ComboFix 14-02-23.01 - vince 23/02/2014 15:39:48.2.4 - x64 Microsoft Windows 7 Édition Familiale Premium 6.1.7601.1.1252.33.1036.18.4073.2100 [GMT 1:00] Lancé depuis: c:\users\vince\Desktop\ComboFix.exe Commutateurs utilisés :: c:\users\vince\Desktop\CFScript.txt AV: Microsoft Security Essentials *Disabled/Updated* {641105E6-77ED-3F35-A304-765193BCB75F} FW: ZoneAlarm Pro Firewall *Enabled* {E6380B7E-D4B2-19F1-083E-56486607704B} SP: Microsoft Security Essentials *Disabled/Updated* {DF70E402-51D7-30BB-99B4-4D23E83BFDE2} SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . ((((((((((((((((((((((((((((( Fichiers créés du 2014-01-23 au 2014-02-23 )))))))))))))))))))))))))))))))))))) . . 2014-02-23 16:20 . 2014-02-23 16:20 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp 2014-02-23 16:20 . 2014-02-23 16:20 -------- d-----w- c:\users\Default\AppData\Local\temp 2014-02-23 12:00 . 2014-02-06 09:01 10536864 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E4E8000F-9291-499F-9727-7787CB8C1A2A}\mpengine.dll 2014-02-22 13:02 . 2014-02-22 20:18 -------- d-----w- c:\users\vince\AppData\Roaming\ZHP 2014-02-22 08:02 . 2014-02-06 09:01 10536864 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll 2014-02-20 18:14 . 2014-02-20 18:14 1031560 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{53B2CE9B-F6BD-41BD-B703-0FBE2CA18834}\gapaengine.dll 2014-02-15 15:21 . 2013-12-21 09:39 600064 ----a-w- c:\windows\system32\vbscript.dll 2014-02-15 15:21 . 2013-12-21 07:56 523776 ----a-w- c:\windows\SysWow64\vbscript.dll 2014-02-15 15:19 . 2014-02-01 09:18 19274240 ----a-w- c:\windows\system32\mshtml.dll 2014-02-15 12:23 . 2013-12-06 02:30 2048 ----a-w- c:\windows\system32\msxml3r.dll 2014-02-15 12:23 . 2013-12-06 02:30 1882112 ----a-w- c:\windows\system32\msxml3.dll 2014-02-15 12:23 . 2013-12-06 02:02 2048 ----a-w- c:\windows\SysWow64\msxml3r.dll 2014-02-15 12:23 . 2013-12-06 02:02 1237504 ----a-w- c:\windows\SysWow64\msxml3.dll 2014-02-09 07:20 . 2014-02-09 07:20 -------- d-----w- C:\Games 2014-02-09 07:20 . 2014-02-09 07:20 -------- d-----w- c:\users\vince\twau 2014-02-08 16:13 . 2014-02-08 16:13 -------- d-----w- c:\programdata\Oracle 2014-02-08 16:11 . 2013-12-18 20:09 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll 2014-02-02 15:15 . 2014-02-02 15:15 0 ----a-w- c:\windows\SysWow64\shoBEA9.tmp . . . (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M )))))))))))))))))))))))))))))))))))))))))))))))) . 2014-02-21 17:47 . 2012-07-29 15:01 692616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2014-02-21 17:47 . 2011-12-25 01:03 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2014-02-17 02:02 . 2012-11-07 08:40 88567024 ----a-w- c:\windows\system32\MRT.exe 2014-01-19 07:33 . 2012-01-25 19:44 270496 ------w- c:\windows\system32\MpSigStub.exe 2013-12-28 23:34 . 2013-12-28 23:34 0 ----a-w- c:\windows\SysWow64\shoBE98.tmp 2013-12-24 07:42 . 2011-12-25 06:42 45056 ----a-w- c:\windows\system32\acovcnt.exe 2013-11-27 01:41 . 2014-01-18 12:01 343040 ----a-w- c:\windows\system32\drivers\usbhub.sys 2013-11-27 01:41 . 2014-01-18 12:01 99840 ----a-w- c:\windows\system32\drivers\usbccgp.sys 2013-11-27 01:41 . 2014-01-18 12:01 53248 ----a-w- c:\windows\system32\drivers\usbehci.sys 2013-11-27 01:41 . 2014-01-18 12:01 325120 ----a-w- c:\windows\system32\drivers\usbport.sys 2013-11-27 01:41 . 2014-01-18 12:01 25600 ----a-w- c:\windows\system32\drivers\usbohci.sys 2013-11-27 01:41 . 2014-01-18 12:01 30720 ----a-w- c:\windows\system32\drivers\usbuhci.sys 2013-11-27 01:41 . 2014-01-18 12:01 7808 ----a-w- c:\windows\system32\drivers\usbd.sys 2013-11-26 11:40 . 2014-01-18 12:01 376768 ----a-w- c:\windows\system32\drivers\netio.sys 2013-11-26 10:32 . 2014-01-18 12:01 3156480 ----a-w- c:\windows\system32\win32k.sys . . ((((((((((((((((((((((((((((((((( Points de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "DAEMON Tools Lite"="d:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2011-08-02 4910912] "RGSC"="c:\program files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe" [2008-11-14 305064] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "UpdateLBPShortCut"="c:\program files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" [2009-05-20 222504] "UpdateP2GoShortCut"="c:\program files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" [2009-05-20 222504] "Nuance PDF Reader-reminder"="c:\program files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe" [2008-11-03 328992] "ATKMEDIA"="c:\program files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe" [2010-10-07 170624] "HControlUser"="c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe" [2009-06-19 105016] "Wireless Console 3"="c:\program files (x86)\ASUS\Wireless Console 3\wcourier.exe" [2010-09-23 1601536] "CPMonitor"="c:\program files (x86)\Roxio\CinePlayer\5.0\CPMonitor.exe" [2010-12-27 84464] "THX TruStudio NB Settings"="c:\program files (x86)\Creative\THX TruStudio\THXNBSet\THXAudNB.exe" [2011-01-28 907776] "UpdReg"="c:\windows\UpdReg.EXE" [2000-05-11 90112] "VAWinAgent"="c:\expressgateutil\VAWinAgent.exe" [2010-08-13 21504] "FLxHCIm"="c:\program files\Fresco Logic Inc\Fresco Logic USB3.0 Host Controller\host\FLxHCIm.exe" [2011-02-24 40448] "ZoneAlarm"="c:\program files (x86)\CheckPoint\ZoneAlarm\zatray.exe" [2011-12-18 73360] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576] "Acrobat Assistant 8.0"="c:\program files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe" [2013-09-05 3478392] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-07-02 254336] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) "PromptOnSecureDesktop"= 0 (0x0) . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc] @="Service" . R2 BBSvc;BingBar Service;c:\program files (x86)\Microsoft\BingBar\7.3.124.0\BBSvc.exe;c:\program files (x86)\Microsoft\BingBar\7.3.124.0\BBSvc.exe [x] R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [x] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R2 gupdate;Google Update Service (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe;c:\program files (x86)\Google\Update\GoogleUpdate.exe [x] R2 MMCSS;Planificateur de classes multimédias;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe;c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [x] R2 sppsvc;Protection logicielle;c:\windows\system32\sppsvc.exe;c:\windows\SYSNATIVE\sppsvc.exe [x] R2 VideAceWindowsService;VideAceWindowsService;c:\expressgateutil\VAWinService.exe;c:\expressgateutil\VAWinService.exe [x] R2 WinDefend;Windows Defender;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 1394ohci;Contrôleur d’hôte compatible OHCI 1394;c:\windows\system32\drivers\1394ohci.sys;c:\windows\SYSNATIVE\drivers\1394ohci.sys [x] R3 AcpiPmi;Jauge d’alimentation ACPI;c:\windows\system32\drivers\acpipmi.sys;c:\windows\SYSNATIVE\drivers\acpipmi.sys [x] R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [x] R3 adp94xx;adp94xx;c:\windows\system32\DRIVERS\adp94xx.sys;c:\windows\SYSNATIVE\DRIVERS\adp94xx.sys [x] R3 adpahci;adpahci;c:\windows\system32\DRIVERS\adpahci.sys;c:\windows\SYSNATIVE\DRIVERS\adpahci.sys [x] R3 amdsata;amdsata;c:\windows\system32\drivers\amdsata.sys;c:\windows\SYSNATIVE\drivers\amdsata.sys [x] R3 amdsbs;amdsbs;c:\windows\system32\DRIVERS\amdsbs.sys;c:\windows\SYSNATIVE\DRIVERS\amdsbs.sys [x] R3 AppID;Pilote AppID;c:\windows\system32\drivers\appid.sys;c:\windows\SYSNATIVE\drivers\appid.sys [x] R3 AppIDSvc;Identité de l’application;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 arcsas;arcsas;c:\windows\system32\DRIVERS\arcsas.sys;c:\windows\SYSNATIVE\DRIVERS\arcsas.sys [x] R3 b06bdrv;Broadcom NetXtreme II VBD;c:\windows\system32\DRIVERS\bxvbda.sys;c:\windows\SYSNATIVE\DRIVERS\bxvbda.sys [x] R3 b57nd60a;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\b57nd60a.sys;c:\windows\SYSNATIVE\DRIVERS\b57nd60a.sys [x] R3 BDESVC;Service de chiffrement de lecteur BitLocker;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 BrFiltLo;Brother USB Mass-Storage Lower Filter Driver;c:\windows\system32\DRIVERS\BrFiltLo.sys;c:\windows\SYSNATIVE\DRIVERS\BrFiltLo.sys [x] R3 BrFiltUp;Brother USB Mass-Storage Upper Filter Driver;c:\windows\system32\DRIVERS\BrFiltUp.sys;c:\windows\SYSNATIVE\DRIVERS\BrFiltUp.sys [x] R3 Brserid;Brother MFC Serial Port Interface Driver (WDM);c:\windows\System32\Drivers\Brserid.sys;c:\windows\SYSNATIVE\Drivers\Brserid.sys [x] R3 BrSerWdm;Brother WDM Serial driver;c:\windows\System32\Drivers\BrSerWdm.sys;c:\windows\SYSNATIVE\Drivers\BrSerWdm.sys [x] R3 BrUsbMdm;Brother MFC USB Fax Only Modem;c:\windows\System32\Drivers\BrUsbMdm.sys;c:\windows\SYSNATIVE\Drivers\BrUsbMdm.sys [x] R3 BrUsbSer;Brother MFC USB Serial WDM Driver;c:\windows\System32\Drivers\BrUsbSer.sys;c:\windows\SYSNATIVE\Drivers\BrUsbSer.sys [x] R3 BTHPORT;Pilote de port Bluetooth;c:\windows\System32\Drivers\BTHport.sys;c:\windows\SYSNATIVE\Drivers\BTHport.sys [x] R3 CertPropSvc;Propagation du certificat;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 circlass;Consumer IR Devices;c:\windows\system32\DRIVERS\circlass.sys;c:\windows\SYSNATIVE\DRIVERS\circlass.sys [x] R3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe;c:\program files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [x] R3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe;c:\program files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [x] R3 CrystalSysInfo;CrystalSysInfo;c:\program files (x86)\MediaCoder\SysInfoX64.sys;c:\program files (x86)\MediaCoder\SysInfoX64.sys [x] R3 dc3d;MS Hardware Device Detection Driver (USB);c:\windows\system32\DRIVERS\dc3d.sys;c:\windows\SYSNATIVE\DRIVERS\dc3d.sys [x] R3 defragsvc;Défragmenteur de disque;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 ebdrv;Broadcom NetXtreme II 10 GigE VBD;c:\windows\system32\DRIVERS\evbda.sys;c:\windows\SYSNATIVE\DRIVERS\evbda.sys [x] R3 EFS;Système de fichiers EFS (Encrypting File System);c:\windows\System32\lsass.exe;c:\windows\SYSNATIVE\lsass.exe [x] R3 ehRecvr;Service de réception Windows Media Center;c:\windows\ehome\ehRecvr.exe;c:\windows\ehome\ehRecvr.exe [x] R3 ehSched;Service de planification Windows Media Center;c:\windows\ehome\ehsched.exe;c:\windows\ehome\ehsched.exe [x] R3 elxstor;elxstor;c:\windows\system32\DRIVERS\elxstor.sys;c:\windows\SYSNATIVE\DRIVERS\elxstor.sys [x] R3 ErrDev;Pilote de périphérique d’erreur matérielle Microsoft;c:\windows\system32\drivers\errdev.sys;c:\windows\SYSNATIVE\drivers\errdev.sys [x] R3 Fax;Télécopie;c:\windows\system32\fxssvc.exe;c:\windows\SYSNATIVE\fxssvc.exe [x] R3 Filetrace;Filetrace;c:\windows\system32\drivers\filetrace.sys;c:\windows\SYSNATIVE\drivers\filetrace.sys [x] R3 FsDepends;File System Dependency Minifilter;c:\windows\system32\drivers\FsDepends.sys;c:\windows\SYSNATIVE\drivers\FsDepends.sys [x] R3 fssfltr;fssfltr;c:\windows\system32\DRIVERS\fssfltr.sys;c:\windows\SYSNATIVE\DRIVERS\fssfltr.sys [x] R3 fsssvc;Windows Live Family Safety Service;c:\program files (x86)\Windows Live\Family Safety\fsssvc.exe;c:\program files (x86)\Windows Live\Family Safety\fsssvc.exe [x] R3 gagp30kx;Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms;c:\windows\system32\DRIVERS\gagp30kx.sys;c:\windows\SYSNATIVE\DRIVERS\gagp30kx.sys [x] R3 gupdatem;Service Google Update (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe;c:\program files (x86)\Google\Update\GoogleUpdate.exe [x] R3 hcw85cir;Hauppauge Consumer Infrared Receiver;c:\windows\system32\drivers\hcw85cir.sys;c:\windows\SYSNATIVE\drivers\hcw85cir.sys [x] R3 HdAudAddService;Pilote de fonction UAA 1.1 Microsoft pour le service High Definition Audio;c:\windows\system32\drivers\HdAudio.sys;c:\windows\SYSNATIVE\drivers\HdAudio.sys [x] R3 HidBth;Microsoft Bluetooth HID Miniport;c:\windows\system32\DRIVERS\hidbth.sys;c:\windows\SYSNATIVE\DRIVERS\hidbth.sys [x] R3 HidIr;Microsoft Infrared HID Driver;c:\windows\system32\DRIVERS\hidir.sys;c:\windows\SYSNATIVE\DRIVERS\hidir.sys [x] R3 HpSAMD;HpSAMD;c:\windows\system32\drivers\HpSAMD.sys;c:\windows\SYSNATIVE\drivers\HpSAMD.sys [x] R3 iaStorV;Contrôleur RAID Intel Windows 7;c:\windows\system32\drivers\iaStorV.sys;c:\windows\SYSNATIVE\drivers\iaStorV.sys [x] R3 IPBusEnum;Énumérateur de bus IP PnP-X;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 IPMIDRV;IPMIDRV;c:\windows\system32\drivers\IPMIDrv.sys;c:\windows\SYSNATIVE\drivers\IPMIDrv.sys [x] R3 iScsiPrt;Pilote iScsiPort;c:\windows\system32\drivers\msiscsi.sys;c:\windows\SYSNATIVE\drivers\msiscsi.sys [x] R3 KtmRm;Service KtmRm pour Distributed Transaction Coordinator;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 lltdsvc;Mappage de découverte de topologie de la couche de liaison;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 LSI_FC;LSI_FC;c:\windows\system32\DRIVERS\lsi_fc.sys;c:\windows\SYSNATIVE\DRIVERS\lsi_fc.sys [x] R3 LSI_SAS;LSI_SAS;c:\windows\system32\DRIVERS\lsi_sas.sys;c:\windows\SYSNATIVE\DRIVERS\lsi_sas.sys [x] R3 LSI_SAS2;LSI_SAS2;c:\windows\system32\DRIVERS\lsi_sas2.sys;c:\windows\SYSNATIVE\DRIVERS\lsi_sas2.sys [x] R3 LSI_SCSI;LSI_SCSI;c:\windows\system32\DRIVERS\lsi_scsi.sys;c:\windows\SYSNATIVE\DRIVERS\lsi_scsi.sys [x] R3 megasas;megasas;c:\windows\system32\DRIVERS\megasas.sys;c:\windows\SYSNATIVE\DRIVERS\megasas.sys [x] R3 MegaSR;MegaSR;c:\windows\system32\DRIVERS\MegaSR.sys;c:\windows\SYSNATIVE\DRIVERS\MegaSR.sys [x] R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [x] R3 mpio;Pilote de bus à chemins d’accès multiples Microsoft;c:\windows\system32\drivers\mpio.sys;c:\windows\SYSNATIVE\drivers\mpio.sys [x] R3 msdsm;Module spécifique de périphériques à chemins d’accès multiples Microsoft;c:\windows\system32\drivers\msdsm.sys;c:\windows\SYSNATIVE\drivers\msdsm.sys [x] R3 mshidkmdf;Pass-through HID to KMDF Filter Driver;c:\windows\System32\drivers\mshidkmdf.sys;c:\windows\SYSNATIVE\drivers\mshidkmdf.sys [x] R3 MSiSCSI;Service Initiateur iSCSI de Microsoft;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 MsRPC;MsRPC; [x] R3 MTConfig;Microsoft Input Configuration Driver;c:\windows\system32\DRIVERS\MTConfig.sys;c:\windows\SYSNATIVE\DRIVERS\MTConfig.sys [x] R3 NdisCap;NDIS Capture LightWeight Filter;c:\windows\system32\DRIVERS\ndiscap.sys;c:\windows\SYSNATIVE\DRIVERS\ndiscap.sys [x] R3 nfrd960;nfrd960;c:\windows\system32\DRIVERS\nfrd960.sys;c:\windows\SYSNATIVE\DRIVERS\nfrd960.sys [x] R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys;c:\windows\SYSNATIVE\DRIVERS\NisDrvWFP.sys [x] R3 NisSrv;Inspection du réseau Microsoft;c:\program files\Microsoft Security Client\NisSrv.exe;c:\program files\Microsoft Security Client\NisSrv.exe [x] R3 nvstor;nvstor;c:\windows\system32\drivers\nvstor.sys;c:\windows\SYSNATIVE\drivers\nvstor.sys [x] R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [x] R3 PerfHost;Hôte de DLL de compteur de performance;c:\windows\SysWow64\perfhost.exe;c:\windows\SysWow64\perfhost.exe [x] R3 pla;Journaux & alertes de performance;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 PNRPAutoReg;Service de publication des noms d’ordinateurs PNRP;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 Point64;Microsoft Mouse and Keyboard Center Filter Driver;c:\windows\system32\DRIVERS\point64.sys;c:\windows\SYSNATIVE\DRIVERS\point64.sys [x] R3 ql2300;ql2300;c:\windows\system32\DRIVERS\ql2300.sys;c:\windows\SYSNATIVE\DRIVERS\ql2300.sys [x] R3 ql40xx;ql40xx;c:\windows\system32\DRIVERS\ql40xx.sys;c:\windows\SYSNATIVE\DRIVERS\ql40xx.sys [x] R3 QWAVE;Expérience audio-vidéo haute qualité Windows;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 QWAVEdrv;Pilote QWAVE;c:\windows\system32\drivers\qwavedrv.sys;c:\windows\SYSNATIVE\drivers\qwavedrv.sys [x] R3 rdpbus;Remote Desktop Device Redirector Bus Driver;c:\windows\system32\DRIVERS\rdpbus.sys;c:\windows\SYSNATIVE\DRIVERS\rdpbus.sys [x] R3 RimUsb;Téléphone intelligent BlackBerry ;c:\windows\system32\Drivers\RimUsb_AMD64.sys;c:\windows\SYSNATIVE\Drivers\RimUsb_AMD64.sys [x] R3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUVStor.sys;c:\windows\SYSNATIVE\Drivers\RtsUVStor.sys [x] R3 sbp2port;Pilote de bus de transport/protocole SBP-2;c:\windows\system32\drivers\sbp2port.sys;c:\windows\SYSNATIVE\drivers\sbp2port.sys [x] R3 scfilter;Pilote de filtre de classe PnP de carte à puce;c:\windows\system32\DRIVERS\scfilter.sys;c:\windows\SYSNATIVE\DRIVERS\scfilter.sys [x] R3 SCPolicySvc;Stratégie de retrait de la carte à puce;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 SDRSVC;Sauvegarde Windows;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 SensrSvc;Brillance adaptative;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 sermouse;Serial Mouse Driver;c:\windows\system32\DRIVERS\sermouse.sys;c:\windows\SYSNATIVE\DRIVERS\sermouse.sys [x] R3 SessionEnv;Configuration des services Bureau à distance;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 sffdisk;Pilote de classe de stockage SFF;c:\windows\system32\drivers\sffdisk.sys;c:\windows\SYSNATIVE\drivers\sffdisk.sys [x] R3 sffp_mmc;Pilote de protocole de stockage SFF pour MMC;c:\windows\system32\drivers\sffp_mmc.sys;c:\windows\SYSNATIVE\drivers\sffp_mmc.sys [x] R3 sffp_sd;Pilote de protocole de stockage SFF pour SDBus;c:\windows\system32\drivers\sffp_sd.sys;c:\windows\SYSNATIVE\drivers\sffp_sd.sys [x] R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;c:\windows\system32\DRIVERS\SiSG664.sys;c:\windows\SYSNATIVE\DRIVERS\SiSG664.sys [x] R3 SiSRaid2;SiSRaid2;c:\windows\system32\DRIVERS\SiSRaid2.sys;c:\windows\SYSNATIVE\DRIVERS\SiSRaid2.sys [x] R3 SiSRaid4;SiSRaid4;c:\windows\system32\DRIVERS\sisraid4.sys;c:\windows\SYSNATIVE\DRIVERS\sisraid4.sys [x] R3 Smb;Protocoles TCP/IP et TCP/IPv6 orienté messages (session SMB);c:\windows\system32\DRIVERS\smb.sys;c:\windows\SYSNATIVE\DRIVERS\smb.sys [x] R3 SNMPTRAP;Interruption SNMP;c:\windows\System32\snmptrap.exe;c:\windows\SYSNATIVE\snmptrap.exe [x] R3 sppuinotify;Service de notification SPP;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 Steam Client Service;Steam Client Service;c:\program files (x86)\Common Files\Steam\SteamService.exe;c:\program files (x86)\Common Files\Steam\SteamService.exe [x] R3 stexstor;stexstor;c:\windows\system32\DRIVERS\stexstor.sys;c:\windows\SYSNATIVE\DRIVERS\stexstor.sys [x] R3 TabletInputService;Service Panneau de saisie Tablet PC;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 TBS;Services de base de module de plateforme sécurisée;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 TCPIP6;Microsoft IPv6 Protocol Driver;c:\windows\system32\DRIVERS\tcpip.sys;c:\windows\SYSNATIVE\DRIVERS\tcpip.sys [x] R3 THREADORDER;Serveur de priorités des threads;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 TrustedInstaller;Programme d’installation pour les modules Windows;c:\windows\servicing\TrustedInstaller.exe;c:\windows\servicing\TrustedInstaller.exe [x] R3 tssecsrv;Remote Desktop Services Security Filter Driver;c:\windows\system32\DRIVERS\tssecsrv.sys;c:\windows\SYSNATIVE\DRIVERS\tssecsrv.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 uagp35;Microsoft AGPv3.5 Filter;c:\windows\system32\DRIVERS\uagp35.sys;c:\windows\SYSNATIVE\DRIVERS\uagp35.sys [x] R3 UI0Detect;Détection de services interactifs;c:\windows\system32\UI0Detect.exe;c:\windows\SYSNATIVE\UI0Detect.exe [x] R3 uliagpkx;Filtre de bus AGP Uli;c:\windows\system32\drivers\uliagpkx.sys;c:\windows\SYSNATIVE\drivers\uliagpkx.sys [x] R3 UmPass;Microsoft UMPass Driver;c:\windows\system32\DRIVERS\umpass.sys;c:\windows\SYSNATIVE\DRIVERS\umpass.sys [x] R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys;c:\windows\SYSNATIVE\Drivers\usbaapl64.sys [x] R3 usbcir;Récepteur infrarouge eHome (USBCIR);c:\windows\system32\drivers\usbcir.sys;c:\windows\SYSNATIVE\drivers\usbcir.sys [x] R3 VaultSvc;Gestionnaire d’informations d’identification;c:\windows\system32\lsass.exe;c:\windows\SYSNATIVE\lsass.exe [x] R3 vhdmp;vhdmp;c:\windows\system32\drivers\vhdmp.sys;c:\windows\SYSNATIVE\drivers\vhdmp.sys [x] R3 vsmraid;vsmraid;c:\windows\system32\DRIVERS\vsmraid.sys;c:\windows\SYSNATIVE\DRIVERS\vsmraid.sys [x] R3 WacomPen;Wacom Serial Pen HID Driver;c:\windows\system32\DRIVERS\wacompen.sys;c:\windows\SYSNATIVE\DRIVERS\wacompen.sys [x] R3 WatAdminSvc;Service Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x] R3 wbengine;Service de moteur de sauvegarde en mode bloc;c:\windows\system32\wbengine.exe;c:\windows\SYSNATIVE\wbengine.exe [x] R3 WbioSrvc;Service de biométrie Windows;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 wcncsvc;Windows Connect Now - Registre de configuration;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 WcsPlugInService;Système de couleurs Windows;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 Wd;Wd;c:\windows\system32\DRIVERS\wd.sys;c:\windows\SYSNATIVE\DRIVERS\wd.sys [x] R3 WdiSystemHost;Hôte système de diagnostics;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 Wecsvc;Collecteur d’événements de Windows;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 wercplsupport;Prise en charge de l’application Rapports et solutions aux problèmes du Panneau de configuration;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 WimFltr;WimFltr;c:\windows\system32\DRIVERS\wimfltr.sys;c:\windows\SYSNATIVE\DRIVERS\wimfltr.sys [x] R3 WIMMount;WIMMount;c:\windows\system32\drivers\wimmount.sys;c:\windows\SYSNATIVE\drivers\wimmount.sys [x] R3 WinRM;Gestion à distance de Windows (Gestion WSM);c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 WinUsb;WinUsb;c:\windows\system32\DRIVERS\WinUsb.sys;c:\windows\SYSNATIVE\DRIVERS\WinUsb.sys [x] R3 WPCSvc;Parental Controls;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 WPDBusEnum;Service Énumérateur d’appareil mobile;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R3 WwanSvc;Service de configuration automatique WWAN;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R4 clr_optimization_v2.0.50727_64;Microsoft .NET Framework NGEN v2.0.50727_X64;c:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe [x] R4 Mcx2Svc;Service Media Center Extender;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe;c:\program files\Windows Live\Mesh\wlcrasvc.exe [x] S0 amdxata;amdxata;c:\windows\system32\drivers\amdxata.sys;c:\windows\SYSNATIVE\drivers\amdxata.sys [x] S0 CLFS;Journal commun (CLFS);c:\windows\System32\CLFS.sys;c:\windows\SYSNATIVE\CLFS.sys [x] S0 CNG;CNG;c:\windows\System32\Drivers\cng.sys;c:\windows\SYSNATIVE\Drivers\cng.sys [x] S0 FileInfo;File Information FS MiniFilter;c:\windows\system32\drivers\fileinfo.sys;c:\windows\SYSNATIVE\drivers\fileinfo.sys [x] S0 fvevol;Pilote de filtre de Chiffrement de lecteur Bitlocker;c:\windows\System32\DRIVERS\fvevol.sys;c:\windows\SYSNATIVE\DRIVERS\fvevol.sys [x] S0 hwpolicy;Hardware Policy Driver;c:\windows\System32\drivers\hwpolicy.sys;c:\windows\SYSNATIVE\drivers\hwpolicy.sys [x] S0 KSecPkg;KSecPkg;c:\windows\System32\Drivers\ksecpkg.sys;c:\windows\SYSNATIVE\Drivers\ksecpkg.sys [x] S0 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\DRIVERS\MpFilter.sys;c:\windows\SYSNATIVE\DRIVERS\MpFilter.sys [x] S0 msahci;msahci;c:\windows\system32\drivers\msahci.sys;c:\windows\SYSNATIVE\drivers\msahci.sys [x] S0 msisadrv;msisadrv;c:\windows\system32\drivers\msisadrv.sys;c:\windows\SYSNATIVE\drivers\msisadrv.sys [x] S0 pcw;Performance Counters for Windows Driver;c:\windows\System32\drivers\pcw.sys;c:\windows\SYSNATIVE\drivers\pcw.sys [x] S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys;c:\windows\SYSNATIVE\Drivers\PxHlpa64.sys [x] S0 rdyboost;ReadyBoost;c:\windows\System32\drivers\rdyboost.sys;c:\windows\SYSNATIVE\drivers\rdyboost.sys [x] S0 spldr;Security Processor Loader Driver; [x] S0 vdrvroot;Pilote d’énumérateur de lecteur virtuel Microsoft;c:\windows\system32\drivers\vdrvroot.sys;c:\windows\SYSNATIVE\drivers\vdrvroot.sys [x] S0 volmgr;Pilote du Gestionnaire de volume;c:\windows\system32\drivers\volmgr.sys;c:\windows\SYSNATIVE\drivers\volmgr.sys [x] S0 volmgrx;Gestionnaire de volumes dynamiques;c:\windows\System32\drivers\volmgrx.sys;c:\windows\SYSNATIVE\drivers\volmgrx.sys [x] S0 Wdf01000;Service Infrastructure de pilote en mode noyau;c:\windows\system32\drivers\Wdf01000.sys;c:\windows\SYSNATIVE\drivers\Wdf01000.sys [x] S1 ATKWMIACPIIO;ATKWMIACPI Driver;c:\program files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys;c:\program files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [x] S1 blbdrive;blbdrive;c:\windows\system32\DRIVERS\blbdrive.sys;c:\windows\SYSNATIVE\DRIVERS\blbdrive.sys [x] S1 DfsC;DFS Namespace Client Driver;c:\windows\system32\Drivers\dfsc.sys;c:\windows\SYSNATIVE\Drivers\dfsc.sys [x] S1 discache;System Attribute Cache;c:\windows\system32\drivers\discache.sys;c:\windows\SYSNATIVE\drivers\discache.sys [x] S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x] S1 HssDRV6;Hotspot Shield Routing Driver 6;c:\windows\system32\DRIVERS\hssdrv6.sys;c:\windows\SYSNATIVE\DRIVERS\hssdrv6.sys [x] S1 NetworkX;NetworkX;c:\windows\system32\ckldrv.sys;c:\windows\SYSNATIVE\ckldrv.sys [x] S1 nsiproxy;NSI proxy service driver.;c:\windows\system32\drivers\nsiproxy.sys;c:\windows\SYSNATIVE\drivers\nsiproxy.sys [x] S1 RDPENCDD;RDP Encoder Mirror Driver;c:\windows\system32\drivers\rdpencdd.sys;c:\windows\SYSNATIVE\drivers\rdpencdd.sys [x] S1 RDPREFMP;Reflector Display Driver used to gain access to graphics data;c:\windows\system32\drivers\rdprefmp.sys;c:\windows\SYSNATIVE\drivers\rdprefmp.sys [x] S1 tdx;Pilote de prise en charge TDI héritée NetIO;c:\windows\system32\DRIVERS\tdx.sys;c:\windows\SYSNATIVE\DRIVERS\tdx.sys [x] S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys;c:\windows\SYSNATIVE\DRIVERS\vwififlt.sys [x] S1 Wanarpv6;Pilote ARP IPv6 d’accès à distance;c:\windows\system32\DRIVERS\wanarp.sys;c:\windows\SYSNATIVE\DRIVERS\wanarp.sys [x] S1 WfpLwf;WFP Lightweight Filter;c:\windows\system32\DRIVERS\wfplwf.sys;c:\windows\SYSNATIVE\DRIVERS\wfplwf.sys [x] S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [x] S2 AFBAgent;AFBAgent;c:\windows\system32\FBAgent.exe;c:\windows\SYSNATIVE\FBAgent.exe [x] S2 Apple Mobile Device;Apple Mobile Device;c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe;c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [x] S2 ASLDRService;ASLDR Service;c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe;c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [x] S2 ASMMAP64;ASMMAP64;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [x] S2 Atheros Bt&Wlan Coex Agent;Atheros Bt&Wlan Coex Agent;c:\program files (x86)\Atheros\Ath_CoexAgent.exe;c:\program files (x86)\Atheros\Ath_CoexAgent.exe [x] S2 AtherosSvc;AtherosSvc;c:\program files (x86)\Atheros\Bluetooth Suite\adminservice.exe;c:\program files (x86)\Atheros\Bluetooth Suite\adminservice.exe [x] S2 ATKGFNEXSrv;ATKGFNEX Service;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [x] S2 AudioEndpointBuilder;Générateur de points de terminaison du service Audio Windows;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S2 BFE;Moteur de filtrage de base;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [x] S2 DPS;Service de stratégie de diagnostic;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S2 FDResPub;Publication des ressources de découverte de fonctions;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S2 FontCache;Service de cache de police Windows;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S2 gpsvc;Client de stratégie de groupe;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S2 IKEEXT;Modules de génération de clés IKE et AuthIP;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S2 iphlpsvc;Assistance IP;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S2 ISWKL;ZoneAlarm Toolbar ISWKL;c:\program files\CheckPoint\ZAForceField\ISWKL.sys;c:\program files\CheckPoint\ZAForceField\ISWKL.sys [x] S2 IswSvc;ZoneAlarm Toolbar IswSvc;c:\program files\CheckPoint\ZAForceField\IswSvc.exe;c:\program files\CheckPoint\ZAForceField\IswSvc.exe [x] S2 lltdio;Link-Layer Topology Discovery Mapper I/O Driver;c:\windows\system32\DRIVERS\lltdio.sys;c:\windows\SYSNATIVE\DRIVERS\lltdio.sys [x] S2 LMS;Intel(R) Management and Security Application Local Management Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [x] S2 luafv;Virtualisation de fichier UAC;c:\windows\system32\drivers\luafv.sys;c:\windows\SYSNATIVE\drivers\luafv.sys [x] S2 MBAMScheduler;MBAMScheduler;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [x] S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [x] S2 MpsSvc;Pare-feu Windows;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S2 MsMpSvc;Microsoft Antimalware Service;c:\program files\Microsoft Security Client\MsMpEng.exe;c:\program files\Microsoft Security Client\MsMpEng.exe [x] S2 NlaSvc;Connaissance des emplacements réseau;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S2 nsi;Service Interface du magasin réseau;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S2 NVSvc;NVIDIA Display Driver Service;c:\windows\system32\nvvsvc.exe;c:\windows\SYSNATIVE\nvvsvc.exe [x] S2 PcaSvc;Service de l’Assistant Compatibilité des programmes;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S2 PDF Architect Helper Service;PDF Architect Helper Service;c:\program files (x86)\PDF Architect\HelperService.exe;c:\program files (x86)\PDF Architect\HelperService.exe [x] S2 PDF Architect Service;PDF Architect Service;c:\program files (x86)\PDF Architect\ConversionService.exe;c:\program files (x86)\PDF Architect\ConversionService.exe [x] S2 PEAUTH;PEAUTH;c:\windows\system32\drivers\peauth.sys;c:\windows\SYSNATIVE\drivers\peauth.sys [x] S2 PnkBstrA;PnkBstrA;c:\windows\system32\PnkBstrA.exe;c:\windows\SYSNATIVE\PnkBstrA.exe [x] S2 Power;Alimentation;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S2 ProfSvc;Service de profil utilisateur;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S2 RpcEptMapper;Mappeur de point de terminaison RPC;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S2 rspndr;Link-Layer Topology Discovery Responder;c:\windows\system32\DRIVERS\rspndr.sys;c:\windows\SYSNATIVE\DRIVERS\rspndr.sys [x] S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [x] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x] S2 SysMain;Superfetch;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S2 tcpipreg;TCP/IP Registry Compatibility;c:\windows\system32\drivers\tcpipreg.sys;c:\windows\SYSNATIVE\drivers\tcpipreg.sys [x] S2 TurboB;Turbo Boost UI Monitor driver;c:\windows\system32\DRIVERS\TurboB.sys;c:\windows\SYSNATIVE\DRIVERS\TurboB.sys [x] S2 TurboBoost;Intel(R) Turbo Boost Technology Monitor;c:\program files\Intel\TurboBoost\TurboBoost.exe;c:\program files\Intel\TurboBoost\TurboBoost.exe [x] S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x] S2 UxSms;Gestionnaire de sessions du Gestionnaire de fenêtrage;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S2 Wlansvc;Service de configuration automatique WLAN;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S2 wlidsvc;Windows Live ID Sign-in Assistant;c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE;c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [x] S2 WSearch;Windows Search;c:\windows\system32\SearchIndexer.exe;c:\windows\SYSNATIVE\SearchIndexer.exe [x] S3 Appinfo;Informations d’application;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S3 AthBTPort;Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_flt.sys [x] S3 athr;Atheros Extensible Wireless LAN device driver;c:\windows\system32\DRIVERS\athrx.sys;c:\windows\SYSNATIVE\DRIVERS\athrx.sys [x] S3 BBUpdate;BBUpdate;c:\program files (x86)\Microsoft\BingBar\7.3.124.0\SeaPort.exe;c:\program files (x86)\Microsoft\BingBar\7.3.124.0\SeaPort.exe [x] S3 bowser;Pilote de prise en charge du navigateur;c:\windows\system32\DRIVERS\bowser.sys;c:\windows\SYSNATIVE\DRIVERS\bowser.sys [x] S3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys;c:\windows\SYSNATIVE\drivers\btath_a2dp.sys [x] S3 BTATH_BUS;Atheros Bluetooth Bus;c:\windows\system32\DRIVERS\btath_bus.sys;c:\windows\SYSNATIVE\DRIVERS\btath_bus.sys [x] S3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\system32\DRIVERS\btath_hcrp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_hcrp.sys [x] S3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_lwflt.sys [x] S3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\system32\DRIVERS\btath_rcp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_rcp.sys [x] S3 BtFilter;BtFilter;c:\windows\system32\DRIVERS\btfilter.sys;c:\windows\SYSNATIVE\DRIVERS\btfilter.sys [x] S3 BthEnum;Pilote de bloc de demande Bluetooth;c:\windows\system32\drivers\BthEnum.sys;c:\windows\SYSNATIVE\drivers\BthEnum.sys [x] S3 BthPan;Bluetooth Device (Personal Area Network);c:\windows\system32\DRIVERS\bthpan.sys;c:\windows\SYSNATIVE\DRIVERS\bthpan.sys [x] S3 bthserv;Service de prise en charge Bluetooth;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S3 BTHUSB;Pilote USB radio Bluetooth;c:\windows\System32\Drivers\BTHUSB.sys;c:\windows\SYSNATIVE\Drivers\BTHUSB.sys [x] S3 CompositeBus;Pilote de l’énumérateur de bus composite;c:\windows\system32\drivers\CompositeBus.sys;c:\windows\SYSNATIVE\drivers\CompositeBus.sys [x] S3 DXGKrnl;LDDM Graphics Subsystem;c:\windows\System32\drivers\dxgkrnl.sys;c:\windows\SYSNATIVE\drivers\dxgkrnl.sys [x] S3 fdPHost;Hôte du fournisseur de découverte de fonctions;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S3 FLxHCIc;Fresco Logic xHCI (USB3) Device Driver;c:\windows\system32\DRIVERS\FLxHCIc.sys;c:\windows\SYSNATIVE\DRIVERS\FLxHCIc.sys [x] S3 FLxHCIh;Fresco Logic xHCI (USB3) Hub Device Driver;c:\windows\system32\DRIVERS\FLxHCIh.sys;c:\windows\SYSNATIVE\DRIVERS\FLxHCIh.sys [x] S3 HomeGroupListener;Écouteur HomeGroup;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S3 HomeGroupProvider;Fournisseur HomeGroup;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S3 kbfiltr;Keyboard Filter;c:\windows\system32\DRIVERS\kbfiltr.sys;c:\windows\SYSNATIVE\DRIVERS\kbfiltr.sys [x] S3 KeyIso;Isolation de clé CNG;c:\windows\system32\lsass.exe;c:\windows\SYSNATIVE\lsass.exe [x] S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x] S3 MBfilt;MBfilt;c:\windows\system32\drivers\MBfilt64.sys;c:\windows\SYSNATIVE\drivers\MBfilt64.sys [x] S3 MEIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys;c:\windows\SYSNATIVE\DRIVERS\HECIx64.sys [x] S3 monitor;Service Pilote de fonction de classe Moniteur Microsoft;c:\windows\system32\DRIVERS\monitor.sys;c:\windows\SYSNATIVE\DRIVERS\monitor.sys [x] S3 mpsdrv;Pilote d’autorisation du Pare-feu Windows;c:\windows\system32\drivers\mpsdrv.sys;c:\windows\SYSNATIVE\drivers\mpsdrv.sys [x] S3 mrxsmb10;Mini-redirecteur SMB 1.x;c:\windows\system32\DRIVERS\mrxsmb10.sys;c:\windows\SYSNATIVE\DRIVERS\mrxsmb10.sys [x] S3 mrxsmb20;Mini-redirecteur SMB 2.0;c:\windows\system32\DRIVERS\mrxsmb20.sys;c:\windows\SYSNATIVE\DRIVERS\mrxsmb20.sys [x] S3 NativeWifiP;NativeWiFi Filter;c:\windows\system32\DRIVERS\nwifi.sys;c:\windows\SYSNATIVE\DRIVERS\nwifi.sys [x] S3 netprofm;Service Liste des réseaux;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys;c:\windows\SYSNATIVE\drivers\nvhda64v.sys [x] S3 nvlddmkm;nvlddmkm;c:\windows\system32\DRIVERS\nvlddmkm.sys;c:\windows\SYSNATIVE\DRIVERS\nvlddmkm.sys [x] S3 p2pimsvc;Gestionnaire d’identité réseau homologue;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S3 p2psvc;Groupement de mise en réseau de pairs;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S3 PNRPsvc;Protocole PNRP;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S3 RasAgileVpn;WAN Miniport (IKEv2);c:\windows\system32\DRIVERS\AgileVpn.sys;c:\windows\SYSNATIVE\DRIVERS\AgileVpn.sys [x] S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI);c:\windows\system32\DRIVERS\rfcomm.sys;c:\windows\SYSNATIVE\DRIVERS\rfcomm.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x] S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftfslh.sys [x] S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftplaylh.sys [x] S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftredirlh.sys [x] S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftvollh.sys [x] S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [x] S3 srv2;Pilote de serveur SMB 2.xxx;c:\windows\system32\DRIVERS\srv2.sys;c:\windows\SYSNATIVE\DRIVERS\srv2.sys [x] S3 srvnet;srvnet;c:\windows\system32\DRIVERS\srvnet.sys;c:\windows\SYSNATIVE\DRIVERS\srvnet.sys [x] S3 SynTP;Synaptics TouchPad Driver;c:\windows\system32\DRIVERS\SynTP.sys;c:\windows\SYSNATIVE\DRIVERS\SynTP.sys [x] S3 taphss6;Anchorfree HSS VPN Adapter;c:\windows\system32\DRIVERS\taphss6.sys;c:\windows\SYSNATIVE\DRIVERS\taphss6.sys [x] S3 tunnel;Pilote de carte miniport Microsoft Tunnel;c:\windows\system32\DRIVERS\tunnel.sys;c:\windows\SYSNATIVE\DRIVERS\tunnel.sys [x] S3 umbus;Pilote d’énumérateur UMBus;c:\windows\system32\drivers\umbus.sys;c:\windows\SYSNATIVE\drivers\umbus.sys [x] S3 usbvideo;Périphérique vidéo USB (WDM);c:\windows\System32\Drivers\usbvideo.sys;c:\windows\SYSNATIVE\Drivers\usbvideo.sys [x] S3 vwifibus;Virtual WiFi Bus Driver;c:\windows\system32\DRIVERS\vwifibus.sys;c:\windows\SYSNATIVE\DRIVERS\vwifibus.sys [x] S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys;c:\windows\SYSNATIVE\DRIVERS\vwifimp.sys [x] S3 WdiServiceHost;Service hôte WDIServiceHost;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S3 WerSvc;Service de rapport d’erreurs Windows;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S3 WmiAcpi;Microsoft Windows Management Interface for ACPI;c:\windows\system32\drivers\wmiacpi.sys;c:\windows\SYSNATIVE\drivers\wmiacpi.sys [x] . . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2014-02-22 08:14 1150280 ----a-w- c:\program files (x86)\Google\Chrome\Application\33.0.1750.117\Installer\chrmstp.exe . Contenu du dossier 'Tâches planifiées' . 2014-02-23 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-07-29 17:47] . 2014-02-23 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1756684970-1190328429-899826993-1001Core.job - c:\users\vince\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-17 08:16] . 2014-02-23 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-03-22 07:46] . 2014-02-23 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-03-22 07:46] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\AsusWSShellExt_B] @="{6D4133E5-0742-4ADC-8A8C-9303440F7190}" [HKEY_CLASSES_ROOT\CLSID\{6D4133E5-0742-4ADC-8A8C-9303440F7190}] 2009-11-26 05:49 70656 ----a-w- c:\program files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSShellExt64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\AsusWSShellExt_O] @="{64174815-8D98-4CE6-8646-4C039977D808}" [HKEY_CLASSES_ROOT\CLSID\{64174815-8D98-4CE6-8646-4C039977D808}] 2009-11-26 05:49 70656 ----a-w- c:\program files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSShellExt64.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [BU] "SynAsusAcpi"="c:\program files (x86)\Synaptics\SynTP\SynAsusAcpi.exe" [BU] "AtherosBtStack"="c:\program files (x86)\Atheros\Bluetooth Suite\BtvStack.exe" [2010-11-26 613536] "AthBtTray"="c:\program files (x86)\Atheros\Bluetooth Suite\AthBtTray.exe" [2010-11-26 379040] "IntelTBRunOnce"="wscript.exe" [2013-10-12 168960] "THXCfg64"="c:\windows\system32\THXCfg64.dll" [2009-10-15 17920] "ISW"="c:\program files\CheckPoint\ZAForceField\ForceField.exe" [2011-11-03 1125504] "IntelliType Pro"="c:\program files\Microsoft Mouse and Keyboard Center\itype.exe" [2012-11-02 1464944] "IntelliPoint"="c:\program files\Microsoft Mouse and Keyboard Center\ipoint.exe" [2012-11-02 2076272] "AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2012-09-20 444904] "MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2013-10-23 1266912] . ------- Examen supplémentaire ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = hxxp://www.google.fr/ mDefault_Search_URL = hxxp://recherche.neuf.fr/ mLocal Page = c:\windows\SysWOW64\blank.htm uInternet Settings,ProxyOverride = *.local mSearchAssistant = hxxp://recherche.neuf.fr/ie/default.html IE: Ajouter la cible du lien à un fichier PDF existant - c:\program files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html IE: Ajouter à un fichier PDF existant - c:\program files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll/AcroIEAppend.html IE: Convertir au format Adobe PDF - c:\program files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll/AcroIECapture.html IE: Convertir la cible du lien au format Adobe PDF - c:\program files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html TCP: DhcpNameServer = 192.168.1.1 FF - ProfilePath - c:\users\vince\AppData\Roaming\Mozilla\Firefox\Profiles\ztzu89hd.default-1374509962199\ . - - - - ORPHELINS SUPPRIMES - - - - . Toolbar-Locked - (no file) Wow6432Node-HKLM-Run- - (no file) AddRemove-8461-7759-5462-8226 - c:\program files (x86)\Vuze\uninstall.exe AddRemove-Dishonored_is1 - d:\dishonored\unins000.exe AddRemove-DMC Devi May Cry (c) Capcom_is1 - d:\dmc devi may cry\unins000.exe AddRemove-Payday The Heist (c) OVERKILL Software_is1 - d:\payday the heist\unins000.exe AddRemove-PunkBusterSvc - c:\windows\system32\pbsvc.exe AddRemove-S.T.A.L.K.E.R. - Shadow of Chernobyl_is1 - d:\s.t.a.l.k.e.r. - shadow of chernobyl\unins000.exe AddRemove-Shadow Warrior_is1 - d:\shadow warrior\unins000.exe AddRemove-Spec Ops The Line_is1 - d:\spec ops the line\unins000.exe AddRemove-VGhlV29sZkFtb25nVXM=_is1 - d:\the wolf among us\unins000.exe AddRemove-{2EF34761-F147-4984-8AF1-BB9F8DA76CDD}_is1 - d:\sw battlefront ii + mods\Star wars Battlefront II\unins000.exe . . . --------------------- CLES DE REGISTRE BLOQUEES --------------------- . [HKEY_USERS\S-1-5-21-1756684970-1190328429-899826993-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*e*x*e*çòËcZ¦=ð¥ÙâkM¸¦JlSg¬™Æ§­fY\OpenWithList] @Class="Shell" "a"="vlc.exe" "MRUList"="a" . [HKEY_USERS\S-1-5-21-1756684970-1190328429-899826993-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*i*n*i*f8ÇT\OpenWithList] @Class="Shell" "a"="vlc.exe" "MRUList"="a" . [HKEY_USERS\S-1-5-21-1756684970-1190328429-899826993-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*i*n*i*ÀÆ2e\OpenWithList] @Class="Shell" "a"="vlc.exe" "MRUList"="a" . [HKEY_USERS\S-1-5-21-1756684970-1190328429-899826993-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*i*n*i*ä55\OpenWithList] @Class="Shell" "a"="vlc.exe" "MRUList"="a" . [HKEY_USERS\S-1-5-21-1756684970-1190328429-899826993-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*i*n*i*æñK\OpenWithList] @Class="Shell" "a"="vlc.exe" "MRUList"="a" . [HKEY_USERS\S-1-5-21-1756684970-1190328429-899826993-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*,6ÇTˆ¾*€›*] @Class="Shell" . [HKEY_USERS\S-1-5-21-1756684970-1190328429-899826993-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*,6ÇTˆ¾*€›*\OpenWithList] @Class="Shell" "a"="vlc.exe" "MRUList"="a" . [HKEY_USERS\S-1-5-21-1756684970-1190328429-899826993-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*tyC)] @Class="Shell" . [HKEY_USERS\S-1-5-21-1756684970-1190328429-899826993-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*tyC)\OpenWithList] @Class="Shell" "a"="vlc.exe" "MRUList"="a" . [HKEY_USERS\S-1-5-21-1756684970-1190328429-899826993-1001\Software\SecuROM\License information*] "datasecu"=hex:6d,b1,66,68,3a,2b,a2,11,b3,a1,ea,4b,e1,35,5a,86,94,3b,3f,85,7b, 53,2f,c3,05,c3,5a,58,d8,98,19,42,5d,76,47,9a,b8,23,86,48,b9,94,1c,3f,de,56,\ "rkeysecu"=hex:2f,0f,d5,3e,02,2b,06,63,b1,0b,dd,b6,71,e2,54,98 . Heure de fin: 2014-02-23 17:25:18 ComboFix-quarantined-files.txt 2014-02-23 16:25 ComboFix2.txt 2014-02-23 11:59 . Avant-CF: 74 933 661 696 octets libres Après-CF: 74 870 231 040 octets libres . - - End Of File - - 001C255BC14FF606A260F3E2EB148301