cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Rapport de ZHPDiag v1.24.18 par Nicolas Coolman
Run by HARSLI at 08/10/2015 21:45:28
Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
Platform : Windows 8 Pro
MSIE: Internet Explorer v9.10.9200.17492
MFIE: Mozilla Firefox 36.0.4 (x86 fr)

Boot mode: Normal (Normal boot)
Total RAM: 1,9 Gb (49 % free)
System drive C: 98 Go (16 Go free)

---\\ Processus lancés
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
C:\PROGRA~2\HSPAUS~1\HSPALA~1.EXE
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe
C:\Program Files (x86)\Internet Download Manager\IDMan.exe
C:\Users\HARSLI\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Program Files (x86)\Gyazo\GyStation.exe
C:\Users\HARSLI\AppData\Local\Viber\Viber.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe

---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=explorer.exe

---\\ Pages de démarrage d'Internet Explorer (R0)
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com

---\\ Pages de recherche d'Internet Explorer (R1)
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = <-loopback>

---\\ Internet Explorer URLSearchHook (R3)
R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll

---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL

---\\ Applications démarrées automatiquement par le registre (O4)
O4 - HKLM\..\Run: [SDTray] C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
O4 - HKLM\..\Run: [HSPALauncher] C:\PROGRA~2\HSPAUS~1\HSPALA~1.EXE
O4 - HKLM\..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [Spybot-S&D Cleaning] C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe" /autoclean
O4 - HKCU\..\Run: [IDMan] C:\Program Files (x86)\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [Google Update] C:\Users\HARSLI\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Gyazo] C:\Program Files (x86)\Gyazo\GyStation.exe
O4 - HKCU\..\Run: [Viber] C:\Users\HARSLI\AppData\Local\Viber\Viber.exe
O4 - HKCU\..\Run: [Skype] C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKLM\..\policies\Explorer: [ForceActiveDesktopOn] Data=0
O4 - HKLM\..\policies\Explorer: [NoActiveDesktopChanges] Data=1
O4 - HKLM\..\policies\Explorer: [NoActiveDesktop] Data=1
O4 - Global Startup: Envoyer à OneNote.lnk - C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE
O4 - Global Startup: Tchatche Messenger.lnk - C:\Program Files (x86)\Tchatche Messenger\Tchatche Messenger.exe

---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
O8 - Extra context menu item: &Envoyer à OneNote - res://C:\PROGRA~2\MICROS~1\Office15\ONBttnIE.dll/105
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Télécharger avec IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: Télécharger tous les liens avec IDM - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm

---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll,201
O9 - Extra button: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office15\ONBttnIE.dll,103
O9 - Extra button: Cliquer pour appeler Lync - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\lync.exe,1
O9 - Extra button: Notes &liées OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\PROGRA~2\MICROS~1\Office15\ONBTTN~1.DLL,103

---\\ Onglet supplémentaire dans les options avancées d'Internet Explorer (O11)
O11 - Options group: [accelerated_graphics] Accelerated graphics - C:\Windows\SysWOW64\inetcpl.cpl
O11 - Options group: [accessibility] Accessibility - C:\Windows\SysWOW64\inetcpl.cpl
O11 - Options group: [browse] Browsing - C:\Windows\SysWOW64\inetcpl.cpl
O11 - Options group: [crypto] Security - C:\Windows\SysWOW64\inetcpl.cpl
O11 - Options group: [http] HTTP 1.1 settings - C:\Windows\SysWOW64\inetcpl.cpl
O11 - Options group: [international] International - C:\Windows\SysWOW64\inetcpl.cpl
O11 - Options group: [multimedia] Multimedia - C:\Windows\SysWOW64\inetcpl.cpl

---\\ Site dans la Zone de confiance d'Internet Explorer (O15)
O15 - Trusted Zone: [HKCU\...\EscDomains] connectify.me
O15 - Trusted Zone: [HKCU\...\EscDomains] fastspring.com
O15 - Trusted Zone: [HKLM\...\EscDomains] connectify.me
O15 - Trusted Zone: [HKLM\...\EscDomains] fastspring.com

---\\ Protocole additionnel et piratage de protocole (O18)
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\SysWOW64\urlmon.dll
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysWOW64\msvidctl.dll
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\SysWOW64\inetcomm.dll
O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\SysWOW64\msvidctl.dll
O18 - Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll
O18 - Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL

---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: SDWinLogon - C:\Windows\System32\SDWinLogon.dll

---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - (not file)

---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3431078504-3540853256-2986777273-1001Core.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3431078504-3540853256-2986777273-1001UA.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Opera scheduled Autoupdate 1422451728.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\ParetoLogic Registration3.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\ParetoLogic Update Version3 Startup Task.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\ParetoLogic Update Version3.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\{334D4F20-EE21-4641-BA3D-78A876504086}.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\{EB4FBCF6-4AAB-4483-91E7-97B37DF2E923}.job

---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\Windows\system32\unregmp2.exe /ShowWMP
O40 - ASIC: Microsoft Windows Media Player 12.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\Windows\SysWOW64\wmpdxm.dll
O40 - ASIC: .NET Framework - {3A8403F3-90B5-35DC-8926-EB9B907209F9} - (not file)
O40 - ASIC: Offline Browsing Pack - {3af36230-a269-11d1-b5bf-0000f8051515} - (not file)
O40 - ASIC: Microsoft Windows - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
O40 - ASIC: DirectDrawEx - {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - (not file)
O40 - ASIC: Internet Explorer Help - {45ea75a0-a269-11d1-b5bf-0000f8051515} - (not file)
O40 - ASIC: Microsoft Windows Script 5.6 - {4f645220-306d-11d2-995d-00c04f98bbc9} - (not file)
O40 - ASIC: Internet Explorer Setup Tools - {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - (not file)
O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} - (not file)
O40 - ASIC: Microsoft Windows Media Player - {63C3C3D4-525B-B7E2-A021-BDE8803C467B} - (not file)
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} - C:\Windows\system32\unregmp2.exe /FirstLogon
O40 - ASIC: MSN Site Access - {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - (not file)
O40 - ASIC: Address Book 7 - {7790769C-0471-11d2-AF11-00C04FA35D02} - (not file)
O40 - ASIC: .NET Framework - {7C028AF8-F614-47B3-82DA-BA94E41B1089} - (not file)
O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install
O40 - ASIC: Google Chrome - {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.101\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
O40 - ASIC: Dynamic HTML Data Binding - {9381D8F2-0288-11D0-9501-00AA00B911A5} - (not file)
O40 - ASIC: .NET Framework - {C6BAF60B-6E91-453F-BFF9-D3789CFEFCDD} - (not file)
O40 - ASIC: Microsoft Windows - {C8264203-0245-8E04-26B9-FB216C456989} - (not file)
O40 - ASIC: Internet Explorer Core Fonts - {C9E9A340-D1F1-11D0-821E-444553540600} - (not file)
O40 - ASIC: Microsoft Windows Media Player 12.0 - {D21BE0D0-3637-D660-58E2-CFE7945D6BA5} - (not file)
O40 - ASIC: HTML Help - {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - (not file)
O40 - ASIC: Active Directory Service Interface - {E92B03AB-B707-11d2-9CBD-0000F87A369E} - (not file)

---\\ Logiciels installés (O42)
O42 - Logiciel: 7-Zip 9.22beta
O42 - Logiciel: AVG PC TuneUp 2014
O42 - Logiciel: Adobe AIR
O42 - Logiciel: Adobe Flash Player 17 NPAPI
O42 - Logiciel: Adobe Reader XI (11.0.12)
O42 - Logiciel: Adobe Refresh Manager
O42 - Logiciel: Adobe Shockwave Player 12.1
O42 - Logiciel: Avast Free Antivirus
O42 - Logiciel: Counter-Strike 1.6
O42 - Logiciel: Definition Update for Microsoft Office 2013 (KB3085499) 32-Bit Edition
O42 - Logiciel: EaseUS Partition Master 10.8 Trial Edition
O42 - Logiciel: Facebook Video Calling 2.0.0.447
O42 - Logiciel: Galerie de photos
O42 - Logiciel: Google Chrome
O42 - Logiciel: Google Update Helper
O42 - Logiciel: Gyazo 3.1.6
O42 - Logiciel: HSPA USB Modem
O42 - Logiciel: Internet Download Manager
O42 - Logiciel: Junk Mail filter update
O42 - Logiciel: MSVCRT
O42 - Logiciel: MSVCRT110
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2721691)
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694)
O42 - Logiciel: Malwarebytes Anti-Malware version 2.1.8.1057
O42 - Logiciel: Microsoft Access MUI (French) 2013
O42 - Logiciel: Microsoft DCF MUI (French) 2013
O42 - Logiciel: Microsoft Excel MUI (French) 2013
O42 - Logiciel: Microsoft Groove MUI (French) 2013
O42 - Logiciel: Microsoft InfoPath MUI (French) 2013
O42 - Logiciel: Microsoft Lync MUI (French) 2013
O42 - Logiciel: Microsoft Office Korrekturhilfen 2013 - Deutsch
O42 - Logiciel: Microsoft Office OSM MUI (French) 2013
O42 - Logiciel: Microsoft Office OSM UX MUI (French) 2013
O42 - Logiciel: Microsoft Office Professional Plus 2013
O42 - Logiciel: Microsoft Office Professionnel Plus 2013
O42 - Logiciel: Microsoft Office Proofing (French) 2013
O42 - Logiciel: Microsoft Office Proofing Tools 2013 - ????? ???????
O42 - Logiciel: Microsoft Office Proofing Tools 2013 - English
O42 - Logiciel: Microsoft Office Proofing Tools 2013 - Español
O42 - Logiciel: Microsoft Office Proofing Tools 2013 - Nederlands
O42 - Logiciel: Microsoft Office Shared MUI (French) 2013
O42 - Logiciel: Microsoft OneNote MUI (French) 2013
O42 - Logiciel: Microsoft Outlook MUI (French) 2013
O42 - Logiciel: Microsoft PowerPoint MUI (French) 2013
O42 - Logiciel: Microsoft Publisher MUI (French) 2013
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030
O42 - Logiciel: Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026
O42 - Logiciel: Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.23026
O42 - Logiciel: Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.23026
O42 - Logiciel: Microsoft Word MUI (French) 2013
O42 - Logiciel: Movie Maker
O42 - Logiciel: Mozilla Firefox 36.0.4 (x86 fr)
O42 - Logiciel: NMDVPN 2.1.4
O42 - Logiciel: Opera Stable 32.0.1948.69
O42 - Logiciel: Outils de vérification linguistique 2013 de Microsoft Office - Français
O42 - Logiciel: Photo Common
O42 - Logiciel: Photo Gallery
O42 - Logiciel: RICOH Media Driver ver.2.07.01.00
O42 - Logiciel: RStudio
O42 - Logiciel: SMADAV version 10.1.1
O42 - Logiciel: Security Update for Microsoft Excel 2013 (KB3085502) 32-Bit Edition
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB2880502) 32-Bit Edition
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB2910941) 32-Bit Edition
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3039734) 32-Bit Edition
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3039798) 32-Bit Edition
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3054816) 32-Bit Edition
O42 - Logiciel: Security Update for Microsoft Office 2013 (KB3054932) 32-Bit Edition
O42 - Logiciel: Security Update for Skype for Business 2015 (KB3085500) 32-Bit Edition
O42 - Logiciel: Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition
O42 - Logiciel: Skype™ 7.12
O42 - Logiciel: Sony Vegas 7.0
O42 - Logiciel: Spybot - Search & Destroy
O42 - Logiciel: TOSHIBA Mobile Broadband Device
O42 - Logiciel: TOSHIBA SD Memory Boot Utility
O42 - Logiciel: TP-LINK TL-WN721N_TL-WN722N Driver
O42 - Logiciel: TP-LINK Wireless Configuration Utility
O42 - Logiciel: Update for Microsoft Access 2013 (KB3085503) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB2760344) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB2760371) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB2760544) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB2837654) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB2880487) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB2881076) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB2883036) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB2883095) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB2889863) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB2899522) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB2956152) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB2965271) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB2975869) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB3023052) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039718) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039739) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039762) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB3039766) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB3054774) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB3054783) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB3054856) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB3054923) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB3054935) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB3055010) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB3055011) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB3085479) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB3085480) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB3085493) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB3085504) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Office 2013 (KB3085506) 32-Bit Edition
O42 - Logiciel: Update for Microsoft OneDrive for Business (KB3055020) 32-Bit Edition
O42 - Logiciel: Update for Microsoft OneNote 2013 (KB3085491) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Outlook 2013 (KB3085495) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Outlook Social Connector 2013 (KB3054854) 32-Bit Edition
O42 - Logiciel: Update for Microsoft PowerPoint 2013 (KB3085478) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Project 2013 (KB3085510) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Publisher 2013 (KB3023050) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Visio Viewer 2013 (KB2817301) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Word 2013 (KB2878319) 32-Bit Edition
O42 - Logiciel: Update for Microsoft Word 2013 (KB3085490) 32-Bit Edition
O42 - Logiciel: Update for Skype for Business 2015 (KB2889853) 32-Bit Edition
O42 - Logiciel: VLC media player
O42 - Logiciel: WinThruster
O42 - Logiciel: Windows Live
O42 - Logiciel: Windows Live Communications Platform
O42 - Logiciel: Windows Live Installer
O42 - Logiciel: Windows Live Mail
O42 - Logiciel: Windows Live PIMT Platform
O42 - Logiciel: Windows Live Photo Common
O42 - Logiciel: Windows Live UX Platform
O42 - Logiciel: Windows Live UX Platform Language Pack
O42 - Logiciel: Windows Live Writer
O42 - Logiciel: Windows Live Writer Resources
O42 - Logiciel: Windows Movie Maker 2.6
O42 - Logiciel: swMSM

---\\ Contenu des dossiers Fichiers Communs (O43)
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\7-Zip
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\80B3A486-1443526317-DD11-8023-B05988129597
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Adobe
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\AVG
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\BHOCop
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\BHODemon 2
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Connectify
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Counter-Strike 1.6
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Download Button
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\EaseUS
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Exterminate It!
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\globalUpdate
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Google
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Gyazo
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\HSPA USB Modem
O43 - CFD:Common File Directory --H-D- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Intel
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Internet Download Manager
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Internet Explorer
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Malwarebytes Anti-Malware
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Malwarebytes' Anti-Malware
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Microsoft Analysis Services
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Microsoft Office
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Microsoft OneDrive
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Microsoft SQL Server
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Microsoft Toolkit Final
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Microsoft.NET
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Movie Maker 2.6
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\MSBuild
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\MSXML 4.0
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\NMDVPN
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Opera
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Opera x64
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Reference Assemblies
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Settings Manager
O43 - CFD:Common File Directory R---D- C:\Program Files (x86)\Skype
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Smadav
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Sony
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Sony Setup
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Spybot - Search & Destroy 2
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\SSaalePlus
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\SupportAppCB
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\TOSHIBA
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\TP-LINK
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\VideoLAN
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Virtual Console
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Windows Defender
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Windows Live
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Windows Mail
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Windows Media Player
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Windows NT
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD:Common File Directory -SH-D- C:\Program Files (x86)\Windows Sidebar
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\WinThruster
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\YouTube Accelerator
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\YTAHelper
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\ZHPDiag
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\Adobe AIR
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\Java
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\Macrovision Shared
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\MAGIX Services
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\MAGIX Shared
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\ParetoLogic
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\Services
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\Skype
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\System
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\Windows Live

---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:Last File Created 03/10/2015 - 17:32:37 ---A- C:\Windows\System32\winsecOff.ini
O44 - LFC:Last File Created 04/10/2015 - 19:28:52 ---A- C:\Windows\MSI30-KB884016.log
O44 - LFC:Last File Created 05/10/2015 - 17:37:01 ---A- C:\Windows\PFRO.log
O44 - LFC:Last File Created 06/10/2015 - 10:33:18 ---A- C:\Windows\setuperr.log
O44 - LFC:Last File Created 06/10/2015 - 10:33:53 ---A- C:\Windows\diagerr.xml
O44 - LFC:Last File Created 06/10/2015 - 10:33:53 ---A- C:\Windows\diagwrn.xml
O44 - LFC:Last File Created 06/10/2015 - 10:33:53 ---A- C:\Windows\setupact.log
O44 - LFC:Last File Created 06/10/2015 - 21:20:38 ---A- C:\Windows\ntbtlog.txt
O44 - LFC:Last File Created 08/10/2015 - 13:24:11 ---A- C:\Windows\WindowsUpdate.log
O44 - LFC:Last File Created 08/10/2015 - 13:25:43 -S-A- C:\Windows\bootstat.dat
O44 - LFC:Last File Created 12/09/2015 - 17:01:13 ---A- C:\Windows\win.ini
O44 - LFC:Last File Created 17/09/2015 - 22:07:29 ---A- C:\Windows\System32\FlashPlayerApp.exe
O44 - LFC:Last File Created 17/09/2015 - 22:07:29 ---A- C:\Windows\System32\FlashPlayerCPLApp.cpl
O44 - LFC:Last File Created 21/09/2015 - 23:19:28 ---A- C:\Windows\System32\BootMan.exe
O44 - LFC:Last File Created 29/09/2015 - 12:35:48 ---A- C:\Windows\avastSS.scr

---\\ MountPoints2 Shell Key (MPSK) (O51)
O51 - MPSK:{1875e1fa-19b1-11e5-bfac-001c7e0472b2}\Shell\AutoRun\command - "D:\AutoRun.exe"
O51 - MPSK:{485cb7ce-02a3-11e4-be70-00216b293c60}\Shell\AutoRun\command - "D:\AutoRun.exe"
O51 - MPSK:{6169f92b-606e-11e4-befb-001c7e0472b2}\Shell\AutoRun\command - "D:\autorun.exe"
O51 - MPSK:{6cd01370-0f5c-11e4-be88-001c7e0472b2}\Shell\AutoRun\command - "D:\AutoRun.exe"
O51 - MPSK:{9aa06071-3867-11e4-bed1-001c7e0472b2}\Shell\AutoRun\command - "I:\AutoRun.exe"
O51 - MPSK:{a576c013-7589-11e4-bf1a-001c7e0472b2}\Shell\AutoRun\command - "D:\start.exe"
O51 - MPSK:{a72232fe-1988-11e5-bfab-001c7e0472b2}\Shell\AutoRun\command - "D:\AutoRun.exe"
O51 - MPSK:{a7223341-1988-11e5-bfab-001c7e0472b2}\Shell\AutoRun\command - "D:\AutoRun.exe"
O51 - MPSK:{b0fe4a22-6ff9-11e4-bf0e-00216b293c60}\Shell\AutoRun\command - "D:\autorun.exe"
O51 - MPSK:{d5f62564-2ab9-11e4-bec2-001c7e0472b2}\Shell\AutoRun\command - "D:\autorun.exe"
O51 - MPSK:{db0a23a7-7994-11e4-bf25-001c7e0472b2}\Shell\AutoRun\command - "D:\autorun.exe"
O51 - MPSK:{db0a240d-7994-11e4-bf25-001c7e0472b2}\Shell\AutoRun\command - "D:\autorun.exe"
O51 - MPSK:{db0a2439-7994-11e4-bf25-001c7e0472b2}\Shell\AutoRun\command - "D:\autorun.exe"
O51 - MPSK:{db0a2518-7994-11e4-bf25-001c7e0472b2}\Shell\AutoRun\command - "I:\autorun.exe"
O51 - MPSK:{f3edc1f2-8cff-11e4-bf30-001c7e0472b2}\Shell\AutoRun\command - "D:\AutoRun.exe"

---\\ Trojan Driver Search Data (TDSD) (O52)
O52 - TDSD:HKLM\...\Drivers32\"msacm.msgsm610"="msgsm32.acm"
O52 - TDSD:HKLM\...\Drivers32\"msacm.msg711"="msg711.acm"
O52 - TDSD:HKLM\...\Drivers32\"msacm.l3acm"="C:\Windows\SysWOW64\l3codeca.acm"
O52 - TDSD:HKLM\...\Drivers32\"vidc.yuy2"="msyuv.dll"
O52 - TDSD:HKLM\...\Drivers32\"vidc.i420"="iyuv_32.dll"
O52 - TDSD:HKLM\...\Drivers32\"vidc.cvid"="iccvid.dll"
O52 - TDSD:HKLM\...\Drivers32\"vidc.yvyu"="msyuv.dll"
O52 - TDSD:HKLM\...\Drivers32\"vidc.yvu9"="tsbyuv.dll"
O52 - TDSD:HKLM\...\Drivers32\"wavemapper"="msacm32.drv"
O52 - TDSD:HKLM\...\Drivers32\"midimapper"="midimap.dll"
O52 - TDSD:HKLM\...\Drivers32\"vidc.uyvy"="msyuv.dll"
O52 - TDSD:HKLM\...\Drivers32\"msacm.imaadpcm"="imaadp32.acm"
O52 - TDSD:HKLM\...\Drivers32\"msacm.msadpcm"="msadp32.acm"
O52 - TDSD:HKLM\...\Drivers32\"vidc.iyuv"="iyuv_32.dll"
O52 - TDSD:HKLM\...\Drivers32\"vidc.mrle"="msrle32.dll"
O52 - TDSD:HKLM\...\Drivers32\"vidc.msvc"="msvidc32.dll"
O52 - TDSD:HKLM\...\Drivers32\"VIDC.CFHD"="cfhd.dll"
O52 - TDSD:HKLM\...\Drivers32\"wave"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"midi"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"mixer"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"aux"="wdmaud.drv"
O52 - TDSD:HKLM\...\drivers.desc\"C:\Windows\SysWOW64\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec"
O52 - TDSD:HKLM\...\drivers.desc\"cfhd.dll"="Codec CineForm HD VFW"

---\\ Microsoft Windows Policies System (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableCursorSuppression"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "SoftwareSASGeneration"=1

---\\ Microsoft Windows Policies Explorer (MWPE) (O56)
O56 - MWPE:[HKLM\...\Policies\Explorer] - "ForceActiveDesktopOn"=0
O56 - MWPE:[HKLM\...\Policies\Explorer] - "NoActiveDesktopChanges"=1
O56 - MWPE:[HKLM\...\Policies\Explorer] - "NoActiveDesktop"=1

---\\ Liste des outils de nettoyage (LATC) (O63)
O63 - Logiciel: ZHPDiag 1.24


End of the scan: 449 lines

Publicité


Signaler le contenu de ce document

Publicité