Mise à jour windows bloquée ou endommagée

antoine -  
 Utilisateur anonyme -
Bonjour,

depuis quelque temps plus moyen d'accéder en ligne à la mise à jour de seven alors que celui ci fonctionnait auparavant, il met un temps fou pour afficher la fenêtre de mise à jour c'est affolant et quand je demande de d'afficher les mises à jour déjà faites il n'y à rien et mon ordi 'affiche mettre à jour vos paramètres de mise à jour 1 message important avez vous déjà rencontré ce genre de problème
merci d'avance cdlt
Antoine
<config>Windows 7 / Firefox 13.0.1</config>
A voir également:

8 réponses

Utilisateur anonyme
 
Bonjour

Procédons à une analyse de ton PC

Inscris toi avant tout

Pour de plus amples informations, fait ceci stp

Ouvre ce lien et télécharge ZHPDiag de Nicolas Coolman :

https://www.zebulon.fr/telechargements/securite/systeme/zhpdiag.html

Ou

https://www.commentcamarche.net/telecharger/utilitaires/24803-zhpdiag/

Serveur N°2

Ou

http://www.premiumorange.com/zeb-help-process/zhpdiag.html
en bas de la page ZHP avec un numéro de version.

Une fois le téléchargement achevé, dé zippe le fichier obtenu et place ZHPDiag.exe sur ton Bureau.

Double-clique sur l'icône pour lancer le programme. Sous Vista ou Seven clic droit « exécuter en tant que administrateur »

Clique sur la loupe pour lancer l'analyse.

Laisse l'outil travailler, il peut être assez long.

Ferme ZHPDiag en fin d'analyse.

Pour transmettre le rapport clique sur ce lien :

http://pjjoint.malekal.com/

https://www.cjoint.com/

Clique sur Parcourir et cherche le répertoire où est installé ZHPDiag (en général ;tu le trouveras sur le bureau)

Sélectionne le fichier ZHPDiag.txt.

Clique sur "Cliquez ici pour déposer le fichier".

Un lien de cette forme :

http://www.cijoint.fr/cjlink.php?file=cj200905/cijSKAP5fU.txt

est ajouté dans la page.

Copie ce lien dans ta réponse.

Merci

@+
1
Antoine
 
c'est fait le fichier est uploader @+
0
Utilisateur anonyme
 
et le lien pour le visualiser .
Il est ou?
0
Antoine
 
Rapport de ZHPDiag v1.31.105 par Nicolas Coolman, Update du 25/06/2012
Run by EvilBox at 13/07/2012 15:24:44
Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
Web site : http://nicolascoolman.skyrock.com/
State : Version à jour.


---\\ Web Browser
MSIE: Internet Explorer v9.0.8112.16421
MFIE: Mozilla Firefox 13.0.1 v13.0.1 (Defaut)

---\\ Windows Product Information
~ Langage: Français
Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601)
Windows Server License Manager Script : OK
~ Windows(R) 7, RETAIL channel
Windows ID Activation : OK
~ Windows Partial Key : 2VTGY
Windows License : OK
~ Windows Remaining Initializations Number : 4
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ System Information
~ Processor: Intel64 Family 6 Model 15 Stepping 11, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 8191 MB (66% free)
System Restore: Activé (Enable)
System drive C: has 172 GB (48%) free of 352 GB

---\\ Logged in mode
~ Computer Name: EVILBOX-PC
~ User Name: EvilBox
~ All Users Names: UpdatusUser, HomeGroupUser$, EvilBox, Administrateur,
~ Unselected Option: O45,O61,O62,O65,O66,O80,O82,O89
Logged in as Administrator

---\\ Environnement Variables
~ System Unit : C:\
~ %AppData% : C:\Users\EvilBox\AppData\Roaming\
~ %Desktop% : C:\Users\EvilBox\Desktop\
~ %Favorites% : C:\Users\EvilBox\Favorites\
~ %LocalAppData% : C:\Users\EvilBox\AppData\Local\
~ %StartMenu% : C:\Users\EvilBox\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 172 Go of 352 Go)
D:\ Hard drive, Flash drive, Thumb drive (Free 44 Go of 179 Go)
E:\ Hard drive, Flash drive, Thumb drive (Free 33 Go of 337 Go)
F:\ Hard drive, Flash drive, Thumb drive (Free 2 Go of 10 Go)
G:\ Hard drive, Flash drive, Thumb drive (Free 7 Go of 7 Go)
H:\ CD-ROM drive (Not Inserted)
I:\ CD-ROM drive (Not Inserted)
J:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
K:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
L:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
N:\ Floppy drive, Flash card reader, USB Key (Not Inserted)



---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Scan Security Center in 00mn 00s



---\\ Recherche particulière de fichiers génériques
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2011 - 07:19:30.) -- C:\Windows\Explorer.exe [2871808]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:39:52.) -- C:\Windows\System32\Wininit.exe [129024]
[MD5.5A45FA344F4AD99D903F4B20E43B89EC] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.02/06/2012 - 13:05:28.) -- C:\Windows\System32\wininet.dll [1392128]
[MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.20/11/2010 - 14:25:30.) -- C:\Windows\System32\Winlogon.exe [390656]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) (.20/11/2010 - 14:27:26.) -- C:\Windows\System32\sppcomapi.dll [232448]
[MD5.1C7857B62DE5994A75B054A9FD4C3825] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.28/12/2011 - 04:59:24.) -- C:\Windows\system32\Drivers\AFD.sys [498688]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 10:19:21.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 10:26:32.) -- C:\Windows\system32\Drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 11:43:43.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 01:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224]
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:40:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 10:23:20.) -- C:\Windows\system32\Drivers\netBT.sys [261632]
[MD5.A2F74975097F52A00745F9637451FDD8] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.11/03/2011 - 07:41:34.) -- C:\Windows\system32\Drivers\ntfs.sys [1659776]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 01:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.20/11/2010 - 11:52:35.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 01:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184]
[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 10:21:56.) -- C:\Windows\system32\Drivers\tdx.sys [119296]
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.20/11/2010 - 14:34:02.) -- C:\Windows\system32\Drivers\volsnap.sys [295808]
~ Scan Generic Processes in 00mn 03s



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 1/1001
~ Mes musiques (My Musics) : 1/332
~ Mes Videos (My Videos) : 2/11
~ Mes Favoris (My Favorites) : 1/24
~ Mes Documents (My Documents) : 2/465
~ Mon Bureau (My Desktop) : 1/291
~ Menu demarrer (Programs) : 1/37
~ Scan Hidden Files in 00mn 03s



---\\ Processus lancés
[MD5.F4158E8EED7ED7AB0727F54DCDC1FF89] - (.Pas de propriétaire - KiesPDLR.) -- C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [21392] [PID.3064]
[MD5.6E7864615969FF2FA56B354E7F0C093D] - (.Samsung Electronics Co., Ltd. - Kies TrayAgent Application.) -- C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [3521424] [PID.1128]
[MD5.98A078F838A70F84E1BD490D7C7675F4] - (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254696] [PID.3960]
[MD5.20C4535969F2006F6082CDF146CD95C4] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [4273976] [PID.4136]
[MD5.C5F1D82D9CC8979971CC748FCB2EE7CA] - (.Lavasoft - Ad-Aware Browsing Protection.) -- C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe [198032] [PID.4216]
[MD5.54F71FFAE3C44EDE7C9A3050856ABFB2] - (.Lavasoft Limited - Ad-Aware Antivirus.) -- C:\Program Files (x86)\Ad-Aware Antivirus\AdAware.exe [20221792] [PID.4524]
[MD5.D3C0837346C49095B8AF9EF54AD7E90A] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [913888] [PID.1936]
[MD5.41623176FEF9DF3C113EAADADBB5FB42] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe [16864] [PID.2624]
[MD5.7E55EB324D283979E450F71C973110B9] - (.Adobe Systems, Inc. - Adobe Flash Player 11.3 r300.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_3_300_265.exe [1536712] [PID.1296]
[MD5.BE955BAB4EFC2A28BE2692D102FFC85A] - (...) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [3838464] [PID.1108]
[MD5.C354621B6B94E10AE7F5CDBE745FEB86] - (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [382272] [PID.]
[MD5.2F7C0F3E39C45E0127FB78B2F18A41F3] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [44808] [PID.]
[MD5.09E61047B0CEF21559CFCEDF4F14D216] - (.Lavasoft Limited - Ad-Aware Antivirus Service.) -- C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe [1226096] [PID.]
[MD5.62B7936F9036DD6ED36E6A7EFA805DC0] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [63928] [PID.]
[MD5.205E1B699FD3F2F9B036EEA2EC30C620] - (...) -- C:\Windows\SysWOW64\PnkBstrA.exe [76888] [PID.]
[MD5.BCE943896289A91AD75CC5652620B1C6] - (.GFI Software - GFI Software Anti Malware Service.) -- C:\Program Files (x86)\Ad-Aware Antivirus\SBAMSvc.exe [3289032] [PID.]
[MD5.3199A477F0F06EEDE41BD55179F8EB05] - (.TomTom - Windows Service for TomTom HOME.) -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe [92592] [PID.]
[MD5.794D4B48DFB6E999537C7C3947863463] - (.Safer Networking Ltd. - Spybot-S&D Security Center integration.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [1153368] [PID.]
[MD5.C15B813F2FDB44F87F23312472C6E790] - (.Nokia - ServiceLayer Module.) -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [720936] [PID.]
[MD5.53B629CE436B110C5689C2F6439E567B] - (.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [1262400] [PID.]
~ Scan Processes Running in 00mn 04s



---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\EvilBox\AppData\Local\Google\Chrome\User Data\Default\Preferences
~ Scan Google Browser in 00mn 00s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
C:\Users\EvilBox\AppData\Roaming\Mozilla\Firefox\Profiles\4m3ubb7m.default\prefs.js
C:\Users\EvilBox\AppData\Roaming\Mozilla\Firefox\Profiles\4m3ubb7m.default\user.js
M3 - MFPP: Plugins - [EvilBox] -- C:\Users\EvilBox\AppData\Roaming\Mozilla\Firefox\Profiles\4m3ubb7m.default\searchplugins\aol-web-search.xml
M3 - MFPP: Plugins - [EvilBox] -- C:\Users\EvilBox\AppData\Roaming\Mozilla\Firefox\Profiles\4m3ubb7m.default\searchplugins\zonealarm.xml
M3 - MFPP: Plugins - [EvilBox] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\amazon-france.xml
M3 - MFPP: Plugins - [EvilBox] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\bing.xml
M3 - MFPP: Plugins - [EvilBox] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\cnrtl-tlfi-fr.xml
M3 - MFPP: Plugins - [EvilBox] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\eBay-france.xml
M3 - MFPP: Plugins - [EvilBox] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\google.xml
M3 - MFPP: Plugins - [EvilBox] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\wikipedia-fr.xml
M3 - MFPP: Plugins - [EvilBox] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\yahoo-france.xml
M0 - MFSP: prefs.js [EvilBox - 4m3ubb7m.default] http://www.google.fr
M2 - MFEP: prefs.js [EvilBox - 4m3ubb7m.default\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}] [dwhelper] DownloadHelper v4.9.9 (.Michel Gutierrez.)
P2 - FPN:Firefox Plugin Navigator . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 10.1.3.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF64_11_3_300_265.dll
P2 - FPN: [HKLM] [@divx.com/DivX VOD Helper,version=1.0.0] - (.DivX, LLC. - DivX VOD Helper Plug-in.) -- C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll
P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 5.1.10411.0.) -- c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll
~ Scan Firefox Browser in 00mn 01s



---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R3 - URLSearchHook: (no name) [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (. Microsoft Corporation - 5.1.10411.0.) (No version) -- (.not file.)
R3 - URLSearchHook: (no name) [64Bits] - {d7f26d0e-9801-45c3-a091-8a65e4ed73b5} . (. Microsoft Corporation - 5.1.10411.0.) (No version) -- (.not file.)
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
~ Scan IE Browser in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Scan Proxy management in 00mn 00s



---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Scan Keys in 00mn 00s



---\\ Redirection du fichier Hosts (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Scan Hosts File in 00mn 02s
~ Nombre de lignes (Lines number): 15280



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: AcroIEHelperStub [64Bits] - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre6\bin\ssv.dll
O2 - BHO: ZoneAlarm Security Engine Registrar [64Bits] - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} . (.Check Point Software Technologies - ZoneAlarm Browser Security.) -- C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\TrustCheckerIEPlugin.d
O2 - BHO: avast! WebRep [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
~ Scan BHO in 00mn 00s



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: ZoneAlarm Security Engine [64Bits] - [HKLM]{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} . (.Check Point Software Technologies - ZoneAlarm Browser Security.) -- C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\TrustCheckerIEPlugin.d
O3 - Toolbar: (no name) [64Bits] - [HKLM]{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} . (...) -- (.not file.)
~ Scan Toolbar in 00mn 00s



---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [ISW] Clé orpheline
O4 - HKCU\..\Run: [DAEMON Tools Lite] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
O4 - HKCU\..\Run: [KiesPDLR] . (.Pas de propriétaire - KiesPDLR.) -- C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
O4 - HKCU\..\Run: [KiesHelper] . (.Samsung - Kies.) -- C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe
O4 - HKCU\..\Run: [SRSHDAudioLab] C:\Program Files\SRS Labs\SRS Audio Essentials\AudioEssentials.exe (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O4 - HKLM\..\Wow6432Node\Run: [KiesTrayAgent] . (.Samsung Electronics Co., Ltd. - Kies TrayAgent Application.) -- C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
O4 - HKLM\..\Wow6432Node\Run: [ZoneAlarm] . (.Check Point Software Technologies LTD - ZoneAlarm.) -- C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe
O4 - HKLM\..\Wow6432Node\Run: [avast] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastUI.exe
O4 - HKLM\..\Wow6432Node\Run: [Ad-Aware Antivirus] Clé orpheline
O4 - HKLM\..\Wow6432Node\Run: [Ad-Aware Browsing Protection] . (.Lavasoft - Ad-Aware Browsing Protection.) -- C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-21-4058256371-3495644360-2017140564-1007-4058256371-3495644360-2017140564-1001\..\Run: [DAEMON Tools Lite] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
O4 - HKUS\S-1-5-21-4058256371-3495644360-2017140564-1007-4058256371-3495644360-2017140564-1001\..\Run: [KiesPDLR] . (.Pas de propriétaire - KiesPDLR.) -- C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
O4 - HKUS\S-1-5-21-4058256371-3495644360-2017140564-1007-4058256371-3495644360-2017140564-1001\..\Run: [KiesHelper] . (.Samsung - Kies.) -- C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe
O4 - HKUS\S-1-5-21-4058256371-3495644360-2017140564-1007-4058256371-3495644360-2017140564-1001\..\Run: [SRSHDAudioLab] C:\Program Files\SRS Labs\SRS Audio Essentials\AudioEssentials.exe (.not file.)
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
~ Scan Application in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - Global Startup: C:\Users\EvilBox\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\EvilBox\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\EvilBox\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk . (.Spotify Ltd.) -- C:\Users\EvilBox\AppData\Roaming\Spotify\spotify.exe
O4 - Global Startup: C:\Users\EvilBox\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\JDownloader.lnk . (.AppWork GmbH.) -- C:\Program Files (x86)\JDownloader\JDownloaderPortable.exe
O4 - Global Startup: C:\Users\EvilBox\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\EvilBox\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Thunderbird.lnk . (.Mozilla Messaging.) -- C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe
O4 - Global Startup: C:\Users\EvilBox\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Picasa 3.lnk . (.Google Inc..) -- C:\Program Files (x86)\Google\Picasa3\Picasa3.exe
O4 - Global Startup: C:\Users\EvilBox\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\QuickStores.url . (.Google Inc..) -- C:\Users\EvilBox\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\QuickStores.url
O4 - Global Startup: C:\Users\EvilBox\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies.lnk . (.Samsung.) -- C:\Program Files (x86)\Samsung\Kies\Kies.exe
O4 - Global Startup: C:\Users\EvilBox\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Spybot - Search & Destroy.lnk . (.Safer Networking Limited.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe
O4 - Global Startup: C:\Users\EvilBox\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Winamp.lnk . (.Nullsoft, Inc..) -- C:\Program Files (x86)\Winamp\winamp.exe
~ Scan Global Startup in 00mn 00s



---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
O8 - Extra context menu item: Add to Google Photos Screensa&ver - (.not file.) - C:\Windows\system32\GPhotos.scr
O8 - Extra context menu item: E&xporter vers Microsoft Excel . (.Microsoft Corporation - Microsoft Office Excel.) -- C:\Program Files (x86)\MICROS~1\Office12\EXCEL.exe
~ Scan IE Menu Contextuel in 00mn 01s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
~ Scan Winsock in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{7B719C31-8049-4104-B764-3DB981471A84}: DhcpNameServer = 89.2.0.1 89.2.0.2
O17 - HKLM\System\CS1\Services\Tcpip\..\{7B719C31-8049-4104-B764-3DB981471A84}: DhcpNameServer = 89.2.0.1 89.2.0.2
O17 - HKLM\System\CS2\Services\Tcpip\..\{7B719C31-8049-4104-B764-3DB981471A84}: DhcpNameServer = 89.2.0.1 89.2.0.2
~ Scan Domain in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (...) --
O18 - Handler: dvd [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (...) --
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (...) --
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (...) --
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (...) --
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (...) --
O18 - Handler: its [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (...) --
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (...) --
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (...) --
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (...) --
O18 - Handler: mhtml [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (...) --
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (...) --
O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (...) --
O18 - Handler: tv [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (...) --
O18 - Handler: vbscript [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (...) --
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (...) --
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (...) --
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (...) --
O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.dll
~ Scan Protocole Additionnel in 00mn 00s



---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ Scan SSODL in 00mn 00s



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Ad-Aware Service (Ad-Aware Service) . (.Lavasoft Limited - Ad-Aware Antivirus Service.) - C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: ZoneAlarm Toolbar IswSvc (IswSvc) . (.Check Point Software Technologies - ZoneAlarm Browser Security.) - C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 301.4.) - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\Windows\SysWOW64\PnkBstrA.exe
O23 - Service: Ad-Aware (SBAMSvc) . (.GFI Software - GFI Software Anti Malware Service.) - C:\Program Files (x86)\Ad-Aware Antivirus\SBAMSvc.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) . (.Safer Networking Ltd. - Spybot-S&D Security Center integration.) - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TomTomHOMEService (TomTomHOMEService) . (.TomTom - Windows Service for TomTom HOME.) - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
O23 - Service: TrueVector Internet Monitor (vsmon) . (.Check Point Software Technologies LTD - TrueVector Service.) - C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe
O23 - Service: (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
~ Scan Services in 00mn 00s



---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Scan Desktop Component in 00mn 00s



---\\ BootExecute (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ Scan Keys in 00mn 00s



---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Ad-Aware Antivirus Scheduled Scan.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Ad-Aware Update (Weekly).job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\avast! Emergency Update.job
~ Scan Scheduled Task in 00mn 00s



---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll
O40 - ASIC: Internet Explorer [64Bits] - >{26923b43-4d38-484f-9b9e-de460746276c} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: Browser Customizations [64Bits] - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} . (.Microsoft Corporation - Personnalisation d'IEAK.) -- C:\Windows\System32\iedkcs32.dll
O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe
O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll
O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll
~ Scan Active Setup in 00mn 00s



---\\ Pilotes lancés au démarrage (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (aswRdr) . (.AVAST Software - avast! WFP Redirect Driver.) - C:\Windows\system32\Drivers\aswrdr2.sys
O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\System32\DRIVERS\blbdrive.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys
O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
O41 - Driver: (dtsoftbus01) . (.DT Soft Ltd - DAEMON Tools Virtual Bus Driver.) - C:\Windows\System32\DRIVERS\dtsoftbus01.sys
O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys
O41 - Driver: (SbFw) . (.GFI Software - GFI Firewall SDK TDI Firewall Driver.) - C:\Windows\System32\drivers\SbFw.sys
O41 - Driver: (SBRE) . (.GFI Software - GFI Anti-Rootkit Driver.) - C:\Windows\system32\drivers\SBREdrv.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: (Vsdatant) . (.Check Point Software Technologies LTD - ZoneAlarm Firewalling Driver.) - C:\Windows\System32\DRIVERS\vsdatant.sys
O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys
O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys
~ Scan Drivers in 00mn 36s



---\\ Logiciels installés (O42)
O42 - Logiciel: Ad-Aware Browsing Protection - (.Lavasoft.) [HKLM] -- Ad-Aware Browsing Protection
O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin
O42 - Logiciel: Adobe Reader X (10.1.3) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AA1000000001}
O42 - Logiciel: Battlefield 3(TM) - (.Electronic Arts.) [HKLM] -- {76285C16-411A-488A-BCE3-C83CB933D8CF}
O42 - Logiciel: Battlelog Web Plugins - (.EA Digital Illusions CE AB.) [HKLM] -- Battlelog Web Plugins
O42 - Logiciel: Configuration DivX - (.DivX, LLC.) [HKLM] -- DivX Setup
O42 - Logiciel: DAEMON Tools Lite - (.DT Soft Ltd.) [HKLM] -- DAEMON Tools Lite
O42 - Logiciel: Day of Defeat: Source - (.Valve.) [HKLM] -- Steam App 300
O42 - Logiciel: Démo Mass Effect(TM) 3 - (.Electronic Arts.) [HKLM] -- {A1683CA7-4850-4A21-982B-C6D853C79AF7}
O42 - Logiciel: ESN Sonar - (.ESN Social Software AB.) [HKLM] -- ESN Sonar-0.70.4
O42 - Logiciel: FLAC 1.2.1b (remove only) - (.Xiph.org.) [HKLM] -- FLAC
O42 - Logiciel: HP Product Detection - (.Hewlett-Packard Company.) [HKLM] -- {CAE7D1D9-3794-4169-B4DD-964ADBC534EE}
O42 - Logiciel: Hotfix for Microsoft .NET Framework 4 Client Profile (KB2461678) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2461678
O42 - Logiciel: JDownloader 0.9 - (.AppWork GmbH.) [HKLM] -- 5513-1208-7298-9440
O42 - Logiciel: Java(TM) 6 Update 33 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216033FF}
O42 - Logiciel: MSVC80_x86_v2 - (.Nokia.) [HKLM] -- {6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}
O42 - Logiciel: MSVC90_x86 - (.Nokia.) [HKLM] -- {AF111648-99A1-453E-81DD-80DBBF6DAD0D}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: Medal of Honor (TM) - (.Electronic Arts.) [HKLM] -- {415030B8-3E8B-462A-8C03-41D95AA3AB3B}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0015-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0016-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0018-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0019-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001A-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001B-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-002A-0000-1000-0000000FF1CE}_PROPLUS_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-002A-040C-1000-0000000FF1CE}_PROPLUS_{8283FD64-6A3B-4104-9E12-7CA25EF29A1A}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0044-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-006E-040C-0000-0000000FF1CE}_PROPLUS_{8283FD64-6A3B-4104-9E12-7CA25EF29A1A}
O42 - Logiciel: Microsoft Office Access MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0015-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Excel MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0016-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office File Validation Add-In - (.Microsoft Corporation.) [HKLM] -- {90140000-2005-0000-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office InfoPath MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0044-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Outlook MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001A-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office PowerPoint MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0018-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Professional Plus 2007 - (.Microsoft Corporation.) [HKLM] -- PROPLUS
O42 - Logiciel: Microsoft Office Professional Plus 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (Arabic) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0401-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (Dutch) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0413-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (English) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0409-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (German) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0407-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (Spanish) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0C0A-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proofing (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-002C-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0401-0000-0000000FF1CE}_PROPLUS_{3E8EA473-ECCE-405F-A9CA-59446AEADD3A}
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0407-0000-0000000FF1CE}_PROPLUS_{928D7B99-2BEA-49F9-83B8-20FA57860643}
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0409-0000-0000000FF1CE}_PROPLUS_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-040C-0000-0000000FF1CE}_PROPLUS_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0413-0000-0000000FF1CE}_PROPLUS_{2C95E7EE-FEA7-4B3A-A6E5-DF90A88B816A}
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0C0A-0000-0000000FF1CE}_PROPLUS_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}
O42 - Logiciel: Microsoft Office Publisher MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0019-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Shared MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-006E-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Word MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001B-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {7299052b-02a4-4627-81f2-1818da5d550d}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {837b34e3-7c30-493c-8f6a-2b0f04e2912c}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 - (.Microsoft Corporation.) [HKLM] -- {FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 - (.Microsoft Corporation.) [HKLM] -- {820B6609-4C97-3A2B-B644-573B06A0F0CC}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F}
O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM] -- {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
O42 - Logiciel: Microsoft_VC100_CRT_SP1_x86 - (.Nokia.) [HKLM] -- {E3B64CC5-C011-40C0-92BC-7316CD5E5688}
O42 - Logiciel: Monday Night Combat - (.Pas de propriétaire.) [HKLM] -- Steam App 63200
O42 - Logiciel: Mozilla Firefox 13.0.1 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 13.0.1 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService
O42 - Logiciel: Mozilla Thunderbird 13.0.1 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Thunderbird 13.0.1 (x86 fr)
O42 - Logiciel: Mumble 1.2.3 - (.Thorvald Natvig.) [HKLM] -- {E1019541-10A2-464F-A23E-A4F23DA65160}
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM] -- {DA909E62-3B45-4BA1-8B58-FCAEBA4BCEC9}
O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM] -- NVIDIAStereo
O42 - Logiciel: Nokia Connectivity Cable Driver - (.Nokia.) [HKLM] -- {A57025CC-5F2E-4D01-B387-06DB10500D43}
O42 - Logiciel: Nokia Suite - (.Nokia.) [HKLM] -- Nokia Suite
O42 - Logiciel: Nokia Suite - (.Nokia.) [HKLM] -- {7964AE02-9127-42C0-A917-2CE4CD4EFE3B}
O42 - Logiciel: OpenAL - (.Pas de propriétaire.) [HKLM] -- OpenAL
O42 - Logiciel: Origin - (.Electronic Arts, Inc..) [HKLM] -- Origin
O42 - Logiciel: PC Connectivity Solution - (.Nokia.) [HKLM] -- {DA5B2BDC-F654-4A88-A669-4D34BC7846A1}
O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM] -- Picasa 3
O42 - Logiciel: PunkBuster Services - (.Even Balance, Inc..) [HKLM] -- PunkBusterSvc
O42 - Logiciel: Rayman Origins - (.Ubisoft.) [HKLM] -- {DE491AB9-1D47-4FED-A8F5-4D4325B2EB4B}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM] -- InstallShield_{758C8301-2696-4855-AF45-534B1200980A}
O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM] -- {758C8301-2696-4855-AF45-534B1200980A}
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2518870
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2539636
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2572078
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2604121
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2633870
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2656351
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2656368
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2656368v2
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2656405
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2686827
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596666) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{27609E26-63D9-4180-BD50-08837BD3B1DC}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596672) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{5DD3FF90-B302-45B2-A188-C5EA7ACD5D46}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{D33B9EF5-3801-496A-A2D6-B7F4BE972D75}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596785) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{A0D5F849-D9D5-48ED-99D0-C74D7BFA6A09}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{E34960DB-2A93-45DB-A208-02650F7AB09C}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{293FB6BE-D3EB-4162-B522-F9108040B9FE}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596880) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{31C0F635-15AD-4AA3-A3C6-B542B403D0EE}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2597162) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{3069CE04-082C-4669-9BA1-E6AA66330C1F}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{2B3C041A-A7F2-4A24-968D-4BEB6A123D15}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2598041) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{ABB5F56F-FC55-4C7E-9622-B8A1E670BAFC}
O42 - Logiciel: Security Update for Microsoft Office Excel 2007 (KB2597161) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{B4C12F08-B0EF-4CC4-AD5F-381DD62BF640}
O42 - Logiciel: Security Update for Microsoft Office InfoPath 2007 (KB2596786) 32-Bit Editi - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{7BCF7F6B-4AC0-4915-83B2-5CFF6BE9BF77}
O42 - Logiciel: Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edi - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{AEA16A27-0B97-4670-818F-A98D06EC0A6F}
O42 - Logiciel: Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edi - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{0EF0D4FB-BB23-4515-AAEA-1240AC2DA525}
O42 - Logiciel: Security Update for Microsoft Office Publisher 2007 (KB2596705) 32-Bit Edit - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{5A8732F0-C20F-4A9B-A2A9-66FE7A586C35}
O42 - Logiciel: Security Update for Microsoft Office Word 2007 (KB2596917) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{075C2272-0881-46D3-B3A5-1D83D6940270}
O42 - Logiciel: Security Update for Module linguistique Microsoft .NET Framework 4 Client P - (.Microsoft Corporation.) [HKLM] -- {4B5F58F7-C7D1-3CE3-9B37-B657F0852643}.KB2518870
O42 - Logiciel: Spybot - Search & Destroy - (.Safer Networking Limited.) [HKLM] -- {B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM] -- {048298C9-A4D3-490B-9FF9-AB023A9238F3}
O42 - Logiciel: Team Fortress 2 - (.Valve.) [HKLM] -- Steam App 440
O42 - Logiciel: TomTom HOME 2.8.3.2499 - (.TomTom.) [HKLM] -- TomTom HOME
O42 - Logiciel: TomTom HOME Visual Studio Merge Modules - (.TomTom International B.V..) [HKLM] -- {8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}
O42 - Logiciel: Update for 2007 Microsoft Office System (KB967642) - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}
O42 - Logiciel: Update for Microsoft .NET Framework 4 Client Profile (KB2468871) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2468871
O42 - Logiciel: Update for Microsoft .NET Framework 4 Client Profile (KB2533523) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2533523
O42 - Logiciel: Update for Microsoft .NET Framework 4 Client Profile (KB2600217) - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2600217
O42 - Logiciel: Update for Microsoft Office 2007 (KB2508958) - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438}
O42 - Logiciel: Update for Microsoft Office Outlook 2007 (KB2596598) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{8B689F89-5E1C-4DA9-B2B1-7B3843275596}
O42 - Logiciel: Update for Microsoft Office Outlook 2007 (KB2596598) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-001A-040C-0000-0000000FF1CE}_PROPLUS_{E425BC5B-458F-4084-9C7D-2BE4020BFA35}
O42 - Logiciel: Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2687310) 32-B - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6C4E1D7E-EEB2-4EDE-8B39-9844D8AD9273}
O42 - Logiciel: VC 9.0 Runtime - (.Check Point Software Technologies Ltd.) [HKLM] -- {02E89EFC-7B07-4D5A-AA03-9EC0902914EE}
O42 - Logiciel: VC80CRTRedist - 8.0.50727.6195 - (.DivX, Inc.) [HKLM] -- {933B4015-4618-4716-A828-5289FC03165F}
O42 - Logiciel: VLC media player 2.0.2 - (.VideoLAN.) [HKLM] -- VLC media player
O42 - Logiciel: Winamp - (.Nullsoft, Inc.) [HKLM] -- Winamp
O42 - Logiciel: Xiph.Org Open Codecs 0.85.17777 - (.Xiph.Org.) [HKLM] -- Open Codecs
O42 - Logiciel: ZoneAlarm Firewall - (.Check Point Software Technologies Ltd..) [HKLM] -- {5D6C26B9-D9E7-4E77-A4DE-0C2B242E85FA}
O42 - Logiciel: ZoneAlarm Free - (.Check Point.) [HKLM] -- ZoneAlarm Free
O42 - Logiciel: ZoneAlarm Security - (.Check Point Software Technologies Ltd..) [HKLM] -- {C4BC01F3-B7E6-49FA-8FBE-6B62FDF9CED0}
O42 - Logiciel: avast! Free Antivirus v7.0.1456.0 - (.AVAST Software.) [HKLM] -- avast

---\\ HKCU & HKLM Software Keys
[HKCU\Software\AppDataLow\ISWVolatile]
[HKCU\Software\AppDataLow\Software\Conduit]
[HKCU\Software\AppDataLow\Software\MarkAny]
[HKCU\Software\AppDataLow\Software\Microsoft]
[HKCU\Software\AppDataLow\Software\adaware]
[HKCU\Software\AppDataLow\Software]
[HKLM\Software\AGEIA Technologies]
[HKLM\Software\AVAST Software]
[HKLM\Software\Adobe]
[HKLM\Software\BioWare]
[HKLM\Software\CDDB]
[HKLM\Software\CheckPoint]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\DICE]
[HKLM\Software\DT Soft]
[HKLM\Software\DivXNetworks]
[HKLM\Software\EA Games]
[HKLM\Software\ESN Launcher-1.110.0]
[HKLM\Software\ESN Launcher-1.118.0]
[HKLM\Software\ESN Launcher-1.122.0]
[HKLM\Software\Electronic Arts]
[HKLM\Software\Even Balance]
[HKLM\Software\Google]
[HKLM\Software\InstallShield]
[HKLM\Software\Intel]
[HKLM\Software\JavaSoft]
[HKLM\Software\JreMetrics]
[HKLM\Software\Khronos]
[HKLM\Software\Lavasoft]
[HKLM\Software\Macromedia]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\MyFree Codec]
[HKLM\Software\NVIDIA Corporation]
[HKLM\Software\Nektra]
[HKLM\Software\Nokia Mobile Phones]
[HKLM\Software\Nokia]
[HKLM\Software\Nullsoft]
[HKLM\Software\ODBC]
[HKLM\Software\Origin Games]
[HKLM\Software\PC Connectivity Solution]
[HKLM\Software\PCSuite]
[HKLM\Software\Pando Networks]
[HKLM\Software\Policies]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\S3R521]
[HKLM\Software\SBAMSvc]
[HKLM\Software\SOFTWARE]
[HKLM\Software\Safer Networking Limited]
[HKLM\Software\TomTom]
[HKLM\Software\Uber]
[HKLM\Software\Ubisoft]
[HKLM\Software\Valve]
[HKLM\Software\VideoLAN]
[HKLM\Software\Volatile]
[HKLM\Software\Windows]
[HKLM\Software\Xiph.Org]
[HKLM\Software\Zone Labs]
[HKLM\Software\ej-technologies]
[HKLM\Software\mozilla.org]
~ Scan Softwares in 00mn 00s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 10/04/2012 - 09:49:36 - [0,146] ----D C:\Program Files (x86)\12Ghosts
O43 - CFD: 13/07/2012 - 13:30:39 - [187,123] ----D C:\Program Files (x86)\Ad-Aware Antivirus
O43 - CFD: 29/01/2012 - 14:15:33 - [113,513] ----D C:\Program Files (x86)\Adobe
O43 - CFD: 05/06/2012 - 08:00:47 - [19,048] ----D C:\Program Files (x86)\Battlelog Web Plugins
O43 - CFD: 10/07/2012 - 08:59:11 - [30,055] ----D C:\Program Files (x86)\CheckPoint
O43 - CFD: 28/05/2012 - 10:26:53 - [380,361] ----D C:\Program Files (x86)\Common Files
O43 - CFD: 24/01/2012 - 23:18:59 - [24,765] ----D C:\Program Files (x86)\DAEMON Tools Lite
O43 - CFD: 24/01/2012 - 20:04:43 - [46,088] ----D C:\Program Files (x86)\DivX
O43 - CFD: 12/02/2012 - 13:47:25 - [3,016] ----D C:\Program Files (x86)\FLAC
O43 - CFD: 30/01/2012 - 18:57:32 - [77,003] ----D C:\Program Files (x86)\Google
O43 - CFD: 31/01/2012 - 17:49:36 - [1,905] ----D C:\Program Files (x86)\HP
O43 - CFD: 18/05/2012 - 16:43:29 - [56,512] --H-D C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 02/03/2012 - 13:20:14 - [0,982] ----D C:\Program Files (x86)\Intel
O43 - CFD: 13/07/2012 - 01:23:36 - [4,917] ----D C:\Program Files (x86)\Internet Explorer
O43 - CFD: 13/06/2012 - 15:36:06 - [84,568] ----D C:\Program Files (x86)\Java
O43 - CFD: 07/07/2012 - 17:36:39 - [61,223] ----D C:\Program Files (x86)\JDownloader
O43 - CFD: 03/02/2012 - 19:33:22 - [2,414] ----D C:\Program Files (x86)\MarkAny
O43 - CFD: 26/01/2012 - 20:57:35 - [560,287] ----D C:\Program Files (x86)\Microsoft Office
O43 - CFD: 13/05/2012 - 20:26:49 - [40,838] ----D C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 25/01/2012 - 21:50:57 - [0,014] ----D C:\Program Files (x86)\Microsoft Visual Studio
O43 - CFD: 25/01/2012 - 21:48:16 - [1,323] ----D C:\Program Files (x86)\Microsoft Visual Studio 8
O43 - CFD: 25/01/2012 - 23:27:40 - [3,554] ----D C:\Program Files (x86)\Microsoft Works
O43 - CFD: 25/01/2012 - 21:50:30 - [7,789] ----D C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 17/06/2012 - 01:03:22 - [37,432] ----D C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 17/06/2012 - 11:29:28 - [0,195] ----D C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 13/07/2012 - 01:23:35 - [40,550] ----D C:\Program Files (x86)\Mozilla Thunderbird
O43 - CFD: 25/01/2012 - 21:51:04 - [0,025] ----D C:\Program Files (x86)\MSBuild
O43 - CFD: 29/05/2012 - 12:55:01 - [0] ----D C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 18/05/2012 - 21:44:00 - [31,187] ----D C:\Program Files (x86)\Mumble
O43 - CFD: 29/04/2012 - 19:18:52 - [10,467] ----D C:\Program Files (x86)\MyFree Codec
O43 - CFD: 28/05/2012 - 10:26:53 - [131,488] ----D C:\Program Files (x86)\Nokia
O43 - CFD: 10/07/2012 - 10:04:49 - [118,425] ----D C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 16/02/2012 - 19:53:20 - [0,746] ----D C:\Program Files (x86)\OpenAL
O43 - CFD: 25/05/2012 - 21:13:20 - [110,502] ----D C:\Program Files (x86)\Origin
O43 - CFD: 05/05/2012 - 20:14:07 - [-1019,987] ----D C:\Program Files (x86)\Origin Games
O43 - CFD: 05/05/2012 - 23:11:10 - [0] ----D C:\Program Files (x86)\Pando Networks
O43 - CFD: 28/05/2012 - 10:26:29 - [21,028] ----D C:\Program Files (x86)\PC Connectivity Solution
O43 - CFD: 14/07/2009 - 07:32:38 - [37,349] ----D C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 03/02/2012 - 19:34:09 - [241,688] ----D C:\Program Files (x86)\Samsung
O43 - CFD: 03/03/2012 - 10:55:22 - [67,655] ----D C:\Program Files (x86)\Spybot - Search & Destroy
O43 - CFD: 08/07/2012 - 23:15:16 - [-2034,873] ----D C:\Program Files (x86)\Steam
O43 - CFD: 01/05/2012 - 12:39:17 - [48,373] ----D C:\Program Files (x86)\TomTom HOME 2
O43 - CFD: 01/05/2012 - 12:39:28 - [0,021] ----D C:\Program Files (x86)\TomTom International B.V
O43 - CFD: 17/05/2012 - 22:29:10 - [-1707,814] ----D C:\Program Files (x86)\Ubisoft
O43 - CFD: 14/07/2009 - 06:57:06 - [0] --H-D C:\Program Files (x86)\Uninstall Information
O43 - CFD: 10/04/2012 - 13:00:28 - [0,004] ----D C:\Program Files (x86)\Unlocker
O43 - CFD: 24/01/2012 - 20:01:39 - [91,822] ----D C:\Program Files (x86)\VideoLAN
O43 - CFD: 11/02/2012 - 19:00:04 - [40,308] ----D C:\Program Files (x86)\Winamp
O43 - CFD: 14/07/2009 - 17:24:08 - [0,500] ----D C:\Program Files (x86)\Windows Defender
O43 - CFD: 25/01/2012 - 18:28:07 - [5,895] ----D C:\Program Files (x86)\Windows Mail
O43 - CFD: 25/01/2012 - 18:28:06 - [4,791] ----D C:\Program Files (x86)\Windows Media Player
O43 - CFD: 14/07/2009 - 07:32:38 - [11,632] ----D C:\Program Files (x86)\Windows NT
O43 - CFD: 25/01/2012 - 18:28:06 - [4,213] ----D C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 25/01/2012 - 18:28:06 - [0,181] ----D C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 25/01/2012 - 18:28:07 - [5,717] ----D C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 20/04/2012 - 19:25:10 - [13,337] ----D C:\Program Files (x86)\Xiph.Org
O43 - CFD: 13/07/2012 - 15:25:17 - [13,271] ----D C:\Program Files (x86)\ZHPDiag
O43 - CFD: 29/01/2012 - 14:15:49 - [3,652] ----D C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 25/01/2012 - 21:50:56 - [0,089] ----D C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 24/01/2012 - 20:04:39 - [23,581] ----D C:\Program Files (x86)\Common Files\DivX Shared
O43 - CFD: 05/05/2012 - 20:19:19 - [1,890] --H-D C:\Program Files (x86)\Common Files\EAInstaller
O43 - CFD: 11/02/2012 - 19:42:20 - [0,014] ----D C:\Program Files (x86)\Common Files\Intel Corporation
O43 - CFD: 11/
0
Utilisateur anonyme
 
Re

Ton rapport est incomplet.
Pour transmettre le rapport clique sur ce lien :

http://pjjoint.malekal.com/

https://www.cjoint.com/

Clique sur Parcourir et cherche le fichier : Nom_complet_du_fichier (Fichier demandé )
Clique sur Ouvrir.

Clique sur "Cliquez ici pour déposer le fichier".

Un lien de cette forme :

http://www.cijoint.fr/cjlink.php?file=cj200905/cijSKAP5fU.txt

est ajouté dans la page.

Copie ce lien dans ta réponse.

@+
0
Antoine
 
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 10/04/2012 - 09:49:36 - [0,146] ----D C:\Program Files (x86)\12Ghosts
O43 - CFD: 13/07/2012 - 13:30:39 - [187,123] ----D C:\Program Files (x86)\Ad-Aware Antivirus
O43 - CFD: 29/01/2012 - 14:15:33 - [113,513] ----D C:\Program Files (x86)\Adobe
O43 - CFD: 05/06/2012 - 08:00:47 - [19,048] ----D C:\Program Files (x86)\Battlelog Web Plugins
O43 - CFD: 10/07/2012 - 08:59:11 - [30,055] ----D C:\Program Files (x86)\CheckPoint
O43 - CFD: 28/05/2012 - 10:26:53 - [380,361] ----D C:\Program Files (x86)\Common Files
O43 - CFD: 24/01/2012 - 23:18:59 - [24,765] ----D C:\Program Files (x86)\DAEMON Tools Lite
O43 - CFD: 24/01/2012 - 20:04:43 - [46,088] ----D C:\Program Files (x86)\DivX
O43 - CFD: 12/02/2012 - 13:47:25 - [3,016] ----D C:\Program Files (x86)\FLAC
O43 - CFD: 30/01/2012 - 18:57:32 - [77,003] ----D C:\Program Files (x86)\Google
O43 - CFD: 31/01/2012 - 17:49:36 - [1,905] ----D C:\Program Files (x86)\HP
O43 - CFD: 18/05/2012 - 16:43:29 - [56,512] --H-D C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 02/03/2012 - 13:20:14 - [0,982] ----D C:\Program Files (x86)\Intel
O43 - CFD: 13/07/2012 - 01:23:36 - [4,917] ----D C:\Program Files (x86)\Internet Explorer
O43 - CFD: 13/06/2012 - 15:36:06 - [84,568] ----D C:\Program Files (x86)\Java
O43 - CFD: 07/07/2012 - 17:36:39 - [61,223] ----D C:\Program Files (x86)\JDownloader
O43 - CFD: 03/02/2012 - 19:33:22 - [2,414] ----D C:\Program Files (x86)\MarkAny
O43 - CFD: 26/01/2012 - 20:57:35 - [560,287] ----D C:\Program Files (x86)\Microsoft Office
O43 - CFD: 13/05/2012 - 20:26:49 - [40,838] ----D C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 25/01/2012 - 21:50:57 - [0,014] ----D C:\Program Files (x86)\Microsoft Visual Studio
O43 - CFD: 25/01/2012 - 21:48:16 - [1,323] ----D C:\Program Files (x86)\Microsoft Visual Studio 8
O43 - CFD: 25/01/2012 - 23:27:40 - [3,554] ----D C:\Program Files (x86)\Microsoft Works
O43 - CFD: 25/01/2012 - 21:50:30 - [7,789] ----D C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 17/06/2012 - 01:03:22 - [37,432] ----D C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 17/06/2012 - 11:29:28 - [0,195] ----D C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 13/07/2012 - 01:23:35 - [40,550] ----D C:\Program Files (x86)\Mozilla Thunderbird
O43 - CFD: 25/01/2012 - 21:51:04 - [0,025] ----D C:\Program Files (x86)\MSBuild
O43 - CFD: 29/05/2012 - 12:55:01 - [0] ----D C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 18/05/2012 - 21:44:00 - [31,187] ----D C:\Program Files (x86)\Mumble
O43 - CFD: 29/04/2012 - 19:18:52 - [10,467] ----D C:\Program Files (x86)\MyFree Codec
O43 - CFD: 28/05/2012 - 10:26:53 - [131,488] ----D C:\Program Files (x86)\Nokia
O43 - CFD: 10/07/2012 - 10:04:49 - [118,425] ----D C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 16/02/2012 - 19:53:20 - [0,746] ----D C:\Program Files (x86)\OpenAL
O43 - CFD: 25/05/2012 - 21:13:20 - [110,502] ----D C:\Program Files (x86)\Origin
O43 - CFD: 05/05/2012 - 20:14:07 - [-1019,987] ----D C:\Program Files (x86)\Origin Games
O43 - CFD: 05/05/2012 - 23:11:10 - [0] ----D C:\Program Files (x86)\Pando Networks
O43 - CFD: 28/05/2012 - 10:26:29 - [21,028] ----D C:\Program Files (x86)\PC Connectivity Solution
O43 - CFD: 14/07/2009 - 07:32:38 - [37,349] ----D C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 03/02/2012 - 19:34:09 - [241,688] ----D C:\Program Files (x86)\Samsung
O43 - CFD: 03/03/2012 - 10:55:22 - [67,655] ----D C:\Program Files (x86)\Spybot - Search & Destroy
O43 - CFD: 08/07/2012 - 23:15:16 - [-2034,873] ----D C:\Program Files (x86)\Steam
O43 - CFD: 01/05/2012 - 12:39:17 - [48,373] ----D C:\Program Files (x86)\TomTom HOME 2
O43 - CFD: 01/05/2012 - 12:39:28 - [0,021] ----D C:\Program Files (x86)\TomTom International B.V
O43 - CFD: 17/05/2012 - 22:29:10 - [-1707,814] ----D C:\Program Files (x86)\Ubisoft
O43 - CFD: 14/07/2009 - 06:57:06 - [0] --H-D C:\Program Files (x86)\Uninstall Information
O43 - CFD: 10/04/2012 - 13:00:28 - [0,004] ----D C:\Program Files (x86)\Unlocker
O43 - CFD: 24/01/2012 - 20:01:39 - [91,822] ----D C:\Program Files (x86)\VideoLAN
O43 - CFD: 11/02/2012 - 19:00:04 - [40,308] ----D C:\Program Files (x86)\Winamp
O43 - CFD: 14/07/2009 - 17:24:08 - [0,500] ----D C:\Program Files (x86)\Windows Defender
O43 - CFD: 25/01/2012 - 18:28:07 - [5,895] ----D C:\Program Files (x86)\Windows Mail
O43 - CFD: 25/01/2012 - 18:28:06 - [4,791] ----D C:\Program Files (x86)\Windows Media Player
O43 - CFD: 14/07/2009 - 07:32:38 - [11,632] ----D C:\Program Files (x86)\Windows NT
O43 - CFD: 25/01/2012 - 18:28:06 - [4,213] ----D C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 25/01/2012 - 18:28:06 - [0,181] ----D C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 25/01/2012 - 18:28:07 - [5,717] ----D C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 20/04/2012 - 19:25:10 - [13,337] ----D C:\Program Files (x86)\Xiph.Org
O43 - CFD: 13/07/2012 - 15:25:17 - [13,271] ----D C:\Program Files (x86)\ZHPDiag
O43 - CFD: 29/01/2012 - 14:15:49 - [3,652] ----D C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 25/01/2012 - 21:50:56 - [0,089] ----D C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 24/01/2012 - 20:04:39 - [23,581] ----D C:\Program Files (x86)\Common Files\DivX Shared
O43 - CFD: 05/05/2012 - 20:19:19 - [1,890] --H-D C:\Program Files (x86)\Common Files\EAInstaller
O43 - CFD: 11/02/2012 - 19:42:20 - [0,014] ----D C:\Program Files (x86)\Common Files\Intel Corporation
O43 - CFD: 11/03/2012 - 20:04:32 - [1,201] ----D C:\Program Files (x86)\Common Files\Java
O43 - CFD: 13/07/2012 - 13:26:11 - [225,641] ----D C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 28/05/2012 - 10:26:54 - [11,508] ----D C:\Program Files (x86)\Common Files\Nokia
O43 - CFD: 11/02/2012 - 18:58:50 - [4,559] ----D C:\Program Files (x86)\Common Files\PX Storage Engine
O43 - CFD: 14/07/2009 - 05:20:08 - [0,003] ----D C:\Program Files (x86)\Common Files\Services
O43 - CFD: 14/07/2009 - 05:20:08 - [39,200] ----D C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 08/07/2012 - 23:04:42 - [1,009] ----D C:\Program Files (x86)\Common Files\Steam
O43 - CFD: 13/07/2012 - 01:23:36 - [42,254] ----D C:\Program Files (x86)\Common Files\System
O43 - CFD: 16/02/2012 - 20:15:31 - [25,762] ----D C:\Program Files (x86)\Common Files\Wise Installation Wizard
O43 - CFD: 13/07/2012 - 13:29:33 - [0,587] ----D C:\ProgramData\Ad-Aware Browsing Protection
O43 - CFD: 30/01/2012 - 13:31:49 - [136,725] ----D C:\ProgramData\Adobe
O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Application Data
O43 - CFD: 12/07/2012 - 08:49:27 - [4,849] ----D C:\ProgramData\AVAST Software
O43 - CFD: 12/07/2012 - 08:49:42 - [0,117] ----D C:\ProgramData\Avira
O43 - CFD: 24/01/2012 - 17:24:26 - [0] --H-D C:\ProgramData\Bureau
O43 - CFD: 30/03/2012 - 19:08:35 - [41,305] ----D C:\ProgramData\CheckPoint
O43 - CFD: 24/01/2012 - 23:16:55 - [0,001] ----D C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Desktop
O43 - CFD: 24/01/2012 - 20:04:43 - [4,428] ----D C:\ProgramData\DivX
O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Documents
O43 - CFD: 24/01/2012 - 19:35:43 - [0] ----D C:\ProgramData\EA Core
O43 - CFD: 15/02/2012 - 22:27:35 - [0,001] ----D C:\ProgramData\EA Logs
O43 - CFD: 24/01/2012 - 19:35:47 - [1,825] ----D C:\ProgramData\Electronic Arts
O43 - CFD: 24/01/2012 - 17:24:26 - [0] --H-D C:\ProgramData\Favoris
O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Favorites
O43 - CFD: 26/05/2012 - 13:59:25 - [0,001] ----D C:\ProgramData\FLEXnet
O43 - CFD: 11/02/2012 - 19:38:11 - [0,052] ----D C:\ProgramData\InstallShield
O43 - CFD: 13/07/2012 - 13:26:04 - [0,948] ----D C:\ProgramData\Lavasoft
O43 - CFD: 24/01/2012 - 17:24:26 - [0] --H-D C:\ProgramData\Menu Démarrer
O43 - CFD: 13/07/2012 - 12:59:44 - [316,169] -S--D C:\ProgramData\Microsoft
O43 - CFD: 11/07/2012 - 20:14:30 - [0,062] ----D C:\ProgramData\Microsoft Help
O43 - CFD: 24/01/2012 - 17:24:26 - [0] --H-D C:\ProgramData\Modèles
O43 - CFD: 28/04/2012 - 15:33:15 - [0,007] ----D C:\ProgramData\Mozilla
O43 - CFD: 28/05/2012 - 10:27:22 - [4,638] ----D C:\ProgramData\Nokia
O43 - CFD: 28/05/2012 - 10:25:34 - [465,557] ----D C:\ProgramData\NokiaInstallerCache
O43 - CFD: 13/07/2012 - 13:28:35 - [3,985] ----D C:\ProgramData\NVIDIA
O43 - CFD: 24/01/2012 - 17:27:19 - [3,127] ----D C:\ProgramData\NVIDIA Corporation
O43 - CFD: 13/07/2012 - 01:23:31 - [7,508] ----D C:\ProgramData\Origin
O43 - CFD: 28/05/2012 - 10:27:48 - [0,070] ----D C:\ProgramData\PC Suite
O43 - CFD: 03/02/2012 - 19:33:44 - [8,082] ----D C:\ProgramData\Samsung
O43 - CFD: 13/07/2012 - 01:23:31 - [43,977] ----D C:\ProgramData\Spybot - Search & Destroy
O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Start Menu
O43 - CFD: 24/01/2012 - 19:40:46 - [0,000] ----D C:\ProgramData\Sun
O43 - CFD: 14/07/2009 - 07:08:56 - [0] --H-D C:\ProgramData\Templates
O43 - CFD: 01/05/2012 - 12:39:42 - [0,000] ----D C:\ProgramData\TomTom
O43 - CFD: 13/07/2012 - 13:29:34 - [0,001] ----D C:\Users\EvilBox\AppData\Roaming\Ad-Aware Antivirus
O43 - CFD: 29/01/2012 - 14:16:50 - [10,178] ----D C:\Users\EvilBox\AppData\Roaming\Adobe
O43 - CFD: 09/07/2012 - 09:56:17 - [0,039] ----D C:\Users\EvilBox\AppData\Roaming\CheckPoint
O43 - CFD: 11/07/2012 - 11:50:35 - [0,873] ----D C:\Users\EvilBox\AppData\Roaming\DAEMON Tools Lite
O43 - CFD: 26/01/2012 - 19:23:31 - [0] ----D C:\Users\EvilBox\AppData\Roaming\DivX
O43 - CFD: 09/04/2012 - 18:55:48 - [0,757] ----D C:\Users\EvilBox\AppData\Roaming\Dropbox
O43 - CFD: 10/07/2012 - 17:12:38 - [0,000] ----D C:\Users\EvilBox\AppData\Roaming\dvdcss
O43 - CFD: 24/01/2012 - 17:24:51 - [0] ----D C:\Users\EvilBox\AppData\Roaming\Identities
O43 - CFD: 11/02/2012 - 19:37:12 - [0] ----D C:\Users\EvilBox\AppData\Roaming\InstallShield
O43 - CFD: 11/02/2012 - 19:40:53 - [0,001] ----D C:\Users\EvilBox\AppData\Roaming\Intel Corporation
O43 - CFD: 24/01/2012 - 19:31:07 - [0,001] ----D C:\Users\EvilBox\AppData\Roaming\Macromedia
O43 - CFD: 14/07/2009 - 17:35:05 - [0] ----D C:\Users\EvilBox\AppData\Roaming\Media Center Programs
O43 - CFD: 13/07/2012 - 12:59:31 - [2,189] -S--D C:\Users\EvilBox\AppData\Roaming\Microsoft
O43 - CFD: 24/01/2012 - 18:23:45 - [22,283] ----D C:\Users\EvilBox\AppData\Roaming\Mozilla
O43 - CFD: 15/06/2012 - 23:56:41 - [0,993] ----D C:\Users\EvilBox\AppData\Roaming\Mumble
O43 - CFD: 28/05/2012 - 10:38:48 - [0,649] ----D C:\Users\EvilBox\AppData\Roaming\Nokia
O43 - CFD: 28/05/2012 - 10:38:49 - [0,018] ----D C:\Users\EvilBox\AppData\Roaming\Nokia Suite
O43 - CFD: 16/02/2012 - 20:25:03 - [0] ----D C:\Users\EvilBox\AppData\Roaming\NVIDIA
O43 - CFD: 11/02/2012 - 18:58:49 - [1,985] ----D C:\Users\EvilBox\AppData\Roaming\OpenCandy
O43 - CFD: 24/01/2012 - 17:53:13 - [0,004] ----D C:\Users\EvilBox\AppData\Roaming\Origin
O43 - CFD: 28/05/2012 - 10:38:40 - [0,139] ----D C:\Users\EvilBox\AppData\Roaming\PC Suite
O43 - CFD: 03/02/2012 - 19:37:29 - [183,553] ----D C:\Users\EvilBox\AppData\Roaming\Samsung
O43 - CFD: 02/05/2012 - 16:33:09 - [44,643] ----D C:\Users\EvilBox\AppData\Roaming\Spotify
O43 - CFD: 29/04/2012 - 18:59:28 - [0] ----D C:\Users\EvilBox\AppData\Roaming\Temp
O43 - CFD: 24/01/2012 - 17:57:14 - [1279,767] ----D C:\Users\EvilBox\AppData\Roaming\Thunderbird
O43 - CFD: 11/02/2012 - 18:58:52 - [0,144] ----D C:\Users\EvilBox\AppData\Roaming\Todae
O43 - CFD: 01/05/2012 - 12:39:32 - [24,878] ----D C:\Users\EvilBox\AppData\Roaming\TomTom
O43 - CFD: 11/07/2012 - 10:57:25 - [0,082] ----D C:\Users\EvilBox\AppData\Roaming\vlc
O43 - CFD: 07/07/2012 - 19:37:07 - [0,593] ----D C:\Users\EvilBox\AppData\Roaming\Winamp
O43 - CFD: 25/01/2012 - 21:56:05 - [0,000] ----D C:\Users\EvilBox\AppData\Roaming\WinRAR
O43 - CFD: 04/04/2012 - 17:42:44 - [0,014] ----D C:\Users\EvilBox\AppData\Roaming\X-Chat 2
O43 - CFD: 13/07/2012 - 13:26:53 - [1,155] ----D C:\Users\EvilBox\AppData\Local\adaware
O43 - CFD: 29/01/2012 - 14:16:50 - [14,755] ----D C:\Users\EvilBox\AppData\Local\Adobe
O43 - CFD: 24/01/2012 - 17:24:38 - [0] ----D C:\Users\EvilBox\AppData\Local\Application Data
O43 - CFD: 25/01/2012 - 21:34:07 - [1,226] ----D C:\Users\EvilBox\AppData\Local\Apps
O43 - CFD: 25/01/2012 - 21:34:21 - [0] ----D C:\Users\EvilBox\AppData\Local\Deployment
O43 - CFD: 13/07/2012 - 11:28:47 - [0,442] ----D C:\Users\EvilBox\AppData\Local\Diagnostics
O43 - CFD: 03/02/2012 - 19:30:58 - [87,747] ----D C:\Users\EvilBox\AppData\Local\Downloaded Installations
O43 - CFD: 13/07/2012 - 11:28:47 - [0,520] ----D C:\Users\EvilBox\AppData\Local\ElevatedDiagnostics
O43 - CFD: 03/02/2012 - 23:50:26 - [0,028] ----D C:\Users\EvilBox\AppData\Local\ESN Sonar
O43 - CFD: 17/03/2012 - 11:44:01 - [134,420] ----D C:\Users\EvilBox\AppData\Local\Google
O43 - CFD: 24/01/2012 - 17:24:38 - [0] ----D C:\Users\EvilBox\AppData\Local\Historique
O43 - CFD: 09/06/2012 - 09:28:44 - [0] ----D C:\Users\EvilBox\AppData\Local\Macromedia
O43 - CFD: 29/04/2012 - 18:54:23 - [74,569] ----D C:\Users\EvilBox\AppData\Local\Microsoft
O43 - CFD: 25/01/2012 - 21:47:41 - [0] ----D C:\Users\EvilBox\AppData\Local\Microsoft Help
O43 - CFD: 24/01/2012 - 18:23:45 - [108,477] ----D C:\Users\EvilBox\AppData\Local\Mozilla
O43 - CFD: 28/05/2012 - 10:30:54 - [3,706] ----D C:\Users\EvilBox\AppData\Local\Nokia
O43 - CFD: 28/05/2012 - 10:38:26 - [0,001] ----D C:\Users\EvilBox\AppData\Local\NokiaAccount
O43 - CFD: 11/03/2012 - 20:22:14 - [5,893] ----D C:\Users\EvilBox\AppData\Local\Origin
O43 - CFD: 02/03/2012 - 13:30:35 - [15,712] ----D C:\Users\EvilBox\AppData\Local\PunkBuster
O43 - CFD: 21/04/2012 - 11:06:12 - [0,065] ----D C:\Users\EvilBox\AppData\Local\Samsung
O43 - CFD: 02/05/2012 - 12:43:17 - [46,319] ----D C:\Users\EvilBox\AppData\Local\Spotify
O43 - CFD: 13/07/2012 - 15:24:26 - [36,010] ----D C:\Users\EvilBox\AppData\Local\Temp
O43 - CFD: 24/01/2012 - 17:24:38 - [0] ----D C:\Users\EvilBox\AppData\Local\Temporary Internet Files
O43 - CFD: 16/02/2012 - 17:41:00 - [6,416] ----D C:\Users\EvilBox\AppData\Local\Thunderbird
O43 - CFD: 01/05/2012 - 12:39:32 - [1,862] ----D C:\Users\EvilBox\AppData\Local\TomTom
O43 - CFD: 12/02/2012 - 13:47:40 - [0,001] ----D C:\Users\EvilBox\AppData\Local\VirtualStore
O43 - CFD: 14/07/2009 - 06:54:32 - [0,014] R---D C:\Users\EvilBox\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 13/07/2012 - 01:23:30 - [0,000] R---D C:\Users\EvilBox\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 16/02/2012 - 20:04:06 - [0,000] ----D C:\Users\EvilBox\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 14/07/2009 - 06:49:38 - [0,001] R---D C:\Users\EvilBox\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 13/07/2012 - 01:23:30 - [0,000] R---D C:\Users\EvilBox\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 15/06/2012 - 11:55:50 - [0,002] ----D C:\Users\EvilBox\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 10/04/2012 - 13:02:19 - [0,003] ----D C:\Users\EvilBox\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker
O43 - CFD: 25/01/2012 - 21:26:11 - [0,003] ----D C:\Users\EvilBox\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 10/04/2012 - 09:49:36 - [0,146] ----D C:\Program Files (x86)\12Ghosts
O43 - CFD: 13/07/2012 - 13:30:39 - [187,123] ----D C:\Program Files (x86)\Ad-Aware Antivirus
O43 - CFD: 29/01/2012 - 14:15:33 - [113,513] ----D C:\Program Files (x86)\Adobe
O43 - CFD: 05/06/2012 - 08:00:47 - [19,048] ----D C:\Program Files (x86)\Battlelog Web Plugins
O43 - CFD: 10/07/2012 - 08:59:11 - [30,055] ----D C:\Program Files (x86)\CheckPoint
O43 - CFD: 28/05/2012 - 10:26:53 - [380,361] ----D C:\Program Files (x86)\Common Files
O43 - CFD: 24/01/2012 - 23:18:59 - [24,765] ----D C:\Program Files (x86)\DAEMON Tools Lite
O43 - CFD: 24/01/2012 - 20:04:43 - [46,088] ----D C:\Program Files (x86)\DivX
O43 - CFD: 12/02/2012 - 13:47:25 - [3,016] ----D C:\Program Files (x86)\FLAC
O43 - CFD: 30/01/2012 - 18:57:32 - [77,003] ----D C:\Program Files (x86)\Google
O43 - CFD: 31/01/2012 - 17:49:36 - [1,905] ----D C:\Program Files (x86)\HP
O43 - CFD: 18/05/2012 - 16:43:29 - [56,512] --H-D C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 02/03/2012 - 13:20:14 - [0,982] ----D C:\Program Files (x86)\Intel
O43 - CFD: 13/07/2012 - 01:23:36 - [4,917] ----D C:\Program Files (x86)\Internet Explorer
O43 - CFD: 13/06/2012 - 15:36:06 - [84,568] ----D C:\Program Files (x86)\Java
O43 - CFD: 07/07/2012 - 17:36:39 - [61,223] ----D C:\Program Files (x86)\JDownloader
O43 - CFD: 03/02/2012 - 19:33:22 - [2,414] ----D C:\Program Files (x86)\MarkAny
O43 - CFD: 26/01/2012 - 20:57:35 - [560,287] ----D C:\Program Files (x86)\Microsoft Office
O43 - CFD: 13/05/2012 - 20:26:49 - [40,838] ----D C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 25/01/2012 - 21:50:57 - [0,014] ----D C:\Program Files (x86)\Microsoft Visual Studio
O43 - CFD: 25/01/2012 - 21:48:16 - [1,323] ----D C:\Program Files (x86)\Microsoft Visual Studio 8
O43 - CFD: 25/01/2012 - 23:27:40 - [3,554] ----D C:\Program Files (x86)\Microsoft Works
O43 - CFD: 25/01/2012 - 21:50:30 - [7,789] ----D C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 17/06/2012 - 01:03:22 - [37,432] ----D C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 17/06/2012 - 11:29:28 - [0,195] ----D C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 13/07/2012 - 01:23:35 - [40,550] ----D C:\Program Files (x86)\Mozilla Thunderbird
O43 - CFD: 25/01/2012 - 21:51:04 - [0,025] ----D C:\Program Files (x86)\MSBuild
O43 - CFD: 29/05/2012 - 12:55:01 - [0] ----D C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 18/05/2012 - 21:44:00 - [31,187] ----D C:\Program Files (x86)\Mumble
O43 - CFD: 29/04/2012 - 19:18:52 - [10,467] ----D C:\Program Files (x86)\MyFree Codec
O43 - CFD: 28/05/2012 - 10:26:53 - [131,488] ----D C:\Program Files (x86)\Nokia
O43 - CFD: 10/07/2012 - 10:04:49 - [118,425] ----D C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 16/02/2012 - 19:53:20 - [0,746] ----D C:\Program Files (x86)\OpenAL
O43 - CFD: 25/05/2012 - 21:13:20 - [110,502] ----D C:\Program Files (x86)\Origin
O43 - CFD: 05/05/2012 - 20:14:07 - [-1019,987] ----D C:\Program Files (x86)\Origin Games
O43 - CFD: 05/05/2012 - 23:11:10 - [0] ----D C:\Program Files (x86)\Pando Networks
O43 - CFD: 28/05/2012 - 10:26:29 - [21,028] ----D C:\Program Files (x86)\PC Connectivity Solution
O43 - CFD: 14/07/2009 - 07:32:38 - [37,349] ----D C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 03/02/2012 - 19:34:09 - [241,688] ----D C:\Program Files (x86)\Samsung
O43 - CFD: 03/03/2012 - 10:55:22 - [67,655] ----D C:\Program Files (x86)\Spybot - Search & Destroy
O43 - CFD: 08/07/2012 - 23:15:16 - [-2034,873] ----D C:\Program Files (x86)\Steam
O43 - CFD: 01/05/2012 - 12:39:17 - [48,373] ----D C:\Program Files (x86)\TomTom HOME 2
O43 - CFD: 01/05/2012 - 12:39:28 - [0,021] ----D C:\Program Files (x86)\TomTom International B.V
O43 - CFD: 17/05/2012 - 22:29:10 - [-1707,814] ----D C:\Program Files (x86)\Ubisoft
O43 - CFD: 14/07/2009 - 06:57:06 - [0] --H-D C:\Program Files (x86)\Uninstall Information
O43 - CFD: 10/04/2012 - 13:00:28 - [0,004] ----D C:\Program Files (x86)\Unlocker
O43 - CFD: 24/01/2012 - 20:01:39 - [91,822] ----D C:\Program Files (x86)\VideoLAN
O43 - CFD: 11/02/2012 - 19:00:04 - [40,308] ----D C:\Program Files (x86)\Winamp
O43 - CFD: 14/07/2009 - 17:24:08 - [0,500] ----D C:\Program Files (x86)\Windows Defender
O43 - CFD: 25/01/2012 - 18:28:07 - [5,895] ----D C:\Program Files (x86)\Windows Mail
O43 - CFD: 25/01/2012 - 18:28:06 - [4,791] ----D C:\Program Files (x86)\Windows Media Player
O43 - CFD: 14/07/2009 - 07:32:38 - [11,632] ----D C:\Program Files (x86)\Windows NT
O43 - CFD: 25/01/2012 - 18:28:06 - [4,213] ----D C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 25/01/2012 - 18:28:06 - [0,181] ----D C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 25/01/2012 - 18:28:07 - [5,717] ----D C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 20/04/2012 - 19:25:10 - [13,337] ----D C:\Program Files (x86)\Xiph.Org
O43 - CFD: 13/07/2012 - 15:25:17 - [13,271] ----D C:\Program Files (x86)\ZHPDiag
O43 - CFD: 29/01/2012 - 14:15:49 - [3,652] ----D C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 25/01/2012 - 21:50:56 - [0,089] ----D C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 24/01/2012 - 20:04:39 - [23,581] ----D C:\Program Files (x86)\Common Files\DivX Shared
O43 - CFD: 05/05/2012 - 20:19:19 - [1,890] --H-D C:\Program Files (x86)\Common Files\EAInstaller
O43 - CFD: 11/02/2012 - 19:42:20 - [0,014] ----D C:\Program Files (x86)\Common Files\Intel Corporation
O43 - CFD: 11/03/2012 - 20:04:32 - [1,201] ----D C:\Program Files (x86)\Common Files\Java
O43 - CFD: 13/07/2012 - 13:26:11 - [225,641] ----D C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 28/05/2012 - 10:26:54 - [11,508] ----D C:\Program Files (x86)\Common Files\Nokia
O43 - CFD: 11/02/2012 - 18:58:50 - [4,559] ----D C:\Program Files (x86)\Common Files\PX Storage Engine
O43 - CFD: 14/07/2009 - 05:20:08 - [0,003] ----D C:\Program Files (x86)\Common Files\Services
O43 - CFD: 14/07/2009 - 05:20:08 - [39,200] ----D C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 08/07/2012 - 23:04:42 - [1,009] ----D C:\Program Files (x86)\Common Files\Steam
O43 - CFD: 13/07/2012 - 01:23:36 - [42,254] ----D C:\Program Files (x86)\Common Files\System
O43 - CFD: 16/02/2012 - 20:15:31 - [25,762] ----D C:\Program Files (x86)\Common Files\Wise Installation Wizard
~ Scan Program Folder in 00mn 36s



---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.8D7ADC189DDC5EE9351AF1B2B3F1ED40] - 13/07/2012 - 14:30:04 --HA- . (...) -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [22576]
O44 - LFC:[MD5.8D7ADC189DDC5EE9351AF1B2B3F1ED40] - 13/07/2012 - 14:30:04 --HA- . (...) -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [22576]
O44 - LFC:[MD5.B524B607868E59663A64866F379F153B] - 13/07/2012 - 13:31:08 ---A- . (...) -- C:\Windows\WindowsUpdate.log [155601]
O44 - LFC:[MD5.6F5C666DD36CB7D5F6C68147006A3561] - 13/07/2012 - 12:34:39 . (.NVIDIA Corporation - NVIDIA Video Decoder MFT, Version 301.42.) -- C:\Windows\System32\perfc009.dat [364352]]]]]
O44 - LFC:[MD5.2D5628897C38EE1A18262F833941CA46] - 13/07/2012 - 12:34:39 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [1549936]
O44 - LFC:[MD5.6F5C666DD36CB7D5F6C68147006A3561] - 13/07/2012 - 12:34:39 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [106412]
O44 - LFC:[MD5.20F028C9A476291C7A7E63DA81694513] - 13/07/2012 - 12:34:39 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [130770]
O44 - LFC:[MD5.EC1897643AF001982C25BE21FB0A01AA] - 13/07/2012 - 12:34:39 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [616032]
O44 - LFC:[MD5.C61FE04C115B088B4F9A6CBA5C6DF80D] - 13/07/2012 - 12:34:39 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [704464]
O44 - LFC:[MD5.2D5628897C38EE1A18262F833941CA46] - 13/07/2012 - 12:34:39 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1549936]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 13/07/2012 - 12:30:47 . (.GFI Software - Boot Delete Utility.) -- C:\Windows\System32\SBRC.dat [45936]]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 13/07/2012 - 12:30:47 ---A- . (...) -- C:\Windows\SysNative\SBRC.dat [0]
O44 - LFC:[MD5.4C91380F83FC8584DA76A2CC3AFF2377] - 13/07/2012 - 12:28:35 ---A- . (...) -- C:\Windows\setupact.log [1029]
O44 - LFC:[MD5.8C5219FC9229469B9ABF631C60A9E886] - 13/07/2012 - 12:28:22 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.6AEA2BAAD2B8AF7F0501C8981982ABFD] - 13/07/2012 - 12:26:17 ---A- . (.GFI Software - Boot Delete Utility.) -- C:\Windows\SysNative\sbbd.exe [45936]
O44 - LFC:[MD5.6AEA2BAAD2B8AF7F0501C8981982ABFD] - 13/07/2012 - 12:26:17 ---A- . (.GFI Software - Boot Delete Utility.) -- C:\Windows\System32\sbbd.exe [45936]
O44 - LFC:[MD5.1C273391DFE65CA94E059098F1108B23] - 13/07/2012 - 12:20:10 ---A- . (...) -- C:\aaw7boot.log [160834]
O44 - LFC:[MD5.E185BDA84E5F03F4E1D8DCA30E209277] - 13/07/2012 - 12:18:34 ---A- . (...) -- C:\Windows\epplauncher.mif [1912]
O44 - LFC:[MD5.D1E75542EC8D1B4851765A57AC63618E] - 13/07/2012 - 10:29:18 ---A- . (...) -- C:\Windows\diagerr.xml [1908]
O44 - LFC:[MD5.2CBC117CD5CACAB153853EDE2808F97A] - 13/07/2012 - 10:29:18 ---A- . (...) -- C:\Windows\diagwrn.xml [2562]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 13/07/2012 - 10:22:34 ---A- . (...) -- C:\Windows\setuperr.log [0]
O44 - LFC:[MD5.A441C83B0CAB05FE76DBB858B624979D] - 11/07/2012 - 19:51:44 ---A- . (...) -- C:\Windows\SysNative\FNTCACHE.DAT [413552]
O44 - LFC:[MD5.2465EBC8CD6E412CDC1AB9FEF40BCAE6] - 11/07/2012 - 19:14:16 ---A- . (...) -- C:\Windows\win.ini [478]
O44 - LFC:[MD5.E249CC925A19500D3BBE7A0366FB33A6] - 10/07/2012 - 09:02:48 . (.NVIDIA Corporation - NVIDIA CUDA Video Decode API, Version 301.4.) -- C:\Windows\System32\nvd3dumx.dll [2681664]]
O44 - LFC:[MD5.9F1871743384288A0D13EF1FBFBFB164] - 10/07/2012 - 09:02:48 . (.NVIDIA Corporation - NVIDIA Video Decoder MFT, Version 301.42.) -- C:\Windows\System32\nvhdap64.dll [364352]]
O44 - LFC:[MD5.EF8979B2B8802D7372F37529C4C1A094] - 10/07/2012 - 09:02:48 . (.NVIDIA Corporation - NVIDIA Video Decoder MFT, Version 301.42.) -- C:\Windows\System32\nvinitx.dll [364352]]]
O44 - LFC:[MD5.B521C917323C51F858F349346A760369] - 10/07/2012 - 09:02:48 . (.NVIDIA Corporation - NVIDIA Video Decoder MFT, Version 301.42.) -- C:\Windows\System32\nvoglv64.dll [364352]]]]
O44 - LFC:[MD5.B521C917323C51F858F349346A760369] - 10/07/2012 - 09:02:48 ---A- . (.NVIDIA Corporation - NVIDIA Compatible OpenGL ICD.) -- C:\Windows\SysNative\nvoglv64.dll [25743168]
O44 - LFC:[MD5.9F1871743384288A0D13EF1FBFBFB164] - 10/07/2012 - 09:02:48 ---A- . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\SysNative\nvhdap64.dll [31040]
O44 - LFC:[MD5.5087C9C50C40919D0CDDB2D7502B8BC2] - 10/07/2012 - 09:02:48 ---A- . (.NVIDIA Corporation - NVIDIA Video Decoder MFT, Version 301.42.) -- C:\Windows\SysNative\nvdecodemft.dll [364352]
O44 - LFC:[MD5.5087C9C50C40919D0CDDB2D7502B8BC2] - 10/07/2012 - 09:02:48 ---A- . (.NVIDIA Corporation - NVIDIA Video Decoder MFT, Version 301.42.) -- C:\Windows\System32\nvdecodemft.dll [364352]
O44 - LFC:[MD5.E249CC925A19500D3BBE7A0366FB33A6] - 10/07/2012 - 09:02:48 ---A- . (.NVIDIA Corporation - NVIDIA WDDM D3D Driver, Version 301.42.) -- C:\Windows\SysNative\nvd3dumx.dll [18044224]
O44 - LFC:[MD5.EF8979B2B8802D7372F37529C4C1A094] - 10/07/2012 - 09:02:48 ---A- . (.NVIDIA Corporation - NVIDIA shim initialization dll, Version 301.) -- C:\Windows\SysNative\nvinitx.dll [246592]
O44 - LFC:[MD5.763C6C130FEE93EEB0CB3DFB365F3259] - 10/07/2012 - 09:02:47 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Driver, Version 301.42.) -- C:\Windows\SysNative\nvcuda.dll [8139072]
O44 - LFC:[MD5.763C6C130FEE93EEB0CB3DFB365F3259] - 10/07/2012 - 09:02:47 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Driver, Version 301.42.) -- C:\Windows\System32\nvcuda.dll [8139072]
O44 - LFC:[MD5.27A7461D26E098E4CDC9902D581ABAAA] - 10/07/2012 - 09:02:47 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Video Decode API, Version 301.4.) -- C:\Windows\SysNative\nvcuvid.dll [2681664]
O44 - LFC:[MD5.27A7461D26E098E4CDC9902D581ABAAA] - 10/07/2012 - 09:02:47 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Video Decode API, Version 301.4.) -- C:\Windows\System32\nvcuvid.dll [2681664]
O44 - LFC:[MD5.91698A30542A6443421E629954DD3A92] - 10/07/2012 - 09:02:47 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Video Encoder, Version 301.42.) -- C:\Windows\SysNative\nvcuvenc.dll [2881856]
O44 - LFC:[MD5.91698A30542A6443421E629954DD3A92] - 10/07/2012 - 09:02:47 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Video Encoder, Version 301.42.) -- C:\Windows\System32\nvcuvenc.dll [2881856]
O44 - LFC:[MD5.C1F84FDC305AC75197F653B340F1645E] - 10/07/2012 - 09:02:47 ---A- . (.NVIDIA Corporation - NVIDIA Compiler, Version 301.42.) -- C:\Windows\SysNative\nvcompiler.dll [25248064]
O44 - LFC:[MD5.C1F84FDC305AC75197F653B340F1645E] - 10/07/2012 - 09:02:47 ---A- . (.NVIDIA Corporation - NVIDIA Compiler, Version 301.42.) -- C:\Windows\System32\nvcompiler.dll [25248064]
O44 - LFC:[MD5.66DBA5A9DD6172677CB0245291C76F93] - 09/07/2012 - 09:04:28 ---A- . (...) -- C:\user.js [125]
O44 - LFC:[MD5.7946D9F881715414B9F5D80D16752664] - 03/07/2012 - 17:21:32 ---A- . (.AVAST Software - avast! Screen Saver stub.) -- C:\Windows\avastSS.scr [41224]
O44 - LFC:[MD5.0B75171CC085E0982A712DDDF93ECBBE] - 03/07/2012 - 17:21:18 ---A- . (.AVAST Software - avast! start-up scanner.) -- C:\Windows\SysNative\aswBoot.exe [285328]
O44 - LFC:[MD5.0B75171CC085E0982A712DDDF93ECBBE] - 03/07/2012 - 17:21:18 ---A- . (.AVAST Software - avast! start-up scanner.) -- C:\Windows\System32\aswBoot.exe [285328]
O44 - LFC:[MD5.ED4FC5980BD8B1AD869FF725C7776338] - 15/06/2012 - 10:55:16 RSHA- . (...) -- C:\config.sys [10]
~ Scan Files in 04mn 37s



---\\ Export de clé d'application autorisée (O47)
O47 - AAKE:Key Export SP - "C:\Program Files (x86)\xchat\xchat.exe" [Enabled] .(...) -- C:\Program Files (x86)\xchat\xchat.exe (.not file.)
~ Scan Keys in 00mn 00s



---\\ Déni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l'Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll
~ Scan Keys in 00mn 00s



---\\ Contrôle du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d'extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d'extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
~ Scan CSB in 00mn 00s



---\\ MountPoints2 Shell Key (O51) (None)

---\\ Trojan Driver Search Data (HKLM) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
~ Scan Keys in 00mn 00s



---\\ ShareTools MSconfig StartupReg (O53)
O53 - SMSR:HKLM\...\startupreg\DAEMON Tools Lite [Key] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
O53 - SMSR:HKLM\...\startupreg\DivXUpdate [Key] . (.Pas de propriétaire - DivX Update.) -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
O53 - SMSR:HKLM\...\startupreg\facemoods [Key] . (...) -- C:\Program Files (x86)\facemoods.com\facemoods\1.4.17.11\facemoodssrv.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Google Update [Key] . (...) -- C:\Users\EvilBox\AppData\Local\Google\Update\GoogleUpdate.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\NokiaSuite.exe [Key] . (.Nokia - Nokia Suite.) -- C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe
O53 - SMSR:HKLM\...\startupreg\Spotify [Key] . (.Spotify Ltd - Spotify.) -- C:\Users\EvilBox\AppData\Roaming\Spotify\Spotify.exe
O53 - SMSR:HKLM\...\startupreg\SpybotSD TeaTimer [Key] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
O53 - SMSR:HKLM\...\startupreg\Steam [Key] . (.Valve Corporation - Steam.) -- C:\Program Files (x86)\Steam\Steam.exe
O53 - SMSR:HKLM\...\startupreg\TomTomHOME.exe [Key] . (.TomTom - System Tray application for TomTom HOME.) -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe
O53 - SMSR:HKLM\...\startupreg\UnlockerAssistant [Key] . (...) -- C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\WinampAgent [Key] . (.Nullsoft, Inc. - Winamp Agent.) -- C:\Program Files (x86)\Winamp\winampa.exe
~ Scan SMSR Keys in 00mn 00s



---\\ Microsoft Control Security Providers (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
~ Scan Keys in 00mn 00s



---\\ Microsoft Windows Policies System (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=2
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
~ Scan Keys in 00mn 00s



---\\ Microsoft Windows Policies Explorer (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0
~ Scan Keys in 00mn 00s



---\\ Liste des Drivers Système (O58)
O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [491088]
O58 - SDL:[MD5.1FD538C4FEB36B793D2121F20BBDC16F] - 26/10/2011 - 13:23:40 ---A- . (.GFI Software - GFI Anti-Rootkit Driver.) -- C:\Windows\SysWOW64\drivers\SBREDrv.sys [101112]
~ Scan Drivers in 00mn 00s



---\\ Liste des outils de nettoyage (O63)
O63 - Logiciel: ZHPDiag 1.31 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
~ Scan ADS in 00mn 00s



---\\ File Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> <evtfile>[HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d'événements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> <htmlfile>[HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> <evtfile>[HKCR\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d'événements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCR\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O67 - Shell Spawning: <.js> <JSFile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
~ Scan Keys in 00mn 00s



---\\ Start Menu Internet (O68)
O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe (.not file.)
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Windows\System32\ie4uinit.exe (.not file.)
O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe (.not file.)
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Windows\System32\ie4uinit.exe (.not file.)
O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe (.not file.)
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Windows\System32\ie4uinit.exe (.not file.)
~ Scan Keys in 00mn 00s



---\\ Search Browser Infection (O69)
O69 - SBI: prefs.js [EvilBox - 4m3ubb7m.default] user_pref("extensions.facemoods.DNSErrUrl", "http://start.facemoods.com/?a=ddrnw&f=5");
O69 - SBI: prefs.js [EvilBox - 4m3ubb7m.default] user_pref("extensions.facemoods.aflt", "ddrnw");
O69 - SBI: prefs.js [EvilBox - 4m3ubb7m.default] user_pref("extensions.facemoods.dfltSrch", true);
O69 - SBI: prefs.js [EvilBox - 4m3ubb7m.default] user_pref("extensions.facemoods.dfltSrchPrvdr", "Facemoods Search");
O69 - SBI: prefs.js [EvilBox - 4m3ubb7m.default] user_pref("extensions.facemoods.dnsErr", true);
O69 - SBI: prefs.js [EvilBox - 4m3ubb7m.default] user_pref("extensions.facemoods.firstRun", true);
O69 - SBI: prefs.js [EvilBox - 4m3ubb7m.default] user_pref("extensions.facemoods.hmpg", true);
O69 - SBI: prefs.js [EvilBox - 4m3ubb7m.default] user_pref("extensions.facemoods.hmpgUrl", "http://start.facemoods.com/?a=ddrnw");
O69 - SBI: prefs.js [EvilBox - 4m3ubb7m.default] user_pref("extensions.facemoods.id", "02ef1fef0000000000000016449e6326");
O69 - SBI: prefs.js [EvilBox - 4m3ubb7m.default] user_pref("extensions.facemoods.instlDay", "15364");
O69 - SBI: prefs.js [EvilBox - 4m3ubb7m.default] user_pref("extensions.facemoods.mntz", "");
O69 - SBI: prefs.js [EvilBox - 4m3ubb7m.default] user_pref("extensions.facemoods.newTab", true);
O69 - SBI: prefs.js [EvilBox - 4m3ubb7m.default] user_pref("extensions.facemoods.newTabUrl", "http://start.facemoods.com/?a=ddrnw&f=2");
O69 - SBI: prefs.js [EvilBox - 4m3ubb7m.default] user_pref("extensions.facemoods.prtnrId", "facemoods.com");
O69 - SBI: prefs.js [EvilBox - 4m3ubb7m.default] user_pref("extensions.facemoods.searchProviderAdded", true);
O69 - SBI: prefs.js [EvilBox - 4m3ubb7m.default] user_pref("extensions.facemoods.sid", "b7caf88c9cf94efaa51e9022e34b12f7");
O69 - SBI: prefs.js [EvilBox - 4m3ubb7m.default] user_pref("extensions.facemoods.tlbrSrchUrl", "http://start.facemoods.com/?a=ddrnw&f=3");
O69 - SBI: prefs.js [EvilBox - 4m3ubb7m.default] user_pref("extensions.facemoods.vrsn", "1.4.17.11");
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com
O69 - SBI: SearchScopes [HKCU] {274E4663-A0EB-4C1E-A6D8-F226781C54B6} [DefaultScope] - (Search By ZoneAlarm) - http://search.zonealarm.com
~ Scan Keys in 00mn 00s



---\\ Recherche des services démarrés par Svchost (O83)
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d'application.) -- C:\Windows\System32\aelupsvc.dll [72192]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [80384]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [853504]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [679424]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d'accès distant.) -- C:\Windows\System32\rasauto.dll [99328]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d'accès distant.) -- C:\Windows\System32\rasmans.dll [344064]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d'interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d'événements système (SENS).) -- C:\Windows\System32\sens.dll [64512]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [359424]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll [316928]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur hôte de session Burea.) -- C:\Windows\System32\termsrv.dll [680960]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [2428952]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [2428952]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [569344]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [30720]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d'application.) -- C:\Windows\System32\appinfo.dll [70656]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll [67584]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll [121856]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d'ordinateurs.) -- C:\Windows\System32\browser.dll [136192]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - DLL du service Explorateur d'ordinateurs.) -- C:\Windows\System32\browser.dll [136192]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110016]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110016]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [209920]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544]
~ Scan Services in 00mn 02s



---\\ Firewall Active Exception List (FirewallRules) (O87)
O87 - FAEL: "WMPNSS-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-UDP-NoScope" |Out - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "{EF65AC33-335B-423E-9752-FDEFFACD38B3}" |Out - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "{3B7344DF-9784-44E1-9EC8-05926EFBE74D}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "{D8B14A88-0934-4B63-B5CB-4C3869A95CB4}" |Out - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "{F0686CBB-1FF8-4DDD-A0EC-66CEAFDA2584}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "TCP Query User{F62E8BF5-D10B-4E6C-AB95-E5CC870FCCCB}C:\program files (x86)\java\jre6\bin\javaw.exe" | In - Private - P6 - TRUE | .(.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\program files (x86)\java\jre6\bin\javaw.exe
O87 - FAEL: "UDP Query User{ED9E5BDD-5BAA-4056-B7E7-C335EA00B7D8}C:\program files (x86)\java\jre6\bin\javaw.exe" | In - Private - P17 - TRUE | .(.Sun Microsystems, Inc..) -- C:\program files (x86)\java\jre6\bin\javaw.exe
O87 - FAEL: "{D280BCEE-81BB-47F8-B01C-98751F609A45}" |In - Private - P6 - TRUE | .(...) -- C:\Users\EvilBox\AppData\Roaming\Dropbox\bin\Dropbox.exe (.not file.)
O87 - FAEL: "{080AC77F-7C78-4351-89B8-C178D1F82A50}" |In - Private - P17 - TRUE | .(...) -- C:\Users\EvilBox\AppData\Roaming\Dropbox\bin\Dropbox.exe (.not file.)
O87 - FAEL: "TCP Query User{2CEDD206-EBB4-4FD5-B431-51EE06AC6686}C:\users\evilbox\appdata\roaming\dropbox\bin\dropbox.exe" |In - Public - P6 - TRUE | .(...) -- C:\users\evilbox\appdata\roaming\dropbox\bin\dropbox.exe (.not file.)
O87 - FAEL: "UDP Query User{4B9F1005-F6D2-4E8E-9B1D-D3CAEEF4EA36}C:\users\evilbox\appdata\roaming\dropbox\bin\dropbox.exe" |In - Public - P17 - TRUE | .(...) -- C:\users\evilbox\appdata\roaming\dropbox\bin\dropbox.exe (.not file.)
O87 - FAEL: "{FD143DA9-BD46-46C5-A1D4-3B348668E68B}" | In - Private - P6 - TRUE | .(.Musiccity Co.Ltd. - MUZAoDApp Module.) -- C:\Windows\SysWOW64\muzapp.exe
O87 - FAEL: "{E0CEA5F9-B7A2-4859-A69A-37AB1A46F958}" | In - Private - P17 - TRUE | .(.Musiccity Co.Ltd. - MUZAoDApp Module.) -- C:\Windows\SysWOW64\muzapp.exe
O87 - FAEL: "TCP Query User{AFF15C44-38DD-4D58-8888-3A11430D72EC}C:\program files (x86)\winamp\winamp.exe" | In - Private - P6 - TRUE | .(.Nullsoft, Inc. - Winamp.) -- C:\program files (x86)\winamp\winamp.exe
O87 - FAEL: "UDP Query User{CACA8513-46FB-408F-A57D-9DA54E30C5B9}C:\program files (x86)\winamp\winamp.exe" | In - Private - P17 - TRUE | .(.Nullsoft, Inc. - Winamp.) -- C:\program files (x86)\winamp\winamp.exe
O87 - FAEL: "{58165FAA-65C3-418C-87E2-DC17B25BBBE0}" | In - Private - P6 - TRUE | .(.Valve Corporation - Steam.) -- C:\Program Files (x86)\Steam\Steam.exe
O87 - FAEL: "{24C8A3B6-1BDA-4092-AEF5-C00EB3F72F29}" | In - Private - P17 - TRUE | .(.Valve Corporation - Steam.) -- C:\Program Files (x86)\Steam\Steam.exe
O87 - FAEL: "{AC28F11F-7CD2-4B00-98AF-CDE11C200967}" | In - Private - P6 - TRUE | .(.Epic Games, Inc. - Pas de description.) -- C:\Program Files (x86)\Steam\SteamApps\common\monday night combat\Binaries\Win32\mnc.exe
O87 - FAEL: "{E09ABC54-0D7C-4110-9E05-D101E2B6F438}" | In - Private - P17 - TRUE | .(.Epic Games, Inc. - Pas de description.) -- C:\Program Files (x86)\Steam\SteamApps\common\monday night combat\Binaries\Win32\mnc.exe
O87 - FAEL: "TCP Query User{491CAA2A-C948-4F06-97A8-1829A304010C}C:\windows\syswow64\java.exe" | In - Private - P6 - TRUE | .(.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\windows\syswow64\java.exe
O87 - FAEL: "UDP Query User{4CA241F2-8851-47B0-BF3A-5F24AC395060}C:\windows\syswow64\java.exe" | In - Private - P17 - TRUE | .(.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\windows\syswow64\java.exe
O87 - FAEL: "TCP Query User{4A974481-BE3E-460C-A605-BBF510CD3252}C:\program files (x86)\java\jre6\bin\javaw.exe" | In - Public - P6 - TRUE | .(.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\program files (x86)\java\jre6\bin\javaw.exe
O87 - FAEL: "UDP Query User{CE47920A-A5F0-4986-AC0A-AD1F65E7E47E}C:\program files (x86)\java\jre6\bin\javaw.exe" | In - Public - P17 - TRUE | .(.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\program files (x86)\java\jre6\bin\javaw.exe
O87 - FAEL: "TCP Query User{9800DC74-1A16-4272-A4A9-55E2FD449C19}C:\program files (x86)\origin games\battlefield 3\bf3.exe" | In - Public - P6 - TRUE | .(.EA Digital Illusions CE AB.) -- C:\program files (x86)\origin games\battlefield 3\bf3.exe
O87 - FAEL: "UDP Query User{3BE597FC-CCC2-4E4F-8C38-65F87417E24F}C:\program files (x86)\origin games\battlefield 3\bf3.exe" | In - Public - P17 - TRUE | .(.EA Digital Illusions CE AB.) -- C:\program files (x86)\origin games\battlefield 3\bf3.exe
O87 - FAEL: "{418ABEDD-90B0-458E-9328-C584A8B5AEE2}" |In - Public - P6 - TRUE | .(...) -- C:\Program Files (x86)\Steam\SteamApps\evilbox\day of defeat source\hl2.exe (.not file.)
O87 - FAEL: "{B85BE979-13AE-4EB9-B76F-30C036D92810}" |In - Public - P17 - TRUE | .(...) -- C:\Program Files (x86)\Steam\SteamApps\evilbox\day of defeat source\hl2.exe (.not file.)
O87 - FAEL: "TCP Query User{7124A38F-EC62-4301-A01A-1D5EAEC00549}C:\program files (x86)\winamp\winamp.exe" | In - Public - P6 - TRUE | .(.Nullsoft, Inc. - Winamp.) -- C:\program files (x86)\winamp\winamp.exe
O87 - FAEL: "UDP Query User{CE69ECFC-617B-4437-BBF0-3EE985FF681A}C:\program files (x86)\winamp\winamp.exe" | In - Public - P17 - TRUE | .(.Nullsoft, Inc. - Winamp.) -- C:\program files (x86)\winamp\winamp.exe
O87 - FAEL: "TCP Query User{3534775A-2599-4C71-A0B6-1FF02F7ECD37}C:\program files (x86)\origin games\medal of honor digital deluxe edition\mp\mohmpgame.exe" | In - Private - P6 - TRUE | .(.EA Digital Illusions CE AB.) -- C:\program files (x86)\origin gam
O87 - FAEL: "UDP Query User{195AEF29-1CB2-4C12-8FC2-7976BC1EF3EA}C:\program files (x86)\origin games\medal of honor digital deluxe edition\mp\mohmpgame.exe" | In - Private - P17 - TRUE | .(.EA Digital Illusions CE AB.) -- C:\program files (x86)\origin ga
O87 - FAEL: "{EF0CAEDF-3D02-449C-87DD-03FBADD79293}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Steam\SteamApps\evilbox\day of defeat source\hl2.exe (.not file.)
O87 - FAEL: "{EF6E2617-61D6-4D89-984B-3F8B4ED774A6}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Steam\SteamApps\evilbox\day of defeat source\hl2.exe (.not file.)
O87 - FAEL: "TCP Query User{5F79B499-22AD-4711-81BD-8AD4F6F912C1}C:\program files (x86)\xchat\xchat.exe" |In - Private - P6 - TRUE | .(...) -- C:\program files (x86)\xchat\xchat.exe (.not file.)
O87 - FAEL: "UDP Query User{16692276-BAC0-4C01-B171-AD6A01FDA020}C:\program files (x86)\xchat\xchat.exe" |In - Private - P17 - TRUE | .(...) -- C:\program files (x86)\xchat\xchat.exe (.not file.)
O87 - FAEL: "{9E270AD5-CFD6-4381-A154-A36F12E8826A}" | In - Private - P6 - TRUE | .(.BioWare - Mass Effect(TM) 3 Demo.) -- C:\Program Files (x86)\Origin Games\Mass Effect 3 Demo\Binaries\Win32\MassEffect3Demo.exe
O87 - FAEL: "{EB132FB0-26C2-4408-B551-05B4897A0C19}" | In - Private - P17 - TRUE | .(.BioWare - Mass Effect(TM) 3 Demo.) -- C:\Program Files (x86)\Origin Games\Mass Effect 3 Demo\Binaries\Win32\MassEffect3Demo.exe
O87 - FAEL: "{9228ADDD-8BD1-400C-801A-2FB9F322C323}" | In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Ubisoft\Rayman Origins\Rayman Origins.exe
O87 - FAEL: "{7C2DA819-1278-4951-83F8-A8D74D95F72E}" | In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Ubisoft\Rayman Origins\Rayman Origins.exe
O87 - FAEL: "{B8B2F661-EB52-4B29-BA7A-33C7E2E7B08D}" | In - Private - P6 - TRUE | .(.Ubisoft - Autopatch system.) -- C:\Program Files (x86)\Ubisoft\Rayman Origins\gu.exe
O87 - FAEL: "{7E7E38CB-69D2-42B2-B1DC-ADB5120529B3}" | In - Private - P17 - TRUE | .(.Ubisoft - Autopatch system.) -- C:\Program Files (x86)\Ubisoft\Rayman Origins\gu.exe
O87 - FAEL: "{84416A83-7E1C-444B-9E6E-75B060E52FFD}" | In - None - P17 - TRUE | .(.Nokia - Nokia Suite.) -- C:\Program Files (x86)\nokia\nokia suite\nokiasuite.exe
O87 - FAEL: "{F0B0A043-7A26-4BDA-845A-DE586F9A56A6}" |In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Common Files\nokia\service layer\a\nsl_host_process.exe (.not file.)
O87 - FAEL: "{2AF4EF43-930E-486D-85EC-02265314E7A6}" | In - Private - P6 - TRUE | .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe
O87 - FAEL: "{887896A0-CA59-49AB-BAAE-38D0BBEDC0B2}" | In - Private - P17 - TRUE | .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe
O87 - FAEL: "{E222E949-228F-48F0-9691-512F6B4442AF}" | In - Private - P6 - TRUE | .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe
O87 - FAEL: "{0C043A39-3677-426D-9271-19274BFC507A}" | In - Private - P17 - TRUE | .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe
O87 - FAEL: "{230E304D-DE30-4CC6-93AF-259E3CE6B31B}" | In - Private - P6 - TRUE | .(.EA Digital Illusions CE AB - Battlefield 3(TM).) -- C:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe
O87 - FAEL: "{03379871-450E-4430-B6E3-885B00DFF10C}" | In - Private - P17 - TRUE | .(.EA Digital Illusions CE AB - Battlefield 3(TM).) -- C:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe
O87 - FAEL: "{68AE1AF4-6A70-4699-B7CB-5F643BD4727B}" | In - Private - P6 - TRUE | .(.ESN Social Software AB - ESN Sonar Host Application.) -- C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe
O87 - FAEL: "{6356C61F-04DC-4D38-8DD8-76622982BF4D}" | In - Private - P17 - TRUE | .(.ESN Social Software AB - ESN Sonar Host Application.) -- C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe
O87 - FAEL: "{895E9AF3-1B13-4B31-9C7E-638DFD81F7CF}" | In - Private - P6 - FALSE | .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O87 - FAEL: &quo
0
Antoine
 
voici la suite désolé
0
Utilisateur anonyme
 
Re

Merci de procéder comme il est mentionné

@+
0
Antoine
 
http://cjoint.com/?BGnrpiP4wSn
0
Antoine
 
c'est fait
0
Utilisateur anonyme
 
Re

1)Désinstalle Spybot S&D, logiciel obsolète et qui risque de gêner la désinfection :

Désactive le module Tea Timer
Dé-vaccine
Désinstalle


2)
Télécharge AdwCleaner ( d'Xplode ) sur ton bureau.
Lance le, clique sur [Suppression] puis patiente le temps du scan.
Une fois le scan fini, un rapport s'ouvrira. Poste moi son contenu dans ta prochaine réponse.

Note : Le rapport est également sauvegardé sous C:\AdwCleaner[S1].txt

Les toolbars, c'est pas obligatoire ( par Malekal ) :https://forum.malekal.com/viewtopic.php?t=6173&start=

3)Télécharge Malwaresbytes anti malware ici
http://www.malwarebytes.org/mbam.php

Bouton »Download free version »

* Installe le (choisis bien "français" ; ne modifie pas les paramètres d'installe ) et mets le à jour .

(NB : S'il te manque "COMCTL32.OCX" lors de l'installe, alors télécharge le ici : https://www.malekal.com/tutorial-aboutbuster/

* Potasse le tuto pour te familiariser avec le prg :

https://forum.pcastuces.com/sujet.asp?f=31&s=3

(cela dis, il est très simple d'utilisation).

relance Malwaresbytes en suivant scrupuleusement ces consignes :

! Déconnecte toi et ferme toutes applications en cours !

* Lance Malwarebyte's. Sous Vista et Seven (clic droit de la souris « exécuter en tant que administrateur »)

*Procèdes à une mise à jour

*Fais un examen dit "Complet"

--> Laisse le programme travailler ( et ne rien faire d'autre avec le PC durant le scan ).
--> à la fin tu cliques sur "Afficher les résultats" " .
--> Vérifie que tous les objets infectés soient validés, puis clique sur " supprimer la sélection " .

Note : si il faut redémarrer ton PC pour finir le nettoyage, fais le !

Poste le rapport sauvegardé après la suppression des objets infectés (dans l'onglet "rapport/log"de Malwaresbytes, le dernier en date)

@+
0
Antoine
 
tout est fait aucun logiciel espion ou autre mais quand je veut mettre à jour Windows voici le message qui apparait! Windows update ne peut pas actuellement rechercher des mise à jour car l service n'est pas en cours d'exécution il vous faudra redémarrer votre système

c'est ce que j ai fait et toujours idem la mise à jour galère et peine et je n'arrive pas à modifier les paramètres
0
Utilisateur anonyme
 
Poste moi ces différents rapports;merci
0
Antoine
 
http://cjoint.com/?BGnvsmmwTgj

http://cjoint.com/?BGnvtujb8D7
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Utilisateur anonyme
 
Re

Quel est le numéro de cette mise à jour qui ne veut pas s'installer?

@+
---------Contributeur Sécurité---------
On a tous été un jour débutant dans quelque chose.
Mais le savoir est la récompense de l'assiduité.
0
Antoine
 
ce n'est pas une mise à jour dite c'est le réglage par lui même qui ne fonctionne pas même pas moyen de passer par internet explorer pour une mise à jour de Windows c'est le programme par lui même et non les différentes mise à jour
0
Antoine
 
c'est le paramétrage qui foire et je n'y accède plus ça bloque comme si cela m'était interdit
0
Utilisateur anonyme
 
Re

De quand date cette dernière mise à jour?

@+
0
Utilisateur anonyme
 
Cela se passe ci-dessus
0
Antoine
 
mise à jour il y à environ deux jours je pense
0
Utilisateur anonyme
 
Re

Et alors quel est le problème je ne comprends pas trop,

@+
0
Antoine
 
zone alarm responsable du à une incompatibilité en mode 64 bits!qui génère un blocage au niveau des mise à jour et du centre de sécurité de windows
0
Utilisateur anonyme
 
Re

Et bien neutralise Zone Alarm
Procède aux diverses mises à jour et et ensuite active le à nouveau


PS:
Désinstalle Zone Alarm si tu n'es pas en mesure de le paramétrer correctement

@+
0
Antoine
 
http://www.clubic.com/telecharger-fiche10494-zonealarm-free-firewall.html
0
Utilisateur anonyme
 
Oui et alors???
0