cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.12.25.197 Par Nicolas Coolman (2015/12/25)
~ Démarré par Brahim (Administrator) (2015/12/27 20:21:06)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\Brahim\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Brahim\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
Windows 7 Ultimate, 32-bit (Build 7600)

---\\ Navigateurs Internet (3) - 0s
GCIE: Google Chrome v6.0.495.0
MFIE: Mozilla Firefox (3.6.10) v3.6.10 (fr)
MSIE: Internet Explorer v8.0.7600.16385

---\\ Informations sur les produits Windows (7) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows Operating System - Windows(R) 7, OEM_COA_NSLP channel
~ Windows Partial Key : 9CP4D
~ Windows Remaining Initializations Number : 3
Windows Automatic Updates : OK
Windows Activation Technologies : KO

---\\ Logiciels de protection (3) - 0s
ESET Smart Security v9.0.318.30
Malwarebytes Anti-Malware version 2.2.0.1024
Windows Defender W7 (Activate)

---\\ Logiciels d'optimisation (1) - 1s
CCleaner v2.35

---\\ Surveillance de Logiciels (1) - 1s
Adobe Flash Player 10 Plugin

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 1733.112 MB (48% free)
System Restore: Activé (Enable)
System drive C: has 91 GB () free of 112 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: BRAHIM-PC
~ User Name: Brahim
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 91 GB free of 112 GB (System)
~ Drive D: has 26 GB free of 39 GB

---\\ Etat du Centre de Sécurité Windows (15) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: Modified
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: Modified
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: Modified
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: Modified
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: Modified
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (25) - 0s
[MD5.016D7144F3B717A0850DACC75F08DD3D] - 17/09/2010 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2614784] ©
[MD5.F9F8305F44E93117EA46B0D90E8337BC] - 17/09/2010 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] ©
[MD5.B5C5DCAD3899512020D135600129D665] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [96256] ©
[MD5.514613B59F148034C517AE68AC122AED] - 17/09/2010 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [980480] ©
[MD5.1C4707299926AF0E555C2DC98E411B59] - 17/09/2010 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [285696] ©
[MD5.58C94EAE54BF0C5E2B80B2E5E7744D4C] - 14/07/2009 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [193024] ©
[MD5.60F7F17941B8A00AF3A5927F2B437B36] - 17/09/2010 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [270336] ©
[MD5.EC93256F09E17958CA1109D6C937D0D8] - 17/09/2010 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] ©
[MD5.DDC040FDB01EF1712A6B13E52AFB104C] - 14/07/2009 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [338944] ©
[MD5.338C86357871C167A96AB976519BF59E] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [21584] =>.Microsoft Windows®
[MD5.77EA11B065E0A8AB902D78145CA51E10] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70656] ©
[MD5.BB63132C854BC53D2826F4D4B92C9C35] - 17/09/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [108544] ©
[MD5.7A12570408494E5C66705A82E2D1215E] - 17/09/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [78336] ©
[MD5.717A2207FD6F13AD3E664C7D5A43C7BF] - 14/07/2009 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [108544] ©
[MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [80896] ©
[MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [101888] ©
[MD5.8218EB48A991E366779895A9463338A3] - 17/09/2010 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [123904] ©
[MD5.DD52A733BF4CA5AF84562A5E2F963B91] - 14/07/2009 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [187904] ©
[MD5.D3212A39D70E2B94090A14828428F5AF] - 17/09/2010 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1210760] =>.Microsoft Windows®
[MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [79360] ©
[MD5.D9F91EAFEC2815365CBE6D167E4E332A] - 14/07/2009 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [78848] ©
[MD5.C5FF95883FFEF704D50C40D21CFB3AB5] - 14/07/2009 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [133120] ©
[MD5.3E21C083B8A01CB70BA1F09303010FCE] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [71168] ©
[MD5.916320599EDCDCC15BF6B3B00227594D] - 17/09/2010 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [74240] ©
[MD5.5463C319D61E7510C67BC7B5506C5C20] - 17/09/2010 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [245120] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (6) - 1s
O23 - Service: ESET Service (ekrn) . (.ESET - ESET Service.) - C:\Program Files\ESET\ESET Smart Security\ekrn.exe =>.ESET, spol. s r.o.®
O23 - Service: ES lite Service for program management. (ES lite Service) . (...) - C:\Program Files\GIGABYTE\EasySaver\essvr.exe {720EF3AAA1A44F7D0717A805C290C378}
O23 - Service: (MBAMScheduler) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation®
O23 - Service: (MBAMService) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
O23 - Service: Splashtop Connect Firefox Software Updater Service (WCUService_STC_FF) . (.Splashtop Inc. - Splashtop Connect Firefox Software Updater.) - C:\Program Files\Splashtop\Splashtop Connect Firefox Software Updater\WCUService.exe {4A4F37014523F3A5CD159F8AFA7CAD2D}
O23 - Service: Splashtop Connect IE Software Updater Service (WCUService_STC_IE) . (.Splashtop Inc. - Splashtop Connect IE Software Updater Servi.) - C:\Program Files\Splashtop\Splashtop Connect IE Software Updater\WCUService.exe {4A4F37014523F3A5CD159F8AFA7CAD2D}

---\\ Processus lancés (9) - 1s
[MD5.B8FA96995726D1FA58476E352C02AD82] - (...) -- C:\Program Files\GIGABYTE\EasySaver\essvr.exe [68136] [PID.1708] {720EF3AAA1A44F7D0717A805C290C378}
[MD5.DBF0D60BA1FB075A25884B65071B1B82] - (.Splashtop Inc. - Splashtop Connect Firefox Software Updater.) -- C:\Program Files\Splashtop\Splashtop Connect Firefox Software Updater\WCUService.exe [493384] [PID.2008] {4A4F37014523F3A5CD159F8AFA7CAD2D}
[MD5.FB8FA36625FDEB6A056B11414ACFA552] - (.Splashtop Inc. - Splashtop Connect IE Software Updater Servi.) -- C:\Program Files\Splashtop\Splashtop Connect IE Software Updater\WCUService.exe [493384] [PID.2032] {4A4F37014523F3A5CD159F8AFA7CAD2D}
[MD5.E7D75EC4BBD08FF5B16F875BA4EA810D] - (.Splashtop Inc. - Splashtop Connect ZyngaGames Agent..) -- C:\Program Files\Splashtop\Splashtop Connect\ZyngaGamesAgent.exe [841544] [PID.2648] {4A4F37014523F3A5CD159F8AFA7CAD2D}
[MD5.4E4D64765D183B3A0C5F7E6579F8AAC9] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe [3220912] [PID.2824] ©
[MD5.F6987FF6C6D683F79FDCE707B071A997] - (.SFX TEAM - SuperCopier 2 (explorer file copy replaceme.) -- C:\Program Files\SuperCopier2\SuperCopier2.exe [955392] [PID.2832] ©
[MD5.A855A741244D53A0523716931A76F6F5] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [503768] [PID.2628] ©
[MD5.D61ACEBA5AC21AB4EA814BBC5BF9E5BE] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files\Mozilla Firefox\plugin-container.exe [14808] [PID.1688] {25CC3735E9EC1FC971670E73E369C791} ©
[MD5.9B8EAF7F70273FC07558897AB22BDB7F] - (.Copyright (C) 2015 Nicolas Coolman - ZHPDiag.) -- C:\Users\Brahim\Desktop\ZHPDiag3.exe [2042368] [PID.780] ©

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (18) - 2s
M1 - SPR:Search Page Redirection - C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
P2 - EXT: (.mozilla.org - Default Plug-in.) -- C:\Program Files\Mozilla Firefox\Plugins\npnul32.dll
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\Plugins\QuickTimePlugin.class
P2 - EXT FILE: (...) -- C:\Users\Brahim\AppData\Roaming\Mozilla\Firefox\Profiles\xjlyseae.default\searchplugins\bing.xml
P2 - EXT FILE: (...) -- C:\Users\Brahim\AppData\Roaming\Mozilla\Firefox\Profiles\xjlyseae.default\searchplugins\google.xml
P2 - EXT FILE: (...) -- C:\Users\Brahim\AppData\Roaming\Mozilla\Firefox\Profiles\xjlyseae.default\searchplugins\yahoo.xml =>PUP.Optional.BDYahoo
P2 - EXT: (.Kongkeat Kuatrakull / Gerard Durand - Noia 2.0 eXtreme OPT.) -- C:\Users\Brahim\AppData\Roaming\Mozilla\Firefox\Profiles\xjlyseae.default\extensions\noia2_option@kk.noia
P2 - EXT: (.Cooliris Inc. - Cooliris.) -- C:\Users\Brahim\AppData\Roaming\Mozilla\Firefox\Profiles\xjlyseae.default\extensions\piclens@cooliris.com
P2 - EXT: (.Video2mp3 - YouTube to MP3.) -- C:\Users\Brahim\AppData\Roaming\Mozilla\Firefox\Profiles\xjlyseae.default\extensions\youtube2mp3@mondayx.de
P2 - EXT: (.Josep del Rio - Speed Dial.) -- C:\Users\Brahim\AppData\Roaming\Mozilla\Firefox\Profiles\xjlyseae.default\extensions\{64161300-e22b-11db-8314-0800200c9a66}
P2 - EXT: (.Mozilla - Default.) -- C:\Users\Brahim\AppData\Roaming\Mozilla\Firefox\Profiles\xjlyseae.default\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ©
P2 - EXT: (.Adam Judson - Tamper Data.) -- C:\Users\Brahim\AppData\Roaming\Mozilla\Firefox\Profiles\xjlyseae.default\extensions\{9c51bd27-6ed8-4000-a2bf-36cb95c0c947}
P2 - EXT: (.Kongkeat Kuatrakull - Noia 2.0 (eXtreme).) -- C:\Users\Brahim\AppData\Roaming\Mozilla\Firefox\Profiles\xjlyseae.default\extensions\{9f08cb5a-76b1-4bcf-aff9-90e1a5d60b1e}
P2 - EXT: (.Michel Gutierrez - DownloadHelper.) -- C:\Users\Brahim\AppData\Roaming\Mozilla\Firefox\Profiles\xjlyseae.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} ©
P2 - EXT: (. - Java Console.) -- C:\Users\Brahim\AppData\Roaming\Mozilla\Firefox\Profiles\xjlyseae.default\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
P2 - EXT: (.Federico Parodi, Stefano Verna, Nils Maier - DownThemAll!.) -- C:\Users\Brahim\AppData\Roaming\Mozilla\Firefox\Profiles\xjlyseae.default\extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}
P2 - EXT: (.Roi M. - FoxTab.) -- C:\Users\Brahim\AppData\Roaming\Mozilla\Firefox\Profiles\xjlyseae.default\extensions\{ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a}
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32.dll ©

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (12) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.fr
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: (no name) - {d366e137-6c51-46b1-a99a-7b679f8009c2} Orphean
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer,Proxy Management (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) ©

---\\ Etude du fichier hosts (1) - 1s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (3) - 0s
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Tonec Inc. - IDM BHO Module.) -- C:\Program Files\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.®
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL =>.Microsoft Corporation®
O2 - BHO: my-search Toolbar - {d366e137-6c51-46b1-a99a-7b679f8009c2} . (...) -- C:\Program Files\my-search\tbmy-s.dll (.not file.) =>PUP.Optional.Conduit

---\\ Internet Explorer, Barre d'outil (1) - 0s
O3 - Toolbar: my-search Toolbar - [HKLM]{d366e137-6c51-46b1-a99a-7b679f8009c2} . (...) -- C:\Program Files\my-search\tbmy-s.dll (.not file.) =>PUP.Optional.Conduit

---\\ Applications lancées au démarrage du système (15) - 0s
O4 - HKLM\..\Run: [BCSSync] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files\Microsoft Office\Office14\BCSSync.exe =>.Microsoft Corporation®
O4 - HKLM\..\Run: [STCAgent] . (.Splashtop Inc. - Splashtop Connect IE Agent..) -- C:\Program Files\Splashtop\Splashtop Connect IE\STCAgent.exe {4A4F37014523F3A5CD159F8AFA7CAD2D}
O4 - HKLM\..\Run: [ZyngaGamesAgent] . (.Splashtop Inc. - Splashtop Connect ZyngaGames Agent..) -- C:\Program Files\Splashtop\Splashtop Connect\ZyngaGamesAgent.exe {4A4F37014523F3A5CD159F8AFA7CAD2D}
O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe =>.Intel Corporation®
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation®
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation®
O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe ©
O4 - HKCU\..\Run: [SuperCopier2.exe] . (.SFX TEAM - SuperCopier 2 (explorer file copy replaceme.) -- C:\Program Files\SuperCopier2\SuperCopier2.exe ©
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe ©
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe ©
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe ©
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe ©
O4 - HKUS\S-1-5-21-2899017713-4293197091-556175234-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe ©
O4 - HKUS\S-1-5-21-2899017713-4293197091-556175234-1000\..\Run: [SuperCopier2.exe] . (.SFX TEAM - SuperCopier 2 (explorer file copy replaceme.) -- C:\Program Files\SuperCopier2\SuperCopier2.exe ©

---\\ Modification Domaine/Adresses DNS (2) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 0.0.0.0
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2DF78120-7363-4163-9D52-B94E337F7106}: DhcpNameServer = 192.168.1.1 0.0.0.0

---\\ Protocole additionnel (24) - 1s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll ©
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll ©
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation®
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll ©
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ Logiciels installés (24) - 5s
O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Shockwave Player 11.5 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player ©
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>.Piriform Ltd®
O42 - Logiciel: doPDF 7.1 printer - (.Softland.) [HKLM] -- doPDF 7 printer_is1 ©
O42 - Logiciel: EasySaver B9.0904.1 - (.Gigabyte.) [HKLM] -- {07300F01-89CA-4CF8-92BD-2A605EB83C95} ©
O42 - Logiciel: ESET Smart Security - (.ESET, spol. s r.o..) [HKLM] -- {E08755B9-2F8B-46CD-BEE4-1BA4C6529B0D}
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421} =>.Intel Corporation®
O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation®
O42 - Logiciel: Internet Download Manager - (...) [HKLM] -- Internet Download Manager =>.Tonec Inc.®
O42 - Logiciel: Logiciel d'archivage WinRAR - (...) [HKLM] -- WinRAR archiver
O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.0.1024 - (.Malwarebytes.) [HKLM] -- Malwarebytes Anti-Malware_is1 ©
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} ©
O42 - Logiciel: Mozilla Firefox (3.6.10) - (.Mozilla.) [HKLM] -- Mozilla Firefox (3.6.10) {25CC3735E9EC1FC971670E73E369C791} ©
O42 - Logiciel: my-search Toolbar - (...) [HKLM] -- my-search Toolbar =>PUP.Optional.Conduit
O42 - Logiciel: Notepad++ - (...) [HKLM] -- Notepad++
O42 - Logiciel: ON_OFF Charge B11.0110.1 - (.GIGABYTE.) [HKLM] -- {3DECD372-76A1-4483-BF10-B547790A3261} ©
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} ©
O42 - Logiciel: Splashtop Connect for Firefox - (.Splashtop Inc..) [HKLM] -- {D2BF4F2C-BDF3-41C3-8D38-185F6342EC47}
O42 - Logiciel: Splashtop Connect IE - (.Splashtop Inc..) [HKLM] -- {418D77E2-7B60-48F8-B016-30A32699EE74}
O42 - Logiciel: SuperCopier2 - (...) [HKLM] -- SuperCopier2
O42 - Logiciel: Upgrade Tools 2.01 - (...) [HKLM] -- Upgrade Tools_is1
O42 - Logiciel: VLC media player 1.1.4 - (.VideoLAN.) [HKLM] -- VLC media player ©

---\\ HKCU & HKLM Software Keys (61) - 5s
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\AdwCleaner
HKLM\SOFTWARE\AppDataLow
HKLM\SOFTWARE\ASUS
HKLM\SOFTWARE\ATI Technologies
HKLM\SOFTWARE\CCleaner
HKLM\SOFTWARE\Creative Tech
HKLM\SOFTWARE\ESET
HKLM\SOFTWARE\GIGABYTE
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\Internet Download Manager
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\my-search =>PUP.Optional.Conduit
HKLM\SOFTWARE\Notepad++
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\Realtek
HKLM\SOFTWARE\Realtek Semiconductor Corp.
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\RTLSetup
HKLM\SOFTWARE\Softland
HKLM\SOFTWARE\Software
HKLM\SOFTWARE\Sonic
HKLM\SOFTWARE\Splashtop Inc.
HKLM\SOFTWARE\SRS Labs
HKLM\SOFTWARE\VideoLAN
HKLM\SOFTWARE\Waves Audio
HKLM\SOFTWARE\WinRAR
HKLM\SOFTWARE\XXXX
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\DownloadCenter
HKCU\SOFTWARE\DownloadManager
HKCU\SOFTWARE\ESET
HKCU\SOFTWARE\Foxit Software
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Hgltaf
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\SFX TEAM
HKCU\SOFTWARE\Softland
HKCU\SOFTWARE\Splashtop Inc.
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\WPI
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Monitored
HKCU\SOFTWARE\AppDataLow\Software\my-search =>PUP.Optional.Conduit
HKCU\SOFTWARE\AppDataLow\Software\settings

---\\ Contenu des dossiers Programmes (121) - 6s
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd®
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\Common Files
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\DVD Maker
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\ESET =>.ESET, spol. s r.o.®
O43 - CFD: 25/12/2015 - [0] SHD -- C:\Program Files\Fichiers communs
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\Foxit PDF Reader {01D151D46A31F4D1FF4E3A0A8AEC820F}
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\GIGABYTE {720EF3AAA1A44F7D0717A805C290C378}
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\Google =>.Google Inc®
O43 - CFD: 25/12/2015 - [] HD -- C:\Program Files\InstallShield Installation Information =>.Macrovision Corporation®
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\Intel =>.Intel Corporation®
O43 - CFD: 21/09/2010 - [] D -- C:\Program Files\Internet Download Manager
O43 - CFD: 17/09/2010 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 27/12/2015 - [] D -- C:\Program Files\Malwarebytes Anti-Malware =>.Malwarebytes Corporation®
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\Microsoft Analysis Services
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Microsoft Games
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation®
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\Microsoft Synchronization Services
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\Mozilla Firefox {25CC3735E9EC1FC971670E73E369C791}
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\my-search =>PUP.Optional.Conduit
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\Notepad++
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\Realtek =>.Realtek Semiconductor Corp®
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\Softland {40DF9F2D65D1C332995EC625226A8C2B}
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\Splashtop
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\SuperCopier2
O43 - CFD: 25/12/2015 - [0] HD -- C:\Program Files\Temp
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\VideoLAN
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Defender
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 17/09/2010 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 17/09/2010 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 17/09/2010 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 17/09/2010 - [] D -- C:\Program Files\Windows Sidebar
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\WinRAR
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\doPDF 7
O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
O43 - CFD: 26/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIGABYTE
O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 25/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 27/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
O43 - CFD: 27/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PESEdit.com 2013 Patch
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 14/07/2009 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 26/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UpgradeTool
O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 25/12/2015 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\ESET
O43 - CFD: 25/12/2015 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\KONAMI
O43 - CFD: 27/12/2015 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 25/12/2015 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 25/12/2015 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 25/12/2015 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 27/12/2015 - [] D -- C:\ProgramData\RogueKiller
O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\Splashtop
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\Common Files\DESIGNER
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\Common Files\InstallShield
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\Common Files\Intel
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\Common Files\microsoft shared
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\Services
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\System
O43 - CFD: 25/12/2015 - [] D -- C:\Users\Brahim\AppData\Roaming\Adobe
O43 - CFD: 25/12/2015 - [0] D -- C:\Users\Brahim\AppData\Roaming\DMCache
O43 - CFD: 25/12/2015 - [] D -- C:\Users\Brahim\AppData\Roaming\Identities
O43 - CFD: 26/12/2015 - [] D -- C:\Users\Brahim\AppData\Roaming\IDM
O43 - CFD: 25/12/2015 - [] D -- C:\Users\Brahim\AppData\Roaming\Macromedia
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Brahim\AppData\Roaming\Media Center Programs
O43 - CFD: 25/12/2015 - [] SD -- C:\Users\Brahim\AppData\Roaming\Microsoft
O43 - CFD: 25/12/2015 - [] D -- C:\Users\Brahim\AppData\Roaming\Mozilla
O43 - CFD: 25/12/2015 - [] D -- C:\Users\Brahim\AppData\Roaming\Notepad++
O43 - CFD: 25/12/2015 - [] D -- C:\Users\Brahim\AppData\Roaming\Softland
O43 - CFD: 25/12/2015 - [] D -- C:\Users\Brahim\AppData\Roaming\Splashtop
O43 - CFD: 25/12/2015 - [] D -- C:\Users\Brahim\AppData\Roaming\WinRAR
O43 - CFD: 27/12/2015 - [] D -- C:\Users\Brahim\AppData\Roaming\ZHP
O43 - CFD: 25/12/2015 - [0] SHD -- C:\Users\Brahim\AppData\Local\Application Data
O43 - CFD: 25/12/2015 - [] D -- C:\Users\Brahim\AppData\Local\Cooliris
O43 - CFD: 25/12/2015 - [] D -- C:\Users\Brahim\AppData\Local\ESET
O43 - CFD: 25/12/2015 - [] D -- C:\Users\Brahim\AppData\Local\Google
O43 - CFD: 25/12/2015 - [0] SHD -- C:\Users\Brahim\AppData\Local\Historique
O43 - CFD: 25/12/2015 - [] D -- C:\Users\Brahim\AppData\Local\Microsoft
O43 - CFD: 25/12/2015 - [0] D -- C:\Users\Brahim\AppData\Local\Microsoft Help
O43 - CFD: 25/12/2015 - [] D -- C:\Users\Brahim\AppData\Local\Mozilla
O43 - CFD: 27/12/2015 - [] D -- C:\Users\Brahim\AppData\Local\Programs
O43 - CFD: 27/12/2015 - [] D -- C:\Users\Brahim\AppData\Local\Temp
O43 - CFD: 25/12/2015 - [0] SHD -- C:\Users\Brahim\AppData\Local\Temporary Internet Files
O43 - CFD: 25/12/2015 - [] D -- C:\Users\Brahim\AppData\Local\VirtualStore
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\Brahim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 25/12/2015 - [] RD -- C:\Users\Brahim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 25/12/2015 - [] D -- C:\Users\Brahim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ARP V1.0
O43 - CFD: 25/12/2015 - [] D -- C:\Users\Brahim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 25/12/2015 - [0] D -- C:\Users\Brahim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Cooliris
O43 - CFD: 25/12/2015 - [] D -- C:\Users\Brahim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\Brahim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 25/12/2015 - [0] D -- C:\Users\Brahim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
O43 - CFD: 25/12/2015 - [] RD -- C:\Users\Brahim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 25/12/2015 - [] D -- C:\Users\Brahim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SuperCopier2
O43 - CFD: 25/12/2015 - [] D -- C:\Users\Brahim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ ShellIconOverlayIdentifiers (SIOI) (3) - 0s
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll ©
O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll ©
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll ©

---\\ Liste des pilotes du système (114) - 8s
O58 - SDL:2009/06/12 11:28:12 A . (.HighPoint Technologies, Inc. - rr231x/230x Miniport Driver.) -- C:\Windows\System32\drivers\2310_00.sys [135200] =>.HighPoint Technologies, Inc.®
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512] =>.Microsoft Windows®
O58 - SDL:2007/03/21 12:13:32 A . (.ATI Technologies Inc. - ATI Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\ahcix86s.sys [118784] ©
O58 - SDL:2009/07/14 02:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400] =>.Microsoft Windows®
O58 - SDL:2010/09/17 18:32:49 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [80264] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312] =>.Microsoft Windows®
O58 - SDL:2010/09/17 18:32:49 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [22408] =>.Microsoft Windows®
O58 - SDL:2011/01/11 03:16:16 A . (...) -- C:\Windows\System32\drivers\AppleCharger.sys [18544] {248472542C24AB8E429229ACF121CA26}
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368] =>.Microsoft Windows®
O58 - SDL:2009/11/09 03:11:22 A . (.ARECA Technology Corporation - Areca X86-32 SCSIPORT SATA/SAS RAID host co.) -- C:\Windows\System32\drivers\arcm_x86.sys [43552] =>.Areca Technology Corporation®
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608] =>.Microsoft Windows®
O58 - SDL:2009/06/03 14:57:02 A . (. - ATK0110 ACPI Utility.) -- C:\Windows\System32\drivers\ASACPI.sys [7680]
O58 - SDL:2009/07/13 23:02:49 A . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gi.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888] ©
O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] ©
O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] ©
O58 - SDL:2009/07/14 01:57:25 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [272128] ©
O58 - SDL:2009/07/13 23:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] ©
O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] ©
O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] ©
O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080] ©
O58 - SDL:2009/07/14 02:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720] =>.Microsoft Windows®
O58 - SDL:2015/11/06 11:33:20 A . (.ESET - Amon monitor.) -- C:\Windows\System32\drivers\eamonm.sys [205800] =>.ESET, spol. s r.o.®
O58 - SDL:2015/11/06 11:33:20 A . (.ESET - ESET Helper driver.) -- C:\Windows\System32\drivers\ehdrv.sys [145512] =>.ESET, spol. s r.o.®
O58 - SDL:2015/10/07 05:16:32 A . (.ESET - ESET OPP Keyboard Filter.) -- C:\Windows\System32\drivers\ekbdflt.sys [111040] =>.ESET, spol. s r.o.®
O58 - SDL:2009/07/14 02:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712] =>.Microsoft Windows®
O58 - SDL:2015/11/06 11:33:20 A . (.ESET - ESET Personal Firewall driver.) -- C:\Windows\System32\drivers\epfw.sys [161992] =>.ESET, spol. s r.o.®
O58 - SDL:2015/11/06 11:33:20 A . (.ESET - Epfw NDIS LightWeight Filter.) -- C:\Windows\System32\drivers\EpfwLWF.sys [44608] =>.ESET, spol. s r.o.®
O58 - SDL:2015/11/06 11:33:20 A . (.ESET - ESET Personal Firewall driver.) -- C:\Windows\System32\drivers\epfwwfp.sys [56944] =>.ESET, spol. s r.o.®
O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160] ©
O58 - SDL:2009/07/13 23:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624] ©
O58 - SDL:2007/05/11 19:00:14 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECI.sys [45056] ©
O58 - SDL:2009/07/14 02:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152] =>.Microsoft Windows®
O58 - SDL:2009/04/28 16:14:12 A . (.HighPoint Technologies, Inc. - HighPoint RAID Controller Driver.) -- C:\Windows\System32\drivers\hptiop.sys [15008] =>.HighPoint Technologies, Inc.®
O58 - SDL:2006/09/27 13:36:50 A . (.HighPoint Technologies, Inc. - hptmv Miniport Driver.) -- C:\Windows\System32\drivers\hptmv.sys [71968] =>.HighPoint Technologies, Inc.®
O58 - SDL:2007/11/01 14:20:56 A . (.HighPoint Technologies, Inc. - hptmv6 Miniport Driver.) -- C:\Windows\System32\drivers\hptmv6.sys [120352] =>.HighPoint Technologies, Inc.®
O58 - SDL:2010/03/04 03:33:26 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x86.) -- C:\Windows\System32\drivers\iaStor.sys [435736] =>.Intel Corporation®
O58 - SDL:2010/09/17 18:22:14 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332168] =>.Microsoft Windows®
O58 - SDL:2010/03/31 08:39:26 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [8744448] ©
O58 - SDL:2009/07/14 02:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040] =>.Microsoft Windows®
O58 - SDL:2007/06/19 13:48:26 A . (.Intel Corporation - Intel(R) PRO/1000 iSCSI Setup Driver.) -- C:\Windows\System32\drivers\iSSetup.sys [75672] =>.Intel Corporation®
O58 - SDL:2007/05/02 04:09:30 A . (.ITE Tech. Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\System32\drivers\iteraid.sys [29184] ©
O58 - SDL:2010/01/27 17:58:32 A . (.JMicron Technology Corp. - JMicron JMB36X RAID Driver.) -- C:\Windows\System32\drivers\jraid.sys [98928] {476F49F4C959F656E9AA1EB87FC529BB} ©
O58 - SDL:2007/08/29 09:27:42 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [108384] ©
O58 - SDL:2008/08/21 11:44:20 RA . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [103432] =>.LSI Corporation®
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848] =>.Microsoft Windows®
O58 - SDL:2006/07/20 19:47:12 A . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\System32\drivers\m5287.sys [104320] ©
O58 - SDL:2006/07/19 18:48:14 A . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\System32\drivers\m5288.sys [211072] ©
O58 - SDL:2005/07/04 14:21:00 A . (.ULi Electronics Inc. - ULi SATA RAID Controller Driver.) -- C:\Windows\System32\drivers\m5289.sys [52480] ©
O58 - SDL:2015/10/05 09:50:04 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [23256] =>.Malwarebytes Corporation®
O58 - SDL:2015/10/05 09:50:08 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [94936] =>.Malwarebytes Corporation®
O58 - SDL:2015/12/27 20:08:44 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [170200] =>.Malwarebytes Corporation®
O58 - SDL:2008/05/19 11:13:52 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [25920] ©
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584] =>.Microsoft Windows®
O58 - SDL:2008/06/26 18:12:38 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR1.sys [397632] ©
O58 - SDL:2007/05/25 10:29:02 RA . (.Marvell Semiconductor, Inc. - Marvell Thor and Odin Windows Driver.) -- C:\Windows\System32\drivers\mv61xx.sys [137728] ©
O58 - SDL:2015/10/05 09:50:16 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [51928] =>.Malwarebytes Corporation®
O58 - SDL:2009/07/14 02:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624] =>.Microsoft Windows®
O58 - SDL:2009/07/17 01:51:52 A . (.NVIDIA Corporation - NVIDIA AM ACPI Driver.) -- C:\Windows\System32\drivers\nvamacpi.sys [24608] =>.NVIDIA Corporation®
O58 - SDL:2010/09/17 18:32:49 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117120] =>.Microsoft Windows®
O58 - SDL:2008/08/18 17:58:42 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvrd32.sys [133152] =>.NVIDIA Corporation®
O58 - SDL:2009/06/29 00:36:36 A . (.NVIDIA Corporation - NVIDIA nForce(TM) SMU Microcontroller Drive.) -- C:\Windows\System32\drivers\nvsmu.sys [17920] ©
O58 - SDL:2010/09/17 18:32:49 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [143752] =>.Microsoft Windows®
O58 - SDL:2008/08/18 17:58:42 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor32.sys [145952] =>.NVIDIA Corporation®
O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064] =>.Microsoft Windows®
O58 - SDL:2007/11/01 14:18:48 A . (.HighPoint Technologies, Inc. - rr172x Miniport Driver.) -- C:\Windows\System32\drivers\rr172x.sys [101920] =>.HighPoint Technologies, Inc.®
O58 - SDL:2007/11/01 14:19:32 A . (.HighPoint Technologies, Inc. - rr174x Miniport Driver.) -- C:\Windows\System32\drivers\rr174x.sys [126496] =>.HighPoint Technologies, Inc.®
O58 - SDL:2007/11/01 14:19:54 A . (.HighPoint Technologies, Inc. - rr2210 Miniport Driver.) -- C:\Windows\System32\drivers\rr2210.sys [122400] =>.HighPoint Technologies, Inc.®
O58 - SDL:2008/05/05 17:48:56 A . (.HighPoint Technologies, Inc. - RR232x Miniport Driver.) -- C:\Windows\System32\drivers\rr232x.sys [120352] =>.HighPoint Technologies, Inc.®
O58 - SDL:2009/12/31 18:23:40 A . (.HighPoint Technologies, Inc. - RR2340 Miniport Driver.) -- C:\Windows\System32\drivers\rr2340.sys [128608] =>.HighPoint Technologies, Inc.®
O58 - SDL:2009/12/31 18:37:38 A . (.HighPoint Technologies, Inc. - rr2522 Miniport Driver.) -- C:\Windows\System32\drivers\rr2522.sys [132704] =>.HighPoint Technologies, Inc.®
O58 - SDL:2009/12/21 14:55:38 A . (.HighPoint Technologies, Inc. - RR62x Miniport Driver.) -- C:\Windows\System32\drivers\rr62x.sys [122464] =>.HighPoint Technologies, Inc.®
O58 - SDL:2011/01/13 12:58:00 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.20 32-bit Dr.) -- C:\Windows\System32\drivers\Rt86win7.sys [328808] =>.Realtek Semiconductor Corp®
O58 - SDL:2010/12/14 10:17:30 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [3340968] =>.Realtek Semiconductor Corp®
O58 - SDL:2009/07/13 21:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] ©
O58 - SDL:2009/07/14 00:45:33 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\serial.sys [83456] ©
O58 - SDL:2007/01/26 12:55:08 A . (.Silicon Image, Inc. - Serial ATA miniport driver.) -- C:\Windows\System32\drivers\SI3112.sys [69168] =>.Silicon Image, Inc.®
O58 - SDL:2007/02/01 15:50:10 A . (.Silicon Image, Inc - Serial ATA RAID miniport driver.) -- C:\Windows\System32\drivers\SI3112r.sys [110128] =>.Silicon Image, Inc.®
O58 - SDL:2006/11/10 11:45:54 A . (.Silicon Image, Inc. - Serial ATA miniport driver.) -- C:\Windows\System32\drivers\SI3114.sys [68912] =>.Silicon Image, Inc.®
O58 - SDL:2007/04/11 13:32:48 A . (.Silicon Image, Inc - SATARAID miniport driver.) -- C:\Windows\System32\drivers\SI3114r.sys [110384] =>.Silicon Image, Inc.®
O58 - SDL:2007/02/07 10:30:06 A . (.Silicon Image, Inc - SATA SoftRAID 5 miniport driver.) -- C:\Windows\System32\drivers\Si3114r5.sys [209200] =>.Silicon Image, Inc.®
O58 - SDL:2006/11/02 15:20:30 A . (.Silicon Image, Inc. - Serial ATA miniport driver.) -- C:\Windows\System32\drivers\SI3124.sys [76208] =>.Silicon Image, Inc.®
O58 - SDL:2006/09/20 10:38:26 A . (.Silicon Image, Inc - SATA SoftRAID 5 miniport driver.) -- C:\Windows\System32\drivers\Si3124r5.sys [207152] =>.Silicon Image, Inc.®
O58 - SDL:2007/10/03 15:55:08 A . (.Silicon Image, Inc - Serial ATA miniport driver.) -- C:\Windows\System32\drivers\SI3132.sys [80424] =>.Silicon Image, Inc.®
O58 - SDL:2008/10/30 10:56:04 A . (.Silicon Image, Inc - SATA SoftRAID 5 miniport driver.) -- C:\Windows\System32\drivers\Si3132r5.sys [217128] =>.Silicon Image, Inc.®
O58 - SDL:2007/10/03 15:55:28 A . (.Silicon Image, Inc - Filter driver for Silicon Image SATALink co.) -- C:\Windows\System32\drivers\SiRemFil.sys [15400] =>.Silicon Image, Inc.®
O58 - SDL:2009/08/01 17:10:10 A . (.Silicon Integrated Systems Corporation - SiS AGPv3.5 Filter.) -- C:\Windows\System32\drivers\SISAGPX.SYS [58400] =>.SILICON INTEGRATED SYSTEMS CORP.®
O58 - SDL:2006/10/12 13:22:18 A . (.Silicon Integrated Systems Corp. - SiS RAID Miniport Driver.) -- C:\Windows\System32\drivers\SiSRaid2.sys [48128] ©
O58 - SDL:2007/01/17 14:26:28 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [74240] ©
O58 - SDL:2007/10/03 15:55:36 A . (.Silicon Image, Inc - Windows Accelerator Driver.) -- C:\Windows\System32\drivers\SiWinAcc.sys [19240] =>.Silicon Image, Inc.®
O58 - SDL:2009/07/14 02:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072] =>.Microsoft Windows®
O58 - SDL:2015/12/27 18:46:47 A . (...) -- C:\Windows\System32\drivers\TrueSight.sys [30848] =>.Adlice®
O58 - SDL:2009/07/14 02:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976] =>.Microsoft Windows®
O58 - SDL:2010/03/05 10:34:38 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR X86-32.) -- C:\Windows\System32\drivers\viamraid.sys [138464] ©
O58 - SDL:2009/07/14 02:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904] =>.Microsoft Windows®
O58 - SDL:2009/07/13 22:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029]
O58 - SDL:2009/07/13 22:40:44 A . (...) -- C:\Windows\System32\country.sys [27097]
O58 - SDL:2009/07/13 22:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768]
O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809]
O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537]
O58 - SDL:2009/07/13 22:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866]
O58 - SDL:2009/07/13 22:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146]
O58 - SDL:2009/07/13 22:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370]
O58 - SDL:2009/07/13 22:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274]
O58 - SDL:2009/07/13 22:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146]
O58 - SDL:2009/07/13 22:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952]
O58 - SDL:2009/07/13 22:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672]
O58 - SDL:2009/07/13 22:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776]
O58 - SDL:2009/07/13 22:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536]
O58 - SDL:2009/07/13 22:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (3) - 16s
O61 - LFC: 2015/12/27 13:50:47 A . (..) -- C:\Users\Brahim\AppData\Roaming\Mozilla\Firefox\Profiles\xjlyseae.default\extensions\piclens@cooliris.com\libs\LaunchCooliris.exe [425984]
O61 - LFC: 2015/12/27 13:50:47 A . (..) -- C:\Users\Brahim\AppData\Roaming\Mozilla\Firefox\Profiles\xjlyseae.default\extensions\piclens@cooliris.com\libs\PicLensHelper.exe [545280]
O61 - LFC: 2015/12/25 21:49:13 A . (..) -- C:\Users\Brahim\AppData\Local\Microsoft\Windows\1036\StructuredQuerySchema.bin [332282]

---\\ Associations Shell Spawning (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe ©
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe ©
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (12) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©

---\\ Recherche d'infection sur les navigateurs (6) - 3s
O69 - SBI: SearchScopes [HKCU] {06F98A31-8A9A-4483-B8FC-1C3AD7CCBF0D} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKCU] {A9921909-D1B3-4e9f-AE8D-6699DB8AD512} - (Yahoo) - http://fr.search.yahoo.com/ =>.Yahoo Search
O69 - SBI: SearchScopes [HKCU] {afdbddaa-5d3f-42ee-b79c-185a7020515b} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/
O69 - SBI: SearchScopes [HKUS\.DEFAULT] {758B870D-DF78-4A6A-9955-DEDDCACF94DC} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKUS\S-1-5-18] {758B870D-DF78-4A6A-9955-DEDDCACF94DC} - (Google) - http://www.google.com/

---\\ Enumère les services démarrés par Svchost (33) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464] ©
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] ©
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] ©
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168448] ©
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [591872] ©
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [668672] ©
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [473088] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [286208] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [49664] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [300544] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242176] ©
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [547328] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1933848] =>.Microsoft Windows Component Publisher®
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [589312] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192] ©
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [498688] ©
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [21504] ©
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104] ©
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688] ©
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [49664] ©
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440] ©
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304] ©
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [163840] ©
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [743424] ©
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [71168] ©
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [99328] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] ©
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102400] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37888] ©
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800] ©
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [149504] ©

---\\ Liste des exceptions du parefeu Windows (6) - 1s
O87 - FAEL: "{85A55814-F1C9-4D94-86BE-48D93D8EB255}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KONAMI\Pro Evolution Soccer 2013\pes2013.exe (.not file.)
O87 - FAEL: "{5477F305-6523-4CED-85DB-F7599791F584}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KONAMI\Pro Evolution Soccer 2013\pes2013.exe (.not file.)
O87 - FAEL: "{022A0091-8241-4D5C-BF20-5B247B50344D}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KONAMI\Pro Evolution Soccer 2013\pes2013_100.exe (.not file.)
O87 - FAEL: "{5002EA11-372F-4C5C-860F-BDA51C455000}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KONAMI\Pro Evolution Soccer 2013\pes2013_100.exe (.not file.)
O87 - FAEL: "{F7FB7C43-207E-4105-A735-10136F22F25F}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KONAMI\Pro Evolution Soccer 2013\Arab Revolution Patch V1.0.exe (.not file.)
O87 - FAEL: "{EE47FB1C-C350-4C1C-884C-BF5EF7FBA523}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KONAMI\Pro Evolution Soccer 2013\Arab Revolution Patch V1.0.exe (.not file.)

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (8) - 18s

SS - Demand [07/04/2010] [ 31272] AppleChargerSrv (AppleChargerSrv) . (...) - C:\Windows\System32\AppleChargerSrv.exe {720EF3AAA1A44F7D0717A805C290C378}
SR - Auto [09/10/2015] [ 1971968] ESET Service (ekrn) . (.ESET.) - C:\Program Files\ESET\ESET Smart Security\ekrn.exe =>.ESET, spol. s r.o.®
SR - Auto [24/08/2009] [ 68136] ES lite Service for program management. (ES lite Service) . (...) - C:\Program Files\GIGABYTE\EasySaver\essvr.exe {720EF3AAA1A44F7D0717A805C290C378}
SR - Auto [05/10/2015] [ 1513784] (MBAMScheduler) . (.Malwarebytes.) - C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation®
SS - Auto [05/10/2015] [ 1135416] (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
SR - Auto [30/11/2010] [ 493384] Splashtop Connect Firefox Software Updater Service (WCUService_STC_FF) . (.Splashtop Inc..) - C:\Program Files\Splashtop\Splashtop Connect Firefox Software Updater\WCUService.exe {4A4F37014523F3A5CD159F8AFA7CAD2D}
SR - Auto [04/11/2010] [ 493384] Splashtop Connect IE Software Updater Service (WCUService_STC_IE) . (.Splashtop Inc..) - C:\Program Files\Splashtop\Splashtop Connect IE Software Updater\WCUService.exe {4A4F37014523F3A5CD159F8AFA7CAD2D}

---\\ Scan Additionnel (6) - 0s
C:\Users\Brahim\AppData\Roaming\Mozilla\Firefox\Profiles\xjlyseae.default\searchplugins\yahoo.xml =>PUP.Optional.BDYahoo
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d366e137-6c51-46b1-a99a-7b679f8009c2} =>PUP.Optional.Conduit
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\my-search Toolbar =>PUP.Optional.Conduit
HKLM\SOFTWARE\my-search =>PUP.Optional.Conduit
HKCU\SOFTWARE\AppDataLow\Software\my-search =>PUP.Optional.Conduit
C:\Program Files\my-search =>PUP.Optional.Conduit

---\\ Récapitulatif des éléments trouvés sur votre station (2) - 0s
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.BDYahoo
http://www.nicolascoolman.fr/?p=210 =>PUP.Optional.Conduit

~ End of the scan, 12557 items in 00h01mn15s (609)(0)

Publicité


Signaler le contenu de ce document

Publicité