cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.7.5.84 Par Nicolas Coolman (2015\07\05)
~ Démarré par Robert (Administrator) (2015/07/06 22:17:58)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Documents and Settings\Robert\Bureau\ZHPDiag.txt
~ Rapport: C:\Documents and Settings\Robert\Application Data\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
~ Windows XP, 32-bit Service Pack 3 (Build 2600)

---\\ Logiciels de protection (3) - 1s
Kaspersky Internet Security v14.0.0.4651
Malwarebytes Anti-Malware version 2.1.8.1057
Secunia PSI

---\\ Logiciels d'optimisation (1) - 2s
CCleaner v5.07

---\\ Surveillance de Logiciels (1) - 2s
Adobe Flash Player 18 NPAPI

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 15 Stepping 11, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
~ Total physical RAM (KB): 3144812
~ System Restore: Activé (Enable)
~ System drive C: has 90 GB free of 99 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: USER
~ User Name: Robert
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 90 GB free of 99 GB (System)
~ Drive E: has 287 GB free of 376 GB

---\\ Recherche particulière de fichiers génériques (22) - 0s
[MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [1037824]
[MD5.93AD0B78C7357A05F50E594EC7C22300] - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) () -- C:\WINDOWS\System32\rundll32.exe [33792]
[MD5.D14B5000064ACCD113655C8573FFC6E8] - (.Microsoft Corporation - Internet Extensions for Win32.) () -- C:\WINDOWS\System32\wininet.dll [920064]
[MD5.DD73D6B9F6B4CB630CF35B438B540174] - (.Microsoft Corporation - Application d'ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [512000]
[MD5.D80ED631D3AFD47C27311B0614AFA89F] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [138496]
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] - (.Microsoft Corporation - IDE/ATAPI Port Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [96512]
[MD5.C885B02847F5D2FD45A24E219ED93B32] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [63744]
[MD5.1F4260CC5B42272D71F79E570A27A4FE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [62976]
[MD5.31F923EB2170FC172C81ABDA0045D18C] - (.Microsoft Corporation - Pilote de cryptographie FIPS.) () -- C:\WINDOWS\System32\drivers\Fips.sys [44672]
[MD5.573C7D0A32852B48F3058CFD8026F511] - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [144384]
[MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [54144]
[MD5.083A052659F5310DD8B6A6CB05EDCF8E] - (.Microsoft Corporation - IMAPI Kernel Driver.) () -- C:\WINDOWS\System32\drivers\Imapi.sys [42112]
[MD5.CC748EA12C6EFFDE940EE98098BF96BB] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [152832]
[MD5.23C74D75E36E7158768DD63D92789A91] - (.Microsoft Corporation - IPSec Driver.) () -- C:\WINDOWS\System32\drivers\IPSec.sys [75264]
[MD5.7D304A5EB4344EBEEAB53A2FE3FFB9F0] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [456320]
[MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [162816]
[MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - (.Microsoft Corporation - NT File System Driver.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [574976]
[MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [80384]
[MD5.11B4A627BC9614B885C4969BFA5FF8A6] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [51328]
[MD5.15CABD0F7C00C47C70124907916AF3F1] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [196224]
[MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) () -- C:\WINDOWS\System32\drivers\redbook.sys [58752]
[MD5.46DE1126684369BACE4849E4FC8C43CA] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [53376]

---\\ Processus lancés (3) - 1s
[MD5.0D2F8F4055903A762AD46204E5A42E86] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe [214512] [PID.1492]
[MD5.D6310F79E51D1F997E964E81DD368AEA] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608] [PID.1964]
[MD5.C9E2D38B73524AF3B281299BA04E5205] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avpui.exe [1005352] [PID.2228]

---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (9) - 0s
G2 - GCE: Extension [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [bepbmhgboaologfdajaanbcjmnhjmhfn] Google Voice Search Hotword (Beta)
G2 - GCE: Extension [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (10) - 0s
P2 - EXT: (.UNISYS France - UNISYS NAP Win 32 Plugin Version 51.) -- C:\Program Files\Mozilla Firefox\Plugins\npornap.dll
P2 - EXT: (.RealNetworks, Inc. - RealPlayer(tm) LiveConnect-Enabled Plug-In.) -- C:\Program Files\Mozilla Firefox\Plugins\nppl3260.dll
P2 - EXT: (.RealNetworks, Inc. - 6.0.12.448.) -- C:\Program Files\Mozilla Firefox\Plugins\nprpjplug.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_18_0_0_194.dll
P2 - FPN: [HKLM] [@java.com/DTPlugin,version=11.45.2] - (.Oracle Corporation.) -- C:\Program Files\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=11.45.2] - (.Oracle Corporation.) -- C:\Program Files\Java\jre1.8.0_45\bin\plugin2\npjp2.dll
P2 - FPN: [HKLM] [@real.com/nppl3260;version=6.0.12.450] - (.RealNetworks, Inc..) -- C:\Program Files\Real Alternative\Browser\Plugins\nppl3260.dll
P2 - FPN: [HKLM] [@real.com/nprpjplug;version=6.0.12.448] - (.RealNetworks, Inc..) -- C:\Program Files\Real Alternative\Browser\Plugins\nprpjplug.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.2.0] - (.VideoLAN.) -- C:\Program Files\adslTV\VLC\npvlc.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.2.1] - (.VideoLAN.) -- C:\Program Files\adslTV\VLC\npvlc.dll

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (5) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.fr/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer, Proxy Management (R5) (6) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1

---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\System32\userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

---\\ Hosts file redirection (O1) (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (22)

---\\ Browser Helper Object de navigateur (BHO) (O2) (3) - 0s
O2 - BHO: (no name) - AutorunsDisabled (Orphean)
O2 - BHO: ContentBlockerBrowserHelperObject - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} . (.Kaspersky Lab ZAO - Content Blocker Plugin.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll
O2 - BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} . (.Kaspersky Lab ZAO - Safe Money Plugin.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll

---\\ Modification Domaine/Adresses DNS (O17) (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1

---\\ Liste des services NT non Microsoft et non désactivés (O23) (4) - 0s
O23 - Service: Kaspersky Anti-Virus Service (AVP) . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe
O23 - Service: Application système COM+ (COMSysApp) . (...) - C:\WINDOWS\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe

---\\ Logiciels installés (O42) (57) - 7s
O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI
O42 - Logiciel: Adobe Shockwave Player 12.1 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
O42 - Logiciel: CDex - Open Source Digital Audio CD Extractor - (.Georgy Berdyshev.) [HKLM] -- CDex
O42 - Logiciel: Defraggler - (.Piriform.) [HKLM] -- Defraggler
O42 - Logiciel: FastStone Image Viewer 5.3 - (.FastStone Soft.) [HKLM] -- FastStone Image Viewer
O42 - Logiciel: GSplit 3 - (.G.D.G. Software.) [HKLM] -- GSplit3Set
O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8
O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM] -- InstallWIX_{6F6873E3-5C92-4049-B511-231A138DD090}
O42 - Logiciel: Malwarebytes Anti-Malware version 2.1.8.1057 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes Anti-Malware_is1
O42 - Logiciel: Mozilla Firefox 39.0 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 39.0 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService
O42 - Logiciel: Notepad++ - (.Notepad++ Team.) [HKLM] -- Notepad++
O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM] -- Picasa 3
O42 - Logiciel: Pointofix - (.Amerigomedia.) [HKLM] -- Pointofix_is1
O42 - Logiciel: Q-Dir - (...) [HKLM] -- Q-Dir
O42 - Logiciel: Real Alternative 2.0.2 - (...) [HKLM] -- RealAlt_is1
O42 - Logiciel: Recuva - (.Piriform.) [HKLM] -- Recuva
O42 - Logiciel: Revo Uninstaller 1.95 - (.VS Revo Group.) [HKLM] -- Revo Uninstaller
O42 - Logiciel: Secunia PSI (3.0.0.10004) - (.Secunia.) [HKLM] -- Secunia PSI
O42 - Logiciel: Simple Sudoku 4.2 - (...) [HKLM] -- Simple Sudoku_is1
O42 - Logiciel: Solitaire - (...) [HKLM] -- Solitaire_is1
O42 - Logiciel: Speccy - (.Piriform.) [HKLM] -- Speccy
O42 - Logiciel: SpeedFan (remove only) - (...) [HKLM] -- SpeedFan
O42 - Logiciel: SumatraPDF 3.0 - (.Krzysztof Kowalczyk.) [HKLM] -- SumatraPDF
O42 - Logiciel: Tweak UI - (...) [HKLM] -- Tweak UI 2.10
O42 - Logiciel: Tweaking.com - Windows Repair - (.Tweaking.com.) [HKLM] -- Tweaking.com - Windows Repair
O42 - Logiciel: Unlocker 1.9.2 - (.Cedrick Collomb.) [HKLM] -- Unlocker
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player
O42 - Logiciel: Windows Media Format 11 runtime - (...) [HKLM] -- Windows Media Format Runtime
O42 - Logiciel: Lecteur Windows Media 11 - (...) [HKLM] -- Windows Media Player
O42 - Logiciel: WinHTTrack Website Copier 3.48-21 - (.HTTrack.) [HKLM] -- WinHTTrack Website Copier_is1
O42 - Logiciel: Wise Care 365 3.63 - (.WiseCleaner.com, Inc..) [HKLM] -- Wise Care 365_is1
O42 - Logiciel: Wise Disk Cleaner 8.62 - (.WiseCleaner.com, Inc..) [HKLM] -- Wise Disk Cleaner_is1
O42 - Logiciel: XnView 2.33 - (.Gougelet Pierre-e.) [HKLM] -- XnView_is1
O42 - Logiciel: Xvid MPEG-4 Video Codec - (.Xvid Development Team.) [HKLM] -- xvid
O42 - Logiciel: PDFCreator - (.pdfforge.) [HKLM] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}
O42 - Logiciel: OpenOffice 4.1.1 - (.Apache Software Foundation.) [HKLM] -- {121727D5-FDF3-4723-BA57-EB383440ED72}
O42 - Logiciel: Orange Plug-in messagerie vocale 888 - (...) [HKLM] -- {16E79B1D-D1C2-4CA6-8B23-F4D890E0DCB9}
O42 - Logiciel: Java 8 Update 45 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218045F0}
O42 - Logiciel: ConvertHelper 3.1.1 - (.DownloadHelper.) [HKLM] -- {27CC6AB1-E72B-4179-AF1A-EAE507EBAF52}}_is1
O42 - Logiciel: adsl TV - (.adsl TV / FM.) [HKLM] -- {3AFDD2C6-8663-46B5-B195-6CEB00D44768}
O42 - Logiciel: Google Earth - (.Google.) [HKLM] -- {4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}
O42 - Logiciel: PhotoSun14 - (.Sunbil Software.) [HKLM] -- {4F41EEEF-DC93-40B9-A32B-F8F6485A6B2F}
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726}
O42 - Logiciel: Atheros Communications Inc.(R) L1 Gigabit Ethernet Driver - (.Atheros Communications Inc..) [HKLM] -- {6E19F210-3813-4002-B561-94D66AA182B6}
O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM] -- {6F6873E3-5C92-4049-B511-231A138DD090}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: SIW version 2011.10.29 - (.Topala Software Solutions.) [HKLM] -- {AB67580-257C-45FF-B8F4-C8C30682091A}_is1
O42 - Logiciel: NVIDIA Pilote graphique 340.52 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver
O42 - Logiciel: NVIDIA GeForce Experience 2.1.1 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience
O42 - Logiciel: NVIDIA nView 141.24 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView
O42 - Logiciel: USB-set 1.5 - (.Infoadom 38.) [HKLM] -- {B92B952E-4459-480F-A500-60D87F6F527F}_is1
O42 - Logiciel: Analyseur MSXML 6.0 - (.Microsoft Corporation.) [HKLM] -- {CEEE4B46-D156-44B9-91A6-4DF113C79DE9}
O42 - Logiciel: Ma-Config.com - (.Cybelsoft.) [HKLM] -- {E896BE27-5592-4B33-A8EB-47737524886A}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}

---\\ HKCU & HKLM Software Keys (95) - 7s
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\AGG Software
HKLM\SOFTWARE\AppDataLow
HKLM\SOFTWARE\ASUS
HKLM\SOFTWARE\C07ft5Y
HKLM\SOFTWARE\CDex
HKLM\SOFTWARE\Creative Tech
HKLM\SOFTWARE\cybelsoft
HKLM\SOFTWARE\DivXNetworks
HKLM\SOFTWARE\DownloadHelper
HKLM\SOFTWARE\FastStone Image Viewer
HKLM\SOFTWARE\GEAR Software
HKLM\SOFTWARE\Gemplus
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\GSplit
HKLM\SOFTWARE\HitmanPro
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\KasperskyLab
HKLM\SOFTWARE\Khronos
HKLM\SOFTWARE\Licenses
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\Notepad++
HKLM\SOFTWARE\NVIDIA Corporation
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\OpenOffice
HKLM\SOFTWARE\PDFCreator
HKLM\SOFTWARE\Piriform
HKLM\SOFTWARE\Program Groups
HKLM\SOFTWARE\RealAlternative
HKLM\SOFTWARE\RealNetworks
HKLM\SOFTWARE\Realtek
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\Schlumberger
HKLM\SOFTWARE\Secunia
HKLM\SOFTWARE\SpeedFan
HKLM\SOFTWARE\TeamViewer
HKLM\SOFTWARE\Unisys Corporation
HKLM\SOFTWARE\VideoLAN
HKLM\SOFTWARE\Windows 3.1 Migration Status
HKLM\SOFTWARE\WinHTTrack Website Copier
HKLM\SOFTWARE\WinRAR
HKLM\SOFTWARE\WiseCleaner
HKLM\SOFTWARE\XnView
HKCU\SOFTWARE\4kdownload.com
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Amerigomedia
HKCU\SOFTWARE\Angus Johnson
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\ASProtect
HKCU\SOFTWARE\Baliciel
HKCU\SOFTWARE\Bitdefender
HKCU\SOFTWARE\Canneverbe Limited
HKCU\SOFTWARE\ESET
HKCU\SOFTWARE\FileHippo
HKCU\SOFTWARE\Gadwin Systems
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\KasperskyLab
HKCU\SOFTWARE\Lavalys
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Mirage
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\OpenOffice
HKCU\SOFTWARE\PDFCreator
HKCU\SOFTWARE\Picture Manager
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\PrtScr
HKCU\SOFTWARE\RealNetworks
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\Secunia
HKCU\SOFTWARE\Skyhook Wireless
HKCU\SOFTWARE\SoftwareOK.de
HKCU\SOFTWARE\SpeedFan
HKCU\SOFTWARE\Sysinternals
HKCU\SOFTWARE\TeamViewer
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\VicMan Software
HKCU\SOFTWARE\VSRevoGroup
HKCU\SOFTWARE\WinHTTrack Website Copier
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (142) - 4s
O43 - CFD: 2015/04/15 22:13:45 - [] D -- C:\Program Files\adslTV
O43 - CFD: 2015/06/26 10:19:19 - [] D -- C:\Program Files\Defraggler
O43 - CFD: 2015/06/07 09:43:11 - [] D -- C:\Program Files\Fichiers communs
O43 - CFD: 2014/10/09 11:41:15 - [] D -- C:\Program Files\Google
O43 - CFD: 2014/10/26 20:58:10 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 2014/10/07 12:57:25 - [] D -- C:\Program Files\Intel
O43 - CFD: 2015/06/10 16:11:53 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 2015/06/07 09:43:14 - [] D -- C:\Program Files\Java
O43 - CFD: 2014/11/13 23:56:35 - [] D -- C:\Program Files\Kaspersky Lab
O43 - CFD: 2015/04/24 17:10:48 - [] D -- C:\Program Files\ma-config.com
O43 - CFD: 2015/06/26 14:01:18 - [] D -- C:\Program Files\Malwarebytes Anti-Malware
O43 - CFD: 2014/10/08 03:06:35 - [] D -- C:\Program Files\Messenger
O43 - CFD: 2014/10/07 10:38:42 - [] D -- C:\Program Files\microsoft frontpage
O43 - CFD: 2015/05/25 00:12:33 - [] D -- C:\Program Files\Microsoft Silverlight
O43 - CFD: 2014/10/07 12:29:31 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 2014/10/08 03:01:20 - [] D -- C:\Program Files\Movie Maker
O43 - CFD: 2015/01/19 15:41:01 - [] D -- C:\Program Files\Mozilla Firefox
O43 - CFD: 2015/07/03 21:28:15 - [] D -- C:\Program Files\Mozilla Maintenance Service
O43 - CFD: 2014/10/17 13:15:33 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 2014/10/07 10:35:29 - [] D -- C:\Program Files\MSN
O43 - CFD: 2014/10/07 10:35:50 - [] D -- C:\Program Files\MSN Gaming Zone
O43 - CFD: 2014/10/07 10:37:12 - [] D -- C:\Program Files\NetMeeting
O43 - CFD: 2015/01/06 20:59:59 - [] D -- C:\Program Files\NVIDIA Corporation
O43 - CFD: 2014/10/07 10:35:57 - [] D -- C:\Program Files\Online Services
O43 - CFD: 2014/10/07 11:32:21 - [] D -- C:\Program Files\OpenOffice 4
O43 - CFD: 2014/10/11 20:10:58 - [] D -- C:\Program Files\Orange
O43 - CFD: 2014/10/08 03:01:33 - [] D -- C:\Program Files\Outlook Express
O43 - CFD: 2014/10/11 17:45:33 - [] D -- C:\Program Files\PDFCreator
O43 - CFD: 2015/06/19 23:52:50 - [] D -- C:\Program Files\Q-Dir
O43 - CFD: 2014/10/12 22:57:22 - [] D -- C:\Program Files\Real Alternative
O43 - CFD: 2014/10/26 20:58:09 - [] D -- C:\Program Files\Realtek
O43 - CFD: 2014/10/17 13:15:28 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 2015/02/07 18:59:09 - [] D -- C:\Program Files\Secunia
O43 - CFD: 2014/10/07 10:37:34 - [] D -- C:\Program Files\Services en ligne
O43 - CFD: 2014/11/02 22:29:22 - [] D -- C:\Program Files\SIW
O43 - CFD: 2015/05/25 12:02:25 - [] D -- C:\Program Files\USB-set
O43 - CFD: 2014/11/24 12:06:11 - [] D -- C:\Program Files\Windows Desktop Search
O43 - CFD: 2014/10/12 14:46:48 - [] D -- C:\Program Files\Windows Games
O43 - CFD: 2014/11/06 22:49:38 - [] D -- C:\Program Files\Windows Media Connect 2
O43 - CFD: 2014/11/06 22:49:38 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 2014/10/07 10:35:45 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 2014/10/07 10:38:42 - [] D -- C:\Program Files\xerox
O43 - CFD: 2015/06/20 18:16:15 - [] D -- C:\Program Files\XnView
O43 - CFD: 2015/05/02 15:18:55 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 2015/03/26 14:50:06 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CCleaner
O43 - CFD: 2015/06/18 10:16:48 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CDex
O43 - CFD: 2015/07/03 14:25:04 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 2015/01/01 23:58:25 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\FastStone Image Viewer
O43 - CFD: 2014/11/13 23:57:21 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Kaspersky Internet Security
O43 - CFD: 2015/04/24 17:10:48 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ma-config.com
O43 - CFD: 2015/05/25 00:02:29 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Silverlight
O43 - CFD: 2015/04/17 09:47:10 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Notepad++
O43 - CFD: 2014/11/23 16:52:32 - [] SD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\OpenOffice 4.1.1
O43 - CFD: 2014/10/17 16:04:09 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration
O43 - CFD: 2015/04/04 10:36:30 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Picasa 3
O43 - CFD: 2015/07/01 22:49:21 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Pointofix
O43 - CFD: 2015/03/22 19:37:06 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Q-Dir
O43 - CFD: 2014/12/19 23:33:34 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Simple Sudoku
O43 - CFD: 2014/12/17 14:38:11 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Speccy
O43 - CFD: 2015/03/16 22:40:05 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Sunbil Software
O43 - CFD: 2015/03/16 22:38:51 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Tweaking.com
O43 - CFD: 2015/03/16 22:42:44 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN
O43 - CFD: 2015/05/11 22:02:46 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR
O43 - CFD: 2015/05/31 21:50:34 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Wise Care 365
O43 - CFD: 2015/06/20 10:17:28 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\XnView
O43 - CFD: 2015/05/20 16:33:14 - [] D -- C:\Documents and Settings\All Users\Application Data\B0FFCDD9-5261-4e59-B29A-17A4FABDEBAB
O43 - CFD: 2015/02/09 10:35:37 - [] D -- C:\Documents and Settings\All Users\Application Data\Canneverbe Limited
O43 - CFD: 2015/05/01 13:08:42 - [] D -- C:\Documents and Settings\All Users\Application Data\HitmanPro
O43 - CFD: 2015/01/22 12:10:47 - [] D -- C:\Documents and Settings\All Users\Application Data\IsolatedStorage
O43 - CFD: 2015/07/06 22:13:11 - [] D -- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
O43 - CFD: 2015/04/24 17:10:48 - [] D -- C:\Documents and Settings\All Users\Application Data\ma-config.com
O43 - CFD: 2015/06/22 10:48:07 - [] D -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
O43 - CFD: 2015/01/11 17:40:22 - [] SD -- C:\Documents and Settings\All Users\Application Data\Microsoft
O43 - CFD: 2014/10/07 11:18:54 - [] D -- C:\Documents and Settings\All Users\Application Data\Mozilla
O43 - CFD: 2014/10/28 00:11:26 - [] D -- C:\Documents and Settings\All Users\Application Data\NVIDIA
O43 - CFD: 2014/10/07 12:33:29 - [] D -- C:\Documents and Settings\All Users\Application Data\NVIDIA Corporation
O43 - CFD: 2015/04/16 09:39:44 - [] D -- C:\Documents and Settings\All Users\Application Data\Oracle
O43 - CFD: 2015/03/19 12:33:36 - [] D -- C:\Documents and Settings\All Users\Application Data\Package Cache
O43 - CFD: 2015/05/26 20:09:51 - [0] D -- C:\Documents and Settings\All Users\Application Data\PassMark
O43 - CFD: 2014/10/11 18:48:43 - [] D -- C:\Documents and Settings\All Users\Application Data\Sun
O43 - CFD: 2015/05/26 20:08:24 - [0] AD -- C:\Documents and Settings\All Users\Application Data\TEMP
O43 - CFD: 2015/05/25 12:03:26 - [] D -- C:\Documents and Settings\All Users\Application Data\usb-set
O43 - CFD: 2015/05/23 09:41:48 - [] D -- C:\Documents and Settings\All Users\Application Data\VS Revo Group
O43 - CFD: 2014/10/11 23:51:43 - [] D -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
O43 - CFD: 2014/10/11 20:10:55 - [] D -- C:\Program Files\Fichiers communs\InstallShield
O43 - CFD: 2015/06/07 09:43:11 - [] D -- C:\Program Files\Fichiers communs\Java
O43 - CFD: 2014/11/22 18:14:11 - [] D -- C:\Program Files\Fichiers communs\Microsoft Shared
O43 - CFD: 2014/10/07 10:37:08 - [] D -- C:\Program Files\Fichiers communs\MSSoap
O43 - CFD: 2014/10/07 12:16:42 - [] D -- C:\Program Files\Fichiers communs\ODBC
O43 - CFD: 2014/10/07 10:37:11 - [] D -- C:\Program Files\Fichiers communs\Services
O43 - CFD: 2014/10/07 12:16:40 - [] D -- C:\Program Files\Fichiers communs\SpeechEngines
O43 - CFD: 2014/10/07 10:36:44 - [] D -- C:\Program Files\Fichiers communs\System
O43 - CFD: 2015/03/16 22:39:04 - [] D -- C:\Documents and Settings\Robert\Application Data\Adobe
O43 - CFD: 2014/12/22 00:22:43 - [] D -- C:\Documents and Settings\Robert\Application Data\Canneverbe Limited
O43 - CFD: 2015/06/25 22:40:19 - [] D -- C:\Documents and Settings\Robert\Application Data\ElevatedDiagnostics
O43 - CFD: 2015/01/01 23:59:17 - [] D -- C:\Documents and Settings\Robert\Application Data\FastStone
O43 - CFD: 2015/04/06 21:48:23 - [] D -- C:\Documents and Settings\Robert\Application Data\Google
O43 - CFD: 2015/01/26 12:47:18 - [] D -- C:\Documents and Settings\Robert\Application Data\GSplit
O43 - CFD: 2014/10/27 14:48:22 - [0] D -- C:\Documents and Settings\Robert\Application Data\Help
O43 - CFD: 2014/10/07 10:44:08 - [] D -- C:\Documents and Settings\Robert\Application Data\Identities
O43 - CFD: 2014/10/15 15:22:22 - [0] D -- C:\Documents and Settings\Robert\Application Data\Learnpulse
O43 - CFD: 2014/10/11 18:42:51 - [] D -- C:\Documents and Settings\Robert\Application Data\Macromedia
O43 - CFD: 2015/05/11 13:02:19 - [] SD -- C:\Documents and Settings\Robert\Application Data\Microsoft
O43 - CFD: 2014/10/07 12:18:22 - [] D -- C:\Documents and Settings\Robert\Application Data\Mozilla
O43 - CFD: 2015/06/25 22:35:18 - [] D -- C:\Documents and Settings\Robert\Application Data\Notepad++
O43 - CFD: 2015/06/15 22:16:09 - [] D -- C:\Documents and Settings\Robert\Application Data\NVIDIA
O43 - CFD: 2014/10/12 14:52:29 - [] D -- C:\Documents and Settings\Robert\Application Data\OpenOffice
O43 - CFD: 2014/10/11 18:49:14 - [] D -- C:\Documents and Settings\Robert\Application Data\Oracle
O43 - CFD: 2015/03/22 19:41:49 - [] D -- C:\Documents and Settings\Robert\Application Data\Q-Dir
O43 - CFD: 2014/10/25 23:51:10 - [] D -- C:\Documents and Settings\Robert\Application Data\Real
O43 - CFD: 2014/10/21 19:31:45 - [] D -- C:\Documents and Settings\Robert\Application Data\SumatraPDF
O43 - CFD: 2014/10/11 18:47:24 - [] D -- C:\Documents and Settings\Robert\Application Data\Sun
O43 - CFD: 2015/07/04 12:11:31 - [] D -- C:\Documents and Settings\Robert\Application Data\vlc
O43 - CFD: 2014/11/24 00:13:16 - [] D -- C:\Documents and Settings\Robert\Application Data\Windows Desktop Search
O43 - CFD: 2014/11/24 00:21:50 - [] D -- C:\Documents and Settings\Robert\Application Data\Windows Search
O43 - CFD: 2014/10/07 11:29:05 - [] D -- C:\Documents and Settings\Robert\Application Data\WinRAR
O43 - CFD: 2015/07/03 22:33:01 - [] D -- C:\Documents and Settings\Robert\Application Data\Wise Care 365
O43 - CFD: 2015/07/02 09:55:00 - [] D -- C:\Documents and Settings\Robert\Application Data\Wise Disk Cleaner
O43 - CFD: 2015/06/20 18:14:51 - [0] D -- C:\Documents and Settings\Robert\Application Data\XnView
O43 - CFD: 2015/03/25 23:44:12 - [] D -- C:\Documents and Settings\Robert\Application Data\XnViewMP
O43 - CFD: 2015/07/06 22:18:01 - [] D -- C:\Documents and Settings\Robert\Application Data\ZHP
O43 - CFD: 2015/06/24 09:11:54 - [] D -- C:\Documents and Settings\Robert\Local Settings\Application Data\Adobe
O43 - CFD: 2015/05/11 13:02:22 - [] D -- C:\Documents and Settings\Robert\Local Settings\Application Data\ApplicationHistory
O43 - CFD: 2015/01/17 12:16:50 - [] D -- C:\Documents and Settings\Robert\Local Settings\Application Data\CDex
O43 - CFD: 2014/12/15 14:08:33 - [] D -- C:\Documents and Settings\Robert\Local Settings\Application Data\fontconfig
O43 - CFD: 2014/12/15 14:08:30 - [] D -- C:\Documents and Settings\Robert\Local Settings\Application Data\gegl-0.2
O43 - CFD: 2014/12/10 22:57:12 - [] D -- C:\Documents and Settings\Robert\Local Settings\Application Data\Google
O43 - CFD: 2014/12/15 14:11:33 - [] D -- C:\Documents and Settings\Robert\Local Settings\Application Data\gtk-2.0
O43 - CFD: 2014/10/27 14:48:22 - [0] D -- C:\Documents and Settings\Robert\Local Settings\Application Data\Help
O43 - CFD: 2014/11/04 22:47:06 - [] D -- C:\Documents and Settings\Robert\Local Settings\Application Data\Identities
O43 - CFD: 2014/10/15 15:22:22 - [0] D -- C:\Documents and Settings\Robert\Local Settings\Application Data\Learnpulse
O43 - CFD: 2015/01/30 21:37:53 - [] D -- C:\Documents and Settings\Robert\Local Settings\Application Data\Microsoft
O43 - CFD: 2014/10/07 12:18:22 - [] D -- C:\Documents and Settings\Robert\Local Settings\Application Data\Mozilla
O43 - CFD: 2014/10/07 12:34:56 - [] D -- C:\Documents and Settings\Robert\Local Settings\Application Data\NVIDIA
O43 - CFD: 2014/12/03 00:15:18 - [] D -- C:\Documents and Settings\Robert\Local Settings\Application Data\Paint.NET
O43 - CFD: 2015/02/07 18:59:29 - [0] D -- C:\Documents and Settings\Robert\Local Settings\Application Data\Secunia PSI
O43 - CFD: 2014/10/11 18:49:07 - [] D -- C:\Documents and Settings\Robert\Local Settings\Application Data\Sun
O43 - CFD: 2015/05/23 09:41:55 - [] D -- C:\Documents and Settings\Robert\Local Settings\Application Data\VS Revo Group
O43 - CFD: 2014/10/07 12:16:18 - [] RD -- C:\Documents and Settings\Robert\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 2015/05/28 19:34:52 - [] D -- C:\Documents and Settings\Robert\Menu Démarrer\Programmes\Outils d'administration
O43 - CFD: 2015/03/16 22:41:28 - [] D -- C:\Documents and Settings\Robert\Menu Démarrer\Programmes\SpeedFan
O43 - CFD: 2015/05/11 22:02:46 - [] D -- C:\Documents and Settings\Robert\Menu Démarrer\Programmes\WinRAR

---\\ Liste des pilotes du système (SDL) (O58) (58) - 3s
O58 - SDL:2015/05/26 09:19:17 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\03387370.sys [119512]
O58 - SDL:2015/05/31 15:50:33 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\11732591.sys [119512]
O58 - SDL:2015/04/30 10:17:58 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\29BE30E5.sys [114904]
O58 - SDL:2015/01/06 11:23:45 A . (.Creative - Creative WDM 3D Audio Driver.) -- C:\WINDOWS\System32\drivers\Ambfilt.sys [1691480]
O58 - SDL:2004/08/13 11:56:20 RA . (. - ATK0110 ACPI Utility.) -- C:\WINDOWS\System32\drivers\ASACPI.sys [5810]
O58 - SDL:2008/04/14 14:00:00 A . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\System32\drivers\cinemst2.sys [262528]
O58 - SDL:2008/04/14 14:00:00 A . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\System32\drivers\cpqdap01.sys [11776]
O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- C:\WINDOWS\System32\drivers\dmboot.sys [800256]
O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\System32\drivers\dmio.sys [154496]
O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\System32\drivers\dmload.sys [5888]
O58 - SDL:2013/05/10 13:11:04 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Backup Driver.) -- C:\WINDOWS\System32\drivers\eubakup.sys [51400]
O58 - SDL:2013/05/10 13:19:32 A . (...) -- C:\WINDOWS\System32\drivers\EUBKMON.sys [40776]
O58 - SDL:2013/05/10 13:14:14 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Access Driver.) -- C:\WINDOWS\System32\drivers\eudskacs.sys [14920]
O58 - SDL:2013/05/10 13:22:40 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Backup Image Preview Driver.) -- C:\WINDOWS\System32\drivers\EuFdDisk.sys [185672]
O58 - SDL:2008/04/14 14:00:00 A . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [144384]
O58 - SDL:2015/01/06 11:17:46 A . (.REALiX(tm) - HWiNFO x86 Kernel Driver.) -- C:\WINDOWS\System32\drivers\HWiNFO32.SYS [23840]
O58 - SDL:2014/05/27 15:56:00 A . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) -- C:\WINDOWS\System32\drivers\kl1.sys [135776]
O58 - SDL:2014/05/27 15:56:00 A . (.Kaspersky Lab ZAO - Filter Core [fre_wnet_x86].) -- C:\WINDOWS\System32\drivers\klflt.sys [93792]
O58 - SDL:2014/05/27 15:56:00 A . (.Kaspersky Lab ZAO - Klif Mini-Filter [fre_wnet_x86].) -- C:\WINDOWS\System32\drivers\klif.sys [576096]
O58 - SDL:2013/04/19 12:44:54 A . (.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver.) -- C:\WINDOWS\System32\drivers\klim5.sys [36448]
O58 - SDL:2014/05/27 15:56:00 A . (.Kaspersky Lab ZAO - KLKBDFLT Keyboard Device Filter [fre_wnet_x.) -- C:\WINDOWS\System32\drivers\klkbdflt.sys [24672]
O58 - SDL:2014/05/27 15:56:00 A . (.Kaspersky Lab ZAO - KLMOUFLT Mouse Device Filter [fre_wnet_x86].) -- C:\WINDOWS\System32\drivers\klmouflt.sys [24672]
O58 - SDL:2013/04/12 16:34:48 A . (.Kaspersky Lab ZAO - KLPD [fre_wnet_x86].) -- C:\WINDOWS\System32\drivers\klpd.sys [14432]
O58 - SDL:2013/05/14 18:34:44 A . (.Kaspersky Lab ZAO - Network filtering component.) -- C:\WINDOWS\System32\drivers\kltdi.sys [45024]
O58 - SDL:2014/05/27 15:56:00 A . (.Kaspersky Lab ZAO - KNEPS Power [fre_wxp_x86].) -- C:\WINDOWS\System32\drivers\kneps.sys [144992]
O58 - SDL:2015/01/06 11:20:34 A . (.Atheros Communications, Inc. - Atheros L1 Gigabit Ethernet Controller ndis.) -- C:\WINDOWS\System32\drivers\l151x86.sys [37376]
O58 - SDL:2015/06/18 08:41:36 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [23256]
O58 - SDL:2015/06/18 08:41:46 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [121560]
O58 - SDL:2015/07/06 22:13:48 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [98520]
O58 - SDL:2015/01/06 11:23:45 A . (.Creative Technology Ltd. - Creative WDM Audio Driver (32-bit).) -- C:\WINDOWS\System32\drivers\Monfilt.sys [1395800]
O58 - SDL:2008/04/14 14:00:00 A . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\nikedrv.sys [12032]
O58 - SDL:2014/07/02 22:43:12 A . (.NVIDIA Corporation - NVIDIA Windows XP Miniport Driver, Version.) -- C:\WINDOWS\System32\drivers\nv4_mini.sys [12695512]
O58 - SDL:2014/11/28 14:02:18 A . (.Secunia - Secunia PSI Driver.) -- C:\WINDOWS\System32\drivers\psi_mf_x86.sys [16024]
O58 - SDL:2008/04/14 14:00:00 A . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- C:\WINDOWS\System32\drivers\ptilink.sys [17792]
O58 - SDL:2008/04/14 14:00:00 A . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\System32\drivers\rio8drv.sys [12032]
O58 - SDL:2008/04/14 14:00:00 A . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\riodrv.sys [12032]
O58 - SDL:2015/01/06 11:23:46 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RtkHDAud.sys [5630168]
O58 - SDL:2008/04/14 14:00:00 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [20480]
O58 - SDL:2015/06/18 10:19:15 A . (...) -- C:\WINDOWS\System32\drivers\TrueSight.sys [35064]
O58 - SDL:2008/04/14 14:00:00 A . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\System32\drivers\tsbvcap.sys [21376]
O58 - SDL:2008/04/14 14:00:00 A . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\System32\drivers\vdmindvd.sys [58112]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ansi.sys [9037]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\country.sys [27097]
O58 - SDL:1996/04/03 21:33:26 A . (...) -- C:\WINDOWS\System32\giveio.sys [5248]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\himem.sys [4912]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\key01.sys [42809]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\keyboard.sys [42537]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos.sys [27916]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos404.sys [29146]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos411.sys [29370]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos412.sys [29274]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos804.sys [29146]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio.sys [34000]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio404.sys [34560]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio411.sys [35648]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio412.sys [35424]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio804.sys [34560]
O58 - SDL:2012/12/29 22:59:38 A . (.Almico Software - SpeedFan x32 Driver.) -- C:\WINDOWS\System32\speedfan.sys [24184]

---\\ Associations Shell Spawning (O67) (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Mozilla Corporation - Firefox.) -- E:\Program Files\Mozilla Firefox\firefox.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\system32\wscript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- E:\Program Files\Mozilla Firefox\firefox.exe

---\\ Menu de démarrage Internet (SMI) (O68) (7) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- E:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- E:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- E:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- E:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe

---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (1) - 3s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/

---\\ Enumère les services démarrés par Svchost (SSS) (O83) (38) - 1s
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496]
O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [78336]
O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464]
O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576]
O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488]
O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\system32\ersvc.dll [23040]
O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - .) -- C:\WINDOWS\system32\es.dll [253952]
O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: HidServ (HidServ) . (.Microsoft Corporation - HID Audio Service.) -- C:\WINDOWS\system32\hidserv.dll [21504]
O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [99840]
O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [132096]
O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\system32\msgsvc.dll [33792]
O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144]
O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- C:\WINDOWS\system32\mswsock.dll [247808]
O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [53248]
O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560]
O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [18944]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\WINDOWS\system32\ipnathlp.dll [332800]
O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\system32\tapisrv.dll [249856]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112]
O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176]
O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483840]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\wmisvc.dll [145408]
O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896]
O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024]
O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\system32\qmgr.dll [409088]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll [38400]
O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- C:\WINDOWS\system32\mspmsnsv.dll [27136]

---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) (11) - 91s
SR - Auto [2014/05/27 15:56:02] [ 214512] Kaspersky Anti-Virus Service (AVP) . (.Kaspersky Lab ZAO.) - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe
SS - Disabled [2014/08/13 00:24:42] [ 136120] Google Updater Service (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
SS - Disabled [2015/04/10 18:09:38] [ 2117960] Ma-Config Agent (MaConfigAgent) . (.CybelSoft.) - C:\Program Files\ma-config.com\MaConfigAgent.exe
SS - Auto [2015/06/18 08:39:50] [ 1133880] (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
SS - Disabled [2015/07/03 15:40:51] [ 148136] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
SR - Auto [2014/07/25 16:02:40] [ 1720608] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
SS - Demand [2014/07/02 20:41:09] [ 157144] NVIDIA Driver Helper Service (NVSvc) . (.NVIDIA Corporation.) - C:\WINDOWS\system32\nvsvc32.exe
SS - Disabled [2014/11/28 14:02:20] [ 1363160] Secunia PSI Agent (Secunia PSI Agent) . (.Secunia.) - C:\Program Files\Secunia\PSI\psia.exe
SS - Disabled [2014/11/28 14:02:20] [ 765144] Secunia Update Agent (Secunia Update Agent) . (.Secunia.) - C:\Program Files\Secunia\PSI\sua.exe
SS - Disabled [2015/05/12 16:22:30] [ 580144] Wise Boot Assistant (WiseBootAssistant) . (.WiseCleaner.com.) - E:\Program Files\Wise\Wise Care 365\BootTime.exe
S1 - Demand [2015/05/31 22:09:16] [ 13264] WiseHDInfo (WiseHDInfo) . (.wisecleaner.com.) - C:\WINDOWS\WiseHDInfo32.dll

---\\ Scan Additionnel (O88) (1) - 0s
~ Aucun élément malicieux trouvé.

---\\ Récapitulatif des détections trouvées sur votre station (1) - 0s
~ Aucun élément malicieux trouvé.

~ End of the scan, 42240 items in 121 seconds (534)(0)()

Publicité


Signaler le contenu de ce document

Publicité