~ ZHPDiag v2015.7.20.20 Par Nicolas Coolman (2015/07/20) ~ Démarré par ssssssssssssssss (Administrator) (2015/07/20 21:50:27) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Documents and Settings\ssssssssssssssss\Bureau\ZHPDiag.txt ~ Rapport: C:\Documents and Settings\ssssssssssssssss\Application Data\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ Démarrage du système: Normal (Normal boot) ~ Windows XP, 32-bit Service Pack 3 (Build 2600) ---\\ Navigateurs Internet (1) - 0s MSIE: Internet Explorer v8.0.6001.18702 ---\\ Logiciels de protection (1) - 14s Avast Free Antivirus v10.3.2223 ---\\ Logiciels de protection et autres (Superflus) (1) - 16s McAfee Security Scan Plus v3.8.130.10 ---\\ Surveillance de Logiciels (2) - 17s Adobe Flash Player 18 NPAPI Adobe Reader X ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 6 Model 28 Stepping 10, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 1038.444 MB (54% free) ~ System Restore: Activé (Enable) ~ System drive C: has 50 GB free of 81 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: YOUR-W5IQG87FIT ~ User Name: ssssssssssssssss ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 50 GB free of 81 GB (System) ~ Drive D: has 63 GB free of 63 GB ---\\ Etat du Centre de Sécurité Windows (9) - 0s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (22) - 8s [MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [1037824] [MD5.93AD0B78C7357A05F50E594EC7C22300] - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) () -- C:\WINDOWS\System32\rundll32.exe [33792] [MD5.E1948293F7CBC38987270432935D8D05] - (.Microsoft Corporation - Internet Extensions for Win32.) () -- C:\WINDOWS\System32\wininet.dll [920064] [MD5.DD73D6B9F6B4CB630CF35B438B540174] - (.Microsoft Corporation - Application d'ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [512000] [MD5.1E44BC1E83D8FD2305F8D452DB109CF9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [138496] [MD5.9F3A2F5AA6875C72BF062C712CFA2674] - (.Microsoft Corporation - IDE/ATAPI Port Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [96512] [MD5.C885B02847F5D2FD45A24E219ED93B32] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [63744] [MD5.1F4260CC5B42272D71F79E570A27A4FE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [62976] [MD5.31F923EB2170FC172C81ABDA0045D18C] - (.Microsoft Corporation - Pilote de cryptographie FIPS.) () -- C:\WINDOWS\System32\drivers\Fips.sys [44672] [MD5.573C7D0A32852B48F3058CFD8026F511] - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [144384] [MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [54144] [MD5.083A052659F5310DD8B6A6CB05EDCF8E] - (.Microsoft Corporation - IMAPI Kernel Driver.) () -- C:\WINDOWS\System32\drivers\Imapi.sys [42112] [MD5.CC748EA12C6EFFDE940EE98098BF96BB] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [152832] [MD5.23C74D75E36E7158768DD63D92789A91] - (.Microsoft Corporation - IPSec Driver.) () -- C:\WINDOWS\System32\drivers\IPSec.sys [75264] [MD5.7D304A5EB4344EBEEAB53A2FE3FFB9F0] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [456320] [MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [162816] [MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - (.Microsoft Corporation - NT File System Driver.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [574976] [MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [80384] [MD5.11B4A627BC9614B885C4969BFA5FF8A6] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [51328] [MD5.15CABD0F7C00C47C70124907916AF3F1] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [196224] [MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) () -- C:\WINDOWS\System32\drivers\redbook.sys [58752] [MD5.46DE1126684369BACE4849E4FC8C43CA] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [53376] ---\\ Processus lancés (12) - 15s [MD5.A97E144E84A665B22AE6E6A93E4DD465] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600] [PID.1512] [MD5.80BC9C74AAB699A74667F10627683423] - (...) -- C:\Program Files\ASUS\LiveUpdate\LiveUpdate.exe [751592] [PID.1500] [MD5.360600AE01D1ABDD1FCEF8AFA32AF96D] - (.ASUS - CapsAndNumKeyNotify.) -- C:\Program Files\EeePC\CapsHook\CapsHook.exe [445344] [PID.1700] [MD5.B46CE68FDD8D83FBBAC2E006BB3CD8B7] - (.Realtek Semiconductor Corp. - Realtek HD Audio Control Panel.) -- C:\WINDOWS\RTHDCPL.EXE [19523616] [PID.1708] [MD5.0E5A2EC4C58A0F33B00C63953B593DAD] - (.France Telecom SA - .) -- C:\Program Files\CardDetector\HUAWEI1752_1552\CardDetector.exe [282624] [PID.1780] [MD5.3B39FF4F3184A2A1541D6BBC21BC64FF] - (.CANON INC. - Canon Quick Menu.) -- C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE [1285704] [PID.2036] [MD5.799450710D1B09FAF0D220B4DA3BF431] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [6109776] [PID.180] [MD5.63962285A0C3C9752CB15A62E0FE9E6A] - (.France Telecom SA - .) -- C:\Program Files\Fichiers communs\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe [77824] [PID.236] [MD5.C5E4602D85029C666A42890A3B2DFA45] - (.Copyright CANON INC. 2006-2013 - Inkjet Printer/Scanner/Fax Extended Survey.) -- C:\Program Files\Canon\IJPLM\ijplmsvc.exe [140936] [PID.364] [MD5.188F2F9019DB3E99DBA4D43ED75E5315] - (.Reimage® - Reimage Real Time Protection.) -- C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [6086640] [PID.504] =>PUP.Optional.ReImageRepair [MD5.BD6D05926BE208FEBBBB49362FFD8E34] - (.Reimage® - Reimage System Protection.) -- C:\Program Files\Reimage\Reimage Protector\ReiSystem.exe [5615592] [PID.748] =>PUP.Optional.ReImageRepair [MD5.590188C1217710A0201795355284B78C] - (.CANON INC. - Canon Quick Menu Image Display.) -- C:\Program Files\Canon\Quick Menu\CNQMSWCS.EXE [991848] [PID.5072] ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (2) - 0s G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] YouTube G2 - GCE: Preference [User Data\Default] [dlfienamagdnkekbbbocojppncdambda] Complitly plugin for chrome =>PUP.Optional.PredictAd ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (21) - 11s M1 - SPR:Search Page Redirection - C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.FRA P2 - EXT FILE: (...) -- C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}.xpi P2 - EXT FILE: (...) -- C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\searchplugins\bing.xml P2 - EXT FILE: (...) -- C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\searchplugins\conduit.xml =>PUP.Optional.Conduit P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\amazon-france.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\bing.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\ddg.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\eBay-france.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\google.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\yahoo-france.xml P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} P2 - EXT: (.20-20 Technologies - Visualisateur 3D de 20-20.) -- C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\extensions\2020Player_IKEA@2020Technologies.com P2 - EXT: (.Babylon - Babylon.) -- C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\extensions\ffxtlbr@babylon.com =>PUP.Optional.Babylon P2 - EXT: (.SimplyGen Ltd. - Complitly - Speed up your search with your personal search suggestions tool.) -- C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\extensions\{33e0daa6-3af3-d8b5-6752-10e949c61516} P2 - EXT: (.ClientConnect Ltd. - 01NET.com .) -- C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\extensions\{8e5025c2-8ea3-430d-80b8-a14151068a6d} =>PUP.Optional.ClientConnect P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_18_0_0_209.dll P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll P2 - FPN: [HKLM] [@canon.com/EPPEX] - (.CANON INC..) -- C:\Program Files\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (10) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = http://search.babylon.com/ =>PUP.Optional.Babylon R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer, Proxy Management (R5) (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 1s F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl" ---\\ Hosts file redirection (O1) (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (20) ---\\ Browser Helper Object de navigateur (BHO) (O2) (5) - 2s O2 - BHO: Complitly - {0FB6A909-6086-458F-BD92-1F8EE10042A0} . (.SimplyGen - Complitly - Helps you search the web.) -- C:\Documents and Settings\ssssssssssssssss\Application Data\Complitly\Complitly.dll =>PUP.Optional.PredictAd O2 - BHO: Babylon toolbar helper - {2EECD738-5844-4a99-B4B6-146BF802613B} . (...) -- C:\Program Files\BabylonToolbar\BabylonToolbar\1.5.3.17\bh\BabylonToolbar.dll (.not file.) =>PUP.Optional.Babylon O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} . (.CANON INC. - Easy-WebPrint EX.) -- C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} (Orphean) O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll ---\\ Internet Explorer Toolbars (O3) (4) - 1s O3 - Toolbar: 0xEF44FA216D37534D9B0F8A89D3229068 - [HKCU]{21FA44EF-376D-4D53-9B0F-8A89D3229068} . (...) -- (.not file.) O3 - Toolbar: 0x86989D756F0C9844BAB64A5F47C6C72F - [HKCU]{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} . (.CANON INC. - Easy-WebPrint EX.) -- C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll O3 - Toolbar: Babylon Toolbar - [HKLM]{98889811-442D-49dd-99D7-DC866BE87DBC} . (...) -- C:\Program Files\BabylonToolbar\BabylonToolbar\1.5.3.17\BabylonToolbarTlbr.dll (.not file.) =>PUP.Optional.Babylon O3 - Toolbar: Canon Easy-WebPrint EX - [HKLM]{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} . (.CANON INC. - Easy-WebPrint EX.) -- C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll ---\\ Applications lancées au démarrage du sytème (O4) (35) - 6s O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\WINDOWS\system32\hkcmd.exe O4 - HKLM\..\Run: [LiveUpdate] . (...) -- C:\Program Files\ASUS\LiveUpdate\LiveUpdate.exe O4 - HKLM\..\Run: [SynAsusAcpi] %ProgramFiles%\Synaptics\SynTP\SynAsusAcpi.exe O4 - HKLM\..\Run: [EeeSplendidAgent] C:\Program Files\ASUS\EPC\EeeSplendid\AsAgent.exe (.not file.) O4 - HKLM\..\Run: [IMJPMIG8.1] . (.Microsoft Corporation - Microsoft IME.) -- C:\WINDOWS\ime\imjp8_1\imjpmig.exe O4 - HKLM\..\Run: [MSPY2002] . (...) -- C:\WINDOWS\system32\IME\PINTLGNT\IMSCINST.EXE O4 - HKLM\..\Run: [PHIME2002ASync] . (.Microsoft Corporation - ???????? 2002a.) -- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE O4 - HKLM\..\Run: [PHIME2002A] . (.Microsoft Corporation - ???????? 2002a.) -- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE O4 - HKLM\..\Run: [CapsHook] . (.ASUS - CapsAndNumKeyNotify.) -- C:\Program Files\EeePC\CapsHook\CapsHook.exe O4 - HKLM\..\Run: [RTHDCPL] . (.Realtek Semiconductor Corp. - Realtek HD Audio Control Panel.) -- C:\WINDOWS\RTHDCPL.EXE O4 - HKLM\..\Run: [AsusTray] . (.ASUSTeK Computer Inc. - Eee PC Tray Utility.) -- C:\Program Files\EeePC\ACPI\AsTray.exe O4 - HKLM\..\Run: [AsusEPCMonitor] . (.ASUSTeK Computer Inc. - AsEPCMon.) -- C:\Program Files\EeePC\ACPI\AsEPCMon.exe O4 - HKLM\..\Run: [AsusACPIServer] . (.ASUSTeK Computer Inc. - Asus Eee PC ACPI Service.) -- C:\Program Files\EeePC\ACPI\AsAcpiSvr.exe O4 - HKLM\..\Run: [Lexmark X1100 Series] C:\Program Files\Lexmark X1100 Series\lxbkbmgr.exe (.not file.) O4 - HKLM\..\Run: [CardDetectorHUAWEI1752_1552] . (.France Telecom SA - .) -- C:\Program Files\CardDetector\HUAWEI1752_1552\CardDetector.exe O4 - HKLM\..\Run: [BEWINTERNET-FR-DMESessionManager] . (.France Telecom SA - .) -- C:\Program Files\OrangeBS\BEWInternet\SessionManager\SessionManager.exe O4 - HKLM\..\Run: [BCSSync] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files\Microsoft Office\Office14\BCSSync.exe O4 - HKLM\..\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Fichiers communs\Apple\Apple Application Support\APSDaemon.exe O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe O4 - HKLM\..\Run: [CanonQuickMenu] . (.CANON INC. - Canon Quick Menu.) -- C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe O4 - HKCU\..\Run: [MSMSGS] . (.Microsoft Corporation - Windows Messenger.) -- C:\Program Files\Messenger\msmsgs.exe O4 - HKCU\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [DriverFinder] C:\Program Files\DriverFinder\DriverFinder.exe (.not file.) =>PUP.Optional.DriverFinder O4 - HKCU\..\Run: [Akamai NetSession Interface] . (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Akamai\netsession_win.exe O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-21-2226361383-2899391517-528346644-1006\..\Run: [MSMSGS] . (.Microsoft Corporation - Windows Messenger.) -- C:\Program Files\Messenger\msmsgs.exe O4 - HKUS\S-1-5-21-2226361383-2899391517-528346644-1006\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-21-2226361383-2899391517-528346644-1006\..\Run: [DriverFinder] C:\Program Files\DriverFinder\DriverFinder.exe (.not file.) =>PUP.Optional.DriverFinder O4 - HKUS\S-1-5-21-2226361383-2899391517-528346644-1006\..\Run: [Akamai NetSession Interface] . (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Akamai\netsession_win.exe ---\\ Raccourcis Global Startup (O4G) (1) - 12s O4 - GS\CommonDesktop [Public]: PC Scan & Repair by Reimage.lnk . (.Reimage® - Reimage Downloader.) C:\Program Files\Reimage\Reimage Repair\ReimageRepair.exe =>PUP.Optional.ReImageRepair ---\\ Modification Domaine/Adresses DNS (O17) (6) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = lan O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpDomain = lan O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpDomain = lan ---\\ Liste des services NT non Microsoft et non désactivés (O23) (8) - 2s O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: France Telecom Routing Table Service (FTRTSVC) . (.France Telecom SA - .) - C:\Program Files\Fichiers communs\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) . (.Copyright CANON INC. 2006-2013 - Inkjet Printer/Scanner/Fax Extended Survey.) - C:\Program Files\Canon\IJPLM\ijplmsvc.exe O23 - Service: LexBce Server (LexBceS) . (...) - C:\WINDOWS\system32\lexbces.exe (.not file.) O23 - Service: Reimage Real Time Protector (ReimageRealTimeProtector) . (.Reimage® - Reimage Real Time Protection.) - C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe =>PUP.Optional.ReImageRepair O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe ---\\ Tâches planifiées en automatique (O39) (7) - 1s O39 - APT: - (...) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] O39 - APT: - (...) -- C:\WINDOWS\Tasks\AppleSoftwareUpdate.job [284] O39 - APT: - (...) -- C:\WINDOWS\Tasks\avast! Emergency Update.job [316] O39 - APT: - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1052] O39 - APT: - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1056] O39 - APT: - (...) -- C:\WINDOWS\Tasks\Reimage Reminder.job [296] =>PUP.Optional.ReImageRepair O39 - APT: - (...) -- C:\WINDOWS\Tasks\ReimageUpdater.job [354] =>PUP.Optional.ReImageRepair ---\\ Logiciels installés (O42) (81) - 26s O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI O42 - Logiciel: ASUS VIBE - (.Ecareme, Inc..) [HKLM] -- ASUS VIBE O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM] -- avast O42 - Logiciel: Babylon toolbar on IE - (...) [HKLM] -- BabylonToolbar =>PUP.Optional.Babylon O42 - Logiciel: Canon MG5500 series On-screen Manual - (.Canon Inc..) [HKLM] -- Canon MG5500 series On-screen Manual O42 - Logiciel: Canon My Image Garden - (.Canon Inc..) [HKLM] -- Canon My Image Garden O42 - Logiciel: Canon My Image Garden Design Files - (.Canon Inc..) [HKLM] -- Canon My Image Garden Design Files O42 - Logiciel: Canon Inkjet Printer/Scanner/Fax Extended Survey Program - (.Canon Inc..) [HKLM] -- CANONIJPLM100 O42 - Logiciel: Canon My Printer - (.Canon Inc..) [HKLM] -- CanonMyPrinter O42 - Logiciel: Canon Quick Menu - (.Canon Inc..) [HKLM] -- CanonQuickMenu O42 - Logiciel: Card Detector for Huawei E1752 and E1552 - (...) [HKLM] -- CardDetectorHUAWEI1752_1552 O42 - Logiciel: Canon Easy-WebPrint EX - (.Canon Inc..) [HKLM] -- Easy-WebPrint EX O42 - Logiciel: Eee Docking 1.3.12.0 - (.ASUSTeK Computer Inc..) [HKLM] -- Eee Docking_is1 O42 - Logiciel: Enregistrement utilisateur de Canon MG5500 series - (.?Canon Inc..) [HKLM] -- Enregistrement utilisateur de Canon MG5500 series O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- HDMI O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8 O42 - Logiciel: FontResizer - (.ASUSTek.) [HKLM] -- InstallShield_{17780F99-A9DF-450B-81B3-6781B20A17A8} O42 - Logiciel: Bon de commande SIDN - K-Zam OFFLINE - (.UNKNOWN.) [HKLM] -- K-ZAM-OFFLINE O42 - Logiciel: Hotfix for Windows Media Format 11 SDK (KB929399) - (.Microsoft Corporation.) [HKLM] -- KB929399 O42 - Logiciel: Hotfix for Windows XP (KB954550-v5) - (.Microsoft Corporation.) [HKLM] -- KB954550-v5 O42 - Logiciel: Windows Management Framework Core - (.Microsoft Corporation.) [HKLM] -- KB968930 O42 - Logiciel: Hotfix for Windows XP (KB976002-v5) - (.Microsoft Corporation.) [HKLM] -- KB976002-v5 O42 - Logiciel: McAfee Security Scan Plus - (.McAfee, Inc..) [HKLM] -- McAfee Security Scan O42 - Logiciel: Mozilla Firefox 39.0 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 39.0 (x86 fr) O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService O42 - Logiciel: Microsoft Compression Client Pack 1.0 for Windows XP - (.Microsoft Corporation.) [HKLM] -- MSCompPackV1 O42 - Logiciel: Reimage Repair - (.Reimage.) [HKLM] -- Reimage Repair =>PUP.Optional.ReImageRepair O42 - Logiciel: VLC media player 1.1.11 - (.VideoLAN.) [HKLM] -- VLC media player O42 - Logiciel: Microsoft Kernel-Mode Driver Framework Feature Pack 1.7 - (.Microsoft Corporation.) [HKLM] -- Wdf01007 O42 - Logiciel: Microsoft Kernel-Mode Driver Framework Feature Pack 1.9 - (.Microsoft Corporation.) [HKLM] -- Wdf01009 O42 - Logiciel: Windows Genuine Advantage Notifications (KB905474) - (.Microsoft Corporation.) [HKLM] -- WgaNotify O42 - Logiciel: Windows Media Format 11 runtime - (...) [HKLM] -- Windows Media Format Runtime O42 - Logiciel: Lecteur Windows Media 11 - (...) [HKLM] -- Windows Media Player O42 - Logiciel: Windows Media Format 11 runtime - (.Microsoft Corporation.) [HKLM] -- WMFDist11 O42 - Logiciel: Windows Media Player 11 - (.Microsoft Corporation.) [HKLM] -- wmp11 O42 - Logiciel: Microsoft User-Mode Driver Framework Feature Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- Wudf01000 O42 - Logiciel: FontResizer - (.ASUSTek.) [HKLM] -- {17780F99-A9DF-450B-81B3-6781B20A17A8} O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C} O42 - Logiciel: Asus ACPI Driver - (.AsusTek Computer.) [HKLM] -- {19F5658D-92E8-4A08-8657-D38ABB1574B2} O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E} O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94} O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} O42 - Logiciel: Atheros Client Installation Program - (.Atheros.) [HKLM] -- {28006915-2739-4EBE-B5E8-49B25D32EB33} O42 - Logiciel: Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver - (.Atheros Communications Inc..) [HKLM] -- {3108C217-BE83-42E4-AE9E-A56A2A92E549} O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {343666E2-A059-48AC-AD67-230BF74E2DB2} O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2721691) - (.Microsoft Corporation.) [HKLM] -- {355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36} O42 - Logiciel: LiveUpdate - (.Asus.) [HKLM] -- {38E5A3B1-ADF1-47E0-8024-76310A30EB36} O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {3B160861-7250-451E-B5EE-8B92BF30A710} O42 - Logiciel: Visual Studio C++ 10.0 Runtime - (.TomTom International B.V..) [HKLM] -- {4412F224-3849-4461-A3E9-DEEF8D252790} O42 - Logiciel: CapsHook - (.AsusTek Computer.) [HKLM] -- {4B5092B6-F231-4D18-83BC-2618B729CA45} O42 - Logiciel: Complitly - (.Complitly.) [HKLM] -- {4FFBB818-B13C-11E0-931D-B2664824019B}_is1 =>PUP.Optional.PredictAd O42 - Logiciel: ASUSUpdate for Eee PC - (.ASUSTeK Computer Inc..) [HKLM] -- {587178E7-B1DF-494E-9838-FA4DD36E873C} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} O42 - Logiciel: EeeSplendid - (.ASUS.) [HKLM] -- {6333FC29-BFE5-4024-AC78-958A1A7555D1} O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {65CB4C08-C47B-4A7E-A6A4-50C06ADA5FC6} O42 - Logiciel: Bon de commande SIDN - K-Zam OFFLINE - (.UNKNOWN.) [HKLM] -- {69C43694-CDC6-7829-DA72-C10FD177DD7E} O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {8153ED9A-C94A-426E-9880-5E6775C08B62} O42 - Logiciel: MSXML 4.0 SP3 Parser (KB973685) - (.Microsoft Corporation.) [HKLM] -- {859DFA95-E4A6-48CD-B88E-A3E483E89B44} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Microsoft Sync Framework Runtime Native v1.0 (x86) - (.Microsoft Corporation.) [HKLM] -- {8A74E887-8F0F-4017-AF53-CBA42211AAA5} O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {8E5233E1-7495-44FB-8DEB-4BE906D59619} O42 - Logiciel: Ralink RT2860 Wireless LAN Card - (.Ralink.) [HKLM] -- {8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF} O42 - Logiciel: Segoe UI - (.Microsoft Corp.) [HKLM] -- {A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-0804-1033-1959-001824147215} O42 - Logiciel: Adobe Reader X (10.1.6) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AA1000000001} O42 - Logiciel: Microsoft Sync Framework Services Native v1.0 (x86) - (.Microsoft Corporation.) [HKLM] -- {BD64AF4A-8C80-4152-AD77-FCDDF05208AB} O42 - Logiciel: Business Everywhere - (...) [HKLM] -- {BEWINTERNET-FR-DME}.UninstallSuite O42 - Logiciel: EzMessenger - (.ASUS.) [HKLM] -- {C72CA49A-9237-4810-8449-45DA3BD26D64} O42 - Logiciel: Game Park Console - (.Oberon Media, Inc..) [HKLM] -- {D44AA979-47C2-4BC0-A860-09A54224EA44}_is1 O42 - Logiciel: Data Sync - (.ASUS.) [HKLM] -- {D806E63B-0C11-4061-8DA9-1E980FB9A9EB} O42 - Logiciel: USB2.0 UVC VGA WebCam - (.Realtek Semiconductor Corp..) [HKLM] -- {E0A7ED39-8CD6-4351-93C3-69CCA00D12B4} O42 - Logiciel: Skype™ 5.10 - (.Skype Technologies S.A..) [HKLM] -- {EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8} O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570} O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM] -- {F6D6B258-E3CA-4AAC-965A-68D3E3140A8C} O42 - Logiciel: Akamai NetSession Interface - (.Akamai Technologies, Inc.) [HKCU] -- Akamai ---\\ HKCU & HKLM Software Keys (98) - 26s HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\Apple Computer, Inc. HKLM\SOFTWARE\Apple Inc. HKLM\SOFTWARE\ASUS HKLM\SOFTWARE\AsusTek Computer HKLM\SOFTWARE\Atelier Photo FNAC HKLM\SOFTWARE\Atheros HKLM\SOFTWARE\Atheros Communications Inc. HKLM\SOFTWARE\AVAST Software HKLM\SOFTWARE\Babylon =>PUP.Optional.Babylon HKLM\SOFTWARE\BabylonToolbar =>PUP.Optional.Babylon HKLM\SOFTWARE\BrowserChoice HKLM\SOFTWARE\C07ft5Y HKLM\SOFTWARE\Canon HKLM\SOFTWARE\Canon_Inc_IC HKLM\SOFTWARE\Conduit =>PUP.Optional.Conduit HKLM\SOFTWARE\CoreSecurity HKLM\SOFTWARE\Creative Tech HKLM\SOFTWARE\Dell HKLM\SOFTWARE\ECAREME HKLM\SOFTWARE\FRANCE TELECOM HKLM\SOFTWARE\GEAR Software HKLM\SOFTWARE\Gemplus HKLM\SOFTWARE\Google HKLM\SOFTWARE\Hewlett-Packard HKLM\SOFTWARE\Huawei technologies HKLM\SOFTWARE\InstalledOptions HKLM\SOFTWARE\Intel HKLM\SOFTWARE\Lexmark HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\McAfee.com HKLM\SOFTWARE\mcafeeupdater HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\mozilla.org HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\Oberon Media HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\Program Groups HKLM\SOFTWARE\Ralink HKLM\SOFTWARE\Realtek HKLM\SOFTWARE\Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\Reimage =>PUP.Optional.ReImageRepair HKLM\SOFTWARE\Schlumberger HKLM\SOFTWARE\Secure HKLM\SOFTWARE\SimplyGen =>PUP.Optional.PredictAd HKLM\SOFTWARE\Skyhook Wireless HKLM\SOFTWARE\Skype HKLM\SOFTWARE\Synaptics HKLM\SOFTWARE\TomTom HKLM\SOFTWARE\VideoLAN HKLM\SOFTWARE\Windows 3.1 Migration Status HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Akamai HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\ASUS HKCU\SOFTWARE\Avast Software HKCU\SOFTWARE\BabylonToolbar =>PUP.Optional.Babylon HKCU\SOFTWARE\BrowserTemp HKCU\SOFTWARE\BVRP Software HKCU\SOFTWARE\Canon HKCU\SOFTWARE\Carambis HKCU\SOFTWARE\Complitly =>PUP.Optional.PredictAd HKCU\SOFTWARE\Conduit =>PUP.Optional.Conduit HKCU\SOFTWARE\ConduitSearchScopes =>PUP.Optional.Conduit HKCU\SOFTWARE\ECAREME HKCU\SOFTWARE\FLEXnet HKCU\SOFTWARE\Google HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Intel HKCU\SOFTWARE\JEDI-VCL HKCU\SOFTWARE\LexmarkPhoto HKCU\SOFTWARE\Local AppWizard-Generated Applications HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Macrovision HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\Reimage =>PUP.Optional.ReImageRepair HKCU\SOFTWARE\Skype HKCU\SOFTWARE\Smartbar =>PUP.Optional.SmartBar HKCU\SOFTWARE\Softonic =>PUP.Optional.Softonic HKCU\SOFTWARE\Sony Ericsson HKCU\SOFTWARE\Synaptics HKCU\SOFTWARE\TomTom HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Vodafone HKCU\SOFTWARE\Widcomm HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\YahooPartnerToolbar =>Toolbar.YahooPartner HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Conduit =>PUP.Optional.Conduit ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (173) - 35s O43 - CFD: 2012/06/21 15:51:37 - [] D -- C:\Program Files\Adobe O43 - CFD: 2012/02/29 19:52:29 - [] D -- C:\Program Files\Apple Software Update O43 - CFD: 2010/06/30 14:29:49 - [] D -- C:\Program Files\ASUS O43 - CFD: 2010/03/10 14:47:23 - [] D -- C:\Program Files\Atheros O43 - CFD: 2012/06/20 22:32:31 - [] D -- C:\Program Files\AVAST Software O43 - CFD: 2013/02/22 23:19:38 - [] D -- C:\Program Files\Bon de commande SIDN - K-Zam OFFLINE O43 - CFD: 2015/07/20 16:59:40 - [] D -- C:\Program Files\Canon O43 - CFD: 2011/10/03 13:14:33 - [] D -- C:\Program Files\CardDetector O43 - CFD: 2011/12/26 22:26:22 - [] D -- C:\Program Files\Complitly =>PUP.Optional.PredictAd O43 - CFD: 2009/12/15 07:09:45 - [0] D -- C:\Program Files\ComPlus Applications O43 - CFD: 2012/06/21 14:56:09 - [] D -- C:\Program Files\Conduit O43 - CFD: 2012/06/21 14:44:54 - [] D -- C:\Program Files\EasyPHP-5.3.9 O43 - CFD: 2010/03/10 15:03:18 - [] D -- C:\Program Files\EBI O43 - CFD: 2010/06/30 14:36:45 - [] D -- C:\Program Files\EeePC O43 - CFD: 2012/09/23 10:06:36 - [] D -- C:\Program Files\Fichiers communs O43 - CFD: 2013/08/16 22:56:06 - [] D -- C:\Program Files\Free PDF to Word Converter O43 - CFD: 2012/12/14 11:54:43 - [] D -- C:\Program Files\Google O43 - CFD: 2012/10/30 21:01:46 - [] HD -- C:\Program Files\InstallShield Installation Information O43 - CFD: 2010/03/10 14:50:06 - [] D -- C:\Program Files\Intel O43 - CFD: 2012/12/13 19:35:13 - [] D -- C:\Program Files\Intel Desktop Board O43 - CFD: 2014/01/26 16:52:19 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 2012/02/29 19:53:17 - [] D -- C:\Program Files\iPod O43 - CFD: 2012/02/29 19:54:53 - [] D -- C:\Program Files\iTunes O43 - CFD: 2014/01/26 16:56:42 - [] D -- C:\Program Files\McAfee Security Scan O43 - CFD: 2010/03/10 14:30:07 - [] D -- C:\Program Files\Messenger O43 - CFD: 2013/08/16 23:02:44 - [] D -- C:\Program Files\Microsoft O43 - CFD: 2011/12/24 18:00:56 - [] D -- C:\Program Files\Microsoft Analysis Services O43 - CFD: 2009/12/15 07:11:53 - [] D -- C:\Program Files\microsoft frontpage O43 - CFD: 2011/12/24 18:12:40 - [] D -- C:\Program Files\Microsoft Office O43 - CFD: 2013/07/12 11:43:38 - [] D -- C:\Program Files\Microsoft Silverlight O43 - CFD: 2011/12/24 18:12:36 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition O43 - CFD: 2010/03/10 15:00:14 - [] D -- C:\Program Files\Microsoft Sync Framework O43 - CFD: 2011/12/24 18:13:46 - [] D -- C:\Program Files\Microsoft Synchronization Services O43 - CFD: 2011/12/24 18:03:11 - [] D -- C:\Program Files\Microsoft Visual Studio 8 O43 - CFD: 2012/10/13 12:20:37 - [] D -- C:\Program Files\Microsoft Works O43 - CFD: 2015/07/20 15:29:55 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 2011/01/11 21:09:51 - [] D -- C:\Program Files\Movie Maker O43 - CFD: 2015/07/20 14:55:42 - [] D -- C:\Program Files\Mozilla Firefox O43 - CFD: 2015/07/20 14:55:42 - [] D -- C:\Program Files\Mozilla Maintenance Service O43 - CFD: 2011/12/24 18:15:26 - [] D -- C:\Program Files\MSBuild O43 - CFD: 2013/03/05 20:57:04 - [] D -- C:\Program Files\MSECache O43 - CFD: 2009/12/15 07:09:04 - [] D -- C:\Program Files\MSN Gaming Zone O43 - CFD: 2010/03/10 14:23:10 - [] D -- C:\Program Files\MSXML 4.0 O43 - CFD: 2009/12/15 07:10:03 - [] D -- C:\Program Files\NetMeeting O43 - CFD: 2011/10/03 13:17:08 - [] D -- C:\Program Files\OrangeBS O43 - CFD: 2011/01/11 12:15:37 - [] D -- C:\Program Files\Outlook Express O43 - CFD: 2011/01/05 21:33:43 - [] D -- C:\Program Files\Realtek O43 - CFD: 2010/05/06 22:47:36 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 2015/07/20 17:37:14 - [] D -- C:\Program Files\Reimage =>PUP.Optional.ReImageRepair O43 - CFD: 2009/12/15 07:10:14 - [] D -- C:\Program Files\Services en ligne O43 - CFD: 2012/09/23 10:06:36 - [] RD -- C:\Program Files\Skype O43 - CFD: 2012/12/13 20:30:36 - [] D -- C:\Program Files\Synaptics O43 - CFD: 2011/10/13 13:37:42 - [] D -- C:\Program Files\VideoLAN O43 - CFD: 2011/08/23 14:55:04 - [] D -- C:\Program Files\Windows Live O43 - CFD: 2010/03/10 14:58:23 - [] D -- C:\Program Files\Windows Live SkyDrive O43 - CFD: 2010/03/10 15:02:47 - [] D -- C:\Program Files\Windows Media Connect 2 O43 - CFD: 2010/03/10 15:03:10 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 2009/12/15 07:09:01 - [] D -- C:\Program Files\Windows NT O43 - CFD: 2009/12/15 07:10:16 - [0] HD -- C:\Program Files\WindowsUpdate O43 - CFD: 2009/12/15 07:11:53 - [] D -- C:\Program Files\xerox O43 - CFD: 2010/06/30 15:03:34 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires O43 - CFD: 2010/06/30 14:30:02 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ASUS O43 - CFD: 2015/07/20 15:58:42 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Canon MG5500 series Manual O43 - CFD: 2015/07/20 16:06:43 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Canon Utilities O43 - CFD: 2014/01/26 16:56:45 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage O43 - CFD: 2012/06/21 14:44:37 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\EasyPHP 5.3.9 O43 - CFD: 2015/07/20 16:59:50 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Enregistrement utilisateur de Canon MG5500 series O43 - CFD: 2010/05/06 22:56:25 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Game Park O43 - CFD: 2012/12/14 12:51:10 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\iTunes O43 - CFD: 2009/12/15 07:09:10 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux O43 - CFD: 2011/11/29 19:49:27 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Lexmark 840 Series O43 - CFD: 2014/01/26 16:56:59 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\McAfee Security Scan Plus O43 - CFD: 2011/12/24 18:16:34 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Office O43 - CFD: 2013/07/12 09:29:29 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Silverlight O43 - CFD: 2012/10/13 12:20:38 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Works O43 - CFD: 2011/10/03 13:21:43 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Orange Business Services O43 - CFD: 2010/03/10 14:15:01 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration O43 - CFD: 2015/07/20 17:36:26 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Reimage Repair =>PUP.Optional.ReImageRepair O43 - CFD: 2011/12/24 18:16:34 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\SharePoint O43 - CFD: 2012/09/23 10:06:36 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Skype O43 - CFD: 2011/10/13 13:38:33 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN O43 - CFD: 2011/07/13 00:04:58 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Windows Live O43 - CFD: 2012/06/23 22:37:26 - [] D -- C:\Documents and Settings\All Users\Application Data\Adobe O43 - CFD: 2012/02/29 19:51:07 - [] D -- C:\Documents and Settings\All Users\Application Data\Apple O43 - CFD: 2012/02/29 19:53:06 - [] D -- C:\Documents and Settings\All Users\Application Data\Apple Computer O43 - CFD: 2010/03/10 14:47:28 - [] D -- C:\Documents and Settings\All Users\Application Data\Atheros O43 - CFD: 2015/07/20 20:57:27 - [] D -- C:\Documents and Settings\All Users\Application Data\AVAST Software O43 - CFD: 2011/12/26 22:26:27 - [0] D -- C:\Documents and Settings\All Users\Application Data\Babylon =>PUP.Optional.Babylon O43 - CFD: 2015/07/20 16:14:10 - [] HD -- C:\Documents and Settings\All Users\Application Data\Canon Easy-WebPrint EX O43 - CFD: 2015/07/20 15:26:45 - [] HD -- C:\Documents and Settings\All Users\Application Data\CanonIJETV O43 - CFD: 2015/07/20 16:13:03 - [] HD -- C:\Documents and Settings\All Users\Application Data\CanonIJMIG O43 - CFD: 2015/07/20 16:13:04 - [] D -- C:\Documents and Settings\All Users\Application Data\CanonIJPLM O43 - CFD: 2015/07/20 16:11:30 - [] HD -- C:\Documents and Settings\All Users\Application Data\CanonIJQuickMenu O43 - CFD: 2015/07/20 16:06:36 - [] D -- C:\Documents and Settings\All Users\Application Data\CanonIJWSpt O43 - CFD: 2010/03/10 15:03:25 - [0] D -- C:\Documents and Settings\All Users\Application Data\EBI O43 - CFD: 2011/01/10 03:38:25 - [] D -- C:\Documents and Settings\All Users\Application Data\FLEXnet O43 - CFD: 2012/12/14 11:54:25 - [] D -- C:\Documents and Settings\All Users\Application Data\Google O43 - CFD: 2011/01/10 03:38:25 - [] D -- C:\Documents and Settings\All Users\Application Data\Macrovision O43 - CFD: 2012/06/21 15:32:12 - [] D -- C:\Documents and Settings\All Users\Application Data\McAfee O43 - CFD: 2012/06/21 15:32:16 - [] D -- C:\Documents and Settings\All Users\Application Data\McAfee Security Scan O43 - CFD: 2013/08/16 23:02:44 - [] SD -- C:\Documents and Settings\All Users\Application Data\Microsoft O43 - CFD: 2013/07/12 10:01:02 - [] D -- C:\Documents and Settings\All Users\Application Data\Microsoft Help O43 - CFD: 2012/06/11 07:39:09 - [] D -- C:\Documents and Settings\All Users\Application Data\Mozilla O43 - CFD: 2010/05/06 22:56:17 - [] D -- C:\Documents and Settings\All Users\Application Data\OberonGameConsole O43 - CFD: 2010/03/10 14:47:50 - [] D -- C:\Documents and Settings\All Users\Application Data\Ralink Driver O43 - CFD: 2015/07/20 17:37:49 - [] D -- C:\Documents and Settings\All Users\Application Data\Reimage Protector =>PUP.Optional.ReImageRepair O43 - CFD: 2010/03/10 15:03:25 - [0] D -- C:\Documents and Settings\All Users\Application Data\RSMR O43 - CFD: 2012/09/23 10:06:50 - [] D -- C:\Documents and Settings\All Users\Application Data\Skype O43 - CFD: 2012/12/13 20:29:21 - [] D -- C:\Documents and Settings\All Users\Application Data\Synaptics O43 - CFD: 2011/01/10 03:38:29 - [] D -- C:\Documents and Settings\All Users\Application Data\Vodafone O43 - CFD: 2010/03/10 14:23:48 - [] D -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage O43 - CFD: 2012/02/29 19:54:53 - [] D -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521} O43 - CFD: 2012/06/21 15:52:09 - [] D -- C:\Program Files\Fichiers communs\Adobe O43 - CFD: 2012/06/21 15:36:16 - [] D -- C:\Program Files\Fichiers communs\Adobe AIR O43 - CFD: 2012/02/29 19:53:10 - [] D -- C:\Program Files\Fichiers communs\Apple O43 - CFD: 2011/12/24 18:13:42 - [] D -- C:\Program Files\Fichiers communs\DESIGNER O43 - CFD: 2013/08/16 22:54:07 - [] D -- C:\Program Files\Fichiers communs\France Telecom O43 - CFD: 2010/06/30 14:29:33 - [] D -- C:\Program Files\Fichiers communs\InstallShield O43 - CFD: 2012/06/22 19:30:44 - [] D -- C:\Program Files\Fichiers communs\Microsoft Shared O43 - CFD: 2009/12/15 07:10:02 - [] D -- C:\Program Files\Fichiers communs\MSSoap O43 - CFD: 2009/12/14 23:06:08 - [] D -- C:\Program Files\Fichiers communs\ODBC O43 - CFD: 2009/12/15 07:10:03 - [] D -- C:\Program Files\Fichiers communs\Services O43 - CFD: 2012/09/23 10:06:36 - [] D -- C:\Program Files\Fichiers communs\Skype O43 - CFD: 2009/12/14 23:06:05 - [] D -- C:\Program Files\Fichiers communs\SpeechEngines O43 - CFD: 2012/11/20 09:57:56 - [] D -- C:\Program Files\Fichiers communs\System O43 - CFD: 2010/03/10 14:56:02 - [] D -- C:\Program Files\Fichiers communs\Windows Live O43 - CFD: 2012/06/21 21:07:46 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Adobe O43 - CFD: 2012/03/24 22:41:58 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Apple Computer O43 - CFD: 2015/07/20 21:16:24 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\AVAST Software O43 - CFD: 2011/12/26 22:26:26 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Babylon =>PUP.Optional.Babylon O43 - CFD: 2011/12/26 22:27:07 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\BabylonToolbar =>PUP.Optional.Babylon O43 - CFD: 2015/07/20 16:12:13 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Canon O43 - CFD: 2015/07/20 16:09:30 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Canon Easy-WebPrint EX O43 - CFD: 2011/07/04 15:43:06 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Carambis O43 - CFD: 2011/12/26 22:26:21 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Complitly =>PUP.Optional.PredictAd O43 - CFD: 2012/12/14 16:55:42 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\DriverFinder =>PUP.Optional.DriverFinder O43 - CFD: 2011/01/09 22:02:29 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\FLEXnet O43 - CFD: 2012/06/21 21:17:41 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\GetRightToGo O43 - CFD: 2013/01/03 18:42:28 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Google O43 - CFD: 2009/12/15 07:14:54 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Identities O43 - CFD: 2010/03/10 14:47:15 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\InstallShield O43 - CFD: 2012/06/21 17:48:33 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\K-ZAM-OFFLINE O43 - CFD: 2012/07/05 21:33:26 - [0] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\kujytuo O43 - CFD: 2011/01/05 21:51:34 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Macromedia O43 - CFD: 2015/07/20 16:43:16 - [] SD -- C:\Documents and Settings\ssssssssssssssss\Application Data\Microsoft O43 - CFD: 2011/03/04 21:24:53 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla O43 - CFD: 2012/09/23 10:07:37 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Skype O43 - CFD: 2012/12/14 12:22:32 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Synaptics O43 - CFD: 2013/07/17 18:34:44 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\TomTom O43 - CFD: 2012/02/29 19:32:26 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\vlc O43 - CFD: 2011/01/10 21:54:02 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Vodafone O43 - CFD: 2015/07/20 21:51:21 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\ZHP O43 - CFD: 2013/06/03 19:55:46 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Adobe O43 - CFD: 2015/07/19 20:45:31 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Akamai O43 - CFD: 2012/02/29 19:52:33 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Apple O43 - CFD: 2013/03/05 20:49:35 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Apple Computer O43 - CFD: 2010/05/06 22:56:11 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\ApplicationHistory O43 - CFD: 2011/12/26 22:26:28 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Babylon =>PUP.Optional.Babylon O43 - CFD: 2012/12/13 14:57:51 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Conduit O43 - CFD: 2013/07/17 18:33:14 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Downloaded Installations O43 - CFD: 2015/07/20 16:08:40 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Google O43 - CFD: 2011/05/10 15:52:14 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Identities O43 - CFD: 2013/08/16 23:02:44 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Microsoft O43 - CFD: 2010/03/10 15:03:59 - [0] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Microsoft Help O43 - CFD: 2011/03/04 21:24:26 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Mozilla O43 - CFD: 2011/11/29 19:42:18 - [0] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\PackageAware =>PUP.Optional.BearShare O43 - CFD: 2013/01/12 15:03:30 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\PCHealth O43 - CFD: 2010/03/10 15:57:39 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Skyhook Wireless O43 - CFD: 2012/06/21 21:07:46 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Temp O43 - CFD: 2013/08/16 23:04:57 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\TomTom O43 - CFD: 2011/01/10 03:37:53 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\{07CF705A-5E09-4293-B4C7-0DA63E4ADA83} O43 - CFD: 2010/03/10 15:09:56 - [] RD -- C:\Documents and Settings\ssssssssssssssss\Menu Démarrer\Programmes\Accessoires O43 - CFD: 2012/02/29 19:33:58 - [] RD -- C:\Documents and Settings\ssssssssssssssss\Menu Démarrer\Programmes\Démarrage ---\\ Enumération des clés de registre StartupReg (SMSR) (O53) (3) - 3s O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] . (...) -- C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\MsnMsgr [Key] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe O53 - SMSR:HKLM\...\startupreg\Persistence [Key] . (.Intel Corporation - persistence Module.) -- C:\WINDOWS\system32\igfxpers.exe ---\\ Liste des pilotes du système (SDL) (O58) (59) - 88s O58 - SDL:2009/11/18 01:16:00 A . (.Creative - Creative WDM 3D Audio Driver.) -- C:\WINDOWS\System32\drivers\Ambfilt.sys [1691480] O58 - SDL:2010/03/31 03:40:20 A . (...) -- C:\WINDOWS\System32\drivers\AsUpIO.sys [11520] O58 - SDL:2008/04/08 18:59:28 A . (.ASUSTeK Computer Inc. - ASUS ACPI Device Driver.) -- C:\WINDOWS\System32\drivers\ASUSACPI.SYS [10752] O58 - SDL:1999/03/06 14:38:28 A . (...) -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS [6144] O58 - SDL:2015/07/20 21:01:23 A . (.AVAST Software - avast! HWID.) -- C:\WINDOWS\System32\drivers\aswHwid.sys [24016] O58 - SDL:2015/07/20 21:01:23 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys [76000] O58 - SDL:2015/07/20 21:01:23 A . (.AVAST Software - avast! TDI Redirect Driver.) -- C:\WINDOWS\System32\drivers\aswRdr.sys [55200] O58 - SDL:2015/07/20 21:01:23 A . (.AVAST Software - avast! Revert.) -- C:\WINDOWS\System32\drivers\aswRvrt.sys [49776] O58 - SDL:2015/07/20 21:00:55 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\WINDOWS\System32\drivers\aswSnx.sys [788784] O58 - SDL:2015/07/20 21:01:23 A . (.AVAST Software - avast! self protection module.) -- C:\WINDOWS\System32\drivers\aswSP.sys [433264] O58 - SDL:2015/07/20 21:01:23 A . (.AVAST Software - avast! Stream Filter.) -- C:\WINDOWS\System32\drivers\aswStmXP.sys [161472] O58 - SDL:2015/07/20 21:01:23 A . (.AVAST Software - avast! TDI Filter Driver.) -- C:\WINDOWS\System32\drivers\aswTdi.sys [57888] O58 - SDL:2015/07/20 21:01:23 A . (.AVAST Software - avast! VM Monitor.) -- C:\WINDOWS\System32\drivers\aswVmm.sys [208664] O58 - SDL:2009/08/12 02:04:30 A . (.Atheros Communications, Inc. - Driver for Atheros Wireless Network Adapter.) -- C:\WINDOWS\System32\drivers\athw.sys [1582624] O58 - SDL:2008/09/26 02:30:12 A . (.Broadcom Corporation. - Broadcom Bluetooth IT Manager Filter.) -- C:\WINDOWS\System32\drivers\btwsecfl.sys [91176] O58 - SDL:2008/04/14 14:00:00 A . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\System32\drivers\cinemst2.sys [262528] O58 - SDL:2008/04/14 14:00:00 A . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\System32\drivers\cpqdap01.sys [11776] O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- C:\WINDOWS\System32\drivers\dmboot.sys [800256] O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\System32\drivers\dmio.sys [154496] O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\System32\drivers\dmload.sys [5888] O58 - SDL:2009/06/15 13:45:36 RA . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\ewusbfake.sys [102656] O58 - SDL:2009/06/15 13:45:36 RA . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\ewusbmdm.sys [102400] O58 - SDL:2009/05/18 14:17:00 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\WINDOWS\System32\drivers\GEARAspiWDM.sys [26600] O58 - SDL:2008/04/14 14:00:00 A . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [144384] O58 - SDL:2009/06/04 12:43:16 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\WINDOWS\System32\drivers\iaStor.sys [330264] O58 - SDL:2009/09/24 11:55:32 A . (.Intel Corporation - Intel Graphics Miniport Driver.) -- C:\WINDOWS\System32\drivers\igxpmp32.sys [6301696] O58 - SDL:2008/11/03 09:03:28 A . (. - Keyboard Filter Driver.) -- C:\WINDOWS\System32\drivers\kbfiltr.sys [13880] O58 - SDL:2009/07/27 09:09:52 A . (.Atheros Communications, Inc. - Atheros AR813x/AR815x PCI-E Ethernet Contro.) -- C:\WINDOWS\System32\drivers\l1c51x86.sys [44032] O58 - SDL:2009/11/18 01:17:00 A . (.Creative Technology Ltd. - Creative WDM Audio Driver (32-bit).) -- C:\WINDOWS\System32\drivers\Monfilt.sys [1395800] O58 - SDL:2011/08/02 18:38:44 A . (.Apple Inc. - Apple Mobile Device Ethernet.) -- C:\WINDOWS\System32\drivers\netaapl.sys [18432] O58 - SDL:2008/04/14 14:00:00 A . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\nikedrv.sys [12032] O58 - SDL:2008/04/14 14:00:00 A . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- C:\WINDOWS\System32\drivers\ptilink.sys [17792] O58 - SDL:2008/04/14 14:00:00 A . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\System32\drivers\rio8drv.sys [12032] O58 - SDL:2008/04/14 14:00:00 A . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\riodrv.sys [12032] O58 - SDL:2010/04/27 10:10:52 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RtkHDAud.sys [6031904] O58 - SDL:2010/02/04 17:08:30 A . (.Realtek Semiconductor Corp. - Realtek UVC Driver for XP/Vista/Win7.) -- C:\WINDOWS\System32\drivers\rtsuvc.sys [73088] O58 - SDL:2008/04/14 14:00:00 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [20480] O58 - SDL:2008/04/14 14:00:00 A . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\System32\drivers\tsbvcap.sys [21376] O58 - SDL:2011/08/02 18:38:56 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\WINDOWS\System32\drivers\usbaapl.sys [42496] O58 - SDL:2008/04/14 14:00:00 A . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\System32\drivers\vdmindvd.sys [58112] O58 - SDL:2010/03/10 15:57:40 A . (.Skyhook Wireless - WPS NDIS User Mode I/O Driver.) -- C:\WINDOWS\System32\drivers\wpsnuio.sys [13696] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ansi.sys [9037] O58 - SDL:2009/08/12 02:04:30 A . (.Atheros Communications, Inc. - Driver for Atheros Wireless Network Adapter.) -- C:\WINDOWS\System32\athw.sys [1582624] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\country.sys [27097] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\himem.sys [4912] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\key01.sys [42809] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\keyboard.sys [42537] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos.sys [27916] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos404.sys [29146] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos411.sys [29370] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos412.sys [29274] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos804.sys [29146] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio.sys [34000] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio404.sys [34560] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio411.sys [35648] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio412.sys [35424] O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio804.sys [34560] O58 - SDL:2008/02/20 03:52:54 A . (.Printing Communications Assoc., Inc. (PCAUSA) - PCAUSA NDIS 5.0 MPR Protocol Driver.) -- C:\WINDOWS\System32\pcampr5.sys [34688] O58 - SDL:2008/02/20 03:52:54 A . (.Printing Communications Assoc., Inc. (PCAUSA) - PCAUSA NDIS 5.0 Protocol Driver.) -- C:\WINDOWS\System32\pcandis5.sys [32128] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (7) - 92s O61 - LFC: 2015/07/19 20:51:07 A . (..) -- C:\Documents and Settings\ssssssssssssssss\Mes documents\Téléchargements\Firefox Setup Stub 39.0.exe [242904] O61 - LFC: 2015/07/20 15:08:22 A . (.Application Installer Software.) -- C:\Documents and Settings\ssssssssssssssss\Mes documents\Téléchargements\installer_flash_player_Dutch.exe [820240] O61 - LFC: 2015/07/20 16:57:34 A . (.Reimage®.) -- C:\Documents and Settings\ssssssssssssssss\Mes documents\Téléchargements\ReimageRepair.exe [772016] =>PUP.Optional.ReImageRepair O61 - LFC: 2015/07/20 16:36:36 A . (..) -- C:\Documents and Settings\ssssssssssssssss\Mes documents\Téléchargements\win-mg5500-1_1-mcd.exe [52039216] O61 - LFC: 2015/07/19 20:43:17 A . (.Akamai Technologies, Inc..) -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Akamai\installer_no_upload_silent.exe [10475384] O61 - LFC: 2015/07/19 20:52:15 A . (.ClientConnect Ltd..) -- C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\extensions\{8e5025c2-8ea3-430d-80b8-a14151068a6d}\Plugins\npFirefoxPlugin.dll [216384] =>PUP.Optional.ClientConnect O61 - LFC: 2015/07/19 20:52:09 A . (.ClientConnect Ltd..) -- C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\extensions\{8e5025c2-8ea3-430d-80b8-a14151068a6d}\ctypes\FirefoxCtype.dll [372000] =>PUP.Optional.ClientConnect ---\\ Menu de démarrage Internet (SMI) (O68) (8) - 2s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe ---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (144) - 144s O69 - SBI: C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\searchplugins\conduit.xml O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284..clientLogServiceUrl", "http://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284..uninstallLogServiceUrl", "http://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.AboutPrivacyUrl", "http://www.conduit.com/privacy/default.aspx"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.GroupingServiceUrl", "http://grouping.services.conduit.com/"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.HomepageBeforeUnload", "http://search.conduit.com/?ctid=CT3128284&SearchSource=13"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.InstallationType", "ConduitNSISIntegration"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.IsProtectorsInit", true); =>PUP.Optional.MocaFlix O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.LanguagePackServiceUrl", "http://translation.users.conduit.com/Translation.ashx"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.SearchFromAddressBarUrl", "http://search.conduit.com/ResultsExt.aspx?ctid=CT3128284&SearchSource=2&q="); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.SearchInNewTabServiceUrl", "http://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID&UM=UM_ID"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.SearchProtectorEnabled", false); =>PUP.Optional.SearchProtect O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.SearchProtectorToolbarDisabled", false); =>PUP.Optional.SearchProtect O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.TBHomePageUrl", "http://search.conduit.com/?ctid=CT3128284&SearchSource=13"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,client.conduit-storage.com,OurToolb[...] =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.backendstorage.http://storage_conduit_com/marketplace/83/6d/8399d181-be98-42f2-b035-1616f617316d/.pricesparro[...] =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.backendstorage.mam_gk_appstate_pricegong", "6F6E"); =>PUP.Optional.PriceGong O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.conduit.com;apps.conduit.com;se[...] =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.http___storage_conduit_com_marketplace_83_6d_8399d181_be98_42f2_b035_1616f617316d_.pricesparrowuuid.from_oldb[...] =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.installType", "ConduitNSISIntegration"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.isPerformedSmartBarTransition", "true"); =>PUP.Optional.SmartBar O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.lastNewTabSettings", "{\"isEnabled\":true,\"newTabUrl\":\"http://www.trovigo.com/?gd=&ctid=CT3128284&octid=CT[...] =>PUP.Optional.Trovigo O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.mam_gk_appstate_pricegong.from_oldbar.enc", "b24="); =>PUP.Optional.PriceGong O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.myStuffSearchUrl", "http://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&oct[...] =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.myStuffServiceUrl", "http://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE[...] =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.originalSearchAddressUrl", "http://search.babylon.com/?AF=108988&babsrc=adbartrp&mntrId=bccde6950000000000002[...] =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.searchInNewTabValue", "https://www.trovigo.com/?gd=&ctid=CT3128284&octid=CT3128284&ISID=ISID_ID&SearchSource=[...] =>PUP.Optional.Trovigo O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.searchProtectorDialogDelayInSec", 10); =>PUP.Optional.SearchProtect O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.searchProtectorEnableByLogin", true); =>PUP.Optional.SearchProtect O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.smartbar.CTID", "CT3128284"); =>PUP.Optional.SmartBar O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.smartbar.Uninstall", "0"); =>PUP.Optional.SmartBar O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.smartbar.toolbarName", "01NET.com "); =>PUP.Optional.SmartBar O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ConduitHomepagesList", "http://search.conduit.com/?ctid=CT3128284&SearchSource=13"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ConduitSearchList", "01NET.com Customized Web Search"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://Settings.toolbar.search.conduit.com/root/CT3128284/CT3128284", "\"8ae246463f38b6a54b90fd5a[...] =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://alerts.conduit-services.com/root/1524266/1519569/FR", "\"0\""); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://appsmetadata.toolbar.conduit-services.com/?ctid=CT3128284", "\"1360859319\""); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=fr", "y/LORlR12DbewW+JdTT[...] =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=fr", "S+IiKFOIcJRQQUQYxAuT[...] =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=fr", "Piuk0Y+XrAdQh3bNgUm[...] =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=fr", "36O4HhdlE7RKWjfvnlLR2g[...] =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.alert.conduit-services.com/alert/dlg.pkg", "\"8076e3ce381dcd1:0\""); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.14.0.1", "\"0d648794549cd1:0\"")[...] =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.14.1.0", "\"0e0a4327275cd1:0\"")[...] =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.15.1.0", "\"0343677cfb1cd1:0\"")[...] =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.16.0.100", "\"0343677cfb1cd1:0\"[...] =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.16.0.3", "\"0343677cfb1cd1:0\"")[...] =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.18.0.7", "\"0343677cfb1cd1:0\"")[...] =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.19.0.3", "\"dfe74040abc2ce1:0\""[...] =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://newtab.conduit-hosting.com/newtab/?ctid=CT3128284", "\"1deff-277-fb07dd00\""); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://servicemap.conduit-services.com/Toolbar/?ownerId=CT3128284", "\"7097fd37277b6a1b754b125bd1[...] =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://translation.toolbar.conduit-services.com/?locale=EB_LOCALE", "\"5f557fa45ff1a13a3b53882c18[...] =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://translation.toolbar.conduit-services.com/?locale=fr", "\"0a6cd117206c07db62650c3450b78383\[...] =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.LatestLibsPath", "file:///C:\\Documents and Settings\\ssssssssssssssss\\Application Data\\Mozilla\\Fir[...] =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.LatestToolbarVersionInstalled", "3.14.0.1"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.MiniIPageGadgetSize.http://pricegong.conduitapps.com/v4//agreement/agree.html#pg_ext_msg_key_17c7ce34,[...] =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "http://search.babylon.com/?AF=108988&babsrc=adbartrp&mntrId=bccde69500[...] =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ToolbarsList", "CT3128284"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ToolbarsList2", "CT3128284"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ToolbarsList4", "CT3128284"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.globalUserId", "83aa1c78-c040-4cb6-9b46-b2f7d80edd16"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.keywordURLSelectedCTID", "CT3128284"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.alertDialogsGetterLastCheckTime", "Thu Jun 21 2012 14:57:21 GMT+0200"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.alertEnabled", true); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.alertInfoInterval", 1440); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.alertInfoLastCheckTime", "Thu Jun 21 2012 17:53:05 GMT+0200"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.clientsServerUrl", "http://alert.client.conduit.com"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.locale", "en"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.loginIntervalMin", 1440); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.loginLastCheckTime", "Thu Jun 21 2012 14:57:14 GMT+0200"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.loginLastUpdateTime", "1313487611"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.servicesServerUrl", "http://alert.services.conduit.com"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.showTrayIcon", false); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.userCloseIntervalMin", 300); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.userId", "937a36ef-7899-47e3-a4ca-0dbe25255fc2"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.originalHomepage", "http://google.fr"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.originalSearchEngine", "Google"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("Smartbar.SearchFromAddressBarSavedUrl", "http://search.babylon.com/?AF=108988&babsrc=adbartrp&mntrId=bccde6950000000000[...] =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("Smartbar.keywordURLSelectedCTID", "CT3128284"); =>PUP.Optional.SmartBar O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("browser.babylon.HPOnNewTab", "search.babylon.com"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("browser.newtab.url", "https://www.trovigo.com/?gd=&ctid=CT3128284&octid=CT3128284&ISID=ISID_ID&SearchSource=15&CUI=UN34[...] =>PUP.Optional.Trovigo O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("browser.search.defaulturl", "http://search.conduit.com/ResultsExt.aspx?ctid=CT3128284&SearchSource=3&q={searchTerms}"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("browser.search.order.1", "Search the web (Babylon)"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.admin", false); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.aflt", "babsst"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.babExt", ""); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.babTrack", "affID=108988"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.bbDpng", 20); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.dfltLng", "en"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.dfltSrch", true); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.hmpg", true); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.id", "bccde69500000000000020cf305c8b6c"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.instlDay", "15404"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.instlRef", "sst"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.keyWordUrl", "http://search.babylon.com/?AF=108988&babsrc=adbartrp&mntrId=bccde69500000000000[...] =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.lastDP", 20); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.lastVrsnTs", "1.5.3.1718:50:44"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.mntrFFxVrsn", "39.0"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.newTab", true); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.newTabUrl", "http://search.babylon.com/?babsrc=NT_FFUP"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.noFFXTlbr", false); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.propectorlck", 175981948); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.prtkDS", 0); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.prtkHmpg", 0); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.prtnrId", "babylon"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.ptch_0717", true); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.smplGrp", "azb"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.srcExt", "ss"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.storage\\storage\\mpvinpagemutex", "96e2b5fe1f0e7f4b210b69991a1afbe7@@@Mon Jul 20 2015 21:46:[...] =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.tlbrId", "base"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.vrsn", "1.5.3.17"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.vrsnTs", "1.5.3.1718:50:44"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.vrsni", "1.5.3.17"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.aflt", "babsst"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.babExt", ""); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.babTrack", "affID=108988"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.hardId", "bccde69500000000000020cf305c8b6c"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.id", "bccde69500000000000020cf305c8b6c"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.instlDay", "15404"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.instlRef", "sst"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.newTab", false); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.prdct", "BabylonToolbar"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.prtnrId", "babylon"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.smplGrp", "none"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.srcExt", "ss"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.tlbrId", "base"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.vrsn", "1.5.3.17"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.5.3.1718:50:44"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.vrsni", "1.5.3.17"); =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.enabledAddons", "2020Player_IKEA%402020Technologies.com:5.0.94.1,ffxtlbr%40babylon.com:1.2.0,%7B8e5025c2-8ea[...] =>PUP.Optional.Babylon O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("smartbar.addressBarOwnerCTID", "CT3128284"); =>PUP.Optional.SmartBar O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("smartbar.conduitHomepageList", "http://search.conduit.com/?ctid=CT3128284&SearchSource=13"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("smartbar.conduitSearchAddressUrlList", "http://search.conduit.com/ResultsExt.aspx?ctid=CT3128284&SearchSource=2&q=,http[...] =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("smartbar.homepageList", "http://search.conduit.com/?ctid=CT3128284&SearchSource=13"); =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("smartbar.machineId", "F4FMCMKQVP5M7Q7AG0UNVK9DWLJVTUKOMIO7+ZWIV3QLK+FE2JLK19MW0DAVJ1F4BZVYFQM0/BAZM2ZBSGGA6A"); =>PUP.Optional.SmartBar O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("smartbar.searchAddressUrlList", "http://search.conduit.com/ResultsExt.aspx?ctid=CT3128284&SearchSource=2&q=,http://sear[...] =>PUP.Optional.Conduit O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.storage\\storage\\mpvinpagemutex", "bd651b0b350a2f31dbbd1e0379e5d968@@@Mon Jul 20 2015 21:53:[...] =>PUP.Optional.Babylon O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} [DefaultScope] - (Search the web (Babylon)) - http://search.babylon.com/ =>PUP.Optional.Babylon O69 - SBI: SearchScopes [HKCU] {81466A4D-5DCF-45DC-BC0B-86485A5F1B2B} - (Google) - http://www.google.com/ O69 - SBI: SearchScopes [HKCU] {afdbddaa-5d3f-42ee-b79c-185a7020515b} - (01NET.com Customized Web Search) - http://search.conduit.com/ =>PUP.Optional.Conduit ---\\ Enumère les services démarrés par Svchost (SSS) (O83) (39) - 10s O83 - Search Svchost Services: AppMgmt (AppMgmt) . (...) -- C:\WINDOWS\System32\appmgmts.dll [0] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496] O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [78336] O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464] O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576] O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488] O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\system32\ersvc.dll [23040] O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - .) -- C:\WINDOWS\system32\es.dll [253952] O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] O83 - Search Svchost Services: HidServ (HidServ) . (.Microsoft Corporation - HID Audio Service.) -- C:\WINDOWS\system32\hidserv.dll [21504] O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [99840] O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [132096] O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\system32\msgsvc.dll [33792] O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144] O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- C:\WINDOWS\system32\mswsock.dll [247808] O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [53248] O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560] O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [18944] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\WINDOWS\system32\ipnathlp.dll [332800] O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\system32\tapisrv.dll [249856] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112] O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176] O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483840] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\wmisvc.dll [145408] O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896] O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024] O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\system32\qmgr.dll [409088] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll [38400] O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- C:\WINDOWS\system32\mspmsnsv.dll [27136] ---\\ Scan Additionnel (O88) (41) - 0s C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe =>PUP.Optional.ReImageRepair C:\Program Files\Reimage\Reimage Protector\ReiSystem.exe =>PUP.Optional.ReImageRepair C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\searchplugins\conduit.xml =>PUP.Optional.Conduit C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\extensions\ffxtlbr@babylon.com =>PUP.Optional.Babylon C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\extensions\{8e5025c2-8ea3-430d-80b8-a14151068a6d} =>PUP.Optional.ClientConnect C:\Documents and Settings\ssssssssssssssss\Application Data\Complitly\Complitly.dll =>PUP.Optional.PredictAd HKLM\SYSTEM\CurrentControlSet\Services\ReimageRealTimeProtector =>PUP.Optional.ReImageRepair C:\WINDOWS\Tasks\Reimage Reminder.job =>PUP.Optional.ReImageRepair C:\WINDOWS\Tasks\ReimageUpdater.job =>PUP.Optional.ReImageRepair HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BabylonToolbar =>PUP.Optional.Babylon HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Reimage Repair =>PUP.Optional.ReImageRepair HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4FFBB818-B13C-11E0-931D-B2664824019B}_is1 =>PUP.Optional.PredictAd HKLM\SOFTWARE\Babylon =>PUP.Optional.Babylon HKLM\SOFTWARE\BabylonToolbar =>PUP.Optional.Babylon HKLM\SOFTWARE\Conduit =>PUP.Optional.Conduit HKLM\SOFTWARE\Reimage =>PUP.Optional.ReImageRepair HKLM\SOFTWARE\SimplyGen =>PUP.Optional.PredictAd HKCU\SOFTWARE\BabylonToolbar =>PUP.Optional.Babylon HKCU\SOFTWARE\Complitly =>PUP.Optional.PredictAd HKCU\SOFTWARE\Conduit =>PUP.Optional.Conduit HKCU\SOFTWARE\ConduitSearchScopes =>PUP.Optional.Conduit HKCU\SOFTWARE\Reimage =>PUP.Optional.ReImageRepair HKCU\SOFTWARE\Smartbar =>PUP.Optional.SmartBar HKCU\SOFTWARE\Softonic =>PUP.Optional.Softonic HKCU\SOFTWARE\YahooPartnerToolbar =>Toolbar.YahooPartner HKCU\SOFTWARE\AppDataLow\Software\Conduit =>PUP.Optional.Conduit =>PUP.Optional.Conduit C:\Program Files\Complitly =>PUP.Optional.PredictAd C:\Program Files\Reimage =>PUP.Optional.ReImageRepair C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Reimage Repair =>PUP.Optional.ReImageRepair C:\Documents and Settings\All Users\Application Data\Babylon =>PUP.Optional.Babylon C:\Documents and Settings\All Users\Application Data\Reimage Protector =>PUP.Optional.ReImageRepair C:\Documents and Settings\ssssssssssssssss\Application Data\Babylon =>PUP.Optional.Babylon C:\Documents and Settings\ssssssssssssssss\Application Data\BabylonToolbar =>PUP.Optional.Babylon C:\Documents and Settings\ssssssssssssssss\Application Data\Complitly =>PUP.Optional.PredictAd C:\Documents and Settings\ssssssssssssssss\Application Data\DriverFinder =>PUP.Optional.DriverFinder C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Babylon =>PUP.Optional.Babylon C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\PackageAware =>PUP.Optional.BearShare C:\Documents and Settings\ssssssssssssssss\Mes documents\Téléchargements\ReimageRepair.exe =>PUP.Optional.ReImageRepair C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\extensions\{8e5025c2-8ea3-430d-80b8-a14151068a6d}\Plugins\npFirefoxPlugin.dll =>PUP.Optional.ClientConnect C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\extensions\{8e5025c2-8ea3-430d-80b8-a14151068a6d}\ctypes\FirefoxCtype.dll =>PUP.Optional.ClientConnect ---\\ Récapitulatif des éléments trouvées sur votre station (14) - 1s http://www.nicolascoolman.fr/rogue-reimagerepair/ =>PUP.Optional.ReImageRepair http://www.nicolascoolman.fr/adware-predictad/ =>PUP.Optional.PredictAd http://www.nicolascoolman.fr/toolbar-conduit/ =>PUP.Optional.Conduit http://www.nicolascoolman.fr/pup-babylon/ =>PUP.Optional.Babylon http://www.nicolascoolman.fr/blog =>PUP.Optional.ClientConnect http://www.nicolascoolman.fr/blog =>PUP.Optional.DriverFinder http://www.nicolascoolman.fr/hijacker-smartbar/ =>PUP.Optional.SmartBar http://www.nicolascoolman.fr/blog =>PUP.Optional.Softonic http://www.nicolascoolman.fr/blog =>Toolbar.YahooPartner http://www.nicolascoolman.fr/pup-bearshare/ =>PUP.Optional.BearShare http://www.nicolascoolman.fr/pup-mocaflix/ =>PUP.Optional.MocaFlix http://www.nicolascoolman.fr/pup-searchprotect/ =>PUP.Optional.SearchProtect http://www.nicolascoolman.fr/adware-pricegong/ =>PUP.Optional.PriceGong http://www.nicolascoolman.fr/hijacker-trovigo/ =>PUP.Optional.Trovigo ~ End of the scan, 67861 items in 624 seconds (867)(0)()