PC vérolé (pubs intempestives et liens soulignés deux fois)
Résolu/Fermé
Obaobob
Messages postés
120
Date d'inscription
dimanche 7 juillet 2013
Statut
Membre
Dernière intervention
22 août 2015
-
22 sept. 2013 à 16:10
2011N2 Messages postés 13352 Date d'inscription samedi 29 janvier 2011 Statut Contributeur sécurité Dernière intervention 24 décembre 2016 - 7 nov. 2013 à 19:42
2011N2 Messages postés 13352 Date d'inscription samedi 29 janvier 2011 Statut Contributeur sécurité Dernière intervention 24 décembre 2016 - 7 nov. 2013 à 19:42
A voir également:
- PC vérolé (pubs intempestives et liens soulignés deux fois)
- Test performance pc - Guide
- Reinitialiser pc - Guide
- Deux ecran pc - Guide
- Pc lent - Guide
- Whatsapp pc - Télécharger - Messagerie
60 réponses
2011N2
Messages postés
13352
Date d'inscription
samedi 29 janvier 2011
Statut
Contributeur sécurité
Dernière intervention
24 décembre 2016
917
29 sept. 2013 à 12:42
29 sept. 2013 à 12:42
Re,
Ah ça c'est le bios c'est pas ça qu'il faut.
Tu appuies sur F8 juste après le chargement du bios ? C'est ce qui se charge au tout tout début après avoir appuyé sur le bouton d'alimentation.
Sinon essaye F5.
Gabriel.
Ah ça c'est le bios c'est pas ça qu'il faut.
Tu appuies sur F8 juste après le chargement du bios ? C'est ce qui se charge au tout tout début après avoir appuyé sur le bouton d'alimentation.
Sinon essaye F5.
Gabriel.
Obaobob
Messages postés
120
Date d'inscription
dimanche 7 juillet 2013
Statut
Membre
Dernière intervention
22 août 2015
6
29 sept. 2013 à 13:41
29 sept. 2013 à 13:41
Bon, lollll, je m'y suis mise en mode sans échec en éteignant à l'arrache mon PC... Dans ces cas là, il propose le mode sans échec avec prise en charge réseau.
Donc là, j'y suis !
J'ai donc ressayé de charger Adobe Reader et Java Runtime en refaisant Update Checker. Et là impossible car "le service Windows Installer n'est pas accessible en mode sans échec......"
Mais, bon, c'est peut être pas ça qu'il fallait faire ?
Donc là, je reste en mode sans échec et attend ta réponse :o)
Donc là, j'y suis !
J'ai donc ressayé de charger Adobe Reader et Java Runtime en refaisant Update Checker. Et là impossible car "le service Windows Installer n'est pas accessible en mode sans échec......"
Mais, bon, c'est peut être pas ça qu'il fallait faire ?
Donc là, je reste en mode sans échec et attend ta réponse :o)
2011N2
Messages postés
13352
Date d'inscription
samedi 29 janvier 2011
Statut
Contributeur sécurité
Dernière intervention
24 décembre 2016
917
29 sept. 2013 à 13:42
29 sept. 2013 à 13:42
Re,
Ok^^
Télécharge Java ici : https://www.java.com/fr/download/
Et Adobe ici (décoche l'installation facultative) : https://get2.adobe.com/fr/reader/otherversions/
Gabriel.
Ok^^
Télécharge Java ici : https://www.java.com/fr/download/
Et Adobe ici (décoche l'installation facultative) : https://get2.adobe.com/fr/reader/otherversions/
Gabriel.
Obaobob
Messages postés
120
Date d'inscription
dimanche 7 juillet 2013
Statut
Membre
Dernière intervention
22 août 2015
6
29 sept. 2013 à 13:51
29 sept. 2013 à 13:51
Ok, je viens de suivre tes indications.
Impossible de faire les installations toujours pour le même motif : " "le service Windows Installer n'est pas accessible en mode sans échec......"
Cathy :o(
Impossible de faire les installations toujours pour le même motif : " "le service Windows Installer n'est pas accessible en mode sans échec......"
Cathy :o(
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
2011N2
Messages postés
13352
Date d'inscription
samedi 29 janvier 2011
Statut
Contributeur sécurité
Dernière intervention
24 décembre 2016
917
29 sept. 2013 à 15:17
29 sept. 2013 à 15:17
Re,
Y'a pas mal de bugs sur ces deux mises à jour en ce moment, comme déjà dit, tu n'es pas le seul cas.
Je pense donc que le mieux, à ce stade, est d'attendre que de nouvelles mises à jour soient proposées en espérant qu'elles ne conduisent plus à une erreur. ;)
Gabriel.
Y'a pas mal de bugs sur ces deux mises à jour en ce moment, comme déjà dit, tu n'es pas le seul cas.
Je pense donc que le mieux, à ce stade, est d'attendre que de nouvelles mises à jour soient proposées en espérant qu'elles ne conduisent plus à une erreur. ;)
Gabriel.
Obaobob
Messages postés
120
Date d'inscription
dimanche 7 juillet 2013
Statut
Membre
Dernière intervention
22 août 2015
6
29 sept. 2013 à 15:33
29 sept. 2013 à 15:33
Je pense que tu as raison. Et l'essentiel, c'est que mon PC ne soit plus vérolé !
Je te remercie donc vivement pour ton aide et le temps que tu m'as consacré.
Cathy :o)
Je te remercie donc vivement pour ton aide et le temps que tu m'as consacré.
Cathy :o)
2011N2
Messages postés
13352
Date d'inscription
samedi 29 janvier 2011
Statut
Contributeur sécurité
Dernière intervention
24 décembre 2016
917
29 sept. 2013 à 15:37
29 sept. 2013 à 15:37
Je t'en prie, bonne continuation. :)
Gabriel.
Gabriel.
Obaobob
Messages postés
120
Date d'inscription
dimanche 7 juillet 2013
Statut
Membre
Dernière intervention
22 août 2015
6
4 oct. 2013 à 20:00
4 oct. 2013 à 20:00
:o( Me revoilà... Çà recommence. A nouveau des pubs plein les textes sur Google Chrome, lesquels mots sont soulignés deux fois en rouge. Je ne comprends pas d'où ça sort. J'ai surfé sans télécharger quoi que ce soit...
J'ai passé ADW Cleaner et Malwarebytes Anti Malware sans succès. Bon là en attendant vos lumière, je vais passer un coup de CC Cleaner.
Cathy
J'ai passé ADW Cleaner et Malwarebytes Anti Malware sans succès. Bon là en attendant vos lumière, je vais passer un coup de CC Cleaner.
Cathy
2011N2
Messages postés
13352
Date d'inscription
samedi 29 janvier 2011
Statut
Contributeur sécurité
Dernière intervention
24 décembre 2016
917
4 oct. 2013 à 20:02
4 oct. 2013 à 20:02
Salut,
Bizarre.
Refais un ZHPDiag et poste le rapport.
Gabriel.
Bizarre.
Refais un ZHPDiag et poste le rapport.
Gabriel.
Obaobob
Messages postés
120
Date d'inscription
dimanche 7 juillet 2013
Statut
Membre
Dernière intervention
22 août 2015
6
5 oct. 2013 à 13:16
5 oct. 2013 à 13:16
Hello, voilà le rapport :
~ Rapport de ZHPDiag v2013.10.5.15 - Nicolas Coolman (05/10/2013)
~ Lancé par Cat (05/10/2013 13:03:16)
~ Adresse du Site Web https://nicolascoolman.webs.com/
~ Traduit par Nicolas Coolman
~ Etat de la version :
~ Liste blanche : Désactivée par l'utilisateur
~ Elévation des Privilèges : OK
~ User Account Control (UAC): Activate by user
---\\ Navigateurs Internet
MSIE: Internet Explorer v10.0.9200.16686
MFIE: Mozilla Firefox 23.0.1
GCIE: Google Chrome v29.0.1547.76 (Defaut)
---\\ Informations sur les produits Windows
~ Langage: Français
Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601)
Windows Server License Manager Script : OK
~ Windows(R) 7, OEM_COA_NSLP channel
Windows ID Activation : OK
~ Windows Partial Key : K6DBV
Windows License : OK
~ Windows Remaining Initializations Number : 3
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK
---\\ Logiciels de protection du système
Malwarebytes Anti-Malware version 1.75.0.1300
Windows Defender W7
---\\ Logiciels d'optimisation du système
CCleaner v4.06 =>Piriform Ltd
---\\ Logiciels de partage PeerToPeer
---\\ Surveillance de Logiciels
Adobe Flash Player 11 Plugin
Adobe Reader XI
Java 7 Update 25
---\\ Informations sur le système
~ Processor: Intel64 Family 6 Model 15 Stepping 6, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 1022 MB (4% free)
System Restore: Activé (Enable)
System drive C: has 76 GB (68%) free of 112 GB
---\\ Mode de connexion au système
~ Computer Name: CAT-PC
~ User Name: Cat
~ All Users Names: HomeGroupUser$, Cat, Administrateur,
~ Unselected Option: None
Logged in as Administrator
---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\Cat\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\Cat\AppData\Roaming\
~ %Desktop% : C:\Users\Cat\Desktop\
~ %Favorites% : C:\Users\Cat\Favorites\
~ %LocalAppData% : C:\Users\Cat\AppData\Local\
~ %StartMenu% : C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\
---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 76 Go of 112 Go)
E: CD-ROM drive (Not Inserted)
G: Floppy drive, Flash card reader, USB Key (Not Inserted)
H: Floppy drive, Flash card reader, USB Key (Not Inserted)
I: Floppy drive, Flash card reader, USB Key (Not Inserted)
J: Floppy drive, Flash card reader, USB Key (Not Inserted)
---\\ Etat du Centre de Sécurité Windows
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Security Center: 30 Scanned in 00mn 00s
---\\ Recherche particulière de fichiers génériques
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2011 - 07:19:30.) -- C:\Windows\Explorer.exe [2871808]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:39:52.) -- C:\Windows\System32\Wininit.exe [129024]
[MD5.AAFA952E774DDDB0956D3BDFAE5B5B99] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.10/08/2013 - 06:22:18.) -- C:\Windows\System32\wininet.dll [2241024]
[MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.21/11/2010 - 04:24:29.) -- C:\Windows\System32\Winlogon.exe [390656]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) (.21/11/2010 - 04:24:16.) -- C:\Windows\System32\sppcomapi.dll [232448]
[MD5.1C7857B62DE5994A75B054A9FD4C3825] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.28/12/2011 - 04:59:24.) -- C:\Windows\system32\Drivers\AFD.sys [498688]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.21/11/2010 - 04:23:47.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.21/11/2010 - 04:24:32.) -- C:\Windows\system32\Drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.21/11/2010 - 04:23:47.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 01:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224]
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:40:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.21/11/2010 - 04:23:51.) -- C:\Windows\system32\Drivers\netBT.sys [261632]
[MD5.B98F8C6E31CD07B2E6F71F7F648E38C0] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.12/04/2013 - 15:45:08.) -- C:\Windows\system32\Drivers\ntfs.sys [1656680]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 01:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.21/11/2010 - 04:24:33.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 01:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184]
[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.21/11/2010 - 04:24:32.) -- C:\Windows\system32\Drivers\tdx.sys [119296]
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.21/11/2010 - 04:23:47.) -- C:\Windows\system32\Drivers\volsnap.sys [295808]
~ Generic Processes: Scanned in 00mn 03s
---\\ Etat des fichiers cachés (Caché/Total)
~ Mes musiques (My Musics) : 1/17
~ Mes Favoris (My Favorites) : 1/29
~ Mes Documents (My Documents) : 1/4
~ Mon Bureau (My Desktop) : 2/5794
~ Menu demarrer (Programs) : 1/28
~ Hidden Files: Scanned in 00mn 12s
---\\ Processus lancés
[MD5.753DDA5E510CB3C56AAEF37F81840DBB] - (.Zhorn Software - Stickies 7.1e.) -- C:\Program Files (x86)\Stickies\stickies.exe [1134592] [PID.1856]
[MD5.D1D5DAB39DCB4BE0359943738D87409B] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe [532040] [PID.1984]
[MD5.E7148BB584830E51AFD414CE9AEAE74C] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [829392] [PID.1932]
[MD5.77C2B447CCFFABE9AD2636E0158C8BB4] - (.McAfee, Inc. - SiteAdvisor.) -- C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe [754024] [PID.4668]
[MD5.DF4ECCA12FEB1586A02F1964569AC15B] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [8049664] [PID.2984]
[MD5.ADDA5E1951B90D3D23C56D3CF0622ADC] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65640] [PID.1544]
[MD5.65085456FD9A74D7F1A999520C299ECB] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376] [PID.1664]
[MD5.E0D7732F2D2E24B2DB3F67B6750295B8] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512] [PID.1720]
[MD5.51138BEEA3E2C21EC44D0932C71762A8] - (...) -- ysWOW64\rundll32.exe [0] [PID.2124]
~ Processes Running: Scanned in 00mn 03s
---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\Cat\AppData\Local\Google\Chrome\User Data\Default\Preferences
G1 - GCS: Preference [User Data\Default] None
G0 - GCSP: Preference [User Data\Default][HomePage] http://search.babylon.com =>Toolbar.Babylon
G0 - GCSP: Preference [User Data\Default] https://www.kadaza.fr/
G2 - GCE: Preference [User Data\Default] [ahfgeienlihckogmohjhadlkjgocpleb] Store v.0.2 (Activé)
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Documents Google v.0.5 (Activé)
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Drive v.6.3 (Activé)
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] YouTube v.4.2.6 (Activé)
G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] Adblock Plus v.1.5.5, (Activé)
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Recherche Google v.0.0.0.20 (Activé)
G2 - GCE: Preference [User Data\Default] [eemcgdkfndhakfknompkggombfjjjeno] Bookmark Manager v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [ennkphjdgehloodpbhlhldgbnhmacadg] Settings v.0.2 (Activé)
G2 - GCE: Preference [User Data\Default] [fheoggkfdfchfphceeifdbepaooicaho] SiteAdvisor v.3.6.3.1271 (Activé)
G2 - GCE: Preference [User Data\Default] [mfehgcgbbipciphmccgaenjidiccnmng] Cloud Print v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [mgndgikekgjfcpckkfioiadnlibdjbkf] Chrome v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Chrome In-App Payments service v.0.0.4.11 (Activé)
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Gmail v.7 (Activé)
~ Google Browser: 16 Scanned in 00mn 26s
---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
C:\Users\Cat\AppData\Roaming\Mozilla\Firefox\Profiles\2urkcsu4.default\prefs.js
M0 - MFSP: prefs.js [Cat - 2urkcsu4.default] https://www.kadaza.fr/
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_168.dll
P2 - FPN: [HKLM] [@mcafee.com/MSC,version=10] - (...) -- C:\Program Files\McAfee\MSC\npMcSnFFPl64.dll
~ Firefox Browser: 3 Scanned in 00mn 00s
---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.kadaza.fr/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?gws_rd=ssl
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?gws_rd=ssl
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.microsoft.com/fr-fr/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)) -- C:\Windows\SysWOW64\ieframe.dll
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
~ IE Browser: 15 Scanned in 00mn 00s
---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s
---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s
---\\ Hosts file redirection (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 21
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: HP Print Enhancer [64Bits] - {0347C33E-8762-4905-BF09-768834316C61} . (.Hewlett-Packard Co. - HP Smart Web Printing add-on for Internet E.) -- C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: McAfee SiteAdvisor BHO [64Bits] - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} . (.McAfee, Inc. - SiteAdvisor.) -- C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Smart BHO Class [64Bits] - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} . (.Hewlett-Packard Co. - HP Smart Web Printing add-on for Internet E.) -- C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
~ BHO: 6 Scanned in 00mn 00s
---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: McAfee SiteAdvisor Toolbar [64Bits] - [HKLM]{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} . (.McAfee, Inc. - SiteAdvisor.) -- C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
~ Toolbar: Scanned in 00mn 00s
---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>Piriform Ltd
O4 - GS\Desktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - GS\Desktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
O4 - GS\Desktop [Public]: McAfee Total Protection.lnk . (.McAfee, Inc. - McAfee.) -- C:\Program Files (x86)\McAfee.com\Agent\mcagent.exe
O4 - GS\Desktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O4 - GS\Desktop [Public]: MyDefrag.lnk . (.J.C. Kessels - MyDefrag Script Interpreter.) -- C:\MyDefrag v4.3.1\MyDefrag.exe
O4 - GS\Desktop [Public]: OpenOffice.org 3.4.1.lnk . (.OpenOffice.org - OpenOffice.org 3.4.1.) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
O4 - GS\Program [Public]: Enregistrement OCR I.R.I.S..lnk . (.I.R.I.S. Image Recognition Integarted Syste - Registration Wizard.) -- C:\Program Files (x86)\HP\Digital Imaging\DocProc\regipe.exe
O4 - GS\Program [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O4 - GS\Program [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Anytime Upgrade.lnk . (.Microsoft Corporation - Interface utilisateur de Mise à niveau expr.) -- C:\Windows\system32\WindowsAnytimeUpgradeUI.exe
O4 - GS\Program [Public]: Windows DVD Maker.lnk . (...) -- C:\Program Files (x86)\DVD Maker\DVDMaker.exe (.not file.)
O4 - GS\Program [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) -- C:\Windows\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) -- C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) -- C:\Windows\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) -- C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) -- C:\Windows\system32\mblctr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) -- C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) -- C:\Windows\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) -- C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) -- C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) -- C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) -- C:\Windows\System32\mobsync.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Mise en route.) -- C:\Windows\system32\OobeFldr.dll =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) -- C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) -- C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) -- C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) -- C:\Windows\system32\perfmon.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) -- C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) -- C:\Windows\system32\rstrui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) -- C:\Windows\system32\taskschd.msc
O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) -- C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) -- C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation
O4 - GS\QuickLaunch [Cat]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - GS\QuickLaunch [Cat]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - GS\TaskBar [Cat]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O4 - GS\TaskBar [Cat]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Cat]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O4 - GS\Program [Cat]: Create Amazing Presentations.lnk - Clé orpheline
O4 - GS\Program [Cat]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\Accessories [Cat]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O4 - GS\Accessories [Cat]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Cat]: Run.lnk - Clé orpheline
O4 - GS\Accessories [Cat]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Cat]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\SystemTools [Cat]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) -- C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation
O4 - GS\Desktop [Cat]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) -- C:\Windows\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Desktop [Cat]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) -- C:\Windows\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\Desktop [Cat]: Courrier Cat 2013.lnk . (...) -- C:\Users\Cat\Desktop\Mes documents\Courrier Cat\Courrier Cat 2013
O4 - GS\Desktop [Cat]: CV 2013.lnk . (...) -- C:\Users\Cat\Desktop\Mes documents\CV\CV 2013
O4 - GS\Desktop [Cat]: Documents Cat 2013 - Raccourci.lnk . (...) -- C:\Users\Cat\Desktop\Mes documents\Documents Cat 2013
O4 - GS\Desktop [Cat]: Images.lnk . (...) -- C:\Users\Cat\Desktop\Mes documents\Images
O4 - GS\Desktop [Cat]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation
O4 - GS\Desktop [Cat]: Paint.lnk . (.Microsoft Corporation - Paint.) -- C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Desktop [Cat]: PHOTOS 2012 et 2013 - Raccourci.lnk . (...) -- C:\Users\Cat\Desktop\Mes documents\PHOTOS 2012 et 2013
O4 - GS\Desktop [Cat]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) -- C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Desktop [Cat]: Update Checker.lnk . (.FileHippo.com - FileHippo.com Update Checker.) -- C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe
O4 - GS\Desktop [Cat]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files (x86)\ZHPDiag\ZHPhep.exe =>.Nicolas Coolman
O4 - GS\Desktop [Cat]: ZHPFix.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files (x86)\ZHPDiag\ZHPFix\ZHPhep.exe =>.Nicolas Coolman
~ Global Startup: 63 Scanned in 00mn 06s
---\\ Applications lancées au démarrage du sytème (O4)
O4 - GS\Startup [Cat]: Stickies.lnk . (.Zhorn Software - Stickies 7.1e.) -- C:\Program Files (x86)\Stickies\stickies.exe
O4 - HKLM\..\Wow6432Node\Run: [mcpltui_exe] . (.McAfee, Inc. - McAfee Security Center.) -- C:\Program Files\McAfee.com\Agent\mcagent.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
~ Application: Scanned in 00mn 00s
---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ IE Control Panel: 1 Scanned in 00mn 00s
---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll =>.Microsoft Corporation
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
~ Winsock: 6 Scanned in 00mn 00s
---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{3D93BEC4-2759-478E-9777-288BC50AFCF2}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{6F0E45FB-B41B-461A-A528-26C2DCCF9632}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{D80CFD4D-E18F-43F8-9417-B6A9D585687F}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{3D93BEC4-2759-478E-9777-288BC50AFCF2}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{6F0E45FB-B41B-461A-A528-26C2DCCF9632}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{D80CFD4D-E18F-43F8-9417-B6A9D585687F}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{3D93BEC4-2759-478E-9777-288BC50AFCF2}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{6F0E45FB-B41B-461A-A528-26C2DCCF9632}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{D80CFD4D-E18F-43F8-9417-B6A9D585687F}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
~ Domain: Scanned in 00mn 00s
---\\ Protocole additionnel (O18)
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s
---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ SSODL: 1 Scanned in 00mn 00s
---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc
O23 - Service: McAfee Home Network (HomeNetSvc) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: McAfee SiteAdvisor Service (McAfee SiteAdvisor Service) . (.McAfee, Inc. - SiteAdvisor.) - C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe
O23 - Service: McAfee AP Service (McAPExe) . (.McAfee, Inc. - McAfee Access Protection.) - C:\Program Files\McAfee\MSC\McAPexe.exe
O23 - Service: McAfee Personal Firewall (McMPFSvc) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Platform Services (mcpltsvc) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Anti-Malware Core (mfecore) . (.McAfee, Inc. - McAfee On-Access Scanner service.) - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) . (.McAfee, Inc. - McAfee Core Firewall Service.) - C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Servi (mfevtp) . (.McAfee, Inc. - McAfee Process Validation Service.) - C:\Windows\system32\mfevtps.exe
O23 - Service: McAfee Anti-Spam Service (MSK80Service) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
~ Services: 15 Scanned in 00mn 25s
---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Desktop Component: 4 Scanned in 00mn 00s
---\\ Enumère les données de BootExecute (BEX) (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ BEX: 1 Scanned in 00mn 00s
---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1058]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1062]
[MD5.22621F4BC16C5C47E76E40F251F0CC79] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [3905304] =>Piriform Ltd
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648]
[MD5.D41D8CD98F00B204E9800998ECF8427E] [APT] [MyDefrag v4.3.1 Daily] (...) -- C:\MyDefrag v4.3.1\Scripts\AutomaticDaily.MyD" [5663]
[MD5.D41D8CD98F00B204E9800998ECF8427E] [APT] [MyDefrag v4.3.1 Monthly] (...) -- C:\MyDefrag v4.3.1\Scripts\AutomaticMonthly.MyD" [5626]
[MD5.C155A13687144076286989EF078112C2] [APT] [{28861AAB-8331-46F3-83F1-E3D4DB7CF634}] (.Nicolas Coolman.) -- C:\Program Files (x86)\ZHPDiag\ZHPhep.exe [1917440]
[MD5.00000000000000000000000000000000] [APT] [{44968E6C-BD00-4B2E-9AC6-01BFB442073F}] (...) -- E:\setup.exe (.not file.) [0]
[MD5.C155A13687144076286989EF078112C2] [APT] [{539CA183-F0F7-49A1-8344-5436CE6A84E3}] (.Nicolas Coolman.) -- C:\Program Files (x86)\ZHPDiag\ZHPhep.exe [1917440]
[MD5.C155A13687144076286989EF078112C2] [APT] [{56E75AE7-09CF-4FC7-9AED-10FCA0F87581}] (.Nicolas Coolman.) -- C:\Program Files (x86)\ZHPDiag\ZHPFix\ZHPhep.exe [1917440]
~ Scheduled Task: 12 Scanned in 00mn 06s
---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
O40 - ASIC: Internet Explorer [64Bits] - {2D46B6DC-2207-486B-B523-A557E6D54B47} . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe =>.Microsoft Corporation
O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll
~ Active Setup: 10 Scanned in 00mn 00s
---\\ Pilotes lancés au démarrage du système (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\System32\DRIVERS\blbdrive.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\System32\DRIVERS\mssmbios.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys
O41 - Driver: (Serial) . (.Microsoft Corporation - Pilote de périphérique série.) - C:\Windows\System32\DRIVERS\serial.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys
~ Drivers: 60 Scanned in 00mn 01s
---\\ Logiciels installés (O42)
O42 - Logiciel: 64 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM][64Bits] -- {55D55008-E5F6-47D6-B16F-B2A40D4D145F}
O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin
O42 - Logiciel: Adobe Reader XI (11.0.03) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001}
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>Piriform Ltd
O42 - Logiciel: Centre Souris et Claviers Microsoft - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Mouse and Keyboard Center
O42 - Logiciel: FileHippo.com Update Checker - (...) [HKLM][64Bits] -- FileHippo.com
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
O42 - Logiciel: HP Customer Participation Program 13.0 - (.HP.) [HKLM][64Bits] -- HPExtendedCapabilities
O42 - Logiciel: HP Imaging Device Functions 13.0 - (.HP.) [HKLM][64Bits] -- HP Imaging Device Functions
O42 - Logiciel: HP Photosmart Officejet and Deskjet All-In-One Driver Software 13.0 Rel. B - (.HP.) [HKLM][64Bits] -- {B61ED343-0B14-4241-999C-490CB1A20DA4}
O42 - Logiciel: HP Smart Web Printing 4.51 - (.HP.) [HKLM][64Bits] -- HP Smart Web Printing
O42 - Logiciel: HP Solution Center 13.0 - (.HP.) [HKLM][64Bits] -- HP Solution Center & Imaging Support Tools
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {7059BDA7-E1DB-442C-B7A1-6144596720A4}
O42 - Logiciel: Java 7 Update 25 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217025FF}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: Malwarebytes Anti-Malware version 1.75.0.1300 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes' Anti-Malware_is1
O42 - Logiciel: McAfee Total Protection - (.McAfee, Inc..) [HKLM][64Bits] -- MSC
O42 - Logiciel: Mozilla Firefox 23.0.1 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 23.0.1 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService
O42 - Logiciel: MyDefrag v4.3.1 - (.J.C. Kessels.) [HKLM][64Bits] -- MyDefrag v4.3.1_is1
O42 - Logiciel: Nvidia Omega Drivers v1.169.25 Setup Files and Tools - (.Omegadrivers.net.) [HKLM][64Bits] -- Nvidia Omega Drivers for Windows Vistav1.169.25
O42 - Logiciel: OCR Software by I.R.I.S. 13.0 - (.HP.) [HKLM][64Bits] -- HPOCR
O42 - Logiciel: OpenOffice.org 3.4.1 - (.Apache Software Foundation.) [HKLM][64Bits] -- {7DA1C06F-C913-46C7-8A0F-DA2CBA17EA1D}
O42 - Logiciel: Realtek AC'97 Audio - (...) [HKLM][64Bits] -- {FB08F381-6533-4108-B7DD-039E11FBC27E}
O42 - Logiciel: Revo Uninstaller 1.95 - (.VS Revo Group.) [HKLM][64Bits] -- Revo Uninstaller
O42 - Logiciel: SFR - Kit de connexion - (.SFR.) [HKLM][64Bits] -- SFR_Kit
O42 - Logiciel: Shared C Run-time for x64 - (.McAfee.) [HKLM][64Bits] -- {EF79C448-6946-4D71-8134-03407888C054}
O42 - Logiciel: Shop for HP Supplies - (.HP.) [HKLM][64Bits] -- Shop for HP Supplies
O42 - Logiciel: Stickies 7.1e - (.Zhorn Software.) [HKLM][64Bits] -- ZhornStickies
O42 - Logiciel: VIA Rhine Family Fast Ethernet Adapter - (...) [HKLM][64Bits] -- VN_VUIns_Rhine_VIA
O42 - Logiciel: Visual Studio 2010 x64 Redistributables - (.AVG Technologies.) [HKLM][64Bits] -- {21B133D6-5979-47F0-BE1C-F6A6B304693F}
~ Logic: 79 Scanned in 00mn 00s
---\\ HKCU & HKLM Software Keys
[HKCU\Software\Adobe]
[HKCU\Software\AppDataLow\Software\JavaSoft]
[HKCU\Software\AppDataLow]
[HKCU\Software\Citrix]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\FileHippo.com]
[HKCU\Software\Google]
[HKCU\Software\HP]
[HKCU\Software\Hewlett-Packard]
[HKCU\Software\JavaSoft]
[HKCU\Software\Licenses]
[HKCU\Software\MCAFEE]
[HKCU\Software\Macromedia]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\McAfee Online Backup]
[HKCU\Software\McAfeeInstaller]
[HKCU\Software\Modern UI Test]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Mozilla]
[HKCU\Software\MyDefrag]
[HKCU\Software\Netscape]
[HKCU\Software\OVH]
[HKCU\Software\OpenOffice.org]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\Software]
[HKCU\Software\Usbfix]
[HKCU\Software\VSRevoGroup]
[HKCU\Software\Wow6432Node]
[HKCU\Software\ZebHelpProcess Helper]
[HKLM\Software\AMD]
[HKLM\Software\ATI Technologies]
[HKLM\Software\BrowserChoice]
[HKLM\Software\CBSTEST]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Hewlett-Packard]
[HKLM\Software\Intel]
[HKLM\Software\Macromedia]
[HKLM\Software\McAfee.com]
[HKLM\Software\McAfeeInstaller]
[HKLM\Software\McAfee]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\NVIDIA Corporation]
[HKLM\Software\ODBC]
[HKLM\Software\Piriform]
[HKLM\Software\Policies]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\SRS Labs]
[HKLM\Software\Sonic]
[HKLM\Software\VN_VUIns]
[HKLM\Software\Volatile]
[HKLM\Software\Wow6432Node\AVAST Software]
[HKLM\Software\Wow6432Node\Adobe]
[HKLM\Software\Wow6432Node\AdwCleaner]
[HKLM\Software\Wow6432Node\Classes]
[HKLM\Software\Wow6432Node\Clients]
[HKLM\Software\Wow6432Node\Google]
[HKLM\Software\Wow6432Node\Hewlett-Packard]
[HKLM\Software\Wow6432Node\Intel]
[HKLM\Software\Wow6432Node\JavaSoft]
[HKLM\Software\Wow6432Node\JreMetrics]
[HKLM\Software\Wow6432Node\Loader]
[HKLM\Software\Wow6432Node\Macromedia]
[HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware (Trial)]
[HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware]
[HKLM\Software\Wow6432Node\McAfee.com]
[HKLM\Software\Wow6432Node\McAfeeRiskScan]
[HKLM\Software\Wow6432Node\McAfee]
[HKLM\Software\Wow6432Node\MozillaPlugins]
[HKLM\Software\Wow6432Node\Neuf]
[HKLM\Software\Wow6432Node\ODBC]
[HKLM\Software\Wow6432Node\OpenOffice.org]
[HKLM\Software\Wow6432Node\Policies]
[HKLM\Software\Wow6432Node\Realtek]
[HKLM\Software\Wow6432Node\RegisteredApplications]
[HKLM\Software\Wow6432Node\SiteAdvisor]
[HKLM\Software\Wow6432Node\Softgogo]
[HKLM\Software\Wow6432Node\Volatile]
[HKLM\Software\Wow6432Node\dotNetInstaller]
[HKLM\Software\Wow6432Node\hdcode]
[HKLM\Software\Wow6432Node\mozilla.org]
[HKLM\Software\Wow6432Node\mozilla]
[HKLM\Software\Wow6432Node]
~ Key Software: 136 Scanned in 00mn 00s
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 22/07/2013 - 10:20:30 - [120,489] ----D C:\Program Files (x86)\Adobe
O43 - CFD: 16/07/2013 - 15:42:39 - [0] ----D C:\Program Files (x86)\Citrix
O43 - CFD: 22/07/2013 - 10:20:30 - [83,012] ----D C:\Program Files (x86)\Common Files
O43 - CFD: 29/09/2013 - 10:58:54 - [0,421] ----D C:\Program Files (x86)\FileHippo.com
O43 - CFD: 18/07/2013 - 11:34:15 - [386,681] ----D C:\Program Files (x86)\Google
O43 - CFD: 26/06/2013 - 20:11:15 - [4,594] ----D C:\Program Files (x86)\GUM439E.tmp
O43 - CFD: 15/07/2013 - 18:51:14 - [308,076] ----D C:\Program Files (x86)\HP
O43 - CFD: 12/09/2013 - 20:02:58 - [4,885] ----D C:\Program Files (x86)\Internet Explorer
O43 - CFD: 18/07/2013 - 09:58:58 - [122,487] ----D C:\Program Files (x86)\Java
O43 - CFD: 23/09/2013 - 12:19:21 - [13,265] ----D C:\Program Files (x86)\Malwarebytes' Anti-Malware
O43 - CFD: 04/10/2013 - 19:15:53 - [16,460] ----D C:\Program Files (x86)\McAfee
O43 - CFD: 19/07/2013 - 14:24:52 - [0,515] ----D C:\Program Files (x86)\McAfee.com
O43 - CFD: 27/06/2013 - 01:56:31 - [0,023] ----D C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 24/08/2013 - 08:48:26 - [47,920] ----D C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 26/08/2013 - 08:21:47 - [0,215] ----D C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 14/07/2009 - 07:32:38 - [0,025] ----D C:\Program Files (x86)\MSBuild
O43 - CFD: 16/07/2013 - 20:40:53 - [0] ----D C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 27/06/2013 - 02:50:38 - [121,511] ----D C:\Program Files (x86)\Nvidia Omega Drivers
O43 - CFD: 16/07/2013 - 14:02:18 - [288,773] ----D C:\Program Files (x86)\OpenOffice.org 3
O43 - CFD: 14/07/2009 - 07:32:38 - [37,357] ----D C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 20/09/2013 - 10:11:06 - [17,874] ----D C:\Program Files (x86)\SFR
O43 - CFD: 07/07/2013 - 14:25:32 - [1,591] ----D C:\Program Files (x86)\Stickies
O43 - CFD: 14/07/2009 - 06:57:06 - [0] --H-D C:\Program Files (x86)\Uninstall Information
O43 - CFD: 15/07/2013 - 19:20:50 - [6,523] ----D C:\Program Files (x86)\VS Revo Group
O43 - CFD: 11/07/2013 - 08:44:51 - [0,500] ----D C:\Program Files (x86)\Windows Defender
O43 - CFD: 12/04/2011 - 11:16:36 - [5,895] ----D C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 12/04/2011 - 11:16:36 - [4,791] ----D C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - 07:32:38 - [11,632] ----D C:\Program Files (x86)\Windows NT
O43 - CFD: 12/04/2011 - 11:16:36 - [4,213] ----D C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 21/11/2010 - 05:31:38 - [0,181] ----D C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 12/04/2011 - 11:16:36 - [5,717] ----D C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 05/10/2013 - 13:02:56 - [16,960] ----D C:\Program Files (x86)\ZHPDiag =>.Nicolas Coolman
O43 - CFD: 22/07/2013 - 10:21:22 - [6,289] ----D C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 15/07/2013 - 18:45:09 - [0,507] ----D C:\Program Files (x86)\Common Files\Hewlett-Packard
O43 - CFD: 15/07/2013 - 18:44:12 - [3,052] ----D C:\Program Files (x86)\Common Files\HP
O43 - CFD: 27/06/2013 - 03:53:32 - [2,859] ----D C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 18/07/2013 - 10:03:08 - [1,189] ----D C:\Program Files (x86)\Common Files\Java
O43 - CFD: 19/07/2013 - 14:24:55 - [3,204] ----D C:\Program Files (x86)\Common Files\McAfee
O43 - CFD: 16/07/2013 - 14:00:26 - [16,942] ----D C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 14/07/2009 - 05:20:08 - [0,003] ----D C:\Program Files (x86)\Common Files\Services
O43 - CFD: 14/07/2009 - 05:20:08 - [39,200] ----D C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 27/06/2013 - 00:41:31 - [9,767] ----D C:\Program Files (x86)\Common Files\System
O43 - CFD: 22/07/2013 - 12:33:05 - [457,023] ----D C:\ProgramData\Adobe
O43 - CFD: 14/07/2009 - 07:08:56 - [0] -SH-D C:\ProgramData\Application Data
O43 - CFD: 26/06/2013 - 19:41:55 - [0] -SH-D C:\ProgramData\Bureau
O43 - CFD: 16/07/2013 - 14:14:18 - [0] --H-D C:\ProgramData\Common Files
O43 - CFD: 14/07/2009 - 07:08:56 - [0] -SH-D C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - 07:08:56 - [0] -SH-D C:\ProgramData\Documents
O43 - CFD: 26/06/2013 - 19:41:55 - [0] -SH-D C:\ProgramData\Favoris
O43 - CFD: 14/07/2009 - 07:08:56 - [0] -SH-D C:\ProgramData\Favorites
O43 - CFD: 16/07/2013 - 16:08:51 - [27,916] ----D C:\ProgramData\HP
O43 - CFD: 15/07/2013 - 18:49:09 - [0,009] ----D C:\ProgramData\HP Product Assistant
O43 - CFD: 23/09/2013 - 12:18:44 - [6,284] ----D C:\ProgramData\Malwarebytes
O43 - CFD: 02/09/2013 - 21:20:52 - [108,997] ----D C:\ProgramData\McAfee
O43 - CFD: 26/06/2013 - 19:41:55 - [0] -SH-D C:\ProgramData\Menu Démarrer
O43 - CFD: 16/07/2013 - 16:56:28 - [91,820] ----D C:\ProgramData\MFAData
O43 - CFD: 07/07/2013 - 14:25:49 - [288,469] -S--D C:\ProgramData\Microsoft
O43 - CFD: 26/06/2013 - 19:41:55 - [0] -SH-D C:\ProgramData\Modèles
O43 - CFD: 19/07/2013 - 18:04:17 - [0,007] ----D C:\ProgramData\Mozilla
O43 - CFD: 28/09/2013 - 13:48:21 - [0] ----D C:\ProgramData\Oracle
O43 - CFD: 22/07/2013 - 09:36:08 - [0,848] ----D C:\ProgramData\Package Cache
O43 - CFD: 14/07/2009 - 07:08:56 - [0] -SH-D C:\ProgramData\Start Menu
O43 - CFD: 18/07/2013 - 10:03:12 - [0] ----D C:\ProgramData\Sun
O43 - CFD: 14/07/2009 - 07:08:56 - [0] -SH-D C:\ProgramData\Templates
O43 - CFD: 22/07/2013 - 10:33:44 - [2,576] ----D C:\Users\Cat\AppData\Roaming\Adobe
O43 - CFD: 16/07/2013 - 16:08:56 - [0,011] ----D C:\Users\Cat\AppData\Roaming\HP
O43 - CFD: 20/07/2013 - 10:58:59 - [0,316] ----D C:\Users\Cat\AppData\Roaming\hubiC
O43 - CFD: 26/06/2013 - 19:42:12 - [0] ----D C:\Users\Cat\AppData\Roaming\Identities
O43 - CFD: 11/07/2013 - 08:59:18 - [2,225] ----D C:\Users\Cat\AppData\Roaming\LibreOffice
O43 - CFD: 02/07/2013 - 14:04:41 - [0] ----D C:\Users\Cat\AppData\Roaming\Macromedia
O43 - CFD: 23/09/2013 - 12:20:42 - [8,136] ----D C:\Users\Cat\AppData\Roaming\Malwarebytes
O43 - CFD: 12/04/2011 - 11:27:52 - [0] ----D C:\Users\Cat\AppData\Roaming\Media Center Programs
O43 - CFD: 31/07/2013 - 16:17:23 - [1,517] -S--D C:\Users\Cat\AppData\Roaming\Microsoft
O43 - CFD: 19/07/2013 - 18:05:11 - [33,810] ----D C:\Users\Cat\AppData\Roaming\Mozilla
O43 - CFD: 19/07/2013 - 11:47:43 - [12,401] ----D C:\Users\Cat\AppData\Roaming\OpenOffice.org
O43 - CFD: 22/09/2013 - 17:23:23 - [0,001] ----D C:\Users\Cat\AppData\Roaming\RocketPDF
O43 - CFD: 05/10/2013 - 12:15:11 - [0,167] ----D C:\Users\Cat\AppData\Roaming\stickies
O43 - CFD: 16/07/2013 - 14:32:11 - [0] ----D C:\Users\Cat\AppData\Roaming\TuneUp Software
O43 - CFD: 05/10/2013 - 13:05:00 - [0,502] ----D C:\Users\Cat\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 29/09/2013 - 13:47:03 - [0,346] ----D C:\Users\Cat\AppData\Local\Adobe
O43 - CFD: 26/06/2013 - 19:42:01 - [0] -SH-D C:\Users\Cat\AppData\Local\Application Data
O43 - CFD: 06/07/2013 - 18:14:42 - [3,208] ----D C:\Users\Cat\AppData\Local\Apps
O43 - CFD: 16/07/2013 - 16:55:25 - [0,001] ----D C:\Users\Cat\AppData\Local\Avg2013
O43 - CFD: 16/07/2013 - 15:41:27 - [1,997] ----D C:\Users\Cat\AppData\Local\Citrix
O43 - CFD: 18/07/2013 - 11:31:48 - [0] ----D C:\Users\Cat\AppData\Local\Deployment
O43 - CFD: 25/08/2013 - 10:26:10 - [0] ----D C:\Users\Cat\AppData\Local\ElevatedDiagnostics
O43 - CFD: 15/07/2013 - 22:51:19 - [0,029] ----D C:\Users\Cat\AppData\Local\emaze
O43 - CFD: 06/07/2013 - 18:17:39 - [83,113] ----D C:\Users\Cat\AppData\Local\Google
O43 - CFD: 26/06/2013 - 19:42:01 - [0] -SH-D C:\Users\Cat\AppData\Local\Historique
O43 - CFD: 15/07/2013 - 19:39:31 - [0] ----D C:\Users\Cat\AppData\Local\HP
O43 - CFD: 19/07/2013 - 18:27:32 - [0] ----D C:\Users\Cat\AppData\Local\Macromedia
O43 - CFD: 19/07/2013 - 14:26:46 - [0] ----D C:\Users\Cat\AppData\Local\McAfee File Lock
O43 - CFD: 16/07/2013 - 14:14:18 - [3,675] ----D C:\Users\Cat\AppData\Local\MFAData
O43 - CFD: 01/10/2013 - 17:19:16 - [72,060] ----D C:\Users\Cat\AppData\Local\Microsoft
O43 - CFD: 19/07/2013 - 18:04:56 - [2,146] ----D C:\Users\Cat\AppData\Local\Mozilla
O43 - CFD: 22/09/2013 - 17:11:48 - [0] ----D C:\Users\Cat\AppData\Local\Programs
O43 - CFD: 05/10/2013 - 13:05:10 - [0,001] ----D C:\Users\Cat\AppData\Local\Temp
O43 - CFD: 26/06/2013 - 19:42:01 - [0] -SH-D C:\Users\Cat\AppData\Local\Temporary Internet Files
O43 - CFD: 26/06/2013 - 19:42:08 - [0] ----D C:\Users\Cat\AppData\Local\VirtualStore
O43 - CFD: 14/07/2009 - 06:54:32 - [0,014] R---D C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 13/09/2013 - 10:20:54 - [0] R---D C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 14/07/2009 - 06:49:38 - [0,001] R---D C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 15/07/2013 - 19:21:39 - [0,005] ----D C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
O43 - CFD: 13/09/2013 - 10:20:54 - [0,001] R---D C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
~ Program Folder: 104 Scanned in 00mn 07s
---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.C9DC7296D2DF56C6AE0BD3EEB9CB2DC5] - 05/10/2013 - 11:14:37 ---A- . (...) -- C:\Windows\PFRO.log [304]
O44 - LFC:[MD5.18F1036BD15DB3EEC1C0ACE26E6FF96C] - 05/10/2013 - 11:14:44 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.D74E3C688AA4F552EB9F55CB8EA67170] - 05/10/2013 - 11:14:45 ---A- . (...) -- C:\Windows\setupact.log [56]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 05/10/2013 - 11:14:45 ---A- . (...) -- C:\Windows\setuperr.log [0]
O44 - LFC:[MD5.16534003640F71FF1C976F251EEF6B5E] - 05/10/2013 - 11:33:10 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1697705]
O44 - LFC:[MD5.0BB97D43299910CBFBA59C461B99B910] - 23/09/2013 - 11:18:19 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [25928]
O44 - LFC:[MD5.F4BE81C919FC0A012F5357E3911D4B67] - 27/09/2013 - 18:00:46 ---A- . (.McAfee, Inc. - McAfee File Lock Driver.) -- C:\Windows\System32\Drivers\McPvDrv.sys [74560]
O44 - LFC:[MD5.B7C855A495B796518A27641BCDB116FF] - 28/09/2013 - 13:02:53 ---A- . (...) -- C:\DelFix.txt [2300]
O44 - LFC:[MD5.FB76AB9B8C9869882EA8EFF133FB0F37] - 28/09/2013 - 16:39:38 ---A- . (.J.C. Kessels - MyDefrag Script Interpreter.) -- C:\Windows\SysNative\MyDefragScreenSaver_v4.3.1.scr [485376]
O44 - LFC:[MD5.FB76AB9B8C9869882EA8EFF133FB0F37] - 28/09/2013 - 16:39:38 ---A- . (.J.C. Kessels - MyDefrag Script Interpreter.) -- C:\Windows\System32\MyDefragScreenSaver_v4.3.1.scr [485376]
O44 - LFC:[MD5.849946AD8A164ED1460B2C5F3D957500] - 28/09/2013 - 16:39:39 ---A- . (.J.C. Kessels - MyDefrag Script Interpreter.) -- C:\Windows\SysNative\MyDefragScreenSaver_v4.3.1.exe [1147392]
O44 - LFC:[MD5.849946AD8A164ED1460B2C5F3D957500] - 28/09/2013 - 16:39:39 ---A- . (.J.C. Kessels - MyDefrag Script Interpreter.) -- C:\Windows\System32\MyDefragScreenSaver_v4.3.1.exe [1147392]
~ Files: 12 Scanned in 00mn 04s
---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.17BA3B6A559557D86B5E3C8CEAEB8DF0] - 01/10/2013 - 15:31:25 ---A- - C:\Windows\Prefetch\ACRORD32.EXE-D066635E.pf
O45 - LFCP:[MD5.84D698BB164C3D30690E813768B338F6] - 02/10/2013 - 11:19:09 ---A- - C:\Windows\Prefetch\SOFFICE.EXE-8BFABAE3.pf
O45 - LFCP:[MD5.D2018C64DE7F74A72421CB21C90DCE82] - 02/10/2013 - 11:19:10 ---A- - C:\Windows\Prefetch\SOFFICE.BIN-7F88D3BE.pf
O45 - LFCP:[MD5.B77FFF37C3FF2847E8830B0A4D310608] - 02/10/2013 - 11:19:45 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-76936ED5.pf
O45 - LFCP:[MD5.C152047EAB8258A8A18367E49B5F1561] - 02/10/2013 - 11:50:46 ---A- - C:\Windows\Prefetch\SPLWOW64.EXE-297C4568.pf
O45 - LFCP:[MD5.5544F81EF40B13A91470926486EADB70] - 02/10/2013 - 11:52:30 ---A- - C:\Windows\Prefetch\HPQUSGL.EXE-F8190D14.pf
O45 - LFCP:[MD5.85372D78D076572A3D6DB2D7BB1FC592] - 02/10/2013 - 19:26:52 ---A- - C:\Windows\Prefetch\DEFRAG.EXE-588F90AD.pf
O45 - LFCP:[MD5.858FA598FD7CBFF5A32EF08C5FEF8AFD] - 03/10/2013 - 08:53:50 ---A- - C:\Windows\Prefetch\DINOTIFY.EXE-35A869D6.pf
O45 - LFCP:[MD5.A0FBA50D593C2A6C843F9AF31C18A944] - 03/10/2013 - 08:53:50 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-440873D1.pf
O45 - LFCP:[MD5.86271AD26F30FB953D8F6B3E53B75A4C] - 03/10/2013 - 08:53:50 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-007FEA55.pf
O45 - LFCP:[MD5.9B345CF5A6C5FE4C49621FDD538CDFAB] - 03/10/2013 - 08:53:50 ---A- - C:\Windows\Prefetch\WMPNETWK.EXE-D9F2A96F.pf
O45 - LFCP:[MD5.B514E6373E360CC6561C02D62E651614] - 03/10/2013 - 08:58:29 ---A- - C:\Windows\Prefetch\DRVINST.EXE-4CB4314A.pf
O45 - LFCP:[MD5.678B5F4EDAA221E460F8998A4571D010] - 03/10/2013 - 10:27:54 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-7AC6742A.pf
O45 - LFCP:[MD5.1F0C128176DDABBEF818E3F49BB8F24F] - 03/10/2013 - 10:34:13 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-B49E1152.pf
O45 - LFCP:[MD5.323D3955F6F822F0B3402DA4EE27996E] - 03/10/2013 - 18:33:13 ---A- - C:\Windows\Prefetch\MCVSMAP.EXE-AC93DF0C.pf
O45 - LFCP:[MD5.3F5770A2D7D64664A6FEFE86BEBD458C] - 04/10/2013 - 08:55:34 ---A- - C:\Windows\Prefetch\S4ES.C.EXE-91BF8A2F.pf
O45 - LFCP:[MD5.827B75CF90E785FA12F32BC9BE4130D7] - 04/10/2013 - 08:55:47 ---A- - C:\Windows\Prefetch\SAINST.EXE-3185B25C.pf
O45 - LFCP:[MD5.E42F24062F3AA2595F789A4EB7B7A0BE] - 04/10/2013 - 08:55:48 ---A- - C:\Windows\Prefetch\MCINST.EXE-342F6078.pf
O45 - LFCP:[MD5.92FE11024C3420E5289A144F4FFF4E9B] - 04/10/2013 - 08:56:46 ---A- - C:\Windows\Prefetch\WSQMCONS.EXE-118B52B7.pf
O45 - LFCP:[MD5.8667733E32353A5C977B992E5374D1BF] - 04/10/2013 - 08:58:43 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-347F87BF.pf
O45 - LFCP:[MD5.276966BEA0A2C0DCD4D4668996BF5B83] - 04/10/2013 - 08:59:01 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-E3CA559B.pf
O45 - LFCP:[MD5.933834F68747FD3B78B621ECD13DC673] - 04/10/2013 - 09:08:54 ---A- - C:\Windows\Prefetch\WUAUCLT.EXE-70318591.pf
O45 - LFCP:[MD5.0CA033E6F789A8B4A8186B3DADB2B481] - 04/10/2013 - 09:09:00 ---A- - C:\Windows\Prefetch\MPAS-D_BD_1.159.1090.0.EXE-CEA10EC2.pf
O45 - LFCP:[MD5.2B579403882544A897F4FAA278B1958C] - 04/10/2013 - 09:09:05 ---A- - C:\Windows\Prefetch\MPMINISIGSTUB.EXE-BEFC3B53.pf
O45 - LFCP:[MD5.55A8582DD97703DBDFA85290A562B6C9] - 04/10/2013 - 09:09:06 ---A- - C:\Windows\Prefetch\MPSIGSTUB.EXE-6CB27A06.pf
O45 - LFCP:[MD5.D8CA4A80C44383F0A368027CCB26574C] - 04/10/2013 - 09:42:11 ---A- - C:\Windows\Prefetch\MCINFO.EXE-63EEF562.pf
O45 - LFCP:[MD5.CA70A7A89C9EEB6195045CF1F816C9AC] - 04/10/2013 - 09:42:40 ---A- - C:\Windows\Prefetch\MCSVHOST.EXE-705569D1.pf
O45 - LFCP:[MD5.EEF35F45BB01CD428F18AD41C1779115] - 04/10/2013 - 09:42:44 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-3489AD9F.pf
O45 - LFCP:[MD5.25A655B8A7179030984D75B3ADFD4C51] - 04/10/2013 - 09:42:50 ---A- - C:\Windows\Prefetc
~ Rapport de ZHPDiag v2013.10.5.15 - Nicolas Coolman (05/10/2013)
~ Lancé par Cat (05/10/2013 13:03:16)
~ Adresse du Site Web https://nicolascoolman.webs.com/
~ Traduit par Nicolas Coolman
~ Etat de la version :
~ Liste blanche : Désactivée par l'utilisateur
~ Elévation des Privilèges : OK
~ User Account Control (UAC): Activate by user
---\\ Navigateurs Internet
MSIE: Internet Explorer v10.0.9200.16686
MFIE: Mozilla Firefox 23.0.1
GCIE: Google Chrome v29.0.1547.76 (Defaut)
---\\ Informations sur les produits Windows
~ Langage: Français
Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601)
Windows Server License Manager Script : OK
~ Windows(R) 7, OEM_COA_NSLP channel
Windows ID Activation : OK
~ Windows Partial Key : K6DBV
Windows License : OK
~ Windows Remaining Initializations Number : 3
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK
---\\ Logiciels de protection du système
Malwarebytes Anti-Malware version 1.75.0.1300
Windows Defender W7
---\\ Logiciels d'optimisation du système
CCleaner v4.06 =>Piriform Ltd
---\\ Logiciels de partage PeerToPeer
---\\ Surveillance de Logiciels
Adobe Flash Player 11 Plugin
Adobe Reader XI
Java 7 Update 25
---\\ Informations sur le système
~ Processor: Intel64 Family 6 Model 15 Stepping 6, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 1022 MB (4% free)
System Restore: Activé (Enable)
System drive C: has 76 GB (68%) free of 112 GB
---\\ Mode de connexion au système
~ Computer Name: CAT-PC
~ User Name: Cat
~ All Users Names: HomeGroupUser$, Cat, Administrateur,
~ Unselected Option: None
Logged in as Administrator
---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\Cat\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\Cat\AppData\Roaming\
~ %Desktop% : C:\Users\Cat\Desktop\
~ %Favorites% : C:\Users\Cat\Favorites\
~ %LocalAppData% : C:\Users\Cat\AppData\Local\
~ %StartMenu% : C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\
---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 76 Go of 112 Go)
E: CD-ROM drive (Not Inserted)
G: Floppy drive, Flash card reader, USB Key (Not Inserted)
H: Floppy drive, Flash card reader, USB Key (Not Inserted)
I: Floppy drive, Flash card reader, USB Key (Not Inserted)
J: Floppy drive, Flash card reader, USB Key (Not Inserted)
---\\ Etat du Centre de Sécurité Windows
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Security Center: 30 Scanned in 00mn 00s
---\\ Recherche particulière de fichiers génériques
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2011 - 07:19:30.) -- C:\Windows\Explorer.exe [2871808]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:39:52.) -- C:\Windows\System32\Wininit.exe [129024]
[MD5.AAFA952E774DDDB0956D3BDFAE5B5B99] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.10/08/2013 - 06:22:18.) -- C:\Windows\System32\wininet.dll [2241024]
[MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.21/11/2010 - 04:24:29.) -- C:\Windows\System32\Winlogon.exe [390656]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) (.21/11/2010 - 04:24:16.) -- C:\Windows\System32\sppcomapi.dll [232448]
[MD5.1C7857B62DE5994A75B054A9FD4C3825] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.28/12/2011 - 04:59:24.) -- C:\Windows\system32\Drivers\AFD.sys [498688]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.21/11/2010 - 04:23:47.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.21/11/2010 - 04:24:32.) -- C:\Windows\system32\Drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.21/11/2010 - 04:23:47.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 01:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224]
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:40:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.21/11/2010 - 04:23:51.) -- C:\Windows\system32\Drivers\netBT.sys [261632]
[MD5.B98F8C6E31CD07B2E6F71F7F648E38C0] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.12/04/2013 - 15:45:08.) -- C:\Windows\system32\Drivers\ntfs.sys [1656680]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 01:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.21/11/2010 - 04:24:33.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 01:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184]
[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.21/11/2010 - 04:24:32.) -- C:\Windows\system32\Drivers\tdx.sys [119296]
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.21/11/2010 - 04:23:47.) -- C:\Windows\system32\Drivers\volsnap.sys [295808]
~ Generic Processes: Scanned in 00mn 03s
---\\ Etat des fichiers cachés (Caché/Total)
~ Mes musiques (My Musics) : 1/17
~ Mes Favoris (My Favorites) : 1/29
~ Mes Documents (My Documents) : 1/4
~ Mon Bureau (My Desktop) : 2/5794
~ Menu demarrer (Programs) : 1/28
~ Hidden Files: Scanned in 00mn 12s
---\\ Processus lancés
[MD5.753DDA5E510CB3C56AAEF37F81840DBB] - (.Zhorn Software - Stickies 7.1e.) -- C:\Program Files (x86)\Stickies\stickies.exe [1134592] [PID.1856]
[MD5.D1D5DAB39DCB4BE0359943738D87409B] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe [532040] [PID.1984]
[MD5.E7148BB584830E51AFD414CE9AEAE74C] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [829392] [PID.1932]
[MD5.77C2B447CCFFABE9AD2636E0158C8BB4] - (.McAfee, Inc. - SiteAdvisor.) -- C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe [754024] [PID.4668]
[MD5.DF4ECCA12FEB1586A02F1964569AC15B] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [8049664] [PID.2984]
[MD5.ADDA5E1951B90D3D23C56D3CF0622ADC] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65640] [PID.1544]
[MD5.65085456FD9A74D7F1A999520C299ECB] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376] [PID.1664]
[MD5.E0D7732F2D2E24B2DB3F67B6750295B8] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512] [PID.1720]
[MD5.51138BEEA3E2C21EC44D0932C71762A8] - (...) -- ysWOW64\rundll32.exe [0] [PID.2124]
~ Processes Running: Scanned in 00mn 03s
---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\Cat\AppData\Local\Google\Chrome\User Data\Default\Preferences
G1 - GCS: Preference [User Data\Default] None
G0 - GCSP: Preference [User Data\Default][HomePage] http://search.babylon.com =>Toolbar.Babylon
G0 - GCSP: Preference [User Data\Default] https://www.kadaza.fr/
G2 - GCE: Preference [User Data\Default] [ahfgeienlihckogmohjhadlkjgocpleb] Store v.0.2 (Activé)
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Documents Google v.0.5 (Activé)
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Drive v.6.3 (Activé)
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] YouTube v.4.2.6 (Activé)
G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] Adblock Plus v.1.5.5, (Activé)
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Recherche Google v.0.0.0.20 (Activé)
G2 - GCE: Preference [User Data\Default] [eemcgdkfndhakfknompkggombfjjjeno] Bookmark Manager v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [ennkphjdgehloodpbhlhldgbnhmacadg] Settings v.0.2 (Activé)
G2 - GCE: Preference [User Data\Default] [fheoggkfdfchfphceeifdbepaooicaho] SiteAdvisor v.3.6.3.1271 (Activé)
G2 - GCE: Preference [User Data\Default] [mfehgcgbbipciphmccgaenjidiccnmng] Cloud Print v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [mgndgikekgjfcpckkfioiadnlibdjbkf] Chrome v.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Chrome In-App Payments service v.0.0.4.11 (Activé)
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Gmail v.7 (Activé)
~ Google Browser: 16 Scanned in 00mn 26s
---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
C:\Users\Cat\AppData\Roaming\Mozilla\Firefox\Profiles\2urkcsu4.default\prefs.js
M0 - MFSP: prefs.js [Cat - 2urkcsu4.default] https://www.kadaza.fr/
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_168.dll
P2 - FPN: [HKLM] [@mcafee.com/MSC,version=10] - (...) -- C:\Program Files\McAfee\MSC\npMcSnFFPl64.dll
~ Firefox Browser: 3 Scanned in 00mn 00s
---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.kadaza.fr/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?gws_rd=ssl
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?gws_rd=ssl
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.microsoft.com/fr-fr/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)) -- C:\Windows\SysWOW64\ieframe.dll
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
~ IE Browser: 15 Scanned in 00mn 00s
---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s
---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s
---\\ Hosts file redirection (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 21
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: HP Print Enhancer [64Bits] - {0347C33E-8762-4905-BF09-768834316C61} . (.Hewlett-Packard Co. - HP Smart Web Printing add-on for Internet E.) -- C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: McAfee SiteAdvisor BHO [64Bits] - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} . (.McAfee, Inc. - SiteAdvisor.) -- C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Smart BHO Class [64Bits] - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} . (.Hewlett-Packard Co. - HP Smart Web Printing add-on for Internet E.) -- C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
~ BHO: 6 Scanned in 00mn 00s
---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: McAfee SiteAdvisor Toolbar [64Bits] - [HKLM]{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} . (.McAfee, Inc. - SiteAdvisor.) -- C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
~ Toolbar: Scanned in 00mn 00s
---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>Piriform Ltd
O4 - GS\Desktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - GS\Desktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
O4 - GS\Desktop [Public]: McAfee Total Protection.lnk . (.McAfee, Inc. - McAfee.) -- C:\Program Files (x86)\McAfee.com\Agent\mcagent.exe
O4 - GS\Desktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O4 - GS\Desktop [Public]: MyDefrag.lnk . (.J.C. Kessels - MyDefrag Script Interpreter.) -- C:\MyDefrag v4.3.1\MyDefrag.exe
O4 - GS\Desktop [Public]: OpenOffice.org 3.4.1.lnk . (.OpenOffice.org - OpenOffice.org 3.4.1.) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
O4 - GS\Program [Public]: Enregistrement OCR I.R.I.S..lnk . (.I.R.I.S. Image Recognition Integarted Syste - Registration Wizard.) -- C:\Program Files (x86)\HP\Digital Imaging\DocProc\regipe.exe
O4 - GS\Program [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O4 - GS\Program [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Anytime Upgrade.lnk . (.Microsoft Corporation - Interface utilisateur de Mise à niveau expr.) -- C:\Windows\system32\WindowsAnytimeUpgradeUI.exe
O4 - GS\Program [Public]: Windows DVD Maker.lnk . (...) -- C:\Program Files (x86)\DVD Maker\DVDMaker.exe (.not file.)
O4 - GS\Program [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) -- C:\Windows\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O4 - GS\Program [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) -- C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) -- C:\Windows\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) -- C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) -- C:\Windows\system32\mblctr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) -- C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) -- C:\Windows\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) -- C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) -- C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) -- C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) -- C:\Windows\System32\mobsync.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Mise en route.) -- C:\Windows\system32\OobeFldr.dll =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) -- C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) -- C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) -- C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) -- C:\Windows\system32\perfmon.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) -- C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) -- C:\Windows\system32\rstrui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) -- C:\Windows\system32\taskschd.msc
O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) -- C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) -- C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation
O4 - GS\QuickLaunch [Cat]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - GS\QuickLaunch [Cat]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - GS\TaskBar [Cat]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O4 - GS\TaskBar [Cat]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Cat]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O4 - GS\Program [Cat]: Create Amazing Presentations.lnk - Clé orpheline
O4 - GS\Program [Cat]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\Accessories [Cat]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O4 - GS\Accessories [Cat]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Cat]: Run.lnk - Clé orpheline
O4 - GS\Accessories [Cat]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Cat]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\SystemTools [Cat]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) -- C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation
O4 - GS\Desktop [Cat]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) -- C:\Windows\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Desktop [Cat]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) -- C:\Windows\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\Desktop [Cat]: Courrier Cat 2013.lnk . (...) -- C:\Users\Cat\Desktop\Mes documents\Courrier Cat\Courrier Cat 2013
O4 - GS\Desktop [Cat]: CV 2013.lnk . (...) -- C:\Users\Cat\Desktop\Mes documents\CV\CV 2013
O4 - GS\Desktop [Cat]: Documents Cat 2013 - Raccourci.lnk . (...) -- C:\Users\Cat\Desktop\Mes documents\Documents Cat 2013
O4 - GS\Desktop [Cat]: Images.lnk . (...) -- C:\Users\Cat\Desktop\Mes documents\Images
O4 - GS\Desktop [Cat]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) -- C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation
O4 - GS\Desktop [Cat]: Paint.lnk . (.Microsoft Corporation - Paint.) -- C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Desktop [Cat]: PHOTOS 2012 et 2013 - Raccourci.lnk . (...) -- C:\Users\Cat\Desktop\Mes documents\PHOTOS 2012 et 2013
O4 - GS\Desktop [Cat]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) -- C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Desktop [Cat]: Update Checker.lnk . (.FileHippo.com - FileHippo.com Update Checker.) -- C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe
O4 - GS\Desktop [Cat]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files (x86)\ZHPDiag\ZHPhep.exe =>.Nicolas Coolman
O4 - GS\Desktop [Cat]: ZHPFix.lnk . (.Nicolas Coolman - ZHPDiag Setup.) -- C:\Program Files (x86)\ZHPDiag\ZHPFix\ZHPhep.exe =>.Nicolas Coolman
~ Global Startup: 63 Scanned in 00mn 06s
---\\ Applications lancées au démarrage du sytème (O4)
O4 - GS\Startup [Cat]: Stickies.lnk . (.Zhorn Software - Stickies 7.1e.) -- C:\Program Files (x86)\Stickies\stickies.exe
O4 - HKLM\..\Wow6432Node\Run: [mcpltui_exe] . (.McAfee, Inc. - McAfee Security Center.) -- C:\Program Files\McAfee.com\Agent\mcagent.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
~ Application: Scanned in 00mn 00s
---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ IE Control Panel: 1 Scanned in 00mn 00s
---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll =>.Microsoft Corporation
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
~ Winsock: 6 Scanned in 00mn 00s
---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{3D93BEC4-2759-478E-9777-288BC50AFCF2}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{6F0E45FB-B41B-461A-A528-26C2DCCF9632}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{D80CFD4D-E18F-43F8-9417-B6A9D585687F}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{3D93BEC4-2759-478E-9777-288BC50AFCF2}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{6F0E45FB-B41B-461A-A528-26C2DCCF9632}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{D80CFD4D-E18F-43F8-9417-B6A9D585687F}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{3D93BEC4-2759-478E-9777-288BC50AFCF2}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{6F0E45FB-B41B-461A-A528-26C2DCCF9632}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{D80CFD4D-E18F-43F8-9417-B6A9D585687F}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
~ Domain: Scanned in 00mn 00s
---\\ Protocole additionnel (O18)
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s
---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ SSODL: 1 Scanned in 00mn 00s
---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc
O23 - Service: McAfee Home Network (HomeNetSvc) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: McAfee SiteAdvisor Service (McAfee SiteAdvisor Service) . (.McAfee, Inc. - SiteAdvisor.) - C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe
O23 - Service: McAfee AP Service (McAPExe) . (.McAfee, Inc. - McAfee Access Protection.) - C:\Program Files\McAfee\MSC\McAPexe.exe
O23 - Service: McAfee Personal Firewall (McMPFSvc) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Platform Services (mcpltsvc) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Anti-Malware Core (mfecore) . (.McAfee, Inc. - McAfee On-Access Scanner service.) - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) . (.McAfee, Inc. - McAfee Core Firewall Service.) - C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Servi (mfevtp) . (.McAfee, Inc. - McAfee Process Validation Service.) - C:\Windows\system32\mfevtps.exe
O23 - Service: McAfee Anti-Spam Service (MSK80Service) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
~ Services: 15 Scanned in 00mn 25s
---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Desktop Component: 4 Scanned in 00mn 00s
---\\ Enumère les données de BootExecute (BEX) (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ BEX: 1 Scanned in 00mn 00s
---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1058]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1062]
[MD5.22621F4BC16C5C47E76E40F251F0CC79] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [3905304] =>Piriform Ltd
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648]
[MD5.D41D8CD98F00B204E9800998ECF8427E] [APT] [MyDefrag v4.3.1 Daily] (...) -- C:\MyDefrag v4.3.1\Scripts\AutomaticDaily.MyD" [5663]
[MD5.D41D8CD98F00B204E9800998ECF8427E] [APT] [MyDefrag v4.3.1 Monthly] (...) -- C:\MyDefrag v4.3.1\Scripts\AutomaticMonthly.MyD" [5626]
[MD5.C155A13687144076286989EF078112C2] [APT] [{28861AAB-8331-46F3-83F1-E3D4DB7CF634}] (.Nicolas Coolman.) -- C:\Program Files (x86)\ZHPDiag\ZHPhep.exe [1917440]
[MD5.00000000000000000000000000000000] [APT] [{44968E6C-BD00-4B2E-9AC6-01BFB442073F}] (...) -- E:\setup.exe (.not file.) [0]
[MD5.C155A13687144076286989EF078112C2] [APT] [{539CA183-F0F7-49A1-8344-5436CE6A84E3}] (.Nicolas Coolman.) -- C:\Program Files (x86)\ZHPDiag\ZHPhep.exe [1917440]
[MD5.C155A13687144076286989EF078112C2] [APT] [{56E75AE7-09CF-4FC7-9AED-10FCA0F87581}] (.Nicolas Coolman.) -- C:\Program Files (x86)\ZHPDiag\ZHPFix\ZHPhep.exe [1917440]
~ Scheduled Task: 12 Scanned in 00mn 06s
---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
O40 - ASIC: Internet Explorer [64Bits] - {2D46B6DC-2207-486B-B523-A557E6D54B47} . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe =>.Microsoft Corporation
O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation
O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll
~ Active Setup: 10 Scanned in 00mn 00s
---\\ Pilotes lancés au démarrage du système (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\System32\DRIVERS\blbdrive.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\System32\DRIVERS\mssmbios.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys
O41 - Driver: (Serial) . (.Microsoft Corporation - Pilote de périphérique série.) - C:\Windows\System32\DRIVERS\serial.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys
~ Drivers: 60 Scanned in 00mn 01s
---\\ Logiciels installés (O42)
O42 - Logiciel: 64 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM][64Bits] -- {55D55008-E5F6-47D6-B16F-B2A40D4D145F}
O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin
O42 - Logiciel: Adobe Reader XI (11.0.03) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001}
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>Piriform Ltd
O42 - Logiciel: Centre Souris et Claviers Microsoft - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Mouse and Keyboard Center
O42 - Logiciel: FileHippo.com Update Checker - (...) [HKLM][64Bits] -- FileHippo.com
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
O42 - Logiciel: HP Customer Participation Program 13.0 - (.HP.) [HKLM][64Bits] -- HPExtendedCapabilities
O42 - Logiciel: HP Imaging Device Functions 13.0 - (.HP.) [HKLM][64Bits] -- HP Imaging Device Functions
O42 - Logiciel: HP Photosmart Officejet and Deskjet All-In-One Driver Software 13.0 Rel. B - (.HP.) [HKLM][64Bits] -- {B61ED343-0B14-4241-999C-490CB1A20DA4}
O42 - Logiciel: HP Smart Web Printing 4.51 - (.HP.) [HKLM][64Bits] -- HP Smart Web Printing
O42 - Logiciel: HP Solution Center 13.0 - (.HP.) [HKLM][64Bits] -- HP Solution Center & Imaging Support Tools
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {7059BDA7-E1DB-442C-B7A1-6144596720A4}
O42 - Logiciel: Java 7 Update 25 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217025FF}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: Malwarebytes Anti-Malware version 1.75.0.1300 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes' Anti-Malware_is1
O42 - Logiciel: McAfee Total Protection - (.McAfee, Inc..) [HKLM][64Bits] -- MSC
O42 - Logiciel: Mozilla Firefox 23.0.1 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 23.0.1 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService
O42 - Logiciel: MyDefrag v4.3.1 - (.J.C. Kessels.) [HKLM][64Bits] -- MyDefrag v4.3.1_is1
O42 - Logiciel: Nvidia Omega Drivers v1.169.25 Setup Files and Tools - (.Omegadrivers.net.) [HKLM][64Bits] -- Nvidia Omega Drivers for Windows Vistav1.169.25
O42 - Logiciel: OCR Software by I.R.I.S. 13.0 - (.HP.) [HKLM][64Bits] -- HPOCR
O42 - Logiciel: OpenOffice.org 3.4.1 - (.Apache Software Foundation.) [HKLM][64Bits] -- {7DA1C06F-C913-46C7-8A0F-DA2CBA17EA1D}
O42 - Logiciel: Realtek AC'97 Audio - (...) [HKLM][64Bits] -- {FB08F381-6533-4108-B7DD-039E11FBC27E}
O42 - Logiciel: Revo Uninstaller 1.95 - (.VS Revo Group.) [HKLM][64Bits] -- Revo Uninstaller
O42 - Logiciel: SFR - Kit de connexion - (.SFR.) [HKLM][64Bits] -- SFR_Kit
O42 - Logiciel: Shared C Run-time for x64 - (.McAfee.) [HKLM][64Bits] -- {EF79C448-6946-4D71-8134-03407888C054}
O42 - Logiciel: Shop for HP Supplies - (.HP.) [HKLM][64Bits] -- Shop for HP Supplies
O42 - Logiciel: Stickies 7.1e - (.Zhorn Software.) [HKLM][64Bits] -- ZhornStickies
O42 - Logiciel: VIA Rhine Family Fast Ethernet Adapter - (...) [HKLM][64Bits] -- VN_VUIns_Rhine_VIA
O42 - Logiciel: Visual Studio 2010 x64 Redistributables - (.AVG Technologies.) [HKLM][64Bits] -- {21B133D6-5979-47F0-BE1C-F6A6B304693F}
~ Logic: 79 Scanned in 00mn 00s
---\\ HKCU & HKLM Software Keys
[HKCU\Software\Adobe]
[HKCU\Software\AppDataLow\Software\JavaSoft]
[HKCU\Software\AppDataLow]
[HKCU\Software\Citrix]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\FileHippo.com]
[HKCU\Software\Google]
[HKCU\Software\HP]
[HKCU\Software\Hewlett-Packard]
[HKCU\Software\JavaSoft]
[HKCU\Software\Licenses]
[HKCU\Software\MCAFEE]
[HKCU\Software\Macromedia]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\McAfee Online Backup]
[HKCU\Software\McAfeeInstaller]
[HKCU\Software\Modern UI Test]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Mozilla]
[HKCU\Software\MyDefrag]
[HKCU\Software\Netscape]
[HKCU\Software\OVH]
[HKCU\Software\OpenOffice.org]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\Software]
[HKCU\Software\Usbfix]
[HKCU\Software\VSRevoGroup]
[HKCU\Software\Wow6432Node]
[HKCU\Software\ZebHelpProcess Helper]
[HKLM\Software\AMD]
[HKLM\Software\ATI Technologies]
[HKLM\Software\BrowserChoice]
[HKLM\Software\CBSTEST]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Hewlett-Packard]
[HKLM\Software\Intel]
[HKLM\Software\Macromedia]
[HKLM\Software\McAfee.com]
[HKLM\Software\McAfeeInstaller]
[HKLM\Software\McAfee]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\NVIDIA Corporation]
[HKLM\Software\ODBC]
[HKLM\Software\Piriform]
[HKLM\Software\Policies]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\SRS Labs]
[HKLM\Software\Sonic]
[HKLM\Software\VN_VUIns]
[HKLM\Software\Volatile]
[HKLM\Software\Wow6432Node\AVAST Software]
[HKLM\Software\Wow6432Node\Adobe]
[HKLM\Software\Wow6432Node\AdwCleaner]
[HKLM\Software\Wow6432Node\Classes]
[HKLM\Software\Wow6432Node\Clients]
[HKLM\Software\Wow6432Node\Google]
[HKLM\Software\Wow6432Node\Hewlett-Packard]
[HKLM\Software\Wow6432Node\Intel]
[HKLM\Software\Wow6432Node\JavaSoft]
[HKLM\Software\Wow6432Node\JreMetrics]
[HKLM\Software\Wow6432Node\Loader]
[HKLM\Software\Wow6432Node\Macromedia]
[HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware (Trial)]
[HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware]
[HKLM\Software\Wow6432Node\McAfee.com]
[HKLM\Software\Wow6432Node\McAfeeRiskScan]
[HKLM\Software\Wow6432Node\McAfee]
[HKLM\Software\Wow6432Node\MozillaPlugins]
[HKLM\Software\Wow6432Node\Neuf]
[HKLM\Software\Wow6432Node\ODBC]
[HKLM\Software\Wow6432Node\OpenOffice.org]
[HKLM\Software\Wow6432Node\Policies]
[HKLM\Software\Wow6432Node\Realtek]
[HKLM\Software\Wow6432Node\RegisteredApplications]
[HKLM\Software\Wow6432Node\SiteAdvisor]
[HKLM\Software\Wow6432Node\Softgogo]
[HKLM\Software\Wow6432Node\Volatile]
[HKLM\Software\Wow6432Node\dotNetInstaller]
[HKLM\Software\Wow6432Node\hdcode]
[HKLM\Software\Wow6432Node\mozilla.org]
[HKLM\Software\Wow6432Node\mozilla]
[HKLM\Software\Wow6432Node]
~ Key Software: 136 Scanned in 00mn 00s
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 22/07/2013 - 10:20:30 - [120,489] ----D C:\Program Files (x86)\Adobe
O43 - CFD: 16/07/2013 - 15:42:39 - [0] ----D C:\Program Files (x86)\Citrix
O43 - CFD: 22/07/2013 - 10:20:30 - [83,012] ----D C:\Program Files (x86)\Common Files
O43 - CFD: 29/09/2013 - 10:58:54 - [0,421] ----D C:\Program Files (x86)\FileHippo.com
O43 - CFD: 18/07/2013 - 11:34:15 - [386,681] ----D C:\Program Files (x86)\Google
O43 - CFD: 26/06/2013 - 20:11:15 - [4,594] ----D C:\Program Files (x86)\GUM439E.tmp
O43 - CFD: 15/07/2013 - 18:51:14 - [308,076] ----D C:\Program Files (x86)\HP
O43 - CFD: 12/09/2013 - 20:02:58 - [4,885] ----D C:\Program Files (x86)\Internet Explorer
O43 - CFD: 18/07/2013 - 09:58:58 - [122,487] ----D C:\Program Files (x86)\Java
O43 - CFD: 23/09/2013 - 12:19:21 - [13,265] ----D C:\Program Files (x86)\Malwarebytes' Anti-Malware
O43 - CFD: 04/10/2013 - 19:15:53 - [16,460] ----D C:\Program Files (x86)\McAfee
O43 - CFD: 19/07/2013 - 14:24:52 - [0,515] ----D C:\Program Files (x86)\McAfee.com
O43 - CFD: 27/06/2013 - 01:56:31 - [0,023] ----D C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 24/08/2013 - 08:48:26 - [47,920] ----D C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 26/08/2013 - 08:21:47 - [0,215] ----D C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 14/07/2009 - 07:32:38 - [0,025] ----D C:\Program Files (x86)\MSBuild
O43 - CFD: 16/07/2013 - 20:40:53 - [0] ----D C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 27/06/2013 - 02:50:38 - [121,511] ----D C:\Program Files (x86)\Nvidia Omega Drivers
O43 - CFD: 16/07/2013 - 14:02:18 - [288,773] ----D C:\Program Files (x86)\OpenOffice.org 3
O43 - CFD: 14/07/2009 - 07:32:38 - [37,357] ----D C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 20/09/2013 - 10:11:06 - [17,874] ----D C:\Program Files (x86)\SFR
O43 - CFD: 07/07/2013 - 14:25:32 - [1,591] ----D C:\Program Files (x86)\Stickies
O43 - CFD: 14/07/2009 - 06:57:06 - [0] --H-D C:\Program Files (x86)\Uninstall Information
O43 - CFD: 15/07/2013 - 19:20:50 - [6,523] ----D C:\Program Files (x86)\VS Revo Group
O43 - CFD: 11/07/2013 - 08:44:51 - [0,500] ----D C:\Program Files (x86)\Windows Defender
O43 - CFD: 12/04/2011 - 11:16:36 - [5,895] ----D C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 12/04/2011 - 11:16:36 - [4,791] ----D C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - 07:32:38 - [11,632] ----D C:\Program Files (x86)\Windows NT
O43 - CFD: 12/04/2011 - 11:16:36 - [4,213] ----D C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 21/11/2010 - 05:31:38 - [0,181] ----D C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 12/04/2011 - 11:16:36 - [5,717] ----D C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 05/10/2013 - 13:02:56 - [16,960] ----D C:\Program Files (x86)\ZHPDiag =>.Nicolas Coolman
O43 - CFD: 22/07/2013 - 10:21:22 - [6,289] ----D C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 15/07/2013 - 18:45:09 - [0,507] ----D C:\Program Files (x86)\Common Files\Hewlett-Packard
O43 - CFD: 15/07/2013 - 18:44:12 - [3,052] ----D C:\Program Files (x86)\Common Files\HP
O43 - CFD: 27/06/2013 - 03:53:32 - [2,859] ----D C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 18/07/2013 - 10:03:08 - [1,189] ----D C:\Program Files (x86)\Common Files\Java
O43 - CFD: 19/07/2013 - 14:24:55 - [3,204] ----D C:\Program Files (x86)\Common Files\McAfee
O43 - CFD: 16/07/2013 - 14:00:26 - [16,942] ----D C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 14/07/2009 - 05:20:08 - [0,003] ----D C:\Program Files (x86)\Common Files\Services
O43 - CFD: 14/07/2009 - 05:20:08 - [39,200] ----D C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 27/06/2013 - 00:41:31 - [9,767] ----D C:\Program Files (x86)\Common Files\System
O43 - CFD: 22/07/2013 - 12:33:05 - [457,023] ----D C:\ProgramData\Adobe
O43 - CFD: 14/07/2009 - 07:08:56 - [0] -SH-D C:\ProgramData\Application Data
O43 - CFD: 26/06/2013 - 19:41:55 - [0] -SH-D C:\ProgramData\Bureau
O43 - CFD: 16/07/2013 - 14:14:18 - [0] --H-D C:\ProgramData\Common Files
O43 - CFD: 14/07/2009 - 07:08:56 - [0] -SH-D C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - 07:08:56 - [0] -SH-D C:\ProgramData\Documents
O43 - CFD: 26/06/2013 - 19:41:55 - [0] -SH-D C:\ProgramData\Favoris
O43 - CFD: 14/07/2009 - 07:08:56 - [0] -SH-D C:\ProgramData\Favorites
O43 - CFD: 16/07/2013 - 16:08:51 - [27,916] ----D C:\ProgramData\HP
O43 - CFD: 15/07/2013 - 18:49:09 - [0,009] ----D C:\ProgramData\HP Product Assistant
O43 - CFD: 23/09/2013 - 12:18:44 - [6,284] ----D C:\ProgramData\Malwarebytes
O43 - CFD: 02/09/2013 - 21:20:52 - [108,997] ----D C:\ProgramData\McAfee
O43 - CFD: 26/06/2013 - 19:41:55 - [0] -SH-D C:\ProgramData\Menu Démarrer
O43 - CFD: 16/07/2013 - 16:56:28 - [91,820] ----D C:\ProgramData\MFAData
O43 - CFD: 07/07/2013 - 14:25:49 - [288,469] -S--D C:\ProgramData\Microsoft
O43 - CFD: 26/06/2013 - 19:41:55 - [0] -SH-D C:\ProgramData\Modèles
O43 - CFD: 19/07/2013 - 18:04:17 - [0,007] ----D C:\ProgramData\Mozilla
O43 - CFD: 28/09/2013 - 13:48:21 - [0] ----D C:\ProgramData\Oracle
O43 - CFD: 22/07/2013 - 09:36:08 - [0,848] ----D C:\ProgramData\Package Cache
O43 - CFD: 14/07/2009 - 07:08:56 - [0] -SH-D C:\ProgramData\Start Menu
O43 - CFD: 18/07/2013 - 10:03:12 - [0] ----D C:\ProgramData\Sun
O43 - CFD: 14/07/2009 - 07:08:56 - [0] -SH-D C:\ProgramData\Templates
O43 - CFD: 22/07/2013 - 10:33:44 - [2,576] ----D C:\Users\Cat\AppData\Roaming\Adobe
O43 - CFD: 16/07/2013 - 16:08:56 - [0,011] ----D C:\Users\Cat\AppData\Roaming\HP
O43 - CFD: 20/07/2013 - 10:58:59 - [0,316] ----D C:\Users\Cat\AppData\Roaming\hubiC
O43 - CFD: 26/06/2013 - 19:42:12 - [0] ----D C:\Users\Cat\AppData\Roaming\Identities
O43 - CFD: 11/07/2013 - 08:59:18 - [2,225] ----D C:\Users\Cat\AppData\Roaming\LibreOffice
O43 - CFD: 02/07/2013 - 14:04:41 - [0] ----D C:\Users\Cat\AppData\Roaming\Macromedia
O43 - CFD: 23/09/2013 - 12:20:42 - [8,136] ----D C:\Users\Cat\AppData\Roaming\Malwarebytes
O43 - CFD: 12/04/2011 - 11:27:52 - [0] ----D C:\Users\Cat\AppData\Roaming\Media Center Programs
O43 - CFD: 31/07/2013 - 16:17:23 - [1,517] -S--D C:\Users\Cat\AppData\Roaming\Microsoft
O43 - CFD: 19/07/2013 - 18:05:11 - [33,810] ----D C:\Users\Cat\AppData\Roaming\Mozilla
O43 - CFD: 19/07/2013 - 11:47:43 - [12,401] ----D C:\Users\Cat\AppData\Roaming\OpenOffice.org
O43 - CFD: 22/09/2013 - 17:23:23 - [0,001] ----D C:\Users\Cat\AppData\Roaming\RocketPDF
O43 - CFD: 05/10/2013 - 12:15:11 - [0,167] ----D C:\Users\Cat\AppData\Roaming\stickies
O43 - CFD: 16/07/2013 - 14:32:11 - [0] ----D C:\Users\Cat\AppData\Roaming\TuneUp Software
O43 - CFD: 05/10/2013 - 13:05:00 - [0,502] ----D C:\Users\Cat\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 29/09/2013 - 13:47:03 - [0,346] ----D C:\Users\Cat\AppData\Local\Adobe
O43 - CFD: 26/06/2013 - 19:42:01 - [0] -SH-D C:\Users\Cat\AppData\Local\Application Data
O43 - CFD: 06/07/2013 - 18:14:42 - [3,208] ----D C:\Users\Cat\AppData\Local\Apps
O43 - CFD: 16/07/2013 - 16:55:25 - [0,001] ----D C:\Users\Cat\AppData\Local\Avg2013
O43 - CFD: 16/07/2013 - 15:41:27 - [1,997] ----D C:\Users\Cat\AppData\Local\Citrix
O43 - CFD: 18/07/2013 - 11:31:48 - [0] ----D C:\Users\Cat\AppData\Local\Deployment
O43 - CFD: 25/08/2013 - 10:26:10 - [0] ----D C:\Users\Cat\AppData\Local\ElevatedDiagnostics
O43 - CFD: 15/07/2013 - 22:51:19 - [0,029] ----D C:\Users\Cat\AppData\Local\emaze
O43 - CFD: 06/07/2013 - 18:17:39 - [83,113] ----D C:\Users\Cat\AppData\Local\Google
O43 - CFD: 26/06/2013 - 19:42:01 - [0] -SH-D C:\Users\Cat\AppData\Local\Historique
O43 - CFD: 15/07/2013 - 19:39:31 - [0] ----D C:\Users\Cat\AppData\Local\HP
O43 - CFD: 19/07/2013 - 18:27:32 - [0] ----D C:\Users\Cat\AppData\Local\Macromedia
O43 - CFD: 19/07/2013 - 14:26:46 - [0] ----D C:\Users\Cat\AppData\Local\McAfee File Lock
O43 - CFD: 16/07/2013 - 14:14:18 - [3,675] ----D C:\Users\Cat\AppData\Local\MFAData
O43 - CFD: 01/10/2013 - 17:19:16 - [72,060] ----D C:\Users\Cat\AppData\Local\Microsoft
O43 - CFD: 19/07/2013 - 18:04:56 - [2,146] ----D C:\Users\Cat\AppData\Local\Mozilla
O43 - CFD: 22/09/2013 - 17:11:48 - [0] ----D C:\Users\Cat\AppData\Local\Programs
O43 - CFD: 05/10/2013 - 13:05:10 - [0,001] ----D C:\Users\Cat\AppData\Local\Temp
O43 - CFD: 26/06/2013 - 19:42:01 - [0] -SH-D C:\Users\Cat\AppData\Local\Temporary Internet Files
O43 - CFD: 26/06/2013 - 19:42:08 - [0] ----D C:\Users\Cat\AppData\Local\VirtualStore
O43 - CFD: 14/07/2009 - 06:54:32 - [0,014] R---D C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 13/09/2013 - 10:20:54 - [0] R---D C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 14/07/2009 - 06:49:38 - [0,001] R---D C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 15/07/2013 - 19:21:39 - [0,005] ----D C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
O43 - CFD: 13/09/2013 - 10:20:54 - [0,001] R---D C:\Users\Cat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
~ Program Folder: 104 Scanned in 00mn 07s
---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.C9DC7296D2DF56C6AE0BD3EEB9CB2DC5] - 05/10/2013 - 11:14:37 ---A- . (...) -- C:\Windows\PFRO.log [304]
O44 - LFC:[MD5.18F1036BD15DB3EEC1C0ACE26E6FF96C] - 05/10/2013 - 11:14:44 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.D74E3C688AA4F552EB9F55CB8EA67170] - 05/10/2013 - 11:14:45 ---A- . (...) -- C:\Windows\setupact.log [56]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 05/10/2013 - 11:14:45 ---A- . (...) -- C:\Windows\setuperr.log [0]
O44 - LFC:[MD5.16534003640F71FF1C976F251EEF6B5E] - 05/10/2013 - 11:33:10 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1697705]
O44 - LFC:[MD5.0BB97D43299910CBFBA59C461B99B910] - 23/09/2013 - 11:18:19 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [25928]
O44 - LFC:[MD5.F4BE81C919FC0A012F5357E3911D4B67] - 27/09/2013 - 18:00:46 ---A- . (.McAfee, Inc. - McAfee File Lock Driver.) -- C:\Windows\System32\Drivers\McPvDrv.sys [74560]
O44 - LFC:[MD5.B7C855A495B796518A27641BCDB116FF] - 28/09/2013 - 13:02:53 ---A- . (...) -- C:\DelFix.txt [2300]
O44 - LFC:[MD5.FB76AB9B8C9869882EA8EFF133FB0F37] - 28/09/2013 - 16:39:38 ---A- . (.J.C. Kessels - MyDefrag Script Interpreter.) -- C:\Windows\SysNative\MyDefragScreenSaver_v4.3.1.scr [485376]
O44 - LFC:[MD5.FB76AB9B8C9869882EA8EFF133FB0F37] - 28/09/2013 - 16:39:38 ---A- . (.J.C. Kessels - MyDefrag Script Interpreter.) -- C:\Windows\System32\MyDefragScreenSaver_v4.3.1.scr [485376]
O44 - LFC:[MD5.849946AD8A164ED1460B2C5F3D957500] - 28/09/2013 - 16:39:39 ---A- . (.J.C. Kessels - MyDefrag Script Interpreter.) -- C:\Windows\SysNative\MyDefragScreenSaver_v4.3.1.exe [1147392]
O44 - LFC:[MD5.849946AD8A164ED1460B2C5F3D957500] - 28/09/2013 - 16:39:39 ---A- . (.J.C. Kessels - MyDefrag Script Interpreter.) -- C:\Windows\System32\MyDefragScreenSaver_v4.3.1.exe [1147392]
~ Files: 12 Scanned in 00mn 04s
---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.17BA3B6A559557D86B5E3C8CEAEB8DF0] - 01/10/2013 - 15:31:25 ---A- - C:\Windows\Prefetch\ACRORD32.EXE-D066635E.pf
O45 - LFCP:[MD5.84D698BB164C3D30690E813768B338F6] - 02/10/2013 - 11:19:09 ---A- - C:\Windows\Prefetch\SOFFICE.EXE-8BFABAE3.pf
O45 - LFCP:[MD5.D2018C64DE7F74A72421CB21C90DCE82] - 02/10/2013 - 11:19:10 ---A- - C:\Windows\Prefetch\SOFFICE.BIN-7F88D3BE.pf
O45 - LFCP:[MD5.B77FFF37C3FF2847E8830B0A4D310608] - 02/10/2013 - 11:19:45 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-76936ED5.pf
O45 - LFCP:[MD5.C152047EAB8258A8A18367E49B5F1561] - 02/10/2013 - 11:50:46 ---A- - C:\Windows\Prefetch\SPLWOW64.EXE-297C4568.pf
O45 - LFCP:[MD5.5544F81EF40B13A91470926486EADB70] - 02/10/2013 - 11:52:30 ---A- - C:\Windows\Prefetch\HPQUSGL.EXE-F8190D14.pf
O45 - LFCP:[MD5.85372D78D076572A3D6DB2D7BB1FC592] - 02/10/2013 - 19:26:52 ---A- - C:\Windows\Prefetch\DEFRAG.EXE-588F90AD.pf
O45 - LFCP:[MD5.858FA598FD7CBFF5A32EF08C5FEF8AFD] - 03/10/2013 - 08:53:50 ---A- - C:\Windows\Prefetch\DINOTIFY.EXE-35A869D6.pf
O45 - LFCP:[MD5.A0FBA50D593C2A6C843F9AF31C18A944] - 03/10/2013 - 08:53:50 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-440873D1.pf
O45 - LFCP:[MD5.86271AD26F30FB953D8F6B3E53B75A4C] - 03/10/2013 - 08:53:50 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-007FEA55.pf
O45 - LFCP:[MD5.9B345CF5A6C5FE4C49621FDD538CDFAB] - 03/10/2013 - 08:53:50 ---A- - C:\Windows\Prefetch\WMPNETWK.EXE-D9F2A96F.pf
O45 - LFCP:[MD5.B514E6373E360CC6561C02D62E651614] - 03/10/2013 - 08:58:29 ---A- - C:\Windows\Prefetch\DRVINST.EXE-4CB4314A.pf
O45 - LFCP:[MD5.678B5F4EDAA221E460F8998A4571D010] - 03/10/2013 - 10:27:54 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-7AC6742A.pf
O45 - LFCP:[MD5.1F0C128176DDABBEF818E3F49BB8F24F] - 03/10/2013 - 10:34:13 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-B49E1152.pf
O45 - LFCP:[MD5.323D3955F6F822F0B3402DA4EE27996E] - 03/10/2013 - 18:33:13 ---A- - C:\Windows\Prefetch\MCVSMAP.EXE-AC93DF0C.pf
O45 - LFCP:[MD5.3F5770A2D7D64664A6FEFE86BEBD458C] - 04/10/2013 - 08:55:34 ---A- - C:\Windows\Prefetch\S4ES.C.EXE-91BF8A2F.pf
O45 - LFCP:[MD5.827B75CF90E785FA12F32BC9BE4130D7] - 04/10/2013 - 08:55:47 ---A- - C:\Windows\Prefetch\SAINST.EXE-3185B25C.pf
O45 - LFCP:[MD5.E42F24062F3AA2595F789A4EB7B7A0BE] - 04/10/2013 - 08:55:48 ---A- - C:\Windows\Prefetch\MCINST.EXE-342F6078.pf
O45 - LFCP:[MD5.92FE11024C3420E5289A144F4FFF4E9B] - 04/10/2013 - 08:56:46 ---A- - C:\Windows\Prefetch\WSQMCONS.EXE-118B52B7.pf
O45 - LFCP:[MD5.8667733E32353A5C977B992E5374D1BF] - 04/10/2013 - 08:58:43 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-347F87BF.pf
O45 - LFCP:[MD5.276966BEA0A2C0DCD4D4668996BF5B83] - 04/10/2013 - 08:59:01 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-E3CA559B.pf
O45 - LFCP:[MD5.933834F68747FD3B78B621ECD13DC673] - 04/10/2013 - 09:08:54 ---A- - C:\Windows\Prefetch\WUAUCLT.EXE-70318591.pf
O45 - LFCP:[MD5.0CA033E6F789A8B4A8186B3DADB2B481] - 04/10/2013 - 09:09:00 ---A- - C:\Windows\Prefetch\MPAS-D_BD_1.159.1090.0.EXE-CEA10EC2.pf
O45 - LFCP:[MD5.2B579403882544A897F4FAA278B1958C] - 04/10/2013 - 09:09:05 ---A- - C:\Windows\Prefetch\MPMINISIGSTUB.EXE-BEFC3B53.pf
O45 - LFCP:[MD5.55A8582DD97703DBDFA85290A562B6C9] - 04/10/2013 - 09:09:06 ---A- - C:\Windows\Prefetch\MPSIGSTUB.EXE-6CB27A06.pf
O45 - LFCP:[MD5.D8CA4A80C44383F0A368027CCB26574C] - 04/10/2013 - 09:42:11 ---A- - C:\Windows\Prefetch\MCINFO.EXE-63EEF562.pf
O45 - LFCP:[MD5.CA70A7A89C9EEB6195045CF1F816C9AC] - 04/10/2013 - 09:42:40 ---A- - C:\Windows\Prefetch\MCSVHOST.EXE-705569D1.pf
O45 - LFCP:[MD5.EEF35F45BB01CD428F18AD41C1779115] - 04/10/2013 - 09:42:44 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-3489AD9F.pf
O45 - LFCP:[MD5.25A655B8A7179030984D75B3ADFD4C51] - 04/10/2013 - 09:42:50 ---A- - C:\Windows\Prefetc
2011N2
Messages postés
13352
Date d'inscription
samedi 29 janvier 2011
Statut
Contributeur sécurité
Dernière intervention
24 décembre 2016
917
5 oct. 2013 à 13:25
5 oct. 2013 à 13:25
Salut,
Tu peux l'héberger stp ? Il n'est pas complet.
http://www.forum-entraide-informatique.com/support/cjoint-com-tutoriel-t2939.html
Gabriel.
Tu peux l'héberger stp ? Il n'est pas complet.
http://www.forum-entraide-informatique.com/support/cjoint-com-tutoriel-t2939.html
Gabriel.
Obaobob
Messages postés
120
Date d'inscription
dimanche 7 juillet 2013
Statut
Membre
Dernière intervention
22 août 2015
6
5 oct. 2013 à 15:08
5 oct. 2013 à 15:08
Ça y est, je l'ai mis sur Cjoint. :o)
2011N2
Messages postés
13352
Date d'inscription
samedi 29 janvier 2011
Statut
Contributeur sécurité
Dernière intervention
24 décembre 2016
917
5 oct. 2013 à 15:10
5 oct. 2013 à 15:10
Et le lien il est où ?^^
Obaobob
Messages postés
120
Date d'inscription
dimanche 7 juillet 2013
Statut
Membre
Dernière intervention
22 août 2015
6
5 oct. 2013 à 15:59
5 oct. 2013 à 15:59
Sorry, je suis un brin étourdie
http://cjoint.com/?CJfpgpfVjd1
http://cjoint.com/?CJfpgpfVjd1
2011N2
Messages postés
13352
Date d'inscription
samedi 29 janvier 2011
Statut
Contributeur sécurité
Dernière intervention
24 décembre 2016
917
5 oct. 2013 à 16:25
5 oct. 2013 à 16:25
Re,
Je vois rien de spécial sur le rapport...
Ces liens soulignés c'est sur quels sites ?
Gabriel.
Je vois rien de spécial sur le rapport...
Ces liens soulignés c'est sur quels sites ?
Gabriel.
Obaobob
Messages postés
120
Date d'inscription
dimanche 7 juillet 2013
Statut
Membre
Dernière intervention
22 août 2015
6
6 oct. 2013 à 11:51
6 oct. 2013 à 11:51
Hello, Effectivement le problème a disparu à nouveau. Peut être est-ce parce que j'avais fait par anticipation ADW Cleaner, Malware et CCCleaner ?
Mais il devait falloir un redémarrage pour que ça disparaisse complémentent.
Sinon, je suis quand même étonnée que ce soit revenu car j''ai juste consulté quelques sites grands publics dont je ne vois pas pourquoi ils seraient dangereux.
Par ailleurs, je n'ai rien téléchargé.
A-t-on une idée de la façon d'attraper ces pubs aléatoires ?
Bon dimanche :o)
Mais il devait falloir un redémarrage pour que ça disparaisse complémentent.
Sinon, je suis quand même étonnée que ce soit revenu car j''ai juste consulté quelques sites grands publics dont je ne vois pas pourquoi ils seraient dangereux.
Par ailleurs, je n'ai rien téléchargé.
A-t-on une idée de la façon d'attraper ces pubs aléatoires ?
Bon dimanche :o)
2011N2
Messages postés
13352
Date d'inscription
samedi 29 janvier 2011
Statut
Contributeur sécurité
Dernière intervention
24 décembre 2016
917
6 oct. 2013 à 12:23
6 oct. 2013 à 12:23
Hello,
Oui AdwCleaner et MBAM ont surement réglé le souci.
Normalement, pour ce genre de choses, c'est en téléchargeant...
Gabriel.
Oui AdwCleaner et MBAM ont surement réglé le souci.
Normalement, pour ce genre de choses, c'est en téléchargeant...
Gabriel.
Obaobob
Messages postés
120
Date d'inscription
dimanche 7 juillet 2013
Statut
Membre
Dernière intervention
22 août 2015
6
6 oct. 2013 à 12:30
6 oct. 2013 à 12:30
Merci pour ton aide Gabriel.
Je suis perplexe car je n'ai rien téléchargé. Il n'y a que les mises à jour Windows et celles de mon anti-virus qui se font automatiquement.
Bon, lolll, je vais scruter mon pc en espérant que ça ne recommencera pas. :o)
Cathy
Je suis perplexe car je n'ai rien téléchargé. Il n'y a que les mises à jour Windows et celles de mon anti-virus qui se font automatiquement.
Bon, lolll, je vais scruter mon pc en espérant que ça ne recommencera pas. :o)
Cathy
2011N2
Messages postés
13352
Date d'inscription
samedi 29 janvier 2011
Statut
Contributeur sécurité
Dernière intervention
24 décembre 2016
917
6 oct. 2013 à 12:32
6 oct. 2013 à 12:32
Re,
Oui c'est bizarre.
Tu as les rapports AdwCleaner et MBAM ?
Gabriel.
Oui c'est bizarre.
Tu as les rapports AdwCleaner et MBAM ?
Gabriel.
Bonsoir, désolée de ne pas avoir répondu plus tôt. Je viens de me servir de mon PC et tout est OK.
Je pense que les outils que tu m'as conseillés ont fait leur effet.
Merci pour tout
Je pense que les outils que tu m'as conseillés ont fait leur effet.
Merci pour tout
2011N2
Messages postés
13352
Date d'inscription
samedi 29 janvier 2011
Statut
Contributeur sécurité
Dernière intervention
24 décembre 2016
917
7 nov. 2013 à 19:42
7 nov. 2013 à 19:42
Bonsoir,
Ok parfait, bonne continuation. :)
Gabriel.
Ok parfait, bonne continuation. :)
Gabriel.