~ ZHPDiag v2015.11.17.169 Par Nicolas Coolman (2015/11/17) ~ Démarré par Stéphane et Karine (Administrator) (2015/11/17 10:38:26) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\Stéphane et Karine\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Stéphane et Karine\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows VISTA, 32-bit Service Pack 2 (Build 6002) ---\\ Navigateurs Internet (3) - 0s GCIE: Google Chrome v24.0.1312.52 MFIE: Mozilla Firefox 42.0 (x86 fr) v42.0 MSIE: Internet Explorer v8.0.6001.19698 ---\\ Informations sur les produits Windows (4) - 3s ~ Windows Server License Manager Script : OK System - VBScript Engine not found Windows Automatic Updates : OK Windows Activation Technologies : KO ---\\ Logiciels de protection (2) - 5s Malwarebytes Anti-Malware version 2.1.8.1057 Windows Defender VISTA (Activate) ---\\ Logiciels de protection et autres (Superflus) (1) - 5s McAfee Security Scan Plus v3.0.318.3 ---\\ Logiciels d'optimisation (1) - 6s CCleaner v3.23 ---\\ Surveillance de Logiciels (2) - 6s Adobe Flash Player 19 NPAPI Adobe Reader X ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 6 Model 15 Stepping 13, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 3077.9 MB (35% free) System Restore: Activé (Enable) System drive C: has 55 GB () free of 335 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: STEPHANE ~ User Name: Stéphane et Karine ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 55 GB free of 335 GB (System) ~ Drive H: has 7 GB free of 7 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: Modified [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (24) - 1s [MD5.D07D4C3038F3578FFCE1C0237F2A1253] - 11/04/2009 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2926592] © [MD5.4B555106290BD117334E9A08761C035A] - 02/11/2006 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] © [MD5.101BA3EA053480BB5D957EF37C06B5ED] - 19/01/2008 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [96768] © [MD5.598C3EBF5B6E319F55DE06C4714A3EE2] - 31/10/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [916992] © [MD5.898E7C06A350D4A1A64A9EA264D55452] - 11/04/2009 - (.Microsoft Corporation - Application d'ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [314368] © [MD5.85E861D0B88DB2B54ACB0839654C09F7] - 02/03/2011 - (.Microsoft Corporation - DNS DLL de l'API Client.) -- C:\Windows\System32\dnsapi.dll [168448] © [MD5.95F5FF73B076576C41740F1A842B9B57] - 19/01/2008 - (.Microsoft Corporation - DLL client de l'API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] © [MD5.4A0978779958D8FE8F5849F452BCC812] - 13/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [273408] © [MD5.1F05B78AB91C9075565A9D8A4B880BC4] - 11/04/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [19944] © [MD5.7ADD03E75BEB9E6DD102C3081D29840A] - 19/01/2008 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70144] © [MD5.6B4BFFB9BECD728097024276430DB314] - 11/04/2009 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [67072] © [MD5.622C41A07CA7E6DD91770F50D532CB6C] - 14/04/2011 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [75264] © [MD5.062452B7FFD68C8C042A6261FE8DFF4A] - 11/04/2009 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [561152] © [MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - 19/01/2008 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [54784] © [MD5.8793643A67B42CEC66490B2A0CF92D68] - 19/01/2008 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [100864] © [MD5.1B864548B2ACEC1C0BB29B615CC42978] - 09/01/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [107008] © [MD5.ECD64230A59CBD93C85F1CD1CAB9F3F6] - 11/04/2009 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [185856] © [MD5.2C1121F2B87E9A6B12485DF53CD848C7] - 03/03/2013 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1082232] © [MD5.0FA9B5055484649D63C303FE404E5F4D] - 02/11/2006 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [79360] © [MD5.A214ADBAF4CB47DD2728859EF31F26B0] - 19/01/2008 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [76288] © [MD5.E8BD98D46F2ED77132BA927FCCB47D8B] - 02/11/2006 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [242688] © [MD5.7B75299A4D201D6A6533603D6914AB04] - 11/04/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [66560] © [MD5.EC565DFA3D9C45D8083B72DEC5B33710] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [72192] © [MD5.786DB5771F05EF300390399F626BF30A] - 21/08/2012 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [224640] © ---\\ Liste des services NT non Microsoft et non désactivés (15) - 1s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe © O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe © O23 - Service: Garmin Device Interaction Service (Garmin Device Interaction Service) . (.Garmin Ltd. or its subsidiaries - Garmin Service.) - C:\Program Files\Garmin\Device Interaction Service\GarminService.exe © O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe © O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe © O23 - Service: KeyMaze Service (KeymazeService) . (.Copyright © 2011 - KeyMaze2Service.) - C:\Program Files\Keymaze\KeyMaze2Service.exe O23 - Service: Ma-Config Agent (MaConfigAgent) . (.CybelSoft - Service de détection matériel.) - C:\Program Files\ma-config.com\MaConfigAgent.exe © O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe © O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe © O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 358.9.) - C:\Windows\System32\nvvsvc.exe © O23 - Service: PDF Architect Helper Service (PDF Architect Helper Service) . (.pdfforge GbR - PDF Architect Helper Service.) - C:\Program Files\PDF Architect\HelperService.exe © O23 - Service: PDF Architect Service (PDF Architect Service) . (.pdfforge GbR - PDF Architect Conversion Service.) - C:\Program Files\PDF Architect\ConversionService.exe © O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004 - RichVideo Module.) - C:\Program Files\CyberLink\Shared Files\RichVideo.exe O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) . (.Sonic Solutions - RoxSniffer9 Module.) - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe © O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe © ---\\ Tâches planifiées en automatique (35) - 6s [MD5.2EED3542F86F77D56569504B37C8108A] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1045720] © [MD5.280A526E8111AC6A5BCC1A059E1E0340] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [269000] © [MD5.D9E35285D8CCE58241038E5B23507DAB] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [1382112] © [MD5.4B0583A0A6A22D9F453BFFD467E68190] [APT] [avastBCLRestartS-1-5-21-4073979474-4024676391-4202988666-1002] (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe [392872] © [MD5.FA52C48CA18EDFB00180FD465E8F0B08] [APT] [Extension de garantie] (.Packard Bell BV.) -- C:\Program Files\Packard Bell\SetupmyPC\PBCarNot.exe [425016] [MD5.690FF806F9DF3F28270CE057D1170DD3] [APT] [GarminUpdaterTask] (.Copyright © 2015.) -- C:\Program Files\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [25512] [MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [135664] © [MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [135664] © [MD5.BBFF07307C2A755AEEFDCA06F5540382] [APT] [ParetoLogic Update Version3] (.Copyright (C) 2013.) -- C:\Program Files\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe [1982976] =>.Superfluous.Paretologic [MD5.BBFF07307C2A755AEEFDCA06F5540382] [APT] [ParetoLogic Update Version3 Startup Task] (.Copyright (C) 2013.) -- C:\Program Files\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe [1982976] =>.Superfluous.Paretologic [MD5.2EED3542F86F77D56569504B37C8108A] [APT] [Programme de mise … jour en ligne de Adobe] (.Adobe Systems Incorporated.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1045720] © [MD5.B6D82C30267289D56B4BFDE3715D8F9F] [APT] [Recovery DVD Creator] (.Packard Bell BV.) -- C:\Program Files\Packard Bell\SetupMyPc\MCDCheck.exe [428600] [MD5.4B0583A0A6A22D9F453BFFD467E68190] [APT] [{10994C42-6828-45BE-A3D5-4659F2DA9E51}] (.Mozilla Corporation.) -- c:\program files\mozilla firefox\firefox.exe [392872] © [MD5.4B0583A0A6A22D9F453BFFD467E68190] [APT] [{2967ACF8-3F3A-4CE8-BF02-AC4600B5462A}] (.Mozilla Corporation.) -- c:\program files\mozilla firefox\firefox.exe [392872] © [MD5.4B0583A0A6A22D9F453BFFD467E68190] [APT] [{4F7731AB-D7E7-4A82-97CB-38EB12256817}] (.Mozilla Corporation.) -- c:\program files\mozilla firefox\firefox.exe [392872] © [MD5.4B0583A0A6A22D9F453BFFD467E68190] [APT] [{E03F909E-5C4D-4B1B-9C8C-A2BFCBDD2BE0}] (.Mozilla Corporation.) -- c:\program files\mozilla firefox\firefox.exe [392872] © [MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [Apple\AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [561984] © O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] © O39 - APT: Extension de garantie - (.Packard Bell BV.) -- C:\Windows\Tasks\Extension de garantie.job [366] O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1052] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1056] © O39 - APT: ParetoLogic Update Version3 Startup Task - (.Copyright (C) 2013.) -- C:\Windows\Tasks\ParetoLogic Update Version3 Startup Task.job [496] =>.Superfluous.Paretologic O39 - APT: ParetoLogic Update Version3 - (.Copyright (C) 2013.) -- C:\Windows\Tasks\ParetoLogic Update Version3.job [444] =>.Superfluous.Paretologic O39 - APT: Recovery DVD Creator - (.Packard Bell BV.) -- C:\Windows\Tasks\Recovery DVD Creator.job [366] O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [3874] © O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3854] © O39 - APT: avast! Emergency Update - (.AVAST Software.) -- C:\Windows\System32\Tasks\avast! Emergency Update [4182] © O39 - APT: avastBCLRestartS-1-5-21-4073979474-4024676391-4202988666-1002 - (.Mozilla Corporation.) -- C:\Windows\System32\Tasks\avastBCLRestartS-1-5-21-4073979474-4024676391-4202988666-1002 [3188] © O39 - APT: Extension de garantie - (.Packard Bell BV.) -- C:\Windows\System32\Tasks\Extension de garantie [3250] O39 - APT: GarminUpdaterTask - (.Copyright © 2015.) -- C:\Windows\System32\Tasks\GarminUpdaterTask [3542] O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3800] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4052] © O39 - APT: ParetoLogic Update Version3 - (.Copyright (C) 2013.) -- C:\Windows\System32\Tasks\ParetoLogic Update Version3 [3280] =>.Superfluous.Paretologic O39 - APT: ParetoLogic Update Version3 Startup Task - (.Copyright (C) 2013.) -- C:\Windows\System32\Tasks\ParetoLogic Update Version3 Startup Task [2948] =>.Superfluous.Paretologic O39 - APT: Recovery DVD Creator - (.Packard Bell BV.) -- C:\Windows\System32\Tasks\Recovery DVD Creator [3250] ---\\ Processus lancés (33) - 2s [MD5.1AFE6A403B446C27371B6227BE8A0179] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 358.9.) -- C:\Windows\System32\nvvsvc.exe [671352] [PID.964] © [MD5.361AC27C5F48FE60995707C0FCFC074E] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [974968] [PID.1428] © [MD5.1AFE6A403B446C27371B6227BE8A0179] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 358.9.) -- C:\Windows\System32\nvvsvc.exe [671352] [PID.1436] © [MD5.11120878E5276B367E1A10FF8C9B595B] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600] [PID.1796] © [MD5.F6CEFEF46986DE02A3AE5D93AE32B5DC] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.2028] © [MD5.A089A1D3A8231185E05AA816DA610260] - (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [922400] [PID.2280] © [MD5.FD61DE3DF12E7DD93D4854D31D3348EA] - (.Copyright © 2011 - KeyMaze2Service.) -- C:\Program Files\Keymaze\KeyMaze2Service.exe [58368] [PID.2332] [MD5.9927E906D7997D22E67E476710127070] - (.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-config.com\MaConfigAgent.exe [2117448] [PID.2400] © [MD5.C2909BD26906E1D05D77B1D48B48E94A] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1873696] [PID.2564] © [MD5.A1688A4FB2EC49D040C027EF6DC7A87B] - (.pdfforge GbR - PDF Architect Helper Service.) -- C:\Program Files\PDF Architect\HelperService.exe [1324104] [PID.2676] © [MD5.E23FF9B2F8EEAB2BDDA681C21C48E843] - (.pdfforge GbR - PDF Architect Conversion Service.) -- C:\Program Files\PDF Architect\ConversionService.exe [795208] [PID.2704] © [MD5.C3162AC1B592CEB43ABE2F972A7222D3] - (.Copyright 2004 - RichVideo Module.) -- C:\Program Files\CyberLink\Shared Files\RichVideo.exe [266343] [PID.2756] [MD5.5240A6EF7387964F2DA24A60FAAA5FB0] - (.Avast Software - AvastVirtualBox Interface.) -- C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3219136] [PID.3320] © [MD5.8F0DE4FEF8201E306F9938B0905AC96A] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [135664] [PID.3804] © [MD5.F3B864BF39CDB3A71F2774DD02FC1090] - (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe [4390912] [PID.1024] © [MD5.BF38C273C3EC524880AF0AEB2E7CE160] - (.Sonic Solutions - RoxMMTrayApp Module.) -- C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe [232184] [PID.4048] © [MD5.E26642C193B81F2AA06D6013D4E07D03] - (...) -- C:\Program Files\CyberLink\MagicSports\Kernel\MagicSports\MSPMirage.exe [102400] [PID.2728] [MD5.63E9C23A386FFFA84B5E03BFF9B628F0] - (.Brother Industries, Ltd. - Status Monitor Application.) -- C:\Program Files\Browny02\Brother\BrStMonW.exe [3076096] [PID.1792] © [MD5.B40A3D4CB1ED4A137B7F279DA47E21ED] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [1818744] [PID.1080] © [MD5.6BE70A935DFD72F47C29757305B50B1E] - (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2655520] [PID.4108] © [MD5.4D34638771AC8C1C49600B99FA96CDE5] - (.Brother Industries, Ltd. - ControlCenter Main Process.) -- C:\Program Files\ControlCenter4\BrCtrlCntr.exe [579584] [PID.4164] © [MD5.6FCCCAA9144312CD4AA1B38834DD9857] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe [6133520] [PID.4216] © [MD5.4A59A9F53628FD76EAA3EDFE9903BBFD] - (.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\Bin\IncMail.exe [366536] [PID.4240] [MD5.A20F03EE3559EDB218343A516F7A7F41] - (...) -- C:\Users\Stéphane et Karine\AppData\Roaming\cacaoweb\cacaoweb.exe [554288] [PID.4248] =>.Superfluous.CacaoWeb [MD5.6B6FB26E4E46D55E26A01660B040F771] - (.TomTom - TomTom MySports Connect.) -- C:\Program Files\TomTom\MySportsConnect\TomTom MySports Connect.exe [3805184] [PID.4304] © [MD5.DB109DA005B6FE2A350C5DD7CA768DFD] - (.Brother Industries, Ltd. - BrYNCSvc.) -- C:\Program Files\Browny02\BrYNSvc.exe [266240] [PID.4532] © [MD5.2D4040F03702E79F6FA98D2E76BA831F] - (.Sonic Solutions - ROXHelpRunner Module.) -- C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe [17656] [PID.4764] © [MD5.F4762082DDCFD241BE8BA5DD35133F4A] - (.IncrediMail, Ltd. - IncrediMail Tray Application.) -- C:\Program Files\IncrediMail\Bin\ImApp.exe [264136] [PID.4956] [MD5.A69A8F293968F5D9272B4AA2BC6A925B] - (.Brother Industries, Ltd. - ControlCenter UX System.) -- C:\Program Files\ControlCenter4\BrCcUxSys.exe [1537536] [PID.1700] © [MD5.F12B0B2092080798638B01759FCD1DB4] - (.Nicolas Coolman - ZHPCleaner.) -- C:\Users\Stéphane et Karine\AppData\Roaming\ZHP\ZHPCleaner.exe [1867264] [PID.6440] © [MD5.2AC1D01B3A67ACCD5F96388BA3B33029] - (.NVIDIA Corporation - OpenAutomate wrapper cache.) -- C:\Users\Stéphane et Karine\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe [630200] [PID.6192] © [MD5.4B0583A0A6A22D9F453BFFD467E68190] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [392872] [PID.6624] © [MD5.FFD5B51CF3F5E8054D6CFE3C38440C71] - (.Copyright (C) 2015 Nicolas Coolman - ZHPDiag.) -- C:\Users\Stéphane et Karine\Desktop\ZHPDiag3.exe [1970688] [PID.7176] © ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (20) - 3s M0 - MFSP: prefs.js [Stéphane et Karine - 2427xcz6.default] https://secure.fr.vente-privee.com/authentication/portal/FR M1 - SPR:Search Page Redirection - C:\Program Files\Mozilla Firefox\extensions\{3112ca9c-de6d-4884-a869-9855de68056c} P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.FRA P2 - EXT FILE: (...) -- C:\Users\Stéphane et Karine\AppData\Roaming\Mozilla\Firefox\Profiles\2427xcz6.default\extensions\DivXWebPlayer@divx.com.xpi P2 - EXT FILE: (...) -- C:\Users\Stéphane et Karine\AppData\Roaming\Mozilla\Firefox\Profiles\2427xcz6.default\extensions\{9043274e-2784-490d-81b2-8c566b98bd1f}.xpi P2 - EXT FILE: (...) -- C:\Users\Stéphane et Karine\AppData\Roaming\Mozilla\Firefox\Profiles\2427xcz6.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi P2 - EXT FILE: (...) -- C:\Users\Stéphane et Karine\AppData\Roaming\Mozilla\Firefox\Profiles\2427xcz6.default\searchplugins\bing-avast.xml P2 - EXT FILE: (...) -- C:\Users\Stéphane et Karine\AppData\Roaming\Mozilla\Firefox\Profiles\2427xcz6.default\searchplugins\bingp.xml P2 - EXT FILE: (...) -- C:\Users\Stéphane et Karine\AppData\Roaming\Mozilla\Firefox\Profiles\2427xcz6.default\searchplugins\commentcamarchenet.xml P2 - EXT FILE: (...) -- C:\Users\Stéphane et Karine\AppData\Roaming\Mozilla\Firefox\Profiles\2427xcz6.default\searchplugins\wikimini-lencyclopdie-pour-enfants-fr.xml P2 - EXT FILE: (...) -- C:\Users\Stéphane et Karine\AppData\Roaming\Mozilla\Firefox\Profiles\2427xcz6.default\searchplugins\yahoo-avast.xml P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} © P2 - EXT: (.http://www.cacaoweb.org/ - cacaoweb.) -- C:\Users\Stéphane et Karine\AppData\Roaming\Mozilla\Firefox\Profiles\2427xcz6.default\extensions\cacaoweb@cacaoweb(534).org =>.Superfluous.CacaoWeb P2 - EXT: (.http://www.cacaoweb.org/ - cacaoweb.) -- C:\Users\Stéphane et Karine\AppData\Roaming\Mozilla\Firefox\Profiles\2427xcz6.default\extensions\cacaoweb@cacaoweb.org =>.Superfluous.CacaoWeb P2 - EXT: (.Babylon - Babylon.) -- C:\Users\Stéphane et Karine\AppData\Roaming\Mozilla\Firefox\Profiles\2427xcz6.default\extensions\ffxtlbr@babylon(21).com =>PUP.Optional.Babylon P2 - EXT: (.Michel Gutierrez - DownloadHelper.) -- C:\Users\Stéphane et Karine\AppData\Roaming\Mozilla\Firefox\Profiles\2427xcz6.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}(30) © P2 - FPN: [HKCU] [amazon.com/AmazonMP3DownloaderPlugin] - (.Amazon.com, Inc..) -- C:\Users\Stéphane et Karine\AppData\Local\Program Files\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin10181.dll P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_19_0_0_245.dll © P2 - FPN: [HKLM] [@gametap.com/npdd,version=1.0] - (.Metaboli.) -- C:\Program Files\Downloader\npdd.dll P2 - FPN: [HKLM] [@videolan.org/vlc,version=1.1.11] - (.the VideoLAN Team.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (9) - 1s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/ R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.msn.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (5) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) © F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) © F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl" ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (0) ---\\ Browser Helper Object de navigateur (BHO) (6) - 0s O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} (Orphean) O2 - BHO: Increase performance and video formats for your HTML5