~ ZHPDiag v2015.6.29.74 by Nicolas Coolman (2015\06\29) ~ Run by RIMAV (Administrator) (2015/06/29 19:13:20) ~ Site : http://www.nicolascoolman.fr ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Type : Scanner ~ Report : H:\Documents and Settings\RIMAV\Bureau\ZHPDiag.txt ~ UAC : Deactivate ~ Boot Mode : Normal (Normal boot) ~ Windows XP, 32-bit Service Pack 3 (Build 2600) ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 15 Model 4 Stepping 7, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) ~ Total physical RAM (KB): 1038176 ~ System Restore: Activé (Enable) ~ System drive H: has 198 GB free of 476 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: RIMA ~ User Name: RIMAV ~ Logged in as Administrator ---\\ Enumération des unités disques (1) - 7s ~ Drive H: has 198 GB free of 476 GB (System) ---\\ Etat du Centre de Sécurité Windows (10) - 0s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (22) - 1s [MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - (.Microsoft Corporation - Explorateur Windows.) () -- H:\WINDOWS\Explorer.exe [1037824] [MD5.93AD0B78C7357A05F50E594EC7C22300] - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) () -- H:\WINDOWS\System32\rundll32.exe [33792] [MD5.E1948B1F45A176FB4A0251446A5AE86D] - (.Microsoft Corporation - Internet Extensions for Win32.) () -- H:\WINDOWS\System32\wininet.dll [920064] [MD5.DD73D6B9F6B4CB630CF35B438B540174] - (.Microsoft Corporation - Application d'ouverture de session Windows.) () -- H:\WINDOWS\System32\Winlogon.exe [512000] [MD5.1E44BC1E83D8FD2305F8D452DB109CF9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- H:\WINDOWS\System32\drivers\AFD.sys [138496] [MD5.9F3A2F5AA6875C72BF062C712CFA2674] - (.Microsoft Corporation - IDE/ATAPI Port Driver.) () -- H:\WINDOWS\System32\drivers\atapi.sys [96512] [MD5.C885B02847F5D2FD45A24E219ED93B32] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- H:\WINDOWS\System32\drivers\Cdfs.sys [63744] [MD5.1F4260CC5B42272D71F79E570A27A4FE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- H:\WINDOWS\System32\drivers\Cdrom.sys [62976] [MD5.31F923EB2170FC172C81ABDA0045D18C] - (.Microsoft Corporation - Pilote de cryptographie FIPS.) () -- H:\WINDOWS\System32\drivers\Fips.sys [44672] [MD5.573C7D0A32852B48F3058CFD8026F511] - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) () -- H:\WINDOWS\System32\drivers\HDAudBus.sys [144384] [MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - (.Microsoft Corporation - Pilote de port i8042.) () -- H:\WINDOWS\System32\drivers\i8042prt.sys [54144] [MD5.083A052659F5310DD8B6A6CB05EDCF8E] - (.Microsoft Corporation - IMAPI Kernel Driver.) () -- H:\WINDOWS\System32\drivers\Imapi.sys [42112] [MD5.CC748EA12C6EFFDE940EE98098BF96BB] - (.Microsoft Corporation - IP Network Address Translator.) () -- H:\WINDOWS\System32\drivers\IpNat.sys [152832] [MD5.23C74D75E36E7158768DD63D92789A91] - (.Microsoft Corporation - IPSec Driver.) () -- H:\WINDOWS\System32\drivers\IPSec.sys [75264] [MD5.7D304A5EB4344EBEEAB53A2FE3FFB9F0] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- H:\WINDOWS\System32\drivers\MRxSmb.sys [456320] [MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - (.Microsoft Corporation - MBT Transport driver.) () -- H:\WINDOWS\System32\drivers\netBT.sys [162816] [MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - (.Microsoft Corporation - NT File System Driver.) () -- H:\WINDOWS\System32\drivers\ntfs.sys [574976] [MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - (.Microsoft Corporation - Pilote de port parallèle.) () -- H:\WINDOWS\System32\drivers\Parport.sys [80384] [MD5.11B4A627BC9614B885C4969BFA5FF8A6] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- H:\WINDOWS\System32\drivers\Rasl2tp.sys [51328] [MD5.15CABD0F7C00C47C70124907916AF3F1] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- H:\WINDOWS\System32\drivers\rdpdr.sys [196224] [MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) () -- H:\WINDOWS\System32\drivers\redbook.sys [58752] [MD5.46DE1126684369BACE4849E4FC8C43CA] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- H:\WINDOWS\System32\drivers\volsnap.sys [53376] ---\\ Processus lancés (25) - 3s [MD5.48E430297DA757F5CC2793CCFACAD5E7] - (.Microsoft Corporation - Gestionnaire de session Windows NT.) -- H:\WINDOWS\system32\smss.exe [50688] [PID.620] [MD5.C3FB1D70CB88722267949694BA51759E] - (.Microsoft Corporation - Applications Services et Contrôleur.) -- H:\WINDOWS\system32\services.exe [111104] [PID.752] [MD5.1892E1DB0B6431720B98B52AE9388C28] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- H:\Program Files\Avira\AntiVir Desktop\sched.exe [450808] [PID.1544] [MD5.1892E1DB0B6431720B98B52AE9388C28] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- H:\Program Files\Avira\AntiVir Desktop\avguard.exe [450808] [PID.1848] [MD5.8301243BDE5B6CD316D79C0191D50D9A] - (.Microsoft Corporation - Media Center Receiver Service.) -- H:\WINDOWS\ehome\ehrecvr.exe [237568] [PID.1912] [MD5.980EEEA91776357518892C5544768E2B] - (.Microsoft Corporation - Service de planification Media Center.) -- H:\WINDOWS\ehome\ehSched.exe [103424] [PID.1980] [MD5.E87885A59FDC241B6575943A75E495D9] - (.Oracle Corporation - Java Quick Starter Service.) -- H:\Program Files\Java\jre7\bin\jqs.exe [182696] [PID.2036] [MD5.0DDFDCAA92C7F553328DB06BA599BEA9] - (.Logitech Inc. - Logitech LVPrcSrv Module..) -- H:\Program Files\Fichiers communs\logishrd\LVMVFM\LVPrcSrv.exe [154136] [PID.216] [MD5.9927E906D7997D22E67E476710127070] - (.CybelSoft - Service de détection matériel.) -- H:\Program Files\ma-config.com\MaConfigAgent.exe [2117448] [PID.268] [MD5.9DB596995A20B8C636ED8763AD942361] - (.RaMMicHaeL - Unchecky Service.) -- H:\Program Files\Unchecky\bin\unchecky_svc.exe [164600] [PID.1972] [MD5.74FB105B0A785C4896851DBF5AD4017B] - (.Avira Operations GmbH & Co. KG - AntiVir shadow copy service.) -- H:\Program Files\Avira\AntiVir Desktop\avshadow.exe [429304] [PID.1892] [MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - (.Microsoft Corporation - Explorateur Windows.) -- H:\WINDOWS\explorer.exe [1037824] [PID.2228] [MD5.9C69E6A25F5500501B14AF43311F8D8B] - (.Microsoft Corporation - Media Center Tray Applet.) -- H:\WINDOWS\ehome\ehtray.exe [64512] [PID.2856] [MD5.44C86D7970E00204CA677880489A5746] - (.Intel Corporation - hkcmd Module.) -- H:\WINDOWS\system32\hkcmd.exe [86016] [PID.2968] [MD5.4CEAEE08310DAF5F86155839A5953DF2] - (.Intel Corporation - persistence Module.) -- H:\WINDOWS\system32\igfxpers.exe [81920] [PID.2980] [MD5.E18770ED0BA0BA5BBAE0ABBE456F3482] - (.SigmaTel, Inc. - Sigmatel Audio system tray application.) -- H:\WINDOWS\stsystra.exe [282624] [PID.2996] [MD5.2589FFE360BED8F824CBC6171CB5B874] - (...) -- H:\Program Files\Logitech\Logitech WebCam Software\LWS.exe [2793304] [PID.3284] [MD5.A6ABD4AF02AB03676DEA55F383ABC7C2] - (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- H:\Program Files\Avira\AntiVir Desktop\avgnt.exe [730416] [PID.3300] [MD5.59DC5BB82E4C8E0B3EADCFDBC44BA6E4] - (.Microsoft Corporation - CTF Loader.) -- H:\WINDOWS\system32\ctfmon.exe [15360] [PID.3320] [MD5.CD23E258D4FBD764C2E94540C8DD6599] - (.RaMMicHaeL - Unchecky Background Process.) -- H:\Program Files\Unchecky\bin\Unchecky_bg.exe [402168] [PID.3364] [MD5.DAEFB050AC8FEE4F1097FCF7CB97220E] - (.Microsoft Corporation - Media Center Media Status Aggregator Servic.) -- H:\WINDOWS\ehome\ehmsas.exe [46592] [PID.3604] [MD5.E1473471169EC64C57B49F9C984DFB1A] - (.Logitech Inc. - Logitech Vid.) -- H:\Program Files\Logitech\Logitech Vid\Vid.exe [5458704] [PID.3728] [MD5.98D472ECFBC0E8ED25A0483E765F42B6] - (...) -- H:\Program Files\Fichiers communs\logishrd\LQCVFX\COCIManager.exe [560472] [PID.3824] [MD5.923FE895B22B22A9CA03C72F3D15CE20] - (.Mozilla Corporation - Firefox.) -- H:\Program Files\Mozilla Firefox\firefox.exe [376944] [PID.2224] [MD5.AE69B52701C5D5453D1AA0564B760B58] - (.Nicolas Coolman - ZHPDiag.) -- H:\Documents and Settings\RIMAV\Application Data\ZHP\ZHPDiag3.exe [1797120] [PID.3400] ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (18) - 2s P2 - EXT: (...) -- H:\Program Files\Mozilla Firefox\browser\searchplugins\amazon-france.xml P2 - EXT: (...) -- H:\Program Files\Mozilla Firefox\browser\searchplugins\bing.xml P2 - EXT: (...) -- H:\Program Files\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml P2 - EXT: (...) -- H:\Program Files\Mozilla Firefox\browser\searchplugins\ddg.xml P2 - EXT: (...) -- H:\Program Files\Mozilla Firefox\browser\searchplugins\eBay-france.xml P2 - EXT: (...) -- H:\Program Files\Mozilla Firefox\browser\searchplugins\google.xml P2 - EXT: (...) -- H:\Program Files\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml P2 - EXT: (...) -- H:\Program Files\Mozilla Firefox\browser\searchplugins\yahoo-france.xml P2 - EXT: (.Mozilla - Default.) -- H:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- H:\WINDOWS\system32\Macromed\Flash\NPSWF32_18_0_0_194.dll P2 - FPN: [HKLM] [@google.com/npPicasa3,version=3.0.0] - (.Google, Inc..) -- H:\Program Files\Google\Picasa3\npPicasa3.dll P2 - FPN: [HKLM] [@java.com/DTPlugin,version=10.60.2] - (.Oracle Corporation.) -- H:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=10.60.2] - (.Oracle Corporation.) -- H:\Program Files\Java\jre7\bin\plugin2\npjp2.dll P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (.Microsoft Corporation.) -- h:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation.) -- h:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll P2 - FPN: [HKLM] [@mozilla.zeniko.ch/SumatraPDF_Browser_Plugin] - (.Simon Bünzli.) -- H:\Program Files\SumatraPDF\npPdfViewer.dll P2 - FPN: [HKLM] [@videolan.org/vlc,version=1.1.11] - (.VideoLAN.) -- H:\Program Files\VideoLAN\VLC\npvlc.dll P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.2] - (.VideoLAN.) -- H:\Program Files\VideoLAN\VLC\npvlc.dll ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (15) - 1s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com R0 - HKCU\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bigseekpro.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://www.google.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer, Proxy Management (R5) (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=H:\WINDOWS\System32\Userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=H:\WINDOWS\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl" ---\\ Hosts file redirection (O1) (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (0) ---\\ Browser Helper Object de navigateur (BHO) (O2) (4) - 0s O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} (Orphean) O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (Orphean) O2 - BHO: (no name) - {9030D464-4C02-4ABF-8ECC-5164760863C6} (Orphean) O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} (Orphean) ---\\ Internet Explorer Toolbars (O3) (2) - 1s O3 - Toolbar: 0x8145E001EE4ED011BFE900AA005B4383100000000000000001E032F401000000 - [HKCU]{01E04581-4EEE-11D0-BFE9-00AA005B4383} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- H:\WINDOWS\system32\browseui.dll O3 - Toolbar: 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{0E5CBF21-D15F-11D0-8301-00AA005B4383} . (.Microsoft Corporation - DLL commune du shell Windows.) -- H:\WINDOWS\system32\shell32.dll ---\\ Applications lancées au démarrage du sytème (O4) (13) - 0s O4 - HKLM\..\Run: [ehTray] . (.Microsoft Corporation - Media Center Tray Applet.) -- H:\WINDOWS\ehome\ehtray.exe O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- H:\WINDOWS\system32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- H:\WINDOWS\system32\hkcmd.exe O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- H:\WINDOWS\system32\igfxpers.exe O4 - HKLM\..\Run: [SigmatelSysTrayApp] . (.SigmaTel, Inc. - Sigmatel Audio system tray application.) -- H:\WINDOWS\stsystra.exe O4 - HKCU\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- H:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [Logitech Vid] . (.Logitech Inc. - Logitech Vid.) -- H:\Program Files\Logitech\Logitech Vid\Vid.exe O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- H:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- H:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- H:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- H:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-21-1229272821-1303643608-839522115-1003\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- H:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-21-1229272821-1303643608-839522115-1003\..\Run: [Logitech Vid] . (.Logitech Inc. - Logitech Vid.) -- H:\Program Files\Logitech\Logitech Vid\Vid.exe ---\\ Modification Domaine/Adresses DNS (O17) (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CS3\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 ---\\ Protocole additionnel (O18) (1) - 0s O18 - Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype4COM.) -- H:\Program Files\Fichiers communs\Skype\Skype4COM.dll ---\\ Liste des services NT non Microsoft et non désactivés (O23) (10) - 1s O23 - Service: Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG - Antivirus MailScanner LSP Service.) - H:\Program Files\Avira\AntiVir Desktop\avmailc.exe O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - H:\Program Files\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - H:\Program Files\Avira\AntiVir Desktop\avguard.exe O23 - Service: Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG - AntiVir WebGuard Service.) - H:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) . (.Oracle Corporation - Java Quick Starter Service.) - H:\Program Files\Java\jre7\bin\jqs.exe O23 - Service: Process Monitor (LVPrcSrv) . (.Logitech Inc. - Logitech LVPrcSrv Module..) - H:\Program Files\Fichiers communs\logishrd\LVMVFM\LVPrcSrv.exe O23 - Service: Ma-Config Agent (MaConfigAgent) . (.CybelSoft - Service de détection matériel.) - H:\Program Files\ma-config.com\MaConfigAgent.exe O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - H:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - H:\Program Files\Skype\Updater\Updater.exe O23 - Service: Unchecky (Unchecky) . (.RaMMicHaeL - Unchecky Service.) - H:\Program Files\Unchecky\bin\unchecky_svc.exe ---\\ Tâches planifiées en automatique (O39) (1) - 1s O39 - APT:Automatic Planified Task - (...) -- H:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] ---\\ Logiciels installés (O42) (44) - 9s O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI O42 - Logiciel: Avira Antivirus v15.0.11.574 - (.Avira Operations GmbH & Co. KG.) [HKLM] -- Avira Antivirus O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner O42 - Logiciel: FormatFactory 3.2.0.1 - (.Free Time.) [HKLM] -- FormatFactory O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (...) [HKLM] -- HDMI O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8 O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- KB931906 O42 - Logiciel: Hotfix for Windows XP (KB954550-v5) - (.Microsoft Corporation.) [HKLM] -- KB954550-v5 O42 - Logiciel: Hotfix for Windows XP (KB976002-v5) - (.Microsoft Corporation.) [HKLM] -- KB976002-v5 O42 - Logiciel: Malwarebytes Anti-Malware version 2.1.6.1022 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes Anti-Malware_is1 O42 - Logiciel: Mozilla Firefox 38.0.5 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 38.0.5 (x86 fr) O42 - Logiciel: Mozilla Thunderbird 31.7.0 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Thunderbird 31.7.0 (x86 fr) O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService O42 - Logiciel: MSN - (...) [HKLM] -- MSNINST O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM] -- Picasa 3 O42 - Logiciel: Intel(R) PRO Network Connections Drivers - (...) [HKLM] -- PROSet O42 - Logiciel: SeaTools for Windows 1.4.0.2 - (.Seagate Technology.) [HKLM] -- SeaTools for Windows O42 - Logiciel: SumatraPDF 2.5.2 - (.Krzysztof Kowalczyk.) [HKLM] -- SumatraPDF O42 - Logiciel: Unchecky v0.3.7.5 - (.RaMMicHaeL.) [HKLM] -- Unchecky O42 - Logiciel: WhoCrashed 5.03 - (.Resplendence Software Projects Sp..) [HKLM] -- WhoCrashed_is1 O42 - Logiciel: Windows Media Format Runtime - (...) [HKLM] -- Windows Media Format Runtime O42 - Logiciel: Windows XP Service Pack 3 - (.Microsoft Corporation.) [HKLM] -- Windows XP Service O42 - Logiciel: WinRAR 5.10 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver O42 - Logiciel: Adobe Flash Player 15 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- {047904BA-C065-40D5-969A-C7D91CA93D62} O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A} O42 - Logiciel: Ma-Config.com - (.Cybelsoft.) [HKLM] -- {2188D50C-BA8A-47AD-8477-17B5BE12532D} O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94} O42 - Logiciel: Skype™ 7.5 - (.Skype Technologies S.A..) [HKLM] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} O42 - Logiciel: Java(TM) 6 Update 34 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216034FF} O42 - Logiciel: Java 7 Update 60 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83217045FF} O42 - Logiciel: adsl TV - (.adsl TV / FM.) [HKLM] -- {3AFDD2C6-8663-46B5-B195-6CEB00D44768} O42 - Logiciel: Logitech Vid - (.Logitech Inc..) [HKLM] -- {4FBCEA31-5D18-4212-9231-DE7CF1BE7DBB} O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {7BBAEC47-1CC0-4CB8-ADB4-531B78DBD1DD} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {8E5233E1-7495-44FB-8DEB-4BE906D59619} O42 - Logiciel: Sonic Encoders - (.Sonic Solutions.) [HKLM] -- {9941F0AA-B903-4AF4-A055-83A9815CC011} O42 - Logiciel: Segoe UI - (.Microsoft Corp.) [HKLM] -- {A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7} O42 - Logiciel: SigmaTel Audio - (.SigmaTel.) [HKLM] -- {A462213D-EED4-42C2-9A60-7BDD4D4B0B17} O42 - Logiciel: Logitech Webcam Software - (.Logitech Inc..) [HKLM] -- {C27BC2A2-30DD-4014-B22E-63EB0DB572F9} O42 - Logiciel: Box Edit - (.Box.) [HKLM] -- {D1D914C0-319C-4503-9C9E-8354CCBB0EC6} O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570} O42 - Logiciel: Dell Resource CD - (.Dell Inc..) [HKLM] -- {FCD9CD52-7222-4672-94A0-A722BA702FD0} O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKCU] -- Dropbox ---\\ HKCU & HKLM Software Keys (94) - 9s HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\Avira HKLM\SOFTWARE\AviSynth HKLM\SOFTWARE\Bunndle HKLM\SOFTWARE\C07ft5Y HKLM\SOFTWARE\cybelsoft HKLM\SOFTWARE\Dell HKLM\SOFTWARE\Dell Computer Corporation HKLM\SOFTWARE\DivXNetworks HKLM\SOFTWARE\Dropbox HKLM\SOFTWARE\Gemplus HKLM\SOFTWARE\GNU HKLM\SOFTWARE\Google HKLM\SOFTWARE\HaaliMkx HKLM\SOFTWARE\IM Providers HKLM\SOFTWARE\InstalledOptions HKLM\SOFTWARE\InstallShield HKLM\SOFTWARE\Intel HKLM\SOFTWARE\JavaRa HKLM\SOFTWARE\JavaSoft HKLM\SOFTWARE\JreMetrics HKLM\SOFTWARE\Licenses HKLM\SOFTWARE\LogiShrd HKLM\SOFTWARE\Logitech HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\Malwarebytes' Anti-Malware HKLM\SOFTWARE\McAfee.com HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\mozilla.org HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\Piriform HKLM\SOFTWARE\Program Groups HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\Schlumberger HKLM\SOFTWARE\SeaToolsforWindows HKLM\SOFTWARE\Secunia HKLM\SOFTWARE\Secure HKLM\SOFTWARE\SigmaTel HKLM\SOFTWARE\Skype HKLM\SOFTWARE\Sonic HKLM\SOFTWARE\SUPERAntiSpyware.com HKLM\SOFTWARE\Sysinternals HKLM\SOFTWARE\Unchecky HKLM\SOFTWARE\VideoLAN HKLM\SOFTWARE\Windows HKLM\SOFTWARE\Windows 3.1 Migration Status HKLM\SOFTWARE\WinRAR HKLM\SOFTWARE\X-AVCSD HKLM\SOFTWARE\ZSMC HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AOER HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Astonsoft HKCU\SOFTWARE\Avira HKCU\SOFTWARE\BitDefender HKCU\SOFTWARE\Box HKCU\SOFTWARE\Convar HKCU\SOFTWARE\Dell Computer Corporation HKCU\SOFTWARE\Dropbox HKCU\SOFTWARE\FreeTime HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\Haali HKCU\SOFTWARE\HookNetwork HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Intel HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\Leadertech HKCU\SOFTWARE\LogiShrd HKCU\SOFTWARE\Logitech HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Malwarebytes' Anti-Malware HKCU\SOFTWARE\Modern UI Test HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\PDF Architect HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\Resplendence Sp HKCU\SOFTWARE\Secunia HKCU\SOFTWARE\Skype HKCU\SOFTWARE\Software HKCU\SOFTWARE\SUPERAntiSpyware.com HKCU\SOFTWARE\Sysinternals HKCU\SOFTWARE\Thunderbird HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Unchecky HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/ (164) - 9s O43 - CFD: 2015/04/00 - 58:50:50 - [0] D -- H:\Program Files\3c3d865e-4bcc-4bb4-8dff-9e4d138e934a O43 - CFD: 2014/07/10 - 12:53:53 - [] D -- H:\Program Files\Adobe O43 - CFD: 2015/05/30 - 03:21:21 - [] D -- H:\Program Files\adslTV O43 - CFD: 2013/01/11 - 04:00:00 - [0] D -- H:\Program Files\Astonsoft O43 - CFD: 2015/06/52 - 52:01:01 - [] D -- H:\Program Files\Avira O43 - CFD: 2014/07/10 - 25:52:52 - [] D -- H:\Program Files\CCleaner O43 - CFD: 2011/05/62 - 05:02:02 - [0] D -- H:\Program Files\ComPlus Applications O43 - CFD: 2014/06/01 - 43:24:24 - [] D -- H:\Program Files\Convar O43 - CFD: 2012/12/41 - 58:11:11 - [] D -- H:\Program Files\Dell O43 - CFD: 2013/10/30 - 59:20:20 - [] D -- H:\Program Files\Dropbox O43 - CFD: 2013/05/50 - 59:47:47 - [] D -- H:\Program Files\eMule O43 - CFD: 2014/10/41 - 54:10:10 - [] D -- H:\Program Files\Fichiers communs O43 - CFD: 2013/12/31 - 05:03:03 - [] D -- H:\Program Files\FreeTime O43 - CFD: 2012/05/01 - 39:16:16 - [0] D -- H:\Program Files\GemMasterFrench O43 - CFD: 2015/05/71 - 47:58:58 - [] D -- H:\Program Files\Google O43 - CFD: 2012/12/41 - 42:06:06 - [] HD -- H:\Program Files\InstallShield Installation Information O43 - CFD: 2011/05/62 - 32:00:00 - [] D -- H:\Program Files\Intel O43 - CFD: 2014/06/41 - 07:27:27 - [] D -- H:\Program Files\Internet Explorer O43 - CFD: 2014/07/10 - 08:37:37 - [] D -- H:\Program Files\Java O43 - CFD: 2014/10/41 - 57:25:25 - [] D -- H:\Program Files\Logitech O43 - CFD: 2015/01/22 - 33:17:17 - [] D -- H:\Program Files\ma-config.com O43 - CFD: 2015/06/32 - 30:23:23 - [] D -- H:\Program Files\Malwarebytes Anti-Malware O43 - CFD: 2011/05/71 - 22:18:18 - [] D -- H:\Program Files\Messenger O43 - CFD: 2011/05/22 - 28:26:26 - [] D -- H:\Program Files\Microsoft O43 - CFD: 2014/10/60 - 25:47:47 - [] D -- H:\Program Files\Microsoft CAPICOM 2.1.0.2 O43 - CFD: 2011/05/62 - 08:49:49 - [] D -- H:\Program Files\microsoft frontpage O43 - CFD: 2015/06/71 - 40:47:47 - [] D -- H:\Program Files\Microsoft Office O43 - CFD: 2014/07/41 - 07:06:06 - [] D -- H:\Program Files\Microsoft Silverlight O43 - CFD: 2015/06/71 - 42:41:41 - [] D -- H:\Program Files\Microsoft.NET O43 - CFD: 2011/05/71 - 37:52:52 - [] D -- H:\Program Files\Movie Maker O43 - CFD: 2015/06/41 - 41:42:42 - [] D -- H:\Program Files\Mozilla Firefox O43 - CFD: 2015/06/50 - 14:43:43 - [] D -- H:\Program Files\Mozilla Maintenance Service O43 - CFD: 2015/05/01 - 51:48:48 - [] D -- H:\Program Files\Mozilla Thunderbird O43 - CFD: 2014/06/41 - 37:01:01 - [] D -- H:\Program Files\MSBuild O43 - CFD: 2015/06/71 - 40:32:32 - [] D -- H:\Program Files\MSECache O43 - CFD: 2011/09/12 - 08:37:37 - [] D -- H:\Program Files\MSN O43 - CFD: 2011/05/62 - 04:24:24 - [] D -- H:\Program Files\MSN Gaming Zone O43 - CFD: 2011/05/71 - 05:43:43 - [] D -- H:\Program Files\NetMeeting O43 - CFD: 2011/05/62 - 04:58:58 - [] D -- H:\Program Files\Online Services O43 - CFD: 2014/07/51 - 23:00:00 - [] D -- H:\Program Files\OpenOffice 4 O43 - CFD: 2012/05/21 - 44:04:04 - [] D -- H:\Program Files\Outlook Express O43 - CFD: 2014/06/41 - 36:56:56 - [] D -- H:\Program Files\Reference Assemblies O43 - CFD: 2015/06/71 - 49:38:38 - [] D -- H:\Program Files\Seagate O43 - CFD: 2014/07/11 - 22:09:09 - [] D -- H:\Program Files\Secunia O43 - CFD: 2011/05/62 - 07:05:05 - [] D -- H:\Program Files\Services en ligne O43 - CFD: 2011/05/62 - 25:41:41 - [] D -- H:\Program Files\SigmaTel O43 - CFD: 2015/06/31 - 41:23:23 - [] RD -- H:\Program Files\Skype O43 - CFD: 2014/07/10 - 15:17:17 - [] D -- H:\Program Files\SumatraPDF O43 - CFD: 2015/05/62 - 31:57:57 - [] D -- H:\Program Files\Unchecky O43 - CFD: 2011/05/62 - 20:33:33 - [0] HD -- H:\Program Files\Uninstall Information O43 - CFD: 2013/10/81 - 14:26:26 - [] D -- H:\Program Files\uTorrent O43 - CFD: 2014/07/22 - 25:55:55 - [] D -- H:\Program Files\VideoLAN O43 - CFD: 2015/06/70 - 53:49:49 - [] D -- H:\Program Files\WhoCrashed O43 - CFD: 2013/02/51 - 34:42:42 - [] D -- H:\Program Files\Windows Live O43 - CFD: 2011/05/22 - 28:10:10 - [] D -- H:\Program Files\Windows Live SkyDrive O43 - CFD: 2011/05/62 - 19:02:02 - [] D -- H:\Program Files\Windows Media Player O43 - CFD: 2011/05/71 - 05:42:42 - [] D -- H:\Program Files\Windows NT O43 - CFD: 2011/05/62 - 04:47:47 - [] D -- H:\Program Files\Windows Plus O43 - CFD: 2011/12/52 - 11:24:24 - [] D -- H:\Program Files\Windows Sidebar O43 - CFD: 2011/05/62 - 07:06:06 - [0] HD -- H:\Program Files\WindowsUpdate O43 - CFD: 2014/07/21 - 53:10:10 - [] D -- H:\Program Files\WinRAR O43 - CFD: 2011/05/62 - 08:49:49 - [] D -- H:\Program Files\xerox O43 - CFD: 2015/04/01 - 38:51:51 - [] RD -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires O43 - CFD: 2015/06/60 - 05:19:19 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Avira O43 - CFD: 2014/07/10 - 25:54:54 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\CCleaner O43 - CFD: 2011/05/62 - 22:14:14 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Dell Accessories O43 - CFD: 2014/09/01 - 09:43:43 - [0] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage O43 - CFD: 2011/05/62 - 04:58:58 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Extensions Windows Media O43 - CFD: 2014/01/81 - 29:02:02 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Java O43 - CFD: 2011/05/62 - 05:05:05 - [] RD -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux O43 - CFD: 2014/10/41 - 57:29:29 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Logitech O43 - CFD: 2015/01/22 - 33:13:13 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\ma-config.com O43 - CFD: 2015/05/70 - 00:13:13 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Malwarebytes Anti-Malware O43 - CFD: 2014/07/41 - 02:30:30 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Silverlight O43 - CFD: 2011/05/62 - 16:53:53 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration O43 - CFD: 2011/05/40 - 54:32:32 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Picasa 3 O43 - CFD: 2014/10/92 - 05:22:22 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Skype O43 - CFD: 2014/07/11 - 47:20:20 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Unchecky O43 - CFD: 2015/06/70 - 53:44:44 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\WhoCrashed O43 - CFD: 2013/09/71 - 07:40:40 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Windows Live O43 - CFD: 2014/07/11 - 34:14:14 - [] D -- H:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR O43 - CFD: 2014/07/10 - 12:52:52 - [] D -- H:\Documents and Settings\All Users\Application Data\Adobe O43 - CFD: 2012/12/41 - 36:15:15 - [] D -- H:\Documents and Settings\All Users\Application Data\Avanquest Software O43 - CFD: 2015/06/60 - 03:33:33 - [] D -- H:\Documents and Settings\All Users\Application Data\Avira O43 - CFD: 2014/10/71 - 44:29:29 - [] D -- H:\Documents and Settings\All Users\Application Data\LogiShrd O43 - CFD: 2015/01/22 - 33:12:12 - [] D -- H:\Documents and Settings\All Users\Application Data\ma-config.com O43 - CFD: 2014/06/41 - 49:01:01 - [] D -- H:\Documents and Settings\All Users\Application Data\Malwarebytes O43 - CFD: 2012/08/70 - 48:54:54 - [] D -- H:\Documents and Settings\All Users\Application Data\McAfee O43 - CFD: 2015/06/71 - 12:00:00 - [] SD -- H:\Documents and Settings\All Users\Application Data\Microsoft O43 - CFD: 2012/04/52 - 33:11:11 - [] D -- H:\Documents and Settings\All Users\Application Data\Mozilla O43 - CFD: 2011/12/70 - 20:43:43 - [] D -- H:\Documents and Settings\All Users\Application Data\Nero O43 - CFD: 2015/06/81 - 08:18:18 - [] D -- H:\Documents and Settings\All Users\Application Data\Package Cache O43 - CFD: 2012/12/41 - 00:16:16 - [0] D -- H:\Documents and Settings\All Users\Application Data\PDF Architect O43 - CFD: 2015/06/31 - 41:43:43 - [] D -- H:\Documents and Settings\All Users\Application Data\Skype O43 - CFD: 2011/06/71 - 36:57:57 - [] D -- H:\Documents and Settings\All Users\Application Data\Sun O43 - CFD: 2014/06/22 - 03:33:33 - [0] D -- H:\Documents and Settings\All Users\Application Data\TEMP O43 - CFD: 2014/09/01 - 28:12:12 - [] D -- H:\Documents and Settings\All Users\Application Data\Unchecky O43 - CFD: 2013/05/50 - 11:57:57 - [] D -- H:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage O43 - CFD: 2014/09/10 - 11:41:41 - [] D -- H:\Program Files\Fichiers communs\Adobe AIR O43 - CFD: 2011/06/51 - 48:31:31 - [] D -- H:\Program Files\Fichiers communs\InstallShield O43 - CFD: 2014/06/40 - 12:21:21 - [] D -- H:\Program Files\Fichiers communs\Java O43 - CFD: 2015/01/10 - 43:14:14 - [] D -- H:\Program Files\Fichiers communs\logishrd O43 - CFD: 2015/06/71 - 40:54:54 - [] D -- H:\Program Files\Fichiers communs\Microsoft Shared O43 - CFD: 2011/05/62 - 06:25:25 - [] D -- H:\Program Files\Fichiers communs\MSSoap O43 - CFD: 2011/05/62 - 01:01:01 - [] D -- H:\Program Files\Fichiers communs\ODBC O43 - CFD: 2011/05/62 - 06:29:29 - [] D -- H:\Program Files\Fichiers communs\Services O43 - CFD: 2014/10/92 - 05:20:20 - [] D -- H:\Program Files\Fichiers communs\Skype O43 - CFD: 2011/05/62 - 01:00:00 - [] D -- H:\Program Files\Fichiers communs\SpeechEngines O43 - CFD: 2011/05/71 - 05:40:40 - [] D -- H:\Program Files\Fichiers communs\System O43 - CFD: 2011/05/22 - 22:45:45 - [] D -- H:\Program Files\Fichiers communs\Windows Live O43 - CFD: 2011/05/62 - 46:56:56 - [] D -- H:\Program Files\Fichiers communs\Wise Installation Wizard O43 - CFD: 2011/05/32 - 00:58:58 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Adobe O43 - CFD: 2012/12/41 - 53:27:27 - [] D -- H:\Documents and Settings\RIMAV\Application Data\APP_NAME_NON_STRING O43 - CFD: 2015/06/60 - 05:13:13 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Avira O43 - CFD: 2011/05/32 - 01:40:40 - [] D -- H:\Documents and Settings\RIMAV\Application Data\com.zoosk.Desktop.096E6A67431258A508A2446A847B240591D2C99B.1 O43 - CFD: 2012/03/81 - 35:28:28 - [] D -- H:\Documents and Settings\RIMAV\Application Data\DeepBurner O43 - CFD: 2015/06/91 - 37:34:34 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Dropbox O43 - CFD: 2012/07/62 - 47:58:58 - [] D -- H:\Documents and Settings\RIMAV\Application Data\dvdcss O43 - CFD: 2012/02/92 - 14:51:51 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Google O43 - CFD: 2011/09/51 - 59:50:50 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Identities O43 - CFD: 2014/07/81 - 03:32:32 - [] D -- H:\Documents and Settings\RIMAV\Application Data\KastorFreeAudioConverter O43 - CFD: 2014/10/41 - 57:16:16 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Leadertech O43 - CFD: 2011/05/62 - 53:22:22 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Macromedia O43 - CFD: 2011/06/12 - 19:56:56 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Malwarebytes O43 - CFD: 2014/07/11 - 57:30:30 - [] SD -- H:\Documents and Settings\RIMAV\Application Data\Microsoft O43 - CFD: 2011/05/62 - 36:12:12 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Mozilla O43 - CFD: 2011/12/52 - 59:43:43 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Nero O43 - CFD: 2013/12/20 - 12:54:54 - [] D -- H:\Documents and Settings\RIMAV\Application Data\OpenOffice O43 - CFD: 2012/12/41 - 55:55:55 - [] D -- H:\Documents and Settings\RIMAV\Application Data\PDF Architect O43 - CFD: 2012/12/41 - 36:58:58 - [] D -- H:\Documents and Settings\RIMAV\Application Data\PDF Pro 10 O43 - CFD: 2012/09/41 - 10:32:32 - [] D -- H:\Documents and Settings\RIMAV\Application Data\QuickScan O43 - CFD: 2015/06/31 - 26:22:22 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Skype O43 - CFD: 2014/07/61 - 55:11:11 - [] D -- H:\Documents and Settings\RIMAV\Application Data\SumatraPDF O43 - CFD: 2011/06/71 - 35:03:03 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Sun O43 - CFD: 2012/06/11 - 07:55:55 - [] D -- H:\Documents and Settings\RIMAV\Application Data\Thunderbird O43 - CFD: 2014/04/81 - 11:26:26 - [0] D -- H:\Documents and Settings\RIMAV\Application Data\uTorrent O43 - CFD: 2014/12/20 - 01:19:19 - [] D -- H:\Documents and Settings\RIMAV\Application Data\vlc O43 - CFD: 2011/05/62 - 37:13:13 - [] D -- H:\Documents and Settings\RIMAV\Application Data\WinRAR O43 - CFD: 2015/06/91 - 13:42:42 - [] D -- H:\Documents and Settings\RIMAV\Application Data\ZHP O43 - CFD: 2015/06/70 - 07:46:46 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Adobe O43 - CFD: 2014/07/02 - 28:56:56 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\ApplicationHistory O43 - CFD: 2014/07/02 - 28:57:57 - [0] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\avgchrome O43 - CFD: 2014/07/02 - 28:57:57 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Box Edit O43 - CFD: 2013/11/72 - 50:00:00 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Downloaded Installations O43 - CFD: 2015/04/00 - 18:43:43 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Google O43 - CFD: 2011/05/62 - 02:58:58 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Identities O43 - CFD: 2014/10/41 - 57:37:37 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\LogiShrd O43 - CFD: 2015/06/71 - 12:00:00 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Microsoft O43 - CFD: 2011/05/62 - 36:09:09 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Mozilla O43 - CFD: 2012/01/42 - 31:28:28 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\PCHealth O43 - CFD: 2014/07/11 - 22:28:28 - [0] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Secunia PSI O43 - CFD: 2014/03/70 - 45:38:38 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Skype O43 - CFD: 2012/10/71 - 19:02:02 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Sun O43 - CFD: 2014/07/30 - 12:50:50 - [0] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Temp O43 - CFD: 2012/06/61 - 58:14:14 - [] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\Thunderbird O43 - CFD: 2013/05/90 - 43:57:57 - [0] D -- H:\Documents and Settings\RIMAV\Local Settings\Application Data\WMTools Downloaded Files O43 - CFD: 2011/05/62 - 55:11:11 - [] RD -- H:\Documents and Settings\RIMAV\Menu Démarrer\Programmes\Accessoires O43 - CFD: 2014/10/22 - 14:22:22 - [] D -- H:\Documents and Settings\RIMAV\Menu Démarrer\Programmes\adsl TV O43 - CFD: 2014/06/01 - 43:24:24 - [] D -- H:\Documents and Settings\RIMAV\Menu Démarrer\Programmes\Convar O43 - CFD: 2015/04/01 - 03:17:17 - [] D -- H:\Documents and Settings\RIMAV\Menu Démarrer\Programmes\Dropbox O43 - CFD: 2015/04/01 - 03:41:41 - [] RD -- H:\Documents and Settings\RIMAV\Menu Démarrer\Programmes\Démarrage O43 - CFD: 2013/12/51 - 00:42:42 - [] D -- H:\Documents and Settings\RIMAV\Menu Démarrer\Programmes\FormatFactory O43 - CFD: 2012/02/61 - 19:45:45 - [] RD -- H:\Documents and Settings\RIMAV\Menu Démarrer\Programmes\Outils d'administration O43 - CFD: 2014/07/11 - 34:14:14 - [] D -- H:\Documents and Settings\RIMAV\Menu Démarrer\Programmes\WinRAR ---\\ Enumération des clés de registre StartupReg (SMSR) (O53 (1) - 0s O53 - SMSR:HKLM\...\startupreg\Google+ Auto Backup [Key] . (...) -- H:\Program Files\Google\Google+ Auto Backup\Google+ Auto Backup.exe (.not file.) ---\\ Liste des pilotes du système (SDL) (O58) (93) - 17s O58 - SDL:2014/07/10 15:32:57 N . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- H:\WINDOWS\System32\drivers\48230029.sys [110296] O58 - SDL:2008/04/13 20:36:39 A . (.Advanced Micro Devices, Inc. - AMD Win2000 AGP Filter.) -- H:\WINDOWS\System32\drivers\amdagp.sys [43008] O58 - SDL:2004/08/03 22:29:30 A . (.ATI Technologies Inc. - ATI WDM BT829 MiniDriver (A).) -- H:\WINDOWS\System32\drivers\ati1btxx.sys [56623] O58 - SDL:2004/08/03 22:29:30 A . (.ATI Technologies Inc. - ATI Specialized MVD VBI Codec.) -- H:\WINDOWS\System32\drivers\ati1mdxx.sys [11615] O58 - SDL:2004/08/03 22:29:30 A . (.ATI Technologies Inc. - ATI Specialized PCD VBI Codec.) -- H:\WINDOWS\System32\drivers\ati1pdxx.sys [12047] O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI Rage Theater Audio WDM Minidriver.) -- H:\WINDOWS\System32\drivers\ati1raxx.sys [30671] O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI WDM Rage Theater MiniDriver.) -- H:\WINDOWS\System32\drivers\ati1rvxx.sys [63663] O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI WDM TV Sound MiniDriver.) -- H:\WINDOWS\System32\drivers\ati1snxx.sys [26367] O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI WDM Teletext Decoder.) -- H:\WINDOWS\System32\drivers\ati1ttxx.sys [21343] O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI WDM TVTuner MiniDriver.) -- H:\WINDOWS\System32\drivers\ati1tuxx.sys [36463] O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI WDM CrossBar MiniDriver.) -- H:\WINDOWS\System32\drivers\ati1xbxx.sys [29455] O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI WDM TVAUDIO_CrossBar MiniDriver.) -- H:\WINDOWS\System32\drivers\ati1xsxx.sys [34735] O58 - SDL:2004/08/04 00:38:42 A . (.ATI Technologies Inc. - Pilote de miniport ATI RAGE 128.) -- H:\WINDOWS\System32\drivers\ati2mtaa.sys [327168] O58 - SDL:2004/08/04 00:38:44 A . (.ATI Technologies Inc. - Pilote de miniport ATI RAGE 128.) -- H:\WINDOWS\System32\drivers\ati2mtag.sys [701440] O58 - SDL:2004/08/03 22:29:28 A . (.ATI Technologies Inc. - ATI WDM BT829 MiniDriver (A).) -- H:\WINDOWS\System32\drivers\atinbtxx.sys [57856] O58 - SDL:2004/08/03 22:29:30 A . (.ATI Technologies Inc. - ATI Specialized MVD VBI Codec RT2.) -- H:\WINDOWS\System32\drivers\atinmdxx.sys [13824] O58 - SDL:2004/08/03 22:29:30 A . (.ATI Technologies Inc. - ATI Specialized PCD VBI Codec RT2.) -- H:\WINDOWS\System32\drivers\atinpdxx.sys [14336] O58 - SDL:2004/08/03 22:29:30 A . (.ATI Technologies Inc. - ATI Rage Theater Audio WDM Minidriver.) -- H:\WINDOWS\System32\drivers\atinraxx.sys [52224] O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI WDM Rage Theater MiniDriver RT2.) -- H:\WINDOWS\System32\drivers\atinrvxx.sys [104960] O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI WDM TV Sound MiniDriver.) -- H:\WINDOWS\System32\drivers\atinsnxx.sys [28672] O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI WDM Teletext Decoder.) -- H:\WINDOWS\System32\drivers\atinttxx.sys [13824] O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI WDM TVTuner MiniDriver.) -- H:\WINDOWS\System32\drivers\atintuxx.sys [73216] O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI WDM CrossBar MiniDriver.) -- H:\WINDOWS\System32\drivers\atinxbxx.sys [31744] O58 - SDL:2004/08/03 22:29:32 A . (.ATI Technologies Inc. - ATI WDM TVAUDIO_CrossBar MiniDriver RT2.) -- H:\WINDOWS\System32\drivers\atinxsxx.sys [63488] O58 - SDL:2015/06/25 23:58:34 N . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- H:\WINDOWS\System32\drivers\avgntflt.sys [108448] O58 - SDL:2015/06/25 23:58:34 N . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- H:\WINDOWS\System32\drivers\avipbb.sys [136728] O58 - SDL:2015/06/25 23:58:34 N . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- H:\WINDOWS\System32\drivers\avkmgr.sys [37896] O58 - SDL:2004/12/13 23:14:00 N . (.Adaptec, Inc. - DELL CERC SATA1.5/6ch Miniport Driver.) -- H:\WINDOWS\System32\drivers\cercsr6.sys [39904] O58 - SDL:2004/08/10 14:00:00 A . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- H:\WINDOWS\System32\drivers\cinemst2.sys [262528] O58 - SDL:2004/08/10 14:00:00 A . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- H:\WINDOWS\System32\drivers\cpqdap01.sys [11776] O58 - SDL:2008/04/14 04:05:07 A . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- H:\WINDOWS\System32\drivers\dmboot.sys [800256] O58 - SDL:2008/04/14 04:05:12 A . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- H:\WINDOWS\System32\drivers\dmio.sys [154496] O58 - SDL:2004/08/10 14:00:00 A . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- H:\WINDOWS\System32\drivers\dmload.sys [5888] O58 - SDL:2006/06/05 13:49:08 N . (.Intel Corporation - Intel(R) PRO/1000 Adapter NDIS 5.2 deserial.) -- H:\WINDOWS\System32\drivers\e1e5132.sys [230400] O58 - SDL:2008/04/13 18:36:05 N . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- H:\WINDOWS\System32\drivers\hdaudbus.sys [144384] O58 - SDL:2004/08/12 17:45:52 N . (.Windows (R) Server 2003 DDK provider - High Definition Audio Function Driver v1.0.) -- H:\WINDOWS\System32\drivers\Hdaudio.sys [113664] O58 - SDL:2004/08/03 22:41:48 A . (.Conexant Systems, Inc. - HSF_HWB2 WDM driver.) -- H:\WINDOWS\System32\drivers\hsfbs2s2.sys [220032] O58 - SDL:2004/08/03 22:41:50 A . (.Conexant Systems, Inc. - HSF_CNXT driver.) -- H:\WINDOWS\System32\drivers\hsfcxts2.sys [685056] O58 - SDL:2004/08/03 22:41:56 A . (.Conexant Systems, Inc. - HSF_DP driver.) -- H:\WINDOWS\System32\drivers\hsfdpsp2.sys [1041536] O58 - SDL:2006/05/11 18:30:52 N . (.Intel Corporation - Intel Matrix Storage Manager driver.) -- H:\WINDOWS\System32\drivers\iaStor.sys [247808] O58 - SDL:2006/07/21 21:12:16 N . (.Intel Corporation - Intel Graphics Miniport Driver.) -- H:\WINDOWS\System32\drivers\igxpmp32.sys [1095968] O58 - SDL:2009/04/30 23:55:58 N . (.Logitech Inc. - Logitech Webcam Software Driver.) -- H:\WINDOWS\System32\drivers\LV302V32.SYS [2687512] O58 - SDL:2003/06/27 05:05:38 R . (.Logitech Inc. - Video Minidriver.) -- H:\WINDOWS\System32\drivers\lvcm.sys [472332] O58 - SDL:2009/10/07 01:46:36 N . (...) -- H:\WINDOWS\System32\drivers\LVPr2Mon.sys [25752] O58 - SDL:2003/06/27 05:03:48 R . (.Logitech Inc. - USB Statistic Driver.) -- H:\WINDOWS\System32\drivers\LVUSBSta.sys [12112] O58 - SDL:2015/04/14 09:37:42 N . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- H:\WINDOWS\System32\drivers\mbam.sys [23256] O58 - SDL:2015/04/14 09:37:48 N . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- H:\WINDOWS\System32\drivers\mbamchameleon.sys [120024] O58 - SDL:2015/06/23 22:48:08 N . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- H:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [119512] O58 - SDL:2004/08/03 22:41:56 N . (.Conexant - Diagnostic Interface DRIVER.) -- H:\WINDOWS\System32\drivers\mdmxsdk.sys [11868] O58 - SDL:2004/08/03 22:41:40 A . (.Smart Link - .) -- H:\WINDOWS\System32\drivers\mtlmnt5.sys [126686] O58 - SDL:2004/08/03 22:41:38 A . (.Smart Link - .) -- H:\WINDOWS\System32\drivers\mtlstrm.sys [1309184] O58 - SDL:2004/08/03 22:29:38 A . (.Matrox Graphics Inc. - Matrox Parhelia Miniport Driver.) -- H:\WINDOWS\System32\drivers\mtxparhm.sys [452736] O58 - SDL:2004/08/10 14:00:00 A . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- H:\WINDOWS\System32\drivers\nikedrv.sys [12032] O58 - SDL:2004/08/03 22:41:40 A . (.Smart Link - .) -- H:\WINDOWS\System32\drivers\ntmtlfax.sys [180360] O58 - SDL:2004/08/03 22:29:56 A . (.NVIDIA Corporation - NVIDIA Compatible Windows 2000 Miniport Dri.) -- H:\WINDOWS\System32\drivers\nv4_mini.sys [1897408] O58 - SDL:2004/08/10 14:00:00 A . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- H:\WINDOWS\System32\drivers\ptilink.sys [17792] O58 - SDL:2005/06/04 20:02:08 N . (.Sonic Solutions - Px Engine Device Driver for Windows 2000/XP.) -- H:\WINDOWS\System32\drivers\pxhelp20.sys [20576] O58 - SDL:2004/08/03 22:41:40 A . (.Smart Link - .) -- H:\WINDOWS\System32\drivers\recagent.sys [13776] O58 - SDL:2004/08/10 14:00:00 A . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- H:\WINDOWS\System32\drivers\rio8drv.sys [12032] O58 - SDL:2004/08/10 14:00:00 A . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- H:\WINDOWS\System32\drivers\riodrv.sys [12032] O58 - SDL:2004/08/03 22:29:52 A . (.S3 Graphics, Inc. - S3 ProSavage(DDR) & Twister Miniport Driver.) -- H:\WINDOWS\System32\drivers\s3gnbm.sys [166912] O58 - SDL:2008/04/13 18:39:15 N . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- H:\WINDOWS\System32\drivers\secdrv.sys [20480] O58 - SDL:2008/04/13 20:36:39 A . (.Silicon Integrated Systems Corporation - SiS NT AGP Filter.) -- H:\WINDOWS\System32\drivers\sisagp.sys [40960] O58 - SDL:2004/08/03 22:41:42 A . (.Smart Link - .) -- H:\WINDOWS\System32\drivers\slnt7554.sys [129535] O58 - SDL:2004/08/03 22:41:44 A . (.Smart Link - .) -- H:\WINDOWS\System32\drivers\slntamr.sys [404990] O58 - SDL:2004/08/03 22:41:46 A . (.Smart Link - .) -- H:\WINDOWS\System32\drivers\slnthal.sys [95424] O58 - SDL:2004/08/03 22:41:46 A . (.Smart Link - .) -- H:\WINDOWS\System32\drivers\slwdmsup.sys [13240] O58 - SDL:2015/06/25 23:58:34 N . (.Avira Operations GmbH & Co. KG - AVIRA SnapShot Driver.) -- H:\WINDOWS\System32\drivers\ssmdrv.sys [31848] O58 - SDL:2006/03/20 16:06:04 N . (.SigmaTel, Inc. - NDRC.) -- H:\WINDOWS\System32\drivers\sthda.sys [1156648] O58 - SDL:2004/08/10 14:00:00 A . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- H:\WINDOWS\System32\drivers\tsbvcap.sys [21376] O58 - SDL:2004/08/10 14:00:00 A . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- H:\WINDOWS\System32\drivers\vdmindvd.sys [58112] O58 - SDL:2004/08/03 22:29:40 A . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Gra.) -- H:\WINDOWS\System32\drivers\wadv07nt.sys [11807] O58 - SDL:2004/08/03 22:29:40 A . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Gra.) -- H:\WINDOWS\System32\drivers\wadv08nt.sys [11295] O58 - SDL:2004/08/03 22:29:42 A . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Gra.) -- H:\WINDOWS\System32\drivers\wadv09nt.sys [11871] O58 - SDL:2004/08/03 22:29:42 A . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Gra.) -- H:\WINDOWS\System32\drivers\wadv11nt.sys [11935] O58 - SDL:2004/08/03 22:29:46 A . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Gra.) -- H:\WINDOWS\System32\drivers\watv06nt.sys [22271] O58 - SDL:2004/08/03 22:29:46 A . (.Intel(R) Corporation - Digital Display Minidriver for Intel(R) Gra.) -- H:\WINDOWS\System32\drivers\watv10nt.sys [25471] O58 - SDL:2000/11/02 00:10:30 N . (.Jungo - WinDriver Device Driver 4.33.) -- H:\WINDOWS\System32\drivers\windrvr.sys [164180] O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\ansi.sys [9037] O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\country.sys [27097] O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\himem.sys [4912] O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\key01.sys [42809] O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\keyboard.sys [42537] O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\ntdos.sys [27916] O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\ntdos404.sys [29146] O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\ntdos411.sys [29370] O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\ntdos412.sys [29274] O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\ntdos804.sys [29146] O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\ntio.sys [34000] O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\ntio404.sys [34560] O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\ntio411.sys [35648] O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\ntio412.sys [35424] O58 - SDL:2004/08/10 14:00:00 N . (...) -- H:\WINDOWS\System32\ntio804.sys [34560] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (4) - 29s O61 - LFC: 2015/06/25 23:49:01 N . (..) -- H:\Documents and Settings\RIMAV\Mes documents\Téléchargements\avira_free_antivirus_fr.exe [166198536] O61 - LFC: 2015/06/27 15:37:30 N . (..) -- H:\Documents and Settings\RIMAV\Mes documents\Téléchargements\SeaToolsforWindowsSetup.exe [25527544] O61 - LFC: 2015/06/28 18:48:50 A . (.PortableApps.com.) -- H:\Documents and Settings\RIMAV\Mes documents\Téléchargements\SIWPortable_2011-2011.10.29.0.10.29.paf.exe [2548777] O61 - LFC: 2015/06/27 01:48:51 N . (.Resplendence Software Projects Sp..) -- H:\Documents and Settings\RIMAV\Mes documents\Téléchargements\whocrashedSetup.exe [2727584] ---\\ Associations Shell Spawning (O67) (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- H:\WINDOWS\system32\shell32.dll O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- H:\Program Files\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- H:\WINDOWS\system32\wscript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- H:\WINDOWS\regedit.exe O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- H:\Program Files\Mozilla Firefox\firefox.exe ---\\ Menu de démarrage Internet (SMI) (O68) (8) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- H:\Program Files\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- H:\Program Files\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- H:\WINDOWS\system32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- H:\Program Files\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- H:\WINDOWS\system32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- H:\Program Files\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- H:\WINDOWS\system32\ie4uinit.exe ---\\ Recherche d'infection sur les navigateurs internet (SBI (7) - 9s O69 - SBI: prefs.js [RIMAV - am96p433.default] user_pref("extensions.sizlsearch.aul", "1402589214111"); =>PUP.SizlSearch O69 - SBI: prefs.js [RIMAV - am96p433.default] user_pref("extensions.sizlsearch.irl", true); =>PUP.SizlSearch O69 - SBI: prefs.js [RIMAV - am96p433.default] user_pref("extensions.sizlsearch.is", "adssFR"); =>PUP.SizlSearch O69 - SBI: prefs.js [RIMAV - am96p433.default] user_pref("extensions.sizlsearch.ug", "3EDBEB4F-A70E-40AB-9AA5-2FEDF28B79BB"); =>PUP.SizlSearch O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {510F0D05-4DBF-439C-8EAB-956021612C6C} - (Google) - http://www.google.com/ O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (@ieframe.dll,-12512) - http://www.bing.com/ ---\\ Scan Additionnel (O88) (1) - 0s ~ Aucun élément malicieux trouvé. ---\\ Récapitulatif des détections trouvées sur votre station (1) - 0s http://www.nicolascoolman.fr/pup-sizlsearch/ =>PUP.SizlSearch ~ End of the scan, 25026 items in 101 seconds (598)(0)()