cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.10.13.187 Par Nicolas Coolman (2016/10/13)
~ Démarré par karim (Administrator) (2016/10/14 19:32:07)
~ Web: https://www.nicolascoolman.com
~ Blog: https://www.anti-malware.top
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\karim\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\karim\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows VISTA, 32-bit Service Pack 2 (Build 6002)

---\\ Navigateurs Internet (2) - 2s
~ MFIE: Mozilla Firefox 49.0.1 (x86 fr)
~ MSIE: Internet Explorer v7.0.6002.18005

---\\ Informations sur les produits Windows (4) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK
Windows Activation Technologies : KO

---\\ Logiciels de protection (3) - 41s
Microsoft Security Client v4.9.0218.0 => Software.Protection
Microsoft Security Essentials v4.9.218.0 => Software.Protection
Norton Protection Center v3.1.0.I can not have a major version greater than 255 => Software.Protection

---\\ Surveillance de Logiciels (1) - 52s
Adobe Flash Player 23 NPAPI =>.Software.Surveillance

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 15 Model 6 Stepping 5, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 916.308 MB (32% free)
System Restore: Activé (Enable)
System drive C: has 30 GB () free of 71 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: PC-DE-KARIM
~ User Name: karim
~ Logged in as Administrator

---\\ Enumération des unités disques (3) - 1s
~ Drive C: has 30 GB free of 71 GB (System)
~ Drive D: has 69 GB free of 71 GB
~ Drive E: has GB free of 3 GB

---\\ Etat du Centre de Sécurité Windows (12) - 1s
[HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (24) - 21s
[MD5.D07D4C3038F3578FFCE1C0237F2A1253] - 11/04/2009 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2926592] =>.Microsoft Corporation
[MD5.4B555106290BD117334E9A08761C035A] - 02/11/2006 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] =>.Microsoft Corporation
[MD5.101BA3EA053480BB5D957EF37C06B5ED] - 19/01/2008 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [96768] =>.Microsoft Corporation
[MD5.D4E2D56E76A2D981262CCD68EFCCEF44] - 21/06/2011 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [834048] =>.Microsoft Corporation
[MD5.898E7C06A350D4A1A64A9EA264D55452] - 11/04/2009 - (.Microsoft Corporation - Application d'ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [314368] =>.Microsoft Corporation
[MD5.85E861D0B88DB2B54ACB0839654C09F7] - 02/03/2011 - (.Microsoft Corporation - DNS DLL de l'API Client.) -- C:\Windows\System32\dnsapi.dll [168448] =>.Microsoft Corporation
[MD5.95F5FF73B076576C41740F1A842B9B57] - 19/01/2008 - (.Microsoft Corporation - DLL client de l'API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation
[MD5.4A0978779958D8FE8F5849F452BCC812] - 13/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [273408] =>.Microsoft Corporation
[MD5.1F05B78AB91C9075565A9D8A4B880BC4] - 11/04/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [19944] =>.Microsoft Windows®
[MD5.7ADD03E75BEB9E6DD102C3081D29840A] - 19/01/2008 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70144] =>.Microsoft Corporation
[MD5.6B4BFFB9BECD728097024276430DB314] - 11/04/2009 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [67072] =>.Microsoft Corporation
[MD5.622C41A07CA7E6DD91770F50D532CB6C] - 14/04/2011 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [75264] =>.Microsoft Corporation
[MD5.062452B7FFD68C8C042A6261FE8DFF4A] - 11/04/2009 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [561152] =>.Microsoft Corporation
[MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - 19/01/2008 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [54784] =>.Microsoft Corporation
[MD5.8793643A67B42CEC66490B2A0CF92D68] - 19/01/2008 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [100864] =>.Microsoft Corporation
[MD5.1B864548B2ACEC1C0BB29B615CC42978] - 09/01/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [107008] =>.Microsoft Corporation
[MD5.BF84E55A9B3AD3CBAB4AAE3BE043E579] - 10/05/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [185856] =>.Microsoft Corporation
[MD5.2C1121F2B87E9A6B12485DF53CD848C7] - 03/03/2013 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1082232] =>.Microsoft Windows®
[MD5.8A79FDF04A73428597E2CAF9D0D67850] - 19/01/2008 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [79360] =>.Microsoft Corporation
[MD5.A214ADBAF4CB47DD2728859EF31F26B0] - 19/01/2008 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [76288] =>.Microsoft Corporation
[MD5.E8BD98D46F2ED77132BA927FCCB47D8B] - 02/11/2006 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [242688] =>.Microsoft Corporation
[MD5.7B75299A4D201D6A6533603D6914AB04] - 11/04/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [66560] =>.Microsoft Corporation
[MD5.EC565DFA3D9C45D8083B72DEC5B33710] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [72192] =>.Microsoft Corporation
[MD5.786DB5771F05EF300390399F626BF30A] - 21/08/2012 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [224640] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (9) - 97s
O23 - Service: ePerformance Service (AcerMemUsageCheckService) . (.Copyright © 2006 - MemCheck.Service.) - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) . (.Copyright 2004 - CLCapSvc Module.) - C:\Acer\Empowering Technology\eMode\PCM\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) . (.Copyright 2004 - CLSched Module.) - C:\Acer\Empowering Technology\eMode\PCM\Kernel\TV\CLSched.exe
O23 - Service: eDSService.exe (eDataSecurity Service) . (.HiTRSUT - eDataSecurity Service.) - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe =>.HiTRUST Inc.®
O23 - Service: eRecovery Service (eRecoveryService) . (.Acer Inc. - eRecoveryService.) - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe =>.Acer Inc.
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company - .) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe =>.Hewlett-Packard Company
O23 - Service: @C:\Windows\system32\msimsg.dll (msiserver) . (...) - C:\Windows\system32\msiexec (.not file.)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004 - RichVideo Module.) - C:\Program Files\Cyberlink\Shared files\RichVideo.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl®

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (14) - 415s

SR - Auto [29/12/2006] [ 28672] ePerformance Service (AcerMemUsageCheckService) . (.Copyright © 2006.) - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
SS - Demand [11/10/2016] [ 270016] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SS - Disabl [24/08/2007] [ 149864] Symantec Event Manager (ccEvtMgr) . (.Symantec Corporation.) - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe =>.Symantec Corporation®
SS - Disabl [24/08/2007] [ 149864] Symantec Settings Manager (ccSetMgr) . (.Symantec Corporation.) - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe =>.Symantec Corporation®
SR - Auto [12/01/2007] [ 274520] CyberLink Background Capture Service (CBCS) (CLCapSvc) . (.Copyright 2004.) - C:\Acer\Empowering Technology\eMode\PCM\Kernel\TV\CLCapSvc.exe
SR - Auto [12/01/2007] [ 118870] CyberLink Task Scheduler (CTS) (CLSched) . (.Copyright 2004.) - C:\Acer\Empowering Technology\eMode\PCM\Kernel\TV\CLSched.exe
SR - Auto [07/02/2007] [ 457512] eDSService.exe (eDataSecurity Service) . (.HiTRSUT.) - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe =>.HiTRUST Inc.®
SR - Auto [28/12/2006] [ 49152] eRecovery Service (eRecoveryService) . (.Acer Inc..) - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe =>.Acer Inc.
SR - Auto [14/12/2006] [ 61440] LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe =>.Hewlett-Packard Company
SS - Demand [24/09/2016] [ 172488] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SR - Auto [12/01/2007] [ 262247] Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004.) - C:\Program Files\Cyberlink\Shared files\RichVideo.exe
SS - Auto [25/07/2016] [ 324224] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SS - Disabl [09/11/2007] [ 1252232] Symantec Core LC (Symantec Core LC) . (...) - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe =>.Symantec Corporation®

---\\ Tâches planifiées en automatique (31) - 221s
O39 - APT: Orphan - (...) -- C:\Windows\Tasks\Ad-Aware Update (Weekly).job [370] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\Tasks\{7ACBF951-DA33-4C7C-DD1C-5DCE7D7F737C}.job [270] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\Ad-Aware Update (Weekly) [3240] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3854] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\CreateChoiceProcessTask [3166] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\RealUpgradeLogonTaskS-1-5-21-3625257640-3717126807-28375180-1000 [3200] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-3625257640-3717126807-28375180-1000 [3334] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{02E34D24-C958-4CE6-92BC-640B14A15D7A} [3008] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{0AF6CF6D-4177-4ACE-B4D5-684B2A2BEA2D} [2994] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{1160F201-8331-4F8C-A3D3-DA008AF99291} [2996] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{1B6C63A3-E1CD-40D0-9122-D860DED32279} [3006] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{379B0B59-DE5F-48DA-9085-A23AB59A3B78} [3004] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{4C987009-3880-4A2E-B200-DEFBC00FBD2C} [2994] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{58F3FD6D-D557-4C16-82E3-CC5D4BE18F4E} [3002] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{7ACBF951-DA33-4C7C-DD1C-5DCE7D7F737C} [3216] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{9562351A-29B5-45A5-93EC-10B275C409D2} [3002] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{9BC249EC-BCDC-4E23-99CD-D3AAD999C560} [3008] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{B48C6063-1696-4063-BEF5-DA36F440EFEC} [2988] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{B8A666F2-CFDB-4BB3-940F-EADC793C682C} [3038] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{BA7D2DDE-9192-4828-9252-EA6C7BE50BCB} [3002] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{C2159FBA-D09A-4C68-974D-933B2D199805} [2998] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{CA3A45DA-EFDF-46A2-B382-8509C8B9463A} [3126] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{D26AF34B-BC10-4629-AAAE-3DE02ED0D293} [2996] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{D32DCFCC-5B9D-4AF6-8950-B0D9299F9DFF} [2994] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{D5C7CA43-8FD6-4252-B028-E36741BA8929} [2780] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{D86FF091-2D9F-43BB-89F5-CC082D4EE47A} [3002] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{DE4CDDB1-5402-468A-9992-851F327A4D1D} [2994] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{E254784D-3DBA-4AFD-B823-F3C1A602485B} [3182] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{F98E9019-AFAE-4081-8984-BE04A49FC7C5} [3002] =>.Superfluous.Orphan
O39 - APT: Orphan - (...) -- C:\Windows\System32\Tasks\{FB6343B1-075E-4F60-8FB5-D9BB056C23C8} [3002] =>.Superfluous.Orphan

---\\ Processus lancés (16) - 100s
[MD5.509980831739ED65E173EC6CAB056B5B] - (.Copyright © 2006 - MemCheck.Service.) -- C:\Acer\Empowering Technology\ePerformance\MemCheck.exe [28672] [PID.12]
[MD5.0E235B002F8FE58DA92566AE53DF6681] - (.Copyright 2004 - CLCapSvc Module.) -- C:\Acer\Empowering Technology\eMode\PCM\Kernel\TV\CLCapSvc.exe [274520] [PID.1452]
[MD5.F87DDE13D57062DA8EBA2368667D8130] - (.HiTRSUT - eDataSecurity Service.) -- C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe [457512] [PID.1880] =>.HiTRUST Inc.®
[MD5.0921A68E8FE9B25DD0EFFAB949376B5F] - (.HiTRUST - eDataSecurity System Loader( Load and prepa.) -- C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe [464168] [PID.1916] =>.HiTRUST Inc.®
[MD5.559C9B7800FAC92FC515CD0003D7C631] - (.Hewlett-Packard Company - .) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe [61440] [PID.2044] =>.Hewlett-Packard Company
[MD5.D898A66D91BAB6FB579A94D21793073F] - (.www.IslamicFinder.org - Automatic Athan (Azan) five times a day f.) -- C:\Program Files\Athan\Athan.exe [1204224] [PID.452] =>.www.IslamicFinder.org
[MD5.FA31E71FFC2CC0CA0EFA2298EEFBBFE3] - (.CyberLink Corp. - CyberLink PowerCinema Resident Program.) -- C:\Acer\Empowering Technology\eMode\PCM\PCMService.exe [151552] [PID.1036] =>.CyberLink Corp.
[MD5.C1C132455200AD4704142442C89D0FA4] - (.Copyright 2004 - RichVideo Module.) -- C:\Program Files\Cyberlink\Shared files\RichVideo.exe [262247] [PID.2068]
[MD5.FB01D4AE207B9EFDBABFC55DC95C7E31] - (.Microsoft Corp. - Microsoft® Windows Live ID Service.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [1713536] [PID.2308] =>.Microsoft Corporation®
[MD5.448E6DEFA9DFB76207A529FC0FB64069] - (.Acer Inc. - eRecoveryService.) -- C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe [49152] [PID.2452] =>.Acer Inc.
[MD5.C649F293B8B047A2694F3C615D09BF17] - (.Microsoft Corp. - Microsoft® Windows Live ID Service Monitor.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE [193920] [PID.2512] =>.Microsoft Corporation®
[MD5.CC8E19BF16B69DCF04F5B4C609AA7CD6] - (.Copyright 2004 - CLSched Module.) -- C:\Acer\Empowering Technology\eMode\PCM\Kernel\TV\CLSched.exe [118870] [PID.2628]
[MD5.A67B078709F7C2DEDA542FF7F6F60D31] - (.AO Kaspersky Lab - Kaspersky Software Updater Beta.) -- C:\Program Files\Kaspersky Lab\Kaspersky Software Updater Beta\ksu.exe [3677104] [PID.472] =>.Kaspersky Lab®
[MD5.D4946C20D736363DB7E5BB53C78F65A3] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\karim\download\ZHPDiag3.exe [2405888] [PID.2960] =>.Nicolas Coolman
[MD5.B55A422F81B798459F38D95346E2E6EF] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [509384] [PID.2396] =>.Mozilla Corporation®
[MD5.ADCFA34032AA549CDB37D827B55AAE02] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files\Mozilla Firefox\plugin-container.exe [157128] [PID.3504] =>.Mozilla Corporation®

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (1) - 3s
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_23_0_0_185.dll =>.Adobe Systems Incorporated

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (17) - 21s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com =>.Google.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com =>.Google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://home.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.yahoo.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://fr.gdark.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://fr.search.yahoo.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.fr/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://fr.gdark.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.yahoo.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com =>.Google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://www.google.com =>.Google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = http://www.google.com =>.Google.com
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer
R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 1

---\\ Internet Explorer,Proxy Management (5) - 1s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 5s
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (20)

---\\ Browser Helper Object de navigateur (BHO) (4) - 7s
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll =>.Adobe Systems, Incorporated®
O2 - BHO: (no name) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} (Orphan)
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll =>.Microsoft Corporation®
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} . (.Microsoft Corporation - Windows Live Messenger Companion Core.) -- C:\Program Files\Windows Live\Companion\companioncore.dll =>.Microsoft Corporation®

---\\ Internet Explorer, Barre d'outil (1) - 5s
O3 - Toolbar: 0xE3EFEB7F196B494398D2FFB09D4B49CA01FE030000 - [HKCU]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} . (...) -- (.not file.)

---\\ Applications lancées au démarrage du système (17) - 88s
O4 - HKLM\..\Run: [eDataSecurity Loader] . (.HiTRUST - eDataSecurity System Loader( Load and prepa.) -- C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe =>.HiTRUST Inc.®
O4 - HKLM\..\Run: [Acer Tour Reminder] . (.Acer Inc. - Acer Tour Reminder.) -- C:\Acer\AcerTour\Reminder.exe =>.Acer Inc.
O4 - HKLM\..\Run: [Athan] . (.www.IslamicFinder.org - Automatic Athan (Azan) five times a day f.) -- C:\Program Files\Athan\Athan.exe =>.www.IslamicFinder.org
O4 - HKLM\..\Run: [WarReg_PopUp] . (.Acer Inc. - WR_PopUp.) -- C:\Acer\WR_PopUp\WarReg_PopUp.exe =>.Acer Inc.
O4 - HKLM\..\Run: [PCMService] . (.CyberLink Corp. - CyberLink PowerCinema Resident Program.) -- C:\Acer\Empowering Technology\eMode\PCM\PCMService.exe =>.CyberLink Corp.
O4 - HKLM\..\RunOnce: [*WerKernelReporting] . (.Microsoft Corporation - Rapports de problèmes Windows.) -- C:\Windows\System32\WerFault.exe =>.Microsoft Corporation
O4 - HKLM\..\RunOnce: [*Restore] . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) -- C:\Windows\System32\rstrui.exe =>.Microsoft Corporation
O4 - HKLM\..\RunOnce: [DeleteOnReboot] C:\Users\karim\AppData\Local\Temp\DeleteOnReboot.bat (.not file.)
O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware (cleanup)] . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe =>.Malwarebytes Corporation®
O4 - HKCU\..\Run: [Acer Tour Reminder] (Orphan)
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-3625257640-3717126807-28375180-1000\..\Run: [Acer Tour Reminder] (Orphan)
O4 - HKUS\S-1-5-21-3625257640-3717126807-28375180-1000\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl®

---\\ Raccourcis Global Startup (39) - 103s
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\karim\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Quicklaunch [Administrateur]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\sendTo [Administrateur]: Assistant Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\Programs [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [Administrateur]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Desktop [karim]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\karim\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [karim]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Quicklaunch [karim]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\sendTo [karim]: Assistant Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\sendTo [karim]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\Programs [karim]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [karim]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\CommonDesktop [Public]: HP Deskjet 2050 J510 series.lnk . (.Hewlett-Packard Co. - HP Printer Software.) C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\HP Deskjet 2050 J510 series.exe =>.Hewlett Packard®
O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\Windows\System32\cmd.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\System32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\Startup [Public]: Kaspersky Software Updater Beta.lnk . (.AO Kaspersky Lab - Kaspersky Software Updater Beta.) C:\Program Files\Kaspersky Lab\Kaspersky Software Updater Beta\ksu.exe -hide =>.Kaspersky Lab®
O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Bluetooth File Transfer Wizard.lnk . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\System32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) C:\Windows\System32\mblctr.exe /open =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\System32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\System32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sidebar.lnk . (.Microsoft Corporation - Volet Windows.) C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\Windows\System32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\Windows\System32\mobsync.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\Windows\System32\control.exe /name Microsoft.WelcomeCenter =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Backup.lnk . (.Microsoft Corporation - Sauvegarde Microsoft® Windows.) C:\Windows\System32\sdclt.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\System32\charmap.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) C:\Windows\System32\dfrgui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) C:\Windows\System32\cleanmgr.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: migwiz.lnk . (.Microsoft Corporation - Transfert de fichiers et paramètres Windows.) C:\Windows\System32\migwiz\migwiz.exe =>.Microsoft Windows®
O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) C:\Windows\System32\msinfo32.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) C:\Windows\System32\rstrui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\System32\taskschd.msc /s

---\\ Modification Domaine/Adresses DNS (4) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{2E9DDB7C-92C7-4769-9CF7-FC84C0E22342}: DhcpNameServer = 192.168.30.1 0.0.0.0 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{45F0650F-011A-487D-B6B5-3CADE3EB4462}: DhcpNameServer = 192.168.30.1 0.0.0.0 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{C2B3E62D-717D-445A-B0A9-256B854B4146}: DhcpNameServer = 192.168.1.254 =>.Local IP Adress

---\\ Protocole additionnel (25) - 35s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype4COM.) -- C:\Program Files\Common Files\Skype\Skype4COM.dll =>.Skype Software Sarl®
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files\Windows Live\Mail\mailcomm.dll =>.Microsoft Corporation®
O18 - Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation®
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation

---\\ Enumère les données de BootExecute (1) - 13s
O34 - HKLM BootExecute: (sdnclean.exe)

---\\ Logiciels installés (59) - 3371s
O42 - Logiciel: 7-Zip 16.04 - (.Igor Pavlov.) [HKLM] -- 7-Zip =>.Igor Pavlov
O42 - Logiciel: Acer eDataSecurity Management - (.HiTRUST Inc..) [HKLM] -- {AEEAE013-92F1-4515-B278-139F1A692A36} =>.HiTRUST Inc.®
O42 - Logiciel: Acer eMode Management - (...) [HKLM] -- {2637C347-9DAD-11D6-9EA2-00055D0CA761}
O42 - Logiciel: Acer Empowering Technology - (.Acer Inc..) [HKLM] -- {AB6097D9-D722-4987-BD9E-A076E2848EE2} =>.Acer Inc.
O42 - Logiciel: Acer ePerformance Management - (.Acer Inc..) [HKLM] -- {D462BF9E-0C35-4705-BF9B-3DF9F3816643} =>.Acer Inc.
O42 - Logiciel: Acer ScreenSaver - (.Acer Inc..) [HKLM] -- {79DD56FC-DB8B-47F5-9C80-78B62E05F9BC} =>.Acer Inc.
O42 - Logiciel: Acer Tour - (.Acer Inc..) [HKLM] -- {94389919-B0AA-4882-9BE8-9F0B004ECA35} =>.Acer Inc.
O42 - Logiciel: Adobe Flash Player 23 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Advertising Center - (.Nero AG.) [HKLM] -- {b2ec4a38-b545-4a00-8214-13fe0e915e6d} =>.Nero AG
O42 - Logiciel: Athan Basic 4.1 - (...) [HKLM] -- Athan
O42 - Logiciel: ccCommon - (.Symantec.) [HKLM] -- {B24E05CC-46FF-4787-BBB8-5CD516AFB118} =>.Symantec
O42 - Logiciel: Complément Messenger - (.Microsoft Corporation.) [HKLM] -- {6E5324C1-84FC-4F76-9A3A-C65E07F80EE6} =>.Microsoft Corporation
O42 - Logiciel: Component Framework - (.Symantec Corporation.) [HKLM] -- {31478BE1-CDE5-4753-A8B2-F6D4BC1FBE09} =>.Symantec Corporation
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft
O42 - Logiciel: Defraggler - (.Piriform.) [HKLM] -- Defraggler =>.Piriform Ltd®
O42 - Logiciel: ffdshow [rev 3058] [2009-08-20] - (...) [HKLM] -- ffdshow_is1
O42 - Logiciel: HP Deskjet 2050 J510 series Aide - (.Hewlett Packard.) [HKLM] -- {7A3DF2E2-CF13-44FB-A93E-F71D5381DB3F} =>.Hewlett Packard
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM] -- {B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE} =>.Hewlett-Packard
O42 - Logiciel: ImagXpress - (.Nero AG.) [HKLM] -- {A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D} =>.Nero AG
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} =>.Microsoft Corporation
O42 - Logiciel: Kaspersky Software Updater Beta - (.Kaspersky Lab.) [HKLM] -- {94C8D443-1D07-4E6D-A9EB-FDBA45A839D8} =>.Kaspersky Lab
O42 - Logiciel: Kaspersky Software Updater Beta - (.Kaspersky Lab.) [HKLM] -- InstallWIX_{94C8D443-1D07-4E6D-A9EB-FDBA45A839D8} =>.Kaspersky Lab
O42 - Logiciel: LightScribe 1.4.136.1 - (.http://www.lightscribe.com.) [HKLM] -- {A87B11AC-4344-4E5D-8B12-8F471A87DAD9} =>.http://www.lightscribe.com
O42 - Logiciel: Logiciel de base du périphérique HP Deskjet 2050 J510 series - (.Hewlett-Packard Co..) [HKLM] -- {819AEE33-A489-4CCE-8069-C363483D7138} =>.Hewlett-Packard Co.
O42 - Logiciel: Microsoft Antimalware Service FR-FR Language Pack - (.Microsoft Corporation.) [HKLM] -- {32E9C1A5-0FDA-4483-987D-DBABF9CC1DD8} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM] -- {95120000-00B9-0409-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Corporation - (.Microsoft Corporation.) [HKLM] -- {B3BC9DB1-0B0A-48B0-B86B-EA77CAA7F800} =>.Microsoft Corporation
O42 - Logiciel: Microsoft LifeCam - (.Microsoft Corporation.) [HKLM] -- {BD71B413-9FEE-49BB-A6D1-2C0BFB99BDFE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM] -- {BF455BD4-60BB-4E6E-867A-B4F57BC1164B} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Security Client FR-FR Language Pack - (.Microsoft Corporation.) [HKLM] -- {50779A29-834E-4E36-BBEB-B7CABC67A825} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM] -- Microsoft Security Client =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Microsoft XML Parser - (.Microsoft Corporation.) [HKLM] -- {D642E38E-0D24-486C-9A2D-E316DD696F4B} =>.Microsoft Corporation
O42 - Logiciel: Mozilla Firefox 49.0.1 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 49.0.1 (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} =>.Microsoft Corporation
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} =>.Microsoft Corporation
O42 - Logiciel: Nero CoverDesigner - (.Nero AG.) [HKLM] -- {62ac81f6-bdd3-4110-9d36-3e9eaab40999} =>.Nero AG
O42 - Logiciel: Nero PhotoSnap - (.Nero AG.) [HKLM] -- {9e82b934-9a25-445b-b8df-8012808074ac} =>.Nero AG
O42 - Logiciel: Nero Recode - (.Nero AG.) [HKLM] -- {359cfc0a-beb1-440d-95ba-cf63a86da34f} =>.Nero AG
O42 - Logiciel: Nero ShowTime - (.Nero AG.) [HKLM] -- {d9dcf92e-72eb-412d-ac71-3b01276e5f8b} =>.Nero AG
O42 - Logiciel: NeroBurningROM - (.Nero AG.) [HKLM] -- {d025a639-b9c9-417d-8531-208859000af8} =>.Nero AG
O42 - Logiciel: NeroExpress - (.Nero AG.) [HKLM] -- {595a3116-40bb-4e0f-a2e8-d7951da56270} =>.Nero AG
O42 - Logiciel: neroxml - (.Nero AG.) [HKLM] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B} =>.Nero AG
O42 - Logiciel: Norton Protection Center - (.Symantec Corporation.) [HKLM] -- {62120008-8E1E-4807-860D-A8B48F8552DB} =>.Symantec Corporation
O42 - Logiciel: Realtek High Definition Audio Driver - (...) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A} =>.Microsoft Corporation
O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- KB931906 =>.Microsoft Corporation
O42 - Logiciel: Segoe UI - (.Microsoft Corp.) [HKLM] -- {5DD4FCBD-A3C1-4155-9E17-4161C70AAABA} =>.Microsoft Corp
O42 - Logiciel: Skype™ 7.28 - (.Skype Technologies S.A..) [HKLM] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A.
O42 - Logiciel: Spelling Dictionaries Support For Adobe Reader 9 - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-5464-3428-900000000004} =>.Adobe Systems Incorporated
O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU] -- UnityWebPlayer =>.Unity Technologies ApS
O42 - Logiciel: VCRedistSetup - (.Nero AG.) [HKLM] -- {3921A67A-5AB1-4E48-9444-C71814CF3027} =>.Nero AG
O42 - Logiciel: Visual C++ 2008 x86 Runtime - (v9.0.30729) - (.Microsoft Corporation.) [HKLM] -- {F333A33D-125C-32A2-8DCE-5C5D14231E27} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ 2008 x86 Runtime - v9.0.30729.01 - (.Microsoft Corporation.) [HKLM] -- {F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01 =>.Microsoft Corporation
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player =>.VideoLAN
O42 - Logiciel: Windows Driver Package - SiS (SISAGP) System (01/24/2007 7.2.0.1230) - (.SiS.) [HKLM] -- 86789E72D7B273152966B28EC9A77D9ECF43A0F2 =>.Microsoft Windows Component Publisher®

---\\ HKCU & HKLM Software Keys (131) - 3378s
HKLM\SOFTWARE\7-Zip
HKLM\SOFTWARE\
HKLM\SOFTWARE\Acer =>.Acer
HKLM\SOFTWARE\Acer Inc. =>.Acer Inc.
HKLM\SOFTWARE\Adobe =>.Adobe
HKLM\SOFTWARE\Ahead
HKLM\SOFTWARE\America Online
HKLM\SOFTWARE\ArcSoft =>.ArcSoft
HKLM\SOFTWARE\Audible
HKLM\SOFTWARE\Auslogics =>.Auslogics
HKLM\SOFTWARE\BrowserChoice
HKLM\SOFTWARE\CyberLink =>.CyberLink
HKLM\SOFTWARE\GNU =>.GNU
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\Grisoft =>.GRISOFT
HKLM\SOFTWARE\HamsterSoft =>.HamsterSoft
HKLM\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKLM\SOFTWARE\HP =>.HP
HKLM\SOFTWARE\IM Providers
HKLM\SOFTWARE\InstallShield =>.InstallShield
HKLM\SOFTWARE\instinno
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\JreMetrics =>.JreMetrics
HKLM\SOFTWARE\KasperskyLab =>.KasperskyLab
HKLM\SOFTWARE\Licenses
HKLM\SOFTWARE\LightScribe =>.LightScribe
HKLM\SOFTWARE\LogiShrd
HKLM\SOFTWARE\Logitech =>.Logitech
HKLM\SOFTWARE\Macromedia =>.Macromedia
HKLM\SOFTWARE\MAGIX =>.Magix
HKLM\SOFTWARE\Malwarebytes' Anti-Malware =>.Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Moyea
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\MUSICMATCH
HKLM\SOFTWARE\muvee Technologies =>.muvee Technologies
HKLM\SOFTWARE\Nero
HKLM\SOFTWARE\NewTech Infosystems =>.NewTech Infosystems
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\OmniVision
HKLM\SOFTWARE\Patchou =>.Patchou
HKLM\SOFTWARE\Piriform =>.Piriform
HKLM\SOFTWARE\RayV =>.RayV
HKLM\SOFTWARE\RealNetworks =>.RealNetworks
HKLM\SOFTWARE\Realtek =>.Realtek
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\Safer Networking Limited
HKLM\SOFTWARE\SecureDigitalServices
HKLM\SOFTWARE\SiS
HKLM\SOFTWARE\Skype =>.Skype
HKLM\SOFTWARE\Soda PDF 5
HKLM\SOFTWARE\Symantec =>.Symantec
HKLM\SOFTWARE\SymDebug
HKLM\SOFTWARE\SymNRT
HKLM\SOFTWARE\VideoLAN =>.VideoLAN
HKLM\SOFTWARE\Volatile
HKLM\SOFTWARE\WholeSecurity
HKLM\SOFTWARE\Wise Solutions
HKLM\SOFTWARE\Wow6432Node
HKLM\SOFTWARE\Yahoo =>.Yahoo!
HKLM\SOFTWARE\ZSMC
HKCU\SOFTWARE\7-Zip
HKCU\SOFTWARE\Acer =>.Acer
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\America Online
HKCU\SOFTWARE\Andrei Jefremov
HKCU\SOFTWARE\Apowersoft =>.APowerSoft
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\ArcSoft =>.ArcSoft
HKCU\SOFTWARE\Convar
HKCU\SOFTWARE\CyberLink =>.CyberLink
HKCU\SOFTWARE\EasyBits =>.EasyBits
HKCU\SOFTWARE\eChanblard
HKCU\SOFTWARE\ej-technologies
HKCU\SOFTWARE\flv2avi
HKCU\SOFTWARE\Freeware
HKCU\SOFTWARE\Gabest =>.Gabest
HKCU\SOFTWARE\GNU =>.GNU
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\Grisoft =>.GRISOFT
HKCU\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKCU\SOFTWARE\HookNetwork
HKCU\SOFTWARE\HP =>.HP
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\InstallShield =>.InstallShield
HKCU\SOFTWARE\KasperskyLab =>.KasperskyLab
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\LogiShrd
HKCU\SOFTWARE\Logitech =>.Logitech
HKCU\SOFTWARE\Macromedia =>.Macromedia
HKCU\SOFTWARE\Malwarebytes' Anti-Malware =>.Malwarebytes' Anti-Malware
HKCU\SOFTWARE\MicroVision
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\Nero
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\NewTech Infosystems =>.NewTech Infosystems
HKCU\SOFTWARE\nuevos-programas.com =>PUP.Optional.Generic
HKCU\SOFTWARE\Piriform =>.Piriform
HKCU\SOFTWARE\QtProject =>.QtProject
HKCU\SOFTWARE\RayV =>.RayV
HKCU\SOFTWARE\RealNetworks =>.RealNetworks
HKCU\SOFTWARE\Realtek =>.Realtek
HKCU\SOFTWARE\Safer Networking Limited
HKCU\SOFTWARE\Samsung =>.Samsung
HKCU\SOFTWARE\SAP =>.SAP
HKCU\SOFTWARE\ShimDebugRemote
HKCU\SOFTWARE\SiS
HKCU\SOFTWARE\Skype =>.Skype
HKCU\SOFTWARE\Soda PDF 5
HKCU\SOFTWARE\SONIC =>.Sonic
HKCU\SOFTWARE\Streaming Video Recorder
HKCU\SOFTWARE\SupportSoft =>.SupportSoft
HKCU\SOFTWARE\Symantec =>.Symantec
HKCU\SOFTWARE\Terravirtual
HKCU\SOFTWARE\TorrentAid
HKCU\SOFTWARE\Trolltech =>.Trolltech
HKCU\SOFTWARE\TVANTS
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\Visan
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Yahoo =>.Yahoo!
HKCU\SOFTWARE\YouTube Downloader Suite
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft =>.JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\Monitored
HKCU\SOFTWARE\AppDataLow\Software\settings
HKCU\SOFTWARE\AppDataLow\Software\Unity

---\\ Contenu des dossiers Programmes (176) - 2497s
O43 - CFD: 05/03/2009 - [] D -- C:\Program Files\7-Zip =>.Igor Pavlov
O43 - CFD: 14/10/2016 - [] D -- C:\Program Files\Adobe =>.Microsoft Corporation®
O43 - CFD: 01/06/2008 - [] D -- C:\Program Files\Adobe Media Player =>.Adobe Inc.
O43 - CFD: 13/11/2015 - [] D -- C:\Program Files\Apowersoft =>.Apowersoft
O43 - CFD: 26/02/2013 - [] D -- C:\Program Files\Athan
O43 - CFD: 14/10/2016 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 15/11/2012 - [] D -- C:\Program Files\Convar =>.Convar
O43 - CFD: 18/01/2008 - [] D -- C:\Program Files\Cyberlink =>.Cyberlink
O43 - CFD: 08/08/2016 - [] D -- C:\Program Files\Defraggler =>.Piriform Ltd®
O43 - CFD: 17/04/2007 - [] D -- C:\Program Files\DIFX =>.Microsoft Windows Component Publisher®
O43 - CFD: 28/10/2014 - [] D -- C:\Program Files\DivX =>.DivX
O43 - CFD: 14/02/2012 - [] D -- C:\Program Files\DMV
O43 - CFD: 21/08/2009 - [] D -- C:\Program Files\ffdshow =>.Open Source
O43 - CFD: 13/08/2007 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation
O43 - CFD: 27/10/2014 - [] D -- C:\Program Files\GPLGS =>.Ghostscript Team
O43 - CFD: 31/03/2014 - [] D -- C:\Program Files\GUM125D.tmp =>.Google Inc®
O43 - CFD: 03/01/2010 - [] D -- C:\Program Files\Hercules =>.Hercules
O43 - CFD: 03/01/2010 - [] D -- C:\Program Files\Hercules(7)
O43 - CFD: 07/12/2011 - [] D -- C:\Program Files\HP =>.Hewlett-Packard Company®
O43 - CFD: 03/11/2013 - [] D -- C:\Program Files\Inkscape =>.inkscape.org
O43 - CFD: 29/03/2015 - [] HD -- C:\Program Files\InstallShield Installation Information =>.CyberLink®
O43 - CFD: 13/01/2016 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 14/10/2016 - [] D -- C:\Program Files\Kaspersky Lab =>.Kaspersky Lab®
O43 - CFD: 05/04/2010 - [] D -- C:\Program Files\Lavasoft =>.Lavasoft
O43 - CFD: 05/03/2010 - [] D -- C:\Program Files\Messenger Plus! Live =>.Patchou®
O43 - CFD: 22/06/2012 - [] D -- C:\Program Files\Microsoft =>.Microsoft Corporation®
O43 - CFD: 26/08/2007 - [] D -- C:\Program Files\Microsoft CAPICOM 2.1.0.2
O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Microsoft Games =>.Microsoft Corporation
O43 - CFD: 23/06/2012 - [] D -- C:\Program Files\Microsoft LifeCam =>.Microsoft Corporation®
O43 - CFD: 24/02/2016 - [] D -- C:\Program Files\Microsoft Security Client =>.Microsoft Corporation®
O43 - CFD: 24/06/2016 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation®
O43 - CFD: 23/06/2010 - [] D -- C:\Program Files\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 13/08/2010 - [] D -- C:\Program Files\Movie Maker =>.Microsoft Corporation
O43 - CFD: 25/09/2016 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla Corporation®
O43 - CFD: 25/09/2016 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla Corporation®
O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 05/06/2008 - [] D -- C:\Program Files\MSECache =>.Microsoft Corporation
O43 - CFD: 16/02/2009 - [] D -- C:\Program Files\Nero =>.Nero AG®
O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 03/01/2010 - [] D -- C:\Program Files\SAGEM =>.Sagem
O43 - CFD: 04/11/2008 - [] D -- C:\Program Files\sina
O43 - CFD: 23/06/2012 - [] D -- C:\Program Files\SiS VGA Utilities
O43 - CFD: 14/10/2016 - [] RD -- C:\Program Files\Skype =>.Skype Software Sarl®
O43 - CFD: 24/01/2013 - [] D -- C:\Program Files\Skype(2)
O43 - CFD: 24/01/2013 - [] RD -- C:\Program Files\Skype(3)
O43 - CFD: 02/11/2006 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 02/09/2007 - [] D -- C:\Program Files\VideoLAN =>.VideoLAN
O43 - CFD: 04/01/2008 - [] D -- C:\Program Files\Web Media Player
O43 - CFD: 27/05/2009 - [] D -- C:\Program Files\Windows Calendar =>.Microsoft Corporation
O43 - CFD: 10/02/2016 - [] D -- C:\Program Files\Windows Collaboration =>.Microsoft Corporation
O43 - CFD: 27/05/2009 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Windows®
O43 - CFD: 22/06/2012 - [] D -- C:\Program Files\Windows Live =>.Microsoft Corporation®
O43 - CFD: 10/03/2016 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 10/06/2015 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 13/08/2007 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 27/05/2009 - [] D -- C:\Program Files\Windows Photo Gallery =>.Microsoft Corporation
O43 - CFD: 22/06/2012 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 06/03/2011 - [] D -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 23/12/2015 - [0] D -- C:\Program Files\WinRAR =>.WinRAR
O43 - CFD: 05/03/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip =>.Igor Pavlov
O43 - CFD: 26/07/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 26/08/2007 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Empowering Technology
O43 - CFD: 03/02/2006 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AcerSystem =>.Acer Inc.
O43 - CFD: 29/09/2010 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 26/02/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Athan
O43 - CFD: 08/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler =>.Piriform
O43 - CFD: 25/01/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Extras and Upgrades
O43 - CFD: 21/08/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ffdshow =>.Open Source
O43 - CFD: 25/01/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 12/12/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP =>.Hewlett-Packard
O43 - CFD: 14/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Software Updater Beta
O43 - CFD: 18/11/2007 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 23/06/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft LifeCam
O43 - CFD: 23/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 14/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype
O43 - CFD: 14/10/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 22/03/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLAN
O43 - CFD: 23/06/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live =>.Microsoft Corporation
O43 - CFD: 27/02/2013 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 05/03/2010 - [0] D -- C:\ProgramData\Bluetooth
O43 - CFD: 13/08/2007 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation
O43 - CFD: 03/11/2013 - [] HD -- C:\ProgramData\Common Files =>.Microsoft Corporation
O43 - CFD: 26/08/2007 - [] D -- C:\ProgramData\CyberLink =>.Cyberlink
O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation
O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 13/08/2007 - [0] SHD -- C:\ProgramData\Favoris =>.Microsoft Corporation
O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Favorites =>.Microsoft Corporation
O43 - CFD: 07/02/2009 - [] D -- C:\ProgramData\Google =>.Google
O43 - CFD: 07/12/2011 - [] D -- C:\ProgramData\HP =>.Hewlett-Packard
O43 - CFD: 13/08/2007 - [] D -- C:\ProgramData\InstallShield =>.InstallShield
O43 - CFD: 14/10/2016 - [] D -- C:\ProgramData\Kaspersky Lab =>.Kaspersky Lab
O43 - CFD: 05/04/2010 - [] D -- C:\ProgramData\Lavasoft =>.Lavasoft
O43 - CFD: 11/10/2010 - [] D -- C:\ProgramData\LogiShrd =>.Logitech
O43 - CFD: 11/10/2010 - [] D -- C:\ProgramData\Logitech =>.Logitech
O43 - CFD: 13/10/2016 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes
O43 - CFD: 13/08/2007 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation
O43 - CFD: 12/08/2016 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft
O43 - CFD: 13/08/2007 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation
O43 - CFD: 16/02/2009 - [] D -- C:\ProgramData\Nero =>.Ahead Software
O43 - CFD: 24/08/2007 - [0] D -- C:\ProgramData\NtiDvdCopy
O43 - CFD: 18/10/2011 - [] D -- C:\ProgramData\Real
O43 - CFD: 14/10/2016 - [] D -- C:\ProgramData\Skype =>.Skype
O43 - CFD: 04/07/2011 - [] D -- C:\ProgramData\Skype Extras =>.Skype
O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation
O43 - CFD: 15/02/2010 - [] D -- C:\ProgramData\Sun =>.Oracle
O43 - CFD: 05/04/2010 - [0] AD -- C:\ProgramData\TEMP =>.Microsoft Corporation
O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation
O43 - CFD: 21/08/2009 - [] D -- C:\ProgramData\VistaCodecs
O43 - CFD: 27/12/2009 - [] D -- C:\ProgramData\WindowsSearch =>.Microsoft Corporation
O43 - CFD: 31/05/2009 - [0] D -- C:\ProgramData\WinZip =>.WinZip
O43 - CFD: 15/09/2008 - [] D -- C:\ProgramData\WLInstaller =>.Microsoft Corporation
O43 - CFD: 14/10/2016 - [] D -- C:\Program Files\Common Files\Adobe =>.Adobe
O43 - CFD: 03/01/2010 - [] D -- C:\Program Files\Common Files\ArcSoft =>.ArcSoft
O43 - CFD: 28/07/2016 - [] D -- C:\Program Files\Common Files\AV =>.Avast
O43 - CFD: 28/03/2008 - [0] D -- C:\Program Files\Common Files\ErreurChasseur
O43 - CFD: 13/08/2007 - [] D -- C:\Program Files\Common Files\InstallShield =>.InstallShield
O43 - CFD: 08/10/2016 - [] D -- C:\Program Files\Common Files\Java =>.Oracle
O43 - CFD: 26/04/2013 - [] D -- C:\Program Files\Common Files\Java(0)
O43 - CFD: 03/02/2006 - [] D -- C:\Program Files\Common Files\LightScribe =>.LightScribe
O43 - CFD: 11/10/2010 - [] D -- C:\Program Files\Common Files\logishrd =>.Logitech
O43 - CFD: 11/10/2010 - [0] D -- C:\Program Files\Common Files\LWS =>.Logitech
O43 - CFD: 22/06/2012 - [] D -- C:\Program Files\Common Files\microsoft shared =>.Microsoft Corporation
O43 - CFD: 16/02/2009 - [] D -- C:\Program Files\Common Files\Nero =>.Ahead Software
O43 - CFD: 03/12/2008 - [] D -- C:\Program Files\Common Files\Real
O43 - CFD: 13/08/2010 - [] D -- C:\Program Files\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 14/10/2016 - [] D -- C:\Program Files\Common Files\Skype =>.Skype
O43 - CFD: 03/11/2013 - [] D -- C:\Program Files\Common Files\Soda PDF 5
O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Common Files\SpeechEngines =>.Microsoft Corporation
O43 - CFD: 24/09/2016 - [] D -- C:\Program Files\Common Files\Symantec Shared =>.Symantec
O43 - CFD: 10/03/2016 - [] D -- C:\Program Files\Common Files\System =>.Microsoft Corporation
O43 - CFD: 31/03/2009 - [] D -- C:\Program Files\Common Files\Windows Live =>.Microsoft Corporation
O43 - CFD: 16/09/2008 - [] SHDC -- C:\Program Files\Common Files\WindowsLiveInstaller =>.Microsoft Corporation
O43 - CFD: 01/06/2008 - [] D -- C:\Users\karim\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 13/11/2015 - [] D -- C:\Users\karim\AppData\Roaming\Apowersoft =>.Apowersoft
O43 - CFD: 11/03/2016 - [] D -- C:\Users\karim\AppData\Roaming\CyberLink =>.Cyberlink
O43 - CFD: 08/10/2016 - [] D -- C:\Users\karim\AppData\Roaming\dvdcss =>.VideoLAN
O43 - CFD: 25/12/2014 - [] D -- C:\Users\karim\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 04/05/2015 - [] SD -- C:\Users\karim\AppData\Roaming\Microsoft =>.Microsoft
O43 - CFD: 01/01/2016 - [] D -- C:\Users\karim\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 17/09/2016 - [] D -- C:\Users\karim\AppData\Roaming\Skype =>.Skype
O43 - CFD: 07/07/2011 - [] D -- C:\Users\karim\AppData\Roaming\skypePM =>.Skype Technologies
O43 - CFD: 05/10/2016 - [] D -- C:\Users\karim\AppData\Roaming\Sun =>.Oracle
O43 - CFD: 10/10/2016 - [] D -- C:\Users\karim\AppData\Roaming\vlc =>.VideoLAN
O43 - CFD: 04/06/2015 - [0] D -- C:\Users\karim\AppData\Roaming\Windows Live Writer =>.Microsoft Corporation
O43 - CFD: 20/12/2015 - [] D -- C:\Users\karim\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 27/07/2016 - [0] D -- C:\Users\karim\AppData\Roaming\Yahoo! =>.Yahoo!
O43 - CFD: 14/10/2016 - [] D -- C:\Users\karim\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 14/10/2016 - [] D -- C:\Users\karim\AppData\Local\Adobe =>.Adobe
O43 - CFD: 13/08/2007 - [0] SHD -- C:\Users\karim\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 04/12/2015 - [] D -- C:\Users\karim\AppData\Local\Apps =>.Microsoft Corporation
O43 - CFD: 04/12/2015 - [0] D -- C:\Users\karim\AppData\Local\Deployment =>.Microsoft Corporation
O43 - CFD: 23/06/2012 - [] D -- C:\Users\karim\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation
O43 - CFD: 02/01/2015 - [] D -- C:\Users\karim\AppData\Local\eMule =>.eMule
O43 - CFD: 13/08/2007 - [0] SHD -- C:\Users\karim\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 29/12/2014 - [] D -- C:\Users\karim\AppData\Local\HP =>.Hewlett-Packard
O43 - CFD: 05/09/2015 - [] D -- C:\Users\karim\AppData\Local\Macromedia =>.Macromedia
O43 - CFD: 26/04/2016 - [] D -- C:\Users\karim\AppData\Local\Microsoft =>.Microsoft
O43 - CFD: 02/02/2015 - [] D -- C:\Users\karim\AppData\Local\Microsoft Games =>.Microsoft Corporation
O43 - CFD: 01/01/2016 - [] D -- C:\Users\karim\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 08/10/2016 - [] D -- C:\Users\karim\AppData\Local\PowerCinema =>.Cyberlink
O43 - CFD: 14/12/2015 - [0] D -- C:\Users\karim\AppData\Local\Skype =>.Skype
O43 - CFD: 14/10/2016 - [] D -- C:\Users\karim\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 13/08/2007 - [0] SHD -- C:\Users\karim\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 25/12/2014 - [] D -- C:\Users\karim\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 15/06/2015 - [] D -- C:\Users\karim\AppData\Local\Windows Live =>.Microsoft Corporation
O43 - CFD: 15/06/2015 - [] D -- C:\Users\karim\AppData\Local\Windows Live Writer =>.Microsoft Corporation
O43 - CFD: 12/12/2013 - [] RD -- C:\Users\karim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 12/12/2013 - [] RD -- C:\Users\karim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 12/12/2013 - [] RD -- C:\Users\karim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 12/12/2013 - [] RD -- C:\Users\karim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 25/04/2011 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Google =>.Google
O43 - CFD: 22/06/2012 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft
O43 - CFD: 24/03/2008 - [0] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\AVG7
O43 - CFD: 13/08/2007 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 22/06/2012 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft

---\\ ShellIconOverlayIdentifiers (SIOI) (1) - 1s
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - Extension d'environnement du périphérique d.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation

---\\ Enumération des clés StartupReg (9) - 48s
O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated
O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] . (...) -- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] . (...) -- C:\Program Files\CCleaner\CCleaner.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\HP Software Update [Key] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\HP\HP Software Update\HPWuSchd2.exe =>.Hewlett-Packard
O53 - SMSR:HKLM\...\startupreg\LifeCam [Key] . (.Microsoft Corporation - LifeExp.exe.) -- C:\Program Files\Microsoft LifeCam\LifeExp.exe =>.Microsoft Corporation
O53 - SMSR:HKLM\...\startupreg\MSC [Key] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- C:\Program Files\Microsoft Security Client\msseces.exe =>.Microsoft Corporation
O53 - SMSR:HKLM\...\startupreg\SpybotPostWindows10UpgradeReInstall [Key] . (.Safer-Networking Ltd. - Makes sure Spybot 2 is there on Windows 10..) -- C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe =>.Safer-Networking Ltd.
O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Oracle Corporation - Java Update Registration.) -- C:\Program Files\Common Files\Java\Java Update\jaureg.exe =>.Oracle Corporation
O53 - SMSR:HKLM\...\startupreg\Windows Defender [Key] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe =>.Microsoft Corporation

---\\ Liste des pilotes du système (88) - 584s
O58 - SDL:2005/05/12 23:56:00 A . (.Analog Devices Inc. - ADI RNDIS Compatible Adapter.) -- C:\Windows\System32\drivers\adipfusb.sys [28182]
O58 - SDL:2006/11/02 11:51:38 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [420968] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:51:32 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297576] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:35 A . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) -- C:\Windows\System32\drivers\adpu160m.sys [98408] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:51:00 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [147048] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:49:20 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14952] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:09 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [67688] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:10 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [67688] =>.Microsoft Windows®
O58 - SDL:2003/12/22 04:29:34 A . (.Adaptec - ASPI for WIN32 Kernel Driver.) -- C:\Windows\System32\drivers\ASPI32.SYS [25244] =>.Adaptec
O58 - SDL:2006/11/02 10:24:45 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] =>.Brother Industries, Ltd.
O58 - SDL:2006/11/02 10:24:46 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] =>.Brother Industries, Ltd.
O58 - SDL:2006/11/02 10:25:24 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [71808] =>.Brother Industries Ltd.
O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] =>.Brother Industries Ltd.
O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] =>.Brother Industries Ltd.
O58 - SDL:2006/11/02 10:24:47 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] =>.Brother Industries Ltd.
O58 - SDL:2010/02/05 05:16:10 A . (.CSR, plc - Bluetooth Remote Control Driver.) -- C:\Windows\System32\drivers\BthAvrcp.sys [28048] =>.CSR India Pvt Ltd®
O58 - SDL:2006/11/02 11:49:28 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [16488] =>.Microsoft Windows®
O58 - SDL:2014/04/30 20:47:46 A . (.Devguru Co., Ltd - Device Error Recovery SDK(x86).) -- C:\Windows\System32\drivers\dgderdrv.sys [20032] =>.SAMSUNG ELECTRONICS CO.,LTD.®
O58 - SDL:2006/11/02 11:50:11 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [71272] =>.Microsoft Windows®
O58 - SDL:2006/11/02 09:30:54 A . (.Intel Corporation - Intel(R) PRO/1000 Adapter NDIS 6 deserializ.) -- C:\Windows\System32\drivers\E1G60I32.sys [117760] =>.Intel Corporation
O58 - SDL:2006/11/02 11:51:34 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [316520] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:10 A . (.Hewlett-Packard Company - Smart Array Storport Driver.) -- C:\Windows\System32\drivers\HpCISSs.sys [37480] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:51:25 A . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) -- C:\Windows\System32\drivers\iaStorV.sys [232040] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:17 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41576] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:07 A . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\System32\drivers\iteatapi.sys [35944] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:09 A . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\System32\drivers\iteraid.sys [35944] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:04 A . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [65640] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:05 A . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [65640] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:10 A . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [65640] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:49:53 A . (.LSI Logic Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [28776] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:49:59 A . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\Mraid35x.sys [33384] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:19 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [45160] =>.Microsoft Windows®
O58 - SDL:2006/02/03 16:23:06 A . (.NewTech Infosystems, Inc. - NTI CD-ROM Filter Driver.) -- C:\Windows\System32\drivers\NTIDrvr.sys [6144] =>.NewTech InfoSystems, Inc.
O58 - SDL:2006/11/02 09:36:50 A . (.N-trig Innovative Technologies - Pilote intégré de digitalisateur de tablett.) -- C:\Windows\System32\drivers\ntrigdigi.sys [20608] =>.N-trig Innovative Technologies
O58 - SDL:2006/11/02 11:50:24 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [88680] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:13 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [40040] =>.Microsoft Windows®
O58 - SDL:2004/11/09 00:37:32 A . (.OmniVision Technologies Inc. - Dual Mode USB Camera 530 Universal Serial.) -- C:\Windows\System32\drivers\ov530cmd.sys [25177]
O58 - SDL:2005/03/15 17:04:00 A . (.OmniVision Technologies, Inc. - Dual Mode USB Camera 530 Stream Class Mini.) -- C:\Windows\System32\drivers\ov530vid.sys [161792] =>.OmniVision Technologies, Inc.
O58 - SDL:2007/02/07 00:04:48 A . (.HiTRUST - PSD Filter Driver.) -- C:\Windows\System32\drivers\psdfilter.sys [20264] =>.HiTRUST Inc.®
O58 - SDL:2007/02/07 00:04:54 A . (.HiTRUST - PSD Named Pipe Driver.) -- C:\Windows\System32\drivers\PSDNServ.sys [16680] =>.HiTRUST Inc.®
O58 - SDL:2007/02/07 00:04:50 A . (.HiTRUST - PSD Virtual Disk Driver.) -- C:\Windows\System32\drivers\psdvdisk.sys [60712] =>.HiTRUST Inc.®
O58 - SDL:2006/11/02 11:51:45 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [900712] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:35 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106088] =>.Microsoft Windows®
O58 - SDL:2006/12/01 07:38:00 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [1655464] =>.Realtek Semiconductor Corp®
O58 - SDL:2010/04/05 18:22:57 A . (.Sunbelt Software - Anti-Rootkit Engine.) -- C:\Windows\System32\drivers\SBREDrv.sys [95024] =>.SUNBELT SOFTWARE DISTRIBUTION®
O58 - SDL:2006/11/02 08:37:21 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2007/01/24 03:08:06 A . (.Silicon Integrated Systems Corporation - SiS AGPv3.5 Filter.) -- C:\Windows\System32\drivers\SISAGPX.SYS [56184] =>.Silicon Integrated Systems Corporation
O58 - SDL:2007/01/22 10:09:08 A . (.Silicon Integrated Systems Corp. - NDIS 6.0 Miniport Driver for SiS191/SiS190.) -- C:\Windows\System32\drivers\SiSGB6.sys [46592] =>.Silicon Integrated Systems Corp.
O58 - SDL:2009/11/20 15:49:30 A . (.Silicon Integrated Systems Corporation - SiS VGA Kernal Mode Vista Driver.) -- C:\Windows\System32\drivers\SISGRKMD.sys [465408] =>.Silicon Integrated Systems Corporation
O58 - SDL:2006/11/02 11:50:10 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [38504] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:16 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [71784] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:05 A . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) -- C:\Windows\System32\drivers\symc8xx.sys [35944] =>.Microsoft Windows®
O58 - SDL:2007/08/13 14:50:34 A . (.Symantec Corporation - DNS Filter Driver.) -- C:\Windows\System32\drivers\symdns.sys [13616] =>.Symantec Corporation®
O58 - SDL:2008/03/24 22:35:20 A . (.Symantec Corporation - Symantec Event Library.) -- C:\Windows\System32\drivers\SYMEVENT.SYS [123952] =>.Symantec Corporation®
O58 - SDL:2007/08/13 14:50:34 A . (.Symantec Corporation - Firewall Filter Driver.) -- C:\Windows\System32\drivers\symfw.sys [96432] =>.Symantec Corporation®
O58 - SDL:2007/08/13 14:50:34 A . (.Symantec Corporation - IDS Filter Driver.) -- C:\Windows\System32\drivers\symids.sys [38576] =>.Symantec Corporation®
O58 - SDL:2007/08/13 14:50:34 A . (.Symantec Corporation - NDIS Filter Driver.) -- C:\Windows\System32\drivers\symndisv.sys [41008] =>.Symantec Corporation®
O58 - SDL:2007/08/13 14:50:34 A . (.Symantec Corporation - Redirector Filter Driver.) -- C:\Windows\System32\drivers\symredrv.sys [22320] =>.Symantec Corporation®
O58 - SDL:2007/08/13 14:50:34 A . (.Symantec Corporation - Network Dispatch Driver.) -- C:\Windows\System32\drivers\symtdi.sys [188464] =>.Symantec Corporation®
O58 - SDL:2006/11/02 11:49:56 A . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_hi.sys [31848] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:03 A . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_u3.sys [34920] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:51:25 A . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\System32\drivers\uliahci.sys [235112] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:35 A . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win200.) -- C:\Windows\System32\drivers\ulsata.sys [98408] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:45 A . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\System32\drivers\ulsata2.sys [115816] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:49:30 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17512] =>.Microsoft Windows®
O58 - SDL:2006/11/02 11:50:41 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR X86-32.) -- C:\Windows\System32\drivers\vsmraid.sys [112232] =>.Microsoft Windows®
O58 - SDL:2009/10/09 12:44:00 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ZTEusbmdm6k.sys [105088] =>.ZTE Incorporated
O58 - SDL:2009/08/21 17:43:00 A . (.ZTE Corporation - USB NDIS Miniport Driver.) -- C:\Windows\System32\drivers\ZTEusbnet.sys [114688] =>.ZTE Corporation
O58 - SDL:2009/10/09 12:44:00 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ZTEusbnmea.sys [105088] =>.ZTE Incorporated
O58 - SDL:2009/10/09 12:44:00 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ZTEusbnmeaext.sys [105088] =>.ZTE Incorporated
O58 - SDL:2009/10/09 12:44:00 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ZTEusbnmeaext2.sys [105088] =>.ZTE Incorporated
O58 - SDL:2009/10/09 12:44:00 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ZTEusbser6k.sys [105088] =>.ZTE Incorporated
O58 - SDL:2009/10/09 12:44:00 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ZTEusbvoice.sys [105088] =>.ZTE Incorporated
O58 - SDL:2006/11/02 09:09:42 A . (...) -- C:\Windows\System32\ANSI.SYS [9029]
O58 - SDL:2006/11/02 09:09:45 A . (...) -- C:\Windows\System32\country.sys [27097]
O58 - SDL:2006/11/02 09:09:41 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768]
O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEY01.SYS [42809]
O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537]
O58 - SDL:2006/11/02 09:09:29 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866]
O58 - SDL:2006/11/02 09:09:35 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146]
O58 - SDL:2006/11/02 09:09:38 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370]
O58 - SDL:2006/11/02 09:09:40 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274]
O58 - SDL:2006/11/02 09:09:31 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146]
O58 - SDL:2006/11/02 09:09:20 A . (...) -- C:\Windows\System32\NTIO.SYS [33952]
O58 - SDL:2006/11/02 09:09:23 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672]
O58 - SDL:2006/11/02 09:09:24 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776]
O58 - SDL:2006/11/02 09:09:26 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536]
O58 - SDL:2006/11/02 09:09:22 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (1) - 439s
O61 - LFC: 2016/10/13 21:33:19 A . (..) -- C:\Users\karim\AppData\Roaming\Adobe\Acrobat\9.0\UserCache.bin [135531]

---\\ Associations Shell Spawning (10) - 21s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®

---\\ Menu de démarrage Internet (8) - 13s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ Recherche d'infection sur les navigateurs (9) - 469s
O69 - SBI: SearchScopes [HKCU] {2136E426-40B9-4ED1-8969-F6A81B027B5E} - (Yahoo! Guide) - http://fr.search.yahoo.com/ =>.Yahoo Search
O69 - SBI: SearchScopes [HKCU] {2f23ab71-4ac6-41f2-a955-ea576e553146} [DefaultScope] - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKCU] {BB420265-1FFE-48F4-A507-A032FA0675EE} - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKLM] {1A683DAB-0327-4240-BC3B-C0C8A70F8ECF} - (Yahoo! Guide) - http://fr.search.yahoo.com/ =>.Yahoo Search
O69 - SBI: SearchScopes [HKLM] {2C8E925C-3466-4951-BF67-3CC592D42336} - (Yahoo! Search) - http://fr.search.yahoo.com/ =>.Yahoo Search
O69 - SBI: SearchScopes [HKLM] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKLM] {7E1F3FD8-5A41-48A6-AFAB-D2025E7FD136} - (Yahoo! Images) - http://fr.search.yahoo.com/ =>.Yahoo Search
O69 - SBI: SearchScopes [HKLM] {93B09511-C4F0-46F0-A71D-7456F765248E} - (Yahoo! Vidéos) - http://fr.search.yahoo.com/ =>.Yahoo Search
O69 - SBI: SearchScopes [HKLM] {F0FBC85B-6E8D-4312-A6B2-E71B5E928E7E} - (Yahoo! Actualités) - http://fr.search.yahoo.com/ =>.Yahoo Search

---\\ Enumère les services démarrés par Svchost (31) - 23s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [24576] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [62976] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [125952] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [582144] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [438784] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [316928] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d'accès distant.) -- C:\Windows\System32\rasmans.dll [262144] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [68608] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [47104] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\Windows\System32\ipnathlp.dll [288256] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242688] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes Termi.) -- C:\Windows\System32\termsrv.dll [449536] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1933848] =>.Microsoft Windows Component Publisher®
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [758784] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [200704] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [19968] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [33280] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [111616] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [45056] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [153600] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [57344] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [162304] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [602112] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service de configuration des services Termi.) -- C:\Windows\System32\SessEnv.dll [84992] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [81920] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [68096] =>.Microsoft Corporation

---\\ Liste des exceptions du parefeu Windows (6) - 150s
O87 - FAEL: "TCP Query User{AF03F784-DF83-4BF9-806A-E54E05CD1DAC}C:\users\karim\appdata\local\emule\emule.exe" [In-None-P6-TRUE] .(.http://www.emule-project.net - eMule.) -- C:\users\karim\appdata\local\emule\emule.exe
O87 - FAEL: "UDP Query User{54279E3F-4B50-4DDB-A116-9B3A31874A94}C:\users\karim\appdata\local\emule\emule.exe" [In-None-P17-TRUE] .(.http://www.emule-project.net - eMule.) -- C:\users\karim\appdata\local\emule\emule.exe
O87 - FAEL: "{37A5805C-FF99-45B2-87D1-2C7A53CF0B68}" [In-None-P6-FALSE] .(.北京新浪网络技术服务有限公司 - Sina Acceleration Platform.) -- C:\Program Files\sina\SAP\SAPlatform.exe
O87 - FAEL: "{B88A307B-AE94-4508-B137-9E7709024106}" [In-None-P17-FALSE] .(.北京新浪网络技术服务有限公司 - Sina Acceleration Platform.) -- C:\Program Files\sina\SAP\SAPlatform.exe
O87 - FAEL: "TCP Query User{8EA3A698-4499-4513-A319-46A213133706}C:\users\karim\appdata\local\emule\emule.exe" [In-None-P6-TRUE] .(.http://www.emule-project.net - eMule.) -- C:\users\karim\appdata\local\emule\emule.exe
O87 - FAEL: "UDP Query User{FAB555E3-E637-4978-9CA4-B67C49BF32CA}C:\users\karim\appdata\local\emule\emule.exe" [In-None-P17-TRUE] .(.http://www.emule-project.net - eMule.) -- C:\users\karim\appdata\local\emule\emule.exe

---\\ Scan Additionnel (1) - 2s
HKCU\SOFTWARE\nuevos-programas.com =>PUP.Optional.Generic

---\\ Récapitulatif des éléments trouvés sur votre station (1) - 0s
https://www.anti-malware.top/2016/05/01/definition-dun-logiciel-pup-lpi/ =>PUP.Optional.Generic

~ End of the scan, 30162 items in 03h03mn44s (869)

Publicité


Signaler le contenu de ce document

Publicité