~ ZHPDiag v2015.12.29.199 Par Nicolas Coolman (2015/12/29) ~ Démarré par Administrateur (Administrator) (2015/12/29 07:54:11) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Documents and Settings\Administrateur\Bureau\ZHPDiag.txt ~ Rapport: C:\Documents and Settings\Administrateur\Application Data\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ Démarrage du système: Normal (Normal boot) Windows XP, 32-bit Service Pack 3 (Build 2600) ---\\ Navigateurs Internet (3) - 0s GCIE: Google Chrome v47.0.2526.106 MFIE: Mozilla Firefox 43.0.2 (x86 ar) v43.0.2 MSIE: Internet Explorer v8.0.6001.18702 ---\\ Informations sur les produits Windows (4) - 0s Windows Automatic Updates : OK Windows Activation Technologies : KO Windows Genuine Advantage : OK Windows Guenuine Advantage (antiwpa) : OK ---\\ Logiciels de protection (1) - 1s Avast Free Antivirus v10.4.2233 ---\\ Surveillance de Logiciels (2) - 1s Adobe Flash Player 20 PPAPI Adobe Reader XI ---\\ Informations sur le système (7) - 0s ~ Operating System: x86 Family 6 Model 23 Stepping 10, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 1012.908 MB (29% free) System Restore: Désactivé (Disabled) System drive C: has 22 GB () free of 39 GB Total RAM: 1012.908 MB (39% free) ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: LILE-0AD77A819F ~ User Name: Administrateur ~ Logged in as Administrator ---\\ Enumération des unités disques (4) - 0s ~ Drive C: has 22 GB free of 39 GB (System) ~ Drive D: has 82 GB free of 89 GB ~ Drive E: has 85 GB free of 89 GB ~ Drive F: has 83 GB free of 85 GB ---\\ Etat du Centre de Sécurité Windows (8) - 0s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: Modified [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (23) - 1s [MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - 14/04/2008 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [1037824] © [MD5.93AD0B78C7357A05F50E594EC7C22300] - 14/04/2008 - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\rundll32.exe [33792] © [MD5.E1948B1F45A176FB4A0251446A5AE86D] - 06/03/2014 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\WINDOWS\System32\wininet.dll [920064] © [MD5.DD73D6B9F6B4CB630CF35B438B540174] - 14/04/2008 - (.Microsoft Corporation - Application d'ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [512000] © [MD5.4992C88B25C429744D255C35C756BB7B] - 03/03/2011 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\System32\dnsapi.dll [149504] © [MD5.F6B7B1ECD7B41736BDB6FF4B092BCB79] - 17/08/2011 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [138496] © [MD5.9F3A2F5AA6875C72BF062C712CFA2674] - 13/04/2008 - (.Microsoft Corporation - IDE/ATAPI Port Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [96512] © [MD5.C885B02847F5D2FD45A24E219ED93B32] - 14/04/2008 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [63744] © [MD5.1F4260CC5B42272D71F79E570A27A4FE] - 14/04/2008 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [62976] © [MD5.31F923EB2170FC172C81ABDA0045D18C] - 14/04/2008 - (.Microsoft Corporation - Pilote de cryptographie FIPS.) -- C:\WINDOWS\System32\drivers\Fips.sys [44672] © [MD5.573C7D0A32852B48F3058CFD8026F511] - 14/04/2008 - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [144384] [MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - 14/04/2008 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [54144] © [MD5.083A052659F5310DD8B6A6CB05EDCF8E] - 14/04/2008 - (.Microsoft Corporation - IMAPI Kernel Driver.) -- C:\WINDOWS\System32\drivers\Imapi.sys [42112] © [MD5.CC748EA12C6EFFDE940EE98098BF96BB] - 14/04/2008 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [152832] © [MD5.23C74D75E36E7158768DD63D92789A91] - 14/04/2008 - (.Microsoft Corporation - IPSec Driver.) -- C:\WINDOWS\System32\drivers\IPSec.sys [75264] © [MD5.FB2FCCC70F7174C7BF64F48E96D3ADF4] - 15/07/2011 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [457856] © [MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - 14/04/2008 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [162816] © [MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - 14/04/2008 - (.Microsoft Corporation - NT File System Driver.) -- C:\WINDOWS\System32\drivers\ntfs.sys [574976] © [MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - 16/12/2008 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [80384] © [MD5.11B4A627BC9614B885C4969BFA5FF8A6] - 14/04/2008 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [51328] © [MD5.15CABD0F7C00C47C70124907916AF3F1] - 13/04/2008 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [196224] © [MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - 13/04/2008 - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) -- C:\WINDOWS\System32\drivers\redbook.sys [58752] © [MD5.46DE1126684369BACE4849E4FC8C43CA] - 14/04/2008 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [53376] © ---\\ Liste des services NT non Microsoft et non désactivés (4) - 0s O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software a.s.® O23 - Service: egGetSvc (egGetSvc) . (.Copyright (C) EagleGet 2014~2015 - EGMonitor.) - C:\Program Files\EagleGet\EGMonitor.exe O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: VIA Karaoke digital mixer Service (KaraokeService) . (.VIA Technologies, Inc. - Service binary.) - C:\WINDOWS\system32\KaraokeSer.exe =>.VIA Technologies Inc.® ---\\ Processus lancés (7) - 1s [MD5.255E405D801CF01247390F38F92D8042] - (...) -- C:\Program Files\Unlocker\UnlockerAssistant.exe [17408] [PID.2004] [MD5.F7601441AB1706C39963E504A1FD2605] - (.EagleGet.com - EagleGet Free Downloader.) -- C:\Program Files\EagleGet\EagleGet.exe [1898496] [PID.2024] [MD5.387A6776E327112B5D012F0D108C8AF5] - (.Copyright (C) EagleGet 2014~2015 - EGMonitor.) -- C:\Program Files\EagleGet\EGMonitor.exe [235520] [PID.428] [MD5.233B5852363BFB41D73D219FA8528AF4] - (.BitTorrent Inc. - WebHelper.) -- C:\Documents and Settings\Administrateur\Application Data\uTorrent\updates\3.4.5_41372\utorrentie.exe [336896] [PID.1536] [MD5.233B5852363BFB41D73D219FA8528AF4] - (.BitTorrent Inc. - WebHelper.) -- C:\Documents and Settings\Administrateur\Application Data\uTorrent\updates\3.4.5_41372\utorrentie.exe [336896] [PID.1868] [MD5.387A6776E327112B5D012F0D108C8AF5] - (.Copyright (C) EagleGet 2014~2015 - EGMonitor.) -- C:\Program Files\EagleGet\EGMonitor.exe [235520] [PID.2248] [MD5.5A1F89FA66AA5581EBF82EF45D4E2A98] - (.Copyright (C) 2015 Nicolas Coolman - ZHPDiag.) -- C:\Documents and Settings\Administrateur\Mes documents\EGDownloads\ZHPDiag3.exe [2048000] [PID.968] © ---\\ Google Chrome, Démarrage,Recherche,Extensions (6) - 0s G0 - GCSP: Preferences [User Data\Default][HomePage] http://r20---sn-hgn7zn7e.gvt1.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://redirector.gvt1.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients2.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.dz ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (5) - 1s M0 - MFSP: prefs.js [Administrateur - tq82vj4k.default-1433961452859] https://www.google.com P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} © P2 - EXT: (.EagleGet - EagleGet.) -- C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\tq82vj4k.default-1433961452859\extensions\eagleget_ffext@eagleget.com © P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_20_0_0_235.dll © P2 - FPN: [HKLM] [@qq.com/QQlive] - (.QQLive.) -- C:\Program Files\Tencent\QQLive\9.10.1059.0\npQQLive.dll =>PUP.Optional.TencentAddressBar ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (11) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.gamehitzone.com/ R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.wolframalpha.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.wolframalpha.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.wolframalpha.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.wolframalpha.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 0 R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 1 ---\\ Internet Explorer,Proxy Management (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) © F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) © F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl" ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (16) ---\\ Browser Helper Object de navigateur (BHO) (2) - 1s O2 - BHO: bteagleget.com - {1E871FF8-029C-4732-8AA7-39E3D3872057} . (.EagleGet.com - IEGrab.) -- C:\Program Files\EagleGet\eagleSniffer.dll O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll =>.AVAST Software a.s.® ---\\ Applications lancées au démarrage du système (23) - 0s O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe =>.AVAST Software a.s.® O4 - HKLM\..\Run: [UnlockerAssistant] . (...) -- C:\Program Files\Unlocker\UnlockerAssistant.exe O4 - HKLM\..\Run: [KernelFaultCheck] C:\WINDOWS\system32\dumprep 0 -k (.not file.) O4 - HKCU\..\Run: [EagleGet] . (.EagleGet.com - EagleGet Free Downloader.) -- C:\Program Files\EagleGet\EagleGet.exe O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Documents and Settings\Administrateur\Application Data\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- D:\CCleaner\CCleaner.exe =>.Piriform Ltd® O4 - HKCU\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe © O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe © O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe © O4 - HKUS\.DEFAULT\..\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32 O4 - HKUS\.DEFAULT\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N O4 - HKUS\.DEFAULT\..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_17_0_0_190_Plugin.exe (.not file.) O4 - HKUS\S-1-5-18\..\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32 O4 - HKUS\S-1-5-18\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N O4 - HKUS\S-1-5-18\..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_17_0_0_190_Plugin.exe (.not file.) O4 - HKUS\S-1-5-19\..\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32 O4 - HKUS\S-1-5-19\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N O4 - HKUS\S-1-5-20\..\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32 O4 - HKUS\S-1-5-20\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N O4 - HKUS\S-1-5-21-1757981266-515967899-682003330-500\..\Run: [EagleGet] . (.EagleGet.com - EagleGet Free Downloader.) -- C:\Program Files\EagleGet\EagleGet.exe O4 - HKUS\S-1-5-21-1757981266-515967899-682003330-500\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Documents and Settings\Administrateur\Application Data\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - HKUS\S-1-5-21-1757981266-515967899-682003330-500\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- D:\CCleaner\CCleaner.exe =>.Piriform Ltd® O4 - HKUS\S-1-5-21-1757981266-515967899-682003330-500\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe © ---\\ Raccourcis Global Startup (8) - 2s O4 - GS\Desktop [Administrateur]: QQ影音.lnk . (.腾讯科技(深圳)有限公司 - QQ影音.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar O4 - GS\Quicklaunch [Administrateur]: QQ影音.lnk . (.腾讯科技(深圳)有限公司 - QQ影音.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar O4 - GS\Desktop [HelpAssistant]: QQ影音.lnk . (.腾讯科技(深圳)有限公司 - QQ影音.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar O4 - GS\Quicklaunch [HelpAssistant]: QQ影音.lnk . (.腾讯科技(深圳)有限公司 - QQ影音.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar O4 - GS\Desktop [Invité]: QQ影音.lnk . (.腾讯科技(深圳)有限公司 - QQ影音.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar O4 - GS\Quicklaunch [Invité]: QQ影音.lnk . (.腾讯科技(深圳)有限公司 - QQ影音.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar O4 - GS\Desktop [SUPPORT_388945a0]: QQ影音.lnk . (.腾讯科技(深圳)有限公司 - QQ影音.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar O4 - GS\Quicklaunch [SUPPORT_388945a0]: QQ影音.lnk . (.腾讯科技(深圳)有限公司 - QQ影音.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar ---\\ Modification Domaine/Adresses DNS (2) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{827C07C7-F460-456D-892A-6380C262D1D7}: DhcpNameServer = 192.168.1.1 ---\\ Protocole additionnel (22) - 1s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll © O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll © O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll © O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll © O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll © O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll © O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll © O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll © O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll © O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll © O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll © O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll © O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API.) -- C:\WINDOWS\system32\inetcomm.dll © O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll © O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll © O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll © O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll © O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll © O18 - Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} . (.Microsoft Corporation - WIA Scripting Layer.) -- C:\WINDOWS\system32\wiascr.dll © O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll © O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll © O18 - Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll © ---\\ Logiciels installés (35) - 7s O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU] -- uTorrent =>.BitTorrent Inc® O42 - Logiciel: Adobe Flash Player 20 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 20 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 20 PPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player PPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Reader XI (11.0.08) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} © O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM] -- Avast =>.AVAST Software a.s.® O42 - Logiciel: Dancer Plus! LE de Microsoft - (.Microsoft Corporation.) [HKLM] -- {1A103D70-5C9B-4E1A-B306-5106C68F9914} © O42 - Logiciel: EagleGet version 2.0.4.5 - (.EagleGet.) [HKLM] -- {F6D8142A-B30B-454B-9EE0-08A7B997DFE4}_is1 © O42 - Logiciel: ExtremeCopy - (.Easersoft.) [HKLM] -- {9B4091A4-9556-402F-B703-31C203BDE889} © O42 - Logiciel: Foxit Reader 5.4.5.124 - (.oszone.net.) [HKLM] -- Foxit Reader O42 - Logiciel: Google Chrome - (.Google Inc‎.‎.) [HKLM] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} © O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} © O42 - Logiciel: Mozilla Firefox 43.0.2 (x86 ar) - (.Mozilla.) [HKLM] -- Mozilla Firefox 43.0.2 (x86 ar) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService © O42 - Logiciel: MPC-HC 1.7.7 - (.MPC-HC Team.) [HKLM] -- {2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1 =>.Open Source Developer, Fotis Zafiropoulos® O42 - Logiciel: Nero 12 - (.Nero AG.) [HKLM] -- {560FC78C-A4B2-461D-9B47-820C1EEF87B8} © O42 - Logiciel: Nero Audio Pack 1 - (.Nero AG.) [HKLM] -- {A7A0BF2E-31CC-49E3-9913-52C503EB969D} © O42 - Logiciel: Nero Blu-ray Player - (.Nero AG.) [HKLM] -- {A2FE691E-3F8E-4E30-AA7D-FF17AC77EA87} © O42 - Logiciel: Nero Burning ROM - (.Nero AG.) [HKLM] -- {5963F4B4-D138-47CD-ADEF-470E87E185BD} © O42 - Logiciel: Nero ControlCenter - (.Nero AG.) [HKLM] -- {ABC88553-8770-4B97-B43E-5A90647A5B63} © O42 - Logiciel: Nero Core Components - (.Nero AG.) [HKLM] -- {BEBEE34D-84A2-4EDD-8BEA-96CC54371263} © O42 - Logiciel: Nero Disc Menus Basic - (.Nero AG.) [HKLM] -- {E17BCB76-9924-4BD5-B6D6-50D3407B4E74} © O42 - Logiciel: Nero Effects Basic - (.Nero AG.) [HKLM] -- {29F67D84-3A70-456E-806A-52301B02070B} © O42 - Logiciel: Nero Kwik Themes Basic - (.Nero AG.) [HKLM] -- {1B6F5E51-575E-4693-BCA2-7543570D076D} © O42 - Logiciel: Nero PiP Effects Basic - (.Nero AG.) [HKLM] -- {ACE49D50-19CD-44A6-B192-46F985283B26} © O42 - Logiciel: Nero SharedVideoCodecs - (.Nero AG.) [HKLM] -- {2432E589-6256-4513-B0BF-EFA8E325D5F0} © O42 - Logiciel: Prerequisite installer - (.Nero AG.) [HKLM] -- {3AAB08A3-F129-4BD5-B409-AE674F93759D} © O42 - Logiciel: QQ影音3.9 - (.腾讯科技(深圳)有限公司.) [HKCU] -- QQPlayer O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} © O42 - Logiciel: TeraCopy 2.3 - (.Code Sector.) [HKLM] -- TeraCopy_is1 {71C5DF6381C2F42A65159FEE0540F57E} O42 - Logiciel: Unlocker 1.9.2 - (.Cedrick Collomb.) [HKLM] -- Unlocker © O42 - Logiciel: WebFldrs XP - (.Microsoft Corporation.) [HKLM] -- {350C940c-3D7C-4EE8-BAA9-00BCB3D54227} © O42 - Logiciel: Welcome App (Start-up experience) - (.Nero AG.) [HKLM] -- {828175FA-7307-4DBF-95AD-9CEE086B6F45} © O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8 =>.Microsoft Corporation® ---\\ HKCU & HKLM Software Keys (98) - 7s HKLM\SOFTWARE\Acoustica HKLM\SOFTWARE\AdwCleaner HKLM\SOFTWARE\AVAST Software HKLM\SOFTWARE\C07ft5Y HKLM\SOFTWARE\Code Sector HKLM\SOFTWARE\CoreCodec HKLM\SOFTWARE\CyberLink HKLM\SOFTWARE\dlsecuretb HKLM\SOFTWARE\DVDVideoSoft HKLM\SOFTWARE\EagleGet HKLM\SOFTWARE\Foxit Software HKLM\SOFTWARE\Gemplus HKLM\SOFTWARE\Google HKLM\SOFTWARE\HaaliMkx HKLM\SOFTWARE\INTEL HKLM\SOFTWARE\InterVideo HKLM\SOFTWARE\JreMetrics HKLM\SOFTWARE\Licenses HKLM\SOFTWARE\LogMeInRescueCallingCard HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\McAfee.com HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\mozilla.org HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\MSI HKLM\SOFTWARE\Nero HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\Opera Software HKLM\SOFTWARE\Pandora.TV HKLM\SOFTWARE\PCTools HKLM\SOFTWARE\Program Groups HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\Schlumberger HKLM\SOFTWARE\Skype HKLM\SOFTWARE\Sonic HKLM\SOFTWARE\Spiral Monkey HKLM\SOFTWARE\Symantec HKLM\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar HKLM\SOFTWARE\Windows 3.1 Migration Status HKCU\SOFTWARE\7-Zip HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AppLid HKCU\SOFTWARE\AVAST Software HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\Cineform HKCU\SOFTWARE\Code Sector HKCU\SOFTWARE\CoreAAC HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\Desktop Architect HKCU\SOFTWARE\drpsu HKCU\SOFTWARE\DRPSu Updater HKCU\SOFTWARE\DSP-worx HKCU\SOFTWARE\DVDXStudios HKCU\SOFTWARE\EagleGet HKCU\SOFTWARE\Easersoft HKCU\SOFTWARE\FemtaCom HKCU\SOFTWARE\Foxit Software HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\Glarysoft HKCU\SOFTWARE\Google HKCU\SOFTWARE\Haali HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\IMDownloader HKCU\SOFTWARE\Intel HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\Ligos HKCU\SOFTWARE\LogMeInRescueCallingCard HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\malavida HKCU\SOFTWARE\MatchWare HKCU\SOFTWARE\MediaChance HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MPC-HC HKCU\SOFTWARE\Nero HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Opera Software HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore HKCU\SOFTWARE\Project07 HKCU\SOFTWARE\RealNetworks HKCU\SOFTWARE\Revenger inc. HKCU\SOFTWARE\RocketDock HKCU\SOFTWARE\SamLab.ws HKCU\SOFTWARE\Skype HKCU\SOFTWARE\Spiral Monkey HKCU\SOFTWARE\SubSystems HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader HKCU\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar HKCU\SOFTWARE\Toggle HKCU\SOFTWARE\UberIcon-v1.0.0 HKCU\SOFTWARE\Unity HKCU\SOFTWARE\Winamp HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\WPI HKCU\SOFTWARE\ZebHelpProcess Helper ---\\ Contenu des dossiers Programmes (144) - 25s O43 - CFD: 07/01/2015 - [0] D -- C:\Program Files\Acoustica MP3 Audio Mixer O43 - CFD: 17/01/2015 - [] D -- C:\Program Files\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 25/03/2015 - [] D -- C:\Program Files\AVAST Software =>.AVAST Software a.s.® O43 - CFD: 26/01/2015 - [] D -- C:\Program Files\Dancer Plus! LE de Microsoft O43 - CFD: 19/10/2015 - [] D -- C:\Program Files\EagleGet O43 - CFD: 24/12/2015 - [] D -- C:\Program Files\Easersoft O43 - CFD: 12/12/2015 - [] D -- C:\Program Files\Fichiers communs =>PUP.Optional.TencentAddressBar O43 - CFD: 06/12/2014 - [] D -- C:\Program Files\Foxit Software {64A7A038A7B2} O43 - CFD: 13/06/2015 - [] D -- C:\Program Files\Google =>.Google Inc® O43 - CFD: 23/09/2010 - [] D -- C:\Program Files\Intel =>.Intel Corporation® O43 - CFD: 25/11/2014 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 30/04/2015 - [] D -- C:\Program Files\Java =>.Oracle America, Inc.® O43 - CFD: 26/01/2015 - [] D -- C:\Program Files\Microsoft Plus! Digital Media Edition O43 - CFD: 23/12/2015 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla Corporation® O43 - CFD: 24/09/2010 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla Corporation® O43 - CFD: 20/12/2014 - [] D -- C:\Program Files\MPC-HC =>.Open Source Developer, Fotis Zafiropoulos® O43 - CFD: 28/11/2015 - [] D -- C:\Program Files\MSECache O43 - CFD: 23/09/2010 - [] D -- C:\Program Files\MSN Gaming Zone O43 - CFD: 06/11/2014 - [] D -- C:\Program Files\Nero =>.Nero AG® O43 - CFD: 24/11/2014 - [] D -- C:\Program Files\Outlook Express O43 - CFD: 26/01/2015 - [] D -- C:\Program Files\Plus! O43 - CFD: 23/09/2010 - [] D -- C:\Program Files\Services en ligne O43 - CFD: 19/11/2015 - [] D -- C:\Program Files\Tencent =>PUP.Optional.TencentAddressBar =>PUP.Optional.TencentAddressBar O43 - CFD: 24/12/2015 - [] D -- C:\Program Files\TeraCopy {71C5DF6381C2F42A65159FEE0540F57E} O43 - CFD: 23/09/2010 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 23/11/2015 - [] D -- C:\Program Files\Unlocker O43 - CFD: 23/09/2010 - [] D -- C:\Program Files\Windows Media Connect 2 O43 - CFD: 23/09/2010 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 23/09/2010 - [] D -- C:\Program Files\Windows NT O43 - CFD: 23/09/2010 - [0] HD -- C:\Program Files\WindowsUpdate O43 - CFD: 24/09/2010 - [] D -- C:\Program Files\WinRAR O43 - CFD: 23/09/2010 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires O43 - CFD: 23/09/2010 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\AVAST Software O43 - CFD: 04/07/2015 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage O43 - CFD: 19/10/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\EagleGet O43 - CFD: 24/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ExtremeCopy O43 - CFD: 06/12/2014 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Foxit Reader O43 - CFD: 19/11/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Google Chrome O43 - CFD: 23/09/2010 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux O43 - CFD: 20/12/2014 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\MPC-HC O43 - CFD: 06/11/2014 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Nero O43 - CFD: 23/09/2010 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration O43 - CFD: 24/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\TeraCopy O43 - CFD: 30/10/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR O43 - CFD: 24/09/2010 - [] D -- C:\Documents and Settings\All Users\Application Data\Adobe O43 - CFD: 20/10/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Agnitum O43 - CFD: 25/03/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\AVAST Software O43 - CFD: 20/11/2015 - [0] D -- C:\Documents and Settings\All Users\Application Data\Babylon =>PUP.Optional.Babylon O43 - CFD: 22/03/2015 - [] HD -- C:\Documents and Settings\All Users\Application Data\Common Files O43 - CFD: 19/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\DVD X Studios O43 - CFD: 14/06/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\EagleGet O43 - CFD: 11/03/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\ESET O43 - CFD: 24/09/2010 - [0] D -- C:\Documents and Settings\All Users\Application Data\IDM O43 - CFD: 17/01/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\McAfee O43 - CFD: 22/03/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\MFAData O43 - CFD: 30/04/2015 - [] SD -- C:\Documents and Settings\All Users\Application Data\Microsoft O43 - CFD: 27/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Microsoft Help O43 - CFD: 27/12/2014 - [] D -- C:\Documents and Settings\All Users\Application Data\Mozilla O43 - CFD: 06/11/2014 - [] D -- C:\Documents and Settings\All Users\Application Data\Nero O43 - CFD: 24/01/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Norton O43 - CFD: 26/01/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\NortonInstaller O43 - CFD: 23/09/2010 - [] D -- C:\Documents and Settings\All Users\Application Data\Package Cache O43 - CFD: 24/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\PC Tools O43 - CFD: 30/10/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Skype O43 - CFD: 30/04/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Sun O43 - CFD: 24/11/2015 - [0] AD -- C:\Documents and Settings\All Users\Application Data\TEMP O43 - CFD: 20/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Tencent =>PUP.Optional.TencentAddressBar O43 - CFD: 13/12/2015 - [] D -- C:\Program Files\Fichiers communs\48ed1695-d484-472b-bd42-582714ef1368 O43 - CFD: 17/01/2015 - [] D -- C:\Program Files\Fichiers communs\Adobe O43 - CFD: 19/10/2015 - [] D -- C:\Program Files\Fichiers communs\EagleGet O43 - CFD: 23/09/2010 - [] D -- C:\Program Files\Fichiers communs\MSSoap O43 - CFD: 06/11/2014 - [] D -- C:\Program Files\Fichiers communs\Nero O43 - CFD: 24/09/2010 - [] D -- C:\Program Files\Fichiers communs\ODBC O43 - CFD: 23/09/2010 - [] D -- C:\Program Files\Fichiers communs\Services O43 - CFD: 24/09/2010 - [] D -- C:\Program Files\Fichiers communs\SpeechEngines O43 - CFD: 27/11/2015 - [] D -- C:\Program Files\Fichiers communs\System O43 - CFD: 19/11/2015 - [] D -- C:\Program Files\Fichiers communs\Tencent =>PUP.Optional.TencentAddressBar O43 - CFD: 23/09/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Adobe O43 - CFD: 24/09/2010 - [] D -- C:\Documents and Settings\Administrateur\Application Data\AIMP3 O43 - CFD: 25/03/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\AVAST Software O43 - CFD: 20/11/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Babylon =>PUP.Optional.Babylon O43 - CFD: 24/03/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\BSplayer PRO O43 - CFD: 16/09/2015 - [0] D -- C:\Documents and Settings\Administrateur\Application Data\DiskDefrag O43 - CFD: 06/01/2015 - [0] D -- C:\Documents and Settings\Administrateur\Application Data\DMCache O43 - CFD: 18/09/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Dream Aquarium O43 - CFD: 25/03/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Dropbox O43 - CFD: 07/01/2015 - [0] D -- C:\Documents and Settings\Administrateur\Application Data\DRPSu O43 - CFD: 07/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\DVDVideoSoft O43 - CFD: 19/10/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\EagleGet O43 - CFD: 24/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\ExtremeCopy O43 - CFD: 20/10/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\GlarySoft O43 - CFD: 10/03/2015 - [0] D -- C:\Documents and Settings\Administrateur\Application Data\Help O43 - CFD: 23/09/2010 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Identities O43 - CFD: 06/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\IDM O43 - CFD: 30/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\ImTOO O43 - CFD: 12/01/2015 - [0] D -- C:\Documents and Settings\Administrateur\Application Data\iolo O43 - CFD: 06/11/2014 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Macromedia O43 - CFD: 24/09/2010 - [0] D -- C:\Documents and Settings\Administrateur\Application Data\Media Player Classic O43 - CFD: 24/11/2015 - [] SD -- C:\Documents and Settings\Administrateur\Application Data\Microsoft O43 - CFD: 24/09/2010 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Mozilla O43 - CFD: 24/12/2014 - [] D -- C:\Documents and Settings\Administrateur\Application Data\MPC-HC O43 - CFD: 06/11/2014 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Nero O43 - CFD: 08/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Opera Software O43 - CFD: 03/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Power Mp3 Cutter O43 - CFD: 03/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Power Mp3 Recorder O43 - CFD: 24/11/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Product_RM O43 - CFD: 24/11/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Registry Mechanic O43 - CFD: 17/09/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Skype O43 - CFD: 06/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\sparta111 O43 - CFD: 24/09/2010 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Sports Interactive O43 - CFD: 30/04/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Sun O43 - CFD: 20/11/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Tencent =>PUP.Optional.TencentAddressBar O43 - CFD: 24/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\TeraCopy O43 - CFD: 09/03/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\TP O43 - CFD: 24/09/2010 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Unity O43 - CFD: 29/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\uTorrent O43 - CFD: 24/09/2010 - [] D -- C:\Documents and Settings\Administrateur\Application Data\WinRAR O43 - CFD: 29/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\ZHP O43 - CFD: 04/07/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Adobe O43 - CFD: 22/03/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Avg2015 O43 - CFD: 20/11/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Babylon =>PUP.Optional.Babylon O43 - CFD: 22/02/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\ESET O43 - CFD: 19/10/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google O43 - CFD: 10/03/2015 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Help O43 - CFD: 02/12/2014 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Identities O43 - CFD: 22/03/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\MFAData O43 - CFD: 17/12/2015 - [] SD -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft O43 - CFD: 24/09/2010 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft Help O43 - CFD: 24/09/2010 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla O43 - CFD: 08/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Opera Software O43 - CFD: 24/09/2010 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Skype O43 - CFD: 10/01/2015 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Sparta O43 - CFD: 24/09/2010 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Sports Interactive O43 - CFD: 30/04/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Sun O43 - CFD: 24/03/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Temp O43 - CFD: 24/09/2010 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Unity O43 - CFD: 30/10/2015 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\WMTools Downloaded Files O43 - CFD: 23/09/2010 - [] RD -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Accessoires O43 - CFD: 24/11/2015 - [] RD -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Démarrage O43 - CFD: 25/11/2014 - [] SD -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Outils d'administration O43 - CFD: 20/11/2015 - [] D -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Unlocker O43 - CFD: 30/10/2015 - [] D -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\WinRAR O43 - CFD: 19/11/2015 - [] D -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\腾讯软件 O43 - CFD: 29/12/2015 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla Corporation® ---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 1s O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - avast! Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software a.s.® O106 - SIOI: Offline Files Menu [Fichiers hors connexion] - {750fdf0e-2a26-11d1-a3ea-080036587f03}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\system32\cscui.dll © ---\\ Enumération des clés StartupReg (3) - 0s O53 - SMSR:HKLM\...\startupreg\ctfmon.exe [Key] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe © O53 - SMSR:HKLM\...\startupreg\GrooveMonitor [Key] . (...) -- C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\KernelFaultCheck [Key] . (...) -- C:\WINDOWS\system32\dumprep 0 -k (.not file.) ---\\ Liste des pilotes du système (47) - 11s O58 - SDL:2015/09/22 06:44:19 A . (.AVAST Software - avast! HWID.) -- C:\WINDOWS\System32\drivers\aswHwid.sys [24016] =>.AVAST Software a.s.® O58 - SDL:2015/09/22 06:44:20 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys [76000] =>.AVAST Software a.s.® O58 - SDL:2015/09/22 06:44:19 A . (.AVAST Software - avast! TDI Redirect Driver.) -- C:\WINDOWS\System32\drivers\aswRdr.sys [55200] =>.AVAST Software a.s.® O58 - SDL:2015/09/22 06:44:20 A . (.AVAST Software - avast! Revert.) -- C:\WINDOWS\System32\drivers\aswRvrt.sys [49776] =>.AVAST Software a.s.® O58 - SDL:2015/11/06 17:56:43 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\WINDOWS\System32\drivers\aswsnx.sys [794952] =>.AVAST Software a.s.® O58 - SDL:2015/11/06 17:56:45 A . (.AVAST Software - avast! self protection module.) -- C:\WINDOWS\System32\drivers\aswsp.sys [435464] =>.AVAST Software a.s.® O58 - SDL:2015/09/22 06:44:32 A . (.AVAST Software - avast! Stream Filter.) -- C:\WINDOWS\System32\drivers\aswStmXP.sys [157888] =>.AVAST Software a.s.® O58 - SDL:2015/09/22 06:44:40 A . (.AVAST Software - avast! TDI Filter Driver.) -- C:\WINDOWS\System32\drivers\aswTdi.sys [57888] =>.AVAST Software a.s.® O58 - SDL:2015/09/22 06:44:24 A . (.AVAST Software - avast! VM Monitor.) -- C:\WINDOWS\System32\drivers\aswVmm.sys [208664] =>.AVAST Software a.s.® O58 - SDL:2008/12/16 17:27:52 AC . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\System32\drivers\cinemst2.sys [262528] © O58 - SDL:2008/12/16 17:27:52 AC . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\System32\drivers\cpqdap01.sys [11776] © O58 - SDL:2008/04/14 12:00:00 AC . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- C:\WINDOWS\System32\drivers\dmboot.sys [800256] © O58 - SDL:2008/04/14 12:00:00 AC . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\System32\drivers\dmio.sys [154496] © O58 - SDL:2008/04/14 12:00:00 AC . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\System32\drivers\dmload.sys [5888] © O58 - SDL:2015/07/29 21:04:52 AC . (.eagleGet - eagleGet Network Filter.) -- C:\WINDOWS\System32\drivers\eagleGet.sys [94720] © O58 - SDL:2014/08/18 10:28:32 AC . (.ESET - Amon monitor.) -- C:\WINDOWS\System32\drivers\eamonm.sys [191928] =>.ESET, spol. s r.o.® O58 - SDL:2014/08/18 10:28:32 AC . (.ESET - ESET Helper driver.) -- C:\WINDOWS\System32\drivers\ehdrv.sys [135296] =>.ESET, spol. s r.o.® O58 - SDL:2014/08/18 10:28:32 AC . (.ESET - ESET Antivirus Network Redirector.) -- C:\WINDOWS\System32\drivers\epfwtdir.sys [119792] =>.ESET, spol. s r.o.® O58 - SDL:2008/04/14 12:00:00 AC . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [144384] O58 - SDL:2012/08/28 15:34:36 AC . (.Intel Corporation - Intel Graphics Miniport Driver.) -- C:\WINDOWS\System32\drivers\igxpmp32.sys [2019200] © O58 - SDL:2013/01/31 14:43:05 AC . (.Atheros Communications, Inc. - Atheros L1F PCI-E Ethernet Controller ndis.) -- C:\WINDOWS\System32\drivers\l1c51x86.sys [89680] =>.Atheros Communications Inc.® O58 - SDL:2008/12/16 17:27:52 AC . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\nikedrv.sys [12032] © O58 - SDL:2013/03/08 20:25:09 AC . (.OrangeWare Corporation - USB 2.0 Hub Driver.) -- C:\WINDOWS\System32\drivers\ousb2hub.sys [55552] O58 - SDL:2013/03/08 20:25:09 AC . (.OrangeWare Corporation - USB 2.0 Enhanced Host Controller Driver.) -- C:\WINDOWS\System32\drivers\ousbehci.sys [41600] O58 - SDL:2008/04/14 12:00:00 AC . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- C:\WINDOWS\System32\drivers\ptilink.sys [17792] © O58 - SDL:2008/12/16 17:27:52 AC . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\System32\drivers\rio8drv.sys [12032] © O58 - SDL:2008/12/16 17:27:52 AC . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\riodrv.sys [12032] © O58 - SDL:2008/04/14 12:00:00 AC . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [20480] © O58 - SDL:2015/10/29 18:02:15 A . (.Tencent - Tencent Common Protect-TsTurboA.) -- C:\WINDOWS\System32\drivers\TenCommProtect.sys [42296] =>PUP.Optional.TencentAddressBar O58 - SDL:2008/12/16 17:27:52 AC . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\System32\drivers\tsbvcap.sys [21376] © O58 - SDL:2008/12/16 17:27:52 AC . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\System32\drivers\vdmindvd.sys [58112] © O58 - SDL:2012/11/30 14:54:10 RAC . (.VIA Technologies, Inc. - VIA High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\viahduaa.sys [2558712] =>.VIA Technologies Inc.® O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\ansi.sys [9037] O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\country.sys [27097] O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\himem.sys [4912] O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\key01.sys [42809] O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\keyboard.sys [42537] O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\ntdos.sys [27916] O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\ntdos404.sys [29146] O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\ntdos411.sys [29370] O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\ntdos412.sys [29274] O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\ntdos804.sys [29146] O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\ntio.sys [34000] O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\ntio404.sys [34560] O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\ntio411.sys [35648] O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\ntio412.sys [35424] O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\ntio804.sys [34560] ---\\ Associations Shell Spawning (9) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll © O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\system32\wscript.exe © O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe © O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ Menu de démarrage Internet (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe © ---\\ Recherche d'infection sur les navigateurs (18) - 13s O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("browser.search.searchengine.alias", "istartsurf"); =>PUP.Optional.IsStart O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("browser.search.searchengine.desc", "this is my first firefox searchEngine"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("browser.search.searchengine.iconURL", "http://www.istartsurf.com/favicon.ico"); =>PUP.Optional.IsStart O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("browser.search.searchengine.name", "istartsurf"); =>PUP.Optional.IsStart O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("browser.search.searchengine.ptid", "cor"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("browser.search.searchengine.ref", ""); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("browser.search.searchengine.ts", ""); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("browser.search.searchengine.type", ""); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("browser.search.searchengine.uid", "WDCXWD3200AVVS-63L2B0_WD-WCAV1648167881678"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("browser.search.searchengine.url", "http://www.istartsurf.com/web/?type=ds&ts=1446136469&z=6104d263a52857e31d569dcgezaz1[...] =>PUP.Optional.IsStart O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("extensions.LVD-SAE.uninstallUrl", "http://lp.ilividnewtab.com/uninstall.php?extid=LVD-SAE@iacsearchandmedia.com&extver=[...] =>PUP.Optional.Bandoo O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("extensions.defsearchp@gmail.com.install-event-fired", true); =>PUP.Optional.PriceFountain O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("extensions.deskCutv2@gmail.com.install-event-fired", true); =>PUP.Optional.DeskCut O69 - SBI: SearchScopes [HKCU] {0191A6B0-1154-4C22-9182-23A95BBE92D9} - (Google) - http://www.google.com/ O69 - SBI: SearchScopes [HKCU] {2de06457-88b8-4989-9288-5fe9c2584ab8} [DefaultScope] - (WolframAlpha (avast!)) - http://www.wolframalpha.com/ O69 - SBI: SearchScopes [HKLM] {0191A6B0-1154-4C22-9182-23A95BBE92D9} - (Google) - http://www.google.com/ O69 - SBI: SearchScopes [HKLM] {2de06457-88b8-4989-9288-5fe9c2584ab8} [DefaultScope] - (Wolfram ---\\ Enumère les services démarrés par Svchost (40) - 1s O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\WINDOWS\system32\appmgmts.dll [176640] © O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496] © O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [78336] © O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464] © O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576] © O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488] © O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\system32\ersvc.dll [23040] © O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - .) -- C:\WINDOWS\system32\es.dll [253952] © O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] © O83 - Search Svchost Services: HidServ (HidServ) . (...) -- C:\WINDOWS\System32\hidserv.dll [0] O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [99840] © O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [132096] © O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\system32\msgsvc.dll [33792] © O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144] © O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- C:\WINDOWS\system32\mswsock.dll [247808] © O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272] © O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576] © O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368] © O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [53248] © O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560] © O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [18944] © O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424] © O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\WINDOWS\system32\ipnathlp.dll [332800] © O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520] © O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\system32\tapisrv.dll [249856] © O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] © O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112] © O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176] © O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483840] © O83 - Search Svchost Services: Wmi (Wmi) . (.Microsoft Corporation - API avancées Windows 32.) -- C:\WINDOWS\system32\advapi32.dll [685568] © O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\wmisvc.dll [145408] © O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896] © O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024] © O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376] © O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440] © O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\system32\qmgr.dll [409088] © O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656] © O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] © O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll [38400] © O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- C:\WINDOWS\system32\mspmsnsv.dll [27136] © ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (10) - 14s SS - Demand [29/12/2015] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [22/09/2015] [ 146600] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software a.s.® SR - Auto [25/09/2015] [ 235520] egGetSvc (egGetSvc) . (.Copyright (C) EagleGet 2014~2015.) - C:\Program Files\EagleGet\EGMonitor.exe SS - Auto [01/09/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [01/09/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Auto [30/11/2012] [ 88696] VIA Karaoke digital mixer Service (KaraokeService) . (.VIA Technologies, Inc..) - C:\WINDOWS\system32\KaraokeSer.exe =>.VIA Technologies Inc.® SS - Demand [23/12/2015] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Demand [29/12/2015] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SS - Demand [29/12/2015] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® ---\\ Scan Additionnel (11) - 0s HKLM\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader HKCU\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar C:\Program Files\Tencent =>PUP.Optional.TencentAddressBar C:\Documents and Settings\All Users\Application Data\Babylon =>PUP.Optional.Babylon C:\Documents and Settings\All Users\Application Data\Tencent =>PUP.Optional.TencentAddressBar C:\Program Files\Fichiers communs\Tencent =>PUP.Optional.TencentAddressBar C:\Documents and Settings\Administrateur\Application Data\Babylon =>PUP.Optional.Babylon C:\Documents and Settings\Administrateur\Application Data\Tencent =>PUP.Optional.TencentAddressBar C:\Documents and Settings\Administrateur\Local Settings\Application Data\Babylon =>PUP.Optional.Babylon ---\\ Récapitulatif des éléments trouvés sur votre station (9) - 0s http://www.nicolascoolman.fr/?p=368 =>PUP.Optional.TencentAddressBar http://www.nicolascoolman.fr/?p=279 =>Adware.InstallCore http://www.nicolascoolman.fr/?p=4664 =>.Superfluous.Downloader http://www.nicolascoolman.fr/?p=170 =>PUP.Optional.Babylon http://www.nicolascoolman.fr/pup-isstart/ =>PUP.Optional.IsStart http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.SearchEngine http://www.nicolascoolman.fr/?p=237 =>PUP.Optional.Bandoo http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.PriceFountain http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.DeskCut ~ End of the scan, 26028 items in 00h01mn34s (626)(0)