cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.5.25.99 Par Nicolas Coolman (2016/05/25)
~ Démarré par Ecole (Administrator) (2016/05/29 16:29:21)
~ Site: http://www.nicolascoolman.com
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Documents and Settings\Ecole\Bureau\ZHPDiag.txt
~ Rapport: C:\Documents and Settings\Ecole\Application Data\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
Windows XP, 32-bit Service Pack 3 (Build 2600)

---\\ Navigateurs Internet (2) - 0s
MFIE: Mozilla Firefox 46.0.1 (x86 fr)
MSIE: Internet Explorer v8.0.6001.18702

---\\ Informations sur les produits Windows (3) - 0s
Windows Automatic Updates : OK
Windows Activation Technologies : KO
Windows Genuine Advantage : OK

---\\ Logiciels de protection (1) - 4s
Malwarebytes Anti-Malware version 2.2.1.1043

---\\ Logiciels d'optimisation (1) - 5s
CCleaner v5.12

---\\ Surveillance de Logiciels (2) - 5s
Adobe Flash Player 21 NPAPI
Adobe Reader XI

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 15 Model 79 Stepping 2, AuthenticAMD
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 2096.432 MB (27% free)
System Restore: Activé (Enable)
System drive C: has 28 GB () free of 60 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: ECOLE-660FBEA4E
~ User Name: Ecole
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 28 GB free of 60 GB (System)
~ Drive D: has 15 GB free of 130 GB

---\\ Etat du Centre de Sécurité Windows (9) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: Modified
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (23) - 1s
[MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - 14/04/2008 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [1037824] =>.Microsoft Corporation
[MD5.93AD0B78C7357A05F50E594EC7C22300] - 14/04/2008 - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\rundll32.exe [33792] =>.Microsoft Corporation
[MD5.E1948B1F45A176FB4A0251446A5AE86D] - 06/03/2014 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\WINDOWS\System32\wininet.dll [920064] =>.Microsoft Corporation
[MD5.DD73D6B9F6B4CB630CF35B438B540174] - 14/04/2008 - (.Microsoft Corporation - Application d'ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [512000] =>.Microsoft Corporation
[MD5.4992C88B25C429744D255C35C756BB7B] - 07/04/2013 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\System32\dnsapi.dll [149504] =>.Microsoft Corporation
[MD5.F6B7B1ECD7B41736BDB6FF4B092BCB79] - 07/04/2013 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [138496] =>.Microsoft Corporation
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] - 14/04/2008 - (.Microsoft Corporation - IDE/ATAPI Port Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [96512] =>.Microsoft Corporation
[MD5.C885B02847F5D2FD45A24E219ED93B32] - 14/04/2008 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [63744] =>.Microsoft Corporation
[MD5.1F4260CC5B42272D71F79E570A27A4FE] - 14/04/2008 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [62976] =>.Microsoft Corporation
[MD5.31F923EB2170FC172C81ABDA0045D18C] - 14/04/2008 - (.Microsoft Corporation - Pilote de cryptographie FIPS.) -- C:\WINDOWS\System32\drivers\Fips.sys [44672] =>.Microsoft Corporation
[MD5.573C7D0A32852B48F3058CFD8026F511] - 14/04/2008 - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [144384]
[MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - 14/04/2008 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [54144] =>.Microsoft Corporation
[MD5.083A052659F5310DD8B6A6CB05EDCF8E] - 14/04/2008 - (.Microsoft Corporation - IMAPI Kernel Driver.) -- C:\WINDOWS\System32\drivers\Imapi.sys [42112] =>.Microsoft Corporation
[MD5.CC748EA12C6EFFDE940EE98098BF96BB] - 14/04/2008 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [152832] =>.Microsoft Corporation
[MD5.23C74D75E36E7158768DD63D92789A91] - 14/04/2008 - (.Microsoft Corporation - IPSec Driver.) -- C:\WINDOWS\System32\drivers\IPSec.sys [75264] =>.Microsoft Corporation
[MD5.FB2FCCC70F7174C7BF64F48E96D3ADF4] - 07/04/2013 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [457856] =>.Microsoft Corporation
[MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - 14/04/2008 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [162816] =>.Microsoft Corporation
[MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - 14/04/2008 - (.Microsoft Corporation - NT File System Driver.) -- C:\WINDOWS\System32\drivers\ntfs.sys [574976] =>.Microsoft Corporation
[MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - 07/04/2013 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [80384] =>.Microsoft Corporation
[MD5.11B4A627BC9614B885C4969BFA5FF8A6] - 14/04/2008 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [51328] =>.Microsoft Corporation
[MD5.15CABD0F7C00C47C70124907916AF3F1] - 13/04/2008 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [196224] =>.Microsoft Corporation
[MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - 13/04/2008 - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) -- C:\WINDOWS\System32\drivers\redbook.sys [58752] =>.Microsoft Corporation
[MD5.46DE1126684369BACE4849E4FC8C43CA] - 14/04/2008 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [53376] =>.Microsoft Corporation

---\\ Liste des services NT non Microsoft et non désactivés (8) - 2s
O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software a.s.®
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) . (.BlueStack Systems, Inc. - BlueStacks Service.) - C:\Program Files\BlueStacks\HD-Service.exe =>.Bluestack Systems, Inc.®
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) . (.BlueStack Systems, Inc. - BlueStacks Log Rotator Service.) - C:\Program Files\BlueStacks\HD-LogRotatorService.exe =>.Bluestack Systems, Inc.®
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) . (.BlueStack Systems, Inc. - BlueStacks Updater Service.) - C:\Program Files\BlueStacks\HD-UpdaterService.exe =>.Bluestack Systems, Inc.®
O23 - Service: ForceWare Intelligent Application Manager (IAM) (ForceWare Intelligent Application Manager (IAM)) . (.Copyright (c) 2001-2009 NVIDIA Corporation - app_filter Module.) - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe =>.NVIDIA Corporation®
O23 - Service: Ma-Config Agent (MaConfigAgent) . (.CybelSoft - Service de détection matériel.) - C:\Program Files\ma-config.com\MaConfigAgent.exe =>.Cybelsoft®
O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe =>.NVIDIA Corporation®
O23 - Service: NVIDIA Driver Helper Service (NVSvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 335.2.) - C:\WINDOWS\system32\nvsvc32.exe =>.NVIDIA Corporation®

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (12) - 17s

SS - Demand [13/05/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [03/05/2016] [ 243296] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software a.s.®
SR - Auto [13/08/2014] [ 409304] BlueStacks Android Service (BstHdAndroidSvc) . (.BlueStack Systems, Inc..) - C:\Program Files\BlueStacks\HD-Service.exe =>.Bluestack Systems, Inc.®
SR - Auto [13/08/2014] [ 384728] BlueStacks Log Rotator Service (BstHdLogRotatorSvc) . (.BlueStack Systems, Inc..) - C:\Program Files\BlueStacks\HD-LogRotatorService.exe =>.Bluestack Systems, Inc.®
SR - Auto [13/08/2014] [ 777944] BlueStacks Updater Service (BstHdUpdaterSvc) . (.BlueStack Systems, Inc..) - C:\Program Files\BlueStacks\HD-UpdaterService.exe =>.Bluestack Systems, Inc.®
SR - Auto [21/01/2010] [ 370792] ForceWare Intelligent Application Manager (IAM) (ForceWare Intelligent Application Manager (IAM)) . (.Copyright (c) 2001-2009 NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe =>.NVIDIA Corporation®
SS - Demand [10/05/2011] [ 136120] Google Updater Service (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe =>.Google Inc®
SR - Auto [25/02/2014] [ 2117960] Ma-Config Agent (MaConfigAgent) . (.CybelSoft.) - C:\Program Files\ma-config.com\MaConfigAgent.exe =>.Cybelsoft®
SS - Demand [06/05/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SR - Auto [05/02/2014] [ 1593632] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe =>.NVIDIA Corporation®
SR - Auto [09/03/2014] [ 156960] NVIDIA Driver Helper Service (NVSvc) . (.NVIDIA Corporation.) - C:\WINDOWS\system32\nvsvc32.exe =>.NVIDIA Corporation®

---\\ Tâches planifiées en automatique (11) - 3s
[MD5.00000000000000000000000000000000] [APT] [Adobe Flash Player Updater] (...) -- Adobe Systems Incorporated (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [avast! Emergency Update] (...) -- SYSTEM (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [avast! Emergency Update] (...) -- D‚marrer … l'ouverture de session (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [Notification de fin de service de Microsoft Windows XP - … la connexion] (...) -- D‚marrer … l'ouverture de session (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [Notification de fin de service de Microsoft Windows XP -mensuellement] (...) -- … 15:00 le 8 de chaque mois (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [SafeZone scheduled Autoupdate 1460736242] (...) -- WORKGROUP\ECOLE-660FBEA4E$ (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [SafeZone scheduled Autoupdate 1460736242] (...) -- D‚marrer … l'ouverture de session (.not file.) [0] (.Activate.) =>.Superfluous.Empty
O39 - APT: Adobe Flash Player Updater - (...) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] (.Orphean.) =>.Superfluous.Orphean
O39 - APT: avast! Emergency Update - (...) -- C:\WINDOWS\Tasks\avast! Emergency Update.job [364] (.Orphean.) =>.Superfluous.Orphean
O39 - APT: Notification de fin de service de Microsoft Windows XP -mensuellement - (...) -- C:\WINDOWS\Tasks\Notification de fin de service de Microsoft Windows XP -mensuellement.job [216] (.Orphean.) =>.Superfluous.Orphean
O39 - APT: SafeZone scheduled Autoupdate 1460736242 - (...) -- C:\WINDOWS\Tasks\SafeZone scheduled Autoupdate 1460736242.job [506] (.Orphean.) =>.Superfluous.Orphean

---\\ Processus lancés (20) - 2s
[MD5.A24AF1F8186B4B69D54DCC4B059CA695] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [243296] [PID.1812] =>.AVAST Software a.s.®
[MD5.94E69A444023870D42A0F9F0355583D8] - (.BlueStack Systems, Inc. - BlueStacks Log Rotator Service.) -- C:\Program Files\BlueStacks\HD-LogRotatorService.exe [384728] [PID.1580] =>.Bluestack Systems, Inc.®
[MD5.D7B38574D50F4D9287238C6E14D6DFA8] - (.BlueStack Systems, Inc. - BlueStacks Updater Service.) -- C:\Program Files\BlueStacks\HD-UpdaterService.exe [777944] [PID.1676] =>.Bluestack Systems, Inc.®
[MD5.15B8C9C9B2C6952D2E2218EBD4897415] - (.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-config.com\MaConfigAgent.exe [2117960] [PID.344] =>.Cybelsoft®
[MD5.D2FE0376285A783693469422678E878B] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1593632] [PID.416] =>.NVIDIA Corporation®
[MD5.DADF7468C85F3295B5B69D0F1E40BDF3] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 335.2.) -- C:\WINDOWS\system32\nvsvc32.exe [156960] [PID.504] =>.NVIDIA Corporation®
[MD5.148D6934263253F4F3E21528CF0E4C09] - (.BlueStack Systems, Inc. - BlueStacks Service.) -- C:\Program Files\BlueStacks\HD-Service.exe [409304] [PID.2092] =>.Bluestack Systems, Inc.®
[MD5.7DFF82ACDAB23414ABC2A95FEF8982F8] - (.Copyright (c) 2001-2009 NVIDIA Corporation - app_filter Module.) -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe [370792] [PID.2164] =>.NVIDIA Corporation®
[MD5.4105074A54E15EB7232A704CD13FB258] - (.BlueStack Systems - BlueStacks Network Helper Process.) -- C:\Program Files\BlueStacks\HD-Network.exe [378072] [PID.2524] =>.Bluestack Systems, Inc.®
[MD5.DB2C0EA33EA55AA90E7AC1FF7E71D682] - (.BlueStack Systems - BlueStacks Block Device Helper Process.) -- C:\Program Files\BlueStacks\HD-BlockDevice.exe [260824] [PID.2600] =>.Bluestack Systems, Inc.®
[MD5.70FFCF4D2DA888FF6C013B3DA9A638B1] - (.BlueStack Systems - BlueStacks Shared Folder Helper Process.) -- C:\Program Files\BlueStacks\HD-SharedFolder.exe [366808] [PID.2616] =>.Bluestack Systems, Inc.®
[MD5.AC3197063BF23C53D5DCBA0D575FD2E9] - (.Analog Devices, Inc. - Audio Control Panel.) -- C:\Program Files\Analog Devices\SoundMAX\SMax4.exe [729088] [PID.3492] =>.Analog Devices, Inc.
[MD5.EE73B56ED71EB6383F25FA5468923BB2] - (.NVIDIA Corporation - NVIDIA GeForce Experience Backend.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2234144] [PID.3568] =>.NVIDIA Corporation®
[MD5.5B6E8E09BE6401A7E022F52FDFCB2FF8] - (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe [254336] [PID.2044] =>.Oracle America, Inc.®
[MD5.36F4C7EF5BFB395CE24F57507F66CE09] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe [7400576] [PID.244] =>.AVAST Software a.s.®
[MD5.1983A11F702BDC5DB65B4B0F376FF6FD] - (.Analog Devices, Inc. - SMax4PNP.) -- C:\Program Files\Analog Devices\Core\smax4pnp.exe [868352] [PID.356] =>.Analog Devices, Inc.
[MD5.BB6D3748D86BC02D55ADD8ADC1D07633] - (.BlueStack Systems, Inc. - BlueStacks Agent.) -- C:\Program Files\BlueStacks\HD-Agent.exe [835288] [PID.2004] =>.Bluestack Systems, Inc.®
[MD5.7FBE43046EFDF24FC9375024E4D02AC9] - (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\qttask.exe [282624] [PID.1128] =>.Apple Inc.
[MD5.7DF8845A1CF92C227E81DBBC6F6434DF] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [392136] [PID.2824] =>.Mozilla Corporation®
[MD5.95DAE48CF9EB22F0A1C6FD196C75654B] - (.Nicolas Coolman - ZHPDiag.) -- C:\Documents and Settings\Ecole\Bureau\ZHPDiag3.exe [2210304] [PID.2236] =>.Nicolas Coolman

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (5) - 1s
M0 - MFSP: prefs.js [Ecole - hywn9b4w.default] https://www.malwarebytes.org/restorebrowser//index.jhtml?ptb=BF26E4DD-B121-462E-9F08-65C05F34D6D4&n=7829e815&p2=^BYC^xdm024^YYA^fr
P2 - EXT FILE: (...) -- C:\Documents and Settings\Ecole\Application Data\Mozilla\Firefox\Profiles\hywn9b4w.default\extensions\langpack-es-ES@firefox.mozilla.org.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\Ecole\Application Data\Mozilla\Firefox\Profiles\hywn9b4w.default\extensions\{91A6D6AB-3E9A-4C00-A3CF-B08CBE803A2E}.xpi
P2 - EXT: (.RLA-ES, Recursos Lingüísticos Abiertos del Español - Diccionario de Español/España.) -- C:\Documents and Settings\Ecole\Application Data\Mozilla\Firefox\Profiles\hywn9b4w.default\extensions\es-es@dictionaries.addons.mozilla.org
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_21_0_0_242.dll =>.Adobe Systems Incorporated

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (15) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer,Proxy Management (5) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (20)

---\\ Applications lancées au démarrage du système (19) - 1s
O4 - HKLM\..\Run: [SoundMAX] . (.Analog Devices, Inc. - Audio Control Panel.) -- C:\Program Files\Analog Devices\SoundMAX\SMax4.exe =>.Analog Devices, Inc.
O4 - HKLM\..\Run: [NvCplDaemon] . (.NVIDIA Corporation - NVIDIA Display Properties Extension.) -- C:\WINDOWS\system32\nvcpl.dll =>.NVIDIA Corporation®
O4 - HKLM\..\Run: [NvMediaCenter] . (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\RunDLL32.exe =>.Microsoft Corporation
O4 - HKLM\..\Run: [nwiz] . (...) -- C:\Program Files\NVIDIA Corporation\nview\nwiz.exe =>.NVIDIA Corporation®
O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA GeForce Experience Backend.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe =>.NVIDIA Corporation®
O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems, Incorporated®
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe =>.Oracle America, Inc.®
O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe =>.AVAST Software a.s.®
O4 - HKLM\..\Run: [SoundMAXPnP] . (.Analog Devices, Inc. - SMax4PNP.) -- C:\Program Files\Analog Devices\Core\smax4pnp.exe =>.Analog Devices, Inc.
O4 - HKLM\..\Run: [BlueStacks Agent] . (.BlueStack Systems, Inc. - BlueStacks Agent.) -- C:\Program Files\BlueStacks\HD-Agent.exe =>.Bluestack Systems, Inc.®
O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\qttask.exe =>.Apple Inc.
O4 - HKCU\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe =>.Microsoft Corporation
O4 - HKCU\..\Run: [CCleaner] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd®
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-1177238915-842925246-682003330-1003\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-1177238915-842925246-682003330-1003\..\Run: [CCleaner] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd®

---\\ Raccourcis Global Startup (29) - 4s
O4 - GS\Desktop [Administrateur]: Autour du Monde.lnk . (...) C:\Program Files\Mindscape\Autour du Monde\Around the World in 80 Days.exe
O4 - GS\Desktop [Administrateur]: FileHippo App Manager.lnk . (.Copyright © 2014 - FileHippo.AppManager.) C:\Program Files\FileHippo.com\FileHippo.AppManager.exe =>.Superfluous.WellKnownMedia
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Documents and Settings\Ecole\Application Data\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files\Google\Picasa3\Picasa3.exe =>.Google Inc®
O4 - GS\Quicklaunch [Administrateur]: QuickTime Player.lnk . (...) C:\WINDOWS\Installer\{08094E03-AFE4-4853-9D31-6D0743DF5328}\QTPlayer.ico
O4 - GS\Desktop [ASPNET]: Autour du Monde.lnk . (...) C:\Program Files\Mindscape\Autour du Monde\Around the World in 80 Days.exe
O4 - GS\Desktop [ASPNET]: FileHippo App Manager.lnk . (.Copyright © 2014 - FileHippo.AppManager.) C:\Program Files\FileHippo.com\FileHippo.AppManager.exe =>.Superfluous.WellKnownMedia
O4 - GS\Desktop [ASPNET]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Documents and Settings\Ecole\Application Data\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [ASPNET]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files\Google\Picasa3\Picasa3.exe =>.Google Inc®
O4 - GS\Quicklaunch [ASPNET]: QuickTime Player.lnk . (...) C:\WINDOWS\Installer\{08094E03-AFE4-4853-9D31-6D0743DF5328}\QTPlayer.ico
O4 - GS\Desktop [Ecole]: Autour du Monde.lnk . (...) C:\Program Files\Mindscape\Autour du Monde\Around the World in 80 Days.exe
O4 - GS\Desktop [Ecole]: FileHippo App Manager.lnk . (.Copyright © 2014 - FileHippo.AppManager.) C:\Program Files\FileHippo.com\FileHippo.AppManager.exe =>.Superfluous.WellKnownMedia
O4 - GS\Desktop [Ecole]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Documents and Settings\Ecole\Application Data\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Ecole]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files\Google\Picasa3\Picasa3.exe =>.Google Inc®
O4 - GS\Quicklaunch [Ecole]: QuickTime Player.lnk . (...) C:\WINDOWS\Installer\{08094E03-AFE4-4853-9D31-6D0743DF5328}\QTPlayer.ico
O4 - GS\Desktop [HelpAssistant]: Autour du Monde.lnk . (...) C:\Program Files\Mindscape\Autour du Monde\Around the World in 80 Days.exe
O4 - GS\Desktop [HelpAssistant]: FileHippo App Manager.lnk . (.Copyright © 2014 - FileHippo.AppManager.) C:\Program Files\FileHippo.com\FileHippo.AppManager.exe =>.Superfluous.WellKnownMedia
O4 - GS\Desktop [HelpAssistant]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Documents and Settings\Ecole\Application Data\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [HelpAssistant]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files\Google\Picasa3\Picasa3.exe =>.Google Inc®
O4 - GS\Quicklaunch [HelpAssistant]: QuickTime Player.lnk . (...) C:\WINDOWS\Installer\{08094E03-AFE4-4853-9D31-6D0743DF5328}\QTPlayer.ico
O4 - GS\Desktop [SUPPORT_388945a0]: Autour du Monde.lnk . (...) C:\Program Files\Mindscape\Autour du Monde\Around the World in 80 Days.exe
O4 - GS\Desktop [SUPPORT_388945a0]: FileHippo App Manager.lnk . (.Copyright © 2014 - FileHippo.AppManager.) C:\Program Files\FileHippo.com\FileHippo.AppManager.exe =>.Superfluous.WellKnownMedia
O4 - GS\Desktop [SUPPORT_388945a0]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Documents and Settings\Ecole\Application Data\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [SUPPORT_388945a0]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files\Google\Picasa3\Picasa3.exe =>.Google Inc®
O4 - GS\Quicklaunch [SUPPORT_388945a0]: QuickTime Player.lnk . (...) C:\WINDOWS\Installer\{08094E03-AFE4-4853-9D31-6D0743DF5328}\QTPlayer.ico
O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd®
O4 - GS\CommonDesktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes - Malwarebytes Anti-Malware.) C:\AdwCleaner\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation®
O4 - GS\CommonDesktop [Public]: Raccourci vers Mes documents.lnk . (...) D:\Mes documents
O4 - GS\CommonDesktop [Public]: Start BlueStacks.lnk . (.BlueStack Systems, Inc. - BlueStacks StartLauncher.) C:\Program Files\BlueStacks\HD-StartLauncher.exe =>.Bluestack Systems, Inc.®

---\\ Modification Domaine/Adresses DNS (2) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.241 212.27.40.240
O17 - HKLM\System\CCS\Services\Tcpip\..\{C34603D2-B4A8-4A8F-B4C9-B023442BF1B5}: DhcpNameServer = 212.27.40.241 212.27.40.240

---\\ Protocole additionnel (30) - 1s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll =>.Microsoft Corporation
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API.) -- C:\WINDOWS\system32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation®
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll =>.Microsoft Corporation
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: sysimage - {76E67A63-06E9-11D2-A840-006008059382} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll =>.Microsoft Corporation
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} . (.Microsoft Corporation - WIA Scripting Layer.) -- C:\WINDOWS\system32\wiascr.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: Class Install Handler - {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation
O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation
O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation
O18 - Filter: lzdhtml - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation
O18 - Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll =>.Microsoft Corporation
O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ Logiciels installés (64) - 18s
O42 - Logiciel: 7-Zip 15.14 - (.Igor Pavlov.) [HKLM] -- 7-Zip =>.Igor Pavlov
O42 - Logiciel: Adobe Flash Player 21 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 21 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Reader XI (11.0.06) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Reader XI (11.0.10) - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1033-7B44-AB0000000001} =>.Adobe Systems Incorporated
O42 - Logiciel: Avast Antivirus Gratuit - (.AVAST Software.) [HKLM] -- Avast =>.AVAST Software a.s.®
O42 - Logiciel: BlueStacks App Player - (.BlueStack Systems, Inc..) [HKLM] -- BlueStacks App Player =>.Bluestack Systems, Inc.®
O42 - Logiciel: BlueStacks Notification Center - (.BlueStack Systems, Inc..) [HKLM] -- {981B38A6-E4D0-4D94-98C2-75AC645755F5} =>.BlueStack Systems, Inc.
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>.Piriform Ltd®
O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1 =>.CDBurnerXP
O42 - Logiciel: Cool & Quiet - (...) [HKLM] -- {1ADE1AA0-7F82-4BB1-B1BD-727DE438057B}
O42 - Logiciel: FileHippo.com Update Checker - (...) [HKLM] -- FileHippo.com
O42 - Logiciel: Fort Boyard - le Jeu - (.Mindscape.) [HKLM] -- {CD4C3C09-6EE6-4BFB-A0CA-AD80CE71A6D7} =>.Mindscape
O42 - Logiciel: Hotfix for Windows XP (KB954550-v5) - (.Microsoft Corporation.) [HKLM] -- KB954550-v5 =>.Microsoft Corporation
O42 - Logiciel: Hotfix for Windows XP (KB976002-v5) - (.Microsoft Corporation.) [HKLM] -- KB976002-v5 =>.Microsoft Corporation
O42 - Logiciel: Intervilles - (.Mindscape.) [HKLM] -- {6E8C6C73-4CCF-46B8-B48D-8931D030422F} =>.Mindscape
O42 - Logiciel: IrfanView (remove only) - (.Irfan Skiljan.) [HKLM] -- IrfanView =>.Irfan Skiljan®
O42 - Logiciel: Java 7 Update 55 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83217051FF} =>.Oracle
O42 - Logiciel: Java Auto Updater - (.Sun Microsystems, Inc..) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Sun Microsystems, Inc.
O42 - Logiciel: Lecteur Windows Media 11 - (...) [HKLM] -- Windows Media Player
O42 - Logiciel: Ma-Config.com - (.Cybelsoft.) [HKLM] -- {7B6780CE-CADD-48DE-8CC2-CB168E07885A} =>.CybelSoft
O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.1.1043 - (.Malwarebytes.) [HKLM] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes
O42 - Logiciel: Microsoft Compression Client Pack 1.0 for Windows XP - (.Microsoft Corporation.) [HKLM] -- MSCompPackV1 =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Kernel-Mode Driver Framework Feature Pack 1.9 - (.Microsoft Corporation.) [HKLM] -- Wdf01009 =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Software Update for Web Folders (French) 12 - (.Microsoft Corporation.) [HKLM] -- {90120000-0010-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft User-Mode Driver Framework Feature Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- Wudf01000 =>.Microsoft Corporation®
O42 - Logiciel: Mises à jour NVIDIA 11.10.13 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update =>.NVIDIA Corporation
O42 - Logiciel: Mozilla Firefox 46.0.1 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 46.0.1 (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E} =>.Microsoft Corporation
O42 - Logiciel: Nokia Connectivity Cable Driver - (...) [HKLM] -- {BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}
O42 - Logiciel: NVIDIA Drivers - (.NVIDIA Corporation.) [HKLM] -- NVIDIA Drivers =>.NVIDIA Corporation®
O42 - Logiciel: NVIDIA ForceWare Network Access Manager - (.NVIDIA Corporation.) [HKLM] -- {7CFA46E3-CC2F-4355-82AE-6012DC3633FD} =>.NVIDIA Corporation®
O42 - Logiciel: NVIDIA GeForce Experience 1.8.2.1 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Logiciel système PhysX 9.13.1220 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Network Service - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA nView 141.00 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM] -- {80407BA7-7763-4395-AB98-5233F1B34E65} =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.30.1 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Pilote graphique 335.28 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Update Core - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core =>.NVIDIA Corporation
O42 - Logiciel: Paint.NET v3.5.11 - (.dotPDN LLC.) [HKLM] -- {72EF03F5-0507-4861-9A44-D99FD4C41417} =>.dotPDN LLC
O42 - Logiciel: Panneau de configuration NVIDIA 335.28 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel =>.NVIDIA Corporation
O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM] -- Picasa 3 =>.Google, Inc.
O42 - Logiciel: QuickTime - (.Apple Computer, Inc..) [HKLM] -- {08094E03-AFE4-4853-9D31-6D0743DF5328} =>.Apple Computer, Inc.
O42 - Logiciel: SafeZone Stable 1.48.2066.101 - (.Avast Software.) [HKLM] -- SafeZone 1.48.2066.101 =>.AVAST Software s.r.o.®
O42 - Logiciel: SoundMAX - (.Analog Devices.) [HKLM] -- {F0A37341-D692-11D4-A984-009027EC0A9C} =>.Analog Devices
O42 - Logiciel: Tux of Math Command (remove only) - (...) [HKLM] -- TuxMath
O42 - Logiciel: Tux Paint 0.9.21c - (.New Breed Software.) [HKLM] -- Tux Paint_is1 =>.New Breed Software
O42 - Logiciel: Tux Paint Stamps 2009-06-28 - (.New Breed Software.) [HKLM] -- Tux Paint Stamps_is1 =>.New Breed Software
O42 - Logiciel: Tux Typing (remove only) - (...) [HKLM] -- TuxType
O42 - Logiciel: Ushuaïa - (.Mindscape.) [HKLM] -- {0EBD483A-A280-48E8-9584-6802BA9238F1} =>.Mindscape
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player =>.VideoLAN
O42 - Logiciel: WebFldrs XP - (.Microsoft Corporation.) [HKLM] -- {350C940c-3D7C-4EE8-BAA9-00BCB3D54227} =>.Microsoft Corporation
O42 - Logiciel: Windows Genuine Advantage Notifications (KB905474) - (.Microsoft Corporation.) [HKLM] -- WgaNotify =>.Microsoft Corporation
O42 - Logiciel: Windows Genuine Advantage Validation Tool (KB892130) - (.Microsoft Corporation.) [HKLM] -- KB892130 =>.Microsoft Corporation
O42 - Logiciel: Windows Genuine Advantage Validation Tool (KB892130) - (.Microsoft Corporation.) [HKLM] -- WGA =>.Microsoft Corporation
O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8 =>.Microsoft Corporation®
O42 - Logiciel: Windows Media Format 11 runtime - (...) [HKLM] -- Windows Media Format Runtime
O42 - Logiciel: Windows Media Format 11 runtime - (.Microsoft Corporation.) [HKLM] -- WMFDist11 =>.Microsoft Corporation®
O42 - Logiciel: Windows Media Player 11 - (.Microsoft Corporation.) [HKLM] -- wmp11 =>.Microsoft Corporation®
O42 - Logiciel: XML Paper Specification Shared Components Language Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- XPSEPSCLP =>.Microsoft Corporation®

---\\ HKCU & HKLM Software Keys (82) - 18s
HKLM\SOFTWARE\7-Zip
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\AdwCleaner
HKLM\SOFTWARE\AGEIA Technologies
HKLM\SOFTWARE\Analog Devices
HKLM\SOFTWARE\Andrea Electronics
HKLM\SOFTWARE\Apple Computer, Inc.
HKLM\SOFTWARE\ASUS
HKLM\SOFTWARE\Auslogics
HKLM\SOFTWARE\AVAST Software
HKLM\SOFTWARE\BlueStacks
HKLM\SOFTWARE\BrowserChoice
HKLM\SOFTWARE\C07ft5Y
HKLM\SOFTWARE\Canon
HKLM\SOFTWARE\cybelsoft
HKLM\SOFTWARE\DivXNetworks
HKLM\SOFTWARE\Gemplus
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\InstalledOptions
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\Khronos
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\MaxPower
HKLM\SOFTWARE\MDC
HKLM\SOFTWARE\Mindscape
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\NVIDIA Corporation
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\Paint.NET
HKLM\SOFTWARE\Piriform
HKLM\SOFTWARE\Program Groups
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\Schlumberger
HKLM\SOFTWARE\Secure
HKLM\SOFTWARE\Sensaura
HKLM\SOFTWARE\Set8187
HKLM\SOFTWARE\Software
HKLM\SOFTWARE\Staccato
HKLM\SOFTWARE\TuxMath
HKLM\SOFTWARE\TuxPaint
HKLM\SOFTWARE\TuxType
HKLM\SOFTWARE\VideoLAN
HKLM\SOFTWARE\Windows 3.1 Migration Status
HKLM\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\7-Zip
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Analog Devices
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\ASUS WiFi-AP Solo
HKCU\SOFTWARE\AVAST Software
HKCU\SOFTWARE\Canneverbe Limited
HKCU\SOFTWARE\Canon
HKCU\SOFTWARE\CanonBJ
HKCU\SOFTWARE\DoctorPCConfig
HKCU\SOFTWARE\DoctorPCLanguage
HKCU\SOFTWARE\FileHippo.com
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Malwarebytes' Anti-Malware
HKCU\SOFTWARE\Mindscape
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\OperaOB
HKCU\SOFTWARE\Paint.NET
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\Software
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Virtools
HKCU\SOFTWARE\WebApp =>.Superfluous.Downloader
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software

---\\ Contenu des dossiers Programmes (148) - 25s
O43 - CFD: 27/03/2016 - [] D -- C:\Program Files\7-Zip
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\Adobe =>.Adobe Systems, Incorporated®
O43 - CFD: 30/03/2014 - [0] D -- C:\Program Files\AGEIA Technologies
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\Analog Devices
O43 - CFD: 25/02/2015 - [0] D -- C:\Program Files\AppendInit
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\ASUS
O43 - CFD: 22/03/2016 - [] D -- C:\Program Files\AVAST Software =>.AVAST Software s.r.o.®
O43 - CFD: 09/02/2015 - [] D -- C:\Program Files\BlueStacks
O43 - CFD: 25/10/2015 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd®
O43 - CFD: 31/03/2014 - [] D -- C:\Program Files\ccleaner-portable_4-11_fr_14492 =>.Piriform Ltd®
O43 - CFD: 22/09/2015 - [] D -- C:\Program Files\CDBurnerXP =>.Canneverbe Limited®
O43 - CFD: 30/03/2014 - [0] D -- C:\Program Files\ComPlus Applications
O43 - CFD: 07/02/2015 - [] D -- C:\Program Files\EXIF Viewer
O43 - CFD: 17/05/2014 - [] D -- C:\Program Files\Fichiers communs
O43 - CFD: 09/02/2015 - [] D -- C:\Program Files\FileHippo.com =>.Superfluous.WellKnownMedia
O43 - CFD: 10/02/2016 - [] D -- C:\Program Files\Google =>.Google Inc®
O43 - CFD: 26/09/2015 - [] HD -- C:\Program Files\InstallShield Installation Information =>.InstallShield Software Corporation®
O43 - CFD: 26/09/2015 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\IrfanView =>.Irfan Skiljan®
O43 - CFD: 23/07/2014 - [] D -- C:\Program Files\Java =>.Oracle America, Inc.®
O43 - CFD: 31/03/2014 - [] D -- C:\Program Files\ma-config.com =>.Cybelsoft®
O43 - CFD: 25/04/2015 - [] D -- C:\Program Files\Malwarebytes Anti-Malware =>.Malwarebytes Corporation®
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\Messenger
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\microsoft frontpage
O43 - CFD: 31/07/2014 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 01/08/2014 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation®
O43 - CFD: 17/05/2014 - [] D -- C:\Program Files\Microsoft Visual Studio
O43 - CFD: 17/05/2014 - [] D -- C:\Program Files\Microsoft Visual Studio 8
O43 - CFD: 17/05/2014 - [] D -- C:\Program Files\Microsoft Works
O43 - CFD: 17/05/2014 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 26/09/2015 - [] D -- C:\Program Files\Mindscape {38DD11538B52547E5F77805DCB327BCC}
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\Movie Maker
O43 - CFD: 07/05/2016 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla Corporation®
O43 - CFD: 07/05/2016 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla Corporation®
O43 - CFD: 17/05/2014 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\MSN
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\MSN Gaming Zone
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\MSXML 4.0
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\NetMeeting
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\NVIDIA Corporation =>.NVIDIA Corporation®
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\Online Services
O43 - CFD: 31/03/2014 - [] D -- C:\Program Files\Outlook Express
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\Paint.NET =>.dotPDN LLC®
O43 - CFD: 26/09/2015 - [] D -- C:\Program Files\QuickTime =>Riskware.QuickTime
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\Services en ligne
O43 - CFD: 20/10/2015 - [] D -- C:\Program Files\Software =>PUP.Optional.Boxore
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\TreeSizeFreePortable =>.Auslogics Software Pty Ltd®
O43 - CFD: 27/11/2015 - [] D -- C:\Program Files\TuxMath
O43 - CFD: 27/11/2015 - [] D -- C:\Program Files\TuxPaint
O43 - CFD: 19/11/2014 - [] D -- C:\Program Files\TuxType
O43 - CFD: 30/03/2014 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\VideoLAN
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\Windows Media Connect 2
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 30/03/2014 - [0] HD -- C:\Program Files\WindowsUpdate
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\xerox
O43 - CFD: 30/03/2014 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\7-Zip
O43 - CFD: 24/05/2014 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 30/03/2014 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ASUS
O43 - CFD: 09/02/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\BlueStacks
O43 - CFD: 08/02/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CCleaner
O43 - CFD: 31/03/2014 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 30/03/2014 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\IrfanView
O43 - CFD: 30/03/2014 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux
O43 - CFD: 31/03/2014 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ma-config.com
O43 - CFD: 24/03/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Malwarebytes Anti-Malware
O43 - CFD: 17/05/2014 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Office
O43 - CFD: 01/08/2014 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Silverlight
O43 - CFD: 26/09/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Mindscape
O43 - CFD: 30/03/2014 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\NVIDIA Corporation
O43 - CFD: 30/03/2014 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration
O43 - CFD: 30/03/2014 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Picasa 3
O43 - CFD: 26/09/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\QuickTime
O43 - CFD: 17/05/2014 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\SoundMAX
O43 - CFD: 31/03/2014 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Tux of Math Command
O43 - CFD: 31/03/2014 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Tux Paint
O43 - CFD: 31/03/2014 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Tux Typing
O43 - CFD: 30/03/2014 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN
O43 - CFD: 09/02/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Adobe
O43 - CFD: 26/09/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Apple Computer
O43 - CFD: 31/03/2014 - [] D -- C:\Documents and Settings\All Users\Application Data\Auslogics
O43 - CFD: 22/03/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\AVAST Software
O43 - CFD: 09/02/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\BlueStacks
O43 - CFD: 14/02/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\BlueStacksSetup
O43 - CFD: 30/03/2014 - [] D -- C:\Documents and Settings\All Users\Application Data\Canneverbe Limited
O43 - CFD: 24/05/2014 - [] HD -- C:\Documents and Settings\All Users\Application Data\CanonBJ
O43 - CFD: 19/05/2016 - [] HD -- C:\Documents and Settings\All Users\Application Data\CanonIJScan
O43 - CFD: 06/12/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Casual Arts
O43 - CFD: 09/02/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\IsolatedStorage
O43 - CFD: 31/03/2014 - [] D -- C:\Documents and Settings\All Users\Application Data\ma-config.com
O43 - CFD: 14/08/2014 - [] D -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
O43 - CFD: 27/09/2014 - [] SD -- C:\Documents and Settings\All Users\Application Data\Microsoft
O43 - CFD: 11/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Microsoft Help
O43 - CFD: 17/05/2014 - [] D -- C:\Documents and Settings\All Users\Application Data\Mozilla
O43 - CFD: 30/03/2014 - [] D -- C:\Documents and Settings\All Users\Application Data\NVIDIA Corporation
O43 - CFD: 30/03/2014 - [] D -- C:\Documents and Settings\All Users\Application Data\Sun
O43 - CFD: 30/03/2014 - [] D -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\Fichiers communs\Adobe
O43 - CFD: 17/05/2014 - [] D -- C:\Program Files\Fichiers communs\DESIGNER
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\Fichiers communs\InstallShield
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\Fichiers communs\Java
O43 - CFD: 01/08/2014 - [] D -- C:\Program Files\Fichiers communs\Microsoft Shared
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\Fichiers communs\MSSoap
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\Fichiers communs\ODBC
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\Fichiers communs\Services
O43 - CFD: 30/03/2014 - [] D -- C:\Program Files\Fichiers communs\SpeechEngines
O43 - CFD: 17/05/2014 - [] D -- C:\Program Files\Fichiers communs\System
O43 - CFD: 27/09/2014 - [] D -- C:\Documents and Settings\Ecole\Application Data\.t4k_common
O43 - CFD: 31/03/2014 - [] D -- C:\Documents and Settings\Ecole\Application Data\Adobe
O43 - CFD: 26/09/2015 - [] D -- C:\Documents and Settings\Ecole\Application Data\Apple Computer
O43 - CFD: 17/05/2014 - [] D -- C:\Documents and Settings\Ecole\Application Data\AVAST Software
O43 - CFD: 30/03/2014 - [] D -- C:\Documents and Settings\Ecole\Application Data\Canneverbe Limited
O43 - CFD: 19/05/2016 - [] D -- C:\Documents and Settings\Ecole\Application Data\Canon
O43 - CFD: 06/12/2015 - [] D -- C:\Documents and Settings\Ecole\Application Data\Casual Arts
O43 - CFD: 26/01/2016 - [] D -- C:\Documents and Settings\Ecole\Application Data\dvdcss
O43 - CFD: 30/03/2014 - [] D -- C:\Documents and Settings\Ecole\Application Data\Identities
O43 - CFD: 31/03/2014 - [] D -- C:\Documents and Settings\Ecole\Application Data\Macromedia
O43 - CFD: 14/08/2014 - [0] D -- C:\Documents and Settings\Ecole\Application Data\Malwarebytes
O43 - CFD: 23/09/2015 - [] SD -- C:\Documents and Settings\Ecole\Application Data\Microsoft
O43 - CFD: 26/09/2015 - [] D -- C:\Documents and Settings\Ecole\Application Data\Mindscape
O43 - CFD: 17/05/2014 - [] D -- C:\Documents and Settings\Ecole\Application Data\Mozilla
O43 - CFD: 05/06/2014 - [] D -- C:\Documents and Settings\Ecole\Application Data\NVIDIA
O43 - CFD: 23/01/2016 - [0] D -- C:\Documents and Settings\Ecole\Application Data\Solvusoft
O43 - CFD: 30/03/2014 - [] D -- C:\Documents and Settings\Ecole\Application Data\Sun
O43 - CFD: 19/11/2014 - [] D -- C:\Documents and Settings\Ecole\Application Data\tuxmath
O43 - CFD: 19/11/2014 - [] D -- C:\Documents and Settings\Ecole\Application Data\TuxPaint
O43 - CFD: 02/09/2014 - [] D -- C:\Documents and Settings\Ecole\Application Data\TuxType
O43 - CFD: 29/05/2016 - [] D -- C:\Documents and Settings\Ecole\Application Data\vlc
O43 - CFD: 29/05/2016 - [] D -- C:\Documents and Settings\Ecole\Application Data\ZHP
O43 - CFD: 15/07/2015 - [] D -- C:\Documents and Settings\Ecole\Local Settings\Application Data\Adobe
O43 - CFD: 26/09/2015 - [] D -- C:\Documents and Settings\Ecole\Local Settings\Application Data\Apple Computer
O43 - CFD: 05/06/2014 - [] D -- C:\Documents and Settings\Ecole\Local Settings\Application Data\Bluestacks
O43 - CFD: 10/02/2016 - [] D -- C:\Documents and Settings\Ecole\Local Settings\Application Data\Google
O43 - CFD: 27/02/2016 - [] D -- C:\Documents and Settings\Ecole\Local Settings\Application Data\Microsoft
O43 - CFD: 17/05/2014 - [0] D -- C:\Documents and Settings\Ecole\Local Settings\Application Data\Microsoft Help
O43 - CFD: 17/05/2014 - [] D -- C:\Documents and Settings\Ecole\Local Settings\Application Data\Mozilla
O43 - CFD: 26/05/2014 - [] D -- C:\Documents and Settings\Ecole\Local Settings\Application Data\NVIDIA
O43 - CFD: 16/07/2015 - [] D -- C:\Documents and Settings\Ecole\Local Settings\Application Data\Paint.NET
O43 - CFD: 09/08/2014 - [] D -- C:\Documents and Settings\Ecole\Local Settings\Application Data\Seppia
O43 - CFD: 16/05/2015 - [] D -- C:\Documents and Settings\Ecole\Local Settings\Application Data\Software =>PUP.Optional.Boxore
O43 - CFD: 30/03/2014 - [] D -- C:\Documents and Settings\Ecole\Local Settings\Application Data\Sun
O43 - CFD: 11/01/2015 - [0] D -- C:\Documents and Settings\Ecole\Local Settings\Application Data\Temp
O43 - CFD: 26/07/2015 - [] D -- C:\Documents and Settings\Ecole\Local Settings\Application Data\WMTools Downloaded Files
O43 - CFD: 30/03/2014 - [] RD -- C:\Documents and Settings\Ecole\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 12/01/2015 - [] RD -- C:\Documents and Settings\Ecole\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 09/02/2015 - [] D -- C:\Documents and Settings\Ecole\Menu Démarrer\Programmes\IrfanView

---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 0s
O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - avast! Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software a.s.®
O106 - SIOI: Offline Files Menu [Fichiers hors connexion] - {750fdf0e-2a26-11d1-a3ea-080036587f03}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\system32\cscui.dll =>.Microsoft Corporation

---\\ Enumération des clés StartupReg (1) - 0s
O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe =>.Oracle Corporation

---\\ Liste des pilotes du système (66) - 5s
O58 - SDL:2015/09/07 18:30:46 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\24ED575B.sys [98520] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/05/17 19:08:15 A . (.Analog Devices, Inc. - High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\ADIHdAud.sys [293888] =>.Analog Devices, Inc.
O58 - SDL:2014/05/17 19:08:15 A . (.Andrea Electronics Corporation - Audio Noise Filtering Driver (32-bit).) -- C:\WINDOWS\System32\drivers\aeaudio.sys [93952] =>.Andrea Electronics Corporation
O58 - SDL:2007/04/16 21:46:00 A . (.Advanced Micro Devices - AMD Processor Driver.) -- C:\WINDOWS\System32\drivers\AmdPPM.sys [33792] =>.Advanced Micro Devices
O58 - SDL:2008/04/13 09:35:30 A . (.ADMtek Incorporated. - ADMtek AN983/AN985/ADM951X NDIS5 Driver.) -- C:\WINDOWS\System32\drivers\an983.sys [36224]
O58 - SDL:2004/08/13 10:56:20 A . (. - ATK0110 ACPI Utility.) -- C:\WINDOWS\System32\drivers\ASACPI.sys [5810]
O58 - SDL:2008/01/04 13:34:42 A . (...) -- C:\WINDOWS\System32\drivers\AsInsHelp32.sys [10216] =>.ASUSTeK Computer Inc.®
O58 - SDL:2008/01/04 13:34:48 A . (...) -- C:\WINDOWS\System32\drivers\AsInsHelp64.sys [11832] =>.ASUSTeK Computer Inc.®
O58 - SDL:2007/12/17 17:14:06 A . (...) -- C:\WINDOWS\System32\drivers\AsIO.sys [12400] =>.ASUSTeK Computer Inc.®
O58 - SDL:2016/05/03 19:02:47 A . (.AVAST Software - avast! HWID.) -- C:\WINDOWS\System32\drivers\aswHwid.sys [32792] =>.AVAST Software a.s.® (ALWIL Software)
O58 - SDL:2016/05/03 19:00:46 A . (.AVAST Software - avast! Keyboard Filter Driver.) -- C:\WINDOWS\System32\drivers\aswKbd.sys [35096] =>.AVAST Software a.s.®
O58 - SDL:2016/05/03 19:02:48 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys [91168] =>.AVAST Software a.s.®
O58 - SDL:2016/05/03 19:02:47 A . (.AVAST Software - avast! TDI Redirect Driver.) -- C:\WINDOWS\System32\drivers\aswRdr.sys [64272] =>.AVAST Software a.s.®
O58 - SDL:2016/05/03 19:02:48 A . (.AVAST Software - avast! Revert.) -- C:\WINDOWS\System32\drivers\aswRvrt.sys [58776] =>.AVAST Software a.s.® (ALWIL Software)
O58 - SDL:2016/05/03 19:00:48 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\WINDOWS\System32\drivers\aswSnx.sys [815792] =>.AVAST Software a.s.®
O58 - SDL:2016/05/03 19:02:48 A . (.AVAST Software - avast! self protection module.) -- C:\WINDOWS\System32\drivers\aswSP.sys [449640] =>.AVAST Software a.s.®
O58 - SDL:2016/05/03 19:02:50 A . (.AVAST Software - avast! Stream Filter.) -- C:\WINDOWS\System32\drivers\aswStmXP.sys [187208] =>.AVAST Software a.s.®
O58 - SDL:2016/05/03 19:02:51 A . (.AVAST Software - avast! TDI Filter Driver.) -- C:\WINDOWS\System32\drivers\aswTdi.sys [67216] =>.AVAST Software a.s.®
O58 - SDL:2016/05/03 19:02:49 A . (.AVAST Software - avast! VM Monitor.) -- C:\WINDOWS\System32\drivers\aswVmm.sys [221368] =>.AVAST Software a.s.® (ALWIL Software)
O58 - SDL:2011/08/17 09:56:22 A . (.Nokia - Nokia USB Phone Bus Driver.) -- C:\WINDOWS\System32\drivers\ccdcmb.sys [18176] =>.Nokia
O58 - SDL:2011/08/17 09:56:26 A . (.Nokia - Nokia USB Phone Bus Driver.) -- C:\WINDOWS\System32\drivers\ccdcmbo.sys [23168] =>.Nokia
O58 - SDL:2013/04/07 12:38:28 A . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\System32\drivers\cinemst2.sys [262528] =>.RAVISENT Technologies Inc.
O58 - SDL:2013/04/07 12:38:28 A . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\System32\drivers\cpqdap01.sys [11776] =>.Compaq Computer Corporation
O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- C:\WINDOWS\System32\drivers\dmboot.sys [800256] =>.Microsoft Corp., Veritas Software
O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\System32\drivers\dmio.sys [154496] =>.Microsoft Corp., Veritas Software
O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\System32\drivers\dmload.sys [5888] =>.Microsoft Corp., Veritas Software.
O58 - SDL:2008/04/14 14:00:00 A . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [144384]
O58 - SDL:2008/10/09 15:42:42 A . (.Windows (R) Codename Longhorn DDK provider - KMWDFilter Driver from UASSOFT.COM.) -- C:\WINDOWS\System32\drivers\KMWDFILTER.sys [17408] =>.Windows (R) Codename Longhorn DDK provider
O58 - SDL:2016/03/10 15:08:52 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [24448] =>.Malwarebytes Corporation®
O58 - SDL:2016/03/10 15:09:00 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [123264] =>.Malwarebytes Corporation®
O58 - SDL:2016/05/29 15:55:22 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [170200] =>.Malwarebytes Corporation®
O58 - SDL:2013/04/07 12:38:28 A . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\nikedrv.sys [12032] =>.S3/Diamond Multimedia Systems
O58 - SDL:2014/03/09 22:35:33 A . (.NVIDIA Corporation - NVIDIA Windows XP Miniport Driver, Version.) -- C:\WINDOWS\System32\drivers\nv4_mini.sys [12856232] =>.NVIDIA Corporation®
O58 - SDL:2006/08/14 14:51:28 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) IDE Performance Driver.) -- C:\WINDOWS\System32\drivers\nvata.sys [105344] =>.NVIDIA Corporation
O58 - SDL:2010/08/12 11:44:06 A . (.NVIDIA Corporation - NVIDIA Networking Function Driver..) -- C:\WINDOWS\System32\drivers\NVENETFD.sys [71936] =>.NVIDIA Corporation
O58 - SDL:2010/04/09 02:30:10 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvgts.sys [168040] =>.NVIDIA Corporation®
O58 - SDL:2013/11/28 15:38:20 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\WINDOWS\System32\drivers\nvhda32.sys [129312] =>.NVIDIA Corporation®
O58 - SDL:2010/03/04 18:02:10 A . (.NVIDIA Corporation - NVIDIA Networking Bus Driver..) -- C:\WINDOWS\System32\drivers\nvnetbus.sys [13824] =>.NVIDIA Corporation
O58 - SDL:2010/03/04 18:02:00 A . (.NVIDIA Corporation - NVIDIA Network Resource Manager..) -- C:\WINDOWS\System32\drivers\nvnrm.sys [212224] =>.NVIDIA Corporation
O58 - SDL:2010/03/22 18:29:08 A . (.NVIDIA Corporation - NVIDIA nForce(TM) SMU Microcontroller Drive.) -- C:\WINDOWS\System32\drivers\nvsmu.sys [18944] =>.NVIDIA Corporation
O58 - SDL:2006/07/11 21:37:46 A . (.NVIDIA Corporation - NVIDIA Networking Soft-NPU Driver..) -- C:\WINDOWS\System32\drivers\nvsnpu.sys [261632] =>.NVIDIA Corporation
O58 - SDL:2006/07/11 21:38:18 A . (.NVIDIA Corporation - NVIDIA Networking Protocol Driver..) -- C:\WINDOWS\System32\drivers\nvtcp.sys [110592] =>.NVIDIA Corporation
O58 - SDL:2008/04/14 14:00:00 A . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- C:\WINDOWS\System32\drivers\ptilink.sys [17792] =>.Parallel Technologies, Inc.
O58 - SDL:2013/04/07 12:38:28 A . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\System32\drivers\rio8drv.sys [12032] =>.S3/Diamond Multimedia Systems
O58 - SDL:2013/04/07 12:38:28 A . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\riodrv.sys [12032] =>.S3/Diamond Multimedia Systems
O58 - SDL:2008/04/14 14:00:00 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2014/05/17 19:08:15 A . (.Sensaura - Sensaura WDM 3D Audio Driver.) -- C:\WINDOWS\System32\drivers\senfilt.sys [392960] =>.Sensaura
O58 - SDL:2013/08/25 11:30:48 A . (...) -- C:\WINDOWS\System32\drivers\StarOpen.sys [13120] =>.Rocket Division Software Ltd®
O58 - SDL:2013/04/07 12:38:28 A . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\System32\drivers\tsbvcap.sys [21376] =>.Toshiba Corporation
O58 - SDL:2011/08/17 09:56:32 A . (.Nokia - Filter Driver for Nokia USB Phone Bus Drive.) -- C:\WINDOWS\System32\drivers\usbser_lowerfltj.sys [8192] =>.Nokia
O58 - SDL:2013/04/07 12:38:28 A . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\System32\drivers\vdmindvd.sys [58112] =>.RAVISENT Technologies Inc.
O58 - SDL:2008/04/14 14:00:00 AC . (...) -- C:\WINDOWS\System32\ansi.sys [9037]
O58 - SDL:2008/04/14 14:00:00 AC . (...) -- C:\WINDOWS\System32\country.sys [27097]
O58 - SDL:2008/04/14 14:00:00 AC . (...) -- C:\WINDOWS\System32\himem.sys [4912]
O58 - SDL:2008/04/14 14:00:00 AC . (...) -- C:\WINDOWS\System32\key01.sys [42809]
O58 - SDL:2008/04/14 14:00:00 AC . (...) -- C:\WINDOWS\System32\keyboard.sys [42537]
O58 - SDL:2008/04/14 14:00:00 AC . (...) -- C:\WINDOWS\System32\ntdos.sys [27916]
O58 - SDL:2008/04/14 14:00:00 AC . (...) -- C:\WINDOWS\System32\ntdos404.sys [29146]
O58 - SDL:2008/04/14 14:00:00 AC . (...) -- C:\WINDOWS\System32\ntdos411.sys [29370]
O58 - SDL:2008/04/14 14:00:00 AC . (...) -- C:\WINDOWS\System32\ntdos412.sys [29274]
O58 - SDL:2008/04/14 14:00:00 AC . (...) -- C:\WINDOWS\System32\ntdos804.sys [29146]
O58 - SDL:2008/04/14 14:00:00 AC . (...) -- C:\WINDOWS\System32\ntio.sys [34000]
O58 - SDL:2008/04/14 14:00:00 AC . (...) -- C:\WINDOWS\System32\ntio404.sys [34560]
O58 - SDL:2008/04/14 14:00:00 AC . (...) -- C:\WINDOWS\System32\ntio411.sys [35648]
O58 - SDL:2008/04/14 14:00:00 AC . (...) -- C:\WINDOWS\System32\ntio412.sys [35424]
O58 - SDL:2008/04/14 14:00:00 AC . (...) -- C:\WINDOWS\System32\ntio804.sys [34560]

---\\ Associations Shell Spawning (10) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\system32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®

---\\ Menu de démarrage Internet (12) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\Launcher.exe =>.AVAST Software s.r.o.®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software

---\\ Recherche d'infection sur les navigateurs (45) - 9s
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.focusbase.asul", "1406819113627"); =>PUP.Optional.Focusbase
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.focusbase.aul", "1406812384454"); =>PUP.Optional.Focusbase
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.focusbase.irl", true); =>PUP.Optional.Focusbase
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.focusbase.is", "ob100ppFR"); =>PUP.Optional.Focusbase
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.focusbase.ug", "CA472A34-B3A1-41CF-9A63-DFB1AEDC1570"); =>PUP.Optional.Focusbase
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.BUTTON_STRUCTURE", "[{\"b\":224511887,\"c\":\"mindspark.magnify\",\"p\":\"L.0\[...] =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.browser.startup.homepage.savedPrev", "true"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.browser.startup.homepage.tb", "http://home.tb.ask.com/index.jhtml?ptb=BF26E4DD[...] =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.browser.startup.page.savedPrev", 1); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.browser.startup.page.tb", 1); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.browser.version.last", "46.0"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.coId", "c9133c44a6db4788b4ef687626c5392d"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.firstKnownVersion", "7.38.8.46577"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.homepage", "http://home.tb.ask.com/index.jhtml?ptb=BF26E4DD-B121-462E-9F08-65C[...] =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.hp.enabled", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.hp.guardType", "HPR"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.hp.user.defined", false); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.initialized", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.installType", "XPI"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.installation.dlpCountryCode", "FR"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.installation.installDate", "2016012309"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.installation.partnerId", "^BYC^xdm024^YYA^fr"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.installation.pixelUrl", "http://www.pconverter.com/install_pixels.jhtml?partne[...] =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.installation.success", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.installation.toolbarId", "BF26E4DD-B121-462E-9F08-65C05F34D6D4"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.lastActivePing", "1462898539322"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.lastKnownVersion", "7.38.8.46577"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.lssState", "{\"previousLocales\":[\"fr\",\"fr-FR\",\"en-US\",\"en\"],\"support[...] =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.options.defaultSearch", false); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.options.homePageEnabled", false); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.options.keywordEnabled", false); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.options.tabEnabled", false); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.partnerPixelFired", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.productDeliveryOption.language", "fr"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.productDeliveryOption.type", "Toolbar"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.successUrl", "http://www.pconverter.com/installComplete.jhtml"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.toolbar.versionChanged", false); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.toolbarCollapsed", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark._dzMembers_.uninstallTasks", "{\"prefBranchesToDelete\":[\"extensions.toolbar.mindspark._d[...] =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark.hp.enabled", true); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark.hp.enabled.guid", "pconverter@mindspark.com"); =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Ecole - hywn9b4w.default] user_pref("extensions.toolbar.mindspark.lastInstalled", "pconverter@mindspark.com"); =>PUP.Optional.Bandoo
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {6B7297A4-C3BD-4B24-A54F-13EF960E6737} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/

---\\ Enumère les services démarrés par Svchost (40) - 1s
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\WINDOWS\system32\appmgmts.dll [176640] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496] =>.Microsoft Corporation
O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [78336] =>.Microsoft Corporation
O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464] =>.Microsoft Corporation
O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576] =>.Microsoft Corp.
O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488] =>.Microsoft Corporation
O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\system32\ersvc.dll [23040] =>.Microsoft Corporation
O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - .) -- C:\WINDOWS\system32\es.dll [253952] =>.Microsoft Corporation
O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] =>.Microsoft Corporation
O83 - Search Svchost Services: HidServ (HidServ) . (.Microsoft Corporation - HID Audio Service.) -- C:\WINDOWS\system32\hidserv.dll [21504] =>.Microsoft Corporation
O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [99840] =>.Microsoft Corporation
O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [134144] =>.Microsoft Corporation
O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\system32\msgsvc.dll [33792] =>.Microsoft Corporation
O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144] =>.Microsoft Corporation
O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- C:\WINDOWS\system32\mswsock.dll [247808] =>.Microsoft Corporation
O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [53248] =>.Microsoft Corporation
O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560] =>.Microsoft Corporation
O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [18944] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\WINDOWS\system32\ipnathlp.dll [332800] =>.Microsoft Corporation
O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\system32\tapisrv.dll [249856] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] =>.Microsoft Corporation
O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112] =>.Microsoft Corporation
O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176] =>.Microsoft Corporation
O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483840] =>.Microsoft Corporation
O83 - Search Svchost Services: Wmi (Wmi) . (.Microsoft Corporation - API avancées Windows 32.) -- C:\WINDOWS\system32\advapi32.dll [685568] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\wmisvc.dll [145408] =>.Microsoft Corporation
O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896] =>.Microsoft Corporation
O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024] =>.Microsoft Corporation
O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\system32\qmgr.dll [409088] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] =>.Microsoft Corporation
O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll [38400] =>.Microsoft Corporation
O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- C:\WINDOWS\system32\mspmsnsv.dll [27136] =>.Microsoft Corporation

---\\ Enumère les codes produits des logiciels (1) - 1s
O90 - PUC: "E8E877ED6825FF148AE54DA13648DD38" . (.Boxore Client.) -- C:\WINDOWS\Installer\{DE778E8E-5286-41FF-A85E-D41A6384DD83}\Boxore.ico =>PUP.Optional.Boxore

---\\ Scan Additionnel (7) - 0s
HKCU\SOFTWARE\WebApp =>.Superfluous.Downloader
C:\Program Files\QuickTime =>Riskware.QuickTime
C:\Program Files\Software =>PUP.Optional.Boxore
C:\Documents and Settings\Ecole\Local Settings\Application Data\Software =>PUP.Optional.Boxore
C:\WINDOWS\Installer\{DE778E8E-5286-41FF-A85E-D41A6384DD83}\Boxore.ico =>PUP.Optional.Boxore
HKLM\Software\Classes\Installer\Products\E8E877ED6825FF148AE54DA13648DD38 =>PUP.Optional.Boxore
HKLM\Software\Classes\Installer\Features\E8E877ED6825FF148AE54DA13648DD38 =>PUP.Optional.Boxore

---\\ Récapitulatif des éléments trouvés sur votre station (7) - 0s
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.WellKnownMedia
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Downloader
http://www.nicolascoolman.info/2016/04/21/riskware-quicktime/ =>Riskware.QuickTime
http://www.nicolascoolman.info/2016/05/02/pup-optional-boxore/ =>PUP.Optional.Boxore
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Orphean
http://www.nicolascoolman.fr/pup-focusbase/ =>PUP.Optional.Focusbase
http://www.nicolascoolman.fr/?p=237 =>PUP.Optional.Bandoo

~ End of the scan, 55586 items in 00h11mn48s (733)(0)

Publicité


Signaler le contenu de ce document

Publicité