cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.10.2.147 Par Nicolas Coolman (2015/10/02)
~ Démarré par Logistique (Administrator) (2015/10/05 12:11:16)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Documents and Settings\logistique\Bureau\ZHPDiag.txt
~ Rapport: C:\Documents and Settings\logistique\Application Data\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
Windows XP, 32-bit Service Pack 3 (Build 2600)

---\\ Navigateurs Internet (2) - 0s
GCIE: Google Chrome v45.0.2454.101
MSIE: Internet Explorer v8.0.6001.18702

---\\ Informations sur les produits Windows (3) - 0s
Windows Automatic Updates : OK
Windows Activation Technologies : KO
Windows Genuine Advantage : OK

---\\ Logiciels de protection (2) - 1s
ESET Smart Security v8.0.319.1
Microsoft Security Essentials v1.0.1611.0

---\\ Surveillance de Logiciels (2) - 1s
Adobe Flash Player 14 Plugin
Adobe Reader XI

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 16 Model 6 Stepping 2, AuthenticAMD
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 1834.08 MB (46% free)
~ System Restore: Activé (Enable)
~ System drive C: has 455 GB free of 476 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: MASTER-C3BC0A9C
~ User Name: Logistique
~ Logged in as Administrator

---\\ Enumération des unités disques (1) - 0s
~ Drive C: has 455 GB free of 476 GB (System)

---\\ Etat du Centre de Sécurité Windows (9) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (23) - 1s
[MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [1037824] ©
[MD5.93AD0B78C7357A05F50E594EC7C22300] - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) () -- C:\WINDOWS\System32\rundll32.exe [33792] ©
[MD5.E1948B1F45A176FB4A0251446A5AE86D] - (.Microsoft Corporation - Internet Extensions for Win32.) () -- C:\WINDOWS\System32\wininet.dll [920064] ©
[MD5.DD73D6B9F6B4CB630CF35B438B540174] - (.Microsoft Corporation - Application d'ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [512000] ©
[MD5.D76A076ADB74F8132924E498D63123A2] - (.Microsoft Corporation - DNS Client API DLL.) () -- C:\WINDOWS\System32\dnsapi.dll [149504] ©
[MD5.1E44BC1E83D8FD2305F8D452DB109CF9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [138496] ©
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] - (.Microsoft Corporation - IDE/ATAPI Port Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [96512] ©
[MD5.C885B02847F5D2FD45A24E219ED93B32] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [63744] ©
[MD5.1F4260CC5B42272D71F79E570A27A4FE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [62976] ©
[MD5.31F923EB2170FC172C81ABDA0045D18C] - (.Microsoft Corporation - Pilote de cryptographie FIPS.) () -- C:\WINDOWS\System32\drivers\Fips.sys [44672] ©
[MD5.573C7D0A32852B48F3058CFD8026F511] - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [144384]
[MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [54144] ©
[MD5.083A052659F5310DD8B6A6CB05EDCF8E] - (.Microsoft Corporation - IMAPI Kernel Driver.) () -- C:\WINDOWS\System32\drivers\Imapi.sys [42112] ©
[MD5.CC748EA12C6EFFDE940EE98098BF96BB] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [152832] ©
[MD5.23C74D75E36E7158768DD63D92789A91] - (.Microsoft Corporation - IPSec Driver.) () -- C:\WINDOWS\System32\drivers\IPSec.sys [75264] ©
[MD5.7D304A5EB4344EBEEAB53A2FE3FFB9F0] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [456320] ©
[MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [162816] ©
[MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - (.Microsoft Corporation - NT File System Driver.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [574976] ©
[MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [80384] ©
[MD5.11B4A627BC9614B885C4969BFA5FF8A6] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [51328] ©
[MD5.15CABD0F7C00C47C70124907916AF3F1] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [196224] ©
[MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) () -- C:\WINDOWS\System32\drivers\redbook.sys [58752] ©
[MD5.46DE1126684369BACE4849E4FC8C43CA] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [53376] ©

---\\ Processus lancés (17) - 0s
[MD5.30E3850F303EAE5C364782EA78579CC9] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe [55624] [PID.116] ©
[MD5.DB5BEA73EDAF19AC68B2C0FAD0F92B1A] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [390504] [PID.1116] ©
[MD5.0F32048BF3EA2A85FE3AC48E8E7B7C85] - (.ESET - ESET Service.) -- C:\Program Files\ESET\ESET Smart Security\ekrn.exe [1353720] [PID.1248] ©
[MD5.1A18EBD87AA9FBF6EFE8CFADA08D0275] - (.Firebird Project - Firebird SQL Server.) -- C:\Program Files\Firebird\Firebird_2_5\bin\fbguard.exe [98304] [PID.1348] ©
[MD5.1982E96B2C5C2EFFEF38EFC37293A42E] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 307.8.) -- C:\WINDOWS\system32\nvsvc32.exe [156448] [PID.176] ©
[MD5.2AA61246A5B813C1B12BCCFAA6F23DD8] - (.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files\TeamViewer\TeamViewer_Service.exe [5702416] [PID.1244] ©
[MD5.53C740150C082AAF3C7D21C1D6A9FF98] - (.Firebird Project - Firebird SQL Server.) -- C:\Program Files\Firebird\Firebird_2_5\bin\fbserver.exe [3735552] [PID.684] ©
[MD5.8FDABAC05324CD63B8A33AB1F410A473] - (.ESET - ESET Main GUI.) -- C:\Program Files\ESET\ESET Smart Security\egui.exe [5089480] [PID.3768] ©
[MD5.6253B084FACCE6065D13703F700B2EA1] - (.Nico Mak Computing - File Association Helper.) -- C:\Program Files\File Association Helper\FAHWindow.exe [261808] [PID.3824] ©
[MD5.84863D96BF61B6709C648A6783A7D239] - (.Zebra Technologies Corporation - Zebra Status Monitor.) -- C:\Program Files\Zebra Technologies\Status Monitor\Status Monitor\StatusMonitor.exe [846848] [PID.3912]
[MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [815944] [PID.632] ©
[MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [815944] [PID.3400] ©
[MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [815944] [PID.3940] ©
[MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [815944] [PID.2996] ©
[MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [815944] [PID.2132] ©
[MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [815944] [PID.1584] ©
[MD5.DD7DAC8A6913EB893372091E96871F95] - (.Nicolas Coolman - ZHPDiag.) -- C:\Documents and Settings\logistique\Application Data\ZHP\ZHPDiag3.exe [1940992] [PID.196] ©

---\\ Google Chrome, Démarrage,Recherche,Extensions (3) - 0s
G2 - GCE: Preference [User Data\Default] [ikjonfccnlgefbgmmcdfhcncfiapkbbg] Cavalia Theme
G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (2) - 0s
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll ©
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ©

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (13) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.fr
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer,Proxy Management (6) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Applications lancées au démarrage du système (15) - 0s
O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe ©
O4 - HKLM\..\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Fichiers communs\Apple\Apple Application Support\APSDaemon.exe ©
O4 - HKLM\..\Run: [NvCplDaemon] . (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\RUNDLL32.EXE ©
O4 - HKLM\..\Run: [NvMediaCenter] . (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\RunDLL32.exe ©
O4 - HKLM\..\Run: [FAHConsole] . (.Nico Mak Computing - File Association Helper.) -- C:\Program Files\File Association Helper\FAHConsole.exe ©
O4 - HKLM\..\Run: [KernelFaultCheck] C:\WINDOWS\system32\dumprep 0 -k (.not file.)
O4 - HKLM\..\Run: [egui] . (.ESET - ESET Main GUI.) -- C:\Program Files\ESET\ESET Smart Security\egui.exe ©
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_5324E3ADEE34BFBC5F8CC9F61B52E430] . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O4 - HKCU\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-20\..\Run: [DWQueuedReporting] . (.Microsoft Corporation - Watson Subscriber for SENS Network Notifica.) -- c:\Program Files\Fichiers communs\Microsoft Shared\DW\DWTRIG20.EXE ©
O4 - HKUS\S-1-5-21-725345543-2025429265-682003330-1006\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©

---\\ Modification Domaine/Adresses DNS (6) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.100
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = master.local
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.100
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpDomain = master.local
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.100
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpDomain = master.local

---\\ Protocole additionnel (31) - 1s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll ©
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll ©
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API.) -- C:\WINDOWS\system32\inetcomm.dll ©
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll ©
O18 - Handler: mso-offdap - {3D9F03FA-7A94-11D3-BE81-0050048385D1} . (.Microsoft Corporation - Microsoft Office XP Web Components.) -- C:\Program Files\Fichiers communs\Microsoft Shared\Web Components\10\OWC10.DLL ©
O18 - Handler: mso-offdap11 - {32505114-5902-49B2-880A-1F7738E5A384} . (.Microsoft Corporation - Microsoft Office Web Components 2003.) -- C:\Program Files\Fichiers communs\Microsoft Shared\Web Components\11\OWC11.DLL ©
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: sysimage - {76E67A63-06E9-11D2-A840-006008059382} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll ©
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} . (.Microsoft Corporation - WIA Scripting Layer.) -- C:\WINDOWS\system32\wiascr.dll ©
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll ©
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll ©
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll ©
O18 - Filter: Class Install Handler - {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: lzdhtml - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll ©
O18 - Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE11\MSOXMLMF.DLL ©

---\\ Liste des services NT non Microsoft et non désactivés (12) - 0s
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe ©
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe ©
O23 - Service: ESET Service (ekrn) . (.ESET - ESET Service.) - C:\Program Files\ESET\ESET Smart Security\ekrn.exe ©
O23 - Service: Firebird Guardian - DefaultInstance (FirebirdGuardianDefaultInstance) . (.Firebird Project - Firebird SQL Server.) - C:\Program Files\Firebird\Firebird_2_5\bin\fbguard.exe ©
O23 - Service: Forceware Web Interface (ForcewareWebInterface) . (.Apache Software Foundation - Apache HTTP Server.) - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\Apache.exe ©
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe ©
O23 - Service: ForceWare IP service (nSvcIp) . (.NVIDIA Corporation - ActiveArmor Firewall IP Service.) - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe ©
O23 - Service: ForceWare user log service (nSvcLog) . (.NVIDIA Corporation - nSvcLog.) - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe ©
O23 - Service: NVIDIA Driver Helper Service (NVSvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 307.8.) - C:\WINDOWS\system32\nvsvc32.exe ©
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe ©
O23 - Service: TeamViewer 10 (TeamViewer) . (.TeamViewer GmbH - TeamViewer 10.) - C:\Program Files\TeamViewer\TeamViewer_Service.exe ©
O23 - Service: ZAM Controller Service (ZAMSvc) . (...) - C:\Program Files\Zemana AntiMalware\ZAM.exe (.not file.)

---\\ Logiciels installés (46) - 6s
O42 - Logiciel: Adobe Acrobat 4.0 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Acrobat 4.0 ©
O42 - Logiciel: Adobe Flash Player 14 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX ©
O42 - Logiciel: Adobe Flash Player 14 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin ©
O42 - Logiciel: Adobe PhotoDeluxe Home Edition 4.0 - (.Adobe Systems, Inc..) [HKLM] -- Adobe PhotoDeluxe Home Edition 4.0 ©
O42 - Logiciel: Borland Database Engine v5.0.1.33 - (...) [HKLM] -- Borland Database Engine v5.0.1.33_is1
O42 - Logiciel: Firebird 2.5.0.26074 (Win32) - (.Firebird Project.) [HKLM] -- FBDBServer_2_5_is1 ©
O42 - Logiciel: Firebird/InterBase(r) ODBC driver 2.0.0.150 - (.Firebird Project.) [HKLM] -- Firebird ODBC Driver_is1 ©
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome ©
O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8 ©
O42 - Logiciel: NVIDIA ForceWare Network Access Manager - (.Nom de votre société.) [HKLM] -- InstallShield_{1F6423DE-7959-4178-80E0-023C7EAA5347}
O42 - Logiciel: Windows Management Framework Core - (.Microsoft Corporation.) [HKLM] -- KB968930 ©
O42 - Logiciel: K-Lite Codec Pack 7.9.0 (Basic) - (...) [HKLM] -- KLiteCodecPack_is1
O42 - Logiciel: Microsoft Visionneuse de rapports 2005 redistribuable - (.Microsoft Corporation.) [HKLM] -- Microsoft Report Viewer Redistributable 2005 ©
O42 - Logiciel: NVIDIA Drivers - (...) [HKLM] -- NVIDIA Drivers
O42 - Logiciel: SHARP MX Series PCL/PS Printer Driver - (.SHARP.) [HKLM] -- SHARP MX-2300 2700 3500 4500 Series PCL PS Printer Driver
O42 - Logiciel: TeamViewer 10 - (.TeamViewer.) [HKLM] -- TeamViewer ©
O42 - Logiciel: USB Disk Security 5.1.0.15 - (.zbshareware, Inc..) [HKLM] -- USB Disk Security_is1
O42 - Logiciel: WinRAR 5.21 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver ©
O42 - Logiciel: XML Paper Specification Shared Components Language Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- XPSEPSCLP ©
O42 - Logiciel: Zebra Font Downloader - (.Zebra Technologies Corporation.) [HKLM] -- Zebra Font Downloader_is1
O42 - Logiciel: Zebra Status Monitor 4.6.57 - (.Zebra\Status Monitor.) [HKLM] -- Zebra Status Monitor_is1
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {0592EF96-69D8-4E4B-9CC9-88F58EA86F01} ©
O42 - Logiciel: Facebook Video Calling 3.1.0.521 - (.Skype Limited.) [HKLM] -- {2091F234-EB58-4B80-8C96-8EB78C808CF7} ©
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {46F044A5-CE8B-4196-984E-5BD6525E361D} ©
O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM] -- {48B3FB4D-CE22-488C-8E9F-24EBB77EAC0F} ©
O42 - Logiciel: Windows Small Business Server 2008 ClientAgent - (.Microsoft Corporation.) [HKLM] -- {492F8345-095D-467F-926C-278870D93ECF} ©
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} ©
O42 - Logiciel: ExpressShipper - (...) [HKLM] -- {6243B230-C0BD-11D6-8D2B-0010A4EC891F}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} ©
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {79155F2B-9895-49D7-8612-D92580E0DE5B} ©
O42 - Logiciel: Windows Small Business Server 2008 WMI Provider - (.Microsoft Corporation.) [HKLM] -- {838257FC-952A-467B-86BF-21DB6B137A3F} ©
O42 - Logiciel: File Association Helper - (.WinZip Computing International, LLC.) [HKLM] -- {8975E3CB-A762-4B14-BD62-A3972A098E82} ©
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} ©
O42 - Logiciel: Visual Studio 2012 x86 Redistributables - (.AVG Technologies CZ, s.r.o..) [HKLM] -- {98EFF19A-30AB-4E4B-B943-F06B1C63EBF8} ©
O42 - Logiciel: Citrix Online Launcher - (.Citrix.) [HKLM] -- {A08A6B7D-1F21-4843-85A3-77B8D15FAE0E} ©
O42 - Logiciel: Client Windows Rights Management avec Service Pack 2 - (.Microsoft.) [HKLM] -- {A5325565-D104-4A87-9301-B45AD0AFC697} ©
O42 - Logiciel: MSI to redistribute MS VS2005 CRT libraries - (.The Firebird Project.) [HKLM] -- {A8D93648-9F7F-407D-915C-62044644C3DA} ©
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} ©
O42 - Logiciel: Adobe Reader XI (11.0.08) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} ©
O42 - Logiciel: NVIDIA Pilote graphique 307.83 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver ©
O42 - Logiciel: NVIDIA nView 136.53 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView ©
O42 - Logiciel: Mises à jour NVIDIA 1.10.8 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update ©
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM] -- {C197BC08-3D82-4651-8886-E68C21578A38} ©
O42 - Logiciel: SP2 de compatibilité descendante du client Windows Rights Management - (.Microsoft.) [HKLM] -- {EC905264-BCFE-423B-9C42-C3A106266790} ©
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} ©
O42 - Logiciel: Transports Henri Ducros version 1.1 - (.Transports Henri Ducros.) [HKLM] -- {F9D5640C-AA61-4FAE-808F-713542D35061}_is1

---\\ HKCU & HKLM Software Keys (120) - 6s
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\AdwCleaner
HKLM\SOFTWARE\Ammyy
HKLM\SOFTWARE\AntiTrojanElite
HKLM\SOFTWARE\Apple Computer, Inc.
HKLM\SOFTWARE\Apple Inc.
HKLM\SOFTWARE\Avg
HKLM\SOFTWARE\Borland
HKLM\SOFTWARE\BrowserChoice
HKLM\SOFTWARE\C07ft5Y
HKLM\SOFTWARE\Canon
HKLM\SOFTWARE\CDDB
HKLM\SOFTWARE\Citrix
HKLM\SOFTWARE\ESET
HKLM\SOFTWARE\EuroPlus
HKLM\SOFTWARE\Extensis
HKLM\SOFTWARE\Filseclab
HKLM\SOFTWARE\Firebird Project
HKLM\SOFTWARE\FotoNation
HKLM\SOFTWARE\GEAR Software
HKLM\SOFTWARE\Gemplus
HKLM\SOFTWARE\GNU
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\HaaliMkx
HKLM\SOFTWARE\InstallShield
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\IO3O
HKLM\SOFTWARE\iSafe
HKLM\SOFTWARE\KasperskyLab
HKLM\SOFTWARE\Khronos
HKLM\SOFTWARE\KLCodecPack
HKLM\SOFTWARE\Kodak
HKLM\SOFTWARE\LAV
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\MimarSinan
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\Nico Mak Computing
HKLM\SOFTWARE\NVIDIA Corporation
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\Panda Security
HKLM\SOFTWARE\Panda Software
HKLM\SOFTWARE\Program Groups
HKLM\SOFTWARE\RealNetworks
HKLM\SOFTWARE\Realtek
HKLM\SOFTWARE\Realtek Semiconductor Corp.
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\Safebrowsing
HKLM\SOFTWARE\Safer Networking Limited
HKLM\SOFTWARE\Samsung
HKLM\SOFTWARE\Schlumberger
HKLM\SOFTWARE\SHARP
HKLM\SOFTWARE\Skype
HKLM\SOFTWARE\TeamViewer
HKLM\SOFTWARE\TNT
HKLM\SOFTWARE\TNTUnInstall
HKLM\SOFTWARE\TrendMicro
HKLM\SOFTWARE\TuneUp
HKLM\SOFTWARE\Windows 3.1 Migration Status
HKLM\SOFTWARE\WinRAR
HKLM\SOFTWARE\Wow6432Node
HKLM\SOFTWARE\Xing Technology Corp.
HKLM\SOFTWARE\zbshareware
HKLM\SOFTWARE\ZebraTechnologies
HKLM\SOFTWARE\Zemana
HKLM\SOFTWARE\ZmnGlobalSDK
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Ammyy
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\C26NDPBDAR
HKCU\SOFTWARE\Citrix
HKCU\SOFTWARE\ESET
HKCU\SOFTWARE\Facebook
HKCU\SOFTWARE\Filseclab
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\kde.org
HKCU\SOFTWARE\LAV
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MainConcept
HKCU\SOFTWARE\mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Nico Mak Computing
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\OneKit
HKCU\SOFTWARE\RealNetworks
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\Safer Networking Limited
HKCU\SOFTWARE\SHARP
HKCU\SOFTWARE\SingAlong =>PUP.Optional.Singalong
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\SkypeRS
HKCU\SOFTWARE\Software
HKCU\SOFTWARE\SSPrint
HKCU\SOFTWARE\SUPERAntiSpyware.com
HKCU\SOFTWARE\TBSB01555 =>PUP.Optional.Conduit
HKCU\SOFTWARE\TeamViewer
HKCU\SOFTWARE\TeleCharger
HKCU\SOFTWARE\TNT
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\TuneUp
HKCU\SOFTWARE\UnThreat AntiVirus
HKCU\SOFTWARE\UpToDown =>PUP.Optional.UpToDown
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\WPO
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\ZebraTechnologies
HKCU\SOFTWARE\Zemana
HKCU\SOFTWARE\AppDataLow\Software

---\\ Contenu des dossiers Programmes (203) - 6s
O43 - CFD: 2013/11/20 13:27:03 - [] D -- C:\Program Files\Adobe
O43 - CFD: 2013/04/15 13:26:34 - [] D -- C:\Program Files\Anuman Interactive
O43 - CFD: 2013/11/27 10:59:14 - [] D -- C:\Program Files\Apple Software Update
O43 - CFD: 2013/03/01 11:21:51 - [] D -- C:\Program Files\ASUS
O43 - CFD: 2014/04/11 11:43:00 - [] D -- C:\Program Files\AVG
O43 - CFD: 2013/11/27 10:58:49 - [] D -- C:\Program Files\Bonjour
O43 - CFD: 2013/12/30 11:48:07 - [] D -- C:\Program Files\Comodo
O43 - CFD: 2013/03/01 10:42:08 - [0] D -- C:\Program Files\ComPlus Applications
O43 - CFD: 2014/01/30 13:01:44 - [] D -- C:\Program Files\Elaborate Bytes
O43 - CFD: 2015/09/11 12:18:18 - [] D -- C:\Program Files\ESET
O43 - CFD: 2015/04/30 14:57:45 - [] D -- C:\Program Files\Fichiers communs
O43 - CFD: 2014/04/11 11:45:13 - [] D -- C:\Program Files\File Association Helper
O43 - CFD: 2015/04/30 14:57:21 - [] D -- C:\Program Files\Firebird
O43 - CFD: 2013/08/06 14:49:04 - [] D -- C:\Program Files\Google
O43 - CFD: 2015/07/15 09:21:04 - [] D -- C:\Program Files\GUM11.tmp
O43 - CFD: 2015/04/30 14:57:39 - [] D -- C:\Program Files\Installation Borland Database Engine
O43 - CFD: 2013/12/23 16:43:26 - [0] D -- C:\Program Files\InstallDir
O43 - CFD: 2013/04/18 16:41:17 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 2014/08/27 10:10:03 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 2013/11/22 17:00:34 - [] D -- C:\Program Files\IO3O LLC
O43 - CFD: 2013/11/27 10:59:36 - [] D -- C:\Program Files\iPod
O43 - CFD: 2014/07/04 09:11:46 - [] D -- C:\Program Files\iSafe
O43 - CFD: 2013/11/27 11:01:07 - [] D -- C:\Program Files\iTunes
O43 - CFD: 2015/02/25 18:16:44 - [] D -- C:\Program Files\K-Lite Codec Pack
O43 - CFD: 2014/04/11 11:44:28 - [0] D -- C:\Program Files\Lavasoft
O43 - CFD: 2013/03/01 11:41:53 - [] D -- C:\Program Files\Messenger
O43 - CFD: 2013/03/01 10:45:00 - [] D -- C:\Program Files\microsoft frontpage
O43 - CFD: 2013/06/18 14:21:27 - [] D -- C:\Program Files\Microsoft Office
O43 - CFD: 2014/08/27 10:10:05 - [] D -- C:\Program Files\Microsoft Silverlight
O43 - CFD: 2013/03/01 12:42:26 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 2013/03/01 11:46:40 - [] SHD -- C:\Program Files\Movie Maker
O43 - CFD: 2013/06/17 12:20:26 - [] D -- C:\Program Files\Mozilla Firefox
O43 - CFD: 2013/03/01 17:36:42 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 2013/06/18 14:21:20 - [] D -- C:\Program Files\MSECache
O43 - CFD: 2013/03/01 10:41:17 - [] D -- C:\Program Files\MSN
O43 - CFD: 2013/03/01 10:41:45 - [] D -- C:\Program Files\MSN Gaming Zone
O43 - CFD: 2014/12/15 17:00:24 - [] D -- C:\Program Files\MSXML 4.0
O43 - CFD: 2014/12/15 17:02:44 - [] D -- C:\Program Files\MSXML 6.0
O43 - CFD: 2013/03/01 10:43:17 - [] D -- C:\Program Files\NetMeeting
O43 - CFD: 2013/12/26 10:40:27 - [] D -- C:\Program Files\NVIDIA Corporation
O43 - CFD: 2013/03/01 10:41:53 - [] D -- C:\Program Files\Online Services
O43 - CFD: 2013/03/01 11:47:00 - [] D -- C:\Program Files\Outlook Express
O43 - CFD: 2013/12/30 19:35:59 - [] D -- C:\Program Files\PhotoDeluxe BE 1.0 TO
O43 - CFD: 2013/06/17 12:42:44 - [] D -- C:\Program Files\Real
O43 - CFD: 2013/03/01 11:10:24 - [] D -- C:\Program Files\Realtek
O43 - CFD: 2013/03/01 17:36:35 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 2013/03/01 10:43:37 - [] D -- C:\Program Files\Services en ligne
O43 - CFD: 2013/03/01 17:22:47 - [] D -- C:\Program Files\SHARP
O43 - CFD: 2013/04/25 11:57:09 - [] D -- C:\Program Files\Stardock
O43 - CFD: 2013/12/24 16:19:52 - [] D -- C:\Program Files\SUPERAntiSpyware
O43 - CFD: 2015/10/01 16:23:21 - [] D -- C:\Program Files\TeamViewer
O43 - CFD: 2014/12/16 12:30:29 - [] D -- C:\Program Files\TNT
O43 - CFD: 2013/12/26 11:26:52 - [] D -- C:\Program Files\Trend Micro
O43 - CFD: 2013/12/30 19:34:43 - [] D -- C:\Program Files\TweakNow RegCleaner
O43 - CFD: 2013/03/01 10:47:58 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 2014/04/11 11:44:28 - [] D -- C:\Program Files\UnThreat AntiVirus
O43 - CFD: 2013/04/25 11:56:45 - [] D -- C:\Program Files\windows media player
O43 - CFD: 2013/03/01 10:41:38 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 2013/03/01 12:57:58 - [] D -- C:\Program Files\Windows Small Business Server
O43 - CFD: 2013/03/01 10:43:42 - [0] HD -- C:\Program Files\WindowsUpdate
O43 - CFD: 2015/09/09 17:42:17 - [] D -- C:\Program Files\WinRAR
O43 - CFD: 2013/03/01 10:45:00 - [] D -- C:\Program Files\xerox
O43 - CFD: 2013/03/01 16:21:02 - [] D -- C:\Program Files\Zebra Technologies
O43 - CFD: 2015/09/25 17:29:00 - [] D -- C:\Program Files\Zemana AntiMalware
O43 - CFD: 2013/10/18 15:38:25 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 2014/01/03 10:39:31 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Adobe
O43 - CFD: 2015/09/11 11:55:05 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 2015/09/11 12:18:19 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ESET
O43 - CFD: 2015/04/30 14:57:25 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Firebird 2.5 (Win32)
O43 - CFD: 2014/01/02 13:04:53 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Google Chrome
O43 - CFD: 2013/11/27 11:01:45 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\iTunes
O43 - CFD: 2013/03/01 10:42:18 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux
O43 - CFD: 2015/02/25 18:16:41 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\K-Lite Codec Pack
O43 - CFD: 2015/02/25 18:16:38 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Leawo
O43 - CFD: 2013/03/01 18:30:13 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Office
O43 - CFD: 2014/08/27 10:05:33 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Silverlight
O43 - CFD: 2013/03/01 11:08:08 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\NVIDIA Corporation
O43 - CFD: 2013/03/01 10:44:42 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration
O43 - CFD: 2015/09/25 09:37:44 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\TeamViewer 10
O43 - CFD: 2013/03/01 16:00:31 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\TNT
O43 - CFD: 2015/04/30 14:56:35 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Transports Henri Ducros
O43 - CFD: 2014/04/11 11:42:28 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\USB Disk Security
O43 - CFD: 2015/09/09 17:42:20 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR
O43 - CFD: 2013/03/01 16:21:02 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Zebra Technologies
O43 - CFD: 2013/11/27 11:01:07 - [] D -- C:\Documents and Settings\All Users\Application Data\188F1432-103A-4ffb-80F1-36B633C5C9E1
O43 - CFD: 2014/02/03 12:25:03 - [] D -- C:\Documents and Settings\All Users\Application Data\a180000-76e9-4849-8fb1-8a01db952884
O43 - CFD: 2013/04/25 11:57:18 - [] D -- C:\Documents and Settings\All Users\Application Data\Adobe
O43 - CFD: 2015/04/30 14:53:12 - [] D -- C:\Documents and Settings\All Users\Application Data\AMMYY
O43 - CFD: 2013/11/27 10:59:11 - [] D -- C:\Documents and Settings\All Users\Application Data\Apple
O43 - CFD: 2013/11/27 10:59:30 - [] D -- C:\Documents and Settings\All Users\Application Data\Apple Computer
O43 - CFD: 2013/12/26 14:06:42 - [] D -- C:\Documents and Settings\All Users\Application Data\AVAST Software
O43 - CFD: 2015/09/03 13:33:24 - [] D -- C:\Documents and Settings\All Users\Application Data\Avetix
O43 - CFD: 2014/09/03 09:52:38 - [] D -- C:\Documents and Settings\All Users\Application Data\AvetixBackup
O43 - CFD: 2014/10/02 18:30:41 - [] D -- C:\Documents and Settings\All Users\Application Data\AvetixLog
O43 - CFD: 2015/09/03 11:57:44 - [] D -- C:\Documents and Settings\All Users\Application Data\AvetixTemp
O43 - CFD: 2014/01/03 14:39:58 - [] D -- C:\Documents and Settings\All Users\Application Data\AVG
O43 - CFD: 2013/12/30 11:48:09 - [] D -- C:\Documents and Settings\All Users\Application Data\Avira
O43 - CFD: 2013/04/25 11:57:28 - [] D -- C:\Documents and Settings\All Users\Application Data\BetterSoft(2) =>PUP.Optional.Offerware
O43 - CFD: 2013/12/30 12:37:27 - [] HD -- C:\Documents and Settings\All Users\Application Data\Common Files
O43 - CFD: 2013/12/30 11:14:10 - [] D -- C:\Documents and Settings\All Users\Application Data\COMODO
O43 - CFD: 2014/02/03 12:37:25 - [] D -- C:\Documents and Settings\All Users\Application Data\d2250000-9cf5-496c-86e0-b12754a080b5
O43 - CFD: 2015/09/11 12:18:19 - [] D -- C:\Documents and Settings\All Users\Application Data\ESET
O43 - CFD: 2015/07/31 17:34:02 - [] D -- C:\Documents and Settings\All Users\Application Data\firebird
O43 - CFD: 2013/03/01 16:20:45 - [0] D -- C:\Documents and Settings\All Users\Application Data\Font Downloader
O43 - CFD: 2013/03/01 13:13:13 - [] D -- C:\Documents and Settings\All Users\Application Data\GroupPolicy
O43 - CFD: 2013/06/17 12:44:30 - [] D -- C:\Documents and Settings\All Users\Application Data\InstallMate =>PUP.Optional.Tarma
O43 - CFD: 2014/08/28 10:30:36 - [] D -- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
O43 - CFD: 2014/04/11 11:44:28 - [] D -- C:\Documents and Settings\All Users\Application Data\Lavasoft
O43 - CFD: 2013/12/30 15:46:33 - [] D -- C:\Documents and Settings\All Users\Application Data\MAGIX
O43 - CFD: 2014/08/27 18:01:25 - [] D -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
O43 - CFD: 2014/04/11 11:43:00 - [] D -- C:\Documents and Settings\All Users\Application Data\MFAData
O43 - CFD: 2014/04/11 11:42:28 - [] SD -- C:\Documents and Settings\All Users\Application Data\Microsoft
O43 - CFD: 2013/12/26 10:40:24 - [] D -- C:\Documents and Settings\All Users\Application Data\NVIDIA
O43 - CFD: 2013/12/26 10:40:27 - [] D -- C:\Documents and Settings\All Users\Application Data\NVIDIA Corporation
O43 - CFD: 2014/08/27 14:02:24 - [] D -- C:\Documents and Settings\All Users\Application Data\Panda Security
O43 - CFD: 2013/06/17 12:42:35 - [] D -- C:\Documents and Settings\All Users\Application Data\Real
O43 - CFD: 2013/12/24 14:28:45 - [] D -- C:\Documents and Settings\All Users\Application Data\Skype
O43 - CFD: 2014/04/11 11:42:28 - [] D -- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
O43 - CFD: 2013/12/24 15:27:47 - [] D -- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
O43 - CFD: 2013/11/15 14:11:36 - [] D -- C:\Documents and Settings\All Users\Application Data\TomTom
O43 - CFD: 2014/02/12 12:46:25 - [] D -- C:\Documents and Settings\All Users\Application Data\TuneUp Software
O43 - CFD: 2013/03/01 11:27:52 - [] D -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
O43 - CFD: 2014/04/11 11:45:23 - [0] D -- C:\Documents and Settings\All Users\Application Data\WinZipEC
O43 - CFD: 2014/01/03 14:46:20 - [0] SHD -- C:\Documents and Settings\All Users\Application Data\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
O43 - CFD: 2014/04/11 11:43:54 - [] SHD -- C:\Documents and Settings\All Users\Application Data\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
O43 - CFD: 2014/01/03 10:38:55 - [] D -- C:\Program Files\Fichiers communs\Adobe
O43 - CFD: 2013/11/27 10:59:34 - [] D -- C:\Program Files\Fichiers communs\Apple
O43 - CFD: 2014/02/03 12:00:50 - [] D -- C:\Program Files\Fichiers communs\BitDefender
O43 - CFD: 2015/04/30 14:57:45 - [] D -- C:\Program Files\Fichiers communs\Borland Shared
O43 - CFD: 2013/03/01 12:42:02 - [] D -- C:\Program Files\Fichiers communs\DESIGNER
O43 - CFD: 2014/01/03 10:39:16 - [] D -- C:\Program Files\Fichiers communs\FotoNation
O43 - CFD: 2013/03/01 11:10:19 - [] D -- C:\Program Files\Fichiers communs\InstallShield
O43 - CFD: 2013/06/18 14:21:26 - [] D -- C:\Program Files\Fichiers communs\Microsoft Shared
O43 - CFD: 2013/03/01 10:43:12 - [] D -- C:\Program Files\Fichiers communs\MSSoap
O43 - CFD: 2013/02/28 20:38:09 - [] D -- C:\Program Files\Fichiers communs\ODBC
O43 - CFD: 2013/03/01 10:43:16 - [] D -- C:\Program Files\Fichiers communs\Services
O43 - CFD: 2013/02/28 20:38:07 - [] D -- C:\Program Files\Fichiers communs\SpeechEngines
O43 - CFD: 2013/03/01 12:41:36 - [] D -- C:\Program Files\Fichiers communs\System
O43 - CFD: 2013/03/04 12:59:55 - [] D -- C:\Documents and Settings\logistique\Application Data\Adobe
O43 - CFD: 2013/11/27 11:14:20 - [] D -- C:\Documents and Settings\logistique\Application Data\Apple Computer
O43 - CFD: 2014/01/03 14:39:38 - [] D -- C:\Documents and Settings\logistique\Application Data\AVG
O43 - CFD: 2013/04/22 12:52:17 - [] D -- C:\Documents and Settings\logistique\Application Data\BSD Concept
O43 - CFD: 2013/03/18 10:30:17 - [] D -- C:\Documents and Settings\logistique\Application Data\Carambis
O43 - CFD: 2013/04/19 11:47:26 - [] D -- C:\Documents and Settings\logistique\Application Data\CrystalIdea Software
O43 - CFD: 2013/12/23 11:33:53 - [] D -- C:\Documents and Settings\logistique\Application Data\deluge
O43 - CFD: 2014/06/02 09:51:27 - [] D -- C:\Documents and Settings\logistique\Application Data\eCyber =>PUP.Optional.Elex
O43 - CFD: 2015/09/11 12:19:36 - [] D -- C:\Documents and Settings\logistique\Application Data\ESET
O43 - CFD: 2015/03/12 10:33:16 - [0] D -- C:\Documents and Settings\logistique\Application Data\FreeFixer
O43 - CFD: 2013/07/05 12:45:10 - [] D -- C:\Documents and Settings\logistique\Application Data\Google
O43 - CFD: 2013/11/19 19:27:00 - [0] D -- C:\Documents and Settings\logistique\Application Data\Help
O43 - CFD: 2013/03/01 12:58:10 - [] D -- C:\Documents and Settings\logistique\Application Data\Identities
O43 - CFD: 2013/03/01 17:21:33 - [] D -- C:\Documents and Settings\logistique\Application Data\InstallShield
O43 - CFD: 2014/07/04 09:11:43 - [] D -- C:\Documents and Settings\logistique\Application Data\iSafe
O43 - CFD: 2014/06/19 17:42:22 - [] D -- C:\Documents and Settings\logistique\Application Data\Macromedia
O43 - CFD: 2014/12/19 11:20:14 - [] SD -- C:\Documents and Settings\logistique\Application Data\Microsoft
O43 - CFD: 2013/12/12 12:33:49 - [] D -- C:\Documents and Settings\logistique\Application Data\Mozilla
O43 - CFD: 2013/11/12 15:58:18 - [0] D -- C:\Documents and Settings\logistique\Application Data\Nico Mak Computing
O43 - CFD: 2013/11/08 16:14:13 - [] D -- C:\Documents and Settings\logistique\Application Data\ooVoo Details
O43 - CFD: 2014/08/27 14:02:01 - [0] D -- C:\Documents and Settings\logistique\Application Data\Panda Security
O43 - CFD: 2014/04/11 11:42:46 - [0] D -- C:\Documents and Settings\logistique\Application Data\QuickScan
O43 - CFD: 2013/06/17 12:42:58 - [] D -- C:\Documents and Settings\logistique\Application Data\Real
O43 - CFD: 2013/06/13 16:46:59 - [] D -- C:\Documents and Settings\logistique\Application Data\redsn0w
O43 - CFD: 2013/12/23 14:59:37 - [] D -- C:\Documents and Settings\logistique\Application Data\Skype
O43 - CFD: 2013/12/24 15:28:32 - [] D -- C:\Documents and Settings\logistique\Application Data\SUPERAntiSpyware.com
O43 - CFD: 2015/04/01 09:25:29 - [] D -- C:\Documents and Settings\logistique\Application Data\TeamViewer
O43 - CFD: 2013/12/31 15:32:49 - [0] D -- C:\Documents and Settings\logistique\Application Data\thecleaner
O43 - CFD: 2013/11/15 14:11:34 - [] D -- C:\Documents and Settings\logistique\Application Data\TomTom
O43 - CFD: 2014/02/12 12:46:09 - [] D -- C:\Documents and Settings\logistique\Application Data\TuneUp Software
O43 - CFD: 2014/04/11 11:44:28 - [] D -- C:\Documents and Settings\logistique\Application Data\uTorrent
O43 - CFD: 2013/03/01 12:57:59 - [] D -- C:\Documents and Settings\logistique\Application Data\Windows Small Business Server
O43 - CFD: 2013/04/18 13:04:19 - [] D -- C:\Documents and Settings\logistique\Application Data\WinRAR
O43 - CFD: 2014/04/11 11:45:34 - [] D -- C:\Documents and Settings\logistique\Application Data\WinZip
O43 - CFD: 2015/10/05 12:11:18 - [] D -- C:\Documents and Settings\logistique\Application Data\ZHP
O43 - CFD: 2014/01/29 19:24:37 - [] D -- C:\Documents and Settings\logistique\Local Settings\Application Data\Adobe
O43 - CFD: 2013/11/27 10:59:16 - [] D -- C:\Documents and Settings\logistique\Local Settings\Application Data\Apple
O43 - CFD: 2013/11/27 11:01:51 - [] D -- C:\Documents and Settings\logistique\Local Settings\Application Data\Apple Computer
O43 - CFD: 2013/12/23 16:14:50 - [] D -- C:\Documents and Settings\logistique\Local Settings\Application Data\assembly
O43 - CFD: 2014/04/11 11:43:00 - [] D -- C:\Documents and Settings\logistique\Local Settings\Application Data\Avg2014
O43 - CFD: 2013/09/16 16:11:40 - [] D -- C:\Documents and Settings\logistique\Local Settings\Application Data\avgchrome
O43 - CFD: 2013/12/18 19:03:06 - [] D -- C:\Documents and Settings\logistique\Local Settings\Application Data\cache
O43 - CFD: 2014/12/19 11:20:28 - [] D -- C:\Documents and Settings\logistique\Local Settings\Application Data\Citrix
O43 - CFD: 2013/08/06 14:49:01 - [0] D -- C:\Documents and Settings\logistique\Local Settings\Application Data\Deployment
O43 - CFD: 2014/01/03 14:46:20 - [0] D -- C:\Documents and Settings\logistique\Local Settings\Application Data\Downloaded Installations
O43 - CFD: 2015/09/11 12:19:36 - [] D -- C:\Documents and Settings\logistique\Local Settings\Application Data\ESET
O43 - CFD: 2014/04/11 11:45:26 - [] D -- C:\Documents and Settings\logistique\Local Settings\Application Data\Facebook
O43 - CFD: 2015/03/12 10:35:57 - [] D -- C:\Documents and Settings\logistique\Local Settings\Application Data\FreeFixer
O43 - CFD: 2015/09/14 09:26:28 - [] D -- C:\Documents and Settings\logistique\Local Settings\Application Data\Google
O43 - CFD: 2013/11/19 19:27:00 - [0] D -- C:\Documents and Settings\logistique\Local Settings\Application Data\Help
O43 - CFD: 2013/12/30 12:37:27 - [] D -- C:\Documents and Settings\logistique\Local Settings\Application Data\MFAData
O43 - CFD: 2015/09/18 16:33:59 - [] D -- C:\Documents and Settings\logistique\Local Settings\Application Data\Microsoft
O43 - CFD: 2013/09/09 15:31:58 - [] D -- C:\Documents and Settings\logistique\Local Settings\Application Data\Microsoft_Corporation
O43 - CFD: 2013/12/12 12:33:49 - [] D -- C:\Documents and Settings\logistique\Local Settings\Application Data\Mozilla
O43 - CFD: 2015/04/30 14:56:55 - [] D -- C:\Documents and Settings\logistique\Local Settings\Application Data\OdbcFb
O43 - CFD: 2013/06/24 14:42:38 - [] D -- C:\Documents and Settings\logistique\Local Settings\Application Data\Software =>PUP.Optional.Boxore
O43 - CFD: 2014/08/11 11:29:38 - [] D -- C:\Documents and Settings\logistique\Local Settings\Application Data\temp
O43 - CFD: 2013/11/15 14:11:34 - [] D -- C:\Documents and Settings\logistique\Local Settings\Application Data\TomTom
O43 - CFD: 2013/04/17 13:02:19 - [] D -- C:\Documents and Settings\logistique\Local Settings\Application Data\WinZip Courier
O43 - CFD: 2015/03/18 18:32:22 - [] D -- C:\Documents and Settings\logistique\Local Settings\Application Data\Zemana
O43 - CFD: 2013/03/01 12:58:12 - [] RD -- C:\Documents and Settings\logistique\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 2013/12/23 15:14:05 - [] RD -- C:\Documents and Settings\logistique\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 2013/09/16 17:36:54 - [] RD -- C:\Documents and Settings\logistique\Menu Démarrer\Programmes\Outils d'administration
O43 - CFD: 2013/03/01 12:58:01 - [] D -- C:\Documents and Settings\logistique\Menu Démarrer\Programmes\Windows Small Business Server 2008
O43 - CFD: 2015/09/09 17:42:20 - [] D -- C:\Documents and Settings\logistique\Menu Démarrer\Programmes\WinRAR

---\\ ShellIconOverlayIdentifiers (SIOI) (1) - 0s
O106 - SIOI: Offline Files Menu [Fichiers hors connexion] - {750fdf0e-2a26-11d1-a3ea-080036587f03}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\system32\cscui.dll ©

---\\ Liste des pilotes du système (48) - 0s
O58 - SDL:2008/04/14 05:00:00 A . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\System32\drivers\cinemst2.sys [262528] ©
O58 - SDL:2008/04/14 05:00:00 A . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\System32\drivers\cpqdap01.sys [11776] ©
O58 - SDL:2008/04/14 05:00:00 A . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- C:\WINDOWS\System32\drivers\dmboot.sys [800256] ©
O58 - SDL:2008/04/14 05:00:00 A . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\System32\drivers\dmio.sys [154496] ©
O58 - SDL:2008/04/14 05:00:00 A . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\System32\drivers\dmload.sys [5888] ©
O58 - SDL:2015/07/14 15:29:08 A . (.ESET - Amon monitor.) -- C:\WINDOWS\System32\drivers\eamonm.sys [202704] ©
O58 - SDL:2015/07/14 15:29:08 A . (.ESET - ESET Helper driver.) -- C:\WINDOWS\System32\drivers\ehdrv.sys [144536] ©
O58 - SDL:2015/07/14 15:29:08 A . (.ESET - ESET Personal Firewall driver.) -- C:\WINDOWS\System32\drivers\epfw.sys [185176] ©
O58 - SDL:2015/07/14 15:29:08 A . (.ESET - ESET Personal Firewall NDIS filter.) -- C:\WINDOWS\System32\drivers\epfwndis.sys [48192] ©
O58 - SDL:2015/07/14 15:29:08 A . (.ESET - ESET Personal Firewall TDI filter.) -- C:\WINDOWS\System32\drivers\epfwtdi.sys [71888] ©
O58 - SDL:2012/08/21 14:01:22 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\WINDOWS\System32\drivers\GEARAspiWDM.sys [26840] ©
O58 - SDL:2009/08/10 12:07:32 A . (.Gemalto - USB Smart Card Reader Driver.) -- C:\WINDOWS\System32\drivers\GemCCID.sys [89600] ©
O58 - SDL:2013/05/23 08:39:13 A . (.ThreatTrack Security - gfiark32.sys.) -- C:\WINDOWS\System32\drivers\gfiark.sys [43368]
O58 - SDL:2008/04/14 05:00:00 A . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [144384]
O58 - SDL:2008/04/14 05:00:00 A . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\nikedrv.sys [12032] ©
O58 - SDL:2013/01/31 13:22:47 A . (.NVIDIA Corporation - NVIDIA Windows XP Miniport Driver, Version.) -- C:\WINDOWS\System32\drivers\nv4_mini.sys [12648960] ©
O58 - SDL:2006/10/18 09:31:38 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) IDE Performance Driver.) -- C:\WINDOWS\System32\drivers\nvata.sys [105472] ©
O58 - SDL:2007/05/21 11:43:08 A . (.NVIDIA Corporation - NVIDIA Networking Function Driver..) -- C:\WINDOWS\System32\drivers\NVENETFD.sys [46080] ©
O58 - SDL:2007/05/21 11:43:12 A . (.NVIDIA Corporation - NVIDIA Networking Bus Driver..) -- C:\WINDOWS\System32\drivers\nvnetbus.sys [19968] ©
O58 - SDL:2007/05/21 11:42:52 A . (.NVIDIA Corporation - NVIDIA Network Resource Manager..) -- C:\WINDOWS\System32\drivers\nvnrm.sys [928512] ©
O58 - SDL:2007/05/21 11:42:32 A . (.NVIDIA Corporation - NVIDIA Networking Soft-NPU Driver..) -- C:\WINDOWS\System32\drivers\nvsnpu.sys [261632] ©
O58 - SDL:2007/05/21 11:43:00 A . (.NVIDIA Corporation - NVIDIA Networking Protocol Driver..) -- C:\WINDOWS\System32\drivers\nvtcp.sys [110592] ©
O58 - SDL:2008/04/14 05:00:00 A . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- C:\WINDOWS\System32\drivers\ptilink.sys [17792] ©
O58 - SDL:2008/04/14 05:00:00 A . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\System32\drivers\rio8drv.sys [12032] ©
O58 - SDL:2008/04/14 05:00:00 A . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\riodrv.sys [12032] ©
O58 - SDL:2008/02/26 17:01:44 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RtkHDAud.sys [4737024] ©
O58 - SDL:2008/04/14 05:00:00 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [20480] ©
O58 - SDL:2008/04/14 05:00:00 A . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\System32\drivers\tsbvcap.sys [21376] ©
O58 - SDL:2012/12/13 15:50:38 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\WINDOWS\System32\drivers\usbaapl.sys [45056] ©
O58 - SDL:2013/07/24 17:02:38 A . (.Elaborate Bytes AG - Virtual CloneDrive SCSI miniport.) -- C:\WINDOWS\System32\drivers\VClone.sys [30720] ©
O58 - SDL:2008/04/14 05:00:00 A . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\System32\drivers\vdmindvd.sys [58112] ©
O58 - SDL:2008/04/14 05:00:00 A . (...) -- C:\WINDOWS\System32\ansi.sys [9037]
O58 - SDL:2008/04/14 05:00:00 A . (...) -- C:\WINDOWS\System32\country.sys [27097]
O58 - SDL:1999/11/23 10:17:34 A . (...) -- C:\WINDOWS\System32\dc240u.sys [7808]
O58 - SDL:1999/11/23 10:17:36 A . (...) -- C:\WINDOWS\System32\Digita.sys [65864]
O58 - SDL:2008/04/14 05:00:00 A . (...) -- C:\WINDOWS\System32\himem.sys [4912]
O58 - SDL:2008/04/14 05:00:00 A . (...) -- C:\WINDOWS\System32\key01.sys [42809]
O58 - SDL:2008/04/14 05:00:00 A . (...) -- C:\WINDOWS\System32\keyboard.sys [42537]
O58 - SDL:2008/04/14 05:00:00 A . (...) -- C:\WINDOWS\System32\ntdos.sys [27916]
O58 - SDL:2008/04/14 05:00:00 A . (...) -- C:\WINDOWS\System32\ntdos404.sys [29146]
O58 - SDL:2008/04/14 05:00:00 A . (...) -- C:\WINDOWS\System32\ntdos411.sys [29370]
O58 - SDL:2008/04/14 05:00:00 A . (...) -- C:\WINDOWS\System32\ntdos412.sys [29274]
O58 - SDL:2008/04/14 05:00:00 A . (...) -- C:\WINDOWS\System32\ntdos804.sys [29146]
O58 - SDL:2008/04/14 05:00:00 A . (...) -- C:\WINDOWS\System32\ntio.sys [34000]
O58 - SDL:2008/04/14 05:00:00 A . (...) -- C:\WINDOWS\System32\ntio404.sys [34560]
O58 - SDL:2008/04/14 05:00:00 A . (...) -- C:\WINDOWS\System32\ntio411.sys [35648]
O58 - SDL:2008/04/14 05:00:00 A . (...) -- C:\WINDOWS\System32\ntio412.sys [35424]
O58 - SDL:2008/04/14 05:00:00 A . (...) -- C:\WINDOWS\System32\ntio804.sys [34560]

---\\ Associations Shell Spawning (9) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\system32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (9) - 0s
O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- c:\program files\google\chrome\application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- c:\program files\google\chrome\application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- c:\program files\internet explorer\iexplore.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe ©

---\\ Recherche d'infection sur les navigateurs (11) - 0s
O69 - SBI: SearchScopes [HKCR] {0191A6B0-1154-4C22-9182-23A95BBE92D9} [DefaultScope] - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKCR] {afdbddaa-5d3f-42ee-b79c-185a7020515b} - (Web Search) - http://search.certified-toolbar.com?si=46369&st=bs&tid=3872&ver=3.5&ts=1372678422895&tguid=46369-3872-1372678422895-B1811A3F4745AB815B3EBC2411067C5E&q={searchTerms} =>PUP.Optional.CertifiedToolbar
O69 - SBI: SearchScopes [HKCR] - (Web Search) - http://search.certified-toolbar.com?si=46369&st=bs&tid=3872&ver=3.5&ts=1372678422895&tguid=46369-3872-1372678422895-B1811A3F4745AB815B3EBC2411067C5E&q={searchTerms} =>PUP.Optional.CertifiedToolbar
O69 - SBI: SearchScopes [HKUS\.DEFAULT] {0191A6B0-1154-4C22-9182-23A95BBE92D9} [DefaultScope] - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKUS\.DEFAULT] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - () - http://search.live.com/
O69 - SBI: SearchScopes [HKUS\.DEFAULT] {96bd48dd-741b-41ae-ac4a-aff96ba00f7e} - (Customized Search) - http://fr-recherche.com/
O69 - SBI: SearchScopes [HKUS\S-1-5-18] {0191A6B0-1154-4C22-9182-23A95BBE92D9} [DefaultScope] - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKUS\S-1-5-18] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - () - http://search.live.com/
O69 - SBI: SearchScopes [HKUS\S-1-5-18] {96bd48dd-741b-41ae-ac4a-aff96ba00f7e} - (Customized Search) - http://fr-recherche.com/
O69 - SBI: SearchScopes [HKUS\S-1-5-19] {0191A6B0-1154-4C22-9182-23A95BBE92D9} [DefaultScope] - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKUS\S-1-5-20] {0191A6B0-1154-4C22-9182-23A95BBE92D9} [DefaultScope] - (Google) - http://www.google.com/

---\\ Enumère les services démarrés par Svchost (39) - 0s
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\WINDOWS\system32\appmgmts.dll [176640] ©
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496] ©
O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [78336] ©
O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464] ©
O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576] ©
O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488] ©
O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\system32\ersvc.dll [23040] ©
O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - .) -- C:\WINDOWS\system32\es.dll [253952] ©
O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: HidServ (HidServ) . (.Microsoft Corporation - HID Audio Service.) -- C:\WINDOWS\system32\hidserv.dll [21504] ©
O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [99840] ©
O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [132096] ©
O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\system32\msgsvc.dll [33792] ©
O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144] ©
O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- C:\WINDOWS\system32\mswsock.dll [247808] ©
O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [53248] ©
O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560] ©
O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [18944] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\WINDOWS\system32\ipnathlp.dll [332800] ©
O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\system32\tapisrv.dll [249856] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112] ©
O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176] ©
O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483840] ©
O83 - Search Svchost Services: Wmi (Wmi) . (.Microsoft Corporation - API avancées Windows 32.) -- C:\WINDOWS\system32\advapi32.dll [685568] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\wmisvc.dll [145408] ©
O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896] ©
O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024] ©
O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376] ©
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\system32\qmgr.dll [409088] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll [38400] ©

---\\ Enumère les codes produits des logiciels (1) - 0s
O90 - PUC: "8BA5CD9129705784F8B198C6A5C96EEA" . (.Level Quality Watcher.) =>PUP.Optional.LevelQualityWatcher

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (17) - 9s

SS - Demand [2014/07/09 15:57:18] [ 262320] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe ©
SR - Auto [2013/09/07 10:13:38] [ 55624] Apple Mobile Device (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe ©
SR - Auto [2011/08/31 00:05:02] [ 390504] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe ©
SR - Auto [2015/07/08 15:22:32] [ 1353720] ESET Service (ekrn) . (.ESET.) - C:\Program Files\ESET\ESET Smart Security\ekrn.exe ©
SR - Auto [2010/09/17 11:14:50] [ 98304] Firebird Guardian - DefaultInstance (FirebirdGuardianDefaultInstance) . (.Firebird Project.) - C:\Program Files\Firebird\Firebird_2_5\bin\fbguard.exe ©
SR - Demand [2010/09/17 11:14:42] [ 3735552] Firebird Server - DefaultInstance (FirebirdServerDefaultInstance) . (.Firebird Project.) - C:\Program Files\Firebird\Firebird_2_5\bin\fbserver.exe ©
SS - Auto [2007/05/15 10:53:12] [ 20543] Forceware Web Interface (ForcewareWebInterface) . (.Apache Software Foundation.) - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\Apache.exe ©
SS - Auto [2015/08/28 16:26:54] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe ©
SS - Demand [2015/08/28 16:26:54] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe ©
SS - Demand [2005/04/04 01:41:10] [ 69632] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe ©
SS - Demand [2013/11/02 01:29:34] [ 553288] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe ©
SS - Auto [2007/05/21 11:51:10] [ 135233] ForceWare IP service (nSvcIp) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe ©
SS - Auto [2007/05/21 11:50:56] [ 65605] ForceWare user log service (nSvcLog) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe ©
SR - Auto [2013/01/31 11:02:24] [ 156448] NVIDIA Driver Helper Service (NVSvc) . (.NVIDIA Corporation.) - C:\WINDOWS\system32\nvsvc32.exe ©
SR - Auto [2013/01/31 13:22:47] [ 1259296] NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe ©
SR - Auto [2015/09/11 17:34:16] [ 5702416] TeamViewer 10 (TeamViewer) . (.TeamViewer GmbH.) - C:\Program Files\TeamViewer\TeamViewer_Service.exe ©

---\\ Scan Additionnel (9) - 0s
HKCU\SOFTWARE\SingAlong =>PUP.Optional.Singalong
HKCU\SOFTWARE\TBSB01555 =>PUP.Optional.Conduit
HKCU\SOFTWARE\UpToDown =>PUP.Optional.UpToDown
C:\Documents and Settings\All Users\Application Data\BetterSoft(2) =>PUP.Optional.Offerware
C:\Documents and Settings\All Users\Application Data\InstallMate =>PUP.Optional.Tarma
C:\Documents and Settings\logistique\Application Data\eCyber =>PUP.Optional.Elex
C:\Documents and Settings\logistique\Local Settings\Application Data\Software =>PUP.Optional.Boxore
HKLM\Software\Classes\Installer\Products\8BA5CD9129705784F8B198C6A5C96EEA =>PUP.Optional.LevelQualityWatcher
HKLM\Software\Classes\Installer\Features\8BA5CD9129705784F8B198C6A5C96EEA =>PUP.Optional.LevelQualityWatcher

---\\ Récapitulatif des éléments trouvées sur votre station (9) - 0s
http://www.nicolascoolman.fr/adware-singalng/ =>PUP.Optional.Singalong
http://www.nicolascoolman.fr/toolbar-conduit/ =>PUP.Optional.Conduit
http://www.nicolascoolman.fr/blog =>PUP.Optional.UpToDown
http://www.nicolascoolman.fr/pup-offerware/ =>PUP.Optional.Offerware
http://www.nicolascoolman.fr/pup-tarma/ =>PUP.Optional.Tarma
http://www.nicolascoolman.fr/pup-elex/ =>PUP.Optional.Elex
http://www.nicolascoolman.fr/adware-boxore/ =>PUP.Optional.Boxore
http://www.nicolascoolman.fr/pup-certifiedtoolbar/ =>PUP.Optional.CertifiedToolbar
http://www.nicolascoolman.fr/blog =>PUP.Optional.LevelQualityWatcher

~ End of the scan, 43306 items in 31 seconds (715)(0)()

Publicité


Signaler le contenu de ce document

Publicité