Ordinateur infecté

Bonjour,
Voilà j'ai un problème sur mon ordinateur, j'ai eu une attaque de virus il y à 2 mois, j'ai reçus la visite de plusieurs chevaux de Troie, de spyware et de malware, que j'ai neutralisé.
Le problème c'est que apparemment il en reste, mon ordinateur rame beaucoup plus qu'avant, et l'ordinateur me refuse certaines actions, comme par exemple "regedit", ou l'installation de certains programmes.
Mon antivirus est Avira Antivir Personal, mais dès que je lance un scan, il bug et s'arrête vers le milieu, et avant il n'a trouvé aucun virus.
Que puis-je faire ? Je ne peux même pas installer certains antivirus !
Merci d'avance.

31 réponses

Résumé de la discussion

Le fil porte sur une machine infectée par divers malwares (trojan, spyware, adware) et des symptômes comme le ralentissement, des blocages d’actions système et des difficultés à lancer des outils. Des solutions proposées incluent Malwarebytes’ Anti‑Malware et MBAM pour des analyses approfondies, ZHPDiag pour détecter les éléments résiduels dans le registre et les chemins persistants, et des rapports à partager. En parallèle, l’utilisation d’outils spécialisés comme TDSSKiller ou TDSS rootkit removal tool permet d’éradiquer les rootkits TDSS, tandis que les rapports collectés (logs et scans) aident à cibler les remèdes. Des échanges évoquent des difficultés techniques comme le message Titre du message non renseigné et des captures de scans, sans garantir une résolution immédiate.

Bobot (l’IA à votre service)
  1. Contributeur sécurité
    Bonjour,

    je n'ai jamais vu un rapport de ZHPFix comme ça.

    Poste les 50 ou 100 premières lignes de

    Fichier d'export Registre : C:\ZHPExportRegistry-01-05-2011-04-30-08.txt

    dans ta réponse.

    Refais tourner ZHPDiag et poste le rapport dans un lien Cijoint;
    0
    1. ZHPFix v1.12.3095 by Nicolas Coolman - Rapport de suppression du 01/05/2011 04:30:07
      Fichier d'export Registre : C:\ZHPExportRegistry-01-05-2011-04-30-08.txt
      Web site : http://www.premiumorange.com/zeb-help-process/zhpfix.html

      ()

      ()

      O64 - Services: CurCS - (.not file.) - 37b29800 (37b29800) .(...) - LEGACY_37B29800 =>
      HKCR\adfavwsqpr.adfavwsqpr =>
      HKCR\adfavwsqpr.adfavwsqpr.1.0 =>
      HKCR\chkavwsqhst.chkavwsqhst =>
      HKCR\chkavwsqhst.chkavwsqhst.1.0 =>
      HKCR\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF =>
      HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF =>

      O4 - HKUS\S-1-5-18\..\Run: [GAGEZ8R8ZB] C:\Windows\TEMP\Wlj.exe (.not file.) =>
      O47 - AAKE:Key Export SP - "C:\Users\karine\Downloads\facebook-pic000934519.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) -- c:\windows\nvsvc32.exe (.not file.) =>

      ()

      ()

      ()

      c:\windows\temp\wlj.exe =>

      ()

      ()

      ()

      PT] [{22116563-108C-42c0-A7CE-60161B75E508}] (.Pas de propriétaire.) -- C:\Windows\TEMP\Wlk.exe (.not file.) =>
      PT] [{62C40AA6-4406-467a-A5A5-DFDF1B559B7A}] (.Pas de propriétaire.) -- C:\Windows\Wmofac.exe (.not file.) =>
      PT] [{BBAEAEAF-1275-40e2-BD6C-BC8F88BD114A}] (.Pas de propriétaire.) -- C:\Windows\TEMP\Wll.exe (.not file.) =>
      O81 - IFC: Internet Feature Controls [HKUS\.DEFAULT] [FEATURE_BROWSER_EMULATION] -- svchost.exe =>
      O81 - IFC: Internet Feature Controls [HKUS\S-1-5-18] [FEATURE_BROWSER_EMULATION] -- svchost.exe =>
      EmptyTemp =>

      0
      0
      7
      2
      0
      0
      1
      0
      0
      0
      6

      End of the scan
      0
      1. Contributeur sécurité
        Re,

        une bonne chose de faite.

        Tu as des toolbars que je te propose d'enlever (au mieux ça transmet,des informations sur tes habitudes de surf). Si tu es d'accord, je te dirai comment faire.

        Déjà, fais ceci :

        Copie dans le Presse-papier les lignes ci-dessous (sélectionne les avec la souris et fais simultanément Ctrl et C)
        O4 - HKUS\S-1-5-18\..\Run: [GAGEZ8R8ZB] C:\Windows\TEMP\Wlj.exe (.not file.)
        O4 - HKUS\S-1-5-18\..\Run: [GAGEZ8R8ZB] C:\Windows\TEMP\Wlj.exe (.not file.)
        [MD5.00000000000000000000000000000000] [APT] [{22116563-108C-42c0-A7CE-60161B75E508}] (.Pas de propriétaire.) -- C:\Windows\TEMP\Wlk.exe (.not file.)
        [MD5.00000000000000000000000000000000] [APT] [{62C40AA6-4406-467a-A5A5-DFDF1B559B7A}] (.Pas de propriétaire.) -- C:\Windows\Wmofac.exe (.not file.)
        [MD5.00000000000000000000000000000000] [APT] [{BBAEAEAF-1275-40e2-BD6C-BC8F88BD114A}] (.Pas de propriétaire.) -- C:\Windows\TEMP\Wll.exe (.not file.)
        O47 - AAKE:Key Export SP - "C:\Users\karine\Downloads\facebook-pic000934519.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) -- c:\windows\nvsvc32.exe (.not file.)
        O64 - Services: CurCS - (.not file.) - 37b29800 (37b29800)  .(...) - LEGACY_37B29800
        O81 - IFC: Internet Feature Controls [HKUS\.DEFAULT] [FEATURE_BROWSER_EMULATION] -- svchost.exe
        O81 - IFC: Internet Feature Controls [HKUS\S-1-5-18] [FEATURE_BROWSER_EMULATION] -- svchost.exe
        [HKCR\adfavwsqpr.adfavwsqpr]
        [HKCR\adfavwsqpr.adfavwsqpr.1.0]
        [HKCR\chkavwsqhst.chkavwsqhst]
        [HKCR\chkavwsqhst.chkavwsqhst.1.0]
        [HKCR\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF]
        [HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF]
        EmptyTemp
        

        Déconnecte toi d'Internet et ferme toutes les applications ouvertes.

        Pour Xp : Double clique sur l'icône ZHPFix.exe sur ton Bureau.

        Pour Vista et W7 : Clique droit sur l'icône ZHPFix.exe sur ton Bureau,
        puis sélectionne 'Exécuter en tant qu'administrateur'.

        Clique successivement sur l'icône H (pour effacer le rapport qui s'est affiché) puis sur l'icône de la malette cachée par la feuille.

        Vérifie que toutes les lignes que je t'ai demandé de copier (et seulement elles) sont dans la fenêtre.

        Clique sur OK, ce qui fait apparaître un carré à gauche de chaque ligne.

        Clique sur "Tous" puis sur "Nettoyer".

        Laisse l'outil travailler.

        Si il te demande de redémarrer l'ordi pour achever le nettoyage, fais le immédiatement.

        Le rapport d'exécution va apparaître dans la fenêtre.

        Copie le dans ta réponse.
        0
        1. 2011/04/30 15:36:05.0345 3396 TDSS rootkit removing tool 2.4.21.0 Mar 10 2011 12:26:28
          2011/04/30 15:36:05.0619 3396 ================================================================================
          2011/04/30 15:36:05.0619 3396 SystemInfo:
          2011/04/30 15:36:05.0619 3396
          2011/04/30 15:36:05.0619 3396 OS Version: 6.0.6002 ServicePack: 2.0
          2011/04/30 15:36:05.0620 3396 Product type: Workstation
          2011/04/30 15:36:05.0620 3396 ComputerName: PC-DE-KARINE
          2011/04/30 15:36:05.0620 3396 UserName: Alan
          2011/04/30 15:36:05.0621 3396 Windows directory: C:\Windows
          2011/04/30 15:36:05.0621 3396 System windows directory: C:\Windows
          2011/04/30 15:36:05.0621 3396 Processor architecture: Intel x86
          2011/04/30 15:36:05.0621 3396 Number of processors: 2
          2011/04/30 15:36:05.0621 3396 Page size: 0x1000
          2011/04/30 15:36:05.0621 3396 Boot type: Normal boot
          2011/04/30 15:36:05.0621 3396 ================================================================================
          2011/04/30 15:36:13.0271 3396 Initialize success
          2011/04/30 15:36:17.0824 3408 ================================================================================
          2011/04/30 15:36:17.0825 3408 Scan started
          2011/04/30 15:36:17.0825 3408 Mode: Manual;
          2011/04/30 15:36:17.0825 3408 ================================================================================
          2011/04/30 15:36:18.0968 3408 ACPI (82b296ae1892fe3dbee00c9cf92f8ac7) C:\Windows\system32\drivers\acpi.sys
          2011/04/30 15:36:19.0058 3408 adp94xx (04f0fcac69c7c71a3ac4eb97fafc8303) C:\Windows\system32\drivers\adp94xx.sys
          2011/04/30 15:36:19.0267 3408 adpahci (60505e0041f7751bdbb80f88bf45c2ce) C:\Windows\system32\drivers\adpahci.sys
          2011/04/30 15:36:19.0325 3408 adpu160m (8a42779b02aec986eab64ecfc98f8bd7) C:\Windows\system32\drivers\adpu160m.sys
          2011/04/30 15:36:19.0379 3408 adpu320 (241c9e37f8ce45ef51c3de27515ca4e5) C:\Windows\system32\drivers\adpu320.sys
          2011/04/30 15:36:19.0611 3408 AFD (a201207363aa900abf1a388468688570) C:\Windows\system32\drivers\afd.sys
          2011/04/30 15:36:19.0754 3408 agp440 (13f9e33747e6b41a3ff305c37db0d360) C:\Windows\system32\drivers\agp440.sys
          2011/04/30 15:36:19.0824 3408 aic78xx (ae1fdf7bf7bb6c6a70f67699d880592a) C:\Windows\system32\drivers\djsvs.sys
          2011/04/30 15:36:20.0032 3408 aliide (9eaef5fc9b8e351afa7e78a6fae91f91) C:\Windows\system32\drivers\aliide.sys
          2011/04/30 15:36:20.0153 3408 amdagp (c47344bc706e5f0b9dce369516661578) C:\Windows\system32\drivers\amdagp.sys
          2011/04/30 15:36:20.0215 3408 amdide (9b78a39a4c173fdbc1321e0dd659b34c) C:\Windows\system32\drivers\amdide.sys
          2011/04/30 15:36:20.0348 3408 AmdK7 (18f29b49ad23ecee3d2a826c725c8d48) C:\Windows\system32\drivers\amdk7.sys
          2011/04/30 15:36:20.0403 3408 AmdK8 (93ae7f7dd54ab986a6f1a1b37be7442d) C:\Windows\system32\drivers\amdk8.sys
          2011/04/30 15:36:20.0510 3408 Andbus (19f9b865832fc563ed8eed449cb4ff31) C:\Windows\system32\DRIVERS\lgandbus.sys
          2011/04/30 15:36:20.0640 3408 AndDiag (c896b7dcd81862cb51e5c2ebcf0b50ca) C:\Windows\system32\DRIVERS\lganddiag.sys
          2011/04/30 15:36:20.0730 3408 AndGps (2d4f4ee70eb5a03cffaa50e6d6b67bc8) C:\Windows\system32\DRIVERS\lgandgps.sys
          2011/04/30 15:36:20.0823 3408 ANDModem (13947a4e2343d1dae526fb9b8e7898dc) C:\Windows\system32\DRIVERS\lgandmodem.sys
          2011/04/30 15:36:21.0001 3408 arc (5d2888182fb46632511acee92fdad522) C:\Windows\system32\drivers\arc.sys
          2011/04/30 15:36:21.0086 3408 arcsas (5e2a321bd7c8b3624e41fdec3e244945) C:\Windows\system32\drivers\arcsas.sys
          2011/04/30 15:36:21.0246 3408 AsyncMac (53b202abee6455406254444303e87be1) C:\Windows\system32\DRIVERS\asyncmac.sys
          2011/04/30 15:36:21.0288 3408 atapi (2d9c903dc76a66813d350a562de40ed9) C:\Windows\system32\drivers\atapi.sys
          2011/04/30 15:36:21.0439 3408 athr (997e25f5b7d53c94c0ad2dc080f6868e) C:\Windows\system32\DRIVERS\athr.sys
          2011/04/30 15:36:21.0652 3408 atksgt (6e996cf8459a2594e0e9609d0e34d41f) C:\Windows\system32\DRIVERS\atksgt.sys
          2011/04/30 15:36:21.0827 3408 avgio (f1d43170fdd7399ee17ea32d4f868b0c) C:\Program Files\Avira\AntiVir Desktop\avgio.sys
          2011/04/30 15:36:21.0972 3408 avgntflt (47b879406246ffdced59e18d331a0e7d) C:\Windows\system32\DRIVERS\avgntflt.sys
          2011/04/30 15:36:22.0061 3408 avipbb (5fedef54757b34fb611b9ec8fb399364) C:\Windows\system32\DRIVERS\avipbb.sys
          2011/04/30 15:36:22.0214 3408 Beep (67e506b75bd5326a3ec7b70bd014dfb6) C:\Windows\system32\drivers\Beep.sys
          2011/04/30 15:36:22.0283 3408 blbdrive (d4df28447741fd3d953526e33a617397) C:\Windows\system32\drivers\blbdrive.sys
          2011/04/30 15:36:22.0413 3408 bowser (74b442b2be1260b7588c136177ceac66) C:\Windows\system32\DRIVERS\bowser.sys
          2011/04/30 15:36:22.0464 3408 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\drivers\brfiltlo.sys
          2011/04/30 15:36:22.0499 3408 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\drivers\brfiltup.sys
          2011/04/30 15:36:22.0655 3408 Bridge (b1564976d98e91fc764d5dc28a0297da) C:\Windows\system32\DRIVERS\bridge.sys
          2011/04/30 15:36:22.0719 3408 BridgeMP (b1564976d98e91fc764d5dc28a0297da) C:\Windows\system32\DRIVERS\bridge.sys
          2011/04/30 15:36:22.0852 3408 Brserid (b304e75cff293029eddf094246747113) C:\Windows\system32\drivers\brserid.sys
          2011/04/30 15:36:22.0898 3408 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\system32\drivers\brserwdm.sys
          2011/04/30 15:36:22.0932 3408 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\system32\drivers\brusbmdm.sys
          2011/04/30 15:36:22.0962 3408 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\system32\drivers\brusbser.sys
          2011/04/30 15:36:23.0091 3408 BTHMODEM (ad07c1ec6665b8b35741ab91200c6b68) C:\Windows\system32\drivers\bthmodem.sys
          2011/04/30 15:36:23.0290 3408 cdfs (7add03e75beb9e6dd102c3081d29840a) C:\Windows\system32\DRIVERS\cdfs.sys
          2011/04/30 15:36:23.0394 3408 cdrom (6b4bffb9becd728097024276430db314) C:\Windows\system32\DRIVERS\cdrom.sys
          2011/04/30 15:36:23.0520 3408 circlass (e5d4133f37219dbcfe102bc61072589d) C:\Windows\system32\DRIVERS\circlass.sys
          2011/04/30 15:36:23.0620 3408 CLFS (d7659d3b5b92c31e84e53c1431f35132) C:\Windows\system32\CLFS.sys
          2011/04/30 15:36:23.0817 3408 CmBatt (99afc3795b58cc478fbbbcdc658fcb56) C:\Windows\system32\DRIVERS\CmBatt.sys
          2011/04/30 15:36:23.0854 3408 cmdide (0ca25e686a4928484e9fdabd168ab629) C:\Windows\system32\drivers\cmdide.sys
          2011/04/30 15:36:23.0891 3408 Compbatt (6afef0b60fa25de07c0968983ee4f60a) C:\Windows\system32\DRIVERS\compbatt.sys
          2011/04/30 15:36:23.0936 3408 crcdisk (741e9dff4f42d2d8477d0fc1dc0df871) C:\Windows\system32\drivers\crcdisk.sys
          2011/04/30 15:36:24.0085 3408 Crusoe (1f07becdca750766a96cda811ba86410) C:\Windows\system32\drivers\crusoe.sys
          2011/04/30 15:36:24.0215 3408 DfsC (218d8ae46c88e82014f5d73d0236d9b2) C:\Windows\system32\Drivers\dfsc.sys
          2011/04/30 15:36:24.0401 3408 disk (5d4aefc3386920236a548271f8f1af6a) C:\Windows\system32\drivers\disk.sys
          2011/04/30 15:36:24.0507 3408 DKbFltr (73baf270d24fe726b9cd7f80bb17a23d) C:\Windows\system32\DRIVERS\DKbFltr.sys
          2011/04/30 15:36:24.0711 3408 Dot4 (4f59c172c094e1a1d46463a8dc061cbd) C:\Windows\system32\DRIVERS\Dot4.sys
          2011/04/30 15:36:24.0885 3408 Dot4Print (80bf3ba09f6f2523c8f6b7cc6dbf7bd5) C:\Windows\system32\DRIVERS\Dot4Prt.sys
          2011/04/30 15:36:24.0947 3408 dot4usb (c55004ca6b419b6695970dfe849b122f) C:\Windows\system32\DRIVERS\dot4usb.sys
          2011/04/30 15:36:25.0095 3408 drmkaud (97fef831ab90bee128c9af390e243f80) C:\Windows\system32\drivers\drmkaud.sys
          2011/04/30 15:36:25.0217 3408 DXGKrnl (c68ac676b0ef30cfbb1080adce49eb1f) C:\Windows\System32\drivers\dxgkrnl.sys
          2011/04/30 15:36:25.0353 3408 E1G60 (5425f74ac0c1dbd96a1e04f17d63f94c) C:\Windows\system32\DRIVERS\E1G60I32.sys
          2011/04/30 15:36:25.0598 3408 Ecache (7f64ea048dcfac7acf8b4d7b4e6fe371) C:\Windows\system32\drivers\ecache.sys
          2011/04/30 15:36:25.0870 3408 elxstor (23b62471681a124889978f6295b3f4c6) C:\Windows\system32\drivers\elxstor.sys
          2011/04/30 15:36:26.0110 3408 ErrDev (3db974f3935483555d7148663f726c61) C:\Windows\system32\drivers\errdev.sys
          2011/04/30 15:36:26.0450 3408 exfat (22b408651f9123527bcee54b4f6c5cae) C:\Windows\system32\drivers\exfat.sys
          2011/04/30 15:36:26.0624 3408 fastfat (1e9b9a70d332103c52995e957dc09ef8) C:\Windows\system32\drivers\fastfat.sys
          2011/04/30 15:36:26.0799 3408 fdc (afe1e8b9782a0dd7fb46bbd88e43f89a) C:\Windows\system32\DRIVERS\fdc.sys
          2011/04/30 15:36:26.0893 3408 FileInfo (a8c0139a884861e3aae9cfe73b208a9f) C:\Windows\system32\drivers\fileinfo.sys
          2011/04/30 15:36:26.0987 3408 Filetrace (0ae429a696aecbc5970e3cf2c62635ae) C:\Windows\system32\drivers\filetrace.sys
          2011/04/30 15:36:27.0146 3408 flpydisk (85b7cf99d532820495d68d747fda9ebd) C:\Windows\system32\DRIVERS\flpydisk.sys
          2011/04/30 15:36:27.0423 3408 FltMgr (01334f9ea68e6877c4ef05d3ea8abb05) C:\Windows\system32\drivers\fltmgr.sys
          2011/04/30 15:36:27.0642 3408 Fs_Rec (65ea8b77b5851854f0c55c43fa51a198) C:\Windows\system32\drivers\Fs_Rec.sys
          2011/04/30 15:36:27.0741 3408 gagp30kx (34582a6e6573d54a07ece5fe24a126b5) C:\Windows\system32\drivers\gagp30kx.sys
          2011/04/30 15:36:27.0844 3408 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
          2011/04/30 15:36:28.0119 3408 HdAudAddService (cb04c744be0a61b1d648faed182c3b59) C:\Windows\system32\drivers\HdAudio.sys
          2011/04/30 15:36:28.0309 3408 HDAudBus (062452b7ffd68c8c042a6261fe8dff4a) C:\Windows\system32\DRIVERS\HDAudBus.sys
          2011/04/30 15:36:28.0426 3408 HidBth (1338520e78d90154ed6be8f84de5fceb) C:\Windows\system32\drivers\hidbth.sys
          2011/04/30 15:36:28.0471 3408 HidIr (d8df3722d5e961baa1292aa2f12827e2) C:\Windows\system32\DRIVERS\hidir.sys
          2011/04/30 15:36:28.0685 3408 HidUsb (cca4b519b17e23a00b826c55716809cc) C:\Windows\system32\DRIVERS\hidusb.sys
          2011/04/30 15:36:28.0825 3408 HpCISSs (16ee7b23a009e00d835cdb79574a91a6) C:\Windows\system32\drivers\hpcisss.sys
          2011/04/30 15:36:28.0918 3408 HSFHWAZL (46d67209550973257601a533e2ac5785) C:\Windows\system32\DRIVERS\VSTAZL3.SYS
          2011/04/30 15:36:29.0075 3408 HSF_DPV (fadd7095163cb3cb4073793ebb50fe75) C:\Windows\system32\DRIVERS\HSX_DPV.sys
          2011/04/30 15:36:29.0239 3408 HSXHWAZL (058783bedd17615d1fece09f77960436) C:\Windows\system32\DRIVERS\HSXHWAZL.sys
          2011/04/30 15:36:29.0309 3408 HTTP (f870aa3e254628ebeafe754108d664de) C:\Windows\system32\drivers\HTTP.sys
          2011/04/30 15:36:29.0449 3408 i2omp (c6b032d69650985468160fc9937cf5b4) C:\Windows\system32\drivers\i2omp.sys
          2011/04/30 15:36:29.0520 3408 i8042prt (22d56c8184586b7a1f6fa60be5f5a2bd) C:\Windows\system32\DRIVERS\i8042prt.sys
          2011/04/30 15:36:29.0662 3408 iaStor (707c1692214b1c290271067197f075f6) C:\Windows\system32\DRIVERS\iaStor.sys
          2011/04/30 15:36:29.0731 3408 iaStorV (54155ea1b0df185878e0fc9ec3ac3a14) C:\Windows\system32\drivers\iastorv.sys
          2011/04/30 15:36:29.0867 3408 iirsp (2d077bf86e843f901d8db709c95b49a5) C:\Windows\system32\drivers\iirsp.sys
          2011/04/30 15:36:29.0933 3408 int15 (c6e5276c00ebdeb096bb5ef4b797d1b6) C:\Windows\system32\drivers\int15.sys
          2011/04/30 15:36:30.0170 3408 IntcAzAudAddService (b8716d9677b04b82fa405c8c54954728) C:\Windows\system32\drivers\RTKVHDA.sys
          2011/04/30 15:36:30.0350 3408 intelide (83aa759f3189e6370c30de5dc5590718) C:\Windows\system32\drivers\intelide.sys
          2011/04/30 15:36:30.0420 3408 intelppm (224191001e78c89dfa78924c3ea595ff) C:\Windows\system32\DRIVERS\intelppm.sys
          2011/04/30 15:36:30.0488 3408 IpFilterDriver (62c265c38769b864cb25b4bcf62df6c3) C:\Windows\system32\DRIVERS\ipfltdrv.sys
          2011/04/30 15:36:30.0658 3408 IPMIDRV (b25aaf203552b7b3491139d582b39ad1) C:\Windows\system32\drivers\ipmidrv.sys
          2011/04/30 15:36:30.0709 3408 IPNAT (8793643a67b42cec66490b2a0cf92d68) C:\Windows\system32\DRIVERS\ipnat.sys
          2011/04/30 15:36:30.0835 3408 IRENUM (109c0dfb82c3632fbd11949b73aeeac9) C:\Windows\system32\drivers\irenum.sys
          2011/04/30 15:36:30.0898 3408 isapnp (6c70698a3e5c4376c6ab5c7c17fb0614) C:\Windows\system32\drivers\isapnp.sys
          2011/04/30 15:36:30.0976 3408 iScsiPrt (232fa340531d940aac623b121a595034) C:\Windows\system32\DRIVERS\msiscsi.sys
          2011/04/30 15:36:31.0070 3408 iteatapi (bced60d16156e428f8df8cf27b0df150) C:\Windows\system32\drivers\iteatapi.sys
          2011/04/30 15:36:31.0140 3408 iteraid (06fa654504a498c30adca8bec4e87e7e) C:\Windows\system32\drivers\iteraid.sys
          2011/04/30 15:36:31.0182 3408 kbdclass (37605e0a8cf00cbba538e753e4344c6e) C:\Windows\system32\DRIVERS\kbdclass.sys
          2011/04/30 15:36:31.0331 3408 kbdhid (ede59ec70e25c24581add1fbec7325f7) C:\Windows\system32\DRIVERS\kbdhid.sys
          2011/04/30 15:36:31.0444 3408 KSecDD (86165728af9bf72d6442a894fdfb4f8b) C:\Windows\system32\Drivers\ksecdd.sys
          2011/04/30 15:36:31.0603 3408 L1E (86d7f66ac2c0123ed81b2f3e835845c2) C:\Windows\system32\DRIVERS\L1E60x86.sys
          2011/04/30 15:36:31.0811 3408 lirsgt (975b6cf65f44e95883f3855bae8cecaf) C:\Windows\system32\DRIVERS\lirsgt.sys
          2011/04/30 15:36:31.0878 3408 lltdio (d1c5883087a0c3f1344d9d55a44901f6) C:\Windows\system32\DRIVERS\lltdio.sys
          2011/04/30 15:36:31.0983 3408 LSI_FC (c7e15e82879bf3235b559563d4185365) C:\Windows\system32\drivers\lsi_fc.sys
          2011/04/30 15:36:32.0099 3408 LSI_SAS (ee01ebae8c9bf0fa072e0ff68718920a) C:\Windows\system32\drivers\lsi_sas.sys
          2011/04/30 15:36:32.0248 3408 LSI_SCSI (912a04696e9ca30146a62afa1463dd5c) C:\Windows\system32\drivers\lsi_scsi.sys
          2011/04/30 15:36:32.0334 3408 luafv (8f5c7426567798e62a3b3614965d62cc) C:\Windows\system32\drivers\luafv.sys
          2011/04/30 15:36:32.0434 3408 mdmxsdk (0cea2d0d3fa284b85ed5b68365114f76) C:\Windows\system32\DRIVERS\mdmxsdk.sys
          2011/04/30 15:36:32.0474 3408 megasas (0001ce609d66632fa17b84705f658879) C:\Windows\system32\drivers\megasas.sys
          2011/04/30 15:36:32.0561 3408 MegaSR (c252f32cd9a49dbfc25ecf26ebd51a99) C:\Windows\system32\drivers\megasr.sys
          2011/04/30 15:36:32.0686 3408 Modem (e13b5ea0f51ba5b1512ec671393d09ba) C:\Windows\system32\drivers\modem.sys
          2011/04/30 15:36:32.0758 3408 monitor (0a9bb33b56e294f686abb7c1e4e2d8a8) C:\Windows\system32\DRIVERS\monitor.sys
          2011/04/30 15:36:32.0836 3408 mouclass (5bf6a1326a335c5298477754a506d263) C:\Windows\system32\DRIVERS\mouclass.sys
          2011/04/30 15:36:32.0883 3408 mouhid (93b8d4869e12cfbe663915502900876f) C:\Windows\system32\DRIVERS\mouhid.sys
          2011/04/30 15:36:32.0964 3408 MountMgr (bdafc88aa6b92f7842416ea6a48e1600) C:\Windows\system32\drivers\mountmgr.sys
          2011/04/30 15:36:33.0072 3408 mpio (511d011289755dd9f9a7579fb0b064e6) C:\Windows\system32\drivers\mpio.sys
          2011/04/30 15:36:33.0145 3408 mpsdrv (22241feba9b2defa669c8cb0a8dd7d2e) C:\Windows\system32\drivers\mpsdrv.sys
          2011/04/30 15:36:33.0250 3408 Mraid35x (4fbbb70d30fd20ec51f80061703b001e) C:\Windows\system32\drivers\mraid35x.sys
          2011/04/30 15:36:33.0353 3408 MRxDAV (82cea0395524aacfeb58ba1448e8325c) C:\Windows\system32\drivers\mrxdav.sys
          2011/04/30 15:36:33.0435 3408 mrxsmb (454341e652bdf5e01b0f2140232b073e) C:\Windows\system32\DRIVERS\mrxsmb.sys
          2011/04/30 15:36:33.0561 3408 mrxsmb10 (2a4901aff069944fa945ed5bbf4dcde3) C:\Windows\system32\DRIVERS\mrxsmb10.sys
          2011/04/30 15:36:33.0658 3408 mrxsmb20 (28b3f1ab44bdd4432c041581412f17d9) C:\Windows\system32\DRIVERS\mrxsmb20.sys
          2011/04/30 15:36:33.0758 3408 msahci (28023e86f17001f7cd9b15a5bc9ae07d) C:\Windows\system32\drivers\msahci.sys
          2011/04/30 15:36:33.0838 3408 msdsm (4468b0f385a86ecddaf8d3ca662ec0e7) C:\Windows\system32\drivers\msdsm.sys
          2011/04/30 15:36:33.0971 3408 Msfs (a9927f4a46b816c92f461acb90cf8515) C:\Windows\system32\drivers\Msfs.sys
          2011/04/30 15:36:34.0054 3408 msisadrv (0f400e306f385c56317357d6dea56f62) C:\Windows\system32\drivers\msisadrv.sys
          2011/04/30 15:36:34.0176 3408 MSKSSRV (d8c63d34d9c9e56c059e24ec7185cc07) C:\Windows\system32\drivers\MSKSSRV.sys
          2011/04/30 15:36:34.0265 3408 MSPCLOCK (1d373c90d62ddb641d50e55b9e78d65e) C:\Windows\system32\drivers\MSPCLOCK.sys
          2011/04/30 15:36:34.0303 3408 MSPQM (b572da05bf4e098d4bba3a4734fb505b) C:\Windows\system32\drivers\MSPQM.sys
          2011/04/30 15:36:34.0407 3408 MsRPC (b49456d70555de905c311bcda6ec6adb) C:\Windows\system32\drivers\MsRPC.sys
          2011/04/30 15:36:34.0499 3408 mssmbios (e384487cb84be41d09711c30ca79646c) C:\Windows\system32\DRIVERS\mssmbios.sys
          2011/04/30 15:36:34.0634 3408 MSTEE (7199c1eec1e4993caf96b8c0a26bd58a) C:\Windows\system32\drivers\MSTEE.sys
          2011/04/30 15:36:34.0718 3408 Mup (6a57b5733d4cb702c8ea4542e836b96c) C:\Windows\system32\Drivers\mup.sys
          2011/04/30 15:36:34.0853 3408 NativeWifiP (85c44fdff9cf7e72a40dcb7ec06a4416) C:\Windows\system32\DRIVERS\nwifi.sys
          2011/04/30 15:36:35.0024 3408 NDIS (1357274d1883f68300aeadd15d7bbb42) C:\Windows\system32\drivers\ndis.sys
          2011/04/30 15:36:35.0075 3408 NdisTapi (0e186e90404980569fb449ba7519ae61) C:\Windows\system32\DRIVERS\ndistapi.sys
          2011/04/30 15:36:35.0115 3408 Ndisuio (d6973aa34c4d5d76c0430b181c3cd389) C:\Windows\system32\DRIVERS\ndisuio.sys
          2011/04/30 15:36:35.0255 3408 NdisWan (818f648618ae34f729fdb47ec68345c3) C:\Windows\system32\DRIVERS\ndiswan.sys
          2011/04/30 15:36:35.0314 3408 NDProxy (71dab552b41936358f3b541ae5997fb3) C:\Windows\system32\drivers\NDProxy.sys
          2011/04/30 15:36:35.0492 3408 NetBIOS (bcd093a5a6777cf626434568dc7dba78) C:\Windows\system32\DRIVERS\netbios.sys
          2011/04/30 15:36:35.0561 3408 netbt (ecd64230a59cbd93c85f1cd1cab9f3f6) C:\Windows\system32\DRIVERS\netbt.sys
          2011/04/30 15:36:35.0908 3408 NETw5v32 (ba420e8ebfcad35581fe8e4c64f71469) C:\Windows\system32\DRIVERS\NETw5v32.sys
          2011/04/30 15:36:36.0088 3408 nfrd960 (2e7fb731d4790a1bc6270accefacb36e) C:\Windows\system32\drivers\nfrd960.sys
          2011/04/30 15:36:36.0171 3408 Npfs (d36f239d7cce1931598e8fb90a0dbc26) C:\Windows\system32\drivers\Npfs.sys
          2011/04/30 15:36:36.0304 3408 NPPTNT2 (9131fe60adfab595c8da53ad6a06aa31) C:\Windows\system32\npptNT2.sys
          2011/04/30 15:36:36.0413 3408 nsiproxy (609773e344a97410ce4ebf74a8914fcf) C:\Windows\system32\drivers\nsiproxy.sys
          2011/04/30 15:36:36.0588 3408 Ntfs (6a4a98cee84cf9e99564510dda4baa47) C:\Windows\system32\drivers\Ntfs.sys
          2011/04/30 15:36:36.0735 3408 NTIDrvr (2757d2ba59aee155209e24942ab127c9) C:\Windows\system32\DRIVERS\NTIDrvr.sys
          2011/04/30 15:36:36.0805 3408 ntrigdigi (e875c093aec0c978a90f30c9e0dfbb72) C:\Windows\system32\drivers\ntrigdigi.sys
          2011/04/30 15:36:36.0869 3408 Null (c5dbbcda07d780bda9b685df333bb41e) C:\Windows\system32\drivers\Null.sys
          2011/04/30 15:36:36.0979 3408 NVHDA (2c7ac27710e8d41c1eb7d1599187d237) C:\Windows\system32\drivers\nvhda32v.sys
          2011/04/30 15:36:37.0427 3408 nvlddmkm (19f5c4949b2e4cbd2e95b8ecdfc84d25) C:\Windows\system32\DRIVERS\nvlddmkm.sys
          2011/04/30 15:36:37.0807 3408 nvraid (2edf9e7751554b42cbb60116de727101) C:\Windows\system32\drivers\nvraid.sys
          2011/04/30 15:36:37.0862 3408 nvstor (abed0c09758d1d97db0042dbb2688177) C:\Windows\system32\drivers\nvstor.sys
          2011/04/30 15:36:37.0912 3408 nv_agp (18bbdf913916b71bd54575bdb6eeac0b) C:\Windows\system32\drivers\nv_agp.sys
          2011/04/30 15:36:38.0095 3408 ohci1394 (be32da025a0be1878f0ee8d6d9386cd5) C:\Windows\system32\drivers\ohci1394.sys
          2011/04/30 15:36:38.0171 3408 Parport (0fa9b5055484649d63c303fe404e5f4d) C:\Windows\system32\drivers\parport.sys
          2011/04/30 15:36:38.0239 3408 partmgr (57389fa59a36d96b3eb09d0cb91e9cdc) C:\Windows\system32\drivers\partmgr.sys
          2011/04/30 15:36:38.0345 3408 Parvdm (4f9a6a8a31413180d0fcb279ad5d8112) C:\Windows\system32\drivers\parvdm.sys
          2011/04/30 15:36:38.0451 3408 pccsmcfd (fd2041e9ba03db7764b2248f02475079) C:\Windows\system32\DRIVERS\pccsmcfd.sys
          2011/04/30 15:36:38.0569 3408 pci (941dc1d19e7e8620f40bbc206981efdb) C:\Windows\system32\drivers\pci.sys
          2011/04/30 15:36:38.0632 3408 pciide (fc175f5ddab666d7f4d17449a547626f) C:\Windows\system32\drivers\pciide.sys
          2011/04/30 15:36:38.0773 3408 pcmcia (e6f3fb1b86aa519e7698ad05e58b04e5) C:\Windows\system32\drivers\pcmcia.sys
          2011/04/30 15:36:38.0933 3408 PEAUTH (6349f6ed9c623b44b52ea3c63c831a92) C:\Windows\system32\drivers\peauth.sys
          2011/04/30 15:36:39.0272 3408 PptpMiniport (ecfffaec0c1ecd8dbc77f39070ea1db1) C:\Windows\system32\DRIVERS\raspptp.sys
          2011/04/30 15:36:39.0323 3408 Processor (2027293619dd0f047c584cf2e7df4ffd) C:\Windows\system32\drivers\processr.sys
          2011/04/30 15:36:39.0462 3408 PSched (99514faa8df93d34b5589187db3aa0ba) C:\Windows\system32\DRIVERS\pacer.sys
          2011/04/30 15:36:39.0549 3408 PSDFilter (628321c8dd76ad369b362b202e655a68) C:\Windows\system32\DRIVERS\psdfilter.sys
          2011/04/30 15:36:39.0621 3408 PSDNServ (79d7117e62709c7690cf3dd55acead37) C:\Windows\system32\DRIVERS\PSDNServ.sys
          2011/04/30 15:36:39.0690 3408 psdvdisk (cae5e82827990cf4bd4a49576bde3a43) C:\Windows\system32\DRIVERS\PSDVdisk.sys
          2011/04/30 15:36:39.0811 3408 PxHelp20 (153d02480a0a2f45785522e814c634b6) C:\Windows\system32\Drivers\PxHelp20.sys
          2011/04/30 15:36:39.0970 3408 ql2300 (0a6db55afb7820c99aa1f3a1d270f4f6) C:\Windows\system32\drivers\ql2300.sys
          2011/04/30 15:36:40.0102 3408 ql40xx (81a7e5c076e59995d54bc1ed3a16e60b) C:\Windows\system32\drivers\ql40xx.sys
          2011/04/30 15:36:40.0200 3408 QWAVEdrv (9f5e0e1926014d17486901c88eca2db7) C:\Windows\system32\drivers\qwavedrv.sys
          2011/04/30 15:36:40.0368 3408 RasAcd (147d7f9c556d259924351feb0de606c3) C:\Windows\system32\DRIVERS\rasacd.sys
          2011/04/30 15:36:40.0445 3408 Rasl2tp (a214adbaf4cb47dd2728859ef31f26b0) C:\Windows\system32\DRIVERS\rasl2tp.sys
          2011/04/30 15:36:40.0521 3408 RasPppoe (509a98dd18af4375e1fc40bc175f1def) C:\Windows\system32\DRIVERS\raspppoe.sys
          2011/04/30 15:36:40.0578 3408 RasSstp (2005f4a1e05fa09389ac85840f0a9e4d) C:\Windows\system32\DRIVERS\rassstp.sys
          2011/04/30 15:36:40.0724 3408 rdbss (b14c9d5b9add2f84f70570bbbfaa7935) C:\Windows\system32\DRIVERS\rdbss.sys
          2011/04/30 15:36:40.0826 3408 RDPCDD (89e59be9a564262a3fb6c4f4f1cd9899) C:\Windows\system32\DRIVERS\RDPCDD.sys
          2011/04/30 15:36:40.0970 3408 rdpdr (fbc0bacd9c3d7f6956853f64a66e252d) C:\Windows\system32\drivers\rdpdr.sys
          2011/04/30 15:36:41.0081 3408 RDPENCDD (9d91fe5286f748862ecffa05f8a0710c) C:\Windows\system32\drivers\rdpencdd.sys
          2011/04/30 15:36:41.0179 3408 RDPWD (30bfbdfb7f95559ede971f9ddb9a00ba) C:\Windows\system32\drivers\RDPWD.sys
          2011/04/30 15:36:41.0370 3408 rspndr (9c508f4074a39e8b4b31d27198146fad) C:\Windows\system32\DRIVERS\rspndr.sys
          2011/04/30 15:36:41.0500 3408 RTSTOR (7a4f79df3793160b280cde152b61fe33) C:\Windows\system32\drivers\RTSTOR.SYS
          2011/04/30 15:36:41.0607 3408 SASDIFSV (a3281aec37e0720a2bc28034c2df2a56) C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS
          2011/04/30 15:36:41.0642 3408 SASKUTIL (61db0d0756a99506207fd724e3692b25) C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS
          2011/04/30 15:36:41.0800 3408 sbp2port (3ce8f073a557e172b330109436984e30) C:\Windows\system32\drivers\sbp2port.sys
          2011/04/30 15:36:42.0011 3408 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
          2011/04/30 15:36:42.0072 3408 Serenum (68e44e331d46f0fb38f0863a84cd1a31) C:\Windows\system32\drivers\serenum.sys
          2011/04/30 15:36:42.0113 3408 Serial (c70d69a918b178d3c3b06339b40c2e1b) C:\Windows\system32\drivers\serial.sys
          2011/04/30 15:36:42.0266 3408 sermouse (8af3d28a879bf75db53a0ee7a4289624) C:\Windows\system32\drivers\sermouse.sys
          2011/04/30 15:36:42.0365 3408 sffdisk (3efa810bdca87f6ecc24f9832243fe86) C:\Windows\system32\drivers\sffdisk.sys
          2011/04/30 15:36:42.0440 3408 sffp_mmc (e95d451f7ea3e583aec75f3b3ee42dc5) C:\Windows\system32\drivers\sffp_mmc.sys
          2011/04/30 15:36:42.0499 3408 sffp_sd (3d0ea348784b7ac9ea9bd9f317980979) C:\Windows\system32\drivers\sffp_sd.sys
          2011/04/30 15:36:42.0617 3408 sfloppy (46ed8e91793b2e6f848015445a0ac188) C:\Windows\system32\drivers\sfloppy.sys
          2011/04/30 15:36:42.0679 3408 sisagp (1d76624a09a054f682d746b924e2dbc3) C:\Windows\system32\drivers\sisagp.sys
          2011/04/30 15:36:42.0823 3408 SiSRaid2 (43cb7aa756c7db280d01da9b676cfde2) C:\Windows\system32\drivers\sisraid2.sys
          2011/04/30 15:36:42.0886 3408 SiSRaid4 (a99c6c8b0baa970d8aa59ddc50b57f94) C:\Windows\system32\drivers\sisraid4.sys
          2011/04/30 15:36:42.0983 3408 Smb (7b75299a4d201d6a6533603d6914ab04) C:\Windows\system32\DRIVERS\smb.sys
          2011/04/30 15:36:43.0128 3408 spldr (7aebdeef071fe28b0eef2cdd69102bff) C:\Windows\system32\drivers\spldr.sys
          2011/04/30 15:36:43.0223 3408 sptd (cdddec541bc3c96f91ecb48759673505) C:\Windows\system32\Drivers\sptd.sys
          2011/04/30 15:36:43.0224 3408 Suspicious file (NoAccess): C:\Windows\system32\Drivers\sptd.sys. md5: cdddec541bc3c96f91ecb48759673505
          2011/04/30 15:36:43.0245 3408 sptd - detected Locked file (1)
          2011/04/30 15:36:43.0365 3408 srv (ff3cbc13db84d81f56931bc922cc37c4) C:\Windows\system32\DRIVERS\srv.sys
          2011/04/30 15:36:43.0411 3408 srv2 (d15959d9f69f0d39a0153e9c244f20dd) C:\Windows\system32\DRIVERS\srv2.sys
          2011/04/30 15:36:43.0462 3408 srvnet (faa0d553a49e85008c6bb3781987c574) C:\Windows\system32\DRIVERS\srvnet.sys
          2011/04/30 15:36:43.0632 3408 sscdbus (d5dffeaa1e15d4effabb9d9a3068ac5b) C:\Windows\system32\DRIVERS\sscdbus.sys
          2011/04/30 15:36:43.0791 3408 sscdmdfl (8a1be0c347814f482f493aea619d57f6) C:\Windows\system32\DRIVERS\sscdmdfl.sys
          2011/04/30 15:36:43.0836 3408 sscdmdm (5ab0b1987f682a59b15b78f84c6ad7d0) C:\Windows\system32\DRIVERS\sscdmdm.sys
          2011/04/30 15:36:43.0909 3408 ssmdrv (a36ee93698802cd899f98bfd553d8185) C:\Windows\system32\DRIVERS\ssmdrv.sys
          2011/04/30 15:36:44.0059 3408 swenum (7ba58ecf0c0a9a69d44b3dca62becf56) C:\Windows\system32\DRIVERS\swenum.sys
          2011/04/30 15:36:44.0114 3408 Symc8xx (192aa3ac01df071b541094f251deed10) C:\Windows\system32\drivers\symc8xx.sys
          2011/04/30 15:36:44.0278 3408 Sym_hi (8c8eb8c76736ebaf3b13b633b2e64125) C:\Windows\system32\drivers\sym_hi.sys
          2011/04/30 15:36:44.0343 3408 Sym_u3 (8072af52b5fd103bbba387a1e49f62cb) C:\Windows\system32\drivers\sym_u3.sys
          2011/04/30 15:36:44.0492 3408 SynTP (4c9bb4b3b9eac26211484c30b914c6dc) C:\Windows\system32\DRIVERS\SynTP.sys
          2011/04/30 15:36:44.0642 3408 Tcpip (a474879afa4a596b3a531f3e69730dbf) C:\Windows\system32\drivers\tcpip.sys
          2011/04/30 15:36:44.0843 3408 Tcpip6 (a474879afa4a596b3a531f3e69730dbf) C:\Windows\system32\DRIVERS\tcpip.sys
          2011/04/30 15:36:44.0966 3408 tcpipreg (608c345a255d82a6289c2d468eb41fd7) C:\Windows\system32\drivers\tcpipreg.sys
          2011/04/30 15:36:45.0016 3408 TcUsb (72b9e77565da5fa564581976e000d29b) C:\Windows\system32\Drivers\tcusb.sys
          2011/04/30 15:36:45.0077 3408 TDPIPE (5dcf5e267be67a1ae926f2df77fbcc56) C:\Windows\system32\drivers\tdpipe.sys
          2011/04/30 15:36:45.0192 3408 TDTCP (389c63e32b3cefed425b61ed92d3f021) C:\Windows\system32\drivers\tdtcp.sys
          2011/04/30 15:36:45.0277 3408 tdx (76b06eb8a01fc8624d699e7045303e54) C:\Windows\system32\DRIVERS\tdx.sys
          2011/04/30 15:36:45.0354 3408 TermDD (3cad38910468eab9a6479e2f01db43c7) C:\Windows\system32\DRIVERS\termdd.sys
          2011/04/30 15:36:45.0559 3408 tssecsrv (dcf0f056a2e4f52287264f5ab29cf206) C:\Windows\system32\DRIVERS\tssecsrv.sys
          2011/04/30 15:36:45.0602 3408 tunmp (caecc0120ac49e3d2f758b9169872d38) C:\Windows\system32\DRIVERS\tunmp.sys
          2011/04/30 15:36:45.0683 3408 tunnel (300db877ac094feab0be7688c3454a9c) C:\Windows\system32\DRIVERS\tunnel.sys
          2011/04/30 15:36:45.0795 3408 uagp35 (7d33c4db2ce363c8518d2dfcf533941f) C:\Windows\system32\drivers\uagp35.sys
          2011/04/30 15:36:45.0843 3408 UBHelper (f763e070843ee2803de1395002b42938) C:\Windows\system32\drivers\UBHelper.sys
          2011/04/30 15:36:45.0916 3408 udfs (d9728af68c4c7693cb100b8441cbdec6) C:\Windows\system32\DRIVERS\udfs.sys
          2011/04/30 15:36:46.0056 3408 uliagpkx (b0acfdc9e4af279e9116c03e014b2b27) C:\Windows\system32\drivers\uliagpkx.sys
          2011/04/30 15:36:46.0133 3408 uliahci (9224bb254f591de4ca8d572a5f0d635c) C:\Windows\system32\drivers\uliahci.sys
          2011/04/30 15:36:46.0185 3408 UlSata (8514d0e5cd0534467c5fc61be94a569f) C:\Windows\system32\drivers\ulsata.sys
          2011/04/30 15:36:46.0327 3408 ulsata2 (38c3c6e62b157a6bc46594fada45c62b) C:\Windows\system32\drivers\ulsata2.sys
          2011/04/30 15:36:46.0376 3408 umbus (32cff9f809ae9aed85464492bf3e32d2) C:\Windows\system32\DRIVERS\umbus.sys
          2011/04/30 15:36:46.0474 3408 USBAAPL (d4fb6ecc60a428564ba8768b0e23c0fc) C:\Windows\system32\Drivers\usbaapl.sys
          2011/04/30 15:36:46.0616 3408 usbccgp (caf811ae4c147ffcd5b51750c7f09142) C:\Windows\system32\DRIVERS\usbccgp.sys
          2011/04/30 15:36:46.0666 3408 usbcir (e9476e6c486e76bc4898074768fb7131) C:\Windows\system32\drivers\usbcir.sys
          2011/04/30 15:36:46.0817 3408 usbehci (79e96c23a97ce7b8f14d310da2db0c9b) C:\Windows\system32\DRIVERS\usbehci.sys
          2011/04/30 15:36:46.0889 3408 usbhub (4673bbcb006af60e7abddbe7a130ba42) C:\Windows\system32\DRIVERS\usbhub.sys
          2011/04/30 15:36:46.0945 3408 usbohci (38dbc7dd6cc5a72011f187425384388b) C:\Windows\system32\drivers\usbohci.sys
          2011/04/30 15:36:47.0079 3408 usbprint (e75c4b5269091d15a2e7dc0b6d35f2f5) C:\Windows\system32\DRIVERS\usbprint.sys
          2011/04/30 15:36:47.0126 3408 usbscan (a508c9bd8724980512136b039bba65e9) C:\Windows\system32\DRIVERS\usbscan.sys
          2011/04/30 15:36:47.0212 3408 USBSTOR (be3da31c191bc222d9ad503c5224f2ad) C:\Windows\system32\DRIVERS\USBSTOR.SYS
          2011/04/30 15:36:47.0337 3408 usbuhci (814d653efc4d48be3b04a307eceff56f) C:\Windows\system32\DRIVERS\usbuhci.sys
          2011/04/30 15:36:47.0389 3408 usbvideo (e67998e8f14cb0627a769f6530bcb352) C:\Windows\system32\Drivers\usbvideo.sys
          2011/04/30 15:36:47.0574 3408 usb_rndisx (35c9095fa7076466afbfc5b9ec4b779e) C:\Windows\system32\DRIVERS\usb8023x.sys
          2011/04/30 15:36:47.0655 3408 vga (87b06e1f30b749a114f74622d013f8d4) C:\Windows\system32\DRIVERS\vgapnp.sys
          2011/04/30 15:36:47.0697 3408 VgaSave (2e93ac0a1d8c79d019db6c51f036636c) C:\Windows\System32\drivers\vga.sys
          2011/04/30 15:36:47.0875 3408 viaagp (5d7159def58a800d5781ba3a879627bc) C:\Windows\system32\drivers\viaagp.sys
          2011/04/30 15:36:47.0945 3408 ViaC7 (c4f3a691b5bad343e6249bd8c2d45dee) C:\Windows\system32\drivers\viac7.sys
          2011/04/30 15:36:48.0059 3408 viaide (aadf5587a4063f52c2c3fed7887426fc) C:\Windows\system32\drivers\viaide.sys
          2011/04/30 15:36:48.0118 3408 volmgr (69503668ac66c77c6cd7af86fbdf8c43) C:\Windows\system32\drivers\volmgr.sys
          2011/04/30 15:36:48.0198 3408 volmgrx (23e41b834759917bfd6b9a0d625d0c28) C:\Windows\system32\drivers\volmgrx.sys
          2011/04/30 15:36:48.0368 3408 volsnap (147281c01fcb1df9252de2a10d5e7093) C:\Windows\system32\drivers\volsnap.sys
          2011/04/30 15:36:48.0445 3408 vsmraid (587253e09325e6bf226b299774b728a9) C:\Windows\system32\drivers\vsmraid.sys
          2011/04/30 15:36:48.0602 3408 WacomPen (48dfee8f1af7c8235d4e626f0c4fe031) C:\Windows\system32\drivers\wacompen.sys
          2011/04/30 15:36:48.0673 3408 Wanarp (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
          2011/04/30 15:36:48.0713 3408 Wanarpv6 (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
          2011/04/30 15:36:48.0851 3408 Wd (78fe9542363f297b18c027b2d7e7c07f) C:\Windows\system32\drivers\wd.sys
          2011/04/30 15:36:48.0929 3408 Wdf01000 (b6f0a7ad6d4bd325fbcd8bac96cd8d96) C:\Windows\system32\drivers\Wdf01000.sys
          2011/04/30 15:36:49.0148 3408 winachsf (bb9cbaf6ac20452b245c324f1f50ee81) C:\Windows\system32\DRIVERS\HSX_CNXT.sys
          2011/04/30 15:36:49.0276 3408 winbondcir (3fa87d56769838aac82fafc3e78fc732) C:\Windows\system32\DRIVERS\winbondcir.sys
          2011/04/30 15:36:49.0480 3408 WmiAcpi (2e7255d172df0b8283cdfb7b433b864e) C:\Windows\system32\DRIVERS\wmiacpi.sys
          2011/04/30 15:36:49.0732 3408 WpdUsb (de9d36f91a4df3d911626643debf11ea) C:\Windows\system32\DRIVERS\wpdusb.sys
          2011/04/30 15:36:49.0850 3408 ws2ifsl (e3a3cb253c0ec2494d4a61f5e43a389c) C:\Windows\system32\drivers\ws2ifsl.sys
          2011/04/30 15:36:50.0170 3408 WUDFRd (ac13cb789d93412106b0fb6c7eb2bcb6) C:\Windows\system32\DRIVERS\WUDFRd.sys
          2011/04/30 15:36:50.0345 3408 XAudio (dab33cfa9dd24251aaa389ff36b64d4b) C:\Windows\system32\DRIVERS\xaudio.sys
          2011/04/30 15:36:50.0457 3408 xnacc (9eea6d029fef5f3016d089b1a603837d) C:\Windows\system32\DRIVERS\xnacc.sys
          2011/04/30 15:36:50.0584 3408 xusb21 (ee9144207ee0211eb5656ba6808ac4a0) C:\Windows\system32\DRIVERS\xusb21.sys
          2011/04/30 15:36:50.0703 3408 \HardDisk0 - detected Rootkit.Win32.TDSS.tdl4 (0)
          2011/04/30 15:36:50.0718 3408 ================================================================================
          2011/04/30 15:36:50.0718 3408 Scan finished
          2011/04/30 15:36:50.0718 3408 ================================================================================
          2011/04/30 15:36:50.0748 4284 Detected object count: 2
          2011/04/30 15:37:33.0998 4284 Locked file(sptd) - User select action: Skip
          2011/04/30 15:37:34.0051 4284 \HardDisk0 (Rootkit.Win32.TDSS.tdl4) - will be cured after reboot
          2011/04/30 15:37:34.0051 4284 \HardDisk0 - ok
          2011/04/30 15:37:34.0054 4284 Rootkit.Win32.TDSS.tdl4(\HardDisk0) - User select action: Cure
          2011/04/30 15:37:59.0538 1200 Deinitialize success
          0
          1. Contributeur sécurité
            Re,

            Ouvre ce lien :

            https://support.kaspersky.com/fr/14421

            et fais ce qui est indiqué en dessous de "La désinfection du système infecté"

            En particulier, si tu as le choix, choisis Cure et non une autre action.

            Poste le rapport dans ta réponse.
            0
            1. Rebonjour,
              Voilà je ne sais pas comment, mais sa à fonctionné voilà le lien :
              http://www.cijoint.fr/cjlink.php?file=cj201104/cijguCGN0s.txt
              0
              1. Contributeur sécurité
                Bonjour,

                ZHPDiag s'est exécuté ?

                J'ai besoin de toutes les lignes.

                Si tu ne peux ps passer par un lien Cijoint, poste le par morceau.
                0
                1. Bonjour,
                  Comment puis-je faire pour le rapport de ZHPDiag ? Vous avez besoin d'une ligne spéciale ? Ou plusieurs ?
                  0
                  1. Contributeur sécurité
                    Re,

                    tes screens montrent que Ad-remover a fait son travail.

                    Est ce que ZHPDiag s'exécuterait correctement en mode sans échec ?

                    Sinon, en mode normal, avant de cliquer sur la loupe, clique sur le tournevis et décoche l'option O44.
                    0
                    1. ZHPDiag plante quand il est à 44% et je suis obligé de relancer mon ordinateur.
                      Vous ne voyez pas du tout sur mes screens ?
                      Merci, bonne soirée.
                      0
                      1. Contributeur sécurité
                        Re,

                        fais redémarrer l'ordi,

                        relance ZHPDiag et essaye de poster le rapport dans un lien Cijoint.
                        0
                        1. http://www.hostingpics.net/viewer.php?id=183338rapport1.jpg
                          http://www.hostingpics.net/viewer.php?id=723427rapport2.jpg
                          http://www.hostingpics.net/viewer.php?id=724637rapport3.jpg

                          J'ai screener le fichier, j'espère que c'est asser visible.
                          Merci, bonne soirée.
                          0
                          1. Contributeur sécurité
                            Re,

                            non, je pense que c'est toi.
                            0
                            1. Oui, que puis-je faire ?
                              Parfois, je n'écris que quelques mots, et ça me dit "Veuillez écrire correctement.."
                              C'est le forum qui à un problème ?
                              0
                              1. Contributeur sécurité
                                Re,

                                tu cliques d'abord sur Répondre au sujet ?
                                0
                                1. Bonjour,
                                  Quand je veux faire "Valider" pour vous montrer le rapport, ça bloque encore et il y a écrit "Titre du message non renseigné"
                                  0
                                  1. Contributeur sécurité
                                    Re,

                                    fais déjà ça :

                                    * Télécharge de AD-Remover sur ton Bureau. (Merci à C_XX)
                                    http://www.teamxscript.org/adremoverTelechargement.html

                                    /!\ Déconnecte-toi d'internet et ferme toutes applications en cours /!\

                                    Désactive provisoirement et seulement le temps de l'utilisation de ADremover, la protection en temps réel de ton Antivirus et de tes Antispywares, qui peuvent gêner fortement la procédure de recherche et de nettoyage de l'outil.

                                    - Double-clique sur l'icône Ad-remover située sur ton Bureau.
                                    - Sur la page, clique sur le bouton « NETTOYER »
                                    - Confirme lancement du scan
                                    - Laisse travailler l'outil.
                                    - Poste le rapport qui apparaît à la fin.

                                    (Le rapport est sauvegardé aussi sous C:\Ad-report(Scan/clean).Txt)

                                    (CTRL+A pour tout sélectionner, CTRL+C pour copier et CTRL+V pour coller)
                                    0
                                    1. Bonjour,
                                      Quand j'essaie de mettre la suite, au dessus de la fenêtre il y a écrit (syntax error).
                                      0
                                      1. Rapport de ZHPDiag v1.27.193 par Nicolas Coolman, Update du 28/04/2011
                                        Run by Alan at 29/04/2011 01:56:01
                                        Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html

                                        ---\\ Web Browser
                                        MSIE: Internet Explorer v8.0.6001.19019
                                        MFIE: Mozilla Firefox v3.6.16 (fr) (Defaut)

                                        ---\\ System Information
                                        Windows Vista Home Premium Edition, 32-bit Service Pack 2 (Build 6002)
                                        Processor: x86 Family 6 Model 15 Stepping 13, GenuineIntel
                                        Operating System: 32 Bits
                                        Boot mode: Normal (Normal boot)
                                        Total RAM: 3066 MB (60% free)
                                        System Restore: Activé (Enable)
                                        System drive C: has 27 GB (39%) free of 70 GB

                                        ---\\ Logged in mode
                                        Computer Name: PC-DE-KARINE
                                        User Name: Alan
                                        All Users Names: karine, ASPNET, Alan, Administrateur,
                                        Unselected Option: O45,O61,O62,O65,O66,O82
                                        Logged in as Administrator

                                        ---\\ Environnement Variables
                                        %AppData%=
                                        %LocalAppData%=
                                        %StartMenu%=

                                        ---\\ DOS/Devices
                                        C:\ Hard drive, Flash drive, Thumb drive (Free 27 Go of 70 Go)
                                        D:\ Hard drive, Flash drive, Thumb drive (Free 14 Go of 66 Go)
                                        F:\ CD-ROM drive (Free 0 Go of 0 Go)
                                        G:\ CD-ROM drive (Not Inserted)

                                        ---\\ Security Center & Tools Informations
                                        [HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK
                                        [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK
                                        [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
                                        [HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
                                        [HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK
                                        [HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
                                        [HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
                                        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
                                        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
                                        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK
                                        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK
                                        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
                                        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK
                                        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK
                                        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK
                                        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: OK
                                        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
                                        [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK
                                        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
                                        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK

                                        ---\\ Recherche particulière de fichiers génériques
                                        [MD5.D07D4C3038F3578FFCE1C0237F2A1253] - (.Microsoft Corporation - Explorateur Windows.) (.11/04/2009 07:27:36.) -- C:\Windows\Explorer.exe [2926592]
                                        [MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) (.21/01/2008 03:23:42.) -- C:\Windows\system32\Wininit.exe [96768]
                                        [MD5.74BCC23D622F32DA0450D164735ACAB1] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.18/12/2010 07:27:04.) -- C:\Windows\system32\wininet.dll [916480]
                                        [MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.11/04/2009 07:28:13.) -- C:\Windows\system32\Winlogon.exe [314368]
                                        [MD5.2D9C903DC76A66813D350A562DE40ED9] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.21/01/2008 03:23:00.) -- C:\Windows\system32\drivers\atapi.sys [21560]
                                        [MD5.6A4A98CEE84CF9E99564510DDA4BAA47] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.11/04/2009 07:32:49.) -- C:\Windows\system32\drivers\ntfs.sys [1083880]

                                        ---\\ Processus lancés
                                        [MD5.D3804513FC9C11A4637392B4F0F43BC5] - (.Intel Corporation - Event Monitor User Notification Tool.) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe [182808]
                                        [MD5.50F5E1205E8DCA4EE482198B30DB4206] - (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe [6294048]
                                        [MD5.03726930815B2F8369C733315A298658] - (.Acer Inc. - Acer ePower Management - DMC.) -- C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe [405504]
                                        [MD5.15A33EF5C43C5ADBABECA6B216D839B5] - (.Egis Incorporated - Acer eDataSecurity Management Loader.) -- C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSLoader.exe [526896]
                                        [MD5.41A33F0C9A269A9E04D8593396216D4E] - (.Acer Incorporated - Notification tool for RealTek audio chip.) -- C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe [544768]
                                        [MD5.D7EE83A9257D508656172A2B9DD3C317] - (.Pas de propriétaire - NTI Backup Now 5 Tray Module.) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe [28672]
                                        [MD5.5C080C61235C74568C2978FC7E602AE0] - (.Synaptics, Inc. - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1049896]
                                        [MD5.545DE8DD46B9C4C20E84DE9532C39FF4] - (.Dritek System Inc. - Launch Manager.) -- C:\Program Files\Launch Manager\QtZgAcer.EXE [817672]
                                        [MD5.7AF5A466CF4AECA28E3DCBCF5B6FD220] - (.Hewlett-Packard Co. - Hewlett-Packard Product Assistant.) -- C:\Program Files\HP\HP Software Update\hpwuSchd2.exe [49152]
                                        [MD5.9D5E8B45BD348DF0882C69EED0E83111] - (.Avira GmbH - Antivirus System Tray Tool.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [281768]
                                        [MD5.4AB05041D5C922B9A7A5D9059F5538CD] - (.Microsoft Corporation - User session Windows Mobile device handler.) -- C:\Windows\WindowsMobile\wmdSync.exe [215552]
                                        [MD5.C7F8F961692040215B9464D4A86707BE] - (.SweetIM Technologies Ltd. - SweetIM Instant Messenger Enhancer.) -- C:\Program Files\SweetIM\Messenger\SweetIM.exe [111928]
                                        [MD5.37BF603C3685289CA684C4D3400A9DE7] - (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe [35760]
                                        [MD5.BAD6BEA0DE1F69C82BDB74378CE0C20A] - (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [932288]
                                        [MD5.2E5212A0BFB98FE0167C92C76C87AFE3] - (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [249064]
                                        [MD5.0CFBE2D135A73CA98381FC8CC8BC5A03] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe [421160]
                                        [MD5.EC8882F389B86894C79CC5E98A1E124E] - (.Okozo - OkozoDesktop.) -- C:\Program Files\Okozo\Okozo Desktop\OkozoDesktop.exe [331776]
                                        [MD5.BF08674925F151BD4537B89A493E3E0C] - (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehtray.exe [125952]
                                        [MD5.B2994EC6452DBD04E57828EEFEDFB93C] - (.Realtek Semiconductor Corp. - Realtek HD Audio Data Rerouter.) -- C:\Users\Alan\AppData\Local\Temp\RtkBtMnt.exe [204800]
                                        [MD5.0F4195B9B348DE5CF9B822F81704B20E] - (.Microsoft Corporation - Media Center Media Status Aggregator Servic.) -- C:\Windows\ehome\ehmsas.exe [37376]
                                        [MD5.D641DB524C3D9A1AB72F94BDC6FF27D7] - (.Synaptics, Inc. - Synaptics Pointing Device Helper.) -- C:\Program Files\Synaptics\SynTP\SynTPHelper.exe [103720]
                                        [MD5.0F3FA9FDB976C567EC0491685CF4FDF7] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [912344]
                                        [MD5.59E2A529D9ABCFA2024153A05FE693A1] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [644608]
                                        [MD5.62BB79160F86CD962F312C68C6239BFD] - (.Microsoft Corporation - Windows Update.) -- C:\Windows\system32\wuauclt.exe [53472]
                                        [MD5.3AFF6B10C34CB8EAA6D6D5AA55193571] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files\Mozilla Firefox\plugin-container.exe [16856]

                                        ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
                                        M3 - MFPP: Plugins - [Alan] -- C:\Program Files\Mozilla FireFox\searchplugins\amazon-france.xml
                                        M3 - MFPP: Plugins - [Alan] -- C:\Program Files\Mozilla FireFox\searchplugins\cnrtl-tlfi-fr.xml
                                        M3 - MFPP: Plugins - [Alan] -- C:\Program Files\Mozilla FireFox\searchplugins\eBay-france.xml
                                        M3 - MFPP: Plugins - [Alan] -- C:\Program Files\Mozilla FireFox\searchplugins\google.xml
                                        M3 - MFPP: Plugins - [Alan] -- C:\Program Files\Mozilla FireFox\searchplugins\MediaDICO-fr.xml
                                        M3 - MFPP: Plugins - [Alan] -- C:\Program Files\Mozilla FireFox\searchplugins\wikipedia-fr.xml
                                        M3 - MFPP: Plugins - [Alan] -- C:\Program Files\Mozilla FireFox\searchplugins\yahoo-france.xml
                                        P2 - FPN:Firefox Plugin Navigator . (.Microsoft Corporation - np-mswmp.) -- C:\Program Files\Mozilla Firefox\Plugins\np-mswmp.dll
                                        P2 - FPN:Firefox Plugin Navigator . (.Sun Microsystems, Inc. - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- C:\Program Files\Mozilla Firefox\Plugins\npdeployJava1.dll
                                        P2 - FPN:Firefox Plugin Navigator . (.Synatix GmbH - Gutscheinmieze-Plugin.) -- C:\Program Files\Mozilla Firefox\Plugins\npmieze.dll
                                        P2 - FPN:Firefox Plugin Navigator . (.mozilla.org - Default Plug-in.) -- C:\Program Files\Mozilla Firefox\Plugins\npnul32.dll
                                        P2 - FPN:Firefox Plugin Navigator . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape "9.4.3".) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll
                                        P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin.dll
                                        P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin2.dll
                                        P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin3.dll
                                        P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin4.dll
                                        P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin5.dll
                                        P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin6.dll
                                        P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin7.dll
                                        P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Pas de propriétaire - Pas de description.) -- C:\Windows\system32\Macromed\Flash\NPSWF32.dll
                                        P2 - FPN: [HKLM] [@adobe.com/ShockwavePlayer] - (.Adobe Systems, Inc. - Adobe Shockwave for Director Netscape plug-in, version 11.5.9.620.) -- C:\Windows\system32\Adobe\Director\np32dsw.dll
                                        P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Pas de propriétaire - Pas de description.) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
                                        P2 - FPN: [HKLM] [@bitmanagement.com/BS Contact] - (.Pas de propriétaire - Pas de description.) -- C:\Program Files\Bitmanagement Software\BS Contact\npBSContact.dll (.not file.)
                                        P2 - FPN: [HKLM] [@bitmanagement.com/BSVersion,version=1.006] - (.Pas de propriétaire - Pas de description.) -- C:\Program Files\Bitmanagement Software\BS Contact\npBSVersion_6.dll (.not file.)
                                        P2 - FPN: [HKLM] [@divx.com/DivX Browser Plugin,version=1.0.0] - (.DivX,Inc. - DivX Web Player version 2.0.3.4.) -- C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
                                        P2 - FPN: [HKLM] [@divx.com/DivX VOD Helper,version=1.0.0] - (.DivX, LLC. - DivX VOD Helper Plug-in.) -- C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll
                                        P2 - FPN: [HKLM] [@java.com/JavaPlugin] - (.Sun Microsystems, Inc. - Next Generation Java Plug-in 1.6.0_24 for Mozilla browsers.) -- C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
                                        P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 4.0.60129.0.) -- C:\Program Files\Microsoft Silverlight\4.0.60129.0\npctrl.dll
                                        P2 - FPN: [HKLM] [@microsoft.com/OfficeLive,version=1.5] - (.Microsoft Corp. - Office Live Update v1.5.) -- C:\Program Files\Microsoft\Office Live\npOLW.dll
                                        P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
                                        P2 - FPN: [HKLM] [@pandonetworks.com/PandoWebPlugin] - (.Pando Networks - Pando Web Plugin.) -- C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll
                                        P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=8] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.2.183.13\npGoogleOneClick8.dll
                                        P2 - FPN: [HKLM] [@veetle.com/veetleCorePlugin,version=0.9.18] - (.Veetle Inc - Version 0.9.18, Copyright 2006-2009 Veetle Inc<br><a href="http://www..) -- C:\Program Files\Veetle\plugins\npVeetle.dll
                                        P2 - FPN: [HKLM] [@veetle.com/veetlePlayerPlugin,version=0.9.18] - (.Veetle Inc - Version 0.9.18, copyright 2006-2010 Veetle Inc<br><a href="http://www..) -- C:\Program Files\Veetle\Player\npvlc.dll
                                        P2 - FPN: [HKCU] [@bitmanagement.com/BS Contact] - (.Bitmanagement Software GmbH - BS Contact VRML/X3D FireFox plug-in.) -- C:\Users\Alan\AppData\Local\Bitmanagement Software\BS Contact\npBSContact.dll
                                        P2 - FPN: [HKCU] [@bitmanagement.com/BSVersion,version=1.006] - (.Bitmanagement Software GmbH - BS Version Control.) -- C:\Users\Alan\AppData\Local\Bitmanagement Software\BS Contact\npBSVersion_6.dll

                                        ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
                                        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com
                                        R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.searchcanvas.com
                                        R0 - HKUS\S-1-5-21-3830614223-3139102944-1032725315-1003\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com
                                        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
                                        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com
                                        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
                                        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com
                                        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com
                                        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
                                        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
                                        R1 - HKUS\S-1-5-21-3830614223-3139102944-1032725315-1003\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
                                        R3 - URLSearchHook: Shareware.Pro-FR Toolbar - {280b5d37-4a76-467a-b3d6-942fca90acde} . (.Conduit Ltd. - Conduit Toolbar.) (4, 5, 189, 24) -- C:\Program Files\Shareware.Pro-FR\tbShar.dll
                                        R3 - URLSearchHook: Vuze Remote Toolbar - {ba14329e-9550-4989-b3f2-9732e92d17cc} . (.Conduit Ltd. - Conduit Toolbar.) (6.3.0.26) -- C:\Program Files\Vuze_Remote\prxtbVuze.dll
                                        R3 - URLSearchHook: SweetIM ToolbarURLSearchHook Class - {EEE6C35D-6118-11DC-9C72-001320C79847} . (.SweetIM Technologies Ltd. - SweetIM Toolbar Helper Module.) (3, 6, 0, 8) -- C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll

                                        ---\\ Internet Explorer, Proxy Management (R5)
                                        R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
                                        R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
                                        R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
                                        R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
                                        R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

                                        ---\\ ---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
                                        F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,
                                        F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

                                        ---\\ Browser Helper Objects de navigateur (O2)
                                        O2 - BHO: vShare Plugin - {043C5167-00BB-4324-AF7E-62013FAEDACF} . (.Pas de propriétaire - Pas de description.) -- C:\Program Files\vShare\vshare_toolbar.dll
                                        O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
                                        O2 - BHO: Shareware.Pro-FR Toolbar - {280b5d37-4a76-467a-b3d6-942fca90acde} . (.Conduit Ltd. - Conduit Toolbar.) -- C:\Program Files\Shareware.Pro-FR\tbShar.dll
                                        O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} . (.Conduit Ltd. - Conduit Toolbar.) -- C:\Program Files\ConduitEngine\prxConduitEngine.dll
                                        O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} . (.Safer Networking Limited - SBSD IE Protection.) -- C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
                                        O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} . (.Microsoft Corporation - Search Helper for Internet Explorer.) -- C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
                                        O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} . (.Egis - ActiveToolBand Module.) -- C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll
                                        O2 - BHO: Vuze Remote - {ba14329e-9550-4989-b3f2-9732e92d17cc} . (.Conduit Ltd. - Conduit Toolbar.) -- C:\Program Files\Vuze_Remote\prxtbVuze.dll
                                        O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} . (.Ask - Ask Toolbar.) -- C:\Program Files\Ask.com\GenericAskToolbar.dll
                                        O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll
                                        O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} . (.SweetIM Technologies Ltd. - SweetIM Toolbar for Internet Explorer.) -- C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll

                                        ---\\ Internet Explorer Toolbars (O3)
                                        O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} . (.Egis Incorporated. - Acer eDataSecurity Management Explorer Tool.) -- C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
                                        O3 - Toolbar: Shareware.Pro-FR Toolbar - {280b5d37-4a76-467a-b3d6-942fca90acde} . (.Conduit Ltd. - Conduit Toolbar.) -- C:\Program Files\Shareware.Pro-FR\tbShar.dll
                                        O3 - Toolbar: SweetIM Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} . (.SweetIM Technologies Ltd. - SweetIM Toolbar for Internet Explorer.) -- C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
                                        O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} . (.Ask - Ask Toolbar.) -- C:\Program Files\Ask.com\GenericAskToolbar.dll
                                        O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} . (.Conduit Ltd. - Conduit Toolbar.) -- C:\Program Files\ConduitEngine\prxConduitEngine.dll
                                        O3 - Toolbar: vShare Plugin - {043C5167-00BB-4324-AF7E-62013FAEDACF} . (.Pas de propriétaire - Pas de description.) -- C:\Program Files\vShare\vshare_toolbar.dll
                                        O3 - Toolbar: Vuze Remote Toolbar - {ba14329e-9550-4989-b3f2-9732e92d17cc} . (.Conduit Ltd. - Conduit Toolbar.) -- C:\Program Files\Vuze_Remote\prxtbVuze.dll
                                        O3 - Toolbar: Gutscheinmieze - {DFEFCDEE-CF1A-4FC8-88AD-48514E463B27} . (.Synatix GmbH - GM(S) - Toolbar.) -- C:\Users\karine\AppData\Roaming\Gutscheinmieze\toolbar.dll

                                        ---\\ ---\\ Applications démarrées par registre & par dossier (O4)
                                        O4 - HKLM\..\Run: [IAAnotif] . (.Intel Corporation - Event Monitor User Notification Tool.) -- C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
                                        O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe
                                        O4 - HKLM\..\Run: [ePower_DMC] . (.Acer Inc. - Acer ePower Management - DMC.) -- C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe
                                        O4 - HKLM\..\Run: [eDataSecurity Loader] . (.Egis Incorporated - Acer eDataSecurity Management Loader.) -- C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe
                                        O4 - HKLM\..\Run: [eAudio] . (.Acer Incorporated - Notification tool for RealTek audio chip.) -- C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe
                                        O4 - HKLM\..\Run: [BkupTray] . (.Pas de propriétaire - NTI Backup Now 5 Tray Module.) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe
                                        O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics, Inc. - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
                                        O4 - HKLM\..\Run: [LManager] . (.Dritek System Inc. - Launch Manager.) -- C:\PROGRA~1\LAUNCH~1\QtZgAcer.exe
                                        O4 - HKLM\..\Run: [ProductReg] . (.Acer - ProductR Application.) -- C:\Program Files\Acer\WR_PopUp\ProductReg.exe
                                        O4 - HKLM\..\Run: [HP Software Update] . (.Hewlett-Packard Co. - Hewlett-Packard Product Assistant.) -- C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
                                        O4 - HKLM\..\Run: [avgnt] . (.Avira GmbH - Antivirus System Tray Tool.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
                                        O4 - HKLM\..\Run: [Windows Mobile-based device management] . (.Microsoft Corporation - User session Windows Mobile device handler.) -- C:\Windows\WindowsMobile\wmdSync.exe
                                        O4 - HKLM\..\Run: [SweetIM] . (.SweetIM Technologies Ltd. - SweetIM Instant Messenger Enhancer.) -- C:\Program Files\SweetIM\Messenger\SweetIM.exe
                                        O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
                                        O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
                                        O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe
                                        O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe
                                        O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe
                                        O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware (reboot)] . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
                                        O4 - HKCU\..\Run: [WindowsWelcomeCenter] oobefldr.dll
                                        O4 - HKCU\..\Run: [Okozo] . (.Okozo - OkozoDesktop.) -- C:\Program Files\Okozo\Okozo Desktop\OkozoDesktop.exe
                                        O4 - HKCU\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehTray.exe
                                        O4 - HKUS\S-1-5-18\..\Run: [GAGEZ8R8ZB] C:\Windows\TEMP\Wlj.exe (.not file.)
                                        O4 - HKUS\S-1-5-18\..\Run: [GAGEZ8R8ZB] C:\Windows\TEMP\Wlj.exe (.not file.)
                                        O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
                                        O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] oobefldr.dll
                                        O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
                                        O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] oobefldr.dll
                                        O4 - HKUS\S-1-5-21-3830614223-3139102944-1032725315-1003\..\Run: [WindowsWelcomeCenter] oobefldr.dll
                                        O4 - HKUS\S-1-5-21-3830614223-3139102944-1032725315-1003\..\Run: [Okozo] . (.Okozo - OkozoDesktop.) -- C:\Program Files\Okozo\Okozo Desktop\OkozoDesktop.exe
                                        O4 - HKUS\S-1-5-21-3830614223-3139102944-1032725315-1003\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehTray.exe

                                        ---\\ ---\\ Autres liens utilisateurs (O4)
                                        O4 - Global Startup: C:\Users\Alan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
                                        O4 - Global Startup: C:\Users\Alan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Mail\WinMail.exe
                                        O4 - Global Startup: C:\Users\Alan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
                                        O4 - Global Startup: C:\Users\Alan\Desktop\Dofus 2.lnk . (...) -- C:\Program Files\Dofus 2\app\UpLauncher.exe
                                        O4 - Global Startup: C:\Users\Alan\Desktop\Regnum Online.lnk . (...) -- C:\Games\NGD Studios\Regnum Online\RegnumOnline.exe
                                        O4 - Global Startup: C:\Users\Alan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
                                        O4 - Global Startup: C:\Users\Alan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\PhotoScape.lnk . (...) -- C:\Program Files\PhotoScape\PhotoScape.exe
                                        O4 - Global Startup: C:\Users\Alan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe

                                        ---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
                                        O9 - Extra button: Uninstall BitDefender Online Scanner - {85d1f590-48f4-11d9-9669-0800200c9a66} . (...) -- C:\Windows\bdoscandel.exe
                                        O9 - Extra button: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} . (...) -- C:\Windows\bdoscandel.exe

                                        ---\\ Winsock hijacker (Layered Service Provider) (O10)
                                        O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
                                        O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
                                        O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
                                        O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
                                        O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
                                        O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
                                        O10 - WLSP:\000000000007\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files\Bonjour\mdnsNSP.dll

                                        ---\\ Objets ActiveX (Downloaded Program Files)(O16)
                                        O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scanner/sources/fr/scan8/oscan8.cab
                                        O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} () - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

                                        ---\\ Modification Domaine/Adresses DNS (O17)
                                        O17 - HKLM\System\CCS\Services\Tcpip\..\{09ACE13C-DDE6-4F20-8565-18A31327E8E8}: DhcpNameServer = 192.168.1.1
                                        O17 - HKLM\System\CCS\Services\Tcpip\..\{D25D8CD3-68E3-407E-B406-CD10D14F6D65}: DhcpNameServer = 192.168.1.1
                                        O17 - HKLM\System\CS1\Services\Tcpip\..\{09ACE13C-DDE6-4F20-8565-18A31327E8E8}: DhcpNameServer = 192.168.1.1
                                        O17 - HKLM\System\CS1\Services\Tcpip\..\{D25D8CD3-68E3-407E-B406-CD10D14F6D65}: DhcpNameServer = 192.168.1.1
                                        O17 - HKLM\System\CS3\Services\Tcpip\..\{09ACE13C-DDE6-4F20-8565-18A31327E8E8}: DhcpNameServer = 192.168.1.1
                                        O17 - HKLM\System\CS3\Services\Tcpip\..\{D25D8CD3-68E3-407E-B406-CD10D14F6D65}: DhcpNameServer = 192.168.1.1
                                        O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

                                        ---\\ Protocole additionnel et piratage de protocole (O18)
                                        O18 - Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype for COM API.) -- C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
                                        O18 - Handler: vsharechrome - {3F3A4B8A-86FC-43A4-BB00-6D7EBE9D4484} . (.Pas de propriétaire - Pas de description.) -- C:\Program Files\vShare\vshare_toolbar.dll

                                        ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
                                        O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Contrôleur de site Web.) -- C:\Windows\System32\webcheck.dll

                                        ---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22)
                                        O22 - SharedTaskScheduler: (no name) - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\Windows\system32\browseui.dll

                                        ---\\ Liste des services NT non Microsoft et non désactivés (O23)
                                        O23 - Service: (AntiVirSchedulerService) . (.Avira GmbH - Antivirus Scheduler.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe
                                        O23 - Service: (AntiVirService) . (.Avira GmbH - Antivirus On-Access Service.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
                                        O23 - Service: (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
                                        O23 - Service: (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
                                        O23 - Service: (BUNAgentSvc) . (.NewTech Infosystems, Inc. - NTI Backup Now 5 Agent service..) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe
                                        O23 - Service: (eDataSecurity Service) . (.Egis Incorporated - Acer eDataSecurity Management Service.) - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
                                        O23 - Service: (ETService) . (.Pas de propriétaire - Acer Empowering Technology Framework Servic.) - C:\Program Files\Acer\Empowering Technology\Service\ETService.exe
                                        O23 - Service: (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe
                                        O23 - Service: (IAANTMON) . (.Intel Corporation - RAID Monitor.) - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
                                        O23 - Service: (iPod Service) . (.Apple Inc. - iPodService Module (32-bit).) - C:\Program Files\iPod\bin\iPodService.exe
                                        O23 - Service: (LightScribeService) . (.Hewlett-Packard Company - Pas de description.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
                                        O23 - Service: (MobilityService) . (.Pas de propriétaire - app.) - C:\Acer\Mobility Center\MobilityService.exe
                                        O23 - Service: (npggsvc) . (.INCA Internet Co., Ltd. - nProtect Game Monitor Rev 1447.) - C:\Windows\system32\GameMon.des
                                        O23 - Service: (NTIBackupSvc) . (.NewTech InfoSystems, Inc. - NTI Backup Now 5 BackupSvc Application.) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
                                        O23 - Service: (NTISchedulerSvc) . (...) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
                                        O23 - Service: (ServiceLayer) . (.Nokia - ServiceLayer Module.) - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
                                        O23 - Service: (XAudioService) . (.Conexant Systems, Inc. - Modem Audio Service.) - C:\Windows\system32\DRIVERS\xaudio.exe

                                        ---\\ Enumération Active Desktop & MHTML Editor (O24)
                                        O24 - Default MHTML Editor: Last - .(...) - (.not file.)

                                        ---\\ Tâches planifiées en automatique (O39)
                                        O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
                                        O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
                                        O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3830614223-3139102944-1032725315-1000Core.job
                                        O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3830614223-3139102944-1032725315-1000UA.job
                                        O39 - APT:Automatic Planified Task - C:\Windows\Tasks\User_Feed_Synchronization-{A1A28EBB-462B-420F-9DCA-AD409E0065BA}.job
                                        [MD5.00000000000000000000000000000000] [APT] [DriverScanner] (.Pas de propriétaire.) -- C:\Program Files\Uniblue\DriverScanner\dsmonitor.exe (.not file.)
                                        [MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe
                                        [MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe
                                        [MD5.00000000000000000000000000000000] [APT] [GoogleUpdateTaskUserS-1-5-21-3830614223-3139102944-1032725315-1000Core] (.Pas de propriétaire.) -- C:\Users\Alan\AppData\Local\Google\Update\GoogleUpdate.exe (.not file.)
                                        [MD5.00000000000000000000000000000000] [APT] [GoogleUpdateTaskUserS-1-5-21-3830614223-3139102944-1032725315-1000UA] (.Pas de propriétaire.) -- C:\Users\Alan\AppData\Local\Google\Update\GoogleUpdate.exe (.not file.)
                                        [MD5.00000000000000000000000000000000] [APT] [RealUpgradeLogonTaskS-1-5-21-3830614223-3139102944-1032725315-1000] (.Pas de propriétaire.) -- C:\Program Files\Real\RealUpgrade\RealUpgrade.exe (.not file.)
                                        [MD5.00000000000000000000000000000000] [APT] [RealUpgradeScheduledTaskS-1-5-21-3830614223-3139102944-1032725315-1000] (.Pas de propriétaire.) -- C:\Program Files\Real\RealUpgrade\RealUpgrade.exe (.not file.)
                                        [MD5.00000000000000000000000000000000] [APT] [R'veil] (.Pas de propriétaire.) -- C:\Users\Alan\Music\pink\Pink - Please Don't Leave Me.mp3" (.not file.)
                                        [MD5.95B44F3CCAC43A47649C1F1BC84ED517] [APT] [Scheduled Update for Ask Toolbar] (.Pas de propriétaire.) -- C:\Program Files\Ask.com\UpdateTask.exe
                                        [MD5.00000000000000000000000000000000] [APT] [{22116563-108C-42c0-A7CE-60161B75E508}] (.Pas de propriétaire.) -- C:\Windows\TEMP\Wlk.exe (.not file.)
                                        [MD5.00000000000000000000000000000000] [APT] [{39531A4D-F3FD-4D85-9E26-0057867C6418}] (.Pas de propriétaire.) -- C:\Program Files\Google\Chrome\Application\chrome.exe0326384de7010ace30902a83c29da5&uhash3=b3b79cc65a17de132c5b2d89a2b330bc&uhash4=c36ad720e2
                                        [MD5.00000000000000000000000000000000] [APT] [{62C40AA6-4406-467a-A5A5-DFDF1B559B7A}] (.Pas de propriétaire.) -- C:\Windows\Wmofac.exe (.not file.)
                                        [MD5.00000000000000000000000000000000] [APT] [{BBAEAEAF-1275-40e2-BD6C-BC8F88BD114A}] (.Pas de propriétaire.) -- C:\Windows\TEMP\Wll.exe (.not file.)
                                        [MD5.187E0D2AB859AD03393DDD731076BE81] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files\Apple Software Update\SoftwareUpdate.exe

                                        ---\\ Pilotes lancés au démarrage (O41)
                                        O41 - Driver: (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
                                        O41 - Driver: (avgio) . (.Avira GmbH - Avira AntiVir Support for Minifilter.) - C:\Program Files\Avira\AntiVir Desktop\avgio.sys
                                        O41 - Driver: (avipbb) . (.Avira GmbH - Avira Driver for Security Enhancement.) - C:\Windows\System32\DRIVERS\avipbb.sys
                                        O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
                                        O41 - Driver: C:\Windows\system32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
                                        O41 - Driver: (i8042prt) . (.Microsoft Corporation - Pilote de port i8042.) - C:\Windows\System32\DRIVERS\i8042prt.sys
                                        O41 - Driver: (kbdclass) . (.Microsoft Corporation - Pilote de la classe Clavier.) - C:\Windows\System32\DRIVERS\kbdclass.sys
                                        O41 - Driver: (kbdhid) . (.Microsoft Corporation - Pilote de filtre clavier HID.) - C:\Windows\System32\DRIVERS\kbdhid.sys
                                        O41 - Driver: (mouclass) . (.Microsoft Corporation - Pilote de la classe Souris.) - C:\Windows\System32\DRIVERS\mouclass.sys
                                        O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
                                        O41 - Driver: (netbt) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
                                        O41 - Driver: (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
                                        O41 - Driver: C:\Windows\system32\drivers\pacer.sys (PSched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
                                        O41 - Driver: (RasAcd) . (.Microsoft Corporation - RAS Automatic Connection Driver.) - C:\Windows\System32\DRIVERS\rasacd.sys
                                        O41 - Driver: (rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\Windows\System32\DRIVERS\rdbss.sys
                                        O41 - Driver: (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
                                        O41 - Driver: (RDPENCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
                                        O41 - Driver: (SASDIFSV) . (.SUPERAdBlocker.com and SUPERAntiSpyware.com - SASDIFSV.SYS.) - C:\Program Files\SUPERAntiSpyware\SASDIFSV.sys
                                        O41 - Driver: (SASKUTIL) . (.SUPERAdBlocker.com and SUPERAntiSpyware.com - SASKUTIL.SYS.) - C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys
                                        O41 - Driver: C:\Windows\system32\tcpipcfg.dll (Smb) . (.Microsoft Corporation - SMB Transport driver.) - C:\Windows\System32\DRIVERS\smb.sys
                                        O41 - Driver: (ssmdrv) . (.Avira GmbH - AVIRA SnapShot Driver.) - C:\Windows\System32\DRIVERS\ssmdrv.sys
                                        O41 - Driver: C:\Windows\system32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
                                        O41 - Driver: (TermDD) . (.Microsoft Corporation - Terminal Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys
                                        O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
                                        O41 - Driver: (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys

                                        ---\\ Logiciels installés (O42)
                                        O42 - Logiciel: 32 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM] -- {F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}
                                        O42 - Logiciel: AVS Audio Converter version 6.1 - (.Online Media Technologies Ltd..) [HKLM] -- AVS Audio Converter 6.1_is1
                                        O42 - Logiciel: AVS Update Manager 1.0 - (.Online Media Technologies Ltd..) [HKLM] -- AVS Update Manager_is1
                                        O42 - Logiciel: AVS4YOU Software Navigator 1.3 - (.Online Media Technologies Ltd..) [HKLM] -- AVS4YOU Software Navigator_is1
                                        O42 - Logiciel: Acer Arcade Deluxe - (.CyberLink Corp..) [HKLM] -- InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}
                                        O42 - Logiciel: Acer Crystal Eye Webcam - (.Acer Crystal Eye Webcam.) [HKLM] -- {DD1DED37-2486-4F56-8F89-56AA814003F5}
                                        O42 - Logiciel: Acer Empowering Technology - (.Acer Incorporated.) [HKLM] -- {8F1B6239-FEA0-450A-A950-B05276CE177C}
                                        O42 - Logiciel: Acer GridVista - (.Pas de propriétaire.) [HKLM] -- GridVista
                                        O42 - Logiciel: Acer Mobility Center Plug-In - (.Acer Inc..) [HKLM] -- {11316260-6666-467B-AC34-183FCB5D4335}
                                        O42 - Logiciel: Acer ScreenSaver - (.Acer Incorporated.) [HKLM] -- {79DD56FC-DB8B-47F5-9C80-78B62E05F9BC}
                                        O42 - Logiciel: Acer eAudio Management - (.CyberLink Corp..) [HKLM] -- {57265292-228A-41FA-9AEC-4620CBCC2739}
                                        O42 - Logiciel: Acer eDataSecurity Management - (.Egis Inc..) [HKLM] -- {A5633652-3795-4829-BB0B-644F0279E279}
                                        O42 - Logiciel: Acer ePower Management - (.Acer Incorporated.) [HKLM] -- {58E5844B-7CE2-413D-83D1-99294BF6C74F}
                                        O42 - Logiciel: Acer eSettings Management - (.Acer Incorporated.) [HKLM] -- {13D85C14-2B85-419F-AC41-C7F21E68B25D}
                                        O42 - Logiciel: Acrobat.com - (.Adobe Systems Incorporated.) [HKLM] -- com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
                                        O42 - Logiciel: Acrobat.com - (.Adobe Systems Incorporated.) [HKLM] -- {A5B48A19-F319-6BFB-82DE-A18ED1087221}
                                        O42 - Logiciel: Activation Assistant for the 2007 Microsoft Office suites - (.Microsoft Corporation.) [HKLM] -- Activation Assistant for the 2007 Microsoft Office suites
                                        O42 - Logiciel: Active GIF Creator 3.3 - (.Pas de propriétaire.) [HKLM] -- Active GIF Creator 3.3
                                        O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR
                                        O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {AFF7E080-1974-45BF-9310-10DE1A1F5ED0}
                                        O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
                                        O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin
                                        O42 - Logiciel: Adobe Reader 9.4.3 - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1033-7B44-A94000000001}
                                        O42 - Logiciel: Adobe Shockwave Player 11.5 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player
                                        O42 - Logiciel: Akamai NetSession Interface - (.Pas de propriétaire.) [HKLM] -- Akamai
                                        O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {2DC94AFD-A6E2-4AB4-9132-4A3F8E07B386}
                                        O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {CACAEB5F-174D-4C7C-AC56-A33289A807CA}
                                        O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {C41300B9-185D-475E-BFEC-39EF732F19B1}
                                        O42 - Logiciel: Ask Toolbar - (.Ask.com.) [HKLM] -- {86D4B82A-ABED-442A-BE86-96357B70F4FE}
                                        O42 - Logiciel: Atheros Communications Inc.(R) AR8121/AR8113/AR8114 Gigabit/Fast Ethernet Driver - (.Atheros Communications Inc..) [HKLM] -- {3108C217-BE83-42E4-AE9E-A56A2A92E549}
                                        O42 - Logiciel: Avira AntiVir Personal - Free Antivirus - (.Avira GmbH.) [HKLM] -- Avira AntiVir Desktop
                                        O42 - Logiciel: BS Contact - (.Bitmanagement Software GmbH.) [HKCU] -- BS Contact
                                        O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {2A981294-F14C-4F0F-9627-D793270922F8}
                                        O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
                                        O42 - Logiciel: CamStudio 2.0 Fr - (.Pas de propriétaire.) [HKLM] -- CamStudio 2.0 Fr_is1
                                        O42 - Logiciel: Conduit Engine - (.Conduit Ltd..) [HKLM] -- conduitEngine
                                        O42 - Logiciel: Configuration DivX - (.DivX, LLC.) [HKLM] -- DivX Setup.divx.com
                                        O42 - Logiciel: EVEREST Ultimate Edition v5.50 - (.Lavalys, Inc..) [HKLM] -- EVEREST Ultimate Edition_is1
                                        O42 - Logiciel: Everest Poker.fr (Remove Only) - (.Pas de propriétaire.) [HKLM] -- Everest Poker.fr
                                        O42 - Logiciel: Fraps (remove only) - (.Pas de propriétaire.) [HKLM] -- Fraps
                                        O42 - Logiciel: Full Pack Codecs - (.Electronic Commerce Factory S.L..) [HKLM] -- Full Pack
                                        O42 - Logiciel: GM(S) - Toolbar - (.Pas de propriétaire.) [HKLM] -- GM(S) - Toolbar
                                        O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
                                        O42 - Logiciel: Gothic III - (.JoWooD Productions Software AG.) [HKLM] -- {02B244A2-7F6A-42E8-A36F-8C385D7A1625}
                                        O42 - Logiciel: HDAUDIO Soft Data Fax Modem with SmartCP - (.Conexant Systems.) [HKLM] -- CNXT_MODEM_HDA_HSF
                                        O42 - Logiciel: HP Customer Participation Program 9.0 - (.HP.) [HKLM] -- HPExtendedCapabilities
                                        O42 - Logiciel: HP Solution Center 9.0 - (.HP.) [HKLM] -- HP Solution Center & Imaging Support Tools
                                        O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB953595
                                        O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB958484
                                        O42 - Logiciel: Intel® Matrix Storage Manager - (.Intel Corporation.) [HKLM] -- {9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}
                                        O42 - Logiciel: Java(TM) 6 Update 24 - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216015FF}
                                        O42 - Logiciel: LG USB Modem driver - (.Pas de propriétaire.) [HKLM] -- {C3ABE126-2BB2-4246-BFE1-6797679B3579}
                                        O42 - Logiciel: LG United Mobile Driver - (.LG Electronics.) [HKLM] -- {2A3A4BD6-6CE0-4E2A-80D2-1D0FF6ACBFBA}
                                        O42 - Logiciel: Launch Manager - (.Pas de propriétaire.) [HKLM] -- LManager
                                        O42 - Logiciel: Logiciel d'archivage WinRAR - (.Pas de propriétaire.) [HKLM] -- WinRAR archiver
                                        O42 - Logiciel: MSVC80_x86_v2 - (.Nokia.) [HKLM] -- {6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}
                                        O42 - Logiciel: MSVC90_x86 - (.Nokia.) [HKLM] -- {AF111648-99A1-453E-81DD-80DBBF6DAD0D}
                                        O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM] -- {40719211-D09A-11DF-BA30-0013D3D69929}
                                        O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
                                        O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
                                        O42 - Logiciel: Malwarebytes' Anti-Malware - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1
                                        O42 - Logiciel: Microsoft .NET Framework 1.1 - (.Microsoft.) [HKLM] -- {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
                                        O42 - Logiciel: Microsoft .NET Framework 1.1 - (.Pas de propriétaire.) [HKLM] -- Microsoft .NET Framework 1.1 (1033)
                                        O42 - Logiciel: Microsoft .NET Framework 1.1 Security Update (KB2416447) - (.Pas de propriétaire.) [HKLM] -- M2416447
                                        O42 - Logiciel: Microsoft .NET Framework 3.5 Language Pack SP1 - fra - (.Microsoft Corporation.) [HKLM] -- {3E31821C-7917-367E-938E-E65FC413EA31}
                                        O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 SP1
                                        O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
                                        O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile
                                        O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}
                                        O42 - Logiciel: Microsoft .NET Framework 4 Client Profile FRA Language Pack - (.Microsoft Corporation.) [HKLM] -- {0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E}
                                        O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
                                        O42 - Logiciel: Microsoft Games for Windows - LIVE Redistributable - (.Microsoft Corporation.) [HKLM] -- {1FDA5A37-B22D-43FF-B582-B8964050DC13}
                                        O42 - Logiciel: Microsoft Office Live Add-in 1.5 - (.Microsoft Corporation.) [HKLM] -- {F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}
                                        O42 - Logiciel: Microsoft Search Enhancement Pack - (.Microsoft Corporation.) [HKLM] -- {4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}
                                        O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
                                        O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM] -- {770657D0-A123-3C07-8E44-1C83EC895118}
                                        O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {7299052b-02a4-4627-81f2-1818da5d550d}
                                        O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {837b34e3-7c30-493c-8f6a-2b0f04e2912c}
                                        O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {A49F249F-0C91-497F-86DF-B2585E8E76B7}
                                        O42 - Logiciel: Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}
                                        O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 - (.Microsoft Corporation.) [HKLM] -- {FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
                                        O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475}
                                        O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
                                        O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 - (.Microsoft Corporation.) [HKLM] -- {196BB40D-1578-3D01-B289-BEFC77A11A1E}
                                        O42 - Logiciel: Microsoft WSE 3.0 Runtime - (.Microsoft Corp..) [HKLM] -- {E3E71D07-CD27-46CB-8448-16D4FB29AA13}
                                        O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {6B1CB38D-E2E4-4a30-933D-EFDEBA76AD9C}
                                        O42 - Logiciel: Microsoft Xbox 360 Accessories 1.1 - (.Microsoft.) [HKLM] -- {9F5DF7FC-3AF2-4502-9084-F62FC00A5A3F}
                                        O42 - Logiciel: Module linguistique Microsoft .NET Framework 3.5 SP1- fra - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 Language Pack SP1 - fra
                                        O42 - Logiciel: Module linguistique Microsoft .NET Framework 4 Client Profile FRA - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile FRA Language Pack
                                        O42 - Logiciel: Mozilla Firefox (3.6.16) - (.Mozilla.) [HKLM] -- Mozilla Firefox (3.6.16)
                                        O42 - Logiciel: NTI Backup Now 5 - (.NewTech Infosystems.) [HKLM] -- InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403}
                                        O42 - Logiciel: NTI Media Maker 8 - (.NewTech Infosystems.) [HKLM] -- InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC}
                                        O42 - Logiciel: NVIDIA Drivers - (.NVIDIA Corporation.) [HKLM] -- NVIDIA Drivers
                                        O42 - Logiciel: Neffy 1,3,29,0 - (.CDNetworks.) [HKLM] -- Neffy
                                        O42 - Logiciel: Nokia Connectivity Cable Driver - (.Nokia.) [HKLM] -- {1597D0AE-34A7-4A8B-A395-2E30EB745470}
                                        O42 - Logiciel: Okozo Desktop - (.Okozo.) [HKLM] -- {F732ABF0-DF55-4AB1-974D-9565B8569979}
                                        O42 - Logiciel: OpenAL - (.Pas de propriétaire.) [HKLM] -- OpenAL
                                        O42 - Logiciel: OpenCV 3x - (.Sarm Software.) [HKLM] -- InstallShield_{073D5DDE-B535-4859-A794-B2B4D933D983}
                                        O42 - Logiciel: OpenOffice.org 3.1 - (.OpenOffice.org.) [HKLM] -- {B2E581DB-C4DD-432C-AC84-ED761AC056BC}
                                        O42 - Logiciel: Orion - (.Convesoft.) [HKLM] -- {5B63A470-9334-44D1-AF61-6CE2DB565AE9}
                                        O42 - Logiciel: PC Connectivity Solution - (.Nokia.) [HKLM] -- {9D6B740F-D9A2-45A6-BDC4-0A453D499FE6}
                                        O42 - Logiciel: Package de pilotes Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0) - (.Nokia.) [HKLM] -- 504244733D18C8F63FF584AEB290E3904E791693
                                        O42 - Logiciel: Pando Media Booster - (.Pando Networks Inc..) [HKLM] -- {980A182F-E0A2-4A40-94C1-AE0C1235902E}
                                        O42 - Logiciel: PhotoScape - (.Pas de propriétaire.) [HKLM] -- PhotoScape
                                        O42 - Logiciel: Pivot Stickfigure Animator - (.Peter Bone.) [HKLM] -- {BEAD39CD-901D-4267-8B8B-EAA83CB4B70D}
                                        O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {57752979-A1C9-4C02-856B-FBB27AC4E02C}
                                        O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
                                        O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM] -- {DC24971E-1946-445D-8A82-CE685433FA7D}
                                        O42 - Logiciel: Regnum Online 1.6.2 - (.NGD Studios.) [HKLM] -- Regnum Online
                                        O42 - Logiciel: SUPERAntiSpyware - (.SUPERAntiSpyware.com.) [HKLM] -- {CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}
                                        O42 - Logiciel: Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB2416473
                                        O42 - Logiciel: Shareware.Pro-FR Toolbar - (.Pas de propriétaire.) [HKLM] -- Shareware.Pro-FR Toolbar
                                        O42 - Logiciel: Skype(TM) 4.2 - (.Skype Technologies S.A..) [HKLM] -- {D103C4BA-F905-437A-8049-DB24763BBE36}
                                        O42 - Logiciel: Spybot - Search & Destroy - (.Safer Networking Limited.) [HKLM] -- {B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1
                                        O42 - Logiciel: SweetIM Toolbar for Internet Explorer 3.6 - (.SweetIM Technologies Ltd..) [HKLM] -- {31CF6C0E-51F0-41D2-B088-A6A143C4303C}
                                        O42 - Logiciel: SweetIM for Messenger 2.8 - (.SweetIM Technologies Ltd..) [HKLM] -- {DF6F459C-8B89-4F88-B63F-A2E136BB6B79}
                                        O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics.) [HKLM] -- SynTPDeinstKey
                                        O42 - Logiciel: TuneUp Companion 1.5.11 - (.TuneUp Media.) [HKLM] -- TuneUpMedia
                                        O42 - Logiciel: Update for Microsoft .NET Framework 3.5 SP1 (KB963707) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707
                                        O42 - Logiciel: VC80CRTRedist - 8.0.50727.4053 - (.DivX, Inc.) [HKLM] -- {5EE7D259-D137-4438-9A5F-42F432EC0421}
                                        O42 - Logiciel: VLC media player 1.0.3 - (.VideoLAN Team.) [HKLM] -- VLC media player
                                        O42 - Logiciel: Veetle TV 0.9.18 - (.Veetle, Inc.) [HKLM] -- Veetle TV
                                        O42 - Logiciel: Vuze Remote Toolbar - (.Vuze Remote.) [HKLM] -- Vuze_Remote Toolbar
                                        O42 - Logiciel: Winbond CIR Device Drivers - (.Winbond Electronics Corporation.) [HKLM] -- {10F498FF-5392-4DF3-8F73-FE172A9F3800}
                                        O42 - Logiciel: Windows Media Player Firefox Plugin - (.Microsoft Corp.) [HKLM] -- {69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}
                                        O42 - Logiciel: Xfire (remove only) - (.Pas de propriétaire.) [HKLM] -- Xfire
                                        O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM] -- {2A697B53-0DE3-42DA-B41D-C3F804B1C538}
                                        O42 - Logiciel: vShare Plugin - (.Pas de propriétaire.) [HKLM] -- vShare

                                        ---\\ HKCU & HKLM Software Keys
                                        [HKCU\Software\Acer]
                                        [HKCU\Software\Adobe]
                                        [HKCU\Software\AhnLab]
                                        [HKCU\Software\AppDataLow\Software\AskToolbar]
                                        [HKCU\Software\AppDataLow\Software\ConduitEngine]
                                        [HKCU\Software\AppDataLow\Software\Conduit]
                                        [HKCU\Software\AppDataLow\Software\Shareware.Pro-FR]
                                        [HKCU\Software\AppDataLow\Software\Vuze_Remote]
                                        [HKCU\Software\AppDataLow\Software]
                                        [HKCU\Software\AppDataLow]
                                        [HKCU\Software\Apple Computer, Inc.]
                                        [HKCU\Software\Apple Inc.]
                                        [HKCU\Software\Avira]
                                        [HKCU\Software\Bitmanagement Software]
                                        [HKCU\Software\Blizzard Entertainment]
                                        [HKCU\Software\Bugsplat]
                                        [HKCU\Software\Classes]
                                        [HKCU\Software\Clients]
                                        [HKCU\Software\Context]
                                        [HKCU\Software\DivX]
                                        [HKCU\Software\Google]
                                        [HKCU\Software\JavaSoft]
                                        [HKCU\Software\Lavalys]
                                        [HKCU\Software\Macromedia]
                                        [HKCU\Software\Malwarebytes' Anti-Malware]
                                        [HKCU\Software\Mooii]
                                        [HKCU\Software\MozillaPlugins]
                                        [HKCU\Software\Mozilla]
                                        [HKCU\Software\NGD Studios]
                                        [HKCU\Software\OfferBox]
                                        [HKCU\Software\Okozo]
                                        [HKCU\Software\Piriform]
                                        [HKCU\Software\Policies]
                                        [HKCU\Software\Quanta]
                                        [HKCU\Software\Realtek]
                                        [HKCU\Software\Softonic]
                                        [HKCU\Software\Synaptics]
                                        [HKCU\Software\WinRAR]
                                        [HKCU\Software\vShare]
                                        [HKLM\Software\ALWIL Software]
                                        [HKLM\Software\AVS4YOU]
                                        [HKLM\Software\Acer Crystal Eye Webcam]
                                        [HKLM\Software\Acer Inc.]
                                        [HKLM\Software\Acer Incorporated]
                                        [HKLM\Software\Acer]
                                        [HKLM\Software\Adobe]
                                        [HKLM\Software\America Online]
                                        [HKLM\Software\AppDataLow]
                                        [HKLM\Software\Apple Computer, Inc.]
                                        [HKLM\Software\Apple Inc.]
                                        [HKLM\Software\Atheros Communications Inc.]
                                        [HKLM\Software\Avira]
                                        [HKLM\Software\Bethesda Softworks]
                                        [HKLM\Software\Bitmanagement Software]
                                        [HKLM\Software\CDDB]
                                        [HKLM\Software\CDNetworks]
                                        [HKLM\Software\CXT]
                                        [HKLM\Software\Canon]
                                        [HKLM\Software\Classes]
                                        [HKLM\Software\Clients]
                                        [HKLM\Software\Codemasters]
                                        [HKLM\Software\Conduit]
                                        [HKLM\Software\Conexant Systems]
                                        [HKLM\Software\Conexant]
                                        [HKLM\Software\CyberLink]
                                        [HKLM\Software\DT Soft]
                                        [HKLM\Software\DivXNetworks]
                                        [HKLM\Software\DivX]
                                        [HKLM\Software\Dofus 2]
                                        [HKLM\Software\Electronic Arts]
                                        [HKLM\Software\Full Tilt Poker]
                                        [HKLM\Software\GEAR Software]
                                        [HKLM\Software\Google]
                                        [HKLM\Software\HP]
                                        [HKLM\Software\Hewlett-Packard]
                                        [HKLM\Software\InstallShield]
                                        [HKLM\Software\InstalledOptions]
                                        [HKLM\Software\Intel]
                                        [HKLM\Software\JavaSoft]
                                        [HKLM\Software\JoWooD Productions Software AG]
                                        [HKLM\Software\JreMetrics]
                                        [HKLM\Software\KOCHMedia Deutschland GmbH]
                                        [HKLM\Software\KasperskyLab]
                                        [HKLM\Software\Khronos]
                                        [HKLM\Software\LG Electronics]
                                        [HKLM\Software\LightScribe]
                                        [HKLM\Software\Macromedia]
                                        [HKLM\Software\Malwarebytes' Anti-Malware]
                                        [HKLM\Software\MicroQuill]
                                        [HKLM\Software\MimarSinan]
                                        [HKLM\Software\Mooii]
                                        [HKLM\Software\MozillaPlugins]
                                        [HKLM\Software\Mozilla]
                                        [HKLM\Software\Mumble]
                                        [HKLM\Software\NGD Studios]
                                        [HKLM\Software\NVIDIA Corporation]
                                        [HKLM\Software\NewTech Infosystems]
                                        [HKLM\Software\Nokia]
                                        [HKLM\Software\ODBC]
                                        [HKLM\Software\OemSetup]
                                        [HKLM\Software\OfferBox]
                                        [HKLM\Software\OpenOffice.org]
                                        [HKLM\Software\PC Connectivity Solution]
                                        [HKLM\Software\PCM_Upgrade]
                                        [HKLM\Software\PCSuite]
                                        [HKLM\Software\PKR]
                                        [HKLM\Software\Pando Networks]
                                        [HKLM\Software\Piriform]
                                        [HKLM\Software\Policies]
                                        [HKLM\Software\Quanta]
                                        [HKLM\Software\RealNetworks]
                                        [HKLM\Software\Realtek Semiconductor Corp.]
                                        [HKLM\Software\Realtek USB 2.0 Card Reader]
                                        [HKLM\Software\Realtek]
                                        [HKLM\Software\RegisteredApplications]
                                        [HKLM\Software\SOFTWARE]
                                        [HKLM\Software\SRS Labs]
                                        [HKLM\Software\SUPERAntiSpyware.com]
                                        [HKLM\Software\Safer Networking Limited]
                                        [HKLM\Software\Shareware.Pro-FR]
                                        [HKLM\Software\Skype]
                                        [HKLM\Software\Sonic]
                                        [HKLM\Software\Sony Creative Software]
                                        [HKLM\Software\Sony Media Software]
                                        [HKLM\Software\Sun Microsystems]
                                        [HKLM\Software\SweetIM]
                                        [HKLM\Software\Synaptics]
                                        [HKLM\Software\TeamViewer]
                                        [HKLM\Software\Turbine]
                                        [HKLM\Software\Uniblue]
                                        [HKLM\Software\Valve]
                                        [HKLM\Software\Veetle]
                                        [HKLM\Software\VideoLAN]
                                        [HKLM\Software\Volatile]
                                        [HKLM\Software\Vuze_Remote]
                                        [HKLM\Software\WOW6432Node]
                                        [HKLM\Software\Waves Audio]
                                        [HKLM\Software\WebCam]
                                        [HKLM\Software\WinRAR]
                                        [HKLM\Software\Winbond Electronics Corporation]
                                        [HKLM\Software\Windows]
                                        [HKLM\Software\Winsudate]
                                        [HKLM\Software\Wismass]
                                        [HKLM\Software\X-AVCSD]
                                        [HKLM\Software\XPeFlag]
                                        [HKLM\Software\Xing Technology Corp.]
                                        [HKLM\Software\Z-opti]
                                        [HKLM\Software\ej-technologies]
                                        [HKLM\Software\magnet]
                                        [HKLM\Software\mozilla.org]
                                        [HKLM\Software\nFlavor]
                                        [HKLM\Software\nSplitter]
                                        0
                                        1. Contributeur sécurité
                                          Re,

                                          essaye de copier la totalité du rapport dans une réponse, de sélectionner toutes les lignes et de cliquer sur la balise "code" (à droite du S souligné).

                                          Si il n'en prend qu'une partie, poste le par morceaux (3 ou 4)
                                          0
                                          • 1
                                          • 2