cjoint

Publicité


Publicité

Commentaire : rapport zhpdiag scanné du 08072015 à 11h45

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.7.7.85 Par Nicolas Coolman (2015\07\07)
~ Démarré par _ (Administrator) (2015/07/08 11:37:34)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\_\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\_\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
~ Windows VISTA, 32-bit Service Pack 2 (Build 6002)

---\\ Informations sur les produits Windows (2) - 1s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK

---\\ Logiciels d'optimisation (1) - 1s
CCleaner v5.06

---\\ Surveillance de Logiciels (2) - 1s
Adobe Flash Player 17 NPAPI
Adobe Reader XI

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 15 Stepping 11, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
~ Total physical RAM (KB): 2068580
~ System Restore: Activé (Enable)
~ System drive C: has 33 GB free of 143 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: PC-DE-_
~ User Name: _
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 1s
~ Drive C: has 33 GB free of 143 GB (System)
~ Drive D: has 2 GB free of 9 GB

---\\ Recherche particulière de fichiers génériques (23) - 1s
[MD5.D07D4C3038F3578FFCE1C0237F2A1253] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2926592]
[MD5.4B555106290BD117334E9A08761C035A] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [44544]
[MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [96768]
[MD5.6788C8BBFD00EA99D6DA2AB5EA4F9A2C] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [1129472]
[MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Application d'ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [314368]
[MD5.95F5FF73B076576C41740F1A842B9B57] - (.Microsoft Corporation - DLL client de l'API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480]
[MD5.F5272A105F59A7B3B345D9D6D87DA7AD] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [273408]
[MD5.1F05B78AB91C9075565A9D8A4B880BC4] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [19944]
[MD5.7ADD03E75BEB9E6DD102C3081D29840A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [70144]
[MD5.6B4BFFB9BECD728097024276430DB314] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [67072]
[MD5.622C41A07CA7E6DD91770F50D532CB6C] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [75264]
[MD5.062452B7FFD68C8C042A6261FE8DFF4A] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [561152]
[MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [54784]
[MD5.8793643A67B42CEC66490B2A0CF92D68] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [100864]
[MD5.1E94971C4B446AB2290DEB71D01CF0C2] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [106496]
[MD5.ECD64230A59CBD93C85F1CD1CAB9F3F6] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [185856]
[MD5.2C1121F2B87E9A6B12485DF53CD848C7] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1082232]
[MD5.0FA9B5055484649D63C303FE404E5F4D] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [79360]
[MD5.A214ADBAF4CB47DD2728859EF31F26B0] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [76288]
[MD5.E8BD98D46F2ED77132BA927FCCB47D8B] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [242688]
[MD5.7B75299A4D201D6A6533603D6914AB04] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [66560]
[MD5.76B06EB8A01FC8624D699E7045303E54] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [72192]
[MD5.786DB5771F05EF300390399F626BF30A] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [224640]

---\\ Processus lancés (4) - 1s
[MD5.69DA2BB73AC426CDEEBDACC68438BA3D] - (.Apple, Inc. - Apple Mobile Device Service.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [110592] [PID.264]
[MD5.FB51E8E39E3FDB6757874653B743BE72] - (.ESET - ESET Service.) -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [1349576] [PID.276]
[MD5.107AFCBC31E25314E56B69EEC25885BD] - (.ESET - ESET Main GUI.) -- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [5088456] [PID.2356]
[MD5.A903E5C565A2677F3960E4AAB7B42280] - (.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files\TeamViewer\TeamViewer_Service.exe [5495056] [PID.2668]

---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (17) - 1s
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://apis.google.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://auth.gfx.ms/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://id.google.fr/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://login.live.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://sc.imp.live.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://ssl.gstatic.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://www.google.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://www.google.fr/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://www.gstatic.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://www.live.com/"
G2 - GCE: Extension [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Extension [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Extension [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (9) - 0s
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_17_0_0_190.dll
P2 - FPN: [HKLM] [@canon.com/MycameraPlugin] - (.CANON INC..) -- C:\Program Files\Canon\ZoomBrowser EX\Program\NPCIG.dll
P2 - FPN: [HKLM] [@divx.com/DivX Browser Plugin,version=1.0.0] - (.DivX,Inc..) -- C:\Users\_\Desktop\sylvain\divers\DivX\DivX Web Player\npdivx32.dll
P2 - FPN: [HKLM] [@divx.com/DivX Content Upload Plugin,version=1.0.0] - (.DivX,Inc..) -- C:\Users\_\Desktop\sylvain\divers\DivX\DivX Content Uploader\npUpload.dll
P2 - FPN: [HKLM] [@divx.com/DivX Player Plugin,version=1.0.0] - (.DivX,Inc..) -- C:\Users\_\Desktop\sylvain\divers\DivX\DivX Player\npDivxPlayerPlugin.dll
P2 - FPN: [HKLM] [@java.com/DTPlugin,version=11.45.2] - (.Oracle Corporation.) -- C:\Program Files\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=11.45.2] - (.Oracle Corporation.) -- C:\Program Files\Java\jre1.8.0_45\bin\plugin2\npjp2.dll
P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3502.0922] - (.Microsoft.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.2.1] - (.VideoLAN.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll

---\\ Opera, Démarrage,Recherche,Plugins (B0,B1,B2) (1) - 0s
B0 - SPO: C:\Users\_\AppData\Roaming\Opera\Opera\operaprefs.ini [_] http://search.myheritage.com/

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (12) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.yahoo.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.yahoo.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer, Proxy Management (R5) (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

---\\ Hosts file redirection (O1) (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (14433)

---\\ Browser Helper Object de navigateur (BHO) (O2) (3) - 0s
O2 - BHO: (no name) - {3049C3E9-B461-4BC5-8870-4C09146192CA} (Orphean)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_45\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_45\bin\jp2ssv.dll

---\\ Applications lancées au démarrage du sytème (O4) (12) - 0s
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe
O4 - HKLM\..\Run: [egui] . (.ESET - ESET Main GUI.) -- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
O4 - HKCU\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehtray.exe
O4 - HKCU\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\wmpnscfg.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe
O4 - HKUS\S-1-5-21-4235031345-433071517-2216195239-1000\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehtray.exe
O4 - HKUS\S-1-5-21-4235031345-433071517-2216195239-1000\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\wmpnscfg.exe

---\\ Modification Domaine/Adresses DNS (O17) (2) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1

---\\ Liste des services NT non Microsoft et non désactivés (O23) (8) - 1s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple, Inc. - Apple Mobile Device Service.) - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: ESET Service (ekrn) . (.ESET - ESET Service.) - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Google Update Service (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.Hewlett-Packard Company - SolutionsFrameworkService.) - C:\Program Files\HP\Common\HPSupportSolutionsFrameworkService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company - .) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: TeamViewer 10 (TeamViewer) . (.TeamViewer GmbH - TeamViewer 10.) - C:\Program Files\TeamViewer\TeamViewer_Service.exe

---\\ Enumère les données de BootExecute (BEX) (O34) (1) - 0s
O34 - HKLM BootExecute: (Partizan) (.Greatis Software - Partizan - First Bootwatch Anti-Rootkit.) -- C:\Windows\System32\Partizan.exe

---\\ Tâches planifiées en automatique (O39) (14) - 2s
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1052]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1056]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3854]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2764]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\CreateChoiceProcessTask [3150]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\GlaryInitialize 5 [3290]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3800]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4052]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\GU5SkipUAC [2950]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\RealUpgradeLogonTaskS-1-5-21-4235031345-433071517-2216195239-1000 [3176]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-4235031345-433071517-2216195239-1000 [3318]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{00D88E3B-9970-43A3-99BB-D8E209E429FD} [2882]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{36503E3D-7886-40C1-ABD5-8DB5A65604CE} [2940]

---\\ Logiciels installés (O42) (61) - 10s
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR
O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 17 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI
O42 - Logiciel: Adobe Shockwave Player 12.1 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player
O42 - Logiciel: Canon Utilities CameraWindow DC 8 - (.Canon Inc..) [HKLM] -- CameraWindowDC8
O42 - Logiciel: Canon Utilities CameraWindow - (.Canon Inc..) [HKLM] -- CameraWindowLauncher
O42 - Logiciel: CANON iMAGE GATEWAY Task for ZoomBrowser EX - (.Canon Inc..) [HKLM] -- CANON iMAGE GATEWAY Task
O42 - Logiciel: Canon Internet Library for ZoomBrowser EX - (.Canon Inc..) [HKLM] -- Canon Internet Library for ZoomBrowser EX
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
O42 - Logiciel: MyHeritage Family Tree Builder - (.MyHeritage.com.) [HKLM] -- Family Tree Builder
O42 - Logiciel: Finance2002 9.1.0.0 - (...) [HKLM] -- Finance2002_is1
O42 - Logiciel: Glary Utilities 5.28 - (.Glarysoft Ltd.) [HKLM] -- Glary Utilities 5
O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (...) [HKLM] -- HDMI
O42 - Logiciel: Modèles Météo - GFS - Version 3.0 - (.Sylvain Dupont.) [HKLM] -- Modèles Météo - GFS_is1
O42 - Logiciel: Canon MovieEdit Task for ZoomBrowser EX - (.Canon Inc..) [HKLM] -- MovieEditTask
O42 - Logiciel: Canon Utilities Movie Uploader for YouTube - (.Canon Inc..) [HKLM] -- MovieUploaderForYouTube
O42 - Logiciel: Canon Utilities MyCamera - (.Canon Inc..) [HKLM] -- MyCamera
O42 - Logiciel: Photo Notifier and Animation Creator - (.IncrediMail Ltd..) [HKLM] -- Photo Notifier and Animation Creator
O42 - Logiciel: Canon Utilities PhotoStitch - (.Canon Inc..) [HKLM] -- PhotoStitch
O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM] -- Picasa 3
O42 - Logiciel: PowerArchiver - (...) [HKLM] -- PowerArchiver
O42 - Logiciel: Intel(R) PRO Network Connections Drivers - (...) [HKLM] -- PROSet
O42 - Logiciel: Revo Uninstaller 1.95 - (.VS Revo Group.) [HKLM] -- Revo Uninstaller
O42 - Logiciel: TeamViewer 10 - (.TeamViewer.) [HKLM] -- TeamViewer
O42 - Logiciel: RegRun Reanimator - (.Greatis Software, LLC..) [HKLM] -- UnHackMe Update - Reanimator_is1
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player
O42 - Logiciel: Canon Utilities ZoomBrowser EX - (.Canon Inc..) [HKLM] -- ZoomBrowser EX
O42 - Logiciel: Canon ZoomBrowser EX Memory Card Utility - (.Canon Inc..) [HKLM] -- ZoomBrowser EX Memory Card Utility
O42 - Logiciel: PDFCreator - (.pdfforge.) [HKLM] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}
O42 - Logiciel: Recovery Center - (.SoftThinks.) [HKLM] -- {0F9B474C-B65A-427E-A3A6-9B7460ED14D9}
O42 - Logiciel: Skype™ 7.6 - (.Skype Technologies S.A..) [HKLM] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}
O42 - Logiciel: Java 8 Update 45 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218045F0}
O42 - Logiciel: Google Chrome - (.Google, Inc..) [HKLM] -- {2EC1270D-EBD9-335A-B0E4-45B5CB3E9AAC}
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {34927EBC-98D4-4D53-98BE-510DF5999F50}
O42 - Logiciel: Microsoft LifeCam - (.Microsoft Corporation.) [HKLM] -- {5FC7AB5C-61FC-42DF-A923-5139BCF10D42}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726}
O42 - Logiciel: Photo Notifier and Animation Creator - (.Nom de votre société.) [HKLM] -- {6B7F28D4-160E-40C6-B7C8-5EC6B9734DA7}
O42 - Logiciel: OpenOffice.org 3.4.1 - (.Apache Software Foundation.) [HKLM] -- {7DA1C06F-C913-46C7-8A0F-DA2CBA17EA1D}
O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1
O42 - Logiciel: Google Earth - (.Google.) [HKLM] -- {817750FA-EC6A-485D-9901-0683AE6FFDF1}
O42 - Logiciel: HPDiagnosticAlert - (.Microsoft.) [HKLM] -- {846B5DED-DC8C-4E1A-B5B4-9F5B39A0CACE}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Paint.NET v3.07 - (.Paint.NET Team.) [HKLM] -- {97B27D16-69D4-409C-B6B3-AA8FA52CCC3E}
O42 - Logiciel: Logiciel de base du périphérique HP ENVY 4500 series - (.Hewlett-Packard Co..) [HKLM] -- {A77C0CF4-F0E1-40B7-AA01-F32EAF94990F}
O42 - Logiciel: 32 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM] -- {A80FA752-C491-4ED9-ABF0-4278563160B2}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Adobe Reader XI (11.0.10) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AB0000000001}
O42 - Logiciel: Spelling Dictionaries Support For Adobe Reader 9 - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-5464-3428-900000000004}
O42 - Logiciel: OGA Notifier 2.0.0048.0 - (.Microsoft Corporation.) [HKLM] -- {B2544A03-10D0-4E5E-BA69-0362FFC20D18}
O42 - Logiciel: Microsoft Corporation - (.Microsoft Corporation.) [HKLM] -- {B3BC9DB1-0B0A-48B0-B86B-EA77CAA7F800}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {B5C209B1-8DDB-4642-A573-375B951514CB}
O42 - Logiciel: Skype Click to Call - (.Skype Technologies S.A..) [HKLM] -- {B6CF2967-C81E-40C0-9815-C05774FEF120}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {B74F042E-E1B9-4A5B-8D46-387BB172F0A4}
O42 - Logiciel: MSXML 4.0 SP2 (KB936181) - (.Microsoft Corporation.) [HKLM] -- {C04E32E0-0416-434D-AFB9-6969D703A9EF}
O42 - Logiciel: MSXML 4.0 SP2 (KB941833) - (.Microsoft Corporation.) [HKLM] -- {C523D256-313D-4866-B36A-F3DE528246EF}
O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {E0D51394-1D45-460A-B62D-383BC4F8B335}
O42 - Logiciel: Realtek High Definition Audio Driver - (...) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: HP Support Solutions Framework - (.Hewlett-Packard Company.) [HKLM] -- {FC3C2B77-6800-48C6-A15D-9D1031130C16}

---\\ HKCU & HKLM Software Keys (121) - 10s
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\AdwCleaner
HKLM\SOFTWARE\ahead
HKLM\SOFTWARE\AppDataLow
HKLM\SOFTWARE\Apple Computer, Inc.
HKLM\SOFTWARE\Apple Inc.
HKLM\SOFTWARE\AviSynth
HKLM\SOFTWARE\AVS4YOU
HKLM\SOFTWARE\BrowserChoice
HKLM\SOFTWARE\Canon
HKLM\SOFTWARE\Canon_Inc_IC
HKLM\SOFTWARE\DivX
HKLM\SOFTWARE\DivXNetworks
HKLM\SOFTWARE\ESET
HKLM\SOFTWARE\FRANCE TELECOM
HKLM\SOFTWARE\GlarySoft
HKLM\SOFTWARE\GNU
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\Greatis
HKLM\SOFTWARE\Hewlett-Packard
HKLM\SOFTWARE\HP
HKLM\SOFTWARE\ICE
HKLM\SOFTWARE\IM Providers
HKLM\SOFTWARE\InstallShield
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\Kodak
HKLM\SOFTWARE\LightScribe
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Malwarebytes Anti-Rootkit
HKLM\SOFTWARE\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\MidasHeurScanner
HKLM\SOFTWARE\Mindscape
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\MyHeritage.com
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\OpenOffice.org
HKLM\SOFTWARE\Paint.NET
HKLM\SOFTWARE\PDFCreator.net
HKLM\SOFTWARE\Photo Notifier and Animation Creator
HKLM\SOFTWARE\Piriform
HKLM\SOFTWARE\RealNetworks
HKLM\SOFTWARE\Realtek
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\Runscanner.net
HKLM\SOFTWARE\Safer Networking Limited
HKLM\SOFTWARE\Skype
HKLM\SOFTWARE\SoftThinks
HKLM\SOFTWARE\Sonic
HKLM\SOFTWARE\TeamViewer
HKLM\SOFTWARE\The Learning Company
HKLM\SOFTWARE\Thomson
HKLM\SOFTWARE\Trolltech
HKLM\SOFTWARE\VideoLAN
HKCU\SOFTWARE\AC3Filter
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Ahead
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\AVS4YOU
HKCU\SOFTWARE\Canneverbe Limited
HKCU\SOFTWARE\Canon
HKCU\SOFTWARE\Canon_Inc_IC
HKCU\SOFTWARE\CDDB
HKCU\SOFTWARE\DevNet
HKCU\SOFTWARE\DivX
HKCU\SOFTWARE\DivXNetworks
HKCU\SOFTWARE\EasyBits
HKCU\SOFTWARE\ESET
HKCU\SOFTWARE\Glarysoft
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Greatis
HKCU\SOFTWARE\Hewlett-Packard
HKCU\SOFTWARE\HP
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\IncrediMail
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\iProgress
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\Leadertech
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Malwarebytes Anti-Rootkit
HKCU\SOFTWARE\Malwarebytes' Anti-Malware
HKCU\SOFTWARE\MarineCat
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MyHeritage.com
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Novell
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\OpenOffice.org
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\Paint.NET
HKCU\SOFTWARE\ParisHiltonPlayer
HKCU\SOFTWARE\PDFCreator.net
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\POWERARC
HKCU\SOFTWARE\PowerArchiver
HKCU\SOFTWARE\RealNetworks
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\Regrun
HKCU\SOFTWARE\SampleView
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\SubSystems
HKCU\SOFTWARE\TeamViewer
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\Visan
HKCU\SOFTWARE\VSRevoGroup
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Aurigma
HKCU\SOFTWARE\AppDataLow\Google
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Adobe
HKCU\SOFTWARE\AppDataLow\Software\Google
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\Yahoo

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (243) - 9s
O43 - CFD: 2015/01/13 20:10:30 - [] D -- C:\Program Files\Adobe
O43 - CFD: 2007/12/25 01:04:52 - [] D -- C:\Program Files\Apple Software Update
O43 - CFD: 2011/03/25 16:41:31 - [] D -- C:\Program Files\AviSynth 2.5
O43 - CFD: 2011/03/25 16:49:07 - [0] D -- C:\Program Files\AVS4YOU
O43 - CFD: 2009/08/19 09:53:41 - [] D -- C:\Program Files\BitDefender
O43 - CFD: 2013/08/27 16:58:45 - [0] D -- C:\Program Files\bztarot
O43 - CFD: 2010/12/12 17:40:29 - [] D -- C:\Program Files\Canon
O43 - CFD: 2015/07/03 16:38:22 - [] D -- C:\Program Files\CCleaner
O43 - CFD: 2015/07/05 12:31:20 - [] D -- C:\Program Files\CDBurnerXP
O43 - CFD: 2013/08/27 16:59:09 - [] D -- C:\Program Files\CDex
O43 - CFD: 2015/07/03 16:44:55 - [] D -- C:\Program Files\Common Files
O43 - CFD: 2015/04/28 16:07:22 - [] D -- C:\Program Files\ESET
O43 - CFD: 2007/08/17 15:40:07 - [0] SHD -- C:\Program Files\Fichiers communs
O43 - CFD: 2015/07/06 14:47:29 - [] D -- C:\Program Files\Glary Utilities 5
O43 - CFD: 2015/07/06 14:52:22 - [] D -- C:\Program Files\Google
O43 - CFD: 2015/07/05 16:03:12 - [] D -- C:\Program Files\Greatis
O43 - CFD: 2015/04/29 11:44:43 - [] D -- C:\Program Files\Hewlett-Packard
O43 - CFD: 2015/07/05 12:57:28 - [] D -- C:\Program Files\HP
O43 - CFD: 2015/04/21 15:04:17 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 2015/06/10 11:33:53 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 2015/04/28 14:59:27 - [] D -- C:\Program Files\Java
O43 - CFD: 2015/01/14 10:26:11 - [0] D -- C:\Program Files\Malwarebytes' Anti-Malware
O43 - CFD: 2006/11/02 14:37:34 - [] D -- C:\Program Files\Microsoft Games
O43 - CFD: 2014/08/06 17:59:30 - [] D -- C:\Program Files\Microsoft LifeCam
O43 - CFD: 2011/07/19 19:29:20 - [] D -- C:\Program Files\Microsoft Office
O43 - CFD: 2015/05/23 18:45:17 - [] D -- C:\Program Files\Microsoft Silverlight
O43 - CFD: 2009/09/02 14:29:49 - [] D -- C:\Program Files\Microsoft Visual Studio
O43 - CFD: 2009/09/02 14:23:28 - [] D -- C:\Program Files\Microsoft Visual Studio 8
O43 - CFD: 2009/09/15 22:34:53 - [] D -- C:\Program Files\Microsoft Works
O43 - CFD: 2010/06/26 18:03:02 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 2013/05/01 18:19:11 - [] D -- C:\Program Files\Mindscape
O43 - CFD: 2010/08/12 18:43:43 - [] D -- C:\Program Files\Movie Maker
O43 - CFD: 2009/09/02 14:30:24 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 2007/08/23 09:21:03 - [0] D -- C:\Program Files\MSXML 4.0
O43 - CFD: 2008/10/08 21:03:01 - [] D -- C:\Program Files\NBCONS
O43 - CFD: 2008/10/09 13:17:45 - [] D -- C:\Program Files\NBPROF
O43 - CFD: 2007/08/17 15:31:45 - [] D -- C:\Program Files\Nero
O43 - CFD: 2011/10/27 19:43:35 - [] D -- C:\Program Files\Nvu
O43 - CFD: 2013/01/17 11:32:01 - [] D -- C:\Program Files\OpenOffice.org 2.1
O43 - CFD: 2013/01/17 11:32:34 - [] D -- C:\Program Files\OpenOffice.org 3
O43 - CFD: 2011/03/27 16:23:48 - [] D -- C:\Program Files\Opera
O43 - CFD: 2007/08/17 15:33:20 - [] D -- C:\Program Files\Paint.NET
O43 - CFD: 2015/07/05 13:49:18 - [] D -- C:\Program Files\PDFCreator
O43 - CFD: 2011/01/06 16:23:31 - [] D -- C:\Program Files\Photo Notifier and Animation Creator
O43 - CFD: 2009/04/25 16:52:29 - [] D -- C:\Program Files\PowerArchiver
O43 - CFD: 2007/12/25 01:06:10 - [] D -- C:\Program Files\QuickTime
O43 - CFD: 2015/07/03 16:45:01 - [] D -- C:\Program Files\Real
O43 - CFD: 2006/11/02 14:37:34 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 2015/07/04 16:29:13 - [] RD -- C:\Program Files\Skype
O43 - CFD: 2007/08/17 15:30:06 - [] D -- C:\Program Files\SoftChris
O43 - CFD: 2013/08/27 19:37:04 - [] D -- C:\Program Files\Spybot - Search & Destroy
O43 - CFD: 2015/07/04 16:45:26 - [] D -- C:\Program Files\TeamViewer
O43 - CFD: 2006/11/02 15:01:55 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 2011/06/16 21:08:10 - [] D -- C:\Program Files\VideoLAN
O43 - CFD: 2015/07/05 12:46:43 - [] D -- C:\Program Files\VS Revo Group
O43 - CFD: 2009/09/24 17:13:54 - [] D -- C:\Program Files\Windows Calendar
O43 - CFD: 2009/09/24 17:13:51 - [] D -- C:\Program Files\Windows Collaboration
O43 - CFD: 2009/09/24 17:13:45 - [] D -- C:\Program Files\Windows Defender
O43 - CFD: 2015/05/23 18:43:13 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 2012/04/11 22:52:54 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 2015/06/10 11:33:52 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 2007/08/17 15:40:07 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 2009/09/24 17:13:50 - [] D -- C:\Program Files\Windows Photo Gallery
O43 - CFD: 2009/11/18 08:11:07 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 2011/05/23 16:37:53 - [] D -- C:\Program Files\Windows Sidebar
O43 - CFD: 2007/12/11 16:50:43 - [0] D -- C:\Program Files\WindowsUpdate
O43 - CFD: 2008/04/22 14:09:25 - [] D -- C:\Program Files\WinZip
O43 - CFD: 2008/04/22 13:53:02 - [] D -- C:\Program Files\Zip
O43 - CFD: 2011/02/26 00:51:45 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2011/02/26 00:51:45 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2011/03/25 16:49:08 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVS4YOU
O43 - CFD: 2010/12/12 17:40:30 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
O43 - CFD: 2015/07/03 16:38:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 2015/04/12 18:54:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CDex
O43 - CFD: 2015/04/28 16:07:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
O43 - CFD: 2008/08/06 11:05:18 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Extras and Upgrades
O43 - CFD: 2015/04/12 18:54:21 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2015/07/05 13:31:49 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5
O43 - CFD: 2015/07/06 14:52:44 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2015/07/05 13:41:00 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
O43 - CFD: 2011/01/07 10:55:59 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IncrediMail
O43 - CFD: 2015/01/14 17:42:46 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 2007/08/17 15:30:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\La bureautique
O43 - CFD: 2015/07/05 13:41:02 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\La gravure
O43 - CFD: 2006/11/02 14:56:46 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2007/08/17 15:30:07 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mes Finances
O43 - CFD: 2014/08/06 18:00:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft LifeCam
O43 - CFD: 2013/01/17 12:02:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 2015/05/23 18:06:16 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 2013/05/01 18:19:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mindscape
O43 - CFD: 2007/08/24 16:39:16 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Modèles Météo - GFS
O43 - CFD: 2013/01/17 11:34:45 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.4.1
O43 - CFD: 2012/05/08 12:35:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pack_Pilotage
O43 - CFD: 2015/07/05 13:48:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator
O43 - CFD: 2009/03/01 20:53:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3
O43 - CFD: 2009/04/25 16:52:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerArchiver 2000
O43 - CFD: 2007/12/25 01:05:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
O43 - CFD: 2015/07/05 16:03:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reanimator
O43 - CFD: 2007/08/17 15:29:02 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recovery Center
O43 - CFD: 2014/10/03 09:26:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 2015/07/05 13:16:39 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2006/11/02 14:37:34 - [] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2015/07/03 16:42:58 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 2015/01/13 20:10:34 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2007/12/25 01:03:51 - [] D -- C:\ProgramData\Apple
O43 - CFD: 2007/12/25 01:06:58 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 2007/08/17 15:40:07 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2014/05/05 08:57:59 - [] D -- C:\ProgramData\ArcSoft
O43 - CFD: 2013/11/13 12:23:44 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 2011/03/25 16:04:07 - [] D -- C:\ProgramData\AVS4YOU
O43 - CFD: 2010/08/18 17:02:31 - [] D -- C:\ProgramData\BitDefender
O43 - CFD: 2007/08/17 15:40:07 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2015/07/05 12:32:06 - [] D -- C:\ProgramData\Canneverbe Limited
O43 - CFD: 2014/08/06 18:07:12 - [] D -- C:\ProgramData\DivX
O43 - CFD: 2007/08/17 15:40:07 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2011/12/27 13:39:42 - [0] D -- C:\ProgramData\eMule
O43 - CFD: 2015/04/28 16:07:22 - [] D -- C:\ProgramData\ESET
O43 - CFD: 2007/08/17 15:40:07 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 2015/07/05 13:38:50 - [] D -- C:\ProgramData\GlarySoft
O43 - CFD: 2015/04/29 11:32:34 - [] D -- C:\ProgramData\Google
O43 - CFD: 2007/08/22 14:20:37 - [] D -- C:\ProgramData\Hewlett-Packard
O43 - CFD: 2015/04/29 12:23:12 - [] D -- C:\ProgramData\HP
O43 - CFD: 2011/01/06 16:23:39 - [] D -- C:\ProgramData\IM
O43 - CFD: 2011/01/06 16:21:01 - [] D -- C:\ProgramData\IncrediMail
O43 - CFD: 2008/06/07 12:37:42 - [] D -- C:\ProgramData\Kodak
O43 - CFD: 2015/01/14 10:26:10 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 2015/01/14 11:36:18 - [0] D -- C:\ProgramData\Malwarebytes' Anti-Malware (portable)
O43 - CFD: 2007/08/17 15:40:07 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2015/04/28 15:03:09 - [] D -- C:\ProgramData\Microsoft
O43 - CFD: 2015/06/10 11:08:51 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 2007/08/17 15:40:07 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2015/01/13 17:54:01 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 2011/12/08 14:51:35 - [] D -- C:\ProgramData\MyHeritage
O43 - CFD: 2007/08/17 15:31:45 - [] D -- C:\ProgramData\Nero
O43 - CFD: 2009/10/05 13:28:03 - [] D -- C:\ProgramData\Office Genuine Advantage
O43 - CFD: 2015/04/28 14:59:51 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 2011/01/06 16:23:32 - [] D -- C:\ProgramData\Photo Notifier and Animation Creator
O43 - CFD: 2015/07/03 16:44:54 - [] D -- C:\ProgramData\Real
O43 - CFD: 2015/07/07 12:11:51 - [0] D -- C:\ProgramData\RegRun
O43 - CFD: 2015/01/14 13:02:52 - [] D -- C:\ProgramData\RogueKiller
O43 - CFD: 2015/07/04 16:29:04 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2013/08/27 16:54:44 - [] D -- C:\ProgramData\Spybot - Search & Destroy
O43 - CFD: 2015/01/13 17:59:14 - [] D -- C:\ProgramData\Sun
O43 - CFD: 2015/01/14 10:57:00 - [] D -- C:\ProgramData\SYKWMXaotwl
O43 - CFD: 2014/10/22 14:16:15 - [] D -- C:\ProgramData\Visan
O43 - CFD: 2009/06/25 08:32:30 - [] D -- C:\ProgramData\WEBREG
O43 - CFD: 2014/12/28 13:40:22 - [] D -- C:\ProgramData\Western Digital
O43 - CFD: 2011/04/15 09:45:03 - [] D -- C:\ProgramData\WindowsSearch
O43 - CFD: 2008/04/22 14:09:24 - [0] D -- C:\ProgramData\WinZip
O43 - CFD: 2010/12/12 17:39:03 - [0] D -- C:\ProgramData\ZoomBrowser
O43 - CFD: 2015/01/13 20:10:52 - [] D -- C:\Program Files\Common Files\Adobe
O43 - CFD: 2015/07/03 16:31:48 - [] D -- C:\Program Files\Common Files\Adobe AIR
O43 - CFD: 2015/07/05 12:35:53 - [] D -- C:\Program Files\Common Files\Ahead
O43 - CFD: 2007/12/25 01:03:52 - [] D -- C:\Program Files\Common Files\Apple
O43 - CFD: 2011/03/25 16:49:09 - [] D -- C:\Program Files\Common Files\AVSMedia
O43 - CFD: 2010/08/18 17:02:31 - [] D -- C:\Program Files\Common Files\BitDefender
O43 - CFD: 2010/12/12 17:37:39 - [] D -- C:\Program Files\Common Files\Canon
O43 - CFD: 2014/05/14 23:06:50 - [] D -- C:\Program Files\Common Files\DESIGNER
O43 - CFD: 2007/08/17 16:29:29 - [] D -- C:\Program Files\Common Files\Hewlett-Packard
O43 - CFD: 2013/01/17 11:09:16 - [] D -- C:\Program Files\Common Files\HP
O43 - CFD: 2013/07/01 19:09:33 - [] D -- C:\Program Files\Common Files\InstallShield
O43 - CFD: 2007/08/17 15:32:48 - [] D -- C:\Program Files\Common Files\LightScribe
O43 - CFD: 2015/04/28 15:01:58 - [] D -- C:\Program Files\Common Files\microsoft shared
O43 - CFD: 2007/12/10 17:48:26 - [] D -- C:\Program Files\Common Files\PX Storage Engine
O43 - CFD: 2006/11/02 13:18:33 - [] D -- C:\Program Files\Common Files\Services
O43 - CFD: 2014/10/03 09:26:24 - [] D -- C:\Program Files\Common Files\Skype
O43 - CFD: 2006/11/02 13:18:33 - [] D -- C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 2012/07/20 00:50:05 - [] D -- C:\Program Files\Common Files\System
O43 - CFD: 2014/08/06 18:08:20 - [] D -- C:\Program Files\Common Files\Windows Live
O43 - CFD: 2015/01/13 17:54:25 - [] D -- C:\Users\_\AppData\Roaming\Adobe
O43 - CFD: 2015/07/05 12:35:01 - [] D -- C:\Users\_\AppData\Roaming\Ahead
O43 - CFD: 2007/12/25 01:08:01 - [] D -- C:\Users\_\AppData\Roaming\Apple Computer
O43 - CFD: 2013/08/18 17:15:08 - [0] D -- C:\Users\_\AppData\Roaming\ARA
O43 - CFD: 2014/05/05 09:12:28 - [] D -- C:\Users\_\AppData\Roaming\ArcSoft
O43 - CFD: 2011/03/25 16:04:14 - [] D -- C:\Users\_\AppData\Roaming\AVS4YOU
O43 - CFD: 2009/08/19 09:55:30 - [] D -- C:\Users\_\AppData\Roaming\BitDefender
O43 - CFD: 2015/07/05 12:31:20 - [] D -- C:\Users\_\AppData\Roaming\Canneverbe Limited
O43 - CFD: 2010/12/12 17:48:54 - [] D -- C:\Users\_\AppData\Roaming\CANON INC
O43 - CFD: 2015/04/12 18:45:23 - [0] D -- C:\Users\_\AppData\Roaming\DiskDefrag
O43 - CFD: 2009/09/27 11:09:25 - [] D -- C:\Users\_\AppData\Roaming\DivX
O43 - CFD: 2007/11/10 19:46:30 - [] D -- C:\Users\_\AppData\Roaming\eMule
O43 - CFD: 2015/07/05 13:31:38 - [] D -- C:\Users\_\AppData\Roaming\GlarySoft
O43 - CFD: 2008/06/03 21:54:14 - [] D -- C:\Users\_\AppData\Roaming\Google
O43 - CFD: 2008/09/02 07:56:06 - [] D -- C:\Users\_\AppData\Roaming\HP
O43 - CFD: 2015/04/28 15:27:54 - [] D -- C:\Users\_\AppData\Roaming\HpUpdate
O43 - CFD: 2011/01/11 19:49:25 - [] D -- C:\Users\_\AppData\Roaming\Icones
O43 - CFD: 2007/08/17 15:43:36 - [] D -- C:\Users\_\AppData\Roaming\Identities
O43 - CFD: 2013/01/11 12:43:23 - [] D -- C:\Users\_\AppData\Roaming\Image Zone Express
O43 - CFD: 2011/01/29 19:36:48 - [] D -- C:\Users\_\AppData\Roaming\Leadertech
O43 - CFD: 2007/08/22 16:33:13 - [] D -- C:\Users\_\AppData\Roaming\Macromedia
O43 - CFD: 2015/01/14 10:26:15 - [0] D -- C:\Users\_\AppData\Roaming\Malwarebytes
O43 - CFD: 2006/11/02 14:37:34 - [0] D -- C:\Users\_\AppData\Roaming\Media Center Programs
O43 - CFD: 2015/04/13 16:29:57 - [] SD -- C:\Users\_\AppData\Roaming\Microsoft
O43 - CFD: 2007/08/22 14:36:55 - [0] D -- C:\Users\_\AppData\Roaming\Microsoft Web Folders
O43 - CFD: 2015/01/14 17:59:39 - [] D -- C:\Users\_\AppData\Roaming\Mozilla
O43 - CFD: 2011/12/08 15:02:45 - [] D -- C:\Users\_\AppData\Roaming\MyHeritage
O43 - CFD: 2007/12/11 17:17:58 - [] D -- C:\Users\_\AppData\Roaming\Nvu
O43 - CFD: 2013/01/17 18:46:54 - [] D -- C:\Users\_\AppData\Roaming\OpenOffice.org
O43 - CFD: 2013/01/11 16:09:54 - [] D -- C:\Users\_\AppData\Roaming\OpenOffice.org2
O43 - CFD: 2011/03/27 14:21:46 - [] D -- C:\Users\_\AppData\Roaming\Opera
O43 - CFD: 2011/09/22 10:58:07 - [] D -- C:\Users\_\AppData\Roaming\Printer Info Cache
O43 - CFD: 2015/07/03 16:45:09 - [] D -- C:\Users\_\AppData\Roaming\Real
O43 - CFD: 2007/08/17 15:43:22 - [0] D -- C:\Users\_\AppData\Roaming\SampleView
O43 - CFD: 2015/07/05 13:07:08 - [] D -- C:\Users\_\AppData\Roaming\Skype
O43 - CFD: 2012/04/29 12:38:53 - [] D -- C:\Users\_\AppData\Roaming\skypePM
O43 - CFD: 2015/07/04 15:41:47 - [] D -- C:\Users\_\AppData\Roaming\TeamViewer
O43 - CFD: 2011/12/08 14:47:39 - [0] D -- C:\Users\_\AppData\Roaming\The Complete Genealogy Reporter - FTB
O43 - CFD: 2012/11/21 13:48:39 - [] D -- C:\Users\_\AppData\Roaming\TP
O43 - CFD: 2013/04/21 13:54:44 - [] D -- C:\Users\_\AppData\Roaming\U3
O43 - CFD: 2014/11/10 19:34:08 - [] D -- C:\Users\_\AppData\Roaming\vlc
O43 - CFD: 2015/07/08 11:37:41 - [] D -- C:\Users\_\AppData\Roaming\ZHP
O43 - CFD: 2013/02/26 12:14:59 - [0] D -- C:\Users\_\AppData\Roaming\ZoomBrowser EX
O43 - CFD: 2015/01/14 18:40:42 - [] D -- C:\Users\_\AppData\Local\Adobe
O43 - CFD: 2007/10/19 20:12:45 - [] D -- C:\Users\_\AppData\Local\Ahead
O43 - CFD: 2007/12/25 01:04:53 - [] D -- C:\Users\_\AppData\Local\Apple
O43 - CFD: 2010/06/22 18:03:11 - [] D -- C:\Users\_\AppData\Local\Apple Computer
O43 - CFD: 2007/08/17 15:43:16 - [0] SHD -- C:\Users\_\AppData\Local\Application Data
O43 - CFD: 2015/07/05 12:35:07 - [] D -- C:\Users\_\AppData\Local\CrashDumps
O43 - CFD: 2011/09/13 16:06:52 - [] HD -- C:\Users\_\AppData\Local\Downloaded PROGRESSION Files
O43 - CFD: 2015/07/05 13:48:49 - [] D -- C:\Users\_\AppData\Local\ESET
O43 - CFD: 2015/04/29 11:32:34 - [] D -- C:\Users\_\AppData\Local\Google
O43 - CFD: 2007/08/17 15:43:16 - [0] SHD -- C:\Users\_\AppData\Local\Historique
O43 - CFD: 2014/10/22 14:16:28 - [] D -- C:\Users\_\AppData\Local\HP
O43 - CFD: 2011/01/06 16:25:48 - [] D -- C:\Users\_\AppData\Local\IM
O43 - CFD: 2015/01/14 18:40:46 - [] D -- C:\Users\_\AppData\Local\Macromedia
O43 - CFD: 2015/04/12 18:32:06 - [] D -- C:\Users\_\AppData\Local\Microsoft
O43 - CFD: 2011/07/10 14:25:26 - [] D -- C:\Users\_\AppData\Local\Microsoft Games
O43 - CFD: 2011/09/17 17:29:15 - [] D -- C:\Users\_\AppData\Local\Microsoft Help
O43 - CFD: 2009/04/13 16:38:23 - [] D -- C:\Users\_\AppData\Local\Mozilla
O43 - CFD: 2011/03/27 14:21:46 - [] D -- C:\Users\_\AppData\Local\Opera
O43 - CFD: 2015/07/05 13:49:43 - [0] D -- C:\Users\_\AppData\Local\PDFCreator
O43 - CFD: 2009/09/17 14:40:30 - [] D -- C:\Users\_\AppData\Local\Runscanner.net
O43 - CFD: 2014/03/26 08:56:21 - [] D -- C:\Users\_\AppData\Local\Skype
O43 - CFD: 2015/07/08 11:37:33 - [] D -- C:\Users\_\AppData\Local\Temp
O43 - CFD: 2007/08/17 15:43:16 - [0] SHD -- C:\Users\_\AppData\Local\Temporary Internet Files
O43 - CFD: 2007/09/01 16:17:40 - [] D -- C:\Users\_\AppData\Local\VirtualStore
O43 - CFD: 2015/04/13 18:03:47 - [] D -- C:\Users\_\AppData\Local\Windows Live
O43 - CFD: 2007/11/23 19:13:31 - [] RD -- C:\Users\_\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2007/08/17 15:43:51 - [] RD -- C:\Users\_\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2006/11/02 14:50:41 - [] RD -- C:\Users\_\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2011/12/08 14:47:47 - [] D -- C:\Users\_\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyHeritage.com
O43 - CFD: 2015/07/05 12:46:44 - [] D -- C:\Users\_\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
O43 - CFD: 2015/07/05 13:16:39 - [] RD -- C:\Users\_\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup

---\\ Enumération des clés de registre StartupReg (SMSR) (O53) (10) - 1s
O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe
O53 - SMSR:HKLM\...\startupreg\Family Tree Builder Update [Key] . (.MyHeritage - MyHeritage Family Tree Builder check for up.) -- C:\Users\_\Nouveau dossier\MyHeritage\Bin\FTBCheckUpdates.exe
O53 - SMSR:HKLM\...\startupreg\GUDelayStartup [Key] . (.Glarysoft Ltd - Glary Utilities StartupManager.) -- C:\Program Files\Glary Utilities 5\StartupManager.exe
O53 - SMSR:HKLM\...\startupreg\HP Software Update [Key] . (.Hewlett-Packard Co. - Hewlett-Packard Product Assistant.) -- C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O53 - SMSR:HKLM\...\startupreg\LifeCam [Key] . (.Microsoft Corporation - LifeExp.exe.) -- C:\Program Files\Microsoft LifeCam\LifeExp.exe
O53 - SMSR:HKLM\...\startupreg\QuickTime Task [Key] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe
O53 - SMSR:HKLM\...\startupreg\RtHDVCpl [Key] . (.Realtek Semiconductor - HD Audio Control Panel.) -- RtHDVCpl.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\VX3000 [Key] . (.Microsoft Corporation - Microsoft LifeCam Device Application.) -- C:\Windows\vVX3000.exe
O53 - SMSR:HKLM\...\startupreg\Windows Defender [Key] . (...) -- %ProgramFiles%\Windows Defender\MSASCui.exe (.not file.)

---\\ Liste des pilotes du système (SDL) (O58) (75) - 72s
O58 - SDL:2006/11/02 11:51:38 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [420968]
O58 - SDL:2006/11/02 11:51:32 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297576]
O58 - SDL:2006/11/02 11:50:35 A . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) -- C:\Windows\System32\drivers\adpu160m.sys [98408]
O58 - SDL:2006/11/02 11:51:00 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [147048]
O58 - SDL:2006/11/02 11:49:20 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14952]
O58 - SDL:2006/11/02 11:50:09 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [67688]
O58 - SDL:2006/11/02 11:50:10 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [67688]
O58 - SDL:2006/11/02 10:24:45 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568]
O58 - SDL:2006/11/02 10:24:46 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248]
O58 - SDL:2006/11/02 10:25:24 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [71808]
O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336]
O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160]
O58 - SDL:2006/11/02 10:24:47 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904]
O58 - SDL:2006/10/05 04:42:42 N . (.Sonic Solutions - CDR4 CD and DVD Place Holder Driver (see Px.) -- C:\Windows\System32\drivers\cdr4_xp.sys [2432]
O58 - SDL:2006/10/05 04:42:42 N . (.Sonic Solutions - CDRAL Place Holder Driver (see PxHelp).) -- C:\Windows\System32\drivers\cdralw2k.sys [2560]
O58 - SDL:2006/11/02 11:49:28 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [16488]
O58 - SDL:2006/11/02 11:50:11 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [71272]
O58 - SDL:2007/04/13 13:22:56 A . (.Intel Corporation - Intel(R) PRO/1000 Adapter NDIS 6 deserializ.) -- C:\Windows\System32\drivers\e1e6032.sys [228224]
O58 - SDL:2006/11/02 09:30:54 A . (.Intel Corporation - Intel(R) PRO/1000 Adapter NDIS 6 deserializ.) -- C:\Windows\System32\drivers\E1G60I32.sys [117760]
O58 - SDL:2015/03/10 17:24:42 A . (.ESET - Amon monitor.) -- C:\Windows\System32\drivers\eamonm.sys [193464]
O58 - SDL:2015/03/10 17:24:42 A . (.ESET - ESET Helper driver.) -- C:\Windows\System32\drivers\ehdrv.sys [135808]
O58 - SDL:2006/11/02 11:51:34 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [316520]
O58 - SDL:2015/03/10 17:24:42 A . (.ESET - ESET Personal Firewall driver.) -- C:\Windows\System32\drivers\epfwwfpr.sys [123424]
O58 - SDL:2015/07/05 13:31:41 A . (.Glarysoft Ltd - The driver for the Startup Manager tool.) -- C:\Windows\System32\drivers\GUBootStartup.sys [17472]
O58 - SDL:2007/03/13 13:05:30 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECI.sys [44672]
O58 - SDL:2006/11/02 11:50:10 A . (.Hewlett-Packard Company - Smart Array Storport Driver.) -- C:\Windows\System32\drivers\HpCISSs.sys [37480]
O58 - SDL:2006/11/02 11:51:25 A . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) -- C:\Windows\System32\drivers\iaStorV.sys [232040]
O58 - SDL:2008/02/11 19:36:10 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [2302976]
O58 - SDL:2006/11/02 11:50:17 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41576]
O58 - SDL:2006/11/02 11:50:07 A . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\System32\drivers\iteatapi.sys [35944]
O58 - SDL:2006/11/02 11:50:09 A . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\System32\drivers\iteraid.sys [35944]
O58 - SDL:2006/11/02 11:50:04 A . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [65640]
O58 - SDL:2006/11/02 11:50:05 A . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [65640]
O58 - SDL:2006/11/02 11:50:10 A . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [65640]
O58 - SDL:2015/01/14 11:33:52 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [74456]
O58 - SDL:2015/01/14 12:19:22 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [104664]
O58 - SDL:2006/11/02 11:49:53 A . (.LSI Logic Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [28776]
O58 - SDL:2006/11/02 11:49:59 A . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\Mraid35x.sys [33384]
O58 - SDL:2006/11/02 11:50:19 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [45160]
O58 - SDL:2006/11/02 09:36:50 A . (.N-trig Innovative Technologies - Pilote intégré de digitalisateur de tablett.) -- C:\Windows\System32\drivers\ntrigdigi.sys [20608]
O58 - SDL:2006/10/14 05:04:33 A . (.NVIDIA Corporation - NVIDIA Compatible Windows 2000 Miniport Dri.) -- C:\Windows\System32\drivers\nvlddmkm.sys [4422560]
O58 - SDL:2006/11/02 11:50:24 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [88680]
O58 - SDL:2006/11/02 11:50:13 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [40040]
O58 - SDL:2008/11/20 21:19:06 A . (.Sonic Solutions - Px Engine Device Driver for Windows 2000/XP.) -- C:\Windows\System32\drivers\pxhelp20.sys [43872]
O58 - SDL:2006/11/02 11:51:45 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [900712]
O58 - SDL:2006/11/02 11:50:35 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106088]
O58 - SDL:2007/04/10 19:05:38 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [1764960]
O58 - SDL:2006/11/02 08:37:21 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480]
O58 - SDL:2006/11/02 11:50:10 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [38504]
O58 - SDL:2006/11/02 11:50:16 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [71784]
O58 - SDL:2006/11/02 11:50:05 A . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) -- C:\Windows\System32\drivers\symc8xx.sys [35944]
O58 - SDL:2006/11/02 11:49:56 A . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_hi.sys [31848]
O58 - SDL:2006/11/02 11:50:03 A . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_u3.sys [34920]
O58 - SDL:2015/04/28 16:20:39 A . (...) -- C:\Windows\System32\drivers\TrueSight.sys [34808]
O58 - SDL:2006/11/02 11:51:25 A . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\System32\drivers\uliahci.sys [235112]
O58 - SDL:2006/11/02 11:50:35 A . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win200.) -- C:\Windows\System32\drivers\ulsata.sys [98408]
O58 - SDL:2006/11/02 11:50:45 A . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\System32\drivers\ulsata2.sys [115816]
O58 - SDL:2007/10/31 15:09:14 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl.sys [30464]
O58 - SDL:2006/11/02 11:49:30 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17512]
O58 - SDL:2006/11/02 11:50:41 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR X86-32.) -- C:\Windows\System32\drivers\vsmraid.sys [112232]
O58 - SDL:2006/11/02 09:09:42 A . (...) -- C:\Windows\System32\ANSI.SYS [9029]
O58 - SDL:2006/11/02 09:09:45 A . (...) -- C:\Windows\System32\country.sys [27097]
O58 - SDL:2006/11/02 09:09:41 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768]
O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEY01.SYS [42809]
O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537]
O58 - SDL:2006/11/02 09:09:29 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866]
O58 - SDL:2006/11/02 09:09:35 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146]
O58 - SDL:2006/11/02 09:09:38 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370]
O58 - SDL:2006/11/02 09:09:40 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274]
O58 - SDL:2006/11/02 09:09:31 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146]
O58 - SDL:2006/11/02 09:09:20 A . (...) -- C:\Windows\System32\NTIO.SYS [33952]
O58 - SDL:2006/11/02 09:09:23 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672]
O58 - SDL:2006/11/02 09:09:24 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776]
O58 - SDL:2006/11/02 09:09:26 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536]
O58 - SDL:2006/11/02 09:09:22 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (1) - 35s
O61 - LFC: 2015/07/08 11:36:53 A . (..) -- C:\Users\_\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849]

---\\ Associations Shell Spawning (O67) (9) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\wscript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (SMI) (O68) (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe

---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (4) - 4s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {1BAE20C9-4B82-4458-BF11-553E7AA5456C} - (Flickr) - http://www.flickr.com/
O69 - SBI: SearchScopes [HKCU] {8D93B5DC-B4DF-4608-A6F3-0339A1D96568} - (Yahoo!) - http://fr.search.yahoo.com/
O69 - SBI: SearchScopes [HKCU] {96C4CEDA-CB13-448E-9B1E-580831E0A4DF} - (eBay) - http://rover.ebay.com/

---\\ Enumère les services démarrés par Svchost (SSS) (O83) (31) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [24576]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [62976]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [125952]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [576512]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [444928]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [316928]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d'accès distant.) -- C:\Windows\System32\rasmans.dll [262144]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [68608]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [47104]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\Windows\System32\ipnathlp.dll [288256]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242688]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes Termi.) -- C:\Windows\System32\termsrv.dll [449536]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1933848]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [758784]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [200704]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [19968]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [33280]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [111616]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [45056]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [153600]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [57344]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [162304]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [601600]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service de configuration des services Termi.) -- C:\Windows\System32\SessEnv.dll [84992]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [81920]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [68096]

---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) (12) - 28s
SR - Auto [2014/12/03 08:31:16] [ 81088] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
SS - Demand [2015/07/03 16:36:06] [ 268976] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe
SR - Auto [2007/10/31 15:09:16] [ 110592] Apple Mobile Device (Apple Mobile Device) . (.Apple, Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
SR - Auto [2015/01/28 14:08:58] [ 1349576] ESET Service (ekrn) . (.ESET.) - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
SR - Auto [2014/10/22 14:40:23] [ 107912] Google Update Service (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - Demand [2014/10/22 14:40:23] [ 107912] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - Demand [2014/11/20 09:16:37] [ 194032] Google Software Updater (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
SR - Auto [2015/03/28 12:58:42] [ 89840] HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.Hewlett-Packard Company.) - C:\Program Files\HP\Common\HPSupportSolutionsFrameworkService.exe
SS - Demand [2005/11/14 01:06:04] [ 69632] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
SR - Auto [2006/10/19 13:52:24] [ 61440] LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
SS - Auto [2015/06/03 16:42:38] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe
SR - Auto [2015/06/18 12:55:23] [ 5495056] TeamViewer 10 (TeamViewer) . (.TeamViewer GmbH.) - C:\Program Files\TeamViewer\TeamViewer_Service.exe

---\\ Scan Additionnel (O88) (1) - 0s
~ Aucun élément malicieux trouvé.

---\\ Récapitulatif des détections trouvées sur votre station (1) - 0s
~ Aucun élément malicieux trouvé.

~ End of the scan, 46500 items in 180 seconds (741)(0)()

Publicité


Signaler le contenu de ce document

Publicité