cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.9.14.141 Par Nicolas Coolman (2015/09/12)
~ Démarré par jp (Administrator) (2015/09/16 16:01:53)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Documents and Settings\jp\Bureau\ZHPDiag.txt
~ Rapport: C:\Documents and Settings\jp\Application Data\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
Windows XP, 32-bit Service Pack 3 (Build 2600)

---\\ Navigateurs Internet (1) - 0s
MSIE: Internet Explorer v6.0.2900.5512

---\\ Informations sur les produits Windows (3) - 0s
Windows Automatic Updates : KO
Windows Activation Technologies : KO
Windows Genuine Advantage : OK

---\\ Logiciels de protection (2) - 1s
Avira Antivirus v15.0.12.420
Malwarebytes Anti-Malware version 1.75.0.1300

---\\ Surveillance de Logiciels (1) - 2s
Adobe Flash Player 18 NPAPI

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 42 Stepping 7, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 3639.272 MB (70% free)
~ System Restore: Désactivé (Disabled)
~ System drive C: has 446 GB free of 476 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: BUREAU
~ User Name: jp
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 446 GB free of 476 GB (System)
~ Drive E: has 458 GB free of 476 GB

---\\ Etat du Centre de Sécurité Windows (9) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (23) - 0s
[MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [1037824] ©
[MD5.93AD0B78C7357A05F50E594EC7C22300] - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) () -- C:\WINDOWS\System32\rundll32.exe [33792] ©
[MD5.5F6CAF8B9739B88F5163DD4B42D1BF83] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\WINDOWS\System32\wininet.dll [672768] ©
[MD5.DD73D6B9F6B4CB630CF35B438B540174] - (.Microsoft Corporation - Application d'ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [512000] ©
[MD5.D76A076ADB74F8132924E498D63123A2] - (.Microsoft Corporation - DNS Client API DLL.) () -- C:\WINDOWS\System32\dnsapi.dll [149504] ©
[MD5.1E44BC1E83D8FD2305F8D452DB109CF9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [138496] ©
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] - (.Microsoft Corporation - IDE/ATAPI Port Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [96512] ©
[MD5.C885B02847F5D2FD45A24E219ED93B32] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [63744] ©
[MD5.1F4260CC5B42272D71F79E570A27A4FE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [62976] ©
[MD5.31F923EB2170FC172C81ABDA0045D18C] - (.Microsoft Corporation - Pilote de cryptographie FIPS.) () -- C:\WINDOWS\System32\drivers\Fips.sys [44672] ©
[MD5.573C7D0A32852B48F3058CFD8026F511] - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [144384]
[MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [54144] ©
[MD5.083A052659F5310DD8B6A6CB05EDCF8E] - (.Microsoft Corporation - IMAPI Kernel Driver.) () -- C:\WINDOWS\System32\drivers\Imapi.sys [42112] ©
[MD5.CC748EA12C6EFFDE940EE98098BF96BB] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [152832] ©
[MD5.23C74D75E36E7158768DD63D92789A91] - (.Microsoft Corporation - IPSec Driver.) () -- C:\WINDOWS\System32\drivers\IPSec.sys [75264] ©
[MD5.7D304A5EB4344EBEEAB53A2FE3FFB9F0] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [456320] ©
[MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [162816] ©
[MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - (.Microsoft Corporation - NT File System Driver.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [574976] ©
[MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [80384] ©
[MD5.11B4A627BC9614B885C4969BFA5FF8A6] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [51328] ©
[MD5.15CABD0F7C00C47C70124907916AF3F1] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [196224] ©
[MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) () -- C:\WINDOWS\System32\drivers\redbook.sys [58752] ©
[MD5.46DE1126684369BACE4849E4FC8C43CA] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [53376] ©

---\\ Processus lancés (12) - 1s
[MD5.E20B4F23EB153635D67944F63454EC84] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe [461672] [PID.1372] ©
[MD5.E20B4F23EB153635D67944F63454EC84] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe [461672] [PID.1884] ©
[MD5.F115AF58ABE5605D7D709CBFBD83F418] - (.© 2000-2005 Protexis Inc. - nTitles PSIService.) -- C:\WINDOWS\system32\PSIService.exe [177704] [PID.156]
[MD5.543A4EF0923BF70D126625B034EF25AF] - (.Protexis Inc. - PsiService PsiService.) -- C:\Program Files\Fichiers communs\Protexis\License Service\PsiService_2.exe [189728] [PID.372] ©
[MD5.27F8A7A78773427E5D931628F89D6839] - (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [782008] [PID.1160] ©
[MD5.918FA19A1D7CEB6D5CDB3887AA0860FA] - (...) -- C:\Program Files\Ashampoo\Ashampoo FireWall FREE\FireWall.exe [3251800] [PID.1180]
[MD5.21C640C0579CCE82AD8EB14FF28C0DD8] - (.QFX Software Corporation - KeyScrambler.) -- C:\Program Files\KeyScrambler\keyscrambler.exe [509216] [PID.1340] ©
[MD5.8091B4F05DCA44A2D4EA3FEEE71E61D4] - (.Stoic Joker's Network - T-Clock 2010 - System Tray Clock Utility.) -- C:\Divers\T-Clock 2010 (build X - Release to DC)\Win32\Clock.exe [243200] [PID.1560]
[MD5.C063DA6EB1E91722611EE1ACE9A7DE96] - (.Avira Operations GmbH & Co. KG - AntiVir shadow copy service.) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe [434368] [PID.124] ©
[MD5.E8BB6E0B457DEB8B5182BD4CFDDE3551] - (.Mozilla Corporation - Thunderbird.) -- C:\Program Files\Mozilla Thunderbird\thunderbird.exe [491688] [PID.2496] ©
[MD5.05299546F243159CB8A42906ACB219A8] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [377000] [PID.3352] ©
[MD5.018B44D6E41ABDD08403E6B9EC3575B3] - (.Nicolas Coolman - ZHPDiag.) -- C:\Documents and Settings\jp\Application Data\ZHP\ZHPDiag3.exe [1929728] [PID.3868] ©

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (34) - 1s
M0 - MFSP: prefs.js [jp - dmjwye3n.default] http://www.orange.fr/portail
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\Plugins\WMP Firefox Plugin License.rtf
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\Plugins\WMP Firefox Plugin RelNotes.txt
P2 - EXT FILE: (...) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\adblockpopups@jessehakanen.net.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\CookiesIE@yahoo.com.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\CSTBB@NArisT2_Noia4dev.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\jid1-JcGokIiQyjoBAQ@jetpack.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\jid1-KKzOGWgsW3Ao4Q@jetpack.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\s3download@statusbar.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\savedpasswordeditor@daniel.dawson.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\smallnavbar@mozilla.com.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\smalltabs@view.co.uk.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\status4evar@caligonstudios.com.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\tabsonbottom@piro.sakura.ne.jp.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\use-document-colors-fonts-single@codefisher.org.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\VacuumPlacesImproved@lultimouomo-gmail.com.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\{03B08592-E5B4-45ff-A0BE-C1D975458688}.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\{097d3191-e6fa-4728-9826-b533d755359d}.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\{4568ed01-8341-4961-b3d5-98ab068ce4c0}.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\{7d575baa-b543-11dc-8314-0800200c9a66}.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\{88c7b321-2eb8-11da-8cd6-0800200c9a66}.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\{B17C1C5A-04B1-11DB-9804-B622A1EF5492}.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\{F8A55C97-3DB6-4961-A81D-0DE0080E53CB}.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\{FBFB7597-9E32-46b4-A500-8B6B0412777F}.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\{fe272bd1-5f76-4ea4-8501-a05d35d823fc}.xpi
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ©
P2 - EXT: (.Olivier R. - Dictionnaires français.) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\fr-dicollecte@dictionaries.addons.mozilla.org
P2 - EXT: (.escription>Nils Maier - MinimizeToTray revived (MinTrayR).) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\mintrayr@tn123.ath.cx
P2 - EXT: (.Shivanand Sharma - ColorfulTabs.) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\{0545b830-f0aa-4d7e-8820-50a4629a56fe}
P2 - EXT: (.Manuel Reimer - PrefBar.) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\{8A6C82A1-F6C9-481a-AAE7-C96444C9A754}
P2 - EXT: (.Baris Derin - YouTube Flash Video Player.) -- C:\Documents and Settings\jp\Application Data\Mozilla\Firefox\Profiles\dmjwye3n.default\extensions\{f3bd3dd2-2888-44c5-91a2-2caeb33fb898}
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_18_0_0_232.dll ©

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (7) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer,Proxy Management (5) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\System32\Userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (20)

---\\ Browser Helper Object de navigateur (BHO) (2) - 0s
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll ©
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll ©

---\\ Internet Explorer, Barre d'outil (1) - 0s
O3 - Toolbar: 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{710EB7A1-45ED-11D0-924A-0020AFC7AC4D} . (...) -- (.not file.)

---\\ Applications lancées au démarrage du système (3) - 0s
O4 - HKLM\..\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe ©
O4 - HKLM\..\Run: [Ashampoo FireWall] . (...) -- C:\Program Files\Ashampoo\Ashampoo FireWall FREE\FireWall.exe
O4 - HKLM\..\Run: [KeyScrambler] . (.QFX Software Corporation - KeyScrambler.) -- C:\Program Files\KeyScrambler\keyscrambler.exe ©

---\\ Winsock hijacker (Layered Service Provider) (6) - 0s
O10 - WLSP:\Catalog_Entries\000000000001\Winsock LSP File . (...) -- C:\Program Files\Ashampoo\Ashampoo FireWall FREE\spi.dll =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries\000000000002\Winsock LSP File . (...) -- C:\Program Files\Ashampoo\Ashampoo FireWall FREE\spi.dll =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries\000000000003\Winsock LSP File . (...) -- C:\Program Files\Ashampoo\Ashampoo FireWall FREE\spi.dll =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries\000000000004\Winsock LSP File . (...) -- C:\Program Files\Ashampoo\Ashampoo FireWall FREE\spi.dll =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries\000000000005\Winsock LSP File . (...) -- C:\Program Files\Ashampoo\Ashampoo FireWall FREE\spi.dll =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries\000000000014\Winsock LSP File . (...) -- C:\Program Files\Ashampoo\Ashampoo FireWall FREE\spi.dll =>Hijacker.Winsock

---\\ Modification Domaine/Adresses DNS (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1

---\\ Protocole additionnel (30) - 0s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll ©
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll ©
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API.) -- C:\WINDOWS\system32\inetcomm.dll ©
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll ©
O18 - Handler: mso-offdap - {3D9F03FA-7A94-11D3-BE81-0050048385D1} . (.Microsoft Corporation - Microsoft Office XP Web Components.) -- C:\Program Files\Fichiers communs\Microsoft Shared\Web Components\10\OWC10.DLL ©
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype4COM.) -- C:\Program Files\Fichiers communs\Skype\Skype4COM.dll ©
O18 - Handler: sysimage - {76E67A63-06E9-11D2-A840-006008059382} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll ©
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} . (.Microsoft Corporation - WIA Scripting Layer.) -- C:\WINDOWS\system32\wiascr.dll ©
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll ©
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll ©
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll ©
O18 - Filter: Class Install Handler - {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: lzdhtml - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll ©

---\\ Liste des services NT non Microsoft et non désactivés (5) - 1s
O23 - Service: Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG - Antivirus MailScanner LSP Service.) - C:\Program Files\Avira\AntiVir Desktop\avmailc.exe ©
O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe ©
O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe ©
O23 - Service: ProtexisLicensing (ProtexisLicensing) . (.© 2000-2005 Protexis Inc. - nTitles PSIService.) - C:\WINDOWS\system32\PSIService.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) . (.Protexis Inc. - PsiService PsiService.) - C:\Program Files\Fichiers communs\Protexis\License Service\PsiService_2.exe ©

---\\ Logiciels installés (88) - 4s
O42 - Logiciel: ACDSee - (...) [HKLM] -- ACDSee
O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI ©
O42 - Logiciel: Adobe Shockwave Player 12.2 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player ©
O42 - Logiciel: AIDA64 Extreme v5.30 - (.FinalWire Ltd..) [HKLM] -- AIDA64 Extreme_is1 ©
O42 - Logiciel: Ashampoo FireWall FREE 1.20 - (.Ashampoo GmbH & Co. KG.) [HKLM] -- Ashampoo FireWall_is1
O42 - Logiciel: Avira Antivirus v15.0.12.420 - (.Avira Operations GmbH & Co. KG.) [HKLM] -- Avira Antivirus ©
O42 - Logiciel: Color Efex Pro 3.0 Complete - (.Nik Software, Inc..) [HKLM] -- Color Efex Pro 3.0 Complete ©
O42 - Logiciel: CPUID CPU-Z 1.73 - (...) [HKLM] -- CPUID CPU-Z_is1
O42 - Logiciel: CrystalDiskInfo 6.0.1 - (.Crystal Dew World.) [HKLM] -- CrystalDiskInfo_is1 ©
O42 - Logiciel: Defense Commander - (...) [HKLM] -- Defense Commander
O42 - Logiciel: Eye Candy 3 - (...) [HKLM] -- Eye Candy 3
O42 - Logiciel: Eye Candy 4000 - (...) [HKLM] -- Eye Candy 4000
O42 - Logiciel: Alien Skin Eye Candy 5 Impact - (...) [HKLM] -- EyeCandy5Impact
O42 - Logiciel: Alien Skin Eye Candy 5 Nature - (...) [HKLM] -- EyeCandy5Nature
O42 - Logiciel: Alien Skin Eye Candy 5 Textures - (...) [HKLM] -- EyeCandy5Textures
O42 - Logiciel: Filter Forge Freepack 4 - Distortions 2.013 - (.Filter Forge, Inc..) [HKLM] -- Filter Forge Freepack 4 - Distortions_is1
O42 - Logiciel: Glary Utilities Pro 2.38.0.1288 - (.Glarysoft Ltd.) [HKLM] -- Glary Utilities_is1 ©
O42 - Logiciel: HP Imaging Device Functions 9.0 - (.HP.) [HKLM] -- HP Imaging Device Functions ©
O42 - Logiciel: HP Photosmart Essential 2.01 - (.HP.) [HKLM] -- HP Photosmart Essential ©
O42 - Logiciel: HP Solution Center 9.0 - (.HP.) [HKLM] -- HP Solution Center & Imaging Support Tools ©
O42 - Logiciel: HP Customer Participation Program 9.0 - (.HP.) [HKLM] -- HPExtendedCapabilities ©
O42 - Logiciel: HP OCR Software 9.0 - (.HP.) [HKLM] -- HPOCR ©
O42 - Logiciel: Windows Genuine Advantage Validation Tool (KB892130) - (.Microsoft Corporation.) [HKLM] -- KB892130 ©
O42 - Logiciel: Hotfix for Windows Media Format 11 SDK (KB929399) - (.Microsoft Corporation.) [HKLM] -- KB929399 ©
O42 - Logiciel: KeyScrambler - (.QFX Software Corporation.) [HKLM] -- KeyScrambler ©
O42 - Logiciel: Malwarebytes Anti-Malware version 1.75.0.1300 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1 ©
O42 - Logiciel: Mozilla Firefox 40.0.3 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 40.0.3 (x86 fr) ©
O42 - Logiciel: Mozilla Thunderbird 38.2.0 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Thunderbird 38.2.0 (x86 fr) ©
O42 - Logiciel: Microsoft Compression Client Pack 1.0 for Windows XP - (.Microsoft Corporation.) [HKLM] -- MSCompPackV1 ©
O42 - Logiciel: nLite 1.4.9.1 - (.Dino Nuhagic (nuhi).) [HKLM] -- nLite_is1
O42 - Logiciel: Pale Moon 25.7.0 (x86 en-US) - (.Moonchild Productions.) [HKLM] -- Pale Moon 25.7.0 (x86 en-US)
O42 - Logiciel: PAN Fire 3.1 - (...) [HKLM] -- PAN Fire 3.1_is1
O42 - Logiciel: PLATT! - (...) [HKLM] -- PLATT!
O42 - Logiciel: Smart PC Recorder - by freebird - (.Freebird.) [HKLM] -- SmartPCRecorder
O42 - Logiciel: Alien Skin Snap Art - (...) [HKLM] -- Snap Art
O42 - Logiciel: Unlocker 1.9.1 - (.Cedrick Collomb.) [HKLM] -- Unlocker ©
O42 - Logiciel: Microsoft Kernel-Mode Driver Framework Feature Pack 1.9 - (.Microsoft Corporation.) [HKLM] -- Wdf01009 ©
O42 - Logiciel: Webmizzle - (...) [HKLM] -- Webmizzle
O42 - Logiciel: Windows Media Format 11 runtime - (...) [HKLM] -- Windows Media Format Runtime
O42 - Logiciel: Lecteur Windows Media 11 - (...) [HKLM] -- Windows Media Player
O42 - Logiciel: Windows Media Format 11 runtime - (.Microsoft Corporation.) [HKLM] -- WMFDist11 ©
O42 - Logiciel: Windows Media Player 11 - (.Microsoft Corporation.) [HKLM] -- wmp11 ©
O42 - Logiciel: Xenofex 1.0 - (...) [HKLM] -- Xenofex 1.0
O42 - Logiciel: Alien Skin Xenofex 2.0 - (...) [HKLM] -- Xenofex2
O42 - Logiciel: XML Paper Specification Shared Components Language Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- XPSEPSCLP ©
O42 - Logiciel: Corel PaintShop Pro X5 - (.Corel Corporation.) [HKLM] -- _{1563C6F2-E9B5-42DE-9EA6-207C9A8C2DFB} ©
O42 - Logiciel: Corel PaintShop Pro X6 - (.Corel Corporation.) [HKLM] -- _{166D1CB6-DD8A-40DD-9E25-4D31D2D6DE4D} ©
O42 - Logiciel: Setup - (.Nom de votre société.) [HKLM] -- {15002A1B-C1E7-4E91-A3EC-5502BF924A32}
O42 - Logiciel: Corel PaintShop Pro X5 - (.Corel Corporation.) [HKLM] -- {15180A90-1FC0-47E4-A150-3AECEF07B3B6} ©
O42 - Logiciel: PSPPContent - (.Corel Corporation.) [HKLM] -- {1522E36C-3739-41E4-8CD3-A4AFEA70086A} ©
O42 - Logiciel: PSPPHelp - (.Corel Corporation.) [HKLM] -- {153DD765-C8C6-4893-8CEF-D965351D82EC} ©
O42 - Logiciel: IPM_PSP_COM - (.Corel Corporation.) [HKLM] -- {154B0B16-ABCD-4A06-B0B7-8146B7A89B25} ©
O42 - Logiciel: ICA - (.Corel Corporation.) [HKLM] -- {1563C6F2-E9B5-42DE-9EA6-207C9A8C2DFB} ©
O42 - Logiciel: Setup - (.Nom de votre société.) [HKLM] -- {16006EE1-DDB7-4E5F-8696-9FEF32C0151A}
O42 - Logiciel: Corel PaintShop Pro X6 - (.Corel Corporation.) [HKLM] -- {161AB62E-65D6-46E5-B3D8-2AC15D3B920B} ©
O42 - Logiciel: PSPPContent - (.Corel Corporation.) [HKLM] -- {162BD2D6-6C63-41A7-8151-93188450D36A} ©
O42 - Logiciel: PSPPHelp - (.Corel Corporation.) [HKLM] -- {16346B2A-87BC-407C-9D6B-72A4D21ABF03} ©
O42 - Logiciel: IPM_PSP_COM - (.Corel Corporation.) [HKLM] -- {164D34E1-0271-4960-8A26-E8990A302DB1} ©
O42 - Logiciel: ICA - (.Corel Corporation.) [HKLM] -- {166D1CB6-DD8A-40DD-9E25-4D31D2D6DE4D} ©
O42 - Logiciel: Jasc Animation Shop 3 - (.Jasc Software Inc.) [HKLM] -- {174D5678-D941-433C-BD23-58A5C7B0D36D}
O42 - Logiciel: Corel Paint Shop Pro X - (.Corel Inc.) [HKLM] -- {1A15507A-8551-4626-915D-3D5FA095CC1B}
O42 - Logiciel: MPC-HC 1.7.9 - (.MPC-HC Team.) [HKLM] -- {2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1 ©
O42 - Logiciel: Java 8 Update 40 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218040F0} ©
O42 - Logiciel: Avira v1.1.24.28609 - (.Avira Operations GmbH & Co. KG.) [HKLM] -- {3A979044-2415-417E-83A6-BAD69D5DBBF5} ©
O42 - Logiciel: HPSSupply - (.Nom de votre société.) [HKLM] -- {487B0B9B-DCD4-440D-89A0-A6EDE1A545A3}
O42 - Logiciel: Corel Paint Shop Pro Photo X2 - (.Corel Corporation.) [HKLM] -- {64E72FB1-2343-4977-B4A8-262CD53D0BD3} ©
O42 - Logiciel: Revo Uninstaller Pro 3.1.2 - (.VS Revo Group, Ltd..) [HKLM] -- {67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1
O42 - Logiciel: Windows Media Player Firefox Plugin - (.Microsoft Corp.) [HKLM] -- {69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4} ©
O42 - Logiciel: Skype™ 6.18 - (.Skype Technologies S.A..) [HKLM] -- {7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7} ©
O42 - Logiciel: Jasc Animation Shop 3 - (.Jasc Software Inc.) [HKLM] -- {7C4196CA-CA41-4F34-9C08-7724E7705D52}
O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1 ©
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} ©
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} ©
O42 - Logiciel: Avira v1.1.24.28609 - (.Avira Operations GmbH & Co. KG.) [HKLM] -- {905d3ded-fe60-432c-b56e-7cd19f2899ac} ©
O42 - Logiciel: PDF-Viewer - (.Tracker Software Products Ltd.) [HKLM] -- {A278382D-4F1B-4D47-9885-8523F7261E8D}_is1 ©
O42 - Logiciel: 32 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM] -- {A80FA752-C491-4ED9-ABF0-4278563160B2} ©
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM] -- {AB40272D-92AB-4F30-B36B-22EDE16F8FE5} ©
O42 - Logiciel: HP Photosmart All-In-One Software 9.0 - (.HP.) [HKLM] -- {B09BCBF6-87EE-4403-A336-3A9510856535} ©
O42 - Logiciel: NVIDIA Pilote graphique 353.06 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver ©
O42 - Logiciel: NVIDIA GeForce Experience 2.4.5.28 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience ©
O42 - Logiciel: NVIDIA Logiciel système PhysX 9.15.0428 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX ©
O42 - Logiciel: System Requirements Lab for Intel - (.Husdawg, LLC.) [HKLM] -- {C7CA731B-BF9A-46D9-92CF-8A8737AE9240} ©
O42 - Logiciel: WinZip 14.0 - (.WinZip Computing, S.L. .) [HKLM] -- {CD95F661-A5C4-44F5-A6AA-ECDD91C240BB} ©
O42 - Logiciel: Auslogics DiskDefrag - (.Auslogics Labs Pty Ltd.) [HKLM] -- {DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1 ©
O42 - Logiciel: System Requirements Lab CYRI - (.Husdawg, LLC.) [HKLM] -- {E5F05232-96B6-4552-A480-785A60A94B21} ©
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} ©
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} ©
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} ©

---\\ HKCU & HKLM Software Keys (140) - 4s
HKLM\SOFTWARE\ACD Systems
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\AdwCleaner
HKLM\SOFTWARE\AGEIA Technologies
HKLM\SOFTWARE\Alien Skin
HKLM\SOFTWARE\Alienware
HKLM\SOFTWARE\Andromeda
HKLM\SOFTWARE\AppDataLow
HKLM\SOFTWARE\Ashampoo
HKLM\SOFTWARE\ASUS
HKLM\SOFTWARE\Auslogics
HKLM\SOFTWARE\Avira
HKLM\SOFTWARE\BigFish
HKLM\SOFTWARE\BrowserChoice
HKLM\SOFTWARE\C07ft5Y
HKLM\SOFTWARE\Corel
HKLM\SOFTWARE\CPUID
HKLM\SOFTWARE\Creative Tech
HKLM\SOFTWARE\FGUpdate
HKLM\SOFTWARE\Gemplus
HKLM\SOFTWARE\GlarySoft
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\Hewlett-Packard
HKLM\SOFTWARE\HP
HKLM\SOFTWARE\ICE
HKLM\SOFTWARE\IM Providers
HKLM\SOFTWARE\InstallShield
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\InterVideo
HKLM\SOFTWARE\Jama 3D
HKLM\SOFTWARE\Jasc
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\Khronos
HKLM\SOFTWARE\Lavasoft
HKLM\SOFTWARE\Licenses
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\Nico Mak Computing
HKLM\SOFTWARE\Nik Software
HKLM\SOFTWARE\NVIDIA Corporation
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\Oracle
HKLM\SOFTWARE\Program Groups
HKLM\SOFTWARE\Protexis
HKLM\SOFTWARE\QFX Software
HKLM\SOFTWARE\Realore
HKLM\SOFTWARE\Realtek
HKLM\SOFTWARE\Redfield
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\Schlumberger
HKLM\SOFTWARE\Skype
HKLM\SOFTWARE\Symantec
HKLM\SOFTWARE\Tracker Software
HKLM\SOFTWARE\Webmizzle
HKLM\SOFTWARE\Windows 3.1 Migration Status
HKLM\SOFTWARE\X-AVCSD
HKCU\SOFTWARE\A2
HKCU\SOFTWARE\ACD Systems
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AdoreGames
HKCU\SOFTWARE\Alawar
HKCU\SOFTWARE\Alien Skin
HKCU\SOFTWARE\Anuman
HKCU\SOFTWARE\Ashampoo
HKCU\SOFTWARE\ASUS
HKCU\SOFTWARE\ATS-FFormula
HKCU\SOFTWARE\Auslogics
HKCU\SOFTWARE\Avira
HKCU\SOFTWARE\Canneverbe Limited
HKCU\SOFTWARE\Corel
HKCU\SOFTWARE\David J Taylor
HKCU\SOFTWARE\DragonFly
HKCU\SOFTWARE\Farm Mania 2.1
HKCU\SOFTWARE\FarMills
HKCU\SOFTWARE\FinalWire
HKCU\SOFTWARE\freebird
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\GlarySoft
HKCU\SOFTWARE\GrowingGrassStudio
HKCU\SOFTWARE\HakaTeam
HKCU\SOFTWARE\Hewlett-Packard
HKCU\SOFTWARE\HipSoft
HKCU\SOFTWARE\I.C.NET Software GmbH
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Imagination Technologies
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\Jasc
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\JetCar
HKCU\SOFTWARE\KillBox
HKCU\SOFTWARE\Ladia Group
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Little Worlds Studio
HKCU\SOFTWARE\Logitech
HKCU\SOFTWARE\Lunagames
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Macrovision
HKCU\SOFTWARE\Malwarebytes' Anti-Malware
HKCU\SOFTWARE\Microids
HKCU\SOFTWARE\Mirage
HKCU\SOFTWARE\Mirball
HKCU\SOFTWARE\Monk Vision Entertainment
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MPC-HC
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Nico Mak Computing
HKCU\SOFTWARE\Nik Software
HKCU\SOFTWARE\Nik_Soft
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\QFX Software
HKCU\SOFTWARE\Realore
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\Redfield
HKCU\SOFTWARE\RYDER
HKCU\SOFTWARE\Shaman Games
HKCU\SOFTWARE\ShamanGS
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Stoic Joker's
HKCU\SOFTWARE\Sysinternals
HKCU\SOFTWARE\System Requirements Lab
HKCU\SOFTWARE\TEMPI
HKCU\SOFTWARE\Test3D
HKCU\SOFTWARE\The Silicon Realms Toolworks
HKCU\SOFTWARE\Tracker Software
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\UnH Solutions
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\URSE Games
HKCU\SOFTWARE\VanDerLee
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\VS Revo Group
HKCU\SOFTWARE\Whalebox Studio
HKCU\SOFTWARE\WinZip Computing
HKCU\SOFTWARE\ZebHelpProcess Helper

---\\ Contenu des dossiers Programmes (218) - 4s
O43 - CFD: 2013/01/15 19:18:52 - [] D -- C:\Program Files\ACD Systems
O43 - CFD: 2013/01/17 00:42:33 - [] D -- C:\Program Files\Alien Skin
O43 - CFD: 2013/01/15 18:17:16 - [] D -- C:\Program Files\Ashampoo
O43 - CFD: 2013/09/20 23:01:05 - [] D -- C:\Program Files\Auslogics
O43 - CFD: 2014/11/25 16:02:50 - [] D -- C:\Program Files\Avira
O43 - CFD: 2015/08/23 11:40:37 - [] D -- C:\Program Files\CDBurnerXP
O43 - CFD: 2013/01/15 16:52:35 - [0] D -- C:\Program Files\ComPlus Applications
O43 - CFD: 2014/02/11 00:56:40 - [] D -- C:\Program Files\Corel
O43 - CFD: 2015/01/01 00:47:58 - [] D -- C:\Program Files\CPUID
O43 - CFD: 2013/04/04 23:31:54 - [] D -- C:\Program Files\Defense Commander
O43 - CFD: 2015/03/14 20:20:08 - [] D -- C:\Program Files\Fichiers communs
O43 - CFD: 2013/02/14 17:51:57 - [] D -- C:\Program Files\Filter Forge Freepack 4 - Distortions
O43 - CFD: 2014/02/13 22:37:35 - [] D -- C:\Program Files\FinalWire
O43 - CFD: 2015/02/14 14:04:17 - [] D -- C:\Program Files\freebird
O43 - CFD: 2014/10/17 14:07:18 - [] D -- C:\Program Files\Glary Utilities
O43 - CFD: 2013/01/16 00:47:52 - [0] D -- C:\Program Files\Hewlett-Packard
O43 - CFD: 2014/03/31 19:16:57 - [] D -- C:\Program Files\HP
O43 - CFD: 2014/04/10 23:04:54 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 2013/04/14 23:49:27 - [] D -- C:\Program Files\Intel
O43 - CFD: 2013/05/05 02:06:10 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 2013/01/15 23:12:45 - [] D -- C:\Program Files\Jasc Software Inc
O43 - CFD: 2015/03/14 20:20:50 - [] D -- C:\Program Files\Java
O43 - CFD: 2015/09/09 15:52:30 - [] D -- C:\Program Files\KeyScrambler
O43 - CFD: 2014/04/18 23:43:34 - [] D -- C:\Program Files\Malwarebytes' Anti-Malware
O43 - CFD: 2014/09/10 23:06:42 - [] D -- C:\Program Files\Messenger
O43 - CFD: 2013/01/15 16:54:40 - [] D -- C:\Program Files\microsoft frontpage
O43 - CFD: 2013/01/15 20:19:19 - [] D -- C:\Program Files\Microsoft Office
O43 - CFD: 2014/09/14 10:31:46 - [] D -- C:\Program Files\Microsoft Silverlight
O43 - CFD: 2013/01/16 00:14:55 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 2013/05/05 22:19:02 - [] D -- C:\Program Files\Movie Maker
O43 - CFD: 2015/09/16 11:10:21 - [] D -- C:\Program Files\Mozilla Firefox
O43 - CFD: 2015/08/15 12:20:39 - [] D -- C:\Program Files\Mozilla Thunderbird
O43 - CFD: 2015/06/05 00:43:46 - [] D -- C:\Program Files\MPC-HC
O43 - CFD: 2013/04/13 00:47:03 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 2013/01/15 18:13:39 - [] D -- C:\Program Files\MSECache
O43 - CFD: 2013/01/15 16:51:38 - [] D -- C:\Program Files\MSN
O43 - CFD: 2013/05/05 02:36:54 - [] D -- C:\Program Files\msn gaming zone
O43 - CFD: 2013/01/16 12:34:14 - [0] D -- C:\Program Files\MSXML 4.0
O43 - CFD: 2013/01/15 16:53:26 - [] D -- C:\Program Files\NetMeeting
O43 - CFD: 2013/01/16 15:50:03 - [] D -- C:\Program Files\Nik Software
O43 - CFD: 2015/03/17 01:56:20 - [] D -- C:\Program Files\nLite
O43 - CFD: 2015/06/14 23:52:12 - [] D -- C:\Program Files\NVIDIA Corporation
O43 - CFD: 2014/04/10 22:33:08 - [] D -- C:\Program Files\NVIDIA nTune Performance Application
O43 - CFD: 2013/05/05 22:19:39 - [] D -- C:\Program Files\Outlook Express
O43 - CFD: 2015/08/28 23:45:59 - [] D -- C:\Program Files\Pale Moon
O43 - CFD: 2015/06/07 23:46:23 - [] D -- C:\Program Files\Photoshop
O43 - CFD: 2013/04/13 00:47:00 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 2013/01/15 16:53:49 - [] D -- C:\Program Files\Services en ligne
O43 - CFD: 2014/08/13 10:10:52 - [] RD -- C:\Program Files\Skype
O43 - CFD: 2013/03/23 19:11:28 - [] D -- C:\Program Files\SystemRequirementsLab
O43 - CFD: 2014/12/07 18:47:09 - [] D -- C:\Program Files\Tracker Software
O43 - CFD: 2013/05/09 23:58:37 - [] D -- C:\Program Files\Tweak-XP Pro 4
O43 - CFD: 2013/01/15 16:58:19 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 2014/03/09 19:09:07 - [] D -- C:\Program Files\Unlocker
O43 - CFD: 2013/01/15 23:02:47 - [] D -- C:\Program Files\VS Revo Group
O43 - CFD: 2015/09/14 16:19:15 - [] D -- C:\Program Files\Webmizzle
O43 - CFD: 2013/05/06 23:05:23 - [] D -- C:\Program Files\Windows Media Connect 2
O43 - CFD: 2013/05/05 17:13:36 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 2013/05/04 21:31:48 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 2013/01/15 16:53:52 - [0] HD -- C:\Program Files\WindowsUpdate
O43 - CFD: 2013/01/15 19:03:51 - [] D -- C:\Program Files\WinZip
O43 - CFD: 2013/01/15 16:54:40 - [] D -- C:\Program Files\xerox
O43 - CFD: 2013/05/07 23:56:31 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 2013/01/15 18:17:17 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Ashampoo
O43 - CFD: 2015/03/02 17:01:35 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Auslogics
O43 - CFD: 2015/09/01 15:01:49 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Avira
O43 - CFD: 2013/01/16 15:50:04 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Color Efex Pro 3.0 Complete
O43 - CFD: 2014/02/23 12:44:39 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Corel Paint Shop Pro Photo X2
O43 - CFD: 2013/01/15 23:46:26 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Corel Paint Shop Pro X
O43 - CFD: 2013/01/15 23:58:29 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Corel PaintShop Pro X5
O43 - CFD: 2014/02/11 00:57:17 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Corel PaintShop Pro X6
O43 - CFD: 2015/01/01 00:47:57 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CPUID
O43 - CFD: 2013/11/20 13:09:21 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CrystalDiskInfo
O43 - CFD: 2013/04/04 23:31:14 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Defense Commander
O43 - CFD: 2014/12/23 00:24:47 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 2013/02/14 17:51:57 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Filter Forge Freepack 4 - Distortions
O43 - CFD: 2013/11/23 22:03:24 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\FinalWire
O43 - CFD: 2014/10/17 14:07:18 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Glary Utilities
O43 - CFD: 2013/01/16 00:58:57 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HP
O43 - CFD: 2013/01/15 23:14:03 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jasc Software
O43 - CFD: 2014/10/15 10:27:34 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Java
O43 - CFD: 2015/09/09 15:52:31 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\KeyScrambler
O43 - CFD: 2014/04/18 23:43:33 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Malwarebytes' Anti-Malware
O43 - CFD: 2014/09/13 19:00:15 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Silverlight
O43 - CFD: 2015/06/05 00:43:46 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\MPC-HC
O43 - CFD: 2013/05/05 17:08:17 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\nLite
O43 - CFD: 2014/04/10 23:04:49 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\NVIDIA Corporation
O43 - CFD: 2014/06/04 20:02:54 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration
O43 - CFD: 2013/01/15 20:19:36 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils Microsoft Office
O43 - CFD: 2013/01/17 00:59:58 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Panopticum
O43 - CFD: 2014/12/07 18:47:08 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\PDF-XChange PDF Viewer
O43 - CFD: 2014/12/21 18:56:29 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Revo Uninstaller Pro
O43 - CFD: 2014/04/04 01:09:50 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Skype
O43 - CFD: 2013/01/15 19:04:10 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinZip
O43 - CFD: 2014/02/23 12:38:02 - [] D -- C:\Documents and Settings\All Users\Application Data\Adobe
O43 - CFD: 2013/09/27 22:40:42 - [] D -- C:\Documents and Settings\All Users\Application Data\APN =>Toolbar.Ask
O43 - CFD: 2013/08/15 16:15:30 - [] D -- C:\Documents and Settings\All Users\Application Data\Auslogics
O43 - CFD: 2015/04/07 15:02:12 - [] D -- C:\Documents and Settings\All Users\Application Data\Avira
O43 - CFD: 2015/06/14 23:50:31 - [] D -- C:\Documents and Settings\All Users\Application Data\boost_interprocess
O43 - CFD: 2013/01/16 00:19:08 - [] D -- C:\Documents and Settings\All Users\Application Data\Canneverbe Limited
O43 - CFD: 2014/02/11 00:57:20 - [] D -- C:\Documents and Settings\All Users\Application Data\Corel
O43 - CFD: 2013/01/16 00:47:00 - [] D -- C:\Documents and Settings\All Users\Application Data\Hewlett-Packard
O43 - CFD: 2014/03/31 13:33:50 - [] D -- C:\Documents and Settings\All Users\Application Data\HP
O43 - CFD: 2013/01/16 00:48:18 - [] D -- C:\Documents and Settings\All Users\Application Data\HP Product Assistant
O43 - CFD: 2013/01/16 00:58:16 - [0] D -- C:\Documents and Settings\All Users\Application Data\HPSSUPPLY
O43 - CFD: 2013/03/10 18:44:06 - [] D -- C:\Documents and Settings\All Users\Application Data\InstallMate =>PUP.Optional.Tarma
O43 - CFD: 2013/01/15 23:46:28 - [] D -- C:\Documents and Settings\All Users\Application Data\InstallShield
O43 - CFD: 2013/02/24 23:58:35 - [] D -- C:\Documents and Settings\All Users\Application Data\Intel
O43 - CFD: 2015/09/07 00:17:40 - [] D -- C:\Documents and Settings\All Users\Application Data\Lavasoft
O43 - CFD: 2014/09/19 15:00:03 - [] D -- C:\Documents and Settings\All Users\Application Data\Logishrd
O43 - CFD: 2014/04/18 22:13:44 - [] D -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
O43 - CFD: 2014/12/29 02:00:20 - [] SD -- C:\Documents and Settings\All Users\Application Data\Microsoft
O43 - CFD: 2013/01/15 21:16:59 - [] D -- C:\Documents and Settings\All Users\Application Data\Mozilla
O43 - CFD: 2014/01/24 00:03:36 - [] D -- C:\Documents and Settings\All Users\Application Data\NVIDIA
O43 - CFD: 2015/06/14 23:50:25 - [] D -- C:\Documents and Settings\All Users\Application Data\NVIDIA Corporation
O43 - CFD: 2015/03/14 20:21:47 - [] D -- C:\Documents and Settings\All Users\Application Data\Oracle
O43 - CFD: 2014/11/25 16:11:05 - [] D -- C:\Documents and Settings\All Users\Application Data\Package Cache
O43 - CFD: 2013/01/23 23:19:29 - [] D -- C:\Documents and Settings\All Users\Application Data\Particles
O43 - CFD: 2014/02/11 00:58:41 - [] D -- C:\Documents and Settings\All Users\Application Data\Protexis
O43 - CFD: 2015/09/09 15:54:12 - [] D -- C:\Documents and Settings\All Users\Application Data\QFX Software
O43 - CFD: 2014/12/23 00:18:36 - [] D -- C:\Documents and Settings\All Users\Application Data\Se7en Soft
O43 - CFD: 2014/08/13 10:09:49 - [] D -- C:\Documents and Settings\All Users\Application Data\Skype
O43 - CFD: 2013/01/15 18:55:38 - [] D -- C:\Documents and Settings\All Users\Application Data\Sun
O43 - CFD: 2015/08/05 14:07:34 - [0] AD -- C:\Documents and Settings\All Users\Application Data\TEMP
O43 - CFD: 2013/02/18 00:38:14 - [] D -- C:\Documents and Settings\All Users\Application Data\VS Revo Group
O43 - CFD: 2013/01/16 00:59:14 - [] D -- C:\Documents and Settings\All Users\Application Data\WEBREG
O43 - CFD: 2013/01/15 21:55:55 - [] D -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
O43 - CFD: 2013/01/15 19:05:04 - [] D -- C:\Documents and Settings\All Users\Application Data\WinZip
O43 - CFD: 2014/02/23 12:38:12 - [] D -- C:\Program Files\Fichiers communs\Adobe
O43 - CFD: 2014/02/23 12:44:28 - [] D -- C:\Program Files\Fichiers communs\Corel
O43 - CFD: 2013/01/15 20:19:29 - [] D -- C:\Program Files\Fichiers communs\Designer
O43 - CFD: 2013/01/16 00:47:43 - [] D -- C:\Program Files\Fichiers communs\Hewlett-Packard
O43 - CFD: 2013/01/16 00:48:06 - [] D -- C:\Program Files\Fichiers communs\HP
O43 - CFD: 2014/04/10 22:33:19 - [] D -- C:\Program Files\Fichiers communs\InstallShield
O43 - CFD: 2015/03/14 20:20:08 - [] D -- C:\Program Files\Fichiers communs\Java
O43 - CFD: 2013/10/02 11:02:49 - [] D -- C:\Program Files\Fichiers communs\Microsoft Shared
O43 - CFD: 2013/01/15 16:53:22 - [] D -- C:\Program Files\Fichiers communs\MSSoap
O43 - CFD: 2013/01/15 17:46:37 - [] D -- C:\Program Files\Fichiers communs\ODBC
O43 - CFD: 2013/01/15 23:58:58 - [] D -- C:\Program Files\Fichiers communs\Protexis
O43 - CFD: 2013/01/15 16:53:26 - [] D -- C:\Program Files\Fichiers communs\Services
O43 - CFD: 2014/08/13 10:10:52 - [] D -- C:\Program Files\Fichiers communs\Skype
O43 - CFD: 2013/01/15 17:46:35 - [] D -- C:\Program Files\Fichiers communs\SpeechEngines
O43 - CFD: 2013/01/15 16:52:53 - [] D -- C:\Program Files\Fichiers communs\System
O43 - CFD: 2013/01/15 19:19:52 - [] D -- C:\Documents and Settings\jp\Application Data\ACD Systems
O43 - CFD: 2014/06/04 20:03:50 - [] D -- C:\Documents and Settings\jp\Application Data\Adobe
O43 - CFD: 2014/10/01 16:03:51 - [] D -- C:\Documents and Settings\jp\Application Data\Alien Skin
O43 - CFD: 2013/01/15 18:14:11 - [] D -- C:\Documents and Settings\jp\Application Data\Auslogics
O43 - CFD: 2015/04/07 15:02:37 - [] D -- C:\Documents and Settings\jp\Application Data\Avira
O43 - CFD: 2013/01/16 00:19:08 - [] D -- C:\Documents and Settings\jp\Application Data\Canneverbe Limited
O43 - CFD: 2014/02/23 12:45:36 - [] D -- C:\Documents and Settings\jp\Application Data\Corel
O43 - CFD: 2013/05/09 14:34:31 - [] D -- C:\Documents and Settings\jp\Application Data\DriverCure =>PUP.Optional.Paretologic
O43 - CFD: 2013/09/11 11:33:26 - [] D -- C:\Documents and Settings\jp\Application Data\EntwinedSoD
O43 - CFD: 2013/03/24 00:20:39 - [0] D -- C:\Documents and Settings\jp\Application Data\ExpressFiles =>PUP.Optional.ExpressFiles
O43 - CFD: 2013/02/14 17:55:17 - [] D -- C:\Documents and Settings\jp\Application Data\Filter Forge Freepack 4 - Distortions
O43 - CFD: 2014/10/17 14:11:02 - [] D -- C:\Documents and Settings\jp\Application Data\GlarySoft
O43 - CFD: 2013/01/15 19:13:44 - [0] D -- C:\Documents and Settings\jp\Application Data\Help
O43 - CFD: 2013/01/16 01:00:38 - [] D -- C:\Documents and Settings\jp\Application Data\HP
O43 - CFD: 2013/01/15 16:58:20 - [] D -- C:\Documents and Settings\jp\Application Data\Identities
O43 - CFD: 2013/01/16 14:55:39 - [] D -- C:\Documents and Settings\jp\Application Data\InstallShield
O43 - CFD: 2013/01/15 23:14:11 - [] D -- C:\Documents and Settings\jp\Application Data\Jasc
O43 - CFD: 2014/09/19 14:42:03 - [] D -- C:\Documents and Settings\jp\Application Data\Logishrd
O43 - CFD: 2014/03/09 19:02:54 - [] D -- C:\Documents and Settings\jp\Application Data\Logs
O43 - CFD: 2014/12/23 01:01:45 - [] D -- C:\Documents and Settings\jp\Application Data\Macromedia
O43 - CFD: 2014/04/18 23:43:43 - [] D -- C:\Documents and Settings\jp\Application Data\Malwarebytes
O43 - CFD: 2013/01/15 22:32:02 - [] D -- C:\Documents and Settings\jp\Application Data\Media Player Classic
O43 - CFD: 2014/03/27 00:54:47 - [] SD -- C:\Documents and Settings\jp\Application Data\Microsoft
O43 - CFD: 2015/07/11 23:36:07 - [0] D -- C:\Documents and Settings\jp\Application Data\MMFApplications
O43 - CFD: 2013/01/15 18:31:18 - [] D -- C:\Documents and Settings\jp\Application Data\Moonchild Productions
O43 - CFD: 2015/08/31 00:06:22 - [] D -- C:\Documents and Settings\jp\Application Data\Mozilla
O43 - CFD: 2014/01/01 17:28:27 - [] D -- C:\Documents and Settings\jp\Application Data\MPC-HC
O43 - CFD: 2013/03/02 15:57:10 - [] D -- C:\Documents and Settings\jp\Application Data\NVIDIA
O43 - CFD: 2014/02/17 12:03:12 - [] D -- C:\Documents and Settings\jp\Application Data\Oracle
O43 - CFD: 2015/03/02 00:22:30 - [0] D -- C:\Documents and Settings\jp\Application Data\OWL Studio
O43 - CFD: 2015/09/09 15:54:12 - [] D -- C:\Documents and Settings\jp\Application Data\QFX Software
O43 - CFD: 2014/08/01 16:57:51 - [0] D -- C:\Documents and Settings\jp\Application Data\Rainbow
O43 - CFD: 2014/12/23 00:18:38 - [] D -- C:\Documents and Settings\jp\Application Data\Se7en Soft
O43 - CFD: 2015/08/31 15:41:43 - [] D -- C:\Documents and Settings\jp\Application Data\Skype
O43 - CFD: 2014/02/21 21:24:44 - [] D -- C:\Documents and Settings\jp\Application Data\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
O43 - CFD: 2013/01/15 18:54:40 - [] D -- C:\Documents and Settings\jp\Application Data\Sun
O43 - CFD: 2013/03/23 19:11:23 - [] D -- C:\Documents and Settings\jp\Application Data\SystemRequirementsLab
O43 - CFD: 2013/01/15 21:17:02 - [] D -- C:\Documents and Settings\jp\Application Data\Thunderbird
O43 - CFD: 2013/01/16 00:00:28 - [] D -- C:\Documents and Settings\jp\Application Data\Ulead Systems
O43 - CFD: 2013/04/09 21:48:55 - [] D -- C:\Documents and Settings\jp\Application Data\VS Revo Group
O43 - CFD: 2015/09/16 16:01:57 - [] D -- C:\Documents and Settings\jp\Application Data\ZHP
O43 - CFD: 2015/07/15 01:09:20 - [] D -- C:\Documents and Settings\jp\Local Settings\Application Data\Adobe
O43 - CFD: 2013/10/21 23:07:22 - [] D -- C:\Documents and Settings\jp\Local Settings\Application Data\ApplicationHistory
O43 - CFD: 2013/01/15 18:18:27 - [] D -- C:\Documents and Settings\jp\Local Settings\Application Data\Ashampoo
O43 - CFD: 2014/12/22 22:46:15 - [0] D -- C:\Documents and Settings\jp\Local Settings\Application Data\codeTurbine
O43 - CFD: 2014/09/01 20:22:05 - [0] D -- C:\Documents and Settings\jp\Local Settings\Application Data\com_runningpillow_ttt
O43 - CFD: 2015/08/19 16:47:59 - [] D -- C:\Documents and Settings\jp\Local Settings\Application Data\Corel
O43 - CFD: 2014/02/11 00:58:11 - [] D -- C:\Documents and Settings\jp\Local Settings\Application Data\Corel PaintShop Pro
O43 - CFD: 2013/01/15 19:13:44 - [0] D -- C:\Documents and Settings\jp\Local Settings\Application Data\Help
O43 - CFD: 2013/01/16 01:02:21 - [] D -- C:\Documents and Settings\jp\Local Settings\Application Data\HP
O43 - CFD: 2015/07/17 10:14:32 - [0] D -- C:\Documents and Settings\jp\Local Settings\Application Data\MackMedia
O43 - CFD: 2015/08/12 01:03:19 - [] D -- C:\Documents and Settings\jp\Local Settings\Application Data\Microsoft
O43 - CFD: 2013/01/15 18:31:18 - [] D -- C:\Documents and Settings\jp\Local Settings\Application Data\Moonchild Productions
O43 - CFD: 2014/12/09 17:52:01 - [] D -- C:\Documents and Settings\jp\Local Settings\Application Data\Mozilla
O43 - CFD: 2014/01/24 00:19:31 - [] D -- C:\Documents and Settings\jp\Local Settings\Application Data\NVIDIA
O43 - CFD: 2014/04/10 22:33:42 - [] D -- C:\Documents and Settings\jp\Local Settings\Application Data\NVIDIA Corporation
O43 - CFD: 2015/01/25 01:25:33 - [0] D -- C:\Documents and Settings\jp\Local Settings\Application Data\RunningPillow
O43 - CFD: 2013/10/04 17:19:00 - [0] D -- C:\Documents and Settings\jp\Local Settings\Application Data\Seppia
O43 - CFD: 2015/08/29 22:20:12 - [0] D -- C:\Documents and Settings\jp\Local Settings\Application Data\Seven Sails Ltda
O43 - CFD: 2014/04/04 01:10:01 - [] D -- C:\Documents and Settings\jp\Local Settings\Application Data\Skype
O43 - CFD: 2013/01/15 20:19:39 - [] D -- C:\Documents and Settings\jp\Local Settings\Application Data\Sun
O43 - CFD: 2014/04/19 00:32:32 - [0] D -- C:\Documents and Settings\jp\Local Settings\Application Data\temp
O43 - CFD: 2015/08/10 00:33:39 - [] D -- C:\Documents and Settings\jp\Local Settings\Application Data\Thunderbird
O43 - CFD: 2013/05/19 19:39:53 - [] D -- C:\Documents and Settings\jp\Local Settings\Application Data\Tracker Software
O43 - CFD: 2013/09/11 17:15:30 - [] D -- C:\Documents and Settings\jp\Local Settings\Application Data\Unity
O43 - CFD: 2013/01/15 23:02:50 - [] D -- C:\Documents and Settings\jp\Local Settings\Application Data\VS Revo Group
O43 - CFD: 2013/02/14 01:17:20 - [0] D -- C:\Documents and Settings\jp\Local Settings\Application Data\WMTools Downloaded Files
O43 - CFD: 2013/01/15 17:44:18 - [] RD -- C:\Documents and Settings\jp\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 2013/01/15 19:18:54 - [] D -- C:\Documents and Settings\jp\Menu Démarrer\Programmes\ACD Systems
O43 - CFD: 2014/11/18 01:48:18 - [] D -- C:\Documents and Settings\jp\Menu Démarrer\Programmes\Auslogics
O43 - CFD: 2015/03/23 11:56:07 - [] RD -- C:\Documents and Settings\jp\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 2015/01/07 00:05:58 - [] D -- C:\Documents and Settings\jp\Menu Démarrer\Programmes\Platt!
O43 - CFD: 2015/02/14 14:04:17 - [] D -- C:\Documents and Settings\jp\Menu Démarrer\Programmes\Smart PC Recorder
O43 - CFD: 2013/04/18 16:46:51 - [] D -- C:\Documents and Settings\jp\Menu Démarrer\Programmes\Unlocker
O43 - CFD: 2013/06/17 22:46:40 - [] D -- C:\Documents and Settings\jp\Menu Démarrer\Programmes\Webmizzle 2.3

---\\ Liste des pilotes du système (58) - 2s
O58 - SDL:2009/11/18 01:16:00 RA . (.Creative - Creative WDM 3D Audio Driver.) -- C:\WINDOWS\System32\drivers\Ambfilt.sys [1691480] ©
O58 - SDL:2008/04/14 14:00:00 A . (.Advanced Micro Devices, Inc. - AMD Win2000 AGP Filter.) -- C:\WINDOWS\System32\drivers\amdagp.sys [43008] ©
O58 - SDL:2009/04/02 14:30:14 A . (...) -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS [10296]
O58 - SDL:2015/09/01 15:01:22 A . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- C:\WINDOWS\System32\drivers\avgntflt.sys [108448] ©
O58 - SDL:2015/09/01 15:01:22 A . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- C:\WINDOWS\System32\drivers\avipbb.sys [136728] ©
O58 - SDL:2015/05/19 16:04:45 A . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- C:\WINDOWS\System32\drivers\avkmgr.sys [37896] ©
O58 - SDL:2008/04/14 14:00:00 A . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\System32\drivers\cinemst2.sys [262528] ©
O58 - SDL:2008/04/14 14:00:00 A . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\System32\drivers\cpqdap01.sys [11776] ©
O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- C:\WINDOWS\System32\drivers\dmboot.sys [800256] ©
O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\System32\drivers\dmio.sys [154496] ©
O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\System32\drivers\dmload.sys [5888] ©
O58 - SDL:2008/04/14 14:00:00 A . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [144384]
O58 - SDL:2011/11/10 01:52:02 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECI.sys [46080] ©
O58 - SDL:2007/03/08 06:20:48 RA . (.HP - IEEE-1284.4-1999 Driver (Windows 2000).) -- C:\WINDOWS\System32\drivers\HPZid412.sys [49920] ©
O58 - SDL:2007/03/08 06:20:49 RA . (.HP - IEEE-1284.4-1999 Print Class Driver.) -- C:\WINDOWS\System32\drivers\HPZipr12.sys [16496] ©
O58 - SDL:2007/03/08 06:20:50 RA . (.HP - 1284.4<->Usb Datalink Driver (Windows 2000).) -- C:\WINDOWS\System32\drivers\HPZius12.sys [21568] ©
O58 - SDL:2013/01/18 18:07:46 A . (.Intel Corporation - Intel Graphics Miniport Driver.) -- C:\WINDOWS\System32\drivers\igxpmp32.sys [2530720] ©
O58 - SDL:2011/12/06 04:24:16 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [270080] ©
O58 - SDL:2015/06/03 16:59:32 A . (.QFX Software Corporation - KeyScrambler Keyboard Encryption Driver.) -- C:\WINDOWS\System32\drivers\keyscrambler.sys [211408] ©
O58 - SDL:2014/03/19 02:24:08 A . (.Logitech, Inc. - Logitech Consumer Control Filter Driver..) -- C:\WINDOWS\System32\drivers\LBeepKE.sys [10136] ©
O58 - SDL:2014/03/19 02:24:16 A . (.Logitech, Inc. - Logitech HID Filter Driver..) -- C:\WINDOWS\System32\drivers\LHidFilt.Sys [43800] ©
O58 - SDL:2014/03/19 02:24:18 A . (.Logitech, Inc. - Logitech Mouse Filter Driver..) -- C:\WINDOWS\System32\drivers\LMouFilt.Sys [37528] ©
O58 - SDL:2014/09/19 14:44:11 A . (.Logitech, Inc. - Logitech Non-Plug and Play Driver..) -- C:\WINDOWS\System32\drivers\LNonPnP.sys [16400] ©
O58 - SDL:2014/03/19 02:24:24 A . (.Logitech, Inc. - Logitech USB Filter Driver..) -- C:\WINDOWS\System32\drivers\LUsbFilt.sys [28312] ©
O58 - SDL:2013/04/04 14:50:32 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [22856] ©
O58 - SDL:2009/11/18 01:17:00 RA . (.Creative Technology Ltd. - Creative WDM Audio Driver (32-bit).) -- C:\WINDOWS\System32\drivers\Monfilt.sys [1395800] ©
O58 - SDL:2008/04/14 14:00:00 A . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\nikedrv.sys [12032] ©
O58 - SDL:2015/05/28 07:07:40 A . (.NVIDIA Corporation - NVIDIA Windows XP Miniport Driver, Version.) -- C:\WINDOWS\System32\drivers\nv4_mini.sys [11133096] ©
O58 - SDL:2012/12/19 07:41:55 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\WINDOWS\System32\drivers\nvhda32.sys [128440] ©
O58 - SDL:2008/04/14 14:00:00 A . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- C:\WINDOWS\System32\drivers\ptilink.sys [17792] ©
O58 - SDL:2009/12/30 11:20:56 A . (.VS Revo Group - Revo Uninstaller Minifilter.) -- C:\WINDOWS\System32\drivers\revoflt.sys [27064] ©
O58 - SDL:2008/04/14 14:00:00 A . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\System32\drivers\rio8drv.sys [12032] ©
O58 - SDL:2008/04/14 14:00:00 A . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\riodrv.sys [12032] ©
O58 - SDL:2011/08/24 14:39:38 RA . (.Realtek Semiconductor Corporation - Realtek 10/100/1000 NDIS 5.1 Driver.) -- C:\WINDOWS\System32\drivers\Rtenicxp.sys [323816] ©
O58 - SDL:2011/12/13 12:27:30 RA . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RtkHDAud.sys [7069288] ©
O58 - SDL:2008/04/14 14:00:00 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [20480] ©
O58 - SDL:2008/04/14 14:00:00 A . (.Silicon Integrated Systems Corporation - SiS NT AGP Filter.) -- C:\WINDOWS\System32\drivers\sisagp.sys [40960] ©
O58 - SDL:2015/06/18 14:01:45 A . (.Avira Operations GmbH & Co. KG - AVIRA SnapShot Driver.) -- C:\WINDOWS\System32\drivers\ssmdrv.sys [31848] ©
O58 - SDL:2013/08/25 11:30:48 A . (...) -- C:\WINDOWS\System32\drivers\StarOpen.sys [13120]
O58 - SDL:2008/04/14 14:00:00 A . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\System32\drivers\tsbvcap.sys [21376] ©
O58 - SDL:2008/04/14 14:00:00 A . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\System32\drivers\vdmindvd.sys [58112] ©
O58 - SDL:2013/01/16 14:58:54 RSH . (...) -- C:\WINDOWS\System32\9C2A41DBD5.sys [88]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ansi.sys [9037]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\country.sys [27097]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\himem.sys [4912]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\key01.sys [42809]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\keyboard.sys [42537]
O58 - SDL:2015/08/19 16:47:53 ASH . (...) -- C:\WINDOWS\System32\KGyGaAvL.sys [2828]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos.sys [27916]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos404.sys [29146]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos411.sys [29370]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos412.sys [29274]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos804.sys [29146]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio.sys [34000]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio404.sys [34560]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio411.sys [35648]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio412.sys [35424]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio804.sys [34560]

---\\ Associations Shell Spawning (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe ©
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\system32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe ©

---\\ Menu de démarrage Internet (12) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Moonchild Productions - Pale Moon web browser.) -- C:\Program Files\Pale Moon\palemoon.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Windows NT User Data Migration Tool.) -- C:\WINDOWS\system32\shmgrate.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Moonchild Productions - Palemoon Helper.) -- C:\Program Files\Pale Moon\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Windows NT User Data Migration Tool.) -- C:\WINDOWS\system32\shmgrate.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Moonchild Productions - Palemoon Helper.) -- C:\Program Files\Pale Moon\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Windows NT User Data Migration Tool.) -- C:\WINDOWS\system32\shmgrate.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Moonchild Productions - Palemoon Helper.) -- C:\Program Files\Pale Moon\uninstall\helper.exe

---\\ Recherche d'infection sur les navigateurs (1) - 3s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/

---\\ Enumère les services démarrés par Svchost (38) - 1s
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (...) -- C:\WINDOWS\System32\appmgmts.dll [0]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496] ©
O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [78336] ©
O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464] ©
O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576] ©
O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488] ©
O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\system32\ersvc.dll [23040] ©
O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - .) -- C:\WINDOWS\system32\es.dll [253952] ©
O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: HidServ (HidServ) . (...) -- C:\WINDOWS\System32\hidserv.dll [0]
O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [99840] ©
O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [132096] ©
O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\system32\msgsvc.dll [33792] ©
O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144] ©
O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- C:\WINDOWS\system32\mswsock.dll [247808] ©
O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [53248] ©
O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560] ©
O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [18944] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\WINDOWS\system32\ipnathlp.dll [332800] ©
O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\system32\tapisrv.dll [249856] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112] ©
O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176] ©
O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483840] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\wmisvc.dll [145408] ©
O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896] ©
O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024] ©
O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376] ©
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\system32\qmgr.dll [409088] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll [38400] ©

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (12) - 6s

SS - Demand [2015/08/13 19:12:55] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe ©
SS - Auto [2015/09/01 15:01:00] [ 887128] Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\AntiVir Desktop\avmailc.exe ©
SR - Auto [2015/09/01 15:01:19] [ 461672] Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe ©
SR - Auto [2015/09/01 15:00:59] [ 461672] Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe ©
SS - Disabled [2015/09/01 15:01:04] [ 1212048] Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe ©
SS - Disabled [2014/10/09 17:56:04] [ 162096] Avira Service Host (Avira.OE.ServiceHost) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe ©
SS - Disabled [2015/05/23 03:47:58] [ 1893008] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe ©
SS - Disabled [2015/05/28 05:58:24] [ 144528] NVIDIA Driver Helper Service (NVSvc) . (.NVIDIA Corporation.) - C:\WINDOWS\system32\nvsvc32.exe ©
SStart Pending - Auto [2007/06/05 14:20:32] [ 177704] ProtexisLicensing (ProtexisLicensing) . (.© 2000-2005 Protexis Inc..) - C:\WINDOWS\system32\PSIService.exe
SR - Auto [2010/03/10 15:26:48] [ 189728] Protexis Licensing V2 (PSI_SVC_2) . (.Protexis Inc..) - C:\Program Files\Fichiers communs\Protexis\License Service\PsiService_2.exe ©
SS - Disabled [2013/10/23 08:15:08] [ 172192] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe ©

---\\ Scan Additionnel (5) - 0s
C:\Program Files\Ashampoo\Ashampoo FireWall FREE\spi.dll =>Hijacker.Winsock
C:\Documents and Settings\All Users\Application Data\APN =>Toolbar.Ask
C:\Documents and Settings\All Users\Application Data\InstallMate =>PUP.Optional.Tarma
C:\Documents and Settings\jp\Application Data\DriverCure =>PUP.Optional.Paretologic
C:\Documents and Settings\jp\Application Data\ExpressFiles =>PUP.Optional.ExpressFiles

---\\ Récapitulatif des éléments trouvées sur votre station (4) - 0s
http://www.nicolascoolman.fr/toolbar-ask/ =>Toolbar.Ask
http://www.nicolascoolman.fr/pup-tarma/ =>PUP.Optional.Tarma
http://www.nicolascoolman.fr/blog =>PUP.Optional.Paretologic
http://www.nicolascoolman.fr/adware-expressfiles/ =>PUP.Optional.ExpressFiles

~ End of the scan, 44706 items in 40 seconds (781)(0)()

Publicité


Signaler le contenu de ce document

Publicité