hewlett Packard - hppfax.) -- C:\Windows\SysNative\hpmldmfax02.dll [235520]
O44 - LFC:[MD5.E325F85012E793CEE74B73C4F22AE311] - 02/04/2012 - 12:36:25 . (.Hewlett Packard - LEDM BULK.) -- C:\Windows\System32\Drivers\hppdbulkio.sys [22040]
O44 - LFC:[MD5.FCC4B37DFDD3114E82A5D73B23972477] - 02/04/2012 - 12:36:25 . (.Hewlett Packard - LEDM USB Composite Support Driver.) -- C:\Windows\System32\Drivers\hppdgenio.sys [31768]
O44 - LFC:[MD5.93DE6DC1EEBD57AA02B62E18D64D7E5B] - 02/04/2012 - 12:36:25 . (.Hewlett Packard - hppbulk.) -- C:\Windows\System32\hpmldm02.dll [235008]
O44 - LFC:[MD5.93DE6DC1EEBD57AA02B62E18D64D7E5B] - 02/04/2012 - 12:36:25 ---A- . (.Hewlett Packard - hppbulk.) -- C:\Windows\SysNative\hpmldm02.dll [235008]
O44 - LFC:[MD5.910906024DC7CA07E3CB86829E0C5F5F] - 02/04/2012 - 12:36:22 . (.Hewlett-Packard - HPB Print Coinstaller.) -- C:\Windows\System32\hpbcoins64.dll [311296]
O44 - LFC:[MD5.910906024DC7CA07E3CB86829E0C5F5F] - 02/04/2012 - 12:36:22 ---A- . (.Hewlett-Packard - HPB Print Coinstaller.) -- C:\Windows\SysNative\hpbcoins64.dll [311296]
O44 - LFC:[MD5.3784F03768B522F6B4FE050F65EF6B64] - 02/04/2012 - 12:36:11 . (.Hewlett-Packard - LEDM USB Composite Bulk Helper.) -- C:\Windows\System32\hppdcompio.dll [193592]
O44 - LFC:[MD5.3784F03768B522F6B4FE050F65EF6B64] - 02/04/2012 - 12:36:11 ---A- . (.Hewlett-Packard - LEDM USB Composite Bulk Helper.) -- C:\Windows\SysNative\hppdcompio.dll [193592]
O44 - LFC:[MD5.F6D457D7B0F425FFFFE706D0A2777540] - 02/04/2012 - 12:36:04 . (.Hewlett-Packard Corporation - Pas de description.) -- C:\Windows\System32\hpcpn101.dll [176128]
O44 - LFC:[MD5.F6D457D7B0F425FFFFE706D0A2777540] - 02/04/2012 - 12:36:04 ---A- . (.Hewlett-Packard Corporation - Pas de description.) -- C:\Windows\SysNative\hpcpn101.dll [176128]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 31/03/2012 - 10:47:40 . (...) -- C:\Windows\System32\Drivers\Msft_User_wpdcomp_01_09_00.Wdf [0]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 31/03/2012 - 10:47:35 . (...) -- C:\Windows\System32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf [0]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 31/03/2012 - 10:47:28 . (...) -- C:\Windows\System32\Drivers\Msft_Kernel_ccdcmbx64_01009.Wdf [0]
O44 - LFC:[MD5.C8F3119AD72A507D12EF389DF4C266EF] - 31/03/2012 - 10:31:57 . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\Drivers\ewusbmdm.sys [115328]
O44 - LFC:[MD5.A311AF088D80CB945714D44DEB92BF7A] - 30/03/2012 - 14:08:02 ---A- . (...) -- C:\Windows\setup.iss [306]
O44 - LFC:[MD5.BAC5074667751F72A9CE48CDC31BAC48] - 30/03/2012 - 14:05:38 . (.SEIKO EPSON CORP. - E_GCINST.) -- C:\Windows\System32\E_GCINST.DLL [10752]
O44 - LFC:[MD5.BAC5074667751F72A9CE48CDC31BAC48] - 30/03/2012 - 14:05:38 ---A- . (.SEIKO EPSON CORP. - E_GCINST.) -- C:\Windows\SysNative\E_GCINST.DLL [10752]
O44 - LFC:[MD5.059B16DB7FD14D38B7F4E312D793B972] - 30/03/2012 - 14:05:23 . (.SEIKO EPSON CORPORATION - EPSON Bi-directional Monitor AMD64.) -- C:\Windows\System32\E_ILMHJE.DLL [118784]
O44 - LFC:[MD5.059B16DB7FD14D38B7F4E312D793B972] - 30/03/2012 - 14:05:23 ---A- . (.SEIKO EPSON CORPORATION - EPSON Bi-directional Monitor AMD64.) -- C:\Windows\SysNative\E_ILMHJE.DLL [118784]
O44 - LFC:[MD5.225B67EE62F582B3BEFC5DAF72E8FAA2] - 30/03/2012 - 14:05:19 . (.SEIKO EPSON CORPORATION - ECBTEGB AMD64.) -- C:\Windows\System32\E_IBCBHJE.DLL [88064]
O44 - LFC:[MD5.225B67EE62F582B3BEFC5DAF72E8FAA2] - 30/03/2012 - 14:05:19 ---A- . (.SEIKO EPSON CORPORATION - ECBTEGB AMD64.) -- C:\Windows\SysNative\E_IBCBHJE.DLL [88064]
O44 - LFC:[MD5.E69D7BEBBE41D971EE15D1E00CB5F3C8] - 30/03/2012 - 14:04:54 . (.Seiko Epson Corporation - EPSON Scan Device Application Utility.) -- C:\Windows\System32\esdevapp.exe [132560]
O44 - LFC:[MD5.CD550F0416BE3AB942C0B3A5FDD1B69A] - 30/03/2012 - 14:04:54 . (.Seiko Epson Corporation - EPSON Scanner device co-installer.) -- C:\Windows\System32\esxcdev.dll [13824]
O44 - LFC:[MD5.CF78603EAFD1DDFE037DB66F07BAF556] - 30/03/2012 - 14:04:54 . (.Seiko Epson Corporation - Epson WIA Module.) -- C:\Windows\System32\esxw2ud.dll [464384]
O44 - LFC:[MD5.E69D7BEBBE41D971EE15D1E00CB5F3C8] - 30/03/2012 - 14:04:54 ---A- . (.Seiko Epson Corporation - EPSON Scan Device Application Utility.) -- C:\Windows\SysNative\esdevapp.exe [132560]
O44 - LFC:[MD5.CD550F0416BE3AB942C0B3A5FDD1B69A] - 30/03/2012 - 14:04:54 ---A- . (.Seiko Epson Corporation - EPSON Scanner device co-installer.) -- C:\Windows\SysNative\esxcdev.dll [13824]
O44 - LFC:[MD5.CF78603EAFD1DDFE037DB66F07BAF556] - 30/03/2012 - 14:04:54 ---A- . (.Seiko Epson Corporation - Epson WIA Module.) -- C:\Windows\SysNative\esxw2ud.dll [464384]
O44 - LFC:[MD5.7982432527482E63E187BF322C0CF55B] - 14/12/2010 - 09:26:13 . (...) -- C:\Windows\System32\hppls1530.spf [3211]
O44 - LFC:[MD5.7982432527482E63E187BF322C0CF55B] - 14/12/2010 - 09:26:13 ---A- . (...) -- C:\Windows\SysNative\hppls1530.spf [3211]
~ Scan Files in 00mn 28s
---\\ Déni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l'Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corp. - LiveSSP.) -- C:\Windows\System32\livessp.dll
~ Scan Keys in 00mn 00s
---\\ Contrôle du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d'extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d'extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
~ Scan CSB in 00mn 00s
---\\ MountPoints2 Shell Key (O51)
O51 - MPSK:{4f4c9720-7a85-11e1-a3dd-ec9a7456ab0d}\AutoRun\command. (...) -- H:\setup_vmc_lite.exe (.not file.)
O51 - MPSK:{4f4c9727-7a85-11e1-a3dd-ec9a7456ab0d}\AutoRun\command. (...) -- I:\setup_vmc_lite.exe (.not file.)
~ Scan Keys in 00mn 00s
---\\ Trojan Driver Search Data (HKLM) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \Drivers32\"VIDC.ACDV"="ACDV.dll" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
~ Scan Keys in 00mn 00s
---\\ ShareTools MSconfig StartupReg (O53)
O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O53 - SMSR:HKLM\...\startupreg\AdobeAAMUpdater-1.0 [Key] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe
O53 - SMSR:HKLM\...\startupreg\AdobeCS5ServiceManager [Key] . (.Adobe Systems Incorporated - Adobe CS5 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe
O53 - SMSR:HKLM\...\startupreg\Browser companion helper [Key] . (...) -- C:\Program Files (x86)\BrowserCompanion\BCHelper.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Easybits Recovery [Key] . (...) -- C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\EEventManager [Key] . (.SEIKO EPSON CORPORATION - EEventManager Application.) -- C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
O53 - SMSR:HKLM\...\startupreg\EPSON SX130 Series [Key] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHJE.exe
O53 - SMSR:HKLM\...\startupreg\ExpressFiles [Key] . (...) -- C:\Program Files (x86)\ExpressFiles\ExpressFiles.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\HP Quick Launch [Key] . (.Hewlett-Packard Development Company, L.P. - HP Message Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
O53 - SMSR:HKLM\...\startupreg\HPOSD [Key] . (.Hewlett-Packard Development Company, L.P. - HP On Screen Display.) -- C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
O53 - SMSR:HKLM\...\startupreg\HPQuickWebProxy [Key] . (.Hewlett-Packard Company - HP QuickWeb Utilities.) -- C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe
O53 - SMSR:HKLM\...\startupreg\MobileConnect [Key] . (.Vodafone - MobileConnect.) -- C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\MobileConnect.exe
O53 - SMSR:HKLM\...\startupreg\msnmsgr [Key] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
O53 - SMSR:HKLM\...\startupreg\Nikon Message Center 2 [Key] . (.Nikon Corporation - Nikon Message Center 2.) -- C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe
O53 - SMSR:HKLM\...\startupreg\NokiaSuite.exe [Key] . (.Nokia - Nokia Suite.) -- C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe
O53 - SMSR:HKLM\...\startupreg\StartCCC [Key] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
O53 - SMSR:HKLM\...\startupreg\SweetIM [Key] . (...) -- C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\SwitchBoard [Key] . (.Adobe Systems Incorporated - SwitchBoard Server (32 bit).) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O53 - SMSR:HKLM\...\startupreg\SynTPEnh [Key] . (...) -- C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\SysTrayApp [Key] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe
O53 - SMSR:HKLM\...\startupreg\uTorrent [Key] . (...) -- C:\Program Files (x86)\uTorrent\uTorrent.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\vProt [Key] . (...) -- C:\Program Files (x86)\AVG Secure Search\vprot.exe (.not file.)
~ Scan SMSR Keys in 00mn 00s
---\\ Microsoft Control Security Providers (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
~ Scan Keys in 00mn 00s
---\\ Microsoft Windows Policies System (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "HideFastUserSwitching"=0
O55 - MWPS:[HKCU\...\Policies\System] - "DisableLockWorkstation"=0
O55 - MWPS:[HKCU\...\Policies\System] - "DisableTaskMgr"=0
O55 - MWPS:[HKCU\...\Policies\System] - "DisableChangePassword"=0
~ Scan Keys in 00mn 00s
---\\ Microsoft Windows Policies Explorer (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "EnableShellExecuteHooks"=1
~ Scan Keys in 00mn 00s
---\\ Liste des Drivers Système (O58)
O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [491088]
O58 - SDL:[MD5.597F78224EE9224EA1A13D6350CED962] - 14/07/2009 - 02:52:21 . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\Drivers\adpahci.sys [339536]
O58 - SDL:[MD5.E109549C90F62FB570B9540C4B148E54] - 14/07/2009 - 02:52:21 . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\Drivers\adpu320.sys [182864]
O58 - SDL:[MD5.5812713A477A3AD7363C7438CA2EE038] - 14/07/2009 - 02:52:21 . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\Drivers\aliide.sys [15440]
O58 - SDL:[MD5.D4121AE6D0C0E7E13AA221AA57EF2D49] - 05/11/2011 - 23:04:16 . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\Drivers\amdsata.sys [107904]
O58 - SDL:[MD5.F67F933E79241ED32FF46A4F29B5120B] - 14/07/2009 - 02:52:20 . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows -.) -- C:\Windows\System32\Drivers\amdsbs.sys [194128]
O58 - SDL:[MD5.540DAF1CEA6094886D72126FD7C33048] - 05/11/2011 - 23:04:16 . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\Drivers\amdxata.sys [27008]
O58 - SDL:[MD5.C484F8CEB1717C540242531DB7845C4E] - 14/07/2009 - 02:52:21 . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\Drivers\arc.sys [87632]
O58 - SDL:[MD5.019AF6924AEFE7839F61C830227FE79C] - 14/07/2009 - 02:52:21 . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\Drivers\arcsas.sys [97856]
O58 - SDL:[MD5.F784F9BF32E708C71A63220E89A58496] - 18/08/2011 - 10:40:56 . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\Drivers\atikmdag.sys [9981952]
O58 - SDL:[MD5.43FD45C0DFE0A0FF2B8BE0D4AC165E18] - 18/08/2011 - 06:34:48 . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\Drivers\atikmpag.sys [310272]
O58 - SDL:[MD5.886CEDDEB9E347F7C37263CA234EAE65] - 28/03/2012 - 17:19:23 . (.Avira GmbH - Packet filtering kernel driver ( NDIS IM ).) -- C:\Windows\System32\Drivers\avfwim.sys [113768]
O58 - SDL:[MD5.10CE27CB8E47FEB48F557E0CD8D1874D] - 28/03/2012 - 17:19:23 . (.Avira GmbH - TDI filtering kernel driver.) -- C:\Windows\System32\Drivers\avfwot.sys [139512]
O58 - SDL:[MD5.AA8F79A1BDFC03B3BC70C44AB00589B4] - 01/12/2011 - 16:55:27 . (.Avira GmbH - Avira Minifilter Driver.) -- C:\Windows\System32\Drivers\avgntflt.sys [97312]
O58 - SDL:[MD5.852E3C0A60D368C487949E55AD52A47F] - 28/03/2012 - 17:19:25 . (.Avira GmbH - Avira Driver for Security Enhancement.) -- C:\Windows\System32\Drivers\avipbb.sys [132320]
O58 - SDL:[MD5.248DB59FC86DE44D2779F4C7FB1A567D] - 01/12/2011 - 16:55:27 . (.Avira GmbH - Avira Manager Driver.) -- C:\Windows\System32\Drivers\avkmgr.sys [27760]
O58 - SDL:[MD5.B5ACE6968304A3900EEB1EBFD9622DF2] - 10/06/2009 - 21:34:23 . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver..) -- C:\Windows\System32\Drivers\b57nd60a.sys [270848]
O58 - SDL:[MD5.9E84A931DBEE0292E38ED672F6293A99] - 10/06/2009 - 21:34:38 . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless driver.) -- C:\Windows\System32\Drivers\BCMWL664.SYS [1311232]
O58 - SDL:[MD5.F09EEE9EDC320B5E1501F749FDE686C8] - 10/06/2009 - 21:41:06 . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltLo.sys [18432]
O58 - SDL:[MD5.B114D3098E9BDB8BEA8B053685831BE6] - 10/06/2009 - 21:41:06 . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltUp.sys [8704]
O58 - SDL:[MD5.43BEA8D483BF1870F018E2D02E06A5BD] - 14/07/2009 - 02:19:07 . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\Drivers\BrSerId.sys [286720]
O58 - SDL:[MD5.A6ECA2151B08A09CACECA35C07F05B42] - 10/06/2009 - 21:41:10 . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\Drivers\BrSerWdm.sys [47104]
O58 - SDL:[MD5.B79968002C277E869CF38BD22CD61524] - 10/06/2009 - 21:41:10 . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\Drivers\BrUsbMdm.sys [14976]
O58 - SDL:[MD5.A87528880231C54E75EA7A44943B38BF] - 10/06/2009 - 21:41:10 . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\Drivers\BrUsbSer.sys [14720]
O58 - SDL:[MD5.3E5B191307609F7514148C6832BB0842] - 10/06/2009 - 21:34:28 . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\Drivers\bxvbda.sys [468480]
O58 - SDL:[MD5.41C1AC1F3613435EB32D67BCB80A5FA5] - 17/08/2011 - 11:58:20 . (.Nokia - Nokia USB Phone Bus Driver.) -- C:\Windows\System32\Drivers\ccdcmbox64.sys [27136]
O58 - SDL:[MD5.907B5E1E4A592E5EDC5E4CCBDE4863C2] - 17/08/2011 - 11:58:16 . (.Nokia - Nokia USB Phone Bus Driver.) -- C:\Windows\System32\Drivers\ccdcmbx64.sys [19968]
O58 - SDL:[MD5.50F92C943F18B070F166D019DFAB3D9A] - 28/07/2010 - 09:13:50 . (.CyberLink Corporation - CyberLink WebCam Virtual Driver.) -- C:\Windows\System32\Drivers\clwvd.sys [31088]
O58 - SDL:[MD5.E19D3F095812725D88F9001985B94EDD] - 14/07/2009 - 02:52:31 . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\cmdide.sys [17488]
O58 - SDL:[MD5.0E5DA5369A0FCAEA12456DD852545184] - 14/07/2009 - 02:47:48 . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [530496]
O58 - SDL:[MD5.DC5D737F51BE844D8C82C695EB17372F] - 10/06/2009 - 21:34:33 . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\Drivers\evbda.sys [3286016]
O58 - SDL:[MD5.C8F3119AD72A507D12EF389DF4C266EF] - 17/03/2008 - 10:06:14 . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\Drivers\ewusbmdm.sys [115328]
O58 - SDL:[MD5.F2523EF6460FC42405B12248338AB2F0] - 10/06/2009 - 21:31:59 . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\hcw85cir.sys [31232]
O58 - SDL:[MD5.A6518DCC42F7A6E999BB3BEA8FD87567] - 20/10/2010 - 01:34:26 . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\Drivers\HECIx64.sys [56344]
O58 - SDL:[MD5.E325F85012E793CEE74B73C4F22AE311] - 14/12/2010 - 09:26:56 . (.Hewlett Packard - LEDM BULK.) -- C:\Windows\System32\Drivers\hppdbulkio.sys [22040]
O58 - SDL:[MD5.AA2790DDA5EBE22FE5AAC11DA1103E5B] - 14/12/2010 - 09:26:44 . (.Hewlett Packard - LEDM FAX.) -- C:\Windows\System32\Drivers\hppdfaxio.sys [23576]
O58 - SDL:[MD5.FCC4B37DFDD3114E82A5D73B23972477] - 14/12/2010 - 09:26:32 . (.Hewlett Packard - LEDM USB Composite Support Driver.) -- C:\Windows\System32\Drivers\hppdgenio.sys [31768]
O58 - SDL:[MD5.39D2ABCD392F3D8A6DCE7B60AE7B8EFC] - 21/11/2010 - 04:23:47 . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\System32\Drivers\HpSAMD.sys [78720]
O58 - SDL:[MD5.26CF4275034214ECEDD8EC17B0A18A99] - 26/04/2011 - 11:07:36 . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\Drivers\iaStor.sys [557848]
O58 - SDL:[MD5.AAAF44DB3BD0B9D1FB6969B23ECC8366] - 05/11/2011 - 23:04:16 . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\Drivers\iaStorV.sys [410496]
O58 - SDL:[MD5.33FAA40B288002C89529DBD14F3AB72C] - 09/08/2011 - 17:32:02 . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\Drivers\igdkmd64.sys [12289472]
O58 - SDL:[MD5.33FAA40B288002C89529DBD14F3AB72C] - 09/08/2011 - 17:32:02 . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\Drivers\igdpmd64.sys [12289472]
O58 - SDL:[MD5.5C18831C61933628F5BB0EA2675B9D21] - 14/07/2009 - 02:48:04 . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\Drivers\iirsp.sys [44112]
O58 - SDL:[MD5.FC727061C0F47C8059E88E05D5C8E381] - 15/10/2010 - 10:28:16 . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\Drivers\IntcDAud.sys [317440]
O58 - SDL:[MD5.1A93E54EB0ECE102495A51266DCDB6A6] - 14/07/2009 - 02:48:04 . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_fc.sys [114752]
O58 - SDL:[MD5.1047184A9FDC8BDBFF857175875EE810] - 14/07/2009 - 02:48:04 . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas.sys [106560]
O58 - SDL:[MD5.30F5C0DE1EE8B5BC9306C1F0E4A75F93] - 14/07/2009 - 02:48:04 . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas2.sys [65600]
O58 - SDL:[MD5.0504EACAFF0D3C8AED161C4B0D369D4A] - 14/07/2009 - 02:48:04 . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_scsi.sys [115776]
O58 - SDL:[MD5.024DA28053D57E9E32BEE52600576BBB] - 23/09/2005 - 22:18:34 . (.Pinnacle Systems GmbH - Pinnacle Marvin Discrete Bus Enumerator.) -- C:\Windows\System32\Drivers\MarvinBus64.sys [261120]
O58 - SDL:[MD5.DBC08862A71459E74F7538B432C114CC] - 04/04/2012 - 14:56:40 . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [24904]
O58 - SDL:[MD5.A55805F747C6EDB6A9080D7C633BD0F4] - 14/07/2009 - 02:48:04 . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for.) -- C:\Windows\System32\Drivers\megasas.sys [35392]
O58 - SDL:[MD5.BAF74CE0072480C3B6B7C13B2A94D6B3] - 14/07/2009 - 02:48:04 . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\Drivers\MegaSR.sys [284736]
O58 - SDL:[MD5.A98071E3E1E5E503462CC9E0DED91A36] - 19/07/2011 - 10:19:16 . (.Ralink Technology, Corp. - Ralink 802.11 Wireless Adapter Driver.) -- C:\Windows\System32\Drivers\netr28x.sys [1492992]
O58 - SDL:[MD5.77889813BE4D166CDAB78DDBA990DA92] - 14/07/2009 - 02:48:26 . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\Drivers\nfrd960.sys [51264]
O58 - SDL:[MD5.351533ACC2A069B94E80BBFC177E8FDF] - 25/06/2010 - 18:07:26 . (.CACE Technologies, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\Windows\System32\Drivers\npf.sys [35344]
O58 - SDL:[MD5.A85B4F2EF3A7304A5399EF0526423040] - 10/06/2009 - 21:35:35 . (.NVIDIA Corporation - NVIDIA MCP Networking Function Driver..) -- C:\Windows\System32\Drivers\nvm62x64.sys [408960]
O58 - SDL:[MD5.0A92CB65770442ED0DC44834632F66AD] - 05/11/2011 - 23:04:16 . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\Drivers\nvraid.sys [148352]
O58 - SDL:[MD5.DAB0E87525C10052BF65F06152F37E4A] - 05/11/2011 - 23:04:16 . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\Drivers\nvstor.sys [166272]
O58 - SDL:[MD5.BC0018C2D29F655188A0ED3FA94FDB24] - 28/08/2008 - 11:44:42 . (.Nokia - PCCS Mode Change Filter Driver.) -- C:\Windows\System32\Drivers\pccsmcfdx64.sys [25600]
O58 - SDL:[MD5.A53A15A11EBFD21077463EE2C7AFEEF0] - 14/07/2009 - 02:45:46 . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\Drivers\ql2300.sys [1524816]
O58 - SDL:[MD5.4F6D12B51DE1AAEFF7DC58C4D75423C8] - 14/07/2009 - 02:45:45 . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\Drivers\ql40xx.sys [128592]
O58 - SDL:[MD5.9140DB0911DE035FED0A9A77A2D156EA] - 24/08/2011 - 06:57:24 . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Driver.) -- C:\Windows\System32\Drivers\Rt64win7.sys [565352]
O58 - SDL:[MD5.6E5C3D18C3BCC72AA527DBC5FA61AB8F] - 02/09/2011 - 20:46:00 . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vista/Win7.) -- C:\Windows\System32\Drivers\RtsPStor.sys [339048]
O58 - SDL:[MD5.3EA8A16169C26AFBEB544E0E48421186] - 10/06/2009 - 21:37:19 . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\System32\Drivers\secdrv.sys [23040]
O58 - SDL:[MD5.C1D8E28B2C2ADFAEC4BA89E9FDA69BD6] - 14/07/2009 - 01:00:40 . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\Drivers\serial.sys [94208]
O58 - SDL:[MD5.843CAF1E5FDE1FFD5FF768F23A51E2E1] - 14/07/2009 - 02:45:45 . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid2.sys [43584]
O58 - SDL:[MD5.6A6C106D42E9FFFF8B9FCB4F754F6DA4] - 14/07/2009 - 02:45:46 . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid4.sys [80464]
O58 - SDL:[MD5.F3817967ED533D08327DC73BC4D5542A] - 14/07/2009 - 02:45:55 . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\System32\Drivers\stexstor.sys [24656]
O58 - SDL:[MD5.EBC1A5E076A9BE314D3D9E8ED19ABB0A] - 08/09/2011 - 14:42:28 . (.IDT, Inc. - IDT PC Audio.) -- C:\Windows\System32\Drivers\stwrt64.sys [535040]
O58 - SDL:[MD5.C447977ED2A4AE9346FE3A0579A34D7C] - 10/06/2011 - 03:19:54 . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\System32\Drivers\SynTP.sys [1451056]
O58 - SDL:[MD5.8844CB19A37B65E27049D4A7786726A9] - 17/08/2011 - 11:58:26 . (.Nokia - Filter Driver for Nokia USB Phone Bus Driver.) -- C:\Windows\System32\Drivers\usbser_lowerfltjx64.sys [9216]
O58 - SDL:[MD5.4E93C8496359E97830C75AC36393654D] - 17/08/2011 - 11:58:22 . (.Nokia - Filter Driver for Nokia USB Phone Bus Driver.) -- C:\Windows\System32\Drivers\usbser_lowerfltx64.sys [9216]
O58 - SDL:[MD5.E5689D93FFE4E5D66C0178761240DD54] - 14/07/2009 - 02:45:55 . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\viaide.sys [17488]
O58 - SDL:[MD5.5E2016EA6EBACA03C04FEAC5F330D997] - 14/07/2009 - 02:45:55 . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\Drivers\vsmraid.sys [161872]
O58 - SDL:[MD5.0C4540311E11664B245A263E1154CEF8] - 10/06/2009 - 22:01:11 . (.Conexant Systems, Inc. - HSF_HWAZL WDM driver.) -- C:\Windows\System32\Drivers\VSTAZL6.SYS [292864]
O58 - SDL:[MD5.18E40C245DBFAF36FD0134A7EF2DF396] - 10/06/2009 - 22:01:11 . (.Conexant Systems, Inc. - HSF_CNXT driver.) -- C:\Windows\System32\Drivers\VSTCNXT6.SYS [740864]
O58 - SDL:[MD5.02071D207A9858FBE3A48CBFD59C4A04] - 10/06/2009 - 22:01:11 . (.Conexant Systems, Inc. - HSF_DP driver.) -- C:\Windows\System32\Drivers\VSTDPV6.SYS [1485312]
O58 - SDL:[MD5.DD7716784DC716CA04810E3C6E872356] - 30/12/1899 - 12:42:04 -SHA- . (...) -- C:\Windows\System32\winzvprt5.sys [608]
~ Scan Drivers in 00mn 03s
---\\ Liste des outils de nettoyage (O63)
O63 - Logiciel: ZHPDiag 1.30 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
~ Scan ADS in 00mn 00s
---\\ Liste des services Legacy (O64)
O64 - Services: CurCS - 18/08/2011 - C:\Windows\System32\DRIVERS\atikmdag.sys (amdkmdag) .(.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) - LEGACY_AMDKMDAG
O64 - Services: CurCS - 28/03/2012 - C:\Windows\System32\DRIVERS\avfwot.sys (avfwot) .(.Avira GmbH - TDI filtering kernel driver.) - LEGACY_AVFWOT
O64 - Services: CurCS - 01/12/2011 - C:\Windows\System32\DRIVERS\avgntflt.sys (avgntflt) .(.Avira GmbH - Avira Minifilter Driver.) - LEGACY_AVGNTFLT
O64 - Services: CurCS - 28/03/2012 - C:\Windows\System32\DRIVERS\avipbb.sys (avipbb) .(.Avira GmbH - Avira Driver for Security Enhancement.) - LEGACY_AVIPBB
O64 - Services: CurCS - 01/12/2011 - C:\Windows\System32\DRIVERS\avkmgr.sys (avkmgr) .(.Avira GmbH - Avira Manager Driver.) - LEGACY_AVKMGR
O64 - Services: CurCS - 09/08/2011 - C:\Windows\System32\DRIVERS\igdpmd64.sys (intelkmd) .(.Intel Corporation - Intel Graphics Kernel Mode Driver.) - LEGACY_INTELKMD
O64 - Services: CurCS - 04/04/2012 - C:\Windows\system32\drivers\mbam.sys (MBAMProtector) .(.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - LEGACY_MBAMPROTECTOR
O64 - Services: CurCS - 25/06/2010 - C:\Windows\System32\drivers\npf.sys (NPF) .(.CACE Technologies, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) - LEGACY_NPF
O64 - Services: CurCS - ??\??\???? - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV
~ Scan Services in 00mn 00s
---\\ File Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> <evtfile>[HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d'événements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> <ChromeHTML>[HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.html> <ChromeHTML>[HKCU\..\open\Command] (.Not Key.)
O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> <evtfile>[HKCR\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d'événements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> <ChromeHTML>[HKCR\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O67 - Shell Spawning: <.js> <JSFile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
~ Scan Keys in 00mn 00s
---\\ Start Menu Internet (O68)
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
~ Scan Keys in 00mn 00s
---\\ Search Browser Infection (O69)
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} [DefaultScope] - (Google) - https://www.google.com/?gws_rd=ssl
O69 - SBI: SearchScopes [HKCU] {8A244612-A1F7-11E0-95C0-E71F4824019B} - (Search) - https://badoo.com/
O69 - SBI: SearchScopes [HKCU] {b7fca997-d0fb-4fe0-8afd-255e89cf9671} - (Search) - https://badoo.com/
O69 - SBI: SearchScopes [HKCU] {d43b3890-80c7-4010-a95d-1e77b5924dc3} - (Search) - https://badoo.com/
O69 - SBI: SearchScopes [HKCU] {D944BB61-2E34-4DBF-A683-47E505C587DC} - (Search) - https://badoo.com/
O69 - SBI: SearchScopes [HKCU] {E2F3799C-66D3-4E63-A94A-852705019087} - (Search) - https://badoo.com/
~ Scan Keys in 00mn 00s
---\\ Recherche des services démarrés par Svchost (O83)
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d'application.) -- C:\Windows\System32\aelupsvc.dll [72192]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [853504]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [679424]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d'accès distant.) -- C:\Windows\System32\rasauto.dll [99328]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d'accès distant.) -- C:\Windows\System32\rasmans.dll [344064]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d'interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d'événements système (SENS).) -- C:\Windows\System32\sens.dll [64512]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [359424]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [316928]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur hôte de session Burea.) -- C:\Windows\System32\termsrv.dll [680960]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [2420736]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [849920]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [569344]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [30720]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d'application.) -- C:\Windows\System32\appinfo.dll [70656]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [67584]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [121856]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d'ordinateurs.) -- C:\Windows\System32\browser.dll [136192]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110016]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [90624]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [209920]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864]
~ Scan Services in 00mn 00s
---\\ Recherche particuliere à la racine de certains dossiers (O84)
[MD5.9835AF740C54D07808C5BCC0F4493114] [SPRF][13/04/2012] (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Users\Christian\AppData\Local\Temp\jre-6u32-windows-i586-iftw.exe [910112]
[MD5.B60BF8E731D3F99D321C15B3D607BF22] [SPRF][28/04/2012] (...) -- C:\Users\Christian\AppData\Local\Temp\Uninst.bat [542]
[MD5.8CE7705CB43B03BB7970B04087C7758F] [SPRF][30/06/2006] (.InstallShield Software Corporation - InstallShield Update Service Setup Player Module.) -- C:\Windows\Downloaded Program Files\dwusplay.dll [29616]
[MD5.01E2ECA759056F23C73A035FDABB2D6D] [SPRF][30/06/2006] (.InstallShield Software Corporation - InstallShield Update Service Setup Player.) -- C:\Windows\Downloaded Program Files\dwusplay.exe [201648]
[MD5.A54F3D88767BB8C7DC18D8263385DED2] [SPRF][16/05/2007] (.Macrovision Corporation - Macrovision Software Manager Web Agent.) -- C:\Windows\Downloaded Program Files\isusweb.dll [483328]
~ Scan Files in 00mn 00s
---\\ Firewall Active Exception List (FirewallRules) (O87)
O87 - FAEL: "NetPres-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-WSD-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-WSD-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-UDP-NoScope" |Out - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
~ Scan Firewall in 00mn 00s
---\\ Scan Additionnel (O88)
Database Version : 9092 - (25/04/2012)
Clés trouvées (Keys found) : 2
Valeurs trouvées (Values found) : 0
Dossiers trouvés (Folders found) : 0
Fichiers trouvés (Files found) : 0
[HKLM\Software\WOW6432Node\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}] =>Toolbar.Agent
[HKLM\Software\WOW6432Node\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}] =>Spyware.Soft2PC
~ Scan Additionnel in 00mn 06s
---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SR - | Auto 14/05/2009 759048 | ABBYY FineReader 9.0 Sprint Licensing Service (ABBYY.Licensing.FineReader.Sprint.9.0) . (.ABBYY.) - C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
SR - | Auto 03/01/2012 63928 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
SS - | Demand 26/04/2012 253088 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
SR - | Auto 18/08/2011 204288 | (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe
SR - | Auto 28/03/2012 616400 | (AntiVirFirewallService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avfwsvc.exe
SR - | Auto 28/03/2012 342480 | (AntiVirMailService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc.exe
SR - | Auto 28/03/2012 86224 | (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
SR - | Auto 28/03/2012 110032 | (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
SR - | Auto 28/03/2012 463824 | (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.exe
SR - | Auto 22/09/2010 191600 | (FIXIO Service) . (.LULU software.) - C:\Program Files (x86)\FIXIO PC Utilities\FIXIO PC Cleaner\FIXIO Service.exe
SR - | Auto 19/08/2011 260424 | (FPLService) . (.HP.) - C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe
SS - | Auto 28/03/2012 116648 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 28/03/2012 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 29/03/2012 182768 | (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
SS - | Auto 25/10/2010 145920 | (HP LaserJet Service) . (.HP.) - C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe
SR - | Auto 09/09/2011 86072 | (HP Support Assistant Service) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
SR - | Auto 16/02/2011 682040 | (HPAuto) . (.Hewlett-Packard.) - C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe
SR - | Auto 11/10/2010 346168 | (HPClientSvc) . (.Hewlett-Packard Company.) - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
SR - | Auto 12/09/2011 227896 | (HPDrvMntSvc.exe) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
SS - | Demand 12/09/2011 992824 | (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
SR - | Auto 15/02/2012 34872 | (HPWMISVC) . (.Hewlett-Packard Development Company, L.P..) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
SR - | Auto 30/04/2011 13592 | (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
SR - | Auto 01/09/2011 2425960 | (IconMan_R) . (.Realsil Microelectronics Inc..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
SR - | Auto 24/02/2011 212944 | (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
SR - | Auto 01/02/2011 326168 | (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
SR - | Auto 04/04/2012 654408 | (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
SS - | Demand 0 | Remote Packet Capture Protocol v.0 (experimental) (rpcapd) . (...) - %ProgramFiles(x86)%\WinPcap\rpcapd.exe
SR - | Auto 26/01/2009 1153368 | (SBSDWSCService) . (.Safer Networking Ltd..) - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
SS - | Demand 27/10/2011 718384 | (ServiceLayer) . (.Nokia.) - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
SS - | Auto 29/02/2012 158856 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
SR - | Auto 08/09/2011 305152 | C:\Windows\System32\stlang64.dll (STacSV) . (.IDT, Inc..) - C:\Program Files\IDT\WDM\STacSV64.exe
SS - | Demand 19/02/2010 517096 | (SwitchBoard) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
SR - | Auto 01/02/2011 2656280 | (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
SR - | Auto 04/07/2008 14336 | (VMCService) . (.Vodafone.) - C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe
SR - | Auto 0 | C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe
SR - | Auto 14/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
~ Scan Services in 00mn 07s
---\\ Recherche Master Boot Record Infection (MBR)(O80)
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
Run by Christian at 28/04/2012 09:59:51
device: opened successfully
user: error reading MBR
Disk trace:
error: Read Descripteur non valide
kernel: error reading MBR
~ Scan MBR in 00mn 02s
---\\ Recherche Master Boot Record Infection (MBRCheck)(O80)
Written by ad13, http://ad13.geekstog
Run by Christian at 28/04/2012 09:59:53
********* Dump file Name *********
C:\PhysicalDisk0_MBR.bin
~ Scan MBR in 00mn 04s
End of the scan (1802 lines in 01mn 25s)(0)
O44 - LFC:[MD5.2A7602E1706AA8F6FB7FFE61E8BC13D2] - 28/04/2012 - 06:55:11 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1761847]
O44 - LFC:[MD5.1B52748CCE7AE7043D97FCF72101CCCB] - 28/04/2012 - 06:51:49 ---A- . (...) -- C:\Windows\setupact.log [784]
O44 - LFC:[MD5.81A3E6FD1B50BEB921DCE47384B7BD22] - 28/04/2012 - 06:51:48 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.2090AA64A253C81941A76F92838DE8C5] - 28/04/2012 - 06:50:37 ---A- . (...) -- C:\AdwCleaner[S1].txt [3050]
O44 - LFC:[MD5.B8EC877048966932AA7ACD9FF902CBC0] - 28/04/2012 - 06:49:32 ---A- . (...) -- C:\AdwCleaner[R2].txt [3579]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 26/04/2012 - 11:54:27 . (...) -- C:\Windows\System32\HP_ActiveX_Patch_NOT_DETECTED.txt [0]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 26/04/2012 - 11:54:27 ---A- . (...) -- C:\Windows\SysNative\HP_ActiveX_Patch_NOT_DETECTED.txt [0]
O44 - LFC:[MD5.51BF01BAF7C37BFA4D0F2E312260409F] - 24/04/2012 - 09:44:53 . (...) -- C:\Windows\System32\perfc009.dat [106388]
O44 - LFC:[MD5.06F4A1AC395566976A6D2DD6F2476466] - 24/04/2012 - 09:44:53 . (...) -- C:\Windows\System32\perfc00C.dat [130754]
O44 - LFC:[MD5.292D73475BE80053866F13626BBE8C34] - 24/04/2012 - 09:44:53 . (...) -- C:\Windows\System32\perfh009.dat [616008]
O44 - LFC:[MD5.91B1D84E3D4674DD0279F05DFA4C2512] - 24/04/2012 - 09:44:53 . (...) -- C:\Windows\System32\perfh00C.dat [704480]
O44 - LFC:[MD5.4CA3500495312D7627DEB1A65A47FCC0] - 24/04/2012 - 09:44:53 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [1549700]
O44 - LFC:[MD5.51BF01BAF7C37BFA4D0F2E312260409F] - 24/04/2012 - 09:44:53 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [106388]
O44 - LFC:[MD5.06F4A1AC395566976A6D2DD6F2476466] - 24/04/2012 - 09:44:53 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [130754]
O44 - LFC:[MD5.292D73475BE80053866F13626BBE8C34] - 24/04/2012 - 09:44:53 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [616008]
O44 - LFC:[MD5.91B1D84E3D4674DD0279F05DFA4C2512] - 24/04/2012 - 09:44:53 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [704480]
O44 - LFC:[MD5.4CA3500495312D7627DEB1A65A47FCC0] - 24/04/2012 - 09:44:53 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1549700]
O44 - LFC:[MD5.E185BDA84E5F03F4E1D8DCA30E209277] - 15/04/2012 - 18:49:48 ---A- . (...) -- C:\Windows\epplauncher.mif [1912]
O44 - LFC:[MD5.0F3BD3A59059C5EE654394918629D9F1] - 15/04/2012 - 16:05:20 ---A- . (...) -- C:\Windows\PFRO.log [2292]
O44 - LFC:[MD5.5527A7E25E2C11DF9D344B01B20C25B2] - 15/04/2012 - 15:24:09 ---A- . (...) -- C:\AdwCleaner[R1].txt [3103]
O44 - LFC:[MD5.63E96963840D00DDA60BB80FC95100E6] - 15/04/2012 - 14:45:01 ---A- . (...) -- C:\PhysicalMBR.bin [512]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 15/04/2012 - 12:22:11 ---A- . (...) -- C:\Windows\setuperr.log [0]
O44 - LFC:[MD5.A951FAD08A64CDD1633995F013A9B2F6] - 15/04/2012 - 09:16:53 ---A- . (...) -- C:\Windows\wininit.ini [772]
O44 - LFC:[MD5.DBC08862A71459E74F7538B432C114CC] - 04/04/2012 - 14:56:40 . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [24904]
O44 - LFC:[MD5.FA1D4EA3387C6916C5B6318D97E6EFBB] - 02/04/2012 - 21:30:59 . (...) -- C:\Windows\System32\FNTCACHE.DAT [5012792]
O44 - LFC:[MD5.FA1D4EA3387C6916C5B6318D97E6EFBB] - 02/04/2012 - 21:30:59 ---A- . (...) -- C:\Windows\SysNative\FNTCACHE.DAT [5012792]
O44 - LFC:[MD5.30A933B9564C7B090F349C6E2F1F6DB8] - 02/04/2012 - 12:42:05 . (.Hewlett-Packard Company - port monitor UI.) -- C:\Windows\System32\hppfaxprintermonui5.dll [22072]
O44 - LFC:[MD5.593789385C1AC39E01C21C0CE8541A04] - 02/04/2012 - 12:42:05 . (.Hewlett-Packard Company - port monitor.) -- C:\Windows\System32\hppfaxprintermon5.dll [27704]
O44 - LFC:[MD5.30A933B9564C7B090F349C6E2F1F6DB8] - 02/04/2012 - 12:42:05 ----- . (.Hewlett-Packard Company - port monitor UI.) -- C:\Windows\SysNative\hppfaxprintermonui5.dll [22072]
O44 - LFC:[MD5.593789385C1AC39E01C21C0CE8541A04] - 02/04/2012 - 12:42:05 ----- . (.Hewlett-Packard Company - port monitor.) -- C:\Windows\SysNative\hppfaxprintermon5.dll [27704]
O44 - LFC:[MD5.499E597760E7C6041F7E5238D1F6CF41] - 02/04/2012 - 12:42:04 . (...) -- C:\Windows\System32\hppfaxprinter5.ini [242]
O44 - LFC:[MD5.DD7716784DC716CA04810E3C6E872356] - 02/04/2012 - 12:42:04 . (...) -- C:\Windows\System32\winzvprt5.sys [608]
O44 - LFC:[MD5.499E597760E7C6041F7E5238D1F6CF41] - 02/04/2012 - 12:42:04 ---A- . (...) -- C:\Windows\SysNative\hppfaxprinter5.ini [242]
O44 - LFC:[MD5.DD7716784DC716CA04810E3C6E872356] - 02/04/2012 - 12:42:04 -SHA- . (...) -- C:\Windows\SysNative\winzvprt5.sys [608]
O44 - LFC:[MD5.4477177A66C9F76B76B051C70B9EC1E3] - 02/04/2012 - 12:36:35 . (.Hewlett Packard - HP Scan Coinstaller.) -- C:\Windows\System32\hppscancoins64.dll [217656]
O44 - LFC:[MD5.05F062A5A7A8D22CF9AD31A5C77270F0] - 02/04/2012 - 12:36:35 . (.Hewlett-Packard - Hewlett-Packard WIA minidriver..) -- C:\Windows\System32\hpxp1530_x64.dll [976440]
O44 - LFC:[MD5.8BBC53158A1569C00DAA6682438DBF4F] - 02/04/2012 - 12:36:35 . (.Hewlett-Packard - TULIP Scan Module.) -- C:\Windows\System32\hpptsp06_x64.dll [1150520]
O44 - LFC:[MD5.4477177A66C9F76B76B051C70B9EC1E3] - 02/04/2012 - 12:36:35 ---A- . (.Hewlett Packard - HP Scan Coinstaller.) -- C:\Windows\SysNative\hppscancoins64.dll [217656]
O44 - LFC:[MD5.05F062A5A7A8D22CF9AD31A5C77270F0] - 02/04/2012 - 12:36:35 ---A- . (.Hewlett-Packard - Hewlett-Packard WIA minidriver..) -- C:\Windows\SysNative\hpxp1530_x64.dll [976440]
O44 - LFC:[MD5.8BBC53158A1569C00DAA6682438DBF4F] - 02/04/2012 - 12:36:35 ---A- . (.Hewlett-Packard - TULIP Scan Module.) -- C:\Windows\SysNative\hpptsp06_x64.dll [1150520]
O44 - LFC:[MD5.AA2790DDA5EBE22FE5AAC11DA1103E5B] - 02/04/2012 - 12:36:28 . (.Hewlett Packard - LEDM FAX.) -- C:\Windows\System32\Drivers\hppdfaxio.sys [23576]
O44 - LFC:[MD5.15AB9844A2541628EC36D3B6C22FA885] - 02/04/2012 - 12:36:28 . (.Hewlett Packard - hppfax.) -- C:\Windows\System32\hpmldmfax02.dll [235520]
O44 - LFC:[MD5.15AB9844A2541628EC36D3B6C22FA885] - 02/04/2012 - 12:36:28 ---A- . (.Hewlett Packard - hppfax.) -- C:\Windows\SysNative\hpmldmfax02.dll [235520]
O44 - LFC:[MD5.E325F85012E793CEE74B73C4F22AE311] - 02/04/2012 - 12:36:25 . (.Hewlett Packard - LEDM BULK.) -- C:\Windows\System32\Drivers\hppdbulkio.sys [22040]
O44 - LFC:[MD5.FCC4B37DFDD3114E82A5D73B23972477] - 02/04/2012 - 12:36:25 . (.Hewlett Packard - LEDM USB Composite Support Driver.) -- C:\Windows\System32\Drivers\hppdgenio.sys [31768]
O44 - LFC:[MD5.93DE6DC1EEBD57AA02B62E18D64D7E5B] - 02/04/2012 - 12:36:25 . (.Hewlett Packard - hppbulk.) -- C:\Windows\System32\hpmldm02.dll [235008]
O44 - LFC:[MD5.93DE6DC1EEBD57AA02B62E18D64D7E5B] - 02/04/2012 - 12:36:25 ---A- . (.Hewlett Packard - hppbulk.) -- C:\Windows\SysNative\hpmldm02.dll [235008]
O44 - LFC:[MD5.910906024DC7CA07E3CB86829E0C5F5F] - 02/04/2012 - 12:36:22 . (.Hewlett-Packard - HPB Print Coinstaller.) -- C:\Windows\System32\hpbcoins64.dll [311296]
O44 - LFC:[MD5.910906024DC7CA07E3CB86829E0C5F5F] - 02/04/2012 - 12:36:22 ---A- . (.Hewlett-Packard - HPB Print Coinstaller.) -- C:\Windows\SysNative\hpbcoins64.dll [311296]
O44 - LFC:[MD5.3784F03768B522F6B4FE050F65EF6B64] - 02/04/2012 - 12:36:11 . (.Hewlett-Packard - LEDM USB Composite Bulk Helper.) -- C:\Windows\System32\hppdcompio.dll [193592]
O44 - LFC:[MD5.3784F03768B522F6B4FE050F65EF6B64] - 02/04/2012 - 12:36:11 ---A- . (.Hewlett-Packard - LEDM USB Composite Bulk Helper.) -- C:\Windows\SysNative\hppdcompio.dll [193592]
O44 - LFC:[MD5.F6D457D7B0F425FFFFE706D0A2777540] - 02/04/2012 - 12:36:04 . (.Hewlett-Packard Corporation - Pas de description.) -- C:\Windows\System32\hpcpn101.dll [176128]
O44 - LFC:[MD5.F6D457D7B0F425FFFFE706D0A2777540] - 02/04/2012 - 12:36:04 ---A- . (.Hewlett-Packard Corporation - Pas de description.) -- C:\Windows\SysNative\hpcpn101.dll [176128]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 31/03/2012 - 10:47:40 . (...) -- C:\Windows\System32\Drivers\Msft_User_wpdcomp_01_09_00.Wdf [0]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 31/03/2012 - 10:47:35 . (...) -- C:\Windows\System32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf [0]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 31/03/2012 - 10:47:28 . (...) -- C:\Windows\System32\Drivers\Msft_Kernel_ccdcmbx64_01009.Wdf [0]
O44 - LFC:[MD5.C8F3119AD72A507D12EF389DF4C266EF] - 31/03/2012 - 10:31:57 . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\Drivers\ewusbmdm.sys [115328]
O44 - LFC:[MD5.A311AF088D80CB945714D44DEB92BF7A] - 30/03/2012 - 14:08:02 ---A- . (...) -- C:\Windows\setup.iss [306]
O44 - LFC:[MD5.BAC5074667751F72A9CE48CDC31BAC48] - 30/03/2012 - 14:05:38 . (.SEIKO EPSON CORP. - E_GCINST.) -- C:\Windows\System32\E_GCINST.DLL [10752]
O44 - LFC:[MD5.BAC5074667751F72A9CE48CDC31BAC48] - 30/03/2012 - 14:05:38 ---A- . (.SEIKO EPSON CORP. - E_GCINST.) -- C:\Windows\SysNative\E_GCINST.DLL [10752]
O44 - LFC:[MD5.059B16DB7FD14D38B7F4E312D793B972] - 30/03/2012 - 14:05:23 . (.SEIKO EPSON CORPORATION - EPSON Bi-directional Monitor AMD64.) -- C:\Windows\System32\E_ILMHJE.DLL [118784]
O44 - LFC:[MD5.059B16DB7FD14D38B7F4E312D793B972] - 30/03/2012 - 14:05:23 ---A- . (.SEIKO EPSON CORPORATION - EPSON Bi-directional Monitor AMD64.) -- C:\Windows\SysNative\E_ILMHJE.DLL [118784]
O44 - LFC:[MD5.225B67EE62F582B3BEFC5DAF72E8FAA2] - 30/03/2012 - 14:05:19 . (.SEIKO EPSON CORPORATION - ECBTEGB AMD64.) -- C:\Windows\System32\E_IBCBHJE.DLL [88064]
O44 - LFC:[MD5.225B67EE62F582B3BEFC5DAF72E8FAA2] - 30/03/2012 - 14:05:19 ---A- . (.SEIKO EPSON CORPORATION - ECBTEGB AMD64.) -- C:\Windows\SysNative\E_IBCBHJE.DLL [88064]
O44 - LFC:[MD5.E69D7BEBBE41D971EE15D1E00CB5F3C8] - 30/03/2012 - 14:04:54 . (.Seiko Epson Corporation - EPSON Scan Device Application Utility.) -- C:\Windows\System32\esdevapp.exe [132560]
O44 - LFC:[MD5.CD550F0416BE3AB942C0B3A5FDD1B69A] - 30/03/2012 - 14:04:54 . (.Seiko Epson Corporation - EPSON Scanner device co-installer.) -- C:\Windows\System32\esxcdev.dll [13824]
O44 - LFC:[MD5.CF78603EAFD1DDFE037DB66F07BAF556] - 30/03/2012 - 14:04:54 . (.Seiko Epson Corporation - Epson WIA Module.) -- C:\Windows\System32\esxw2ud.dll [464384]
O44 - LFC:[MD5.E69D7BEBBE41D971EE15D1E00CB5F3C8] - 30/03/2012 - 14:04:54 ---A- . (.Seiko Epson Corporation - EPSON Scan Device Application Utility.) -- C:\Windows\SysNative\esdevapp.exe [132560]
O44 - LFC:[MD5.CD550F0416BE3AB942C0B3A5FDD1B69A] - 30/03/2012 - 14:04:54 ---A- . (.Seiko Epson Corporation - EPSON Scanner device co-installer.) -- C:\Windows\SysNative\esxcdev.dll [13824]
O44 - LFC:[MD5.CF78603EAFD1DDFE037DB66F07BAF556] - 30/03/2012 - 14:04:54 ---A- . (.Seiko Epson Corporation - Epson WIA Module.) -- C:\Windows\SysNative\esxw2ud.dll [464384]
O44 - LFC:[MD5.7982432527482E63E187BF322C0CF55B] - 14/12/2010 - 09:26:13 . (...) -- C:\Windows\System32\hppls1530.spf [3211]
O44 - LFC:[MD5.7982432527482E63E187BF322C0CF55B] - 14/12/2010 - 09:26:13 ---A- . (...) -- C:\Windows\SysNative\hppls1530.spf [3211]
~ Scan Files in 00mn 28s
---\\ Déni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l'Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corp. - LiveSSP.) -- C:\Windows\System32\livessp.dll
~ Scan Keys in 00mn 00s
---\\ Contrôle du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d'extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d'extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
~ Scan CSB in 00mn 00s
---\\ MountPoints2 Shell Key (O51)
O51 - MPSK:{4f4c9720-7a85-11e1-a3dd-ec9a7456ab0d}\AutoRun\command. (...) -- H:\setup_vmc_lite.exe (.not file.)
O51 - MPSK:{4f4c9727-7a85-11e1-a3dd-ec9a7456ab0d}\AutoRun\command. (...) -- I:\setup_vmc_lite.exe (.not file.)
~ Scan Keys in 00mn 00s
---\\ Trojan Driver Search Data (HKLM) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \Drivers32\"VIDC.ACDV"="ACDV.dll" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
~ Scan Keys in 00mn 00s
---\\ ShareTools MSconfig StartupReg (O53)
O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O53 - SMSR:HKLM\...\startupreg\AdobeAAMUpdater-1.0 [Key] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe
O53 - SMSR:HKLM\...\startupreg\AdobeCS5ServiceManager [Key] . (.Adobe Systems Incorporated - Adobe CS5 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe
O53 - SMSR:HKLM\...\startupreg\Browser companion helper [Key] . (...) -- C:\Program Files (x86)\BrowserCompanion\BCHelper.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Easybits Recovery [Key] . (...) -- C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\EEventManager [Key] . (.SEIKO EPSON CORPORATION - EEventManager Application.) -- C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
O53 - SMSR:HKLM\...\startupreg\EPSON SX130 Series [Key] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHJE.exe
O53 - SMSR:HKLM\...\startupreg\ExpressFiles [Key] . (...) -- C:\Program Files (x86)\ExpressFiles\ExpressFiles.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\HP Quick Launch [Key] . (.Hewlett-Packard Development Company, L.P. - HP Message Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
O53 - SMSR:HKLM\...\startupreg\HPOSD [Key] . (.Hewlett-Packard Development Company, L.P. - HP On Screen Display.) -- C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
O53 - SMSR:HKLM\...\startupreg\HPQuickWebProxy [Key] . (.Hewlett-Packard Company - HP QuickWeb Utilities.) -- C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe
O53 - SMSR:HKLM\...\startupreg\MobileConnect [Key] . (.Vodafone - MobileConnect.) -- C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\MobileConnect.exe
O53 - SMSR:HKLM\...\startupreg\msnmsgr [Key] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
O53 - SMSR:HKLM\...\startupreg\Nikon Message Center 2 [Key] . (.Nikon Corporation - Nikon Message Center 2.) -- C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe
O53 - SMSR:HKLM\...\startupreg\NokiaSuite.exe [Key] . (.Nokia - Nokia Suite.) -- C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe
O53 - SMSR:HKLM\...\startupreg\StartCCC [Key] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
O53 - SMSR:HKLM\...\startupreg\SweetIM [Key] . (...) -- C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\SwitchBoard [Key] . (.Adobe Systems Incorporated - SwitchBoard Server (32 bit).) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O53 - SMSR:HKLM\...\startupreg\SynTPEnh [Key] . (...) -- C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\SysTrayApp [Key] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe
O53 - SMSR:HKLM\...\startupreg\uTorrent [Key] . (...) -- C:\Program Files (x86)\uTorrent\uTorrent.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\vProt [Key] . (...) -- C:\Program Files (x86)\AVG Secure Search\vprot.exe (.not file.)
~ Scan SMSR Keys in 00mn 00s
---\\ Microsoft Control Security Providers (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
~ Scan Keys in 00mn 00s
---\\ Microsoft Windows Policies System (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "HideFastUserSwitching"=0
O55 - MWPS:[HKCU\...\Policies\System] - "DisableLockWorkstation"=0
O55 - MWPS:[HKCU\...\Policies\System] - "DisableTaskMgr"=0
O55 - MWPS:[HKCU\...\Policies\System] - "DisableChangePassword"=0
~ Scan Keys in 00mn 00s
---\\ Microsoft Windows Policies Explorer (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "EnableShellExecuteHooks"=1
~ Scan Keys in 00mn 00s
---\\ Liste des Drivers Système (O58)
O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [491088]
O58 - SDL:[MD5.597F78224EE9224EA1A13D6350CED962] - 14/07/2009 - 02:52:21 . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\Drivers\adpahci.sys [339536]
O58 - SDL:[MD5.E109549C90F62FB570B9540C4B148E54] - 14/07/2009 - 02:52:21 . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\Drivers\adpu320.sys [182864]
O58 - SDL:[MD5.5812713A477A3AD7363C7438CA2EE038] - 14/07/2009 - 02:52:21 . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\Drivers\aliide.sys [15440]
O58 - SDL:[MD5.D4121AE6D0C0E7E13AA221AA57EF2D49] - 05/11/2011 - 23:04:16 . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\Drivers\amdsata.sys [107904]
O58 - SDL:[MD5.F67F933E79241ED32FF46A4F29B5120B] - 14/07/2009 - 02:52:20 . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows -.) -- C:\Windows\System32\Drivers\amdsbs.sys [194128]
O58 - SDL:[MD5.540DAF1CEA6094886D72126FD7C33048] - 05/11/2011 - 23:04:16 . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\Drivers\amdxata.sys [27008]
O58 - SDL:[MD5.C484F8CEB1717C540242531DB7845C4E] - 14/07/2009 - 02:52:21 . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\Drivers\arc.sys [87632]
O58 - SDL:[MD5.019AF6924AEFE7839F61C830227FE79C] - 14/07/2009 - 02:52:21 . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\Drivers\arcsas.sys [97856]
O58 - SDL:[MD5.F784F9BF32E708C71A63220E89A58496] - 18/08/2011 - 10:40:56 . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\Drivers\atikmdag.sys [9981952]
O58 - SDL:[MD5.43FD45C0DFE0A0FF2B8BE0D4AC165E18] - 18/08/2011 - 06:34:48 . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\Drivers\atikmpag.sys [310272]
O58 - SDL:[MD5.886CEDDEB9E347F7C37263CA234EAE65] - 28/03/2012 - 17:19:23 . (.Avira GmbH - Packet filtering kernel driver ( NDIS IM ).) -- C:\Windows\System32\Drivers\avfwim.sys [113768]
O58 - SDL:[MD5.10CE27CB8E47FEB48F557E0CD8D1874D] - 28/03/2012 - 17:19:23 . (.Avira GmbH - TDI filtering kernel driver.) -- C:\Windows\System32\Drivers\avfwot.sys [139512]
O58 - SDL:[MD5.AA8F79A1BDFC03B3BC70C44AB00589B4] - 01/12/2011 - 16:55:27 . (.Avira GmbH - Avira Minifilter Driver.) -- C:\Windows\System32\Drivers\avgntflt.sys [97312]
O58 - SDL:[MD5.852E3C0A60D368C487949E55AD52A47F] - 28/03/2012 - 17:19:25 . (.Avira GmbH - Avira Driver for Security Enhancement.) -- C:\Windows\System32\Drivers\avipbb.sys [132320]
O58 - SDL:[MD5.248DB59FC86DE44D2779F4C7FB1A567D] - 01/12/2011 - 16:55:27 . (.Avira GmbH - Avira Manager Driver.) -- C:\Windows\System32\Drivers\avkmgr.sys [27760]
O58 - SDL:[MD5.B5ACE6968304A3900EEB1EBFD9622DF2] - 10/06/2009 - 21:34:23 . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver..) -- C:\Windows\System32\Drivers\b57nd60a.sys [270848]
O58 - SDL:[MD5.9E84A931DBEE0292E38ED672F6293A99] - 10/06/2009 - 21:34:38 . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless driver.) -- C:\Windows\System32\Drivers\BCMWL664.SYS [1311232]
O58 - SDL:[MD5.F09EEE9EDC320B5E1501F749FDE686C8] - 10/06/2009 - 21:41:06 . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltLo.sys [18432]
O58 - SDL:[MD5.B114D3098E9BDB8BEA8B053685831BE6] - 10/06/2009 - 21:41:06 . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltUp.sys [8704]
O58 - SDL:[MD5.43BEA8D483BF1870F018E2D02E06A5BD] - 14/07/2009 - 02:19:07 . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\Drivers\BrSerId.sys [286720]
O58 - SDL:[MD5.A6ECA2151B08A09CACECA35C07F05B42] - 10/06/2009 - 21:41:10 . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\Drivers\BrSerWdm.sys [47104]
O58 - SDL:[MD5.B79968002C277E869CF38BD22CD61524] - 10/06/2009 - 21:41:10 . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\Drivers\BrUsbMdm.sys [14976]
O58 - SDL:[MD5.A87528880231C54E75EA7A44943B38BF] - 10/06/2009 - 21:41:10 . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\Drivers\BrUsbSer.sys [14720]
O58 - SDL:[MD5.3E5B191307609F7514148C6832BB0842] - 10/06/2009 - 21:34:28 . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\Drivers\bxvbda.sys [468480]
O58 - SDL:[MD5.41C1AC1F3613435EB32D67BCB80A5FA5] - 17/08/2011 - 11:58:20 . (.Nokia - Nokia USB Phone Bus Driver.) -- C:\Windows\System32\Drivers\ccdcmbox64.sys [27136]
O58 - SDL:[MD5.907B5E1E4A592E5EDC5E4CCBDE4863C2] - 17/08/2011 - 11:58:16 . (.Nokia - Nokia USB Phone Bus Driver.) -- C:\Windows\System32\Drivers\ccdcmbx64.sys [19968]
O58 - SDL:[MD5.50F92C943F18B070F166D019DFAB3D9A] - 28/07/2010 - 09:13:50 . (.CyberLink Corporation - CyberLink WebCam Virtual Driver.) -- C:\Windows\System32\Drivers\clwvd.sys [31088]
O58 - SDL:[MD5.E19D3F095812725D88F9001985B94EDD] - 14/07/2009 - 02:52:31 . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\cmdide.sys [17488]
O58 - SDL:[MD5.0E5DA5369A0FCAEA12456DD852545184] - 14/07/2009 - 02:47:48 . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [530496]
O58 - SDL:[MD5.DC5D737F51BE844D8C82C695EB17372F] - 10/06/2009 - 21:34:33 . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\Drivers\evbda.sys [3286016]
O58 - SDL:[MD5.C8F3119AD72A507D12EF389DF4C266EF] - 17/03/2008 - 10:06:14 . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\Drivers\ewusbmdm.sys [115328]
O58 - SDL:[MD5.F2523EF6460FC42405B12248338AB2F0] - 10/06/2009 - 21:31:59 . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\hcw85cir.sys [31232]
O58 - SDL:[MD5.A6518DCC42F7A6E999BB3BEA8FD87567] - 20/10/2010 - 01:34:26 . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\Drivers\HECIx64.sys [56344]
O58 - SDL:[MD5.E325F85012E793CEE74B73C4F22AE311] - 14/12/2010 - 09:26:56 . (.Hewlett Packard - LEDM BULK.) -- C:\Windows\System32\Drivers\hppdbulkio.sys [22040]
O58 - SDL:[MD5.AA2790DDA5EBE22FE5AAC11DA1103E5B] - 14/12/2010 - 09:26:44 . (.Hewlett Packard - LEDM FAX.) -- C:\Windows\System32\Drivers\hppdfaxio.sys [23576]
O58 - SDL:[MD5.FCC4B37DFDD3114E82A5D73B23972477] - 14/12/2010 - 09:26:32 . (.Hewlett Packard - LEDM USB Composite Support Driver.) -- C:\Windows\System32\Drivers\hppdgenio.sys [31768]
O58 - SDL:[MD5.39D2ABCD392F3D8A6DCE7B60AE7B8EFC] - 21/11/2010 - 04:23:47 . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\System32\Drivers\HpSAMD.sys [78720]
O58 - SDL:[MD5.26CF4275034214ECEDD8EC17B0A18A99] - 26/04/2011 - 11:07:36 . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\Drivers\iaStor.sys [557848]
O58 - SDL:[MD5.AAAF44DB3BD0B9D1FB6969B23ECC8366] - 05/11/2011 - 23:04:16 . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\Drivers\iaStorV.sys [410496]
O58 - SDL:[MD5.33FAA40B288002C89529DBD14F3AB72C] - 09/08/2011 - 17:32:02 . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\Drivers\igdkmd64.sys [12289472]
O58 - SDL:[MD5.33FAA40B288002C89529DBD14F3AB72C] - 09/08/2011 - 17:32:02 . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\Drivers\igdpmd64.sys [12289472]
O58 - SDL:[MD5.5C18831C61933628F5BB0EA2675B9D21] - 14/07/2009 - 02:48:04 . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\Drivers\iirsp.sys [44112]
O58 - SDL:[MD5.FC727061C0F47C8059E88E05D5C8E381] - 15/10/2010 - 10:28:16 . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\Drivers\IntcDAud.sys [317440]
O58 - SDL:[MD5.1A93E54EB0ECE102495A51266DCDB6A6] - 14/07/2009 - 02:48:04 . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_fc.sys [114752]
O58 - SDL:[MD5.1047184A9FDC8BDBFF857175875EE810] - 14/07/2009 - 02:48:04 . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas.sys [106560]
O58 - SDL:[MD5.30F5C0DE1EE8B5BC9306C1F0E4A75F93] - 14/07/2009 - 02:48:04 . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas2.sys [65600]
O58 - SDL:[MD5.0504EACAFF0D3C8AED161C4B0D369D4A] - 14/07/2009 - 02:48:04 . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_scsi.sys [115776]
O58 - SDL:[MD5.024DA28053D57E9E32BEE52600576BBB] - 23/09/2005 - 22:18:34 . (.Pinnacle Systems GmbH - Pinnacle Marvin Discrete Bus Enumerator.) -- C:\Windows\System32\Drivers\MarvinBus64.sys [261120]
O58 - SDL:[MD5.DBC08862A71459E74F7538B432C114CC] - 04/04/2012 - 14:56:40 . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [24904]
O58 - SDL:[MD5.A55805F747C6EDB6A9080D7C633BD0F4] - 14/07/2009 - 02:48:04 . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for.) -- C:\Windows\System32\Drivers\megasas.sys [35392]
O58 - SDL:[MD5.BAF74CE0072480C3B6B7C13B2A94D6B3] - 14/07/2009 - 02:48:04 . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\Drivers\MegaSR.sys [284736]
O58 - SDL:[MD5.A98071E3E1E5E503462CC9E0DED91A36] - 19/07/2011 - 10:19:16 . (.Ralink Technology, Corp. - Ralink 802.11 Wireless Adapter Driver.) -- C:\Windows\System32\Drivers\netr28x.sys [1492992]
O58 - SDL:[MD5.77889813BE4D166CDAB78DDBA990DA92] - 14/07/2009 - 02:48:26 . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\Drivers\nfrd960.sys [51264]
O58 - SDL:[MD5.351533ACC2A069B94E80BBFC177E8FDF] - 25/06/2010 - 18:07:26 . (.CACE Technologies, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\Windows\System32\Drivers\npf.sys [35344]
O58 - SDL:[MD5.A85B4F2EF3A7304A5399EF0526423040] - 10/06/2009 - 21:35:35 . (.NVIDIA Corporation - NVIDIA MCP Networking Function Driver..) -- C:\Windows\System32\Drivers\nvm62x64.sys [408960]
O58 - SDL:[MD5.0A92CB65770442ED0DC44834632F66AD] - 05/11/2011 - 23:04:16 . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\Drivers\nvraid.sys [148352]
O58 - SDL:[MD5.DAB0E87525C10052BF65F06152F37E4A] - 05/11/2011 - 23:04:16 . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\Drivers\nvstor.sys [166272]
O58 - SDL:[MD5.BC0018C2D29F655188A0ED3FA94FDB24] - 28/08/2008 - 11:44:42 . (.Nokia - PCCS Mode Change Filter Driver.) -- C:\Windows\System32\Drivers\pccsmcfdx64.sys [25600]
O58 - SDL:[MD5.A53A15A11EBFD21077463EE2C7AFEEF0] - 14/07/2009 - 02:45:46 . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\Drivers\ql2300.sys [1524816]
O58 - SDL:[MD5.4F6D12B51DE1AAEFF7DC58C4D75423C8] - 14/07/2009 - 02:45:45 . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\Drivers\ql40xx.sys [128592]
O58 - SDL:[MD5.9140DB0911DE035FED0A9A77A2D156EA] - 24/08/2011 - 06:57:24 . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Driver.) -- C:\Windows\System32\Drivers\Rt64win7.sys [565352]
O58 - SDL:[MD5.6E5C3D18C3BCC72AA527DBC5FA61AB8F] - 02/09/2011 - 20:46:00 . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vista/Win7.) -- C:\Windows\System32\Drivers\RtsPStor.sys [339048]
O58 - SDL:[MD5.3EA8A16169C26AFBEB544E0E48421186] - 10/06/2009 - 21:37:19 . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\System32\Drivers\secdrv.sys [23040]
O58 - SDL:[MD5.C1D8E28B2C2ADFAEC4BA89E9FDA69BD6] - 14/07/2009 - 01:00:40 . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\Drivers\serial.sys [94208]
O58 - SDL:[MD5.843CAF1E5FDE1FFD5FF768F23A51E2E1] - 14/07/2009 - 02:45:45 . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid2.sys [43584]
O58 - SDL:[MD5.6A6C106D42E9FFFF8B9FCB4F754F6DA4] - 14/07/2009 - 02:45:46 . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid4.sys [80464]
O58 - SDL:[MD5.F3817967ED533D08327DC73BC4D5542A] - 14/07/2009 - 02:45:55 . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\System32\Drivers\stexstor.sys [24656]
O58 - SDL:[MD5.EBC1A5E076A9BE314D3D9E8ED19ABB0A] - 08/09/2011 - 14:42:28 . (.IDT, Inc. - IDT PC Audio.) -- C:\Windows\System32\Drivers\stwrt64.sys [535040]
O58 - SDL:[MD5.C447977ED2A4AE9346FE3A0579A34D7C] - 10/06/2011 - 03:19:54 . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\System32\Drivers\SynTP.sys [1451056]
O58 - SDL:[MD5.8844CB19A37B65E27049D4A7786726A9] - 17/08/2011 - 11:58:26 . (.Nokia - Filter Driver for Nokia USB Phone Bus Driver.) -- C:\Windows\System32\Drivers\usbser_lowerfltjx64.sys [9216]
O58 - SDL:[MD5.4E93C8496359E97830C75AC36393654D] - 17/08/2011 - 11:58:22 . (.Nokia - Filter Driver for Nokia USB Phone Bus Driver.) -- C:\Windows\System32\Drivers\usbser_lowerfltx64.sys [9216]
O58 - SDL:[MD5.E5689D93FFE4E5D66C0178761240DD54] - 14/07/2009 - 02:45:55 . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\viaide.sys [17488]
O58 - SDL:[MD5.5E2016EA6EBACA03C04FEAC5F330D997] - 14/07/2009 - 02:45:55 . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\Drivers\vsmraid.sys [161872]
O58 - SDL:[MD5.0C4540311E11664B245A263E1154CEF8] - 10/06/2009 - 22:01:11 . (.Conexant Systems, Inc. - HSF_HWAZL WDM driver.) -- C:\Windows\System32\Drivers\VSTAZL6.SYS [292864]
O58 - SDL:[MD5.18E40C245DBFAF36FD0134A7EF2DF396] - 10/06/2009 - 22:01:11 . (.Conexant Systems, Inc. - HSF_CNXT driver.) -- C:\Windows\System32\Drivers\VSTCNXT6.SYS [740864]
O58 - SDL:[MD5.02071D207A9858FBE3A48CBFD59C4A04] - 10/06/2009 - 22:01:11 . (.Conexant Systems, Inc. - HSF_DP driver.) -- C:\Windows\System32\Drivers\VSTDPV6.SYS [1485312]
O58 - SDL:[MD5.DD7716784DC716CA04810E3C6E872356] - 30/12/1899 - 12:42:04 -SHA- . (...) -- C:\Windows\System32\winzvprt5.sys [608]
~ Scan Drivers in 00mn 03s
---\\ Liste des outils de nettoyage (O63)
O63 - Logiciel: ZHPDiag 1.30 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
~ Scan ADS in 00mn 00s
---\\ Liste des services Legacy (O64)
O64 - Services: CurCS - 18/08/2011 - C:\Windows\System32\DRIVERS\atikmdag.sys (amdkmdag) .(.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) - LEGACY_AMDKMDAG
O64 - Services: CurCS - 28/03/2012 - C:\Windows\System32\DRIVERS\avfwot.sys (avfwot) .(.Avira GmbH - TDI filtering kernel driver.) - LEGACY_AVFWOT
O64 - Services: CurCS - 01/12/2011 - C:\Windows\System32\DRIVERS\avgntflt.sys (avgntflt) .(.Avira GmbH - Avira Minifilter Driver.) - LEGACY_AVGNTFLT
O64 - Services: CurCS - 28/03/2012 - C:\Windows\System32\DRIVERS\avipbb.sys (avipbb) .(.Avira GmbH - Avira Driver for Security Enhancement.) - LEGACY_AVIPBB
O64 - Services: CurCS - 01/12/2011 - C:\Windows\System32\DRIVERS\avkmgr.sys (avkmgr) .(.Avira GmbH - Avira Manager Driver.) - LEGACY_AVKMGR
O64 - Services: CurCS - 09/08/2011 - C:\Windows\System32\DRIVERS\igdpmd64.sys (intelkmd) .(.Intel Corporation - Intel Graphics Kernel Mode Driver.) - LEGACY_INTELKMD
O64 - Services: CurCS - 04/04/2012 - C:\Windows\system32\drivers\mbam.sys (MBAMProtector) .(.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - LEGACY_MBAMPROTECTOR
O64 - Services: CurCS - 25/06/2010 - C:\Windows\System32\drivers\npf.sys (NPF) .(.CACE Technologies, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) - LEGACY_NPF
O64 - Services: CurCS - ??\??\???? - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV
~ Scan Services in 00mn 00s
---\\ File Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> <evtfile>[HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d'événements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> <ChromeHTML>[HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.html> <ChromeHTML>[HKCU\..\open\Command] (.Not Key.)
O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> <evtfile>[HKCR\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d'événements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> <ChromeHTML>[HKCR\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O67 - Shell Spawning: <.js> <JSFile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
~ Scan Keys in 00mn 00s
---\\ Start Menu Internet (O68)
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
~ Scan Keys in 00mn 00s
---\\ Search Browser Infection (O69)
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} [DefaultScope] - (Google) - https://www.google.com/?gws_rd=ssl
O69 - SBI: SearchScopes [HKCU] {8A244612-A1F7-11E0-95C0-E71F4824019B} - (Search) - https://badoo.com/
O69 - SBI: SearchScopes [HKCU] {b7fca997-d0fb-4fe0-8afd-255e89cf9671} - (Search) - https://badoo.com/
O69 - SBI: SearchScopes [HKCU] {d43b3890-80c7-4010-a95d-1e77b5924dc3} - (Search) - https://badoo.com/
O69 - SBI: SearchScopes [HKCU] {D944BB61-2E34-4DBF-A683-47E505C587DC} - (Search) - https://badoo.com/
O69 - SBI: SearchScopes [HKCU] {E2F3799C-66D3-4E63-A94A-852705019087} - (Search) - https://badoo.com/
~ Scan Keys in 00mn 00s
---\\ Recherche des services démarrés par Svchost (O83)
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d'application.) -- C:\Windows\System32\aelupsvc.dll [72192]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [853504]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [679424]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d'accès distant.) -- C:\Windows\System32\rasauto.dll [99328]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d'accès distant.) -- C:\Windows\System32\rasmans.dll [344064]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d'interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d'événements système (SENS).) -- C:\Windows\System32\sens.dll [64512]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [359424]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [316928]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur hôte de session Burea.) -- C:\Windows\System32\termsrv.dll [680960]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [2420736]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [849920]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [569344]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [30720]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d'application.) -- C:\Windows\System32\appinfo.dll [70656]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [67584]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [121856]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d'ordinateurs.) -- C:\Windows\System32\browser.dll [136192]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110016]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [90624]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [209920]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864]
~ Scan Services in 00mn 00s
---\\ Recherche particuliere à la racine de certains dossiers (O84)
[MD5.9835AF740C54D07808C5BCC0F4493114] [SPRF][13/04/2012] (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Users\Christian\AppData\Local\Temp\jre-6u32-windows-i586-iftw.exe [910112]
[MD5.B60BF8E731D3F99D321C15B3D607BF22] [SPRF][28/04/2012] (...) -- C:\Users\Christian\AppData\Local\Temp\Uninst.bat [542]
[MD5.8CE7705CB43B03BB7970B04087C7758F] [SPRF][30/06/2006] (.InstallShield Software Corporation - InstallShield Update Service Setup Player Module.) -- C:\Windows\Downloaded Program Files\dwusplay.dll [29616]
[MD5.01E2ECA759056F23C73A035FDABB2D6D] [SPRF][30/06/2006] (.InstallShield Software Corporation - InstallShield Update Service Setup Player.) -- C:\Windows\Downloaded Program Files\dwusplay.exe [201648]
[MD5.A54F3D88767BB8C7DC18D8263385DED2] [SPRF][16/05/2007] (.Macrovision Corporation - Macrovision Software Manager Web Agent.) -- C:\Windows\Downloaded Program Files\isusweb.dll [483328]
~ Scan Files in 00mn 00s
---\\ Firewall Active Exception List (FirewallRules) (O87)
O87 - FAEL: "NetPres-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-WSD-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-WSD-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-UDP-NoScope" |Out - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
~ Scan Firewall in 00mn 00s
---\\ Scan Additionnel (O88)
Database Version : 9092 - (25/04/2012)
Clés trouvées (Keys found) : 2
Valeurs trouvées (Values found) : 0
Dossiers trouvés (Folders found) : 0
Fichiers trouvés (Files found) : 0
[HKLM\Software\WOW6432Node\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}] =>Toolbar.Agent
[HKLM\Software\WOW6432Node\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}] =>Spyware.Soft2PC
~ Scan Additionnel in 00mn 06s
---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SR - | Auto 14/05/2009 759048 | ABBYY FineReader 9.0 Sprint Licensing Service (ABBYY.Licensing.FineReader.Sprint.9.0) . (.ABBYY.) - C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
SR - | Auto 03/01/2012 63928 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
SS - | Demand 26/04/2012 253088 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
SR - | Auto 18/08/2011 204288 | (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe
SR - | Auto 28/03/2012 616400 | (AntiVirFirewallService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avfwsvc.exe
SR - | Auto 28/03/2012 342480 | (AntiVirMailService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc.exe
SR - | Auto 28/03/2012 86224 | (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
SR - | Auto 28/03/2012 110032 | (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
SR - | Auto 28/03/2012 463824 | (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.exe
SR - | Auto 22/09/2010 191600 | (FIXIO Service) . (.LULU software.) - C:\Program Files (x86)\FIXIO PC Utilities\FIXIO PC Cleaner\FIXIO Service.exe
SR - | Auto 19/08/2011 260424 | (FPLService) . (.HP.) - C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe
SS - | Auto 28/03/2012 116648 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 28/03/2012 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 29/03/2012 182768 | (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
SS - | Auto 25/10/2010 145920 | (HP LaserJet Service) . (.HP.) - C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe
SR - | Auto 09/09/2011 86072 | (HP Support Assistant Service) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
SR - | Auto 16/02/2011 682040 | (HPAuto) . (.Hewlett-Packard.) - C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe
SR - | Auto 11/10/2010 346168 | (HPClientSvc) . (.Hewlett-Packard Company.) - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
SR - | Auto 12/09/2011 227896 | (HPDrvMntSvc.exe) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
SS - | Demand 12/09/2011 992824 | (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
SR - | Auto 15/02/2012 34872 | (HPWMISVC) . (.Hewlett-Packard Development Company, L.P..) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
SR - | Auto 30/04/2011 13592 | (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
SR - | Auto 01/09/2011 2425960 | (IconMan_R) . (.Realsil Microelectronics Inc..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
SR - | Auto 24/02/2011 212944 | (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
SR - | Auto 01/02/2011 326168 | (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
SR - | Auto 04/04/2012 654408 | (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
SS - | Demand 0 | Remote Packet Capture Protocol v.0 (experimental) (rpcapd) . (...) - %ProgramFiles(x86)%\WinPcap\rpcapd.exe
SR - | Auto 26/01/2009 1153368 | (SBSDWSCService) . (.Safer Networking Ltd..) - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
SS - | Demand 27/10/2011 718384 | (ServiceLayer) . (.Nokia.) - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
SS - | Auto 29/02/2012 158856 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
SR - | Auto 08/09/2011 305152 | C:\Windows\System32\stlang64.dll (STacSV) . (.IDT, Inc..) - C:\Program Files\IDT\WDM\STacSV64.exe
SS - | Demand 19/02/2010 517096 | (SwitchBoard) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
SR - | Auto 01/02/2011 2656280 | (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
SR - | Auto 04/07/2008 14336 | (VMCService) . (.Vodafone.) - C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe
SR - | Auto 0 | C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe
SR - | Auto 14/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
~ Scan Services in 00mn 07s
---\\ Recherche Master Boot Record Infection (MBR)(O80)
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
Run by Christian at 28/04/2012 09:59:51
device: opened successfully
user: error reading MBR
Disk trace:
error: Read Descripteur non valide
kernel: error reading MBR
~ Scan MBR in 00mn 02s
---\\ Recherche Master Boot Record Infection (MBRCheck)(O80)
Written by ad13, http://ad13.geekstog
Run by Christian at 28/04/2012 09:59:53
********* Dump file Name *********
C:\PhysicalDisk0_MBR.bin
~ Scan MBR in 00mn 04s
End of the scan (1802 lines in 01mn 25s)(0)
Goldboy55
Messages postés
16
Date d'inscription
dimanche 18 septembre 2011
Statut
Membre
Dernière intervention
11 avril 2018
28 avril 2012 à 10:10
28 avril 2012 à 10:10
Cette ça à l'air complet
Utilisateur anonyme
28 avril 2012 à 10:15
28 avril 2012 à 10:15
toujours pas :D
* Enregistre le rapport sur ton Bureau à l'aide de l'icône représentant une disquette
* Héberge le rapport ZHPDiag.txt sur Cjoint, puis copie/colle le lien fourni dans ta prochaine réponse sur le forum :
https://www.cjoint.com/ => https://www.commentcamarche.net/faq/29493-utiliser-cjoint-pour-heberger-des-fichiers
* Enregistre le rapport sur ton Bureau à l'aide de l'icône représentant une disquette
* Héberge le rapport ZHPDiag.txt sur Cjoint, puis copie/colle le lien fourni dans ta prochaine réponse sur le forum :
https://www.cjoint.com/ => https://www.commentcamarche.net/faq/29493-utiliser-cjoint-pour-heberger-des-fichiers
Goldboy55
Messages postés
16
Date d'inscription
dimanche 18 septembre 2011
Statut
Membre
Dernière intervention
11 avril 2018
28 avril 2012 à 10:18
28 avril 2012 à 10:18
Utilisateur anonyme
28 avril 2012 à 10:29
28 avril 2012 à 10:29
désinstalle spybot, il est inutile !
installe la version 31 de java, désinstalle les anciennes version de ton pc !
je parie que ton ancien antivirus était AVG !
? Télécharger et enregistre ADWcleaner sur ton bureau (Merci à Xplode) :
http://general-changelog-team.fr/fr/downloads/viewdownload/20-outils-de-xplode/2-adwcleaner
Lance le,
clique sur Supprimer et poste son rapport.
* Lance ZHPFix via le raccourci sur ton Bureau
Clique sur l'icone représentant la lettre H (« coller les lignes Helper »)
ouvre ce document et fais un copier coller de la totalité du contenu, dans la fenêtre de zhpfix :
https://www.cjoint.com/?BDCkCXzb0Oo
- Clique sur le bouton « GO » pour lancer le nettoyage,
- Copie/colle la totalité du rapport dans ta prochaine réponse
Tuto :
http://www.premiumorange.com/zeb-help-process/zhpfix.html
installe la version 31 de java, désinstalle les anciennes version de ton pc !
je parie que ton ancien antivirus était AVG !
? Télécharger et enregistre ADWcleaner sur ton bureau (Merci à Xplode) :
http://general-changelog-team.fr/fr/downloads/viewdownload/20-outils-de-xplode/2-adwcleaner
Lance le,
clique sur Supprimer et poste son rapport.
* Lance ZHPFix via le raccourci sur ton Bureau
Clique sur l'icone représentant la lettre H (« coller les lignes Helper »)
ouvre ce document et fais un copier coller de la totalité du contenu, dans la fenêtre de zhpfix :
https://www.cjoint.com/?BDCkCXzb0Oo
- Clique sur le bouton « GO » pour lancer le nettoyage,
- Copie/colle la totalité du rapport dans ta prochaine réponse
Tuto :
http://www.premiumorange.com/zeb-help-process/zhpfix.html
Goldboy55
Messages postés
16
Date d'inscription
dimanche 18 septembre 2011
Statut
Membre
Dernière intervention
11 avril 2018
28 avril 2012 à 10:34
28 avril 2012 à 10:34
La version 32 n'est pas bonne? J'ai une version 32 d'installée.
Goldboy55
Messages postés
16
Date d'inscription
dimanche 18 septembre 2011
Statut
Membre
Dernière intervention
11 avril 2018
28 avril 2012 à 10:43
28 avril 2012 à 10:43
Ok,
J'ai désinstallé Spybot
J'ai supprimé java 22 et 24 et laissé la 32
J'ai lancé adw et l'ordi a redémarré et voici le rapport
# AdwCleaner v1.604 - Rapport créé le 28/04/2012 à 10:37:22
# Mis à jour le 23/04/2012 par Xplode
# Système d'exploitation : Windows 7 Home Premium Service Pack 1 (64 bits)
# Nom d'utilisateur : Christian - SUPERVISEUR-HP
# Exécuté depuis : C:\Users\Christian\Downloads\adwcleaner.exe
# Option [Suppression]
***** [Services] *****
***** [Fichiers / Dossiers] *****
***** [Registre] *****
***** [Registre - GUID] *****
***** [Navigateurs] *****
-\\ Internet Explorer v9.0.8112.16421
[OK] Le registre ne contient aucune entrée illégitime.
-\\ Google Chrome v18.0.1025.162
Fichier : C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Preferences
[OK] Le fichier ne contient aucune entrée illégitime.
*************************
AdwCleaner[R1].txt - [3103 octets] - [15/04/2012 16:24:07]
AdwCleaner[R2].txt - [3579 octets] - [28/04/2012 07:49:30]
AdwCleaner[S1].txt - [3050 octets] - [28/04/2012 07:50:09]
AdwCleaner[R3].txt - [1094 octets] - [28/04/2012 10:36:27]
AdwCleaner[R4].txt - [1155 octets] - [28/04/2012 10:37:14]
AdwCleaner[S2].txt - [1088 octets] - [28/04/2012 10:37:22]
########## EOF - C:\AdwCleaner[S2].txt - [1216 octets] ##########
J'ai désinstallé Spybot
J'ai supprimé java 22 et 24 et laissé la 32
J'ai lancé adw et l'ordi a redémarré et voici le rapport
# AdwCleaner v1.604 - Rapport créé le 28/04/2012 à 10:37:22
# Mis à jour le 23/04/2012 par Xplode
# Système d'exploitation : Windows 7 Home Premium Service Pack 1 (64 bits)
# Nom d'utilisateur : Christian - SUPERVISEUR-HP
# Exécuté depuis : C:\Users\Christian\Downloads\adwcleaner.exe
# Option [Suppression]
***** [Services] *****
***** [Fichiers / Dossiers] *****
***** [Registre] *****
***** [Registre - GUID] *****
***** [Navigateurs] *****
-\\ Internet Explorer v9.0.8112.16421
[OK] Le registre ne contient aucune entrée illégitime.
-\\ Google Chrome v18.0.1025.162
Fichier : C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Preferences
[OK] Le fichier ne contient aucune entrée illégitime.
*************************
AdwCleaner[R1].txt - [3103 octets] - [15/04/2012 16:24:07]
AdwCleaner[R2].txt - [3579 octets] - [28/04/2012 07:49:30]
AdwCleaner[S1].txt - [3050 octets] - [28/04/2012 07:50:09]
AdwCleaner[R3].txt - [1094 octets] - [28/04/2012 10:36:27]
AdwCleaner[R4].txt - [1155 octets] - [28/04/2012 10:37:14]
AdwCleaner[S2].txt - [1088 octets] - [28/04/2012 10:37:22]
########## EOF - C:\AdwCleaner[S2].txt - [1216 octets] ##########
Goldboy55
Messages postés
16
Date d'inscription
dimanche 18 septembre 2011
Statut
Membre
Dernière intervention
11 avril 2018
28 avril 2012 à 10:48
28 avril 2012 à 10:48
Rapport de ZHPFix 1.12.3372 par Nicolas Coolman, Update du 22/11/2011
Fichier d'export Registre : C:\ZHP\ZHPExportRegistry-28-04-2012-10-45-54.txt
Run by Christian at 28/04/2012 10:45:54
Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601)
Web site : http://www.premiumorange.com/zeb-help-process/zhpfix.html
========== Clé(s) du Registre ==========
SUPPRIME CLSID MPSK: {4f4c9720-7a85-11e1-a3dd-ec9a7456ab0d}
SUPPRIME CLSID MPSK: {4f4c9727-7a85-11e1-a3dd-ec9a7456ab0d}
SUPPRIME Key**: StartupReg: SweetIM
SUPPRIME Key: HKLM\Software\WOW6432Node\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
SUPPRIME Key: HKLM\Software\WOW6432Node\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
========== Dossier(s) ==========
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{016380D2-29FD-4747-8DB9-0D02804813B6}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{02A400BD-DD97-4ECD-A90C-26FF6D8903EF}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{02E9BE2F-41E4-44D8-AB9D-45C2D127D2FC}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{0701A6DC-88F3-475F-8979-6F19CEF753AD}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{0BBB39F1-C2AF-4EE6-A09B-5C927F9FCEC8}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{0DC03053-4373-48B6-97BB-8F81B107A023}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{1256C65B-468E-4C6E-ABF0-0D9ACA4C1AD6}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{14750432-52BA-43AF-B8B5-901A56247D23}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{1598D104-9D91-4285-9670-B6122574CD49}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{1EED4E41-0042-45B3-9CCF-E26D61553D70}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{1F29C955-BD4C-4E86-B705-9D7A2FB9D959}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{20C8B1F8-5E75-41A7-A12D-CD6A68C48250}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{23676AA9-6D86-4A1D-A602-EC3E376704E3}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{28CE5770-F23A-4154-AFF5-A572D4C3A43F}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{2DE9B07E-8918-4C03-9982-858004527F10}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{2EE104A6-D61B-4299-8A43-1D3CB0D6ECE6}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{343B6863-C2BA-4D87-9E4B-BEA196EBDDD6}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{346049D0-A011-431A-9BF8-1288AC4C5FFC}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{34EA9907-F7D9-46AB-A151-9ED33E9EE19B}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{3AE8CC4D-9C02-4B9D-BBEF-BC4894496D1B}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{463A8329-3F07-4B2B-910D-DB833644E10A}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{47DFC876-846E-4D2C-ABFA-76A38E99AAF7}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{4AC7715C-6144-4C0E-A9FF-6256B963D558}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{55D1AEDB-A6C4-4F7D-A1E7-61E904F5B054}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{5E327949-88F1-459A-8D3B-15D1DBA14389}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{62431264-21D4-4154-BC6F-F3240B0B7E31}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{62740ABA-C222-4E8D-93D8-1DD83EA60484}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{6346F745-4E79-41F4-88E5-959D6485CFF0}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{63A7978A-C219-451A-B4F9-EDBB9FF61997}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{69D77470-B2A7-4D9E-A0A9-0DA93BCA57A5}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{6A59EFC0-8B78-4EFA-AA44-954E1F586A4D}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{7164B01A-8A01-41EC-8C62-87EFD825F086}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{7238293E-D00C-43B9-A194-1EAFA53BF70C}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{72C22367-2851-48F8-9025-E276DC64E4DE}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{742C73CF-3237-464D-87EE-9F6027D85C38}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{74ED5A67-31B4-4B18-84FA-585C86DFF2CB}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{76ECD492-A58D-41BA-A28F-B16AFDE415A4}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{7966AEED-0C4C-4C06-B761-CAEA59DC5DC9}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{7A090F26-6F24-45EC-8262-BBDB48EA7393}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{81FB9A5A-D700-437C-A65B-CCCD0DB89DD6}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{834F29A1-BF3C-4A0F-A1A4-F5F286DCF168}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{887E20E7-0B39-4049-BB62-7D75E59D4D12}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{8B5AF968-7980-46D8-9ABE-B03C82A4EBBA}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{8CA52709-22EA-4307-B96B-4E952D0FFCB5}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{8F7FEF90-4A35-4983-A646-8EA4F199F4CA}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{8F990778-21D8-4EA3-9063-DD11D2F17912}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{93A4749D-E656-4B83-AB07-D5E5A1A6DD7F}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{949C5E72-7189-4F8B-825A-355A7C970AEF}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{951AF614-AC19-4A51-831E-A9A12477FFE9}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{969AEF61-BA5C-4458-B939-86AB402A158C}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{9AC64421-A215-4F04-A35A-A187965E2906}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{A37E2EF7-683E-4A40-9264-783A65AC7AD8}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{A7132EC8-7298-4387-ABF1-7FD0037472A5}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{AD94E9DE-27FA-4085-B06E-CB28B45D03BF}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{AE5B8C06-53D9-4461-BE97-C27428EC7184}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{B08E5309-FD14-40A0-9BDF-5A36AC336500}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{B3655D58-0AE9-4075-AFA3-5345A084BE25}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{B44AA780-E798-4863-8910-85394F422E4C}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{B8ACB72B-7BF0-4AA4-A898-65B675C66788}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{BFB2A31B-95BE-4A51-ADB1-065576ED96B9}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{C18D7B8F-8048-4A8E-8267-AF91E5A1BBBF}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{C3ADD385-B97F-4CCF-9207-83A32F4DA767}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{C8FFE6EE-CADB-4C42-AFED-1CE92E8FC5E7}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{CA1DD83B-D441-4817-9890-7791FBC199E8}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{CC1538C9-7B5D-4125-94F9-51D3F6F479C5}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{CC67EC4E-5665-4A4B-BE14-E0CBD4FDD3D5}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{CD55B21B-1AD8-446F-8B88-132C2761E9B3}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{CE0771DB-F79A-4F8D-AE83-5580ADA00F28}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{CECF066D-2BDF-4753-98C1-667E530EC6A0}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{CEEBF3E3-8224-47FF-B468-D5B93480B1E6}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{CF86CA14-90C2-46FF-AF19-08772A23A2C1}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{D2491F16-196D-41EE-A56C-5B2A5B071613}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{D41EB9EF-5F52-4FB5-AE25-8CAF01338E6B}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{D7C52278-CB44-431E-A292-310D83399A7A}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{DA282D2E-61B9-4F73-B89F-35C458198A7A}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{DA7BCEF5-9108-4F68-925E-230D346BCB88}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{DE62E55F-BE4E-4445-BFE0-0D905C1FB175}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{E0199454-D13E-41B2-9808-F987B3901EA8}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{E65F1CD4-D598-4D6F-9B77-B08E3A288BF2}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{E6872BE4-1792-47D4-84B7-89EE2261496D}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{E949FD73-4CD8-4E7E-8A61-A56039998AE8}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{EC0C3C93-BD76-4321-9BB2-E9E3A743E148}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{EE2713BB-E927-46B0-9493-2C7FD72B75E9}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{F5B10482-6D76-4344-9B27-681B38213295}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{F931B273-2D24-4D27-B42C-F6AB3FCBF09F}
SUPPRIME Folder: C:\Program Files (x86)\Software
SUPPRIME Folder: C:\ProgramData\Software
SUPPRIME Folder: C:\Users\Christian\AppData\Local\Software
SUPPRIME Temporaires Windows: : 205
========== Fichier(s) ==========
ABSENT File: c:\program files (x86)\sweetim\messenger\sweetim.exe
SUPPRIME Temporaires Windows: : 59
========== Tache planifiée ==========
SUPPRIME Task: Express Files Updater
SUPPRIME Task: {B4BB25B0-7C92-47B4-896B-D9A8DA1EB185}
SUPPRIME Task: {7C21FB57-6BF3-45A5-B179-E85B70D7510F}
========== Récapitulatif ==========
5 : Clé(s) du Registre
89 : Dossier(s)
2 : Fichier(s)
3 : Tache planifiée
End of clean in 00mn 15s
Fichier d'export Registre : C:\ZHP\ZHPExportRegistry-28-04-2012-10-45-54.txt
Run by Christian at 28/04/2012 10:45:54
Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601)
Web site : http://www.premiumorange.com/zeb-help-process/zhpfix.html
========== Clé(s) du Registre ==========
SUPPRIME CLSID MPSK: {4f4c9720-7a85-11e1-a3dd-ec9a7456ab0d}
SUPPRIME CLSID MPSK: {4f4c9727-7a85-11e1-a3dd-ec9a7456ab0d}
SUPPRIME Key**: StartupReg: SweetIM
SUPPRIME Key: HKLM\Software\WOW6432Node\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
SUPPRIME Key: HKLM\Software\WOW6432Node\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
========== Dossier(s) ==========
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{016380D2-29FD-4747-8DB9-0D02804813B6}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{02A400BD-DD97-4ECD-A90C-26FF6D8903EF}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{02E9BE2F-41E4-44D8-AB9D-45C2D127D2FC}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{0701A6DC-88F3-475F-8979-6F19CEF753AD}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{0BBB39F1-C2AF-4EE6-A09B-5C927F9FCEC8}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{0DC03053-4373-48B6-97BB-8F81B107A023}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{1256C65B-468E-4C6E-ABF0-0D9ACA4C1AD6}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{14750432-52BA-43AF-B8B5-901A56247D23}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{1598D104-9D91-4285-9670-B6122574CD49}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{1EED4E41-0042-45B3-9CCF-E26D61553D70}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{1F29C955-BD4C-4E86-B705-9D7A2FB9D959}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{20C8B1F8-5E75-41A7-A12D-CD6A68C48250}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{23676AA9-6D86-4A1D-A602-EC3E376704E3}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{28CE5770-F23A-4154-AFF5-A572D4C3A43F}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{2DE9B07E-8918-4C03-9982-858004527F10}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{2EE104A6-D61B-4299-8A43-1D3CB0D6ECE6}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{343B6863-C2BA-4D87-9E4B-BEA196EBDDD6}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{346049D0-A011-431A-9BF8-1288AC4C5FFC}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{34EA9907-F7D9-46AB-A151-9ED33E9EE19B}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{3AE8CC4D-9C02-4B9D-BBEF-BC4894496D1B}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{463A8329-3F07-4B2B-910D-DB833644E10A}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{47DFC876-846E-4D2C-ABFA-76A38E99AAF7}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{4AC7715C-6144-4C0E-A9FF-6256B963D558}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{55D1AEDB-A6C4-4F7D-A1E7-61E904F5B054}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{5E327949-88F1-459A-8D3B-15D1DBA14389}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{62431264-21D4-4154-BC6F-F3240B0B7E31}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{62740ABA-C222-4E8D-93D8-1DD83EA60484}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{6346F745-4E79-41F4-88E5-959D6485CFF0}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{63A7978A-C219-451A-B4F9-EDBB9FF61997}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{69D77470-B2A7-4D9E-A0A9-0DA93BCA57A5}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{6A59EFC0-8B78-4EFA-AA44-954E1F586A4D}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{7164B01A-8A01-41EC-8C62-87EFD825F086}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{7238293E-D00C-43B9-A194-1EAFA53BF70C}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{72C22367-2851-48F8-9025-E276DC64E4DE}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{742C73CF-3237-464D-87EE-9F6027D85C38}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{74ED5A67-31B4-4B18-84FA-585C86DFF2CB}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{76ECD492-A58D-41BA-A28F-B16AFDE415A4}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{7966AEED-0C4C-4C06-B761-CAEA59DC5DC9}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{7A090F26-6F24-45EC-8262-BBDB48EA7393}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{81FB9A5A-D700-437C-A65B-CCCD0DB89DD6}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{834F29A1-BF3C-4A0F-A1A4-F5F286DCF168}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{887E20E7-0B39-4049-BB62-7D75E59D4D12}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{8B5AF968-7980-46D8-9ABE-B03C82A4EBBA}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{8CA52709-22EA-4307-B96B-4E952D0FFCB5}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{8F7FEF90-4A35-4983-A646-8EA4F199F4CA}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{8F990778-21D8-4EA3-9063-DD11D2F17912}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{93A4749D-E656-4B83-AB07-D5E5A1A6DD7F}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{949C5E72-7189-4F8B-825A-355A7C970AEF}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{951AF614-AC19-4A51-831E-A9A12477FFE9}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{969AEF61-BA5C-4458-B939-86AB402A158C}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{9AC64421-A215-4F04-A35A-A187965E2906}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{A37E2EF7-683E-4A40-9264-783A65AC7AD8}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{A7132EC8-7298-4387-ABF1-7FD0037472A5}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{AD94E9DE-27FA-4085-B06E-CB28B45D03BF}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{AE5B8C06-53D9-4461-BE97-C27428EC7184}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{B08E5309-FD14-40A0-9BDF-5A36AC336500}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{B3655D58-0AE9-4075-AFA3-5345A084BE25}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{B44AA780-E798-4863-8910-85394F422E4C}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{B8ACB72B-7BF0-4AA4-A898-65B675C66788}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{BFB2A31B-95BE-4A51-ADB1-065576ED96B9}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{C18D7B8F-8048-4A8E-8267-AF91E5A1BBBF}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{C3ADD385-B97F-4CCF-9207-83A32F4DA767}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{C8FFE6EE-CADB-4C42-AFED-1CE92E8FC5E7}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{CA1DD83B-D441-4817-9890-7791FBC199E8}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{CC1538C9-7B5D-4125-94F9-51D3F6F479C5}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{CC67EC4E-5665-4A4B-BE14-E0CBD4FDD3D5}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{CD55B21B-1AD8-446F-8B88-132C2761E9B3}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{CE0771DB-F79A-4F8D-AE83-5580ADA00F28}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{CECF066D-2BDF-4753-98C1-667E530EC6A0}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{CEEBF3E3-8224-47FF-B468-D5B93480B1E6}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{CF86CA14-90C2-46FF-AF19-08772A23A2C1}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{D2491F16-196D-41EE-A56C-5B2A5B071613}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{D41EB9EF-5F52-4FB5-AE25-8CAF01338E6B}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{D7C52278-CB44-431E-A292-310D83399A7A}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{DA282D2E-61B9-4F73-B89F-35C458198A7A}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{DA7BCEF5-9108-4F68-925E-230D346BCB88}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{DE62E55F-BE4E-4445-BFE0-0D905C1FB175}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{E0199454-D13E-41B2-9808-F987B3901EA8}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{E65F1CD4-D598-4D6F-9B77-B08E3A288BF2}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{E6872BE4-1792-47D4-84B7-89EE2261496D}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{E949FD73-4CD8-4E7E-8A61-A56039998AE8}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{EC0C3C93-BD76-4321-9BB2-E9E3A743E148}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{EE2713BB-E927-46B0-9493-2C7FD72B75E9}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{F5B10482-6D76-4344-9B27-681B38213295}
SUPPRIME Folder: C:\Users\Christian\AppData\Local\{F931B273-2D24-4D27-B42C-F6AB3FCBF09F}
SUPPRIME Folder: C:\Program Files (x86)\Software
SUPPRIME Folder: C:\ProgramData\Software
SUPPRIME Folder: C:\Users\Christian\AppData\Local\Software
SUPPRIME Temporaires Windows: : 205
========== Fichier(s) ==========
ABSENT File: c:\program files (x86)\sweetim\messenger\sweetim.exe
SUPPRIME Temporaires Windows: : 59
========== Tache planifiée ==========
SUPPRIME Task: Express Files Updater
SUPPRIME Task: {B4BB25B0-7C92-47B4-896B-D9A8DA1EB185}
SUPPRIME Task: {7C21FB57-6BF3-45A5-B179-E85B70D7510F}
========== Récapitulatif ==========
5 : Clé(s) du Registre
89 : Dossier(s)
2 : Fichier(s)
3 : Tache planifiée
End of clean in 00mn 15s
Utilisateur anonyme
28 avril 2012 à 10:54
28 avril 2012 à 10:54
relance ADWC, clique sur désinstaller,
vérifie l'état du parfeu !
tu me confirmes l'installation de java 31 et la désinstallation de spybot ?
vérifie l'état du parfeu !
tu me confirmes l'installation de java 31 et la désinstallation de spybot ?
Goldboy55
Messages postés
16
Date d'inscription
dimanche 18 septembre 2011
Statut
Membre
Dernière intervention
11 avril 2018
28 avril 2012 à 11:01
28 avril 2012 à 11:01
Je t'ai dis sur un précédant messange que j'avais la version 32 et non 31 de java.
Dois je quand même désinstaller la 32 pour installer la 31?
Spybot est désinstallé.
Le pare feu est inactif bien que je l'avais activé il y a 1 heure.
Adw est désinstallé
Dois je quand même désinstaller la 32 pour installer la 31?
Spybot est désinstallé.
Le pare feu est inactif bien que je l'avais activé il y a 1 heure.
Adw est désinstallé
Utilisateur anonyme
28 avril 2012 à 11:11
28 avril 2012 à 11:11
ok pour la version 32 de java !
* /!\Avertissement :
Ce logiciel n'est à utiliser que prescrit par un helper qualifié.
Ne pas utiliser en dehors de ce cas de figure : dangereux!
► Télécharges ComboFix à partir de ce lien et enregistres le sur ton bureau :
https://forum.pcastuces.com/combofix_renomme_au_telechargement-f31s22.htm
ou ici :
http://download.bleepingcomputer.com/sUBs/ComboFix.exe
A lire
https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix
Avant d'utiliser ComboFix :
► ferme les fenêtres de tous les programmes en cours.
► Désactive provisoirement et seulement le temps de l'utilisation de ComboFix, la protection en temps réel de ton Antivirus et de tes Antispywares, qui peuvent gêner fortement la procédure de recherche et de nettoyage de l'outil.
Une fois fait, sur ton bureau double-clic sur Combofix.exe.
/!\Utilisateur de Vista : Clique droit sur le logo de Combofix, « exécuter en tant qu'Administrateur »
- Répond oui au message d'avertissement, pour que le programme commence à procéder à l'analyse du pc.
- il se peut que Combofix ait besoin de se connecter à internet pour trouver les mises à jour, donc il faut l'autoriser.
/!\ Pendant la durée de cette étape, ne te sert pas du pc et n'ouvre aucun programmes.
- En fin de scan il est possible que ComboFix ait besoin de redémarrer le pc pour finaliser la désinfection\recherche, laisses-le faire.
- Un rapport s'ouvrira ensuite dans le bloc notes, ce fichier rapport Combofix.txt, est automatiquement sauvegardé et rangé à C:\ComboFix\ComboFix.txt)
► Réactive la protection en temps réel de ton Antivirus et de tes Antispywares, avant de te reconnecter à internet.
► Reviens sur le forum, et copie et colle la totalité du contenu de C:\Combofix.txt dans ton prochain message.
* /!\Avertissement :
Ce logiciel n'est à utiliser que prescrit par un helper qualifié.
Ne pas utiliser en dehors de ce cas de figure : dangereux!
► Télécharges ComboFix à partir de ce lien et enregistres le sur ton bureau :
https://forum.pcastuces.com/combofix_renomme_au_telechargement-f31s22.htm
ou ici :
http://download.bleepingcomputer.com/sUBs/ComboFix.exe
A lire
https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix
Avant d'utiliser ComboFix :
► ferme les fenêtres de tous les programmes en cours.
► Désactive provisoirement et seulement le temps de l'utilisation de ComboFix, la protection en temps réel de ton Antivirus et de tes Antispywares, qui peuvent gêner fortement la procédure de recherche et de nettoyage de l'outil.
Une fois fait, sur ton bureau double-clic sur Combofix.exe.
/!\Utilisateur de Vista : Clique droit sur le logo de Combofix, « exécuter en tant qu'Administrateur »
- Répond oui au message d'avertissement, pour que le programme commence à procéder à l'analyse du pc.
- il se peut que Combofix ait besoin de se connecter à internet pour trouver les mises à jour, donc il faut l'autoriser.
/!\ Pendant la durée de cette étape, ne te sert pas du pc et n'ouvre aucun programmes.
- En fin de scan il est possible que ComboFix ait besoin de redémarrer le pc pour finaliser la désinfection\recherche, laisses-le faire.
- Un rapport s'ouvrira ensuite dans le bloc notes, ce fichier rapport Combofix.txt, est automatiquement sauvegardé et rangé à C:\ComboFix\ComboFix.txt)
► Réactive la protection en temps réel de ton Antivirus et de tes Antispywares, avant de te reconnecter à internet.
► Reviens sur le forum, et copie et colle la totalité du contenu de C:\Combofix.txt dans ton prochain message.
Goldboy55
Messages postés
16
Date d'inscription
dimanche 18 septembre 2011
Statut
Membre
Dernière intervention
11 avril 2018
28 avril 2012 à 12:03
28 avril 2012 à 12:03
https://www.cjoint.com/?3DCmcmODYW2
Le rapport combofix
Le rapport combofix
Goldboy55
Messages postés
16
Date d'inscription
dimanche 18 septembre 2011
Statut
Membre
Dernière intervention
11 avril 2018
28 avril 2012 à 12:17
28 avril 2012 à 12:17
Je viens de le réactiver et j'ai réactivé l'antivirus.
Mon antivirus n'est pas AVG. Il était préinstallé sur le PC lors de l'achat et je suis passé par suppression des programmes pour le désinstaller
Mon antivirus n'est pas AVG. Il était préinstallé sur le PC lors de l'achat et je suis passé par suppression des programmes pour le désinstaller
Utilisateur anonyme
28 avril 2012 à 12:48
28 avril 2012 à 12:48
Télécharge Malwarebytes' Anti-Malware et enregistre le sur ton bureau:
https://fr.malwarebytes.com/mwb-download/
ou :
https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
ou ici :
https://www.commentcamarche.net/telecharger/securite/14361-malwarebytes-anti-malware/
/!\Utilisateur de Vista et Windows 7 : Clique droit sur le logo de Malwarebytes' Anti-Malware, « exécuter en tant qu'Administrateur »
. Double cliques sur le fichier téléchargé pour lancer le processus d'installation.
. Dans l'onglet "mise à jour", cliques sur le bouton Recherche de mise à jour
. si le pare-feu demande l'autorisation de se connecter pour malwarebytes, acceptes
. Une fois la mise à jour terminé
. rend-toi dans l'onglet, Recherche
. Sélectionnes Exécuter un examen complet
. Cliques sur Rechercher
. Le scan démarre.
. A la fin de l'analyse, un message s'affiche : L'examen s'est terminé normalement. Clique sur 'Afficher les résultats' pour afficher tous les objets trouvés.
. Cliques sur Ok pour poursuivre.
. Si des malwares ont été détectés, cliques sur Afficher les résultats
. Sélectionnes tout (ou laisses cochés) et cliques sur Supprimer la sélection Malwarebytes va détruire les fichiers et clés de registre et en mettre une copie dans la quarantaine.
. Malwarebytes va ouvrir le bloc-notes et y copier le rapport d'analyse.
. rends toi dans l'onglet rapport/log
. tu cliques dessus pour l'afficher une fois affiché
. tu cliques sur edition en haut du boc notes,et puis sur sélectionner tous
. tu recliques sur edition et puis sur copier et tu reviens sur le forum et dans ta réponse
. Tu cliques droit dans le cadre de la réponse et coller
. À la fin du scan, il se peut que MBAM ait besoin de redémarrer le pc pour finaliser la suppression, donc pas de panique, redémarre ton pc !!!
Si tu as besoin d'aide regarde ce tutoriel :
https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
https://fr.malwarebytes.com/mwb-download/
ou :
https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
ou ici :
https://www.commentcamarche.net/telecharger/securite/14361-malwarebytes-anti-malware/
/!\Utilisateur de Vista et Windows 7 : Clique droit sur le logo de Malwarebytes' Anti-Malware, « exécuter en tant qu'Administrateur »
. Double cliques sur le fichier téléchargé pour lancer le processus d'installation.
. Dans l'onglet "mise à jour", cliques sur le bouton Recherche de mise à jour
. si le pare-feu demande l'autorisation de se connecter pour malwarebytes, acceptes
. Une fois la mise à jour terminé
. rend-toi dans l'onglet, Recherche
. Sélectionnes Exécuter un examen complet
. Cliques sur Rechercher
. Le scan démarre.
. A la fin de l'analyse, un message s'affiche : L'examen s'est terminé normalement. Clique sur 'Afficher les résultats' pour afficher tous les objets trouvés.
. Cliques sur Ok pour poursuivre.
. Si des malwares ont été détectés, cliques sur Afficher les résultats
. Sélectionnes tout (ou laisses cochés) et cliques sur Supprimer la sélection Malwarebytes va détruire les fichiers et clés de registre et en mettre une copie dans la quarantaine.
. Malwarebytes va ouvrir le bloc-notes et y copier le rapport d'analyse.
. rends toi dans l'onglet rapport/log
. tu cliques dessus pour l'afficher une fois affiché
. tu cliques sur edition en haut du boc notes,et puis sur sélectionner tous
. tu recliques sur edition et puis sur copier et tu reviens sur le forum et dans ta réponse
. Tu cliques droit dans le cadre de la réponse et coller
. À la fin du scan, il se peut que MBAM ait besoin de redémarrer le pc pour finaliser la suppression, donc pas de panique, redémarre ton pc !!!
Si tu as besoin d'aide regarde ce tutoriel :
https://www.malekal.com/tutoriel-malwarebyte-anti-malware/