Scan Hijack Ordinateur lent...
Fermé
Bozoff
-
8 juin 2013 à 12:37
lilidurhone Messages postés 43347 Date d'inscription lundi 25 avril 2011 Statut Contributeur sécurité Dernière intervention 31 octobre 2024 - 9 juin 2013 à 12:57
lilidurhone Messages postés 43347 Date d'inscription lundi 25 avril 2011 Statut Contributeur sécurité Dernière intervention 31 octobre 2024 - 9 juin 2013 à 12:57
A voir également:
- Scan Hijack Ordinateur lent...
- Ordinateur lent que faire - Guide
- Réinitialiser ordinateur - Guide
- Mon mac est lent comment le nettoyer - Guide
- Scan now - Guide
- Comment réinitialiser un ordinateur verrouillé - Guide
4 réponses
lilidurhone
Messages postés
43347
Date d'inscription
lundi 25 avril 2011
Statut
Contributeur sécurité
Dernière intervention
31 octobre 2024
3 806
8 juin 2013 à 12:45
8 juin 2013 à 12:45
Hello
Hijackthis étant obsolète on va utiliser zhpdiag
* Télécharge ZHPDiag (de Nicolas Coolman)
https://www.zebulon.fr/telechargements/securite/systeme/zhpdiag.html
* Au cas où le premier lien ne marcherai pas, clique sur celui de dessous
ftp://zebulon.fr/ZHPDiag2.exe
* Laisse toi guider lors de l'installation, il se lancera automatiquement à la fin.
* Surtout, n'oublie pas d'installer son icône sur le bureau l'icône est en forme de parchemin
* Clique sur l'icône représentant une loupe + (« Lancer le diagnostic »)
* Enregistre le rapport sur ton Bureau à l'aide de l'icône représentant une disquette
* Pour héberger le rapport, clique sur la flèche bleue ce qui va te diriger vers Pjjoint
pour héberger ce rapport.
* Clique sur Parcourir pour chercher le rapport dans ton PC.
* Le rapport est sauvegardé dans C:\ZHP\ZHPDiag.txt
* Une fois le rapport trouvé, sélectionne le, et clique sur Ouvrir
* Clique sur envoyer le fichier, puis poste le lien en bleu qu'on va te fournir.
* Si problème d'hébergement sur Pjoint passe par cjoint
* Pour t'aider http://www.pc-infopratique.com/forum-informatique/tutoriel-heberger-rapport-vt-67934.html
Hijackthis étant obsolète on va utiliser zhpdiag
* Télécharge ZHPDiag (de Nicolas Coolman)
https://www.zebulon.fr/telechargements/securite/systeme/zhpdiag.html
* Au cas où le premier lien ne marcherai pas, clique sur celui de dessous
ftp://zebulon.fr/ZHPDiag2.exe
* Laisse toi guider lors de l'installation, il se lancera automatiquement à la fin.
* Surtout, n'oublie pas d'installer son icône sur le bureau l'icône est en forme de parchemin
* Clique sur l'icône représentant une loupe + (« Lancer le diagnostic »)
* Enregistre le rapport sur ton Bureau à l'aide de l'icône représentant une disquette
* Pour héberger le rapport, clique sur la flèche bleue ce qui va te diriger vers Pjjoint
pour héberger ce rapport.
* Clique sur Parcourir pour chercher le rapport dans ton PC.
* Le rapport est sauvegardé dans C:\ZHP\ZHPDiag.txt
* Une fois le rapport trouvé, sélectionne le, et clique sur Ouvrir
* Clique sur envoyer le fichier, puis poste le lien en bleu qu'on va te fournir.
* Si problème d'hébergement sur Pjoint passe par cjoint
* Pour t'aider http://www.pc-infopratique.com/forum-informatique/tutoriel-heberger-rapport-vt-67934.html
Rapport de ZHPDiag v2013.6.7.12 par Nicolas Coolman, Update du 07/06/2013
Run by Pierre at 08/06/2013 13:11:49
WebSite: http://nicolascoolman.webs.com
State : Version à jour.
WhiteList : Enable
High Elevated Privileges : OK
UAC : Deactivate by program
---\\ Web Browser
MSIE: Internet Explorer v10.0.9200.16580
MFIE: Mozilla Firefox 21.0 (Defaut)
---\\ Windows Product Information
~ Langage: Français
Windows 8 Home Premium Edition, 64-bit (Build 9200)
Windows Server License Manager Script : OK
~ ion : Windows(R) Operating System, OEM_DM channel
Windows ID Activation : OK
~ Windows Partial Key : B7RD6
Windows License : OK
~ Windows Remaining Initializations Number : 998
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK
---\\ System Protection
avast! Free Antivirus v7.0.1474.0
Windows Defender W8
---\\ System Optimizer
---\\ Peer To Peer (P2P)
eMule
Vuze v5.0.0.0 =>P2P.Azureus
---\\ Software Update
Adobe Flash Player 11 Plugin
Adobe Reader X
---\\ System Information
~ Processor: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3981 MB (47% free)
System Restore: Activé (Enable)
System drive C: has 68 GB (24%) free of 279 GB
---\\ Logged in mode
~ Computer Name: BOZOFF
~ User Name: Pierre
~ All Users Names: UpdatusUser, Pierre, HomeGroupUser$, Administrateur,
~ Unselected Option: None
Logged in as Administrator
---\\ Environnement Variables
~ System Unit : C:\
~ %AppData% : C:\Users\Pierre\AppData\Roaming\
~ %Desktop% : C:\Users\Pierre\Desktop\
~ %Favorites% : C:\Users\Pierre\Favorites\
~ %LocalAppData% : C:\Users\Pierre\AppData\Local\
~ %StartMenu% : C:\Users\Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\
---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 68 Go of 279 Go)
D:\ Hard drive, Flash drive, Thumb drive (Free 88 Go of 398 Go)
E:\ CD-ROM drive (Not Inserted)
G:\ CD-ROM drive (Not Inserted)
---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
~ Security Center: 29 Legitimates Filtered in 00mn 00s
---\\ Recherche particulière de fichiers génériques
[MD5.E13A31D5254C25406A7946BDD9B06364] - (.Microsoft Corporation - Explorateur Windows.) (.11/10/2012 - 08:35:16.) -- C:\Windows\Explorer.exe [2380944]
[MD5.FE9AB232B56A12224E8A3F3F9878C9A3] - (.Microsoft Corporation - Application de démarrage de Windows.) (.26/07/2012 - 04:08:50.) -- C:\Windows\System32\Wininit.exe [132608]
[MD5.9B9107F1486476D86B6910EDF07F4358] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.10/04/2013 - 00:17:44.) -- C:\Windows\System32\wininet.dll [2242048]
[MD5.BCF2036A0DD579E47C008C133550283E] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.11/10/2012 - 06:46:58.) -- C:\Windows\System32\Winlogon.exe [517120]
[MD5.9448F5740A037EC0C18F0E9177232DD0] - (.Microsoft Corporation - Bibliothèque de licences.) (.26/07/2012 - 04:07:20.) -- C:\Windows\System32\sppcomapi.dll [273408]
[MD5.36D6A3201721558A8AFBCC09C2DA4C2C] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) (.06/11/2012 - 04:53:44.) -- C:\Windows\system32\Drivers\AFD.sys [560640]
[MD5.A721FF570C2387E383BDDEA9632863C9] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.26/07/2012 - 06:00:48.) -- C:\Windows\system32\Drivers\atapi.sys [25840]
[MD5.990B1BABE6E81FB18E65A87EBEFB1772] - (.Microsoft Corporation - CD-ROM File System Driver.) (.26/07/2012 - 03:30:10.) -- C:\Windows\system32\Drivers\Cdfs.sys [108544]
[MD5.339BFF85D788268752DA8C9644B188EE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.26/07/2012 - 03:26:36.) -- C:\Windows\system32\Drivers\Cdrom.sys [174080]
[MD5.09D9EB9E7898F8E6561473A20CC808B9] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.26/07/2012 - 03:26:53.) -- C:\Windows\system32\Drivers\DfsC.sys [118784]
[MD5.7D87B5B6C7188D553E11B59DC7F0B111] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/09/2012 - 07:08:44.) -- C:\Windows\system32\Drivers\HDAudBus.sys [71168]
[MD5.C9E9CBF73AFFBFE3E801EFB516787BA3] - (.Microsoft Corporation - Pilote de port i8042.) (.26/07/2012 - 03:28:51.) -- C:\Windows\system32\Drivers\i8042prt.sys [112640]
[MD5.3969B9C218DD3FAA9F4ED2FFC3651C02] - (.Microsoft Corporation - IP Network Address Translator.) (.26/07/2012 - 03:23:01.) -- C:\Windows\system32\Drivers\IpNat.sys [145920]
[MD5.93179D48066918323628CB016D8C94DC] - (.Microsoft Corporation - Minirdr SMB Windows NT.) (.05/02/2013 - 23:29:09.) -- C:\Windows\system32\Drivers\MRxSmb.sys [370688]
[MD5.7CEC25C682D319D484630B3952C31A11] - (.Microsoft Corporation - MBT Transport driver.) (.26/07/2012 - 03:24:28.) -- C:\Windows\system32\Drivers\netBT.sys [331776]
[MD5.76929F4A69E425911A63B407E26C2589] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.02/02/2013 - 11:54:54.) -- C:\Windows\system32\Drivers\ntfs.sys [1933544]
[MD5.4563DAF8C6A740AD7F501E219BD10766] - (.Microsoft Corporation - Pilote de port parallèle.) (.26/07/2012 - 03:29:53.) -- C:\Windows\system32\Drivers\Parport.sys [105984]
[MD5.A14D625C5AEE5FFE0F47D1A1D419FAAE] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.26/07/2012 - 03:23:17.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [124928]
[MD5.B2A3AD74FF2E2FFA73AF2567108231B3] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) (.26/07/2012 - 03:25:18.) -- C:\Windows\system32\Drivers\rdpdr.sys [179712]
[MD5.73DC722CE5DF26D7638CE2446F2655C7] - (.Microsoft Corporation - TDI Translation Driver.) (.26/07/2012 - 06:26:47.) -- C:\Windows\system32\Drivers\tdx.sys [117248]
[MD5.2FB3CDFD5EAF4CD9D4AFAF96877D13AE] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.26/07/2012 - 05:57:09.) -- C:\Windows\system32\Drivers\volsnap.sys [332016]
~ Generic Processes: Scanned in 00mn 00s
---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 2/21
~ Mes musiques (My Musics) : 1/830
~ Mes Favoris (My Favorites) : 1/7
~ Mes Documents (My Documents) : 2/13269
~ Mon Bureau (My Desktop) : 2/549
~ Menu demarrer (Programs) : 1/47
~ Hidden Files: Scanned in 00mn 11s
---\\ Processus lancés
[MD5.79174FD5F4DE078642BE1CACB124BFCA] - (.ASUS - ASUS InstantOn.) -- C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnCfg.exe [1126784] [PID.7536]
[MD5.7C58A2513C3DA421A461D75C66C56D21] - (.ASUSTek Computer Inc. - ASUS USB Charger Plus.) -- C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [1123536] [PID.2204]
[MD5.DB314CFF0FB931BEEF9AA53B4DBABDC5] - (.Microsoft Corporation - Touch Keyboard and Handwriting Panel Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe [21064] [PID.3640]
[MD5.2C35624F79B9ADBFE47090879F0D8673] - (.ASUSTek Computer Inc. - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [322208] [PID.7616]
[MD5.A2791CF11D1ED52DBCD75D2FFD4D50E7] - (.ASUSTek Computer Inc. - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [178848] [PID.3540]
[MD5.29769215DEB6E8418EF3656B0423776E] - (.ASUSTeK Computer Inc. - ASUS Quick Gesture Exe.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe [20352] [PID.6956]
[MD5.E05FFF1C05C80CCE83C766198896C7CF] - (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [90832] [PID.3092]
[MD5.6B08632F7634F344372B25A507DA7C47] - (.NVIDIA Corporation - NVIDIA NvTmru Application.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1012000] [PID.5260]
[MD5.98CADC34741738CFC24F5CDFDAA408FA] - (.ASUSTeK - ACEngSvr Module.) -- C:\Windows\SysWOW64\ACEngSvr.exe [162456] [PID.3820]
[MD5.B7995C675014EEBE77A0BEB7AFCCFC08] - (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [91432] [PID.6616]
[MD5.083649EF692A066880C9326020915AFE] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [4297136] [PID.5604]
[MD5.E0D6538B62C79FCBF0B27F95FAF3208B] - (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [246504] [PID.8308]
[MD5.2FF96BFE76A04775FC80B425A964A893] - (.Joyent, Inc - Evented I/O for V8 JavaScript.) -- C:\Program Files (x86)\SMART Technologies\Education Software\sbsdk-server\SBWDKService.exe [5282200] [PID.2748]
[MD5.77D90A470180FAF52C38CA11E258A7AF] - (.SMART Technologies - SMART Board Service.) -- C:\Program Files (x86)\SMART Technologies\Education Software\SMARTBoardService.exe [2219416] [PID.1652]
[MD5.E538EF5F87D35F344A1AC6A609093AA0] - (.SMART Technologies - SMARTInk.) -- C:\Program Files (x86)\SMART Technologies\Education Software\SMARTInk.exe [98200] [PID.1760]
[MD5.EC52999D0D2E374981C0D033748AF2A6] - (.SMART Technologies - SMARTInk-SBSDKProxy.) -- C:\Program Files (x86)\SMART Technologies\Education Software\Office\SMARTInk-SBSDKProxy.exe [32152] [PID.5228]
[MD5.CFA72CFBEF5C4A812CE09F97C8536858] - (.SMART Technologies - SMARTInkPrivilegedAccess.) -- C:\Program Files (x86)\SMART Technologies\Education Software\SMARTInkPrivilegedAccess.exe [126872] [PID.8936]
[MD5.01F1839AD462D146BB15B1DA9FDE2EE7] - (.ASUSTeK Computer Inc. - ASUS Live Update.) -- C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [1557664] [PID.5740]
[MD5.95110A1C5A1D228AC1DDF6AB67D00BEB] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [920472] [PID.6212]
[MD5.6FC79A950476A5F539EEB65F9097C0A8] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe [17304] [PID.588]
[MD5.23AA0FDCBDD87D0B78092798C68312D8] - (.Adobe Systems, Inc. - Adobe Flash Player 11.7 r700.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_202.exe [1855880] [PID.8384]
[MD5.BA58BE8F544B058C160E7CCDB7A6EA72] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [7472128] [PID.6904]
~ Processes Running: Scanned in 00mn 00s
---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
M2 - MFEP: prefs.js [Pierre - uje0xxd5.default\{bee6eb20-01e0-ebd1-da83-080329fb9a3a}] [] Flash and Video Download v1.33 (..)
~ Firefox Browser: 4 Legitimates Filtered in 00mn 00s
---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s
---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s
---\\ Redirection du fichier Hosts (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 21
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Shareaza Web Download Hook [64Bits] - {0EEDB912-C5FA-486F-8334-57288578C627} . (.Shareaza Development Team - Shareaza Web Download Hook.) -- C:\Program Files (x86)\Shareaza\RazaWebHook32.dll
O2 - BHO: SMART Notebook Download Utility [64Bits] - {67BCF957-85FC-4036-8DC4-D4D80E00A77B} . (.SMART Technologies ULC. - Notebook Download Plugin.) -- C:\Program Files (x86)\SMART Technologies\Education Software\Win32\NotebookPlugin.dll
~ BHO: 5 Legitimates Filtered in 00mn 00s
---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: (no name) [64Bits] - [HKLM]{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} Clé orpheline
~ Toolbar: Scanned in 00mn 00s
---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
O4 - HKLM\..\Run: [BTMTrayAgent] . (.Motorola Solutions, Inc. - Bluetooth Shell Extension.) -- C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll
O4 - HKLM\..\Run: [ACMON] . (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
O4 - HKLM\..\Run: [Nvtmru] . (.NVIDIA Corporation - NVIDIA NvTmru Application.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
O4 - HKLM\..\Wow6432Node\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe
O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O4 - HKLM\..\Wow6432Node\Run: [RemoteControl10] . (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
O4 - HKLM\..\Wow6432Node\Run: [ASUSWebStorage] . (.ASUS Cloud Corporation - ASUS WebStorage Panel.) -- C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.9.120\AsusWSPanel.exe
O4 - HKLM\..\Wow6432Node\Run: [avast] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastUI.exe
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
O4 - HKLM\..\Wow6432Node\Run: [sbsdk-server] . (.SMART Technologies - Node Launcher.) -- C:\Program Files (x86)\SMART Technologies\Education Software\sbsdk-server\NodeLauncher.exe
O4 - HKLM\..\Wow6432Node\Run: [SMART Board Service] . (.SMART Technologies - SMART Board Service.) -- C:\Program Files (x86)\SMART Technologies\Education Software\SMARTBoardService.exe
O4 - HKLM\..\Wow6432Node\Run: [SMART Board Tools] . (.SMART Technologies ULC - SMART Board Tools.) -- C:\Program Files (x86)\SMART Technologies\Education Software\SMARTBoardTools.exe
O4 - HKLM\..\Wow6432Node\Run: [SMART Ink] . (.SMART Technologies - SMARTInk.) -- C:\Program Files (x86)\SMART Technologies\Education Software\SMARTInk.exe
O4 - HKUS\S-1-5-21-3614335485-3195974102-3889183896-1002\..\Run: [DAEMON Tools Lite] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
~ Application: Scanned in 00mn 00s
---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop: Didapages.lnk . (.Carlos Guedes - Didapages.) -- C:\Program Files (x86)\Didapages\Didapages Auteur.exe
O4 - GS\Desktop: LIMBO.lnk . (.Playdead - Limbo.) -- C:\Program Files (x86)\LIMBO\limbo.exe
O4 - GS\Desktop: Slender v0.9.1.lnk . (...) -- C:\Games\Slender v0.9.1\Slender.exe
O4 - GS\Desktop: Ubisoft Product Registration.lnk . (.Ubisoft - Pas de description.) -- C:\Program Files (x86)\Ubisoft\Register\register.exe
O4 - GS\Desktop: Virtual DJ Pro.lnk . (.Atomix Productions - VirtualDJ.) -- C:\Program Files (x86)\VirtualDJ\virtualdj_pro.exe
~ Global Startup: Scanned in 00mn 00s
---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: &Envoyer à OneNote [64Bits] - {2670000A-7350-4f3c-8081-5663EE0C6C49} -- C:\Program Files (x86)\MICROS~2\Office14\ONBttnIE.dll (.not file.)
O9 - Extra button: Notes &liées OneNote [64Bits] - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} -- C:\Program Files (x86)\MICROS~2\Office14\ONBTTN~1.dll (.not file.)
~ IE Extra Buttons: Scanned in 00mn 00s
---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{3AA0368E-289D-4387-B659-F6DB70007ABF}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{3AA0368E-289D-4387-B659-F6DB70007ABF}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
~ Domain: Scanned in 00mn 00s
---\\ Protocole additionnel (O18)
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Filter: text/xml [64Bits] - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.dll
~ Protocole Additionnel: Scanned in 00mn 00s
---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll
~ Winlogon: Scanned in 00mn 00s
---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - AppInit_DLLs: . (.NVIDIA Corporation - NVIDIA shim initialization dll, Version 320.) - C:\Windows\system32\nvinitx.dll
~ AppInit DLL: Scanned in 00mn 00s
---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: SMART Helper Service (SMARTHelperService) . (.SMART Technologies - SMART Helper Service For Windows.) - C:\Program Files (x86)\SMART Technologies\Education Software\SMARTHelperService.exe
O23 - Service: Intel(R) PROSet/Wireless Zero Configurat (ZeroConfigService) . (.Intel® Corporation - Intel® PROSet/Wireless Zero Configure Servi.) - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
~ Services: 21 Legitimates Filtered in 00mn 19s
---\\ Logiciels installés (O42)
O42 - Logiciel: Antichamber RePack by SxSxL - (...) [HKLM][64Bits] -- Antichamber_is1
O42 - Logiciel: Black & White® 2 - (.Lionhead Studios.) [HKLM][64Bits] -- {D9E52CD1-9DF1-4A8A-9BDC-1E5E53982F2B}
O42 - Logiciel: NetLimiter 2 Pro (remove only) - (...) [HKLM][64Bits] -- NetLimiter 2 Pro
O42 - Logiciel: SMART Common Files - (.SMART Technologies ULC.) [HKLM][64Bits] -- {ED2455F7-6AA6-4D3C-85E9-A72297DD7051}
O42 - Logiciel: SMART Ink - (.SMART Technologies ULC.) [HKLM][64Bits] -- {4A1F2472-6164-43FA-9D2F-B35E71A8DF32}
O42 - Logiciel: SMART Notebook - (.SMART Technologies ULC.) [HKLM][64Bits] -- {AFE024C7-7CA7-4C8E-90EE-D877C7CD96A3}
O42 - Logiciel: SMART Product Drivers - (.SMART Technologies ULC.) [HKLM][64Bits] -- {E3189F44-F7BD-4F96-B756-A0AEFAF61D3A}
O42 - Logiciel: SMART Product Update - (.SMART Technologies ULC.) [HKLM][64Bits] -- {8D4B716A-0ABE-4238-9090-D208E5F57A5E}
O42 - Logiciel: Shareaza 2.6.0.0 - (.Shareaza Development Team.) [HKLM][64Bits] -- Shareaza_is1
O42 - Logiciel: trakAxPC - (.HighAndes.) [HKLM][64Bits] -- {CAB81583-0310-43E1-8E33-0864985EDD67}
~ Logic: 122 Legitimates Filtered in 00mn 01s
---\\ HKCU & HKLM Software Keys
[HKCU\Software\APN PIP]
[HKCU\Software\AppDataLow\Software\Smartbar] =>Hijacker.SmartBar
[HKCU\Software\HighAndes]
[HKCU\Software\Kiloo Games]
[HKCU\Software\PIP]
[HKCU\Software\Shareaza]
[HKCU\Software\Softonic]
[HKLM\Software\Wow6432Node\PIP]
[HKLM\Software\Wow6432Node\Shareaza]
~ Key Software: 226 Legitimates Filtered in 00mn 01s
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 28/04/2013 - 19:24:22 - [630,068] ----D C:\Program Files (x86)\Antichamber
O43 - CFD: 29/03/2013 - 13:00:15 - [77,339] ----D C:\Program Files (x86)\HighAndes
O43 - CFD: 05/05/2013 - 11:57:41 - [0] ----D C:\Program Files (x86)\SevenZip
O43 - CFD: 16/03/2013 - 05:12:10 - [24,850] ----D C:\Program Files (x86)\Shareaza
O43 - CFD: 29/03/2013 - 13:00:31 - [90,139] ----D C:\ProgramData\HighAndes
O43 - CFD: 01/06/2013 - 12:45:53 - [0] ----D C:\ProgramData\LAT 2.0 - FR
O43 - CFD: 29/03/2013 - 13:00:31 - [0,033] ----D C:\Users\Pierre\AppData\Roaming\HighAndes
O43 - CFD: 16/03/2013 - 05:12:14 - [13,713] ----D C:\Users\Pierre\AppData\Roaming\Shareaza
O43 - CFD: 29/03/2013 - 13:00:31 - [0] ----D C:\Users\Pierre\AppData\Local\HighAndes
O43 - CFD: 16/03/2013 - 05:12:14 - [0] ----D C:\Users\Pierre\AppData\Local\Shareaza
~ Program Folder: 180 Legitimates Filtered in 00mn 03s
---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.60EBB8CE38A1990A8818F996ACF2607D] - 01/06/2013 - 11:42:09 ---A- . (.SMART Technologies Inc. - SMART Local Port Monitor UI DLL.) -- C:\Windows\SysNative\smrtlocalui.dll [22312]
O44 - LFC:[MD5.E6CE06CB77D918BA02741F4D9C095698] - 01/06/2013 - 11:42:09 ---A- . (.SMART Technologies ULC - SMART Notebook Document Writer Print Captur.) -- C:\Windows\SysNative\smrtlocalmon.dll [37776]
O44 - LFC:[MD5.60EBB8CE38A1990A8818F996ACF2607D] - 01/06/2013 - 11:42:09 RSHAD . (.SMART Technologies Inc. - SMART Local Port Monitor UI DLL.) -- C:\Windows\System32\smrtlocalui.dll [22312]
O44 - LFC:[MD5.E6CE06CB77D918BA02741F4D9C095698] - 01/06/2013 - 11:42:09 RSHAD . (.SMART Technologies ULC - SMART Notebook Document Writer Print Captur.) -- C:\Windows\System32\smrtlocalmon.dll [37776]
O44 - LFC:[MD5.F518F7C296714A81555A0D6164D442CB] - 01/06/2013 - 11:42:08 ---A- . (...) -- C:\Windows\DPINST.LOG [69534]
O44 - LFC:[MD5.D0B384E810077BF3FE5A11718B512275] - 26/05/2013 - 17:22:34 ---A- . (...) -- C:\Windows\SysNative\ApnDatabase.xml [387688]
O44 - LFC:[MD5.D0B384E810077BF3FE5A11718B512275] - 26/05/2013 - 17:22:34 RSHAD . (...) -- C:\Windows\System32\ApnDatabase.xml [387688]
~ Files: 163 Legitimates Filtered in 00mn 07s
---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.31ECD66777D2F69FACE279D411CD6F18] - 01/06/2013 - 10:42:23 ---A- - C:\Windows\Prefetch\SMARTBOARDTOOLS.EXE-51208074.pf
O45 - LFCP:[MD5.671881E14BCEA2C7B108E2E62B78E70F] - 01/06/2013 - 10:42:26 ---A- - C:\Windows\Prefetch\AWARE.EXE-4B7C5DA4.pf
O45 - LFCP:[MD5.4DC58401D75B52B803B91FB85F413644] - 01/06/2013 - 10:42:29 ---A- - C:\Windows\Prefetch\MARKER.EXE-461E0E96.pf
O45 - LFCP:[MD5.E6DEF20A3AC2B8E113065AAECEB79CBE] - 01/06/2013 - 11:34:36 ---A- - C:\Windows\Prefetch\SMART_EDUCATION_SOFTWARE_2012-337C606F.pf
O45 - LFCP:[MD5.5818A93DE76579607E3A3A33DF9A07BE] - 01/06/2013 - 15:42:21 ---A- - C:\Windows\Prefetch\JAUCHECK.EXE-96292BC0.pf
O45 - LFCP:[MD5.03C40AB2BBB87E194B29E5A355B711FF] - 01/06/2013 - 19:53:19 ---A- - C:\Windows\Prefetch\TRAKAXPC.EXE-73ED5372.pf
O45 - LFCP:[MD5.B89C10B513EC0E6A1F9228A2DF75EB70] - 01/06/2013 - 21:59:49 ---A- - C:\Windows\Prefetch\VSTOR_REDIST.EXE-2D6E3F32.pf
O45 - LFCP:[MD5.DC8FB0824B1F0A6F3E3F4A598B8A30C1] - 01/06/2013 - 22:00:22 ---A- - C:\Windows\Prefetch\VSTOR40_X64.EXE-A338005B.pf
O45 - LFCP:[MD5.7D2A539208C5635B44DED42E9E6D6710] - 01/06/2013 - 22:01:21 ---A- - C:\Windows\Prefetch\VSTOR40_LP_X64_FRA.EXE-08FEB242.pf
O45 - LFCP:[MD5.AAF0B519352C98DFF764A5B4244322FB] - 02/06/2013 - 15:04:00 ---A- - C:\Windows\Prefetch\VUZEPLAYER.EXE-D2FB2EB3.pf =>P2P.Azureus
O45 - LFCP:[MD5.453050B2BA68F642AD062147EB8B8D36] - 02/06/2013 - 18:51:45 ---A- - C:\Windows\Prefetch\ACVT.EXE-8C656B78.pf
O45 - LFCP:[MD5.095119C9670AFC2ABFC3E60A71263097] - 04/06/2013 - 18:02:52 ---A- - C:\Windows\Prefetch\dynreservedpri.db
O45 - LFCP:[MD5.BCBA6652E601EE2FDF66C5A3A18EB569] - 05/06/2013 - 23:49:09 ---A- - C:\Windows\Prefetch\MY_INTEL_CPP_X64.EXE-1A95AA96.pf
O45 - LFCP:[MD5.258C691E49347AB54D183B92204EE1D0] - 05/06/2013 - 23:49:20 ---A- - C:\Windows\Prefetch\PDVD10SERV.EXE-99C8A7B5.pf
O45 - LFCP:[MD5.33A1022B04B61B69355A4D1E59EBC652] - 06/06/2013 - 23:57:23 ---A- - C:\Windows\Prefetch\320.18-NOTEBOOK-WIN8-WIN7-64B-7C2A7B08.pf
O45 - LFCP:[MD5.9A4215BE1DE8ABB12331DB0C987A71B4] - 07/06/2013 - 00:05:38 ---A- - C:\Windows\Prefetch\WOWREG32.EXE-FB598036.pf
O45 - LFCP:[MD5.70BCEBBEB21642D566E1F6C54E6E15B6] - 07/06/2013 - 00:10:54 ---A- - C:\Windows\Prefetch\NVTMRU.EXE-91CBFE7D.pf
O45 - LFCP:[MD5.FD33241C5A34D09AB9F2DD147F83C321] - 07/06/2013 - 00:11:37 ---A- - C:\Windows\Prefetch\DAO.16199147.EXE-D249BB04.pf
O45 - LFCP:[MD5.224FE3406889D31966A2FA870BDBB3D1] - 07/06/2013 - 00:15:45 ---A- - C:\Windows\Prefetch\VOPS-GRAND_THEFT_AUTO_IV.1557-8369391B.pf
O45 - LFCP:[MD5.5DFFD9BAC73C12EDE6693AFAB8A86E34] - 07/06/2013 - 00:39:00 ---A- - C:\Windows\Prefetch\GFEXPERIENCE.EXE-00DD0F2D.pf
O45 - LFCP:[MD5.9F2756C7FA21EC5DECB41651C0FAE040] - 08/06/2013 - 01:09:24 ---A- - C:\Windows\Prefetch\VDM.EXE-86FDBFD3.pf
O45 - LFCP:[MD5.CE03997C938E864DCD822A76900A8B3A] - 08/06/2013 - 01:21:00 ---A- - C:\Windows\Prefetch\DTC.EXE-446F6195.pf
O45 - LFCP:[MD5.64B5B5B6A6E4C516DC2A0273FD692852] - 08/06/2013 - 01:36:54 ---A- - C:\Windows\Prefetch\MADHCCTRL.EXE-E012B483.pf
O45 - LFCP:[MD5.1B520530468E630DEC6B9D00C7D34BD8] - 08/06/2013 - 11:19:46 ---A- - C:\Windows\Prefetch\SBWDKSERVICE.EXE-15BBD520.pf
O45 - LFCP:[MD5.E17F5E36A6CAD6C842C104CFE48C661E] - 08/06/2013 - 11:19:47 ---A- - C:\Windows\Prefetch\SMARTBOARDSERVICE.EXE-CFD273B9.pf
O45 - LFCP:[MD5.C4F1D2771743F75C70A6E31DC12135EB] - 08/06/2013 - 11:19:50 ---A- - C:\Windows\Prefetch\HARVESTER.EXE-353D5774.pf
O45 - LFCP:[MD5.AFE0B43F770764991E2238E32E4BE48F] - 08/06/2013 - 11:19:50 ---A- - C:\Windows\Prefetch\SMARTBOARDTOOLS.EXE-4F4666D1.pf
O45 - LFCP:[MD5.A9134E2AB8A9A6A743B4899C2D02D752] - 08/06/2013 - 11:19:50 ---A- - C:\Windows\Prefetch\SMARTINK.EXE-46FCE77E.pf
O45 - LFCP:[MD5.B58D5A4C853FC94C90142B7AF9B1386A] - 08/06/2013 - 11:19:56 ---A- - C:\Windows\Prefetch\SMARTINK-SBSDKPROXY.EXE-B2EA2044.pf
O45 - LFCP:[MD5.B5457272F551E68B17F9A4C0682DE461] - 08/06/2013 - 11:20:01 ---A- - C:\Windows\Prefetch\SMARTINKPRIVILEGEDACCESS.EXE-4CF989F7.pf
O45 - LFCP:[MD5.C613A1F3DC199D2970C1F54B2673B5C8] - 08/06/2013 - 11:25:09 ---A- - C:\Windows\Prefetch\DOWNLOADACC.EXE-F082B450.pf
O45 - LFCP:[MD5.A6B74CF43B695C5BB59027A4FF4967CE] - 08/06/2013 - 11:25:17 ---A- - C:\Windows\Prefetch\BI.EXE-1444EDEC.pf
O45 - LFCP:[MD5.D5FE925F642915B84B5A50DA0C07FD0C] - 08/06/2013 - 11:26:46 ---A- - C:\Windows\Prefetch\DOWNLOADACC.EXE-CB260D4D.pf
O45 - LFCP:[MD5.B71FF58F686B728672CE9CFF0C17F69C] - 08/06/2013 - 11:26:54 ---A- - C:\Windows\Prefetch\BI.EXE-5D17E571.pf
O45 - LFCP:[MD5.D2A5D13D341479DCA43C6040AE66810C] - 08/06/2013 - 11:28:32 ---A- - C:\Windows\Prefetch\HIJACKTHIS(1).EXE-3F6224DD.pf
O45 - LFCP:[MD5.482D3BB753DF085F5991A09088F25692] - 08/06/2013 - 11:56:31 ---A- - C:\Windows\Prefetch\AZUREUS.EXE-B2EC3F05.pf =>P2P.Azureus
O45 - LFCP:[MD5.AB99AC16EA315166ACE5A626A6A7920A] - 08/06/2013 - 11:57:52 ---A- - C:\Windows\Prefetch\LAUNCHTM.EXE-B444BC8E.pf
O45 - LFCP:[MD5.A327F4B3533EA2F10056CC2500718385] - 09/05/2013 - 10:34:51 ---A- - C:\Windows\Prefetch\SERIOUSSAM.EXE-B7AA5FBD.pf
O45 - LFCP:[MD5.BFF9DB6160CBF6BDCF83FB4760AB74D9] - 10/05/2013 - 18:24:10 ---A- - C:\Windows\Prefetch\VUZE_5.0.0.0_WIN64.EXE-497710B6.pf =>P2P.Azureus
O45 - LFCP:[MD5.C3B1BAD9C72DE76C5B777F7D2053C5F0] - 11/05/2013 - 11:11:30 ---A- - C:\Windows\Prefetch\NL_2010_PRO.EXE-F8358DE7.pf
O45 - LFCP:[MD5.46C3F832C09663AB38CB199A21344AFE] - 11/05/2013 - 11:26:51 ---A- - C:\Windows\Prefetch\NL_2010_PRO_64.EXE-05484932.pf
O45 - LFCP:[MD5.261DBBE9A6596FDEAFDA7C585F746126] - 11/05/2013 - 11:32:04 ---A- - C:\Windows\Prefetch\NETLIMITER.PRO.V2.0.10-PATCH.-0C93892D.pf
O45 - LFCP:[MD5.750B62B01D188F9A9378D390E4AE5D92] - 12/05/2013 - 18:49:52 ---A- - C:\Windows\Prefetch\_IU14D2N.TMP-6A234AC7.pf
O45 - LFCP:[MD5.3CAB311E4FF0FECAC46EF6184339B7C8] - 17/05/2013 - 17:05:47 ---A- - C:\Windows\Prefetch\VIRTUALDJ_PRO.EXE-8048829D.pf
O45 - LFCP:[MD5.2D846E293D40F54B6453C5066F7DDA9E] - 17/05/2013 - 17:47:51 ---A- - C:\Windows\Prefetch\SYSTEMSETTINGS.EXE-D8CC3B5E.pf
O45 - LFCP:[MD5.C0DB903808BB16C7FC791E0B3AD3CA8C] - 20/05/2013 - 00:07:37 ---A- - C:\Windows\Prefetch\SPIRIT OF SPEED DEMO.EXE-39E7260E.pf
O45 - LFCP:[MD5.955080A20B49C2F0278460F0A17DE587] - 25/05/2013 - 22:24:14 ---A- - C:\Windows\Prefetch\BLOBBY VOLLEY 2.EXE-7795BA78.pf
O45 - LFCP:[MD5.545817C237D34FB7DC225C21EAF26FE9] - 26/05/2013 - 17:20:30 ---A- - C:\Windows\Prefetch\BLOBBY2-WIN32-1.0RC3-INSTALLE-20CF86C5.pf
O45 - LFCP:[MD5.22CEBEF92C0F53E371702F54B8185877] - 26/05/2013 - 17:20:33 ---A- - C:\Windows\Prefetch\BLOBBY2-WIN32-1.0RC3-INSTALLE-3AE6FBF9.pf
O45 - LFCP:[MD5.C205E27C510AC0417BCFC37475029337] - 26/05/2013 - 17:21:01 ---A- - C:\Windows\Prefetch\BLOBBY.EXE-F504F831.pf
O45 - LFCP:[MD5.B0D2C53ADBAED710B5D2BDB4A7A862AA] - 26/05/2013 - 17:25:59 ---A- - C:\Windows\Prefetch\BLOBBY3D.EXE-5674C9FE.pf
O45 - LFCP:[MD5.8EC5D048398ECA33FAB135951580929C] - 26/05/2013 - 17:31:11 ---A- - C:\Windows\Prefetch\ISUNINST.EXE-89623635.pf
O45 - LFCP:[MD5.A353229730B48912C08DF9A2C012870C] - 26/05/2013 - 17:45:43 ---A- - C:\Windows\Prefetch\NARRATOR.EXE-6ADE25EF.pf
~ Prefetcher: 281 Legitimates Filtered in 00mn 01s
---\\ MountPoints2 Shell Key (O51)
O51 - MPSK:{7c77e21c-546b-11e2-be76-84a6c86cb848}\AutoRun\command. (...) -- G:\setup.exe (.not file.)
~ Keys: Scanned in 00mn 00s
Run by Pierre at 08/06/2013 13:11:49
WebSite: http://nicolascoolman.webs.com
State : Version à jour.
WhiteList : Enable
High Elevated Privileges : OK
UAC : Deactivate by program
---\\ Web Browser
MSIE: Internet Explorer v10.0.9200.16580
MFIE: Mozilla Firefox 21.0 (Defaut)
---\\ Windows Product Information
~ Langage: Français
Windows 8 Home Premium Edition, 64-bit (Build 9200)
Windows Server License Manager Script : OK
~ ion : Windows(R) Operating System, OEM_DM channel
Windows ID Activation : OK
~ Windows Partial Key : B7RD6
Windows License : OK
~ Windows Remaining Initializations Number : 998
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK
---\\ System Protection
avast! Free Antivirus v7.0.1474.0
Windows Defender W8
---\\ System Optimizer
---\\ Peer To Peer (P2P)
eMule
Vuze v5.0.0.0 =>P2P.Azureus
---\\ Software Update
Adobe Flash Player 11 Plugin
Adobe Reader X
---\\ System Information
~ Processor: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3981 MB (47% free)
System Restore: Activé (Enable)
System drive C: has 68 GB (24%) free of 279 GB
---\\ Logged in mode
~ Computer Name: BOZOFF
~ User Name: Pierre
~ All Users Names: UpdatusUser, Pierre, HomeGroupUser$, Administrateur,
~ Unselected Option: None
Logged in as Administrator
---\\ Environnement Variables
~ System Unit : C:\
~ %AppData% : C:\Users\Pierre\AppData\Roaming\
~ %Desktop% : C:\Users\Pierre\Desktop\
~ %Favorites% : C:\Users\Pierre\Favorites\
~ %LocalAppData% : C:\Users\Pierre\AppData\Local\
~ %StartMenu% : C:\Users\Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\
---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 68 Go of 279 Go)
D:\ Hard drive, Flash drive, Thumb drive (Free 88 Go of 398 Go)
E:\ CD-ROM drive (Not Inserted)
G:\ CD-ROM drive (Not Inserted)
---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
~ Security Center: 29 Legitimates Filtered in 00mn 00s
---\\ Recherche particulière de fichiers génériques
[MD5.E13A31D5254C25406A7946BDD9B06364] - (.Microsoft Corporation - Explorateur Windows.) (.11/10/2012 - 08:35:16.) -- C:\Windows\Explorer.exe [2380944]
[MD5.FE9AB232B56A12224E8A3F3F9878C9A3] - (.Microsoft Corporation - Application de démarrage de Windows.) (.26/07/2012 - 04:08:50.) -- C:\Windows\System32\Wininit.exe [132608]
[MD5.9B9107F1486476D86B6910EDF07F4358] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.10/04/2013 - 00:17:44.) -- C:\Windows\System32\wininet.dll [2242048]
[MD5.BCF2036A0DD579E47C008C133550283E] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.11/10/2012 - 06:46:58.) -- C:\Windows\System32\Winlogon.exe [517120]
[MD5.9448F5740A037EC0C18F0E9177232DD0] - (.Microsoft Corporation - Bibliothèque de licences.) (.26/07/2012 - 04:07:20.) -- C:\Windows\System32\sppcomapi.dll [273408]
[MD5.36D6A3201721558A8AFBCC09C2DA4C2C] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) (.06/11/2012 - 04:53:44.) -- C:\Windows\system32\Drivers\AFD.sys [560640]
[MD5.A721FF570C2387E383BDDEA9632863C9] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.26/07/2012 - 06:00:48.) -- C:\Windows\system32\Drivers\atapi.sys [25840]
[MD5.990B1BABE6E81FB18E65A87EBEFB1772] - (.Microsoft Corporation - CD-ROM File System Driver.) (.26/07/2012 - 03:30:10.) -- C:\Windows\system32\Drivers\Cdfs.sys [108544]
[MD5.339BFF85D788268752DA8C9644B188EE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.26/07/2012 - 03:26:36.) -- C:\Windows\system32\Drivers\Cdrom.sys [174080]
[MD5.09D9EB9E7898F8E6561473A20CC808B9] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.26/07/2012 - 03:26:53.) -- C:\Windows\system32\Drivers\DfsC.sys [118784]
[MD5.7D87B5B6C7188D553E11B59DC7F0B111] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/09/2012 - 07:08:44.) -- C:\Windows\system32\Drivers\HDAudBus.sys [71168]
[MD5.C9E9CBF73AFFBFE3E801EFB516787BA3] - (.Microsoft Corporation - Pilote de port i8042.) (.26/07/2012 - 03:28:51.) -- C:\Windows\system32\Drivers\i8042prt.sys [112640]
[MD5.3969B9C218DD3FAA9F4ED2FFC3651C02] - (.Microsoft Corporation - IP Network Address Translator.) (.26/07/2012 - 03:23:01.) -- C:\Windows\system32\Drivers\IpNat.sys [145920]
[MD5.93179D48066918323628CB016D8C94DC] - (.Microsoft Corporation - Minirdr SMB Windows NT.) (.05/02/2013 - 23:29:09.) -- C:\Windows\system32\Drivers\MRxSmb.sys [370688]
[MD5.7CEC25C682D319D484630B3952C31A11] - (.Microsoft Corporation - MBT Transport driver.) (.26/07/2012 - 03:24:28.) -- C:\Windows\system32\Drivers\netBT.sys [331776]
[MD5.76929F4A69E425911A63B407E26C2589] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.02/02/2013 - 11:54:54.) -- C:\Windows\system32\Drivers\ntfs.sys [1933544]
[MD5.4563DAF8C6A740AD7F501E219BD10766] - (.Microsoft Corporation - Pilote de port parallèle.) (.26/07/2012 - 03:29:53.) -- C:\Windows\system32\Drivers\Parport.sys [105984]
[MD5.A14D625C5AEE5FFE0F47D1A1D419FAAE] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.26/07/2012 - 03:23:17.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [124928]
[MD5.B2A3AD74FF2E2FFA73AF2567108231B3] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) (.26/07/2012 - 03:25:18.) -- C:\Windows\system32\Drivers\rdpdr.sys [179712]
[MD5.73DC722CE5DF26D7638CE2446F2655C7] - (.Microsoft Corporation - TDI Translation Driver.) (.26/07/2012 - 06:26:47.) -- C:\Windows\system32\Drivers\tdx.sys [117248]
[MD5.2FB3CDFD5EAF4CD9D4AFAF96877D13AE] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.26/07/2012 - 05:57:09.) -- C:\Windows\system32\Drivers\volsnap.sys [332016]
~ Generic Processes: Scanned in 00mn 00s
---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 2/21
~ Mes musiques (My Musics) : 1/830
~ Mes Favoris (My Favorites) : 1/7
~ Mes Documents (My Documents) : 2/13269
~ Mon Bureau (My Desktop) : 2/549
~ Menu demarrer (Programs) : 1/47
~ Hidden Files: Scanned in 00mn 11s
---\\ Processus lancés
[MD5.79174FD5F4DE078642BE1CACB124BFCA] - (.ASUS - ASUS InstantOn.) -- C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnCfg.exe [1126784] [PID.7536]
[MD5.7C58A2513C3DA421A461D75C66C56D21] - (.ASUSTek Computer Inc. - ASUS USB Charger Plus.) -- C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [1123536] [PID.2204]
[MD5.DB314CFF0FB931BEEF9AA53B4DBABDC5] - (.Microsoft Corporation - Touch Keyboard and Handwriting Panel Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe [21064] [PID.3640]
[MD5.2C35624F79B9ADBFE47090879F0D8673] - (.ASUSTek Computer Inc. - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [322208] [PID.7616]
[MD5.A2791CF11D1ED52DBCD75D2FFD4D50E7] - (.ASUSTek Computer Inc. - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [178848] [PID.3540]
[MD5.29769215DEB6E8418EF3656B0423776E] - (.ASUSTeK Computer Inc. - ASUS Quick Gesture Exe.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe [20352] [PID.6956]
[MD5.E05FFF1C05C80CCE83C766198896C7CF] - (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [90832] [PID.3092]
[MD5.6B08632F7634F344372B25A507DA7C47] - (.NVIDIA Corporation - NVIDIA NvTmru Application.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1012000] [PID.5260]
[MD5.98CADC34741738CFC24F5CDFDAA408FA] - (.ASUSTeK - ACEngSvr Module.) -- C:\Windows\SysWOW64\ACEngSvr.exe [162456] [PID.3820]
[MD5.B7995C675014EEBE77A0BEB7AFCCFC08] - (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [91432] [PID.6616]
[MD5.083649EF692A066880C9326020915AFE] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [4297136] [PID.5604]
[MD5.E0D6538B62C79FCBF0B27F95FAF3208B] - (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [246504] [PID.8308]
[MD5.2FF96BFE76A04775FC80B425A964A893] - (.Joyent, Inc - Evented I/O for V8 JavaScript.) -- C:\Program Files (x86)\SMART Technologies\Education Software\sbsdk-server\SBWDKService.exe [5282200] [PID.2748]
[MD5.77D90A470180FAF52C38CA11E258A7AF] - (.SMART Technologies - SMART Board Service.) -- C:\Program Files (x86)\SMART Technologies\Education Software\SMARTBoardService.exe [2219416] [PID.1652]
[MD5.E538EF5F87D35F344A1AC6A609093AA0] - (.SMART Technologies - SMARTInk.) -- C:\Program Files (x86)\SMART Technologies\Education Software\SMARTInk.exe [98200] [PID.1760]
[MD5.EC52999D0D2E374981C0D033748AF2A6] - (.SMART Technologies - SMARTInk-SBSDKProxy.) -- C:\Program Files (x86)\SMART Technologies\Education Software\Office\SMARTInk-SBSDKProxy.exe [32152] [PID.5228]
[MD5.CFA72CFBEF5C4A812CE09F97C8536858] - (.SMART Technologies - SMARTInkPrivilegedAccess.) -- C:\Program Files (x86)\SMART Technologies\Education Software\SMARTInkPrivilegedAccess.exe [126872] [PID.8936]
[MD5.01F1839AD462D146BB15B1DA9FDE2EE7] - (.ASUSTeK Computer Inc. - ASUS Live Update.) -- C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [1557664] [PID.5740]
[MD5.95110A1C5A1D228AC1DDF6AB67D00BEB] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [920472] [PID.6212]
[MD5.6FC79A950476A5F539EEB65F9097C0A8] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe [17304] [PID.588]
[MD5.23AA0FDCBDD87D0B78092798C68312D8] - (.Adobe Systems, Inc. - Adobe Flash Player 11.7 r700.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_202.exe [1855880] [PID.8384]
[MD5.BA58BE8F544B058C160E7CCDB7A6EA72] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [7472128] [PID.6904]
~ Processes Running: Scanned in 00mn 00s
---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
M2 - MFEP: prefs.js [Pierre - uje0xxd5.default\{bee6eb20-01e0-ebd1-da83-080329fb9a3a}] [] Flash and Video Download v1.33 (..)
~ Firefox Browser: 4 Legitimates Filtered in 00mn 00s
---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s
---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s
---\\ Redirection du fichier Hosts (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 21
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Shareaza Web Download Hook [64Bits] - {0EEDB912-C5FA-486F-8334-57288578C627} . (.Shareaza Development Team - Shareaza Web Download Hook.) -- C:\Program Files (x86)\Shareaza\RazaWebHook32.dll
O2 - BHO: SMART Notebook Download Utility [64Bits] - {67BCF957-85FC-4036-8DC4-D4D80E00A77B} . (.SMART Technologies ULC. - Notebook Download Plugin.) -- C:\Program Files (x86)\SMART Technologies\Education Software\Win32\NotebookPlugin.dll
~ BHO: 5 Legitimates Filtered in 00mn 00s
---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: (no name) [64Bits] - [HKLM]{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} Clé orpheline
~ Toolbar: Scanned in 00mn 00s
---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
O4 - HKLM\..\Run: [BTMTrayAgent] . (.Motorola Solutions, Inc. - Bluetooth Shell Extension.) -- C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll
O4 - HKLM\..\Run: [ACMON] . (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
O4 - HKLM\..\Run: [Nvtmru] . (.NVIDIA Corporation - NVIDIA NvTmru Application.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
O4 - HKLM\..\Wow6432Node\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe
O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O4 - HKLM\..\Wow6432Node\Run: [RemoteControl10] . (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
O4 - HKLM\..\Wow6432Node\Run: [ASUSWebStorage] . (.ASUS Cloud Corporation - ASUS WebStorage Panel.) -- C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.9.120\AsusWSPanel.exe
O4 - HKLM\..\Wow6432Node\Run: [avast] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastUI.exe
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
O4 - HKLM\..\Wow6432Node\Run: [sbsdk-server] . (.SMART Technologies - Node Launcher.) -- C:\Program Files (x86)\SMART Technologies\Education Software\sbsdk-server\NodeLauncher.exe
O4 - HKLM\..\Wow6432Node\Run: [SMART Board Service] . (.SMART Technologies - SMART Board Service.) -- C:\Program Files (x86)\SMART Technologies\Education Software\SMARTBoardService.exe
O4 - HKLM\..\Wow6432Node\Run: [SMART Board Tools] . (.SMART Technologies ULC - SMART Board Tools.) -- C:\Program Files (x86)\SMART Technologies\Education Software\SMARTBoardTools.exe
O4 - HKLM\..\Wow6432Node\Run: [SMART Ink] . (.SMART Technologies - SMARTInk.) -- C:\Program Files (x86)\SMART Technologies\Education Software\SMARTInk.exe
O4 - HKUS\S-1-5-21-3614335485-3195974102-3889183896-1002\..\Run: [DAEMON Tools Lite] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
~ Application: Scanned in 00mn 00s
---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop: Didapages.lnk . (.Carlos Guedes - Didapages.) -- C:\Program Files (x86)\Didapages\Didapages Auteur.exe
O4 - GS\Desktop: LIMBO.lnk . (.Playdead - Limbo.) -- C:\Program Files (x86)\LIMBO\limbo.exe
O4 - GS\Desktop: Slender v0.9.1.lnk . (...) -- C:\Games\Slender v0.9.1\Slender.exe
O4 - GS\Desktop: Ubisoft Product Registration.lnk . (.Ubisoft - Pas de description.) -- C:\Program Files (x86)\Ubisoft\Register\register.exe
O4 - GS\Desktop: Virtual DJ Pro.lnk . (.Atomix Productions - VirtualDJ.) -- C:\Program Files (x86)\VirtualDJ\virtualdj_pro.exe
~ Global Startup: Scanned in 00mn 00s
---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: &Envoyer à OneNote [64Bits] - {2670000A-7350-4f3c-8081-5663EE0C6C49} -- C:\Program Files (x86)\MICROS~2\Office14\ONBttnIE.dll (.not file.)
O9 - Extra button: Notes &liées OneNote [64Bits] - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} -- C:\Program Files (x86)\MICROS~2\Office14\ONBTTN~1.dll (.not file.)
~ IE Extra Buttons: Scanned in 00mn 00s
---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{3AA0368E-289D-4387-B659-F6DB70007ABF}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{3AA0368E-289D-4387-B659-F6DB70007ABF}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
~ Domain: Scanned in 00mn 00s
---\\ Protocole additionnel (O18)
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Filter: text/xml [64Bits] - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.dll
~ Protocole Additionnel: Scanned in 00mn 00s
---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll
~ Winlogon: Scanned in 00mn 00s
---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - AppInit_DLLs: . (.NVIDIA Corporation - NVIDIA shim initialization dll, Version 320.) - C:\Windows\system32\nvinitx.dll
~ AppInit DLL: Scanned in 00mn 00s
---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: SMART Helper Service (SMARTHelperService) . (.SMART Technologies - SMART Helper Service For Windows.) - C:\Program Files (x86)\SMART Technologies\Education Software\SMARTHelperService.exe
O23 - Service: Intel(R) PROSet/Wireless Zero Configurat (ZeroConfigService) . (.Intel® Corporation - Intel® PROSet/Wireless Zero Configure Servi.) - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
~ Services: 21 Legitimates Filtered in 00mn 19s
---\\ Logiciels installés (O42)
O42 - Logiciel: Antichamber RePack by SxSxL - (...) [HKLM][64Bits] -- Antichamber_is1
O42 - Logiciel: Black & White® 2 - (.Lionhead Studios.) [HKLM][64Bits] -- {D9E52CD1-9DF1-4A8A-9BDC-1E5E53982F2B}
O42 - Logiciel: NetLimiter 2 Pro (remove only) - (...) [HKLM][64Bits] -- NetLimiter 2 Pro
O42 - Logiciel: SMART Common Files - (.SMART Technologies ULC.) [HKLM][64Bits] -- {ED2455F7-6AA6-4D3C-85E9-A72297DD7051}
O42 - Logiciel: SMART Ink - (.SMART Technologies ULC.) [HKLM][64Bits] -- {4A1F2472-6164-43FA-9D2F-B35E71A8DF32}
O42 - Logiciel: SMART Notebook - (.SMART Technologies ULC.) [HKLM][64Bits] -- {AFE024C7-7CA7-4C8E-90EE-D877C7CD96A3}
O42 - Logiciel: SMART Product Drivers - (.SMART Technologies ULC.) [HKLM][64Bits] -- {E3189F44-F7BD-4F96-B756-A0AEFAF61D3A}
O42 - Logiciel: SMART Product Update - (.SMART Technologies ULC.) [HKLM][64Bits] -- {8D4B716A-0ABE-4238-9090-D208E5F57A5E}
O42 - Logiciel: Shareaza 2.6.0.0 - (.Shareaza Development Team.) [HKLM][64Bits] -- Shareaza_is1
O42 - Logiciel: trakAxPC - (.HighAndes.) [HKLM][64Bits] -- {CAB81583-0310-43E1-8E33-0864985EDD67}
~ Logic: 122 Legitimates Filtered in 00mn 01s
---\\ HKCU & HKLM Software Keys
[HKCU\Software\APN PIP]
[HKCU\Software\AppDataLow\Software\Smartbar] =>Hijacker.SmartBar
[HKCU\Software\HighAndes]
[HKCU\Software\Kiloo Games]
[HKCU\Software\PIP]
[HKCU\Software\Shareaza]
[HKCU\Software\Softonic]
[HKLM\Software\Wow6432Node\PIP]
[HKLM\Software\Wow6432Node\Shareaza]
~ Key Software: 226 Legitimates Filtered in 00mn 01s
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 28/04/2013 - 19:24:22 - [630,068] ----D C:\Program Files (x86)\Antichamber
O43 - CFD: 29/03/2013 - 13:00:15 - [77,339] ----D C:\Program Files (x86)\HighAndes
O43 - CFD: 05/05/2013 - 11:57:41 - [0] ----D C:\Program Files (x86)\SevenZip
O43 - CFD: 16/03/2013 - 05:12:10 - [24,850] ----D C:\Program Files (x86)\Shareaza
O43 - CFD: 29/03/2013 - 13:00:31 - [90,139] ----D C:\ProgramData\HighAndes
O43 - CFD: 01/06/2013 - 12:45:53 - [0] ----D C:\ProgramData\LAT 2.0 - FR
O43 - CFD: 29/03/2013 - 13:00:31 - [0,033] ----D C:\Users\Pierre\AppData\Roaming\HighAndes
O43 - CFD: 16/03/2013 - 05:12:14 - [13,713] ----D C:\Users\Pierre\AppData\Roaming\Shareaza
O43 - CFD: 29/03/2013 - 13:00:31 - [0] ----D C:\Users\Pierre\AppData\Local\HighAndes
O43 - CFD: 16/03/2013 - 05:12:14 - [0] ----D C:\Users\Pierre\AppData\Local\Shareaza
~ Program Folder: 180 Legitimates Filtered in 00mn 03s
---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.60EBB8CE38A1990A8818F996ACF2607D] - 01/06/2013 - 11:42:09 ---A- . (.SMART Technologies Inc. - SMART Local Port Monitor UI DLL.) -- C:\Windows\SysNative\smrtlocalui.dll [22312]
O44 - LFC:[MD5.E6CE06CB77D918BA02741F4D9C095698] - 01/06/2013 - 11:42:09 ---A- . (.SMART Technologies ULC - SMART Notebook Document Writer Print Captur.) -- C:\Windows\SysNative\smrtlocalmon.dll [37776]
O44 - LFC:[MD5.60EBB8CE38A1990A8818F996ACF2607D] - 01/06/2013 - 11:42:09 RSHAD . (.SMART Technologies Inc. - SMART Local Port Monitor UI DLL.) -- C:\Windows\System32\smrtlocalui.dll [22312]
O44 - LFC:[MD5.E6CE06CB77D918BA02741F4D9C095698] - 01/06/2013 - 11:42:09 RSHAD . (.SMART Technologies ULC - SMART Notebook Document Writer Print Captur.) -- C:\Windows\System32\smrtlocalmon.dll [37776]
O44 - LFC:[MD5.F518F7C296714A81555A0D6164D442CB] - 01/06/2013 - 11:42:08 ---A- . (...) -- C:\Windows\DPINST.LOG [69534]
O44 - LFC:[MD5.D0B384E810077BF3FE5A11718B512275] - 26/05/2013 - 17:22:34 ---A- . (...) -- C:\Windows\SysNative\ApnDatabase.xml [387688]
O44 - LFC:[MD5.D0B384E810077BF3FE5A11718B512275] - 26/05/2013 - 17:22:34 RSHAD . (...) -- C:\Windows\System32\ApnDatabase.xml [387688]
~ Files: 163 Legitimates Filtered in 00mn 07s
---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.31ECD66777D2F69FACE279D411CD6F18] - 01/06/2013 - 10:42:23 ---A- - C:\Windows\Prefetch\SMARTBOARDTOOLS.EXE-51208074.pf
O45 - LFCP:[MD5.671881E14BCEA2C7B108E2E62B78E70F] - 01/06/2013 - 10:42:26 ---A- - C:\Windows\Prefetch\AWARE.EXE-4B7C5DA4.pf
O45 - LFCP:[MD5.4DC58401D75B52B803B91FB85F413644] - 01/06/2013 - 10:42:29 ---A- - C:\Windows\Prefetch\MARKER.EXE-461E0E96.pf
O45 - LFCP:[MD5.E6DEF20A3AC2B8E113065AAECEB79CBE] - 01/06/2013 - 11:34:36 ---A- - C:\Windows\Prefetch\SMART_EDUCATION_SOFTWARE_2012-337C606F.pf
O45 - LFCP:[MD5.5818A93DE76579607E3A3A33DF9A07BE] - 01/06/2013 - 15:42:21 ---A- - C:\Windows\Prefetch\JAUCHECK.EXE-96292BC0.pf
O45 - LFCP:[MD5.03C40AB2BBB87E194B29E5A355B711FF] - 01/06/2013 - 19:53:19 ---A- - C:\Windows\Prefetch\TRAKAXPC.EXE-73ED5372.pf
O45 - LFCP:[MD5.B89C10B513EC0E6A1F9228A2DF75EB70] - 01/06/2013 - 21:59:49 ---A- - C:\Windows\Prefetch\VSTOR_REDIST.EXE-2D6E3F32.pf
O45 - LFCP:[MD5.DC8FB0824B1F0A6F3E3F4A598B8A30C1] - 01/06/2013 - 22:00:22 ---A- - C:\Windows\Prefetch\VSTOR40_X64.EXE-A338005B.pf
O45 - LFCP:[MD5.7D2A539208C5635B44DED42E9E6D6710] - 01/06/2013 - 22:01:21 ---A- - C:\Windows\Prefetch\VSTOR40_LP_X64_FRA.EXE-08FEB242.pf
O45 - LFCP:[MD5.AAF0B519352C98DFF764A5B4244322FB] - 02/06/2013 - 15:04:00 ---A- - C:\Windows\Prefetch\VUZEPLAYER.EXE-D2FB2EB3.pf =>P2P.Azureus
O45 - LFCP:[MD5.453050B2BA68F642AD062147EB8B8D36] - 02/06/2013 - 18:51:45 ---A- - C:\Windows\Prefetch\ACVT.EXE-8C656B78.pf
O45 - LFCP:[MD5.095119C9670AFC2ABFC3E60A71263097] - 04/06/2013 - 18:02:52 ---A- - C:\Windows\Prefetch\dynreservedpri.db
O45 - LFCP:[MD5.BCBA6652E601EE2FDF66C5A3A18EB569] - 05/06/2013 - 23:49:09 ---A- - C:\Windows\Prefetch\MY_INTEL_CPP_X64.EXE-1A95AA96.pf
O45 - LFCP:[MD5.258C691E49347AB54D183B92204EE1D0] - 05/06/2013 - 23:49:20 ---A- - C:\Windows\Prefetch\PDVD10SERV.EXE-99C8A7B5.pf
O45 - LFCP:[MD5.33A1022B04B61B69355A4D1E59EBC652] - 06/06/2013 - 23:57:23 ---A- - C:\Windows\Prefetch\320.18-NOTEBOOK-WIN8-WIN7-64B-7C2A7B08.pf
O45 - LFCP:[MD5.9A4215BE1DE8ABB12331DB0C987A71B4] - 07/06/2013 - 00:05:38 ---A- - C:\Windows\Prefetch\WOWREG32.EXE-FB598036.pf
O45 - LFCP:[MD5.70BCEBBEB21642D566E1F6C54E6E15B6] - 07/06/2013 - 00:10:54 ---A- - C:\Windows\Prefetch\NVTMRU.EXE-91CBFE7D.pf
O45 - LFCP:[MD5.FD33241C5A34D09AB9F2DD147F83C321] - 07/06/2013 - 00:11:37 ---A- - C:\Windows\Prefetch\DAO.16199147.EXE-D249BB04.pf
O45 - LFCP:[MD5.224FE3406889D31966A2FA870BDBB3D1] - 07/06/2013 - 00:15:45 ---A- - C:\Windows\Prefetch\VOPS-GRAND_THEFT_AUTO_IV.1557-8369391B.pf
O45 - LFCP:[MD5.5DFFD9BAC73C12EDE6693AFAB8A86E34] - 07/06/2013 - 00:39:00 ---A- - C:\Windows\Prefetch\GFEXPERIENCE.EXE-00DD0F2D.pf
O45 - LFCP:[MD5.9F2756C7FA21EC5DECB41651C0FAE040] - 08/06/2013 - 01:09:24 ---A- - C:\Windows\Prefetch\VDM.EXE-86FDBFD3.pf
O45 - LFCP:[MD5.CE03997C938E864DCD822A76900A8B3A] - 08/06/2013 - 01:21:00 ---A- - C:\Windows\Prefetch\DTC.EXE-446F6195.pf
O45 - LFCP:[MD5.64B5B5B6A6E4C516DC2A0273FD692852] - 08/06/2013 - 01:36:54 ---A- - C:\Windows\Prefetch\MADHCCTRL.EXE-E012B483.pf
O45 - LFCP:[MD5.1B520530468E630DEC6B9D00C7D34BD8] - 08/06/2013 - 11:19:46 ---A- - C:\Windows\Prefetch\SBWDKSERVICE.EXE-15BBD520.pf
O45 - LFCP:[MD5.E17F5E36A6CAD6C842C104CFE48C661E] - 08/06/2013 - 11:19:47 ---A- - C:\Windows\Prefetch\SMARTBOARDSERVICE.EXE-CFD273B9.pf
O45 - LFCP:[MD5.C4F1D2771743F75C70A6E31DC12135EB] - 08/06/2013 - 11:19:50 ---A- - C:\Windows\Prefetch\HARVESTER.EXE-353D5774.pf
O45 - LFCP:[MD5.AFE0B43F770764991E2238E32E4BE48F] - 08/06/2013 - 11:19:50 ---A- - C:\Windows\Prefetch\SMARTBOARDTOOLS.EXE-4F4666D1.pf
O45 - LFCP:[MD5.A9134E2AB8A9A6A743B4899C2D02D752] - 08/06/2013 - 11:19:50 ---A- - C:\Windows\Prefetch\SMARTINK.EXE-46FCE77E.pf
O45 - LFCP:[MD5.B58D5A4C853FC94C90142B7AF9B1386A] - 08/06/2013 - 11:19:56 ---A- - C:\Windows\Prefetch\SMARTINK-SBSDKPROXY.EXE-B2EA2044.pf
O45 - LFCP:[MD5.B5457272F551E68B17F9A4C0682DE461] - 08/06/2013 - 11:20:01 ---A- - C:\Windows\Prefetch\SMARTINKPRIVILEGEDACCESS.EXE-4CF989F7.pf
O45 - LFCP:[MD5.C613A1F3DC199D2970C1F54B2673B5C8] - 08/06/2013 - 11:25:09 ---A- - C:\Windows\Prefetch\DOWNLOADACC.EXE-F082B450.pf
O45 - LFCP:[MD5.A6B74CF43B695C5BB59027A4FF4967CE] - 08/06/2013 - 11:25:17 ---A- - C:\Windows\Prefetch\BI.EXE-1444EDEC.pf
O45 - LFCP:[MD5.D5FE925F642915B84B5A50DA0C07FD0C] - 08/06/2013 - 11:26:46 ---A- - C:\Windows\Prefetch\DOWNLOADACC.EXE-CB260D4D.pf
O45 - LFCP:[MD5.B71FF58F686B728672CE9CFF0C17F69C] - 08/06/2013 - 11:26:54 ---A- - C:\Windows\Prefetch\BI.EXE-5D17E571.pf
O45 - LFCP:[MD5.D2A5D13D341479DCA43C6040AE66810C] - 08/06/2013 - 11:28:32 ---A- - C:\Windows\Prefetch\HIJACKTHIS(1).EXE-3F6224DD.pf
O45 - LFCP:[MD5.482D3BB753DF085F5991A09088F25692] - 08/06/2013 - 11:56:31 ---A- - C:\Windows\Prefetch\AZUREUS.EXE-B2EC3F05.pf =>P2P.Azureus
O45 - LFCP:[MD5.AB99AC16EA315166ACE5A626A6A7920A] - 08/06/2013 - 11:57:52 ---A- - C:\Windows\Prefetch\LAUNCHTM.EXE-B444BC8E.pf
O45 - LFCP:[MD5.A327F4B3533EA2F10056CC2500718385] - 09/05/2013 - 10:34:51 ---A- - C:\Windows\Prefetch\SERIOUSSAM.EXE-B7AA5FBD.pf
O45 - LFCP:[MD5.BFF9DB6160CBF6BDCF83FB4760AB74D9] - 10/05/2013 - 18:24:10 ---A- - C:\Windows\Prefetch\VUZE_5.0.0.0_WIN64.EXE-497710B6.pf =>P2P.Azureus
O45 - LFCP:[MD5.C3B1BAD9C72DE76C5B777F7D2053C5F0] - 11/05/2013 - 11:11:30 ---A- - C:\Windows\Prefetch\NL_2010_PRO.EXE-F8358DE7.pf
O45 - LFCP:[MD5.46C3F832C09663AB38CB199A21344AFE] - 11/05/2013 - 11:26:51 ---A- - C:\Windows\Prefetch\NL_2010_PRO_64.EXE-05484932.pf
O45 - LFCP:[MD5.261DBBE9A6596FDEAFDA7C585F746126] - 11/05/2013 - 11:32:04 ---A- - C:\Windows\Prefetch\NETLIMITER.PRO.V2.0.10-PATCH.-0C93892D.pf
O45 - LFCP:[MD5.750B62B01D188F9A9378D390E4AE5D92] - 12/05/2013 - 18:49:52 ---A- - C:\Windows\Prefetch\_IU14D2N.TMP-6A234AC7.pf
O45 - LFCP:[MD5.3CAB311E4FF0FECAC46EF6184339B7C8] - 17/05/2013 - 17:05:47 ---A- - C:\Windows\Prefetch\VIRTUALDJ_PRO.EXE-8048829D.pf
O45 - LFCP:[MD5.2D846E293D40F54B6453C5066F7DDA9E] - 17/05/2013 - 17:47:51 ---A- - C:\Windows\Prefetch\SYSTEMSETTINGS.EXE-D8CC3B5E.pf
O45 - LFCP:[MD5.C0DB903808BB16C7FC791E0B3AD3CA8C] - 20/05/2013 - 00:07:37 ---A- - C:\Windows\Prefetch\SPIRIT OF SPEED DEMO.EXE-39E7260E.pf
O45 - LFCP:[MD5.955080A20B49C2F0278460F0A17DE587] - 25/05/2013 - 22:24:14 ---A- - C:\Windows\Prefetch\BLOBBY VOLLEY 2.EXE-7795BA78.pf
O45 - LFCP:[MD5.545817C237D34FB7DC225C21EAF26FE9] - 26/05/2013 - 17:20:30 ---A- - C:\Windows\Prefetch\BLOBBY2-WIN32-1.0RC3-INSTALLE-20CF86C5.pf
O45 - LFCP:[MD5.22CEBEF92C0F53E371702F54B8185877] - 26/05/2013 - 17:20:33 ---A- - C:\Windows\Prefetch\BLOBBY2-WIN32-1.0RC3-INSTALLE-3AE6FBF9.pf
O45 - LFCP:[MD5.C205E27C510AC0417BCFC37475029337] - 26/05/2013 - 17:21:01 ---A- - C:\Windows\Prefetch\BLOBBY.EXE-F504F831.pf
O45 - LFCP:[MD5.B0D2C53ADBAED710B5D2BDB4A7A862AA] - 26/05/2013 - 17:25:59 ---A- - C:\Windows\Prefetch\BLOBBY3D.EXE-5674C9FE.pf
O45 - LFCP:[MD5.8EC5D048398ECA33FAB135951580929C] - 26/05/2013 - 17:31:11 ---A- - C:\Windows\Prefetch\ISUNINST.EXE-89623635.pf
O45 - LFCP:[MD5.A353229730B48912C08DF9A2C012870C] - 26/05/2013 - 17:45:43 ---A- - C:\Windows\Prefetch\NARRATOR.EXE-6ADE25EF.pf
~ Prefetcher: 281 Legitimates Filtered in 00mn 01s
---\\ MountPoints2 Shell Key (O51)
O51 - MPSK:{7c77e21c-546b-11e2-be76-84a6c86cb848}\AutoRun\command. (...) -- G:\setup.exe (.not file.)
~ Keys: Scanned in 00mn 00s
lilidurhone
Messages postés
43347
Date d'inscription
lundi 25 avril 2011
Statut
Contributeur sécurité
Dernière intervention
31 octobre 2024
3 806
9 juin 2013 à 12:51
9 juin 2013 à 12:51
Hello
* Pour t'aider http://www.pc-infopratique.com/forum-informatique/tutoriel-heberger-rapport-vt-67934.html
Le rapport étant trop long héberge le
* Pour t'aider http://www.pc-infopratique.com/forum-informatique/tutoriel-heberger-rapport-vt-67934.html
Le rapport étant trop long héberge le
J'avais pas bien compris désolé. J'ai donc mon rapport à l'adresse suivante:
http://cjoint.com/?CFjm1SeVx1O
Merci!!
http://cjoint.com/?CFjm1SeVx1O
Merci!!
lilidurhone
Messages postés
43347
Date d'inscription
lundi 25 avril 2011
Statut
Contributeur sécurité
Dernière intervention
31 octobre 2024
3 806
9 juin 2013 à 12:57
9 juin 2013 à 12:57
Hello Bozoff
Une mise au point avant de commencer
Attention aux cr@cks!
Avast n'est pas à jour on est à la version 8.0.1489
Une mise au point avant de commencer
Attention aux cr@cks!
Avast n'est pas à jour on est à la version 8.0.1489