cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.12.18.188 Par Nicolas Coolman (2015/12/18)
~ Démarré par nicolle defer (Administrator) (2015/12/31 11:50:07)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Documents and Settings\nicolle defer\Bureau\ZHPDiag.txt
~ Rapport: C:\Documents and Settings\nicolle defer\Application Data\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
Windows XP, 32-bit Service Pack 3 (Build 2600)

---\\ Navigateurs Internet (1) - 0s
MSIE: Internet Explorer v8.0.6001.18702

---\\ Informations sur les produits Windows (3) - 0s
Windows Automatic Updates : OK
Windows Activation Technologies : KO
Windows Genuine Advantage : KO

---\\ Logiciels de protection (2) - 13s
Avira Antivirus v15.0.15.129
Malwarebytes Anti-Malware version 2.1.8.1057

---\\ Logiciels d'optimisation (1) - 17s
CCleaner v5.13

---\\ Surveillance de Logiciels (1) - 17s
Adobe Flash Player 20 NPAPI

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 28 Stepping 10, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 1037.336 MB (36% free)
System Restore: Activé (Enable)
System drive C: has 119 GB () free of 141 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: EMACHINE-C49F7A
~ User Name: nicolle defer
~ Logged in as Administrator

---\\ Enumération des unités disques (1) - 0s
~ Drive C: has 119 GB free of 141 GB (System)

---\\ Etat du Centre de Sécurité Windows (9) - 1s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (23) - 0s
[MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - 14/04/2008 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [1037824] ©
[MD5.93AD0B78C7357A05F50E594EC7C22300] - 14/04/2008 - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\rundll32.exe [33792] ©
[MD5.E1948B1F45A176FB4A0251446A5AE86D] - 06/03/2014 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\WINDOWS\System32\wininet.dll [920064] ©
[MD5.DD73D6B9F6B4CB630CF35B438B540174] - 14/04/2008 - (.Microsoft Corporation - Application d'ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [512000] ©
[MD5.D76A076ADB74F8132924E498D63123A2] - 03/03/2011 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\System32\dnsapi.dll [149504] ©
[MD5.1E44BC1E83D8FD2305F8D452DB109CF9] - 17/08/2011 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [138496] ©
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] - 14/04/2008 - (.Microsoft Corporation - IDE/ATAPI Port Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [96512] ©
[MD5.C885B02847F5D2FD45A24E219ED93B32] - 14/04/2008 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [63744] ©
[MD5.4B0A100EAF5C49EF3CCA8C641431EACC] - 02/05/2008 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [62976] ©
[MD5.31F923EB2170FC172C81ABDA0045D18C] - 14/04/2008 - (.Microsoft Corporation - Pilote de cryptographie FIPS.) -- C:\WINDOWS\System32\drivers\Fips.sys [44672] ©
[MD5.573C7D0A32852B48F3058CFD8026F511] - 14/04/2008 - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [144384]
[MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - 14/04/2008 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [54144] ©
[MD5.083A052659F5310DD8B6A6CB05EDCF8E] - 14/04/2008 - (.Microsoft Corporation - IMAPI Kernel Driver.) -- C:\WINDOWS\System32\drivers\Imapi.sys [42112] ©
[MD5.CC748EA12C6EFFDE940EE98098BF96BB] - 14/04/2008 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [152832] ©
[MD5.23C74D75E36E7158768DD63D92789A91] - 14/04/2008 - (.Microsoft Corporation - IPSec Driver.) -- C:\WINDOWS\System32\drivers\IPSec.sys [75264] ©
[MD5.7D304A5EB4344EBEEAB53A2FE3FFB9F0] - 15/07/2011 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [456320] ©
[MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - 14/04/2008 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [162816] ©
[MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - 14/04/2008 - (.Microsoft Corporation - NT File System Driver.) -- C:\WINDOWS\System32\drivers\ntfs.sys [574976] ©
[MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - 14/04/2008 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [80384] ©
[MD5.11B4A627BC9614B885C4969BFA5FF8A6] - 14/04/2008 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [51328] ©
[MD5.15CABD0F7C00C47C70124907916AF3F1] - 13/04/2008 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [196224] ©
[MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - 13/04/2008 - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) -- C:\WINDOWS\System32\drivers\redbook.sys [58752] ©
[MD5.46DE1126684369BACE4849E4FC8C43CA] - 14/04/2008 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [53376] ©

---\\ Liste des services NT non Microsoft et non désactivés (8) - 2s
O23 - Service: Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG - Antivirus MailScanner LSP Service.) - C:\Program Files\Avira\Antivirus\avmailc.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files\Avira\Antivirus\sched.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files\Avira\Antivirus\avguard.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG - AntiVir WebGuard Service.) - C:\Program Files\Avira\Antivirus\avwebgrd.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: Dritek WMI Service (DsiWMIService) . (.Dritek System Inc. - Dritek WMI Service.) - C:\Program Files\Launch Manager\dsiwmis.exe =>.Dritek System Inc.®
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) . (.Intel Corporation - RAID Monitor.) - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe =>.Intel Corporation®
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl®
O23 - Service: Updater Service (Updater Service) . (.Acer Group - Updater Service.) - C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe =>.Acer Incorporated®

---\\ Processus lancés (2) - 3s
[MD5.8B175FB3905ACB6CBD2FE4DBB74F28F2] - (.ALi - Monitor Function.) -- C:\WINDOWS\WebCam\S6000\S6000Mnt.exe [51712] [PID.2096] {42A3CE1434C09D2CA8FA35643A603B7A}
[MD5.6D4DF03425DE3447284A70B596A2B5EE] - (.Copyright (C) 2015 Nicolas Coolman - ZHPDiag.) -- C:\Documents and Settings\nicolle defer\Bureau\ZHPDiag3.exe [2026496] [PID.3800] ©

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (12) - 3s
P2 - EXT FILE: (...) -- C:\Documents and Settings\nicolle defer\Application Data\Mozilla\Firefox\Profiles\kf93pucj.default\searchplugins\yahoo-avast.xml
P2 - EXT FILE: (...) -- C:\Documents and Settings\nicolle defer\Application Data\Mozilla\Firefox\Profiles\kf93pucj.default\searchplugins\yandex.ru-163038.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\amazon-france.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\bing.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\ddg.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\eBay-france.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\google.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\yahoo-france.xml
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ©
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_20_0_0_235.dll ©

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (11) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.emachines.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.emachines.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer,Proxy Management (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 1s
F2 - REG:system.ini: UserInit=C:\WINDOWS\System32\Userinit.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (20)

---\\ Browser Helper Object de navigateur (BHO) (3) - 0s
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll =>.Adobe Systems, Incorporated®
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} (Orphean)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - WindowsLiveLogin.dll.) -- C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll =>.Microsoft Corporation®

---\\ Internet Explorer, Barre d'outil (2) - 0s
O3 - Toolbar: 0xB1C218236549D4119B18009027A5CD4F - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} . (...) -- (.not file.)
O3 - Toolbar: 0x3BE1C37ACA3B5841B330F66DBB03C1B5 - [HKCU]{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} . (...) -- (.not file.)

---\\ Applications lancées au démarrage du système (33) - 4s
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxtray.exe =>.Intel Corporation®
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\WINDOWS\system32\hkcmd.exe =>.Intel Corporation®
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\WINDOWS\system32\igfxpers.exe =>.Intel Corporation®
O4 - HKLM\..\Run: [IAAnotif] . (.Intel Corporation - Event Monitor User Notification Tool.) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe =>.Intel Corporation®
O4 - HKLM\..\Run: [RTHDCPL] . (.Realtek Semiconductor Corp. - Realtek HD Audio Control Panel.) -- C:\WINDOWS\RTHDCPL.EXE =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [AzMixerSel] . (.Realtek Semiconductor Corp. - Azalia Mixer Selector.) -- C:\Program Files\Realtek\Audio\Drivers\AzMixerSel.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe =>.Adobe Systems, Incorporated®
O4 - HKLM\..\Run: [IMJPMIG8.1] . (.Microsoft Corporation - Microsoft IME.) -- C:\WINDOWS\ime\imjp8_1\imjpmig.exe ©
O4 - HKLM\..\Run: [MSPY2002] . (...) -- C:\WINDOWS\system32\IME\PINTLGNT\IMSCINST.EXE
O4 - HKLM\..\Run: [PHIME2002ASync] . (.Microsoft Corporation - 微軟新注音輸入法 2002a.) -- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE ©
O4 - HKLM\..\Run: [PHIME2002A] . (.Microsoft Corporation - 微軟新注音輸入法 2002a.) -- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE ©
O4 - HKLM\..\Run: [LManager] . (.Dritek System Inc. - Launch Manager.) -- C:\Program Files\Launch Manager\LManager.exe =>.Dritek System Inc.®
O4 - HKLM\..\Run: [S6000Mnt] . (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\Rundll32.exe ©
O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe =>.Synaptics Incorporated®
O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems, Incorporated®
O4 - HKLM\..\Run: [autodetect] . (. - AutoDect.) -- C:\Program Files\Internet Haut Débit Mobile\AutoDect.exe =>.ZTE CORPORATION ®
O4 - HKLM\..\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files\Avira\Antivirus\avgnt.exe =>.Avira Operations GmbH & Co. KG®
O4 - HKLM\..\Run: [{59c4462d-a177-4d44-a95b-deda1be79844}] . (.Avira Operations GmbH & Co. KG - Avira Launcher.) -- C:\Documents and Settings\All Users\Application Data\Package Cache\{59c4462d-a177-4d44-a95b-deda1be79844}\Avira.OE.Setup.Bundle.exe =>.Avira Operations GmbH & Co. KG®
O4 - HKLM\..\Run: [Avira Systray] . (.Avira Operations GmbH & Co. KG - Avira.) -- C:\Program Files\Avira\Launcher\Avira.Systray.exe =>.Avira Operations GmbH & Co. KG®
O4 - HKCU\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKCU\..\Run: [MSMSGS] . (.Microsoft Corporation - Windows Messenger.) -- C:\Program Files\Messenger\msmsgs.exe ©
O4 - HKCU\..\Run: [Xvid] . (...) -- C:\Program Files\Xvid\CheckUpdate.exe
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd®
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-21-2167395947-1508825538-1943663836-1006\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-21-2167395947-1508825538-1943663836-1006\..\Run: [MSMSGS] . (.Microsoft Corporation - Windows Messenger.) -- C:\Program Files\Messenger\msmsgs.exe ©
O4 - HKUS\S-1-5-21-2167395947-1508825538-1943663836-1006\..\Run: [Xvid] . (...) -- C:\Program Files\Xvid\CheckUpdate.exe
O4 - HKUS\S-1-5-21-2167395947-1508825538-1943663836-1006\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKUS\S-1-5-21-2167395947-1508825538-1943663836-1006\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd®

---\\ Modification Domaine/Adresses DNS (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

---\\ Protocole additionnel (35) - 2s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll ©
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll ©
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll =>.Microsoft Corporation®
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API.) -- C:\WINDOWS\system32\inetcomm.dll ©
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation®
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll ©
O18 - Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- c:\Program Files\Fichiers communs\Microsoft Shared\Information Retrieval\msitss.dll =>.Microsoft Corporation®
O18 - Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll =>.Microsoft Corporation®
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype4COM.) -- C:\Program Files\Fichiers communs\Skype\Skype4COM.dll =>.Skype Software Sarl®
O18 - Handler: sysimage - {76E67A63-06E9-11D2-A840-006008059382} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll ©
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} . (.Microsoft Corporation - WIA Scripting Layer.) -- C:\WINDOWS\system32\wiascr.dll ©
O18 - Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files\Windows Live\Mail\mailcomm.dll =>.Microsoft Corporation®
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: Class Install Handler - {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: lzdhtml - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll ©
O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ Logiciels installés (32) - 58s
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {31B9D218-FED2-4C6C-B19F-7294FFC130B0} ©
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 20 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 20 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Avira Antivirus v15.0.15.129 - (.Avira Operations GmbH & Co. KG.) [HKLM] -- Avira Antivirus =>.Avira Operations GmbH & Co. KG®
O42 - Logiciel: Avira Launcher v1.1.49.18939 - (.Avira Operations GmbH & Co. KG.) [HKLM] -- {59c4462d-a177-4d44-a95b-deda1be79844} =>.Avira Operations GmbH & Co. KG®
O42 - Logiciel: Avira v1.1.42.10415 - (.Avira Operations GmbH & Co. KG.) [HKLM] -- {a5e00a72-db4a-4f77-8874-d1265b8fcd7e} =>.Avira Operations GmbH & Co. KG®
O42 - Logiciel: Avira v1.1.42.10415 - (.Avira Operations GmbH & Co. KG.) [HKLM] -- {B4A68153-E9A2-4BC1-96C3-BEE5F56E788D} ©
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>.Piriform Ltd®
O42 - Logiciel: Client Windows Rights Management avec Service Pack 2 - (.Microsoft.) [HKLM] -- {A5325565-D104-4A87-9301-B45AD0AFC697} ©
O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKCU] -- Dropbox {565B4BF666AFCE227B5EA8974EE61667} ©
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} ©
O42 - Logiciel: Hotfix for Windows Media Format 11 SDK (KB929399) - (.Microsoft Corporation.) [HKLM] -- KB929399 {6105875800030000005A} ©
O42 - Logiciel: Hotfix for Windows XP (KB954550-v5) - (.Microsoft Corporation.) [HKLM] -- KB954550-v5 ©
O42 - Logiciel: Hotfix for Windows XP (KB976002-v5) - (.Microsoft Corporation.) [HKLM] -- KB976002-v5 ©
O42 - Logiciel: Lecteur Windows Media 11 - (...) [HKLM] -- Windows Media Player
O42 - Logiciel: Malwarebytes Anti-Malware version 2.1.8.1057 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes Anti-Malware_is1 ©
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM] -- {95120000-00B9-0409-0000-0000000FF1CE} ©
O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570} ©
O42 - Logiciel: Microsoft Compression Client Pack 1.0 for Windows XP - (.Microsoft Corporation.) [HKLM] -- MSCompPackV1 =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Kernel-Mode Driver Framework Feature Pack 1.9 - (.Microsoft Corporation.) [HKLM] -- Wdf01009 =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} ©
O42 - Logiciel: Microsoft Software Update for Web Folders (French) 12 - (.Microsoft Corporation.) [HKLM] -- {90120000-0010-040C-0000-0000000FF1CE} ©
O42 - Logiciel: Microsoft User-Mode Driver Framework Feature Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- Wudf01000 =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {0214A441-A4AB-43A8-8DEF-2F73C5364673} ©
O42 - Logiciel: Mozilla Firefox 39.0 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 39.0 (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: Skype™ 7.16 - (.Skype Technologies S.A..) [HKLM] -- {FC965A47-4839-40CA-B618-18F486F042C6} ©
O42 - Logiciel: SP2 de compatibilité descendante du client Windows Rights Management - (.Microsoft.) [HKLM] -- {EC905264-BCFE-423B-9C42-C3A106266790} ©
O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8 =>.Microsoft Corporation®
O42 - Logiciel: Windows Media Format 11 runtime - (...) [HKLM] -- Windows Media Format Runtime
O42 - Logiciel: Windows Media Format 11 runtime - (.Microsoft Corporation.) [HKLM] -- WMFDist11 {6105875800030000005A} ©
O42 - Logiciel: Windows Media Player 11 - (.Microsoft Corporation.) [HKLM] -- wmp11 {6105875800030000005A} ©

---\\ HKCU & HKLM Software Keys (76) - 58s
HKLM\SOFTWARE\Acer
HKLM\SOFTWARE\Acer Incorporated
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\AdwCleaner
HKLM\SOFTWARE\ALi
HKLM\SOFTWARE\Atheros Communications Inc.
HKLM\SOFTWARE\Avg
HKLM\SOFTWARE\Avira
HKLM\SOFTWARE\C07ft5Y
HKLM\SOFTWARE\Creative Tech
HKLM\SOFTWARE\Cyberlink
HKLM\SOFTWARE\Dritek
HKLM\SOFTWARE\Dropbox
HKLM\SOFTWARE\Gateway
HKLM\SOFTWARE\Gemplus
HKLM\SOFTWARE\Global IP Solutions
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\Huawei technologies
HKLM\SOFTWARE\IM Providers
HKLM\SOFTWARE\InstalledOptions
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\Internet Haut Débit Mobile
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\MimarSinan
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\OEM
HKLM\SOFTWARE\OemSetup
HKLM\SOFTWARE\Piriform
HKLM\SOFTWARE\Program Groups
HKLM\SOFTWARE\Realtek
HKLM\SOFTWARE\Realtek Semiconductor Corp.
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\Schlumberger
HKLM\SOFTWARE\Secure
HKLM\SOFTWARE\Skype
HKLM\SOFTWARE\Symantec
HKLM\SOFTWARE\Synaptics
HKLM\SOFTWARE\Trolltech
HKLM\SOFTWARE\WebCam
HKLM\SOFTWARE\Windows 3.1 Migration Status
HKLM\SOFTWARE\Wow6432Node
HKLM\SOFTWARE\X-AVCSD
HKLM\SOFTWARE\Xvid Team
HKLM\SOFTWARE\ZTEUSBDriverFlag
HKCU\SOFTWARE\Acer
HKCU\SOFTWARE\AcerUtil
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Avira
HKCU\SOFTWARE\Dritek
HKCU\SOFTWARE\Dropbox
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\Liteon
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Movial
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Norton
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Synaptics
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software

---\\ Contenu des dossiers Programmes (145) - 16s
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\Adobe
O43 - CFD: 28/06/2010 - [] D -- C:\Program Files\ALi
O43 - CFD: 05/08/2015 - [] D -- C:\Program Files\Avira
O43 - CFD: 31/12/2015 - [] D -- C:\Program Files\CCleaner
O43 - CFD: 30/04/2010 - [0] D -- C:\Program Files\ComPlus Applications
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\DIFX
O43 - CFD: 14/09/2014 - [] D -- C:\Program Files\Dropbox
O43 - CFD: 28/06/2010 - [] D -- C:\Program Files\eMachines
O43 - CFD: 05/11/2010 - [] D -- C:\Program Files\eMachines Accessory Store
O43 - CFD: 06/12/2010 - [] D -- C:\Program Files\eMachines Games
O43 - CFD: 16/12/2015 - [] D -- C:\Program Files\Fichiers communs
O43 - CFD: 05/08/2015 - [] D -- C:\Program Files\Google
O43 - CFD: 14/12/2012 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\Intel
O43 - CFD: 04/05/2014 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 09/03/2014 - [] D -- C:\Program Files\Internet Haut Débit Mobile
O43 - CFD: 26/09/2014 - [] D -- C:\Program Files\Internet Mobile
O43 - CFD: 28/06/2010 - [] D -- C:\Program Files\Launch Manager
O43 - CFD: 05/08/2015 - [] D -- C:\Program Files\Malwarebytes Anti-Malware
O43 - CFD: 20/07/2013 - [] D -- C:\Program Files\MegaFon Internet
O43 - CFD: 09/11/2010 - [] D -- C:\Program Files\Messenger
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\Microsoft
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\microsoft frontpage
O43 - CFD: 03/09/2011 - [] D -- C:\Program Files\Microsoft Office
O43 - CFD: 02/09/2014 - [] D -- C:\Program Files\Microsoft Silverlight
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 06/12/2010 - [] D -- C:\Program Files\Microsoft Visual Studio
O43 - CFD: 06/12/2010 - [] D -- C:\Program Files\Microsoft Visual Studio 8
O43 - CFD: 30/10/2012 - [] D -- C:\Program Files\Microsoft Works
O43 - CFD: 06/12/2010 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 09/11/2010 - [] D -- C:\Program Files\Movie Maker
O43 - CFD: 16/12/2015 - [] D -- C:\Program Files\Mozilla Firefox
O43 - CFD: 16/12/2015 - [] D -- C:\Program Files\Mozilla Maintenance Service
O43 - CFD: 06/12/2010 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 05/12/2010 - [] D -- C:\Program Files\MSECache
O43 - CFD: 14/11/2010 - [] D -- C:\Program Files\MSN
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\MSN Gaming Zone
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\NetMeeting
O43 - CFD: 26/09/2014 - [] D -- C:\Program Files\neuf Talk
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\Online Services
O43 - CFD: 19/12/2010 - [] D -- C:\Program Files\Outlook Express
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\Preload
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\Realtek
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\Services en ligne
O43 - CFD: 16/12/2015 - [] RD -- C:\Program Files\Skype
O43 - CFD: 28/06/2010 - [] D -- C:\Program Files\Synaptics
O43 - CFD: 30/04/2010 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 28/06/2010 - [] D -- C:\Program Files\Video Web Camera
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\Windows Live
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\Windows Live SkyDrive
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\Windows Media Connect 2
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\Windows Sidebar
O43 - CFD: 30/04/2010 - [0] HD -- C:\Program Files\WindowsUpdate
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\xerox
O43 - CFD: 26/09/2014 - [] D -- C:\Program Files\Xvid
O43 - CFD: 30/04/2010 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Avira
O43 - CFD: 30/04/2010 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 30/04/2010 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\eMachines
O43 - CFD: 28/06/2010 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\eMachines Documentation
O43 - CFD: 30/04/2010 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Intel® Matrix Storage Manager
O43 - CFD: 14/12/2012 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Internet Haut Débit Mobile
O43 - CFD: 18/01/2011 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Internet Mobile
O43 - CFD: 05/08/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Malwarebytes Anti-Malware
O43 - CFD: 19/12/2010 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Office
O43 - CFD: 02/09/2014 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Silverlight
O43 - CFD: 30/10/2012 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Works
O43 - CFD: 30/04/2010 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Skype
O43 - CFD: 28/06/2010 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Video Web Camera
O43 - CFD: 28/06/2010 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WebCam
O43 - CFD: 30/04/2010 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Windows Live
O43 - CFD: 30/10/2011 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Xvid
O43 - CFD: 06/04/2012 - [] D -- C:\Documents and Settings\All Users\Application Data\Adobe
O43 - CFD: 11/12/2013 - [] D -- C:\Documents and Settings\All Users\Application Data\AVAST Software
O43 - CFD: 05/08/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Avira
O43 - CFD: 05/08/2015 - [] HD -- C:\Documents and Settings\All Users\Application Data\Common Files
O43 - CFD: 03/03/2013 - [] D -- C:\Documents and Settings\All Users\Application Data\DatacardService
O43 - CFD: 30/04/2010 - [] D -- C:\Documents and Settings\All Users\Application Data\eMachines
O43 - CFD: 16/08/2013 - [] D -- C:\Documents and Settings\All Users\Application Data\Google
O43 - CFD: 05/08/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
O43 - CFD: 05/08/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\MFAData
O43 - CFD: 08/06/2011 - [] SD -- C:\Documents and Settings\All Users\Application Data\Microsoft
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Microsoft Help
O43 - CFD: 05/12/2012 - [] D -- C:\Documents and Settings\All Users\Application Data\Modem HDM EC156
O43 - CFD: 21/05/2012 - [] D -- C:\Documents and Settings\All Users\Application Data\Mozilla
O43 - CFD: 06/12/2010 - [] D -- C:\Documents and Settings\All Users\Application Data\Norton
O43 - CFD: 30/04/2010 - [] D -- C:\Documents and Settings\All Users\Application Data\NortonInstaller
O43 - CFD: 16/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Package Cache
O43 - CFD: 16/12/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Skype
O43 - CFD: 06/12/2010 - [] D -- C:\Documents and Settings\All Users\Application Data\WildTangent
O43 - CFD: 05/11/2010 - [] D -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
O43 - CFD: 31/10/2011 - [] D -- C:\Documents and Settings\All Users\Application Data\{3C0AACBF-B491-4BE5-BAF9-AA46E0629E42}
O43 - CFD: 03/04/2012 - [] D -- C:\Program Files\Fichiers communs\Adobe
O43 - CFD: 02/08/2015 - [] D -- C:\Program Files\Fichiers communs\Adobe AIR
O43 - CFD: 24/05/2014 - [] D -- C:\Program Files\Fichiers communs\DESIGNER
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\Fichiers communs\InstallShield
O43 - CFD: 30/03/2012 - [] D -- C:\Program Files\Fichiers communs\Microsoft Shared
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\Fichiers communs\MSSoap
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\Fichiers communs\ODBC
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\Fichiers communs\Services
O43 - CFD: 16/12/2015 - [] D -- C:\Program Files\Fichiers communs\Skype
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\Fichiers communs\SpeechEngines
O43 - CFD: 15/12/2010 - [] D -- C:\Program Files\Fichiers communs\System
O43 - CFD: 30/04/2010 - [] D -- C:\Program Files\Fichiers communs\Windows Live
O43 - CFD: 05/11/2010 - [] D -- C:\Documents and Settings\nicolle defer\Application Data\Adobe
O43 - CFD: 05/08/2015 - [] D -- C:\Documents and Settings\nicolle defer\Application Data\Avira
O43 - CFD: 14/09/2014 - [] D -- C:\Documents and Settings\nicolle defer\Application Data\Dropbox
O43 - CFD: 14/09/2014 - [] D -- C:\Documents and Settings\nicolle defer\Application Data\DropboxMaster
O43 - CFD: 05/11/2010 - [] D -- C:\Documents and Settings\nicolle defer\Application Data\Google
O43 - CFD: 30/04/2010 - [] D -- C:\Documents and Settings\nicolle defer\Application Data\Identities
O43 - CFD: 30/04/2010 - [] D -- C:\Documents and Settings\nicolle defer\Application Data\InstallShield
O43 - CFD: 31/10/2012 - [0] D -- C:\Documents and Settings\nicolle defer\Application Data\Liteon
O43 - CFD: 30/04/2010 - [] D -- C:\Documents and Settings\nicolle defer\Application Data\Macromedia
O43 - CFD: 16/06/2013 - [] D -- C:\Documents and Settings\nicolle defer\Application Data\MegaFon
O43 - CFD: 16/12/2015 - [] SD -- C:\Documents and Settings\nicolle defer\Application Data\Microsoft
O43 - CFD: 05/11/2010 - [] D -- C:\Documents and Settings\nicolle defer\Application Data\Mozilla
O43 - CFD: 30/07/2013 - [] D -- C:\Documents and Settings\nicolle defer\Application Data\Opera
O43 - CFD: 31/12/2015 - [] D -- C:\Documents and Settings\nicolle defer\Application Data\Skype
O43 - CFD: 22/11/2014 - [] D -- C:\Documents and Settings\nicolle defer\Application Data\Template
O43 - CFD: 31/12/2015 - [] D -- C:\Documents and Settings\nicolle defer\Application Data\ZHP
O43 - CFD: 27/03/2013 - [] D -- C:\Documents and Settings\nicolle defer\Local Settings\Application Data\Adobe
O43 - CFD: 28/06/2010 - [] D -- C:\Documents and Settings\nicolle defer\Local Settings\Application Data\ApplicationHistory
O43 - CFD: 05/08/2015 - [] D -- C:\Documents and Settings\nicolle defer\Local Settings\Application Data\Avg2015
O43 - CFD: 30/07/2013 - [] D -- C:\Documents and Settings\nicolle defer\Local Settings\Application Data\Bromium
O43 - CFD: 30/07/2013 - [] D -- C:\Documents and Settings\nicolle defer\Local Settings\Application Data\Chromium
O43 - CFD: 30/07/2013 - [] D -- C:\Documents and Settings\nicolle defer\Local Settings\Application Data\Comodo
O43 - CFD: 05/08/2015 - [] D -- C:\Documents and Settings\nicolle defer\Local Settings\Application Data\Google
O43 - CFD: 05/08/2015 - [] D -- C:\Documents and Settings\nicolle defer\Local Settings\Application Data\MFAData
O43 - CFD: 30/12/2015 - [] D -- C:\Documents and Settings\nicolle defer\Local Settings\Application Data\Microsoft
O43 - CFD: 30/04/2010 - [0] D -- C:\Documents and Settings\nicolle defer\Local Settings\Application Data\Microsoft Help
O43 - CFD: 05/11/2010 - [] D -- C:\Documents and Settings\nicolle defer\Local Settings\Application Data\Mozilla
O43 - CFD: 30/07/2013 - [] D -- C:\Documents and Settings\nicolle defer\Local Settings\Application Data\Nichrome
O43 - CFD: 30/07/2013 - [] D -- C:\Documents and Settings\nicolle defer\Local Settings\Application Data\Opera
O43 - CFD: 16/12/2015 - [0] D -- C:\Documents and Settings\nicolle defer\Local Settings\Application Data\Skype
O43 - CFD: 14/09/2014 - [] D -- C:\Documents and Settings\nicolle defer\Local Settings\Application Data\Temp
O43 - CFD: 30/07/2013 - [] D -- C:\Documents and Settings\nicolle defer\Local Settings\Application Data\Xpom
O43 - CFD: 30/07/2013 - [] D -- C:\Documents and Settings\nicolle defer\Local Settings\Application Data\Yandex
O43 - CFD: 30/04/2010 - [] RD -- C:\Documents and Settings\nicolle defer\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 14/09/2014 - [] D -- C:\Documents and Settings\nicolle defer\Menu Démarrer\Programmes\Dropbox
O43 - CFD: 30/04/2010 - [] RD -- C:\Documents and Settings\nicolle defer\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 10/03/2012 - [] D -- C:\Documents and Settings\nicolle defer\Menu Démarrer\Programmes\neuf Talk

---\\ ShellIconOverlayIdentifiers (SIOI) (5) - 0s
O106 - SIOI: DropboxExt [DropboxExt1] - {FB314ED9-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Documents and Settings\nicolle defer\Application Data\Dropbox\bin\DropboxExt.22.dll {565B4BF666AFCE227B5EA8974EE61667} ©
O106 - SIOI: DropboxExt [DropboxExt2] - {FB314EDA-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Documents and Settings\nicolle defer\Application Data\Dropbox\bin\DropboxExt.22.dll {565B4BF666AFCE227B5EA8974EE61667} ©
O106 - SIOI: DropboxExt [DropboxExt3] - {FB314EDB-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Documents and Settings\nicolle defer\Application Data\Dropbox\bin\DropboxExt.22.dll {565B4BF666AFCE227B5EA8974EE61667} ©
O106 - SIOI: DropboxExt [DropboxExt4] - {FB314EDC-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Documents and Settings\nicolle defer\Application Data\Dropbox\bin\DropboxExt.22.dll {565B4BF666AFCE227B5EA8974EE61667} ©
O106 - SIOI: Offline Files Menu [Fichiers hors connexion] - {750fdf0e-2a26-11d1-a3ea-080036587f03}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\system32\cscui.dll ©

---\\ Liste des pilotes du système (65) - 7s
O58 - SDL:2008/04/14 13:00:00 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\WINDOWS\System32\drivers\aliide.sys [5248] ©
O58 - SDL:2009/11/18 00:16:00 A . (.Creative - Creative WDM 3D Audio Driver.) -- C:\WINDOWS\System32\drivers\Ambfilt.sys [1691480] =>.Creative Labs Inc®
O58 - SDL:2008/04/13 10:36:40 A . (.Advanced Micro Devices, Inc. - AMD Win2000 AGP Filter.) -- C:\WINDOWS\System32\drivers\AMDAGP.SYS [43008] ©
O58 - SDL:2008/04/14 13:00:00 A . (.Advanced System Products, Inc. - AdvanSys SCSI Controller Driver.) -- C:\WINDOWS\System32\drivers\asc.sys [26496]
O58 - SDL:2008/04/14 13:00:00 A . (.Advanced System Products, Inc. - AdvanSys Ultra-Wide PCI SCSI Driver.) -- C:\WINDOWS\System32\drivers\asc3550.sys [14848]
O58 - SDL:2015/12/16 08:34:33 A . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- C:\WINDOWS\System32\drivers\avgntflt.sys [106968] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2015/12/16 08:34:33 A . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- C:\WINDOWS\System32\drivers\avipbb.sys [136272] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2015/06/19 08:11:45 A . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- C:\WINDOWS\System32\drivers\avkmgr.sys [37896] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2010/04/01 10:23:32 A . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless dr.) -- C:\WINDOWS\System32\drivers\BCMWL5.SYS [2703032] =>.Broadcom Corporation®
O58 - SDL:2008/04/14 13:00:00 A . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\System32\drivers\cinemst2.sys [262528] ©
O58 - SDL:2008/04/14 13:00:00 A . (.CMD Technology, Inc. - Pilote de bus PCI IDE CMD.) -- C:\WINDOWS\System32\drivers\cmdide.sys [6656] ©
O58 - SDL:2008/04/14 13:00:00 A . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\System32\drivers\cpqdap01.sys [11776] ©
O58 - SDL:2008/04/14 13:00:00 A . (.Mylex Corporation - Mylex Disk Array Controller Driver.) -- C:\WINDOWS\System32\drivers\dac2w2k.sys [179584]
O58 - SDL:2008/04/14 13:00:00 A . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- C:\WINDOWS\System32\drivers\dmboot.sys [800256] ©
O58 - SDL:2008/04/14 13:00:00 A . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\System32\drivers\dmio.sys [154496] ©
O58 - SDL:2008/04/14 13:00:00 A . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\System32\drivers\dmload.sys [5888] ©
O58 - SDL:2008/04/14 13:00:00 A . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [144384]
O58 - SDL:2009/06/04 17:43:16 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\WINDOWS\System32\drivers\iaStor.sys [330264] =>.Intel Corporation®
O58 - SDL:2009/11/11 03:55:46 A . (.Intel Corporation - Intel Graphics Miniport Driver.) -- C:\WINDOWS\System32\drivers\igxpmp32.sys [1751424] ©
O58 - SDL:2010/03/04 10:53:16 A . (.Atheros Communications, Inc. - Atheros AR813x/AR815x PCI-E Ethernet Contro.) -- C:\WINDOWS\System32\drivers\l1c51x86.sys [60456] =>.Atheros Communications Inc.®
O58 - SDL:2011/03/26 10:37:12 A . (.MBB Incorporated - CDROM Filter.) -- C:\WINDOWS\System32\drivers\massfilter.sys [9216] ©
O58 - SDL:2015/06/18 07:41:36 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [23256] =>.Malwarebytes Corporation®
O58 - SDL:2015/06/18 07:41:46 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [121560] =>.Malwarebytes Corporation®
O58 - SDL:2015/11/16 15:49:51 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [98520] =>.Malwarebytes Corporation®
O58 - SDL:2009/11/18 00:17:00 A . (.Creative Technology Ltd. - Creative WDM Audio Driver (32-bit).) -- C:\WINDOWS\System32\drivers\Monfilt.sys [1395800] =>.Creative Labs Inc®
O58 - SDL:2008/04/14 13:00:00 A . (.American Megatrends Inc. - MegaRAID RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\mraid35x.sys [17280] ©
O58 - SDL:2008/04/14 13:00:00 A . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\nikedrv.sys [12032] ©
O58 - SDL:2008/04/14 13:00:00 A . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- C:\WINDOWS\System32\drivers\ptilink.sys [17792] ©
O58 - SDL:2008/04/14 13:00:00 A . (.QLogic Corporation - Miniport Driver for QLogic ISP PCI Adapters.) -- C:\WINDOWS\System32\drivers\ql1080.sys [40320] ©
O58 - SDL:2008/04/14 13:00:00 A . (.QLogic Corporation - Miniport Driver for QLogic ISP PCI Adapters.) -- C:\WINDOWS\System32\drivers\ql12160.sys [45312] ©
O58 - SDL:2008/04/14 13:00:00 A . (.QLogic Corporation - Miniport Driver for QLogic ISP PCI Adapters.) -- C:\WINDOWS\System32\drivers\ql1280.sys [49024] ©
O58 - SDL:2008/04/14 13:00:00 A . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\System32\drivers\rio8drv.sys [12032] ©
O58 - SDL:2008/04/14 13:00:00 A . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\riodrv.sys [12032] ©
O58 - SDL:2010/03/12 22:41:22 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RtkHDAud.sys [5867040] =>.Realtek Semiconductor Corp®
O58 - SDL:2010/05/14 08:49:02 A . (.Windows (R) Win 7 DDK provider - AVStream Simulated Hardware Sample.) -- C:\WINDOWS\System32\drivers\S6000KNT.sys [3221120] {42A3CE1434C09D2CA8FA35643A603B7A} ©
O58 - SDL:2008/04/14 13:00:00 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [20480] ©
O58 - SDL:2008/04/13 10:36:40 A . (.Silicon Integrated Systems Corporation - SiS NT AGP Filter.) -- C:\WINDOWS\System32\drivers\SISAGP.SYS [40960] ©
O58 - SDL:2008/04/14 13:00:00 A . (.Adaptec, Inc. - Adaptec AIC-6x60 series SCSI miniport.) -- C:\WINDOWS\System32\drivers\sparrow.sys [19072] ©
O58 - SDL:2015/06/19 08:12:24 A . (.Avira Operations GmbH & Co. KG - AVIRA SnapShot Driver.) -- C:\WINDOWS\System32\drivers\ssmdrv.sys [31848] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2008/04/14 13:00:00 A . (.Symbios Logic Inc. - Symbios Logic Inc. SCSI Miniport Driver.) -- C:\WINDOWS\System32\drivers\symc810.sys [16256] ©
O58 - SDL:2008/04/14 13:00:00 A . (.LSI Logic - Symbios 8XX SCSI Miniport Driver.) -- C:\WINDOWS\System32\drivers\symc8xx.sys [32640] ©
O58 - SDL:2008/04/14 13:00:00 A . (.LSI Logic - Symbios Hi-Perf SCSI Miniport Driver.) -- C:\WINDOWS\System32\drivers\sym_hi.sys [28384] ©
O58 - SDL:2008/04/14 13:00:00 A . (.LSI Logic - Symbios Ultra3 SCSI Miniport Driver.) -- C:\WINDOWS\System32\drivers\sym_u3.sys [30688] ©
O58 - SDL:2010/02/05 09:49:06 A . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [242992] =>.Synaptics Incorporated®
O58 - SDL:2008/04/14 13:00:00 A . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\System32\drivers\tsbvcap.sys [21376] ©
O58 - SDL:2008/04/14 13:00:00 A . (.Promise Technology, Inc. - Gestionnaire de miniport ULTRA66 de Promise.) -- C:\WINDOWS\System32\drivers\ultra.sys [36736] ©
O58 - SDL:2008/04/14 13:00:00 A . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\System32\drivers\vdmindvd.sys [58112] ©
O58 - SDL:2011/03/26 10:37:12 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\ZTEusbmdm6k.sys [107776] ©
O58 - SDL:2011/03/26 10:37:12 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\ZTEusbnmea.sys [107776] ©
O58 - SDL:2011/03/26 10:37:12 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\ZTEusbser6k.sys [107776] ©
O58 - SDL:2008/04/14 13:00:00 AC . (...) -- C:\WINDOWS\System32\ansi.sys [9037]
O58 - SDL:2008/04/14 13:00:00 AC . (...) -- C:\WINDOWS\System32\country.sys [27097]
O58 - SDL:2008/04/14 13:00:00 AC . (...) -- C:\WINDOWS\System32\himem.sys [4912]
O58 - SDL:2008/04/14 13:00:00 AC . (...) -- C:\WINDOWS\System32\key01.sys [42809]
O58 - SDL:2008/04/14 13:00:00 AC . (...) -- C:\WINDOWS\System32\keyboard.sys [42537]
O58 - SDL:2008/04/14 13:00:00 AC . (...) -- C:\WINDOWS\System32\ntdos.sys [27916]
O58 - SDL:2008/04/14 13:00:00 AC . (...) -- C:\WINDOWS\System32\ntdos404.sys [29146]
O58 - SDL:2008/04/14 13:00:00 AC . (...) -- C:\WINDOWS\System32\ntdos411.sys [29370]
O58 - SDL:2008/04/14 13:00:00 AC . (...) -- C:\WINDOWS\System32\ntdos412.sys [29274]
O58 - SDL:2008/04/14 13:00:00 AC . (...) -- C:\WINDOWS\System32\ntdos804.sys [29146]
O58 - SDL:2008/04/14 13:00:00 AC . (...) -- C:\WINDOWS\System32\ntio.sys [34000]
O58 - SDL:2008/04/14 13:00:00 AC . (...) -- C:\WINDOWS\System32\ntio404.sys [34560]
O58 - SDL:2008/04/14 13:00:00 AC . (...) -- C:\WINDOWS\System32\ntio411.sys [35648]
O58 - SDL:2008/04/14 13:00:00 AC . (...) -- C:\WINDOWS\System32\ntio412.sys [35424]
O58 - SDL:2008/04/14 13:00:00 AC . (...) -- C:\WINDOWS\System32\ntio804.sys [34560]

---\\ Associations Shell Spawning (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\system32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®

---\\ Menu de démarrage Internet (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe ©

---\\ Recherche d'infection sur les navigateurs (5) - 7s
O69 - SBI: SearchScopes [HKCU] yandex.ru-163037 - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - () - http://search.live.com/
O69 - SBI: SearchScopes [HKCU] {67A2568C-7A0A-4EED-AECC-B5405DE63B64} [DefaultScope] - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKCU] {B3828FF4-077A-42E7-9479-E20E14266AB3} - (Google) - http://www.google.com/

---\\ Enumère les services démarrés par Svchost (39) - 3s
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (...) -- C:\WINDOWS\System32\appmgmts.dll [0]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496] ©
O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [78336] ©
O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464] ©
O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576] ©
O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488] ©
O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\system32\ersvc.dll [23040] ©
O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - .) -- C:\WINDOWS\system32\es.dll [253952] ©
O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: HidServ (HidServ) . (...) -- C:\WINDOWS\System32\hidserv.dll [0]
O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [99840] ©
O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [132096] ©
O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\system32\msgsvc.dll [33792] ©
O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144] ©
O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- C:\WINDOWS\system32\mswsock.dll [247808] ©
O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [53248] ©
O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560] ©
O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [18944] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\WINDOWS\system32\ipnathlp.dll [332800] ©
O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\system32\tapisrv.dll [249856] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112] ©
O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176] ©
O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483840] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\wmisvc.dll [145408] ©
O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896] ©
O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024] ©
O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376] ©
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\system32\qmgr.dll [409088] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll [38400] ©
O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- C:\WINDOWS\system32\mspmsnsv.dll [27136] ©

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (11) - 25s

SS - Demand [16/12/2015] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SS - Auto [16/12/2015] [ 930944] Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\Antivirus\avmailc.exe =>.Avira Operations GmbH & Co. KG®
SR - Auto [16/12/2015] [ 466408] Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\Antivirus\sched.exe =>.Avira Operations GmbH & Co. KG®
SR - Auto [16/12/2015] [ 466408] Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\Antivirus\avguard.exe =>.Avira Operations GmbH & Co. KG®
SS - Auto [16/12/2015] [ 1222952] Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\Antivirus\avwebgrd.exe =>.Avira Operations GmbH & Co. KG®
SR - Auto [08/04/2010] [ 312400] Dritek WMI Service (DsiWMIService) . (.Dritek System Inc..) - C:\Program Files\Launch Manager\dsiwmis.exe =>.Dritek System Inc.®
SR - Auto [04/06/2009] [ 354840] Intel(R) Matrix Storage Event Monitor (IAANTMON) . (.Intel Corporation.) - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe =>.Intel Corporation®
SS - Demand [16/12/2015] [ 148136] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SS - Auto [09/07/2015] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SR - Auto [28/01/2010] [ 243232] Updater Service (Updater Service) . (.Acer Group.) - C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe =>.Acer Incorporated®

---\\ Scan Additionnel (1) - 0s
~ Aucun élément malicieux ou superflu trouvé.

---\\ Récapitulatif des éléments trouvés sur votre station (1) - 0s
~ Aucun élément malicieux ou superflu trouvé.

~ End of the scan, 75388 items in 00h03mn22s (599)(0)

Publicité


Signaler le contenu de ce document

Publicité