cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.7.4.83 Par Nicolas Coolman (2015\07\04)
~ Démarré par Star (Administrator) (2015/07/05 04:43:54)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Documents and Settings\Star\Bureau\ZHPDiag.txt
~ Rapport: C:\Documents and Settings\Star\Application Data\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
~ Windows XP, 32-bit Service Pack 3 (Build 2600)

---\\ Logiciels de protection (2) - 1s
Avast Free Antivirus v10.2.2218
Malwarebytes Anti-Malware version 2.1.8.1057

---\\ Logiciels d'optimisation (1) - 1s
CCleaner v4.14

---\\ Surveillance de Logiciels (1) - 1s
Adobe Reader XI

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
~ Total physical RAM (KB): 2069736
~ System Restore: Activé (Enable)
~ System drive C: has 26 GB free of 60 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: PC-STAR
~ User Name: Star
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 26 GB free of 60 GB (System)
~ Drive E: has 20 GB free of 92 GB

---\\ Recherche particulière de fichiers génériques (22) - 1s
[MD5.B45DA298E42C7A44BA96AED93B1D7359] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [1544704]
[MD5.670558300C4116766363F843C2ABD37F] - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) () -- C:\WINDOWS\System32\rundll32.exe [35328]
[MD5.CB03519F62A953F4DF43DEB4ABA7E401] - (.Microsoft Corporation - Internet Extensions for Win32.) () -- C:\WINDOWS\System32\wininet.dll [986624]
[MD5.917C64008889003E6EA19CF0793CBD72] - (.Microsoft Corporation - Application d'ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [551424]
[MD5.1E44BC1E83D8FD2305F8D452DB109CF9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [138496]
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] - (.Microsoft Corporation - IDE/ATAPI Port Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [96512]
[MD5.C885B02847F5D2FD45A24E219ED93B32] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [63744]
[MD5.1F4260CC5B42272D71F79E570A27A4FE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [62976]
[MD5.31F923EB2170FC172C81ABDA0045D18C] - (.Microsoft Corporation - Pilote de cryptographie FIPS.) () -- C:\WINDOWS\System32\drivers\Fips.sys [44672]
[MD5.573C7D0A32852B48F3058CFD8026F511] - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [144384]
[MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [54144]
[MD5.083A052659F5310DD8B6A6CB05EDCF8E] - (.Microsoft Corporation - IMAPI Kernel Driver.) () -- C:\WINDOWS\System32\drivers\Imapi.sys [42112]
[MD5.CC748EA12C6EFFDE940EE98098BF96BB] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [152832]
[MD5.23C74D75E36E7158768DD63D92789A91] - (.Microsoft Corporation - IPSec Driver.) () -- C:\WINDOWS\System32\drivers\IPSec.sys [75264]
[MD5.7D304A5EB4344EBEEAB53A2FE3FFB9F0] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [456320]
[MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [162816]
[MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - (.Microsoft Corporation - NT File System Driver.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [574976]
[MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [80384]
[MD5.11B4A627BC9614B885C4969BFA5FF8A6] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [51328]
[MD5.15CABD0F7C00C47C70124907916AF3F1] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [196224]
[MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) () -- C:\WINDOWS\System32\drivers\redbook.sys [58752]
[MD5.46DE1126684369BACE4849E4FC8C43CA] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [53376]

---\\ Processus lancés (2) - 1s
[MD5.E3F7EC811923F3F1A77B185F22638E5E] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344] [PID.1132]
[MD5.695BE0A3D240FFF4B876D9289110634A] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe [5227648] [PID.1564]

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (17) - 0s
M0 - MFSP: prefs.js [Star - lkfhlvb0.default] http://www.google.com/
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\amazondotcom.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\bing.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\ddg.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\eBay.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\google.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\twitter.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\wikipedia.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\yahoo.xml
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_18_0_0_198.dll
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
P2 - FPN: [HKLM] [@java.com/DTPlugin,version=10.80.2] - (.Oracle Corporation.) -- C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=10.80.2] - (.Oracle Corporation.) -- C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.3] - (.VideoLAN.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.2.0] - (.VideoLAN.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.2.1] - (.VideoLAN.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll

---\\ Opera, Démarrage,Recherche,Plugins (B0,B1,B2) (1) - 0s
B2 - EXT: [Opera Stable] C:\Documents and Settings\Star\Application Data\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (9) - 0s
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://ar.search.yahoo.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://ar.yahoo.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://ar.search.yahoo.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer, Proxy Management (R5) (6) - 1s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1

---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

---\\ Hosts file redirection (O1) (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (924)

---\\ Browser Helper Object de navigateur (BHO) (O2) (3) - 0s
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (Orphean)
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} (Orphean)
O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} (Orphean)

---\\ Internet Explorer Toolbars (O3) (2) - 0s
O3 - Toolbar: 0x8145E001EE4ED011BFE900AA005B4383100000000000000001E032F401000000 - [HKCU]{01E04581-4EEE-11D0-BFE9-00AA005B4383} . (...) -- (.not file.)
O3 - Toolbar: 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{0E5CBF21-D15F-11D0-8301-00AA005B4383} . (...) -- (.not file.)

---\\ Applications lancées au démarrage du sytème (O4) (17) - 0s
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe
O4 - HKLM\..\Run: [UnlockerAssistant] . (...) -- C:\Program Files\Unlocker\UnlockerAssistant.exe
O4 - HKCU\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SuperCopier2.exe] . (.SFX TEAM - SuperCopier 2 (explorer file copy replaceme.) -- C:\Program Files\SuperCopier2\SuperCopier2.exe
O4 - HKCU\..\Run: [VisualTaskTips] . (.VisualTaskTips.com - Visual Task Tips.) -- C:\Program Files\VisualTaskTips\VisualTaskTips.exe
O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-21-1547161642-1417001333-1801674531-1003\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-21-1547161642-1417001333-1801674531-1003\..\Run: [SuperCopier2.exe] . (.SFX TEAM - SuperCopier 2 (explorer file copy replaceme.) -- C:\Program Files\SuperCopier2\SuperCopier2.exe
O4 - HKUS\S-1-5-21-1547161642-1417001333-1801674531-1003\..\Run: [VisualTaskTips] . (.VisualTaskTips.com - Visual Task Tips.) -- C:\Program Files\VisualTaskTips\VisualTaskTips.exe
O4 - HKUS\S-1-5-21-1547161642-1417001333-1801674531-1003\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe

---\\ Modification Domaine/Adresses DNS (O17) (5) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.4.4
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.4.4
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.4.4

---\\ Liste des services NT non Microsoft et non désactivés (O23) (9) - 0s
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated - Adobe® Flash® Player Update Service 18.0 d0.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: FsUsbExService (FsUsbExService) . (.Teruten - FsUsbDevice.) - C:\WINDOWS\system32\FsUsbExService.Exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) . (.Oracle Corporation - Java Quick Starter Service.) - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: tuEagles Service (tuEaglesService) . (...) - C:\Program Files\tuEagles\EglSrv.exe
O23 - Service: Wise Boot Assistant (WiseBootAssistant) . (.WiseCleaner.com - Wise BootTime Service.) - C:\Program Files\Wise\Wise Care 365\BootTime.exe

---\\ Tâches planifiées en automatique (O39) (3) - 0s
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\avast! Emergency Update.job [364]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\Notification de fin de service de Microsoft Windows XP -mensuellement.job [214]

---\\ Logiciels installés (O42) (46) - 6s
O42 - Logiciel: Package de pilotes Windows - Wacom (WacomISDPen) HIDClass (01/16/2006 2.5. - (.Wacom.) [HKLM] -- 06BA12C2FD6352D410C15EC9E359E80332E24487
O42 - Logiciel: Package de pilotes Windows - Infineon Technologies AG (IFXTPM) System (12/ - (.Infineon Technologies AG.) [HKLM] -- 6AA30ABF1916CC0CB3167372846F0DC7B513891A
O42 - Logiciel: Package de pilotes Windows - AnalogDevices (ADIHdAudAddService) MEDIA (05/ - (.AnalogDevices.) [HKLM] -- 8768F3BB3C91E317465E64097812C34531D84399
O42 - Logiciel: Adobe Shockwave Player 12.0 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player
O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM] -- avast
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM] -- DAEMON Tools Lite
O42 - Logiciel: Windows Driver Package - 3dfx Interactive, Inc. (3dfxvs) Display (11/28/20 - (.3dfx Interactive, Inc..) [HKLM] -- DCC9AB9E5FD90A91E2EBA54E8C030F697F6E3C59
O42 - Logiciel: EaseUS Data Recovery Wizard 7.5 - (.EaseUS.) [HKLM] -- EaseUS Data Recovery Wizard 7.5_is1
O42 - Logiciel: FormatFactory 3.3.4.0 - (.Format Factory.) [HKLM] -- FormatFactory
O42 - Logiciel: FreeArc 0.666 - (.Bulat Ziganshin.) [HKLM] -- FreeArc
O42 - Logiciel: iFunbox (v2.8.2414.748), iFunbox DevTeam - (...) [HKLM] -- iFunbox_is1
O42 - Logiciel: Intel Android Device USB driver - (.Intel.) [HKLM] -- Intel Android Device USB driver
O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM] -- Internet Download Manager
O42 - Logiciel: Hotfix for Windows XP (KB954550-v5) - (.Microsoft Corporation.) [HKLM] -- KB954550-v5
O42 - Logiciel: K-Lite Mega Codec Pack 10.4.0 - (...) [HKLM] -- KLiteCodecPack_is1
O42 - Logiciel: Malwarebytes Anti-Malware version 2.1.8.1057 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes Anti-Malware_is1
O42 - Logiciel: Mozilla Firefox 39.0 (x86 en-US) - (.Mozilla.) [HKLM] -- Mozilla Firefox 39.0 (x86 en-US)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService
O42 - Logiciel: Opera Stable 30.0.1835.88 - (.Opera Software.) [HKLM] -- Opera 30.0.1835.88
O42 - Logiciel: Seven Remix XP 2.5 - (.NiwradSoft.) [HKLM] -- Seven Remix XP
O42 - Logiciel: SuperCopier2 - (...) [HKLM] -- SuperCopier2
O42 - Logiciel: Unlocker 1.9.2 - (.Cedrick Collomb.) [HKLM] -- Unlocker
O42 - Logiciel: Visual Task Tips 2.1 - (.VisualTaskTips.com.) [HKLM] -- Visual Task Tips
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player
O42 - Logiciel: Windows Genuine Advantage Notifications (KB905474) - (.Microsoft Corporation.) [HKLM] -- WgaNotify
O42 - Logiciel: Windows Media Format 11 runtime - (...) [HKLM] -- Windows Media Format Runtime
O42 - Logiciel: WinPcap 4.1.3 - (.Riverbed Technology, Inc..) [HKLM] -- WinPcapInst
O42 - Logiciel: WinRAR 5.21 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver
O42 - Logiciel: WinZip 18.0 - (.basheerxxx.) [HKLM] -- WinZip 18.0
O42 - Logiciel: Wise Care 365 3.73 - (.WiseCleaner.com, Inc..) [HKLM] -- Wise Care 365_is1
O42 - Logiciel: Wise Folder Hider 3.15 - (.WiseCleaner.com, Inc..) [HKLM] -- Wise Folder Hider_is1
O42 - Logiciel: XML Paper Specification Shared Components Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- XpsEPSC
O42 - Logiciel: Your Uninstaller! 7 - (.URSoft, Inc..) [HKLM] -- YU2010_is1
O42 - Logiciel: Skype™ 7.6 - (.Skype Technologies S.A..) [HKLM] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}
O42 - Logiciel: Java 7 Update 80 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F03217080FF}
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM] -- {3A9FE6B1-EE7F-40AC-B831-AC7C9ABB58A0}
O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM] -- {447CDCE5-F555-429B-BFA6-642C3C6D684F}
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {79155F2B-9895-49D7-8612-D92580E0DE5B}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Adobe Reader XI (11.0.08) - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1033-7B44-AB0000000001}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {E1DB0812-2D60-43DB-AE09-6C7027D93B28}
O42 - Logiciel: BitTorrent - (.BitTorrent Inc..) [HKCU] -- BitTorrent

---\\ HKCU & HKLM Software Keys (114) - 6s
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\AdwCleaner
HKLM\SOFTWARE\Analog Devices
HKLM\SOFTWARE\AppDataLow
HKLM\SOFTWARE\Apple Computer, Inc.
HKLM\SOFTWARE\Apple Inc.
HKLM\SOFTWARE\AVAST Software
HKLM\SOFTWARE\AviSynth
HKLM\SOFTWARE\Baidu
HKLM\SOFTWARE\Baidu Security
HKLM\SOFTWARE\Baidu_Drp_pos
HKLM\SOFTWARE\Big Fish Games
HKLM\SOFTWARE\C07ft5Y
HKLM\SOFTWARE\CloudOpt
HKLM\SOFTWARE\Creative Tech
HKLM\SOFTWARE\Disc Soft
HKLM\SOFTWARE\DtsEncodeTools
HKLM\SOFTWARE\EagleEye
HKLM\SOFTWARE\EASEUS
HKLM\SOFTWARE\Eidos
HKLM\SOFTWARE\FreeArc
HKLM\SOFTWARE\GameHouse
HKLM\SOFTWARE\GEAR Software
HKLM\SOFTWARE\Gemplus
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\Hewlett-Packard
HKLM\SOFTWARE\Icaros
HKLM\SOFTWARE\IM Providers
HKLM\SOFTWARE\Innovative Solutions
HKLM\SOFTWARE\InstalledOptions
HKLM\SOFTWARE\InstallShield
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\Internet Download Manager
HKLM\SOFTWARE\IObit
HKLM\SOFTWARE\iWin
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\KLCodecPack
HKLM\SOFTWARE\KONAMI
HKLM\SOFTWARE\LAV
HKLM\SOFTWARE\Licenses
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\NiwradSoft Shell Pack
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\Piriform
HKLM\SOFTWARE\Program Groups
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\Schlumberger
HKLM\SOFTWARE\Skype
HKLM\SOFTWARE\SonicFocus
HKLM\SOFTWARE\tueagles
HKLM\SOFTWARE\UBISOFT
HKLM\SOFTWARE\VideoLAN
HKLM\SOFTWARE\Windows 3.1 Migration Status
HKLM\SOFTWARE\WinPcap
HKLM\SOFTWARE\WinRAR
HKLM\SOFTWARE\WiseCleaner
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\ASProtect
HKCU\SOFTWARE\AVAST Software
HKCU\SOFTWARE\Baidu Security
HKCU\SOFTWARE\Bitdefender
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\CoolROM
HKCU\SOFTWARE\dahanco
HKCU\SOFTWARE\Disc Soft
HKCU\SOFTWARE\DownloadManager
HKCU\SOFTWARE\Eidos
HKCU\SOFTWARE\FreeTime
HKCU\SOFTWARE\FSPro Labs
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\GameHouse
HKCU\SOFTWARE\GameSpy
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\Hewlett-Packard
HKCU\SOFTWARE\i-FunBox.com
HKCU\SOFTWARE\Icaros
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Innovative Solutions
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Macrovision
HKCU\SOFTWARE\Madfingergames
HKCU\SOFTWARE\MediaInfo
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MPC-HC
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\PC App Store
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\PlayFreeBrowser
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Samsung
HKCU\SOFTWARE\SFX TEAM
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\The Silicon Realms Toolworks
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\URSoft
HKCU\SOFTWARE\Widevine
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\ZebHelpProcess Helper

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (187) - 5s
O43 - CFD: 2015/03/19 18:15:26 - [] D -- C:\Program Files\A-FF Find and Mount
O43 - CFD: 2014/05/11 01:11:55 - [] D -- C:\Program Files\Adobe
O43 - CFD: 2014/05/11 19:55:46 - [] D -- C:\Program Files\Analog Devices
O43 - CFD: 2014/07/02 05:03:57 - [] D -- C:\Program Files\Apple Software Update
O43 - CFD: 2014/05/11 18:16:06 - [] D -- C:\Program Files\AVAST Software
O43 - CFD: 2015/03/03 01:34:56 - [0] D -- C:\Program Files\bfgclient
O43 - CFD: 2014/05/21 14:17:42 - [] D -- C:\Program Files\Bonjour
O43 - CFD: 2015/01/04 02:47:18 - [] D -- C:\Program Files\CCleaner
O43 - CFD: 2014/05/11 01:09:41 - [] D -- C:\Program Files\DAEMON Tools Lite
O43 - CFD: 2014/05/11 19:36:39 - [] D -- C:\Program Files\DIFX
O43 - CFD: 2015/03/07 04:11:20 - [] D -- C:\Program Files\EaseUS
O43 - CFD: 2015/06/06 13:32:16 - [] D -- C:\Program Files\Fichiers communs
O43 - CFD: 2015/01/21 17:24:46 - [] D -- C:\Program Files\FreeArc
O43 - CFD: 2014/05/11 18:54:45 - [] D -- C:\Program Files\FreeTime
O43 - CFD: 2015/03/07 03:31:44 - [] D -- C:\Program Files\GetData
O43 - CFD: 2015/07/01 15:45:27 - [] D -- C:\Program Files\Google
O43 - CFD: 2015/03/27 20:56:05 - [] D -- C:\Program Files\i-Funbox DevTeam
O43 - CFD: 2015/03/22 20:09:46 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 2014/07/02 19:20:12 - [] D -- C:\Program Files\Intel Android Device USB driver
O43 - CFD: 2015/06/02 01:21:53 - [] D -- C:\Program Files\Internet Download Manager
O43 - CFD: 2015/04/19 22:35:23 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 2015/05/25 02:11:59 - [] D -- C:\Program Files\Internet Mobile
O43 - CFD: 2015/03/18 00:25:47 - [] D -- C:\Program Files\iPod
O43 - CFD: 2015/03/18 00:27:03 - [] D -- C:\Program Files\iTunes
O43 - CFD: 2014/05/11 01:17:03 - [] D -- C:\Program Files\Java
O43 - CFD: 2014/05/11 18:16:45 - [] D -- C:\Program Files\K-Lite Codec Pack
O43 - CFD: 2015/06/30 01:40:09 - [] D -- C:\Program Files\Malwarebytes Anti-Malware
O43 - CFD: 2015/03/22 20:09:49 - [] D -- C:\Program Files\MarkAny
O43 - CFD: 2014/11/14 11:52:38 - [] D -- C:\Program Files\Messenger
O43 - CFD: 2014/05/10 23:59:56 - [] D -- C:\Program Files\microsoft frontpage
O43 - CFD: 2015/03/07 03:16:32 - [] D -- C:\Program Files\Microsoft Office
O43 - CFD: 2015/03/07 03:16:28 - [] D -- C:\Program Files\Microsoft Visual Studio
O43 - CFD: 2015/03/07 03:15:37 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 2014/05/11 21:03:42 - [] D -- C:\Program Files\Movie Maker
O43 - CFD: 2015/07/02 15:45:15 - [] D -- C:\Program Files\Mozilla Firefox
O43 - CFD: 2015/04/29 22:51:22 - [] D -- C:\Program Files\Mozilla Maintenance Service
O43 - CFD: 2014/05/11 18:24:03 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 2014/05/10 23:50:21 - [] D -- C:\Program Files\MSN
O43 - CFD: 2014/05/10 23:52:31 - [] D -- C:\Program Files\MSN Gaming Zone
O43 - CFD: 2014/05/10 23:57:03 - [] D -- C:\Program Files\NetMeeting
O43 - CFD: 2014/12/02 02:24:23 - [0] D -- C:\Program Files\Online Games Manager
O43 - CFD: 2015/07/02 15:03:05 - [] D -- C:\Program Files\Opera
O43 - CFD: 2014/05/21 19:17:11 - [] D -- C:\Program Files\Outlook Express
O43 - CFD: 2014/05/11 18:23:50 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 2015/03/22 20:08:35 - [] D -- C:\Program Files\SAMSUNG
O43 - CFD: 2014/08/28 01:44:52 - [0] D -- C:\Program Files\Services en ligne
O43 - CFD: 2015/06/24 18:48:02 - [] RD -- C:\Program Files\Skype
O43 - CFD: 2014/05/11 18:37:52 - [] D -- C:\Program Files\SuperCopier2
O43 - CFD: 2014/08/09 02:26:44 - [] D -- C:\Program Files\Total Overdose FullRip
O43 - CFD: 2014/08/27 04:08:19 - [] RSHD -- C:\Program Files\tuEagles
O43 - CFD: 2014/05/11 00:05:49 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 2014/07/16 05:02:22 - [] D -- C:\Program Files\Unlocker
O43 - CFD: 2014/05/11 01:24:29 - [] D -- C:\Program Files\VideoLAN
O43 - CFD: 2014/06/27 21:18:10 - [] D -- C:\Program Files\VisualTaskTips
O43 - CFD: 2015/03/22 20:06:59 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 2014/05/21 19:17:10 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 2014/05/10 23:58:47 - [0] HD -- C:\Program Files\WindowsUpdate
O43 - CFD: 2014/06/28 17:20:52 - [] D -- C:\Program Files\WinPcap
O43 - CFD: 2015/03/18 00:07:42 - [] D -- C:\Program Files\WinRAR
O43 - CFD: 2014/08/14 02:57:14 - [] D -- C:\Program Files\WinZip
O43 - CFD: 2015/03/20 16:55:18 - [] D -- C:\Program Files\Wise
O43 - CFD: 2014/05/10 23:59:56 - [] D -- C:\Program Files\xerox
O43 - CFD: 2014/05/20 20:17:14 - [] D -- C:\Program Files\Your Uninstaller! 7
O43 - CFD: 2014/05/17 14:31:32 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 2015/06/09 11:10:33 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Anti-Porn
O43 - CFD: 2014/12/22 03:54:23 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CCleaner
O43 - CFD: 2014/05/11 01:09:54 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DAEMON Tools Lite
O43 - CFD: 2014/05/10 23:38:22 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 2015/03/07 04:11:28 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\EaseUS Data Recovery Wizard 7.5
O43 - CFD: 2014/07/03 17:16:43 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\i-Funbox DevTeam
O43 - CFD: 2014/07/02 19:20:12 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Intel Android Device USB driver
O43 - CFD: 2014/11/18 02:43:31 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Internet Download Manager
O43 - CFD: 2015/03/18 00:27:28 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\iTunes
O43 - CFD: 2015/05/08 01:05:05 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Java
O43 - CFD: 2014/05/10 23:53:09 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux
O43 - CFD: 2014/05/11 18:17:02 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\K-Lite Codec Pack
O43 - CFD: 2015/06/30 01:40:08 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Malwarebytes Anti-Malware
O43 - CFD: 2015/03/07 03:18:33 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Office
O43 - CFD: 2014/05/10 23:59:48 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration
O43 - CFD: 2014/05/16 23:17:59 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Seven Remix XP
O43 - CFD: 2015/05/13 03:35:45 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Skype
O43 - CFD: 2014/05/11 01:24:50 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN
O43 - CFD: 2014/06/28 17:20:52 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinPcap
O43 - CFD: 2015/03/18 00:07:43 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR
O43 - CFD: 2014/06/27 17:02:05 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Wise Care 365
O43 - CFD: 2015/03/20 16:55:19 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Wise Folder Hider
O43 - CFD: 2014/05/16 12:37:06 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Your Uninstaller! 7
O43 - CFD: 2015/03/18 00:24:11 - [] D -- C:\Documents and Settings\All Users\Application Data\188F1432-103A-4ffb-80F1-36B633C5C9E1
O43 - CFD: 2015/05/27 21:17:04 - [] D -- C:\Documents and Settings\All Users\Application Data\Adobe
O43 - CFD: 2015/06/05 01:54:24 - [] D -- C:\Documents and Settings\All Users\Application Data\Apple
O43 - CFD: 2015/03/18 00:24:17 - [] D -- C:\Documents and Settings\All Users\Application Data\Apple Computer
O43 - CFD: 2014/08/10 16:42:01 - [] D -- C:\Documents and Settings\All Users\Application Data\AVAST Software
O43 - CFD: 2015/03/18 00:27:04 - [] D -- C:\Documents and Settings\All Users\Application Data\B0FFCDD9-5261-4e59-B29A-17A4FABDEBAB
O43 - CFD: 2015/05/05 01:04:35 - [] D -- C:\Documents and Settings\All Users\Application Data\Baidu
O43 - CFD: 2015/07/03 17:41:15 - [] D -- C:\Documents and Settings\All Users\Application Data\Baidu Security
O43 - CFD: 2015/07/02 15:59:42 - [0] D -- C:\Documents and Settings\All Users\Application Data\BCloudScan_exe
O43 - CFD: 2015/03/03 01:35:14 - [] D -- C:\Documents and Settings\All Users\Application Data\Big Fish
O43 - CFD: 2015/03/03 01:34:51 - [0] D -- C:\Documents and Settings\All Users\Application Data\BigFishCache
O43 - CFD: 2015/06/04 01:56:18 - [] D -- C:\Documents and Settings\All Users\Application Data\BlueStacksSetup
O43 - CFD: 2014/08/25 00:42:27 - [] D -- C:\Documents and Settings\All Users\Application Data\com.gamehouse.acid
O43 - CFD: 2014/05/11 13:40:57 - [] HD -- C:\Documents and Settings\All Users\Application Data\Common Files
O43 - CFD: 2014/07/07 23:50:12 - [] D -- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite
O43 - CFD: 2014/05/11 01:22:13 - [0] D -- C:\Documents and Settings\All Users\Application Data\IDM
O43 - CFD: 2014/05/20 20:20:35 - [] D -- C:\Documents and Settings\All Users\Application Data\IObit
O43 - CFD: 2014/09/14 02:37:53 - [] D -- C:\Documents and Settings\All Users\Application Data\Logs
O43 - CFD: 2014/05/12 20:11:19 - [] D -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
O43 - CFD: 2015/05/25 14:00:18 - [] SD -- C:\Documents and Settings\All Users\Application Data\Microsoft
O43 - CFD: 2015/03/17 21:23:15 - [] D -- C:\Documents and Settings\All Users\Application Data\Microsoft Help
O43 - CFD: 2014/05/11 01:10:15 - [] D -- C:\Documents and Settings\All Users\Application Data\Mozilla
O43 - CFD: 2014/08/22 15:21:28 - [] D -- C:\Documents and Settings\All Users\Application Data\n7-89-o9-3r-4t-r9
O43 - CFD: 2014/05/11 01:20:41 - [] D -- C:\Documents and Settings\All Users\Application Data\Package Cache
O43 - CFD: 2015/07/04 03:49:01 - [] D -- C:\Documents and Settings\All Users\Application Data\RogueKiller
O43 - CFD: 2015/03/23 02:30:08 - [] D -- C:\Documents and Settings\All Users\Application Data\Samsung
O43 - CFD: 2015/06/24 18:49:26 - [] D -- C:\Documents and Settings\All Users\Application Data\Skype
O43 - CFD: 2014/05/11 19:55:52 - [] D -- C:\Documents and Settings\All Users\Application Data\SonicFocus
O43 - CFD: 2015/03/18 00:05:18 - [] D -- C:\Documents and Settings\All Users\Application Data\Sun
O43 - CFD: 2015/07/09 01:10:14 - [] AD -- C:\Documents and Settings\All Users\Application Data\TEMP
O43 - CFD: 2014/05/16 21:43:55 - [] D -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
O43 - CFD: 2015/07/02 01:51:30 - [] D -- C:\Program Files\Fichiers communs\Adobe
O43 - CFD: 2015/06/05 01:54:24 - [] D -- C:\Program Files\Fichiers communs\Apple
O43 - CFD: 2015/03/07 03:16:28 - [] D -- C:\Program Files\Fichiers communs\DESIGNER
O43 - CFD: 2015/01/14 01:48:53 - [] D -- C:\Program Files\Fichiers communs\InstallShield
O43 - CFD: 2015/05/08 01:05:46 - [] D -- C:\Program Files\Fichiers communs\Java
O43 - CFD: 2015/03/17 17:56:29 - [] D -- C:\Program Files\Fichiers communs\Microsoft Shared
O43 - CFD: 2014/05/10 23:56:34 - [] D -- C:\Program Files\Fichiers communs\MSSoap
O43 - CFD: 2014/05/10 23:39:25 - [] D -- C:\Program Files\Fichiers communs\ODBC
O43 - CFD: 2014/05/10 23:56:57 - [] D -- C:\Program Files\Fichiers communs\Services
O43 - CFD: 2015/05/13 03:35:43 - [] D -- C:\Program Files\Fichiers communs\Skype
O43 - CFD: 2014/05/10 23:39:20 - [] D -- C:\Program Files\Fichiers communs\SpeechEngines
O43 - CFD: 2015/03/03 01:40:02 - [] D -- C:\Program Files\Fichiers communs\System
O43 - CFD: 2015/05/27 21:17:09 - [] D -- C:\Documents and Settings\Star\Application Data\Adobe
O43 - CFD: 2015/01/22 03:01:14 - [] D -- C:\Documents and Settings\Star\Application Data\Apple Computer
O43 - CFD: 2014/08/10 22:53:17 - [] D -- C:\Documents and Settings\Star\Application Data\AVAST Software
O43 - CFD: 2015/04/07 15:15:16 - [] D -- C:\Documents and Settings\Star\Application Data\BavMini
O43 - CFD: 2015/07/02 15:44:33 - [] D -- C:\Documents and Settings\Star\Application Data\BitTorrent
O43 - CFD: 2014/07/09 05:42:48 - [0] D -- C:\Documents and Settings\Star\Application Data\DAEMON Tools Lite
O43 - CFD: 2015/07/09 00:20:12 - [] D -- C:\Documents and Settings\Star\Application Data\DMCache
O43 - CFD: 2015/01/21 17:24:49 - [] D -- C:\Documents and Settings\Star\Application Data\FreeArc
O43 - CFD: 2014/05/11 00:05:50 - [] D -- C:\Documents and Settings\Star\Application Data\Identities
O43 - CFD: 2015/07/02 15:56:10 - [] D -- C:\Documents and Settings\Star\Application Data\IDM
O43 - CFD: 2014/07/03 17:20:30 - [] D -- C:\Documents and Settings\Star\Application Data\iFunbox_UserCache
O43 - CFD: 2014/05/11 14:40:51 - [] D -- C:\Documents and Settings\Star\Application Data\Macromedia
O43 - CFD: 2015/02/28 16:30:36 - [] D -- C:\Documents and Settings\Star\Application Data\Mad Head Games
O43 - CFD: 2014/08/22 00:10:12 - [] SD -- C:\Documents and Settings\Star\Application Data\Microsoft
O43 - CFD: 2014/08/18 13:22:13 - [] D -- C:\Documents and Settings\Star\Application Data\Million
O43 - CFD: 2014/05/11 01:25:42 - [] D -- C:\Documents and Settings\Star\Application Data\Mozilla
O43 - CFD: 2015/04/28 00:38:48 - [0] D -- C:\Documents and Settings\Star\Application Data\MPC-HC
O43 - CFD: 2014/05/11 01:10:39 - [] D -- C:\Documents and Settings\Star\Application Data\Opera Software
O43 - CFD: 2015/07/02 15:46:28 - [] D -- C:\Documents and Settings\Star\Application Data\Skype
O43 - CFD: 2014/05/11 01:15:24 - [] D -- C:\Documents and Settings\Star\Application Data\Sun
O43 - CFD: 2014/08/18 02:36:15 - [] D -- C:\Documents and Settings\Star\Application Data\Thinstall
O43 - CFD: 2014/05/16 12:37:30 - [] D -- C:\Documents and Settings\Star\Application Data\URSoft
O43 - CFD: 2015/07/03 22:44:54 - [] D -- C:\Documents and Settings\Star\Application Data\vlc
O43 - CFD: 2014/05/11 01:22:00 - [] D -- C:\Documents and Settings\Star\Application Data\WinRAR
O43 - CFD: 2015/07/09 01:08:00 - [] D -- C:\Documents and Settings\Star\Application Data\Wise Care 365
O43 - CFD: 2015/07/03 16:11:24 - [] D -- C:\Documents and Settings\Star\Application Data\WiseUpdate
O43 - CFD: 2015/07/05 04:43:58 - [] D -- C:\Documents and Settings\Star\Application Data\ZHP
O43 - CFD: 2015/07/02 16:18:42 - [] D -- C:\Documents and Settings\Star\Local Settings\Application Data\Adobe
O43 - CFD: 2014/05/21 14:18:24 - [] D -- C:\Documents and Settings\Star\Local Settings\Application Data\Apple
O43 - CFD: 2014/05/21 14:20:00 - [] D -- C:\Documents and Settings\Star\Local Settings\Application Data\Apple Computer
O43 - CFD: 2015/05/04 00:19:12 - [0] D -- C:\Documents and Settings\Star\Local Settings\Application Data\BAVData
O43 - CFD: 2014/09/19 13:51:19 - [] D -- C:\Documents and Settings\Star\Local Settings\Application Data\Big Fish
O43 - CFD: 2014/09/19 02:45:26 - [] D -- C:\Documents and Settings\Star\Local Settings\Application Data\com.gamehouse.acid
O43 - CFD: 2015/03/22 20:05:14 - [] D -- C:\Documents and Settings\Star\Local Settings\Application Data\Downloaded Installations
O43 - CFD: 2015/07/01 15:45:13 - [] D -- C:\Documents and Settings\Star\Local Settings\Application Data\Google
O43 - CFD: 2015/06/17 02:53:25 - [] D -- C:\Documents and Settings\Star\Local Settings\Application Data\Microsoft
O43 - CFD: 2014/05/11 01:28:23 - [0] D -- C:\Documents and Settings\Star\Local Settings\Application Data\Microsoft Help
O43 - CFD: 2015/03/27 03:22:41 - [] D -- C:\Documents and Settings\Star\Local Settings\Application Data\MiniService
O43 - CFD: 2014/05/11 01:25:31 - [] D -- C:\Documents and Settings\Star\Local Settings\Application Data\Mozilla
O43 - CFD: 2014/10/05 23:54:55 - [] D -- C:\Documents and Settings\Star\Local Settings\Application Data\MPCBrowser
O43 - CFD: 2014/05/11 01:10:43 - [] D -- C:\Documents and Settings\Star\Local Settings\Application Data\Opera Software
O43 - CFD: 2014/10/05 23:55:27 - [] D -- C:\Documents and Settings\Star\Local Settings\Application Data\PlayFree Browser
O43 - CFD: 2015/03/23 02:30:09 - [0] D -- C:\Documents and Settings\Star\Local Settings\Application Data\Samsung
O43 - CFD: 2015/05/13 03:36:33 - [] D -- C:\Documents and Settings\Star\Local Settings\Application Data\Skype
O43 - CFD: 2015/03/18 00:05:16 - [] D -- C:\Documents and Settings\Star\Local Settings\Application Data\Sun
O43 - CFD: 2015/07/02 15:54:13 - [] D -- C:\Documents and Settings\Star\Local Settings\Application Data\Temp
O43 - CFD: 2014/08/18 02:36:15 - [] D -- C:\Documents and Settings\Star\Local Settings\Application Data\Thinstall
O43 - CFD: 2014/10/31 16:23:47 - [0] D -- C:\Documents and Settings\Star\Local Settings\Application Data\WMTools Downloaded Files
O43 - CFD: 2014/05/12 19:16:02 - [] RD -- C:\Documents and Settings\Star\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 2014/08/14 02:21:39 - [] RD -- C:\Documents and Settings\Star\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 2014/05/11 19:23:04 - [] D -- C:\Documents and Settings\Star\Menu Démarrer\Programmes\FormatFactory
O43 - CFD: 2015/01/21 17:24:35 - [] D -- C:\Documents and Settings\Star\Menu Démarrer\Programmes\FreeArc
O43 - CFD: 2014/12/02 02:29:30 - [] D -- C:\Documents and Settings\Star\Menu Démarrer\Programmes\Internet Download Manager
O43 - CFD: 2014/05/11 18:37:53 - [] D -- C:\Documents and Settings\Star\Menu Démarrer\Programmes\SuperCopier2
O43 - CFD: 2014/05/11 01:10:00 - [] D -- C:\Documents and Settings\Star\Menu Démarrer\Programmes\Unlocker
O43 - CFD: 2014/06/27 21:18:10 - [] D -- C:\Documents and Settings\Star\Menu Démarrer\Programmes\Visual Task Tips
O43 - CFD: 2015/03/18 00:07:43 - [] D -- C:\Documents and Settings\Star\Menu Démarrer\Programmes\WinRAR

---\\ Enumération des clés de registre StartupReg (SMSR) (O53) (5) - 0s
O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe
O53 - SMSR:HKLM\...\startupreg\DAEMON Tools Lite [Key] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe
O53 - SMSR:HKLM\...\startupreg\IMJPMIG8.1 [Key] . (.Microsoft Corporation - Microsoft IME.) -- C:\WINDOWS\ime\imjp8_1\imjpmig.exe
O53 - SMSR:HKLM\...\startupreg\MSPY2002 [Key] . (...) -- C:\WINDOWS\system32\IME\PINTLGNT\IMSCINST.EXE
O53 - SMSR:HKLM\...\startupreg\PHIME2002ASync [Key] . (.Microsoft Corporation - ???????? 2002a.) -- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE

---\\ Liste des pilotes du système (SDL) (O58) (56) - 1s
O58 - SDL:2009/06/05 16:42:04 A . (.Analog Devices, Inc. - High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\ADIHdAud.sys [380416]
O58 - SDL:2015/05/07 02:28:54 A . (...) -- C:\WINDOWS\System32\drivers\aswHwid.sys [24144]
O58 - SDL:2015/05/07 02:28:54 A . (.Avast Software s.r.o. - avast! File System Minifilter for Windows 2.) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys [74976]
O58 - SDL:2015/05/07 02:28:54 A . (.Avast Software s.r.o. - avast! TDI Redirect Driver.) -- C:\WINDOWS\System32\drivers\aswRdr.sys [55200]
O58 - SDL:2015/05/07 02:28:54 A . (...) -- C:\WINDOWS\System32\drivers\aswRvrt.sys [49904]
O58 - SDL:2015/05/07 02:27:42 A . (.Avast Software s.r.o. - avast! Virtualization Driver.) -- C:\WINDOWS\System32\drivers\aswSnx.sys [787760]
O58 - SDL:2015/06/26 03:58:03 A . (.Avast Software s.r.o. - avast! self protection module.) -- C:\WINDOWS\System32\drivers\aswsp.sys [428120]
O58 - SDL:2014/08/10 16:47:30 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\WINDOWS\System32\drivers\aswTap.sys [35144]
O58 - SDL:2015/05/07 02:28:55 A . (.Avast Software s.r.o. - avast! TDI Filter Driver.) -- C:\WINDOWS\System32\drivers\aswTdi.sys [57888]
O58 - SDL:2015/05/07 02:28:55 A . (...) -- C:\WINDOWS\System32\drivers\aswVmm.sys [209048]
O58 - SDL:2008/04/14 14:00:00 A . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\System32\drivers\cinemst2.sys [262528]
O58 - SDL:2008/04/14 14:00:00 A . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\System32\drivers\cpqdap01.sys [11776]
O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- C:\WINDOWS\System32\drivers\dmboot.sys [800256]
O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\System32\drivers\dmio.sys [154496]
O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\System32\drivers\dmload.sys [5888]
O58 - SDL:2014/05/11 01:09:41 A . (.Disc Soft Ltd - DAEMON Tools Virtual Bus Driver.) -- C:\WINDOWS\System32\drivers\dtsoftbus01.sys [243128]
O58 - SDL:2001/08/23 18:12:50 A . (.Intel Corporation - Pilote NDIS 5.) -- C:\WINDOWS\System32\drivers\e100b325.sys [117760]
O58 - SDL:2014/05/11 14:58:50 A . (.Intel Corporation - Intel(R) PRO/1000 Adapter NDIS 5.2 deserial.) -- C:\WINDOWS\System32\drivers\e1e5132.sys [253656]
O58 - SDL:2011/06/04 00:59:14 A . (.FSPro Labs - FSPro File System Filter.) -- C:\WINDOWS\System32\drivers\FSPFltd2.sys [51760]
O58 - SDL:2012/08/21 14:01:22 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\WINDOWS\System32\drivers\GEARAspiWDM.sys [26840]
O58 - SDL:2008/04/14 14:00:00 A . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [144384]
O58 - SDL:2015/05/20 13:55:54 A . (.Tonec Inc. - Internet Download Manager TDI Driver.) -- C:\WINDOWS\System32\drivers\idmtdi.sys [128528]
O58 - SDL:2008/07/23 12:31:40 A . (.Infineon Technologies AG - Infineon Trusted Platform Module.) -- C:\WINDOWS\System32\drivers\ifxtpm.sys [44800]
O58 - SDL:2014/05/11 15:07:40 A . (.Intel Corporation - Intel Graphics Miniport Driver.) -- C:\WINDOWS\System32\drivers\igxpmp32.sys [1730272]
O58 - SDL:2015/06/18 08:41:36 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [23256]
O58 - SDL:2015/06/18 08:41:46 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [121560]
O58 - SDL:2015/07/09 02:15:37 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [98520]
O58 - SDL:2005/11/01 09:58:48 A . (...) -- C:\WINDOWS\System32\drivers\mpfilt.sys [10588]
O58 - SDL:2008/04/14 14:00:00 A . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\nikedrv.sys [12032]
O58 - SDL:2013/03/01 02:48:42 A . (.Riverbed Technology, Inc. - npf.sys (NT5/6 x86) Kernel Driver.) -- C:\WINDOWS\System32\drivers\npf.sys [36600]
O58 - SDL:2005/12/12 22:27:00 A . (.Hewlett-Packard Company - PS2 SYS.) -- C:\WINDOWS\System32\drivers\PS2.sys [19072]
O58 - SDL:2008/04/14 14:00:00 A . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- C:\WINDOWS\System32\drivers\ptilink.sys [17792]
O58 - SDL:2008/04/14 14:00:00 A . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\System32\drivers\rio8drv.sys [12032]
O58 - SDL:2008/04/14 14:00:00 A . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\riodrv.sys [12032]
O58 - SDL:2008/04/14 14:00:00 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [20480]
O58 - SDL:2015/07/04 02:38:35 A . (...) -- C:\WINDOWS\System32\drivers\TrueSight.sys [35064]
O58 - SDL:2008/04/14 14:00:00 A . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\System32\drivers\tsbvcap.sys [21376]
O58 - SDL:2014/08/15 23:35:00 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\WINDOWS\System32\drivers\usbaapl.sys [45056]
O58 - SDL:2008/04/14 14:00:00 A . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\System32\drivers\vdmindvd.sys [58112]
O58 - SDL:2007/05/24 14:08:36 A . (.Wacom Technology - Wacom ISD Tablet HID MiniDriver.) -- C:\WINDOWS\System32\drivers\wacomisdpen.sys [23040]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ansi.sys [9037]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\country.sys [27097]
O58 - SDL:2013/12/30 02:54:22 A . (...) -- C:\WINDOWS\System32\FsUsbExDisk.Sys [37344]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\himem.sys [4912]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\key01.sys [42809]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\keyboard.sys [42537]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos.sys [27916]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos404.sys [29146]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos411.sys [29370]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos412.sys [29274]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos804.sys [29146]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio.sys [34000]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio404.sys [34560]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio411.sys [35648]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio412.sys [35424]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio804.sys [34560]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (16) - 20s
O61 - LFC: 2015/07/04 02:25:49 A . (..) -- C:\Documents and Settings\Star\Mes documents\Downloads\Programs\RogueKiller.exe [17853688]
O61 - LFC: 2015/07/01 13:08:02 A . (..) -- C:\Documents and Settings\Star\Local Settings\Application Data\Adobe\Acrobat\11.0\UserCache.bin [87313]
O61 - LFC: // :: . (..) -- C:\Documents and Settings\Star\Bureau\Adobe Photoshop CS6 Portable por ANONYMOUS360FULL\Adobe Photoshop CS6 Portable por ANONYMOUS360FULL\Adobe Photoshop CS6\AutoPlay\Docs\App\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_6f74963e\msvcm90.dll [0]
O61 - LFC: // :: . (..) -- C:\Documents and Settings\Star\Bureau\Adobe Photoshop CS6 Portable por ANONYMOUS360FULL\Adobe Photoshop CS6 Portable por ANONYMOUS360FULL\Adobe Photoshop CS6\AutoPlay\Docs\App\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_6f74963e\msvcp90.dll [0]
O61 - LFC: // :: . (..) -- C:\Documents and Settings\Star\Bureau\Adobe Photoshop CS6 Portable por ANONYMOUS360FULL\Adobe Photoshop CS6 Portable por ANONYMOUS360FULL\Adobe Photoshop CS6\AutoPlay\Docs\App\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_6f74963e\msvcr90.dll [0]
O61 - LFC: // :: . (..) -- C:\Documents and Settings\Star\Bureau\Adobe Photoshop CS6 Portable por ANONYMOUS360FULL\Adobe Photoshop CS6 Portable por ANONYMOUS360FULL\Adobe Photoshop CS6\AutoPlay\Docs\App\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\msvcm80.dll [0]
O61 - LFC: // :: . (..) -- C:\Documents and Settings\Star\Bureau\Adobe Photoshop CS6 Portable por ANONYMOUS360FULL\Adobe Photoshop CS6 Portable por ANONYMOUS360FULL\Adobe Photoshop CS6\AutoPlay\Docs\App\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\msvcp80.dll [0]
O61 - LFC: // :: . (..) -- C:\Documents and Settings\Star\Bureau\Adobe Photoshop CS6 Portable por ANONYMOUS360FULL\Adobe Photoshop CS6 Portable por ANONYMOUS360FULL\Adobe Photoshop CS6\AutoPlay\Docs\App\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\msvcr80.dll [0]
O61 - LFC: 2015/07/04 01:56:14 A . (.Bitdefender SRL.) -- C:\Documents and Settings\Star\Application Data\Mozilla\Firefox\Profiles\lkfhlvb0.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\plugins\npqscan.dll [757896]
O61 - LFC: 2015/07/09 01:08:04 A . (.Tonec Inc..) -- C:\Documents and Settings\Star\Application Data\IDM\idmmzcc5\components2\idmcchandler2.dll [332824]
O61 - LFC: 2015/07/09 01:08:07 A . (.Tonec Inc..) -- C:\Documents and Settings\Star\Application Data\IDM\idmmzcc5\components2\idmcchandler2_64.dll [460824]
O61 - LFC: 2015/07/09 01:08:01 A . (.Tonec Inc..) -- C:\Documents and Settings\Star\Application Data\IDM\idmmzcc5\components2\idmmzcc.dll [34216]
O61 - LFC: 2015/07/09 01:08:02 A . (.Tonec Inc..) -- C:\Documents and Settings\Star\Application Data\IDM\idmmzcc5\components2\idmmzcc64.dll [28512]
O61 - LFC: 2015/07/09 01:08:00 A . (.Tonec Inc..) -- C:\Documents and Settings\Star\Application Data\IDM\idmmzcc5\components12\idmmzcc.dll [26648]
O61 - LFC: 2015/07/09 01:08:01 A . (.Tonec Inc..) -- C:\Documents and Settings\Star\Application Data\IDM\idmmzcc5\components12\idmmzcc64.dll [31768]
O61 - LFC: 2015/07/09 01:07:58 A . (.Tonec Inc..) -- C:\Documents and Settings\Star\Application Data\IDM\idmmzcc5\components\idmmzcc.dll [34216]

---\\ Associations Shell Spawning (O67) (9) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\system32\wscript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Editeur du Registre.) -- C:\WINDOWS\regedit.exe
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe

---\\ Menu de démarrage Internet (SMI) (O68) (13) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\Launcher.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe

---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (2) - 4s
O69 - SBI: prefs.js [Star - lkfhlvb0.default] user_pref("extensions.faststartff@gmail.com.install-event-fired", true); =>PUP.FastStart
O69 - SBI: prefs.js [Star - lkfhlvb0.default] user_pref("extensions.{c5e48979-bd7f-4cf7-9b73-2482a67a4f37}.install-event-fired", true); =>Adware.BrowseFox

---\\ Enumère les services démarrés par Svchost (SSS) (O83) (40) - 0s
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\WINDOWS\system32\appmgmts.dll [176640]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496]
O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [78336]
O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464]
O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576]
O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488]
O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\system32\ersvc.dll [23040]
O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - .) -- C:\WINDOWS\system32\es.dll [253952]
O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: HidServ (HidServ) . (.Microsoft Corporation - HID Audio Service.) -- C:\WINDOWS\system32\hidserv.dll [21504]
O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [99840]
O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [132096]
O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\system32\msgsvc.dll [33792]
O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144]
O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- C:\WINDOWS\system32\mswsock.dll [247808]
O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [53248]
O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560]
O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [18944]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\WINDOWS\system32\ipnathlp.dll [332800]
O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\system32\tapisrv.dll [249856]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112]
O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176]
O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483840]
O83 - Search Svchost Services: Wmi (Wmi) . (.Microsoft Corporation - API avancées Windows 32.) -- C:\WINDOWS\system32\advapi32.dll [685568]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\wmisvc.dll [145408]
O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896]
O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024]
O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\system32\qmgr.dll [409088]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll [38400]
O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- C:\WINDOWS\system32\mspmsnsv.dll [27136]

---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) (14) - 9s
SS - Auto [2015/07/02 17:51:08] [ 268976] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
SS - Demand [2009/06/05 16:42:04] [ 90112] Andrea ADI Filters Service (AEADIFilters) . (.Andrea Electronics Corporation.) - C:\WINDOWS\system32\AEADISRV.EXE
SR - Auto [2015/01/20 00:30:38] [ 60744] Apple Mobile Device (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SR - Auto [2014/12/04 14:54:07] [ 50344] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
SS - Auto [2013/12/30 02:54:22] [ 233472] FsUsbExService (FsUsbExService) . (.Teruten.) - C:\WINDOWS\system32\FsUsbExService.Exe
SS - Demand [2015/02/13 08:55:36] [ 540968] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe
SS - Auto [2015/05/08 01:04:38] [ 182696] Java Quick Starter (JavaQuickStarterService) . (.Oracle Corporation.) - C:\Program Files\Java\jre7\bin\jqs.exe
SS - Auto [2015/06/18 08:39:46] [ 1871160] (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
SS - Auto [2015/06/18 08:39:50] [ 1133880] (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
SS - Demand [2015/07/01 15:40:56] [ 148136] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
SS - Demand [2015/06/03 21:42:38] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe
SS - Auto [2014/08/27 04:02:21] [ 339336] tuEagles Service (tuEaglesService) . (...) - C:\Program Files\tuEagles\EglSrv.exe
SS - Auto [2015/04/30 11:27:26] [ 579904] Wise Boot Assistant (WiseBootAssistant) . (.WiseCleaner.com.) - C:\Program Files\Wise\Wise Care 365\BootTime.exe
S1 - Demand [2014/05/15 17:08:30] [ 10792] WiseHDInfo (WiseHDInfo) . (...) - C:\Program Files\Wise\Wise Care 365\WiseHDInfo32.dll

---\\ Scan Additionnel (O88) (1) - 0s
~ Aucun élément malicieux trouvé.

---\\ Récapitulatif des détections trouvées sur votre station (2) - 0s
http://www.nicolascoolman.fr/blog =>PUP.FastStart
http://www.nicolascoolman.fr/adware-browsefox/ =>Adware.BrowseFox

~ End of the scan, 47355 items in 54 seconds (653)(0)()

Publicité


Signaler le contenu de ce document

Publicité