~ ZHPDiag v2015.2.9.132 Par Nicolas Coolman (2015/09/2) ~ Démarré par Rudy (Administrator) (2015/09/02 19:43:04) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Windows\system32\config\systemprofile\Desktop\ZHPDiag.txt ~ Rapport: C:\Windows\system32\config\systemprofile\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Sans échec avec prise en charge du réseau (Fail-safe with network boot) Windows VISTA, 32-bit Service Pack 1 (Build 6001) ---\\ Navigateurs Internet (2) - 0s GCIE: Google Chrome v44.0.2403.157 MSIE: Internet Explorer v8.0.6001.19088 ---\\ Informations sur les produits Windows (3) - 10s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : KO ---\\ Logiciels de protection (2) - 2s Computer Security 14.106.104.0 Windows Defender VISTA (Deactivate) ---\\ Logiciels de protection et autres (Superflus) (1) - 2s McAfee Security Scan Plus v3.8.150.1 ---\\ Surveillance de Logiciels (2) - 2s Adobe Flash Player 18 NPAPI Adobe Reader 9.3 - Français ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 6 Model 15 Stepping 13, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Sans échec avec prise en charge du réseau (Fail-safe with network boot) Total RAM: 1833.552 MB (75% free) ~ System Restore: Activé (Enable) ~ System drive has 117 GB free of 297 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: PC-DE-ADMIN ~ User Name: Rudy ~ Logged in as Administrator ---\\ Enumération des unités disques (1) - 0s ~ Drive C: has 117 GB free of 297 GB ---\\ Etat du Centre de Sécurité Windows (10) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (24) - 2s [MD5.4F554999D7D5F05DAAEBBA7B5BA1089D] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2927104] © [MD5.4B555106290BD117334E9A08761C035A] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [44544] © [MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [96768] © [MD5.DE4685DE5130039FA63DA66C0F72F787] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [916480] © [MD5.C2610B6BDBEFC053BBDAB4F1B965CB24] - (.Microsoft Corporation - Application d'ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [314880] © [MD5.5665120753FCE7123C4DEACE241EE715] - (.Microsoft Corporation - DNS DLL de l'API Client.) () -- C:\Windows\System32\dnsapi.dll [167936] © [MD5.95F5FF73B076576C41740F1A842B9B57] - (.Microsoft Corporation - DLL client de l'API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] © [MD5.48EB99503533C27AC6135648E5474457] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [273408] © [MD5.2D9C903DC76A66813D350A562DE40ED9] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [21560] © [MD5.7ADD03E75BEB9E6DD102C3081D29840A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [70144] © [MD5.1EC25CEA0DE6AC4718BF89F9E1778B57] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [67072] © [MD5.A3E9FA213F443AC77C7746119D13FEEC] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [75264] © [MD5.C87B1EE051C0464491C1A7B03FA0BC99] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [53760] © [MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [54784] © [MD5.8793643A67B42CEC66490B2A0CF92D68] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [100864] © [MD5.5734A0F2BE7E495F7D3ED6EFD4B9F5A1] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [105984] © [MD5.7C5FEE5B1C5728507CD96FB4A13E7A02] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [184320] © [MD5.B4EFFE29EB4F15538FD8A9681108492D] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1081912] © [MD5.0FA9B5055484649D63C303FE404E5F4D] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [79360] © [MD5.A214ADBAF4CB47DD2728859EF31F26B0] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [76288] © [MD5.E8BD98D46F2ED77132BA927FCCB47D8B] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [242688] © [MD5.031E6BCD53C9B2B9ACE111EAFEC347B6] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [66560] © [MD5.D09276B1FAB033CE1D40DCBDF303D10F] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [71680] © [MD5.D8B4A53DD2769F226B3EB374374987C9] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [227896] © ---\\ Processus lancés (4) - 0s [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [813896] [PID.1652] © [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [813896] [PID.1948] © [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [813896] [PID.1476] © [MD5.F65F5B02F72BD88128C36C9041B260B6] - (.Nicolas Coolman - ZHPDiag.) -- C:\Windows\System32\config\systemprofile\ZHPDiag3.exe [1917952] [PID.3600] © ---\\ Google Chrome, Démarrage,Recherche,Extensions (11) - 1s G2 - GCE: Preference [User Data\Default] [aaaaahlfahldnilidgnlikdckbfehhca] Ask Search G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [dhkplhfnhceodhffomolpfigojocbpcb] Babylon Toolbar =>PUP.Optional.Babylon G2 - GCE: Preference [User Data\Default] [jmjjnhpacphpjmnnlnccpfmhkcloaade] Browsing Protection by F-Secure G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [opnbmdkdflhjiclaoiiifmheknpccalb] Instagram for Chrome G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (4) - 0s P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_18_0_0_232.dll © P2 - FPN: [HKLM] [@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin] - (...) -- C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\18.5.0\\npsitesafety.dll =>Toolbar.AVGSearch P2 - FPN: [HKLM] [@tools.dpliveupdate.com/DealPlyLive Update;version=3] - (.DealPly Technologies Ltd.) -- C:\Program Files\DealPlyLive\Update\1.3.23.0\npGoogleUpdate3.dll =>PUP.Optional.Dealply P2 - FPN: [HKLM] [@tools.dpliveupdate.com/DealPlyLive Update;version=9] - (.DealPly Technologies Ltd.) -- C:\Program Files\DealPlyLive\Update\1.3.23.0\npGoogleUpdate3.dll =>PUP.Optional.Dealply ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (6) - 0s R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://start.qone8.com/ =>PUP.Optional.Qone8 R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = http://search.babylon.com/ =>PUP.Optional.Babylon ---\\ Internet Explorer,Proxy Management (2) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl" ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (20) ---\\ Browser Helper Object de navigateur (BHO) (11) - 0s O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} . (.McAfee, Inc. - Quick Browser Identifier for MSS+ Tool.) -- C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll © O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll © O2 - BHO: Babylon toolbar helper - {2EECD738-5844-4a99-B4B6-146BF802613B} . (.Babylon BHO - .) -- C:\Program Files\BabylonToolbar\BabylonToolbar\1.6.4.6\bh\BabylonToolbar.dll =>PUP.Optional.Babylon O2 - BHO: Browsing Protection - {45BBE08D-81C5-4A67-AF20-B2A077C67747} . (.F-Secure Corporation - Enhanced HTTPS support for IE.) -- C:\Program Files\VOO Internet Security\apps\CCF_Scanning\bin\browser\install\fs_ie_https\fs_ie_https.dll © O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\ssv.dll © O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} . (.AVG Secure Search - toolbar.dll.) -- C:\Program Files\AVG Secure Search\18.5.0.909\AVG Secure Search_toolbar.dll =>Toolbar.AVGSearch O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll © O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Skype Technologies S.A. - Skype Click to Call for Internet Explorer.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll © O2 - BHO: Ask Shopping Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} . (...) -- "C:\Program Files\AskPartnerNetwork\Toolbar\ORJ\Passport.dll" (.not file.) =>PUP.Optional.Bandoo O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\jp2ssv.dll © O2 - BHO: Yontoo Layers - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} . (.Yontoo LLC - Yontoo Runtime.) -- C:\Program Files\Yontoo\YontooIEClient.dll =>PUP.Optional.Yontoo ---\\ Internet Explorer, Barre d'outil (3) - 0s O3 - Toolbar: Babylon Toolbar - [HKLM]{98889811-442D-49dd-99D7-DC866BE87DBC} . (.Babylon Ltd. - .) -- C:\Program Files\BabylonToolbar\BabylonToolbar\1.6.4.6\BabylonToolbarTlbr.dll =>PUP.Optional.Babylon O3 - Toolbar: (no name) - [HKLM]{D4027C7F-154A-4066-A1AD-4243D8127440} (Orphean) =>Toolbar.AskBar O3 - Toolbar: (no name) - [HKLM]{95B7759C-8C7F-4BF1-B163-73684A933233} (Orphean) =>Toolbar.AVGSearch ---\\ Applications lancées au démarrage du système (16) - 1s O4 - HKLM\..\Run: [Windows Defender] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe © O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe © O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe © O4 - HKLM\..\Run: [NeroFilterCheck] . (.Nero AG - NeroCheck.) -- C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe © O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe © O4 - HKLM\..\Run: [vProt] . (.Copyright (C) 2012 - VProtect Application.) -- C:\Program Files\AVG Secure Search\vprot.exe =>Toolbar.AVGSearch O4 - HKLM\..\Run: [F-Secure Manager] . (.F-Secure Corporation - F-Secure Settings and Statistics.) -- C:\Program Files\VOO Internet Security\apps\ComputerSecurity\Common\FSM32.EXE © O4 - HKLM\..\Run: [ApnTBMon] . (.APN - Ask Toolbar Notifier.) -- C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe =>Toolbar.AskBar O4 - HKLM\..\Run: [F-Secure Hoster (51896)] . (.F-Secure Corporation - F-Secure Host Process.) -- C:\Program Files\VOO Internet Security\fshoster32.exe © O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_50A9215009AE0931A8FCDF5026E9246D] . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe © O4 - HKUS\.DEFAULT\..\Run: [GoogleChromeAutoLaunch_50A9215009AE0931A8FCDF5026E9246D] . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe © O4 - HKUS\S-1-5-18\..\Run: [GoogleChromeAutoLaunch_50A9215009AE0931A8FCDF5026E9246D] . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe © O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe © O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe © ---\\ Modification Domaine/Adresses DNS (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 62.197.111.140 109.88.203.3 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 62.197.111.140 109.88.203.3 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 62.197.111.140 109.88.203.3 ---\\ Protocole additionnel (26) - 1s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll © O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll © O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll © O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} . (.Skype Technologies S.A. - Skype Click to Call for Internet Explorer.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll © O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll © O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} . (.AVG Secure Search - ViProtocol.) -- C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\18.5.0\ViProtocol.dll =>Toolbar.AVGSearch O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL © ---\\ Liste des services NT non Microsoft et non désactivés (9) - 1s O23 - Service: Service de mise à jour Ask (APNMCP) . (.APN LLC. - APN Updater.) - C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe =>Toolbar.Ask O23 - Service: Service DealPly Live (dealplylive) (dealplylive) . (.DealPly Technologies Ltd - DealPlyLive Update.) - C:\Program Files\DealPlyLive\Update\DealPlyLive.exe =>PUP.Optional.Dealply O23 - Service: F-Secure Dll Hoster (fshoster) . (.F-Secure Corporation - F-Secure Host Process.) - C:\Program Files\VOO Internet Security\fshoster32.exe © O23 - Service: F-Secure ORSP Client (FSORSPClient) . (.F-Secure Corporation - F-Secure ORSP Service.) - C:\Program Files\VOO Internet Security\apps\CCF_Reputation\fsorsp.exe © O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe © O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company - .) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe © O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe © O23 - Service: (vToolbarUpdater17.0.1) . (.AVG Secure Search - ToolbarU Application.) - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\17.0.1\ToolbarUpdater.exe =>Toolbar.AVGSearch O23 - Service: (vToolbarUpdater18.5.0) . (.AVG Secure Search - ToolbarU Application.) - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\18.5.0\ToolbarUpdater.exe =>Toolbar.AVGSearch ---\\ Logiciels installés (57) - 5s O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX © O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI © O42 - Logiciel: AVG Security Toolbar - (.AVG Technologies.) [HKLM] -- AVG Secure Search © O42 - Logiciel: AVS Video Editor 7.0 - (.Online Media Technologies Ltd..) [HKLM] -- AVS Video Editor_is1 O42 - Logiciel: Babylon toolbar on IE - (.BabylonToolbar.) [HKLM] -- BabylonToolbar =>PUP.Optional.Babylon O42 - Logiciel: DealPly (remove only) - (.DealPly Technologies Ltd..) [HKLM] -- DealPly =>PUP.Optional.Dealply O42 - Logiciel: EA Sports FIFA Online 2 - (.Electronic Arts.) [HKLM] -- EA Sports FIFA Online 2 © O42 - Logiciel: EPSON Logiciel imprimante - (.SEIKO EPSON Corporation.) [HKLM] -- EPSON Printer and Utilities © O42 - Logiciel: EPSON Scan - (...) [HKLM] -- EPSON Scanner O42 - Logiciel: EPSON Stylus CX7300_CX8300_DX7400_DX8400 Manuel - (...) [HKLM] -- EPSON Stylus CX7300_CX8300_DX7400_DX8400 Guide d'utilisation O42 - Logiciel: VOO Launch pad - (.F-Secure Corporation.) [HKLM] -- F-Secure ServiceEnabler 51896 © O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome © O42 - Logiciel: EPSON Attach To Email - (.SEIKO EPSON.) [HKLM] -- InstallShield_{20C45B32-5AB6-46A4-94EF-58950CAF05E5} O42 - Logiciel: Lightspark 0.5.3-git - (.Lightspark Team.) [HKLM] -- Lightspark © O42 - Logiciel: McAfee Security Scan Plus - (.McAfee, Inc..) [HKLM] -- McAfee Security Scan © O42 - Logiciel: SAMSUNG Mobile Modem Driver Set - (...) [HKLM] -- SAMSUNG Mobile Modem O42 - Logiciel: SAMSUNG Mobile USB Modem Software - (...) [HKLM] -- SAMSUNG Mobile USB Modem O42 - Logiciel: SAMSUNG Mobile USB Modem 1.0 Software - (...) [HKLM] -- SAMSUNG Mobile USB Modem 1.0 O42 - Logiciel: VLC media player 1.1.10 - (.VideoLAN.) [HKLM] -- VLC media player © O42 - Logiciel: Wsys Control 10.2.1.2634 - (.Wsys Co., Ltd..) [HKLM] -- WsysControl =>PUP.Optional.eSafeSecurity O42 - Logiciel: YouTube Video Downloader 2.6.6 - (.Tomato.) [HKLM] -- YouTube Video Downloader_is1 © O42 - Logiciel: F-Secure CCF Reputation - (.F-Secure.) [HKLM] -- {00000000-2778-5BED-8199-52EB14D8D22F} © O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C} © O42 - Logiciel: Facebook Video Calling 3.1.0.521 - (.Skype Limited.) [HKLM] -- {2091F234-EB58-4B80-8C96-8EB78C808CF7} © O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} © O42 - Logiciel: Skype™ 7.0 - (.Skype Technologies S.A..) [HKLM] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} © O42 - Logiciel: Java 7 Update 11 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83217011FF} © O42 - Logiciel: EPSON Scan Assistant - (...) [HKLM] -- {2A88F1BF-7041-4E42-84B1-6B4ACB83AC64} O42 - Logiciel: EPSON File Manager - (...) [HKLM] -- {2EB81825-E9EE-44F4-8F51-1240C3898DC6} O42 - Logiciel: Complément Office 2007 - Microsoft Enregistrer en tant que PDF ou XPS (Beta - (.Microsoft Corporation.) [HKLM] -- {30120000-00B2-040C-0000-0000000FF1CE} © O42 - Logiciel: EPSON Easy Photo Print - (.SEIKO EPSON CORPORATION.) [HKLM] -- {3D78F2A2-C893-4ABD-B5FE-AD7011837755} © O42 - Logiciel: Online Safety 2.107.2565.1702 - (.F-Secure Corporation.) [HKLM] -- {48E6CE3C-F02D-4CB1-BF10-7B9058C165A5} © O42 - Logiciel: Ask Shopping Toolbar - (.APN, LLC.) [HKLM] -- {4F524A00-6A76-A76A-76A7-A758B70C1D00} =>PUP.Optional.Bandoo O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} © O42 - Logiciel: Computer Security 14.106.104.0 (release) - (.F-Secure Corporation.) [HKLM] -- {658FDBCA-B7A1-43E4-A849-9F0812473331} © O42 - Logiciel: EPSON Copy Utility 3 - (...) [HKLM] -- {67EDD823-135A-4D59-87BD-950616D6E857} O42 - Logiciel: F-Secure Network CCF 1.02.136 - (.F-Secure Corporation.) [HKLM] -- {702A14E2-E5E4-44B1-A957-5A3A82E36576} © O42 - Logiciel: Facebook Messenger 2.1.4814.0 - (.Facebook.) [HKLM] -- {7204BDEE-1A48-4D95-A964-44A9250B439E} © O42 - Logiciel: BabylonObjectInstaller - (.Babylon Ltd.) [HKLM] -- {83AA2913-C123-4146-85BD-AD8F93971D39} =>PUP.Optional.Babylon O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} © O42 - Logiciel: Yontoo 1.10.02 - (.Yontoo LLC.) [HKLM] -- {889DF117-14D1-44EE-9F31-C5FB5D47F68B} =>PUP.Optional.Yontoo O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} © O42 - Logiciel: Camera RAW Plug-In for EPSON Creativity Suite - (.SEIKO EPSON CORPORATION.) [HKLM] -- {93EA9C3E-BDFD-4309-A605-9B5BBC0CCEFD} © O42 - Logiciel: Software Version Updater - (...) [HKLM] -- {99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96} O42 - Logiciel: F-Secure CCF Scanning 1.51.111.300 (release) - (.F-Secure Corporation.) [HKLM] -- {A90E17E2-18B2-411C-9D87-7598C796C11D} © O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} © O42 - Logiciel: Adobe Reader 9.3 - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-A93000000001} © O42 - Logiciel: ABBYY FineReader 6.0 Sprint - (.ABBYY Software House.) [HKLM] -- {ACF60000-22B9-4CE9-98D6-2CCF359BAC07} © O42 - Logiciel: Nero 7 Essentials - (.Nero AG.) [HKLM] -- {B28B351F-1232-46EA-85EF-B8EA91641036} © O42 - Logiciel: Skype Click to Call - (.Skype Technologies S.A..) [HKLM] -- {B6CF2967-C81E-40C0-9815-C05774FEF120} © O42 - Logiciel: Facebook Video Calling 1.2.0.287 - (.Skype Limited.) [HKLM] -- {B92C5909-1D37-4C51-8397-A28BB28E5DC3} © O42 - Logiciel: WinZip 17.0 - (.WinZip Computing, S.L. .) [HKLM] -- {CD95F661-A5C4-44F5-A6AA-ECDD91C240D8} © O42 - Logiciel: VOO Launch pad - (.F-Secure Corporation.) [HKLM] -- {D95D779E-D5D2-45EC-BBBE-811E72976747} © O42 - Logiciel: Samsung PC Studio 3 USB Driver Installer - (.Samsung Electronics Co., Ltd..) [HKLM] -- {EBA29752-DDD2-4B62-B2E3-9841F92A3E3A} © O42 - Logiciel: F-Secure SafeSearch 1.03.146.0 (release) - (.F-Secure Corporation.) [HKLM] -- {EFD9F1E7-B80B-4D97-80BA-2B80FCE6DABB} © O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} © O42 - Logiciel: Pinnacle VideoSpin - (.Pinnacle Systems.) [HKLM] -- {FEB15887-0932-4D2D-BB85-6AC03FBF1AA8} © ---\\ HKCU & HKLM Software Keys (61) - 5s HKLM\SOFTWARE\ABBYY HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\ahead HKLM\SOFTWARE\AskPartnerNetwork =>Toolbar.AskBar HKLM\SOFTWARE\ATI Technologies HKLM\SOFTWARE\Audible HKLM\SOFTWARE\AVAST Software HKLM\SOFTWARE\AVG Secure Search =>Toolbar.AVGSearch HKLM\SOFTWARE\Avg Secure Update HKLM\SOFTWARE\AVG Security Toolbar =>Toolbar.AVGSearch HKLM\SOFTWARE\AVS4YOU HKLM\SOFTWARE\Babylon =>PUP.Optional.Babylon HKLM\SOFTWARE\BabylonToolbar =>PUP.Optional.Babylon HKLM\SOFTWARE\BlueStacks HKLM\SOFTWARE\BrowserChoice HKLM\SOFTWARE\Data Fellows HKLM\SOFTWARE\DealPly =>PUP.Optional.Dealply HKLM\SOFTWARE\DealPlyLive =>PUP.Optional.Dealply HKLM\SOFTWARE\DivX HKLM\SOFTWARE\EPSON HKLM\SOFTWARE\eSafeSecControl HKLM\SOFTWARE\F-Secure HKLM\SOFTWARE\FAST Multimedia HKLM\SOFTWARE\Google HKLM\SOFTWARE\IM Providers HKLM\SOFTWARE\InstallShield HKLM\SOFTWARE\Intel HKLM\SOFTWARE\JavaSoft HKLM\SOFTWARE\JreMetrics HKLM\SOFTWARE\LightScribe HKLM\SOFTWARE\Lightspark Team HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\MCCI HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\Nero HKLM\SOFTWARE\Nico Mak Computing HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\Pegasus Imaging HKLM\SOFTWARE\Pinnacle Systems HKLM\SOFTWARE\qone8Software HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\Samsung Electronics Co., Ltd. HKLM\SOFTWARE\Skype HKLM\SOFTWARE\Sonic HKLM\SOFTWARE\Tarma Installer =>PUP.Optional.Tarma HKLM\SOFTWARE\VideoLAN HKLM\SOFTWARE\Xerox HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Ahead HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\AskPartnerNetwork =>Toolbar.AskBar HKCU\SOFTWARE\Avg Secure Update HKCU\SOFTWARE\EPSON HKCU\SOFTWARE\Google HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Pinnacle Systems HKCU\SOFTWARE\Skype HKCU\SOFTWARE\ZebHelpProcess Helper ---\\ Contenu des dossiers Programmes (145) - 7s O43 - CFD: 2011/12/20 00:14:07 - [] D -- C:\Program Files\ABBYY FineReader 6.0 Sprint O43 - CFD: 2011/07/13 10:37:06 - [] D -- C:\Program Files\Adobe O43 - CFD: 2014/05/15 09:51:30 - [] D -- C:\Program Files\AskPartnerNetwork =>Toolbar.AskBar O43 - CFD: 2011/07/13 11:02:52 - [] D -- C:\Program Files\AVAST Software O43 - CFD: 2015/09/02 12:14:12 - [] D -- C:\Program Files\AVG Secure Search =>Toolbar.AVGSearch O43 - CFD: 2015/01/22 21:09:56 - [] D -- C:\Program Files\AVS4YOU O43 - CFD: 2012/08/20 12:48:22 - [] D -- C:\Program Files\BabylonToolbar =>PUP.Optional.Babylon O43 - CFD: 2015/04/16 13:08:10 - [] D -- C:\Program Files\Common Files O43 - CFD: 2013/12/22 00:00:55 - [] D -- C:\Program Files\DealPly =>PUP.Optional.Dealply O43 - CFD: 2013/10/01 18:56:52 - [] D -- C:\Program Files\DealPlyLive =>PUP.Optional.Dealply O43 - CFD: 2012/08/20 12:40:18 - [] D -- C:\Program Files\EA Sports O43 - CFD: 2011/12/20 00:15:43 - [] D -- C:\Program Files\epson O43 - CFD: 2011/07/13 10:27:15 - [0] SHD -- C:\Program Files\Fichiers communs O43 - CFD: 2014/07/11 14:10:45 - [] D -- C:\Program Files\Google O43 - CFD: 2011/12/20 00:24:28 - [] HD -- C:\Program Files\InstallShield Installation Information O43 - CFD: 2011/11/05 20:21:03 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 2013/01/23 19:03:06 - [] D -- C:\Program Files\Java O43 - CFD: 2013/10/01 18:58:36 - [] D -- C:\Program Files\Lightspark 0.5.3-git O43 - CFD: 2014/06/04 18:57:38 - [] D -- C:\Program Files\McAfee Security Scan O43 - CFD: 2006/11/02 14:37:34 - [] D -- C:\Program Files\Microsoft Games O43 - CFD: 2011/07/15 18:32:11 - [] D -- C:\Program Files\Microsoft Office O43 - CFD: 2015/05/15 11:57:55 - [] D -- C:\Program Files\Microsoft Silverlight O43 - CFD: 2011/07/15 18:32:06 - [] D -- C:\Program Files\Microsoft Visual Studio O43 - CFD: 2011/07/15 18:25:51 - [] D -- C:\Program Files\Microsoft Visual Studio 8 O43 - CFD: 2011/10/06 16:55:10 - [] D -- C:\Program Files\Microsoft Works O43 - CFD: 2011/10/18 07:53:40 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 2011/10/15 18:47:32 - [] D -- C:\Program Files\Movie Maker O43 - CFD: 2015/01/24 12:12:42 - [] D -- C:\Program Files\Movie Maker 2.6 O43 - CFD: 2012/08/20 12:48:21 - [] D -- C:\Program Files\Mozilla Firefox O43 - CFD: 2011/07/15 18:32:38 - [] D -- C:\Program Files\MSBuild O43 - CFD: 2011/07/15 18:14:28 - [] D -- C:\Program Files\MSECache O43 - CFD: 2015/01/29 08:40:25 - [0] D -- C:\Program Files\MSXML 4.0 O43 - CFD: 2011/07/13 10:44:03 - [] D -- C:\Program Files\Nero O43 - CFD: 2013/02/27 19:52:43 - [] D -- C:\Program Files\PhotoFiltre O43 - CFD: 2015/01/27 21:02:48 - [] D -- C:\Program Files\Pinnacle O43 - CFD: 2006/11/02 14:37:34 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 2011/11/23 08:44:58 - [] D -- C:\Program Files\Samsung O43 - CFD: 2015/04/16 13:08:12 - [] RD -- C:\Program Files\Skype O43 - CFD: 2006/11/02 15:01:55 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 2011/07/13 10:39:32 - [] D -- C:\Program Files\VideoLAN O43 - CFD: 2015/08/12 16:43:39 - [] D -- C:\Program Files\VOO Internet Security O43 - CFD: 2011/10/11 14:32:00 - [] D -- C:\Program Files\Windows Calendar O43 - CFD: 2011/10/11 14:31:59 - [] D -- C:\Program Files\Windows Collaboration O43 - CFD: 2011/10/11 14:31:58 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 2011/10/11 14:31:59 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 2011/10/15 18:47:42 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 2011/10/15 18:47:43 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 2011/07/13 10:27:15 - [] D -- C:\Program Files\Windows NT O43 - CFD: 2011/10/11 14:31:59 - [] D -- C:\Program Files\Windows Photo Gallery O43 - CFD: 2011/10/11 14:32:00 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 2013/02/27 16:20:00 - [] D -- C:\Program Files\WinZip O43 - CFD: 2012/08/20 12:51:59 - [] D -- C:\Program Files\Yontoo =>PUP.Optional.Yontoo O43 - CFD: 2011/12/20 00:14:05 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ABBYY FineReader 6.0 Sprint O43 - CFD: 2011/10/17 07:36:01 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2011/10/17 07:36:01 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/01/22 21:09:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVS4YOU O43 - CFD: 2012/08/20 12:46:09 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA Sports O43 - CFD: 2011/12/20 00:10:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON O43 - CFD: 2011/12/20 00:23:25 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Creativity Suite O43 - CFD: 2011/12/20 00:09:46 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Scan O43 - CFD: 2011/10/11 14:39:19 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Extras and Upgrades O43 - CFD: 2011/10/11 14:39:22 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2014/07/11 14:11:08 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2013/10/01 18:58:36 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lightspark 0.5.3-git O43 - CFD: 2006/11/02 14:56:46 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2014/06/04 18:48:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus O43 - CFD: 2011/10/08 09:43:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 2015/05/14 15:27:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 2011/07/13 10:46:07 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 7 Essentials O43 - CFD: 2013/02/27 19:52:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre O43 - CFD: 2015/01/27 21:04:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle VideoSpin O43 - CFD: 2015/04/16 13:08:12 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 2014/06/04 18:47:08 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2006/11/02 14:37:34 - [] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2011/07/13 10:39:46 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 2015/01/02 15:15:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VOO Internet Security O43 - CFD: 2013/02/27 16:20:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip O43 - CFD: 2013/05/22 16:17:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YouTube Video Downloader O43 - CFD: 2013/02/26 18:34:26 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2014/05/15 09:50:06 - [] D -- C:\ProgramData\APN =>Toolbar.Ask O43 - CFD: 2006/11/02 15:02:03 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2013/01/23 19:05:29 - [] D -- C:\ProgramData\Ask O43 - CFD: 2014/05/15 09:51:30 - [] D -- C:\ProgramData\AskPartnerNetwork =>Toolbar.YahooPartner O43 - CFD: 2013/12/18 15:13:53 - [0] D -- C:\ProgramData\AVAST Software O43 - CFD: 2014/06/23 14:37:32 - [] D -- C:\ProgramData\AVG Secure Search =>Toolbar.AVGSearch O43 - CFD: 2014/09/10 16:56:27 - [] D -- C:\ProgramData\Avg_Update_0814tb O43 - CFD: 2015/01/22 21:11:06 - [] D -- C:\ProgramData\AVS4YOU O43 - CFD: 2012/08/20 12:48:09 - [0] D -- C:\ProgramData\Babylon =>PUP.Optional.Babylon O43 - CFD: 2015/03/18 16:42:38 - [] D -- C:\ProgramData\BlueStacksSetup O43 - CFD: 2011/07/13 10:27:15 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 2013/10/01 18:56:52 - [] D -- C:\ProgramData\DealPlyLive =>PUP.Optional.Dealply O43 - CFD: 2006/11/02 15:02:03 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2006/11/02 15:02:03 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2011/12/20 00:06:07 - [] D -- C:\ProgramData\EPSON O43 - CFD: 2015/01/02 15:25:28 - [] D -- C:\ProgramData\F-Secure O43 - CFD: 2011/07/13 10:27:15 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 2006/11/02 15:02:03 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 2011/07/25 21:05:07 - [] D -- C:\ProgramData\Google O43 - CFD: 2011/07/13 10:55:26 - [] D -- C:\ProgramData\LightScribe O43 - CFD: 2013/02/26 18:35:08 - [] D -- C:\ProgramData\McAfee O43 - CFD: 2014/06/04 18:47:37 - [] D -- C:\ProgramData\McAfee Security Scan O43 - CFD: 2011/07/13 10:27:15 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 2015/09/02 13:03:24 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2015/07/22 07:43:08 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 2011/07/13 10:27:15 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 2011/07/13 10:44:03 - [] D -- C:\ProgramData\Nero O43 - CFD: 2015/01/27 20:57:05 - [] D -- C:\ProgramData\Pinnacle O43 - CFD: 2015/01/27 21:21:37 - [] D -- C:\ProgramData\Pinnacle VideoSpin O43 - CFD: 2013/11/25 20:23:53 - [] D -- C:\ProgramData\Real O43 - CFD: 2015/04/16 13:08:46 - [] D -- C:\ProgramData\Skype O43 - CFD: 2006/11/02 15:02:03 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2013/01/23 19:05:27 - [] D -- C:\ProgramData\Sun O43 - CFD: 2012/08/20 12:51:56 - [] D -- C:\ProgramData\Tarma Installer =>PUP.Optional.Tarma O43 - CFD: 2006/11/02 15:02:04 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2011/12/20 00:17:29 - [] D -- C:\ProgramData\UDL O43 - CFD: 2011/12/20 00:37:13 - [] D -- C:\ProgramData\Windows Genuine Advantage O43 - CFD: 2012/09/26 19:58:51 - [] D -- C:\ProgramData\WindowsSearch O43 - CFD: 2013/02/27 16:22:38 - [] D -- C:\ProgramData\WinZip O43 - CFD: 2013/12/06 18:56:46 - [] D -- C:\ProgramData\Xerox O43 - CFD: 2011/07/13 10:37:12 - [] D -- C:\Program Files\Common Files\Adobe O43 - CFD: 2011/07/13 10:46:11 - [] D -- C:\Program Files\Common Files\Ahead O43 - CFD: 2015/08/12 16:43:39 - [] D -- C:\Program Files\Common Files\AVG Secure Search =>Toolbar.AVGSearch O43 - CFD: 2015/01/22 21:09:50 - [] D -- C:\Program Files\Common Files\AVSMedia O43 - CFD: 2014/05/15 09:35:51 - [] D -- C:\Program Files\Common Files\DESIGNER O43 - CFD: 2011/12/20 00:20:34 - [] D -- C:\Program Files\Common Files\InstallShield O43 - CFD: 2013/01/23 19:05:24 - [] D -- C:\Program Files\Common Files\Java O43 - CFD: 2011/07/13 10:46:17 - [] D -- C:\Program Files\Common Files\LightScribe O43 - CFD: 2012/03/02 16:18:31 - [] D -- C:\Program Files\Common Files\microsoft shared O43 - CFD: 2006/11/02 13:18:33 - [] D -- C:\Program Files\Common Files\Services O43 - CFD: 2015/04/16 13:08:10 - [] D -- C:\Program Files\Common Files\Skype O43 - CFD: 2006/11/02 13:18:33 - [] D -- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 2012/07/12 12:10:50 - [] D -- C:\Program Files\Common Files\System O43 - CFD: 2013/05/22 16:17:31 - [] D -- C:\Program Files\Common Files\Tomato O43 - CFD: 2011/07/18 15:57:14 - [] D -- C:\Program Files\Common Files\Windows Live O43 - CFD: 2015/01/27 21:02:50 - [] D -- C:\Program Files\Common Files\Yahoo! O43 - CFD: 2015/09/02 19:35:37 - [] D -- C:\Windows\system32\config\systemprofile\AppData\Roaming\Adobe O43 - CFD: 2013/12/18 15:36:29 - [] D -- C:\Windows\system32\config\systemprofile\AppData\Roaming\f-secure O43 - CFD: 2013/02/27 18:36:22 - [] D -- C:\Windows\system32\config\systemprofile\AppData\Roaming\McAfee O43 - CFD: 2015/09/02 13:03:24 - [] SD -- C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft O43 - CFD: 2015/09/02 19:43:24 - [] D -- C:\Windows\system32\config\systemprofile\AppData\Roaming\ZHP O43 - CFD: 2015/09/02 19:13:47 - [] D -- C:\Windows\system32\config\systemprofile\AppData\Local\Adobe O43 - CFD: 2015/09/02 18:51:19 - [] D -- C:\Windows\system32\config\systemprofile\AppData\Local\Ahead O43 - CFD: 2015/08/31 20:32:53 - [] D -- C:\Windows\system32\config\systemprofile\AppData\Local\Google O43 - CFD: 2015/09/02 19:35:45 - [] D -- C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft O43 - CFD: 2015/09/02 19:43:17 - [] D -- C:\Windows\system32\config\systemprofile\AppData\Local\Temp ---\\ Derniers fichiers créés dans Windows Prefetcher (3) - 10s O45 - LFCP:[MD5.6453A457A59A8752588E053141EA637B] 2015/06/22 11:33:53 A -- C:\Windows\Prefetch\BABYLONTOOLBARSRV.EXE-31C96532.pf =>PUP.Optional.Babylon O45 - LFCP:[MD5.861871956A69F4E113FD7A515086CD21] 2015/09/01 14:02:00 A -- C:\Windows\Prefetch\DEALPLYLIVE.EXE-7BB1D07F.pf =>PUP.Optional.Dealply O45 - LFCP:[MD5.FAC27B3267840D668169C3CAFE8A5440] 2015/09/01 12:29:14 A -- C:\Windows\Prefetch\DEALPLYLIVEHANDLER.EXE-53F10C90.pf =>PUP.Optional.Dealply ---\\ Liste des pilotes du système (69) - 12s O58 - SDL:2006/11/02 11:51:38 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [420968] © O58 - SDL:2006/11/02 11:51:32 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297576] © O58 - SDL:2006/11/02 11:50:35 A . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) -- C:\Windows\System32\drivers\adpu160m.sys [98408] © O58 - SDL:2006/11/02 11:51:00 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [147048] © O58 - SDL:2006/11/02 11:49:20 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14952] © O58 - SDL:2006/11/02 11:50:09 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [67688] © O58 - SDL:2006/11/02 11:50:10 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [67688] © O58 - SDL:2006/11/02 09:36:43 A . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [2028032] © O58 - SDL:2006/11/02 10:24:45 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] © O58 - SDL:2006/11/02 10:24:46 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] © O58 - SDL:2006/11/02 10:25:24 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [71808] © O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] © O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] © O58 - SDL:2006/11/02 10:24:47 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] © O58 - SDL:2006/11/02 11:49:28 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [16488] © O58 - SDL:2006/11/02 11:50:11 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [71272] © O58 - SDL:2006/11/02 09:30:54 A . (.Intel Corporation - Intel(R) PRO/1000 Adapter NDIS 6 deserializ.) -- C:\Windows\System32\drivers\E1G60I32.sys [117760] © O58 - SDL:2006/11/02 11:51:34 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [316520] © O58 - SDL:2015/07/22 07:32:46 A . (...) -- C:\Windows\System32\drivers\fsbts.sys [43560] O58 - SDL:2006/11/02 11:50:10 A . (.Hewlett-Packard Company - Smart Array Storport Driver.) -- C:\Windows\System32\drivers\HpCISSs.sys [37480] © O58 - SDL:2006/11/02 11:51:25 A . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) -- C:\Windows\System32\drivers\iaStorV.sys [232040] © O58 - SDL:2006/11/02 11:50:17 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41576] © O58 - SDL:2006/11/02 11:50:07 A . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\System32\drivers\iteatapi.sys [35944] © O58 - SDL:2006/11/02 11:50:09 A . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\System32\drivers\iteraid.sys [35944] © O58 - SDL:2006/11/02 11:50:04 A . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [65640] © O58 - SDL:2006/11/02 11:50:05 A . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [65640] © O58 - SDL:2006/11/02 11:50:10 A . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [65640] © O58 - SDL:2006/11/02 11:49:53 A . (.LSI Logic Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [28776] © O58 - SDL:2006/11/02 11:49:59 A . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\Mraid35x.sys [33384] © O58 - SDL:2006/11/02 11:50:19 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [45160] © O58 - SDL:2006/11/02 09:36:50 A . (.N-trig Innovative Technologies - Pilote intégré de digitalisateur de tablett.) -- C:\Windows\System32\drivers\ntrigdigi.sys [20608] © O58 - SDL:2006/11/02 11:50:24 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [88680] © O58 - SDL:2006/11/02 11:50:13 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [40040] © O58 - SDL:2006/11/02 11:51:45 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [900712] © O58 - SDL:2006/11/02 11:50:35 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106088] © O58 - SDL:2006/11/02 09:30:56 A . (.Realtek Semiconductor Corporation - Realtek 10/100 NDIS 5.1 Driver.) -- C:\Windows\System32\drivers\Rtnicxp.sys [47104] © O58 - SDL:2006/11/02 08:37:21 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] © O58 - SDL:2006/11/02 11:50:10 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [38504] © O58 - SDL:2006/11/02 11:50:16 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [71784] © O58 - SDL:2007/05/02 12:11:16 A . (.MCCI Corporation - SAMSUNG Mobile USB Device 1.0 Driver.) -- C:\Windows\System32\drivers\ss_bus.sys [83592] © O58 - SDL:2007/05/02 12:11:16 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ss_cm.sys [12424] © O58 - SDL:2007/05/02 12:11:16 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ss_cmnt.sys [12424] © O58 - SDL:2007/05/02 12:11:18 A . (.MCCI Corporation - SAMSUNG Mobile USB Modem 1.0 Filter Driver.) -- C:\Windows\System32\drivers\ss_mdfl.sys [15112] © O58 - SDL:2007/05/02 12:11:18 A . (.MCCI Corporation - SAMSUNG Mobile USB Modem 1.0 Driver.) -- C:\Windows\System32\drivers\ss_mdm.sys [109704] © O58 - SDL:2007/05/02 12:11:18 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ss_wh.sys [12424] © O58 - SDL:2007/05/02 12:11:18 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ss_whnt.sys [12424] © O58 - SDL:2006/11/02 11:50:05 A . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) -- C:\Windows\System32\drivers\symc8xx.sys [35944] © O58 - SDL:2006/11/02 11:49:56 A . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_hi.sys [31848] © O58 - SDL:2006/11/02 11:50:03 A . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_u3.sys [34920] © O58 - SDL:2006/11/02 11:51:25 A . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\System32\drivers\uliahci.sys [235112] © O58 - SDL:2006/11/02 11:50:35 A . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win200.) -- C:\Windows\System32\drivers\ulsata.sys [98408] © O58 - SDL:2006/11/02 11:50:45 A . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\System32\drivers\ulsata2.sys [115816] © O58 - SDL:2006/11/02 11:49:30 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17512] © O58 - SDL:2006/11/02 11:50:41 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR X86-32.) -- C:\Windows\System32\drivers\vsmraid.sys [112232] © O58 - SDL:2006/11/02 09:09:42 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:2006/11/02 09:09:45 A . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:2006/11/02 09:09:41 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:2006/11/02 09:09:29 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:2006/11/02 09:09:35 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:2006/11/02 09:09:38 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:2006/11/02 09:09:40 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:2006/11/02 09:09:31 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:2006/11/02 09:09:20 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:2006/11/02 09:09:23 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:2006/11/02 09:09:24 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:2006/11/02 09:09:26 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:2006/11/02 09:09:22 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (6) - 1s O61 - LFC: 2015/09/02 19:18:01 A . (..) -- C:\Windows\system32\config\systemprofile\AppData\Roaming\Adobe\Acrobat\9.0\UserCache.bin [68618] O61 - LFC: 2015/08/31 20:27:07 A . (..) -- C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\1036\StructuredQuerySchema.bin [224639] O61 - LFC: 2015/09/02 15:15:29 A . (..) -- C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [674082] O61 - LFC: 2015/08/28 15:16:32 A . (..) -- C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\EVWhitelist\7\_platform_specific\all\ev_hashes_whitelist.bin [674082] O61 - LFC: 2015/08/31 21:10:16 A . (.Copyright © Babylon Ltd. 1997-2013.) -- C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.11_0\BabylonChromeToolBar.dll [125440] =>PUP.Optional.Babylon O61 - LFC: 2015/08/31 21:10:16 A . (.Copyright (C) 1997-2013.) -- C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.11_0\BUSolution.dll [708608] ---\\ Associations Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe © O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe © O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\wscript.exe © O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe © O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Users\Admin\AppData\Local\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Internet Explorer\iexplore.ex http://start.qone8.com/ O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Users\Admin\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Users\Admin\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Users\Admin\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © ---\\ Recherche d'infection sur les navigateurs (3) - 0s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - () - http://search.live.com/ O69 - SBI: SearchScopes [HKUS\.DEFAULT] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - () - http://search.live.com/ O69 - SBI: SearchScopes [HKUS\S-1-5-18] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - () - http://search.live.com/ ---\\ Enumère les services démarrés par Svchost (31) - 0s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [24576] © O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [62976] © O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] © O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448] © O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448] © O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [125952] © O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [574464] © O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [438272] © O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [314368] © O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] © O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d'accès distant.) -- C:\Windows\System32\rasmans.dll [260608] © O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [68608] © O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [47104] © O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\Windows\System32\ipnathlp.dll [288256] © O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242688] © O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes Termi.) -- C:\Windows\System32\termsrv.dll [448512] © O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1929952] © O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [758272] © O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] © O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [190464] © O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [19968] © O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [33280] © O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [111616] © O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [45056] © O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [153600] © O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [57344] © O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [161792] © O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [603648] © O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service de configuration des services Termi.) -- C:\Windows\System32\SessEnv.dll [84992] © O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [81920] © O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [68096] © ---\\ Liste des exceptions du parefeu Windows (3) - 3s O87 - FAEL: "{292060C5-60AE-43D8-9134-BFCCDC17E5A6}" [In-None-P6-TRUE] .(...) -- C:\ProgramData\eSafe\eGdpSvc.exe (.not file.) O87 - FAEL: "TCP Query User{81148E3D-8594-4974-96E8-99DA3D40AA94}C:\program files\videolan\vlc\vlc.exe" [In-None-P6-TRUE] .(...) -- C:\program files\videolan\vlc\vlc.exe O87 - FAEL: "UDP Query User{745521AC-5F10-4D04-850D-354C026F41D4}C:\program files\videolan\vlc\vlc.exe" [In-None-P17-TRUE] .(...) -- C:\program files\videolan\vlc\vlc.exe ---\\ Enumère les codes produits des logiciels (1) - 1s O90 - PUC: "3192AA38321C641458DBDAF83979D193" . (.BabylonObjectInstaller.) =>PUP.Optional.Babylon ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (17) - 16s SS - Demand [2015/09/01 13:52:10] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe © SS - Auto [2015/04/28 08:22:04] [ 178568] Service de mise à jour Ask (APNMCP) . (.APN LLC..) - C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe =>Toolbar.Ask SS - Auto [2013/10/01 18:56:42] [ 148000] Service DealPly Live (dealplylive) (dealplylive) . (.DealPly Technologies Ltd.) - C:\Program Files\DealPlyLive\Update\DealPlyLive.exe =>PUP.Optional.Dealply SS - Demand [2013/10/01 18:56:42] [ 148000] Service DealPly Live (dealplylivem) (dealplylivem) . (.DealPly Technologies Ltd.) - C:\Program Files\DealPlyLive\Update\DealPlyLive.exe =>PUP.Optional.Dealply SS - Auto [2014/02/19 14:56:20] [ 187432] F-Secure Dll Hoster (fshoster) . (.F-Secure Corporation.) - C:\Program Files\VOO Internet Security\fshoster32.exe © SS - Demand [2015/06/12 14:33:36] [ 216104] FSMA (FSMA) . (.F-Secure Corporation.) - C:\Program Files\VOO Internet Security\apps\ComputerSecurity\Common\FSMA32.EXE © SS - Auto [2015/03/09 20:49:13] [ 60456] F-Secure ORSP Client (FSORSPClient) . (.F-Secure Corporation.) - C:\Program Files\VOO Internet Security\apps\CCF_Reputation\fsorsp.exe © SS - Auto [2015/09/01 12:27:37] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe © SS - Demand [2015/09/01 12:27:37] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe © SS - Demand [2012/08/23 12:55:51] [ 194032] Google Software Updater (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe © SS - Auto [2006/12/14 17:49:10] [ 61440] LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe © SS - Demand [2014/04/09 15:12:50] [ 235696] McAfee Security Scan Component Host Service (McComponentHostService) . (.McAfee, Inc..) - C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe © SS - Demand [2006/12/23 17:54:04] [ 262144] NMIndexingService (NMIndexingService) . (.Nero AG.) - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe © SS - Auto [2014/12/11 10:30:48] [ 315496] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe © SS - Auto [2013/09/29 11:05:37] [ 1734680] (vToolbarUpdater17.0.1) . (.AVG Secure Search.) - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\17.0.1\ToolbarUpdater.exe =>Toolbar.AVGSearch SS - Auto [2015/05/14 14:51:48] [ 1812416] (vToolbarUpdater18.5.0) . (.AVG Secure Search.) - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\18.5.0\ToolbarUpdater.exe =>Toolbar.AVGSearch ---\\ Scan Additionnel (57) - 0s C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb C:\Program Files\DealPlyLive\Update\1.3.23.0\npGoogleUpdate3.dll =>PUP.Optional.Dealply C:\Program Files\BabylonToolbar\BabylonToolbar\1.6.4.6\bh\BabylonToolbar.dll =>PUP.Optional.Babylon HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2EECD738-5844-4a99-B4B6-146BF802613B} =>PUP.Optional.Babylon C:\Program Files\AVG Secure Search\18.5.0.909\AVG Secure Search_toolbar.dll =>Toolbar.AVGSearch HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233} =>Toolbar.AVGSearch HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440} =>PUP.Optional.Bandoo C:\Program Files\Yontoo\YontooIEClient.dll =>PUP.Optional.Yontoo HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8} =>PUP.Optional.Yontoo C:\Program Files\BabylonToolbar\BabylonToolbar\1.6.4.6\BabylonToolbarTlbr.dll =>PUP.Optional.Babylon C:\Program Files\AskPartnerNetwork\Toolbar\ORJ\Passport.dll =>Toolbar.AskBar C:\Program Files\AVG Secure Search\vprot.exe =>Toolbar.AVGSearch C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe =>Toolbar.AskBar C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\18.5.0\ViProtocol.dll =>Toolbar.AVGSearch HKLM\SYSTEM\CurrentControlSet\Services\APNMCP =>Toolbar.Ask C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe =>Toolbar.Ask HKLM\SYSTEM\CurrentControlSet\Services\dealplylive =>PUP.Optional.Dealply C:\Program Files\DealPlyLive\Update\DealPlyLive.exe =>PUP.Optional.Dealply HKLM\SYSTEM\CurrentControlSet\Services\vToolbarUpdater17.0.1 =>Toolbar.AVGSearch C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\17.0.1\ToolbarUpdater.exe =>Toolbar.AVGSearch HKLM\SYSTEM\CurrentControlSet\Services\vToolbarUpdater18.5.0 =>Toolbar.AVGSearch C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\18.5.0\ToolbarUpdater.exe =>Toolbar.AVGSearch HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BabylonToolbar =>PUP.Optional.Babylon HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DealPly =>PUP.Optional.Dealply HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WsysControl =>PUP.Optional.eSafeSecurity HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4F524A00-6A76-A76A-76A7-A758B70C1D00} =>PUP.Optional.Bandoo HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{83AA2913-C123-4146-85BD-AD8F93971D39} =>PUP.Optional.Babylon HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B} =>PUP.Optional.Yontoo HKLM\SOFTWARE\AskPartnerNetwork =>Toolbar.AskBar HKLM\SOFTWARE\AVG Secure Search =>Toolbar.AVGSearch HKLM\SOFTWARE\AVG Security Toolbar =>Toolbar.AVGSearch HKLM\SOFTWARE\Babylon =>PUP.Optional.Babylon HKLM\SOFTWARE\BabylonToolbar =>PUP.Optional.Babylon HKLM\SOFTWARE\DealPly =>PUP.Optional.Dealply HKLM\SOFTWARE\DealPlyLive =>PUP.Optional.Dealply HKLM\SOFTWARE\Tarma Installer =>PUP.Optional.Tarma HKCU\SOFTWARE\AskPartnerNetwork =>Toolbar.AskBar C:\Program Files\AskPartnerNetwork =>Toolbar.AskBar C:\Program Files\AVG Secure Search =>Toolbar.AVGSearch C:\Program Files\BabylonToolbar =>PUP.Optional.Babylon C:\Program Files\DealPly =>PUP.Optional.Dealply C:\Program Files\DealPlyLive =>PUP.Optional.Dealply C:\Program Files\Yontoo =>PUP.Optional.Yontoo C:\ProgramData\APN =>Toolbar.Ask C:\ProgramData\AskPartnerNetwork =>Toolbar.YahooPartner C:\ProgramData\AVG Secure Search =>Toolbar.AVGSearch C:\ProgramData\Babylon =>PUP.Optional.Babylon C:\ProgramData\DealPlyLive =>PUP.Optional.Dealply C:\ProgramData\Tarma Installer =>PUP.Optional.Tarma C:\Program Files\Common Files\AVG Secure Search =>Toolbar.AVGSearch C:\Windows\Prefetch\BABYLONTOOLBARSRV.EXE-31C96532.pf =>PUP.Optional.Babylon C:\Windows\Prefetch\DEALPLYLIVE.EXE-7BB1D07F.pf =>PUP.Optional.Dealply C:\Windows\Prefetch\DEALPLYLIVEHANDLER.EXE-53F10C90.pf =>PUP.Optional.Dealply C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.11_0\BabylonChromeToolBar.dll =>PUP.Optional.Babylon HKLM\Software\Classes\Installer\Products\3192AA38321C641458DBDAF83979D193 =>PUP.Optional.Babylon HKLM\Software\Classes\Installer\Features\3192AA38321C641458DBDAF83979D193 =>PUP.Optional.Babylon HKLM\SYSTEM\CurrentControlSet\Services\dealplylivem =>PUP.Optional.Dealply ---\\ Récapitulatif des éléments trouvées sur votre station (12) - 0s http://www.nicolascoolman.fr/pup-babylon/ =>PUP.Optional.Babylon http://www.nicolascoolman.fr/blog =>Toolbar.AVGSearch http://www.nicolascoolman.fr/pup-dealply/ =>PUP.Optional.Dealply http://www.nicolascoolman.fr/hijacker-qone8 / =>PUP.Optional.Qone8 http://www.nicolascoolman.fr/adware-bandoo/ =>PUP.Optional.Bandoo http://www.nicolascoolman.fr/adware-yontoo/ =>PUP.Optional.Yontoo http://www.nicolascoolman.fr/blog =>Toolbar.AskBar http://www.nicolascoolman.fr/toolbar-ask/ =>Toolbar.Ask http://www.nicolascoolman.fr/pup-software-updater/ =>PUP.Optional.SoftwareUpdater http://www.nicolascoolman.fr/pup-esafesecurity/ =>PUP.Optional.eSafeSecurity http://www.nicolascoolman.fr/pup-tarma/ =>PUP.Optional.Tarma http://www.nicolascoolman.fr/blog =>Toolbar.YahooPartner ~ End of the scan, 23849 items in 80 seconds (678)(0)()