Virus ordinateur portable

Résolu
Bonjour,

net

Bonjour, je pense avoir un virus sur mon ordinateur portable mozilla ne répond pas, connection internet trés lente, windows update n'arrive pas a installer des mises a jours, je ne sais pas ce qu'a mon ordi mais il a des problemes. merci de m'aider svp. Voici le rapport hijackthis

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 07:16:45, on 29/07/2012
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18639)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\IDT\WDM\sttray.exe
C:\Program Files\HP\QuickPlay\QPService.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\NETGEAR\WG111v3\WG111v3.exe
C:\Program Files\NETGEAR\WG111v3\WG111v3.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Hewlett-Packard\Shared\hpqToaster.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_3_300_268.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_3_300_268.exe
C:\Users\béranger\Downloads\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=fr_fr&c=91&bd=Presario&pf=cnnb
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=fr_fr&c=91&bd=Presario&pf=cnnb
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=fr_fr&c=91&bd=Presario&pf=cnnb
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: AOL Toolbar BHO - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
O4 - HKLM\..\Run: [UpdatePSTShortCut] "C:\Program Files\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\DVD Suite" UpdateWithCreateOnce "Software\CyberLink\PowerStarter"
O4 - HKLM\..\Run: [UCam_Menu] "C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\2.0"
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [UpdatePDIRShortCut] "C:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\PowerDirector" UpdateWithCreateOnce "SOFTWARE\CyberLink\PowerDirector\7.0"
O4 - HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [wlm2011installer] C:\Users\BRANGE~1\AppData\Local\Temp\wlsetupc.exe /restart
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Global Startup: Assistant Smart Wizard NETGEAR pour WG311v3.lnk = C:\Program Files\NETGEAR\WG111v3\WG111v3.exe
O4 - Global Startup: NETGEAR WG111v3 Smart Wizard.lnk = C:\Program Files\NETGEAR\WG111v3\WG111v3.exe
O8 - Extra context menu item: &Recherche AOL Toolbar - C:\ProgramData\AOL\ieToolbar\resources\fr-FR\local\search.html
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_fa807195\aestsrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files\HP Games\My HP Game Console\GameConsoleService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Norton Internet Security - Unknown owner - C:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSvcHst.exe (file missing)
O23 - Service: Recovery Service for Windows - Unknown owner - C:\Program Files\SMINST\BLService.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_fa807195\STacSV.exe

--
End of file - 8656 bytes

9 réponses

  1. Est ce que c'est possible qu'une webcam ou une souris externe transmettre les virus d'un ordinateur a l'autre si on les changes d'ordinateur?

    Faut il faire les rapport hijackthis avec les périphériques branchés ou non ils peuvent contenir des virus? merci de votre aide.
    0
    1. quelqu'un peut me dire si il voit quelque chose de suspect svp?

      Rapport de ZHPDiag v1.31.11 par Nicolas Coolman, Update du 21/07/2012
      Run by béranger at 29/07/2012 08:13:32
      Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
      Web site : http://nicolascoolman.skyrock.com/
      State : Version à jour.

      ---\\ Web Browser
      MSIE: Internet Explorer v7.0.6001.18000
      MFIE: Mozilla Firefox 14.0.1 v14.0.1 (Defaut)

      ---\\ Windows Product Information
      ~ Langage: Français
      Windows Vista Home Basic Edition, 32-bit Service Pack 1 (Build 6001)
      Windows Server License Manager Script : OK
      ~ Vista, OEM_SLP channel
      System Locked Preinstallation (OEM_SLP) : OK
      Windows ID Activation : OK
      ~ Windows Partial Key : 44MV3
      Windows License : OK
      Windows Automatic Updates : OK

      ---\\ System Information
      ~ Processor: x86 Family 6 Model 23 Stepping 10, GenuineIntel
      ~ Operating System: 32 Bits
      Boot mode: Normal (Normal boot)
      Total RAM: 3002 MB (50% free)
      System Restore: Activé (Enable)
      System drive C: has 190 GB (85%) free of 223 GB

      ---\\ Logged in mode
      ~ Computer Name: PC-DE-BÉRANGER
      ~ User Name: béranger
      ~ All Users Names: béranger, Administrateur,
      ~ Unselected Option: O45,O61,O62,O65,O66,O80,O82,O89
      Logged in as Administrator

      ---\\ Environnement Variables
      ~ System Unit : C:\
      ~ %AppData% : C:\Users\béranger\AppData\Roaming\
      ~ %Desktop% : C:\Users\béranger\Desktop\
      ~ %Favorites% : C:\Users\béranger\Favorites\
      ~ %LocalAppData% : C:\Users\béranger\AppData\Local\
      ~ %StartMenu% : C:\Users\béranger\AppData\Roaming\Microsoft\Windows\Start Menu\
      ~ %Windir% : C:\Windows\
      ~ %System% : C:\Windows\System32\

      ---\\ DOS/Devices
      C:\ Hard drive, Flash drive, Thumb drive (Free 190 Go of 223 Go)
      D:\ Hard drive, Flash drive, Thumb drive (Free 2 Go of 10 Go)
      E:\ CD-ROM drive (Not Inserted)

      ---\\ Security Center & Tools Informations
      [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
      [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
      [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
      [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
      [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
      [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
      [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
      ~ Scan Security Center in 00mn 00s

      ---\\ Recherche particulière de fichiers génériques
      [MD5.4F554999D7D5F05DAAEBBA7B5BA1089D] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2009 - 11:21:43.) -- C:\Windows\Explorer.exe [2927104]
      [MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) (.21/01/2008 - 03:33:13.) -- C:\Windows\System32\Wininit.exe [96768]
      [MD5.DA5A72211661C7F162B332FEA4F09A69] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.21/04/2011 - 16:00:34.) -- C:\Windows\System32\wininet.dll [833024]
      [MD5.C2610B6BDBEFC053BBDAB4F1B965CB24] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.21/01/2008 - 03:34:38.) -- C:\Windows\System32\Winlogon.exe [314880]
      [MD5.48EB99503533C27AC6135648E5474457] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.21/04/2011 - 14:16:42.) -- C:\Windows\system32\Drivers\AFD.sys [273408]
      [MD5.9C0E70031905ADBF94EDB9EA14AF943B] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.25/02/2009 - 11:06:53.) -- C:\Windows\system32\Drivers\atapi.sys [21560]
      [MD5.7ADD03E75BEB9E6DD102C3081D29840A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.21/01/2008 - 03:33:23.) -- C:\Windows\system32\Drivers\Cdfs.sys [70144]
      [MD5.1EC25CEA0DE6AC4718BF89F9E1778B57] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.21/01/2008 - 03:32:23.) -- C:\Windows\system32\Drivers\Cdrom.sys [67072]
      [MD5.A3E9FA213F443AC77C7746119D13FEEC] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.14/04/2011 - 15:24:14.) -- C:\Windows\system32\Drivers\DfsC.sys [75264]
      [MD5.C87B1EE051C0464491C1A7B03FA0BC99] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.21/01/2008 - 03:32:47.) -- C:\Windows\system32\Drivers\HDAudBus.sys [53760]
      [MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - (.Microsoft Corporation - Pilote de port i8042.) (.21/01/2008 - 03:32:45.) -- C:\Windows\system32\Drivers\i8042prt.sys [54784]
      [MD5.8793643A67B42CEC66490B2A0CF92D68] - (.Microsoft Corporation - IP Network Address Translator.) (.21/01/2008 - 03:34:06.) -- C:\Windows\system32\Drivers\IpNat.sys [100864]
      [MD5.5734A0F2BE7E495F7D3ED6EFD4B9F5A1] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.29/04/2011 - 13:49:35.) -- C:\Windows\system32\Drivers\MRxSmb.sys [105984]
      [MD5.7C5FEE5B1C5728507CD96FB4A13E7A02] - (.Microsoft Corporation - MBT Transport driver.) (.21/01/2008 - 03:34:49.) -- C:\Windows\system32\Drivers\netBT.sys [184320]
      [MD5.B4EFFE29EB4F15538FD8A9681108492D] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.21/01/2008 - 03:33:23.) -- C:\Windows\system32\Drivers\ntfs.sys [1081912]
      [MD5.0FA9B5055484649D63C303FE404E5F4D] - (.Microsoft Corporation - Pilote de port parallèle.) (.02/11/2006 - 09:51:30.) -- C:\Windows\system32\Drivers\Parport.sys [79360]
      [MD5.A214ADBAF4CB47DD2728859EF31F26B0] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.21/01/2008 - 03:34:44.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [76288]
      [MD5.FBC0BACD9C3D7F6956853F64A66E252D] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.21/01/2008 - 03:32:22.) -- C:\Windows\system32\Drivers\rdpdr.sys [248832]
      [MD5.031E6BCD53C9B2B9ACE111EAFEC347B6] - (.Microsoft Corporation - SMB Transport driver.) (.21/01/2008 - 03:34:49.) -- C:\Windows\system32\Drivers\smb.sys [66560]
      [MD5.D09276B1FAB033CE1D40DCBDF303D10F] - (.Microsoft Corporation - TDI Translation Driver.) (.21/01/2008 - 03:34:42.) -- C:\Windows\system32\Drivers\tdx.sys [71680]
      [MD5.D8B4A53DD2769F226B3EB374374987C9] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.21/01/2008 - 03:32:47.) -- C:\Windows\system32\Drivers\volsnap.sys [227896]
      ~ Scan Generic Processes in 00mn 07s

      ---\\ Etat des fichiers cachés (Caché/Total)
      ~ Mes images (My Pictures) : 1/2
      ~ Mes musiques (My Musics) : 1/2
      ~ Mes Videos (My Videos) : 1/2
      ~ Mes Favoris (My Favorites) : 1/21
      ~ Mes Documents (My Documents) : 1/2
      ~ Mon Bureau (My Desktop) : 1/3
      ~ Menu demarrer (Programs) : 0/26
      ~ Scan Hidden Files in 00mn 00s

      ---\\ Processus lancés
      [MD5.86CE84BCE11309992A13425B3871E6D7] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [178712] [PID.2744]
      [MD5.31E7668C5E9194D74ECB36426673C279] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [154136] [PID.2752]
      [MD5.271B58DD141EC8E3EA525EE5E8895EC7] - (.Intel Corporation - igfxsrvc Module.) -- C:\Windows\system32\igfxsrvc.exe [256536] [PID.2792]
      [MD5.6C4878F3483B959891408B804DE4475C] - (.Synaptics, Inc. - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1410344] [PID.2856]
      [MD5.540FCB7DB4A289EE56557FB5EC3D16AC] - (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray.exe [483420] [PID.2944]
      [MD5.5E5208A733BBCC4571F384754A9A6746] - (.CyberLink Corp. - HP QuickPlay Resident Program.) -- C:\Program Files\HP\QuickPlay\QPService.exe [468264] [PID.2956]
      [MD5.0D392EDE3B97E0B3131B2F63EF1DB94E] - (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe [1008184] [PID.3024]
      [MD5.2C45AF6FB8AADD7959078CC1B13B1A65] - (. Hewlett-Packard Development Company, L.P. - Quick Launch Buttons.) -- C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe [206128] [PID.3032]
      [MD5.690A6DF02625A46ABEE250C6151B7FBA] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\HP\HP Software Update\hpwuSchd2.exe [54576] [PID.3096]
      [MD5.692493B9136287C06DE23F7CE823FC40] - (.Hewlett-Packard - HP Wireless Assistant main program.) -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [432432] [PID.3108]
      [MD5.20C4535969F2006F6082CDF146CD95C4] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [4273976] [PID.3132]
      [MD5.98A078F838A70F84E1BD490D7C7675F4] - (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [254696] [PID.3160]
      [MD5.4A9295C9BE22739D030AB072E9A0B169] - (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2363392] [PID.3180]
      [MD5.F9B2C6E8ED637734164F65C69DA8E3E5] - (.Pas de propriétaire - NetgearCUv2 MFC Application.) -- C:\Program Files\NETGEAR\WG111v3\WG111v3.exe [2105344] [PID.3220]
      [MD5.F28C33D2589F7B89185F3B9445641F84] - (.Pas de propriétaire - HpqToaster Module.) -- C:\Program Files\Hewlett-Packard\Shared\hpqToaster.exe [628016] [PID.3944]
      [MD5.C8649EDF4955DE896A7AED515C932B09] - (.Synaptics, Inc. - Synaptics Pointing Device Helper.) -- C:\Program Files\Synaptics\SynTP\SynTPHelper.exe [103720] [PID.2996]
      [MD5.3F677172F23FC17283D9BCE4B42E3F65] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [913888] [PID.3076]
      [MD5.A06AB1550658A19E871A6FD7FF1C2CDB] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files\Mozilla Firefox\plugin-container.exe [16864] [PID.3412]
      [MD5.7DD731B5B95D5B8D14DC4E1468EB09E3] - (.Adobe Systems, Inc. - Adobe Flash Player 11.3 r300.) -- C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_3_300_268.exe [1536712] [PID.3360]
      [MD5.F96EBC5A624349D81DCC7600A3C5DC43] - (.Microsoft Corporation - Console IME.) -- C:\Windows\system32\conime.exe [69120] [PID.4384]
      [MD5.72AE847EB2B526CC0551C88B9A2970C1] - (...) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [3763200] [PID.5212]
      [MD5.B56EE2666F0B6019B6206FB3664BAF03] - (.IDT, Inc. - IDT PC Audio.) -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_fa807195\STacSV.exe [249938] [PID.]
      [MD5.0BA91E1358AD25236863039BB2609A2E] - (.Microsoft Corporation - Service de gestion des licences Microsoft.) -- C:\Windows\system32\SLsvc.exe [2623488] [PID.]
      [MD5.2F7C0F3E39C45E0127FB78B2F18A41F3] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [44808] [PID.]
      [MD5.087B04CA45E2F059A55709B0B8F95EA9] - (.Andrea Electronics Corporation - Andrea filters APO access service (32-bit).) -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_fa807195\aestsrv.exe [81920] [PID.]
      [MD5.ABF90FC5A127F481219B873C1B8DFC1C] - (.Hewlett-Packard Company - LightScribe Service.) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe [73728] [PID.]
      [MD5.2063D6B51FD874E67502B31A9FDBA685] - (.Pas de propriétaire - STServices.) -- C:\Program Files\SMINST\BLService.exe [365952] [PID.]
      [MD5.498EB62A160674E793FA40FD65390625] - (.Pas de propriétaire - RichVideo Module.) -- C:\Program Files\CyberLink\Shared files\RichVideo.exe [247152] [PID.]
      [MD5.188FF0ADF66768D53AD94F43972E1E9A] - (.Hewlett-Packard Development Company, L.P. - hpqwmiex Module.) -- C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [223232] [PID.]
      [MD5.2F27104F5D6ED63FDAC38CACB9D19DFD] - (.Hewlett-Packard Development Company, L.P. - Com for QLB application.) -- C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [222512] [PID.]
      [MD5.A19B0BB5A7EB6DF2DD4A0711D36955EE] - (.Hewlett-Packard - HP Health Check Service.) -- c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [94208] [PID.]
      [MD5.16613A1BAD034D4ECF957AF18B7C2FF5] - (.Microsoft Corporation - Programme d'installation de modules Windows.) -- C:\Windows\servicing\TrustedInstaller.exe [39424] [PID.]
      ~ Scan Processes Running in 00mn 00s

      ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
      C:\Users\béranger\AppData\Roaming\Mozilla\Firefox\Profiles\yi13nwg5.default\prefs.js
      M3 - MFPP: Plugins - [béranger] -- C:\Program Files\Mozilla FireFox\searchplugins\amazon-france.xml
      M3 - MFPP: Plugins - [béranger] -- C:\Program Files\Mozilla FireFox\searchplugins\bing.xml
      M3 - MFPP: Plugins - [béranger] -- C:\Program Files\Mozilla FireFox\searchplugins\cnrtl-tlfi-fr.xml
      M3 - MFPP: Plugins - [béranger] -- C:\Program Files\Mozilla FireFox\searchplugins\eBay-france.xml
      M3 - MFPP: Plugins - [béranger] -- C:\Program Files\Mozilla FireFox\searchplugins\google.xml
      M3 - MFPP: Plugins - [béranger] -- C:\Program Files\Mozilla FireFox\searchplugins\wikipedia-fr.xml
      M3 - MFPP: Plugins - [béranger] -- C:\Program Files\Mozilla FireFox\searchplugins\yahoo-france.xml
      P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF32_11_3_300_268.dll
      P2 - FPN: [HKLM] [@adobe.com/ShockwavePlayer] - (.Adobe Systems, Inc. - Adobe Shockwave for Director Netscape plug-in, version 11.0.) -- C:\Windows\system32\Adobe\Director\np32dsw.dll
      P2 - FPN: [HKLM] [@java.com/DTPlugin,version=1.6.0_33] - (.Sun Microsystems, Inc. - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- C:\Windows\system32\npdeployJava1.dll
      P2 - FPN: [HKLM] [@java.com/JavaPlugin] - (.Sun Microsystems, Inc. - Next Generation Java Plug-in 1.6.0_33 for Mozilla browsers.) -- C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll
      P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
      ~ Scan Firefox Browser in 00mn 00s

      ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
      R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr
      R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com
      R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
      R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com
      R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
      R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
      R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
      R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) (No version) -- (.not file.)
      R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2
      ~ Scan IE Browser in 00mn 00s

      ---\\ Internet Explorer, Proxy Management (R5)
      R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
      R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
      R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
      R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
      R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
      ~ Scan Proxy management in 00mn 00s

      ---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
      F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
      F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
      F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"
      ~ Scan Keys in 00mn 00s

      ---\\ Redirection du fichier Hosts (O1)
      ~ Le fichier hosts est sain (The hosts file is clean).
      ~ Scan Hosts File in 00mn 00s
      ~ Nombre de lignes (Lines number): 20

      ---\\ Browser Helper Objects de navigateur (O2)
      O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
      O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\ssv.dll
      O2 - BHO: AOL Toolbar BHO - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} . (.AOL LLC - AOL IE Toolbar Dynamic Link Library.) -- C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
      O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
      O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll
      ~ Scan BHO in 00mn 00s

      ---\\ Internet Explorer Toolbars (O3)
      O3 - Toolbar: AOL Toolbar - [HKLM]{DE9C389F-3316-41A7-809B-AA305ED9D922} . (.AOL LLC - AOL IE Toolbar Dynamic Link Library.) -- C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
      O3 - Toolbar: avast! WebRep - [HKLM]{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
      ~ Scan Toolbar in 00mn 00s

      ---\\ Applications démarrées par registre & par dossier (O4)
      O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe
      O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe
      O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe
      O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics, Inc. - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
      O4 - HKLM\..\Run: [SysTrayApp] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray.exe
      O4 - HKLM\..\Run: [QPService] . (.CyberLink Corp. - HP QuickPlay Resident Program.) -- C:\Program Files\HP\QuickPlay\QPService.exe
      O4 - HKLM\..\Run: [UpdateLBPShortCut] . (.CyberLink Corp. - StartMen Application.) -- C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe
      O4 - HKLM\..\Run: [UpdatePSTShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe
      O4 - HKLM\..\Run: [UCam_Menu] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe
      O4 - HKLM\..\Run: [Windows Defender] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe
      O4 - HKLM\..\Run: [QlbCtrl.exe] . (. Hewlett-Packard Development Company, L.P. - Quick Launch Buttons.) -- C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
      O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
      O4 - HKLM\..\Run: [UpdateP2GoShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe
      O4 - HKLM\..\Run: [UpdatePDIRShortCut] . (.CyberLink Corp. - StartMen Application.) -- C:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe
      O4 - HKLM\..\Run: [HP Health Check Scheduler] . (.Hewlett-Packard - HP Health Check Scheduler.) -- c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
      O4 - HKLM\..\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
      O4 - HKLM\..\Run: [WirelessAssistant] . (.Hewlett-Packard - HP Wireless Assistant main program.) -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
      O4 - HKLM\..\Run: [avast] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastUI.exe
      O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe
      O4 - HKCU\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
      O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
      O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] oobefldr.dll
      O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
      O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] oobefldr.dll
      O4 - HKUS\S-1-5-21-3824424390-1062054370-187549837-1000\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
      ~ Scan Application in 00mn 00s

      ---\\ Autres liens utilisateurs (O4)
      O4 - Global Startup: C:\Users\béranger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
      O4 - Global Startup: C:\Users\béranger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Mail\WinMail.exe
      O4 - Global Startup: C:\Users\béranger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
      O4 - Global Startup: C:\Users\béranger\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk . (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe
      ~ Scan Global Startup in 00mn 00s

      ---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
      O8 - Extra context menu item: &Recherche AOL Toolbar . (...) -- C:\ProgramData\AOL\ieToolbar\resources\fr-FR\local\search.html
      ~ Scan IE Menu Contextuel in 00mn 00s

      ---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
      O9 - Extra button: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} . (.Microsoft Corporation - Microsoft Office OneNote Internet Explorer Add-in.) -- C:\Program Files\MICROS~3\Office12\ONBttnIE.dll
      O9 - Extra button: &Envoyer à OneNote - {92780B25-18CC-41C8-B9BE-3C9C571A8263} . (...) -- C:\Program Files\Microsoft Office\Office12\REFBARH.ICO
      ~ Scan IE Extra Buttons in 00mn 00s

      ---\\ Winsock hijacker (Layered Service Provider) (O10)
      O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
      O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
      O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
      O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
      O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
      O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
      ~ Scan Winsock in 00mn 00s

      ---\\ Modification Domaine/Adresses DNS (O17)
      O17 - HKLM\System\CCS\Services\Tcpip\..\{580A4AD6-1F20-44D5-AC9D-D7035A21CA4A}: DhcpNameServer = 192.168.1.1
      O17 - HKLM\System\CCS\Services\Tcpip\..\{8CEDE84F-623C-4A6A-9F42-C2C1692B4956}: DhcpNameServer = 192.168.1.1
      O17 - HKLM\System\CS1\Services\Tcpip\..\{580A4AD6-1F20-44D5-AC9D-D7035A21CA4A}: DhcpNameServer = 192.168.1.1
      O17 - HKLM\System\CS1\Services\Tcpip\..\{8CEDE84F-623C-4A6A-9F42-C2C1692B4956}: DhcpNameServer = 192.168.1.1
      O17 - HKLM\System\CS2\Services\Tcpip\..\{580A4AD6-1F20-44D5-AC9D-D7035A21CA4A}: DhcpNameServer = 192.168.1.1
      O17 - HKLM\System\CS2\Services\Tcpip\..\{8CEDE84F-623C-4A6A-9F42-C2C1692B4956}: DhcpNameServer = 192.168.1.1
      ~ Scan Domain in 00mn 00s

      ---\\ Protocole additionnel (O18)
      O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (...) --
      O18 - Handler: dvd - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (...) --
      O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (...) --
      O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (...) --
      O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (...) --
      O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (...) --
      O18 - Handler: its - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (...) --
      O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (...) --
      O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (...) --
      O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (...) --
      O18 - Handler: mhtml - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (...) --
      O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (...) --
      O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
      O18 - Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll
      O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (...) --
      O18 - Handler: tv - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (...) --
      O18 - Handler: vbscript - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (...) --
      O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
      O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
      O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
      O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (...) --
      O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (...) --
      O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.dll
      ~ Scan Protocole Additionnel in 00mn 00s

      ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
      O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll
      ~ Scan Winlogon in 00mn 00s

      ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
      O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
      ~ Scan SSODL in 00mn 00s

      ---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22)
      O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\Windows\System32\browseui.dll
      ~ Scan STS/SSO in 00mn 00s

      ---\\ Liste des services NT non Microsoft et non désactivés (O23)
      O23 - Service: Andrea ST Filters Service (AESTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (32-bit).) - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_fa807195\aestsrv.exe
      O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
      O23 - Service: HP Health Check Service (HP Health Check Service) . (.Hewlett-Packard - HP Health Check Service.) - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
      O23 - Service: LightScribeService Direct Disc Labeling (LightScribeService) . (.Hewlett-Packard Company - LightScribe Service.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
      O23 - Service: Norton Internet Security (Norton Internet Security) . (...) - C:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSvcHst.exe (.not file.)
      O23 - Service: Recovery Service for Windows (Recovery Service for Windows) . (.Pas de propriétaire - STServices.) - C:\Program Files\SMINST\BLService.exe
      O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Pas de propriétaire - RichVideo Module.) - C:\Program Files\CyberLink\Shared files\RichVideo.exe
      O23 - Service: Audio Service (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_fa807195\STacSV.exe
      ~ Scan Services in 00mn 00s

      ---\\ Enumération Active Desktop & MHTML Editor (O24)
      O24 - Default MHTML Editor: Last - .(...) - (.not file.)
      ~ Scan Desktop Component in 00mn 00s

      ---\\ BootExecute (O34)
      O34 - HKLM BootExecute: (autocheck autochk *) - File not found
      ~ Scan Keys in 00mn 00s

      ---\\ Tâches planifiées en automatique (O39)
      [MD5.5A7E85100ACB28FBA8A81181A06C52D7] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
      [MD5.AE37F6508716D2DD6122744C46686BEC] [APT] [HP Health Check] (.Hewlett-Packard.) -- c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
      [MD5.A43FE35BDBC08D72F04F9D974885D359] [APT] [RecoveryCD] (...) -- C:\Program Files\Hewlett-Packard\HP TCS\RemEngine.exe
      ~ Scan Scheduled Task in 00mn 01s

      ---\\ Composants installés (ActiveSetup Installed Components) (O40)
      O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll
      O40 - ASIC: Internet Explorer - >{26923b43-4d38-484f-9b9e-de460746276c} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\system32\ie4uinit.exe
      O40 - ASIC: Browser Customizations - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} . (.Microsoft Corporation - Personnalisation d'IEAK.) -- C:\Windows\system32\iedkcs32.dll
      O40 - ASIC: Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\regutils.dll
      O40 - ASIC: LightScribe Control Panel - {10880D85-AAD9-4558-ABDC-2AB1552D831F} . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files\Common Files\LightScribe\LSRunOnce.exe
      O40 - ASIC: Microsoft Windows Media Player 11.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll
      O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
      O40 - ASIC: Microsoft Windows Mail 7 - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe
      O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
      O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll
      O40 - ASIC: Windows Desktop Update - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
      O40 - ASIC: Internet Explorer - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\system32\ie4uinit.exe
      O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll
      ~ Scan Active Setup in 00mn 00s

      ---\\ Pilotes lancés au démarrage (O41)
      O41 - Driver: (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
      O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
      O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
      O41 - Driver: (i8042prt) . (.Microsoft Corporation - Pilote de port i8042.) - C:\Windows\System32\DRIVERS\i8042prt.sys
      O41 - Driver: (kbdclass) . (.Microsoft Corporation - Pilote de la classe Clavier.) - C:\Windows\System32\DRIVERS\kbdclass.sys
      O41 - Driver: (kbdhid) . (.Microsoft Corporation - Pilote de filtre clavier HID.) - C:\Windows\System32\DRIVERS\kbdhid.sys
      O41 - Driver: (mouclass) . (.Microsoft Corporation - Pilote de la classe Souris.) - C:\Windows\System32\DRIVERS\mouclass.sys
      O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
      O41 - Driver: (netbt) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
      O41 - Driver: (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
      O41 - Driver: C:\Windows\System32\drivers\pacer.sys (PSched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
      O41 - Driver: (RasAcd) . (.Microsoft Corporation - RAS Automatic Connection Driver.) - C:\Windows\System32\DRIVERS\rasacd.sys
      O41 - Driver: (rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\Windows\System32\DRIVERS\rdbss.sys
      O41 - Driver: (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
      O41 - Driver: (RDPENCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
      O41 - Driver: (RtlProt) . (.Windows (R) Codename Longhorn DDK provider - Realtek Utility I/O Driver.) - C:\Windows\System32\DRIVERS\rtlprot.sys
      O41 - Driver: (SamSs) . (.Windows (R) Codename Longhorn DDK provider - Realtek Utility I/O Driver.) - C:\Windows\System32\DRIVERS\rtlprot.sys
      O41 - Driver: C:\Windows\System32\tcpipcfg.dll (Smb) . (.Microsoft Corporation - SMB Transport driver.) - C:\Windows\System32\DRIVERS\smb.sys
      O41 - Driver: (SRTSP) . (. - .) - C:\Windows\system32\drivers\NIS\1000000.07D\SRTSP.sys (.not file.)
      O41 - Driver: (SRTSPX) . (. - .) - C:\Windows\system32\drivers\NIS\1000000.07D\SRTSPX.sys (.not file.)
      O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
      O41 - Driver: (TermDD) . (.Microsoft Corporation - Terminal Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys
      O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
      O41 - Driver: (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
      ~ Scan Drivers in 00mn 00s

      ---\\ Logiciels installés (O42)
      O42 - Logiciel: AOL Toolbar 5.0 - (.AOL LLC.) [HKLM] -- AOL Toolbar
      O42 - Logiciel: Activation Assistant for the 2007 Microsoft Office suites - (.Microsoft Corporation.) [HKLM] -- Activation Assistant for the 2007 Microsoft Office suites
      O42 - Logiciel: ActiveCheck component for HP Active Support Library - (.Hewlett-Packard.) [HKLM] -- {254C37AA-6B72-4300-84F6-98A82419187E}
      O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
      O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin
      O42 - Logiciel: Adobe Reader 9 - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-A90000000001}
      O42 - Logiciel: Adobe Shockwave Player - (.Adobe Systems, Inc..) [HKLM] -- {AD72CFB4-C2BF-424E-9DF0-C7BAD1F30A11}
      O42 - Logiciel: Atheros Driver Installation Program - (.Atheros.) [HKLM] -- {C3A32068-8AB1-4327-BB16-BED9C6219DC7}
      O42 - Logiciel: CyberLink DVD Suite - (.CyberLink Corp..) [HKLM] -- InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}
      O42 - Logiciel: CyberLink DVD Suite - (.CyberLink Corp..) [HKLM] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}
      O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}
      O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D}
      O42 - Logiciel: ESU for Microsoft Vista - (.Hewlett-Packard.) [HKLM] -- {3877C901-7B90-4727-A639-B6ED2DD59D43}
      O42 - Logiciel: HP Active Support Library - (.Hewlett-Packard.) [HKLM] -- {CE7E3BE0-2DD3-4416-A690-F9E4A99A8CFF}
      O42 - Logiciel: HP Common Access Service Library - (.Hewlett-Packard.) [HKLM] -- {732A3F80-008B-4350-BD58-EC5AE98707B8}
      O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM] -- {57A5AEC1-97FC-474D-92C4-908FCC2253D4}
      O42 - Logiciel: HP DVD Play 3.7 - (.Hewlett-Packard.) [HKLM] -- {45D707E9-F3C4-11D9-A373-0050BAE317E1}
      O42 - Logiciel: HP Help and Support - (.Hewlett-Packard Company.) [HKLM] -- {0054A0F6-00C9-4498-B821-B5C9578F433E}
      O42 - Logiciel: HP Quick Launch Buttons 6.40 M1 - (.Hewlett-Packard.) [HKLM] -- {34D2AB40-150D-475D-AE32-BD23FB5EE355}
      O42 - Logiciel: HP Total Care Advisor - (.Hewlett-Packard.) [HKLM] -- {154A4184-1A3D-4BF9-A5AE-4FA1660445F3}
      O42 - Logiciel: HP Total Care Setup - (.Hewlett-Packard Company.) [HKLM] -- {95A747E0-DF19-46CB-A622-20A0107201BD}
      O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM] -- {47F36D92-E58E-456D-B73C-3382737E4C42}
      O42 - Logiciel: HP User Guides 0138 - (.Hewlett-Packard.) [HKLM] -- {17050C48-16CB-4500-A102-CEAD750CE11E}
      O42 - Logiciel: HP Wireless Assistant - (.Hewlett-Packard.) [HKLM] -- {E5E29403-3D25-40C6-892B-F9FEE2A95585}
      O42 - Logiciel: HPAsset component for HP Active Support Library - (.Hewlett-Packard.) [HKLM] -- {669D4A35-146B-4314-89F1-1AC3D7B88367}
      O42 - Logiciel: HPNetworkAssistant - (.Hewlett-Packard..) [HKLM] -- {228C6B46-64E2-404E-898A-EF0830603EF4}
      O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB953595
      O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB958484
      O42 - Logiciel: IDT Audio - (.IDT.) [HKLM] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}
      O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- HDMI
      O42 - Logiciel: Java(TM) 6 Update 33 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216033FF}
      O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}
      O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243}
      O42 - Logiciel: LightScribe System Software 1.14.17.1 - (.LightScribe.) [HKLM] -- {0E7DBD52-B097-4F2B-A7C7-F105B0D20FDB}
      O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
      O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
      O42 - Logiciel: Malwarebytes Anti-Malware version 1.62.0.1300 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1
      O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 SP1
      O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
      O42 - Logiciel: Microsoft Office Excel MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0016-040C-0000-0000000FF1CE}
      O42 - Logiciel: Microsoft Office Home and Student 2007 - (.Microsoft Corporation.) [HKLM] -- HOMESTUDENTR
      O42 - Logiciel: Microsoft Office Home and Student 2007 - (.Microsoft Corporation.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}
      O42 - Logiciel: Microsoft Office OneNote MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-00A1-040C-0000-0000000FF1CE}
      O42 - Logiciel: Microsoft Office PowerPoint MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0018-040C-0000-0000000FF1CE}
      O42 - Logiciel: Microsoft Office PowerPoint Viewer 2007 (French) - (.Microsoft Corporation.) [HKLM] -- {95120000-00AF-040C-0000-0000000FF1CE}
      O42 - Logiciel: Microsoft Office Proof (Arabic) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0401-0000-0000000FF1CE}
      O42 - Logiciel: Microsoft Office Proof (Dutch) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0413-0000-0000000FF1CE}
      O42 - Logiciel: Microsoft Office Proof (English) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0409-0000-0000000FF1CE}
      O42 - Logiciel: Microsoft Office Proof (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-040C-0000-0000000FF1CE}
      O42 - Logiciel: Microsoft Office Proof (German) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0407-0000-0000000FF1CE}
      O42 - Logiciel: Microsoft Office Proof (Spanish) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0C0A-0000-0000000FF1CE}
      O42 - Logiciel: Microsoft Office Proofing (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-002C-040C-0000-0000000FF1CE}
      O42 - Logiciel: Microsoft Office Shared MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-006E-040C-0000-0000000FF1CE}
      O42 - Logiciel: Microsoft Office Word MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001B-040C-0000-0000000FF1CE}
      O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {7299052b-02a4-4627-81f2-1818da5d550d}
      O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
      O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {3B160861-7250-451E-B5EE-8B92BF30A710}
      O42 - Logiciel: Module de compatibilité pour Microsoft Office System 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0020-040C-0000-0000000FF1CE}
      O42 - Logiciel: Mozilla Firefox 14.0.1 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 14.0.1 (x86 fr)
      O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService
      O42 - Logiciel: My HP Games - (.WildTangent.) [HKLM] -- WildTangent hp Master Uninstall
      O42 - Logiciel: NETGEAR WG111v3 wireless USB 2.0 adapter - (.Nom de votre société.) [HKLM] -- InstallShield_{5396FBD8-8BD7-47F9-92AE-F62F13D5A11D}
      O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}
      O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM] -- {40BF1E83-20EB-11D8-97C5-0009C5020658}
      O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM] -- InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}
      O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM] -- {CB099890-1D5F-11D5-9EA9-0050BAE317E1}
      O42 - Logiciel: Realtek 8169 8168 8101E 8102E Ethernet Driver - (.Realtek.) [HKLM] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
      O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM] -- {DC24971E-1946-445D-8A82-CE685433FA7D}
      O42 - Logiciel: SPORE Creature Creator Trial Edition - (.Electronic Arts.) [HKLM] -- {ECEE0279-785F-4CB3-9F28-E69813234BF8}
      O42 - Logiciel: Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB2416473
      O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics.) [HKLM] -- SynTPDeinstKey
      O42 - Logiciel: Update for Microsoft .NET Framework 3.5 SP1 (KB963707) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707
      O42 - Logiciel: Update for Office 2007 (KB934528) - (.Pas de propriétaire.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{2B939677-2FFD-48F6-9075-7BF48CB87C80}
      O42 - Logiciel: avast! Free Antivirus v7.0.1456.0 - (.AVAST Software.) [HKLM] -- avast
      O42 - Logiciel: muvee Reveal - (.muvee Technologies Pte Ltd.) [HKLM] -- {E8020EC7-5DD8-80C9-7237-7B2E9BDA8CC6}

      ---\\ HKCU & HKLM Software Keys
      [HKCU\Software\AOL]
      [HKCU\Software\AppDataLow\Software\Microsoft]
      [HKCU\Software\AppDataLow\Software]
      [HKCU\Software\AppDataLow]
      [HKCU\Software\Avast Software]
      [HKCU\Software\Classes]
      [HKCU\Software\Clients]
      [HKCU\Software\CyberLink]
      [HKCU\Software\Hewlett-Packard]
      [HKCU\Software\HookNetwork]
      [HKCU\Software\Intel]
      [HKCU\Software\JavaSoft]
      [HKCU\Software\LightScribe]
      [HKCU\Software\Macromedia]
      [HKCU\Software\MainConcept (Muvee)]
      [HKCU\Software\MainConcept (Muvee2)]
      [HKCU\Software\Malwarebytes' Anti-Malware]
      [HKCU\Software\Netscape]
      [HKCU\Software\Norton]
      [HKCU\Software\Policies]
      [HKCU\Software\Synaptics]
      [HKCU\Software\Trolltech]
      [HKLM\Software\AVAST Software]
      [HKLM\Software\Adobe]
      [HKLM\Software\AdwCleaner]
      [HKLM\Software\America Online]
      [HKLM\Software\Atheros]
      [HKLM\Software\Caphyon]
      [HKLM\Software\Classes]
      [HKLM\Software\Clients]
      [HKLM\Software\Cyberlink]
      [HKLM\Software\Debug]
      [HKLM\Software\EasyBits]
      [HKLM\Software\Electronic Arts]
      [HKLM\Software\Google]
      [HKLM\Software\HPQ]
      [HKLM\Software\HP]
      [HKLM\Software\Hewlett-Packard Company]
      [HKLM\Software\Hewlett-Packard]
      [HKLM\Software\IDT]
      [HKLM\Software\InstalledOptions]
      [HKLM\Software\Intel]
      [HKLM\Software\JavaSoft]
      [HKLM\Software\JreMetrics]
      [HKLM\Software\LabelPrint_Upgrade]
      [HKLM\Software\LightScribe]
      [HKLM\Software\Macromedia]
      [HKLM\Software\Malwarebytes' Anti-Malware]
      [HKLM\Software\MimarSinan]
      [HKLM\Software\MozillaPlugins]
      [HKLM\Software\Mozilla]
      [HKLM\Software\NETGEAR]
      [HKLM\Software\ODBC]
      [HKLM\Software\P2G_Upgrade]
      [HKLM\Software\PDR_Upgrade]
      [HKLM\Software\Policies]
      [HKLM\Software\Product_Upgrade]
      [HKLM\Software\RTLSetup]
      [HKLM\Software\Realtek Semiconductor Corp.]
      [HKLM\Software\Realtek]
      [HKLM\Software\RegisteredApplications]
      [HKLM\Software\RtWlan]
      [HKLM\Software\Set8187B]
      [HKLM\Software\Symantec]
      [HKLM\Software\Synaptics]
      [HKLM\Software\TrendMicro]
      [HKLM\Software\WOW6432Node]
      [HKLM\Software\WildTangent]
      [HKLM\Software\Windows]
      [HKLM\Software\mozilla.org]
      ~ Scan Softwares in 00mn 00s

      ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
      O43 - CFD: 25/02/2009 - 04:56:50 - [12,096] ----D C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
      O43 - CFD: 25/02/2009 - 04:59:39 - [225,396] ----D C:\Program Files\Adobe
      O43 - CFD: 25/02/2009 - 05:09:38 - [2,820] ----D C:\Program Files\AOL
      O43 - CFD: 28/07/2012 - 09:49:15 - [1,064] ----D C:\Program Files\Atheros
      O43 - CFD: 28/07/2012 - 10:49:23 - [236,759] ----D C:\Program Files\AVAST Software
      O43 - CFD: 28/07/2012 - 11:41:28 - [441,899] ----D C:\Program Files\Common Files
      O43 - CFD: 28/07/2012 - 10:11:00 - [966,079] ----D C:\Program Files\CyberLink
      O43 - CFD: 25/02/2009 - 05:09:07 - [72,538] ----D C:\Program Files\EasyBits For Kids
      O43 - CFD: 28/07/2012 - 10:36:02 - [0] R---D C:\Program Files\Fichiers communs
      O43 - CFD: 28/07/2012 - 09:58:53 - [316,504] ----D C:\Program Files\Hewlett-Packard
      O43 - CFD: 25/02/2009 - 03:58:19 - [0] ----D C:\Program Files\Hewlett-Packard Company
      O43 - CFD: 28/07/2012 - 10:00:14 - [90,674] ----D C:\Program Files\HP
      O43 - CFD: 25/02/2009 - 04:58:13 - [366,220] ----D C:\Program Files\HP Games
      O43 - CFD: 28/07/2012 - 09:47:25 - [34,124] ----D C:\Program Files\IDT
      O43 - CFD: 28/07/2012 - 11:18:04 - [171,027] --H-D C:\Program Files\InstallShield Installation Information
      O43 - CFD: 28/07/2012 - 09:50:29 - [0,062] ----D C:\Program Files\Intel
      O43 - CFD: 28/07/2012 - 17:25:12 - [1,487] ----D C:\Program Files\Internet Explorer
      O43 - CFD: 28/07/2012 - 11:38:24 - [84,573] ----D C:\Program Files\Java
      O43 - CFD: 28/07/2012 - 16:12:17 - [11,705] ----D C:\Program Files\Malwarebytes' Anti-Malware
      O43 - CFD: 02/11/2006 - 14:35:51 - [44,260] ----D C:\Program Files\Microsoft Games
      O43 - CFD: 25/02/2009 - 04:55:59 - [330,558] ----D C:\Program Files\Microsoft Office
      O43 - CFD: 25/02/2009 - 04:56:04 - [138,235] ----D C:\Program Files\Microsoft Works
      O43 - CFD: 25/02/2009 - 04:55:48 - [7,774] ----D C:\Program Files\Microsoft.NET
      O43 - CFD: 28/07/2012 - 17:23:41 - [19,522] ----D C:\Program Files\Movie Maker
      O43 - CFD: 28/07/2012 - 19:45:06 - [37,711] ----D C:\Program Files\Mozilla Firefox
      O43 - CFD: 28/07/2012 - 19:46:02 - [0,195] ----D C:\Program Files\Mozilla Maintenance Service
      O43 - CFD: 02/11/2006 - 14:35:51 - [0,025] ----D C:\Program Files\MSBuild
      O43 - CFD: 28/07/2012 - 12:48:45 - [0] ----D C:\Program Files\MSXML 4.0
      O43 - CFD: 28/07/2012 - 10:13:44 - [56,012] ----D C:\Program Files\muvee Technologies
      O43 - CFD: 28/07/2012 - 11:12:39 - [9,295] ----D C:\Program Files\NETGEAR
      O43 - CFD: 28/07/2012 - 10:47:05 - [17,895] R---D C:\Program Files\Online Services
      O43 - CFD: 28/07/2012 - 09:47:36 - [2,400] ----D C:\Program Files\Realtek
      O43 - CFD: 02/11/2006 - 14:35:51 - [36,053] ----D C:\Program Files\Reference Assemblies
      O43 - CFD: 28/07/2012 - 10:53:24 - [24,103] ----D C:\Program Files\SMINST
      O43 - CFD: 28/07/2012 - 09:43:24 - [16,021] ----D C:\Program Files\Synaptics
      O43 - CFD: 02/11/2006 - 14:58:18 - [0] --H-D C:\Program Files\Uninstall Information
      O43 - CFD: 25/02/2009 - 11:50:54 - [0,970] ----D C:\Program Files\Windows Calendar
      O43 - CFD: 25/02/2009 - 11:50:53 - [2,633] ----D C:\Program Files\Windows Collaboration
      O43 - CFD: 25/02/2009 - 11:50:53 - [4,284] ----D C:\Program Files\Windows Defender
      O43 - CFD: 28/07/2012 - 17:24:37 - [8,526] ----D C:\Program Files\Windows Mail
      O43 - CFD: 28/07/2012 - 17:26:00 - [4,287] ----D C:\Program Files\Windows Media Player
      O43 - CFD: 28/07/2012 - 10:36:02 - [7,577] ----D C:\Program Files\Windows NT
      O43 - CFD: 25/02/2009 - 11:50:53 - [7,786] ----D C:\Program Files\Windows Photo Gallery
      O43 - CFD: 28/07/2012 - 10:47:00 - [10,107] ----D C:\Program Files\Windows Sidebar
      O43 - CFD: 29/07/2012 - 08:14:01 - [12,787] ----D C:\Program Files\ZHPDiag
      O43 - CFD: 25/02/2009 - 04:59:43 - [4,382] ----D C:\Program Files\Common Files\Adobe
      O43 - CFD: 25/02/2009 - 04:55:58 - [0,089] ----D C:\Program Files\Common Files\DESIGNER
      O43 - CFD: 28/07/2012 - 10:00:06 - [4,658] ----D C:\Program Files\Common Files\InstallShield
      O43 - CFD: 28/07/2012 - 11:41:28 - [1,201] ----D C:\Program Files\Common Files\Java
      O43 - CFD: 28/07/2012 - 09:59:28 - [27,847] ----D C:\Program Files\Common Files\LightScribe
      O43 - CFD: 25/02/2009 - 04:56:03 - [230,410] ----D C:\Program Files\Common Files\microsoft shared
      O43 - CFD: 28/07/2012 - 10:14:01 - [93,577] ----D C:\Program Files\Common Files\muvee Technologies
      O43 - CFD: 02/11/2006 - 13:18:33 - [0,003] ----D C:\Program Files\Common Files\Services
      O43 - CFD: 02/11/2006 - 13:18:33 - [39,198] ----D C:\Program Files\Common Files\SpeechEngines
      O43 - CFD: 25/02/2009 - 11:50:53 - [40,535] ----D C:\Program Files\Common Files\System
      O43 - CFD: 25/02/2009 - 04:59:57 - [0,001] ----D C:\ProgramData\Adobe
      O43 - CFD: 25/02/2009 - 05:09:38 - [12,993] ----D C:\ProgramData\AOL
      O43 - CFD: 02/11/2006 - 14:59:44 - [0] --H-D C:\ProgramData\Application Data
      O43 - CFD: 28/07/2012 - 09:49:43 - [0,008] ----D C:\ProgramData\Atheros
      O43 - CFD: 28/07/2012 - 10:49:23 - [23,657] ----D C:\ProgramData\AVAST Software
      O43 - CFD: 28/07/2012 - 10:36:01 - [0] --H-D C:\ProgramData\Bureau
      O43 - CFD: 28/07/2012 - 10:03:13 - [0,036] ----D C:\ProgramData\CyberLink
      O43 - CFD: 02/11/2006 - 14:59:44 - [0] --H-D C:\ProgramData\Desktop
      O43 - CFD: 02/11/2006 - 14:59:44 - [0] --H-D C:\ProgramData\Documents
      O43 - CFD: 28/07/2012 - 10:36:01 - [0] --H-D C:\ProgramData\Favoris
      O43 - CFD: 02/11/2006 - 14:59:44 - [0] --H-D C:\ProgramData\Favorites
      O43 - CFD: 28/07/2012 - 10:15:31 - [34,761] ----D C:\ProgramData\Hewlett-Packard
      O43 - CFD: 28/07/2012 - 16:11:51 - [6,432] ----D C:\ProgramData\Malwarebytes
      O43 - CFD: 28/07/2012 - 10:36:01 - [0] --H-D C:\ProgramData\Menu Démarrer
      O43 - CFD: 25/02/2009 - 04:55:48 - [853,350] -S--D C:\ProgramData\Microsoft
      O43 - CFD: 25/02/2009 - 04:57:05 - [0,054] ----D C:\ProgramData\Microsoft Help
      O43 - CFD: 28/07/2012 - 10:36:02 - [0] --H-D C:\ProgramData\Modèles
      O43 - CFD: 28/07/2012 - 11:57:35 - [0,000] ----D C:\ProgramData\Mozilla
      O43 - CFD: 28/07/2012 - 10:58:20 - [0,000] ----D C:\ProgramData\Norton
      O43 - CFD: 25/02/2009 - 03:59:57 - [3,810] ----D C:\ProgramData\NortonInstaller
      O43 - CFD: 02/11/2006 - 14:59:44 - [0] --H-D C:\ProgramData\Start Menu
      O43 - CFD: 28/07/2012 - 11:42:03 - [0,000] ----D C:\ProgramData\Sun
      O43 - CFD: 28/07/2012 - 10:10:30 - [0,465] ----D C:\ProgramData\Temp
      O43 - CFD: 02/11/2006 - 14:59:44 - [0] --H-D C:\ProgramData\Templates
      O43 - CFD: 25/02/2009 - 04:58:45 - [1987,947] ----D C:\ProgramData\WildTangent
      O43 - CFD: 25/02/2009 - 04:56:50 - [6,585] ----D C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}
      O43 - CFD: 29/07/2012 - 04:34:09 - [0,000] ----D C:\Users\béranger\AppData\Roaming\Ad-Aware Antivirus
      O43 - CFD: 28/07/2012 - 10:04:09 - [1,425] ----D C:\Users\béranger\AppData\Roaming\Adobe
      O43 - CFD: 28/07/2012 - 10:55:15 - [0,289] ----D C:\Users\béranger\AppData\Roaming\Hewlett-Packard
      O43 - CFD: 28/07/2012 - 10:47:15 - [0,041] ----D C:\Users\béranger\AppData\Roaming\HP TCS
      O43 - CFD: 28/07/2012 - 10:53:36 - [0] ----D C:\Users\béranger\AppData\Roaming\Identities
      O43 - CFD: 28/07/2012 - 10:04:17 - [0,001] ----D C:\Users\béranger\AppData\Roaming\Macromedia
      O43 - CFD: 28/07/2012 - 16:12:49 - [0,004] ----D C:\Users\béranger\AppData\Roaming\Malwarebytes
      O43 - CFD: 29/07/2012 - 06:36:48 - [0,162] -S--D C:\Users\béranger\AppData\Roaming\Microsoft
      O43 - CFD: 28/07/2012 - 19:46:37 - [13,161] ----D C:\Users\béranger\AppData\Roaming\Mozilla
      O43 - CFD: 28/07/2012 - 10:03:18 - [0,014] ----D C:\Users\béranger\AppData\Local\AOL
      O43 - CFD: 28/07/2012 - 10:39:42 - [0] ----D C:\Users\béranger\AppData\Local\Application Data
      O43 - CFD: 28/07/2012 - 10:55:20 - [0,002] ----D C:\Users\béranger\AppData\Local\Hewlett-Packard
      O43 - CFD: 28/07/2012 - 10:39:42 - [0] ----D C:\Users\béranger\AppData\Local\Historique
      O43 - CFD: 29/07/2012 - 04:29:48 - [0] ----D C:\Users\béranger\AppData\Local\Macromedia
      O43 - CFD: 29/07/2012 - 06:32:24 - [86,365] ----D C:\Users\béranger\AppData\Local\Microsoft
      O43 - CFD: 28/07/2012 - 11:58:53 - [83,379] ----D C:\Users\béranger\AppData\Local\Mozilla
      O43 - CFD: 29/07/2012 - 08:11:49 - [2,106] ----D C:\Users\béranger\AppData\Local\Temp
      O43 - CFD: 28/07/2012 - 10:39:42 - [0] ----D C:\Users\béranger\AppData\Local\Temporary Internet Files
      O43 - CFD: 29/07/2012 - 07:13:14 - [0,000] ----D C:\Users\béranger\AppData\Local\VirtualStore
      O43 - CFD: 21/01/2008 - 04:56:27 - [0,015] R---D C:\Users\béranger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
      O43 - CFD: 28/07/2012 - 10:53:51 - [0,000] R---D C:\Users\béranger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
      O43 - CFD: 28/07/2012 - 10:09:47 - [0,005] ----D C:\Users\béranger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink DVD Suite
      O43 - CFD: 28/07/2012 - 10:12:23 - [0,001] ----D C:\Users\béranger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink YouCam
      O43 - CFD: 21/01/2008 - 04:56:27 - [0,001] R---D C:\Users\béranger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
      O43 - CFD: 28/07/2012 - 18:17:33 - [0] R---D C:\Users\béranger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
      ~ Scan Program Folder in 00mn 03s

      ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
      O44 - LFC:[MD5.F25654ED5E4DC214DE696F7587170C00] - 29/07/2012 - 07:10:43 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1214181]
      O44 - LFC:[MD5.53FAA485C0727ED6457174B86A4DED51] - 29/07/2012 - 07:04:30 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1470810]
      O44 - LFC:[MD5.F48ADFCDC19398CE13F5C2F6B189D76C] - 29/07/2012 - 07:04:30 ---A- . (...) -- C:\Windows\System32\perfc009.dat [101250]
      O44 - LFC:[MD5.CBF85AC38C7B45785A28ACC349D25630] - 29/07/2012 - 07:04:30 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [123556]
      O44 - LFC:[MD5.50DC0F0BB0304B2A2F7B7B74BA267E63] - 29/07/2012 - 07:04:30 ---A- . (...) -- C:\Windows\System32\perfh009.dat [587178]
      O44 - LFC:[MD5.5E0187C69B2CF8C47197CED290F5B1F2] - 29/07/2012 - 07:04:30 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [669566]
      O44 - LFC:[MD5.4889855CFB4DD478B469383F2859E050] - 29/07/2012 - 06:58:03 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
      O44 - LFC:[MD5.EE84CD8E9F340838F5792CC247BC610E] - 29/07/2012 - 03:44:03 ---A- . (...) -- C:\Windows\ntbtlog.txt [289668]
      O44 - LFC:[MD5.4489FBF51D5762DA1503081A7D42768E] - 29/07/2012 - 03:26:31 ---A- . (...) -- C:\Windows\PFRO.log [182674]
      O44 - LFC:[MD5.852BC11C23B7104443FC74EC7AD79158] - 28/07/2012 - 18:58:59 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\Windows\System32\FlashPlayerApp.exe [426184]
      O44 - LFC:[MD5.A9D264526FBA70238969FF29AE3723EF] - 28/07/2012 - 18:58:59 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [70344]
      O44 - LFC:[MD5.2A5F6EF8F6988BD102DFAC63AC8F86CA] - 28/07/2012 - 16:33:37 ---A- . (...) -- C:\Windows\System32\FNTCACHE.DAT [304672]
      O44 - LFC:[MD5.0F21CE32F5F52E50BC6358BD46D0CFCA] - 28/07/2012 - 13:43:33 ---A- . (.Adobe Systems Incorporated - Windows NT OpenType/Type 1 Font Driver.) -- C:\Windows\System32\atmfd.dll [292864]
      O44 - LFC:[MD5.A3B29010868195E0DEB45DB33C369DBB] - 28/07/2012 - 13:43:32 ---A- . (.Adobe Systems - Windows NT OpenType/Type 1 API Library..) -- C:\Windows\System32\atmlib.dll [34304]
      O44 - LFC:[MD5.F6F4AA0FC0C4BECB48089FF70553B545] - 28/07/2012 - 13:41:32 ---A- . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm [62464]
      O44 - LFC:[MD5.D0D6D1647B955D0E1F9B01DB2B22992A] - 28/07/2012 - 11:51:05 ---A- . (...) -- C:\Windows\msxml4-KB954430-enu.LOG [282836]
      O44 - LFC:[MD5.40643872257B51E9983FB22F8AC1B36C] - 28/07/2012 - 11:49:39 ---A- . (...) -- C:\Windows\msxml4-KB973688-enu.LOG [288074]
      O44 - LFC:[MD5.0BA29E7DAF836AB1D9AA69164DC78560] - 28/07/2012 - 11:25:57 ---A- . (.Radius Inc. - Codec Cinepak®.) -- C:\Windows\System32\iccvid.dll [81920]
      O44 - LFC:[MD5.3976185DCE284919E39F088379476569] - 28/07/2012 - 10:38:43 ---A- . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Windows\System32\java.exe [149296]
      O44 - LFC:[MD5.26C3AADE5BF597071050E47CEDE163A7] - 28/07/2012 - 10:38:43 ---A- . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Windows\System32\javaw.exe [149296]
      O44 - LFC:[MD5.F6E791CA640A891D7E50CE055B670BE0] - 28/07/2012 - 10:38:43 ---A- . (.Sun Microsystems, Inc. - Java(TM) Web Start Launcher.) -- C:\Windows\System32\javaws.exe [157488]
      O44 - LFC:[MD5.4EB1BF40E5CF06AC0C0CA3606B7588D7] - 28/07/2012 - 10:38:43 ---A- . (.Sun Microsystems, Inc. - NPRuntime Script Plug-in Library for Java(T.) -- C:\Windows\System32\npdeployJava1.dll [476976]
      O44 - LFC:[MD5.A16BBACE82E153732004184E3D91C5F8] - 28/07/2012 - 10:38:42 ---A- . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Windows\System32\deployJava1.dll [472880]
      O44 - LFC:[MD5.C4DE6D69EE4D83081E693872D7D83746] - 28/07/2012 - 10:22:36 ---A- . (...) -- C:\Windows\setupact.log [171771]
      O44 - LFC:[MD5.01C47C2ECED034EF6F8C1552A97CFF00] - 28/07/2012 - 10:00:02 ---A- . (...) -- C:\Windows\System32\config.nt [2577]
      O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 28/07/2012 - 09:42:39 RSHA- . (...) -- C:\Windows\System32\Drivers\103C_HP_cNB_Presario CQ61 Notebook PC_Y5335KV_0U_QCNF93200CV_E511735-051_4A_I3069_SQuanta_V21.10_F.08_T090716_WV2-1_L40C_M3003_J250_7Int
      O44 - LFC:[MD5.9008608EFAF59F9F1B5146AEED955469] - 28/07/2012 - 09:34:03 ---A- . (...) -- C:\Windows\System32\license.rtf [65328]
      O44 - LFC:[MD5.24370460A2E158F80EB904AAEA87DFD6] - 28/07/2012 - 09:19:39 ---A- . (...) -- C:\Windows\DtcInstall.log [5506]
      O44 - LFC:[MD5.E1822DA78C37D5702FFB84B4689E2381] - 28/07/2012 - 08:50:29 ---A- . (.Windows XP Bundled build C-Centric Single U - CSVer.) -- C:\Windows\System32\CSVer.dll [53248]
      O44 - LFC:[MD5.02D34AC487DF3DA4E3F01874E61EB619] - 28/07/2012 - 08:49:15 ---A- . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\Drivers\athr.sys [1093120]
      O44 - LFC:[MD5.5163F804256DEB8CF1EF64B780A18CAA] - 28/07/2012 - 08:47:38 ---A- . (.Realtek Corporation - Realtek 8101E/8168/8169 NDIS6 32-bit Driver.) -- C:\Windows\System32\Drivers\Rtlh86.sys [138240]
      O44 - LFC:[MD5.92388215D915719E4C6A589F39AD94A2] - 28/07/2012 - 08:47:38 ---A- . (.Realtek Semiconductor Corporation - RTK Property Page.) -- C:\
      0
      1. Contributeur sécurité
        bonjour

        Téléchargez et enregistrez RogueKiller sur le bureau
        https://www.luanagames.com/index.fr.html (by tigzy)

        Quittez tous les programmes
        Lancez RogueKiller.exe.
        Attendez que le Prescan ait fini ...
        Cliquez sur Scan. Cliquez sur Rapport et copiez-collez le contenu du notepad

        * Si le programme a été bloqué, ne pas hésiter a essayer plusieurs fois
        0
        1. bonjour

          RogueKiller V7.6.4 [17/07/2012] par Tigzy
          mail: tigzyRK<at>gmail<dot>com
          Remontees: http://www.sur-la-toile.com/discussion-193725-1-BRogueKillerD-Remontees.html
          Blog: http://tigzyrk.blogspot.com

          Systeme d'exploitation: Windows Vista (6.0.6001 Service Pack 1) 32 bits version
          Demarrage : Mode normal
          Utilisateur: béranger [Droits d'admin]
          Mode: Recherche -- Date: 29/07/2012 12:09:05

          ¤¤¤ Processus malicieux: 0 ¤¤¤

          ¤¤¤ Entrees de registre: 2 ¤¤¤
          [HJ] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> FOUND
          [HJ] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND

          ¤¤¤ Fichiers / Dossiers particuliers: ¤¤¤

          ¤¤¤ Driver: [CHARGE] ¤¤¤

          ¤¤¤ Infection : ¤¤¤

          ¤¤¤ Fichier HOSTS: ¤¤¤
          127.0.0.1 localhost
          ::1 localhost

          ¤¤¤ MBR Verif: ¤¤¤

          +++++ PhysicalDrive0: ST9250315AS ATA Device +++++
          --- User ---
          [MBR] 624a208fa7b5858ea31c35e0828b6eef
          [BSP] c01581fcb0971ed56bc3ec15b2a0ef51 : Toshiba tatooed MBR Code
          Partition table:
          0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 228375 Mo
          1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 467714048 | Size: 10096 Mo
          User = LL1 ... OK!
          User = LL2 ... OK!

          Termine : << RKreport[1].txt >>
          RKreport[1].txt
          0
          1. Contributeur sécurité
            ok

            1)
            relance roguekiller
            option suppression

            poste le rapport stp

            ................

            2)

            Rend toi sur http://pjjoint.malekal.com/

            Clique sur "Parcourir "

            Sélectionne le rapport ZHPdiag.txt qui se trouve sur ton bureau

            Clique ensuite sur "Envoyer le fichier " et copie/colle le lien dans ton prochain message
            0
            1. merci

              je n'ai pas encore fermé roguekiller je fais quoi des 2 elements qu'il a trouvé je les supprime avant de fermer?
              0
              1. Contributeur sécurité
                oui
                0
            2. RogueKiller V7.6.4 [17/07/2012] par Tigzy
              mail: tigzyRK<at>gmail<dot>com
              Remontees: http://www.sur-la-toile.com/discussion-193725-1-BRogueKillerD-Remontees.html
              Blog: http://tigzyrk.blogspot.com

              Systeme d'exploitation: Windows Vista (6.0.6001 Service Pack 1) 32 bits version
              Demarrage : Mode normal
              Utilisateur: béranger [Droits d'admin]
              Mode: Recherche -- Date: 29/07/2012 12:44:51

              ¤¤¤ Processus malicieux: 0 ¤¤¤

              ¤¤¤ Entrees de registre: 0 ¤¤¤

              ¤¤¤ Fichiers / Dossiers particuliers: ¤¤¤

              ¤¤¤ Driver: [CHARGE] ¤¤¤

              ¤¤¤ Infection : ¤¤¤

              ¤¤¤ Fichier HOSTS: ¤¤¤
              127.0.0.1 localhost
              ::1 localhost

              ¤¤¤ MBR Verif: ¤¤¤

              +++++ PhysicalDrive0: ST9250315AS ATA Device +++++
              --- User ---
              [MBR] 624a208fa7b5858ea31c35e0828b6eef
              [BSP] c01581fcb0971ed56bc3ec15b2a0ef51 : Toshiba tatooed MBR Code
              Partition table:
              0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 228375 Mo
              1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 467714048 | Size: 10096 Mo
              User = LL1 ... OK!
              User = LL2 ... OK!

              Termine : << RKreport[3].txt >>
              RKreport[1].txt ; RKreport[2].txt ; RKreport[3].txt
              0
              1. Je crois que le problème avait été réglé hier mais je n'avais pas redémarré l'ordinateur après avoir fait la réparation.

                ce matin en l'allumant j'ai plusieurs fenêtres publicitaire qui sont apparus au début, et la connexion internet était très lente c'est pour ça j'ai cru que j'avais encore un virus, mais en fait la connexion internet est revenu normal après la mise a jour de netgear et j'ai plus eu de fenêtre publicitaire.

                merci
                0
                1. Contributeur sécurité
                  ok

                  c est toi qui voit mais ce qui est sur , c'est qu'il faut mettre à jour ton pc !!

                  @+
                  0