cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.12.16.186 Par Nicolas Coolman (2015/12/16)
~ Démarré par Administrateur (Administrator) (2015/12/17 18:58:48)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Documents and Settings\Administrateur\Bureau\ZHPDiag.txt
~ Rapport: C:\Documents and Settings\Administrateur\Application Data\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
Windows XP, 32-bit Service Pack 3 (Build 2600)

---\\ Navigateurs Internet (3) - 0s
MFIE: Mozilla Firefox 43.0 (x86 fr) v43.0
OPIE: Opera 33.0.1990.115 v33.0.1990.115
MSIE: Internet Explorer v7.0.5730.13

---\\ Informations sur les produits Windows (3) - 0s
Windows Automatic Updates : OK
Windows Activation Technologies : KO
Windows Genuine Advantage : KO

---\\ Logiciels de protection (1) - 5s
ESET NOD32 Antivirus v5.0.95.0

---\\ Logiciels de protection et autres (Superflus) (1) - 6s
SpyHunter 4 v4.21.10.4584

---\\ Surveillance de Logiciels (2) - 6s
Adobe Flash Player 19 NPAPI
Adobe Reader 9 - Français

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 15 Model 95 Stepping 2, AuthenticAMD
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 1964.652 MB (34% free)
System Restore: Désactivé (Disabled)
System drive C: has 2 GB () free of 39 GB =>Alerte espace disque inférieur à 20 Go

---\\ Mode de connexion au système (3) - 1s
~ Computer Name: SWEET-A887C0B4B
~ User Name: Administrateur
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 2 GB free of 39 GB (System)
~ Drive D: has 1 GB free of 36 GB

---\\ Etat du Centre de Sécurité Windows (8) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Recherche particulière de fichiers génériques (23) - 4s
[MD5.BFBBBFE0913E6C9706F97598A6588B8F] - 27/09/2008 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [1573888] ©
[MD5.EFA551863AD71A69690A3685145FD378] - 27/09/2008 - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\rundll32.exe [32256] ©
[MD5.90B16FF3ACEC94B95BA95AA686442A47] - 27/09/2008 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\WINDOWS\System32\wininet.dll [879616] ©
[MD5.4BB6301D634C857A5089E8B24C5555E4] - 27/09/2008 - (.Microsoft Corporation - Application d'ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [593408] ©
[MD5.B03E5AB30959E66A25AA6D30633A2047] - 28/07/2008 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\System32\dnsapi.dll [147968] ©
[MD5.744B88B93D2A58A1EB84C11D48CA85C8] - 28/07/2008 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [138496] ©
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] - 14/04/2008 - (.Microsoft Corporation - IDE/ATAPI Port Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [96512] ©
[MD5.C885B02847F5D2FD45A24E219ED93B32] - 14/04/2008 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [63744] ©
[MD5.4B0A100EAF5C49EF3CCA8C641431EACC] - 02/05/2008 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [62976] ©
[MD5.31F923EB2170FC172C81ABDA0045D18C] - 14/04/2008 - (.Microsoft Corporation - Pilote de cryptographie FIPS.) -- C:\WINDOWS\System32\drivers\Fips.sys [44672] ©
[MD5.573C7D0A32852B48F3058CFD8026F511] - 14/04/2008 - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [144384]
[MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - 14/04/2008 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [54144] ©
[MD5.083A052659F5310DD8B6A6CB05EDCF8E] - 14/04/2008 - (.Microsoft Corporation - IMAPI Kernel Driver.) -- C:\WINDOWS\System32\drivers\Imapi.sys [42112] ©
[MD5.CC748EA12C6EFFDE940EE98098BF96BB] - 14/04/2008 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [152832] ©
[MD5.23C74D75E36E7158768DD63D92789A91] - 14/04/2008 - (.Microsoft Corporation - IPSec Driver.) -- C:\WINDOWS\System32\drivers\IPSec.sys [75264] ©
[MD5.32ECB7D3C03532B4460E09E960A3B72E] - 30/07/2008 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [455936] ©
[MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - 14/04/2008 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [162816] ©
[MD5.A0857C97770034FD2AF17DC4014B5ABD] - 22/04/2008 - (.Microsoft Corporation - NT File System Driver.) -- C:\WINDOWS\System32\drivers\ntfs.sys [576384] ©
[MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - 27/09/2008 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [80384] ©
[MD5.11B4A627BC9614B885C4969BFA5FF8A6] - 14/04/2008 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [51328] ©
[MD5.15CABD0F7C00C47C70124907916AF3F1] - 27/09/2008 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [196224] ©
[MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - 27/09/2008 - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) -- C:\WINDOWS\System32\drivers\redbook.sys [58752] ©
[MD5.46DE1126684369BACE4849E4FC8C43CA] - 14/04/2008 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [53376] ©

---\\ Liste des services NT non Microsoft et non désactivés (6) - 3s
O23 - Service: ESET Service (ekrn) . (.ESET - ESET Service.) - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe =>.ESET, spol. s r.o.®
O23 - Service: HP LaserJet Service (HP LaserJet Service) . (.HP - HP LaserJet Service.) - C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe ©
O23 - Service: HP SI Service (HPSIService) . (.HP - HP Smart-Install Service.) - C:\WINDOWS\system32\HPSIsvc.exe =>.Hewlett-Packard Company®
O23 - Service: NVIDIA Display Driver Service (NVSvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 169.2.) - C:\WINDOWS\system32\nvsvc32.exe ©
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl®
O23 - Service: SpyHunter 4 Service (SpyHunter 4 Service) . (.Enigma Software Group USA, LLC. - Service scanner interface.) - C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe {4549D6525BEC58AA524A1CE9E786B4E9} =>.Superfluous.SpyHunter

---\\ Tâches planifiées en automatique (2) - 13s
[MD5.51A2632AAFF24229FB500BC52CFECBF2] [APT] [Opera scheduled Autoupdate 1448032803] (.Opera Software.) -- C:\Program Files\Opera\launcher.exe [948856] =>.Opera Software ASA®
O39 - APT: Opera scheduled Autoupdate 1448032803 - (.Opera Software.) -- C:\WINDOWS\Tasks\Opera scheduled Autoupdate 1448032803.job [442] ©

---\\ Processus lancés (16) - 26s
[MD5.F90DD89E8A482AC976DD4E1029802E49] - (.HP - HP LaserJet Service.) -- C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe [136192] [PID.1604] ©
[MD5.B0844D746C47FB20CA50ED0BAD09065C] - (.Realtek Semiconductor Corp. - Realtek HD Audio Control Panel.) -- C:\WINDOWS\RTHDCPL.EXE [16861184] [PID.1716] ©
[MD5.9F3287A1CAF6E365ED2B39BB8D44B0EA] - (.Elaborate Bytes AG - Virtual CloneDrive Daemon.) -- C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [52168] [PID.1968] {0100000000010F5C98B8F5} ©
[MD5.56B9FDDB02F46B33BCA915B61FEB3507] - (.Zbshareware Lab - Antivirus software.) -- C:\Program Files\USB Disk Security\USBGuard.exe [798720] [PID.120] ©
[MD5.8468BC892A091DDDF1E0E2FB00FE77E4] - (.Power Software Ltd - PowerISO Virtual Drive Manager.) -- C:\Program Files\PowerISO\PWRISOVM.EXE [366904] [PID.228] {227EFDF22825BA270530FB09D52B32F8} ©
[MD5.CF64E84BBAFEB46043C61E71384BC129] - (.Tonec Inc. - Internet Download Manager.) -- C:\Program Files\Tonec\IDMan.exe [3413400] [PID.472] ©
[MD5.F6987FF6C6D683F79FDCE707B071A997] - (.SFX TEAM - SuperCopier 2 (explorer file copy replaceme.) -- C:\Program Files\SuperCopier2\SuperCopier2.exe [955392] [PID.572] ©
[MD5.472A00D2183C9E5EDB3E076272741812] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 169.2.) -- C:\WINDOWS\system32\nvsvc32.exe [155716] [PID.536] ©
[MD5.C8F004ADA53A0784F032CF064CC5F531] - (.BlackBerry Limited - BlackBerry Device Manager.) -- C:\Program Files\Fichiers communs\Research In Motion\USB Drivers\BbDevMgr.exe [585728] [PID.4092]
[MD5.207B16FA69F61D1895F8D8532F587E4B] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files\Tonec\IEMonitor.exe [263600] [PID.672] {37C31A45581EE6AE2C92EBB87E82C537} ©
[MD5.45E5113A1E10B134469D0C7A59A88830] - (.© 2004-2006 Samuel Monsarrat - Cyber Café administration - Server..) -- C:\Program Files\Cybera Server\cybserv.exe [3452928] [PID.476]
[MD5.BCDFB81140E7B0423CF9D292E4F8CA99] - (.THe UDS - Finish Time Lite.) -- C:\Program Files\FinishTime Lite\FinishTime.exe [326910] [PID.3628]
[MD5.233B5852363BFB41D73D219FA8528AF4] - (.BitTorrent Inc. - WebHelper.) -- C:\Documents and Settings\Administrateur\Application Data\uTorrent\updates\3.4.5_41372\utorrentie.exe [336896] [PID.236]
[MD5.B8F25BBFA9525DFA544CB165C10615AF] - (.Enigma Software Group USA, LLC. - SpyHunter4 application.) -- C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe [7175552] [PID.4028] {4549D6525BEC58AA524A1CE9E786B4E9} =>.Superfluous.SpyHunter
[MD5.633B6204CCEF51D1DF7293C23BBB35CF] - (.Copyright (C) 2015 Nicolas Coolman - ZHPDiag.) -- C:\Documents and Settings\Administrateur\Mes documents\Downloads\Programs\ZHPDiag3.exe [2019328] [PID.1924] ©
[MD5.633B6204CCEF51D1DF7293C23BBB35CF] - (.Copyright (C) 2015 Nicolas Coolman - ZHPDiag.) -- C:\Documents and Settings\Administrateur\Mes documents\Downloads\Programs\ZHPDiag3.exe [2019328] [PID.2264] ©

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (8) - 7s
P2 - EXT: (.mozilla.org - Default Plug-in.) -- C:\Program Files\Mozilla Firefox\Plugins\npnul32.dll
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.FRA
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\Plugins\QuickTimePlugin.class
P2 - EXT FILE: (...) -- C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\p3swq7je.default-1449994560843\extensions\ffext_basicvideoext@startpage24.xpi
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ©
P2 - EXT: (.Mindspark - PConverter.) -- C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\p3swq7je.default-1449994560843\extensions\_dzMembers_@www.pconverter.com =>PUP.Optional.MyWebSearch
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_19_0_0_245.dll ©
P2 - FPN: [HKLM] [@RIM.com/WebSLLauncher,version=1.0] - (.Research In Motion.) -- C:\Program Files\Fichiers communs\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll ©

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (13) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = nohomepageset
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 0

---\\ Internet Explorer,Proxy Management (5) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (20)

---\\ Browser Helper Object de navigateur (BHO) (5) - 0s
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files\Tonec\IDMIECC.dll {4660FC32BD521D77F211C1336AA98B9E} ©
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} . (.Hewlett-Packard Co. - HP Smart Web Printing add-on for Internet E.) -- C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll =>.Hewlett-Packard Company®
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll =>.Adobe Systems, Incorporated®
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll {29ABBFB304A781829FD1E62C773A4AFF} ©
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} . (.Hewlett-Packard Co. - HP Smart Web Printing add-on for Internet E.) -- C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll =>.Hewlett-Packard Company®

---\\ Applications lancées au démarrage du système (28) - 11s
O4 - HKLM\..\Run: [RTHDCPL] . (.Realtek Semiconductor Corp. - Realtek HD Audio Control Panel.) -- C:\WINDOWS\RTHDCPL.EXE ©
O4 - HKLM\..\Run: [Alcmtr] . (.Realtek Semiconductor Corp. - Realtek Azalia Audio - Event Monitor.) -- C:\WINDOWS\ALCMTR.EXE ©
O4 - HKLM\..\Run: [VirtualCloneDrive] . (.Elaborate Bytes AG - Virtual CloneDrive Daemon.) -- C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe {0100000000010F5C98B8F5} ©
O4 - HKLM\..\Run: [NvCplDaemon] . (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\RUNDLL32.EXE ©
O4 - HKLM\..\Run: [egui] . (.ESET - ESET GUI.) -- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe =>.ESET, spol. s r.o.®
O4 - HKLM\..\Run: [USB Antivirus] . (.Zbshareware Lab - Antivirus software.) -- C:\Program Files\USB Disk Security\USBGuard.exe ©
O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager.) -- C:\Program Files\Tonec\IDMan.exe ©
O4 - HKCU\..\Run: [SuperCopier2.exe] . (.SFX TEAM - SuperCopier 2 (explorer file copy replaceme.) -- C:\Program Files\SuperCopier2\SuperCopier2.exe ©
O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Documents and Settings\Administrateur\Application Data\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKCU\..\Run: [BingSvc] . (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\BingSvc\BingSvc.exe =>.Microsoft Corporation®
O4 - HKCU\..\Run: [BlackBerryLink.exe] C:\Program Files\Research In Motion\BlackBerry Link\BlackBerryLink.exe (.not file.)
O4 - HKCU\..\Run: [santa_svc] C:\Documents and Settings\Administrateur\Application Data\ugioqacroic.exe (.not file.)
O4 - HKUS\.DEFAULT\..\RunOnce: [JkDefrag] rundll32 advpack.dll,LaunchINFSection JKDEFRAG.INF,RunOnce,1,N
O4 - HKUS\.DEFAULT\..\RunOnce: [SweetRegistry] rundll32 advpack.dll,LaunchINFSection SweetReg.inf,PerUserStub
O4 - HKUS\S-1-5-18\..\RunOnce: [JkDefrag] rundll32 advpack.dll,LaunchINFSection JKDEFRAG.INF,RunOnce,1,N
O4 - HKUS\S-1-5-18\..\RunOnce: [SweetRegistry] rundll32 advpack.dll,LaunchINFSection SweetReg.inf,PerUserStub
O4 - HKUS\S-1-5-19\..\RunOnce: [JkDefrag] rundll32 advpack.dll,LaunchINFSection JKDEFRAG.INF,RunOnce,1,N
O4 - HKUS\S-1-5-19\..\RunOnce: [SweetRegistry] rundll32 advpack.dll,LaunchINFSection SweetReg.inf,PerUserStub
O4 - HKUS\S-1-5-20\..\RunOnce: [JkDefrag] rundll32 advpack.dll,LaunchINFSection JKDEFRAG.INF,RunOnce,1,N
O4 - HKUS\S-1-5-20\..\RunOnce: [SweetRegistry] rundll32 advpack.dll,LaunchINFSection SweetReg.inf,PerUserStub
O4 - HKUS\S-1-5-21-1801674531-861567501-682003330-500\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager.) -- C:\Program Files\Tonec\IDMan.exe ©
O4 - HKUS\S-1-5-21-1801674531-861567501-682003330-500\..\Run: [SuperCopier2.exe] . (.SFX TEAM - SuperCopier 2 (explorer file copy replaceme.) -- C:\Program Files\SuperCopier2\SuperCopier2.exe ©
O4 - HKUS\S-1-5-21-1801674531-861567501-682003330-500\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Documents and Settings\Administrateur\Application Data\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - HKUS\S-1-5-21-1801674531-861567501-682003330-500\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKUS\S-1-5-21-1801674531-861567501-682003330-500\..\Run: [BingSvc] . (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\BingSvc\BingSvc.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-1801674531-861567501-682003330-500\..\Run: [BlackBerryLink.exe] C:\Program Files\Research In Motion\BlackBerry Link\BlackBerryLink.exe (.not file.)
O4 - HKUS\S-1-5-21-1801674531-861567501-682003330-500\..\Run: [santa_svc] C:\Documents and Settings\Administrateur\Application Data\ugioqacroic.exe (.not file.)

---\\ Modification Domaine/Adresses DNS (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1 =>.Google Public DNS
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1 =>.Google Public DNS
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 196.192.32.5,41.188.9.130

---\\ Protocole additionnel (28) - 1s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll ©
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll ©
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API.) -- C:\WINDOWS\system32\inetcomm.dll ©
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation®
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll ©
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll ©
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} . (.Microsoft Corporation - WIA Scripting Layer.) -- C:\WINDOWS\system32\wiascr.dll ©
O18 - Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Program Files\Windows Live\Mail\mailcomm.dll {610F784D000000000003} ©
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll ©
O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ Logiciels installés (107) - 75s
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU] -- uTorrent =>.BitTorrent Inc®
O42 - Logiciel: 32 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM] -- {60FFB3E0-6D5B-4D73-AE5B-07E58B83AF0C} ©
O42 - Logiciel: Adobe Flash Player 19 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Reader 9 - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-A90000000001} ©
O42 - Logiciel: Archiveur WinRAR - (...) [HKLM] -- WinRAR archiver
O42 - Logiciel: BlackBerry Desktop Software 7.1 - (.Research In Motion Ltd..) [HKLM] -- {BE5B0450-DCCB-4FE9-93E2-3B38D88A745B} ©
O42 - Logiciel: BlackBerry Desktop Software 7.1 - (.Research In Motion Ltd..) [HKLM] -- BlackBerry_Desktop =>.Research In Motion®
O42 - Logiciel: BufferChm - (.Hewlett-Packard.) [HKLM] -- {FA0FF682-CC70-4C57-93CD-E276F3E7537E} ©
O42 - Logiciel: ClearType Tuning - (...) [HKLM] -- ClearTypeCPL
O42 - Logiciel: Combined Community Codec Pack 2008-09-21 16:18 - (.CCCP Project.) [HKLM] -- Combined Community Codec Pack_is1 ©
O42 - Logiciel: Copy - (.Hewlett-Packard.) [HKLM] -- {9BE466FF-70B7-4DA8-807C-DB4C3610FDAA} ©
O42 - Logiciel: CPU-Z - (...) [HKLM] -- CPUZ
O42 - Logiciel: CSPro 4.1 - (.U.S. Census Bureau.) [HKLM] -- {58E555FD-D951-4305-AE35-025162E68D84}
O42 - Logiciel: CSPro 4.1 - (.U.S. Census Bureau.) [HKLM] -- {7E1900A9-303A-43D6-A16A-34F60E566313}
O42 - Logiciel: CurrPorts - (...) [HKLM] -- CurrPorts
O42 - Logiciel: Cybera Server - (...) [HKLM] -- Cybera Server
O42 - Logiciel: Destinations - (.Hewlett-Packard.) [HKLM] -- {BD7204BA-DD64-499E-9B55-6A282CDF4FA4} ©
O42 - Logiciel: DeviceDiscovery - (.Hewlett-Packard.) [HKLM] -- {1458BB78-1DC5-4BC0-B9A3-2B644F5A8105} ©
O42 - Logiciel: DJ_AIO_06_F2400_SW_Min - (.Hewlett-Packard.) [HKLM] -- {5546F4E9-B0F4-4F54-B949-2AB006C9284F} ©
O42 - Logiciel: DJ_SF_03_D2500_Software_Min - (.Hewlett-Packard.) [HKLM] -- {7236B969-6A18-42DD-ADE4-BBA2604F34C8} ©
O42 - Logiciel: ESET NOD32 Antivirus - (.ESET, spol. s r.o..) [HKLM] -- {5B038617-3B06-4499-BCB3-7D13EDE4EF8C}
O42 - Logiciel: F2400 - (.Hewlett-Packard.) [HKLM] -- {6DBB66CD-38C7-472C-BBB9-06BFDA182A29} ©
O42 - Logiciel: FinishTime Lite - (...) [HKLM] -- FinishTime Lite
O42 - Logiciel: FormatFactory 3.8.0.0 - (.Free Time.) [HKLM] -- FormatFactory ©
O42 - Logiciel: Free Sound Recorder v10.5.1 - (.Copyright(C) 2005-2015 FreeSoundRecorder Technologies, Inc..) [HKLM] -- Free Sound Recorder_is1
O42 - Logiciel: GoRC - (...) [HKLM] -- GoRC
O42 - Logiciel: GPBaseService2 - (.Hewlett-Packard.) [HKLM] -- {BB3447F6-9553-4AA9-960E-0DB5310C5779} ©
O42 - Logiciel: GPU-Z - (...) [HKLM] -- GPUZ
O42 - Logiciel: HD Tune - (...) [HKLM] -- HDTune
O42 - Logiciel: Hotfix for Windows XP (KB954550-v5) - (.Microsoft Corporation.) [HKLM] -- KB954550-v5 ©
O42 - Logiciel: HP Customer Participation Program 14.0 - (.HP.) [HKLM] -- HPExtendedCapabilities =>.Hewlett Packard®
O42 - Logiciel: HP Deskjet D2500 Printer Driver Software 11.0 Rel .3 - (.HP.) [HKLM] -- {D10AB8DE-0ED1-4152-A247-FB89CF1435D5} =>.Hewlett Packard®
O42 - Logiciel: HP Deskjet F2400 All-in-One Driver Software 14.0 Rel. 6 - (.HP.) [HKLM] -- {819CA3BC-2FF8-4811-B42F-421F7BFD3559} =>.Hewlett Packard®
O42 - Logiciel: HP Imaging Device Functions 14.0 - (.HP.) [HKLM] -- HP Imaging Device Functions =>.Hewlett Packard®
O42 - Logiciel: HP LaserJet Professional M1130-M1210 MFP Series - (...) [HKLM] -- HP LaserJet Professional M1130-M1210 MFP Series =>.Hewlett-Packard Company®
O42 - Logiciel: HP Smart Web Printing 4.60 - (.HP.) [HKLM] -- HP Smart Web Printing =>.Hewlett Packard®
O42 - Logiciel: HP Solution Center 14.0 - (.HP.) [HKLM] -- HP Solution Center & Imaging Support Tools =>.Hewlett Packard®
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM] -- {74DC0593-6BC6-4001-AD5F-D810AFB68D86} ©
O42 - Logiciel: hppLaserJetService - (.Hewlett-Packard.) [HKLM] -- {D371F551-0DB9-4CEC-844B-4C90CE91EA0B} ©
O42 - Logiciel: hppM1130M1210SeriesLaserJetService - (.Hewlett-Packard.) [HKLM] -- {0E448256-D515-4C3E-A5BE-0A7B76CED5D4} ©
O42 - Logiciel: HPProductAssistant - (.Hewlett-Packard.) [HKLM] -- {150B6201-E9E6-4DFB-960E-CCBD53FBDDED} ©
O42 - Logiciel: hppusgM1130M1210Series - (.Hewlett-Packard.) [HKLM] -- {DA6CC3A5-1F5B-4068-8BFF-C597BB6B8158} ©
O42 - Logiciel: HPSSupply - (.Hewlett-Packard.) [HKLM] -- {AC35A885-0F8F-4857-B7DA-6E8DFB43E6B3} ©
O42 - Logiciel: HWMonitor - (...) [HKLM] -- HWMonitor
O42 - Logiciel: ImgBurn - (.LIGHTNING UK!.) [HKLM] -- ImgBurn
O42 - Logiciel: Internet Download Manager version 7.1 - (.Tonec, Inc..) [HKLM] -- {15249A89-18CC-47CC-8D4A-C08B4DA17698}_is1
O42 - Logiciel: Java(TM) 6 Update 7 - (.Sun Microsystems, Inc..) [HKLM] -- {3248F0A8-6813-11D6-A77B-00B0D0160070} ©
O42 - Logiciel: JkDefrag - (...) [HKLM] -- JkDefrag
O42 - Logiciel: KaraFun Player - (.Recisio.) [HKLM] -- KaraFun Player_is1 ©
O42 - Logiciel: Karaoke Video Creator - (.Doblon.) [HKLM] -- {1E163AFB-7BAF-45C8-84CF-E9C732561DBF}_is1 ©
O42 - Logiciel: MarketResearch - (.Hewlett-Packard.) [HKLM] -- {D360FA88-17C8-4F14-B67F-13AAF9607B12} ©
O42 - Logiciel: MemTest - (...) [HKLM] -- MemTest
O42 - Logiciel: Micro Application - Diaporama Créateur Photo Haute Définition - (...) [HKLM] -- {C34E6C89-D11D-4581-9735-B4D58F535409}
O42 - Logiciel: Microsoft DirectX Control Panel 9.0c - (...) [HKLM] -- DirectXCPL
O42 - Logiciel: Microsoft Kernel-Mode Driver Framework Feature Pack 1.9 - (.Microsoft Corporation.) [HKLM] -- Wdf01009 {610F784D000000000003} ©
O42 - Logiciel: Microsoft Software Update for Web Folders (French) 12 - (.Microsoft Corporation.) [HKLM] -- {90120000-0010-040C-0000-0000000FF1CE} ©
O42 - Logiciel: Mozilla Firefox 43.0 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 43.0 (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService ©
O42 - Logiciel: MP3 Karaoke 6.1.9.a - (.Accmeware Corporation.) [HKLM] -- 119C21A0-FA78-44AE-91B0-C02E39E1829D_is1
O42 - Logiciel: Nero 8 Lite 8.3.6.0 - (.Updatepack.nl.) [HKLM] -- Nero8Lite_is1 {03BBBE}
O42 - Logiciel: Nero Info Tool - (...) [HKLM] -- InfoTool
O42 - Logiciel: Notepad++ - (...) [HKLM] -- Notepad++
O42 - Logiciel: NSS (remove only) - (.B-Phreaks Ltd.) [HKLM] -- NSS
O42 - Logiciel: NVIDIA Drivers - (...) [HKLM] -- NVIDIA Drivers
O42 - Logiciel: Open Command Prompt Shell Extension - (.Kai Liu.) [HKLM] -- CmdOpen ©
O42 - Logiciel: Opera Stable 33.0.1990.115 - (.Opera Software.) [HKLM] -- Opera 33.0.1990.115 =>.Opera Software ASA®
O42 - Logiciel: PDFCreator - (.pdfforge.) [HKLM] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D} ©
O42 - Logiciel: PhotoFiltre 7 - (...) [HKCU] -- PhotoFiltre 7
O42 - Logiciel: PhotoPad Image Editor - (.NCH Software.) [HKLM] -- PhotoPad {6A560820FA3E9AD8E5411734B1D40AD5} ©
O42 - Logiciel: PicosmosTools 1.2.5.0 - (.Free Time.) [HKLM] -- PicosmosTools ©
O42 - Logiciel: Pixillion - Convertisseur de fichiers image - (.NCH Software.) [HKLM] -- Pixillion {6A560820FA3E9AD8E5411734B1D40AD5} ©
O42 - Logiciel: PowerISO - (.Power Software Ltd.) [HKLM] -- PowerISO ©
O42 - Logiciel: Prism - Convertisseur de fichiers vidéo - (.NCH Software.) [HKLM] -- Prism {58D9B9D38780932DD1CBC58A2AD28B1C} ©
O42 - Logiciel: Pserv - (...) [HKLM] -- Pserv
O42 - Logiciel: PuTTY - (...) [HKLM] -- PuTTY
O42 - Logiciel: QT Lite 2.7.0 - (...) [HKLM] -- qt7lite_is1
O42 - Logiciel: QuickPar 0.9 - (.Peter B. Clements.) [HKLM] -- QuickPar ©
O42 - Logiciel: Quicksys RegDefrag - (...) [HKLM] -- RegDefrag
O42 - Logiciel: Real Alternative 1.8.4 Lite - (...) [HKLM] -- RealAlt_is1
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} ©
O42 - Logiciel: RegScanner - (...) [HKLM] -- RegScanner
O42 - Logiciel: Scan - (.Hewlett-Packard.) [HKLM] -- {06A1D88C-E102-4527-AF70-29FFD7AF215A} ©
O42 - Logiciel: Scan To - (.HP.) [HKLM] -- {E8A34AC8-0137-4515-A94B-0A0946DDC251} ©
O42 - Logiciel: Shop for HP Supplies - (.HP.) [HKLM] -- Shop for HP Supplies =>.Hewlett Packard®
O42 - Logiciel: simplitec simplicheck - (.simplitec GmbH.) [HKLM] -- {C4EE86B9-8D74-4689-B6F6-B94FBC55AF02}
O42 - Logiciel: Skype™ 7.13 - (.Skype Technologies S.A..) [HKLM] -- {6A0549A9-1B96-498C-ACBC-3943001FEB19} ©
O42 - Logiciel: SmartWebPrinting - (.Hewlett-Packard.) [HKLM] -- {8FF6F5CA-4E30-4E3B-B951-204CAAA2716A} ©
O42 - Logiciel: SolutionCenter - (.Hewlett-Packard.) [HKLM] -- {5DCF0E4B-F8EA-4229-A0BD-5CA6D4AFB749} ©
O42 - Logiciel: SpyHunter 4 - (.Enigma Software Group, LLC.) [HKLM] -- SpyHunter {4549D6525BEC58AA524A1CE9E786B4E9} =>.Superfluous.SpyHunter
O42 - Logiciel: Status - (.Hewlett-Packard.) [HKLM] -- {2FB9EA69-51D4-4913-9AD5-762C034DE811} ©
O42 - Logiciel: SuperCopier2 - (...) [HKLM] -- SuperCopier2
O42 - Logiciel: Sysinternals Suite - (...) [HKLM] -- Sysinternals
O42 - Logiciel: Toolbox - (.Hewlett-Packard.) [HKLM] -- {292F0F52-B62D-4E71-921B-89A682402201} ©
O42 - Logiciel: TrayApp - (.Hewlett-Packard.) [HKLM] -- {CD31E63D-47FD-491C-8117-CF201D0AFAB5} ©
O42 - Logiciel: Tweak UI - (...) [HKLM] -- TweakUI
O42 - Logiciel: Unlocker 1.8.7 - (.Cedrick Collomb.) [HKLM] -- Unlocker ©
O42 - Logiciel: Update for Office 2007 (KB946691) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{A420F522-7395-4872-9882-C591B4B92278} ©
O42 - Logiciel: Update for Outlook 2007 Junk Email Filter (kb956080) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{96CC215F-3F22-4E1E-A101-F0041934A456} ©
O42 - Logiciel: USB Disk Security 5.1.0.15 - (.zbshareware, Inc..) [HKLM] -- USB Disk Security_is1
O42 - Logiciel: Utilitaires Gnu Unix - (.GnuWin32.) [HKLM] -- Unix
O42 - Logiciel: VirtualCloneDrive - (.Elaborate Bytes.) [HKLM] -- VirtualCloneDrive ©
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player ©
O42 - Logiciel: WebFldrs XP - (.Microsoft Corporation.) [HKLM] -- {350C940c-3D7C-4EE8-BAA9-00BCB3D54227} ©
O42 - Logiciel: WebReg - (.Hewlett-Packard.) [HKLM] -- {8EE94FD8-5F52-4463-A340-185D16328158} ©
O42 - Logiciel: Windows Installer CleanUp - (...) [HKLM] -- MSI
O42 - Logiciel: XnView 1.94 - (.Gougelet Pierre-e.) [HKLM] -- XnView_is1 ©
O42 - Logiciel: XnView Shell Extension 2.4.0 - (.Gougelet Pierre-e.) [HKLM] -- XnView Shell Extension_is1 ©

---\\ HKCU & HKLM Software Keys (155) - 76s
HKLM\SOFTWARE\Accmeware
HKLM\SOFTWARE\Acoustica
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\Ahead
HKLM\SOFTWARE\Apple Computer, Inc.
HKLM\SOFTWARE\Apple Inc.
HKLM\SOFTWARE\AviSynth
HKLM\SOFTWARE\C07ft5Y
HKLM\SOFTWARE\Combined-Community-Codec-Pack
HKLM\SOFTWARE\Conduit =>PUP.Optional.Conduit
HKLM\SOFTWARE\Cybera Server
HKLM\SOFTWARE\digitalliquid
HKLM\SOFTWARE\Elaborate Bytes
HKLM\SOFTWARE\Electronic Arts
HKLM\SOFTWARE\EnigmaSoftwareGroup
HKLM\SOFTWARE\ESET
HKLM\SOFTWARE\Extended Systems
HKLM\SOFTWARE\Gabest
HKLM\SOFTWARE\Gemplus
HKLM\SOFTWARE\GNU
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\HaaliMkx
HKLM\SOFTWARE\Hewlett-Packard
HKLM\SOFTWARE\HewlettPackard
HKLM\SOFTWARE\ICE
HKLM\SOFTWARE\IM Providers
HKLM\SOFTWARE\ImgBurn
HKLM\SOFTWARE\Infogrames
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\Internet Download Manager
HKLM\SOFTWARE\InterVideo
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\Lavasoft
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Marvell
HKLM\SOFTWARE\McAfee.com
HKLM\SOFTWARE\Micro Application
HKLM\SOFTWARE\MOVAVI
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\NCH Software
HKLM\SOFTWARE\NCH Swift Sound
HKLM\SOFTWARE\Nero
HKLM\SOFTWARE\Notepad++
HKLM\SOFTWARE\NSS
HKLM\SOFTWARE\NVIDIA Corporation
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\Opera Software
HKLM\SOFTWARE\PDF Architect 4
HKLM\SOFTWARE\PDF Tools AG
HKLM\SOFTWARE\pdfforge
HKLM\SOFTWARE\PicosmosShows
HKLM\SOFTWARE\PicosmosTools
HKLM\SOFTWARE\PowerISO
HKLM\SOFTWARE\Program Groups
HKLM\SOFTWARE\QTLite
HKLM\SOFTWARE\RealAlternative
HKLM\SOFTWARE\RealNetworks
HKLM\SOFTWARE\Realtek
HKLM\SOFTWARE\RECISIO
HKLM\SOFTWARE\Redemption
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\Research In Motion
HKLM\SOFTWARE\Schlumberger
HKLM\SOFTWARE\Secure
HKLM\SOFTWARE\simplitec
HKLM\SOFTWARE\Skype
HKLM\SOFTWARE\THe UDS
HKLM\SOFTWARE\Tracker Software
HKLM\SOFTWARE\U.S. Census Bureau
HKLM\SOFTWARE\VideoLAN
HKLM\SOFTWARE\VST
HKLM\SOFTWARE\Windows 3.1 Migration Status
HKLM\SOFTWARE\zbshareware
HKCU\SOFTWARE\3CF3D12B66DF90BB =>PUP.Optional.Heuristic
HKCU\SOFTWARE\Accmeware Corporation
HKCU\SOFTWARE\Acoustica
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Ahead
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Applied Acoustics Systems
HKCU\SOFTWARE\ASIO
HKCU\SOFTWARE\B-Phreaks
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\Conduit =>PUP.Optional.Conduit
HKCU\SOFTWARE\Cybera Server
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\Doblon
HKCU\SOFTWARE\DownloadManager
HKCU\SOFTWARE\dx20120105
HKCU\SOFTWARE\Elaborate Bytes
HKCU\SOFTWARE\ESET
HKCU\SOFTWARE\Extended Systems
HKCU\SOFTWARE\Free Sound Recorder
HKCU\SOFTWARE\FreeAudioVideo
HKCU\SOFTWARE\FreeTime
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\GameSpy
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\Hewlett-Packard
HKCU\SOFTWARE\HP
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\ImgBurn
HKCU\SOFTWARE\Inno
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\iZotope
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Magix
HKCU\SOFTWARE\MainConcept
HKCU\SOFTWARE\Marvell
HKCU\SOFTWARE\Micro Application
HKCU\SOFTWARE\MOVAVI
HKCU\SOFTWARE\MOVDLTool
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MTK
HKCU\SOFTWARE\NCH Software
HKCU\SOFTWARE\NCH Swift Sound
HKCU\SOFTWARE\Nero
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\p-nand-q.com
HKCU\SOFTWARE\PDF Architect 4
HKCU\SOFTWARE\PDF Tools AG
HKCU\SOFTWARE\pdfforge
HKCU\SOFTWARE\PhotoFiltre 7
HKCU\SOFTWARE\Picosmos
HKCU\SOFTWARE\PowerISO
HKCU\SOFTWARE\QuickPar
HKCU\SOFTWARE\RealNetworks
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\RECISIO
HKCU\SOFTWARE\Redemption
HKCU\SOFTWARE\Research In Motion
HKCU\SOFTWARE\SFX TEAM
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Sony Creative Software
HKCU\SOFTWARE\Sysinternals
HKCU\SOFTWARE\techPowerUp
HKCU\SOFTWARE\Toggle
HKCU\SOFTWARE\Tracker Software
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Tukero[X]Team
HKCU\SOFTWARE\U.S. Census Bureau
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\WPI
HKCU\SOFTWARE\XnView
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\zsys

---\\ Contenu des dossiers Programmes (214) - 28s
O43 - CFD: 13/12/2015 - [] D -- C:\Program Files\Acoustica Mixcraft 7
O43 - CFD: 07/11/2015 - [] D -- C:\Program Files\Adobe
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Combined Community Codec Pack
O43 - CFD: 31/10/2015 - [0] D -- C:\Program Files\ComPlus Applications
O43 - CFD: 12/12/2015 - [] D -- C:\Program Files\Corel
O43 - CFD: 28/11/2015 - [] D -- C:\Program Files\CSPro 4.1
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Cybera Server
O43 - CFD: 11/12/2015 - [] D -- C:\Program Files\Doblon
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Elaborate Bytes
O43 - CFD: 17/12/2015 - [] D -- C:\Program Files\Enigma Software Group =>.Superfluous.SpyHunter
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\ESET
O43 - CFD: 13/12/2015 - [] D -- C:\Program Files\Fichiers communs
O43 - CFD: 17/12/2015 - [] D -- C:\Program Files\FinishTime Lite
O43 - CFD: 02/11/2015 - [] D -- C:\Program Files\FormatFactory
O43 - CFD: 07/11/2015 - [] D -- C:\Program Files\Free Sound Recorder
O43 - CFD: 15/12/2015 - [] D -- C:\Program Files\GameSpy Arcade
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Hewlett-Packard
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\HP
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\ImgBurn
O43 - CFD: 13/12/2015 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Java
O43 - CFD: 27/11/2015 - [] D -- C:\Program Files\KaraFun Player
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Lavasoft
O43 - CFD: 13/12/2015 - [] D -- C:\Program Files\Micro Application
O43 - CFD: 07/11/2015 - [] D -- C:\Program Files\Microsoft Office
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Microsoft Silverlight
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Microsoft Visual Studio
O43 - CFD: 07/11/2015 - [] D -- C:\Program Files\Microsoft Visual Studio 8
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Microsoft Works
O43 - CFD: 07/11/2015 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Movie Maker
O43 - CFD: 16/12/2015 - [] D -- C:\Program Files\Mozilla Firefox
O43 - CFD: 16/12/2015 - [] D -- C:\Program Files\Mozilla Maintenance Service
O43 - CFD: 13/12/2015 - [] D -- C:\Program Files\MP3 Karaoke
O43 - CFD: 07/11/2015 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\MSECache
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\MSN Gaming Zone
O43 - CFD: 17/12/2015 - [] D -- C:\Program Files\NCH Software
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Nero
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\NetMeeting
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Notepad++
O43 - CFD: 28/11/2015 - [] D -- C:\Program Files\NSS
O43 - CFD: 20/11/2015 - [] D -- C:\Program Files\Opera
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Outlook Express
O43 - CFD: 02/11/2015 - [0] D -- C:\Program Files\PDF Architect 4
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\PDFCreator
O43 - CFD: 02/11/2015 - [] D -- C:\Program Files\PhotoFiltre 7
O43 - CFD: 02/11/2015 - [] D -- C:\Program Files\PicosmosTools
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\PowerISO
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\PuTTY
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\QT Lite
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\QuickPar
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Real Alternative
O43 - CFD: 07/11/2015 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 08/11/2015 - [] D -- C:\Program Files\Research In Motion
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Services en ligne
O43 - CFD: 04/11/2015 - [] D -- C:\Program Files\simplitec
O43 - CFD: 31/10/2015 - [] RD -- C:\Program Files\Skype
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\SuperCopier2
O43 - CFD: 05/11/2015 - [] D -- C:\Program Files\Tonec
O43 - CFD: 31/10/2015 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Unlocker
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\USB Disk Security
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Utilitaires
O43 - CFD: 02/11/2015 - [] D -- C:\Program Files\VideoLAN
O43 - CFD: 12/12/2015 - [0] D -- C:\Program Files\VST
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Windows Live
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Windows Media Connect 2
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 31/10/2015 - [0] HD -- C:\Program Files\WindowsUpdate
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\WinRAR
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\XnView
O43 - CFD: 16/12/2015 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\BlackBerry
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Combined Community Codec Pack
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CSPro 4.1
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Cybera Server
O43 - CFD: 16/12/2015 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ESET
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\FinishTime Lite
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HP
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Internet Download Manager
O43 - CFD: 16/12/2015 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\KaraFun Player
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Karaoke Video Creator
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Micro Application
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Office
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Mozilla Firefox
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\MP3 Karaoke
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Nero
O43 - CFD: 16/12/2015 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\PDFCreator
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\PowerISO
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Programmes de graphisme
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Programmes de vidéo
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\QT Lite
O43 - CFD: 17/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Real Alternative
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\simplitec
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Skype
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\USB Disk Security
O43 - CFD: 17/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Virtual CloneDrive
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Windows Sweet
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\XnView
O43 - CFD: 12/12/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Acoustica
O43 - CFD: 07/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Adobe
O43 - CFD: 07/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Adobe Systems
O43 - CFD: 31/10/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Apple Computer
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Cybera Server
O43 - CFD: 21/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\CyberLink
O43 - CFD: 31/10/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\ESET
O43 - CFD: 04/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Hewlett-Packard
O43 - CFD: 31/10/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\HP
O43 - CFD: 31/10/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\HP Product Assistant
O43 - CFD: 04/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\MAGIX
O43 - CFD: 12/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\McAfee
O43 - CFD: 09/12/2015 - [] SD -- C:\Documents and Settings\All Users\Application Data\Microsoft
O43 - CFD: 14/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Microsoft Help
O43 - CFD: 04/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Movavi Video Editor 10
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\NCH Software
O43 - CFD: 31/10/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Nero
O43 - CFD: 02/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\PDF Architect 4
O43 - CFD: 31/10/2015 - [0] D -- C:\Documents and Settings\All Users\Application Data\Real
O43 - CFD: 08/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Recisio
O43 - CFD: 07/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Research In Motion
O43 - CFD: 04/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\simplitec
O43 - CFD: 31/10/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Skype
O43 - CFD: 28/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\SP_FT_Logs
O43 - CFD: 31/10/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\WEBREG
O43 - CFD: 07/11/2015 - [] D -- C:\Program Files\Fichiers communs\Adobe
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Fichiers communs\DESIGNER
O43 - CFD: 11/12/2015 - [] D -- C:\Program Files\Fichiers communs\Doblon
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Fichiers communs\Hewlett-Packard
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Fichiers communs\HP
O43 - CFD: 13/12/2015 - [] D -- C:\Program Files\Fichiers communs\InstallShield
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Fichiers communs\Java
O43 - CFD: 07/11/2015 - [] D -- C:\Program Files\Fichiers communs\Microsoft Shared
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Fichiers communs\MSSoap
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Fichiers communs\Nero
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Fichiers communs\ODBC
O43 - CFD: 12/12/2015 - [] D -- C:\Program Files\Fichiers communs\Propellerhead Software
O43 - CFD: 08/11/2015 - [] D -- C:\Program Files\Fichiers communs\Research In Motion
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Fichiers communs\Services
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Fichiers communs\Skype
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\Fichiers communs\SpeechEngines
O43 - CFD: 07/11/2015 - [] D -- C:\Program Files\Fichiers communs\System
O43 - CFD: 08/11/2015 - [] D -- C:\Program Files\Fichiers communs\XCPCSync.OEM
O43 - CFD: 17/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Adobe
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Cool Record Edit Pro
O43 - CFD: 17/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\DMCache
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Doblon
O43 - CFD: 17/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Enigma Software Group =>.Superfluous.SpyHunter
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Free Sound Recorder
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\HP
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\HPAppData
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\HpUpdate
O43 - CFD: 17/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\IDM
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Macromedia
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\MAGIX
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Media Player Classic
O43 - CFD: 16/12/2015 - [] SD -- C:\Documents and Settings\Administrateur\Application Data\Microsoft
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Mikrotik
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Mozilla
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\MP3 Karaoke
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\NCH Software
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Nero
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\New Version Available
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Notepad++
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\OpenCandy =>PUP.Optional.OpenCandy
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Opera Software
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\PDF Architect 4
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\PhotoFiltre 7
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\PowerISO
O43 - CFD: 16/12/2015 - [0] D -- C:\Documents and Settings\Administrateur\Application Data\Real
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Research In Motion
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\simplitec
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Skype
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Sony
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Sun
O43 - CFD: 16/12/2015 - [0] D -- C:\Documents and Settings\Administrateur\Application Data\SynthMaker
O43 - CFD: 17/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\uTorrent
O43 - CFD: 17/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\vlc
O43 - CFD: 16/12/2015 - [0] D -- C:\Documents and Settings\Administrateur\Application Data\WinRAR
O43 - CFD: 17/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\ZHP
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Adobe
O43 - CFD: 16/12/2015 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Deshaker
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\ESET
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Identities
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\MAGIX
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mega Limited
O43 - CFD: 16/12/2015 - [] SD -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft
O43 - CFD: 16/12/2015 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft Help
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Movavi
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Opera Software
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\PDFCreator
O43 - CFD: 16/12/2015 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Real
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Research In Motion
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Skype
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Trolltech
O43 - CFD: 16/12/2015 - [] RD -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 16/12/2015 - [] RD -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\FormatFactory
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\ImgBurn
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Notepad++
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\NSS
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\PhotoFiltre 7
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\PicosmosTools
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Programmes de graphisme
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\SuperCopier2
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\WinRAR

---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 0s
O106 - SIOI: Offline Files Menu [Fichiers hors connexion] - {750fdf0e-2a26-11d1-a3ea-080036587f03}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\system32\cscui.dll ©
O106 - SIOI: IDM Shell Extension [IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files\Tonec\IDMShellExt.dll {4660FC32BD521D77F211C1336AA98B9E} ©

---\\ Liste des pilotes du système (50) - 8s
O58 - SDL:2006/06/19 06:37:34 A . (.Advanced Micro Devices - AMD Processor Driver.) -- C:\WINDOWS\System32\drivers\AmdK8.sys [36864] ©
O58 - SDL:2008/09/27 13:31:20 A . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\System32\drivers\cinemst2.sys [262528] ©
O58 - SDL:2008/09/27 13:31:20 A . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\System32\drivers\cpqdap01.sys [11776] ©
O58 - SDL:2008/04/13 20:05:08 A . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- C:\WINDOWS\System32\drivers\dmboot.sys [800256] ©
O58 - SDL:2008/04/14 15:00:00 A . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\System32\drivers\dmio.sys [154496] ©
O58 - SDL:2008/04/14 15:00:00 A . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\System32\drivers\dmload.sys [5888] ©
O58 - SDL:2011/08/09 16:24:52 A . (.ESET - Amon monitor.) -- C:\WINDOWS\System32\drivers\eamon.sys [154136] =>.ESET, spol. s r.o.®
O58 - SDL:2011/08/04 11:20:36 A . (.ESET - ESET Helper driver.) -- C:\WINDOWS\System32\drivers\ehdrv.sys [118104] =>.ESET, spol. s r.o.®
O58 - SDL:2008/07/21 15:11:58 A . (.Elaborate Bytes AG - ElbyCD Windows NT/2000/XP I/O driver.) -- C:\WINDOWS\System32\drivers\ElbyCDIO.sys [24392] {0100000000010F5C98B8F5} ©
O58 - SDL:2011/08/04 11:20:38 A . (.ESET - ESET Antivirus Network Redirector.) -- C:\WINDOWS\System32\drivers\epfwtdir.sys [103112] =>.ESET, spol. s r.o.®
O58 - SDL:2015/12/17 18:34:12 A . (...) -- C:\WINDOWS\System32\drivers\EsgScanner.sys [19984] {26DAAF2D653ACC1AF0E87C4A556CABFE}
O58 - SDL:2008/04/14 15:00:00 A . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [144384]
O58 - SDL:2008/10/28 12:27:07 RA . (.HP - IEEE-1284.4-1999 Driver (Windows 2000).) -- C:\WINDOWS\System32\drivers\HPZid412.sys [49920] ©
O58 - SDL:2008/10/28 12:27:07 RA . (.HP - IEEE-1284.4-1999 Print Class Driver.) -- C:\WINDOWS\System32\drivers\HPZipr12.sys [16496] ©
O58 - SDL:2008/10/28 12:27:07 RA . (.HP - 1284.4<->Usb Datalink Driver (Windows 2000).) -- C:\WINDOWS\System32\drivers\HPZius12.sys [21568] ©
O58 - SDL:2011/07/06 22:14:42 A . (.Tonec Inc. - Internet Download Manager TDI Driver.) -- C:\WINDOWS\System32\drivers\idmtdi.sys [101616] {4660FC32BD521D77F211C1336AA98B9E} ©
O58 - SDL:2012/11/08 14:00:46 RA . (.Marvell Semiconductor, Inc. - USB EWS Device Driver.) -- C:\WINDOWS\System32\drivers\mvusbews.sys [16896] ©
O58 - SDL:2008/09/27 13:31:20 A . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\nikedrv.sys [12032] ©
O58 - SDL:2007/12/05 04:41:00 A . (.NVIDIA Corporation - NVIDIA Compatible Windows 2000 Miniport Dri.) -- C:\WINDOWS\System32\drivers\nv4_mini.sys [7435392] ©
O58 - SDL:2007/10/12 17:15:00 A . (.NVIDIA Corporation - NVIDIA Networking Function Driver..) -- C:\WINDOWS\System32\drivers\NVENETFD.sys [54144] ©
O58 - SDL:2007/10/12 17:15:00 A . (.NVIDIA Corporation - NVIDIA Networking Bus Driver..) -- C:\WINDOWS\System32\drivers\nvnetbus.sys [22016] ©
O58 - SDL:2007/10/12 17:15:00 A . (.NVIDIA Corporation - NVIDIA Network Resource Manager..) -- C:\WINDOWS\System32\drivers\nvnrm.sys [942080] ©
O58 - SDL:2006/08/29 17:56:19 A . (.B-phreaks - Prodigy LPT WinXP device Driver.) -- C:\WINDOWS\System32\drivers\prodigy.sys [32377] ©
O58 - SDL:2008/04/14 15:00:00 A . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- C:\WINDOWS\System32\drivers\ptilink.sys [17792] ©
O58 - SDL:2012/12/10 17:48:12 RA . (.Research in Motion Ltd - RIM Virtual Serial Driver.) -- C:\WINDOWS\System32\drivers\RimSerial.sys [35840] ©
O58 - SDL:2013/12/02 15:34:48 A . (.BlackBerry Limited - BlackBerry Device Driver.) -- C:\WINDOWS\System32\drivers\RimUsb.sys [68096]
O58 - SDL:2014/06/23 19:13:18 A . (.Research in Motion Limited - BlackBerry Virtual Private Network Driver.) -- C:\WINDOWS\System32\drivers\rimvndis.sys [12800] ©
O58 - SDL:2008/09/27 13:31:20 A . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\System32\drivers\rio8drv.sys [12032] ©
O58 - SDL:2008/09/27 13:31:20 A . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\riodrv.sys [12032] ©
O58 - SDL:2008/04/17 17:33:26 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RtkHDAud.sys [4707328] ©
O58 - SDL:2015/04/08 05:01:28 A . (.Power Software Ltd - PowerISO Virtual Drive.) -- C:\WINDOWS\System32\drivers\scdemu.sys [113984] {227EFDF22825BA270530FB09D52B32F8} ©
O58 - SDL:2008/04/14 15:00:00 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [20480] ©
O58 - SDL:2008/09/27 13:31:20 A . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\System32\drivers\tsbvcap.sys [21376] ©
O58 - SDL:2008/07/17 03:12:47 A . (.Elaborate Bytes AG - VirtualCloneCD Driver.) -- C:\WINDOWS\System32\drivers\VClone.sys [28672] ©
O58 - SDL:2008/09/27 13:31:20 A . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\System32\drivers\vdmindvd.sys [58112] ©
O58 - SDL:2008/04/14 15:00:00 A . (...) -- C:\WINDOWS\System32\ansi.sys [9037]
O58 - SDL:2008/04/14 15:00:00 A . (...) -- C:\WINDOWS\System32\country.sys [27097]
O58 - SDL:2008/04/14 15:00:00 A . (...) -- C:\WINDOWS\System32\himem.sys [4912]
O58 - SDL:2008/04/14 15:00:00 A . (...) -- C:\WINDOWS\System32\key01.sys [42809]
O58 - SDL:2008/04/14 15:00:00 A . (...) -- C:\WINDOWS\System32\keyboard.sys [42537]
O58 - SDL:2008/04/14 15:00:00 A . (...) -- C:\WINDOWS\System32\ntdos.sys [27916]
O58 - SDL:2008/04/14 15:00:00 A . (...) -- C:\WINDOWS\System32\ntdos404.sys [29146]
O58 - SDL:2008/04/14 15:00:00 A . (...) -- C:\WINDOWS\System32\ntdos411.sys [29370]
O58 - SDL:2008/04/14 15:00:00 A . (...) -- C:\WINDOWS\System32\ntdos412.sys [29274]
O58 - SDL:2008/04/14 15:00:00 A . (...) -- C:\WINDOWS\System32\ntdos804.sys [29146]
O58 - SDL:2008/04/14 15:00:00 A . (...) -- C:\WINDOWS\System32\ntio.sys [34000]
O58 - SDL:2008/04/14 15:00:00 A . (...) -- C:\WINDOWS\System32\ntio404.sys [34560]
O58 - SDL:2008/04/14 15:00:00 A . (...) -- C:\WINDOWS\System32\ntio411.sys [35648]
O58 - SDL:2008/04/14 15:00:00 A . (...) -- C:\WINDOWS\System32\ntio412.sys [35424]
O58 - SDL:2008/04/14 15:00:00 A . (...) -- C:\WINDOWS\System32\ntio804.sys [34560]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (13) - 75s
O61 - LFC: 2015/12/13 19:31:52 A . (.© 2004-2006 Samuel Monsarrat.) -- C:\Documents and Settings\Administrateur\Mes documents\Downloads\Programs\cybera-client_1.9.exe [1749196]
O61 - LFC: 2015/12/17 18:30:46 A . (.Enigma Software Group USA, LLC..) -- C:\Documents and Settings\Administrateur\Mes documents\Downloads\Programs\SpyHunter-Installer.exe [3286400] {4549D6525BEC58AA524A1CE9E786B4E9} =>.Superfluous.SpyHunter
O61 - LFC: 2015/12/12 19:55:15 A . (..) -- C:\Documents and Settings\Administrateur\Mes documents\Downloads\Programs\winbox.exe [125952]
O61 - LFC: 2015/12/13 12:22:00 A . (..) -- C:\Documents and Settings\Administrateur\Mes documents\Downloads\PowerKaraoke.Karaoke.Video.Creator.v2.4.11.incl.patch-Scene4U\Karaoke.Video.Creator.2.4.11.patch-Scene4U.exe [72192]
O61 - LFC: 2015/12/14 20:16:11 A . (..) -- C:\Documents and Settings\Administrateur\Mes documents\Downloads\Moto GP 2\ArcadeInstallMOTOGP2_12d.EXE [4609388]
O61 - LFC: 2015/12/11 12:50:43 A . (..) -- C:\Documents and Settings\Administrateur\Mes documents\cyber\CHRONO.EXE [2317312]
O61 - LFC: 2015/12/11 00:40:06 A . (.BitTorrent Inc..) -- C:\Documents and Settings\Administrateur\Mes documents\cyber\Nouveau dossier\Rufin\uTorrent.exe [2027008]
O61 - LFC: 2015/12/16 18:37:29 A . (..) -- C:\Documents and Settings\Administrateur\Application Data\gsqtqacroic.exe [358912]
O61 - LFC: 2015/12/16 18:38:00 A . (..) -- C:\Documents and Settings\Administrateur\Application Data\theeuacroic.exe [358912]
O61 - LFC: 2015/12/16 18:36:18 A . (..) -- C:\Documents and Settings\Administrateur\Application Data\wfboyacroic.exe [358912]
O61 - LFC: 2015/12/16 18:49:00 A . (..) -- C:\Documents and Settings\Administrateur\Application Data\xgcwlacroic.exe [358912]
O61 - LFC: 2015/12/17 18:30:46 A . (.Enigma Software Group USA, LLC..) -- C:\Documents and Settings\Administrateur\Application Data\Enigma Software Group\sh_installer.exe [3286400] {4549D6525BEC58AA524A1CE9E786B4E9} =>.Superfluous.SpyHunter
O61 - LFC: 2015/12/16 06:09:47 A . (..) -- C:\Documents and Settings\Administrateur\Application Data\Adobe\Acrobat\9.0\UserCache.bin [55075]

---\\ Associations Shell Spawning (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software ASA®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\system32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®

---\\ Menu de démarrage Internet (13) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\Launcher.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe ©

---\\ Recherche d'infection sur les navigateurs (6) - 3s
O69 - SBI: SearchScopes [HKCU] {06B469CF-CDC2-47F4-81A9-8EA6E8506E45} - (Google) - http://www.google.fr/
O69 - SBI: SearchScopes [HKCU] {105E99FF-8B9A-4492-B155-06194B9056D2} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKUS\.DEFAULT] {06B469CF-CDC2-47F4-81A9-8EA6E8506E45} [DefaultScope] - (Google) - http://www.google.fr/
O69 - SBI: SearchScopes [HKUS\S-1-5-18] {06B469CF-CDC2-47F4-81A9-8EA6E8506E45} [DefaultScope] - (Google) - http://www.google.fr/
O69 - SBI: SearchScopes [HKUS\S-1-5-19] {06B469CF-CDC2-47F4-81A9-8EA6E8506E45} [DefaultScope] - (Google) - http://www.google.fr/
O69 - SBI: SearchScopes [HKUS\S-1-5-20] {06B469CF-CDC2-47F4-81A9-8EA6E8506E45} [DefaultScope] - (Google) - http://www.google.fr/

---\\ Enumère les fichiers Crack & Keygen (1) - 9s
O82 - LFC: 2015/12/13 01:41:42 A . (...) -- C:\Documents and Settings\Administrateur\Bureau\SARAH\gv\GV\MixCraft Pro Studio v7\MixCraft Pro Studio v7.5.292 Incl.Keygen-AiR-R2R [deepstatus].rar [355266879] =>.Crack,Keygen

---\\ Enumère les services démarrés par Svchost (41) - 1s
O83 - Search Svchost Services: 6to4 (6to4) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) -- C:\WINDOWS\system32\6to4svc.dll [100352] ©
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\WINDOWS\system32\appmgmts.dll [176640] ©
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496] ©
O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [77824] ©
O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464] ©
O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576] ©
O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488] ©
O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\system32\ersvc.dll [23040] ©
O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - .) -- C:\WINDOWS\system32\es.dll [253952] ©
O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: HidServ (HidServ) . (.Microsoft Corporation - HID Audio Service.) -- C:\WINDOWS\system32\hidserv.dll [21504] ©
O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [96768] ©
O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [134144] ©
O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\system32\msgsvc.dll [33792] ©
O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144] ©
O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- C:\WINDOWS\system32\mswsock.dll [247808] ©
O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [53248] ©
O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560] ©
O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [18944] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\WINDOWS\system32\ipnathlp.dll [332288] ©
O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\system32\tapisrv.dll [249856] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112] ©
O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178688] ©
O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483328] ©
O83 - Search Svchost Services: Wmi (Wmi) . (.Microsoft Corporation - API avancées Windows 32.) -- C:\WINDOWS\system32\advapi32.dll [685568] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\wmisvc.dll [145408] ©
O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896] ©
O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024] ©
O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376] ©
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\system32\qmgr.dll [409088] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [25800] {6102307E000000000006} ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll [38400] ©
O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- C:\WINDOWS\system32\mspmsnsv.dll [27136] ©

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (10) - 15s

SS - Demand [12/11/2015] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Demand [18/03/2014] [ 585728] BlackBerry Device Manager (BlackBerry Device Manager) . (.BlackBerry Limited.) - C:\Program Files\Fichiers communs\Research In Motion\USB Drivers\BbDevMgr.exe
SR - Auto [22/09/2011] [ 974944] ESET Service (ekrn) . (.ESET.) - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe =>.ESET, spol. s r.o.®
SR - Auto [15/10/2009] [ 136192] HP LaserJet Service (HP LaserJet Service) . (.HP.) - C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe ©
SR - Auto [08/11/2012] [ 100232] HP SI Service (HPSIService) . (.HP.) - C:\WINDOWS\system32\HPSIsvc.exe =>.Hewlett-Packard Company®
SS - Demand [16/12/2015] [ 147624] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SR - Auto [05/12/2007] [ 155716] NVIDIA Display Driver Service (NVSvc) . (.NVIDIA Corporation.) - C:\WINDOWS\system32\nvsvc32.exe ©
SS - Auto [09/07/2015] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SS - Auto [17/12/2015] [ 784256] SpyHunter 4 Service (SpyHunter 4 Service) . (.Enigma Software Group USA, LLC..) - C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe {4549D6525BEC58AA524A1CE9E786B4E9} =>.Superfluous.SpyHunter

---\\ Scan Additionnel (5) - 0s
C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\p3swq7je.default-1449994560843\extensions\_dzMembers_@www.pconverter.com =>PUP.Optional.MyWebSearch
HKLM\SOFTWARE\Conduit =>PUP.Optional.Conduit
HKCU\SOFTWARE\3CF3D12B66DF90BB =>PUP.Optional.Heuristic
HKCU\SOFTWARE\Conduit =>PUP.Optional.Conduit
C:\Documents and Settings\Administrateur\Application Data\OpenCandy =>PUP.Optional.OpenCandy

---\\ Récapitulatif des éléments trouvés sur votre station (4) - 0s
http://www.nicolascoolman.fr/?p=220 =>PUP.Optional.MyWebSearch
http://www.nicolascoolman.fr/?p=210 =>PUP.Optional.Conduit
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Heuristic
http://www.nicolascoolman.fr/?p=197 =>PUP.Optional.OpenCandy

~ End of the scan, 27519 items in 342 seconds (837)(1)
http://www.cjoint.com/c/ELrqnmjBmdY

Publicité


Signaler le contenu de ce document

Publicité