Impossibilité d'enlever Google Seeearch

Résolu
Bonjour,

Je pense avoir ete attentive a tous ce qui a ete dit sur le forum concernant la suppression de google seearch .
En revanche je ne parviens pas du tout a l'enlever.
Je joins un rapport .
Pouvez vous m'aider s'il vous plait?

r gmer.* not found.
File/Folder gmer_uninstall.cmd not found.
Error: No service named gmer was found to stop!
Service\Driver key gmer not found.
File/Folder haxfix.* not found.
File/Folder killbox.exe not found.
File/Folder !Killbox not found.
File/Folder NoLop.* not found.
File/Folder NoLopOLD.txt not found.
File/Folder delete.bat not found.
File/Folder OTH.* not found.
File/Folder OTListIt2.exe not found.
File/Folder OTListIt.txt not found.
File/Folder Extras.txt not found.
File/Folder _OTListIt not found.
File/Folder OTL.* not found.
File/Folder OTLPE.exe not found.
File/Folder _OTL not found.
File/Folder OTMoveIt.exe not found.
File/Folder OTMoveIt2.exe not found.
File/Folder OTMoveIt3.exe not found.
File delete failed. C:\Users\manu\Downloads\OTM.exe scheduled to be deleted on reboot.
File delete failed. C:\Users\manu\Downloads\OTM.exe scheduled to be deleted on reboot.

-----------\\ ToolBar S&D 1.2.9 XP/Vista

Microsoft® Windows Vista(TM) Édition Familiale Premium ( v6.0.6002 ) Service Pack 2
X86-based PC ( Multiprocessor Free : Pentium(R) Dual-Core CPU T4200 @ 2.00GHz )
BIOS : Ver 1.00PARTTBL
USER : manu ( Administrator )
BOOT : Normal boot
C:\ (Local Disk) - NTFS - Total:453 Go (Free:319 Go)
D:\ (CD or DVD)

"C:\ToolBar SD" ( MAJ : 22-08-2009|18:42 )
Option : [1] ( 03/07/2011| 8:26 )
8:26 )
8:26 )
8:
[ UAC => 1 ]

-----------\\ Recherche de Fichiers / Dossiers ...

-----------\\ [..\Internet Explorer\Main]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://fr.msn.com/"
"Default_Page_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"
"Local Page"="C:\\Windows\\system32\\blank.htm"
"Search Bar"="http://go.microsoft.com/fwlink/?linkid=54896"
"Default_search_url"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Url"="http://go.microsoft.com/fwlink/?LinkId=75720"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://fr.msn.com/"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Search_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Local Page"="C:\\Windows\\System32\\blank.htm"
"Search bar"="http://search.msn.com/spbasic.htm"

--------------------\\ Recherche d'autres infections

Aucune autre infection trouvée !

[ UAC => 1 ]

1 - "C:\ToolBar SD\TB_1.txt" - 03/07/2011| 8:26 - Option : [1]

-----------\\ Fin du rapport a 8:26:31,65

Merci d'avance

16 réponses

Résumé de la discussion

Des infections de type hijack du navigateur visent Google Search, et plusieurs rapports détaillent des chemins d’attaque et des outils détectés tels que GMER, OTL/OTM sans succès d’élimination. Plusieurs conseils proposent d’établir un diagnostic avec ZHPDiag et de transmettre le rapport, puis d’employer des outils dédiés comme DelFix, Malwarebytes ou Ad-remover pour nettoyer les éléments détectés. Des sessions complémentaires recommandent CCleaner et la restauration système, puis la vérification des paramètres de Start Page dans les navigateurs et la suppression des barres d’outils indésirables, afin d’éviter les redémarrages. En cas de persistance, certains répondants conseillent d’exécuter des outils spécifiques en mode administrateur et de redémarrer pour finaliser le nettoyage, puis de réexaminer les paramètres de sécurité et les extensions navigateur.

Bobot (l’IA à votre service)
  1. sur ie7 tape regedit ..sur excuter dans hkey current user / software /policies/microsoft/internet explorer/:supprimer internet explorer
    est seeearch va disparaitre...bonne chance
    1. pour les personnes qui connaissent la base de registre, remplacer la valeur "http://seeearch.com" par "http://www.google.fr" dans hkey current user / software /policies/microsoft/internet explorer/Main/Start Page marche aussi.
    2. Je l'ai testé pour IE7 ça marche
  2. BONJOUR,
    impossible pour moi d'enlever search sur firefox par cette technique ni par la technique conseillée par search (appdata etc...) merci de m'aider please!
    1. Re

      As tu fait le reste?

      Si c'est le cas et que tu n'as plus de problèmes ,je te propose de clore ce post.

      @+
      1. Re

        Oui j'ai fais le reste , Ccleaner et le reste
        Alors un grand merci .
        Ce post est clôt à présent .

        Merci de votre aide
    2. Bonjour

      Désinstalle Firefox.
      Vérifie si ton profil est bien supprimé sinon fait le.
      Télécharge à nouveau et installe Firefox

      @+
      1. Bonjour

        J'ai désinstallé Firefox puis réinstallé , et là ... plus de Seeearch .
        Quel soulagement !!!
        Malheureusement j'ai perdu tous ce qui était dans mon marque page .
        Merci beaucoup de votre patience et de votre aide .

        Tout cela m'aura permis de découvrir des logiciels et appris surtout.... à ne pas télécharger
        sur n'importe quel site ....
        Bon week end et Bonne continuation
      2. Re

        1) Télécharge DelFix de Xplode
        Ou si problème sur ce site : http://sd-1.archive-host.com/membres/up/17959594961240255/DelFix.exe

        Ou encore : https://www.commentcamarche.net/download/s/delfix

        * Lance le.
        * A l'invite, [Suppression]
        * Un rapport va s'ouvrir à la fin, colle le dans la réponse

        Ensuite pour le désinstaller ; tu relances et tu passes à l'option [Désinstallation]

        2)C - Ccleaner :

        https://www.commentcamarche.net/telecharger/utilitaires/5647-ccleaner/

        .enregistres le sur le bureau
        .double-cliques sur le fichier pour lancer l'installation
        .sur la fenêtre de l'installation langage bien choisir français et OK
        .cliques sur <gras>suivant

        .lis la licence et j'accepte
        .cliques sur suivant
        .la tu ne gardes de coché que mettre un raccourci sur le bureau et puis contrôler automatiquement les mises à jour de Ccleaner
        .cliques sur installer
        .cliques sur fermer
        .double-cliques sur l'icône de Ccleaner pour l'ouvrir
        .une fois ouvert tu cliques sur option et puis avancé
        .tu décoches effacer uniquement les fichiers, du dossier temp de windows plus vieux que 24 heures
        .cliques sur nettoyeur
        .cliques sur windows et dans la colonne avancé
        . coches la première case vieilles données du perfetch ce qui te donnes la case vielles données du perfetch et la case avancé qui c'est coché automatiquement mais que celle-la
        .cliques sur analyse une fois l'analyse terminé
        .cliques sur lancer le nettoyage et sur la demande de confirmation OK il vas falloir que tu le refasses une autre fois une fois fini vérifies en appuyant de nouveau sur analyse pour être sur qu'il n'y est plus rien
        .clique maintenant sur registre et puis sur rechercher les erreurs
        .laisse tout coché et clique sur réparer les erreurs sélectionnées
        .il te demande de sauvegarder OUI
        .tu lui donnes un nom pour pouvoir la retrouver et enregistre
        .clique sur corriger toutes les erreurs sélectionnées et sur la demande de confirmation OK
        .il supprime et une fois fermé tu vérifies en relançant rechercher les erreurs
        .tu retournes dans option et tu recoches la case effacer uniquement les fichiers, du dossier temp de windows plus vieux que 48 heures et sur nettoyeur, windows sous avancé tu décoches la première case vieilles données du perfetch
        .tu peux fermer Ccleaner.

        Tuto : https://jesses.pagesperso-orange.fr/Docs/Logiciels/CCleaner.htm

        3)Purge la restauration sur Vista.
        Comment faire :

        https://www.commentcamarche.net/faq/13214-vista-desactiver-reactiver-la-restauration-systeme-de-vista

        Cela supprime toutes traces des diverses infections ;et permettra une éventuelle restauration sans infections

        @+
      3. Re
        Voici le rapport

        # DelFix v8.1 - Rapport créé le 10/07/2011 à 18:17
        # Mis à jour le 20/06/11 à 19h par Xplode
        # Système d'exploitation : Windows Vista (TM) Home Premium (32 bits) [version 6.0.6002] Service Pack 2
        # Nom d'utilisateur : manu - PC-DE-MANU (Administrateur)
        # Exécuté depuis : C:\Users\manu\Downloads\DelFix-8.1.exe
        # Option [Recherche]

        ~~~~~~ Dossier(s) ~~~~~~

        Présent : C:\Program Files\ZHPDiag

        ~~~~~~ Fichier(s) ~~~~~~

        ~~~~~~ Registre ~~~~~~

        ~~~~~~ Autre ~~~~~~

        ########## EOF - "C:\DelFixSearch.txt" - [602 octets] ##########

        Cordialement
    3. Re

      Supprime ton profil en suivant ce tutoriel.Et crée en un nouveau .

      https://www.commentcamarche.net/faq/17486-les-profils-de-firefox

      @+
      1. Re ,

        Dès que j'essaie d'ouvrir le lien pour le gestionnaire de firefox .
        Une page internet s'ouvre mais c'est toujours Seeeearch qui apparait .
        Et rien me proposant de supprimer mon profil.

        Pfou j'en ai marre de ce truc!!!!!!!!!!
    4. Bonjour

      Remet la page par défaut de Firefox via le bouton outils>>options>>restaurer la configuration par défaut

      @+
      1. Bonjour

        En faisant cette manip ,seeearch est toujours présent.
    5. Re

      Télécharge Ad-remover ( de C_XX ) sur ton bureau :

      http://www.teamxscript.org/adremoverTelechargement.html

      ! Déconnecte toi et ferme toutes applications en cours !

      * Double clique ou clic droit (exécuter en tant que admin...sur Vista et Windows7) sur "Ad-R.exe" pour lancer l'installation et laisse les paramètres d'installation par défaut.

      * Double-clique ou clic droit (exécuter en tant que admin...sur Vista et Windows 7) sur le raccourci Ad-remover qui est sur ton bureau pour lancer l'outil .

      * Au menu principal choisis l'option "Nettoyer"
      et sur [entrée] .

      * Laisse travailler l'outil et ne touche à rien ...

      --> Poste le rapport qui apparaît à la fin , sur le forum ...

      ( Le rapport est sauvegardé aussi sous C:\Ad-report.log )
      ( CTRL+A Pour tout sélectionner , CTRL+C pour copier et CTRL+V pour coller )

      Note : "Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
      Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
      Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.

      Les toolbars, c'est pas obligatoire ( par Malekal ) :https://forum.malekal.com/viewtopic.php?t=6173&start=

      @+
      1. c======= RAPPORT D'AD-REMOVER 2.0.0.2,G | UNIQUEMENT XP/VISTA/7 =======

        Mis à jour par TeamXscript le 12/04/11
        Contact: AdRemover[DOT]contact[AT]gmail[DOT]com
        Site web: http://www.teamxscript.org

        C:\Program Files\Ad-Remover\main.exe (CLEAN [2]) -> Lancé à 21:55:53 le 08/07/2011, Mode normal

        Microsoft® Windows Vista(TM) Édition Familiale Premium Service Pack 2 (X86)
        manu@PC-DE-MANU (Packard Bell BV EASYNOTE TN65)

        ============== ACTION(S) ==============

        (!) -- Fichiers temporaires supprimés.

        ============== SCAN ADDITIONNEL ==============

        **** Mozilla Firefox Version [5.0 (fr)] ****

        Searchplugins\bing.xml ( hxxp://www.bing.com/search)
        Components\browsercomps.dll (Mozilla Foundation)

        -- C:\Users\manu\AppData\Roaming\Mozilla\FireFox\Profiles\08smnmfg.default --
        User.js - browser.startup.homepage, hxxp://www.seeearch.com/
        Prefs.js - browser.startup.homepage, hxxp://www.seeearch.com/
        Prefs.js - browser.startup.homepage_override.buildID, 20110615151330
        Prefs.js - browser.startup.homepage_override.mstone, rv:5.0

        ========================================

        **** Internet Explorer Version [9.0.8112.16421] ****

        HKCU_Main|Default_Page_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
        HKCU_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
        HKCU_Main|Search bar - hxxp://go.microsoft.com/fwlink/?linkid=54896
        HKCU_Main|Start Page - hxxp://fr.msn.com/
        HKLM_Main|Default_Page_URL - hxxp://go.microsoft.com/fwlink/?LinkId=54896
        HKLM_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
        HKLM_Main|Search bar - hxxp://search.msn.com/spbasic.htm
        HKLM_Main|Search Page - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
        HKLM_Main|Start Page - hxxp://fr.msn.com/
        HKCU_Toolbar\WebBrowser|{1FDA7DDD-25CE-4034-9D5B-38A120A14218} (x)
        HKLM_Toolbar|{8dcb7100-df86-4384-8842-8fa844297b3f} (C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll)
        HKLM_ElevationPolicy\{70f641fd-9ffc-4d5b-a4dc-962af4ed7999} - C:\Program Files\Internet Explorer\iedw.exe (x)
        HKLM_ElevationPolicy\{74351F14-5437-4d87-805B-04D409B09976} - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe (x)
        HKLM_ElevationPolicy\{FAF199D2-BFA7-4394-A4DE-044A08E59B32} - C:\Windows\system32\Macromed\Flash\FlashUtil9f.exe (x)
        HKLM_Extensions\{CCA281CA-C863-46ef-9331-5C8D4460577F} - "@btrez.dll,-4015" (C:\Program Files\WIDCOMM\Bluetooth Software\bt_cold_icon.ico)
        BHO\{5C255C8A-E604-49b4-9D64-90988571CECB} (?)

        ========================================

        C:\Program Files\Ad-Remover\Quarantine: 0 Fichier(s)
        C:\Program Files\Ad-Remover\Backup: 17 Fichier(s)

        C:\Ad-Report-CLEAN[1].txt - 08/07/2011 21:48:47 (2913 Octet(s))
        C:\Ad-Report-CLEAN[2].txt - 08/07/2011 21:55:57 (2775 Octet(s))
        C:\Ad-Report-SCAN[1].txt - 08/07/2011 21:47:42 (2801 Octet(s))

        Fin à: 21:56:50, 08/07/2011

        ============== E.O.F ==============

        Bonsoir voici le rapport .
        Concernant le lien que vous m'avez postez
        je n'ai pas le temps ce soir d'y regarder j'ai survolé cette page et
        donc vous pensez que mon problème viendrait de mon anti virus ou logiciel
        que j'ai téléchargé .
        Je croyais que mon problème venait de VLC que j'ai téléchargé récemment .

        Bonne soirée
    6. Bonjour

      Toujours des problèmes?

      @+
      1. Bonjour

        Pas de changement.
        Seeearch est toujours là.
    7. Re

      Je suis un particulier bénévole comme tous ceux qui postent sur ce Forum;mais effectivement je disposes d'un statut particulier.

      fait ceci:

      Utilisation de l'outil ZHPFix :

      * Copie tout le texte présent dans l'encadré ci-dessous (tu le sélectionnes avec ta souris / Clique droit dessus et choisis "copier" ou fait Ctrl+C )
      -------------------------------------------------------------------------------------------------


      C:\Users\manu\AppData\Roaming\Mozilla\Firefox\Profiles\08smnmfg.default\prefs.js
      M3 - MFPP: Plugins - [manu] -- C:\Users\manu\AppData\Roaming\Mozilla\Firefox\Profiles\08smnmfg.default\searchplugins\googlefr.xml
      M0 - MFSP: prefs.js [manu - 08smnmfg.default] http://ww10.seeearch.com
      O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} Clé orpheline
      OPT:O4 - HKLM\..\Run: [SSBkgdUpdate] . (.Nuance Communications, Inc. - SSBkgdUpdate.) -- C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe
      OPT:O4 - HKLM\..\Run: [PaperPort PTD] . (.Nuance Communications, Inc. - PaperPort Print to Desktop for NT.) -- C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
      OPT:O4 - HKLM\..\Run: [IndexSearch] . (.Nuance Communications, Inc. - PaperPort IndexSearch.) -- C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe
      [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1FDA7DDD-25CE-4034-9D5B-38A120A14218}]
      [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1FDA7DDD-25CE-4034-9D5B-38A120A14218}]
      [HKLM\Software\Classes\CLSID\{1FDA7DDD-25CE-4034-9D5B-38A120A14218}]
      [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1FDA7DDD-25CE-4034-9D5B-38A120A14218}]
      [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1FDA7DDD-25CE-4034-9D5B-38A120A14218}]
      [HKLM\Software\Classes\CLSID\{1FDA7DDD-25CE-4034-9D5B-38A120A14218}]
      FirewallRAZ

      --------------------------------------------------------------------------------------------
      Puis lance ZHPFix depuis le raccourci du bureau. Sous Vista :Clic droit sur l'icône ZHPFix.exe
      « Exécuter en tant qu'administrateur »
      .

      * Une fois l'outil ZHPFix ouvert, clique sur le bouton [ H ] ( "coller les lignes Helper" ) .

      *Vérifie que toutes les lignes que je t'ai demandé de copier (et seulement elles) sont dans la fenêtre.

      *Les lignes se collent automatiquement dans ZHPFix, sinon colle les lignes
      - Clique sur le bouton « GO » pour lancer le nettoyage,

      -> laisse travailler l'outil et ne touche à rien ...

      -> Si il t'est demandé de redémarrer le PC pour finir le nettoyage, fais le !

      Une fois terminé, un nouveau rapport s'affiche : poste le contenu de ce dernier dans ta prochaine réponse ...

      ( ce rapport est en outre sauvegardé dans ce dossier > C:\Program files\ZHPDiag\ ZHPFixReport.txt )

      A+
      1. Re

        J'apprécie énormément le temps passé à chercher une solution.
        Voici le lien:
        http://www.cijoint.fr/cjlink.php?file=cj201107/cij7yLCQUE.txt

        Bonne soirée
      2. Re

        Quoi de neuf?

        @+
      3. euh .....
        Du nouveau?
      4. As tu encore des problèmes?
      5. oui toujours ....
    8. Re

      Poste moi un nouveau rapport ZHPDiag;merci.

      @+
      1. Re
        Voici le lien

        http://www.cijoint.fr/cjlink.php?file=cj201107/cijAUxKAGE.txt

        Vous êtes un particulier qui prend de son temps pour répondre sur ce forum?
        Ou bien faites vous parti de l'équipe du site?

        Merci
    9. Bonjour

      Ouvre ton navigateur et choisi ta page d'accueil.
      Arrête ton navigateur et relance le
      Toujours des problèmes?

      @+
      1. Bonjour

        Oui j'ai toujours des problèmes.
        Que dois je faire maintenant?

        Encore merci de me venir en aide
    10. Bonsoir

      Télécharge Malwaresbytes anti malware ici
      http://www.malwarebytes.org/mbam.php

      Bouton »Download free version »

      * Installe le (choisis bien "français" ; ne modifie pas les paramètres d'installe ) et mets le à jour .

      (NB : S'il te manque "COMCTL32.OCX" lors de l'installe, alors télécharge le ici : https://www.malekal.com/tutorial-aboutbuster/

      * Potasse le tuto pour te familiariser avec le prg :

      https://forum.pcastuces.com/sujet.asp?f=31&s=3

      (cela dis, il est très simple d'utilisation).

      relance Malwaresbytes en suivant scrupuleusement ces consignes :

      ! Déconnecte toi et ferme toutes applications en cours !

      * Lance Malwarebyte's. Sous Vista et Seven (clic droit de la souris « exécuter en tant que administrateur »)

      Fais un examen dit "Complet"

      --> Laisse le programme travailler ( et ne rien faire d'autre avec le PC durant le scan ).
      --> à la fin tu cliques sur "Afficher les résultats" " .
      --> Vérifie que tous les objets infectés soient validés, puis clique sur " supprimer la sélection " .

      Note : si il faut redémarrer ton PC pour finir le nettoyage, fais le !

      Poste le rapport sauvegardé après la suppression des objets infectés (dans l'onglet "rapport/log"de Malwaresbytes, le dernier en date)

      @+
      1. http://www.cijoint.fr/cjlink.php?file=cj201107/cijXeJKKSq.odt

        Bonsoir
        J'ai effectué ce que vous m'avez conseillé mais il n'était pas infecté
        alors je comprend as .
        Que dois je faire ?
    11. Bonjour

      Utilisation de l'outil ZHPFix :

      * Copie tout le texte présent dans l'encadré ci-dessous (tu le sélectionnes avec ta souris / Clique droit dessus et choisis "copier" ou fait Ctrl+C )
      -------------------------------------------------------------------------------------------------


      M0 - MFSP: prefs.js [manu - 08smnmfg.default] http://ww10.seeearch.com
      O2 - BHO: TBSB06155 - {2DA14D1D-AE74-4A74-A0FE-C79504755DB8} . (.Pas de propriétaire - IE Toolbar Engine.) -- C:\Program Files\seeearch\seeearch.dll
      O3 - Toolbar: IE Toolbar - {1FDA7DDD-25CE-4034-9D5B-38A120A14218} . (.Pas de propriétaire - IE Toolbar Engine.) -- C:\Program Files\seeearch\seeearch.dll
      O4 - HKLM\..\Run: [eRecoveryService] Clé orpheline
      OPT:O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe
      O4 - HKCU\..\Run: [LXAMBOXL] rundll32 "C:\Windows\system32\swprva.dll (.not file.)
      O43 - CFD: 28/06/2011 - 20:06:34 - [2747571] ----D- C:\Program Files\seeearch
      FirewallRAZ

      --------------------------------------------------------------------------------------------
      Puis lance ZHPFix depuis le raccourci du bureau. Sous Vista :Clic droit sur l'icône ZHPFix.exe
      « Exécuter en tant qu'administrateur »
      .

      * Une fois l'outil ZHPFix ouvert, clique sur le bouton [ H ] ( "coller les lignes Helper" ) .

      *Vérifie que toutes les lignes que je t'ai demandé de copier (et seulement elles) sont dans la fenêtre.

      *Les lignes se collent automatiquement dans ZHPFix, sinon colle les lignes
      - Clique sur le bouton « GO » pour lancer le nettoyage,

      -> laisse travailler l'outil et ne touche à rien ...

      -> Si il t'est demandé de redémarrer le PC pour finir le nettoyage, fais le !

      Une fois terminé, un nouveau rapport s'affiche : poste le contenu de ce dernier dans ta prochaine réponse ...

      ( ce rapport est en outre sauvegardé dans ce dossier > C:\Program files\ZHPDiag\ ZHPFixReport.txt )

      A+
      1. Bonjour ,

        J'ai fais ce que vous me mentionniez ci dessus .
        Est ce qu'avec cette manip , mon google normal aurait dut revenir?
        Car , il n'y est toujours pas .
        Malgré que j'ai à nouveau fais Outils, Option puis page d'accueil.
        Voici le rapport demandé:

        http://www.cijoint.fr/cjlink.php?file=cj201107/cijHfbtPsw.txt

        Bonne fin de journée
    12. Contributeur sécurité
      Hello,

      Oui, il s'agit bien du bon rapport, mais il est trop long pour être mis sur le forum, il faut qu'il soit hébergé sur un site.

      Relire la méthode donnée par Guillaume.

      A+
      1. http://www.cijoint.fr/cjlink.php?file=cj201107/cijLpjb0o6.odt

        Le rapport est sous office j'espère que vous parviendrez à le lire.
        Merci de votre patience ...
    13. Re

      Ton rapport n'est pas complet;utilise un des liens que je te propose;
      merci
      @+
      1. Contributeur sécurité
        Hello,

        En fait il s'agit d'un rapport MD5 et non du rapport général fait avec la loupe à gauche.

        A+
      2. Rapport de ZHPDiag v1.27.2362 par Nicolas Coolman, Update du 02/07/2011
        Run by manu at 03/07/2011 18:35:24
        Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html

        ---\\ Web Browser
        MSIE: Internet Explorer v9.0.8112.16421
        MFIE: Mozilla Firefox 5.0 v (Defaut)

        ---\\ System Information
        Windows Vista Home Premium Edition, 32-bit Service Pack 2 (Build 6002)
        Processor: x86 Family 6 Model 23 Stepping 10, GenuineIntel
        Operating System: 32 Bits
        Boot mode: Normal (Normal boot)
        Total RAM: 3066 MB (69% free)
        System Restore: Activé (Enable)
        System drive C: has 318 GB (70%) free of 453 GB

        ---\\ Logged in mode
        Computer Name: PC-DE-MANU
        User Name: manu
        All Users Names: manu, Administrateur,
        Unselected Option: O45,O61,O62,O65,O66,O82
        Logged in as Administrator

        ---\\ Environnement Variables
        ~ %AppData%=C:\Users\manu\AppData\Roaming\
        ~ %Desktop%=C:\Users\manu\Desktop\
        ~ %Favorites%=C:\Users\manu\Favorites\
        ~ %LocalAppData%=C:\Users\manu\AppData\Local\
        ~ %StartMenu%=C:\Users\manu\AppData\Roaming\Microsoft\Windows\Start Menu\

        ---\\ DOS/Devices
        C:\ Hard drive, Flash drive, Thumb drive (Free 318 Go of 453 Go)
        D:\ CD-ROM drive (Not Inserted)

        ---\\ Security Center & Tools Informations
        [HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK
        [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK
        [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
        [HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
        [HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK
        [HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
        [HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: Modified
        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK
        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK
        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK
        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK
        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK
        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: OK
        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK
        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
        [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK
        [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK
        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK

        ---\\ Recherche particulière de fichiers génériques
        [MD5.D07D4C3038F3578FFCE1C0237F2A1253] - (.Microsoft Corporation - Explorateur Windows.) (.09/01/2010 - 07:27:36.) -- C:\Windows\Explorer.exe [2926592]
        [MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) (.21/01/2008 - 03:23:42.) -- C:\Windows\system32\Wininit.exe [96768]
        [MD5.A1236375B74EA63C75657D564890C436] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.14/06/2011 - 13:57:33.) -- C:\Windows\system32\wininet.dll [1126912]
        [MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.09/01/2010 - 07:28:13.) -- C:\Windows\system32\Winlogon.exe [314368]
        [MD5.1F05B78AB91C9075565A9D8A4B880BC4] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.09/01/2010 - 07:32:26.) -- C:\Windows\system32\drivers\atapi.sys [19944]
        [MD5.6A4A98CEE84CF9E99564510DDA4BAA47] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.09/01/2010 - 07:32:49.) -- C:\Windows\system32\drivers\ntfs.sys [1083880]

        ---\\ Etat des fichiers cachés (Caché/Total)
        ~ Mes images (My Pictures) : 0/5084
        ~ Mes musiques (My Musics) : 0/83
        ~ Mes Videos (My Video) : 0/20
        ~ Mes Favoris (My Favorites) : 0/27
        ~ Mes Documents (My Documents) : 0/6
        ~ Mon Bureau (My Desktop) : 0/3
        ~ Menu demarrer (Programs) : 0/22

        ---\\ Processus lancés
        [MD5.CB2B9EB1447D8A264E46948DF46C1212] - (.Packard Bell BV - SmpSys.exe.) -- C:\Program Files\PACKARD BELL\SetUpMyPC\SmpSys.exe [1038136]
        [MD5.96B7334E265643B1A3B32F320A1F21C7] - (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe [6265376]
        [MD5.D6F8DE039BED647B02697CC2885B8367] - (.Synaptics, Inc. - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1328424]
        [MD5.40C6723750001D33EF1E02D3F8DD0353] - (.Wistron - HotkeyApp.) -- C:\Program Files\Launch Manager\HotkeyApp.exe [192512]
        [MD5.A0FD41460BE48C2FD1570AF0725491F9] - (.Wistron Corp. - OSD MFC Application.) -- C:\Program Files\Launch Manager\OSD.exe [430080]
        [MD5.E681281D9BFC9D45D3B72532717E5880] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [49152]
        [MD5.9D5E8B45BD348DF0882C69EED0E83111] - (.Avira GmbH - Antivirus System Tray Tool.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [281768]
        [MD5.27249F2A900032F3C2DFAB8DE8F16399] - (.Nuance Communications, Inc. - PaperPort Print to Desktop for NT.) -- C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe [29984]
        [MD5.70A5FB08BBE2AE2B6A4D17F6F9F2E479] - (.Brother Industries, Ltd. - Brother Status Monitor Application.) -- C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe [1150976]
        [MD5.D0AC482B584F244B0E10B465CFC6DEC5] - (.SFR - Propriétés de la connexion SFR.) -- C:\Program Files\SFR\Kit\9props.exe [955712]
        [MD5.BF08674925F151BD4537B89A493E3E0C] - (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehtray.exe [125952]
        [MD5.E616A6A6E91B0A86F2F6217CDE835FFE] - (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [68856]
        [MD5.4B555106290BD117334E9A08761C035A] - (...) -- C:\Windows\System32\rundll32.exe [44544]
        [MD5.D72373D7FE53CEF14E2AAD14763A2471] - (.Broadcom Corporation. - Bluetooth Tray Application.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe [752168]
        [MD5.678C02792F37B0F4A3AEA97D2BE66601] - (.Brother Industries, Ltd. - Control Center 3 Main Program.) -- C:\Program Files\Brother\ControlCenter3\brccMCtl.exe [872448]
        [MD5.0F4195B9B348DE5CF9B822F81704B20E] - (.Microsoft Corporation - Media Center Media Status Aggregator Servic.) -- C:\Windows\ehome\ehmsas.exe [37376]
        [MD5.1F17D3F0A519844624BEEB8920B3DF2B] - (.Brother Industries, Ltd. - Brother Status Monitor (Local).) -- C:\Program Files\Brother\Brmfcmon\BrMfcmon.exe [221184]
        [MD5.25CA1677AAA3CDC99CD4FCF940886F3C] - (.ATI Technologies Inc. - Catalyst Control Centre: Host application.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe [49152]
        [MD5.62BB79160F86CD962F312C68C6239BFD] - (.Microsoft Corporation - Windows Update.) -- C:\Windows\system32\wuauclt.exe [53472]
        [MD5.FC987A45D8DC7AB320383A1418D1DC3C] - (.Synaptics, Inc. - Synaptics Pointing Device Helper.) -- C:\Program Files\Synaptics\SynTP\SynTPHelper.exe [103720]
        [MD5.6080A176D09435FC8E6E800996656E18] - (.Microsoft Corporation - Console IME.) -- C:\Windows\system32\conime.exe [69120]
        [MD5.12D16120CE0423258C4359948D7439B2] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [656896]

        ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
        C:\Users\manu\AppData\Roaming\Mozilla\Firefox\Profiles\08smnmfg.default\prefs.js
        M3 - MFPP: Plugins - [manu] -- C:\Users\manu\AppData\Roaming\Mozilla\Firefox\Profiles\08smnmfg.default\searchplugins\googlefr.xml
        M3 - MFPP: Plugins - [manu] -- C:\Program Files\Mozilla FireFox\searchplugins\amazon-france.xml
        M3 - MFPP: Plugins - [manu] -- C:\Program Files\Mozilla FireFox\searchplugins\bing.xml
        M3 - MFPP: Plugins - [manu] -- C:\Program Files\Mozilla FireFox\searchplugins\cnrtl-tlfi-fr.xml
        M3 - MFPP: Plugins - [manu] -- C:\Program Files\Mozilla FireFox\searchplugins\eBay-france.xml
        M3 - MFPP: Plugins - [manu] -- C:\Program Files\Mozilla FireFox\searchplugins\google.xml
        M3 - MFPP: Plugins - [manu] -- C:\Program Files\Mozilla FireFox\searchplugins\googledesktop.xml
        M3 - MFPP: Plugins - [manu] -- C:\Program Files\Mozilla FireFox\searchplugins\wikipedia-fr.xml
        M3 - MFPP: Plugins - [manu] -- C:\Program Files\Mozilla FireFox\searchplugins\yahoo-france.xml
        P2 - FPN:Firefox Plugin Navigator . (.Sun Microsystems, Inc. - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- C:\Program Files\Mozilla Firefox\Plugins\npdeployJava1.dll
        P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin.dll
        P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin2.dll
        P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin3.dll
        P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin4.dll
        P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin5.dll
        P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin6.dll
        P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin7.dll
        P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF32.dll
        P2 - FPN: [HKLM] [@java.com/JavaPlugin] - (.Sun Microsystems, Inc. - Next Generation Java Plug-in 1.6.0_24 for Mozilla browsers.) -- C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
        P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 4.0.60531.0.) -- c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll
        P2 - FPN: [HKLM] [@microsoft.com/OfficeLive,version=1.3] - (.Microsoft Corp. - Office Live Update v1.3.) -- C:\Program Files\Microsoft\Office Live\npOLW.dll
        P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=14.0.8117.0416] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
        P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
        P2 - FPN: [HKLM] [@t-immersion.com/DFusionHomeWebPlugIn] - (.Total Immersion - D'Fusion @Home Web Plug-In (3.10.17142.0).) -- C:\Program Files\Total Immersion\DFusionHomeWebPlugIn\NPDFusionWebFirefox.dll
        P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll
        P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll
        M0 - MFSP: prefs.js [manu - 08smnmfg.default] http://www.seeearch.com/
        M2 - MFEP: prefs.js [manu - 08smnmfg.default\{20a82645-c095-46ed-80e3-08825760534b}] [MicrosoftCG] Microsoft .NET Framework Assistant v1.2.1 (.Microsoft.)

        ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com
        R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com
        R0 - HKUS\S-1-5-21-629165583-1562758268-280644374-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com
        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com
        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
        R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)) -- C:\Windows\system32\ieframe.dll

        ---\\ Internet Explorer, Proxy Management (R5)
        R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
        R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
        R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
        R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
        R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

        ---\\ ---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
        F2 - REG:system.ini: UserInit=C:\Windows\system32\ezShellStart.exe
        F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

        ---\\ Browser Helper Objects de navigateur (O2)
        O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
        O2 - BHO: TBSB06155 - {2DA14D1D-AE74-4A74-A0FE-C79504755DB8} . (.Pas de propriétaire - IE Toolbar Engine.) -- C:\Program Files\seeearch\seeearch.dll
        O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} Clé orpheline
        O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - WindowsLiveLogin.dll.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
        O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
        O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll
        O2 - BHO: Bing Bar BHO - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} . (.Microsoft Corporation - Bing Bar.) -- C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll
        O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll

        ---\\ Internet Explorer Toolbars (O3)
        O3 - Toolbar: @C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100 - {8dcb7100-df86-4384-8842-8fa844297b3f} . (.Microsoft Corporation - Bing Bar.) -- C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll
        O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
        O3 - Toolbar: IE Toolbar - {1FDA7DDD-25CE-4034-9D5B-38A120A14218} . (.Pas de propriétaire - IE Toolbar Engine.) -- C:\Program Files\seeearch\seeearch.dll

        ---\\ ---\\ Applications démarrées par registre & par dossier (O4)
        O4 - HKLM\..\Run: [SmpcSys] . (.Packard Bell BV - SmpSys.exe.) -- C:\Program Files\Packard Bell\SetupMyPC\SmpSys.exe
        O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe
        O4 - HKLM\..\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
        O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics, Inc. - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
        O4 - HKLM\..\Run: [HotkeyApp] . (.Wistron - HotkeyApp.) -- C:\Program Files\Launch Manager\HotkeyApp.exe
        O4 - HKLM\..\Run: [LMgrOSD] . (.Wistron Corp. - OSD MFC Application.) -- C:\Program Files\Launch Manager\OSD.exe
        O4 - HKLM\..\Run: [eRecoveryService] Clé orpheline
        O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe
        O4 - HKLM\..\Run: [avgnt] . (.Avira GmbH - Antivirus System Tray Tool.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
        O4 - HKLM\..\Run: [SSBkgdUpdate] . (.Nuance Communications, Inc. - SSBkgdUpdate.) -- C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe
        O4 - HKLM\..\Run: [PaperPort PTD] . (.Nuance Communications, Inc. - PaperPort Print to Desktop for NT.) -- C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
        O4 - HKLM\..\Run: [IndexSearch] . (.Nuance Communications, Inc. - PaperPort IndexSearch.) -- C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe
        O4 - HKLM\..\Run: [PPort11reminder] . (.Nuance Communications, Inc. - Ereg.) -- C:\Program Files\ScanSoft\PaperPort\Ereg\Ereg.exe
        O4 - HKLM\..\Run: [BrMfcWnd] . (.Brother Industries, Ltd. - Brother Status Monitor Application.) -- C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
        O4 - HKLM\..\Run: [ControlCenter3] . (.Brother Industries, Ltd. - ControlCenter Program.) -- C:\Program Files\Brother\ControlCenter3\brctrcen.exe
        O4 - HKCU\..\Run: [SmpcSys] . (.Packard Bell BV - SmpSys.exe.) -- C:\Program Files\PACKARD BELL\SetUpMyPC\SmpSys.exe
        O4 - HKCU\..\Run: [Connexion SFR 9props.exe] . (.SFR - Propriétés de la connexion SFR.) -- C:\Program Files\SFR\Kit\9props.exe
        O4 - HKCU\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehTray.exe
        O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
        O4 - HKCU\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\WMPNSCFG.exe
        O4 - HKCU\..\Run: [LXAMBOXL] rundll32 "C:\Windows\system32\swprva.dll (.not file.)
        O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
        O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] oobefldr.dll
        O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
        O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] oobefldr.dll
        O4 - HKUS\S-1-5-21-629165583-1562758268-280644374-1000\..\Run: [SmpcSys] . (.Packard Bell BV - SmpSys.exe.) -- C:\Program Files\PACKARD BELL\SetUpMyPC\SmpSys.exe
        O4 - HKUS\S-1-5-21-629165583-1562758268-280644374-1000\..\Run: [Connexion SFR 9props.exe] . (.SFR - Propriétés de la connexion SFR.) -- C:\Program Files\SFR\Kit\9props.exe
        O4 - HKUS\S-1-5-21-629165583-1562758268-280644374-1000\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehTray.exe
        O4 - HKUS\S-1-5-21-629165583-1562758268-280644374-1000\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
        O4 - HKUS\S-1-5-21-629165583-1562758268-280644374-1000\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\WMPNSCFG.exe
        O4 - HKUS\S-1-5-21-629165583-1562758268-280644374-1000\..\Run: [LXAMBOXL] rundll32 "C:\Windows\system32\swprva.dll (.not file.)
        O4 - Global Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\BTTray.lnk . (.Broadcom Corporation..) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe

        ---\\ ---\\ Autres liens utilisateurs (O4)
        O4 - Global Startup: C:\Users\manu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
        O4 - Global Startup: C:\Users\manu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Mail\WinMail.exe
        O4 - Global Startup: C:\Users\manu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
        O4 - Global Startup: C:\Users\manu\Desktop\AD-R.lnk . (...) -- C:\Program Files\Ad-Remover\main.exe
        O4 - Global Startup: C:\Users\manu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
        O4 - Global Startup: C:\Users\manu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk . (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe
        O4 - Global Startup: C:\Users\manu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe

        ---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
        O8 - Extra context menu item: E&xporter vers Microsoft Excel . (.Microsoft Corporation - Microsoft Office Excel.) -- C:\PROGRA~1\MICROS~2\Office12\EXCEL.exe
        O8 - Extra context menu item: Google Sidewiki... . (.Google Inc. - Google Toolbar for Internet Explorer.) -- C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll

        ---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
        O9 - Extra button: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} . (.Microsoft Corporation - Microsoft Office OneNote Internet Explorer Add-in.) -- C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
        O9 - Extra button: &Envoyer à OneNote - {92780B25-18CC-41C8-B9BE-3C9C571A8263} . (...) -- C:\PROGRA~1\MICROS~2\Office12\REFBARH.ICO
        O9 - Extra button: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} . (...) -- C:\Program Files\WIDCOMM\Bluetooth Software\bt_hot_icon.ico

        ---\\ Winsock hijacker (Layered Service Provider) (O10)
        O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
        O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
        O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
        O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d'espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
        O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
        O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll

        ---\\ Modification Domaine/Adresses DNS (O17)
        O17 - HKLM\System\CCS\Services\Tcpip\..\{0EF8A1B1-02FD-402D-8630-806B8C8704B4}: DhcpNameServer = 192.168.1.1
        O17 - HKLM\System\CS1\Services\Tcpip\..\{0EF8A1B1-02FD-402D-8630-806B8C8704B4}: DhcpNameServer = 192.168.1.1
        O17 - HKLM\System\CS2\Services\Tcpip\..\{0EF8A1B1-02FD-402D-8630-806B8C8704B4}: DhcpNameServer = 192.168.1.1
        O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

        ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
        O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Contrôleur de site Web.) -- C:\Windows\System32\webcheck.dll

        ---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22)
        O22 - SharedTaskScheduler: (no name) - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\Windows\system32\browseui.dll

        ---\\ Liste des services NT non Microsoft et non désactivés (O23)
        O23 - Service: Adobe Active File Monitor V6 (AdobeActiveFileMonitor6.0) . (...) - C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe
        O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) . (.Avira GmbH - Antivirus Scheduler.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe
        O23 - Service: Avira AntiVir Guard (AntiVirService) . (.Avira GmbH - Antivirus On-Access Service.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
        O23 - Service: (Ati External Event Utility) . (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) - C:\Windows\system32\Ati2evxx.exe
        O23 - Service: Bluetooth Service (btwdins) . (.Broadcom Corporation. - Bluetooth Support Server.) - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
        O23 - Service: Empowering Technology Service (ETService) . (.Pas de propriétaire - Acer Empowering Technology Framework Servic.) - C:\Program Files\Packard Bell\Packard Bell Recovery Management\Service\ETService.exe
        O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe
        O23 - Service: LMIGuardianSvc (LMIGuardianSvc) . (.LogMeIn, Inc. - LMIGuardianSvc.) - C:\Program Files\LogMeIn\x86\LMIGuardianSvc.exe
        O23 - Service: Nero BackItUp Scheduler 3 (Nero BackItUp Scheduler 3) . (.Nero AG - Nero BackItUp.) - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
        O23 - Service: PLFlash DeviceIoControl Service (PLFlash DeviceIoControl Service) . (.Prolific Technology Inc. - PLFlash DeviceIoControl Service.) - C:\Windows\system32\IoctlSvc.exe
        O23 - Service: SeaPort (SeaPort) . (...) - C:\Program Files\Microsoft\BingBar\SeaPort.exe

        ---\\ Enumération Active Desktop & MHTML Editor (O24)
        O24 - Default MHTML Editor: Last - .(...) - (.not file.)

        ---\\ Tâches planifiées en automatique (O39)
        O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
        O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
        [MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe
        [MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe
        [MD5.7B43567B4C32AD7ADED537CD3B1342B9] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files\Apple Software Update\SoftwareUpdate.exe

        ---\\ Pilotes lancés au démarrage (O41)
        O41 - Driver: (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
        O41 - Driver: (avipbb) . (.Avira GmbH - Avira Driver for Security Enhancement.) - C:\Windows\System32\DRIVERS\avipbb.sys
        O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
        O41 - Driver: C:\Windows\system32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
        O41 - Driver: (i8042prt) . (.Microsoft Corporation - Pilote de port i8042.) - C:\Windows\System32\DRIVERS\i8042prt.sys
        O41 - Driver: (kbdclass) . (.Microsoft Corporation - Pilote de la classe Clavier.) - C:\Windows\System32\DRIVERS\kbdclass.sys
        O41 - Driver: (mouclass) . (.Microsoft Corporation - Pilote de la classe Souris.) - C:\Windows\System32\DRIVERS\mouclass.sys
        O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
        O41 - Driver: (netbt) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
        O41 - Driver: (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
        O41 - Driver: C:\Windows\system32\drivers\pacer.sys (PSched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
        O41 - Driver: (RasAcd) . (.Microsoft Corporation - RAS Automatic Connection Driver.) - C:\Windows\System32\DRIVERS\rasacd.sys
        O41 - Driver: (rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\Windows\System32\DRIVERS\rdbss.sys
        O41 - Driver: (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
        O41 - Driver: (RDPENCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
        O41 - Driver: C:\Windows\system32\tcpipcfg.dll (Smb) . (.Microsoft Corporation - SMB Transport driver.) - C:\Windows\System32\DRIVERS\smb.sys
        O41 - Driver: (ssmdrv) . (.Avira GmbH - AVIRA SnapShot Driver.) - C:\Windows\System32\DRIVERS\ssmdrv.sys
        O41 - Driver: C:\Windows\system32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
        O41 - Driver: (TermDD) . (.Microsoft Corporation - Terminal Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys
        O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
        O41 - Driver: (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys

        ---\\ Logiciels installés (O42)
        O42 - Logiciel: Update for Microsoft Office 2007 (KB2508958) - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438}
        O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin
        O42 - Logiciel: Adobe Flash Player ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
        O42 - Logiciel: Adobe Photoshop Elements 6.0 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Photoshop Elements 6
        O42 - Logiciel: Adobe Reader 9 - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-A90000000001}
        O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {EE6097DD-05F4-4178-9719-D3170BF098E8}
        O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {6956856F-B6B3-4BE0-BA0B-8F495BE32033}
        O42 - Logiciel: Assistant de connexion Windows Live - (.Microsoft Corporation.) [HKLM] -- {DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
        O42 - Logiciel: Avira AntiVir Personal - Free Antivirus - (.Avira GmbH.) [HKLM] -- Avira AntiVir Desktop
        O42 - Logiciel: Bing Bar Platform - (.Microsoft Corporation.) [HKLM] -- {65C0025A-2CDE-43C5-82D0-C7A56EF0DB39}
        O42 - Logiciel: Brother MFL-Pro Suite DCP-195C - (.Brother Industries, Ltd..) [HKLM] -- {6BF66AED-3EA4-4106-B240-5CE96C9B76B0}
        O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
        O42 - Logiciel: Contrôle ActiveX Windows Live Mesh pour connexions à distance - (.Microsoft Corporation.) [HKLM] -- {55D003F4-9599-44BF-BA9E-95D060730DD3}
        O42 - Logiciel: EasyBits Magic Desktop - (.Pas de propriétaire.) [HKLM] -- EasyBits Magic Desktop
        O42 - Logiciel: Galerie de photos Windows Live - (.Microsoft Corporation.) [HKLM] -- {1EE04769-91C4-4A06-92B7-FCAFE6BABDD9}
        O42 - Logiciel: Google Desktop - (.Google.) [HKLM] -- Google Desktop
        O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C}
        O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
        O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
        O42 - Logiciel: HDReg France - (.Acxiom.) [HKLM] -- {0ED40D2A-7131-4FE7-941E-5C329336F712}
        O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB953595
        O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB958484
        O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- WinLiveSuite_Wave3
        O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- {133742BA-6F46-4D3E-85AF-78631D9AD8B8}
        O42 - Logiciel: Java(TM) 6 Update 24 - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216016FF}
        O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {8E5233E1-7495-44FB-8DEB-4BE906D59619}
        O42 - Logiciel: Launch Manager V1.5.4 - (.Wistron Corp..) [HKLM] -- {D0846526-66DD-4DC9-A02C-98F9A2806812}
        O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
        O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
        O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
        O42 - Logiciel: MetaBoli - (.Pas de propriétaire.) [HKLM] -- {709817E4-5439-4206-8738-796B34B623BD}
        O42 - Logiciel: Microsoft .NET Framework 3.5 Language Pack SP1 - fra - (.Microsoft Corporation.) [HKLM] -- {3E31821C-7917-367E-938E-E65FC413EA31}
        O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 SP1
        O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
        O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile
        O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}
        O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
        O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-0016-040C-0000-0000000FF1CE}_HOMESTUDENTR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
        O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-0018-040C-0000-0000000FF1CE}_HOMESTUDENTR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
        O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-001B-040C-0000-0000000FF1CE}_HOMESTUDENTR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
        O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-006E-040C-0000-0000000FF1CE}_HOMESTUDENTR_{B165D3C2-40AE-4D39-86F7-E5C87C4264C0}
        O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-00A1-040C-0000-0000000FF1CE}_HOMESTUDENTR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
        O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
        O42 - Logiciel: Microsoft Office Excel MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0016-040C-0000-0000000FF1CE}
        O42 - Logiciel: Microsoft Office Home and Student - (.Pas de propriétaire.) [HKLM] -- Office2007
        O42 - Logiciel: Microsoft Office Home and Student 2007 - (.Microsoft Corporation.) [HKLM] -- HOMESTUDENTR
        O42 - Logiciel: Microsoft Office Home and Student 2007 - (.Microsoft Corporation.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}
        O42 - Logiciel: Microsoft Office Live Add-in 1.3 - (.Microsoft Corporation.) [HKLM] -- {57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}
        O42 - Logiciel: Microsoft Office OneNote MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-00A1-040C-0000-0000000FF1CE}
        O42 - Logiciel: Microsoft Office PowerPoint MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0018-040C-0000-0000000FF1CE}
        O42 - Logiciel: Microsoft Office PowerPoint Viewer 2007 (French) - (.Microsoft Corporation.) [HKLM] -- {95120000-00AF-040C-0000-0000000FF1CE}
        O42 - Logiciel: Microsoft Office Proof (Arabic) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0401-0000-0000000FF1CE}
        O42 - Logiciel: Microsoft Office Proof (Dutch) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0413-0000-0000000FF1CE}
        O42 - Logiciel: Microsoft Office Proof (English) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0409-0000-0000000FF1CE}
        O42 - Logiciel: Microsoft Office Proof (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-040C-0000-0000000FF1CE}
        O42 - Logiciel: Microsoft Office Proof (German) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0407-0000-0000000FF1CE}
        O42 - Logiciel: Microsoft Office Proof (Spanish) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0C0A-0000-0000000FF1CE}
        O42 - Logiciel: Microsoft Office Proofing (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-002C-040C-0000-0000000FF1CE}
        O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-001F-0401-0000-0000000FF1CE}_HOMESTUDENTR_{14809F99-C601-4D4A-9391-F1E8FAA964C5}
        O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-001F-0407-0000-0000000FF1CE}_HOMESTUDENTR_{A0516415-ED61-419A-981D-93596DA74165}
        O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
        O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{F580DDD5-8D37-4998-968E-EBB76BB86787}
        O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-001F-0413-0000-0000000FF1CE}_HOMESTUDENTR_{D66D5A44-E480-4BA4-B4F2-C554F6B30EBB}
        O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{187308AB-5FA7-4F14-9AB9-D290383A10D9}
        O42 - Logiciel: Microsoft Office Shared MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-006E-040C-0000-0000000FF1CE}
        O42 - Logiciel: Microsoft Office Suite Activation Assistant - (.Microsoft Corporation.) [HKLM] -- {E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}
        O42 - Logiciel: Microsoft Office Word MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001B-040C-0000-0000000FF1CE}
        O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU] - (.Microsoft Corporation.) [HKLM] -- {F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
        O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
        O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM] -- {770657D0-A123-3C07-8E44-1C83EC895118}
        O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
        O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {7299052b-02a4-4627-81f2-1818da5d550d}
        O42 - Logiciel: Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}
        O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 - (.Microsoft Corporation.) [HKLM] -- {86CE85E6-DBAC-3FFD-B977-E4B79F83C909}
        O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475}
        O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F}
        O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {0214A441-A4AB-43A8-8DEF-2F73C5364673}
        O42 - Logiciel: Microsoft Works 9.0 SE - (.Pas de propriétaire.) [HKLM] -- Works9SE
        O42 - Logiciel: Module de compatibilité pour Microsoft Office System 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0020-040C-0000-0000000FF1CE}
        O42 - Logiciel: Module linguistique Microsoft .NET Framework 3.5 SP1- fra - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 Language Pack SP1 - fra
        O42 - Logiciel: Mozilla Firefox 5.0 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 5.0 (x86 fr)
        O42 - Logiciel: Nero 8 Essentials - (.Nero AG.) [HKLM] -- {3559CDE0-11FC-4D7B-A65C-D646035B1036}
        O42 - Logiciel: Norton Internet Security - (.Symantec Corporation.) [HKLM] -- {7B15D70E-9449-4CFB-B9BC-798465B2BD5C}
        O42 - Logiciel: OpenOffice.org 3.1 - (.OpenOffice.org.) [HKLM] -- {0FA44E79-CD7D-4E8D-A2EE-26FE05F509B6}
        O42 - Logiciel: Outil de téléchargement Windows Live - (.Microsoft Corporation.) [HKLM] -- {205C6BDD-7B73-42DE-8505-9A093F35A238}
        O42 - Logiciel: Packard Bell ImageWriter - (.Pas de propriétaire.) [HKLM] -- {F4EA67C9-6748-4C1E-9AFF-04149AC75D95}
        O42 - Logiciel: Packard Bell Recovery Management - (.Acer Incorporated.) [HKLM] -- {7F811A54-5A09-4579-90E1-C93498E230D9}
        O42 - Logiciel: Packard Bell Updator - (.Pas de propriétaire.) [HKLM] -- {CA786CFF-1D31-4804-B436-F3405B14357F}
        O42 - Logiciel: PaperPort Image Printer - (.Nuance Communications, Inc..) [HKLM] -- {2BC2781A-F7F6-452E-95EB-018A522F1B2C}
        O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {57752979-A1C9-4C02-856B-FBB27AC4E02C}
        O42 - Logiciel: Realtek 8169 8168 8101E 8102E Ethernet Driver - (.Realtek.) [HKLM] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
        O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
        O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM] -- {DC24971E-1946-445D-8A82-CE685433FA7D}
        O42 - Logiciel: SFR - Kit de connexion - (.SFR.) [HKLM] -- SFR_Kit
        O42 - Logiciel: ScanSoft PaperPort 11 - (.Nuance Communications, Inc..) [HKLM] -- {02570AE0-BEE0-4A6C-BE3F-D806E9F2EA17}
        O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2288621) - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{5C497F0B-2061-4CC9-A61C-6B45B867354D}
        O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2288931) - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{CD769337-C8AC-46DB-A7DC-643E50089263}
        O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2345043) - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{536FB502-775F-4494-BACE-C02CC90B7A5B}
        O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2509488) - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{AD0DE453-0804-4495-9C91-33D0F9AA5463}
        O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB969559) - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
        O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB976321) - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{7F207DCA-3399-40CB-A968-6E5991B1421A}
        O42 - Logiciel: Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB2416473
        O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2446708
        O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2478663
        O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2518870
        O42 - Logiciel: Security Update for Microsoft Office 2007 System (KB2541012) - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{CD907315-705A-4475-A1A0-2A1245803E4D}
        O42 - Logiciel: Security Update for Microsoft Office Excel 2007 (KB2541007) - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{A0173254-F442-4D04-9154-43FA157B83D0}
        O42 - Logiciel: Security Update for Microsoft Office InfoPath 2007 (KB979441) - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{8CCB781A-CF6B-4FCB-B6D8-59C64DF5C6DB}
        O42 - Logiciel: Security Update for Microsoft Office PowerPoint 2007 (KB2535818) - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{8588DD11-6BD7-4400-B55C-DD5AB74B43E1}
        O42 - Logiciel: Security Update for Microsoft Office PowerPoint Viewer 2007 (KB2464623) - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{D75E6D0C-BADF-4F41-98B2-0C0F02C15062}
        O42 - Logiciel: Security Update for Microsoft Office Visio Viewer 2007 (KB973709) - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
        O42 - Logiciel: Security Update for Microsoft Office Word 2007 (KB2344993) - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{7A5B74FA-7A92-4FC9-821A-2DD5D4E73E48}
        O42 - Logiciel: Security Update for Microsoft Office system 2007 (972581) - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF}
        O42 - Logiciel: Security Update for Microsoft Office system 2007 (KB974234) - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{FCD742B9-7A55-44BC-A776-F795F21FEDDC}
        O42 - Logiciel: Setup My PC - (.Pas de propriétaire.) [HKLM] -- {28518520-F25C-48C3-A224-861F331602F4}
        O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics.) [HKLM] -- SynTPDeinstKey
        O42 - Logiciel: Total Immersion D'Fusion @Home Web Plug-In - (.Total Immersion.) [HKLM] -- D'Fusion @Home Web Plug-In
        O42 - Logiciel: Update for 2007 Microsoft Office System (KB967642) - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}
        O42 - Logiciel: Update for Microsoft .NET Framework 3.5 SP1 (KB963707) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707
        O42 - Logiciel: Update for Microsoft Office 2007 System (KB2539530) - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B4CEEAE-AA88-490C-BCB2-AAC3421981A4}
        O42 - Logiciel: Update for Microsoft Office OneNote 2007 (KB980729) - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{329050A9-EF80-40F9-B633-74508F54C1FF}
        O42 - Logiciel: VLC media player 1.1.10 - (.VideoLAN.) [HKLM] -- VLC media player
        O42 - Logiciel: WIDCOMM Bluetooth Software 6.1.0.4600 - (.Broadcom Corporation.) [HKLM] -- {03D1988F-469F-4843-8E6E-E5FE9D17889D}
        O42 - Logiciel: Windows Live Call - (.Microsoft Corporation.) [HKLM] -- {B3B487E7-6171-4376-9074-B28082CEB504}
        O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM] -- {3175E049-F9A9-4A3D-8F19-AC9FB04514D1}
        O42 - Logiciel: Windows Live FolderShare - (.Microsoft Corporation.) [HKLM] -- {76810709-A7D3-468D-9167-A1780C1E766C}
        O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM] -- {5DD76286-9BE7-4894-A990-E905E91AC818}
        O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {445B183D-F4F1-45C8-B9DB-F11355CA657B}
        O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM] -- {230B83A5-7D88-4B95-B71E-F44C0C78B002}
        O42 - Logiciel: neroxml - (.Nero AG.) [HKLM] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B}

        ---\\ HKCU & HKLM Software Keys
        [HKCU\Software\ATI Technologies Inc.]
        [HKCU\Software\ATI]
        [HKCU\Software\Ad-Remover]
        [HKCU\Software\Adobe]
        [HKCU\Software\AppDataLow\Software\Google]
        [HKCU\Software\AppDataLow\Software\Microsoft]
        [HKCU\Software\AppDataLow\Software]
        [HKCU\Software\AppDataLow]
        [HKCU\Software\Apple Computer, Inc.]
        [HKCU\Software\Avira]
        [HKCU\Software\Brother]
        [HKCU\Software\Classes]
        [HKCU\Software\Clients]
        [HKCU\Software\Google]
        [HKCU\Software\HookNetwork]
        [HKCU\Software\HotkeyPanel]
        [HKCU\Software\IM Providers]
        [HKCU\Software\JavaSoft]
        [HKCU\Software\Local AppWizard-Generated Applications]
        [HKCU\Software\LogMeIn]
        [HKCU\Software\Macromedia]
        [HKCU\Software\Mozilla]
        [HKCU\Software\Nero]
        [HKCU\Software\Netscape]
        [HKCU\Software\Neuf]
        [HKCU\Software\ODBC]
        [HKCU\Software\OpenOffice.org]
        [HKCU\Software\Packard Bell]
        [HKCU\Software\Piriform]
        [HKCU\Software\Policies]
        [HKCU\Software\Realtek]
        [HKCU\Software\ScanSoft]
        [HKCU\Software\Softonic]
        [HKCU\Software\Synaptics]
        [HKCU\Software\Widcomm]
        [HKCU\Software\WinRAR SFX]
        [HKCU\Software\YahooPartnerToolbar]
        [HKCU\Software\vkndfn]
        [HKLM\Software\ATI Technologies]
        [HKLM\Software\ATI]
        [HKLM\Software\Acer Incorporated]
        [HKLM\Software\Acer]
        [HKLM\Software\Adobe]
        [HKLM\Software\Ahead]
        [HKLM\Software\Apple Computer, Inc.]
        [HKLM\Software\Apple Inc.]
        [HKLM\Software\Audible]
        [HKLM\Software\Avira]
        [HKLM\Software\Brother Industries, Ltd.]
        [HKLM\Software\Brother]
        [HKLM\Software\Classes]
        [HKLM\Software\Clients]
        [HKLM\Software\Digital River]
        [HKLM\Software\EasyBits]
        [HKLM\Software\Google]
        [HKLM\Software\HotkeyPanel]
        [HKLM\Software\InstallShield]
        [HKLM\Software\InstalledOptions]
        [HKLM\Software\Intel]
        [HKLM\Software\JavaSoft]
        [HKLM\Software\JreMetrics]
        [HKLM\Software\Launch Manager]
        [HKLM\Software\Macromedia]
        [HKLM\Software\MetaBoli]
        [HKLM\Software\MozillaPlugins]
        [HKLM\Software\Mozilla]
        [HKLM\Software\NeroDigital]
        [HKLM\Software\Nero]
        [HKLM\Software\Neuf]
        [HKLM\Software\Nuance]
        [HKLM\Software\ODBC]
        [HKLM\Software\OemSetup]
        [HKLM\Software\OpenOffice.org]
        [HKLM\Software\PACKARD BELL]
        [HKLM\Software\Packard Bell ImageWriter]
        [HKLM\Software\Packard Bell Updator]
        [HKLM\Software\Piriform]
        [HKLM\Software\Policies]
        [HKLM\Software\RTLSetup]
        [HKLM\Software\Realtek Semiconductor Corp.]
        [HKLM\Software\Realtek USB 2.0 Card Reader]
        [HKLM\Software\Realtek]
        [HKLM\Software\RegisteredApplications]
        [HKLM\Software\SRS Labs]
        [HKLM\Software\ScanSoft]
        [HKLM\Software\Sonic]
        [HKLM\Software\Sun Microsystems]
        [HKLM\Software\Symantec]
        [HKLM\Software\Synaptics]
        [HKLM\Software\Total Immersion]
        [HKLM\Software\VideoLAN]
        [HKLM\Software\Visioneer]
        [HKLM\Software\Volatile]
        [HKLM\Software\WOW6432Node]
        [HKLM\Software\Waves Audio]
        [HKLM\Software\Widcomm]
        [HKLM\Software\Windows]
        [HKLM\Software\Wistron Corp.]
        [HKLM\Software\X-AVCSD]
        [HKLM\Software\ZEON]
        [HKLM\Software\mozilla.org]

        ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
        O43 - CFD: 03/07/2011 - 07:58:42 - [112016721] ----D- C:\Program Files\Ad-Remover
        O43 - CFD: 15/12/2008 - 19:47:14 - [624647152] ----D- C:\Program Files\Adobe
        O43 - CFD: 24/11/2009 - 02:22:12 - [2221118] ----D- C:\Program Files\Apple Software Update
        O43 - CFD: 20/06/2009 - 16:12:10 - [14267443] ----D- C:\Program Files\ATI
        O43 - CFD: 20/06/2009 - 16:13:10 - [110687587] ----D- C:\Program Files\ATI Technologies
        O43 - CFD: 12/06/2011 - 21:29:54 - [123441367] ----D- C:\Program Files\Avira
        O43 - CFD: 28/06/2011 - 08:28:06 - [33113514] ----D- C:\Program Files\Brother
        O43 - CFD: 10/11/2010 - 20:30:18 - [3206848] ----D- C:\Program Files\CCleaner
        O43 - CFD: 28/06/2011 - 08:23:16 - [1081868409] ----D- C:\Program Files\Common Files
        O43 - CFD: 10/11/2009 - 18:35:34 - [85610898] ----D- C:\Program Files\EasyBits For Kids
        O43 - CFD: 10/11/2009 - 18:29:12 - [0] ----D- C:\Program Files\Fichiers communs
        O43 - CFD: 02/02/2010 - 18:13:52 - [57807544] ----D- C:\Program Files\Google
        O43 - CFD: 15/12/2008 - 19:48:20 - [4710890] ----D- C:\Program Files\HDReg
        O43 - CFD: 28/06/2011 - 08:27:38 - [49532664] ----D- C:\Program Files\InstallShield Installation Information
        O43 - CFD: 15/12/2008 - 19:17:40 - [64745] ----D- C:\Program Files\Intel
        O43 - CFD: 20/06/2011 - 21:19:32 - [6386440] ----D- C:\Program Files\Internet Explorer
        O43 - CFD: 05/05/2011 - 01:16:04 - [91531787] ----D- C:\Program Files\Java
        O43 - CFD: 10/01/2010 - 22:55:56 - [16664352] ----D- C:\Program Files\JRE
        O43 - CFD: 20/06/2009 - 16:46:58 - [868352] ----D- C:\Program Files\Launch Manager
        O43 - CFD: 27/01/2011 - 09:54:56 - [374152] ----D- C:\Program Files\LogMeIn
        O43 - CFD: 30/03/2011 - 13:35:36 - [21439546] ----D- C:\Program Files\Microsoft
        O43 - CFD: 02/11/2006 - 14:37:36 - [93446071] ----D- C:\Program Files\Microsoft Games
        O43 - CFD: 15/12/2008 - 19:32:34 - [373461757] ----D- C:\Program Files\Microsoft Office
        O43 - CFD: 15/12/2008 - 19:30:34 - [7791803] ----D- C:\Program Files\Microsoft Office Suite Activation Assistant
        O43 - CFD: 20/06/2011 - 21:21:32 - [38411899] ----D- C:\Program Files\Microsoft Silverlight
        O43 - CFD: 13/06/2011 - 22:13:36 - [1829877] ----D- C:\Program Files\Microsoft SQL Server Compact Edition
        O43 - CFD: 16/12/2010 - 19:41:20 - [146453974] ----D- C:\Program Files\Microsoft Works
        O43 - CFD: 03/10/2010 - 23:54:16 - [8167779] ----D- C:\Program Files\Microsoft.NET
        O43 - CFD: 07/10/2010 - 11:19:02 - [99342446] ----D- C:\Program Files\Movie Maker
        O43 - CFD: 28/06/2011 - 22:16:10 - [36014462] ----D- C:\Program Files\Mozilla Firefox
        O43 - CFD: 02/11/2006 - 14:37:36 - [25757] ----D- C:\Program Files\MSBuild
        O43 - CFD: 14/04/2011 - 21:48:40 - [6834838] ----D- C:\Program Files\MSN Toolbar
        O43 - CFD: 20/06/2009 - 16:36:30 - [0] ----D- C:\Program Files\MSXML 4.0
        O43 - CFD: 15/12/2008 - 19:43:18 - [360177766] ----D- C:\Program Files\Nero
        O43 - CFD: 28/06/2011 - 08:25:20 - [537166] ----D- C:\Program Files\Nuance
        O43 - CFD: 10/01/2010 - 22:55:56 - [385258936] ----D- C:\Program Files\OpenOffice.org 3
        O43 - CFD: 10/11/2009 - 18:35:28 - [1332480167] ----D- C:\Program Files\PACKARD BELL
        O43 - CFD: 09/02/2011 - 21:28:24 - [76322555] ----D- C:\Program Files\QuickTime
        O43 - CFD: 15/12/2008 - 19:23:50 - [29209329] ----D- C:\Program Files\Realtek
        O43 - CFD: 02/11/2006 - 14:37:36 - [38694657] ----D- C:\Program Files\Reference Assemblies
        O43 - CFD: 28/06/2011 - 08:23:10 - [143013604] ----D- C:\Program Files\ScanSoft
        O43 - CFD: 28/06/2011 - 20:06:34 - [2747571] ----D- C:\Program Files\seeearch
        O43 - CFD: 10/11/2009 - 19:48:36 - [14633284] ----D- C:\Program Files\SFR
        O43 - CFD: 20/06/2009 - 16:41:24 - [15015320] ----D- C:\Program Files\Synaptics
        O43 - CFD: 27/06/2011 - 21:08:44 - [9085511] ----D- C:\Program Files\Total Immersion
        O43 - CFD: 02/11/2006 - 15:01:56 - [0] ----D- C:\Program Files\Uninstall Information
        O43 - CFD: 14/04/2011 - 20:46:48 - [84280638] ----D- C:\Program Files\VideoLAN
        O43 - CFD: 20/06/2009 - 16:44:20 - [5283584] ----D- C:\Program Files\WIDCOMM
        O43 - CFD: 07/10/2010 - 11:19:02 - [1016832] ----D- C:\Program Files\Windows Calendar
        O43 - CFD: 07/10/2010 - 11:18:46 - [2737152] ----D- C:\Program Files\Windows Collaboration
        O43 - CFD: 07/10/2010 - 11:17:58 - [4490624] ----D- C:\Program Files\Windows Defender
        O43 - CFD: 07/10/2010 - 11:18:44 - [7084664] ----D- C:\Program Files\Windows Journal
        O43 - CFD: 13/06/2011 - 22:14:04 - [137555424] ----D- C:\Program Files\Windows Live
        O43 - CFD: 19/01/2011 - 20:27:58 - [245112] ----D- C:\Program Files\Windows Live SkyDrive
        O43 - CFD: 20/06/2011 - 20:46:22 - [9116344] ----D- C:\Program Files\Windows Mail
        O43 - CFD: 14/10/2010 - 14:53:06 - [4498121] ----D- C:\Program Files\Windows Media Player
        O43 - CFD: 10/11/2009 - 18:29:12 - [7957544] ----D- C:\Program Files\Windows NT
        O43 - CFD: 07/10/2010 - 11:18:30 - [13528738] ----D- C:\Program Files\Windows Photo Gallery
        O43 - CFD: 07/10/2010 - 18:45:38 - [134144] ----D- C:\Program Files\Windows Portable Devices
        O43 - CFD: 07/10/2010 - 11:18:52 - [7614028] ----D- C:\Program Files\Windows Sidebar
        O43 - CFD: 03/07/2011 - 18:35:32 - [3970608] ----D- C:\Program Files\ZHPDiag
        O43 - CFD: 15/12/2008 - 19:47:18 - [50451619] ----D- C:\Program Files\Common Files\Adobe
        O43 - CFD: 24/11/2009 - 02:22:22 - [54774793] ----D- C:\Program Files\Common Files\Apple
        O43 - CFD: 15/12/2008 - 19:28:02 - [92976] ----D- C:\Program Files\Common Files\DESIGNER
        O43 - CFD: 28/06/2011 - 08:23:16 - [6473670] ----D- C:\Program Files\Common Files\InstallShield
        O43 - CFD: 05/05/2011 - 01:16:34 - [1247175] ----D- C:\Program Files\Common Files\Java
        O43 - CFD: 15/12/2008 - 19:36:56 - [655111] ----D- C:\Program Files\Common Files\Macrovision Shared
        O43 - CFD: 19/01/2011 - 20:28:10 - [433927590] ----D- C:\Program Files\Common Files\microsoft shared
        O43 - CFD: 15/12/2008 - 19:44:02 - [137790986] ----D- C:\Program Files\Common Files\Nero
        O43 - CFD: 28/06/2011 - 08:23:18 - [3724824] ----D- C:\Program Files\Common Files\ScanSoft Shared
        O43 - CFD: 02/11/2006 - 13:18:34 - [2702] ----D- C:\Program Files\Common Files\Services
        O43 - CFD: 02/11/2006 - 13:18:34 - [41101735] ----D- C:\Program Files\Common Files\SpeechEngines
        O43 - CFD: 07/10/2010 - 11:18:30 - [42750094] ----D- C:\Program Files\Common Files\System
        O43 - CFD: 23/11/2009 - 17:01:08 - [308875134] ----D- C:\Program Files\Common Files\Windows Live
        O43 - CFD: 15/12/2008 - 19:47:30 - [398544104] ----D- C:\ProgramData\Adobe
        O43 - CFD: 24/11/2009 - 02:22:12 - [46947328] ----D- C:\ProgramData\Apple
        O43 - CFD: 09/02/2011 - 21:27:54 - [26896384] ----D- C:\ProgramData\Apple Computer
        O43 - CFD: 10/11/2009 - 18:29:12 - [0] -SH-D- C:\ProgramData\Application Data
        O43 - CFD: 20/06/2009 - 16:17:40 - [188] ----D- C:\ProgramData\ATI
        O43 - CFD: 12/06/2011 - 21:29:54 - [46314689] ----D- C:\ProgramData\Avira
        O43 - CFD: 28/06/2011 - 08:21:46 - [23385] ----D- C:\ProgramData\Brother
        O43 - CFD: 10/11/2009 - 18:29:12 - [0] -SH-D- C:\ProgramData\Bureau
        O43 - CFD: 10/11/2009 - 18:29:12 - [0] -SH-D- C:\ProgramData\Documents
        O43 - CFD: 10/11/2009 - 18:29:12 - [0] -SH-D- C:\ProgramData\Favoris
        O43 - CFD: 23/11/2009 - 17:00:26 - [1007235] ----D- C:\ProgramData\Google
        O43 - CFD: 28/06/2011 - 08:24:28 - [176] ----D- C:\ProgramData\InstallShield
        O43 - CFD: 27/01/2011 - 09:54:56 - [1591832] ----D- C:\ProgramData\LogMeIn
        O43 - CFD: 10/11/2009 - 18:29:12 - [0] -SH-D- C:\ProgramData\Menu Démarrer
        O43 - CFD: 30/03/2011 - 13:36:24 - [178274004] -S--D- C:\ProgramData\Microsoft
        O43 - CFD: 20/06/2011 - 20:56:44 - [57040] ----D- C:\ProgramData\Microsoft Help
        O43 - CFD: 10/11/2009 - 18:29:12 - [0] -SH-D- C:\ProgramData\Modèles
        O43 - CFD: 15/12/2008 - 19:43:18 - [8770160] ----D- C:\ProgramData\Nero
        O43 - CFD: 06/02/2010 - 18:23:22 - [15525] ----D- C:\ProgramData\Norton
        O43 - CFD: 15/12/2008 - 19:48:24 - [5619058] ----D- C:\ProgramData\NortonInstaller
        O43 - CFD: 28/06/2011 - 08:24:30 - [766492] ----D- C:\ProgramData\ScanSoft
        O43 - CFD: 16/04/2010 - 21:49:14 - [259] ----D- C:\ProgramData\Sun
        O43 - CFD: 10/11/2009 - 20:01:38 - [64] ----D- C:\ProgramData\Symantec
        O43 - CFD: 23/11/2009 - 18:08:12 - [3722205] ----D- C:\Users\manu\AppData\Roaming\Adobe
        O43 - CFD: 27/01/2011 - 11:01:00 - [0] ----D- C:\Users\manu\AppData\Roaming\Apple Computer
        O43 - CFD: 10/11/2009 - 18:43:08 - [0] ----D- C:\Users\manu\AppData\Roaming\ATI
        O43 - CFD: 14/06/2011 - 07:47:16 - [0] ----D- C:\Users\manu\AppData\Roaming\Avira
        O43 - CFD: 10/11/2009 - 19:56:58 - [0] ----D- C:\Users\manu\AppData\Roaming\Google
        O43 - CFD: 10/11/2009 - 18:42:36 - [0] ----D- C:\Users\manu\AppData\Roaming\Identities
        O43 - CFD: 28/06/2011 - 08:26:34 - [0] ----D- C:\Users\manu\AppData\Roaming\InstallShield
        O43 - CFD: 10/11/2009 - 19:56:24 - [9076] ----D- C:\Users\manu\AppData\Roaming\Macromedia
        O43 - CFD: 02/11/2006 - 14:37:36 - [0] ----D- C:\Users\manu\AppData\Roaming\Media Center Programs
        O43 - CFD: 07/10/2010 - 22:31:26 - [1954078] -S--D- C:\Users\manu\AppData\Roaming\Microsoft
        O43 - CFD: 07/10/2010 - 11:47:10 - [16162915] ----D- C:\Users\manu\AppData\Roaming\Mozilla
        O43 - CFD: 11/12/2010 - 19:57:18 - [161595] ----D- C:\Users\manu\AppData\Roaming\Nero
        O43 - CFD: 10/01/2010 - 22:58:38 - [5468992] ----D- C:\Users\manu\AppData\Roaming\OpenOffice.org
        O43 - CFD: 27/06/2011 - 21:08:48 - [30704763] ----D- C:\Users\manu\AppData\Roaming\Total Immersion
        O43 - CFD: 14/04/2011 - 20:55:14 - [1236538] ----D- C:\Users\manu\AppData\Roaming\vlc
        O43 - CFD: 19/01/2011 - 19:41:34 - [0] ----D- C:\Users\manu\AppData\Roaming\Windows Live Writer
        O43 - CFD: 09/01/2011 - 20:41:18 - [3032789] ----D- C:\Users\manu\AppData\Local\Adobe
        O43 - CFD: 24/11/2009 - 02:22:14 - [0] ----D- C:\Users\manu\AppData\Local\Apple
        O43 - CFD: 27/12/2009 - 18:39:50 - [0] ----D- C:\Users\manu\AppData\Local\Apple Computer
        O43 - CFD: 10/11/2009 - 18:34:14 - [0] -SH-D- C:\Users\manu\AppData\Local\Application Data
        O43 - CFD: 10/11/2009 - 18:43:08 - [40176] ----D- C:\Users\manu\AppData\Local\ATI
        O43 - CFD: 28/07/2010 - 19:14:26 - [197681059] ----D- C:\Users\manu\AppData\Local\Google
        O43 - CFD: 10/11/2009 - 1
    14. Bonjour

      Inscris toi avant tout ,sinon je ne pourrais lire ce rapport demandé.

      Pour de plus amples informations, fait ceci stp

      Ouvre ce lien et télécharge ZHPDiag de Nicolas Coolman :

      https://www.zebulon.fr/telechargements/securite/systeme/zhpdiag.html

      Ou

      https://www.commentcamarche.net/telecharger/utilitaires/24803-zhpdiag/

      Serveur N°2

      Ou

      http://www.premiumorange.com/zeb-help-process/zhpdiag.html
      en bas de la page ZHP avec un numéro de version.

      Une fois le téléchargement achevé, dé zippe le fichier obtenu et place ZHPDiag.exe sur ton Bureau.

      Double-clique sur l'icône pour lancer le programme. Sous Vista ou Seven clic droit « exécuter en tant que administrateur »

      Clique sur la loupe pour lancer l'analyse.

      Laisse l'outil travailler, il peut être assez long.

      Ferme ZHPDiag en fin d'analyse.

      Pour transmettre le rapport clique sur ce lien :

      http://www.cijoint.fr/index.php

      http://pjjoint.malekal.com/

      Clique sur Parcourir et cherche le répertoire où est installé ZHPDiag (en général C:\Program Files\ZHPDiag).

      Sélectionne le fichier ZHPDiag.txt.

      Clique sur "Cliquez ici pour déposer le fichier".

      Un lien de cette forme :

      http://www.cijoint.fr/cjlink.php?file=cj200905/cijSKAP5fU.txt

      est ajouté dans la page.

      Copie ce lien dans ta réponse.

      Merci

      A+
      1. j'espère que vous aurez bien eu reception du fichier

        Merci
      2. re

        Non je n'ai vu aucun fichier

        @+
      3. Rapport de ZHPDiag v1.27.2362 par Nicolas Coolman, Update du 02/07/2011
        Run by manu at 03/07/2011 09:04:28
        Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.htm

        ---\\ Web Browser
        MSIE: Internet Explorer v9.0.8112.16421
        MFIE: Mozilla Firefox 5.0 v (Defaut)

        ---\\ System Information
        Windows Vista Home Premium Edition, 32-bit Service Pack 2 (Build 6002)
        Processor: x86 Family 6 Model 23 Stepping 10, GenuineIntel
        Operating System: 32 Bits
        Boot mode: Normal (Normal boot)
        Total RAM: 3066 MB (65% free)
        System Restore: Activé (Enable)
        System drive C: has 320 GB (70%) free of 453 GB

        ---\\ Logged in mode
        Computer Name: PC-DE-MANU
        User Name: manu
        All Users Names: manu, Administrateur,
        Unselected Option: O45,O61,O62,O65,O66,O82
        Logged in as Administrator

        ---\\ Environnement Variables
        ~ %AppData%=C:\Users\manu\AppData\Roaming\
        ~ %Desktop%=C:\Users\manu\Desktop\
        ~ %Favorites%=C:\Users\manu\Favorites\
        ~ %LocalAppData%=C:\Users\manu\AppData\Local\
        ~ %StartMenu%=C:\Users\manu\AppData\Roaming\Microsoft\Windows\Start Menu\

        ---\\ DOS/Devices
        C:\ Hard drive, Flash drive, Thumb drive (Free 320 Go of 453 Go)
        D:\ CD-ROM drive (Not Inserted)

        ---\\ Security Center & Tools Informations
        [HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK
        [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK
        [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
        [HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
        [HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK
        [HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
        [HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: Modified
        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK
        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK
        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK
        [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK
        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK
        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: OK
        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK
        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
        [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK
        [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK
        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
        [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK

        ---\\ Recherche particulière de fichiers génériques
        [MD5.D07D4C3038F3578FFCE1C0237F2A1253] - (.Microsoft Corporation - Explorateur Windows.) (.09/01/2010 - 07:27:36.) -- C:\Windows\Explorer.exe [2926592]
        [MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) (.21/01/2008 - 03:23:42.) -- C:\Windows\system32\Wininit.exe [96768]
        [MD5.A1236375B74EA63C75657D564890C436] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.14/06/2011 - 13:57:33.) -- C:\Windows\system32\wininet.dll [1126912]
        [MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.09/01/2010 - 07:28:13.) -- C:\Windows\system32\Winlogon.exe [314368]
        [MD5.1F05B78AB91C9075565A9D8A4B880BC4] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.09/01/2010 - 07:32:26.) -- C:\Windows\system32\drivers\atapi.sys [19944]
        [MD5.6A4A98CEE84CF9E99564510DDA4BAA47] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.09/01/2010 - 07:32:49.) -- C:\Windows\system32\drivers\ntfs.sys [1083880]

        ---\\ Etat des fichiers cachés (Caché/Total)
        ~ Mes images (My Pictures) : 0/5084
        ~ Mes musiques (My Musics) : 0/83
        ~ Mes Videos (My Video) : 0/20
        ~ Mes Favoris (My Favorites) : 0/27
        ~ Mes Documents (My Documents) : 0/5
        ~ Mon Bureau (My Desktop) : 0/1
        ~ Menu demarrer (Programs) : 0/22

        Voilà ,en copier coller cela me permet plus simple
        ....
      4. http://www.cijoint.fr/cjlink.php?file=cj201107/cijyF1UE4y.txt

        Je n'avais pas tout compris , j'espère que cette fois ça pourra vous aider à m'aider!

        Merci de vos réponses très rapides depuis ce matin