Ordinateur portable qui plante

Résolu
Toshiba Satellite
Windows Vista
Avira
depuis quelques jours, l'ordinateur portable s'arrête (écran noir) au bout de quelques temps d'utilisation (durée variable selon les moments); Obligationde faire redémarrage !Ne comprends pas pourquoi. Virus ? Bug du à une usure du matériel ?

26 réponses

Résumé de la discussion

Un ordinateur portable Toshiba Satellite sous Windows Vista avec Avira s'arrête après un temps, affichant un écran noir et nécessitant un redémarrage, ce qui laisse penser à une cause virale ou matérielle. Plusieurs réponses recommandent d'abord d'exécuter sfc /scannow pour réparer les fichiers système, puis d'envisager une restauration à une date antérieure dans Windows Vista afin de rétablir l'état antérieur du système. Des outils de nettoyage et de diagnostic tels que Malwarebytes et AdwCleaner ainsi que ZHPDiag sont fréquemment évoqués, accompagnés de conseils sur le mode sans échec et l'analyse des rapports. En cas d'issue, des échanges portent sur la gestion des logiciels téléchargés et la publication de rapports d'analyse pour guider les prochaines étapes et éviter les redondances inutiles.

Bobot (l’IA à votre service)
  1. Contributeur sécurité
    Bonjour,
    1/
    Est ce que tu as essayé de restaurer ton système à une date antérieure ?
    (avant l'apparition du problème)

    2/
    Est ce qu'il plante en mode sans échec avec prise en charge du réseau ?
    -----------------------------------
    Démarrage en Mode sans échec avec prise en charge réseau :
    Pour cela, tu tapotes la touche F8 dès le début de l'allumage du pc sans t'arrêter
    Une fenêtre va s'ouvrir tu te déplaces avec les flèches du clavier sur >> démarrer en Mode sans échec avec prise en charge réseau
    puis tape entrée.
    Une fois sur le bureau s'il n'y a pas toutes les couleurs et autres c'est normal !
    (Si F8 ne marche pas utilise la touche F5)

    @+

    ¤¤¤ Le meilleur remède pour tous les problèmes, c'est la patience.... ¤¤¤
    0
    1. Avant hier en téléchargant les mises à jour de microsoft, il a planté plusieurs fois, le redémarrage a été impossible à chaque fois et windows a lancé une procédure de réparation (ça s'est produit au moins 2 à 3 fois)
      je n'ai aps essayé le mode sans échec avec pris en charge réseau.
      Je le fais de suite et je donne la réponse
      0
      1. Ca y est, je suis en mode sans échec avec prise en charge du réseau
        0
        1. Contributeur sécurité
          On profite pour faire ceci :

          * Télécharge sur le bureau RogueKiller (par tigzy)
          https://www.luanagames.com/index.fr.html
          * ( Sous Vista/Seven,clique droit, lancer en tant qu'administrateur )
          * Quitte tous tes programmes en cours
          * Lance RogueKiller.exe
          Si l'infection bloque le programme, il faut le relancer plusieurs fois ou le renommer en winlogon.exe
          * Laisse le prescan se terminer, clique sur Scan
          * Clique sur Rapport pour l'ouvrir puis copie/colle le sur le dans ton prochain message

          @+

          0
          1. Et voilà :)

            RogueKiller V8.5.4 [Mar 18 2013] par Tigzy
            mail : tigzyRK<at>gmail<dot>com
            Remontees : https://www.luanagames.com/index.fr.html
            Site Web : https://www.luanagames.com/index.fr.html
            Blog : http://tigzyrk.blogspot.com/

            Systeme d'exploitation : Windows Vista (6.0.6002 Service Pack 2) 32 bits version
            Demarrage : Mode sans echec avec prise en charge reseau
            Utilisateur : Christiane [Droits d'admin]
            Mode : Recherche -- Date : 17/05/2013 12:09:57
            | ARK || FAK || MBR |

            ¤¤¤ Processus malicieux : 0 ¤¤¤

            ¤¤¤ Entrees de registre : 4 ¤¤¤
            [HJ DESK] HKCU\[...]\ClassicStartMenu : {59031A47-3F72-44A7-89C5-5595FE6B30EE} (1) -> TROUVÉ
            [HJ DESK] HKCU\[...]\NewStartPanel : {59031A47-3F72-44A7-89C5-5595FE6B30EE} (1) -> TROUVÉ
            [HJ DESK] HKCU\[...]\ClassicStartMenu : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> TROUVÉ
            [HJ DESK] HKCU\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> TROUVÉ

            ¤¤¤ Fichiers / Dossiers particuliers: ¤¤¤

            ¤¤¤ Driver : [NON CHARGE] ¤¤¤

            ¤¤¤ Fichier HOSTS: ¤¤¤
            --> C:\Windows\system32\drivers\etc\hosts

            127.0.0.1 localhost

            ¤¤¤ MBR Verif: ¤¤¤

            +++++ PhysicalDrive0: Hitachi HTS542520K9SA00 +++++
            --- User ---
            [MBR] bbabc56aa9c62287c8b5caa19492a310
            [BSP] ea7fe378f6bd9ef443e453e56781a7d3 : Windows Vista MBR Code
            Partition table:
            0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 2048 | Size: 1500 Mo
            1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 3074048 | Size: 95391 Mo
            2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 198434816 | Size: 93890 Mo
            User = LL1 ... OK!
            User = LL2 ... OK!

            +++++ PhysicalDrive1: SanDisk Cruzer Slice USB Device +++++
            --- User ---
            [MBR] 33a0f33fb7e7f518f64aedcb9dad35b0
            [BSP] df4f83c1f72e36823a12b0dfc7617313 : Empty MBR Code
            Partition table:
            0 - [XXXXXX] FAT32 (0x0b) [VISIBLE] Offset (sectors): 32 | Size: 7633 Mo
            User = LL1 ... OK!
            Error reading LL2 MBR!

            Termine : << RKreport[1]_S_17052013_120957.txt >>
            RKreport[1]_S_17052013_120957.txt
            0
            1. Contributeur sécurité
              Est ce que ton PC a planté dans ce mode?
              -----------------
              * Télécharge puis enregistre sur le bureau de ton PC ZHPDiag
              (de Nicolas Coolman) à partir : ce lien
              * Lance-le, (Clic droit "exécuter en tant qu'administrateur" si tu es sous Vista/7)
              * Clique sur l'icône en forme de loupe pour lancer le diagnostique
              * Héberge le rapport ZHPDiag.txt de ton bureau sur : malekal.com ou cjoint.com
              * Fais copier/coller le lien fourni dans ta prochaine réponse
              * Aide ZHPDiag : <<< ICI >>>

              @+
              0
              1. Le voilà :)
                http://cjoint.com/?CErnGA650hd
                0
                1. Contributeur sécurité
                  Télécharge AdwCleaner (merci à Xplode)
                  Lance AdwCleaner
                  Clique sur le bouton [ Suppression ]
                  Patiente...
                  Poste le rapport qui apparait en fin de recherche.
                  (Le rapport est sauvegardé aussi sous C:\ AdwCleaner[SX].Txt)

                  0
                  1. mon Pc vient de planter dans ce mode il y a quelques minutes. Néanmoins, je vais suivre les instructions que tu mets juste ci-dessus
                    0
                2. Voilà le rapport d'AdwCleaner :

                  # AdwCleaner v2.301 - Rapport créé le 17/05/2013 à 16:35:02
                  # Mis à jour le 16/05/2013 par Xplode
                  # Système d'exploitation : Windows Vista (TM) Home Premium Service Pack 2 (32 bits)
                  # Nom d'utilisateur : Christiane - PC-DE-MOI
                  # Mode de démarrage : Mode sans échec avec prise en charge réseau
                  # Exécuté depuis : C:\Users\Christiane\Documents\Mes fichiers reçus\adwcleaner.exe
                  # Option [Suppression]

                  ***** [Services] *****

                  ***** [Fichiers / Dossiers] *****

                  Dossier Supprimé : C:\Program Files\Mozilla Firefox\Extensions\quickstores@quickstores.de
                  Dossier Supprimé : C:\Users\Christiane\AppData\LocalLow\boost_interprocess
                  Dossier Supprimé : C:\Users\Christiane\AppData\Roaming\pdfforge
                  Dossier Supprimé : C:\Windows\assembly\GAC_MSIL\QuickStoresToolbar
                  Fichier Supprimé : C:\Users\Christiane\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\QuickStores.url
                  Fichier Supprimé : C:\Users\Christiane\AppData\Roaming\Microsoft\Windows\Start Menu\QuickStores.url

                  ***** [Registre] *****

                  Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Babylon
                  Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\QuickStores-Toolbar_is1
                  Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
                  Clé Supprimée : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\063A857434EDED11A893800002C0A966
                  Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{10EDB994-47F8-43F7-AE96-F2EA63E9F90F}]

                  ***** [Navigateurs] *****

                  -\\ Internet Explorer v9.0.8112.16483

                  [OK] Le registre ne contient aucune entrée illégitime.

                  -\\ Mozilla Firefox v20.0.1 (fr)

                  Fichier : C:\Users\Christiane\AppData\Roaming\Mozilla\Firefox\Profiles\o4ojwa2k.default\prefs.js

                  [OK] Le fichier ne contient aucune entrée illégitime.

                  -\\ Google Chrome v [Impossible d'obtenir la version]

                  Fichier : C:\Users\Christiane\AppData\Local\Google\Chrome\User Data\Default\Preferences

                  [OK] Le fichier ne contient aucune entrée illégitime.

                  *************************

                  AdwCleaner[S1].txt - [2117 octets] - [17/05/2013 16:35:02]

                  ########## EOF - C:\AdwCleaner[S1].txt - [2177 octets] ##########
                  0
                  1. L'ordi a redémarré en mode normal. Est-ce que je dois le redémarrer en mode sans échec
                    0
                    1. Contributeur sécurité
                      Redémarre ton PC en mode normal puis fais ceci :
                      1/
                      * Ouvre ton menu démarrer

                      -> Si tu es sur XP, ouvre exécuter, tape cmd et valide par pression sur la touche Enter

                      -> Sur Vista/Seven, dans le champ "Recherche" tape cmd , sur le résultat qui apparait, clic droit > exécuter en tant qu'administrateur

                      * Dans la fenêtre noire, tape sfc /scannow et laisse Windows réparer les fichiers.

                      2/
                      Tu peux suivre ce tuto pour essayer de restaurer ton windows à une date antérieure :
                      http://www.tutoriels-animes.com/restauration-systeme-windows-vista.html

                      0
                      1. Voilà, c'est fait :)
                        Merci pour l'aide et le temps consacré. Une dernière question : que faire des différents logiciels téléchargés et des rapports ?
                        0
                        1. Contributeur sécurité
                          On n'a pas encore terminé!:)
                          Merci pour l'aide et le temps consacré. Une dernière question : que faire des différents logiciels téléchargés et des rapports ?

                          On va les supprimer..
                          1/
                          Lance ZHPDiag depuis le bureau,ensuite coche tout au tournevis (aide ici) puis lance l'analyse, ferme le et héberge le rapport. colle le lien dans ta prochaine réponse

                          2/
                          Est ce que tu as restauré ton PC? comment se comporte t-il?
                          0
                          1. Ah, j'étais trop pressée ::))

                            Oui, j'ai restauré mon PC et ça m'a l'air de fonctionner :)

                            Voilà le rapport demandé :

                            Rapport de ZHPDiag v2013.5.16.126 par Nicolas Coolman, Update du 16/05/2013
                            Run by Christiane at 17/05/2013 20:02:10
                            WebSite: http://nicolascoolman.wix.com/nicolascoolman
                            State : Version à jour.
                            WhiteList : Disable
                            High Elevated Privileges : OK
                            UAC :

                            ---\\ Web Browser
                            MSIE: Internet Explorer v9.0.8112.16421
                            MFIE: Mozilla Firefox 20.0.1 (Defaut)
                            GCIE: Google Chrome
                            OBIE: Safari v5.34.57.2

                            ---\\ Windows Product Information
                            ~ Langage: Français
                            Windows Vista Home Premium Edition, 32-bit Service Pack 2 (Build 6002)
                            Windows Server License Manager Script : OK
                            ~ Vista, OEM_SLP channel
                            System Locked Preinstallation (OEM_SLP) : OK
                            Windows ID Activation : OK
                            ~ Windows Partial Key : RJ34F
                            Windows License : OK
                            Windows Automatic Updates : OK

                            ---\\ System Protection
                            Avira Free Antivirus v13.0.0.3640
                            Malwarebytes Anti-Malware version 1.75.0.1300

                            ---\\ System Optimizer
                            CCleaner v4.01 =>Piriform Ltd

                            ---\\ Peer To Peer (P2P)

                            ---\\ Software Update
                            Adobe Flash Player 11 Plugin
                            Adobe Reader X
                            Java 7 Update 21

                            ---\\ System Information
                            ~ Processor: x86 Family 6 Model 15 Stepping 13, GenuineIntel
                            ~ Operating System: 32 Bits
                            Boot mode: Normal (Normal boot)
                            Total RAM: 2037 MB (40% free)
                            System Restore: Activé (Enable)
                            System drive C: has 13 GB (13%) free of 93 GB

                            ---\\ Logged in mode
                            ~ Computer Name: PC-DE-MOI
                            ~ User Name: Christiane
                            ~ All Users Names: Christiane, Administrateur,
                            ~ Unselected Option: O45,O61,O62,O65,O66,O80,O82,O89
                            Logged in as Administrator

                            ---\\ Environnement Variables
                            ~ System Unit : C:\
                            ~ %AppData% : C:\Users\Christiane\AppData\Roaming\
                            ~ %Desktop% : C:\Users\Christiane\Desktop\
                            ~ %Favorites% : C:\Users\Christiane\Favorites\
                            ~ %LocalAppData% : C:\Users\Christiane\AppData\Local\
                            ~ %StartMenu% : C:\Users\Christiane\AppData\Roaming\Microsoft\Windows\Start Menu\
                            ~ %Windir% : C:\Windows\
                            ~ %System% : C:\Windows\System32\

                            ---\\ DOS/Devices
                            C:\ Hard drive, Flash drive, Thumb drive (Free 13 Go of 93 Go)
                            E:\ Hard drive, Flash drive, Thumb drive (Free 87 Go of 92 Go)
                            F:\ CD-ROM drive (Not Inserted)

                            ---\\ Security Center & Tools Informations
                            [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
                            [HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
                            [HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
                            [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
                            [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
                            [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
                            [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
                            [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK
                            [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
                            [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
                            [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
                            [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
                            ~ Security Center: 35 Scanned in 00mn 00s

                            ---\\ Recherche particulière de fichiers génériques
                            [MD5.D07D4C3038F3578FFCE1C0237F2A1253] - (.Microsoft Corporation - Explorateur Windows.) (.10/04/2009 - 22:27:38.) -- C:\Windows\Explorer.exe [2926592]
                            [MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) (.19/01/2008 - 08:33:37.) -- C:\Windows\System32\Wininit.exe [96768]
                            [MD5.2C96B3921B4CDE10DBAED5AAD760DB67] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.04/04/2013 - 23:02:17.) -- C:\Windows\System32\wininet.dll [1129472]
                            [MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.10/04/2009 - 22:28:14.) -- C:\Windows\System32\Winlogon.exe [314368]
                            [MD5.3911B972B55FEA0478476B2E777B29FA] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.21/04/2011 - 14:58:27.) -- C:\Windows\system32\Drivers\AFD.sys [273408]
                            [MD5.1F05B78AB91C9075565A9D8A4B880BC4] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.10/04/2009 - 22:32:28.) -- C:\Windows\system32\Drivers\atapi.sys [19944]
                            [MD5.7ADD03E75BEB9E6DD102C3081D29840A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.19/01/2008 - 06:28:02.) -- C:\Windows\system32\Drivers\Cdfs.sys [70144]
                            [MD5.6B4BFFB9BECD728097024276430DB314] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.10/04/2009 - 20:39:18.) -- C:\Windows\system32\Drivers\Cdrom.sys [67072]
                            [MD5.622C41A07CA7E6DD91770F50D532CB6C] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.14/04/2011 - 15:59:03.) -- C:\Windows\system32\Drivers\DfsC.sys [75264]
                            [MD5.062452B7FFD68C8C042A6261FE8DFF4A] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.10/04/2009 - 20:42:44.) -- C:\Windows\system32\Drivers\HDAudBus.sys [561152]
                            [MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - (.Microsoft Corporation - Pilote de port i8042.) (.19/01/2008 - 06:49:18.) -- C:\Windows\system32\Drivers\i8042prt.sys [54784]
                            [MD5.8793643A67B42CEC66490B2A0CF92D68] - (.Microsoft Corporation - IP Network Address Translator.) (.19/01/2008 - 06:56:28.) -- C:\Windows\system32\Drivers\IpNat.sys [100864]
                            [MD5.1E94971C4B446AB2290DEB71D01CF0C2] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.29/04/2011 - 14:24:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [106496]
                            [MD5.ECD64230A59CBD93C85F1CD1CAB9F3F6] - (.Microsoft Corporation - MBT Transport driver.) (.10/04/2009 - 20:45:38.) -- C:\Windows\system32\Drivers\netBT.sys [185856]
                            [MD5.2C1121F2B87E9A6B12485DF53CD848C7] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.03/03/2013 - 20:07:52.) -- C:\Windows\system32\Drivers\ntfs.sys [1082232]
                            [MD5.0FA9B5055484649D63C303FE404E5F4D] - (.Microsoft Corporation - Pilote de port parallèle.) (.02/11/2006 - 09:51:30.) -- C:\Windows\system32\Drivers\Parport.sys [79360]
                            [MD5.A214ADBAF4CB47DD2728859EF31F26B0] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.19/01/2008 - 06:56:34.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [76288]
                            [MD5.E8BD98D46F2ED77132BA927FCCB47D8B] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.02/11/2006 - 10:03:00.) -- C:\Windows\system32\Drivers\rdpdr.sys [242688]
                            [MD5.7B75299A4D201D6A6533603D6914AB04] - (.Microsoft Corporation - SMB Transport driver.) (.10/04/2009 - 20:45:24.) -- C:\Windows\system32\Drivers\smb.sys [66560]
                            [MD5.76B06EB8A01FC8624D699E7045303E54] - (.Microsoft Corporation - TDI Translation Driver.) (.10/04/2009 - 20:45:58.) -- C:\Windows\system32\Drivers\tdx.sys [72192]
                            [MD5.786DB5771F05EF300390399F626BF30A] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.21/08/2012 - 12:47:42.) -- C:\Windows\system32\Drivers\volsnap.sys [224640]
                            ~ Generic Processes: Scanned in 00mn 01s

                            ---\\ Etat des fichiers cachés (Caché/Total)
                            ~ Mes images (My Pictures) : 2/4690
                            ~ Mes musiques (My Musics) : 1/307
                            ~ Mes Videos (My Videos) : 1/72
                            ~ Mes Favoris (My Favorites) : 1/124
                            ~ Mes Documents (My Documents) : 4/2184
                            ~ Mon Bureau (My Desktop) : 1/15
                            ~ Menu demarrer (Programs) : 1/46
                            ~ Hidden Files: Scanned in 00mn 07s

                            ---\\ Processus lancés
                            [MD5.FA8EC2E971C99F88C3A38D27CBAAA688] - (.Uniblue Systems Ltd - Uniblue DriverScanner Monitor.) -- C:\Program Files\Uniblue\DriverScanner\dsmonitor.exe [26456] [PID.2016]
                            [MD5.005176B5F303ABD897CC0BE501A2DC34] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [154136] [PID.1192]
                            [MD5.EEAB9DF84B132F78C909CD8061A4076C] - (.TOSHIBA CORPORATION - ConfigFree(TM) tray.) -- C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe [1372160] [PID.904]
                            [MD5.AC34D2DE70642EAA646EB6834B226248] - (.Intel Corporation - igfxsrvc Module.) -- C:\Windows\system32\igfxsrvc.exe [252440] [PID.2096]
                            [MD5.2C0030E71313C16424E9EA49C6DFB006] - (.TOSHIBA CORPORATION - ConfigFree Switch Manager.) -- C:\Program Files\TOSHIBA\ConfigFree\CFSwMgr.exe [405504] [PID.2420]
                            [MD5.AFD400AEBCAB252C99E60991FF00D9D2] - (.Pas de propriétaire - KeNotify MFC Application.) -- C:\Program Files\TOSHIBA\Utilities\KeNotify.exe [34352] [PID.1344]
                            [MD5.866CD9A4BF30B79B3BEC2D4E2ED2F059] - (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe [4702208] [PID.1340]
                            [MD5.E589F7DF4F9B0E8E857022256F447F6E] - (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1451304] [PID.4060]
                            [MD5.FD579C25D253A47DF82A76B7EE96ADB5] - (.Avira Operations GmbH & Co. KG - Avira System Tray Tool.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [345312] [PID.3904]
                            [MD5.BF08674925F151BD4537B89A493E3E0C] - (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehtray.exe [125952] [PID.2408]
                            [MD5.3F3A26E471CCCB3CFFCA68F0C052F35F] - (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\System32\spool\drivers\w32x86\3\E_FATIHLE.exe [249440] [PID.3760]
                            [MD5.286A79BE30FE70DFE875D88D660846C6] - (.Synaptics Incorporated - Toshiba Custom PlugIn Application.) -- C:\Program Files\Synaptics\SynTP\SynToshiba.exe [210216] [PID.2316]
                            [MD5.0F4195B9B348DE5CF9B822F81704B20E] - (.Microsoft Corporation - Media Center Media Status Aggregator Servic.) -- C:\Windows\ehome\ehmsas.exe [37376] [PID.3996]
                            [MD5.FA3AA3611A361D9B7BB551D2CD033F2B] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\Program Files\Synaptics\SynTP\SynTPHelper.exe [103720] [PID.5260]
                            [MD5.6F5386A655598F71BAAB2D6B63A69D6A] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [920472] [PID.5324]
                            [MD5.F834B06933E51E2266DC4858A0E9DD98] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files\Mozilla Firefox\plugin-container.exe [17304] [PID.4736]
                            [MD5.23AA0FDCBDD87D0B78092798C68312D8] - (.Adobe Systems, Inc. - Adobe Flash Player 11.7 r700.) -- C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_7_700_202.exe [1855880] [PID.5728]
                            [MD5.5E8F572B4F267FB2B7E05F62A3537B3F] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [7363072] [PID.3668]
                            [MD5.C7FBDD1ED42F82BFA35167A5C9803EA3] - (.Microsoft Corporation - PresentationFontCache.exe.) -- C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [43904] [PID.1016]
                            [MD5.862BB4CBC05D80C5B45BE430E5EF872F] - (.Microsoft Corporation - Service de gestion des licences Microsoft.) -- C:\Windows\system32\SLsvc.exe [3408896] [PID.1364]
                            [MD5.4B555106290BD117334E9A08761C035A] - (...) -- ystem32\rundll32.exe [0] [PID.1976]
                            [MD5.E41F55D0B71734BB68FF26963EB250E4] - (.Avira Operations GmbH & Co. KG - Avira Scheduler.) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe [86752] [PID.972]
                            [MD5.ABDD5AD016AFFD34AD40E944CE94BF59] - (.SEIKO EPSON CORPORATION - eEBAPI Core Process module.) -- C:\Program Files\Common Files\EPSON\EBAPI\eEBSVC.exe [94208] [PID.2460]
                            [MD5.B33CF4DE909A5B30F526D82053A63C8E] - (.ABBYY - ABBYY network license server.) -- C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048] [PID.2608]
                            [MD5.ADC420616C501B45D26C0FD3EF1E54E4] - (.ArcSoft Inc. - ArcSoft Connect Service.) -- C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152] [PID.2620]
                            [MD5.3927397AC60D943DAF8808AFFED582B7] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [65192] [PID.2632]
                            [MD5.39E435C90C9C4F780FA0ED05CA3C3A1B] - (.Agere Systems - Agere Soft Modem Call Progress Service.) -- C:\Windows\system32\agrsmsvc.exe [9216] [PID.2664]
                            [MD5.880AE0BEDE234F27AC252049373B8CB9] - (.Avira Operations GmbH & Co. KG - Avira On-Access Service.) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe [110816] [PID.2676]
                            [MD5.4FE5C6D40664AE07BE5105874357D2ED] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [57008] [PID.2692]
                            [MD5.DB5BEA73EDAF19AC68B2C0FAD0F92B1A] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [390504] [PID.2756]
                            [MD5.C82162949BBA6CC5D006C7BD008F3CF1] - (.TOSHIBA CORPORATION - Service of ConfigFree..) -- C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe [40960] [PID.2776]
                            [MD5.582F2D900A3AC34C98FBDC2C0ABEF6B9] - (.Intel Corporation - RAID Monitor.) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [355096] [PID.2848]
                            [MD5.B351AA72EAE95C4447A3C5329977F064] - (.TOSHIBA Corporation - TOSHIBA Navi Support Service.) -- C:\Program Files\TOSHIBA\TOSHIBA DVD PLAYER\TNaviSrv.exe [77824] [PID.3200]
                            [MD5.D540858E65BFA6FDED41AD2495ECE344] - (.TOSHIBA Corporation - TDCSrv Application.) -- C:\Windows\system32\TODDSrv.exe [114688] [PID.3256]
                            [MD5.F620772888B6E3EDEF5C3E71E3D447F0] - (.TomTom - Windows Service for TomTom HOME.) -- C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe [92632] [PID.3280]
                            [MD5.6A54C28B53C6B50D333C8EE974C6B208] - (.TOSHIBA Corporation - TOSHIBA Power Saver.) -- C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe [427576] [PID.3304]
                            [MD5.332D341D92B933600D41953B08360DFB] - (.Ulead Systems, Inc. - ULCDRSvr.) -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [49152] [PID.3340]
                            [MD5.B1391D35758DA0F5475304E29A1E048F] - (.WDC - WD Drive Manager Service.) -- C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrSvc.exe [102400] [PID.3400]
                            [MD5.6B3DD4B1D5D4C239AD84A460E676C6D7] - (.Avira Operations GmbH & Co. KG - Avira Shadow Copy Service.) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe [79584] [PID.2224]
                            ~ Processes Running: Scanned in 00mn 02s

                            ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
                            C:\Users\Christiane\AppData\Local\Google\Chrome\User Data\Default\Preferences
                            G1 - GCS: Preference [User Data\Default] None
                            G0 - GCSP: Preference [User Data\Default][HomePage] https://www.google.com/?gws_rd=ssl
                            G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] YouTube v.4.2 (Activé)
                            G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Recherche Google v.0.0.0.14 (Activé)
                            G2 - GCE: Preference [User Data\Default] [jbolfgndggfhhpbnkgnpjkfhinclbigj] Freemake Video Converter v.1.0.0 (Activé)
                            G2 - GCE: Preference [User Data\Default] [jfmjfhklogoienhpfnppmbcbjfjnkonk] RealPlayer HTML5Video Downloader Extension v.1.5 (Activé)
                            G2 - GCE: Preference [User Data\Default] [lifbcibllhkdhoafpjfnlhfpfgnpldfl] Skype Click to Call v.5.6.0.8442 (Activé)
                            G2 - GCE: Preference [User Data\Default] [nneajnkjbffgblleaoojgaacokifdkhm] \u003Cvideo\u003E HTML5 DivX Plus Web Player v.2.1.2.145 (Activé)
                            G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Gmail v.6.1.3 (Activé)
                            ~ Google Browser: 9 Scanned in 00mn 00s

                            ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
                            C:\Users\Christiane\AppData\Roaming\Mozilla\Firefox\Profiles\o4ojwa2k.default\prefs.js
                            M0 - MFSP: prefs.js [Christiane - o4ojwa2k.default] https://www.google.fr/?gws_rd=ssl
                            M2 - MFEP: prefs.js [Christiane - o4ojwa2k.default\{20a82645-c095-46ed-80e3-08825760534b}] [MicrosoftCG] Microsoft .NET Framework Assistant v1.2.1 (..)
                            M2 - MFEP: prefs.js [Christiane - o4ojwa2k.default\{9CCE52B0-5079-4177-9586-1BF6575E62DE}] [] Plugin CanalPlay v1.0.0.1 (..)
                            M2 - MFEP: prefs.js [Christiane - o4ojwa2k.default\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}] [WOT] WOT v20130515 (..)
                            P2 - FPN:Firefox Plugin Navigator . (.Microsoft Corporation - np-mswmp.) -- C:\Program Files\Mozilla Firefox\Plugins\np-mswmp.dll
                            P2 - FPN:Firefox Plugin Navigator . (.Pas de propriétaire - APIX Mozilla Plugin.) -- C:\Program Files\Mozilla Firefox\Plugins\NPAPIX.dll
                            P2 - FPN:Firefox Plugin Navigator . (.DivX, Inc - npdivxplayerplugin.) -- C:\Program Files\Mozilla Firefox\Plugins\npDivxPlayerPlugin.dll
                            P2 - FPN:Firefox Plugin Navigator . (.Pas de propriétaire - fluxDVD Browser Helper Plugin.) -- C:\Program Files\Mozilla Firefox\Plugins\NPFluxBrowserHelper.dll
                            P2 - FPN:Firefox Plugin Navigator . (.Pas de propriétaire - MPDRM License Acquisition Plugin.) -- C:\Program Files\Mozilla Firefox\Plugins\NPMPDRM.dll
                            P2 - FPN:Firefox Plugin Navigator . (.Microsoft Corporation - 1.6.0028.1.) -- C:\Program Files\Mozilla Firefox\Plugins\npOGAPlugin.dll
                            P2 - FPN:Firefox Plugin Navigator . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 10.1.6.) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll
                            P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin.dll
                            P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin2.dll
                            P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin3.dll
                            P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin4.dll
                            P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin5.dll
                            P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin6.dll
                            P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin7.dll
                            P2 - FPN:Firefox Plugin Navigator . (.RealNetworks, Inc. - 12.0.1.669.) -- C:\Program Files\Mozilla Firefox\Plugins\nprpjplug.dll
                            P2 - FPN:Firefox Plugin Navigator . (.Pas de propriétaire - WMDRM License Acquisition Wrapper.) -- C:\Program Files\Mozilla Firefox\Plugins\NPWMDRMWrapper.dll
                            P2 - FPN:Firefox Plugin Navigator . (.NOS Microsystems Ltd. - getplusplusadobe16291.) -- C:\Program Files\Mozilla Firefox\Plugins\np_gp.dll
                            P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF32_11_7_700_202.dll
                            P2 - FPN: [HKLM] [@adobe.com/ShockwavePlayer] - (.Adobe Systems, Inc. - Adobe Shockwave for Director Netscape plug-in, version 12.0.) -- C:\Windows\system32\Adobe\Director\np32dsw_1200112.dll
                            P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (...) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
                            P2 - FPN: [HKLM] [@divx.com/DivX Browser Plugin,version=1.0.0] - (.DivX, LLC - DivX Plus Web Player version 2.2.2.14.) -- C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
                            P2 - FPN: [HKLM] [@divx.com/DivX Player Plugin,version=1.0.0] - (...) -- C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll (.not file.)
                            P2 - FPN: [HKLM] [@divx.com/DivX VOD Helper,version=1.0.0] - (.DivX, LLC. - DivX VOD Helper Plug-in.) -- C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll
                            P2 - FPN: [HKLM] [@fluxdvd.com/NPAPIX] - (.Pas de propriétaire - APIX Mozilla Plugin.) -- C:\Program Files\Common Files\fluxDVD\APIX\NPAPIX.dll
                            P2 - FPN: [HKLM] [@fluxdvd.com/NPFluxBrowserHelper] - (.Pas de propriétaire - fluxDVD Browser Helper Plugin.) -- C:\Program Files\Common Files\fluxDVD\BrowserIntegration\NPFluxBrowserHelper.dll
                            P2 - FPN: [HKLM] [@Google.com/GoogleEarthPlugin] - (.Google - GEPlugin.) -- C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
                            P2 - FPN: [HKLM] [@google.com/npPicasa3,version=3.0.0] - (.Google, Inc. - Picasa plugin.) -- C:\Program Files\Google\Picasa3\npPicasa3.dll
                            P2 - FPN: [HKLM] [@java.com/DTPlugin,version=10.21.2] - (.Oracle Corporation - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- C:\Windows\system32\npDeployJava1.dll
                            P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=10.21.2] - (.Oracle Corporation - Next Generation Java Plug-in 10.21.2 for Mozilla browsers.) -- C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
                            P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 5.1.20125.0.) -- C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll
                            P2 - FPN: [HKLM] [@microsoft.com/OfficeAuthz,version=14.0] - (.Microsoft Corporation - Office Authorization plug-in for NPAPI browsers.) -- C:\Program Files\Microsoft Office\Office14\NPAUTHZ.dll
                            P2 - FPN: [HKLM] [@microsoft.com/OfficeLive,version=1.3] - (.Microsoft Corp. - Office Live Update v1.5.) -- C:\Program Files\Microsoft\Office Live\npOLW.dll
                            P2 - FPN: [HKLM] [@microsoft.com/OfficeLive,version=1.5] - (.Microsoft Corp. - Office Live Update v1.5.) -- C:\Program Files\Microsoft\Office Live\npOLW.dll
                            P2 - FPN: [HKLM] [@microsoft.com/SharePoint,version=14.0] - (.Microsoft Corporation - The plug-in allows you to open and edit files using Microsoft Office a.) -- C:\Program Files\Microsoft Office\Office14\NPSPWRAP.dll
                            P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3502.0922] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
                            P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3508.1109] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
                            P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3538.0513] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
                            P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3555.0308] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
                            P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
                            P2 - FPN: [HKLM] [@nosltd.com/getPlus+(R),version=1.6.2.91] - (.NOS Microsystems Ltd. - getplusplusadobe16291.) -- C:\Program Files\NOS\bin\np_gp.dll
                            P2 - FPN: [HKLM] [@protectdisc.com/NPMPDRM] - (.Pas de propriétaire - MPDRM License Acquisition Plugin.) -- C:\Program Files\Common Files\mpDRM\NPMPDRM.dll
                            P2 - FPN: [HKLM] [@protectdisc.com/NPWMDRMWrapper] - (.Pas de propriétaire - WMDRM License Acquisition Wrapper.) -- C:\Program Files\Common Files\mpDRM\NPWMDRMWrapper.dll
                            P2 - FPN: [HKLM] [@real.com/nprpchromebrowserrecordext;version=15.0.6.14] - (.RealNetworks, Inc. - RealNetworks(tm) RealPlayer Chrome Background Extension Plug-In.) -- C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll
                            P2 - FPN: [HKLM] [@real.com/nprphtml5videoshim;version=15.0.6.14] - (.RealNetworks, Inc. - RealPlayer(tm) HTML5VideoShim Plug-In.) -- C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
                            P2 - FPN: [HKLM] [@real.com/nprpjplug;version=12.0.1.669] - (.RealNetworks, Inc. - 12.0.1.669.) -- c:\program files\real\realplayer\Netscape6\nprpjplug.dll
                            P2 - FPN: [HKLM] [@t-immersion.com/DFusionHomeWebPlugIn] - (.Total Immersion - D'Fusion @Home Web Plug-In (2.30.11563.0).) -- C:\Program Files\Total Immersion\DFusionHomeWebPlugIn\NPDFusionWebFirefox.dll
                            P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.145\npGoogleUpdate3.dll
                            P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.145\npGoogleUpdate3.dll
                            P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.0.1] - (.VideoLAN - VLC media player Web Plugin 2.0.2.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll
                            P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.0.3] - (.VideoLAN - VLC media player Web Plugin 2.0.2.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll
                            P2 - FPN: [HKLM] [Adobe Reader] - (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 10.1.6.) -- C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
                            ~ Firefox Browser: 72 Scanned in 00mn 02s

                            ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
                            R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
                            R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
                            R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
                            R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.microsoft.com/fr-fr/
                            R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.microsoft.com/fr-fr/
                            R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
                            R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
                            R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.microsoft.com/fr-fr/
                            R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = https://www.bing.com/?toHttps=1&redig=17DBE7D168544FA98200E890A8051984
                            R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = https://www.bing.com/?toHttps=1&redig=17DBE7D168544FA98200E890A8051984
                            R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
                            R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 10.1.6.) (No version) -- (.not file.)
                            R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2
                            ~ IE Browser: 14 Scanned in 00mn 00s

                            ---\\ Internet Explorer, Proxy Management (R5)
                            R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
                            R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
                            R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
                            R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
                            R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
                            R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
                            ~ Proxy management: Scanned in 00mn 00s

                            ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
                            F2 - REG:system.ini: USERINIT=C:\Windows\system32\Userinit.exe,
                            F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
                            F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"
                            ~ Keys: Scanned in 00mn 00s

                            ---\\ Redirection du fichier Hosts (O1)
                            ~ Le fichier hosts est sain (The hosts file is clean).
                            ~ Hosts File: Scanned in 00mn 00s
                            ~ Nombre de lignes (Lines number): 1

                            ---\\ Browser Helper Objects de navigateur (O2)
                            O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
                            O2 - BHO: (no name) - {243B17DE-77C7-46BF-B94B-0B5F309A0E64} . (.Microsoft Corporation - MoneySide Controls.) -- C:\Program Files\Microsoft Money\System\mnyside.dll
                            O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} . (.RealPlayer - RealPlayer Download and Record Plugin.) -- C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
                            O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} . (.DivX, LLC - DivX Plus Web Player HTML5 <video> version.) -- C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
                            O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} . (.Microsoft Corporation - Search Helper for Internet Explorer.) -- C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
                            O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.dll
                            O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\ssv.dll
                            O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                            O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} . (.SEIKO EPSON CORPORATION / CyCom Technology - Epson Easy Photo Print (TBL).) -- C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
                            O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} . (.Microsoft Corporation - Windows Live Messenger Companion Core.) -- C:\Program Files\Windows Live\Companion\companioncore.dll
                            O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\Office14\URLREDIR.dll
                            O2 - BHO: WOT Helper - {C920E44A-7F78-4E64-BDD7-A57026E7FEB7} . (...) -- C:\Program Files\WOT\WOT.dll
                            O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\jp2ssv.dll
                            O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} Clé orpheline
                            ~ BHO: 14 Scanned in 00mn 00s

                            ---\\ Internet Explorer Toolbars (O3)
                            O3 - Toolbar: WOT - [HKLM]{71576546-354D-41c9-AAE8-31F2EC22BF0D} . (...) -- C:\Program Files\WOT\WOT.dll
                            O3 - Toolbar: Easy Photo Print - [HKLM]{9421DD08-935F-4701-A9CA-22DF90AC4EA6} . (.SEIKO EPSON CORPORATION / CyCom Technology - Epson Easy Photo Print (TBL).) -- C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
                            ~ Toolbar: Scanned in 00mn 00s

                            ---\\ Applications démarrées par registre & par dossier (O4)
                            O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe
                            O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe
                            O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe
                            O4 - HKLM\..\Run: [HSON] . (.TOSHIBA Corporation - HotStartOn.) -- C:\Program Files\TOSHIBA\TBS\HSON.exe
                            O4 - HKLM\..\Run: [KeNotify] . (.Pas de propriétaire - KeNotify MFC Application.) -- C:\Program Files\TOSHIBA\Utilities\KeNotify.exe
                            O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe
                            O4 - HKLM\..\Run: [SVPWUTIL] . (.TOSHIBA - SVPWUTIL Application.) -- C:\Program Files\TOSHIBA\Utilities\SVPWUTIL.exe
                            O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
                            O4 - HKLM\..\Run: [SynTPStart] . (.Synaptics, Inc. - Synaptics Pointing Device starter.) -- C:\Program Files\Synaptics\SynTP\SynTPStart.exe
                            O4 - HKLM\..\Run: [topi] . (.TOSHIBA - TOSHIBA Online Product Information.) -- C:\Program Files\TOSHIBA\Toshiba Online Product Information\topi.exe
                            O4 - HKLM\..\Run: [TPwrMain] . (.TOSHIBA Corporation - TOSHIBA Power Saver.) -- C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
                            O4 - HKLM\..\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
                            O4 - HKLM\..\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Avira System Tray Tool.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
                            O4 - HKCU\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehTray.exe
                            O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHLE.exe
                            O4 - HKCU\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\WMPNSCFG.exe
                            O4 - HKUS\S-1-5-21-875792779-1162065781-405896271-1000\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehTray.exe
                            O4 - HKUS\S-1-5-21-875792779-1162065781-405896271-1000\..\Run: [EPLTarget\P0000000000000000] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHLE.exe
                            O4 - HKUS\S-1-5-21-875792779-1162065781-405896271-1000\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\WMPNSCFG.exe
                            ~ Application: Scanned in 00mn 00s

                            ---\\ Autres liens utilisateurs (O4)
                            O4 - GS\Programs: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
                            O4 - GS\Programs: Windows Mail.lnk . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe
                            O4 - GS\Programs: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe
                            O4 - GS\QuickLaunch: Apple Safari.lnk . (...) -- C:\Windows\Installer\{C779648B-410E-4BBA-B75B-5815BCEFE71D}\SafariIco.exe
                            O4 - GS\QuickLaunch: DriverScanner.lnk . (.Uniblue Systems Ltd - Uniblue DriverScanner.) -- C:\Program Files\Uniblue\DriverScanner\driverscanner.exe
                            O4 - GS\QuickLaunch: Free Video Converter.lnk . (.Koyote Soft - FreeVideoConverter.) -- C:\Program Files\Free Video Converter\FreeVideoConverter.exe
                            O4 - GS\QuickLaunch: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
                            O4 - GS\QuickLaunch: Mahjong Titans.LNK - Clé orpheline
                            O4 - GS\QuickLaunch: Mes documents.lnk . (...) -- C:\Users\Christiane\Documents
                            O4 - GS\QuickLaunch: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
                            O4 - GS\QuickLaunch: Picasa 3.lnk . (.Google Inc. - Picasa.) -- C:\Program Files\Google\Picasa3\Picasa3.exe
                            O4 - GS\QuickLaunch: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) -- C:\Program Files\Windows Media Player\wmplayer.exe
                            O4 - GS\Accessories: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
                            O4 - GS\SendTo: Palm Powered(TM) Handheld.lnk . (...) -- C:\Program Files\palmOne\Instapp.exe (.not file.)
                            O4 - GS\SendTo: Skype.lnk . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe
                            O4 - GS\Desktop: 7-Zip File Manager.lnk . (.Igor Pavlov - 7-Zip File Manager.) -- C:\Program Files\7-Zip\7zFM.exe
                            O4 - GS\Desktop: CopyTrans Control Center.lnk . (.WindSolutions - Pas de description.) -- C:\Users\Christiane\AppData\Roaming\WindSolutions\CopyTransControlCenter\Applications\CopyTransControlCenter.exe
                            O4 - GS\Desktop: Free Video Converter.lnk . (.Koyote Soft - FreeVideoConverter.) -- C:\Program Files\Free Video Converter\FreeVideoConverter.exe
                            O4 - GS\Desktop: Google Drive.lnk . (...) -- C:\Users\Christiane\Google Drive
                            O4 - GS\Desktop: Mes documents.lnk . (...) -- C:\Users\Christiane\Documents
                            O4 - GS\Desktop: Microsoft Word 2010.lnk . (...) -- C:\Windows\Installer\{91140000-0011-0000-0000-0000000FF1CE}\wordicon.exe
                            O4 - GS\Desktop: Revo Uninstaller.lnk . (.VS Revo Group - Revo Uninstaller.) -- C:\Program Files\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
                            O4 - GS\Desktop: TomTom.lnk . (.TomTom International B.V. - TomTomHOME.exe.) -- C:\Program Files\TomTom HOME 2\TomTomHOME.exe
                            ~ Global Startup: Scanned in 00mn 03s

                            ---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
                            O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} . (.Microsoft Corporation - Windows Live Messenger Companion core resources.) -- C:\Program Files\Windows Live\Companion\companionres.dll
                            O9 - Extra button: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -- Clé orpheline
                            O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} . (.Microsoft Corporation - Windows Live Writer Blog This Extension.) -- C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
                            O9 - Extra button: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} . (.Microsoft Corporation - Microsoft OneNote Internet Explorer Add-in.) -- C:\Program Files\MICROS~2\Office14\ONBttnIE.dll
                            O9 - Extra button: eBay - Achetez, Vendez - {76577871-04EC-495E-A12B-91F7C3600AFA} . (...) -- C:\Toshiba\Webshops\eBay\ebay.ico
                            O9 - Extra button: Notes &liées OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} . (.Microsoft Corporation - Microsoft OneNote Internet Explorer Add-in.) -- C:\Program Files\MICROS~2\Office14\ONBTTN~1.dll
                            O9 - Extra button: Amazon.fr - {8A918C1D-E123-4E36-B562-5C1519E434CE} . (...) -- C:\Toshiba\Webshops\Amazon\amazon.ico
                            O9 - Extra button: eBay - {C08CAF1D-C0A3-40D5-9970-06D067EAC017} -- C:\Toshiba\ebay\ebay.ico (.not file.)
                            O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} . (.Microsoft Corporation - MoneySide Controls.) -- C:\Program Files\Microsoft Money\System\mnyside.dll
                            ~ IE Extra Buttons: Scanned in 00mn 00s

                            ---\\ Winsock hijacker (Layered Service Provider) (O10)
                            O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
                            O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
                            O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
                            O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
                            O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
                            O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
                            O10 - WLSP:\000000000007\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files\Bonjour\mdnsNSP.dll
                            ~ Winsock: 7 Scanned in 00mn 00s

                            ---\\ Site dans la Zone de confiance d'Internet Explorer (O15)
                            O15 - Trusted Zone: [HKCU\...\Domains] *.canalplay.com
                            O15 - Trusted Zone: [HKCU\...\Domains] *.canalplusactive.com
                            O15 - Trusted Zone: [HKLM\...\Domains] *.canalplay.com
                            O15 - Trusted Zone: [HKLM\...\Domains] *.canalplusactive.com
                            ~ IE Zone Confiance: Scanned in 00mn 00s

                            ---\\ Objets ActiveX (Downloaded Program Files)(O16)
                            O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} ((no name)) - http://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
                            O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} ((no name)) - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
                            ~ Objets ActiveX: Scanned in 00mn 00s

                            ---\\ Modification Domaine/Adresses DNS (O17)
                            O17 - HKLM\System\CCS\Services\Tcpip\..\{02AF0E17-5416-404B-A3E5-5280F8EBC93B}: DhcpNameServer = 212.27.40.240 212.27.40.241
                            O17 - HKLM\System\CCS\Services\Tcpip\..\{895B5F3A-4142-4BE8-87E0-EC55F53E1D1C}: DhcpNameServer = 212.27.40.241 212.27.40.240
                            O17 - HKLM\System\CS1\Services\Tcpip\..\{02AF0E17-5416-404B-A3E5-5280F8EBC93B}: DhcpNameServer = 212.27.40.240 212.27.40.241
                            O17 - HKLM\System\CS1\Services\Tcpip\..\{895B5F3A-4142-4BE8-87E0-EC55F53E1D1C}: DhcpNameServer = 212.27.40.241 212.27.40.240
                            O17 - HKLM\System\CS3\Services\Tcpip\..\{02AF0E17-5416-404B-A3E5-5280F8EBC93B}: DhcpNameServer = 212.27.40.240 212.27.40.241
                            O17 - HKLM\System\CS3\Services\Tcpip\..\{895B5F3A-4142-4BE8-87E0-EC55F53E1D1C}: DhcpNameServer = 212.27.40.241 212.27.40.240
                            O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.240 212.27.40.241
                            ~ Domain: Scanned in 00mn 00s

                            ---\\ Protocole additionnel (O18)
                            O18 - Handler: wot - {C2A44D6B-CB9F-4663-88A6-DF2F26E4D952} . (...) -- C:\Program Files\WOT\WOT.dll
                            O18 - Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.dll
                            ~ Protocole Additionnel: Scanned in 00mn 00s

                            ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
                            O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll
                            ~ Winlogon: Scanned in 00mn 00s

                            ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
                            O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Contrôleur de site Web.) -- C:\Windows\System32\webcheck.dll
                            ~ SSODL: 1 Scanned in 00mn 00s

                            ---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22)
                            O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\Windows\System32\browseui.dll
                            ~ STS/SSO: Scanned in 00mn 00s

                            ---\\ Liste des services NT non Microsoft et non désactivés (O23)
                            O23 - Service: ABBYY FineReader 9.0 Sprint Licensing Se (ABBYY.Licensing.FineReader.Sprint.9.0) . (.ABBYY - ABBYY network license server.) - C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
                            O23 - Service: ArcSoft Connect Daemon (ACDaemon) . (.ArcSoft Inc. - ArcSoft Connect Service.) - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
                            O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
                            O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) . (.Agere Systems - Agere Soft Modem Call Progress Service.) - C:\Windows\system32\agrsmsvc.exe
                            O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Avira Scheduler.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe
                            O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Avira On-Access Service.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
                            O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
                            O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
                            O23 - Service: ConfigFree Service (CFSvcs) . (.TOSHIBA CORPORATION - Service of ConfigFree..) - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
                            O23 - Service: EpsonBidirectionalService (EpsonBidirectionalService) . (.SEIKO EPSON CORPORATION - eEBAPI Core Process module.) - C:\Program Files\Common Files\EPSON\EBAPI\eEBSVC.exe
                            O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe
                            O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) . (.Intel Corporation - RAID Monitor.) - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
                            O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe
                            O23 - Service: TOSHIBA Navi Support Service (TNaviSrv) . (.TOSHIBA Corporation - TOSHIBA Navi Support Service.) - C:\Program Files\TOSHIBA\TOSHIBA DVD PLAYER\TNaviSrv.exe
                            O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) . (.TOSHIBA Corporation - TDCSrv Application.) - C:\Windows\system32\TODDSrv.exe
                            O23 - Service: TomTomHOMEService (TomTomHOMEService) . (.TomTom - Windows Service for TomTom HOME.) - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
                            O23 - Service: TOSHIBA Power Saver (TosCoSrv) . (.TOSHIBA Corporation - TOSHIBA Power Saver.) - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
                            O23 - Service: Ulead Burning Helper (UleadBurningHelper) . (.Ulead Systems, Inc. - ULCDRSvr.) - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
                            O23 - Service: WD Drive Manager Service (WDBtnMgrSvc.exe) . (.WDC - WD Drive Manager Service.) - C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrSvc.exe
                            ~ Services: 19 Scanned in 00mn 09s

                            ---\\ Enumération Active Desktop & MHTML Editor (O24)
                            O24 - Default MHTML Editor: Last - .(...) - C:\Program Files\Microsoft Office\Office12\WINWORD.exe (.not file.)
                            ~ Desktop Component: 4 Scanned in 00mn 00s

                            ---\\ BootExecute (O34)
                            O34 - HKLM BootExecute: (autocheck autochk *) - File not found
                            ~ BEX: 1 Scanned in 00mn 00s

                            ---\\ Tâches planifiées en automatique (O39)
                            O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job [1002]
                            O39 - APT:Automatic Planified Task - C:\Windows\Tasks\dsmonitor.job [338]
                            O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1060]
                            O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1064]
                            O39 - APT:Automatic Planified Task - C:\Windows\Tasks\LMLMTSIJ.job [322]
                            [MD5.F040037B149FD0F5A5044AE563390FA7] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [256904]
                            [MD5.42BC01952E1ED3152DDE0C0C9C2012D4] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [3545880] =>Piriform Ltd
                            [MD5.FA8EC2E971C99F88C3A38D27CBAAA688] [APT] [dsmonitor] (.Uniblue Systems Ltd.) -- C:\Program Files\Uniblue\DriverScanner\dsmonitor.exe [26456]
                            [MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [116648]
                            [MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [116648]
                            [MD5.9A7F1691F76E019C11481B6355125072] [APT] [RealPlayerRealUpgradeLogonTaskS-1-5-21-875792779-1162065781-405896271-1000] (.RealNetworks, Inc..) -- C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [187544]
                            [MD5.9A7F1691F76E019C11481B6355125072] [APT] [RealPlayerRealUpgradeScheduledTaskS-1-5-21-875792779-1162065781-405896271-1000] (.RealNetworks, Inc..) -- C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [187544]
                            [MD5.9A7F1691F76E019C11481B6355125072] [APT] [RealUpgradeLogonTaskS-1-5-21-875792779-1162065781-405896271-1000] (.RealNetworks, Inc..) -- C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [187544]
                            [MD5.9A7F1691F76E019C11481B6355125072] [APT] [RealUpgradeScheduledTaskS-1-5-21-875792779-1162065781-405896271-1000] (.RealNetworks, Inc..) -- C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [187544]
                            [MD5.6F5386A655598F71BAAB2D6B63A69D6A] [APT] [{19806F1D-DE06-4995-873A-50737FBFAE22}] (.Mozilla Corporation.) -- c:\program files\mozilla firefox\firefox.exe [920472]
                            [MD5.7E4AD8220AF0B281274F9785DD53E25C] [APT] [{274A72C2-90CF-4A49-80F1-1DDAAEEBA4A5}] (.Skype Technologies S.A..) -- C:\Program Files\Skype\Phone\Skype.exe [18642024]
                            [MD5.08A17FA6D191D63DA0ED3DBA650C8DD9] [APT] [{391B54E2-355D-4ED8-88CB-9B5F6D53F03A}] (.Intel Corporation.) -- C:\Windows\System32\igfxcfg.exe [526872]
                            [MD5.00000000000000000000000000000000] [APT] [{39C3437D-A9CE-4909-9652-23CC57006322}] (...) -- C:\Users\Christiane\Documents\Mes fichiers re#us\clipart800.exe (.not file.) [0]
                            [MD5.00000000000000000000000000000000] [APT] [{7474640D-01A5-428D-BB56-0488F4773386}] (...) -- C:\Users\Christiane\Documents\Mes fichiers re#us\OOo_3.2.0_Win32Intel_install_wJRE_fr.exe (.not file.) [0]
                            [MD5.00000000000000000000000000000000] [APT] [{810FCE29-FB88-4B62-8974-BCC7DDE08EBA}] (...) -- C:\Users\Christiane\Documents\Mes fichiers re#us\Arriere_plans_oo2.exe (.not file.) [0]
                            [MD5.00000000000000000000000000000000] [APT] [{C4E6CEE1-F856-4FE7-9AD8-A96887F82168}] (...) -- F:\Setup.exe (.not file.) [0]
                            [MD5.00000000000000000000000000000000] [APT] [{DD7C58C9-B64B-4CF9-838E-F3105801EF08}] (...) -- C:\Users\Christiane\Documents\Mes fichiers re#us\OnlineArmor_Setup_Free_FRA_4.5.0.234.exe (.not file.) [0]
                            [MD5.00000000000000000000000000000000] [APT] [{E7059E0C-823F-4DE0-9499-FA4D4E583A61}] (...) -- C:\Program Files\Pidgin\pidgin-uninst.exe (.not file.) [0]
                            [MD5.6F5386A655598F71BAAB2D6B63A69D6A] [APT] [{F126DFF1-5097-41AF-9DAF-9AF6B144B0FD}] (.Mozilla Corporation.) -- c:\program files\mozilla firefox\firefox.exe [920472]
                            [MD5.E21D61CDF2667CF8D948C0A77E63DD69] [APT] [{FF0A5E7F-4F01-433A-A0D4-723EBDC40FA4}] (.RealNetworks, Inc..) -- C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe [222776]
                            [MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [561984]
                            ~ Scheduled Task: 27 Scanned in 00mn 06s

                            ---\\ Composants installés (ActiveSetup Installed Components) (O40)
                            O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll
                            O40 - ASIC: Internet Explorer - >{26923b43-4d38-484f-9b9e-de460746276c} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\system32\ie4uinit.exe
                            O40 - ASIC: Microsoft Windows Media Player 11.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll
                            O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
                            O40 - ASIC: Microsoft Windows Mail 7 - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe
                            O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
                            O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll
                            O40 - ASIC: Windows Desktop Update - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
                            O40 - ASIC: Web Platform Customizations - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
                            O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll
                            O40 - ASIC: Adobe Flash Player - {D27CDB6E-AE6D-11CF-96B8-444553540000} . (.Adobe Systems, Inc. - Adobe Flash Player 11.7 r700.) -- C:\Windows\system32\Macromed\Flash\Flash32_11_7_700_202.ocx
                            ~ Active Setup: 11 Scanned in 00mn 00s

                            ---\\ Pilotes lancés au démarrage (O41)
                            O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
                            O41 - Driver: (avipbb) . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) - C:\Windows\System32\DRIVERS\avipbb.sys
                            O41 - Driver: (avkmgr) . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) - C:\Windows\System32\DRIVERS\avkmgr.sys
                            O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
                            O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
                            O41 - Driver: (i8042prt) . (.Microsoft Corporation - Pilote de port i8042.) - C:\Windows\System32\DRIVERS\i8042prt.sys
                            O41 - Driver: (kbdclass) . (.Microsoft Corporation - Pilote de la classe Clavier.) - C:\Windows\System32\DRIVERS\kbdclass.sys
                            O41 - Driver: (mouclass) . (.Microsoft Corporation - Pilote de la classe Souris.) - C:\Windows\System32\DRIVERS\mouclass.sys
                            O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
                            O41 - Driver: (netbt) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
                            O41 - Driver: (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
                            O41 - Driver: C:\Windows\System32\drivers\pacer.sys (PSched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
                            O41 - Driver: (RasAcd) . (.Microsoft Corporation - RAS Automatic Connection Driver.) - C:\Windows\System32\DRIVERS\rasacd.sys
                            O41 - Driver: (rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\Windows\System32\DRIVERS\rdbss.sys
                            O41 - Driver: (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
                            O41 - Driver: (RDPENCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
                            O41 - Driver: C:\Windows\System32\tcpipcfg.dll (Smb) . (.Microsoft Corporation - SMB Transport driver.) - C:\Windows\System32\DRIVERS\smb.sys
                            O41 - Driver: (ssmdrv) . (.Avira GmbH - AVIRA SnapShot Driver.) - C:\Windows\System32\DRIVERS\ssmdrv.sys
                            O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
                            O41 - Driver: (TermDD) . (.Microsoft Corporation - Terminal Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys
                            O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
                            O41 - Driver: (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
                            O41 - Driver: (ws2ifsl) . (.Microsoft Corporation - Winsock2 IFS Layer.) - C:\Windows\system32\drivers\ws2ifsl.sys
                            ~ Drivers: 69 Scanned in 00mn 01s

                            ---\\ Logiciels installés (O42)
                            O42 - Logiciel: 7-Zip 9.20 - (...) [HKLM] -- 7-Zip
                            O42 - Logiciel: ABBYY FineReader 9.0 Sprint - (.ABBYY.) [HKLM] -- ABBYY FineReader 9.0 Sprint
                            O42 - Logiciel: ABBYY FineReader 9.0 Sprint - (.ABBYY.) [HKLM] -- {F9000000-0018-0000-0000-074957833700}
                            O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR
                            O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {14DC0059-00F1-4F62-BD1A-AB23CD51A95E}
                            O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
                            O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin
                            O42 - Logiciel: Adobe Reader X (10.1.6) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AA1000000001}
                            O42 - Logiciel: Adobe Reader for Palm OS, 3.05 - (...) [HKCU] -- Adobe Reader for Palm OS
                            O42 - Logiciel: Adobe Shockwave Player 12.0 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player
                            O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {45C56AA7-ED1B-4800-A97F-EDDF3F3520B1}
                            O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {E14ADE0E-75F3-4A46-87E5-26692DD626EC}
                            O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
                            O42 - Logiciel: Atheros Driver Installation Program - (.Atheros.) [HKLM] -- {28006915-2739-4EBE-B5E8-49B25D32EB33}
                            O42 - Logiciel: Avira Free Antivirus v13.0.0.3640 - (.Avira.) [HKLM] -- Avira AntiVir Desktop
                            O42 - Logiciel: Bibliothèques GTK+ 2.14.7 rev a (supprimer uniquement) - (...) [HKLM] -- GTK 2.0
                            O42 - Logiciel: Bluetooth Monitor 3 - (.TOSHIBA.) [HKLM] -- {61539202-097E-487E-9237-B291AB56D54C}
                            O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {79155F2B-9895-49D7-8612-D92580E0DE5B}
                            O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>Piriform Ltd
                            O42 - Logiciel: Camera Assistant Software for Toshiba - (.Chicony Electronics Co.,Ltd..) [HKLM] -- {37C866E4-AA67-4725-9E95-A39968DD7960}
                            O42 - Logiciel: Codeur Windows Media Série 9 - (...) [HKLM] -- Windows Media Encoder 9
                            O42 - Logiciel: Codeur Windows Media Série 9 - (.Microsoft Corporation.) [HKLM] -- {E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}
                            O42 - Logiciel: Compel Adaptec WinASPI - (...) [HKLM] -- Compel install Adaptec WinASPI-4.6.0(1021)_is1
                            O42 - Logiciel: Complément Messenger - (.Microsoft Corporation.) [HKLM] -- {6E5324C1-84FC-4F76-9A3A-C65E07F80EE6}
                            O42 - Logiciel: Complément Microsoft Word pour Microsoft Works Suite - (.Microsoft Corporation.) [HKLM] -- {F6B1CD0F-DB2D-4666-A168-C46390AD8C4A}
                            O42 - Logiciel: Configuration DivX - (.DivX, LLC.) [HKLM] -- DivX Setup
                            O42 - Logiciel: CopyTrans Suite désinstallation uniquement - (.WindSolutions.) [HKCU] -- CopyTrans Suite
                            O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
                            O42 - Logiciel: DVD MovieFactory for TOSHIBA - (.Ulead Systems, Inc..) [HKLM] -- {F214EAA4-A069-4BAF-9DA4-4DB8BEEDE485}
                            O42 - Logiciel: DVD Region+CSS Free 5.9.8.5 - (.Fengtao Software Inc..) [HKLM] -- DVD Region+CSS Free_is1
                            O42 - Logiciel: Defraggler - (.Piriform.) [HKLM] -- Defraggler
                            O42 - Logiciel: Desktop SMS - (.IDM.) [HKLM] -- {5980B928-1C95-4B3E-957B-B02D8147FF9E}
                            O42 - Logiciel: Digital Video - (...) [HKLM] -- {C833C7B6-1140-471D-932B-391B5CA66D7D}
                            O42 - Logiciel: DriverScanner - (.Uniblue Systems Ltd.) [HKLM] -- {C2F8CA82-2BD9-4513-B2D1-08A47914C1DA}_is1
                            O42 - Logiciel: Désinstaller l'imprimante EPSON SX235 Series - (.SEIKO EPSON Corporation.) [HKLM] -- EPSON SX235 Series
                            O42 - Logiciel: EPSON Scan - (.Seiko Epson Corporation.) [HKLM] -- EPSON Scanner
                            O42 - Logiciel: Emdedded IR Driver - (.Compal Electronics, Inc..) [HKLM] -- InstallShield_{A6D4234C-CB02-4048-AC3E-AD09404FA35A}
                            O42 - Logiciel: Epson Easy Photo Print 2 - (.SEIKO EPSON CORPORATION.) [HKLM] -- {A02D7029-C4EF-44C1-9FD4-C0D3CA518113}
                            O42 - Logiciel: Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) - (.SEIKO EPSON CORPORATION.) [HKLM] -- {B2D55EB8-32C5-4B43-9006-9E97DECBA178}
                            O42 - Logiciel: Epson Event Manager - (.SEIKO EPSON CORPORATION.) [HKLM] -- {8ED43F7E-A8F6-4898-AF11-B6158F2EDF94}
                            O42 - Logiciel: EpsonNet Print - (.SEIKO EPSON CORPORATION.) [HKLM] -- {3E31400D-274E-4647-916C-2CACC3741799}
                            O42 - Logiciel: Extension Système de Microsoft Money - (.Microsoft.) [HKLM] -- {02CA7E66-1AD1-4DE9-BA9E-86A0EEB019C7}
                            O42 - Logiciel: Free Video Converter V 3.1 - (.Koyote Soft.) [HKLM] -- Free Video Converter_is1
                            O42 - Logiciel: Freemake Video Converter version 3.0.0 - (.Ellora Assets Corporation.) [HKLM] -- Freemake Video Converter_is1
                            O42 - Logiciel: Google Drive - (.Google, Inc..) [HKLM] -- {1C3DA126-D523-4089-BCCA-FA46FE34D6F8}
                            O42 - Logiciel: Google Earth Plug-in - (.Google.) [HKLM] -- {34B32B70-8081-11E2-89AF-B8AC6F98CCE3}
                            O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
                            O42 - Logiciel: Guide d'utilisation EPSON SX235 Series - (...) [HKLM] -- EPSON SX235 Series Useg
                            O42 - Logiciel: Guide réseau EPSON SX235 Series - (...) [HKLM] -- EPSON SX235 Series Netg
                            O42 - Logiciel: Intel Matrix Storage Manager - (...) [HKLM] -- {9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}
                            O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (...) [HKLM] -- HDMI
                            O42 - Logiciel: Java 7 Update 21 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83217021FF}
                            O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}
                            O42 - Logiciel: Lecteur CANALPLAY 2.6 - (.Canal+ Distribution.) [HKLM] -- {E9E37358-E3E1-47BA-9E21-375EF3616BC9}
                            O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
                            O42 - Logiciel: MSXML 4.0 SP2 (KB927978) - (.Microsoft Corporation.) [HKLM] -- {37477865-A3F1-4772-AD43-AAFC6BCFF99F}
                            O42 - Logiciel: MSXML 4.0 SP2 (KB936181) - (.Microsoft Corporation.) [HKLM] -- {C04E32E0-0416-434D-AFB9-6969D703A9EF}
                            O42 - Logiciel: MSXML 4.0 SP2 (KB941833) - (.Microsoft Corporation.) [HKLM] -- {C523D256-313D-4866-B36A-F3DE528246EF}
                            O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
                            O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corp
                            0
                            1. Contributeur sécurité
                              Le rapport est incomplet, héberge le sur : FEC upload

                              @+
                              0
                              1. voilà, c'est fait
                                0
                                1. Contributeur sécurité
                                  Le rapport n'existe pas.. :-)

                                  A demain

                                  Bonne nuit
                                  0
                              2. J'ai du faire une fausse manip. Je l'ai mis là :

                                http://cjoint.com/?CEsg4LO53Pd
                                0
                                1. Contributeur sécurité
                                  Bonjour,
                                  1/
                                  => Copie tout le texte présent en gras ci-dessous (Sélectionne-le, clique droit dessus et choisis "Copier").



                                  SysRestore
                                  OPT:O4 - GS\QuickLaunch: Mahjong Titans.LNK - Clé orpheline
                                  OPT:O4 - GS\SendTo: Palm Powered Handheld.lnk . (...) -- C:\Program Files\palmOne\Instapp.exe (.not file.) => Fichier absent
                                  O43 - CFD: 19/08/2012 - 13:56:32 - [0,005] ----D C:\ProgramData\Spybot - Search & Destroy => Spybot - Search & Destroy
                                  [MD5.00000000000000000000000000000000] [APT] [{C4E6CEE1-F856-4FE7-9AD8-A96887F82168}] (...) -- F:\Setup.exe (.not file.) [0] => Existe aussi en malware DELF-CA.Troj
                                  O69 - SBI: prefs.js [Christiane - o4ojwa2k.default] user_pref("weboftrust.search.ask.display", "Ask.com Web Search"); => Toolbar.Ask
                                  [MD5.B28C334C03CEE7C5E829C43AE75DAE5A] [SPRF][15/05/2013] (.Ask.com - AskIC Dynamic Link Library.) -- C:\Users\Christiane\AppData\Local\Temp\AskSLib.dll [248008]
                                  [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\464AA55239C100F32AF2D438EDDC0F47]
                                  [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5652BA3D5FB98AE31B337BF0AF939856]
                                  [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86EB95E1AFCBABE3DB9ECCC669B99494]

                                  EmptyCLSID
                                  EmptyFlash
                                  EmptyTemp



                                  => Puis lance ZHPFix depuis le raccourci situé sur ton Bureau.

                                  (Sous Vista/Win7, il faut cliquer droit sur le raccourci de ZHPFix et choisir Exécuter en tant qu'administrateur)

                                  => Une fois ZHPFix ouvert, clique sur le bouton "Coller le presse-papier".

                                  => Dans l'encadré principal, tu verras donc les lignes que tu as copié précédemment apparaître. Vérifie que toutes les lignes que je t'ai demandé de copier (et seulement elles) sont dans la fenêtre.

                                  => Clique sur "GO" pour lancer le nettoyage. Laisse l'outil travailler et ne touche à rien.

                                  => Une fois terminé, copie-colle le rapport dans ton prochain message.

                                  =========================================

                                  Aide : <<< ZHPFix ICI >>>

                                  2/
                                  Lance Malwarebytes, fais la mise à jour, choisis une analyse complète, supprime tout ce qu'il trouve puis poste le rapport stp

                                  @+

                                  0
                                  1. Voilà le rapport de Malwarebytes :

                                    Malwarebytes Anti-Malware 1.75.0.1300
                                    www.malwarebytes.org

                                    Version de la base de données: v2013.05.16.06

                                    Windows Vista Service Pack 2 x86 NTFS
                                    Internet Explorer 9.0.8112.16421
                                    Christiane :: PC-DE-MOI [administrateur]

                                    18/05/2013 11:03:07
                                    mbam-log-2013-05-18 (11-03-07).txt

                                    Type d'examen: Examen complet (C:\|E:\|F:\|)
                                    Options d'examen activées: Mémoire | Démarrage | Registre | Système de fichiers | Heuristique/Extra | Heuristique/Shuriken | PUP | PUM
                                    Options d'examen désactivées: P2P
                                    Elément(s) analysé(s): 396162
                                    Temps écoulé: 2 heure(s), 41 minute(s), 53 seconde(s)

                                    Processus mémoire détecté(s): 0
                                    (Aucun élément nuisible détecté)

                                    Module(s) mémoire détecté(s): 0
                                    (Aucun élément nuisible détecté)

                                    Clé(s) du Registre détectée(s): 0
                                    (Aucun élément nuisible détecté)

                                    Valeur(s) du Registre détectée(s): 0
                                    (Aucun élément nuisible détecté)

                                    Elément(s) de données du Registre détecté(s): 0
                                    (Aucun élément nuisible détecté)

                                    Dossier(s) détecté(s): 0
                                    (Aucun élément nuisible détecté)

                                    Fichier(s) détecté(s): 0
                                    (Aucun élément nuisible détecté)

                                    (fin)
                                    0
                                    • 1
                                    • 2