cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.10.29.157 Par Nicolas Coolman (2015/10/29)
~ Démarré par Administrateur (Administrator) (2015/10/30 16:52:11)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Documents and Settings\Administrateur\Bureau\ZHPDiag.txt
~ Rapport: C:\Documents and Settings\Administrateur\Application Data\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
Windows XP, 32-bit Service Pack 3 (Build 2600)

---\\ Navigateurs Internet (3) - 0s
GCIE: Google Chrome v46.0.2490.80
MFIE: MozillaMaintenanceService v41.0.2.5765
MSIE: Internet Explorer v7.0.5730.13

---\\ Informations sur les produits Windows (3) - 0s
Windows Automatic Updates : OK
Windows Activation Technologies : KO
Windows Genuine Advantage : KO

---\\ Logiciels de protection (1) - 1s
avast! Free Antivirus v5.0.677.0

---\\ Logiciels de protection et autres (Superflus) (1) - 1s
ESET Online Scanner v3

---\\ Logiciels d'optimisation (1) - 1s
CCleaner v5.01

---\\ Surveillance de Logiciels (1) - 1s
Adobe Flash Player 19 NPAPI

---\\ Logiciels de partage P2P (1) - 1s
µTorrent v2.2.1

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 15 Stepping 13, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 2085.78 MB (55% free)
~ System Restore: Désactivé (Disabled)
~ System drive C: has 3 GB free of 23 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: BUREAU
~ User Name: Administrateur
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 3 GB free of 23 GB (System)
~ Drive D: has 100 GB free of 128 GB

---\\ Etat du Centre de Sécurité Windows (8) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Recherche particulière de fichiers génériques (23) - 0s
[MD5.BFBBBFE0913E6C9706F97598A6588B8F] - 27/09/2008 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [1573888] ©
[MD5.EFA551863AD71A69690A3685145FD378] - 27/09/2008 - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\rundll32.exe [32256] ©
[MD5.90B16FF3ACEC94B95BA95AA686442A47] - 27/09/2008 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\WINDOWS\System32\wininet.dll [879616] ©
[MD5.4BB6301D634C857A5089E8B24C5555E4] - 27/09/2008 - (.Microsoft Corporation - Application d'ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [593408] ©
[MD5.B03E5AB30959E66A25AA6D30633A2047] - 28/07/2008 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\System32\dnsapi.dll [147968] ©
[MD5.744B88B93D2A58A1EB84C11D48CA85C8] - 28/07/2008 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [138496] ©
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] - 27/09/2008 - (.Microsoft Corporation - IDE/ATAPI Port Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [96512] ©
[MD5.C885B02847F5D2FD45A24E219ED93B32] - 14/04/2008 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [63744] ©
[MD5.4B0A100EAF5C49EF3CCA8C641431EACC] - 02/05/2008 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [62976] ©
[MD5.31F923EB2170FC172C81ABDA0045D18C] - 14/04/2008 - (.Microsoft Corporation - Pilote de cryptographie FIPS.) -- C:\WINDOWS\System32\drivers\Fips.sys [44672] ©
[MD5.573C7D0A32852B48F3058CFD8026F511] - 14/04/2008 - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [144384]
[MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - 14/04/2008 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [54144] ©
[MD5.083A052659F5310DD8B6A6CB05EDCF8E] - 14/04/2008 - (.Microsoft Corporation - IMAPI Kernel Driver.) -- C:\WINDOWS\System32\drivers\Imapi.sys [42112] ©
[MD5.CC748EA12C6EFFDE940EE98098BF96BB] - 14/04/2008 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [152832] ©
[MD5.23C74D75E36E7158768DD63D92789A91] - 14/04/2008 - (.Microsoft Corporation - IPSec Driver.) -- C:\WINDOWS\System32\drivers\IPSec.sys [75264] ©
[MD5.32ECB7D3C03532B4460E09E960A3B72E] - 30/07/2008 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [455936] ©
[MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - 14/04/2008 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [162816] ©
[MD5.A0857C97770034FD2AF17DC4014B5ABD] - 22/04/2008 - (.Microsoft Corporation - NT File System Driver.) -- C:\WINDOWS\System32\drivers\ntfs.sys [576384] ©
[MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - 27/09/2008 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [80384] ©
[MD5.11B4A627BC9614B885C4969BFA5FF8A6] - 14/04/2008 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [51328] ©
[MD5.15CABD0F7C00C47C70124907916AF3F1] - 27/09/2008 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [196224] ©
[MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - 27/09/2008 - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) -- C:\WINDOWS\System32\drivers\redbook.sys [58752] ©
[MD5.46DE1126684369BACE4849E4FC8C43CA] - 14/04/2008 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [53376] ©

---\\ Processus lancés (16) - 1s
[MD5.ACB544D7254F366DFB48F380BC36CD25] - (.AVAST Software - avast! Service.) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [40384] [PID.1856] ©
[MD5.C18053779E16EED30F028916012BF994] - (.Coupons.com Inc. - Coupon Printer Service.) -- C:\Program Files\Coupons\CouponPrinterService.exe [1051240] [PID.1960]
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] [PID.132] ©
[MD5.7F44D0432FD5B5343FB7A0CC31D3A900] - (.Copyright 2015. All rights reserved. - Service.) -- C:\Program Files\RayDld\ihpmServer.exe [270568] [PID.200] =>PUP.Optional.CrossRider
[MD5.D358E077A0A05D9B12DA22D137EE8464] - (.Microsoft Corp. - Microsoft SeaPort Search Enhancement Broker.) -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [226656] [PID.852] ©
[MD5.6C1B31F5C16E03153F0037AC6C451FFD] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe [2838912] [PID.1424] ©
[MD5.482507DA4269576A0D6EB8BDA9C204C1] - (.Smadsoft - Smadav USB Antivirus & Additional Protectio.) -- C:\Program Files\SMADAV\SMΔRTP.exe [1630208] [PID.1180]
[MD5.805210C8DB11D5799E7172923959BF98] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [5489944] [PID.2036] ©
[MD5.D3B2B70E7E69CC8AE92725F0A632C6F7] - (.Disc Soft Ltd - DAEMON Tools Shell Extensions Helper.) -- C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe [2768088] [PID.3600] ©
[MD5.6BCFCFA512A003A8043CF2F370B0B479] - (.Crossbrowse - Crossbrowse.) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe [637440] [PID.2996] =>PUP.Optional.CrossBrowse
[MD5.6BCFCFA512A003A8043CF2F370B0B479] - (.Crossbrowse - Crossbrowse.) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe [637440] [PID.3072] =>PUP.Optional.CrossBrowse
[MD5.6BCFCFA512A003A8043CF2F370B0B479] - (.Crossbrowse - Crossbrowse.) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe [637440] [PID.1160] =>PUP.Optional.CrossBrowse
[MD5.6BCFCFA512A003A8043CF2F370B0B479] - (.Crossbrowse - Crossbrowse.) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe [637440] [PID.2804] =>PUP.Optional.CrossBrowse
[MD5.5B636168FB5998203395C47B087EF1E9] - (.Nicolas Coolman - ZHPDiag.) -- C:\Documents and Settings\Administrateur\Mes documents\Downloads\ZHPDiag3.exe [1960960] [PID.3092] ©
[MD5.6BCFCFA512A003A8043CF2F370B0B479] - (.Crossbrowse - Crossbrowse.) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe [637440] [PID.2228] =>PUP.Optional.CrossBrowse
[MD5.5B636168FB5998203395C47B087EF1E9] - (.Nicolas Coolman - ZHPDiag.) -- C:\Documents and Settings\Administrateur\Mes documents\downloads\ZHPDiag3.exe [1960960] [PID.352] ©

---\\ Google Chrome, Démarrage,Recherche,Extensions (3) - 1s
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] __MSG_name__
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (8) - 0s
M0 - MFSP: prefs.js [Administrateur - mteietq8.default] http://www.istartsurf.com/?type=hp&ts=1446222028&z=0d90b7acb0ea39de605950cg2zazeq6o3obo9e9o4b&from=smt&uid=wdcxwd1600aajs-75b4a0_wd-wmat2249346493464 =>PUP.Optional.IsStart
P2 - EXT FILE: (...) -- C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\mteietq8.default\extensions\client@anonymox.net.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\mteietq8.default\extensions\{285ACFBB-8E53-4feb-90E6-F02A128927F3}.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\mteietq8.default\searchplugins\istartsurf.xml =>PUP.Optional.IsStart
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ©
P2 - EXT: (.lightningnewtab.com - deskCut.) -- C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\mteietq8.default\extensions\deskCutv2@gmail.com =>PUP.Optional.LightningNewTab
P2 - FPN: [HKCU] [hopster.com/CouponPrinterPlugin] - (.Hopster.) -- C:\Documents and Settings\Administrateur\Application Data\Hopster\CouponPrinterPlugin\2.0.2.0\npCouponPrinterPlugin.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_19_0_0_226.dll ©

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (14) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/ =>PUP.Optional.IsStart
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/ =>PUP.Optional.IsStart
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/ =>PUP.Optional.IsStart
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.fr/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/ =>PUP.Optional.IsStart
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.istartsurf.com/ =>PUP.Optional.IsStart
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 0

---\\ Internet Explorer,Proxy Management (5) - 1s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (20)

---\\ Browser Helper Object de navigateur (BHO) (7) - 0s
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} . (.Copyright 2001 - AcroIEHelper Module.) -- C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx =>PUP.Optional.Pirrit
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} . (.Microsoft Corp. - Microsoft Search Helper Extention.) -- C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll ©
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_45\bin\ssv.dll ©
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll ©
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL ©
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_45\bin\jp2ssv.dll ©
O2 - BHO: WinToFlash Suggestor - {FC36B0BD-27F0-4cdd-8AB1-50651EFC3EFD} . (.Novicorp LLC - WinToFlash Suggestor for Microsoft Internet.) -- C:\Program Files\WinToFlash Suggestor\WinToFlashSuggestor.dll =>PUP.Optional.WinToFlash

---\\ Internet Explorer, Barre d'outil (1) - 0s
O3 - Toolbar: 0x04A257A0CCBA264D999079A187E2698E - [HKCU]{A057A204-BACC-4D26-9990-79A187E2698E} . (...) -- (.not file.)

---\\ Applications lancées au démarrage du système (18) - 0s
O4 - HKLM\..\Run: [avast5] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe ©
O4 - HKLM\..\Run: [SMΔRT-Protection] . (.Smadsoft - Smadav USB Antivirus & Additional Protectio.) -- C:\Program Files\SMADAV\SMΔRTP.exe
O4 - HKLM\..\Run: [Qsocial] C:\Program Files\QSocial\ /auto (.not file.)
O4 - HKLM\..\Run: [KernelFaultCheck] C:\WINDOWS\system32\dumprep 0 -k (.not file.)
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe ©
O4 - HKCU\..\Run: [DAEMON Tools Pro Agent] . (.Disc Soft Ltd - DAEMON Tools Pro Agent.) -- C:\Program Files\DAEMON Tools Pro\DTAgent.exe ©
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_EA3F427ADC25788AF83B11C098D810FE] . (.Crossbrowse - Crossbrowse.) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O4 - HKUS\.DEFAULT\..\RunOnce: [JkDefrag] rundll32 advpack.dll,LaunchINFSection JKDEFRAG.INF,RunOnce,1,N
O4 - HKUS\.DEFAULT\..\RunOnce: [SweetRegistry] rundll32 advpack.dll,LaunchINFSection SweetReg.inf,PerUserStub
O4 - HKUS\S-1-5-18\..\RunOnce: [JkDefrag] rundll32 advpack.dll,LaunchINFSection JKDEFRAG.INF,RunOnce,1,N
O4 - HKUS\S-1-5-18\..\RunOnce: [SweetRegistry] rundll32 advpack.dll,LaunchINFSection SweetReg.inf,PerUserStub
O4 - HKUS\S-1-5-19\..\RunOnce: [JkDefrag] rundll32 advpack.dll,LaunchINFSection JKDEFRAG.INF,RunOnce,1,N
O4 - HKUS\S-1-5-19\..\RunOnce: [SweetRegistry] rundll32 advpack.dll,LaunchINFSection SweetReg.inf,PerUserStub
O4 - HKUS\S-1-5-20\..\RunOnce: [JkDefrag] rundll32 advpack.dll,LaunchINFSection JKDEFRAG.INF,RunOnce,1,N
O4 - HKUS\S-1-5-20\..\RunOnce: [SweetRegistry] rundll32 advpack.dll,LaunchINFSection SweetReg.inf,PerUserStub
O4 - HKUS\S-1-5-21-796845957-688789844-682003330-500\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe ©
O4 - HKUS\S-1-5-21-796845957-688789844-682003330-500\..\Run: [DAEMON Tools Pro Agent] . (.Disc Soft Ltd - DAEMON Tools Pro Agent.) -- C:\Program Files\DAEMON Tools Pro\DTAgent.exe ©
O4 - HKUS\S-1-5-21-796845957-688789844-682003330-500\..\Run: [GoogleChromeAutoLaunch_EA3F427ADC25788AF83B11C098D810FE] . (.Crossbrowse - Crossbrowse.) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse

---\\ Raccourcis Global Startup (14) - 4s
O4 - GS\Quicklaunch [Administrateur]: Crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O4 - GS\Startup [Administrateur]: crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O4 - GS\Quicklaunch [ASPNET]: Crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O4 - GS\Startup [ASPNET]: crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O4 - GS\Quicklaunch [HelpAssistant]: Crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O4 - GS\Startup [HelpAssistant]: crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O4 - GS\Quicklaunch [Hicham]: Crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O4 - GS\Startup [Hicham]: crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O4 - GS\Quicklaunch [Invité]: Crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O4 - GS\Startup [Invité]: crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O4 - GS\Quicklaunch [SUPPORT_388945a0]: Crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O4 - GS\Startup [SUPPORT_388945a0]: crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O4 - GS\CommonDesktop [Public]: Crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O4 - GS\CommonDesktop [Public]: Search.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse

---\\ Modification Domaine/Adresses DNS (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

---\\ Protocole additionnel (27) - 0s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll ©
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll ©
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API.) -- C:\WINDOWS\system32\inetcomm.dll ©
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll ©
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll ©
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll ©
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} . (.Microsoft Corporation - WIA Scripting Layer.) -- C:\WINDOWS\system32\wiascr.dll ©
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll ©
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll ©
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll ©
O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll ©
O18 - Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE14\MSOXMLMF.DLL ©

---\\ Liste des services NT non Microsoft et non désactivés (5) - 1s
O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe ©
O23 - Service: Coupon Printer Service (CouponPrinterService) . (.Coupons.com Inc. - Coupon Printer Service.) - C:\Program Files\Coupons\CouponPrinterService.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe ©
O23 - Service: Google Software Updater (gusvc) . (.Google - gusvc.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe ©
O23 - Service: ihpmServer (ihpmServer) . (.Copyright 2015. All rights reserved. - Service.) - C:\Program Files\RayDld\ihpmServer.exe =>PUP.Optional.CrossRider

---\\ Logiciels installés (87) - 16s
O42 - Logiciel: Adobe Acrobat 5.0 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Acrobat 5.0 ©
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR ©
O42 - Logiciel: Adobe Flash Player 19 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI ©
O42 - Logiciel: Adobe Shockwave Player 12.1 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player ©
O42 - Logiciel: avast! Free Antivirus v5.0.677.0 - (.Alwil Software.) [HKLM] -- avast5 ©
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner ©
O42 - Logiciel: ClearType Tuning - (...) [HKLM] -- ClearTypeCPL
O42 - Logiciel: Open Command Prompt Shell Extension - (.Kai Liu.) [HKLM] -- CmdOpen ©
O42 - Logiciel: Combined Community Codec Pack 2008-09-21 16:18 - (.CCCP Project.) [HKLM] -- Combined Community Codec Pack_is1
O42 - Logiciel: Coupon Printer for Windows - (.Coupons.com Incorporated.) [HKLM] -- Coupon Printer for Windows5.0.1.6
O42 - Logiciel: CPU-Z - (...) [HKLM] -- CPUZ
O42 - Logiciel: Crossbrowse - (.The Crossbrowse Authors.) [HKLM] -- Crossbrowse =>PUP.Optional.CrossBrowse
O42 - Logiciel: CurrPorts - (...) [HKLM] -- CurrPorts
O42 - Logiciel: DAEMON Tools Pro - (.Disc Soft Ltd.) [HKLM] -- DAEMON Tools Pro ©
O42 - Logiciel: Microsoft DirectX Control Panel 9.0c - (...) [HKLM] -- DirectXCPL
O42 - Logiciel: EaseUS Partition Master 10.1 Trial Edition - (.EaseUS.) [HKLM] -- EaseUS Partition Master Trial Edition_is1 ©
O42 - Logiciel: ESET Online Scanner v3 - (...) [HKLM] -- ESET Online Scanner
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome ©
O42 - Logiciel: GoRC - (...) [HKLM] -- GoRC
O42 - Logiciel: GPU-Z - (...) [HKLM] -- GPUZ
O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (...) [HKLM] -- HDMI
O42 - Logiciel: HD Tune - (...) [HKLM] -- HDTune
O42 - Logiciel: HP LaserJet P1000 series - (...) [HKLM] -- HP LaserJet P1000 series
O42 - Logiciel: HWMonitor - (...) [HKLM] -- HWMonitor
O42 - Logiciel: ImgBurn - (.LIGHTNING UK!.) [HKLM] -- ImgBurn
O42 - Logiciel: Nero Info Tool - (...) [HKLM] -- InfoTool
O42 - Logiciel: istartsurf - (...) [HKLM] -- istartsurf =>PUP.Optional.IsStart
O42 - Logiciel: JkDefrag - (...) [HKLM] -- JkDefrag
O42 - Logiciel: Hotfix for Windows XP (KB954550-v5) - (.Microsoft Corporation.) [HKLM] -- KB954550-v5 ©
O42 - Logiciel: MemTest - (...) [HKLM] -- MemTest
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService ©
O42 - Logiciel: Windows Installer CleanUp - (...) [HKLM] -- MSI
O42 - Logiciel: Nero 8 Lite 8.3.6.0 - (.Updatepack.nl.) [HKLM] -- Nero8Lite_is1
O42 - Logiciel: Notepad++ - (.Notepad++ Team.) [HKLM] -- Notepad++ ©
O42 - Logiciel: Microsoft Project Standard 2010 - (.Microsoft Corporation.) [HKLM] -- Office14.PRJSTDR ©
O42 - Logiciel: Pserv - (...) [HKLM] -- Pserv
O42 - Logiciel: Quicksys RegDefrag - (...) [HKLM] -- RegDefrag
O42 - Logiciel: RegScanner - (...) [HKLM] -- RegScanner
O42 - Logiciel: Ayat - (.UNKNOWN.) [HKLM] -- sa.edu.ksa.ayat
O42 - Logiciel: Samsung ML-2010 Series - (...) [HKLM] -- Samsung ML-2010 Series
O42 - Logiciel: PLANCHER'99 - (...) [HKLM] -- ST5UNST #1
O42 - Logiciel: Sysinternals Suite - (...) [HKLM] -- Sysinternals
O42 - Logiciel: TeraCopy 2.3 beta - (.Code Sector.) [HKLM] -- TeraCopy_is1
O42 - Logiciel: TOPAZE - (...) [HKLM] -- TOPAZE
O42 - Logiciel: TreeSize Professional V5.5.5 - (.JAM Software.) [HKLM] -- TreeSize Professional_is1 ©
O42 - Logiciel: Tweak UI - (...) [HKLM] -- TweakUI
O42 - Logiciel: Utilitaires Gnu Unix - (.GnuWin32.) [HKLM] -- Unix
O42 - Logiciel: Unlocker 1.8.7 - (.Cedrick Collomb.) [HKLM] -- Unlocker ©
O42 - Logiciel: UsbFix - (.El Desaparecido - www.usbfix.net - www.sosvirus.net.) [HKLM] -- Usbfix ©
O42 - Logiciel: µTorrent - (...) [HKLM] -- uTorrent
O42 - Logiciel: VirtualCloneDrive - (.Elaborate Bytes.) [HKLM] -- VirtualCloneDrive ©
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player ©
O42 - Logiciel: WinMover 3.2.0.6 - (.Andreas Eliasson (EliasAE).) [HKLM] -- WinMover_is1
O42 - Logiciel: Archiveur WinRAR - (...) [HKLM] -- WinRAR archiver
O42 - Logiciel: WinToFlash Suggestor - (.Think Tank Labs, LLC.) [HKLM] -- WinToFlash Suggestor =>PUP.Optional.WinToFlash
O42 - Logiciel: XnView Shell Extension 2.4.0 - (.Gougelet Pierre-e.) [HKLM] -- XnView Shell Extension_is1 ©
O42 - Logiciel: XnViewMP 0.72 - (.Gougelet Pierre-e.) [HKLM] -- XnViewMP_is1 ©
O42 - Logiciel: XML Paper Specification Shared Components Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- XpsEPSC ©
O42 - Logiciel: XML Paper Specification Shared Components Language Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- XPSEPSCLP ©
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {0274D240-4D1D-4FDA-9A36-09F0BECD288F} ©
O42 - Logiciel: MrvlUsgTracking - (.Marvell.) [HKLM] -- {02C85EC5-E864-4847-AF55-42730861004C} ©
O42 - Logiciel: Java 8 Update 45 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218045F0} ©
O42 - Logiciel: Inpaint 6.2 - (.Teorex.) [HKLM] -- {2AEDC172-479F-47AE-8A48-A0524D4AED5B}_is1 ©
O42 - Logiciel: Canon MF4400 Series - (.Canon Inc..) [HKLM] -- {4129CA8E-7E75-4eee-BAE5-AA7707AA7708} ©
O42 - Logiciel: Antidote HD - (.Druide informatique inc..) [HKLM] -- {56CDB4FE-895F-4E0D-8BB4-9A8D4310898D} ©
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} ©
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} ©
O42 - Logiciel: Icecream PDF Converter version 1.4 - (.Icecream Apps.) [HKLM] -- {6811A286-E9F4-4035-9738-7721C087E500}_is1 ©
O42 - Logiciel: Java 2 Runtime Environment, SE v1.4.2_04 - (.Sun Microsystems, Inc..) [HKLM] -- {7148F0A8-6813-11D6-A77B-00B0D0142040} ©
O42 - Logiciel: Paint.NET v3.5.11 - (.dotPDN LLC.) [HKLM] -- {72EF03F5-0507-4861-9A44-D99FD4C41417} ©
O42 - Logiciel: HPSSupply - (.Nom de votre société.) [HKLM] -- {7902E313-FF0F-4493-ACB1-A8147B78DCD0}
O42 - Logiciel: Active@ Boot Disk 9 - (.LSoft Technologies Inc.) [HKLM] -- {9770BCC6-C50D-41D7-AE07-5B796D630052}_is1 ©
O42 - Logiciel: Microsoft Search Enhancement Pack - (.Microsoft Corporation.) [HKLM] -- {9C9CEB9D-53FD-49A7-85D2-FE674F72F24E} ©
O42 - Logiciel: Novicorp WinToFlash Lite version 1.4.0000 - (.Novicorp.) [HKLM] -- {A1A1FF24-34C6-4B77-BDB7-A689979F018C}_is1
O42 - Logiciel: PDF-Viewer - (.Tracker Software Products Ltd.) [HKLM] -- {A278382D-4F1B-4D47-9885-8523F7261E8D}_is1 ©
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} ©
O42 - Logiciel: Jeux du Dictionnaire - (.Micro Application.) [HKLM] -- {AB254D00-D5D7-493B-922C-9E673848EFB5} ©
O42 - Logiciel: MSXML 6.0 Parser - (.Microsoft Corporation.) [HKLM] -- {AEB9948B-4FF2-47C9-990E-47014492A0FE} ©
O42 - Logiciel: Micro Application - 38 Dictionnaires et Recueils de Correspondance - (...) [HKLM] -- {B410328C-0E8C-4DD2-9DB4-DE7766D0DFE0}
O42 - Logiciel: Windows Presentation Foundation - (.Microsoft Corporation.) [HKLM] -- {BAF78226-3200-4DB4-BE33-4D922A799840} ©
O42 - Logiciel: ISO to USB - (.isotousb.com.) [HKLM] -- {D08A30AC-A663-4EA8-8D81-B98E17F19F1C}_is1 ©
O42 - Logiciel: Ayat - (.UNKNOWN.) [HKLM] -- {D1566597-887B-6FAB-A761-018A5D75D6EC}
O42 - Logiciel: DAMN NFO Viewer Setup - (.DAMN.) [HKLM] -- {D5DE2E28-2BA1-4CF8-A4C5-D3D2AE0A9E38}
O42 - Logiciel: Visuel intégré - (.Druide informatique inc..) [HKLM] -- {D6A48C7F-A0F8-46A5-A1ED-F45A62FE93BF} ©
O42 - Logiciel: PDF-XChange Editor - (.Tracker Software Products (Canada) Ltd..) [HKLM] -- {D9E4302E-EB32-4133-BB61-7FF3E19BBCF8} ©
O42 - Logiciel: SoundMAX - (.Analog Devices.) [HKLM] -- {F0A37341-D692-11D4-A984-009027EC0A9C} ©
O42 - Logiciel: 32 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM] -- {F7B0E599-C114-4493-BC4D-D8FC7CBBABBB} ©

---\\ HKCU & HKLM Software Keys (146) - 16s
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\AdwCleaner
HKLM\SOFTWARE\Ahead
HKLM\SOFTWARE\ALWIL Software
HKLM\SOFTWARE\Analog Devices
HKLM\SOFTWARE\AnyDWGSoftware
HKLM\SOFTWARE\AppDataLow
HKLM\SOFTWARE\AVAST Software
HKLM\SOFTWARE\AVG
HKLM\SOFTWARE\Belarc
HKLM\SOFTWARE\C07ft5Y
HKLM\SOFTWARE\Canon
HKLM\SOFTWARE\Code Sector
HKLM\SOFTWARE\CodeGear
HKLM\SOFTWARE\Combined-Community-Codec-Pack
HKLM\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse
HKLM\SOFTWARE\Cygnus Solutions
HKLM\SOFTWARE\DAMN
HKLM\SOFTWARE\Disc Soft
HKLM\SOFTWARE\Druide informatique inc.
HKLM\SOFTWARE\EASEUS
HKLM\SOFTWARE\Elaborate Bytes
HKLM\SOFTWARE\Eset
HKLM\SOFTWARE\FlashFXP
HKLM\SOFTWARE\FLEXlm License Manager
HKLM\SOFTWARE\Foxit Software
HKLM\SOFTWARE\Freemake
HKLM\SOFTWARE\Gabest
HKLM\SOFTWARE\Gemplus
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\Hewlett-Packard
HKLM\SOFTWARE\HideAllIP
HKLM\SOFTWARE\ihpmserver
HKLM\SOFTWARE\ImgBurn
HKLM\SOFTWARE\Innovative Solutions
HKLM\SOFTWARE\InstalledOptions
HKLM\SOFTWARE\INTEL
HKLM\SOFTWARE\InterVideo
HKLM\SOFTWARE\istartsurfSoftware =>PUP.Optional.IsStart
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\LAventure
HKLM\SOFTWARE\Licenses
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\McAfee.com
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\NCH Software
HKLM\SOFTWARE\NCH Swift Sound
HKLM\SOFTWARE\Nero
HKLM\SOFTWARE\Notepad++
HKLM\SOFTWARE\Novicorp
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\Paint.NET
HKLM\SOFTWARE\Piriform
HKLM\SOFTWARE\Program Groups
HKLM\SOFTWARE\RayDld =>PUP.Optional.CrossRider
HKLM\SOFTWARE\RealNetworks
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\Sage
HKLM\SOFTWARE\Samsung
HKLM\SOFTWARE\Schlumberger
HKLM\SOFTWARE\SOSVirus
HKLM\SOFTWARE\Tracker Software
HKLM\SOFTWARE\VideoLAN
HKLM\SOFTWARE\Windows
HKLM\SOFTWARE\Windows 3.1 Migration Status
HKLM\SOFTWARE\WiseCleaner
HKLM\SOFTWARE\Wow6432Node
HKLM\SOFTWARE\XnViewMP
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\ALWIL Software
HKCU\SOFTWARE\Analog Devices
HKCU\SOFTWARE\AnyDWGSoftware
HKCU\SOFTWARE\Autodesk
HKCU\SOFTWARE\Avg
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Canon
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\Code Sector
HKCU\SOFTWARE\CouponPrinter
HKCU\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse
HKCU\SOFTWARE\CrossBrowser =>PUP.Optional.CrossBrowser
HKCU\SOFTWARE\Cygnus Solutions
HKCU\SOFTWARE\DAMN
HKCU\SOFTWARE\Dee Mon
HKCU\SOFTWARE\Disc Soft
HKCU\SOFTWARE\Druide informatique inc.
HKCU\SOFTWARE\EaseUS
HKCU\SOFTWARE\Elaborate Bytes
HKCU\SOFTWARE\ESET
HKCU\SOFTWARE\FinalWire
HKCU\SOFTWARE\FlashBoot
HKCU\SOFTWARE\FlashFXP
HKCU\SOFTWARE\Foxit Software Company
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Hewlett-Packard
HKCU\SOFTWARE\HideAllIP
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\ImgBurn
HKCU\SOFTWARE\Innovative Solutions
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\JEDI-VCL
HKCU\SOFTWARE\KM Wakeup
HKCU\SOFTWARE\LAventure
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\NCH Software
HKCU\SOFTWARE\NCH Swift Sound
HKCU\SOFTWARE\Nero
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\OMX_Media
HKCU\SOFTWARE\OperaOB
HKCU\SOFTWARE\p-nand-q.com
HKCU\SOFTWARE\Paint.NET
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\Police
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\QuickPar
HKCU\SOFTWARE\RealNetworks
HKCU\SOFTWARE\Sage
HKCU\SOFTWARE\Seifert
HKCU\SOFTWARE\SMADΔV
HKCU\SOFTWARE\SSPrint
HKCU\SOFTWARE\Sysinternals
HKCU\SOFTWARE\techPowerUp
HKCU\SOFTWARE\Teorex
HKCU\SOFTWARE\Tracker Software
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\UsbFix
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\VideoLAN
HKCU\SOFTWARE\Visual Integrity
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\WinToFlash Suggestor =>PUP.Optional.WinToFlash
HKCU\SOFTWARE\WPI
HKCU\SOFTWARE\XnView
HKCU\SOFTWARE\ZebHelpProcess Helper

---\\ Contenu des dossiers Programmes (229) - 9s
O43 - CFD: 28/01/2015 - [] D -- C:\Program Files\Adobe
O43 - CFD: 25/04/2011 - [] D -- C:\Program Files\Alwil Software
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\Analog Devices
O43 - CFD: 10/02/2015 - [] HD -- C:\Program Files\Avago-HP
O43 - CFD: 04/02/2015 - [] D -- C:\Program Files\Ayat
O43 - CFD: 19/01/2015 - [] D -- C:\Program Files\CCleaner
O43 - CFD: 20/05/2010 - [] D -- C:\Program Files\CDI
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\Combined Community Codec Pack
O43 - CFD: 03/03/2010 - [0] D -- C:\Program Files\ComPlus Applications
O43 - CFD: 05/10/2015 - [] D -- C:\Program Files\Coupons
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\Crossbrowse =>PUP.Optional.CrossBrowse
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\DAEMON Tools Pro
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\DAMN NFO Viewer
O43 - CFD: 19/08/2015 - [] D -- C:\Program Files\Driver-Soft =>.Superfluous.DriverSoft
O43 - CFD: 20/01/2015 - [] D -- C:\Program Files\Druide
O43 - CFD: 07/09/2015 - [] D -- C:\Program Files\EaseUS
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\Elaborate Bytes
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\Enigma Software Group =>.Superfluous.SpyHunter
O43 - CFD: 20/01/2015 - [] D -- C:\Program Files\ESET
O43 - CFD: 18/04/2015 - [] D -- C:\Program Files\Fichiers communs
O43 - CFD: 21/05/2010 - [] D -- C:\Program Files\FlashFXP
O43 - CFD: 02/03/2015 - [0] D -- C:\Program Files\FreeTime
O43 - CFD: 19/01/2015 - [] D -- C:\Program Files\Google
O43 - CFD: 19/01/2015 - [] D -- C:\Program Files\HP
O43 - CFD: 27/03/2015 - [] D -- C:\Program Files\Icecream PDF Converter
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\ImgBurn
O43 - CFD: 03/03/2015 - [] D -- C:\Program Files\Inpaint
O43 - CFD: 28/01/2015 - [] HD -- C:\Program Files\InstallJammer Registry
O43 - CFD: 21/10/2015 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 19/01/2015 - [] D -- C:\Program Files\Internet Mobile+
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\ISO to USB
O43 - CFD: 16/05/2015 - [] D -- C:\Program Files\JAM Software
O43 - CFD: 10/06/2015 - [] D -- C:\Program Files\Java
O43 - CFD: 19/01/2015 - [] D -- C:\Program Files\LG Electronics
O43 - CFD: 20/01/2015 - [] D -- C:\Program Files\Micro Application
O43 - CFD: 09/03/2010 - [] D -- C:\Program Files\Microsoft
O43 - CFD: 30/04/2015 - [] D -- C:\Program Files\Microsoft Analysis Services
O43 - CFD: 30/04/2015 - [] D -- C:\Program Files\Microsoft Office
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\Microsoft Silverlight
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\Microsoft Visual Studio
O43 - CFD: 19/01/2015 - [] D -- C:\Program Files\Microsoft Visual Studio 8
O43 - CFD: 19/01/2015 - [] D -- C:\Program Files\Microsoft Works
O43 - CFD: 30/04/2015 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\Movie Maker
O43 - CFD: 19/10/2015 - [] D -- C:\Program Files\Mozilla Firefox
O43 - CFD: 20/10/2015 - [] D -- C:\Program Files\Mozilla Maintenance Service
O43 - CFD: 20/05/2010 - [0] D -- C:\Program Files\MPEGAV
O43 - CFD: 18/04/2015 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\MSECache
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\MSN Gaming Zone
O43 - CFD: 06/08/2015 - [] D -- C:\Program Files\NCH Software
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\Nero
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\NetMeeting
O43 - CFD: 12/10/2015 - [] D -- C:\Program Files\Notepad++
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\Novicorp WinToFlash
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\Outlook Express
O43 - CFD: 01/09/2015 - [] D -- C:\Program Files\Paint.NET
O43 - CFD: 26/08/2015 - [] D -- C:\Program Files\QSocial
O43 - CFD: 30/01/2015 - [0] D -- C:\Program Files\QT Lite
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\RayDld =>PUP.Optional.CrossRider
O43 - CFD: 20/05/2010 - [0] D -- C:\Program Files\Real
O43 - CFD: 30/01/2015 - [0] D -- C:\Program Files\Real Alternative
O43 - CFD: 18/04/2015 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 21/10/2015 - [0] D -- C:\Program Files\Samsung
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\Services en ligne
O43 - CFD: 02/09/2015 - [] D -- C:\Program Files\SMADAV
O43 - CFD: 19/01/2015 - [] D -- C:\Program Files\TeraCopy
O43 - CFD: 29/10/2015 - [] D -- C:\Program Files\Tracker Software
O43 - CFD: 03/03/2010 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 30/01/2015 - [] D -- C:\Program Files\Unlocker
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\Utilitaires
O43 - CFD: 19/01/2015 - [] D -- C:\Program Files\uTorrent
O43 - CFD: 12/03/2015 - [] D -- C:\Program Files\Video Enhancer
O43 - CFD: 23/02/2015 - [] D -- C:\Program Files\VideoLAN
O43 - CFD: 17/08/2015 - [] D -- C:\Program Files\Visual Integrity
O43 - CFD: 09/03/2010 - [] D -- C:\Program Files\Windows Live
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\Windows Live Safety Center
O43 - CFD: 30/01/2015 - [] D -- C:\Program Files\Windows Media Connect 2
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 03/03/2010 - [0] HD -- C:\Program Files\WindowsUpdate
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\WinMover
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\WinRAR
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\WinToFlash Suggestor =>PUP.Optional.WinToFlash
O43 - CFD: 30/01/2015 - [0] D -- C:\Program Files\Wise
O43 - CFD: 11/03/2015 - [0] D -- C:\Program Files\WonderFox Soft
O43 - CFD: 23/01/2015 - [] D -- C:\Program Files\XnView
O43 - CFD: 23/01/2015 - [] D -- C:\Program Files\XnViewMP
O43 - CFD: 19/01/2015 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 15/06/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Active@ Boot Disk
O43 - CFD: 20/01/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Antidote
O43 - CFD: 25/04/2011 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\avast! Free Antivirus
O43 - CFD: 19/01/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Canon
O43 - CFD: 19/01/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CCleaner
O43 - CFD: 03/03/2010 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Combined Community Codec Pack
O43 - CFD: 05/10/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Coupons
O43 - CFD: 30/10/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Crossbrowse =>PUP.Optional.CrossBrowse
O43 - CFD: 30/10/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DAEMON Tools Pro
O43 - CFD: 13/07/2015 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 07/09/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\EaseUS Partition Master 10.1
O43 - CFD: 30/10/2015 - [0] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Google Chrome
O43 - CFD: 19/01/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HP
O43 - CFD: 27/03/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Icecream PDF Converter
O43 - CFD: 03/03/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Inpaint
O43 - CFD: 30/10/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ISO to USB
O43 - CFD: 10/06/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Java
O43 - CFD: 18/04/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Java Web Start
O43 - CFD: 19/01/2015 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux
O43 - CFD: 20/01/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Micro Application
O43 - CFD: 30/04/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Office
O43 - CFD: 03/03/2010 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Nero
O43 - CFD: 10/04/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Notepad++
O43 - CFD: 30/10/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Novicorp WinToFlash Lite
O43 - CFD: 15/10/2011 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outil de mise à jour Google
O43 - CFD: 19/01/2015 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration
O43 - CFD: 29/10/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\PDF-XChange
O43 - CFD: 19/01/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\PDF-XChange PDF Viewer
O43 - CFD: 13/02/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\SMADAV Antivirus
O43 - CFD: 19/01/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\TeraCopy
O43 - CFD: 08/03/2012 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\TOPAZE
O43 - CFD: 16/05/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\TreeSize Professional
O43 - CFD: 23/02/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN
O43 - CFD: 03/03/2010 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Virtual CloneDrive
O43 - CFD: 03/03/2010 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Windows Sweet
O43 - CFD: 03/03/2010 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR
O43 - CFD: 23/01/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\XnView
O43 - CFD: 23/01/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\XnViewMP
O43 - CFD: 28/01/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Adobe
O43 - CFD: 25/04/2011 - [] D -- C:\Documents and Settings\All Users\Application Data\Alwil Software
O43 - CFD: 18/04/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Autodesk
O43 - CFD: 25/04/2011 - [] D -- C:\Documents and Settings\All Users\Application Data\avg8
O43 - CFD: 28/02/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Baidu
O43 - CFD: 30/10/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Pro
O43 - CFD: 19/08/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\DriverGenius =>.Superfluous.DriverGenius
O43 - CFD: 29/10/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\FileOpen
O43 - CFD: 03/03/2010 - [] D -- C:\Documents and Settings\All Users\Application Data\FlashFXP
O43 - CFD: 15/10/2011 - [] D -- C:\Documents and Settings\All Users\Application Data\Google Updater
O43 - CFD: 13/05/2010 - [] D -- C:\Documents and Settings\All Users\Application Data\Hewlett-Packard
O43 - CFD: 19/01/2015 - [0] D -- C:\Documents and Settings\All Users\Application Data\HPSSUPPLY
O43 - CFD: 02/02/2012 - [] D -- C:\Documents and Settings\All Users\Application Data\McAfee
O43 - CFD: 19/01/2015 - [] SD -- C:\Documents and Settings\All Users\Application Data\Microsoft
O43 - CFD: 30/04/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Microsoft Help
O43 - CFD: 30/04/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Microsoft Toolkit =>HackTool.AutoKMS
O43 - CFD: 15/06/2012 - [] D -- C:\Documents and Settings\All Users\Application Data\Mozilla
O43 - CFD: 06/08/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\NCH Software
O43 - CFD: 03/03/2010 - [] D -- C:\Documents and Settings\All Users\Application Data\Nero
O43 - CFD: 10/06/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Oracle
O43 - CFD: 27/05/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Sage
O43 - CFD: 10/02/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Sun
O43 - CFD: 25/06/2015 - [0] D -- C:\Documents and Settings\All Users\Application Data\TEMP
O43 - CFD: 20/05/2010 - [] D -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
O43 - CFD: 10/05/2010 - [] D -- C:\Program Files\Fichiers communs\Adobe
O43 - CFD: 21/10/2015 - [] D -- C:\Program Files\Fichiers communs\Adobe AIR
O43 - CFD: 30/04/2015 - [] D -- C:\Program Files\Fichiers communs\DESIGNER
O43 - CFD: 19/01/2015 - [] D -- C:\Program Files\Fichiers communs\InstallShield
O43 - CFD: 10/06/2015 - [] D -- C:\Program Files\Fichiers communs\Java
O43 - CFD: 30/04/2015 - [] D -- C:\Program Files\Fichiers communs\Microsoft Shared
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\Fichiers communs\MSSoap
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\Fichiers communs\Nero
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\Fichiers communs\ODBC
O43 - CFD: 20/05/2010 - [] D -- C:\Program Files\Fichiers communs\Real
O43 - CFD: 28/05/2015 - [] D -- C:\Program Files\Fichiers communs\SAGE
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\Fichiers communs\Services
O43 - CFD: 03/03/2010 - [] D -- C:\Program Files\Fichiers communs\SpeechEngines
O43 - CFD: 19/01/2015 - [] D -- C:\Program Files\Fichiers communs\System
O43 - CFD: 09/03/2010 - [] D -- C:\Program Files\Fichiers communs\Windows Live
O43 - CFD: 25/06/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\8floor
O43 - CFD: 28/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Adobe
O43 - CFD: 18/04/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Autodesk
O43 - CFD: 30/10/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\DAEMON Tools Pro
O43 - CFD: 20/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Druide
O43 - CFD: 20/05/2010 - [] D -- C:\Documents and Settings\Administrateur\Application Data\dvdcss
O43 - CFD: 03/03/2010 - [] D -- C:\Documents and Settings\Administrateur\Application Data\EliasAE
O43 - CFD: 03/09/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Grey Alien Games
O43 - CFD: 19/10/2010 - [0] D -- C:\Documents and Settings\Administrateur\Application Data\Help
O43 - CFD: 06/02/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Hopster
O43 - CFD: 03/03/2010 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Identities
O43 - CFD: 15/05/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\ImgBurn
O43 - CFD: 10/05/2010 - [] D -- C:\Documents and Settings\Administrateur\Application Data\InterTrust
O43 - CFD: 30/10/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\istartsurf =>PUP.Optional.IsStart
O43 - CFD: 16/05/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\JAM Software
O43 - CFD: 28/04/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Lazy Turtle Games
O43 - CFD: 31/08/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\LockAP
O43 - CFD: 03/03/2010 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Macromedia
O43 - CFD: 25/05/2015 - [0] D -- C:\Documents and Settings\Administrateur\Application Data\Media Player Classic
O43 - CFD: 29/04/2015 - [] SD -- C:\Documents and Settings\Administrateur\Application Data\Microsoft
O43 - CFD: 03/03/2010 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Mozilla
O43 - CFD: 15/05/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Nero
O43 - CFD: 10/04/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Notepad++
O43 - CFD: 30/10/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Novicorp
O43 - CFD: 27/03/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\OpenOffice.org
O43 - CFD: 30/04/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\QSocial
O43 - CFD: 04/02/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\sa.edu.ksa.ayat
O43 - CFD: 17/04/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Sage
O43 - CFD: 20/10/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Samsung
O43 - CFD: 08/07/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Smadav
O43 - CFD: 03/03/2010 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Sun
O43 - CFD: 19/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\TeraCopy
O43 - CFD: 29/10/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Tracker Software
O43 - CFD: 30/10/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\uTorrent
O43 - CFD: 29/10/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\vlc
O43 - CFD: 18/03/2010 - [0] D -- C:\Documents and Settings\Administrateur\Application Data\WinRAR
O43 - CFD: 30/01/2015 - [0] D -- C:\Documents and Settings\Administrateur\Application Data\WiseUpdate
O43 - CFD: 27/10/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\XnViewMP
O43 - CFD: 30/10/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\ZHP
O43 - CFD: 21/07/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Adobe
O43 - CFD: 18/04/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Autodesk
O43 - CFD: 30/10/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Crossbrowse =>PUP.Optional.CrossBrowse
O43 - CFD: 26/09/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google
O43 - CFD: 19/10/2010 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Help
O43 - CFD: 27/03/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Icecream
O43 - CFD: 27/04/2010 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Identities
O43 - CFD: 05/06/2015 - [] SD -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft
O43 - CFD: 03/03/2010 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft Help
O43 - CFD: 03/03/2010 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla
O43 - CFD: 30/10/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Novicorp
O43 - CFD: 02/09/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Paint.NET
O43 - CFD: 10/02/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Sun
O43 - CFD: 19/08/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Temp
O43 - CFD: 25/02/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Video Enhancer
O43 - CFD: 01/05/2010 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\WMTools Downloaded Files
O43 - CFD: 30/01/2015 - [] RD -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 30/10/2015 - [] RD -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 19/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\HP
O43 - CFD: 03/03/2010 - [] D -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\ImgBurn
O43 - CFD: 10/04/2015 - [0] D -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Notepad++
O43 - CFD: 03/03/2010 - [] D -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\WinMover
O43 - CFD: 03/03/2010 - [] D -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\WinRAR

---\\ ShellIconOverlayIdentifiers (SIOI) (1) - 0s
O106 - SIOI: Offline Files Menu [Fichiers hors connexion] - {750fdf0e-2a26-11d1-a3ea-080036587f03}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\system32\cscui.dll ©

---\\ Enumération des clés StartupReg (21) - 1s
O53 - SMSR:HKLM\...\startupreg\agentantidote.exe [Key] . (.Druide informatique inc. - AgentAntidote.) -- C:\Program Files\Druide\Antidote 7\Programmes32\agentantidote.exe ©
O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe ©
O53 - SMSR:HKLM\...\startupreg\DriverToolkit [Key] . (...) -- C:\Program Files\DriverToolkit\DriverToolkit.exe (.not file.) =>PUP.Optional.DriverToolkit
O53 - SMSR:HKLM\...\startupreg\HotKeysCmds [Key] . (.Intel Corporation - hkcmd Module.) -- C:\WINDOWS\system32\hkcmd.exe ©
O53 - SMSR:HKLM\...\startupreg\IgfxTray [Key] . (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxtray.exe ©
O53 - SMSR:HKLM\...\startupreg\IMJPMIG8.1 [Key] . (.Microsoft Corporation - Microsoft IME.) -- C:\WINDOWS\ime\IMJP8_1\imjpmig.exe ©
O53 - SMSR:HKLM\...\startupreg\KernelFaultCheck [Key] . (...) -- C:\WINDOWS\system32\dumprep 0 -k (.not file.)
O53 - SMSR:HKLM\...\startupreg\MediaDICO38 [Key] . (.L'Aventure Multimedia - .) -- C:\Program Files\Micro Application\38 Dictionnaires et Recueils de Correspondance\LanceMediaDICO38.exe ©
O53 - SMSR:HKLM\...\startupreg\msnmsgr [Key] . (...) -- C:\Program Files\MSN Messenger\MsnMsgr.Exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\MSPY2002 [Key] . (...) -- C:\WINDOWS\system32\IME\PINTLGNT\IMSCINST.EXE
O53 - SMSR:HKLM\...\startupreg\Persistence [Key] . (.Intel Corporation - persistence Module.) -- C:\WINDOWS\system32\igfxpers.exe ©
O53 - SMSR:HKLM\...\startupreg\PHIME2002A [Key] . (.Microsoft Corporation - 微軟新注音輸入法 2002a.) -- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE ©
O53 - SMSR:HKLM\...\startupreg\PHIME2002ASync [Key] . (.Microsoft Corporation - 微軟新注音輸入法 2002a.) -- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE ©
O53 - SMSR:HKLM\...\startupreg\Qsocial [Key] . (...) -- C:\Program Files\QSocial\ /auto (.not file.)
O53 - SMSR:HKLM\...\startupreg\Samsung Common SM [Key] . (...) -- C:\WINDOWS\Samsung\ComSMMgr\ssmmgr.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\SoundMAXPnP [Key] . (.Analog Devices, Inc. - SMax4PNP.) -- C:\Program Files\Analog Devices\Core\smax4pnp.exe ©
O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe ©
O53 - SMSR:HKLM\...\startupreg\swg [Key] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe ©
O53 - SMSR:HKLM\...\startupreg\Synchronization Manager [Key] . (.Microsoft Corporation - Gestionnaire de synchronisation Microsoft.) -- C:\WINDOWS\system32\mobsync.exe ©
O53 - SMSR:HKLM\...\startupreg\VirtualCloneDrive [Key] . (.Elaborate Bytes AG - Virtual CloneDrive Daemon.) -- C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe ©
O53 - SMSR:HKLM\...\startupreg\WinMover [Key] . (.Andreas Eliasson (EliasAE) - WinMover executable.) -- C:\Program Files\WinMover\WinMover.exe

---\\ Liste des pilotes du système (46) - 3s
O58 - SDL:2010/09/07 14:46:51 A . (.AVAST Software - avast! Base Kernel-Mode Device Driver for W.) -- C:\WINDOWS\System32\drivers\aavmker4.sys [28880] ©
O58 - SDL:2008/06/19 14:35:30 A . (.Analog Devices, Inc. - High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\ADIHdAud.sys [338944] ©
O58 - SDL:2010/09/07 14:47:07 A . (.AVAST Software - avast! File System Access Blocking Driver.) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys [17744] ©
O58 - SDL:2010/09/07 14:47:16 A . (.AVAST Software - avast! File System Filter Driver for Window.) -- C:\WINDOWS\System32\drivers\aswmon.sys [94544] ©
O58 - SDL:2010/09/07 14:47:19 A . (.AVAST Software - avast! File System Filter Driver for Window.) -- C:\WINDOWS\System32\drivers\aswmon2.sys [100176] ©
O58 - SDL:2010/09/07 14:47:46 A . (.AVAST Software - avast! TDI RDR Driver.) -- C:\WINDOWS\System32\drivers\aswRdr.sys [23376] ©
O58 - SDL:2010/09/07 14:52:03 A . (.AVAST Software - avast! self protection module.) -- C:\WINDOWS\System32\drivers\aswSP.sys [165584] ©
O58 - SDL:2010/09/07 14:52:25 A . (.AVAST Software - avast! TDI Filter Driver.) -- C:\WINDOWS\System32\drivers\aswTdi.sys [46672] ©
O58 - SDL:2008/09/27 10:31:20 A . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\System32\drivers\cinemst2.sys [262528] ©
O58 - SDL:2008/09/27 10:31:20 A . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\System32\drivers\cpqdap01.sys [11776] ©
O58 - SDL:2005/03/14 05:01:38 N . (.DeviceGuys, Inc. - Windows NT 4.0 IEEE-1284 parallel class dri.) -- C:\WINDOWS\System32\drivers\DGIVECP.SYS [41984]
O58 - SDL:2008/04/13 17:05:08 A . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- C:\WINDOWS\System32\drivers\dmboot.sys [800256] ©
O58 - SDL:2008/04/14 12:00:00 A . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\System32\drivers\dmio.sys [154496] ©
O58 - SDL:2008/04/14 12:00:00 A . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\System32\drivers\dmload.sys [5888] ©
O58 - SDL:2015/10/30 16:35:34 A . (.Disc Soft Ltd - DAEMON Tools Virtual Bus Driver.) -- C:\WINDOWS\System32\drivers\dtsoftbus01.sys [243128] ©
O58 - SDL:2008/07/21 12:11:58 A . (.Elaborate Bytes AG - ElbyCD Windows NT/2000/XP I/O driver.) -- C:\WINDOWS\System32\drivers\ElbyCDIO.sys [24392] ©
O58 - SDL:2015/10/30 16:46:05 A . (...) -- C:\WINDOWS\System32\drivers\EsgScanner.sys [19984]
O58 - SDL:2008/04/14 12:00:00 A . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [144384]
O58 - SDL:2007/12/19 09:32:12 A . (.Intel Corporation - Intel Graphics Miniport Driver.) -- C:\WINDOWS\System32\drivers\igxpmp32.sys [5854688] ©
O58 - SDL:2008/02/24 05:36:56 A . (.Broadcom Corporation - Broadcom NetLink (TM) Gigabit Ethernet NDIS.) -- C:\WINDOWS\System32\drivers\k57xp32.sys [174592] ©
O58 - SDL:2008/09/27 10:31:20 A . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\nikedrv.sys [12032] ©
O58 - SDL:2008/04/14 12:00:00 A . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- C:\WINDOWS\System32\drivers\ptilink.sys [17792] ©
O58 - SDL:2008/09/27 10:31:20 A . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\System32\drivers\rio8drv.sys [12032] ©
O58 - SDL:2008/09/27 10:31:20 A . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\riodrv.sys [12032] ©
O58 - SDL:2008/04/14 12:00:00 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [20480] ©
O58 - SDL:2008/03/28 09:14:02 A . (.Sonic Focus, Inc - Sonic Focus DSP driver for ADI.) -- C:\WINDOWS\System32\drivers\sfaudio.sys [24064]
O58 - SDL:2008/09/27 10:31:20 A . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\System32\drivers\tsbvcap.sys [21376] ©
O58 - SDL:2008/07/17 00:12:47 A . (.Elaborate Bytes AG - VirtualCloneCD Driver.) -- C:\WINDOWS\System32\drivers\VClone.sys [28672] ©
O58 - SDL:2008/09/27 10:31:20 A . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\System32\drivers\vdmindvd.sys [58112] ©
O58 - SDL:2008/04/14 12:00:00 A . (...) -- C:\WINDOWS\System32\ansi.sys [9037]
O58 - SDL:2008/04/14 12:00:00 A . (...) -- C:\WINDOWS\System32\country.sys [27097]
O58 - SDL:2013/03/07 08:49:20 A . (...) -- C:\WINDOWS\System32\epmntdrv.sys [13896]
O58 - SDL:2013/03/07 08:49:20 A . (...) -- C:\WINDOWS\System32\EuGdiDrv.sys [9160]
O58 - SDL:2008/04/14 12:00:00 A . (...) -- C:\WINDOWS\System32\himem.sys [4912]
O58 - SDL:2008/04/14 12:00:00 A . (...) -- C:\WINDOWS\System32\key01.sys [42809]
O58 - SDL:2008/04/14 12:00:00 A . (...) -- C:\WINDOWS\System32\keyboard.sys [42537]
O58 - SDL:2008/04/14 12:00:00 A . (...) -- C:\WINDOWS\System32\ntdos.sys [27916]
O58 - SDL:2008/04/14 12:00:00 A . (...) -- C:\WINDOWS\System32\ntdos404.sys [29146]
O58 - SDL:2008/04/14 12:00:00 A . (...) -- C:\WINDOWS\System32\ntdos411.sys [29370]
O58 - SDL:2008/04/14 12:00:00 A . (...) -- C:\WINDOWS\System32\ntdos412.sys [29274]
O58 - SDL:2008/04/14 12:00:00 A . (...) -- C:\WINDOWS\System32\ntdos804.sys [29146]
O58 - SDL:2008/04/14 12:00:00 A . (...) -- C:\WINDOWS\System32\ntio.sys [34000]
O58 - SDL:2008/04/14 12:00:00 A . (...) -- C:\WINDOWS\System32\ntio404.sys [34560]
O58 - SDL:2008/04/14 12:00:00 A . (...) -- C:\WINDOWS\System32\ntio411.sys [35648]
O58 - SDL:2008/04/14 12:00:00 A . (...) -- C:\WINDOWS\System32\ntio412.sys [35424]
O58 - SDL:2008/04/14 12:00:00 A . (...) -- C:\WINDOWS\System32\ntio804.sys [34560]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (4) - 8s
O61 - LFC: 2015/10/30 16:14:38 A . (.Novicorp.) -- C:\Documents and Settings\Administrateur\Mes documents\downloads\Novicorp WinToFlash Lite [The Bootable USB Creator] 1.4.0000 Setup (1).exe [7817852]
O61 - LFC: 2015/10/30 16:14:08 A . (.Novicorp.) -- C:\Documents and Settings\Administrateur\Mes documents\downloads\Novicorp WinToFlash Lite [The Bootable USB Creator] 1.4.0000 Setup.exe [7817852]
O61 - LFC: 2015/10/30 16:45:28 A . (.Enigma Software Group USA, LLC..) -- C:\Documents and Settings\Administrateur\Mes documents\downloads\SpyHunter-Installer.exe [3237248] =>.Superfluous.SpyHunter
O61 - LFC: 2015/10/30 16:22:00 A . (.Copyright 2015.) -- C:\Documents and Settings\Administrateur\Application Data\istartsurf\Uninstall.exe [630784] =>PUP.Optional.IsStart

---\\ Associations Shell Spawning (9) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Crossbrowse - Crossbrowse.) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\system32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (18) - 0s
O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Crossbrowse - Crossbrowse.) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (.Crossbrowse - Crossbrowse.) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Crossbrowse - Crossbrowse.) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Crossbrowse - Crossbrowse.) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Crossbrowse - Crossbrowse.) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe ©

---\\ Recherche d'infection sur les navigateurs (13) - 13s
O69 - SBI: prefs.js [Administrateur - mteietq8.default] user_pref("browser.startup.homepage", "http://www.istartsurf.com/?type=hp&ts=1446222028&z=0d90b7acb0ea39de605950cg2zazeq6o3obo9e9o[...] =>PUP.Optional.IsStart
O69 - SBI: prefs.js [Administrateur - mteietq8.default] user_pref("browser.newtab.url", "http://www.istartsurf.com/newtab/?type=nt&ts=1446222028&z=0d90b7acb0ea39de605950cg2zazeq6o3obo9e9[...] =>PUP.Optional.IsStart
O69 - SBI: prefs.js [Administrateur - mteietq8.default] user_pref("extensions.enabledAddons", "deskCutv2%40gmail.com:0.0.10,%7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:41.0.2"); =>PUP.Optional.DeskCut
O69 - SBI: SearchScopes [HKCU] {06B469CF-CDC2-47F4-81A9-8EA6E8506E45} - (Google) - http://www.google.fr/
O69 - SBI: SearchScopes [HKCU] {33BB0A4E-99AF-4226-BDF6-49120163DE86} [DefaultScope] - (istartsurf) - http://www.istartsurf.com/ =>PUP.Optional.IsStart
O69 - SBI: SearchScopes [HKCU] {7ADB693D-38F6-4796-B4ED-85B769D3BB2D} - (Live Search) - http://search.live.com/
O69 - SBI: SearchScopes [HKCU] {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (Yahoo! Search) - http://us.yhs.search.yahoo.com/
O69 - SBI: SearchScopes [HKUS\.DEFAULT] {06B469CF-CDC2-47F4-81A9-8EA6E8506E45} [DefaultScope] - (Google) - http://www.google.fr/
O69 - SBI: SearchScopes [HKUS\.DEFAULT] {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (Yahoo! Search) - http://us.yhs.search.yahoo.com/
O69 - SBI: SearchScopes [HKUS\S-1-5-18] {06B469CF-CDC2-47F4-81A9-8EA6E8506E45} [DefaultScope] - (Google) - http://www.google.fr/
O69 - SBI: SearchScopes [HKUS\S-1-5-18] {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (Yahoo! Search) - http://us.yhs.search.yahoo.com/
O69 - SBI: SearchScopes [HKUS\S-1-5-19] {06B469CF-CDC2-47F4-81A9-8EA6E8506E45} [DefaultScope] - (Google) - http://www.google.fr/
O69 - SBI: SearchScopes [HKUS\S-1-5-20] {06B469CF-CDC2-47F4-81A9-8EA6E8506E45} [DefaultScope] - (Google) - http://www.google.fr/

---\\ Enumère les fichiers Crack & Keygen (1) - 4s
O82 - LFC: 2015/08/04 10:42:24 A . (...) -- C:\Documents and Settings\Administrateur\Bureau\EaseUS Partition Master Technician v10.1 Incl. Keygen TSZ\Keygen.exe [97280] =>.Crack,Keygen

---\\ Enumère les services démarrés par Svchost (41) - 1s
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\WINDOWS\system32\appmgmts.dll [176640] ©
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496] ©
O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [77824] ©
O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464] ©
O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576] ©
O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488] ©
O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\system32\ersvc.dll [23040] ©
O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - .) -- C:\WINDOWS\system32\es.dll [253952] ©
O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: HidServ (HidServ) . (.Microsoft Corporation - HID Audio Service.) -- C:\WINDOWS\system32\hidserv.dll [21504] ©
O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [96768] ©
O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [134144] ©
O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\system32\msgsvc.dll [33792] ©
O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144] ©
O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- C:\WINDOWS\system32\mswsock.dll [247808] ©
O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272] ©
O83 - Search Svchost Services: NWCWorkstation (NWCWorkstation) . (.Microsoft Corporation - Client Service for Netware.) -- C:\WINDOWS\system32\nwwks.dll [65536] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [53248] ©
O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560] ©
O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [18944] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\WINDOWS\system32\ipnathlp.dll [332288] ©
O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\system32\tapisrv.dll [249856] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112] ©
O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178688] ©
O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483328] ©
O83 - Search Svchost Services: Wmi (Wmi) . (.Microsoft Corporation - API avancées Windows 32.) -- C:\WINDOWS\system32\advapi32.dll [685568] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\wmisvc.dll [145408] ©
O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896] ©
O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024] ©
O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376] ©
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\system32\qmgr.dll [409088] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [25800] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll [38400] ©
O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- C:\WINDOWS\system32\mspmsnsv.dll [27136] ©

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (11) - 11s

SS - Demand [22/10/2015] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe ©
SR - Auto [07/09/2010] [ 40384] avast! Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe ©
SS - Demand [07/09/2010] [ 40384] avast! Mail Scanner (avast! Mail Scanner) . (.AVAST Software.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe ©
SS - Demand [07/09/2010] [ 40384] avast! Web Scanner (avast! Web Scanner) . (.AVAST Software.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe ©
SR - Auto [19/09/2015] [ 1051240] Coupon Printer Service (CouponPrinterService) . (.Coupons.com Inc..) - C:\Program Files\Coupons\CouponPrinterService.exe
SS - Auto [28/08/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe ©
SS - Demand [28/08/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe ©
SS - Auto [15/10/2011] [ 194104] Google Software Updater (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe ©
SR - Auto [12/10/2015] [ 270568] ihpmServer (ihpmServer) . (.Copyright 2015. All rights reserved..) - C:\Program Files\RayDld\ihpmServer.exe =>PUP.Optional.CrossRider
SS - Demand [17/10/2015] [ 147624] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe ©

---\\ Scan Additionnel (29) - 0s
C:\Program Files\RayDld\ihpmServer.exe =>PUP.Optional.CrossRider
C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\mteietq8.default\searchplugins\istartsurf.xml =>PUP.Optional.IsStart
C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\mteietq8.default\extensions\deskCutv2@gmail.com =>PUP.Optional.LightningNewTab
C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx =>PUP.Optional.Pirrit
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} =>PUP.Optional.Pirrit
C:\Program Files\WinToFlash Suggestor\WinToFlashSuggestor.dll =>PUP.Optional.WinToFlash
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FC36B0BD-27F0-4cdd-8AB1-50651EFC3EFD} =>PUP.Optional.WinToFlash
HKLM\SYSTEM\CurrentControlSet\Services\ihpmServer =>PUP.Optional.CrossRider
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Crossbrowse =>PUP.Optional.CrossBrowse
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\istartsurf =>PUP.Optional.IsStart
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WinToFlash Suggestor =>PUP.Optional.WinToFlash
HKLM\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse
HKLM\SOFTWARE\istartsurfSoftware =>PUP.Optional.IsStart
HKLM\SOFTWARE\RayDld =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse
HKCU\SOFTWARE\CrossBrowser =>PUP.Optional.CrossBrowser
HKCU\SOFTWARE\WinToFlash Suggestor =>PUP.Optional.WinToFlash
C:\Program Files\Crossbrowse =>PUP.Optional.CrossBrowse
C:\Program Files\Driver-Soft =>.Superfluous.DriverSoft
C:\Program Files\RayDld =>PUP.Optional.CrossRider
C:\Program Files\WinToFlash Suggestor =>PUP.Optional.WinToFlash
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Crossbrowse =>PUP.Optional.CrossBrowse
C:\Documents and Settings\All Users\Application Data\DriverGenius =>.Superfluous.DriverGenius
C:\Documents and Settings\All Users\Application Data\Microsoft Toolkit =>HackTool.AutoKMS
C:\Documents and Settings\Administrateur\Application Data\istartsurf =>PUP.Optional.IsStart
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Crossbrowse =>PUP.Optional.CrossBrowse
C:\Documents and Settings\Administrateur\Application Data\istartsurf\Uninstall.exe =>PUP.Optional.IsStart
HKLM64\SOFTWARE\Classes\CRSBRWSHTML =>PUP.Optional.CrossBrowse

---\\ Récapitulatif des éléments trouvées sur votre station (12) - 0s
http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/blog =>PUP.Optional.CrossBrowse
http://www.nicolascoolman.fr/pup-isstart/ =>PUP.Optional.IsStart
http://www.nicolascoolman.fr/blog =>PUP.Optional.LightningNewTab
http://www.nicolascoolman.fr/pup-pirritsuggestor/ =>PUP.Optional.Pirrit
http://www.nicolascoolman.fr/spyware-wintoflash/ =>PUP.Optional.WinToFlash
http://www.nicolascoolman.fr/blog =>PUP.Optional.CrossBrowser
http://www.nicolascoolman.fr/blog =>.Superfluous.DriverSoft
http://www.nicolascoolman.fr/blog =>.Superfluous.DriverGenius
http://www.nicolascoolman.fr/trojan-autokms/ =>HackTool.AutoKMS
http://www.nicolascoolman.fr/blog =>PUP.Optional.DriverToolkit
http://www.nicolascoolman.fr/blog =>PUP.Optional.DeskCut

~ End of the scan, 23393 items in 79 seconds (887)(1)

Publicité


Signaler le contenu de ce document

Publicité