cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.11.25.174 Par Nicolas Coolman (2015/11/25)
~ Démarré par RIMAV (Administrator) (2015/11/26 10:17:44)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: H:\Documents and Settings\RIMAV\Bureau\ZHPDiag.txt
~ Rapport: H:\Documents and Settings\RIMAV\Application Data\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
Windows XP, 32-bit Service Pack 3 (Build 2600)

---\\ Navigateurs Internet (2) - 1s
MFIE: Mozilla Firefox 42.0 (x86 fr) v42.0
MSIE: Internet Explorer v8.0.6001.18702

---\\ Informations sur les produits Windows (3) - 0s
Windows Automatic Updates : OK
Windows Activation Technologies : KO
Windows Genuine Advantage : KO

---\\ Logiciels de protection (2) - 3s
Avira Antivirus v15.0.13.210
Malwarebytes Anti-Malware version 2.2.0.1024

---\\ Logiciels d'optimisation (1) - 4s
CCleaner v4.15

---\\ Surveillance de Logiciels (2) - 4s
Adobe Flash Player 19 NPAPI
Adobe Reader XI

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 15 Model 4 Stepping 7, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 1038.176 MB (18% free)
System Restore: Activé (Enable)
System drive H: has 200 GB () free of 476 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: RIMA
~ User Name: RIMAV
~ Logged in as Administrator

---\\ Enumération des unités disques (1) - 13s
~ Drive H: has 200 GB free of 476 GB (System)

---\\ Etat du Centre de Sécurité Windows (10) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (23) - 1s
[MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - 14/04/2008 - (.Microsoft Corporation - Explorateur Windows.) -- H:\WINDOWS\Explorer.exe [1037824] ©
[MD5.93AD0B78C7357A05F50E594EC7C22300] - 14/04/2008 - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- H:\WINDOWS\System32\rundll32.exe [33792] ©
[MD5.E1948B1F45A176FB4A0251446A5AE86D] - 06/03/2014 - (.Microsoft Corporation - Internet Extensions for Win32.) -- H:\WINDOWS\System32\wininet.dll [920064] ©
[MD5.DD73D6B9F6B4CB630CF35B438B540174] - 14/04/2008 - (.Microsoft Corporation - Application d'ouverture de session Windows.) -- H:\WINDOWS\System32\Winlogon.exe [512000] ©
[MD5.D76A076ADB74F8132924E498D63123A2] - 03/03/2011 - (.Microsoft Corporation - DNS Client API DLL.) -- H:\WINDOWS\System32\dnsapi.dll [149504] ©
[MD5.1E44BC1E83D8FD2305F8D452DB109CF9] - 17/08/2011 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- H:\WINDOWS\System32\drivers\AFD.sys [138496] ©
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] - 13/04/2008 - (.Microsoft Corporation - IDE/ATAPI Port Driver.) -- H:\WINDOWS\System32\drivers\atapi.sys [96512] ©
[MD5.C885B02847F5D2FD45A24E219ED93B32] - 13/04/2008 - (.Microsoft Corporation - CD-ROM File System Driver.) -- H:\WINDOWS\System32\drivers\Cdfs.sys [63744] ©
[MD5.1F4260CC5B42272D71F79E570A27A4FE] - 13/04/2008 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- H:\WINDOWS\System32\drivers\Cdrom.sys [62976] ©
[MD5.31F923EB2170FC172C81ABDA0045D18C] - 14/04/2008 - (.Microsoft Corporation - Pilote de cryptographie FIPS.) -- H:\WINDOWS\System32\drivers\Fips.sys [44672] ©
[MD5.573C7D0A32852B48F3058CFD8026F511] - 13/04/2008 - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- H:\WINDOWS\System32\drivers\HDAudBus.sys [144384]
[MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - 14/04/2008 - (.Microsoft Corporation - Pilote de port i8042.) -- H:\WINDOWS\System32\drivers\i8042prt.sys [54144] ©
[MD5.083A052659F5310DD8B6A6CB05EDCF8E] - 13/04/2008 - (.Microsoft Corporation - IMAPI Kernel Driver.) -- H:\WINDOWS\System32\drivers\Imapi.sys [42112] ©
[MD5.CC748EA12C6EFFDE940EE98098BF96BB] - 13/04/2008 - (.Microsoft Corporation - IP Network Address Translator.) -- H:\WINDOWS\System32\drivers\IpNat.sys [152832] ©
[MD5.23C74D75E36E7158768DD63D92789A91] - 13/04/2008 - (.Microsoft Corporation - IPSec Driver.) -- H:\WINDOWS\System32\drivers\IPSec.sys [75264] ©
[MD5.7D304A5EB4344EBEEAB53A2FE3FFB9F0] - 15/07/2011 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- H:\WINDOWS\System32\drivers\MRxSmb.sys [456320] ©
[MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - 13/04/2008 - (.Microsoft Corporation - MBT Transport driver.) -- H:\WINDOWS\System32\drivers\netBT.sys [162816] ©
[MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - 13/04/2008 - (.Microsoft Corporation - NT File System Driver.) -- H:\WINDOWS\System32\drivers\ntfs.sys [574976] ©
[MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - 14/04/2008 - (.Microsoft Corporation - Pilote de port parallèle.) -- H:\WINDOWS\System32\drivers\Parport.sys [80384] ©
[MD5.11B4A627BC9614B885C4969BFA5FF8A6] - 13/04/2008 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- H:\WINDOWS\System32\drivers\Rasl2tp.sys [51328] ©
[MD5.15CABD0F7C00C47C70124907916AF3F1] - 13/04/2008 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- H:\WINDOWS\System32\drivers\rdpdr.sys [196224] ©
[MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - 14/04/2008 - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) -- H:\WINDOWS\System32\drivers\redbook.sys [58752] ©
[MD5.46DE1126684369BACE4849E4FC8C43CA] - 14/04/2008 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- H:\WINDOWS\System32\drivers\volsnap.sys [53376] ©

---\\ Logiciels installés (46) - 12s
O42 - Logiciel: 7-Zip 9.20 - (...) [HKLM] -- 7-Zip
O42 - Logiciel: Adobe Flash Player 19 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI ©
O42 - Logiciel: Adobe Reader XI (11.0.08) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} ©
O42 - Logiciel: adsl TV - (.adsl TV / FM.) [HKLM] -- {3AFDD2C6-8663-46B5-B195-6CEB00D44768} ©
O42 - Logiciel: Avira Antivirus v15.0.13.210 - (.Avira Operations GmbH & Co. KG.) [HKLM] -- Avira Antivirus ©
O42 - Logiciel: Box Edit - (.Box.) [HKLM] -- {D1D914C0-319C-4503-9C9E-8354CCBB0EC6} ©
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner ©
O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1 ©
O42 - Logiciel: Dell Resource CD - (.Dell Inc..) [HKLM] -- {FCD9CD52-7222-4672-94A0-A722BA702FD0} ©
O42 - Logiciel: FormatFactory 3.2.0.1 - (.Free Time.) [HKLM] -- FormatFactory ©
O42 - Logiciel: Hotfix for Windows XP (KB954550-v5) - (.Microsoft Corporation.) [HKLM] -- KB954550-v5 ©
O42 - Logiciel: Hotfix for Windows XP (KB976002-v5) - (.Microsoft Corporation.) [HKLM] -- KB976002-v5 ©
O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (...) [HKLM] -- HDMI
O42 - Logiciel: Intel(R) PRO Network Connections Drivers - (...) [HKLM] -- PROSet
O42 - Logiciel: Java 8 Update 51 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218051F0} ©
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} ©
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {8E5233E1-7495-44FB-8DEB-4BE906D59619} ©
O42 - Logiciel: Logitech Vid - (.Logitech Inc..) [HKLM] -- {4FBCEA31-5D18-4212-9231-DE7CF1BE7DBB} ©
O42 - Logiciel: Logitech Webcam Software - (.Logitech Inc..) [HKLM] -- {C27BC2A2-30DD-4014-B22E-63EB0DB572F9} ©
O42 - Logiciel: Ma-Config.com - (.Cybelsoft.) [HKLM] -- {2188D50C-BA8A-47AD-8477-17B5BE12532D} ©
O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.0.1024 - (.Malwarebytes.) [HKLM] -- Malwarebytes Anti-Malware_is1 ©
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM] -- {95120000-00B9-0409-0000-0000000FF1CE} ©
O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570} ©
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} ©
O42 - Logiciel: Mozilla Firefox 42.0 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 42.0 (x86 fr) ©
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService ©
O42 - Logiciel: Mozilla Thunderbird 38.3.0 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Thunderbird 38.3.0 (x86 fr) ©
O42 - Logiciel: MSN - (...) [HKLM] -- MSNINST
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94} ©
O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM] -- Picasa 3 ©
O42 - Logiciel: Revo Uninstaller 1.95 - (.VS Revo Group.) [HKLM] -- Revo Uninstaller ©
O42 - Logiciel: SeaTools for Windows 1.4.0.2 - (.Seagate Technology.) [HKLM] -- SeaTools for Windows ©
O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A} ©
O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- KB931906 ©
O42 - Logiciel: Segoe UI - (.Microsoft Corp.) [HKLM] -- {A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7} ©
O42 - Logiciel: SigmaTel Audio - (.SigmaTel.) [HKLM] -- {A462213D-EED4-42C2-9A60-7BDD4D4B0B17} ©
O42 - Logiciel: Sonic Encoders - (.Sonic Solutions.) [HKLM] -- {9941F0AA-B903-4AF4-A055-83A9815CC011} ©
O42 - Logiciel: SumatraPDF 2.5.2 - (.Krzysztof Kowalczyk.) [HKLM] -- SumatraPDF ©
O42 - Logiciel: Unchecky v0.4.1 - (.RaMMicHaeL.) [HKLM] -- Unchecky ©
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player ©
O42 - Logiciel: WebFldrs XP - (.Microsoft Corporation.) [HKLM] -- {350C940c-3D7C-4EE8-BAA9-00BCB3D54227} ©
O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8 ©
O42 - Logiciel: Windows Media Format Runtime - (...) [HKLM] -- Windows Media Format Runtime
O42 - Logiciel: Windows XP Service Pack 3 - (.Microsoft Corporation.) [HKLM] -- Windows XP Service ©
O42 - Logiciel: WinRAR 5.10 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver ©
O42 - Logiciel: ZHPFix 2015 - (.Nicolas Coolman.) [HKLM] -- ZHPFix_is1 ©

---\\ HKCU & HKLM Software Keys (95) - 12s
HKLM\SOFTWARE\7-Zip
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\Avira
HKLM\SOFTWARE\AviSynth
HKLM\SOFTWARE\Bunndle
HKLM\SOFTWARE\C07ft5Y
HKLM\SOFTWARE\cybelsoft
HKLM\SOFTWARE\Dell
HKLM\SOFTWARE\Dell Computer Corporation
HKLM\SOFTWARE\DivXNetworks
HKLM\SOFTWARE\Dropbox
HKLM\SOFTWARE\Gemplus
HKLM\SOFTWARE\GNU
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\HaaliMkx
HKLM\SOFTWARE\InstalledOptions
HKLM\SOFTWARE\InstallShield
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\JavaRa
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\Licenses
HKLM\SOFTWARE\LogiShrd
HKLM\SOFTWARE\Logitech
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\McAfee.com
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\Piriform
HKLM\SOFTWARE\Program Groups
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\Schlumberger
HKLM\SOFTWARE\SeaToolsforWindows
HKLM\SOFTWARE\Secunia
HKLM\SOFTWARE\Secure
HKLM\SOFTWARE\SigmaTel
HKLM\SOFTWARE\Sonic
HKLM\SOFTWARE\SUPERAntiSpyware.com
HKLM\SOFTWARE\Sysinternals
HKLM\SOFTWARE\Unchecky
HKLM\SOFTWARE\VideoLAN
HKLM\SOFTWARE\Windows
HKLM\SOFTWARE\Windows 3.1 Migration Status
HKLM\SOFTWARE\WinRAR
HKLM\SOFTWARE\Wow6432Node
HKLM\SOFTWARE\X-AVCSD
HKLM\SOFTWARE\ZSMC
HKCU\SOFTWARE\7-Zip
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AOER
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Astonsoft
HKCU\SOFTWARE\Avira
HKCU\SOFTWARE\BitDefender
HKCU\SOFTWARE\Box
HKCU\SOFTWARE\Canneverbe Limited
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\Convar
HKCU\SOFTWARE\Dell Computer Corporation
HKCU\SOFTWARE\FreeTime
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\HookNetwork
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\Leadertech
HKCU\SOFTWARE\LogiShrd
HKCU\SOFTWARE\Logitech
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Maelstrom
HKCU\SOFTWARE\Malwarebytes' Anti-Malware
HKCU\SOFTWARE\Modern UI Test
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\PDF Architect
HKCU\SOFTWARE\Secunia
HKCU\SOFTWARE\Software
HKCU\SOFTWARE\SUPERAntiSpyware.com
HKCU\SOFTWARE\Sysinternals
HKCU\SOFTWARE\Thunderbird
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Unchecky
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\VSRevoGroup
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software

---\\ Liste des services NT non Microsoft et non désactivés (8) - 1s
O23 - Service: Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG - Antivirus MailScanner LSP Service.) - H:\Program Files\Avira\AntiVir Desktop\avmailc.exe ©
O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - H:\Program Files\Avira\AntiVir Desktop\sched.exe ©
O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - H:\Program Files\Avira\AntiVir Desktop\avguard.exe ©
O23 - Service: Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG - AntiVir WebGuard Service.) - H:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe ©
O23 - Service: Process Monitor (LVPrcSrv) . (.Logitech Inc. - Logitech LVPrcSrv Module..) - H:\Program Files\Fichiers communs\logishrd\LVMVFM\LVPrcSrv.exe ©
O23 - Service: Ma-Config Agent (MaConfigAgent) . (.CybelSoft - Service de détection matériel.) - H:\Program Files\ma-config.com\MaConfigAgent.exe ©
O23 - Service: (MBAMService) . (.Malwarebytes - Malwarebytes Anti-Malware.) - H:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe ©
O23 - Service: Unchecky (Unchecky) . (.RaMMicHaeL - Unchecky Service.) - H:\Program Files\Unchecky\bin\unchecky_svc.exe ©

---\\ Processus lancés (11) - 1s
[MD5.18B0643B3B504E0FDCFCE0C8743B29C7] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- H:\Program Files\Avira\AntiVir Desktop\sched.exe [461672] [PID.1516] ©
[MD5.18B0643B3B504E0FDCFCE0C8743B29C7] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- H:\Program Files\Avira\AntiVir Desktop\avguard.exe [461672] [PID.1888] ©
[MD5.0DDFDCAA92C7F553328DB06BA599BEA9] - (.Logitech Inc. - Logitech LVPrcSrv Module..) -- H:\Program Files\Fichiers communs\logishrd\LVMVFM\LVPrcSrv.exe [154136] [PID.2020] ©
[MD5.9927E906D7997D22E67E476710127070] - (.CybelSoft - Service de détection matériel.) -- H:\Program Files\ma-config.com\MaConfigAgent.exe [2117448] [PID.236] ©
[MD5.5720C24DD0B8AD3EB18B626E695971C2] - (.RaMMicHaeL - Unchecky Service.) -- H:\Program Files\Unchecky\bin\unchecky_svc.exe [242936] [PID.1692] ©
[MD5.C1A86A6D6847DEFF009EAE85BA0C1F20] - (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- H:\Program Files\Avira\AntiVir Desktop\avgnt.exe [782520] [PID.2196] ©
[MD5.4522792B6F9525DA41E5C95761F7736A] - (.Avira Operations GmbH & Co. KG - AntiVir shadow copy service.) -- H:\Program Files\Avira\AntiVir Desktop\avshadow.exe [433400] [PID.2408] ©
[MD5.22610F93165A1C1070239843AC2B43EB] - (.RaMMicHaeL - Unchecky Background Process.) -- H:\Program Files\Unchecky\bin\Unchecky_bg.exe [555256] [PID.3136] ©
[MD5.B39CAB9DF6B7BCDE9B27D566BAF78D3C] - (.Mozilla Corporation - Thunderbird.) -- H:\Program Files\Mozilla Thunderbird\thunderbird.exe [491688] [PID.484] ©
[MD5.4B0583A0A6A22D9F453BFFD467E68190] - (.Mozilla Corporation - Firefox.) -- H:\Program Files\Mozilla Firefox\firefox.exe [392872] [PID.1044] ©
[MD5.4E980078E8F1F28EEF6A00F1347D868E] - (.Copyright (C) 2015 Nicolas Coolman - ZHPDiag.) -- H:\Documents and Settings\RIMAV\Bureau\ZHPDiag3.exe [1976320] [PID.3068] ©

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (13) - 2s
P2 - EXT FILE: (...) -- H:\Documents and Settings\RIMAV\Application Data\Mozilla\Firefox\Profiles\am96p433.default\extensions\donottrackplus@abine.com.xpi
P2 - EXT FILE: (...) -- H:\Documents and Settings\RIMAV\Application Data\Mozilla\Firefox\Profiles\am96p433.default\extensions\jid0-XWJxt5VvCXkKzQK99PhZqAn7Xbg@jetpack.xpi
P2 - EXT FILE: (...) -- H:\Documents and Settings\RIMAV\Application Data\Mozilla\Firefox\Profiles\am96p433.default\extensions\jid1-F9UJ2thwoAm5gQ@jetpack.xpi
P2 - EXT FILE: (...) -- H:\Documents and Settings\RIMAV\Application Data\Mozilla\Firefox\Profiles\am96p433.default\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi
P2 - EXT FILE: (...) -- H:\Documents and Settings\RIMAV\Application Data\Mozilla\Firefox\Profiles\am96p433.default\extensions\{91A6D6AB-3E9A-4C00-A3CF-B08CBE803A2E}.xpi
P2 - EXT FILE: (...) -- H:\Documents and Settings\RIMAV\Application Data\Mozilla\Firefox\Profiles\am96p433.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - EXT: (.Mozilla - Default.) -- H:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ©
P2 - EXT: (.Avira - Segurança do navegador Avira.) -- H:\Documents and Settings\RIMAV\Application Data\Mozilla\Firefox\Profiles\am96p433.default\extensions\abs@avira.com
P2 - EXT: (.WOT Services Oy - WOT.) -- H:\Documents and Settings\RIMAV\Application Data\Mozilla\Firefox\Profiles\am96p433.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} ©
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- H:\WINDOWS\system32\Macromed\Flash\NPSWF32_19_0_0_245.dll ©
P2 - FPN: [HKLM] [@mozilla.zeniko.ch/SumatraPDF_Browser_Plugin] - (.Simon Bünzli.) -- H:\Program Files\SumatraPDF\npPdfViewer.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=1.1.11] - (.VideoLAN.) -- H:\Program Files\VideoLAN\VLC\npvlc.dll ©
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.2] - (.VideoLAN.) -- H:\Program Files\VideoLAN\VLC\npvlc.dll ©

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (15) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R0 - HKCU\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bigseekpro.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer,Proxy Management (7) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 0

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 1s
F2 - REG:system.ini: UserInit=H:\WINDOWS\System32\Userinit.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: Shell=H:\WINDOWS\explorer.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (40)

---\\ Browser Helper Object de navigateur (BHO) (3) - 0s
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} (Orphean)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- H:\Program Files\Java\jre1.8.0_51\bin\ssv.dll ©
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - WindowsLiveLogin.dll.) -- H:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll ©

---\\ Applications lancées au démarrage du système (7) - 0s
O4 - HKLM\..\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- H:\Program Files\Avira\AntiVir Desktop\avgnt.exe ©
O4 - HKCU\..\Run: [CCleaner] . (.Piriform Ltd - CCleaner.) -- H:\Program Files\CCleaner\CCleaner.exe ©
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- H:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- H:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- H:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- H:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-21-1229272821-1303643608-839522115-1003\..\Run: [CCleaner] . (.Piriform Ltd - CCleaner.) -- H:\Program Files\CCleaner\CCleaner.exe ©

---\\ Modification Domaine/Adresses DNS (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CS3\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254

---\\ Protocole additionnel (29) - 1s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- H:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- H:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) -- H:\WINDOWS\system32\msvidctl.dll ©
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- H:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- H:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- H:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- H:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- H:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- H:\WINDOWS\system32\itss.dll ©
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- H:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- H:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- H:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API.) -- H:\WINDOWS\system32\inetcomm.dll ©
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- H:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- H:\WINDOWS\system32\itss.dll ©
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- H:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: sysimage - {76E67A63-06E9-11D2-A840-006008059382} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- H:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) -- H:\WINDOWS\system32\msvidctl.dll ©
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- H:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} . (.Microsoft Corporation - WIA Scripting Layer.) -- H:\WINDOWS\system32\wiascr.dll ©
O18 - Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- H:\Program Files\Windows Live\Mail\mailcomm.dll ©
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- H:\WINDOWS\system32\mscoree.dll ©
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- H:\WINDOWS\system32\mscoree.dll ©
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- H:\WINDOWS\system32\mscoree.dll ©
O18 - Filter: Class Install Handler - {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- H:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- H:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- H:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: lzdhtml - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- H:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} . (.Microsoft Corporation - DLL commune du shell Windows.) -- H:\WINDOWS\system32\shell32.dll ©

---\\ Contenu des dossiers Programmes (167) - 10s
O43 - CFD: 23/07/2015 - [] D -- H:\Program Files\7-Zip
O43 - CFD: 01/07/2015 - [] D -- H:\Program Files\Adobe
O43 - CFD: 21/11/2015 - [] D -- H:\Program Files\adslTV
O43 - CFD: 11/01/2013 - [0] D -- H:\Program Files\Astonsoft
O43 - CFD: 25/06/2015 - [] D -- H:\Program Files\Avira
O43 - CFD: 17/08/2015 - [] D -- H:\Program Files\CCleaner
O43 - CFD: 21/07/2015 - [] D -- H:\Program Files\CDBurnerXP
O43 - CFD: 06/05/2011 - [0] D -- H:\Program Files\ComPlus Applications
O43 - CFD: 30/06/2014 - [] D -- H:\Program Files\Convar
O43 - CFD: 14/12/2012 - [] D -- H:\Program Files\Dell
O43 - CFD: 01/07/2015 - [] D -- H:\Program Files\Dropbox
O43 - CFD: 25/05/2013 - [] D -- H:\Program Files\eMule
O43 - CFD: 24/08/2015 - [] D -- H:\Program Files\Fichiers communs
O43 - CFD: 23/12/2013 - [] D -- H:\Program Files\FreeTime
O43 - CFD: 20/05/2012 - [0] D -- H:\Program Files\GemMasterFrench
O43 - CFD: 07/05/2015 - [] D -- H:\Program Files\Google
O43 - CFD: 14/12/2012 - [] HD -- H:\Program Files\InstallShield Installation Information
O43 - CFD: 06/05/2011 - [] D -- H:\Program Files\Intel
O43 - CFD: 14/06/2014 - [] D -- H:\Program Files\Internet Explorer
O43 - CFD: 19/07/2015 - [] D -- H:\Program Files\Java
O43 - CFD: 24/10/2014 - [] D -- H:\Program Files\Logitech
O43 - CFD: 22/01/2015 - [] D -- H:\Program Files\ma-config.com
O43 - CFD: 20/10/2015 - [] D -- H:\Program Files\Malwarebytes Anti-Malware
O43 - CFD: 07/05/2011 - [] D -- H:\Program Files\Messenger
O43 - CFD: 22/05/2011 - [] D -- H:\Program Files\Microsoft
O43 - CFD: 25/10/2014 - [] D -- H:\Program Files\Microsoft CAPICOM 2.1.0.2
O43 - CFD: 06/05/2011 - [] D -- H:\Program Files\microsoft frontpage
O43 - CFD: 27/06/2015 - [] D -- H:\Program Files\Microsoft Office
O43 - CFD: 24/07/2014 - [] D -- H:\Program Files\Microsoft Silverlight
O43 - CFD: 27/06/2015 - [] D -- H:\Program Files\Microsoft.NET
O43 - CFD: 07/05/2011 - [] D -- H:\Program Files\Movie Maker
O43 - CFD: 04/11/2015 - [] D -- H:\Program Files\Mozilla Firefox
O43 - CFD: 05/11/2015 - [] D -- H:\Program Files\Mozilla Maintenance Service
O43 - CFD: 06/10/2015 - [] D -- H:\Program Files\Mozilla Thunderbird
O43 - CFD: 14/06/2014 - [] D -- H:\Program Files\MSBuild
O43 - CFD: 27/06/2015 - [] D -- H:\Program Files\MSECache
O43 - CFD: 01/09/2011 - [] D -- H:\Program Files\MSN
O43 - CFD: 06/05/2011 - [] D -- H:\Program Files\MSN Gaming Zone
O43 - CFD: 07/05/2011 - [] D -- H:\Program Files\NetMeeting
O43 - CFD: 06/05/2011 - [] D -- H:\Program Files\Online Services
O43 - CFD: 05/07/2014 - [] D -- H:\Program Files\OpenOffice 4
O43 - CFD: 22/05/2012 - [] D -- H:\Program Files\Outlook Express
O43 - CFD: 14/06/2014 - [] D -- H:\Program Files\Reference Assemblies
O43 - CFD: 27/06/2015 - [] D -- H:\Program Files\Seagate
O43 - CFD: 11/07/2014 - [] D -- H:\Program Files\Secunia
O43 - CFD: 06/05/2011 - [] D -- H:\Program Files\Services en ligne
O43 - CFD: 06/05/2011 - [] D -- H:\Program Files\SigmaTel
O43 - CFD: 11/07/2014 - [] D -- H:\Program Files\SumatraPDF
O43 - CFD: 13/10/2015 - [] D -- H:\Program Files\Unchecky
O43 - CFD: 06/05/2011 - [0] HD -- H:\Program Files\Uninstall Information
O43 - CFD: 28/10/2013 - [] D -- H:\Program Files\uTorrent
O43 - CFD: 12/07/2014 - [] D -- H:\Program Files\VideoLAN
O43 - CFD: 02/07/2015 - [] D -- H:\Program Files\VS Revo Group
O43 - CFD: 20/10/2015 - [] D -- H:\Program Files\WhoCrashed
O43 - CFD: 05/02/2013 - [] D -- H:\Program Files\Windows Live
O43 - CFD: 22/05/2011 - [] D -- H:\Program Files\Windows Live SkyDrive
O43 - CFD: 06/05/2011 - [] D -- H:\Program Files\Windows Media Player
O43 - CFD: 07/05/2011 - [] D -- H:\Program Files\Windows NT
O43 - CFD: 06/05/2011 - [] D -- H:\Program Files\Windows Plus
O43 - CFD: 15/12/2011 - [] D -- H:\Program Files\Windows Sidebar
O43 - CFD: 06/05/2011 - [0] HD -- H:\Program Files\WindowsUpdate
O43 - CFD: 12/07/2014 - [] D -- H:\Program Files\WinRAR
O43 - CFD: 06/05/2011 - [] D -- H:\Program Files\xerox
O43 - CFD: 30/06/2015 - [] D -- H:\Program Files\ZHPFix
O43 - CFD: 23/07/2015 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\7-Zip
O43 - CFD: 20/04/2015 - [] RD -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 27/10/2015 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Avira
O43 - CFD: 27/08/2015 - [0] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\CCleaner
O43 - CFD: 06/05/2011 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Dell Accessories
O43 - CFD: 08/07/2015 - [0] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 06/05/2011 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Extensions Windows Media
O43 - CFD: 02/07/2015 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Java
O43 - CFD: 06/05/2011 - [] RD -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux
O43 - CFD: 24/10/2014 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Logitech
O43 - CFD: 22/01/2015 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\ma-config.com
O43 - CFD: 20/10/2015 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Malwarebytes Anti-Malware
O43 - CFD: 24/07/2014 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Silverlight
O43 - CFD: 06/05/2011 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration
O43 - CFD: 23/05/2011 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Picasa 3
O43 - CFD: 11/07/2014 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Unchecky
O43 - CFD: 01/07/2015 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN
O43 - CFD: 17/09/2013 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Windows Live
O43 - CFD: 11/07/2014 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR
O43 - CFD: 01/07/2015 - [] D -- H:\Documents and Settings\All Users\Application Data\Adobe
O43 - CFD: 14/12/2012 - [] D -- H:\Documents and Settings\All Users\Application Data\Avanquest Software
O43 - CFD: 25/06/2015 - [] D -- H:\Documents and Settings\All Users\Application Data\Avira
O43 - CFD: 21/07/2015 - [] D -- H:\Documents and Settings\All Users\Application Data\Canneverbe Limited
O43 - CFD: 27/10/2014 - [] D -- H:\Documents and Settings\All Users\Application Data\LogiShrd
O43 - CFD: 22/01/2015 - [] D -- H:\Documents and Settings\All Users\Application Data\ma-config.com
O43 - CFD: 25/07/2015 - [] D -- H:\Documents and Settings\All Users\Application Data\Malwarebytes
O43 - CFD: 27/08/2012 - [] D -- H:\Documents and Settings\All Users\Application Data\McAfee
O43 - CFD: 27/06/2015 - [] SD -- H:\Documents and Settings\All Users\Application Data\Microsoft
O43 - CFD: 25/04/2012 - [] D -- H:\Documents and Settings\All Users\Application Data\Mozilla
O43 - CFD: 16/12/2011 - [] D -- H:\Documents and Settings\All Users\Application Data\Nero
O43 - CFD: 19/07/2015 - [] D -- H:\Documents and Settings\All Users\Application Data\Oracle
O43 - CFD: 28/06/2015 - [] D -- H:\Documents and Settings\All Users\Application Data\Package Cache
O43 - CFD: 14/12/2012 - [0] D -- H:\Documents and Settings\All Users\Application Data\PDF Architect
O43 - CFD: 24/08/2015 - [0] D -- H:\Documents and Settings\All Users\Application Data\Skype
O43 - CFD: 19/07/2015 - [] D -- H:\Documents and Settings\All Users\Application Data\Sun
O43 - CFD: 12/06/2014 - [0] D -- H:\Documents and Settings\All Users\Application Data\TEMP
O43 - CFD: 23/08/2015 - [] D -- H:\Documents and Settings\All Users\Application Data\Unchecky
O43 - CFD: 25/05/2013 - [] D -- H:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
O43 - CFD: 01/07/2015 - [] D -- H:\Program Files\Fichiers communs\Adobe
O43 - CFD: 05/06/2011 - [] D -- H:\Program Files\Fichiers communs\InstallShield
O43 - CFD: 19/07/2015 - [] D -- H:\Program Files\Fichiers communs\Java
O43 - CFD: 11/01/2015 - [] D -- H:\Program Files\Fichiers communs\logishrd
O43 - CFD: 27/06/2015 - [] D -- H:\Program Files\Fichiers communs\Microsoft Shared
O43 - CFD: 06/05/2011 - [] D -- H:\Program Files\Fichiers communs\MSSoap
O43 - CFD: 06/05/2011 - [] D -- H:\Program Files\Fichiers communs\ODBC
O43 - CFD: 06/05/2011 - [] D -- H:\Program Files\Fichiers communs\Services
O43 - CFD: 06/05/2011 - [] D -- H:\Program Files\Fichiers communs\SpeechEngines
O43 - CFD: 07/05/2011 - [] D -- H:\Program Files\Fichiers communs\System
O43 - CFD: 22/05/2011 - [] D -- H:\Program Files\Fichiers communs\Windows Live
O43 - CFD: 06/05/2011 - [] D -- H:\Program Files\Fichiers communs\Wise Installation Wizard
O43 - CFD: 23/05/2011 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Adobe
O43 - CFD: 14/12/2012 - [] D -- H:\Documents and Settings\RIMAV\Application Data\APP_NAME_NON_STRING
O43 - CFD: 25/06/2015 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Avira
O43 - CFD: 21/07/2015 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Canneverbe Limited
O43 - CFD: 23/05/2011 - [] D -- H:\Documents and Settings\RIMAV\Application Data\com.zoosk.Desktop.096E6A67431258A508A2446A847B240591D2C99B.1
O43 - CFD: 18/03/2012 - [] D -- H:\Documents and Settings\RIMAV\Application Data\DeepBurner
O43 - CFD: 01/07/2015 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Dropbox
O43 - CFD: 06/07/2012 - [] D -- H:\Documents and Settings\RIMAV\Application Data\dvdcss
O43 - CFD: 19/02/2012 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Google
O43 - CFD: 25/09/2011 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Identities
O43 - CFD: 28/07/2014 - [] D -- H:\Documents and Settings\RIMAV\Application Data\KastorFreeAudioConverter
O43 - CFD: 24/10/2014 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Leadertech
O43 - CFD: 06/05/2011 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Macromedia
O43 - CFD: 01/08/2015 - [] SD -- H:\Documents and Settings\RIMAV\Application Data\Microsoft
O43 - CFD: 06/05/2011 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Mozilla
O43 - CFD: 15/12/2011 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Nero
O43 - CFD: 21/12/2013 - [] D -- H:\Documents and Settings\RIMAV\Application Data\OpenOffice
O43 - CFD: 14/12/2012 - [] D -- H:\Documents and Settings\RIMAV\Application Data\PDF Architect
O43 - CFD: 14/12/2012 - [] D -- H:\Documents and Settings\RIMAV\Application Data\PDF Pro 10
O43 - CFD: 04/09/2012 - [] D -- H:\Documents and Settings\RIMAV\Application Data\QuickScan
O43 - CFD: 24/08/2015 - [0] D -- H:\Documents and Settings\RIMAV\Application Data\Skype
O43 - CFD: 16/07/2014 - [] D -- H:\Documents and Settings\RIMAV\Application Data\SumatraPDF
O43 - CFD: 07/06/2011 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Sun
O43 - CFD: 01/06/2012 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Thunderbird
O43 - CFD: 08/04/2014 - [0] D -- H:\Documents and Settings\RIMAV\Application Data\uTorrent
O43 - CFD: 13/11/2015 - [] D -- H:\Documents and Settings\RIMAV\Application Data\vlc
O43 - CFD: 06/05/2011 - [] D -- H:\Documents and Settings\RIMAV\Application Data\WinRAR
O43 - CFD: 26/11/2015 - [] D -- H:\Documents and Settings\RIMAV\Application Data\ZHP
O43 - CFD: 02/07/2015 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Adobe
O43 - CFD: 10/07/2014 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\ApplicationHistory
O43 - CFD: 10/07/2014 - [0] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\avgchrome
O43 - CFD: 10/07/2014 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Box Edit
O43 - CFD: 17/11/2013 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Downloaded Installations
O43 - CFD: 20/04/2015 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Google
O43 - CFD: 06/05/2011 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Identities
O43 - CFD: 24/10/2014 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\LogiShrd
O43 - CFD: 13/11/2015 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Microsoft
O43 - CFD: 06/05/2011 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Mozilla
O43 - CFD: 04/01/2012 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\PCHealth
O43 - CFD: 11/07/2014 - [0] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Secunia PSI
O43 - CFD: 24/08/2015 - [0] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Skype
O43 - CFD: 07/10/2012 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Sun
O43 - CFD: 23/07/2014 - [0] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Temp
O43 - CFD: 16/06/2012 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Thunderbird
O43 - CFD: 19/05/2013 - [0] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\WMTools Downloaded Files
O43 - CFD: 06/05/2011 - [] RD -- H:\Documents and Settings\RIMAV\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 02/10/2014 - [] D -- H:\Documents and Settings\RIMAV\Menu Démarrer\Programmes\adsl TV
O43 - CFD: 30/06/2014 - [] D -- H:\Documents and Settings\RIMAV\Menu Démarrer\Programmes\Convar
O43 - CFD: 01/07/2015 - [] RD -- H:\Documents and Settings\RIMAV\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 25/12/2013 - [] D -- H:\Documents and Settings\RIMAV\Menu Démarrer\Programmes\FormatFactory
O43 - CFD: 16/02/2012 - [] RD -- H:\Documents and Settings\RIMAV\Menu Démarrer\Programmes\Outils d'administration
O43 - CFD: 02/07/2015 - [] D -- H:\Documents and Settings\RIMAV\Menu Démarrer\Programmes\Revo Uninstaller
O43 - CFD: 11/07/2014 - [] D -- H:\Documents and Settings\RIMAV\Menu Démarrer\Programmes\WinRAR

---\\ ShellIconOverlayIdentifiers (SIOI) (1) - 0s
O106 - SIOI: Offline Files Menu [Fichiers hors connexion] - {750fdf0e-2a26-11d1-a3ea-080036587f03}. (.Microsoft Corporation - IU de cache côté client.) -- H:\WINDOWS\system32\cscui.dll ©

---\\ Enumération des clés StartupReg (11) - 1s
O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- H:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe ©
O53 - SMSR:HKLM\...\startupreg\CTFMON.EXE [Key] . (.Microsoft Corporation - CTF Loader.) -- H:\WINDOWS\system32\ctfmon.exe ©
O53 - SMSR:HKLM\...\startupreg\ehTray [Key] . (.Microsoft Corporation - Media Center Tray Applet.) -- H:\WINDOWS\ehome\ehtray.exe ©
O53 - SMSR:HKLM\...\startupreg\Google+ Auto Backup [Key] . (...) -- H:\Program Files\Google\Google+ Auto Backup\Google+ Auto Backup.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\HotKeysCmds [Key] . (.Intel Corporation - hkcmd Module.) -- H:\WINDOWS\system32\hkcmd.exe ©
O53 - SMSR:HKLM\...\startupreg\IgfxTray [Key] . (.Intel Corporation - igfxTray Module.) -- H:\WINDOWS\system32\igfxtray.exe ©
O53 - SMSR:HKLM\...\startupreg\Logitech Vid [Key] . (.Logitech Inc. - Logitech Vid.) -- H:\Program Files\Logitech\Logitech Vid\Vid.exe ©
O53 - SMSR:HKLM\...\startupreg\LogitechQuickCamRibbon [Key] . (...) -- H:\Program Files\Logitech\Logitech WebCam Software\LWS.exe
O53 - SMSR:HKLM\...\startupreg\Persistence [Key] . (.Intel Corporation - persistence Module.) -- H:\WINDOWS\system32\igfxpers.exe ©
O53 - SMSR:HKLM\...\startupreg\SigmatelSysTrayApp [Key] . (.SigmaTel, Inc. - Sigmatel Audio system tray application.) -- stsystra.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Oracle Corporation - Java Update Scheduler.) -- H:\Program Files\Fichiers communs\Java\Java Update\jusched.exe ©

---\\ Liste des pilotes du système (94) - 5s
O58 - SDL:2014/07/10 14:32:57 N . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- H:\WINDOWS\System32\drivers\48230029.sys [110296] ©
O58 - SDL:2008/04/13 19:36:39 A . (.Advanced Micro Devices, Inc. - AMD Win2000 AGP Filter.) -- H:\WINDOWS\System32\drivers\amdagp.sys [43008] ©
O58 - SDL:2004/08/03 21:29:30 A . (.ATI Technologies Inc. - ATI WDM BT829 MiniDriver (A).) -- H:\WINDOWS\System32\drivers\ati1btxx.sys [56623] ©
O58 - SDL:2004/08/03 21:29:30 A . (.ATI Technologies Inc. - ATI Specialized MVD VBI Codec.) -- H:\WINDOWS\System32\drivers\ati1mdxx.sys [11615] ©
O58 - SDL:2004/08/03 21:29:30 A . (.ATI Technologies Inc. - ATI Specialized PCD VBI Codec.) -- H:\WINDOWS\System32\drivers\ati1pdxx.sys [12047] ©
O58 - SDL:2004/08/03 21:29:32 A . (.ATI Technologies Inc. - ATI Rage Theater Audio WDM Minidriver.) -- H:\WINDOWS\System32\drivers\ati1raxx.sys [30671] ©
O58 - SDL:2004/08/03 21:29:32 A . (.ATI Technologies Inc. - ATI WDM Rage Theater MiniDriver.) -- H:\WINDOWS\System32\drivers\ati1rvxx.sys [63663] ©
O58 - SDL:2004/08/03 21:29:32 A . (.ATI Technologies Inc. - ATI WDM TV Sound MiniDriver.) -- H:\WINDOWS\System32\drivers\ati1snxx.sys [26367] ©
O58 - SDL:2004/08/03 21:29:32 A . (.ATI Technologies Inc. - ATI WDM Teletext Decoder.) -- H:\WINDOWS\System32\drivers\ati1ttxx.sys [21343] ©
O58 - SDL:2004/08/03 21:29:32 A . (.ATI Technologies Inc. - ATI WDM TVTuner MiniDriver.) -- H:\WINDOWS\System32\drivers\ati1tuxx.sys [36463] ©
O58 - SDL:2004/08/03 21:29:32 A . (.ATI Technologies Inc. - ATI WDM CrossBar MiniDriver.) -- H:\WINDOWS\System32\drivers\ati1xbxx.sys [29455] ©
O58 - SDL:2004/08/03 21:29:32 A . (.ATI Technologies Inc. - ATI WDM TVAUDIO_CrossBar MiniDriver.) -- H:\WINDOWS\System32\drivers\ati1xsxx.sys [34735] ©
O58 - SDL:2004/08/03 23:38:42 A . (.ATI Technologies Inc. - Pilote de miniport ATI RAGE 128.) -- H:\WINDOWS\System32\drivers\ati2mtaa.sys [327168] ©
O58 - SDL:2004/08/03 23:38:44 A . (.ATI Technologies Inc. - Pilote de miniport ATI RAGE 128.) -- H:\WINDOWS\System32\drivers\ati2mtag.sys [701440] ©
O58 - SDL:2004/08/03 21:29:28 A . (.ATI Technologies Inc. - ATI WDM BT829 MiniDriver (A).) -- H:\WINDOWS\System32\drivers\atinbtxx.sys [57856] ©
O58 - SDL:2004/08/03 21:29:30 A . (.ATI Technologies Inc. - ATI Specialized MVD VBI Codec RT2.) -- H:\WINDOWS\System32\drivers\atinmdxx.sys [13824] ©
O58 - SDL:2004/08/03 21:29:30 A . (.ATI Technologies Inc. - ATI Specialized PCD VBI Codec RT2.) -- H:\WINDOWS\System32\drivers\atinpdxx.sys [14336] ©
O58 - SDL:2004/08/03 21:29:30 A . (.ATI Technologies Inc. - ATI Rage Theater Audio WDM Minidriver.) -- H:\WINDOWS\System32\drivers\atinraxx.sys [52224] ©
O58 - SDL:2004/08/03 21:29:32 A . (.ATI Technologies Inc. - ATI WDM Rage Theater MiniDriver RT2.) -- H:\WINDOWS\System32\drivers\atinrvxx.sys [104960] ©
O58 - SDL:2004/08/03 21:29:32 A . (.ATI Technologies Inc. - ATI WDM TV Sound MiniDriver.) -- H:\WINDOWS\System32\drivers\atinsnxx.sys [28672] ©
O58 - SDL:2004/08/03 21:29:32 A . (.ATI Technologies Inc. - ATI WDM Teletext Decoder.) -- H:\WINDOWS\System32\drivers\atinttxx.sys [13824] ©
O58 - SDL:2004/08/03 21:29:32 A . (.ATI Technologies Inc. - ATI WDM TVTuner MiniDriver.) -- H:\WINDOWS\System32\drivers\atintuxx.sys [73216] ©
O58 - SDL:2004/08/03 21:29:32 A . (.ATI Technologies Inc. - ATI WDM CrossBar MiniDriver.) -- H:\WINDOWS\System32\drivers\atinxbxx.sys [31744] ©
O58 - SDL:2004/08/03 21:29:32 A . (.ATI Technologies Inc. - ATI WDM TVAUDIO_CrossBar MiniDriver RT2.) -- H:\WINDOWS\System32\drivers\atinxsxx.sys [63488] ©
O58 - SDL:2015/10/27 09:55:47 A . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- H:\WINDOWS\System32\drivers\avgntflt.sys [108448] ©
O58 - SDL:2015/09/01 15:27:40 A . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- H:\WINDOWS\System32\drivers\avipbb.sys [136728] ©
O58 - SDL:2015/06/25 22:58:34 N . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- H:\WINDOWS\System32\drivers\avkmgr.sys [37896] ©
O58 - SDL:2004/12/13 22:14:00 N . (.Adaptec, Inc. - DELL CERC SATA1.5/6ch Miniport Driver.) -- H:\WINDOWS\System32\drivers\cercsr6.sys [39904] ©
O58 - SDL:2004/08/10 13:00:00 A . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- H:\WINDOWS\System32\drivers\cinemst2.sys [262528] ©
O58 - SDL:2004/08/10 13:00:00 A . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- H:\WINDOWS\System32\drivers\cpqdap01.sys [11776] ©
O58 - SDL:2008/04/14 03:05:07 A . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- H:\WINDOWS\System32\drivers\dmboot.sys [800256] ©
O58 - SDL:2008/04/14 03:05:12 A . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- H:\WINDOWS\System32\drivers\dmio.sys [154496] ©
O58 - SDL:2004/08/10 13:00:00 A . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- H:\WINDOWS\System32\drivers\dmload.sys [5888] ©
O58 - SDL:2006/06/05 12:49:08 N . (.Intel Corporation - Intel(R) PRO/1000 Adapter NDIS 5.2 deserial.) -- H:\WINDOWS\System32\drivers\e1e5132.sys [230400] ©
O58 - SDL:2008/04/13 17:36:05 N . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- H:\WINDOWS\System32\drivers\hdaudbus.sys [144384]
O58 - SDL:2004/08/12 16:45:52 N . (.Windows (R) Server 2003 DDK provider - High Definition Audio Function Driver v1.0.) -- H:\WINDOWS\System32\drivers\Hdaudio.sys [113664]
O58 - SDL:2004/08/03 21:41:48 A . (.Conexant Systems, Inc. - HSF_HWB2 WDM driver.) -- H:\WINDOWS\System32\drivers\hsfbs2s2.sys [220032] ©
O58 - SDL:2004/08/03 21:41:50 A . (.Conexant Systems, Inc. - HSF_CNXT driver.) -- H:\WINDOWS\System32\drivers\hsfcxts2.sys [685056] ©
O58 - SDL:2004/08/03 21:41:56 A . (.Conexant Systems, Inc. - HSF_DP driver.) -- H:\WINDOWS\System32\drivers\hsfdpsp2.sys [1041536] ©
O58 - SDL:2006/05/11 17:30:52 N . (.Intel Corporation - Intel Matrix Storage Manager driver.) -- H:\WINDOWS\System32\drivers\iaStor.sys [247808] ©
O58 - SDL:2006/07/21 20:12:16 N . (.Intel Corporation - Intel Graphics Miniport Driver.) -- H:\WINDOWS\System32\drivers\igxpmp32.sys [1095968] ©
O58 - SDL:2009/04/30 22:55:58 N . (.Logitech Inc. - Logitech Webcam Software Driver.) -- H:\WINDOWS\System32\drivers\LV302V32.SYS [2687512] ©
O58 - SDL:2003/06/27 04:05:38 R . (.Logitech Inc. - Video Minidriver.) -- H:\WINDOWS\System32\drivers\lvcm.sys [472332] ©
O58 - SDL:2009/10/07 00:46:36 N . (...) -- H:\WINDOWS\System32\drivers\LVPr2Mon.sys [25752]
O58 - SDL:2003/06/27 04:03:48 R . (.Logitech Inc. - USB Statistic Driver.) -- H:\WINDOWS\System32\drivers\LVUSBSta.sys [12112] ©
O58 - SDL:2015/10/05 08:50:04 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- H:\WINDOWS\System32\drivers\mbam.sys [23256] ©
O58 - SDL:2015/10/05 08:50:10 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- H:\WINDOWS\System32\drivers\mbamchameleon.sys [121560] ©
O58 - SDL:2015/11/25 20:14:06 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- H:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [170200] ©
O58 - SDL:2004/08/03 21:41:56 N . (.Conexant - Diagnostic Interface DRIVER.) -- H:\WINDOWS\System32\drivers\mdmxsdk.sys [11868] ©
O58 - SDL:2004/08/03 21:41:40 A . (.Smart Link - .) -- H:\WINDOWS\System32\drivers\mtlmnt5.sys [126686] ©
O58 - SDL:2004/08/03 21:41:38 A . (.Smart Link - .) -- H:\WINDOWS\System32\drivers\mtlstrm.sys [1309184] ©
O58 - SDL:2004/08/03 21:29:38 A . (.Matrox Graphics Inc. - Matrox Parhelia Miniport Driver.) -- H:\WINDOWS\System32\drivers\mtxparhm.sys [452736] ©
O58 - SDL:2004/08/10 13:00:00 A . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- H:\WINDOWS\System32\drivers\nikedrv.sys [12032] ©
O58 - SDL:2004/08/03 21:41:40 A . (.Smart Link - .) -- H:\WINDOWS\System32\drivers\ntmtlfax.sys [180360] ©
O58 - SDL:2004/08/03 21:29:56 A . (.NVIDIA Corporation - NVIDIA Compatible Windows 2000 Miniport Dri.) -- H:\WINDOWS\System32\drivers\nv4_mini.sys [1897408] ©
O58 - SDL:2004/08/10 13:00:00 A . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- H:\WINDOWS\System32\drivers\ptilink.sys [17792] ©
O58 - SDL:2005/06/04 19:02:08 N . (.Sonic Solutions - Px Engine Device Driver for Windows 2000/XP.) -- H:\WINDOWS\System32\drivers\pxhelp20.sys [20576] ©
O58 - SDL:2004/08/03 21:41:40 A . (.Smart Link - .) -- H:\WINDOWS\System32\drivers\recagent.sys [13776] ©
O58 - SDL:2004/08/10 13:00:00 A . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- H:\WINDOWS\System32\drivers\rio8drv.sys [12032] ©
O58 - SDL:2004/08/10 13:00:00 A . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- H:\WINDOWS\System32\drivers\riodrv.sys [12032] ©
O58 - SDL:2004/08/03 21:29:52 A . (.S3 Graphics, Inc. - S3 ProSavage(DDR) & Twister Miniport Driver.) -- H:\WINDOWS\System32\drivers\s3gnbm.sys [166912] ©
O58 - SDL:2008/04/13 17:39:15 N . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- H:\WINDOWS\System32\drivers\secdrv.sys [20480] ©
O58 - SDL:2008/04/13 19:36:39 A . (.Silicon Integrated Systems Corporation - SiS NT AGP Filter.) -- H:\WINDOWS\System32\drivers\sisagp.sys [40960] ©
O58 - SDL:2004/08/03 21:41:42 A . (.Smart Link - .) -- H:\WINDOWS\System32\drivers\slnt7554.sys [129535] ©
O58 - SDL:2004/08/03 21:41:44 A . (.Smart Link - .) -- H:\WINDOWS\System32\drivers\slntamr.sys [404990] ©
O58 - SDL:2004/08/03 21:41:46 A . (.Smart Link - .) -- H:\WINDOWS\System32\drivers\slnthal.sys [95424] ©
O58 - SDL:2004/08/03 21:41:46 A . (.Smart Link - .) -- H:\WINDOWS\System32\drivers\slwdmsup.sys [13240] ©
O58 - SDL:2015/06/25 22:58:34 N . (.Avira Operations GmbH & Co. KG - AVIRA SnapShot Driver.) -- H:\WINDOWS\System32\drivers\ssmdrv.sys [31848] ©
O58 - SDL:2013/08/25 10:30:48 A . (...) -- H:\WINDOWS\System32\drivers\StarOpen.sys [13120]
O58 - SDL:2006/03/20 15:06:04 N . (.SigmaTel, Inc. - NDRC.) -- H:\WINDOWS\System32\drivers\sthda.sys [1156648]
O58 - SDL:2004/08/10 13:00:00 A . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- H:\WINDOWS\System32\drivers\tsbvcap.sys [21376] ©
O58 - SDL:2004/08/10 13:00:00 A . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- H:\WINDOWS\System32\drivers\vdmindvd.sys [58112] ©
O58 - SDL:2004/08/03 21:29:40 A . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Gra.) -- H:\WINDOWS\System32\drivers\wadv07nt.sys [11807] ©
O58 - SDL:2004/08/03 21:29:40 A . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Gra.) -- H:\WINDOWS\System32\drivers\wadv08nt.sys [11295] ©
O58 - SDL:2004/08/03 21:29:42 A . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Gra.) -- H:\WINDOWS\System32\drivers\wadv09nt.sys [11871] ©
O58 - SDL:2004/08/03 21:29:42 A . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Gra.) -- H:\WINDOWS\System32\drivers\wadv11nt.sys [11935] ©
O58 - SDL:2004/08/03 21:29:46 A . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Gra.) -- H:\WINDOWS\System32\drivers\watv06nt.sys [22271] ©
O58 - SDL:2004/08/03 21:29:46 A . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Gra.) -- H:\WINDOWS\System32\drivers\watv10nt.sys [25471] ©
O58 - SDL:2000/11/01 23:10:30 N . (.Jungo - WinDriver Device Driver 4.33.) -- H:\WINDOWS\System32\drivers\windrvr.sys [164180] ©
O58 - SDL:2004/08/10 13:00:00 N . (...) -- H:\WINDOWS\System32\ansi.sys [9037]
O58 - SDL:2004/08/10 13:00:00 N . (...) -- H:\WINDOWS\System32\country.sys [27097]
O58 - SDL:2004/08/10 13:00:00 N . (...) -- H:\WINDOWS\System32\himem.sys [4912]
O58 - SDL:2004/08/10 13:00:00 N . (...) -- H:\WINDOWS\System32\key01.sys [42809]
O58 - SDL:2004/08/10 13:00:00 N . (...) -- H:\WINDOWS\System32\keyboard.sys [42537]
O58 - SDL:2004/08/10 13:00:00 N . (...) -- H:\WINDOWS\System32\ntdos.sys [27916]
O58 - SDL:2004/08/10 13:00:00 N . (...) -- H:\WINDOWS\System32\ntdos404.sys [29146]
O58 - SDL:2004/08/10 13:00:00 N . (...) -- H:\WINDOWS\System32\ntdos411.sys [29370]
O58 - SDL:2004/08/10 13:00:00 N . (...) -- H:\WINDOWS\System32\ntdos412.sys [29274]
O58 - SDL:2004/08/10 13:00:00 N . (...) -- H:\WINDOWS\System32\ntdos804.sys [29146]
O58 - SDL:2004/08/10 13:00:00 N . (...) -- H:\WINDOWS\System32\ntio.sys [34000]
O58 - SDL:2004/08/10 13:00:00 N . (...) -- H:\WINDOWS\System32\ntio404.sys [34560]
O58 - SDL:2004/08/10 13:00:00 N . (...) -- H:\WINDOWS\System32\ntio411.sys [35648]
O58 - SDL:2004/08/10 13:00:00 N . (...) -- H:\WINDOWS\System32\ntio412.sys [35424]
O58 - SDL:2004/08/10 13:00:00 N . (...) -- H:\WINDOWS\System32\ntio804.sys [34560]

---\\ Associations Shell Spawning (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- H:\WINDOWS\system32\shell32.dll ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- H:\Program Files\Internet Explorer\iexplore.exe ©
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- H:\WINDOWS\system32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- H:\WINDOWS\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- H:\Program Files\Mozilla Firefox\firefox.exe ©

---\\ Menu de démarrage Internet (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- H:\Program Files\Mozilla Firefox\firefox.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - 'Firefox' Helper.) -- H:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- H:\WINDOWS\system32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - 'Firefox' Helper.) -- H:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- H:\WINDOWS\system32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - 'Firefox' Helper.) -- H:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- H:\WINDOWS\system32\ie4uinit.exe ©

---\\ Recherche d'infection sur les navigateurs (3) - 9s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {510F0D05-4DBF-439C-8EAB-956021612C6C} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (@ieframe.dll,-12512) - http://www.bing.com/

---\\ Enumère les services démarrés par Svchost (41) - 5s
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- H:\WINDOWS\system32\appmgmts.dll [176640] ©
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- H:\WINDOWS\system32\audiosrv.dll [42496] ©
O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- H:\WINDOWS\system32\browser.dll [78336] ©
O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- H:\WINDOWS\system32\cryptsvc.dll [62464] ©
O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- H:\WINDOWS\system32\dmserver.dll [24576] ©
O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- H:\WINDOWS\system32\dhcpcsvc.dll [127488] ©
O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- H:\WINDOWS\system32\ersvc.dll [23040] ©
O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - .) -- H:\WINDOWS\system32\es.dll [253952] ©
O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- H:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: HidServ (HidServ) . (...) -- H:\WINDOWS\System32\hidserv.dll [0]
O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- H:\WINDOWS\system32\srvsvc.dll [99840] ©
O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- H:\WINDOWS\system32\wkssvc.dll [132096] ©
O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- H:\WINDOWS\system32\msgsvc.dll [33792] ©
O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- H:\WINDOWS\system32\netman.dll [198144] ©
O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- H:\WINDOWS\system32\mswsock.dll [247808] ©
O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- H:\WINDOWS\system32\ntmssvc.dll [438272] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- H:\WINDOWS\system32\rasauto.dll [88576] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- H:\WINDOWS\system32\rasmans.dll [186368] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- H:\WINDOWS\system32\mprdim.dll [53248] ©
O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- H:\WINDOWS\system32\schedsvc.dll [194560] ©
O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- H:\WINDOWS\system32\seclogon.dll [18944] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- H:\WINDOWS\system32\sens.dll [39424] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- H:\WINDOWS\system32\ipnathlp.dll [332800] ©
O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- H:\WINDOWS\system32\srsvc.dll [171520] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- H:\WINDOWS\system32\tapisrv.dll [249856] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- H:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- H:\WINDOWS\system32\trkwks.dll [90112] ©
O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- H:\WINDOWS\system32\w32time.dll [178176] ©
O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- H:\WINDOWS\system32\wzcsvc.dll [483840] ©
O83 - Search Svchost Services: Wmi (Wmi) . (.Microsoft Corporation - API avancées Windows 32.) -- H:\WINDOWS\system32\advapi32.dll [685568] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- H:\WINDOWS\system32\wbem\wmisvc.dll [145408] ©
O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- H:\WINDOWS\system32\wscsvc.dll [80896] ©
O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- H:\WINDOWS\system32\xmlprov.dll [129024] ©
O83 - Search Svchost Services: MHN (MHN) . (.Microsoft Corporation - Windows NT.) -- H:\WINDOWS\system32\mhn.dll [85504] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- H:\WINDOWS\system32\qmgr.dll [409088] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- H:\WINDOWS\system32\wuauserv.dll [6656] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- H:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- H:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll [38400] ©
O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- H:\WINDOWS\system32\MsPMSNSv.dll [25088] ©
O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- H:\WINDOWS\system32\qagentrt.dll [293376] ©
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- H:\WINDOWS\system32\kmsvc.dll [61440] ©

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (12) - 21s

SS - Demand [11/11/2015] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - H:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe ©
SS - Auto [27/10/2015] [ 916968] Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG.) - H:\Program Files\Avira\AntiVir Desktop\avmailc.exe ©
SR - Auto [27/10/2015] [ 461672] Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - H:\Program Files\Avira\AntiVir Desktop\sched.exe ©
SR - Auto [27/10/2015] [ 461672] Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - H:\Program Files\Avira\AntiVir Desktop\avguard.exe ©
SS - Auto [27/10/2015] [ 1210512] Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - H:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe ©
SS - Disabled [08/02/2011] [ 136120] Google Updater Service (gusvc) . (.Google.) - H:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe ©
SR - Auto [07/10/2009] [ 154136] Process Monitor (LVPrcSrv) . (.Logitech Inc..) - H:\Program Files\Fichiers communs\logishrd\LVMVFM\LVPrcSrv.exe ©
SR - Auto [15/10/2014] [ 2117448] Ma-Config Agent (MaConfigAgent) . (.CybelSoft.) - H:\Program Files\ma-config.com\MaConfigAgent.exe ©
SS - Auto [05/10/2015] [ 1135416] (MBAMService) . (.Malwarebytes.) - H:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe ©
SS - Demand [04/11/2015] [ 147624] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - H:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe ©
SR - Auto [06/11/2015] [ 242936] Unchecky (Unchecky) . (.RaMMicHaeL.) - H:\Program Files\Unchecky\bin\unchecky_svc.exe ©

---\\ Scan Additionnel (1) - 0s
~ Aucun élément malicieux ou superflu trouvé.

---\\ Récapitulatif des éléments trouvés sur votre station (1) - 0s
~ Aucun élément malicieux ou superflu trouvé.

~ End of the scan, 31359 items in 133 seconds (677)(0)

Publicité


Signaler le contenu de ce document

Publicité