Impossible de désinstaller antivirus RISING !

Résolu
marie13010 Messages postés 56 Statut Membre -  
 marie13010 -
Bonjour,

Je suis entrain de tenter une "remise en état" du vieil XP d'un pote. Ne voulant pas lui télécharger un antivirus trop lourd (genre avast), j'ai téléchargé RISING... Quelle erreur ! Il n'est même plus possible d'utiliser adwcleaner suite à ce téléchargement.
Je souhaiterais donc le supprimer mais IMPOSSIBLE !! Il est bien supprimé de la liste dans "désinstallation" mais absolument pas désinstallé en réalité. C'est pourquoi je demande de l'aide...
Merci d'avance,
Marie

--
marie13010

3 réponses

  1. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    Salut,

    Tu as installé des adwares et programmes parasites sur ton PC qui ouvrent des publicités et ralentissent l'ordinateur et les navigateurs WEB.
    Voici la procédure à suivre pour les supprimer :

    Commence par ceci :

    Suis le tutorial AdwCleaner( d'Xplode )
    Ce programme permet de supprimer les adwares et programmes parasites :
    • Télécharge le sur ton bureau ou dossier de téléchargement.
    • Lance AdwCleaner, clique sur [Scanner].
    • L'analyse peux durer plusieurs minutes, patiente.
    • Une fois le scan terminé, ne décoche rien, clique sur [Nettoyer]
    • Une fois le nettoyage terminé, un rapport s'ouvrira. Copie/colle le contenu du rapport dans ta prochaine réponse par un copier/collé.


    Si cela ne fonctionne pas, utilise le site http://pjjoint.malekal.com pour héberger le rapport, donne le lien du rapport dans un nouveau message.
    Note : Le rapport est également sauvegardé sous C:\AdwCleaner[S1].txt

    puis :

    Fais un nettoyage ZHPCleaner.

    0
    1. marie13010 Messages postés 56 Statut Membre
       
      Salut et merci Malekal,

      Le soucis, c'est justement que adwcleaner refuse de s'installer. J'ai même essayé de l'installer à partir d'une usb.mais idem... Je vais donc suivre le lien que tu m'as transmis. Je reviens à toi dès que c'est fait. Encore merci de m'aider !!! :)
      PS : j'ai déjà tenté un nettoyage avec ZHPcleaner mais toujours pas désinstallé. Saleté...!
      J'ai installé ZHPFix mais je ne sais pas l'utiliser... J'en saurai certainement plus en suivant ton lien. J'y vais... ;)

      Cordialement,
      Marie
      0
    2. marie13010 Messages postés 56 Statut Membre
       
      Re suite msg : je tente à présent un scanne avec ZHPDIAG. Je poste le fichier dès qu'il est terminé... ;)
      0
    3. marie13010 Messages postés 56 Statut Membre
       
      Encore moi... :)
      J'ai posté le scanne sur ton site, je me permets de le poster également ici, le voici (pas sûre que ce soit très judicieux car trèèèès long, mais bon... :

      ~ ZHPDiag v2015.11.16.168 Par Nicolas Coolman (2015/11/16)
      ~ Démarré par POUPEAU PATRICK (Administrator) (2015/11/16 17:37:42)
      ~ Site: https://nicolascoolman.eu
      ~ Facebook: https://www.facebook.com/nicolascoolman1
      ~ Etat de la version: Version OK
      ~ Mode: Scanner
      ~ Rapport: C:\Documents and Settings\POUPEAU PATRICK\Bureau\ZHPDiag.txt
      ~ Rapport: C:\Documents and Settings\POUPEAU PATRICK\Application Data\ZHP\ZHPDiag.txt
      ~ UAC: Deactivate
      ~ Démarrage du système: Normal (Normal boot)
      Windows XP, 32-bit Service Pack 3 (Build 2600)

      ---\\ Navigateurs Internet (2) - 0s
      GCIE: Google Chrome v46.0.2490.86
      MSIE: Internet Explorer v8.0.6001.18702

      ---\\ Informations sur les produits Windows (3) - 0s
      Windows Automatic Updates : OK
      Windows Activation Technologies : KO
      Windows Genuine Advantage : OK

      ---\\ Logiciels de protection (1) - 4s
      Microsoft Security Client FR-FR Language Pack v2.1.1116.0

      ---\\ Logiciels de protection et autres (Superflus) (1) - 5s
      Spybot - Search & Destroy 1.4

      ---\\ Logiciels d'optimisation (1) - 5s
      CCleaner v3.16

      ---\\ Surveillance de Logiciels (2) - 5s
      Adobe Flash Player 11 Plugin
      Adobe Reader XI

      ---\\ Informations sur le système (6) - 0s
      ~ Operating System: x86 Family 15 Model 2 Stepping 7, GenuineIntel
      ~ Operating System: 32-bit
      ~ Boot mode: Normal (Normal boot)
      Total RAM: 523.264 MB (34% free)
      System Restore: Activé (Enable)
      System drive C: has 20 GB () free of 38 GB

      ---\\ Mode de connexion au système (3) - 0s
      ~ Computer Name: BRENDA
      ~ User Name: POUPEAU PATRICK
      ~ Logged in as Administrator

      ---\\ Enumération des unités disques (2) - 7s
      ~ Drive C: has 20 GB free of 38 GB (System)
      ~ Drive F: has 59 GB free of 60 GB

      ---\\ Etat du Centre de Sécurité Windows (9) - 0s
      [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
      [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
      [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
      [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK
      [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK
      [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
      [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
      [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
      [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

      ---\\ Recherche particulière de fichiers génériques (23) - 1s
      [MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - 14/04/2008 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [1037824] ©
      [MD5.93AD0B78C7357A05F50E594EC7C22300] - 14/04/2008 - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\rundll32.exe [33792] ©
      [MD5.E1948B1F45A176FB4A0251446A5AE86D] - 06/03/2014 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\WINDOWS\System32\wininet.dll [920064] ©
      [MD5.DD73D6B9F6B4CB630CF35B438B540174] - 14/04/2008 - (.Microsoft Corporation - Application d'ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [512000] ©
      [MD5.D76A076ADB74F8132924E498D63123A2] - 03/03/2011 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\System32\dnsapi.dll [149504] ©
      [MD5.1E44BC1E83D8FD2305F8D452DB109CF9] - 17/08/2011 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [138496] ©
      [MD5.9F3A2F5AA6875C72BF062C712CFA2674] - 13/04/2008 - (.Microsoft Corporation - IDE/ATAPI Port Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [96512] ©
      [MD5.C885B02847F5D2FD45A24E219ED93B32] - 13/04/2008 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [63744] ©
      [MD5.1F4260CC5B42272D71F79E570A27A4FE] - 13/04/2008 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [62976] ©
      [MD5.31F923EB2170FC172C81ABDA0045D18C] - 14/04/2008 - (.Microsoft Corporation - Pilote de cryptographie FIPS.) -- C:\WINDOWS\System32\drivers\Fips.sys [44672] ©
      [MD5.573C7D0A32852B48F3058CFD8026F511] - 13/04/2008 - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [144384]
      [MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - 14/04/2008 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [54144] ©
      [MD5.083A052659F5310DD8B6A6CB05EDCF8E] - 13/04/2008 - (.Microsoft Corporation - IMAPI Kernel Driver.) -- C:\WINDOWS\System32\drivers\Imapi.sys [42112] ©
      [MD5.CC748EA12C6EFFDE940EE98098BF96BB] - 13/04/2008 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [152832] ©
      [MD5.23C74D75E36E7158768DD63D92789A91] - 13/04/2008 - (.Microsoft Corporation - IPSec Driver.) -- C:\WINDOWS\System32\drivers\IPSec.sys [75264] ©
      [MD5.7D304A5EB4344EBEEAB53A2FE3FFB9F0] - 15/07/2011 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [456320] ©
      [MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - 13/04/2008 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [162816] ©
      [MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - 13/04/2008 - (.Microsoft Corporation - NT File System Driver.) -- C:\WINDOWS\System32\drivers\ntfs.sys [574976] ©
      [MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - 14/04/2008 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [80384] ©
      [MD5.11B4A627BC9614B885C4969BFA5FF8A6] - 13/04/2008 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [51328] ©
      [MD5.15CABD0F7C00C47C70124907916AF3F1] - 13/04/2008 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [196224] ©
      [MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - 14/04/2008 - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) -- C:\WINDOWS\System32\drivers\redbook.sys [58752] ©
      [MD5.46DE1126684369BACE4849E4FC8C43CA] - 14/04/2008 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [53376] ©

      ---\\ Liste des services NT non Microsoft et non désactivés (5) - 0s
      O23 - Service: Service Google Update (gupdate1caa80bc6d39b86) (gupdate1caa80bc6d39b86) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe ©
      O23 - Service: NVIDIA Display Driver Service (NVSvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 52.16.) - C:\WINDOWS\SYSTEM32\nvsvc32.exe ©
      O23 - Service: Rsd Service (RsMgrSvc) . (...) - C:\Program Files\Rising\RSD\RsMgrSvc.exe (.not file.)
      O23 - Service: Rav Service (RsRavMon) . (.Beijing Rising Information Technology Co., Ltd. - ravmond.) - C:\Program Files\Rising\RAV\RavMonD.exe ©
      O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe ©

      ---\\ Processus lancés (9) - 0s
      [MD5.17B49DF1EFB0308534CBB8184A2C5E06] - (.Beijing Rising Information Technology Co., Ltd. - ravmond.) -- C:\Program Files\Rising\RAV\RavMonD.exe [167544] [PID.1092] ©
      [MD5.5ED834603C36414B579979B3A9C90F54] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 52.16.) -- C:\WINDOWS\SYSTEM32\nvsvc32.exe [81920] [PID.180] ©
      [MD5.DD7423ABBE2913E70D50E9318AD57EE4] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] [PID.144] ©
      [MD5.1A57FFFCE1AE22EA5AC44AECB286A0DD] - (.Creative Technology Ltd - Creative Camera Launcher Application.) -- C:\Program Files\Creative\Shared Files\CamTray.exe [258048] [PID.1680] ©
      [MD5.7A2870C2A8283B3630BF7670D0362B94] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [811848] [PID.1712] ©
      [MD5.7A2870C2A8283B3630BF7670D0362B94] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [811848] [PID.2504] ©
      [MD5.7A2870C2A8283B3630BF7670D0362B94] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [811848] [PID.2600] ©
      [MD5.D64985A2C3A26DE2104AD0C9DDAB0FD3] - (.Beijing Rising Information Technology Co., Ltd. - Rising tray framework.) -- C:\Program Files\Rising\RAV\RsTray.exe [178840] [PID.3840] ©
      [MD5.C0FD183DA8270F10DB65C6E7CBD4DFF5] - (.Copyright (C) 2015 Nicolas Coolman - ZHPDiag.) -- F:\ZHPDiag3.exe [1970176] [PID.2716]

      ---\\ Google Chrome, Démarrage,Recherche,Extensions (3) - 1s
      G0 - GCSP: Secure Preferences [User Data\Default][HomePage] https://www.google.fr/?gws_rd=ssl
      G2 - GCE: Preference [User Data\Default] [lifbcibllhkdhoafpjfnlhfpfgnpldfl] Skype Click to Call
      G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.

      ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (18) - 2s
      M0 - MFSP: prefs.js [POUPEAU PATRICK - 4dsghljq.default] https://www.orange.fr/portail
      M1 - SPR:Search Page Redirection - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
      P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.FRA
      P2 - EXT FILE: (...) -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\Mozilla\Firefox\Profiles\4dsghljq.default\extensions\eoWwdRD@Qe3qzqg.com.xpi
      P2 - EXT FILE: (...) -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\Mozilla\Firefox\Profiles\4dsghljq.default\searchplugins\live-search.xml
      P2 - EXT FILE: (...) -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\Mozilla\Firefox\Profiles\4dsghljq.default\searchplugins\orange.xml
      P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\amazon-france.xml
      P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\bing.xml
      P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml
      P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\eBay-france.xml
      P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\google.xml
      P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml
      P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\yahoo-france.xml
      P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ©
      P2 - EXT: (.Olivier R. - Dictionnaire français «Réforme 1990».) -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\Mozilla\Firefox\Profiles\4dsghljq.default\extensions\fr@dictionaries.addons.mozilla.org ©
      P2 - EXT: (.Microsoft - Microsoft .NET Framework Assistant.) -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\Mozilla\Firefox\Profiles\4dsghljq.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} ©
      P2 - EXT: (.Google Inc. - Google Toolbar for Firefox.) -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\Mozilla\Firefox\Profiles\4dsghljq.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c} ©
      P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\WINDOWS\SYSTEM32\Macromed\Flash\NPSWF32_11_5_502_135.dll ©

      ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (13) - 0s
      R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.microsoft.com/fr-fr/
      R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.microsoft.com/fr-fr/
      R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
      R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.microsoft.com/fr-fr/
      R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = https://www.microsoft.com/fr-fr/
      R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.microsoft.com/fr-fr/
      R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
      R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
      R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.microsoft.com/fr-fr/
      R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89
      R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
      R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
      R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2

      ---\\ Internet Explorer,Proxy Management (7) - 1s
      R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
      R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
      R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
      R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
      R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
      R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
      R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1

      ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
      F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) ©
      F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) ©
      F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

      ---\\ Etude du fichier hosts (1) - 0s
      ~ Le fichier hôte est sain (The hosts file is clean) (20)

      ---\\ Browser Helper Object de navigateur (BHO) (7) - 1s
      O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} . (.Hewlett-Packard Co. - HP Smart Web Printing add-on for Internet E.) -- C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll ©
      O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll ©
      O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} (Orphean)
      O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - WindowsLiveLogin.dll.) -- C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll ©
      O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll ©
      O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Skype Technologies S.A. - Skype Click to Call for Internet Explorer.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll ©
      O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} . (.Hewlett-Packard Co. - HP Smart Web Printing add-on for Internet E.) -- C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll ©

      ---\\ Applications lancées au démarrage du système (14) - 0s
      O4 - HKLM\..\Run: [nwiz] . (.NVIDIA Corporation - NVIDIA nView Wizard, Version 52.16.) -- C:\WINDOWS\System32\nwiz.exe ©
      O4 - HKLM\..\Run: [NvCplDaemon] . (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\RUNDLL32.EXE ©
      O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe ©
      O4 - HKLM\..\Run: [VF0060 STISvc] . (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\RunDLL32.exe ©
      O4 - HKCU\..\Run: [Creative WebCam Tray] . (.Creative Technology Ltd - Creative Camera Launcher Application.) -- C:\Program Files\Creative\Shared Files\CamTray.exe ©
      O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe ©
      O4 - HKCU\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\SYSTEM32\ctfmon.exe ©
      O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\SYSTEM32\ctfmon.exe ©
      O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\SYSTEM32\ctfmon.exe ©
      O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\SYSTEM32\ctfmon.exe ©
      O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\SYSTEM32\ctfmon.exe ©
      O4 - HKUS\S-1-5-21-1380965886-2124900619-3638996320-1007\..\Run: [Creative WebCam Tray] . (.Creative Technology Ltd - Creative Camera Launcher Application.) -- C:\Program Files\Creative\Shared Files\CamTray.exe ©
      O4 - HKUS\S-1-5-21-1380965886-2124900619-3638996320-1007\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe ©
      O4 - HKUS\S-1-5-21-1380965886-2124900619-3638996320-1007\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\SYSTEM32\ctfmon.exe ©

      ---\\ Modification Domaine/Adresses DNS (3) - 0s
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
      O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
      O17 - HKLM\System\CS3\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

      ---\\ Protocole additionnel (30) - 0s
      O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\SYSTEM32\mshtml.dll ©
      O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SYSTEM32\urlmon.dll ©
      O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\SYSTEM32\msvidctl.dll ©
      O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SYSTEM32\urlmon.dll ©
      O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SYSTEM32\urlmon.dll ©
      O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SYSTEM32\urlmon.dll ©
      O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SYSTEM32\urlmon.dll ©
      O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SYSTEM32\urlmon.dll ©
      O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\SYSTEM32\itss.dll ©
      O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\SYSTEM32\mshtml.dll ©
      O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SYSTEM32\urlmon.dll ©
      O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\SYSTEM32\mshtml.dll ©
      O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API.) -- C:\WINDOWS\SYSTEM32\inetcomm.dll ©
      O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SYSTEM32\urlmon.dll ©
      O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\SYSTEM32\itss.dll ©
      O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\SYSTEM32\mshtml.dll ©
      O18 - Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} . (.Skype Technologies S.A. - Skype Click to Call for Internet Explorer.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll ©
      O18 - Handler: sysimage - {76E67A63-06E9-11D2-A840-006008059382} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\SYSTEM32\mshtml.dll ©
      O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\SYSTEM32\msvidctl.dll ©
      O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\SYSTEM32\mshtml.dll ©
      O18 - Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} . (.Microsoft Corporation - WIA Scripting Layer.) -- C:\WINDOWS\SYSTEM32\wiascr.dll ©
      O18 - Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files\Windows Live\Mail\mailcomm.dll ©
      O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\SYSTEM32\mscoree.dll ©
      O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\SYSTEM32\mscoree.dll ©
      O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\SYSTEM32\mscoree.dll ©
      O18 - Filter: Class Install Handler - {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SYSTEM32\urlmon.dll ©
      O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SYSTEM32\urlmon.dll ©
      O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SYSTEM32\urlmon.dll ©
      O18 - Filter: lzdhtml - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SYSTEM32\urlmon.dll ©
      O18 - Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\SYSTEM32\shell32.dll ©

      ---\\ Enumère les données de BootExecute (1) - 0s
      O34 - HKLM BootExecute: ( bsmain)

      ---\\ Logiciels installés (62) - 17s
      O42 - Logiciel: 32 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM] -- {2614F54E-A828-49FA-93BA-45A3F756BFAA} ©
      O42 - Logiciel: Adobe Acrobat 5.0 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Acrobat 5.0 ©
      O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin ©
      O42 - Logiciel: Adobe Reader XI (11.0.08) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} ©
      O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner ©
      O42 - Logiciel: Creative WebCam Center - (...) [HKLM] -- Creative WebCam Center
      O42 - Logiciel: Creative WebCam Live! Ultra Driver (1.01.03.0127) - (...) [HKLM] -- Creative VF0060
      O42 - Logiciel: Dell Solution Center - (.Dell.) [HKLM] -- {11F1920A-56A2-4642-B6E0-3B31A12C9288} ©
      O42 - Logiciel: DVDSentry - (.Dell.) [HKLM] -- {98DF85D9-96C0-4F57-A92E-C3539477EF5E} ©
      O42 - Logiciel: Easy CD Creator 5 Basic - (.Roxio Inc.) [HKLM] -- {609F7AC8-C510-11D4-A788-009027ABA5D0}
      O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome ©
      O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C} ©
      O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} ©
      O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} ©
      O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} ©
      O42 - Logiciel: Hotfix for Windows XP (KB954550-v5) - (.Microsoft Corporation.) [HKLM] -- KB954550-v5 ©
      O42 - Logiciel: Hotfix for Windows XP (KB976002-v5) - (.Microsoft Corporation.) [HKLM] -- KB976002-v5 ©
      O42 - Logiciel: HP Customer Participation Program 11.0 - (.HP.) [HKLM] -- HPExtendedCapabilities ©
      O42 - Logiciel: HP Imaging Device Functions 11.0 - (.HP.) [HKLM] -- HP Imaging Device Functions ©
      O42 - Logiciel: HP Photosmart C4400 All-In-One Driver Software 11.0 Rel .3 - (.HP.) [HKLM] -- {86732AE7-CB91-4f15-B091-FBA3D3926CD6} ©
      O42 - Logiciel: HP Photosmart Essential 3.0 - (.HP.) [HKLM] -- HP Photosmart Essential ©
      O42 - Logiciel: HP Smart Web Printing 4.60 - (.HP.) [HKLM] -- HP Smart Web Printing ©
      O42 - Logiciel: HP Solution Center 13.0 - (.HP.) [HKLM] -- HP Solution Center & Imaging Support Tools ©
      O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM] -- {DDD5104F-1C44-49EB-9E6B-29EC5D27658B} ©
      O42 - Logiciel: HPDiagnosticAlert - (.Microsoft.) [HKLM] -- {846B5DED-DC8C-4E1A-B5B4-9F5B39A0CACE} ©
      O42 - Logiciel: Intel(R) PRO Network Adapters and Drivers - (...) [HKLM] -- PROSet
      O42 - Logiciel: Intel(R) PROSet - (.Intel.) [HKLM] -- {A790BEB1-BCCF-4EC6-807B-5708B36E8A79} ©
      O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {8E5233E1-7495-44FB-8DEB-4BE906D59619} ©
      O42 - Logiciel: Lecteur Windows Media 11 - (...) [HKLM] -- Windows Media Player
      O42 - Logiciel: Manuel d'utilisation de Creative WebCam Live! Ultra (Français) - (...) [HKLM] -- Manuel d'utilisation de Creative WebCam Live! Ultra French
      O42 - Logiciel: Microsoft Antimalware Service FR-FR Language Pack - (.Microsoft Corporation.) [HKLM] -- {32E9C1A5-0FDA-4483-987D-DBABF9CC1DD8} ©
      O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570} ©
      O42 - Logiciel: Microsoft Compression Client Pack 1.0 for Windows XP - (.Microsoft Corporation.) [HKLM] -- MSCompPackV1 ©
      O42 - Logiciel: Microsoft Data Access Components KB870669 - (.Microsoft Corporation.) [HKLM] -- KB870669 ©
      O42 - Logiciel: Microsoft Internationalized Domain Names Mitigation APIs - (.Microsoft Corporation.) [HKLM] -- IDNMitigationAPIs ©
      O42 - Logiciel: Microsoft National Language Support Downlevel APIs - (.Microsoft Corporation.) [HKLM] -- NLSDownlevelMapping ©
      O42 - Logiciel: Microsoft Security Client FR-FR Language Pack - (.Microsoft Corporation.) [HKLM] -- {50779A29-834E-4E36-BBEB-B7CABC67A825} ©
      O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} ©
      O42 - Logiciel: Microsoft Sync Framework Runtime Native v1.0 (x86) - (.Microsoft Corporation.) [HKLM] -- {8A74E887-8F0F-4017-AF53-CBA42211AAA5} ©
      O42 - Logiciel: Microsoft Sync Framework Services Native v1.0 (x86) - (.Microsoft Corporation.) [HKLM] -- {BD64AF4A-8C80-4152-AD77-FCDDF05208AB} ©
      O42 - Logiciel: Microsoft User-Mode Driver Framework Feature Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- Wudf01000 ©
      O42 - Logiciel: Microsoft Works 7.0 - (.Microsoft Corporation.) [HKLM] -- {64D114CE-4234-45C2-B60A-2B07D5A48F72} ©
      O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94} ©
      O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} ©
      O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} ©
      O42 - Logiciel: NVIDIA Display Driver - (...) [HKLM] -- NVIDIA Display Driver
      O42 - Logiciel: NVIDIA Windows 2000/XP Display Drivers - (...) [HKLM] -- NVIDIA
      O42 - Logiciel: Paint Shop Pro 7 - (.Jasc Software Inc.) [HKLM] -- {D6DE02C7-1F47-11D4-9515-00105AE4B89A} ©
      O42 - Logiciel: PowerDVD - (...) [HKLM] -- {6811CAA0-BF12-11D4-9EA1-0050BAE317E1}
      O42 - Logiciel: Segoe UI - (.Microsoft Corp.) [HKLM] -- {A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7} ©
      O42 - Logiciel: Skype Click to Call - (.Skype Technologies S.A..) [HKLM] -- {B6CF2967-C81E-40C0-9815-C05774FEF120} ©
      O42 - Logiciel: Skype(TM) 7.12 - (.Skype Technologies S.A..) [HKLM] -- {6A0549A9-1B96-498C-ACBC-3943001FEB19} ©
      O42 - Logiciel: Spybot - Search & Destroy 1.4 - (.Safer Networking Ltd..) [HKLM] -- Spybot - Search & Destroy_is1 ©
      O42 - Logiciel: Windows Genuine Advantage Notifications (KB905474) - (.Microsoft Corporation.) [HKLM] -- WgaNotify ©
      O42 - Logiciel: Windows Genuine Advantage Validation Tool (KB892130) - (.Microsoft Corporation.) [HKLM] -- KB892130 ©
      O42 - Logiciel: Windows Internet Explorer 7 - (.Microsoft Corporation.) [HKLM] -- ie7 ©
      O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8 ©
      O42 - Logiciel: Windows Media Format 11 runtime - (...) [HKLM] -- Windows Media Format Runtime
      O42 - Logiciel: Windows Media Format 11 runtime - (.Microsoft Corporation.) [HKLM] -- WMFDist11 ©
      O42 - Logiciel: Windows Media Player 11 - (.Microsoft Corporation.) [HKLM] -- wmp11 ©
      O42 - Logiciel: Windows XP Service Pack 3 - (.Microsoft Corporation.) [HKLM] -- Windows XP Service ©
      O42 - Logiciel: ZHPFix 2015 - (.Nicolas Coolman.) [HKLM] -- ZHPFix_is1 ©

      ---\\ HKCU & HKLM Software Keys (96) - 17s
      HKLM\SOFTWARE\Adaptec
      HKLM\SOFTWARE\Adobe
      HKLM\SOFTWARE\AdwCleaner
      HKLM\SOFTWARE\ALWIL Software
      HKLM\SOFTWARE\America Online
      HKLM\SOFTWARE\AVAST Software
      HKLM\SOFTWARE\C07ft5Y
      HKLM\SOFTWARE\Canon_Inc_IC
      HKLM\SOFTWARE\CDDB
      HKLM\SOFTWARE\Creative Tech
      HKLM\SOFTWARE\CyberLink
      HKLM\SOFTWARE\Data Store
      HKLM\SOFTWARE\Dell
      HKLM\SOFTWARE\Dell Computer
      HKLM\SOFTWARE\ED2000Sp
      HKLM\SOFTWARE\FRANCE TELECOM
      HKLM\SOFTWARE\Gemplus
      HKLM\SOFTWARE\Google
      HKLM\SOFTWARE\Grisoft
      HKLM\SOFTWARE\Hewlett-Packard
      HKLM\SOFTWARE\HP
      HKLM\SOFTWARE\I.R.I.S.
      HKLM\SOFTWARE\ICE
      HKLM\SOFTWARE\IM Providers
      HKLM\SOFTWARE\InstalledOptions
      HKLM\SOFTWARE\InstallShield
      HKLM\SOFTWARE\Intel
      HKLM\SOFTWARE\Jasc
      HKLM\SOFTWARE\JavaSoft
      HKLM\SOFTWARE\L&H
      HKLM\SOFTWARE\Lake
      HKLM\SOFTWARE\Lexmark
      HKLM\SOFTWARE\Macromedia
      HKLM\SOFTWARE\McAfee.com
      HKLM\SOFTWARE\Mozilla
      HKLM\SOFTWARE\mozilla.org
      HKLM\SOFTWARE\MozillaPlugins
      HKLM\SOFTWARE\NVIDIA Corporation
      HKLM\SOFTWARE\ODBC
      HKLM\SOFTWARE\Piriform
      HKLM\SOFTWARE\Program Groups
      HKLM\SOFTWARE\RegisteredApplications
      HKLM\SOFTWARE\rising
      HKLM\SOFTWARE\Roxio
      HKLM\SOFTWARE\Schlumberger
      HKLM\SOFTWARE\Secure
      HKLM\SOFTWARE\Skype
      HKLM\SOFTWARE\Softwin
      HKLM\SOFTWARE\Symantec
      HKLM\SOFTWARE\Windows 3.1 Migration Status
      HKLM\SOFTWARE\Xing Technology Corp.
      HKLM\SOFTWARE\Zone Labs
      HKCU\SOFTWARE\3rd Eye Solutions
      HKCU\SOFTWARE\Adaptec
      HKCU\SOFTWARE\Adobe
      HKCU\SOFTWARE\ALWIL Software
      HKCU\SOFTWARE\AppDataLow
      HKCU\SOFTWARE\Apple Computer, Inc.
      HKCU\SOFTWARE\AVAST Software
      HKCU\SOFTWARE\Citrix
      HKCU\SOFTWARE\CoSoSys
      HKCU\SOFTWARE\Creative Tech
      HKCU\SOFTWARE\CyberLink
      HKCU\SOFTWARE\Deluxe Tree
      HKCU\SOFTWARE\EasyBits
      HKCU\SOFTWARE\FRANCE TELECOM
      HKCU\SOFTWARE\Google
      HKCU\SOFTWARE\Grisoft
      HKCU\SOFTWARE\Hewlett-Packard
      HKCU\SOFTWARE\IM Providers
      HKCU\SOFTWARE\ImageViewer
      HKCU\SOFTWARE\IncrediMail
      HKCU\SOFTWARE\Intel
      HKCU\SOFTWARE\InterTrust
      HKCU\SOFTWARE\Iris
      HKCU\SOFTWARE\Jasc
      HKCU\SOFTWARE\Laconic Software
      HKCU\SOFTWARE\Lake
      HKCU\SOFTWARE\Local AppWizard-Generated Applications
      HKCU\SOFTWARE\Macromedia
      HKCU\SOFTWARE\Mozilla
      HKCU\SOFTWARE\MozillaPlugins
      HKCU\SOFTWARE\Netscape
      HKCU\SOFTWARE\Novell
      HKCU\SOFTWARE\NVIDIA Corporation
      HKCU\SOFTWARE\ODBC
      HKCU\SOFTWARE\PepiMK Software
      HKCU\SOFTWARE\Piriform
      HKCU\SOFTWARE\RealNetworks
      HKCU\SOFTWARE\Rising
      HKCU\SOFTWARE\Skype
      HKCU\SOFTWARE\Yahoo
      HKCU\SOFTWARE\yahooinstall
      HKCU\SOFTWARE\ZebHelpProcess Helper
      HKCU\SOFTWARE\fAfvfSfP [fVf#f" fEfBfU [fh'Å ¶ ¬'³'ê'½f [fJf< fAfvfSfP [fVf#f"
      HKCU\SOFTWARE\AppDataLow\Software

      ---\\ Contenu des dossiers Programmes (167) - 13s
      O43 - CFD: 11/04/2013 - [] D -- C:\Program Files\Adobe
      O43 - CFD: 11/05/2010 - [] D -- C:\Program Files\Alwil Software
      O43 - CFD: 25/05/2012 - [] D -- C:\Program Files\CCleaner
      O43 - CFD: 15/11/2013 - [] D -- C:\Program Files\Citrix
      O43 - CFD: 05/01/2004 - [] D -- C:\Program Files\Common Files
      O43 - CFD: 26/07/2003 - [0] D -- C:\Program Files\ComPlus Applications
      O43 - CFD: 02/07/2006 - [] D -- C:\Program Files\Creative
      O43 - CFD: 26/07/2003 - [] D -- C:\Program Files\CyberLink
      O43 - CFD: 26/07/2003 - [] D -- C:\Program Files\Dell
      O43 - CFD: 26/07/2003 - [] D -- C:\Program Files\Dell Computer
      O43 - CFD: 25/05/2012 - [] D -- C:\Program Files\eMule
      O43 - CFD: 16/11/2015 - [] D -- C:\Program Files\Fichiers communs
      O43 - CFD: 07/02/2010 - [] D -- C:\Program Files\Google
      O43 - CFD: 16/01/2009 - [0] D -- C:\Program Files\Hewlett-Packard
      O43 - CFD: 16/11/2015 - [] D -- C:\Program Files\HP
      O43 - CFD: 25/05/2012 - [] HD -- C:\Program Files\InstallShield Installation Information
      O43 - CFD: 26/07/2003 - [] D -- C:\Program Files\Intel
      O43 - CFD: 08/04/2014 - [] D -- C:\Program Files\Internet Explorer
      O43 - CFD: 26/07/2003 - [] D -- C:\Program Files\Jasc Software Inc
      O43 - CFD: 07/10/2006 - [0] D -- C:\Program Files\Masta
      O43 - CFD: 06/09/2008 - [] D -- C:\Program Files\Messenger
      O43 - CFD: 25/05/2012 - [] D -- C:\Program Files\Microsoft
      O43 - CFD: 26/07/2003 - [] D -- C:\Program Files\microsoft frontpage
      O43 - CFD: 24/07/2014 - [] D -- C:\Program Files\Microsoft Silverlight
      O43 - CFD: 23/03/2009 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition
      O43 - CFD: 23/03/2009 - [] D -- C:\Program Files\Microsoft Sync Framework
      O43 - CFD: 26/07/2003 - [] D -- C:\Program Files\Microsoft Works
      O43 - CFD: 11/08/2010 - [] D -- C:\Program Files\Movie Maker
      O43 - CFD: 14/09/2014 - [] D -- C:\Program Files\Mozilla Firefox
      O43 - CFD: 07/10/2006 - [0] D -- C:\Program Files\mp3
      O43 - CFD: 09/08/2009 - [] D -- C:\Program Files\MSBuild
      O43 - CFD: 26/07/2003 - [] D -- C:\Program Files\MSN
      O43 - CFD: 26/07/2003 - [] D -- C:\Program Files\MSN Gaming Zone
      O43 - CFD: 17/01/2009 - [0] D -- C:\Program Files\MSXML 4.0
      O43 - CFD: 06/09/2008 - [] D -- C:\Program Files\NetMeeting
      O43 - CFD: 26/07/2003 - [] D -- C:\Program Files\Nullsoft
      O43 - CFD: 16/12/2010 - [] D -- C:\Program Files\Outlook Express
      O43 - CFD: 12/12/2010 - [] D -- C:\Program Files\Panasonic
      O43 - CFD: 26/07/2003 - [] D -- C:\Program Files\Real
      O43 - CFD: 09/08/2009 - [] D -- C:\Program Files\Reference Assemblies
      O43 - CFD: 16/11/2015 - [] D -- C:\Program Files\Rising
      O43 - CFD: 26/07/2003 - [] D -- C:\Program Files\Roxio
      O43 - CFD: 26/07/2003 - [] D -- C:\Program Files\Services en ligne
      O43 - CFD: 28/10/2015 - [] RD -- C:\Program Files\Skype
      O43 - CFD: 27/08/2007 - [] D -- C:\Program Files\Spybot - Search & Destroy
      O43 - CFD: 11/07/2004 - [] HD -- C:\Program Files\Uninstall Information
      O43 - CFD: 07/10/2006 - [] D -- C:\Program Files\Wanadoo
      O43 - CFD: 01/05/2013 - [] D -- C:\Program Files\Windows Live
      O43 - CFD: 23/03/2009 - [] D -- C:\Program Files\Windows Live SkyDrive
      O43 - CFD: 07/07/2009 - [] D -- C:\Program Files\Windows Media Connect 2
      O43 - CFD: 07/07/2009 - [] D -- C:\Program Files\Windows Media Player
      O43 - CFD: 06/09/2008 - [] D -- C:\Program Files\Windows NT
      O43 - CFD: 04/09/2004 - [] HD -- C:\Program Files\WindowsUpdate
      O43 - CFD: 26/07/2003 - [] D -- C:\Program Files\XEROX
      O43 - CFD: 02/07/2006 - [] D -- C:\Program Files\Yahoo!
      O43 - CFD: 16/11/2015 - [] D -- C:\Program Files\ZHPFix
      O43 - CFD: 16/01/2009 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires
      O43 - CFD: 25/05/2012 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CCleaner
      O43 - CFD: 07/10/2006 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Creative
      O43 - CFD: 26/07/2003 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CyberLink PowerDVD
      O43 - CFD: 21/01/2007 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Dell Picture Studio
      O43 - CFD: 09/11/2014 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
      O43 - CFD: 11/01/2013 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Google Chrome
      O43 - CFD: 16/11/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HP
      O43 - CFD: 26/07/2003 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Intel Network Adapters
      O43 - CFD: 26/07/2003 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux
      O43 - CFD: 23/07/2014 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Silverlight
      O43 - CFD: 26/07/2003 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Works
      O43 - CFD: 26/07/2003 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration
      O43 - CFD: 12/12/2010 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Panasonic
      O43 - CFD: 16/11/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Rising Antivirus
      O43 - CFD: 26/07/2003 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Roxio Easy CD Creator 5
      O43 - CFD: 28/10/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Skype
      O43 - CFD: 07/10/2006 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Spybot - Search & Destroy
      O43 - CFD: 07/10/2006 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Wanadoo
      O43 - CFD: 01/05/2013 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Windows Live
      O43 - CFD: 16/11/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ZHP
      O43 - CFD: 25/05/2012 - [0] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ZoneAlarm
      O43 - CFD: 15/04/2013 - [] D -- C:\Documents and Settings\All Users\Application Data\Adobe
      O43 - CFD: 13/08/2010 - [] D -- C:\Documents and Settings\All Users\Application Data\Alwil Software
      O43 - CFD: 16/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\AVAST Software
      O43 - CFD: 11/01/2004 - [0] D -- C:\Documents and Settings\All Users\Application Data\AVG7
      O43 - CFD: 24/12/2013 - [] D -- C:\Documents and Settings\All Users\Application Data\Canon_Inc_IC
      O43 - CFD: 18/06/2011 - [] D -- C:\Documents and Settings\All Users\Application Data\Easybits GO
      O43 - CFD: 03/12/2009 - [] D -- C:\Documents and Settings\All Users\Application Data\Google
      O43 - CFD: 16/01/2009 - [] D -- C:\Documents and Settings\All Users\Application Data\Hewlett-Packard
      O43 - CFD: 17/02/2010 - [] D -- C:\Documents and Settings\All Users\Application Data\HP
      O43 - CFD: 17/02/2010 - [] D -- C:\Documents and Settings\All Users\Application Data\HP Product Assistant
      O43 - CFD: 25/01/2009 - [] D -- C:\Documents and Settings\All Users\Application Data\IM
      O43 - CFD: 25/01/2009 - [] D -- C:\Documents and Settings\All Users\Application Data\IncrediMail
      O43 - CFD: 02/01/2013 - [] D -- C:\Documents and Settings\All Users\Application Data\McAfee
      O43 - CFD: 25/05/2012 - [] SD -- C:\Documents and Settings\All Users\Application Data\Microsoft
      O43 - CFD: 30/04/2012 - [] D -- C:\Documents and Settings\All Users\Application Data\Mozilla
      O43 - CFD: 06/08/2003 - [] D -- C:\Documents and Settings\All Users\Application Data\MSN6
      O43 - CFD: 07/02/2010 - [] D -- C:\Documents and Settings\All Users\Application Data\Real
      O43 - CFD: 16/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Rising
      O43 - CFD: 26/07/2003 - [] D -- C:\Documents and Settings\All Users\Application Data\SBSI
      O43 - CFD: 28/10/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Skype
      O43 - CFD: 14/06/2011 - [] D -- C:\Documents and Settings\All Users\Application Data\Skype Extras
      O43 - CFD: 07/10/2006 - [] D -- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
      O43 - CFD: 07/10/2006 - [] D -- C:\Documents and Settings\All Users\Application Data\Symantec
      O43 - CFD: 16/01/2009 - [] D -- C:\Documents and Settings\All Users\Application Data\WEBREG
      O43 - CFD: 06/12/2006 - [] D -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
      O43 - CFD: 13/12/2009 - [0] D -- C:\Documents and Settings\All Users\Application Data\WinZip
      O43 - CFD: 02/06/2008 - [] D -- C:\Documents and Settings\All Users\Application Data\WLInstaller
      O43 - CFD: 26/07/2003 - [] D -- C:\Program Files\Fichiers communs\Adaptec Shared
      O43 - CFD: 11/04/2013 - [] D -- C:\Program Files\Fichiers communs\Adobe
      O43 - CFD: 26/07/2003 - [] D -- C:\Program Files\Fichiers communs\AOL
      O43 - CFD: 24/12/2013 - [] D -- C:\Program Files\Fichiers communs\Canon_Inc_IC
      O43 - CFD: 16/01/2009 - [] D -- C:\Program Files\Fichiers communs\Hewlett-Packard
      O43 - CFD: 16/01/2009 - [] D -- C:\Program Files\Fichiers communs\HP
      O43 - CFD: 02/07/2006 - [] D -- C:\Program Files\Fichiers communs\InstallShield
      O43 - CFD: 16/06/2011 - [] D -- C:\Program Files\Fichiers communs\Microsoft Shared
      O43 - CFD: 26/07/2003 - [] D -- C:\Program Files\Fichiers communs\MSSoap
      O43 - CFD: 26/07/2003 - [] D -- C:\Program Files\Fichiers communs\ODBC
      O43 - CFD: 21/11/2010 - [] D -- C:\Program Files\Fichiers communs\Real
      O43 - CFD: 26/07/2003 - [] D -- C:\Program Files\Fichiers communs\Services
      O43 - CFD: 28/10/2015 - [] D -- C:\Program Files\Fichiers communs\Skype
      O43 - CFD: 07/10/2006 - [] D -- C:\Program Files\Fichiers communs\Softwin
      O43 - CFD: 26/07/2003 - [] D -- C:\Program Files\Fichiers communs\SpeechEngines
      O43 - CFD: 07/10/2006 - [] D -- C:\Program Files\Fichiers communs\Symantec Shared
      O43 - CFD: 06/09/2008 - [] D -- C:\Program Files\Fichiers communs\System
      O43 - CFD: 23/03/2009 - [] D -- C:\Program Files\Fichiers communs\Windows Live
      O43 - CFD: 02/06/2008 - [] SHDC -- C:\Program Files\Fichiers communs\WindowsLiveInstaller
      O43 - CFD: 13/04/2013 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\Adobe
      O43 - CFD: 10/02/2004 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\AVG7
      O43 - CFD: 24/12/2013 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\canon
      O43 - CFD: 24/12/2013 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\Canon_Inc_IC
      O43 - CFD: 02/07/2006 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\Creative
      O43 - CFD: 03/09/2003 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\CyberLink
      O43 - CFD: 25/05/2012 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\go
      O43 - CFD: 26/11/2006 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\Google
      O43 - CFD: 08/08/2003 - [0] D -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\Help
      O43 - CFD: 03/04/2009 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\HP
      O43 - CFD: 17/03/2011 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\HpUpdate
      O43 - CFD: 26/07/2003 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\Identities
      O43 - CFD: 01/04/2007 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\Jasc
      O43 - CFD: 02/07/2006 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\Macromedia
      O43 - CFD: 13/04/2013 - [] SD -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\Microsoft
      O43 - CFD: 27/08/2008 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\Mozilla
      O43 - CFD: 04/05/2007 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\MSN6
      O43 - CFD: 30/04/2011 - [0] D -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\Orange
      O43 - CFD: 21/11/2010 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\Real
      O43 - CFD: 28/10/2015 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\Skype
      O43 - CFD: 18/06/2011 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\skypePM
      O43 - CFD: 26/07/2003 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\Symantec
      O43 - CFD: 25/08/2003 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\Template
      O43 - CFD: 08/07/2006 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\Yahoo! Messenger
      O43 - CFD: 16/11/2015 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\ZHP
      O43 - CFD: 15/08/2014 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Local Settings\Application Data\Adobe
      O43 - CFD: 01/12/2014 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Local Settings\Application Data\Apple Computer
      O43 - CFD: 15/11/2013 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Local Settings\Application Data\Citrix
      O43 - CFD: 30/08/2003 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Local Settings\Application Data\Dell
      O43 - CFD: 13/09/2015 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Local Settings\Application Data\Google
      O43 - CFD: 08/08/2003 - [0] D -- C:\Documents and Settings\POUPEAU PATRICK\Local Settings\Application Data\Help
      O43 - CFD: 16/02/2009 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Local Settings\Application Data\HP
      O43 - CFD: 17/01/2004 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Local Settings\Application Data\Identities
      O43 - CFD: 25/01/2009 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Local Settings\Application Data\IM
      O43 - CFD: 26/01/2014 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Local Settings\Application Data\Microsoft
      O43 - CFD: 07/10/2006 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Local Settings\Application Data\Mozilla
      O43 - CFD: 09/02/2008 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Local Settings\Application Data\PCHealth
      O43 - CFD: 07/02/2010 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Local Settings\Application Data\Real
      O43 - CFD: 01/06/2014 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Local Settings\Application Data\Skype
      O43 - CFD: 25/04/2011 - [0] D -- C:\Documents and Settings\POUPEAU PATRICK\Local Settings\Application Data\Temp
      O43 - CFD: 06/08/2011 - [] D -- C:\Documents and Settings\POUPEAU PATRICK\Local Settings\Application Data\YesMessenger
      O43 - CFD: 06/12/2006 - [] RD -- C:\Documents and Settings\POUPEAU PATRICK\Menu Démarrer\Programmes\Accessoires
      O43 - CFD: 25/05/2012 - [] RD -- C:\Documents and Settings\POUPEAU PATRICK\Menu Démarrer\Programmes\Démarrage

      ---\\ ShellIconOverlayIdentifiers (SIOI) (1) - 0s
      O106 - SIOI: Offline Files Menu [Offline Files] - {750fdf0e-2a26-11d1-a3ea-080036587f03}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\SYSTEM32\cscui.dll ©

      ---\\ Liste des pilotes du système (113) - 8s
      O58 - SDL:2002/04/01 13:15:00 A . (.Andrea Electronics Corporation - Andrea Audio Stub Driver.) -- C:\WINDOWS\System32\drivers\aeaudio.sys [4816] ©
      O58 - SDL:2001/08/17 21:51:56 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\WINDOWS\System32\drivers\ALIIDE.SYS [5248] ©
      O58 - SDL:2008/04/13 19:36:39 A . (.Advanced Micro Devices, Inc. - AMD Win2000 AGP Filter.) -- C:\WINDOWS\System32\drivers\amdagp.sys [43008] ©
      O58 - SDL:2001/08/17 21:52:00 A . (.Advanced System Products, Inc. - AdvanSys SCSI Controller Driver.) -- C:\WINDOWS\System32\drivers\ASC.SYS [26496]
      O58 - SDL:2001/08/17 21:51:58 A . (.Advanced System Products, Inc. - AdvanSys Ultra-Wide PCI SCSI Driver.) -- C:\WINDOWS\System32\drivers\ASC3550.SYS [14848]
      O58 - SDL:2004/08/04 06:29:29 N . (.ATI Technologies Inc. - ATI WDM BT829 MiniDriver (A).) -- C:\WINDOWS\System32\drivers\ati1btxx.sys [56623] ©
      O58 - SDL:2004/08/04 06:29:29 N . (.ATI Technologies Inc. - ATI Specialized MVD VBI Codec.) -- C:\WINDOWS\System32\drivers\ati1mdxx.sys [11615] ©
      O58 - SDL:2004/08/04 06:29:29 N . (.ATI Technologies Inc. - ATI Specialized PCD VBI Codec.) -- C:\WINDOWS\System32\drivers\ati1pdxx.sys [12047] ©
      O58 - SDL:2004/08/04 06:29:30 N . (.ATI Technologies Inc. - ATI Rage Theater Audio WDM Minidriver.) -- C:\WINDOWS\System32\drivers\ati1raxx.sys [30671] ©
      O58 - SDL:2004/08/04 06:29:30 N . (.ATI Technologies Inc. - ATI WDM Rage Theater MiniDriver.) -- C:\WINDOWS\System32\drivers\ati1rvxx.sys [63663] ©
      O58 - SDL:2004/08/04 06:29:31 N . (.ATI Technologies Inc. - ATI WDM TV Sound MiniDriver.) -- C:\WINDOWS\System32\drivers\ati1snxx.sys [26367] ©
      O58 - SDL:2004/08/04 06:29:31 N . (.ATI Technologies Inc. - ATI WDM Teletext Decoder.) -- C:\WINDOWS\System32\drivers\ati1ttxx.sys [21343] ©
      O58 - SDL:2004/08/04 06:29:31 N . (.ATI Technologies Inc. - ATI WDM TVTuner MiniDriver.) -- C:\WINDOWS\System32\drivers\ati1tuxx.sys [36463] ©
      O58 - SDL:2004/08/04 06:29:31 N . (.ATI Technologies Inc. - ATI WDM CrossBar MiniDriver.) -- C:\WINDOWS\System32\drivers\ati1xbxx.sys [29455] ©
      O58 - SDL:2004/08/04 06:29:31 N . (.ATI Technologies Inc. - ATI WDM TVAUDIO_CrossBar MiniDriver.) -- C:\WINDOWS\System32\drivers\ati1xsxx.sys [34735] ©
      O58 - SDL:2004/08/19 23:53:38 N . (.ATI Technologies Inc. - Pilote de miniport ATI RAGE 128.) -- C:\WINDOWS\System32\drivers\ati2mtaa.sys [327168] ©
      O58 - SDL:2004/08/19 23:53:40 N . (.ATI Technologies Inc. - Pilote de miniport ATI RAGE 128.) -- C:\WINDOWS\System32\drivers\ati2mtag.sys [701440] ©
      O58 - SDL:2004/08/04 06:29:27 N . (.ATI Technologies Inc. - ATI WDM BT829 MiniDriver (A).) -- C:\WINDOWS\System32\drivers\atinbtxx.sys [57856] ©
      O58 - SDL:2004/08/04 06:29:28 N . (.ATI Technologies Inc. - ATI Specialized MVD VBI Codec RT2.) -- C:\WINDOWS\System32\drivers\atinmdxx.sys [13824] ©
      O58 - SDL:2004/08/04 06:29:29 N . (.ATI Technologies Inc. - ATI Specialized PCD VBI Codec RT2.) -- C:\WINDOWS\System32\drivers\atinpdxx.sys [14336] ©
      O58 - SDL:2004/08/04 06:29:29 N . (.ATI Technologies Inc. - ATI Rage Theater Audio WDM Minidriver.) -- C:\WINDOWS\System32\drivers\atinraxx.sys [52224] ©
      O58 - SDL:2004/08/04 06:29:30 N . (.ATI Technologies Inc. - ATI WDM Rage Theater MiniDriver RT2.) -- C:\WINDOWS\System32\drivers\atinrvxx.sys [104960] ©
      O58 - SDL:2004/08/04 06:29:30 N . (.ATI Technologies Inc. - ATI WDM TV Sound MiniDriver.) -- C:\WINDOWS\System32\drivers\atinsnxx.sys [28672] ©
      O58 - SDL:2004/08/04 06:29:30 N . (.ATI Technologies Inc. - ATI WDM Teletext Decoder.) -- C:\WINDOWS\System32\drivers\atinttxx.sys [13824] ©
      O58 - SDL:2004/08/04 06:29:31 N . (.ATI Technologies Inc. - ATI WDM TVTuner MiniDriver.) -- C:\WINDOWS\System32\drivers\atintuxx.sys [73216] ©
      O58 - SDL:2004/08/04 06:29:31 N . (.ATI Technologies Inc. - ATI WDM CrossBar MiniDriver.) -- C:\WINDOWS\System32\drivers\atinxbxx.sys [31744] ©
      O58 - SDL:2004/08/04 06:29:31 N . (.ATI Technologies Inc. - ATI WDM TVAUDIO_CrossBar MiniDriver RT2.) -- C:\WINDOWS\System32\drivers\atinxsxx.sys [63488] ©
      O58 - SDL:2002/12/17 12:32:58 A . (.Roxio - CDR4_XP CDR Helper.) -- C:\WINDOWS\System32\drivers\cdr4_xp.sys [61424] ©
      O58 - SDL:2002/12/17 12:32:46 A . (.Roxio - CDRAL for Windows 2000 Kernel Driver.) -- C:\WINDOWS\System32\drivers\cdralw2k.sys [23436] ©
      O58 - SDL:2002/12/17 12:27:32 A . (.Roxio - CD-UDF NT Filesystem Driver.) -- C:\WINDOWS\System32\drivers\cdudf_xp.sys [241152] ©
      O58 - SDL:2002/08/30 07:00:00 A . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\System32\drivers\CINEMST2.SYS [262528] ©
      O58 - SDL:2001/08/23 17:04:44 A . (.CMD Technology, Inc. - Pilote de bus PCI IDE CMD.) -- C:\WINDOWS\System32\drivers\CMDIDE.SYS [6656] ©
      O58 - SDL:2002/08/30 07:00:00 A . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\System32\drivers\CPQDAP01.SYS [11776] ©
      O58 - SDL:2001/08/17 21:52:16 A . (.Mylex Corporation - Mylex Disk Array Controller Driver.) -- C:\WINDOWS\System32\drivers\DAC2W2K.SYS [179584]
      O58 - SDL:2008/04/14 03:05:07 A . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- C:\WINDOWS\System32\drivers\dmboot.sys [800256] ©
      O58 - SDL:2008/04/14 03:05:12 A . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\System32\drivers\dmio.sys [154496] ©
      O58 - SDL:2002/08/30 07:00:00 A . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\System32\drivers\DMLOAD.SYS [5888] ©
      O58 - SDL:2003/07/26 07:29:38 A . (.Roxio - DVD-RAM AddOn Driver.) -- C:\WINDOWS\System32\drivers\Dvd_2k.sys [25898] ©
      O58 - SDL:2003/03/04 11:56:26 A . (.Intel Corporation - Intel(R) PRO/100 Adapter NDIS 5.1 driver.) -- C:\WINDOWS\System32\drivers\e100b325.sys [145408] ©
      O58 - SDL:2001/08/17 20:11:06 A . (.3Com Corporation - 3Com EtherLink PCI Driver.) -- C:\WINDOWS\System32\drivers\EL90XBC5.SYS [66591]
      O58 - SDL:2008/04/13 17:36:05 N . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [144384]
      O58 - SDL:2015/11/16 12:42:40 N . (.Beijing Rising Information Technology Co., Ltd. - HookHelp.sys.) -- C:\WINDOWS\System32\drivers\HookHelp.sys [38424] ©
      O58 - SDL:2015/11/16 12:42:42 N . (.Beijing Rising Information Technology Co., Ltd. - Hooksys.sys.) -- C:\WINDOWS\System32\drivers\Hooksys.sys [168600] ©
      O58 - SDL:2015/11/16 12:42:46 N . (.Beijing Rising Information Technology Co., Ltd. - hooktdi.sys.) -- C:\WINDOWS\System32\drivers\HookTdi.sys [23576] ©
      O58 - SDL:2008/01/24 23:25:07 RA . (.HP - IEEE-1284.4-1999 Driver (Windows 2000).) -- C:\WINDOWS\System32\drivers\HPZid412.sys [49920] ©
      O58 - SDL:2008/01/24 23:25:08 RA . (.HP - IEEE-1284.4-1999 Print Class Driver.) -- C:\WINDOWS\System32\drivers\HPZipr12.sys [16496] ©
      O58 - SDL:2008/01/24 23:25:09 RA . (.HP - 1284.4<->Usb Datalink Driver (Windows 2000).) -- C:\WINDOWS\System32\drivers\HPZius12.sys [21568] ©
      O58 - SDL:2004/08/04 06:41:46 N . (.Conexant Systems, Inc. - HSF_HWB2 WDM driver.) -- C:\WINDOWS\System32\drivers\hsfbs2s2.sys [220032] ©
      O58 - SDL:2004/08/04 06:41:48 N . (.Conexant Systems, Inc. - HSF_CNXT driver.) -- C:\WINDOWS\System32\drivers\hsfcxts2.sys [685056] ©
      O58 - SDL:2004/08/04 06:41:54 N . (.Conexant Systems, Inc. - HSF_DP driver.) -- C:\WINDOWS\System32\drivers\hsfdpsp2.sys [1041536] ©
      O58 - SDL:2015/11/16 12:43:36 N . (.Beijing Rising Information Technology Co., Ltd. - VM Monitor.) -- C:\WINDOWS\System32\drivers\hvm.sys [31896] ©
      O58 - SDL:2003/03/10 18:10:44 A . (.Intel Corporation - Intel(R) Network Adapter Diagnostic Driver.) -- C:\WINDOWS\System32\drivers\iqvw32.sys [20352] ©
      O58 - SDL:2004/08/04 06:41:55 N . (.Conexant - Diagnostic Interface DRIVER.) -- C:\WINDOWS\System32\drivers\mdmxsdk.sys [11868] ©
      O58 - SDL:2003/07/26 07:29:38 A . (.Roxio - CD-R/RW AddOn MMC Driver (W2K).) -- C:\WINDOWS\System32\drivers\Mmc_2k.sys [30630] ©
      O58 - SDL:2001/08/17 21:52:12 A . (.American Megatrends Inc. - MegaRAID RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MRAID35X.SYS [17280] ©
      O58 - SDL:2004/08/04 06:41:38 N . (.Smart Link - .) -- C:\WINDOWS\System32\drivers\mtlmnt5.sys [126686] ©
      O58 - SDL:2004/08/04 06:41:37 N . (.Smart Link - .) -- C:\WINDOWS\System32\drivers\mtlstrm.sys [1309184] ©
      O58 - SDL:2004/08/04 06:29:36 N . (.Matrox Graphics Inc. - Matrox Parhelia Miniport Driver.) -- C:\WINDOWS\System32\drivers\mtxparhm.sys [452736] ©
      O58 - SDL:2002/08/30 07:00:00 A . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\NIKEDRV.SYS [12032] ©
      O58 - SDL:2004/08/04 06:41:39 N . (.Smart Link - .) -- C:\WINDOWS\System32\drivers\ntmtlfax.sys [180360] ©
      O58 - SDL:2003/10/06 14:16:00 A . (.NVIDIA Corporation - NVIDIA Compatible Windows 2000 Miniport Dri.) -- C:\WINDOWS\System32\drivers\nv4_mini.sys [1550043] ©
      O58 - SDL:2002/11/08 13:45:06 A . (.Dell Computer Corporation - OMCI Device Driver.) -- C:\WINDOWS\System32\drivers\omci.sys [17217] ©
      O58 - SDL:2015/11/16 13:13:16 A . (.Beijing Rising Information Technology Co., Ltd. - protectreg.sys.) -- C:\WINDOWS\System32\drivers\protreg.sys [24120] ©
      O58 - SDL:2002/08/30 07:00:00 A . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- C:\WINDOWS\System32\drivers\PTILINK.SYS [17792] ©
      O58 - SDL:2003/07/26 07:29:38 A . (.Roxio - Win2000 Framework for Packet Write Driver.) -- C:\WINDOWS\System32\drivers\pwd_2K.sys [143834] ©
      O58 - SDL:2001/08/17 21:52:20 A . (.QLogic Corporation - Miniport Driver for QLogic ISP PCI Adapters.) -- C:\WINDOWS\System32\drivers\QL1080.SYS [40320] ©
      O58 - SDL:2001/08/17 21:52:20 A . (.QLogic Corporation - Miniport Driver for QLogic ISP PCI Adapters.) -- C:\WINDOWS\System32\drivers\QL12160.SYS [45312] ©
      O58 - SDL:2001/08/17 21:52:18 A . (.QLogic Corporation - Miniport Driver for QLogic ISP PCI Adapters.) -- C:\WINDOWS\System32\drivers\QL1280.SYS [49024] ©
      O58 - SDL:2004/08/04 06:41:39 N . (.Smart Link - .) -- C:\WINDOWS\System32\drivers\recagent.sys [13776] ©
      O58 - SDL:2002/08/30 07:00:00 A . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\System32\drivers\RIO8DRV.SYS [12032] ©
      O58 - SDL:2002/08/30 07:00:00 A . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\RIODRV.SYS [12032] ©
      O58 - SDL:2004/08/04 06:29:51 N . (.S3 Graphics, Inc. - S3 ProSavage(DDR) & Twister Miniport Driver.) -- C:\WINDOWS\System32\drivers\s3gnbm.sys [166912] ©
      O58 - SDL:2007/11/13 11:25:54 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [20480] ©
      O58 - SDL:2008/04/13 19:36:39 A . (.Silicon Integrated Systems Corporation - SiS NT AGP Filter.) -- C:\WINDOWS\System32\drivers\sisagp.sys [40960] ©
      O58 - SDL:2004/08/04 06:41:40 N . (.Smart Link - .) -- C:\WINDOWS\System32\drivers\slnt7554.sys [129535] ©
      O58 - SDL:2004/08/04 06:41:42 N . (.Smart Link - .) -- C:\WINDOWS\System32\drivers\slntamr.sys [404990] ©
      O58 - SDL:2004/08/04 06:41:44 N . (.Smart Link - .) -- C:\WINDOWS\System32\drivers\slnthal.sys [95424] ©
      O58 - SDL:2004/08/04 06:41:45 N . (.Smart Link - .) -- C:\WINDOWS\System32\drivers\slwdmsup.sys [13240] ©
      O58 - SDL:2002/10/28 11:26:06 A . (.Analog Devices, Inc. - SoundMAX Stub Driver.) -- C:\WINDOWS\System32\drivers\smsens.sys [3744] ©
      O58 - SDL:2003/02/28 09:17:18 A . (.Analog Devices, Inc. - SoundMAX Integrated Digital Audio.) -- C:\WINDOWS\System32\drivers\smwdm.sys [545024] ©
      O58 - SDL:2001/08/17 22:07:44 A . (.Adaptec, Inc. - Adaptec AIC-6x60 series SCSI miniport.) -- C:\WINDOWS\System32\drivers\SPARROW.SYS [19072] ©
      O58 - SDL:2001/08/17 22:07:34 A . (.Symbios Logic Inc. - Symbios Logic Inc. SCSI Miniport Driver.) -- C:\WINDOWS\System32\drivers\SYMC810.SYS [16256] ©
      O58 - SDL:2001/08/17 22:07:36 A . (.LSI Logic - Symbios 8XX SCSI Miniport Driver.) -- C:\WINDOWS\System32\drivers\SYMC8XX.SYS [32640] ©
      O58 - SDL:2001/08/17 22:07:40 A . (.LSI Logic - Symbios Hi-Perf SCSI Miniport Driver.) -- C:\WINDOWS\System32\drivers\SYM_HI.SYS [28384] ©
      O58 - SDL:2001/08/17 22:07:42 A . (.LSI Logic - Symbios Ultra3 SCSI Miniport Driver.) -- C:\WINDOWS\System32\drivers\SYM_U3.SYS [30688] ©
      O58 - SDL:2002/08/30 07:00:00 A . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\System32\drivers\TSBVCAP.SYS [21376] ©
      O58 - SDL:2003/07/26 07:29:38 A . (.Roxio - CD-UDF NT Filesystem Reader Driver.) -- C:\WINDOWS\System32\drivers\udfreadr_xp.sys [206464] ©
      O58 - SDL:2001/08/17 21:52:22 A . (.Promise Technology, Inc. - Gestionnaire de miniport ULTRA66 de Promise.) -- C:\WINDOWS\System32\drivers\ULTRA.SYS [36736] ©
      O58 - SDL:2005/01/24 10:26:10 RA . (.Creative Technology Ltd. - Creative Evx Driver.) -- C:\WINDOWS\System32\drivers\V0060Evx.sys [1133578] ©
      O58 - SDL:2004/12/13 14:02:38 RA . (.Creative Technology Ltd. - Video streaming helper driver.) -- C:\WINDOWS\System32\drivers\V0060USB.sys [26560] ©
      O58 - SDL:2005/02/02 09:15:14 RA . (.Creative Technology Ltd. - Video streaming and capture driver.) -- C:\WINDOWS\System32\drivers\V0060Vid.sys [196409] ©
      O58 - SDL:2002/08/30 07:00:00 A . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\System32\drivers\VDMINDVD.SYS [58112] ©
      O58 - SDL:2004/08/04 06:29:38 N . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Gra.) -- C:\WINDOWS\System32\drivers\wadv07nt.sys [11807] ©
      O58 - SDL:2004/08/04 06:29:39 N . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Gra.) -- C:\WINDOWS\System32\drivers\wadv08nt.sys [11295] ©
      O58 - SDL:2004/08/04 06:29:40 N . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Gra.) -- C:\WINDOWS\System32\drivers\wadv09nt.sys [11871] ©
      O58 - SDL:2004/08/04 06:29:40 N . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Gra.) -- C:\WINDOWS\System32\drivers\wadv11nt.sys [11935] ©
      O58 - SDL:2004/08/04 06:29:44 N . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Gra.) -- C:\WINDOWS\System32\drivers\watv06nt.sys [22271] ©
      O58 - SDL:2004/08/04 06:29:45 N . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Gra.) -- C:\WINDOWS\System32\drivers\watv10nt.sys [25471] ©
      O58 - SDL:2002/08/30 07:00:00 A . (...) -- C:\WINDOWS\System32\ANSI.SYS [9037]
      O58 - SDL:2002/08/30 07:00:00 A . (...) -- C:\WINDOWS\System32\COUNTRY.SYS [27097]
      O58 - SDL:2002/08/30 07:00:00 A . (...) -- C:\WINDOWS\System32\HIMEM.SYS [4912]
      O58 - SDL:2002/08/30 07:00:00 A . (...) -- C:\WINDOWS\System32\KEY01.SYS [42809]
      O58 - SDL:2002/08/30 07:00:00 A . (...) -- C:\WINDOWS\System32\KEYBOARD.SYS [42537]
      O58 - SDL:2002/08/30 07:00:00 A . (...) -- C:\WINDOWS\System32\NTDOS.SYS [27916]
      O58 - SDL:2002/08/30 07:00:00 A . (...) -- C:\WINDOWS\System32\NTDOS404.SYS [29146]
      O58 - SDL:2002/08/30 07:00:00 A . (...) -- C:\WINDOWS\System32\NTDOS411.SYS [29370]
      O58 - SDL:2002/08/30 07:00:00 A . (...) -- C:\WINDOWS\System32\NTDOS412.SYS [29274]
      O58 - SDL:2002/08/30 07:00:00 A . (...) -- C:\WINDOWS\System32\NTDOS804.SYS [29146]
      O58 - SDL:2004/08/04 06:45:25 A . (...) -- C:\WINDOWS\System32\ntio.sys [34000]
      O58 - SDL:2004/08/04 06:45:14 A . (...) -- C:\WINDOWS\System32\ntio404.sys [34560]
      O58 - SDL:2004/08/04 06:45:10 A . (...) -- C:\WINDOWS\System32\ntio411.sys [35648]
      O58 - SDL:2004/08/04 06:45:15 A . (...) -- C:\WINDOWS\System32\ntio412.sys [35424]
      O58 - SDL:2004/08/04 06:45:12 A . (...) -- C:\WINDOWS\System32\ntio804.sys [34560]

      ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (1) - 35s
      O61 - LFC: 2015/11/16 16:41:17 A . (.Copyright (C) 2015 Nicolas Coolman.) -- C:\Documents and Settings\POUPEAU PATRICK\Application Data\ZHP\ZHPDiag3.exe [1970176]

      ---\\ Associations Shell Spawning (8) - 0s
      O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (...) -- "%1" %*
      O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\SYSTEM32\shell32.dll ©
      O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (...) -- "%1" %*
      O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] (...) -- "%1" %*
      O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %*
      O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\SYSTEM32\wscript.exe ©
      O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe ©
      O67 - Shell Spawning: <.scr> <scrfile>[HKLM\..\open\Command] (...) -- "%1" /S

      ---\\ Menu de démarrage Internet (10) - 0s
      O68 - StartMenuInternet: <chrome.exe> <>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
      O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
      O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
      O68 - StartMenuInternet: <MSN Explorer> <>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - msn.) -- C:\Program Files\MSN\MSNCoreFiles\MSN6.EXE ©
      O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
      O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\SYSTEM32\ie4uinit.exe ©
      O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
      O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\SYSTEM32\ie4uinit.exe ©
      O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Applicati
      0
  2. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    Je n'utilise pas ZHPDiag,

    Suis le tutoriel FRST.
    (et bien prendre le temps de lire afin d'appliquer correctement - tout y est expliqué).
    Télécharge et lance le scan FRST, cela va générer trois rapports FRST :
    • FRST.txt
    • Shortcut.txt
    • Additionnal.txt


    Envoie, comme expliqué, ces trois rapports sur le site http://pjjoint.malekal.com et en retour donne les trois liens pjjoint qui mènent à ses rapports ici dans une nouvelle réponse afin que l'on puisse les consulter.

    0
    1. marie13010 Messages postés 56 Statut Membre
       
      Ok, super, merci ! J'y vais, je reviens dès que c'est terminé... :)
      0
  3. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    Voici la correction à effectuer avec FRST.
    Tu peux t'inspirer de cette note explicative avec des captures d'écran pour t'aider: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/#fix

    Ouvre le bloc-notes : Touche Windows + R, dans le champs executer, tape notepad et OK.
    Copie/colle dedans ce qui suit :

    (Beijing Rising Information Technology Co., Ltd.) C:\Program Files\Rising\RAV\RavMonD.exe
    (Beijing Rising Information Technology Co., Ltd.) C:\Program Files\Rising\RAV\RsTray.exe
    R2 RsRavMon; C:\Program Files\Rising\RAV\RavMonD.exe [167544 2015-11-16] (Beijing Rising Information Technology Co., Ltd.)
    S2 RsMgrSvc; C:\Program Files\Rising\RSD\RsMgrSvc.exe [X]
    R1 hooksys; C:\WINDOWS\system32\drivers\Hooksys.sys [168600 2015-11-16] (Beijing Rising Information Technology Co., Ltd.)
    R1 HookTdi; C:\WINDOWS\system32\drivers\HookTdi.sys [23576 2015-11-16] (Beijing Rising Information Technology Co., Ltd.)
    R1 HyperVM; C:\WINDOWS\system32\drivers\hvm.sys [31896 2015-11-16] (Beijing Rising Information Technology Co., Ltd.)
    R2 rsdsys; C:\WINDOWS\system32\drivers\protreg.sys [24120 2015-11-16] (Beijing Rising Information Technology Co., Ltd.)
    2015-11-16 13:16 - 2015-11-16 13:13 - 00024120 _____ (Beijing Rising Information Technology Co., Ltd.) C:\WINDOWS\system32\Drivers\protreg.sys
    2015-11-16 12:46 - 2015-11-16 12:46 - 00001718 _____ C:\Documents and Settings\All Users\Bureau\Rising Antivirus.lnk
    2015-11-16 12:46 - 2015-11-16 12:46 - 00000132 __RSH C:\rising.ini
    2015-11-16 12:46 - 2015-11-16 12:46 - 00000000 ____D C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Rising Antivirus
    2015-11-16 12:46 - 2015-11-16 12:42 - 00023576 ____N (Beijing Rising Information Technology Co., Ltd.) C:\WINDOWS\system32\Drivers\HookTdi.sys
    2015-11-16 12:45 - 2015-11-16 12:43 - 00239768 ____N (Beijing Rising Information Technology Co., Ltd.) C:\WINDOWS\system32\bsmain.exe
    2015-11-16 12:45 - 2015-11-16 12:43 - 00234648 ____N (Beijing Rising Information Technology Co., Ltd.) C:\WINDOWS\system32\ravext.dll
    2015-11-16 12:45 - 2015-11-16 12:43 - 00031896 ____N (Beijing Rising Information Technology Co., Ltd.) C:\WINDOWS\system32\Drivers\hvm.sys
    2015-11-16 12:45 - 2015-11-16 12:42 - 00168600 ____N (Beijing Rising Information Technology Co., Ltd.) C:\WINDOWS\system32\Drivers\Hooksys.sys
    2015-11-16 12:45 - 2015-11-16 12:42 - 00038424 ____N (Beijing Rising Information Technology Co., Ltd.) C:\WINDOWS\system32\Drivers\HookHelp.sys
    2015-11-16 12:44 - 2015-11-16 13:57 - 00000000 ____D C:\Program Files\Rising
    2015-11-16 12:44 - 2015-11-16 13:57 - 00000000 ____D C:\Documents and Settings\All Users\Application Data\Rising

    Une fois, le texte collé dans le bloc-note.
    Menu Fichier puis Enregistrer sous.
    A gauche, place toi sur le bureau.
    Dans le champs en bas, nom du fichier mets : fixlist.txt
    Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.

    Relance FRST et clic sur le bouton Corriger / Fix
    Selon comment un redémarrage est nécessaire (pas obligatoire).
    Un fichier texte apparaît, copie/colle le contenu ici dans un nouveau message.

    Redémarre l'ordinateur
    0
    1. marie13010
       
      Bonjour et MERCI BEAUCOUP Malekal.de te casser la tête pour "les autres" !!!

      Alors du coup hier, avant de recevoir ta réponse, j'ai réinstallé "Rising" (pour écraser le premier) et je l'ai désinstallé par "uninstall" du pgm lui-même et ça a marché... Ensuite j'ai dû faire 2 ou 3 manip pour totalement désinstaller le pgm mais le processus a fonctionné.
      J'ai donc encore un petite chose à te demander. Dois-je quand même faire la manip dont tu me parles, avec FIXLIST ou pas la peine...?

      Bien à toi et encore merci !!!

      Marie
      0
      1. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712 > marie13010
         
        fais la correction, ça coûte rien oui.
        0
    2. marie13010
       
      Ok... Un grand et sincère MERCI !!!!!!!!!!!!!!!!!!!!!!!!!!!!! ;)
      0