cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.3.28.76 Par Nicolas Coolman (2016/03/28)
~ Démarré par clementine (Administrator) (2016/03/29 21:13:40)
~ Site: http://www.nicolascoolman.com
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\clementine\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\clementine\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 7 Starter, 32-bit Service Pack 1 (Build 7601)

---\\ Navigateurs Internet (2) - 1s
MFIE: Mozilla Firefox 34.0.5 (x86 fr)
MSIE: Internet Explorer v11.0.9600.17959

---\\ Informations sur les produits Windows (4) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK
Windows Activation Technologies : KO

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 54 Stepping 1, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 1036.596 MB (14% free)
System Restore: Activé (Enable)
System drive C: has 244 GB () free of 291 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: CLEMENTINE-PC
~ User Name: clementine
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 244 GB free of 291 GB (System)
~ Drive D: has 2 GB free of 3 GB

---\\ Etat du Centre de Sécurité Windows (11) - 1s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (24) - 5s
[MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - 14/07/2011 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2616320] =>.Microsoft Corporation
[MD5.51138BEEA3E2C21EC44D0932C71762A8] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] =>.Microsoft Corporation
[MD5.B5C5DCAD3899512020D135600129D665] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [96256] =>.Microsoft Corporation
[MD5.0AC8CD2138FD10C4A0E2FF08F892359C] - 16/07/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [1951232] =>.Microsoft Corporation
[MD5.52449FD429D6053B78AE564DEF303870] - 17/07/2014 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [304128] =>.Microsoft Corporation
[MD5.E3AE23569749DE12D45BA3B489A036AE] - 20/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [193536] =>.Microsoft Corporation
[MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 14/07/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [270336] =>.Microsoft Corporation
[MD5.129F80D7868E30DF3E3DE33A1D3132B4] - 08/11/2014 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation
[MD5.D0B388DA1D111A34366E04EB4A5DD156] - 30/05/2014 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [338944] =>.Microsoft Corporation
[MD5.338C86357871C167A96AB976519BF59E] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [21584] =>.Microsoft Windows®
[MD5.77EA11B065E0A8AB902D78145CA51E10] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70656] =>.Microsoft Corporation
[MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - 20/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [108544] =>.Microsoft Corporation
[MD5.F024449C97EC1E464AAFFDA18593DB88] - 20/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [78336] =>.Microsoft Corporation
[MD5.9036377B8A6C15DC2EEC53E489D159B5] - 20/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [108544] =>.Microsoft Corporation
[MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [80896] =>.Microsoft Corporation
[MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [101888] =>.Microsoft Corporation
[MD5.7A97B5B6E04AB52FA53C8EA574913A04] - 15/07/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [124416] =>.Microsoft Corporation
[MD5.280122DDCF04B378EDD1AD54D71C1E54] - 20/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [187904] =>.Microsoft Corporation
[MD5.C8DFF8D07755A66C7A4A738930F0FEAC] - 24/01/2014 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1212352] =>.Microsoft Windows®
[MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [79360] =>.Microsoft Corporation
[MD5.D9F91EAFEC2815365CBE6D167E4E332A] - 14/07/2009 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [78848] =>.Microsoft Corporation
[MD5.3E21C083B8A01CB70BA1F09303010FCE] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [71168] =>.Microsoft Corporation
[MD5.7FE680A3DFA421C4A8E4879AE4C5AAB0] - 11/11/2014 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [74752] =>.Microsoft Corporation
[MD5.F497F67932C6FA693D7DE2780631CFE7] - 20/11/2010 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [245632] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (9) - 5s
O23 - Service: Adobe Active File Monitor V9 (AdobeActiveFileMonitor9.0) . (.Adobe Systems Incorporated - Adobe Photoshop Elements 9.0 (component).) - c:\Program Files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe =>.Adobe Systems Incorporated®
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
O23 - Service: Dritek WMI Service (DsiWMIService) . (.Dritek System Inc. - Dritek WMI Service.) - C:\Program Files\Launch Manager\dsiwmis.exe =>.Dritek System Inc.®
O23 - Service: ePower Service (ePowerSvc) . (.Acer Incorporated - ePowerSvc.) - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe =>.Acer Incorporated®
O23 - Service: GREGService (GREGService) . (.Acer Incorporated - Global Registration Service.) - C:\Program Files\Packard Bell\Registration\GREGsvc.exe =>.Acer Incorporated®
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel Corporation®
O23 - Service: IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc. - Realtek Card Reader Icon Tool..) - C:\Program Files\Realtek\Realtek PCIE Card Reader\RIconMan.exe =>.Realsil Microelectronics Inc.
O23 - Service: Live Updater Service (Live Updater Service) . (.Acer Incorporated - Updater Service.) - C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe =>.Acer Incorporated®
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl®

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (12) - 66s

SR - Auto [30/09/2010] [ 169408] Adobe Active File Monitor V9 (AdobeActiveFileMonitor9.0) . (.Adobe Systems Incorporated.) - c:\Program Files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe =>.Adobe Systems Incorporated®
SR - Auto [06/06/2011] [ 64952] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SR - Auto [01/07/2011] [ 353360] Dritek WMI Service (DsiWMIService) . (.Dritek System Inc..) - C:\Program Files\Launch Manager\dsiwmis.exe =>.Dritek System Inc.®
SR - Auto [02/08/2011] [ 739944] ePower Service (ePowerSvc) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe =>.Acer Incorporated®
SS - Demand [12/10/2010] [ 206072] GamesAppService (GamesAppService) . (.WildTangent, Inc..) - C:\Program Files\WildTangent Games\App\GamesAppService.exe =>.WildTangent Inc®
SR - Auto [30/05/2011] [ 36456] GREGService (GREGService) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Registration\GREGsvc.exe =>.Acer Incorporated®
SR - Auto [06/11/2010] [ 13336] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel Corporation®
SR - Auto [07/03/2011] [ 1755136] IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc..) - C:\Program Files\Realtek\Realtek PCIE Card Reader\RIconMan.exe =>.Realsil Microelectronics Inc.
SR - Auto [06/02/2012] [ 255376] Live Updater Service (Live Updater Service) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe =>.Acer Incorporated®
SS - Demand [27/12/2014] [ 114800] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SS - Auto [11/12/2014] [ 315496] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl®

---\\ Tâches planifiées en automatique (2) - 3s
[MD5.A93B9EA5E9AAA2CD3711C948A934EB47] [APT] [UALU notificatin] (.Acer Incorporated.) -- C:\Program Files\Packard Bell\Packard Bell Updater\UALU.exe [22392] (.Activate.) =>.Acer Incorporated®
O39 - APT: UALU notificatin - (.Acer Incorporated.) -- C:\Windows\System32\Tasks\UALU notificatin [4018] =>.Acer Incorporated®

---\\ Processus lancés (22) - 6s
[MD5.1474F121C3DF1232D3E7239C03691EE6] - (.Adobe Systems Incorporated - Adobe Photoshop Elements 9.0 (component).) -- c:\Program Files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe [169408] [PID.1744] =>.Adobe Systems Incorporated®
[MD5.11A52CF7B265631DEEB24C6149309EFF] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [64952] [PID.1848] =>.Adobe Systems, Incorporated®
[MD5.9DD3A22F804697606C2B7FF9E912FF6B] - (.Dritek System Inc. - Dritek WMI Service.) -- C:\Program Files\Launch Manager\dsiwmis.exe [353360] [PID.1928] =>.Dritek System Inc.®
[MD5.F47D15467B3093E77A43808142E2CC2A] - (.Acer Incorporated - ePowerSvc.) -- C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [739944] [PID.1960] =>.Acer Incorporated®
[MD5.A824317EA303679481EF1039A5D66212] - (.Dritek System Inc. - Launch Manager Worker.) -- C:\Program Files\Launch Manager\LMworker.exe [343632] [PID.1968] =>.Dritek System Inc.®
[MD5.21ACFD2B4BF6C0F4D9080A437E400E88] - (.Dritek System Inc. - Launch Manager utility process.) -- C:\Program Files\Launch Manager\LMutilps32.exe [418896] [PID.1976] =>.Dritek System Inc.®
[MD5.C9B2D1D3F86FD3673EF847DEF73B6F9E] - (.Acer Incorporated - Global Registration Service.) -- C:\Program Files\Packard Bell\Registration\GREGsvc.exe [36456] [PID.332] =>.Acer Incorporated®
[MD5.0DFFBA5AE3D2E1C076BD8E6F52C4FDFB] - (.Realsil Microelectronics Inc. - Realtek Card Reader Icon Tool..) -- C:\Program Files\Realtek\Realtek PCIE Card Reader\RIconMan.exe [1755136] [PID.460] =>.Realsil Microelectronics Inc.
[MD5.6BB516A31DE232DAB436FF3A117E1E80] - (.Acer Incorporated - Updater Service.) -- C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [255376] [PID.496] =>.Acer Incorporated®
[MD5.766BE50DD0598AB0611B58157795A2C6] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [135168] [PID.2276] =>.Intel Corporation
[MD5.4427D7FFAB91B2A427B15661D6678444] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [168960] [PID.2300] =>.Intel Corporation
[MD5.76CC45CE5DCDDBA563BEDEE2E8F1C4E2] - (.Intel Corporation - igfxsrvc Module.) -- C:\Windows\System32\igfxsrvc.exe [261632] [PID.2336] =>.Intel Corporation
[MD5.44B1EF93F2C1ACF466556DA1F58FE228] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [161280] [PID.2384] =>.Intel Corporation
[MD5.9ABC4E3B00CFA3A47D5569F5B49FE42F] - (.Dritek System Inc. - Launch Manager.) -- C:\Program Files\Launch Manager\LManager.exe [1103440] [PID.2592] =>.Dritek System Inc.®
[MD5.DCFE7CE897163498DDBEE99CA9332731] - (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1934632] [PID.2616] =>.Synaptics Incorporated®
[MD5.A2AE41B76FA4A63B57B5453CF1C465A7] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [10082920] [PID.2624] =>.Realtek Semiconductor Corp®
[MD5.E289F53C9B4AA3130FA8A04A3AD28701] - (.Acer Incorporated - ePowerTray.) -- C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe [715368] [PID.2820] =>.Acer Incorporated®
[MD5.EB996D1BB30C87686BC91585A99139CB] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\Program Files\Synaptics\SynTP\SynTPHelper.exe [107816] [PID.3044] =>.Synaptics Incorporated®
[MD5.B3E2D5B2C584C1B51ED9F8BADDE31278] - (.Intel Corporation - igfxext Module.) -- C:\Windows\System32\igfxext.exe [171520] [PID.3100] =>.Intel Corporation
[MD5.915B5BB98F9E7FACACE65BF6600F3461] - (.Acer Incorporated - ePowerEvent.) -- C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerEvent.exe [469608] [PID.3492] =>.Acer Incorporated®
[MD5.8FFF9083252C16FE3960173722605E9E] - (.Intel Corporation - IAStorDataSvc.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [13336] [PID.3848] =>.Intel Corporation®
[MD5.1DE4831E18DC61E758EF7F3EB193B736] - (.Nicolas Coolman - ZHPDiag.) -- D:\ZHPDiag3-2.exe [2166272] [PID.5840] =>.Nicolas Coolman

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (5) - 3s
P2 - EXT FILE: (...) -- C:\Users\clementine\AppData\Roaming\Mozilla\Firefox\Profiles\clohok2r.default\searchplugins\sweet-page.xml =>PUP.Optional.SweetPage
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} =>.Mozilla
P2 - EXT: (.lightningnewtab.com - Fast Start.) -- C:\Users\clementine\AppData\Roaming\Mozilla\Firefox\Profiles\clohok2r.default\extensions\faststartff@gmail.com =>PUP.Optional.FastStart
P2 - EXT: (.lipton - Search Enginer.) -- C:\Users\clementine\AppData\Roaming\Mozilla\Firefox\Profiles\clohok2r.default\extensions\searchengine@gmail.com
P2 - FPN: [HKLM] [@WildTangent.com/GamesAppPresenceDetector,Version=1.0] - (.WildTangent.) -- C:\Program Files\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll =>.WildTangent

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (10) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkID=617910&ResetID=130858789996086815&GUID=00000000-0000-0000-0000-000000000000
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkID=617910&ResetID=130858789988754802&GUID=00000000-0000-0000-0000-000000000000
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?linkid=54896
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.sweet-page.com/?type=hp&ts=1424629293&from=corfr&uid=wdcxwd3200bpvt-22jj5t0_wd-wx31eb1cra26cra26 =>PUP.Optional.SweetPage
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/web/?type=ds&ts=1424629293&from=corfr&uid=wdcxwd3200bpvt-22jj5t0_wd-wx31eb1cra26cra26&q={searchterms} =>PUP.Optional.SweetPage
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.sweet-page.com/?type=hp&ts=1424629293&from=corfr&uid=wdcxwd3200bpvt-22jj5t0_wd-wx31eb1cra26cra26 =>PUP.Optional.SweetPage
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/web/?type=ds&ts=1424629293&from=corfr&uid=wdcxwd3200bpvt-22jj5t0_wd-wx31eb1cra26cra26&q={searchterms} =>PUP.Optional.SweetPage
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer,Proxy Management (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 2s
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (2) - 0s
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll =>.Adobe Systems, Incorporated®
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll =>.Microsoft Corporation®

---\\ Applications lancées au démarrage du système (14) - 3s
O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems, Incorporated®
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe =>.Intel Corporation
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation
O4 - HKLM\..\Run: [GfxServiceInstall] . (...) -- C:\Windows\System32\GfxCUIServiceInstall.vbs
O4 - HKLM\..\Run: [LManager] . (.Dritek System Inc. - Launch Manager.) -- C:\Program Files\Launch Manager\LManager.exe =>.Dritek System Inc.®
O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe =>.Synaptics Incorporated®
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated®
O4 - HKLM\..\Run: [Power Management] . (.Acer Incorporated - ePowerTray.) -- C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe =>.Acer Incorporated®
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation

---\\ Raccourcis Global Startup (9) - 7s
O4 - GS\Desktop [Administrateur]: PC Inspector File Recovery.lnk . (...) C:\Program Files\Convar\PC Inspector File Recovery\Filerecovery.exe
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (...) C:\Users\clementine\AppData\Roaming\ZHP\ZHPDiag3.exe
O4 - GS\TaskBar [Administrateur]: Welcome Center.lnk . (.Acer Incorporated - Welcome Center.) C:\Program Files\Packard Bell\Welcome Center\OEMWelcomeCenter.exe =>.Acer Incorporated®
O4 - GS\Desktop [clementine]: PC Inspector File Recovery.lnk . (...) C:\Program Files\Convar\PC Inspector File Recovery\Filerecovery.exe
O4 - GS\Desktop [clementine]: ZHPDiag.lnk . (...) C:\Users\clementine\AppData\Roaming\ZHP\ZHPDiag3.exe
O4 - GS\TaskBar [clementine]: Welcome Center.lnk . (.Acer Incorporated - Welcome Center.) C:\Program Files\Packard Bell\Welcome Center\OEMWelcomeCenter.exe =>.Acer Incorporated®
O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}\SkypeIcon.exe
O4 - GS\CommonDesktop [Public]: Video Web Camera.lnk . (.CyberLink Corp. - WebCam.) C:\Program Files\Video Web Camera\WebCam.exe =>.CyberLink®
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc

---\\ Modification Domaine/Adresses DNS (2) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{AEECAB33-8419-421E-918E-982F148EAEA0}: DhcpNameServer = 192.168.1.1

---\\ Protocole additionnel (22) - 2s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files\Windows Live\Mail\mailcomm.dll =>.Microsoft Corporation®
O18 - Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation®
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®

---\\ Logiciels installés (57) - 33s
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {FDB3B167-F4FA-461D-976F-286304A57B2A} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Community Help - (.Adobe Systems Incorporated.) [HKLM] -- {F302F4F0-588D-6501-1ACF-BE3FDCC9135D} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Community Help - (.Adobe Systems Incorporated.) [HKLM] -- chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Photoshop Elements 9 - (.Adobe Systems Incorporated.) [HKLM] -- {007F778D-F15C-4EAB-AE92-071D21FAF632} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Photoshop Elements 9 - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Photoshop Elements 9 =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Reader X (10.1.0) MUI - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-FFFF-7B44-AA0000000001} =>.Adobe Systems Incorporated
O42 - Logiciel: Akhra: The Treasures - (.WildTangent.) [HKLM] -- WTA-71bb890a-20c1-4fcc-b2ca-02084f7a8ef3 =>.WildTangent Inc®
O42 - Logiciel: Alice's Magical Mahjong - (.WildTangent.) [HKLM] -- WTA-a5523f60-b9e3-4ebd-9e4b-1c498e778935 =>.WildTangent Inc®
O42 - Logiciel: Bejeweled 3 - (.WildTangent.) [HKLM] -- WTA-19810a32-d206-4e9f-9d1b-b6d6c32e4ca6 =>.WildTangent Inc®
O42 - Logiciel: Chuzzle Deluxe - (.WildTangent.) [HKLM] -- WTA-f9828f91-ccff-43f1-8b4e-2d9fd4994336 =>.WildTangent Inc®
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft
O42 - Logiciel: Diego's Ultimate Rescue - (.WildTangent.) [HKLM] -- WTA-d9ebd02f-22bd-4d14-96f2-266c53718cf6 =>.WildTangent Inc®
O42 - Logiciel: Elements 9 Organizer - (.Adobe Systems Incorporated.) [HKLM] -- {433EACD8-4747-4A6A-826A-FFA9F39B0D40} =>.Adobe Systems Incorporated
O42 - Logiciel: Elements STI Installer - (.Adobe Systems Incorporated.) [HKLM] -- {E2AE009D-37E5-4724-A6B8-0ED6A6BA4F68} =>.Adobe Systems Incorporated®
O42 - Logiciel: Evernote v. 4.5.1 - (.Evernote Corp..) [HKLM] -- {28921580-E4BB-11E0-9FD7-1CC1DEF07CBE} =>.Evernote Corp.
O42 - Logiciel: Final Drive: Nitro - (.WildTangent.) [HKLM] -- WTA-48ae1904-47fa-4fad-ae0b-be3ca5fed1c0 =>.WildTangent Inc®
O42 - Logiciel: Identity Card - (.Packard Bell.) [HKLM] -- Identity Card =>.Acer Incorporated®
O42 - Logiciel: Insaniquarium Deluxe - (.WildTangent.) [HKLM] -- WTA-10dd4352-012f-4379-ab78-8fe4aa6670f7 =>.WildTangent Inc®
O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421} =>.Intel Corporation®
O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation®
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} =>.Intel Corporation®
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} =>.Microsoft Corporation
O42 - Logiciel: Launch Manager - (.Packard Bell.) [HKLM] -- LManager =>.Dritek System Inc.®
O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM] -- {95120000-00B9-0409-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Mozilla Firefox 34.0.5 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 34.0.5 (x86 fr) =>.Mozilla
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft
O42 - Logiciel: My Farm Life - (.WildTangent.) [HKLM] -- WTA-01a38139-d0ef-483e-981f-b4464594d737 =>.WildTangent Inc®
O42 - Logiciel: My Kingdom for the Princess 3 - (.WildTangent.) [HKLM] -- WTA-086e1090-6a5d-4252-ba39-1ead4b2ee81f =>.WildTangent Inc®
O42 - Logiciel: Packard Bell Games - (.WildTangent.) [HKLM] -- WildTangent packardbell Master Uninstall =>.WildTangent Inc
O42 - Logiciel: Packard Bell Power Management - (.Packard Bell.) [HKLM] -- {3DB0448D-AD82-4923-B305-D001E521A964} =>.Acer Incorporated®
O42 - Logiciel: Packard Bell Recovery Management - (.Packard Bell.) [HKLM] -- {7F811A54-5A09-4579-90E1-C93498E230D9} =>.Acer Incorporated®
O42 - Logiciel: Packard Bell Registration - (.Packard Bell.) [HKLM] -- Packard Bell Registration =>.Acer Incorporated®
O42 - Logiciel: Packard Bell ScreenSaver - (.Packard Bell .) [HKLM] -- Packard Bell Screensaver =>.Acer Incorporated®
O42 - Logiciel: Packard Bell Social Networks - (.CyberLink Corp..) [HKLM] -- {64EF903E-D00A-414C-94A4-FBA368FFCDC9} =>.CyberLink®
O42 - Logiciel: Packard Bell Social Networks - (.CyberLink Corp..) [HKLM] -- InstallShield_{64EF903E-D00A-414C-94A4-FBA368FFCDC9} =>.CyberLink®
O42 - Logiciel: Packard Bell Updater - (.Packard Bell.) [HKLM] -- {EE171732-BEB4-4576-887D-CB62727F01CA} =>.Acer Incorporated®
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp.
O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM] -- {C1594429-8296-4652-BF54-9DBE4932A44C} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Running Sheep - (.WildTangent.) [HKLM] -- WTA-65b76649-e652-4cc6-8c0a-04363e63c692 =>.WildTangent Inc®
O42 - Logiciel: Skip-Bo - Castaway Caper - (.WildTangent.) [HKLM] -- WTA-df11a757-6279-4c5f-a96a-b11f9b6427da =>.WildTangent Inc®
O42 - Logiciel: Skype™ 7.0 - (.Skype Technologies S.A..) [HKLM] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} =>.Skype Technologies S.A.
O42 - Logiciel: Slingo Deluxe - (.WildTangent.) [HKLM] -- WTA-61dbd859-29da-47eb-a444-20c8db768db1 =>.WildTangent Inc®
O42 - Logiciel: Super Granny 6 - (.WildTangent.) [HKLM] -- WTA-b9beaf83-c1d0-4dac-9d92-c31f2b62a484 =>.WildTangent Inc®
O42 - Logiciel: sweet-page uninstall - (.sweet-page.) [HKLM] -- sweet-page uninstall =>PUP.Optional.SweetPage
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM] -- SynTPDeinstKey =>.Synaptics Incorporated
O42 - Logiciel: Update Installer for WildTangent Games App - (.WildTangent.) [HKLM] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App =>.WildTangent Inc
O42 - Logiciel: Video Web Camera - (.CyberLink Corp..) [HKLM] -- {A0382E3C-7384-429A-9BFA-AF5888E5A193} =>.CyberLink®
O42 - Logiciel: Video Web Camera - (.CyberLink Corp..) [HKLM] -- InstallShield_{A0382E3C-7384-429A-9BFA-AF5888E5A193} =>.CyberLink®
O42 - Logiciel: Wedding Dash - (.WildTangent.) [HKLM] -- WTA-dd3fc29f-e044-4df7-95ed-cccd2f0e116a =>.WildTangent Inc®
O42 - Logiciel: Welcome Center - (.Packard Bell.) [HKLM] -- Packard Bell Welcome Center =>.Acer Incorporated®
O42 - Logiciel: WildTangent Games App (Packard Bell Games) - (.WildTangent.) [HKLM] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-packardbell =>.WildTangent Inc

---\\ HKCU & HKLM Software Keys (60) - 33s
HKLM\SOFTWARE\Acer
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\ATI Technologies
HKLM\SOFTWARE\CBSTEST
HKLM\SOFTWARE\Cyberlink
HKLM\SOFTWARE\Dolby
HKLM\SOFTWARE\Dritek
HKLM\SOFTWARE\DTS
HKLM\SOFTWARE\Evernote
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\IM Providers
HKLM\SOFTWARE\InstalledOptions
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\Knowles
HKLM\SOFTWARE\Licenses
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\OEM
HKLM\SOFTWARE\OemSetup
HKLM\SOFTWARE\OOBEOffer
HKLM\SOFTWARE\Packard Bell
HKLM\SOFTWARE\Realtek
HKLM\SOFTWARE\Realtek Semiconductor Corp.
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\RTLSetup
HKLM\SOFTWARE\Skype
HKLM\SOFTWARE\Sonic
HKLM\SOFTWARE\SonicFocus
HKLM\SOFTWARE\SRS Labs
HKLM\SOFTWARE\supWindowsMangerProtect =>PUP.Optional.WpManager
HKLM\SOFTWARE\sweet-pageSoftware =>PUP.Optional.SweetPage
HKLM\SOFTWARE\Symantec
HKLM\SOFTWARE\Synaptics
HKLM\SOFTWARE\Waves Audio
HKLM\SOFTWARE\WildTangent
HKLM\SOFTWARE\WOW6432Node
HKCU\SOFTWARE\Acer
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Convar
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\Dritek
HKCU\SOFTWARE\InstallCore =>Adware.InstallCore
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MainConcept
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\Norton
HKCU\SOFTWARE\OEM
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\Smart PC Solutions =>PUP.Optional.SmartPCSolutions
HKCU\SOFTWARE\Symantec
HKCU\SOFTWARE\Synaptics
HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software

---\\ Contenu des dossiers Programmes (124) - 52s
O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Accessory Store =>.Acer Incorporated®
O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Adobe =>.Adobe Systems, Incorporated®
O43 - CFD: 23/03/2016 - [] D -- C:\Program Files\Common Files
O43 - CFD: 22/02/2015 - [] D -- C:\Program Files\Convar
O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\DVD Maker
O43 - CFD: 16/12/2011 - [] D -- C:\Program Files\Evernote
O43 - CFD: 08/11/2014 - [0] SHD -- C:\Program Files\Fichiers communs
O43 - CFD: 08/11/2014 - [] HD -- C:\Program Files\InstallShield Installation Information =>.Macrovision Corporation®
O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Intel =>.Intel Corporation®
O43 - CFD: 04/09/2015 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Launch Manager =>.Dritek System Inc.®
O43 - CFD: 08/11/2014 - [0] D -- C:\Program Files\Microsoft
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Microsoft Games
O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 28/12/2015 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation®
O43 - CFD: 16/12/2011 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 22/12/2014 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 28/12/2015 - [] D -- C:\Program Files\Mozilla Firefox
O43 - CFD: 30/12/2014 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla Corporation®
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Packard Bell =>.Acer Incorporated®
O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Packard Bell Games
O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Realtek =>.Realtek Semiconductor Corp®
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 02/09/2015 - [] RD -- C:\Program Files\Skype =>.Skype Software Sarl®
O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Social Networks =>.CyberLink®
O43 - CFD: 16/12/2011 - [] D -- C:\Program Files\SymSilent =>.Symantec Corporation®
O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Synaptics =>.Synaptics Incorporated®
O43 - CFD: 08/11/2014 - [0] HD -- C:\Program Files\Temp
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Video Web Camera =>.CyberLink®
O43 - CFD: 16/12/2011 - [] D -- C:\Program Files\WildTangent Games =>.WildTangent Inc®
O43 - CFD: 21/11/2014 - [] D -- C:\Program Files\Windows Defender
O43 - CFD: 16/12/2011 - [] D -- C:\Program Files\Windows Live =>.Microsoft Corporation®
O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 04/09/2015 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 20/11/2010 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Windows Sidebar
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 16/12/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Evernote
O43 - CFD: 08/11/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 08/11/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 28/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 08/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Packard Bell - Security & Support
O43 - CFD: 02/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 08/11/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Social Networks
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 08/11/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video Web Camera
O43 - CFD: 16/12/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
O43 - CFD: 08/11/2014 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 08/11/2014 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 08/11/2014 - [] D -- C:\ProgramData\CLSK
O43 - CFD: 31/08/2015 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 16/12/2011 - [0] D -- C:\ProgramData\Evernote
O43 - CFD: 08/11/2014 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 08/11/2014 - [] D -- C:\ProgramData\install_clap
O43 - CFD: 08/11/2014 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 27/12/2014 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 08/11/2014 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 08/11/2014 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 23/03/2016 - [] D -- C:\ProgramData\Norton
O43 - CFD: 16/12/2011 - [] D -- C:\ProgramData\NortonInstaller
O43 - CFD: 08/11/2014 - [] D -- C:\ProgramData\oem
O43 - CFD: 16/12/2011 - [] D -- C:\ProgramData\Packard Bell
O43 - CFD: 02/09/2015 - [] D -- C:\ProgramData\Skype
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 22/02/2015 - [] AD -- C:\ProgramData\Temp
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 16/12/2011 - [] D -- C:\ProgramData\WildTangent
O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Common Files\Adobe
O43 - CFD: 16/12/2011 - [] D -- C:\Program Files\Common Files\Adobe AIR
O43 - CFD: 31/08/2015 - [] D -- C:\Program Files\Common Files\AV
O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Common Files\InstallShield
O43 - CFD: 16/12/2011 - [] D -- C:\Program Files\Common Files\microsoft shared
O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Common Files\PX Storage Engine
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\Services
O43 - CFD: 02/09/2015 - [] D -- C:\Program Files\Common Files\Skype
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 30/11/2014 - [] D -- C:\Program Files\Common Files\System
O43 - CFD: 16/12/2011 - [] D -- C:\Program Files\Common Files\Windows Live
O43 - CFD: 08/11/2014 - [] D -- C:\Users\clementine\AppData\Roaming\Adobe
O43 - CFD: 31/08/2015 - [] D -- C:\Users\clementine\AppData\Roaming\CyberLink
O43 - CFD: 08/11/2014 - [] D -- C:\Users\clementine\AppData\Roaming\Identities
O43 - CFD: 16/12/2011 - [] D -- C:\Users\clementine\AppData\Roaming\Macromedia
O43 - CFD: 29/03/2016 - [] SD -- C:\Users\clementine\AppData\Roaming\Microsoft
O43 - CFD: 08/11/2014 - [] D -- C:\Users\clementine\AppData\Roaming\Mozilla
O43 - CFD: 17/01/2015 - [0] D -- C:\Users\clementine\AppData\Roaming\Windows Live Writer
O43 - CFD: 29/03/2016 - [] D -- C:\Users\clementine\AppData\Roaming\ZHP
O43 - CFD: 08/11/2014 - [] D -- C:\Users\clementine\AppData\Local\Adobe
O43 - CFD: 08/11/2014 - [0] SHD -- C:\Users\clementine\AppData\Local\Application Data
O43 - CFD: 23/03/2016 - [] D -- C:\Users\clementine\AppData\Local\CrashDumps
O43 - CFD: 31/08/2015 - [] D -- C:\Users\clementine\AppData\Local\CyberLink
O43 - CFD: 27/12/2015 - [0] SHD -- C:\Users\clementine\AppData\Local\EmieBrowserModeList
O43 - CFD: 27/12/2015 - [0] SHD -- C:\Users\clementine\AppData\Local\EmieSiteList
O43 - CFD: 27/12/2015 - [0] SHD -- C:\Users\clementine\AppData\Local\EmieUserList
O43 - CFD: 08/11/2014 - [0] SHD -- C:\Users\clementine\AppData\Local\Historique
O43 - CFD: 31/08/2015 - [] D -- C:\Users\clementine\AppData\Local\Microsoft
O43 - CFD: 08/11/2014 - [] D -- C:\Users\clementine\AppData\Local\Mozilla
O43 - CFD: 29/03/2016 - [] D -- C:\Users\clementine\AppData\Local\Temp
O43 - CFD: 08/11/2014 - [0] SHD -- C:\Users\clementine\AppData\Local\Temporary Internet Files
O43 - CFD: 08/11/2014 - [0] D -- C:\Users\clementine\AppData\Local\VirtualStore
O43 - CFD: 04/09/2015 - [] D -- C:\Users\clementine\AppData\Local\Windows Live
O43 - CFD: 17/01/2015 - [] D -- C:\Users\clementine\AppData\Local\Windows Live Writer
O43 - CFD: 22/02/2015 - [0] D -- C:\Users\clementine\AppData\Local\{7C725F43-FF9A-42EF-A362-7F45D2C57141} =>.Superfluous.Empty
O43 - CFD: 17/01/2015 - [0] D -- C:\Users\clementine\AppData\Local\{8D6E9D7C-39B3-4DF0-A20B-34E2DB31A89E} =>.Superfluous.Empty
O43 - CFD: 31/08/2015 - [0] D -- C:\Users\clementine\AppData\Local\{93735635-402D-4780-B041-32A9CC59F743} =>.Superfluous.Empty
O43 - CFD: 17/01/2015 - [0] D -- C:\Users\clementine\AppData\Local\{B402BC43-E3E4-4FAE-AF18-04C51909D19E} =>.Superfluous.Empty
O43 - CFD: 22/03/2015 - [0] D -- C:\Users\clementine\AppData\Local\{C2448619-1E63-41A5-B47A-59B942742B98} =>.Superfluous.Empty
O43 - CFD: 08/02/2015 - [0] D -- C:\Users\clementine\AppData\Local\{ED0A78A3-5C51-4046-9060-DEFE1FE054EE} =>.Superfluous.Empty
O43 - CFD: 17/01/2015 - [0] D -- C:\Users\clementine\AppData\Local\{FCCF3FF3-5791-430E-A69E-B82B9642681D} =>.Superfluous.Empty
O43 - CFD: 31/08/2015 - [0] D -- C:\Users\clementine\AppData\Local\{FFEAD167-B97D-42A4-97D8-94C040232EE6} =>.Superfluous.Empty
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\clementine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 04/09/2015 - [] RD -- C:\Users\clementine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 22/02/2015 - [] D -- C:\Users\clementine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Convar
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\clementine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 04/09/2015 - [] RD -- C:\Users\clementine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup

---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 1s
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation

---\\ Liste des pilotes du système (69) - 58s
O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400] =>.Microsoft Windows®
O58 - SDL:2011/07/14 03:37:59 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [80256] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312] =>.Microsoft Windows®
O58 - SDL:2011/07/14 03:37:59 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [22400] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:02:49 A . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gi.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888] =>.Broadcom Corporation
O58 - SDL:2011/08/18 14:38:20 A . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless dr.) -- C:\Windows\System32\drivers\BCMWL6.SYS [4268096] =>.Broadcom Corporation®
O58 - SDL:2009/07/14 00:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/14 00:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/14 02:57:25 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [272128] =>.Brother Industries Ltd.
O58 - SDL:2009/07/14 00:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] =>.Brother Industries Ltd.
O58 - SDL:2009/07/14 00:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] =>.Brother Industries Ltd.
O58 - SDL:2009/07/14 00:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] =>.Brother Industries Ltd.
O58 - SDL:2009/07/14 00:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080] =>.Broadcom Corporation
O58 - SDL:2009/10/20 04:00:00 A . (.Sonic Solutions - CDR4 CD and DVD Place Holder Driver (see Px.) -- C:\Windows\System32\drivers\cdr4_xp.sys [9072] =>.Sonic Solutions®
O58 - SDL:2009/10/20 04:00:00 A . (.Sonic Solutions - CDRAL Place Holder Driver (see PxHelp).) -- C:\Windows\System32\drivers\cdralw2k.sys [9200] =>.Sonic Solutions®
O58 - SDL:2009/07/14 03:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160] =>.Broadcom Corporation
O58 - SDL:2009/07/14 00:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624] =>.Hauppauge Computer Works, Inc.
O58 - SDL:2009/07/14 03:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152] =>.Microsoft Windows®
O58 - SDL:2010/11/06 10:39:18 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x86.) -- C:\Windows\System32\drivers\iaStor.sys [354840] =>.Intel Corporation®
O58 - SDL:2011/07/14 03:37:59 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332160] =>.Microsoft Windows®
O58 - SDL:2011/12/30 12:03:00 A . (.Intel Corporation - Intel (R) WDDM Kernel Mode Driver.) -- C:\Windows\System32\drivers\igddim32.sys [1338368] =>.Intel Corporation
O58 - SDL:2011/12/30 11:56:12 A . (.Intel Corporation - Intel (R) WDDM Kernel mode driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [418816] =>.Intel Corporation
O58 - SDL:2009/07/14 03:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040] =>.Microsoft Windows®
O58 - SDL:2011/06/09 17:37:56 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [278528] =>.Intel(R) Corporation
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624] =>.Microsoft Windows®
O58 - SDL:2011/07/14 03:37:59 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117120] =>.Microsoft Windows®
O58 - SDL:2011/07/14 03:37:59 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [143744] =>.Microsoft Windows®
O58 - SDL:2010/03/19 04:00:00 A . (.Sonic Solutions - Px Engine Device Driver for Windows 2000/XP.) -- C:\Windows\System32\drivers\pxhelp20.sys [45648] =>.Sonic Solutions®
O58 - SDL:2009/07/14 03:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064] =>.Microsoft Windows®
O58 - SDL:2011/09/29 11:30:32 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.20 32-bit Dr.) -- C:\Windows\System32\drivers\Rt86win7.sys [490088] =>.Realtek Semiconductor Corp®
O58 - SDL:2011/05/18 17:03:52 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [3501032] =>.Realtek Semiconductor Corp®
O58 - SDL:2011/05/30 10:03:34 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\Windows\System32\drivers\RtsPStor.sys [254056] =>.Realtek Semiconductor Corp®
O58 - SDL:2009/07/13 22:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2009/07/14 03:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072] =>.Microsoft Windows®
O58 - SDL:2010/10/08 12:32:28 A . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\System32\drivers\SynTP.sys [1314736] =>.Synaptics Incorporated®
O58 - SDL:2009/07/14 03:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904] =>.Microsoft Windows®
O58 - SDL:2009/07/13 23:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029]
O58 - SDL:2009/07/13 23:40:44 A . (...) -- C:\Windows\System32\country.sys [27097]
O58 - SDL:2009/07/13 23:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768]
O58 - SDL:2009/07/13 23:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809]
O58 - SDL:2009/07/13 23:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537]
O58 - SDL:2009/07/13 23:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866]
O58 - SDL:2009/07/13 23:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146]
O58 - SDL:2009/07/13 23:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370]
O58 - SDL:2009/07/13 23:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274]
O58 - SDL:2009/07/13 23:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146]
O58 - SDL:2009/07/13 23:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952]
O58 - SDL:2009/07/13 23:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672]
O58 - SDL:2009/07/13 23:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776]
O58 - SDL:2009/07/13 23:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536]
O58 - SDL:2009/07/13 23:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672]

---\\ Associations Shell Spawning (11) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (...) -- C:\Program Files\Mozilla Firefox\firefox.exe

---\\ Menu de démarrage Internet (8) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Mozilla Firefox\firefox.exe http://www.sweet-page.com/?type=sc&ts=1424629293&from=corfr&uid=WDCXWD3200BPVT-22JJ5T0_WD-WX31EB1CRA26CRA26 =>PUP.Optional.SweetPage
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Internet Explorer\iexplore.ex http://www.sweet-page.com/?type=sc&ts=1424629293&from=corfr&uid=WDCXWD3200BPVT-22JJ5T0_WD-WX31EB1CRA26CRA26 =>PUP.Optional.SweetPage
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ Recherche d'infection sur les navigateurs (12) - 17s
O69 - SBI: prefs.js [clementine - clohok2r.default] user_pref("browser.search.defaultenginename", "sweet-page"); =>PUP.Optional.SweetPage
O69 - SBI: prefs.js [clementine - clohok2r.default] user_pref("browser.search.searchengine.alias", "sweet-page"); =>PUP.Optional.SweetPage
O69 - SBI: prefs.js [clementine - clohok2r.default] user_pref("browser.search.searchengine.iconURL", "http://www.sweet-page.com/favicon.ico"); =>PUP.Optional.SweetPage
O69 - SBI: prefs.js [clementine - clohok2r.default] user_pref("browser.search.searchengine.name", "sweet-page"); =>PUP.Optional.SweetPage
O69 - SBI: prefs.js [clementine - clohok2r.default] user_pref("browser.search.searchengine.url", "http://www.sweet-page.com/web/?type=ds&ts=1424629293&from=corfr&uid=WDCXWD3200BPVT-2[...] =>PUP.Optional.SweetPage
O69 - SBI: prefs.js [clementine - clohok2r.default] user_pref("browser.search.selectedEngine", "sweet-page"); =>PUP.Optional.SweetPage
O69 - SBI: prefs.js [clementine - clohok2r.default] user_pref("extensions.quick_start.enable_search1", false); =>PUP.Optional.QuickStart
O69 - SBI: prefs.js [clementine - clohok2r.default] user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false); =>PUP.Optional.QuickStart
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/search?q={searchTerms}&form=APBTDF&pc=MAPB&src=IE-SearchBox
O69 - SBI: SearchScopes [HKCU] {33BB0A4E-99AF-4226-BDF6-49120163DE86} - (sweet-page) - http://www.sweet-page.com/web/?type=ds&ts=1424629293&from=corfr&uid=WDCXWD3200BPVT-22JJ5T0_WD-WX31EB1CRA26CRA26&q={searchTerms} =>PUP.Optional.SweetPage
O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/search?q={searchTerms}&form=APBTDF&pc=MAPB&src=IE-SearchBox
O69 - SBI: SearchScopes [HKLM] {33BB0A4E-99AF-4226-BDF6-49120163DE86} [DefaultScope] - (Bing) - http://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1

---\\ Enumère les services démarrés par Svchost (32) - 2s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168960] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [593408] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [679424] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [475136] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [286208] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [49664] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [300544] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242176] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [523776] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1973728] =>.Microsoft Windows Component Publisher®
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [585728] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [499712] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [21504] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [49664] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164864] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [750592] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [71168] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [113664] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102912] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800] =>.Microsoft Corporation

---\\ Scan Additionnel (10) - 0s
C:\Users\clementine\AppData\Roaming\Mozilla\Firefox\Profiles\clohok2r.default\searchplugins\sweet-page.xml =>PUP.Optional.SweetPage
C:\Users\clementine\AppData\Roaming\Mozilla\Firefox\Profiles\clohok2r.default\extensions\faststartff@gmail.com =>PUP.Optional.FastStart
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\sweet-page uninstall =>PUP.Optional.SweetPage
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\sweet-page uninstall =>PUP.Optional.SweetPage
HKLM\SOFTWARE\supWindowsMangerProtect =>PUP.Optional.WpManager
HKLM\SOFTWARE\sweet-pageSoftware =>PUP.Optional.SweetPage
HKCU\SOFTWARE\InstallCore =>Adware.InstallCore
HKCU\SOFTWARE\Smart PC Solutions =>PUP.Optional.SmartPCSolutions
HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} =>PUP.Optional.SweetPage

---\\ Récapitulatif des éléments trouvés sur votre station (7) - 0s
http://www.nicolascoolman.fr/?p=596 =>PUP.Optional.SweetPage
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.FastStart
http://www.nicolascoolman.fr/?p=173 =>PUP.Optional.WpManager
http://www.nicolascoolman.fr/?p=279 =>Adware.InstallCore
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.SmartPCSolutions
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Downloader
http://www.nicolascoolman.fr/?p=666 =>PUP.Optional.QuickStart

~ End of the scan, 4714 items in 00h06mn44s (593)(0)

Publicité


Signaler le contenu de ce document

Publicité