Lenteur pc saisie de texte - fenêtre pub intempestive [Résolu/Fermé]

Signaler
Messages postés
6
Date d'inscription
mercredi 20 février 2013
Statut
Membre
Dernière intervention
20 février 2013
-
Messages postés
180117
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
4 octobre 2020
-
Bonjour,

Mon PC est anormalement lent lors de saisie de texte sous un "éditeur par exemple seulement lorsque je suis connecté à internet. J'ai repéré le malware Boxore il y a quelques jours et j'ai tenté de faire des opérations par moi-même
Mon rapport ZHPDIAG ci-dessous.
Boxore a été désinstallé des programmes
J'ai fait un check adwcleaner plus lancement mbma qui me dit que tout est OK dans la base de registre.

Je ne sais plus quoi faire.

Merci d'avance

Rapport de ZHPDiag v1.3.5.92 par Nicolas Coolman, Update du 17/02/2013
Run by Philippe at 20/02/2013 08:26:20
State : Nouvelle version disponible
High Elevated Privileges : OK
UAC : Deactivate by user


---\\ Web Browser
MSIE: Internet Explorer v9.0.8112.16421
GCIE: Google Chrome v24.0.1312.57 (Defaut)

---\\ Windows Product Information
~ Langage: Français
Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601)
Windows Server License Manager Script : OK
~ Windows(R) 7, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : 2BT4J
Windows License : OK
~ Windows Remaining Initializations Number : 3
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ System Information
~ Processor: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 8089 MB (68% free)
System Restore: Activé (Enable)
System drive C: has 835 GB (92%) free of 906 GB

---\\ Logged in mode
~ Computer Name: PHILIPPE-PC
~ User Name: Philippe
~ All Users Names: UpdatusUser, Philippe, Administrateur,
~ Unselected Option: O45,O61,O62,O65,O66,O80,O82,O89
Logged in as Administrator

---\\ Environnement Variables
~ System Unit : C:\
~ %AppData% : C:\Users\Philippe\AppData\Roaming\
~ %Desktop% : C:\Users\Philippe\Desktop\
~ %Favorites% : C:\Users\Philippe\Favorites\
~ %LocalAppData% : C:\Users\Philippe\AppData\Local\
~ %StartMenu% : C:\Users\Philippe\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 835 Go of 906 Go)
D:\ Hard drive, Flash drive, Thumb drive (Free 875 Go of 932 Go)
E:\ CD-ROM drive (Not Inserted)
F:\ CD-ROM drive (Not Inserted)



---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Scan Security Center in 00mn 00s



---\\ Recherche particulière de fichiers génériques
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2011 - 07:19:30.) -- C:\Windows\Explorer.exe [2871808]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:39:52.) -- C:\Windows\System32\Wininit.exe [129024]
[MD5.435E9C764E1EF70058580996452BE6A2] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.09/01/2013 - 02:12:03.) -- C:\Windows\System32\wininet.dll [1392128]
[MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.21/11/2010 - 04:24:29.) -- C:\Windows\System32\Winlogon.exe [390656]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) (.21/11/2010 - 04:24:16.) -- C:\Windows\System32\sppcomapi.dll [232448]
[MD5.1C7857B62DE5994A75B054A9FD4C3825] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.28/12/2011 - 04:59:24.) -- C:\Windows\system32\Drivers\AFD.sys [498688]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.21/11/2010 - 04:23:47.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.21/11/2010 - 04:24:32.) -- C:\Windows\system32\Drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.21/11/2010 - 04:23:47.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 01:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224]
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:40:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.21/11/2010 - 04:23:51.) -- C:\Windows\system32\Drivers\netBT.sys [261632]
[MD5.E453ACF4E7D44E5530B5D5F2B9CA8563] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.31/08/2012 - 19:19:35.) -- C:\Windows\system32\Drivers\ntfs.sys [1659760]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 01:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.21/11/2010 - 04:24:33.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 01:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184]
[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.21/11/2010 - 04:24:32.) -- C:\Windows\system32\Drivers\tdx.sys [119296]
[MD5.DF8126BD41180351A093A3AD2FC8903B] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.25/02/2011 - 07:25:38.) -- C:\Windows\system32\Drivers\volsnap.sys [296320]
~ Scan Generic Processes in 00mn 00s



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 1/246
~ Mes musiques (My Musics) : 1/554
~ Mes Videos (My Videos) : 1/4
~ Mes Favoris (My Favorites) : 1/14
~ Mes Documents (My Documents) : 1/144
~ Mon Bureau (My Desktop) : 1/10508
~ Menu demarrer (Programs) : 1/31
~ Scan Hidden Files in 00mn 06s



---\\ Processus lancés
[MD5.083649EF692A066880C9326020915AFE] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [4297136] [PID.3788]
[MD5.FF4F0A9F049A5E5FADF0FE4DD0E63D63] - (.Samsung Electronics Co., Ltd. - MovieColorEnhancer.exe.) -- C:\Program Files (x86)\Samsung\Easy Settings\MovieColorEnhancer.exe [784264] [PID.1520]
[MD5.74422E42099FDA6E206E0DA0112B3A8F] - (.Samsung Electronics Co., Ltd. - Smart Setting Program.) -- C:\Program Files (x86)\Samsung\Easy Settings\SmartSetting.exe [2277256] [PID.3288]
[MD5.5AB7CCCEB94C3C9ECE35142CCC527B0D] - (.Samsung Electronics - Easy Speed Up Manager.) -- C:\Program Files (x86)\Samsung\Easy Settings\EasySpeedUpManager.exe [1640328] [PID.3724]
[MD5.B00F98FF6FE8682FF941BEB2559BF191] - (.CyberLink - YouCam Mirage.) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [136488] [PID.2044]
[MD5.784C46078733CE7915B0810E1DD2FB34] - (.Samsung Electronics Co., Ltd. - Easy Display Manager.) -- C:\Program Files (x86)\Samsung\Easy Settings\dmhkcore.exe [1112656] [PID.1280]
[MD5.39C715AC06E9FF8B2A45DB96487A310C] - (.SEC - Samsung Recovery Solution 5.) -- C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe [4467280] [PID.4708]
[MD5.90B142C67907BCC2A5D2CDFDC008BE8E] - (.cyberlink - brs.) -- C:\Program Files (x86)\Cyberlink\Shared files\brs.exe [75048] [PID.4184]
[MD5.57B4D34232852BFE4453BE571DF90D21] - (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [103720] [PID.1392]
[MD5.99ECAF298145F950B1326656167FBFDF] - (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [87336] [PID.4016]
[MD5.6364FA7D825B600251A4D1DE7D6FF695] - (.Intel Corporation - Intel(R) USB 3.0 Monitor.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608] [PID.2588]
[MD5.142B0759B700C82894B1DED94122D2E9] - (.SAMSUNG Electronics - SSCKbdHk.) -- C:\Program Files (x86)\Samsung\Easy Support Center\SSCKbdHk.exe [3398736] [PID.2904]
[MD5.2C5BA148BA7936D9BB6BB1F4945BA469] - (.Dropbox, Inc. - Dropbox.) -- C:\Users\Philippe\AppData\Roaming\Dropbox\bin\Dropbox.exe [28539272] [PID.7632]
[MD5.CD37E8F77BFF71F104BDC941A393F0B5] - (.Intel Corporation - Intel Services Manager.) -- C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\ismagent.exe [645896] [PID.6860]
[MD5.4DA92A4C32F68E57C49CD77CD0A7439C] - (...) -- C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\updateui.exe [119808] [PID.5296]
[MD5.8D40FA84FB925E1324D4DE4F619CDEE6] - (.Microsoft Corporation - Microsoft Office Outlook.) -- C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.exe [13007440] [PID.9212]
[MD5.0654E4C1F597FC07D6FC7443D4F94840] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1248208] [PID.8924]
[MD5.E7DBD2182426178097A51D2539242AC3] - (.Pas de propriétaire - CDA Client for SMV2 ScanToPC.) -- C:\Program Files (x86)\Samsung\Easy Printer Manager\CDAS2PC\CDAS2PC.exe [1541712] [PID.9052]
[MD5.F7DB6336DEFE82D7EAE25A6B656ED64A] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [5685760] [PID.8768]
[MD5.8FA553E9AE69808D99C164733A0F9590] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [44808] [PID.1448]
[MD5.BC0E07A768A0A14C48E3CE1875F2C377] - (.AVAST Software - avast! firewall service.) -- C:\Program Files\AVAST Software\Avast\afwServ.exe [133912] [PID.1552]
[MD5.5E66ABD041D76C46CBF55AEF910FCA56] - (...) -- C:\Program Files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe [31624] [PID.840]
[MD5.F02A533F517EB38333CB12A9E8963773] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [136176] [PID.3548]
~ Scan Processes Running in 00mn 00s



---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\Philippe\AppData\Local\Google\Chrome\User Data\Default\Preferences
G0 - GCSP: Preference [User Data\Default][HomePage] https://www.google.com/?gws_rd=ssl
G0 - GCSP: Preference [User Data\Default] https://www.google.com/?gws_rd=ssl
G1 - GCS: Preference [User Data\Default] None
~ Scan Google Browser in 00mn 00s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\windows\system32\Macromed\Flash\NPSWF64_11_5_502_149.dll
~ Scan Firefox Browser in 00mn 00s



---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?gws_rd=ssl
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.microsoft.com/fr-fr/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?cobrand=samsung.msn.com&ocid=SMSDHP&pc=MASM
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?cobrand=samsung.msn.com&ocid=SMSDHP&pc=MASM
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)) -- C:\Windows\SysWOW64\ieframe.dll
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
~ Scan IE Browser in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Scan Proxy management in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Scan Keys in 00mn 00s



---\\ Redirection du fichier Hosts (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Scan Hosts File in 00mn 00s
~ Nombre de lignes (Lines number): 21



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: AcroIEHelperStub [64Bits] - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
~ Scan BHO in 00mn 00s



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: (no name) [64Bits] - [HKLM]{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} Clé orpheline
~ Scan Toolbar in 00mn 00s



---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Wow6432Node\Run: [avast] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastUI.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
~ Scan Application in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - Global Startup: C:\Users\UpdatusUser\Desktop\HijackThis.lnk . (.Trend Micro Inc..) -- C:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exe
O4 - Global Startup: C:\Users\Philippe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Philippe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Philippe\Desktop\Dropbox.lnk . (.Dropbox, Inc..) -- C:\Users\Philippe\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Global Startup: C:\Users\Philippe\Desktop\HijackThis.lnk . (.Trend Micro Inc..) -- C:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exe
O4 - Global Startup: C:\Users\Philippe\Desktop\Windows Explorer.lnk . (.Microsoft Corporation.) -- C:\windows\explorer.exe
O4 - Global Startup: C:\Users\Philippe\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk . (.Google Inc..) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - Global Startup: C:\Users\Philippe\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Philippe\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Office Outlook.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.EXE
~ Scan Global Startup in 00mn 00s



---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ Scan IE Control Panel in 00mn 00s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\windows\system32\mswsock.dll
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\windows\system32\winrnr.dll
O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\windows\system32\wshbth.dll
O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll
O10 - WLSP:\000000000009\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll
O10 - WLSP:\000000000010\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files (x86)\Bonjour\mdnsNSP.dll
~ Scan Winsock in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{17573B81-0DAF-4243-97AA-6D8C7E56737E}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\..\{17573B81-0DAF-4243-97AA-6D8C7E56737E}: DhcpDomain = lan
O17 - HKLM\System\CS1\Services\Tcpip\..\{17573B81-0DAF-4243-97AA-6D8C7E56737E}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{17573B81-0DAF-4243-97AA-6D8C7E56737E}: DhcpDomain = lan
O17 - HKLM\System\CS2\Services\Tcpip\..\{17573B81-0DAF-4243-97AA-6D8C7E56737E}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS2\Services\Tcpip\..\{17573B81-0DAF-4243-97AA-6D8C7E56737E}: DhcpDomain = lan
~ Scan Domain in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (...) --
O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.dll
~ Scan Protocole Additionnel in 00mn 00s



---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll
~ Scan Winlogon in 00mn 00s



---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - AppInit_DLLs: . (.NVIDIA Corporation - NVIDIA shim initialization dll, Version 295.) - C:\windows\system32\nvinitx.dll
~ Scan AppInit DLL in 00mn 00s



---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ Scan SSODL in 00mn 00s



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall (avast! Firewall) . (.AVAST Software - avast! firewall service.) - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: SamsungDeviceConfiguration (SamsungDeviceConfigurationWinService) . (...) - C:\Program Files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe
~ Scan Services in 00mn 03s



---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Scan Desktop Component in 00mn 00s



---\\ BootExecute (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ Scan Keys in 00mn 00s



---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Xerox PhotoCafe Communicator.job
[MD5.EC807244904FA170C299AB06D87FBDBE] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
[MD5.39C715AC06E9FF8B2A45DB96487A310C] [APT] [advSRS5] (.SEC.) -- C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe
[MD5.7F19838AC317C34FCED020BE529AF71E] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
[MD5.10E466858361DF168E3058723A2363D4] [APT] [DriverBoost-RTMRules] (.PC Drivers Headquarters.) -- C:\Program Files (x86)\DriverBoost\DriverBoost\DriverBoost.exe
[MD5.10E466858361DF168E3058723A2363D4] [APT] [DriverBoost-RTMScan] (.PC Drivers Headquarters.) -- C:\Program Files (x86)\DriverBoost\DriverBoost\DriverBoost.exe
[MD5.10E466858361DF168E3058723A2363D4] [APT] [DriverBoost-RTMUpdater] (.PC Drivers Headquarters.) -- C:\Program Files (x86)\DriverBoost\DriverBoost\DriverBoost.exe
[MD5.784C46078733CE7915B0810E1DD2FB34] [APT] [EasyDisplayMgr] (.Samsung Electronics Co., Ltd..) -- C:\Program Files (x86)\Samsung\Easy Settings\dmhkcore.exe
[MD5.00000000000000000000000000000000] [APT] [GoforFilesUpdate] (...) -- C:\Program Files (x86)\GoforFiles\GFFUpdater.exe (.not file.)
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
[MD5.C7AAC31A910E4BBFDF94D3786ED13E71] [APT] [ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d] (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe
[MD5.C7AAC31A910E4BBFDF94D3786ED13E71] [APT] [ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon] (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe
[MD5.B00F98FF6FE8682FF941BEB2559BF191] [APT] [MirageAgent] (.CyberLink.) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
[MD5.7743B4251557F16B81DE99001F97A0F7] [APT] [Xerox PhotoCafe Communicator] (...) -- C:\ProgramData\Xerox PhotoCafe\MessageCheck.exe
[MD5.00000000000000000000000000000000] [APT] [{0639A1C7-8A85-4FB9-9556-416440ABAE23}] (...) -- E:\Driver\Installation\Setup.exe (.not file.)
[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe
~ Scan Scheduled Task in 00mn 04s



---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll
O40 - ASIC: Internet Explorer [64Bits] - >{26923b43-4d38-484f-9b9e-de460746276c} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: Browser Customizations [64Bits] - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} . (.Microsoft Corporation - Personnalisation d'IEAK.) -- C:\Windows\System32\iedkcs32.dll
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll
O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe
O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll
O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll
~ Scan Active Setup in 00mn 00s



---\\ Pilotes lancés au démarrage (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (aswRdr) . (.AVAST Software - avast! WFP Redirect Driver.) - C:\Windows\system32\Drivers\aswrdr2.sys
O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\System32\DRIVERS\blbdrive.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
O41 - Driver: (dtsoftbus01) . (.DT Soft Ltd - DAEMON Tools Virtual Bus Driver.) - C:\Windows\System32\DRIVERS\dtsoftbus01.sys
O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\System32\DRIVERS\mssmbios.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys
O41 - Driver: (SABI) . (.SAMSUNG ELECTRONICS - SAMSUNG Kernel Driver.) - C:\windows\system32\Drivers\SABI.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: (VWiFiFlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys
O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys
~ Scan Drivers in 00mn 00s



---\\ Logiciels installés (O42)
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {1798D459-6B8B-474B-868D-1229EADA3B95}
O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin
O42 - Logiciel: Adobe Reader XI (11.0.01) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001}
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {63EC2120-1742-4625-AA47-C6A8AEC9C64C}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {7446FE8D-C1F9-4D42-AAAE-5DBCE58605A6}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
O42 - Logiciel: Audacity 2.0.2 - (.Audacity Team.) [HKLM][64Bits] -- Audacity_is1
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}
O42 - Logiciel: ChessBase Reader - (.Pas de propriétaire.) [HKLM][64Bits] -- {D6330700-4083-48DD-A03C-E209674E7836}
O42 - Logiciel: Ciel Compta Facile Démo 6.0 - (.Ciel.) [HKLM][64Bits] -- {F5E9F57C-1A3D-4F4E-9FC2-C0BA542F75D2}
O42 - Logiciel: Common Desktop Agent - (.OEM.) [HKLM][64Bits] -- {031A0E14-0413-4C97-9772-2639B782F46F}
O42 - Logiciel: CyberLink Media Suite - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}
O42 - Logiciel: CyberLink Media Suite - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}
O42 - Logiciel: CyberLink MediaShow - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{80E158EA-7181-40FE-A701-301CE6BE64AB}
O42 - Logiciel: CyberLink MediaShow - (.CyberLink Corp..) [HKLM][64Bits] -- {80E158EA-7181-40FE-A701-301CE6BE64AB}
O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}
O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658}
O42 - Logiciel: CyberLink PowerDVD 10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}
O42 - Logiciel: CyberLink PowerDVD 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {DEC235ED-58A4-4517-A278-C41E8DAEAB3B}
O42 - Logiciel: CyberLink PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}
O42 - Logiciel: CyberLink PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {CB099890-1D5F-11D5-9EA9-0050BAE317E1}
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D}
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: DAEMON Tools Lite - (.DT Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite
O42 - Logiciel: Data Lifeguard Diagnostic for Windows 1.24 - (.Western Digital Corporation.) [HKLM][64Bits] -- {519C4DB6-B53B-4F5C-8297-89B2BE949FA5}_is1
O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKCU][64Bits] -- Dropbox
O42 - Logiciel: Dual Package - (.LG Soft India Pvt Ltd.) [HKLM][64Bits] -- {37365259-9D37-4FBE-9204-08B4034623B6}
O42 - Logiciel: Duuqu Update Helper - (.Duuqu Group.) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: E-POP - (.Samsung.) [HKLM][64Bits] -- {F06DD8D9-9DC8-430C-835C-C9BF21E05CC1}
O42 - Logiciel: Easy File Share - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {12F81925-F3C1-40DB-91F7-777817974319}
O42 - Logiciel: Easy Migration - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {AD86049C-3D9C-43E1-BE73-643F57D83D50}
O42 - Logiciel: Easy Settings - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {17283B95-21A8-4996-97DA-547A48DB266F}
O42 - Logiciel: Easy Software Manager - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {DE256D8B-D971-456D-BC02-CB64DA24F115}
O42 - Logiciel: Easy Support Center 1.0 - (.Samsung.) [HKLM][64Bits] -- {F687E657-F636-44DF-8125-9FEEA2C362F5}
O42 - Logiciel: FFmpeg v0.6.2 for Audacity - (.Pas de propriétaire.) [HKLM][64Bits] -- FFmpeg for Audacity_is1
O42 - Logiciel: FrameFox Extensions 1.0.8.0 - (.QwertyBox Team.) [HKLM][64Bits] -- {F842523D-0F22-4A00-A523-BA14655A4155}
O42 - Logiciel: Freemake Video Downloader - (.Ellora Assets Corporation.) [HKLM][64Bits] -- Freemake Video Downloader_is1
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
O42 - Logiciel: InstallClick Connector - (.RIFT Technologies.) [HKLM][64Bits] -- {2F57C004-1FED-4C30-81FC-EE305D4D0A2E}
O42 - Logiciel: Intel PROSet Wireless - (.Pas de propriétaire.) [HKLM][64Bits] -- ProInst
O42 - Logiciel: Intel(R) Manageability Engine Firmware Recovery Agent - (.Intel Corporation.) [HKLM][64Bits] -- {A6C48A9F-694A-4234-B3AA-62590B668927}
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A}
O42 - Logiciel: Intel(R) OpenCL CPU Runtime - (.Intel Corporation.) [HKLM][64Bits] -- {FCB3772C-B7D0-4933-B1A9-3707EBACC573}
O42 - Logiciel: Intel(R) PROSet/Wireless for Bluetooth(R) 3.0 + High Speed - (.Intel Corporation.) [HKLM][64Bits] -- {2C0E6BD4-65B1-4E82-B2AC-43EFFC8F100C}
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC}
O42 - Logiciel: Intel(R) USB 3.0 eXtensible Host Controller Driver - (.Intel Corporation.) [HKLM][64Bits] -- {240C3DDD-C5E9-4029-9DF7-95650D040CF2}
O42 - Logiciel: Intel(R) WiDi - (.Intel Corporation.) [HKLM][64Bits] -- {93F34C5C-ACAA-48F3-9B26-70359A117F12}
O42 - Logiciel: Intel® PROSet/Wireless WiFi Software - (.Intel Corporation.) [HKLM][64Bits] -- {DF7756DD-656A-45C3-BA71-74673E8259A9}
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {09536BA1-E498-4CC3-B834-D884A67D7E34}
O42 - Logiciel: Java 7 Update 10 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217010FF}
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}
O42 - Logiciel: Karen's LAN Monitor - (.Karen Kenworthy.) [HKLM][64Bits] -- Karen's LAN Monitor
O42 - Logiciel: LAME v3.99.3 (for Windows) - (.Pas de propriétaire.) [HKLM][64Bits] -- LAME_is1
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: Malwarebytes Anti-Malware version 1.70.0.1100 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes' Anti-Malware_is1
O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Multimedia POP - (.Pas de propriétaire.) [HKLM][64Bits] -- {A86C7338-BE18-4770-AA25-138513D89B0D}
O42 - Logiciel: NVIDIA Graphics Driver 295.55 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {46ED2B64-85C7-4E1F-920C-A555B21F2E4C}
O42 - Logiciel: NVIDIA PhysX System Software 9.11.1111 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX
O42 - Logiciel: Norton Online Backup - (.Symantec Corporation.) [HKLM][64Bits] -- {40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}
O42 - Logiciel: PDFCreator - (.Frank Heindörfer, Philip Chinery.) [HKLM][64Bits] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}
O42 - Logiciel: QwertyBox 1.0.3.0 - (.QwertyBox Team.) [HKLM][64Bits] -- {836B2544-9D21-4C69-BC3A-FF5E6320B5A9}
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Recuva - (.Piriform.) [HKLM][64Bits] -- Recuva
O42 - Logiciel: SNS Upload for Easy Document Creator - (.Samsung Electronics Co.,Ltd.) [HKLM][64Bits] -- {B6B5F07C-88D5-49D3-A1A7-A6D4BC37DCCC}
O42 - Logiciel: Samsung CLX-3300 Series - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- Samsung CLX-3300 Series
O42 - Logiciel: Samsung Easy Document Creator - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- Samsung Easy Document Creator
O42 - Logiciel: Samsung Easy Printer Manager - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- Samsung Easy Printer Manager
O42 - Logiciel: Samsung Network PC Fax - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- Samsung Network PC Fax
O42 - Logiciel: Samsung Printer Live Update - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- Samsung Printer Live Update
O42 - Logiciel: Samsung Recovery Solution 5 - (.Samsung.) [HKLM][64Bits] -- {145DE957-0679-4A2A-BB5C-1D3E9808FAB2}
O42 - Logiciel: Samsung Scan Process Machine - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- Samsung Scan Process Machine
O42 - Logiciel: Skype(TM) 5.10 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}
O42 - Logiciel: Software Launcher - (.Samsung.) [HKLM][64Bits] -- {B750B5C2-CC17-4967-905B-29F4EB986131}
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey
O42 - Logiciel: TuneUp 2.4.6.4 - (.TuneUp Media, Inc..) [HKLM][64Bits] -- TuneUpMedia
O42 - Logiciel: User Guide - (.Pas de propriétaire.) [HKLM][64Bits] -- {BAE68339-B0F6-4D33-9554-5A3DB2DFF5DA}
O42 - Logiciel: WinPcap 4.1.2 - (.CACE Technologies.) [HKLM][64Bits] -- WinPcapInst
O42 - Logiciel: WinRAR 4.20 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: Xerox PhotoCafe - (.Xerox.) [HKLM][64Bits] -- Xerox PhotoCafe
O42 - Logiciel: avast! Internet Security v7.0.1474.0 - (.AVAST Software.) [HKLM][64Bits] -- avast
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {1493B2AE-0261-47D2-B1AA-F4DAD0F6C48B}

---\\ HKCU & HKLM Software Keys
[HKCU\Software\Adobe]
[HKCU\Software\AppDataLow\Software\JavaSoft]
[HKCU\Software\AppDataLow\Software\Microsoft]
[HKCU\Software\AppDataLow\Software]
[HKCU\Software\AppDataLow]
[HKCU\Software\Apple Computer, Inc.]
[HKCU\Software\Apple Inc.]
[HKCU\Software\Audacity]
[HKCU\Software\Avast Software]
[HKCU\Software\BugSplat]
[HKCU\Software\CDAS2PC2]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\Common Desktop Agent]
[HKCU\Software\CyberLink]
[HKCU\Software\DT Soft]
[HKCU\Software\Duuqu]
[HKCU\Software\Freemake]
[HKCU\Software\GoforFiles]
[HKCU\Software\Google]
[HKCU\Software\IM Providers]
[HKCU\Software\InstallShield]
[HKCU\Software\Intel]
[HKCU\Software\JavaSoft]
[HKCU\Software\KarenWare]
[HKCU\Software\LG Soft India]
[HKCU\Software\Lake]
[HKCU\Software\Macromedia]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Mozilla]
[HKCU\Software\NVIDIA Corporation]
[HKCU\Software\Netscape]
[HKCU\Software\Norton]
[HKCU\Software\ODBC]
[HKCU\Software\PCPitstop]
[HKCU\Software\PDFCreator]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\Realtek]
[HKCU\Software\SSPrint]
[HKCU\Software\SSScan]
[HKCU\Software\Samsung]
[HKCU\Software\Skype]
[HKCU\Software\Symantec]
[HKCU\Software\Synaptics]
[HKCU\Software\TeleCharger]
[HKCU\Software\Visan]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\WinRAR]
[HKCU\Software\Wow6432Node]
[HKLM\Software\AGEIA Technologies]
[HKLM\Software\ATI Technologies]
[HKLM\Software\Apple Computer, Inc.]
[HKLM\Software\Apple Inc.]
[HKLM\Software\CBSTEST]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Common Desktop Agent]
[HKLM\Software\Cyberlink]
[HKLM\Software\DTS]
[HKLM\Software\Dolby]
[HKLM\Software\GEAR Software]
[HKLM\Software\InstalledOptions]
[HKLM\Software\Intel]
[HKLM\Software\Khronos]
[HKLM\Software\Knowles]
[HKLM\Software\LG Soft India]
[HKLM\Software\Macromedia]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\NVIDIA Corporation]
[HKLM\Software\Norton]
[HKLM\Software\ODBC]
[HKLM\Software\Piriform]
[HKLM\Software\Policies]
[HKLM\Software\RTLSetup]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\SRS Labs]
[HKLM\Software\SSPrint]
[HKLM\Software\SSScan]
[HKLM\Software\Samsung]
[HKLM\Software\SonicFocus]
[HKLM\Software\Sonic]
[HKLM\Software\Symantec]
[HKLM\Software\Synaptics]
[HKLM\Software\Waves Audio]
[HKLM\Software\Wow6432Node\AGEIA Technologies]
[HKLM\Software\Wow6432Node\AVAST Software]
[HKLM\Software\Wow6432Node\Adobe]
[HKLM\Software\Wow6432Node\Apple Computer, Inc.]
[HKLM\Software\Wow6432Node\Apple Inc.]
[HKLM\Software\Wow6432Node\ChessBase]
[HKLM\Software\Wow6432Node\Classes]
[HKLM\Software\Wow6432Node\Clients]
[HKLM\Software\Wow6432Node\Common Desktop Agent]
[HKLM\Software\Wow6432Node\CyberLink]
[HKLM\Software\Wow6432Node\DT Soft]
[HKLM\Software\Wow6432Node\Duuqu]
[HKLM\Software\Wow6432Node\FFmpeg for Audacity]
[HKLM\Software\Wow6432Node\Freemake]
[HKLM\Software\Wow6432Node\GoforFiles]
[HKLM\Software\Wow6432Node\Google]
[HKLM\Software\Wow6432Node\InstallShield]
[HKLM\Software\Wow6432Node\Intel]
[HKLM\Software\Wow6432Node\JavaSoft]
[HKLM\Software\Wow6432Node\JreMetrics]
[HKLM\Software\Wow6432Node\Khronos]
[HKLM\Software\Wow6432Node\LG Soft India Pvt Ltd]
[HKLM\Software\Wow6432Node\LGDDCIStack]
[HKLM\Software\Wow6432Node\Lake]
[HKLM\Software\Wow6432Node\Lame For Audacity]
[HKLM\Software\Wow6432Node\Macromedia]
[HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware (Trial)]
[HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware]
[HKLM\Software\Wow6432Node\MozillaPlugins]
[HKLM\Software\Wow6432Node\Mozilla]
[HKLM\Software\Wow6432Node\NVIDIA Corporation]
[HKLM\Software\Wow6432Node\ODBC]
[HKLM\Software\Wow6432Node\PCPitstop]
[HKLM\Software\Wow6432Node\PDFCreator]
[HKLM\Software\Wow6432Node\Policies]
[HKLM\Software\Wow6432Node\Realtek Semiconductor Corp.]
[HKLM\Software\Wow6432Node\Realtek]
[HKLM\Software\Wow6432Node\RegisteredApplications]
[HKLM\Software\Wow6432Node\Riot Games]
[HKLM\Software\Wow6432Node\RocketLife]
[HKLM\Software\Wow6432Node\SSScan]
[HKLM\Software\Wow6432Node\Sage]
[HKLM\Software\Wow6432Node\Samsung Electronics Co., Ltd.]
[HKLM\Software\Wow6432Node\Samsung]
[HKLM\Software\Wow6432Node\Skype]
[HKLM\Software\Wow6432Node\Software]
[HKLM\Software\Wow6432Node\TrendMicro]
[HKLM\Software\Wow6432Node\Visan]
[HKLM\Software\Wow6432Node\WinPcap]
[HKLM\Software\Wow6432Node\WinRAR]
[HKLM\Software\Wow6432Node\Wow6432Node]
[HKLM\Software\Wow6432Node\mozilla.org]
[HKLM\Software\Wow6432Node]
~ Scan Softwares in 00mn 00s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 09/01/2013 - 16:20:25 - [119,739] ----D C:\Program Files (x86)\Adobe
O43 - CFD: 18/02/2013 - 21:58:00 - [0] ----D C:\Program Files (x86)\AGEIA Technologies
O43 - CFD: 18/02/2013 - 22:51:07 - [0,315] ----D C:\Program Files (x86)\Algobox
O43 - CFD: 30/10/2012 - 16:44:01 - [2,316] ----D C:\Program Files (x86)\Apple Software Update
O43 - CFD: 02/01/2013 - 12:36:03 - [43,789] ----D C:\Program Files (x86)\Audacity
O43 - CFD: 30/10/2012 - 16:43:40 - [0,602] ----D C:\Program Files (x86)\Bonjour
O43 - CFD: 31/01/2013 - 09:24:11 - [28,452] ----D C:\Program Files (x86)\ChessBase
O43 - CFD: 18/02/2013 - 22:46:05 - [63,865] ----D C:\Program Files (x86)\Ciel
O43 - CFD: 12/03/2012 - 13:40:18 - [6,757] ----D C:\Program Files (x86)\Cisco
O43 - CFD: 18/02/2013 - 22:51:28 - [593,704] ----D C:\Program Files (x86)\Common Files
O43 - CFD: 12/03/2012 - 14:53:08 - [1057,006] ----D C:\Program Files (x86)\CyberLink
O43 - CFD: 31/10/2012 - 11:57:59 - [25,770] ----D C:\Program Files (x86)\DAEMON Tools Lite
O43 - CFD: 29/10/2012 - 18:08:09 - [8,470] ----D C:\Program Files (x86)\DriverBoost
O43 - CFD: 04/01/2013 - 18:12:30 - [8,446] ----D C:\Program Files (x86)\Ffmpeg For Audacity
O43 - CFD: 03/01/2013 - 12:19:00 - [31,886] ----D C:\Program Files (x86)\Freemake
O43 - CFD: 10/02/2013 - 15:10:42 - [221,429] ----D C:\Program Files (x86)\Google
O43 - CFD: 31/01/2013 - 09:24:06 - [117,327] --H-D C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 12/03/2012 - 13:43:46 - [309,335] ----D C:\Program Files (x86)\Intel
O43 - CFD: 12/03/2012 - 15:08:08 - [70,627] ----D C:\Program Files (x86)\Intel Corporation
O43 - CFD: 19/02/2013 - 03:23:23 - [5,373] ----D C:\Program Files (x86)\Internet Explorer
O43 - CFD: 11/11/2012 - 14:49:55 - [143,845] ----D C:\Program Files (x86)\iTunes
O43 - CFD: 09/01/2013 - 16:13:04 - [122,734] ----D C:\Program Files (x86)\Java
O43 - CFD: 19/02/2013 - 13:06:33 - [0,512] ----D C:\Program Files (x86)\Karen's Power Tools
O43 - CFD: 04/01/2013 - 18:10:04 - [1,540] ----D C:\Program Files (x86)\Lame For Audacity
O43 - CFD: 07/11/2012 - 20:59:27 - [22,588] ----D C:\Program Files (x86)\LG Soft India Pvt Ltd
O43 - CFD: 19/02/2013 - 10:24:54 - [12,848] ----D C:\Program Files (x86)\Malwarebytes' Anti-Malware
O43 - CFD: 09/02/2013 - 13:07:18 - [0] ----D C:\Program Files (x86)\Microsoft
O43 - CFD: 09/01/2013 - 14:43:42 - [567,230] ----D C:\Program Files (x86)\Microsoft Office
O43 - CFD: 31/10/2012 - 09:50:08 - [36,641] ----D C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 12/03/2012 - 14:35:45 - [1,745] ----D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 29/10/2012 - 19:12:33 - [0,014] ----D C:\Program Files (x86)\Microsoft Visual Studio
O43 - CFD: 29/10/2012 - 19:08:26 - [1,323] ----D C:\Program Files (x86)\Microsoft Visual Studio 8
O43 - CFD: 31/10/2012 - 08:06:25 - [3,554] ----D C:\Program Files (x86)\Microsoft Works
O43 - CFD: 02/11/2012 - 08:46:20 - [7,789] ----D C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 19/02/2013 - 16:39:28 - [0,002] ----D C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 29/10/2012 - 19:12:37 - [0,025] ----D C:\Program Files (x86)\MSBuild
O43 - CFD: 10/02/2013 - 08:06:08 - [0] ----D C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 18/02/2013 - 22:51:28 - [103,594] ----D C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 29/10/2012 - 17:50:27 - [32,770] ----D C:\Program Files (x86)\PDFCreator
O43 - CFD: 18/02/2013 - 22:51:06 - [48,241] ----D C:\Program Files (x86)\QuickTime
O43 - CFD: 12/03/2012 - 13:42:47 - [5,867] ----D C:\Program Files (x86)\Realtek
O43 - CFD: 14/07/2009 - 06:32:38 - [37,357] ----D C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 29/10/2012 - 16:51:16 - [1,918] ----D C:\Program Files (x86)\RIFT Technologies
O43 - CFD: 29/10/2012 - 16:52:21 - [745,681] ----D C:\Program Files (x86)\Samsung
O43 - CFD: 11/11/2012 - 12:31:53 - [2,054] ----D C:\Program Files (x86)\SamsungPrinterLiveUpdate
O43 - CFD: 29/10/2012 - 16:50:22 - [1,846] ----D C:\Program Files (x86)\SamsungPrinterLiveUpdateInstaller
O43 - CFD: 18/02/2013 - 22:51:29 - [16,862] R---D C:\Program Files (x86)\Skype
O43 - CFD: 12/03/2012 - 13:54:22 - [6,148] ----D C:\Program Files (x86)\Symantec
O43 - CFD: 12/03/2012 - 13:39:41 - [0] --H-D C:\Program Files (x86)\Temp
O43 - CFD: 17/02/2013 - 17:10:20 - [8,974] ----D C:\Program Files (x86)\TI Education
O43 - CFD: 19/02/2013 - 13:39:58 - [0,386] ----D C:\Program Files (x86)\Trend Micro
O43 - CFD: 11/11/2012 - 14:50:06 - [56,077] ----D C:\Program Files (x86)\TuneUpMedia
O43 - CFD: 14/07/2009 - 05:57:06 - [0] --H-D C:\Program Files (x86)\Uninstall Information
O43 - CFD: 29/10/2012 - 18:20:38 - [1,561] ----D C:\Program Files (x86)\Western Digital Corporation
O43 - CFD: 29/10/2012 - 21:08:07 - [0,500] ----D C:\Program Files (x86)\Windows Defender
O43 - CFD: 12/03/2012 - 14:45:48 - [543,559] ----D C:\Program Files (x86)\Windows Live
O43 - CFD: 29/10/2012 - 21:08:07 - [5,895] ----D C:\Program Files (x86)\Windows Mail
O43 - CFD: 29/10/2012 - 21:08:07 - [4,791] ----D C:\Program Files (x86)\Windows Media Player
O43 - CFD: 14/07/2009 - 06:32:38 - [11,632] ----D C:\Program Files (x86)\Windows NT
O43 - CFD: 29/10/2012 - 21:08:07 - [4,213] ----D C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 21/11/2010 - 04:31:38 - [0,181] ----D C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 29/10/2012 - 21:08:07 - [5,717] ----D C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 11/01/2013 - 21:04:45 - [4,131] ----D C:\Program Files (x86)\WinRAR
O43 - CFD: 12/03/2012 - 13:58:35 - [0,789] ----D C:\Program Files (x86)\Xerox PhotoCafe
O43 - CFD: 20/02/2013 - 08:26:32 - [18,418] ----D C:\Program Files (x86)\ZHPDiag
O43 - CFD: 07/11/2012 - 21:20:25 - [6,485] ----D C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 09/01/2013 - 16:20:24 - [43,917] ----D C:\Program Files (x86)\Common Files\Adobe AIR
O43 - CFD: 30/10/2012 - 16:44:31 - [105,882] ----D C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 18/02/2013 - 22:51:28 - [0,026] ----D C:\Program Files (x86)\Common Files\Ciel
O43 - CFD: 18/11/2012 - 00:20:10 - [0,376] ----D C:\Program Files (x86)\Common Files\Common Desktop Agent
O43 - CFD: 29/10/2012 - 19:12:33 - [0,089] ----D C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 07/11/2012 - 20:59:47 - [8,493] ----D C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 12/03/2012 - 13:37:40 - [14,075] ----D C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 12/03/2012 - 15:08:28 - [71,022] ----D C:\Program Files (x86)\Common Files\Intel Corporation
O43 - CFD: 09/01/2013 - 16:13:38 - [1,184] ----D C:\Program Files (x86)\Common Files\Java
O43 - CFD: 18/02/2013 - 22:51:28 - [228,122] ----D C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 18/02/2013 - 22:51:28 - [0,622] ----D C:\Program Files (x86)\Common Files\MSSoap
O43 - CFD: 12/03/2012 - 13:36:06 - [0,185] ----D C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 12/03/2012 - 13:58:28 - [4,403] ----D C:\Program Files (x86)\Common Files\Samsung
O43 - CFD: 14/11/2012 - 21:05:30 - [11,092] ----D C:\Program Files (x86)\Common Files\Scan Process Machine
O43 - CFD: 14/07/2009 - 04:20:08 - [0,003] ----D C:\Program Files (x86)\Common Files\Services
O43 - CFD: 18/02/2013 - 22:51:28 - [2,056] ----D C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 14/07/2009 - 04:20:08 - [39,200] ----D C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 29/10/2012 - 19:24:43 - [0] ----D C:\Program Files (x86)\Common Files\Symantec Shared
O43 - CFD: 01/11/2012 - 09:34:37 - [42,254] ----D C:\Program Files (x86)\Common Files\System
O43 - CFD: 18/02/2013 - 22:51:07 - [0,039] ----D C:\Program Files (x86)\Common Files\TI Shared
O43 - CFD: 12/03/2012 - 14:28:19 - [0] ----D C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 17/02/2013 - 17:09:18 - [14,179] ----D C:\Program Files (x86)\Common Files\Wise Installation Wizard
O43 - CFD: 30/10/2012 - 16:45:22 - [2,774] ----D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
O43 - CFD: 09/01/2013 - 16:20:27 - [130,105] ----D C:\ProgramData\Adobe
O43 - CFD: 18/02/2013 - 22:47:25 - [35,799] ----D C:\ProgramData\Apple
O43 - CFD: 30/10/2012 - 16:44:31 - [50,069] ----D C:\ProgramData\Apple Computer
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Application Data
O43 - CFD: 29/10/2012 - 20:38:30 - [28,692] ----D C:\ProgramData\AVAST Software
O43 - CFD: 18/02/2013 - 22:47:25 - [15,212] ----D C:\ProgramData\Ciel
O43 - CFD: 30/10/2012 - 17:32:22 - [0,056] ----D C:\ProgramData\CyberLink
O43 - CFD: 31/01/2013 - 09:22:15 - [0,002] ----D C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Documents
O43 - CFD: 29/10/2012 - 18:11:28 - [2,248] ----D C:\ProgramData\DriverBoost
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Favorites
O43 - CFD: 03/01/2013 - 12:19:16 - [5,689] ----D C:\ProgramData\Freemake
O43 - CFD: 07/11/2012 - 20:59:58 - [0,000] ----D C:\ProgramData\InstallShield
O43 - CFD: 12/03/2012 - 15:08:08 - [0,250] ----D C:\ProgramData\Intel
O43 - CFD: 19/02/2013 - 13:06:24 - [0] ----D C:\ProgramData\Karen's Power Tools
O43 - CFD: 09/02/2013 - 21:57:48 - [6,862] ----D C:\ProgramData\Malwarebytes
O43 - CFD: 09/02/2013 - 13:07:18 - [-532,595] -S--D C:\ProgramData\Microsoft
O43 - CFD: 19/02/2013 - 03:07:50 - [0,257] ----D C:\ProgramData\Microsoft Help
O43 - CFD: 29/10/2012 - 16:35:41 - [0,001] ----D C:\ProgramData\Mozilla
O43 - CFD: 29/10/2012 - 19:36:08 - [0,014] ----D C:\ProgramData\Norton
O43 - CFD: 12/03/2012 - 13:54:32 - [24,740] ----D C:\ProgramData\NortonInstaller
O43 - CFD: 18/02/2013 - 22:47:28 - [12,068] ----D C:\ProgramData\NVIDIA
O43 - CFD: 18/02/2013 - 21:56:45 - [3,494] ----D C:\ProgramData\NVIDIA Corporation
O43 - CFD: 19/02/2013 - 17:29:47 - [0,002] ----D C:\ProgramData\PCPitstop
O43 - CFD: 12/03/2012 - 13:40:44 - [0] ----D C:\ProgramData\Roaming
O43 - CFD: 18/11/2012 - 00:20:18 - [27,048] ----D C:\ProgramData\SAMSUNG
O43 - CFD: 18/02/2013 - 22:47:30 - [38,044] ----D C:\ProgramData\Skype
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Start Menu
O43 - CFD: 09/01/2013 - 16:13:39 - [0,000] ----D C:\ProgramData\Sun
O43 - CFD: 12/03/2012 - 13:54:22 - [0,007] ----D C:\ProgramData\Symantec
O43 - CFD: 29/10/2012 - 17:18:00 - [0,001] ----D C:\ProgramData\Synaptics
O43 - CFD: 12/03/2012 - 14:52:37 - [0,897] ----D C:\ProgramData\Temp
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Templates
O43 - CFD: 24/12/2012 - 19:47:14 - [0,393] ----D C:\ProgramData\TuneUpMedia
O43 - CFD: 03/02/2013 - 17:59:52 - [0,009] ----D C:\ProgramData\UAB
O43 - CFD: 28/01/2013 - 07:55:42 - [0,588] ----D C:\ProgramData\WildTangent
O43 - CFD: 18/02/2013 - 22:51:33 - [14,771] ----D C:\ProgramData\WinClon
O43 - CFD: 12/03/2012 - 13:58:33 - [62,194] ----D C:\ProgramData\Xerox PhotoCafe
O43 - CFD: 09/01/2013 - 16:20:27 - [1,398] ----D C:\Users\Philippe\AppData\Roaming\Adobe
O43 - CFD: 12/12/2012 - 21:50:34 - [380,983] ----D C:\Users\Philippe\AppData\Roaming\Apple Computer
O43 - CFD: 04/01/2013 - 18:51:49 - [0,003] ----D C:\Users\Philippe\AppData\Roaming\Audacity
O43 - CFD: 31/01/2013 - 17:05:20 - [0,117] ----D C:\Users\Philippe\AppData\Roaming\ChessBase
O43 - CFD: 30/10/2012 - 17:31:24 - [4,211] ----D C:\Users\Philippe\AppData\Roaming\CyberLink
O43 - CFD: 31/10/2012 - 12:05:53 - [1,345] ----D C:\Users\Philippe\AppData\Roaming\DAEMON Tools Lite
O43 - CFD: 19/02/2013 - 19:38:45 - [33,846] ----D C:\Users\Philippe\AppData\Roaming\Dropbox
O43 - CFD: 03/01/2013 - 12:20:51 - [0,000] ----D C:\Users\Philippe\AppData\Roaming\FreemakeVideoDownloader
O43 - CFD: 05/02/2013 - 19:50:35 - [0,001] ----D C:\Users\Philippe\AppData\Roaming\GoforFiles
O43 - CFD: 29/10/2012 - 16:18:40 - [0] ----D C:\Users\Philippe\AppData\Roaming\Identities
O43 - CFD: 29/10/2012 - 16:17:18 - [0,001] ----D C:\Users\Philippe\AppData\Roaming\Intel
O43 - CFD: 09/01/2013 - 17:02:29 - [0] ----D C:\Users\Philippe\AppData\Roaming\LolClient
O43 - CFD: 29/10/2012 - 16:28:39 - [0,060] ----D C:\Users\Philippe\AppData\Roaming\Macromedia
O43 - CFD: 09/02/2013 - 21:58:01 - [0,955] ----D C:\Users\Philippe\AppData\Roaming\Malwarebytes
O43 - CFD: 13/03/2012 - 05:08:36 - [0] ----D C:\Users\Philippe\AppData\Roaming\Media Center Programs
O43 - CFD: 09/01/2013 - 14:14:35 - [4,296] -S--D C:\Users\Philippe\AppData\Roaming\Microsoft
O43 - CFD: 19/02/2013 - 16:39:28 - [13,469] ----D C:\Users\Philippe\AppData\Roaming\Mozilla
O43 - CFD: 10/02/2013 - 12:27:34 - [0,001] ----D C:\Users\Philippe\AppData\Roaming\pdfforge
O43 - CFD: 29/10/2012 - 16:51:39 - [3,505] ----D C:\Users\Philippe\AppData\Roaming\Samsung
O43 - CFD: 13/02/2013 - 17:51:20 - [6,013] ----D C:\Users\Philippe\AppData\Roaming\Skype
O43 - CFD: 17/02/2013 - 15:59:50 - [11,096] ----D C:\

9 réponses

Messages postés
180117
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
4 octobre 2020
22 328
Salut,

Sur quel navigateur les textes avec des liens ?



Télécharge http://general-changelog-team.fr/telechargements/logiciels/viewdownload/75-outils-de-xplode/28-adwcleaner AdwCleaner ( d'Xplode ) sur ton bureau.
Lance le, clique sur [Suppression] puis patiente le temps du scan (Pas besoin de faire de Recherche avant).
Une fois le scan fini, un rapport s'ouvrira. Poste le contenu du rapport dans ta prochaine réponse.

Note : Le rapport est également sauvegardé sous C:\AdwCleaner[S1].txt

Messages postés
6
Date d'inscription
mercredi 20 février 2013
Statut
Membre
Dernière intervention
20 février 2013

Exact.
Je me suis perdu moi-même.

# AdwCleaner v2.112 - Rapport créé le 20/02/2013 à 09:45:15
# Mis à jour le 10/02/2013 par Xplode
# Système d'exploitation : Windows 7 Home Premium Service Pack 1 (64 bits)
# Nom d'utilisateur : Philippe - PHILIPPE-PC
# Mode de démarrage : Normal
# Exécuté depuis : C:\Users\Philippe\Desktop\adwcleaner0.exe
# Option [Suppression]


***** [Services] *****


***** [Fichiers / Dossiers] *****


***** [Registre] *****


***** [Navigateurs] *****

-\\ Internet Explorer v9.0.8112.16464

[OK] Le registre ne contient aucune entrée illégitime.

-\\ Google Chrome v24.0.1312.57

Fichier : C:\Users\Philippe\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] Le fichier ne contient aucune entrée illégitime.

*************************

AdwCleaner[S1].txt - [1026 octets] - [20/02/2013 09:11:52]
AdwCleaner[S2].txt - [835 octets] - [20/02/2013 09:45:15]

########## EOF - C:\AdwCleaner[S2].txt - [894 octets] ##########
Messages postés
180117
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
4 octobre 2020
22 328
Sur quel navigateur les textes avec des liens ?
Messages postés
6
Date d'inscription
mercredi 20 février 2013
Statut
Membre
Dernière intervention
20 février 2013

Google Chrome merci
Messages postés
180117
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
4 octobre 2020
22 328
Sur Google Chrome : Menu Outils / Extentions.

Fais une capture d'écran (voir https://www.commentcamarche.net/faq/398-comment-faire-une-capture-d-ecran ).
Envoie l'image sur http://pjjoint.malekal.com
Donne le lien pjjoint ici.

Like the angel you are, you laugh creating a lightness in my chest,
Your eyes they penetrate me,
(Your answer's always 'maybe')
That's when I got up and left
Messages postés
6
Date d'inscription
mercredi 20 février 2013
Statut
Membre
Dernière intervention
20 février 2013

Le lien

https://pjjoint.malekal.com/files.php?id=20130220_j5t11u5u13r12

J'utilisais Firefox quand la lenteur s'est faite sentir (et que j'ai repéré au moins boxore) après être allé sur le site softronic. J'ai désinstallé Firefox et utilise maintenant chrome sans effet notoire sur la lenteur.
Messages postés
180117
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
4 octobre 2020
22 328
Rien d'anormal comme extension.
Messages postés
6
Date d'inscription
mercredi 20 février 2013
Statut
Membre
Dernière intervention
20 février 2013

Non. Pourtant c'est lié à ma connexion internet. Quand je me déconnecte tout va bien. Des octets sont envoyé en permanence via mon réseau sans fil même sans navigateur lancé. Je n'ai plus de pop lancé depuis que j'ai passé les différents outils en particulier Malware anti malware. Juste la lenteur de saisie. l'UC est utilisée entre 1 et 3 %. La mémoire physique à 30%.
J'ai un process qui s'ouvre et se ferme en permanence CDAHelper.exe dans processus du gestionnaire de tâche.

J'ai avast internet sécurity version payante.
Mon parefeu est avast activuité en zone risque moyen. j'ai supprimé toutes les règles entrée sorties et les rétabli une par une sur demande.
Dans connexion se lance et se ferme sans arret : spollsv.exe et CDA2SP.exe et svchost.exe

J'ai l'impression d'avoir fait une partie du déverminage sans être aller au bout.

Sous HPDIAG [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\64A6E60055D801F4BB8AC269354B72B8] =>Adware.Boxore
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC] =>Adware.Boxore^

Cordialement
Messages postés
6
Date d'inscription
mercredi 20 février 2013
Statut
Membre
Dernière intervention
20 février 2013

J'ai réinitialisé l'imprimante en Wifi avec qui je me connecte via ma box et la lenteur a disparu. C'était bien des messages incessants que s'échangeant mon imprimante et mon pc à l'origine de la lenteur. Merci dans tous les cas pour votre aide. Je vous souhaite une bonne fin de journée.
Messages postés
180117
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
4 octobre 2020
22 328
:)

Le bon côté, c'est que ça t'a fait virer boxore :)