~ ZHPDiag v2015.7.10.87 Par Nicolas Coolman (2015/07/10) ~ Démarré par Utilisateur (Administrator) (2015/07/11 20:27:35) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Documents and Settings\Utilisateur\Bureau\ZHPDiag.txt ~ Rapport: C:\Documents and Settings\Utilisateur\Application Data\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ Démarrage du système: Normal (Normal boot) ~ Windows XP, 32-bit Service Pack 3 (Build 2600) ---\\ Logiciels de protection (2) - 1s Avast Free Antivirus v10.2.2218 Malwarebytes Anti-Malware version 2.1.8.1057 ---\\ Logiciels de protection et autres (Superflus) (2) - 1s ESET Online Scanner v3 SUPERAntiSpyware v6.0.1200 ---\\ Logiciels d'optimisation (1) - 1s CCleaner v5.07 ---\\ Surveillance de Logiciels (2) - 1s Adobe Flash Player 18 ActiveX Adobe Reader XI ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 15 Model 44 Stepping 2, AuthenticAMD ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) ~ Total physical RAM (KB): 1047856 ~ System Restore: Activé (Enable) ~ System drive C: has 122 GB free of 152 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: UTILISAT-A93D12 ~ User Name: Utilisateur ~ Logged in as Administrator ---\\ Enumération des unités disques (3) - 0s ~ Drive C: has 122 GB free of 152 GB (System) ~ Drive G: has 1 GB free of 1 GB ~ Drive J: has 0 GB free of 0 GB ---\\ Recherche particulière de fichiers génériques (22) - 1s [MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [1037824] [MD5.93AD0B78C7357A05F50E594EC7C22300] - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) () -- C:\WINDOWS\System32\rundll32.exe [33792] [MD5.E1948B1F45A176FB4A0251446A5AE86D] - (.Microsoft Corporation - Internet Extensions for Win32.) () -- C:\WINDOWS\System32\wininet.dll [920064] [MD5.DD73D6B9F6B4CB630CF35B438B540174] - (.Microsoft Corporation - Application d'ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [512000] [MD5.1E44BC1E83D8FD2305F8D452DB109CF9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [138496] [MD5.9F3A2F5AA6875C72BF062C712CFA2674] - (.Microsoft Corporation - IDE/ATAPI Port Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [96512] [MD5.C885B02847F5D2FD45A24E219ED93B32] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [63744] [MD5.1F4260CC5B42272D71F79E570A27A4FE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [62976] [MD5.31F923EB2170FC172C81ABDA0045D18C] - (.Microsoft Corporation - Pilote de cryptographie FIPS.) () -- C:\WINDOWS\System32\drivers\Fips.sys [44672] [MD5.573C7D0A32852B48F3058CFD8026F511] - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [144384] [MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [54144] [MD5.083A052659F5310DD8B6A6CB05EDCF8E] - (.Microsoft Corporation - IMAPI Kernel Driver.) () -- C:\WINDOWS\System32\drivers\Imapi.sys [42112] [MD5.CC748EA12C6EFFDE940EE98098BF96BB] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [152832] [MD5.23C74D75E36E7158768DD63D92789A91] - (.Microsoft Corporation - IPSec Driver.) () -- C:\WINDOWS\System32\drivers\IPSec.sys [75264] [MD5.7D304A5EB4344EBEEAB53A2FE3FFB9F0] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [456320] [MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [162816] [MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - (.Microsoft Corporation - NT File System Driver.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [574976] [MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [80384] [MD5.11B4A627BC9614B885C4969BFA5FF8A6] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [51328] [MD5.15CABD0F7C00C47C70124907916AF3F1] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [196224] [MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) () -- C:\WINDOWS\System32\drivers\redbook.sys [58752] [MD5.46DE1126684369BACE4849E4FC8C43CA] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [53376] ---\\ Processus lancés (7) - 1s [MD5.A2EAEB497CA29ECAEAF0DF66AD85C57D] - (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) -- C:\WINDOWS\system32\ati2evxx.exe [413696] [PID.756] [MD5.54236E79A44F909612391C8A2D70D512] - (.Avast Software s.r.o. - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336] [PID.1224] [MD5.A2EAEB497CA29ECAEAF0DF66AD85C57D] - (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) -- C:\WINDOWS\system32\ati2evxx.exe [413696] [PID.1280] [MD5.72D6D8E2D4F82C6E829125C7EC2A88F9] - (.SUPERAntiSpyware.com - Core Service.) -- C:\Program Files\SUPERAntiSpyware\SASCore.exe [142648] [PID.408] [MD5.65C6AA484AD2287D20541C7735989437] - (.Avast Software s.r.o. - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe [5515496] [PID.2112] [MD5.DE91AA01B01FF8F5837C46EF0B51B57F] - (.Greenshot - Greenshot.) -- C:\Program Files\Greenshot\Greenshot.exe [540672] [PID.2132] [MD5.DB13097358D7DFB4329CB286552EB3D9] - (.SUPERAntiSpyware - SUPERAntiSpyware Application.) -- C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6715160] [PID.2212] ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (14) - 0s G0 - GCSP: Preferences [User Data\Default][HomePage] "http://forum.pcastuces.com/" G0 - GCSP: Preferences [User Data\Default][HomePage] "http://pagead2.googlesyndication.com/" G0 - GCSP: Preferences [User Data\Default][HomePage] "http://www.mywot.com/" G0 - GCSP: Preferences [User Data\Default][HomePage] "https://accounts.google.com/" G0 - GCSP: Preferences [User Data\Default][HomePage] "https://accounts.youtube.com/" G0 - GCSP: Preferences [User Data\Default][HomePage] "https://clients4.google.com/" G0 - GCSP: Preferences [User Data\Default][HomePage] "https://secure.mywot.com/" G0 - GCSP: Preferences [User Data\Default][HomePage] "https://ssl.google-analytics.com/" G0 - GCSP: Preferences [User Data\Default][HomePage] "https://www.google.com/" G0 - GCSP: Preferences [User Data\Default][HomePage] "https://www.googleapis.com/" G0 - GCSP: Secure Preferences [User Data\Default][HomePage] "http://www.google.com/" G2 - GCE: Extension [User Data\Default] [bhmmomiinigofkjcapegjjndpbikblnp] WOT G2 - GCE: Extension [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module G2 - GCE: Extension [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (10) - 1s P2 - FPN: [HKLM] [@canon.com/EPPEX] - (.CANON INC..) -- C:\Program Files\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll P2 - FPN: [HKLM] [@java.com/DTPlugin,version=11.45.2] - (.Oracle Corporation.) -- C:\Program Files\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=11.45.2] - (.Oracle Corporation.) -- C:\Program Files\Java\jre1.8.0_45\bin\plugin2\npjp2.dll P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (.Microsoft.) -- c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.0] - (.VideoLAN.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.2] - (.VideoLAN.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.3] - (.VideoLAN.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.5] - (.VideoLAN.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.2.0] - (.VideoLAN.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.2.1] - (.VideoLAN.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (12) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer, Proxy Management (R5) (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl" ---\\ Hosts file redirection (O1) (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (20) ---\\ Browser Helper Object de navigateur (BHO) (O2) (4) - 1s O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_45\bin\ssv.dll O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.Avast Software s.r.o. - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O2 - BHO: WOT Helper - {C920E44A-7F78-4E64-BDD7-A57026E7FEB7} . (...) -- C:\Program Files\WOT\WOT.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_45\bin\jp2ssv.dll ---\\ Internet Explorer Toolbars (O3) (3) - 0s O3 - Toolbar: 0x07000000000000007E69791EC59CD111A83F00C04FC99D612001000004000000000000007E69791EC59CD111A83F00C04FC99D612101000004000000000000007E69791EC59CD111A83F00C04FC99D612401000004000000000000007E69791EC59CD111A83F00C04FC99D612501000004000000FFFFFFFF000000000000000000000000000000000000000000000000000000008069791EC59CD111A83F00C04FC99D610120000004000000FFFFFFFF000000000000000000000000000000000000000000000000000000007E69791EC59CD111A83F00C04FC99D612201000004000000FFFFFFFF000000000000000000000000000000000000000000000000000000007E69791EC59CD111A83F00C04FC99D612301000004000000000000007E69791EC59CD111A83F00C04FC99D612601000004000000000000007E69791EC59CD111A83F00C04FC99D612E01000004000000 - [HKCU]{1E796980-9CC5-11D1-A83F-00C04FC99D61} . (...) -- (.not file.) O3 - Toolbar: 0x466557714D35C941AAE831F2EC22BF0D - [HKCU]{71576546-354D-41C9-AAE8-31F2EC22BF0D} . (...) -- C:\Program Files\WOT\WOT.dll O3 - Toolbar: WOT - [HKLM]{71576546-354D-41c9-AAE8-31F2EC22BF0D} . (...) -- C:\Program Files\WOT\WOT.dll ---\\ Applications lancées au démarrage du sytème (O4) (14) - 0s O4 - HKLM\..\Run: [AvastUI.exe] . (.Avast Software s.r.o. - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe O4 - HKLM\..\Run: [Greenshot] . (.Greenshot - Greenshot.) -- C:\Program Files\Greenshot\Greenshot.exe O4 - HKCU\..\Run: [Avast-Browser-Cleanup] C:\Program Files\AVAST Software\Avast\BrowserCleanup.exe/RunOnce (.not file.) O4 - HKCU\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe O4 - HKCU\..\Run: [SUPERAntiSpyware] . (.SUPERAntiSpyware - SUPERAntiSpyware Application.) -- C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-21-1614895754-261903793-1417001333-1004\..\Run: [Avast-Browser-Cleanup] C:\Program Files\AVAST Software\Avast\BrowserCleanup.exe/RunOnce (.not file.) O4 - HKUS\S-1-5-21-1614895754-261903793-1417001333-1004\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-21-1614895754-261903793-1417001333-1004\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe O4 - HKUS\S-1-5-21-1614895754-261903793-1417001333-1004\..\Run: [SUPERAntiSpyware] . (.SUPERAntiSpyware - SUPERAntiSpyware Application.) -- C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe ---\\ Modification Domaine/Adresses DNS (O17) (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 ---\\ Protocole additionnel (O18) (2) - 0s O18 - Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} . (.Belarc, Inc. - Belarc VoilaX Control.) -- C:\Program Files\Belarc\BelarcAdvisor\System\BAVoilaX.dll O18 - Handler: wot - {C2A44D6B-CB9F-4663-88A6-DF2F26E4D952} . (...) -- C:\Program Files\WOT\WOT.dll ---\\ Liste des services NT non Microsoft et non désactivés (O23) (5) - 1s O23 - Service: SAS Core Service (!SASCORE) . (.SUPERAntiSpyware.com - Core Service.) - C:\Program Files\SUPERAntiSpyware\SASCore.exe O23 - Service: (Ati HotKey Poller) . (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) - C:\WINDOWS\system32\ati2evxx.exe O23 - Service: Avast Antivirus (avast! Antivirus) . (.Avast Software s.r.o. - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe ---\\ Tâches planifiées en automatique (O39) (5) - 0s O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\avast! Emergency Update.job [364] O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1052] O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1056] O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\Notification de fin de service de Microsoft Windows XP -mensuellement.job [228] ---\\ Logiciels installés (O42) (39) - 11s O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX O42 - Logiciel: AM-DeadLink 4.7 - (.www.aignes.com.) [HKLM] -- aignesamdeadlink_is1 O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM] -- Avast O42 - Logiciel: Belarc Advisor 8.4 - (.Belarc Inc..) [HKLM] -- Belarc Advisor O42 - Logiciel: Canon MG5500 series On-screen Manual - (.Canon Inc..) [HKLM] -- Canon MG5500 series On-screen Manual O42 - Logiciel: Canon My Image Garden - (.Canon Inc..) [HKLM] -- Canon My Image Garden O42 - Logiciel: Canon My Image Garden Design Files - (.Canon Inc..) [HKLM] -- Canon My Image Garden Design Files O42 - Logiciel: Canon My Printer - (.Canon Inc..) [HKLM] -- CanonMyPrinter O42 - Logiciel: Canon Quick Menu - (.Canon Inc..) [HKLM] -- CanonQuickMenu O42 - Logiciel: Canon IJ Scan Utility - (.Canon Inc..) [HKLM] -- Canon_IJ_Scan_Utility O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner O42 - Logiciel: Convertisseur 1.5 - (...) [HKLM] -- Convertisseur_is1 O42 - Logiciel: Defraggler - (.Piriform.) [HKLM] -- Defraggler O42 - Logiciel: Enregistrement utilisateur de Canon MG5500 series - (.?Canon Inc..) [HKLM] -- Enregistrement utilisateur de Canon MG5500 series O42 - Logiciel: ESET Online Scanner v3 - (...) [HKLM] -- ESET Online Scanner O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome O42 - Logiciel: Greenshot 1.2.6.7 - (.Greenshot.) [HKLM] -- Greenshot_is1 O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8 O42 - Logiciel: Malwarebytes Anti-Malware version 2.1.8.1057 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes Anti-Malware_is1 O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM] -- Picasa 3 O42 - Logiciel: PrivaZer - (.Goversoft LLC.) [HKLM] -- PrivaZer O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player O42 - Logiciel: Windows Media Format 11 runtime - (...) [HKLM] -- Windows Media Format Runtime O42 - Logiciel: Lecteur Windows Media 11 - (...) [HKLM] -- Windows Media Player O42 - Logiciel: WinRAR 5.21 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver O42 - Logiciel: Canon MG5500 series MP Drivers - (.Canon Inc..) [HKLM] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5500_series O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C} O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} O42 - Logiciel: Java 8 Update 45 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218045F0} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1 O42 - Logiciel: Rep-Listing - (.JPA.) [HKLM] -- {887EF08A-011E-477C-B6CB-01E540538ADB} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Visionneuse Microsoft PowerPoint - (.Microsoft Corporation.) [HKLM] -- {95140000-00AF-040C-0000-0000000FF1CE} O42 - Logiciel: PC Sync - (.Orange.) [HKLM] -- {A4DCAA77-151D-4CE9-8D79-E4ADB48031A2} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: Adobe Reader XI (11.0.10) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} O42 - Logiciel: SUPERAntiSpyware - (.SUPERAntiSpyware.com.) [HKLM] -- {CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA} O42 - Logiciel: PhotoFiltre 7 - (...) [HKCU] -- PhotoFiltre 7 ---\\ HKCU & HKLM Software Keys (113) - 11s HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\AdwCleaner HKLM\SOFTWARE\ATI Technologies HKLM\SOFTWARE\ATI Technologies Inc. HKLM\SOFTWARE\AVAST Software HKLM\SOFTWARE\Belarc HKLM\SOFTWARE\BrowserChoice HKLM\SOFTWARE\C07ft5Y HKLM\SOFTWARE\Canon HKLM\SOFTWARE\Canon_Inc_IC HKLM\SOFTWARE\DivXNetworks HKLM\SOFTWARE\Eset HKLM\SOFTWARE\Gemplus HKLM\SOFTWARE\Google HKLM\SOFTWARE\InstallShield HKLM\SOFTWARE\JavaSoft HKLM\SOFTWARE\JPA HKLM\SOFTWARE\JreMetrics HKLM\SOFTWARE\jumpshot.com HKLM\SOFTWARE\Lavasoft HKLM\SOFTWARE\Lexmark HKLM\SOFTWARE\LibreOffice HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\Nero HKLM\SOFTWARE\NETGEAR HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\Oracle HKLM\SOFTWARE\Orange HKLM\SOFTWARE\Piriform HKLM\SOFTWARE\Program Groups HKLM\SOFTWARE\Realtek HKLM\SOFTWARE\Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\RtWLan HKLM\SOFTWARE\Schlumberger HKLM\SOFTWARE\SERCOMM HKLM\SOFTWARE\Set8192CU HKLM\SOFTWARE\ShunSoft HKLM\SOFTWARE\SUPERAntiSpyware.com HKLM\SOFTWARE\The Document Foundation HKLM\SOFTWARE\TuneUp HKLM\SOFTWARE\VideoLAN HKLM\SOFTWARE\Voxmobili HKLM\SOFTWARE\Windows 3.1 Migration Status HKLM\SOFTWARE\WinRAR HKLM\SOFTWARE\WSWNA3100M HKCU\SOFTWARE\7-Zip HKCU\SOFTWARE\ABBYY HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Against Intuition HKCU\SOFTWARE\aignes HKCU\SOFTWARE\ANI HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\ArcSoft HKCU\SOFTWARE\ATI HKCU\SOFTWARE\AVAST Software HKCU\SOFTWARE\Belarc HKCU\SOFTWARE\Canneverbe Limited HKCU\SOFTWARE\Canon HKCU\SOFTWARE\CanonBJ HKCU\SOFTWARE\Commercial Research HKCU\SOFTWARE\ESET HKCU\SOFTWARE\ForumerIT =>Toolbar.Forumer HKCU\SOFTWARE\FRANCE TELECOM HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\GlarySoft HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\Haali HKCU\SOFTWARE\HookNetwork HKCU\SOFTWARE\Icaros HKCU\SOFTWARE\Intel HKCU\SOFTWARE\ITNConv HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\KC Softwares HKCU\SOFTWARE\Lavalys HKCU\SOFTWARE\Lexmark HKCU\SOFTWARE\LexmarkFax HKCU\SOFTWARE\LexmarkPhoto HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\madFlac HKCU\SOFTWARE\madshi HKCU\SOFTWARE\MediaInfo HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MyImgur HKCU\SOFTWARE\Nero HKCU\SOFTWARE\NETGEAR HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Orange-France HKCU\SOFTWARE\PhotoFiltre 7 HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\PTP HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\Rep-Listing HKCU\SOFTWARE\SCC HKCU\SOFTWARE\SUPERAntiSpyware.com HKCU\SOFTWARE\The Document Foundation HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\TuneUp HKCU\SOFTWARE\Ultracopier HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\Voxmobili HKCU\SOFTWARE\VSRevoGroup HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Against Intuition ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (225) - 11s O43 - CFD: 2014/02/14 18:04:33 - [] D -- C:\Program Files\Abbyy FineReader 6.0 Sprint O43 - CFD: 2014/01/23 10:16:31 - [] D -- C:\Program Files\Adobe O43 - CFD: 2015/04/10 18:27:55 - [] D -- C:\Program Files\AM-DeadLink O43 - CFD: 2015/05/31 12:34:32 - [] D -- C:\Program Files\ar-JO O43 - CFD: 2014/01/22 18:20:29 - [] D -- C:\Program Files\AVAST Software O43 - CFD: 2014/10/22 13:26:49 - [] D -- C:\Program Files\Belarc O43 - CFD: 2015/05/31 12:34:32 - [] D -- C:\Program Files\bg-BG O43 - CFD: 2015/05/31 12:34:32 - [] D -- C:\Program Files\ca O43 - CFD: 2015/03/30 12:58:30 - [] D -- C:\Program Files\Canon O43 - CFD: 2015/02/15 12:32:55 - [] HD -- C:\Program Files\CanonBJ O43 - CFD: 2015/06/25 16:56:17 - [] D -- C:\Program Files\CCleaner O43 - CFD: 2015/06/01 13:05:52 - [] D -- C:\Program Files\CDBurnerXP O43 - CFD: 2015/02/19 21:28:04 - [] D -- C:\Program Files\Convertisseur O43 - CFD: 2015/05/31 12:34:32 - [] D -- C:\Program Files\cs-CZ O43 - CFD: 2014/02/13 21:43:08 - [] D -- C:\Program Files\CyberLink DVD Solution O43 - CFD: 2015/05/31 12:34:32 - [] D -- C:\Program Files\da-DK O43 - CFD: 2015/05/31 12:34:32 - [] D -- C:\Program Files\de-DE =>PUP.Optional.CrossRider O43 - CFD: 2015/03/13 21:25:47 - [] D -- C:\Program Files\Defraggler O43 - CFD: 2015/05/31 12:34:32 - [] D -- C:\Program Files\el-GR O43 - CFD: 2015/06/30 13:57:27 - [] D -- C:\Program Files\Emoticon O43 - CFD: 2015/05/31 12:34:32 - [] D -- C:\Program Files\es-AR O43 - CFD: 2015/05/31 12:34:32 - [] D -- C:\Program Files\es-ES O43 - CFD: 2015/05/31 12:34:32 - [] D -- C:\Program Files\es-MX O43 - CFD: 2014/03/05 15:13:11 - [] D -- C:\Program Files\ESET O43 - CFD: 2015/05/31 12:34:32 - [] D -- C:\Program Files\et-EE O43 - CFD: 2015/05/31 12:34:32 - [] D -- C:\Program Files\fi-FI O43 - CFD: 2015/04/15 01:59:34 - [] D -- C:\Program Files\Fichiers communs O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\fr-FR O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\gl O43 - CFD: 2015/06/05 23:02:25 - [] D -- C:\Program Files\Google O43 - CFD: 2015/06/05 12:52:45 - [] D -- C:\Program Files\Greenshot O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\he-IL O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\hr-HR O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\hu-HU O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\id-ID O43 - CFD: 2015/01/02 23:40:39 - [] HD -- C:\Program Files\InstallShield Installation Information O43 - CFD: 2014/04/09 22:38:29 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\it-IT O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\ja-JP O43 - CFD: 2015/04/15 02:03:54 - [] D -- C:\Program Files\Java O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\ka-GE O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\kk-KZ O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\ko-KR O43 - CFD: 2015/06/30 17:26:29 - [] D -- C:\Program Files\LibreOffice 4 O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\lt-LT O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\lv-LV O43 - CFD: 2015/06/30 12:12:49 - [] D -- C:\Program Files\Malwarebytes Anti-Malware O43 - CFD: 2014/11/14 10:08:17 - [] D -- C:\Program Files\Messenger O43 - CFD: 2014/01/22 16:44:41 - [] D -- C:\Program Files\microsoft frontpage O43 - CFD: 2014/02/24 19:31:24 - [] D -- C:\Program Files\Microsoft Office O43 - CFD: 2014/07/24 21:37:36 - [] D -- C:\Program Files\Microsoft Silverlight O43 - CFD: 2014/04/13 23:12:36 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 2014/01/22 17:32:36 - [] D -- C:\Program Files\Movie Maker O43 - CFD: 2014/01/25 00:38:12 - [] D -- C:\Program Files\MSBuild O43 - CFD: 2014/02/24 19:30:55 - [] D -- C:\Program Files\MSECache O43 - CFD: 2014/01/22 16:40:36 - [] D -- C:\Program Files\MSN O43 - CFD: 2014/01/22 16:41:06 - [] D -- C:\Program Files\MSN Gaming Zone O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\nb-NO O43 - CFD: 2014/01/22 17:01:22 - [] D -- C:\Program Files\NETGEAR O43 - CFD: 2014/01/22 16:42:46 - [] D -- C:\Program Files\NetMeeting O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\nl-NL O43 - CFD: 2014/01/22 16:41:14 - [] D -- C:\Program Files\Online Services O43 - CFD: 2014/02/03 00:53:11 - [] D -- C:\Program Files\Outlook Express O43 - CFD: 2014/02/12 00:05:54 - [] D -- C:\Program Files\Paragon Software O43 - CFD: 2015/04/15 07:27:17 - [] D -- C:\Program Files\PC Sync O43 - CFD: 2014/01/25 12:00:34 - [] D -- C:\Program Files\PhotoFiltre 7 O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\pl-PL O43 - CFD: 2015/07/05 20:24:59 - [] D -- C:\Program Files\PrivaZer O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\pt-BR O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\pt-PT O43 - CFD: 2014/01/25 00:38:02 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 2014/11/30 12:05:12 - [] D -- C:\Program Files\Replisting O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\Resources O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\ro-RO O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\ru-RU O43 - CFD: 2014/01/22 16:43:13 - [] D -- C:\Program Files\Services en ligne O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\sk-SK O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\sl-SI O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\sr-Cyrl-CS O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\sr-Latn-CS O43 - CFD: 2014/03/29 09:41:38 - [] D -- C:\Program Files\Stellarium O43 - CFD: 2015/07/08 15:00:39 - [] D -- C:\Program Files\SUPERAntiSpyware O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\sv-SE O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\tr-TR O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\uk-UA O43 - CFD: 2014/10/19 23:21:47 - [] D -- C:\Program Files\VideoLAN O43 - CFD: 2014/01/26 21:05:11 - [] D -- C:\Program Files\VS Revo Group O43 - CFD: 2014/04/18 20:23:20 - [] D -- C:\Program Files\Windows Desktop Search O43 - CFD: 2014/02/04 03:55:34 - [] D -- C:\Program Files\Windows Media Connect 2 O43 - CFD: 2015/02/14 12:49:54 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 2014/01/22 16:40:58 - [] D -- C:\Program Files\Windows NT O43 - CFD: 2014/03/03 23:50:02 - [] D -- C:\Program Files\WinHTTrack O43 - CFD: 2015/04/19 20:20:05 - [] D -- C:\Program Files\WinRAR O43 - CFD: 2014/01/26 12:49:11 - [] D -- C:\Program Files\WOT O43 - CFD: 2014/01/22 16:44:41 - [] D -- C:\Program Files\xerox O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\zh-CHS O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\zh-CHT O43 - CFD: 2014/04/18 20:23:17 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires O43 - CFD: 2015/04/10 18:27:55 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\AM-DeadLink O43 - CFD: 2014/11/21 10:53:39 - [0] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\AVAST Software O43 - CFD: 2015/02/15 12:34:07 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Canon MG5500 series Manual O43 - CFD: 2015/02/15 12:59:22 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Canon Utilities O43 - CFD: 2014/06/29 08:23:31 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CCleaner O43 - CFD: 2015/02/19 21:28:04 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Convertisseur O43 - CFD: 2014/01/31 01:30:10 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Defraggler O43 - CFD: 2015/01/04 17:43:31 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Driver Genius O43 - CFD: 2015/03/26 01:20:08 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage O43 - CFD: 2015/02/15 12:56:18 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Enregistrement utilisateur de Canon MG5500 series O43 - CFD: 2015/06/05 23:02:57 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Google Chrome O43 - CFD: 2015/06/05 12:52:46 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Greenshot O43 - CFD: 2014/11/27 17:48:56 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Java O43 - CFD: 2014/01/22 16:41:15 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux O43 - CFD: 2015/07/09 10:13:54 - [0] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\KC Softwares O43 - CFD: 2015/06/30 17:26:58 - [] SD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\LibreOffice 4.4 O43 - CFD: 2015/06/30 12:12:48 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Malwarebytes Anti-Malware O43 - CFD: 2014/07/24 01:05:26 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Silverlight O43 - CFD: 2014/10/10 16:42:46 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\OLYMPUS Camera O43 - CFD: 2014/04/18 20:23:51 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration O43 - CFD: 2015/01/02 23:40:59 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\PC Sync O43 - CFD: 2014/01/25 11:32:51 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Picasa 3 O43 - CFD: 2014/03/29 09:41:45 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Stellarium O43 - CFD: 2014/10/19 23:22:25 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN O43 - CFD: 2015/04/19 20:20:08 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR O43 - CFD: 2014/01/23 11:01:49 - [] D -- C:\Documents and Settings\All Users\Application Data\Adobe O43 - CFD: 2014/01/22 18:20:14 - [] D -- C:\Documents and Settings\All Users\Application Data\AVAST Software O43 - CFD: 2014/01/25 00:46:31 - [] D -- C:\Documents and Settings\All Users\Application Data\Canneverbe Limited O43 - CFD: 2015/03/30 12:59:07 - [0] HD -- C:\Documents and Settings\All Users\Application Data\Canon Easy-WebPrint EX O43 - CFD: 2015/02/15 12:33:29 - [] HD -- C:\Documents and Settings\All Users\Application Data\CanonBJ O43 - CFD: 2015/02/15 14:04:02 - [] HD -- C:\Documents and Settings\All Users\Application Data\CanonIJEGV O43 - CFD: 2015/02/15 12:20:43 - [] HD -- C:\Documents and Settings\All Users\Application Data\CanonIJETV O43 - CFD: 2015/02/15 13:44:27 - [] HD -- C:\Documents and Settings\All Users\Application Data\CanonIJMIG O43 - CFD: 2015/02/15 13:41:41 - [] HD -- C:\Documents and Settings\All Users\Application Data\CanonIJScan O43 - CFD: 2015/02/15 12:53:25 - [] D -- C:\Documents and Settings\All Users\Application Data\CanonIJWSpt O43 - CFD: 2014/02/15 01:36:59 - [] HD -- C:\Documents and Settings\All Users\Application Data\Common Files O43 - CFD: 2014/02/12 00:07:27 - [] D -- C:\Documents and Settings\All Users\Application Data\explauncher O43 - CFD: 2014/01/27 22:22:52 - [] D -- C:\Documents and Settings\All Users\Application Data\Google O43 - CFD: 2014/03/03 23:49:47 - [] D -- C:\Documents and Settings\All Users\Application Data\Google Updater O43 - CFD: 2014/02/12 00:07:24 - [] D -- C:\Documents and Settings\All Users\Application Data\launcher O43 - CFD: 2014/09/04 13:35:27 - [] D -- C:\Documents and Settings\All Users\Application Data\Lavasoft O43 - CFD: 2015/04/29 23:26:41 - [] D -- C:\Documents and Settings\All Users\Application Data\Malwarebytes O43 - CFD: 2014/04/16 23:22:53 - [] SD -- C:\Documents and Settings\All Users\Application Data\Microsoft O43 - CFD: 2014/02/15 01:10:43 - [] D -- C:\Documents and Settings\All Users\Application Data\Nero O43 - CFD: 2015/04/15 02:08:37 - [] D -- C:\Documents and Settings\All Users\Application Data\Oracle O43 - CFD: 2015/05/06 23:44:33 - [] D -- C:\Documents and Settings\All Users\Application Data\privazer O43 - CFD: 2014/02/12 00:08:46 - [] D -- C:\Documents and Settings\All Users\Application Data\restore O43 - CFD: 2014/01/27 21:35:20 - [] D -- C:\Documents and Settings\All Users\Application Data\Sun O43 - CFD: 2015/07/08 15:00:11 - [] D -- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com O43 - CFD: 2014/02/15 01:38:43 - [] D -- C:\Documents and Settings\All Users\Application Data\TuneUp Software O43 - CFD: 2014/01/22 17:06:53 - [] D -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage O43 - CFD: 2014/02/15 01:36:59 - [] SHD -- C:\Documents and Settings\All Users\Application Data\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} O43 - CFD: 2014/01/23 10:16:56 - [] D -- C:\Program Files\Fichiers communs\Adobe O43 - CFD: 2014/03/29 13:03:56 - [] D -- C:\Program Files\Fichiers communs\InstallShield O43 - CFD: 2015/04/15 01:59:34 - [] D -- C:\Program Files\Fichiers communs\Java O43 - CFD: 2014/02/24 19:31:21 - [] D -- C:\Program Files\Fichiers communs\Microsoft Shared O43 - CFD: 2014/01/22 16:42:42 - [] D -- C:\Program Files\Fichiers communs\MSSoap O43 - CFD: 2014/01/22 16:42:45 - [] D -- C:\Program Files\Fichiers communs\Services O43 - CFD: 2014/01/22 17:20:51 - [] D -- C:\Program Files\Fichiers communs\SpeechEngines O43 - CFD: 2014/01/22 16:42:08 - [] D -- C:\Program Files\Fichiers communs\System O43 - CFD: 2015/01/12 21:10:15 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\0F1F1C2Y1H1P1C0I0T O43 - CFD: 2014/01/23 10:26:48 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Absolute Uninstaller O43 - CFD: 2014/01/23 10:29:06 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Adobe O43 - CFD: 2012/12/22 12:40:56 - [0] D -- C:\Documents and Settings\Utilisateur\Application Data\AdobeUM O43 - CFD: 2014/01/23 10:26:50 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\aignes O43 - CFD: 2014/01/23 10:26:52 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\ArcSoft O43 - CFD: 2014/01/23 10:29:06 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\ATI O43 - CFD: 2014/01/22 11:09:31 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\AVAST Software O43 - CFD: 2014/01/23 10:27:11 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Canneverbe Limited O43 - CFD: 2015/02/16 21:13:11 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Canon O43 - CFD: 2015/02/19 21:33:51 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\convertisseur O43 - CFD: 2015/05/07 00:06:11 - [0] D -- C:\Documents and Settings\Utilisateur\Application Data\dvdcss O43 - CFD: 2014/01/23 10:29:06 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\FaxCtr O43 - CFD: 2014/01/23 10:27:11 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\GlarySoft O43 - CFD: 2014/01/23 10:27:11 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Google O43 - CFD: 2015/06/05 12:54:38 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Greenshot O43 - CFD: 2012/12/02 21:16:09 - [0] D -- C:\Documents and Settings\Utilisateur\Application Data\Help O43 - CFD: 2014/01/23 10:29:06 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Identities O43 - CFD: 2014/01/22 11:11:40 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\InstallShield O43 - CFD: 2015/07/09 10:19:40 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\KC Softwares O43 - CFD: 2014/09/04 13:39:13 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\LavasoftStatistics O43 - CFD: 2014/01/23 10:27:11 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Lexmark Productivity Studio O43 - CFD: 2014/02/02 17:48:56 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\LibreOffice O43 - CFD: 2014/01/22 11:09:33 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Macromedia O43 - CFD: 2013/01/25 00:18:53 - [0] D -- C:\Documents and Settings\Utilisateur\Application Data\Media Player Classic O43 - CFD: 2014/01/23 10:29:06 - [] SD -- C:\Documents and Settings\Utilisateur\Application Data\Microsoft O43 - CFD: 2014/01/23 10:29:06 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\MyImgur O43 - CFD: 2014/02/01 16:25:22 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Nero O43 - CFD: 2014/02/18 01:45:15 - [0] D -- C:\Documents and Settings\Utilisateur\Application Data\Notepad++ O43 - CFD: 2014/01/24 17:22:03 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\OpenOffice O43 - CFD: 2014/08/26 14:06:40 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Oracle O43 - CFD: 2015/03/14 01:08:08 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Orange-France O43 - CFD: 2014/02/14 19:36:45 - [0] D -- C:\Documents and Settings\Utilisateur\Application Data\PasteCopy.NET O43 - CFD: 2014/01/23 10:27:15 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\PhotoFiltre 7 O43 - CFD: 2014/03/29 13:09:47 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Stellarium O43 - CFD: 2014/01/23 10:27:15 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Sun O43 - CFD: 2015/07/08 15:00:39 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\SUPERAntiSpyware.com O43 - CFD: 2014/10/13 20:35:13 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\temp O43 - CFD: 2014/02/15 01:38:19 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\TuneUp Software O43 - CFD: 2015/06/09 08:46:03 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\vlc O43 - CFD: 2015/01/02 23:41:03 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Voxmobili O43 - CFD: 2014/01/23 10:09:50 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\WinRAR O43 - CFD: 2015/07/11 20:27:40 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\ZHP O43 - CFD: 2015/06/13 14:15:40 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Adobe O43 - CFD: 2014/01/23 10:27:22 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\ATI O43 - CFD: 2014/01/27 22:21:50 - [0] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Deployment O43 - CFD: 2015/03/02 10:38:06 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Google O43 - CFD: 2015/07/10 07:31:04 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Greenshot O43 - CFD: 2014/02/18 17:37:34 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Help O43 - CFD: 2014/01/23 10:27:39 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Identities O43 - CFD: 2015/06/16 21:54:57 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Le Cloud Orange O43 - CFD: 2014/12/26 17:28:18 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Microsoft O43 - CFD: 2015/07/05 22:13:32 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\PrivaZer O43 - CFD: 2014/03/11 21:46:57 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Programs O43 - CFD: 2014/03/29 13:09:43 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\stellarium O43 - CFD: 2014/01/23 10:27:41 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Sun O43 - CFD: 2015/06/20 07:50:31 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Temp O43 - CFD: 2014/01/22 11:10:32 - [] RD -- C:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\Accessoires O43 - CFD: 2012/11/27 22:22:12 - [0] D -- C:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\Accessories O43 - CFD: 2014/03/03 23:50:05 - [0] RD -- C:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\Démarrage O43 - CFD: 2014/03/06 11:20:52 - [] D -- C:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\Emoticon O43 - CFD: 2015/03/15 16:31:22 - [] D -- C:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\Le Cloud d'Orange - Transfert de fichiers O43 - CFD: 2014/01/23 10:28:02 - [] D -- C:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\Outils d'administration O43 - CFD: 2014/01/25 12:00:34 - [] D -- C:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\PhotoFiltre 7 O43 - CFD: 2015/05/06 23:44:34 - [] D -- C:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\PrivaZer O43 - CFD: 2014/08/14 03:04:28 - [] D -- C:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\Revo Uninstaller O43 - CFD: 2015/04/19 20:20:07 - [] D -- C:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\WinRAR ---\\ Enumération des clés de registre StartupReg (SMSR) (O53) (9) - 0s O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe O53 - SMSR:HKLM\...\startupreg\BluetoothAuthenticationAgent [Key] . (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- rundll32.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\CanonQuickMenu [Key] . (.CANON INC. - Canon Quick Menu.) -- C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe O53 - SMSR:HKLM\...\startupreg\ctfmon.exe [Key] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe O53 - SMSR:HKLM\...\startupreg\SoundMan [Key] . (.Realtek Semiconductor Corp. - Realtek Sound Manager.) -- SOUNDMAN.EXE (.not file.) O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe O53 - SMSR:HKLM\...\startupreg\SUPERAntiSpyware [Key] . (.SUPERAntiSpyware - SUPERAntiSpyware Application.) -- C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe O53 - SMSR:HKLM\...\startupreg\swg [Key] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe ---\\ Liste des pilotes du système (SDL) (O58) (45) - 6s O58 - SDL:2005/07/26 11:15:58 A . (.Realtek Semiconductor Corp. - Realtek AC'97 Audio Driver (WDM).) -- C:\WINDOWS\System32\drivers\ALCXWDM.SYS [2324160] O58 - SDL:2015/05/04 23:23:42 A . (...) -- C:\WINDOWS\System32\drivers\aswHwid.sys [24144] O58 - SDL:2015/05/04 23:23:42 A . (.Avast Software s.r.o. - avast! File System Minifilter for Windows 2.) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys [74976] O58 - SDL:2015/05/04 23:23:42 A . (.Avast Software s.r.o. - avast! TDI Redirect Driver.) -- C:\WINDOWS\System32\drivers\aswRdr.sys [55200] O58 - SDL:2015/05/04 23:23:42 A . (...) -- C:\WINDOWS\System32\drivers\aswRvrt.sys [49904] O58 - SDL:2015/05/04 23:23:23 A . (.Avast Software s.r.o. - avast! Virtualization Driver.) -- C:\WINDOWS\System32\drivers\aswSnx.sys [787760] O58 - SDL:2015/06/26 23:50:08 A . (.Avast Software s.r.o. - avast! self protection module.) -- C:\WINDOWS\System32\drivers\aswsp.sys [428120] O58 - SDL:2015/05/04 23:23:42 A . (.Avast Software s.r.o. - avast! TDI Filter Driver.) -- C:\WINDOWS\System32\drivers\aswTdi.sys [57888] O58 - SDL:2015/05/04 23:23:42 A . (...) -- C:\WINDOWS\System32\drivers\aswVmm.sys [209048] O58 - SDL:2006/05/03 18:50:42 A . (.ATI Technologies Inc. - ATI Radeon WindowsNT Miniport Driver.) -- C:\WINDOWS\System32\drivers\ati2mtag.sys [1540608] O58 - SDL:2013/09/10 19:25:16 A . (...) -- C:\WINDOWS\System32\drivers\BANTExt.sys [3840] O58 - SDL:2008/04/14 14:00:00 A . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\System32\drivers\cinemst2.sys [262528] O58 - SDL:2008/04/14 14:00:00 A . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\System32\drivers\cpqdap01.sys [11776] O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- C:\WINDOWS\System32\drivers\dmboot.sys [800256] O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\System32\drivers\dmio.sys [154496] O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\System32\drivers\dmload.sys [5888] O58 - SDL:2008/04/14 14:00:00 A . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [144384] O58 - SDL:2015/06/18 08:41:36 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [23256] O58 - SDL:2015/06/18 08:41:46 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [121560] O58 - SDL:2015/07/11 09:08:08 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [98520] O58 - SDL:2008/04/14 14:00:00 A . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\nikedrv.sys [12032] O58 - SDL:2008/04/14 14:00:00 A . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- C:\WINDOWS\System32\drivers\ptilink.sys [17792] O58 - SDL:2008/04/14 14:00:00 A . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\System32\drivers\rio8drv.sys [12032] O58 - SDL:2008/04/14 14:00:00 A . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\riodrv.sys [12032] O58 - SDL:2008/04/13 11:35:40 A . (.Realtek Semiconductor Corporation - Realtek RTL8139 NDIS 5.0 Driver.) -- C:\WINDOWS\System32\drivers\RTL8139.sys [20992] O58 - SDL:2008/04/14 14:00:00 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [20480] O58 - SDL:2013/08/25 11:30:48 A . (...) -- C:\WINDOWS\System32\drivers\StarOpen.sys [13120] O58 - SDL:2008/04/14 14:00:00 A . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\System32\drivers\tsbvcap.sys [21376] O58 - SDL:2008/04/14 14:00:00 A . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\System32\drivers\vdmindvd.sys [58112] O58 - SDL:2011/12/30 16:23:16 A . (.NETGEAR Corporation - NETGEAR WNA3100M USB NDIS Driver.) -- C:\WINDOWS\System32\drivers\WNA3100M.sys [1323880] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ansi.sys [9037] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\country.sys [27097] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\himem.sys [4912] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\key01.sys [42809] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\keyboard.sys [42537] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos.sys [27916] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos404.sys [29146] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos411.sys [29370] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos412.sys [29274] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos804.sys [29146] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio.sys [34000] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio404.sys [34560] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio411.sys [35648] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio412.sys [35424] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio804.sys [34560] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (10) - 8s O61 - LFC: 2015/07/08 14:59:11 A . (.SUPERAntiSpyware.) -- C:\Documents and Settings\Utilisateur\Mes documents\heulin-michel\SUPERAntiSpyware.exe [22457640] O61 - LFC: 2015/07/11 16:00:26 A . (..) -- C:\Documents and Settings\Utilisateur\Mes documents\heulin-michel\utilisation hébergeur cjoint.com [19074] O61 - LFC: 2015/07/05 18:11:19 A . (.KC Softwares.) -- C:\Documents and Settings\Utilisateur\Mes documents\heulin-michel\sumo\sumo\SUMo.exe [1721560] O61 - LFC: 2015/07/05 20:24:13 A . (.Goversoft LLC.) -- C:\Documents and Settings\Utilisateur\Mes documents\Downloads\privazer_free.exe [7580296] O61 - LFC: 2015/07/07 10:39:59 A . (..) -- C:\Documents and Settings\Utilisateur\Mes documents\Downloads\SaveMe.exe [5551104] O61 - LFC: 2015/07/09 09:56:49 A . (.KC Softwares.) -- C:\Documents and Settings\Utilisateur\Mes documents\Downloads\sumo.exe [1584688] O61 - LFC: 2015/07/05 18:11:19 A . (.KC Softwares.) -- C:\Documents and Settings\Utilisateur\Mes documents\Downloads\sumo\sumo\SUMo.exe [1721560] O61 - LFC: 2015/07/05 22:13:31 A . (.SQLite Development Team.) -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\PrivaZer\sqlite3.dll [658797] O61 - LFC: 2015/07/11 20:24:35 A . (..) -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849] O61 - LFC: 2015/07/05 16:16:51 A . (..) -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Adobe\Acrobat\11.0\UserCache.bin [59653] ---\\ Associations Shell Spawning (O67) (9) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\system32\wscript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (SMI) (O68) (9) - 0s O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe ---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (4) - 1s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {1C2711C5-5AE8-4996-9F89-E848B25A9CF5} - (Google) - http://www.google.com/ O69 - SBI: SearchScopes [HKCU] {59B28617-1B78-44AE-854B-C1DA9DF4BF83} - ((www.google.com) Google) - http://www.google.com/ O69 - SBI: SearchScopes [HKCU] {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} - (Microsoft (Bing)) - http://www.bing.com/ ---\\ Enumère les services démarrés par Svchost (SSS) (O83) (39) - 2s O83 - Search Svchost Services: AppMgmt (AppMgmt) . (...) -- C:\WINDOWS\System32\appmgmts.dll [0] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496] O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [78336] O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464] O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576] O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488] O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\system32\ersvc.dll [23040] O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - .) -- C:\WINDOWS\system32\es.dll [253952] O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] O83 - Search Svchost Services: HidServ (HidServ) . (.Microsoft Corporation - HID Audio Service.) -- C:\WINDOWS\system32\hidserv.dll [21504] O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [99840] O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [132096] O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\system32\msgsvc.dll [33792] O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144] O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- C:\WINDOWS\system32\mswsock.dll [247808] O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [53248] O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560] O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [18944] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\WINDOWS\system32\ipnathlp.dll [332800] O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\system32\tapisrv.dll [249856] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112] O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176] O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483840] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\wmisvc.dll [145408] O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896] O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024] O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\system32\qmgr.dll [409088] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll [38400] O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- C:\WINDOWS\system32\mspmsnsv.dll [27136] ---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) (8) - 21s SR - Auto [2014/07/23 01:47:10] [ 142648] SAS Core Service (!SASCORE) . (.SUPERAntiSpyware.com.) - C:\Program Files\SUPERAntiSpyware\SASCore.exe SS - Demand [2015/07/09 18:11:57] [ 268976] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe SR - Auto [2006/05/03 18:43:46] [ 413696] (Ati HotKey Poller) . (.ATI Technologies Inc..) - C:\WINDOWS\system32\ati2evxx.exe SR - Auto [2015/05/04 23:23:30] [ 343336] Avast Antivirus (avast! Antivirus) . (.Avast Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe SS - Auto [2014/01/27 22:21:54] [ 116648] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe SS - Demand [2014/01/27 22:21:54] [ 116648] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe SS - Demand [2014/03/28 21:38:13] [ 194032] Google Software Updater (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe SS - Auto [2015/06/18 08:39:50] [ 1133880] (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe ---\\ Scan Additionnel (O88) (2) - 0s HKCU\SOFTWARE\ForumerIT =>Toolbar.Forumer C:\Program Files\de-DE =>PUP.Optional.CrossRider ---\\ Récapitulatif des détections trouvées sur votre station (2) - 0s http://www.nicolascoolman.fr/toolbar-forumer/ =>Toolbar.Forumer http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider ~ End of the scan, 30672 items in 77 seconds (677)(0)()