~ ZHPDiag v2016.2.4.26 Par Nicolas Coolman (2016/02/04) ~ Démarré par Ordi de Louis (Administrator) (2016/02/06 12:34:25) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\Ordi de Louis\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Ordi de Louis\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows VISTA, 32-bit Service Pack 2 (Build 6002) ---\\ Navigateurs Internet (2) - 0s GCIE: Google Chrome v48.0.2564.97 MSIE: Internet Explorer v7.0.6002.18005 ---\\ Informations sur les produits Windows (4) - 4s ~ Windows Server License Manager Script : OK System - VBScript Engine not found Windows Automatic Updates : OK Windows Activation Technologies : KO ---\\ Logiciels de protection (1) - 0s Kaspersky Internet Security v16.0.1.445 ---\\ Logiciels d'optimisation (1) - 0s CCleaner v5.14 ---\\ Surveillance de Logiciels (1) - 0s Adobe Reader XI ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 16 Model 2 Stepping 3, AuthenticAMD ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 2880.972 MB (26% free) System Restore: Activé (Enable) System drive C: has 478 GB () free of 579 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: PCBUREAUDELOU ~ User Name: Ordi de Louis ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 478 GB free of 579 GB (System) ~ Drive D: has 23 GB free of 30 GB ---\\ Etat du Centre de Sécurité Windows (10) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Recherche particulière de fichiers génériques (24) - 2s [MD5.D07D4C3038F3578FFCE1C0237F2A1253] - 11/04/2009 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2926592] =>.Microsoft Corporation [MD5.4B555106290BD117334E9A08761C035A] - 02/11/2006 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] =>.Microsoft Corporation [MD5.101BA3EA053480BB5D957EF37C06B5ED] - 21/01/2008 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [96768] =>.Microsoft Corporation [MD5.8777B44511D8BCCF47B5A7CBDC02DE11] - 11/04/2009 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [828416] =>.Microsoft Corporation [MD5.898E7C06A350D4A1A64A9EA264D55452] - 11/04/2009 - (.Microsoft Corporation - Application d'ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [314368] =>.Microsoft Corporation [MD5.85E861D0B88DB2B54ACB0839654C09F7] - 02/03/2011 - (.Microsoft Corporation - DNS DLL de l'API Client.) -- C:\Windows\System32\dnsapi.dll [168448] =>.Microsoft Corporation [MD5.95F5FF73B076576C41740F1A842B9B57] - 02/02/2016 - (.Microsoft Corporation - DLL client de l'API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation [MD5.3911B972B55FEA0478476B2E777B29FA] - 21/04/2011 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [273408] =>.Microsoft Corporation [MD5.1F05B78AB91C9075565A9D8A4B880BC4] - 11/04/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [19944] =>.Microsoft Windows® [MD5.7ADD03E75BEB9E6DD102C3081D29840A] - 21/01/2008 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70144] =>.Microsoft Corporation [MD5.6B4BFFB9BECD728097024276430DB314] - 11/04/2009 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [67072] =>.Microsoft Corporation [MD5.622C41A07CA7E6DD91770F50D532CB6C] - 14/04/2011 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [75264] =>.Microsoft Corporation [MD5.062452B7FFD68C8C042A6261FE8DFF4A] - 11/04/2009 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [561152] =>.Microsoft Corporation [MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - 21/01/2008 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [54784] =>.Microsoft Corporation [MD5.8793643A67B42CEC66490B2A0CF92D68] - 21/01/2008 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [100864] =>.Microsoft Corporation [MD5.1E94971C4B446AB2290DEB71D01CF0C2] - 29/04/2011 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [106496] =>.Microsoft Corporation [MD5.ECD64230A59CBD93C85F1CD1CAB9F3F6] - 11/04/2009 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [185856] =>.Microsoft Corporation [MD5.6A4A98CEE84CF9E99564510DDA4BAA47] - 11/04/2009 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1083880] =>.Microsoft Windows® [MD5.0FA9B5055484649D63C303FE404E5F4D] - 02/11/2006 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [79360] =>.Microsoft Corporation [MD5.A214ADBAF4CB47DD2728859EF31F26B0] - 21/01/2008 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [76288] =>.Microsoft Corporation [MD5.FBC0BACD9C3D7F6956853F64A66E252D] - 21/01/2008 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [248832] =>.Microsoft Corporation [MD5.7B75299A4D201D6A6533603D6914AB04] - 11/04/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [66560] =>.Microsoft Corporation [MD5.76B06EB8A01FC8624D699E7045303E54] - 11/04/2009 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [72192] =>.Microsoft Corporation [MD5.147281C01FCB1DF9252DE2A10D5E7093] - 11/04/2009 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [226280] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (4) - 1s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® O23 - Service: (Ati External Event Utility) . (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) - C:\Windows\System32\Ati2evxx.exe =>.ATI Technologies Inc. O23 - Service: Kaspersky Anti-Virus Service 16.0.1 (AVP16.0.1) . (.AO Kaspersky Lab - Kaspersky Anti-Virus.) - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avp.exe {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (7) - 28s SR - Auto [08/05/2014] [ 65432] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® SR - Auto [03/06/2008] [ 684032] (Ati External Event Utility) . (.ATI Technologies Inc..) - C:\Windows\System32\Ati2evxx.exe =>.ATI Technologies Inc. SR - Auto [22/12/2015] [ 236928] Kaspersky Anti-Virus Service 16.0.1 (AVP16.0.1) . (.AO Kaspersky Lab.) - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avp.exe {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab SR - Auto [02/02/2016] [ 154440] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [02/02/2016] [ 154440] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [30/04/2015] [ 252816] Wondershare Application Framework Service (WsAppService) . (.Wondershare.) - C:\Program Files\Wondershare\WAF\WsAppService.exe =>.Shenzhen Wondershare Information Technology Co., Ltd.® ---\\ Tâches planifiées en automatique (10) - 5s [MD5.7E49CB7F9BB53542F2944A527BC4E24D] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6628056] =>.Piriform Ltd® [MD5.750446ED76A5D13E902174DDDDA1A62B] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [154440] =>.Google Inc® [MD5.750446ED76A5D13E902174DDDDA1A62B] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [154440] =>.Google Inc® [MD5.6D51713A36C0733A4BDD94EAD5A33AD9] [APT] [HPCustParticipation HP Deskjet 3050A J611 series] (.Hewlett-Packard Co..) -- C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\HPCustPartic.exe [2938984] =>.Hewlett Packard® O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1066] =>.Google Inc. O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1070] =>.Google Inc. O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2816] =>.Piriform Ltd O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3814] =>.Google Inc. O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4066] =>.Google Inc. O39 - APT: HPCustParticipation HP Deskjet 3050A J611 series - (.Hewlett-Packard Co..) -- C:\Windows\System32\Tasks\HPCustParticipation HP Deskjet 3050A J611 series [3580] =>.Hewlett-Packard Co. ---\\ Processus lancés (29) - 3s [MD5.86FB6B8DDBCB6E025CE8A90F77AF1FF1] - (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) -- C:\Windows\System32\Ati2evxx.exe [684032] [PID.1204] =>.ATI Technologies Inc. [MD5.86FB6B8DDBCB6E025CE8A90F77AF1FF1] - (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) -- C:\Windows\System32\Ati2evxx.exe [684032] [PID.1708] =>.ATI Technologies Inc. [MD5.ABF64234F3462571E66527828040219B] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files\Google\Update\1.3.29.5\GoogleCrashHandler.exe [252232] [PID.632] =>.Google Inc® [MD5.E681281D9BFC9D45D3B72532717E5880] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [49152] [PID.2260] =>.Advanced Micro Devices Inc. [MD5.84B0BE89BF1155CD2498780C9D55BEB5] - (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe [6144000] [PID.2268] =>.Realtek Semiconductor [MD5.248FB4D46C7F4A39D601EA870EE55AC4] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [596528] [PID.2320] =>.Oracle America, Inc.® [MD5.34D296AFC913E302953C70463EF09A48] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\HP\HP Software Update\hpwuschd2.exe [96056] [PID.2344] =>.Hewlett-Packard Company® [MD5.395BCC9122E705F6586217E32CD01CC9] - (.Hewlett-Packard Co. - ScanToPCActivationApp.) -- C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\ScanToPCActivationApp.exe [1837672] [PID.2400] =>.Hewlett Packard® [MD5.7E49CB7F9BB53542F2944A527BC4E24D] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [6628056] [PID.2680] =>.Piriform Ltd® [MD5.25CA1677AAA3CDC99CD4FCF940886F3C] - (.ATI Technologies Inc. - Catalyst Control Centre: Host application.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe [49152] [PID.2692] =>.ATI Technologies Inc. [MD5.B362181ED3771DC03B4141927C80F801] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [65432] [PID.2900] =>.Adobe Systems, Incorporated® [MD5.09F0E4D1F66C40AB770AD1540758C59E] - (.AO Kaspersky Lab - Kaspersky Anti-Virus.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avp.exe [236928] [PID.2992] {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab [MD5.784F6F48C541F383F90AE4C5B3FCE0B5] - (.AO Kaspersky Lab - Kaspersky Anti-Virus.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avpui.exe [220072] [PID.2784] {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab [MD5.D2626AEB1197BCFD5086E54BFAFC266B] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [748872] [PID.4008] =>.Google Inc® [MD5.D2626AEB1197BCFD5086E54BFAFC266B] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [748872] [PID.4140] =>.Google Inc® [MD5.D2626AEB1197BCFD5086E54BFAFC266B] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [748872] [PID.5680] =>.Google Inc® [MD5.D2626AEB1197BCFD5086E54BFAFC266B] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [748872] [PID.4832] =>.Google Inc® [MD5.D2626AEB1197BCFD5086E54BFAFC266B] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [748872] [PID.5732] =>.Google Inc® [MD5.D2626AEB1197BCFD5086E54BFAFC266B] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [748872] [PID.5820] =>.Google Inc® [MD5.D2626AEB1197BCFD5086E54BFAFC266B] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [748872] [PID.4092] =>.Google Inc® [MD5.D2626AEB1197BCFD5086E54BFAFC266B] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [748872] [PID.5900] =>.Google Inc® [MD5.D2626AEB1197BCFD5086E54BFAFC266B] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [748872] [PID.2576] =>.Google Inc® [MD5.D2626AEB1197BCFD5086E54BFAFC266B] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [748872] [PID.5692] =>.Google Inc® [MD5.750446ED76A5D13E902174DDDDA1A62B] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [154440] [PID.884] =>.Google Inc® [MD5.750446ED76A5D13E902174DDDDA1A62B] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [154440] [PID.3292] =>.Google Inc® [MD5.D2626AEB1197BCFD5086E54BFAFC266B] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [748872] [PID.4108] =>.Google Inc® [MD5.D6F989FE71CB682FBFAC834C35EA61F4] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Ordi de Louis\Desktop\ZHPDiag3.exe [2111488] [PID.5744] =>.Nicolas Coolman [MD5.135724D3F79E261B63628D75A6DD0817] - (.Hewlett-Packard Co. - HPNetworkCommunicator.) -- C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\HPNetworkCommunicator.exe [673384] [PID.5416] =>.Hewlett Packard® [MD5.6A510DDDCA03B154E8DB13C159E53F60] - (.Google Inc. - Google Chrome Installer.) -- C:\Program Files\Google\Update\Install\{E7ED79D7-8664-4085-8E42-118DA8378169}\48.0.2564.103_chrome_installer.exe [44347472] [PID.5752] =>.Google Inc® ---\\ Google Chrome, Démarrage,Recherche,Extensions (19) - 2s G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://accounts.google.com/ G2 - GCE: Preference [User Data\Default] [aapbdbdomjkkjkaonfhkkikfgjllcleb] __MSG_8969005060131950570__ G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] __MSG_name__ =>.AdblocPlus Plugin G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock G2 - GCE: Preference [User Data\Default] [iladkgplgigafpgpifjdfmlapldcjeop] Your stats G2 - GCE: Preference [User Data\Default] [lpeeaghdjmhlakojjcgfdhgcejdaefmi] __MSG_ExtensionName__ G2 - GCE: Preference [User Data\Default] [mfhcchbdblkggcenfmmpgkpgphfhfcbe] __MSG_extName__ G2 - GCE: Preference [User Data\Default] [mgijmajocgfcbeboacabfgobmjgjcoja] Google Dictionary (by Google) G2 - GCE: Preference [User Data\Default] [nefiipkefiihljogmbldejjckjkbfgle] Le Conjugueur - Conjugaison française G2 - GCE: Preference [User Data\Default] [nfhfkijfhpnnpiojakclepbbpjhefgla] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (1) - 2s M1 - SPR:Search Page Redirection - C:\Program Files\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (10) - 1s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be/ R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl" ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (20) ---\\ Browser Helper Object de navigateur (BHO) (3) - 0s O2 - BHO: ScriptInjectionPluginBrowserHelperObject - {03993315-5CE9-4F00-8790-D14A94F1D91A} . (.AO Kaspersky Lab - Kaspersky Protection plugins.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 16.0.1\IEExt\ie_plugin.dll {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_71\bin\ssv.dll =>.Oracle America, Inc.® O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_71\bin\jp2ssv.dll =>.Oracle America, Inc.® ---\\ Applications lancées au démarrage du système (19) - 1s O4 - HKLM\..\Run: [Windows Defender] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe =>.Microsoft Windows® O4 - HKLM\..\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe =>.Advanced Micro Devices, Inc. O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe =>.Realtek Semiconductor O4 - HKLM\..\Run: [Skytel] . (.Realtek Semiconductor Corp. - Realtek Voice Manager.) -- C:\Windows\Skytel.exe =>.Realtek Semiconductor Corp. O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems, Incorporated® O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.® O4 - HKLM\..\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\HP\HP Software Update\HPWuSchd2.exe =>.Hewlett-Packard Company® O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd® O4 - HKCU\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehtray.exe =>.Microsoft Corporation O4 - HKCU\..\Run: [HP Deskjet 3050A J611 series (NET)] . (.Hewlett-Packard Co. - ScanToPCActivationApp.) -- C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\ScanToPCActivationApp.exe =>.Hewlett Packard® O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-3349058529-1728499254-3534934703-1000\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-3349058529-1728499254-3534934703-1000\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd® O4 - HKUS\S-1-5-21-3349058529-1728499254-3534934703-1000\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehtray.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-3349058529-1728499254-3534934703-1000\..\Run: [HP Deskjet 3050A J611 series (NET)] . (.Hewlett-Packard Co. - ScanToPCActivationApp.) -- C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\ScanToPCActivationApp.exe =>.Hewlett Packard® ---\\ Raccourcis Global Startup (15) - 3s O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Ordi de Louis\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Desktop [Ordi de Louis]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Ordi de Louis\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Ordi de Louis]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\CommonDesktop [Public]: Achat de consommables - HP Deskjet 3050A J611 series.lnk . (.Hewlett-Packard Co. - DesktopSureSupply.) C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\hpqDTSS.exe =>.Hewlett Packard® O4 - GS\CommonDesktop [Public]: Adobe Reader XI.lnk . (.Adobe Systems Incorporated - Adobe Reader.) C:\Program Files\Adobe\Reader 11.0\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated® O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd® O4 - GS\CommonDesktop [Public]: eID Viewer.lnk . (.FedICT - Viewer for Belgian eID Cards.) C:\Program Files\Belgium Identity Card\EidViewer\eID Viewer.exe =>.Fedict O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\CommonDesktop [Public]: HP Deskjet 3050A J611 series.lnk . (.Hewlett-Packard Co. - HP Printer Assistant.) C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\HP Deskjet 3050A J611 series.exe =>.Hewlett Packard® O4 - GS\CommonDesktop [Public]: HP ePrintCenter - HP Deskjet 3050A J611 series.lnk . (...) C:\Program Files\HP\HP Deskjet 3050A J611 series\ePrintCenterShortcut.url O4 - GS\CommonDesktop [Public]: HP Photo Creations.lnk . (.Visan / RocketLife - PhotoProduct.exe.) C:\Program Files\HP Photo Creations\PhotoProduct.exe =>.Visan Industries® O4 - GS\CommonDesktop [Public]: Kaspersky Internet Security.lnk . (.AO Kaspersky Lab - Kaspersky Anti-Virus.) C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avpui.exe {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab O4 - GS\CommonDesktop [Public]: Protection bancaire.lnk . (.AO Kaspersky Lab - Kaspersky Anti-Virus.) C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avpui.exe {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\System32\taskschd.msc ---\\ Modification Domaine/Adresses DNS (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = lan O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E7AEC8BC-E3A2-49FA-9934-A86ADE27672A}: DhcpNameServer = 192.168.1.254 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E7AEC8BC-E3A2-49FA-9934-A86ADE27672A}: DhcpDomain = lan ---\\ Protocole additionnel (22) - 1s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation ---\\ Logiciels installés (34) - 6s O42 - Logiciel: Adobe Reader XI (11.0.08) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} =>.Adobe Systems Incorporated O42 - Logiciel: AMD USB Audio Driver Filter - (.Advanced Micro Devices, Inc..) [HKLM] -- {A3AB35FA-943E-4799-99DC-46EFD59E998F} =>.Advanced Micro Devices, Inc. O42 - Logiciel: ATI Catalyst Install Manager - (.ATI Technologies, Inc..) [HKLM] -- {862F113B-F914-4FCF-C254-C145B8815138} =>.ATI Technologies, Inc. O42 - Logiciel: Belgium e-ID middleware 4.1.10 (build 1698) - (.Belgian Government.) [HKLM] -- {4DDF16AE-8D5D-4027-A2D1-8CBB498E1698} =>.Belgian Government O42 - Logiciel: Catalyst Control Center Core Implementation - (.ATI.) [HKLM] -- {34AB2CEB-2221-DD43-85ED-5E3DEB16FAA9} =>.ATI O42 - Logiciel: Catalyst Control Center Graphics Full Existing - (.ATI.) [HKLM] -- {35A9D14E-95B4-95C4-54E4-15F1F96309E3} =>.ATI O42 - Logiciel: Catalyst Control Center Graphics Full New - (.ATI.) [HKLM] -- {800044FB-83FE-4AC9-4653-07C36EA99FE7} =>.ATI O42 - Logiciel: Catalyst Control Center Graphics Light - (.ATI.) [HKLM] -- {9FE501EC-B1FC-A431-D175-56AAADE0D10E} =>.ATI O42 - Logiciel: Catalyst Control Center Graphics Previews Common - (.ATI.) [HKLM] -- {254DEDB1-5217-61E2-EF3C-C9828787F131} =>.ATI O42 - Logiciel: Catalyst Control Center Graphics Previews Vista - (.ATI.) [HKLM] -- {E7006876-AAE7-1D93-5BAE-980020148184} =>.ATI O42 - Logiciel: Catalyst Control Center HydraVision Full - (.ATI.) [HKLM] -- {60EE17A0-83DB-FF42-9802-945DD31442A1} =>.ATI O42 - Logiciel: Catalyst Control Center Localization French - (.ATI.) [HKLM] -- {7D69FEBA-6621-66AE-8C1C-81F806DD5B05} =>.ATI O42 - Logiciel: CCC Help English - (.ATI.) [HKLM] -- {2F1DF23C-87AF-0585-D1CF-7C08821227F1} =>.ATI O42 - Logiciel: CCC Help French - (.ATI.) [HKLM] -- {271BBB50-E99E-2496-4C1C-D09D96BB5EFC} =>.ATI O42 - Logiciel: ccc-core-static - (.Nom de votre société.) [HKLM] -- {58B94766-15FC-4981-C513-4AF079EA649A} O42 - Logiciel: ccc-utility - (.ATI.) [HKLM] -- {40738138-34A4-7712-6DA7-14E6C57DC7C0} =>.ATI O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: CutePDF Writer 3.0 - (.Acro Software Inc..) [HKLM] -- CutePDF Writer Installation =>.Acro Software Inc.® O42 - Logiciel: Étude pour l'amélioration du produit HP Deskjet 3050A J611 series - (.Hewlett-Packard Co..) [HKLM] -- {F3056F80-0EFA-457F-A80D-9DF753139323} =>.Hewlett-Packard Co. O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: HP Deskjet 3050A J611 series Aide - (.Hewlett Packard.) [HKLM] -- {97DDCAB8-B770-4089-A10F-67568069D78A} =>.Hewlett Packard O42 - Logiciel: HP Photo Creations - (.HP.) [HKLM] -- HP Photo Creations =>.Visan Industries® O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM] -- {912D30CF-F39E-4B31-AD9A-123C6B794EE2} =>.Hewlett-Packard O42 - Logiciel: Java 8 Update 71 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218071F0} =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM] -- {F575F386-57EF-4943-B003-A13F13B05EEB} =>.Kaspersky Lab O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM] -- InstallWIX_{F575F386-57EF-4943-B003-A13F13B05EEB} =>.Kaspersky Lab O42 - Logiciel: Logiciel de base du périphérique HP Deskjet 3050A J611 series - (.Hewlett-Packard Co..) [HKLM] -- {D2782627-DEFC-486F-A424-FC178C9D70B4} =>.Hewlett-Packard Co. O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Package de pilotes Windows - Fedict SmartCard (08/08/2015 4.1.5) - (.Fedict.) [HKLM] -- 9F46F7AB1E3B1B5F5482EA8D97F401B04FBF7958 =>.Fedict O42 - Logiciel: Realtek 8169, 8168, 8101E and 8102E Ethernet Network Card Driver for Window - (.Realtek.) [HKLM] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Macrovision Corporation® O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp. O42 - Logiciel: Skins - (.ATI.) [HKLM] -- {A793EFFB-57E0-7B33-7A7F-E75D8F17F11A} =>.ATI ---\\ HKCU & HKLM Software Keys (50) - 6s HKLM\SOFTWARE\Acro Software Inc HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\ATI HKLM\SOFTWARE\ATI Technologies HKLM\SOFTWARE\BEID HKLM\SOFTWARE\Google HKLM\SOFTWARE\GPL Ghostscript HKLM\SOFTWARE\Hewlett-Packard HKLM\SOFTWARE\HP HKLM\SOFTWARE\Intel HKLM\SOFTWARE\JavaSoft HKLM\SOFTWARE\JreMetrics HKLM\SOFTWARE\KasperskyLab HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\Piriform HKLM\SOFTWARE\Realtek HKLM\SOFTWARE\Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\RocketLife HKLM\SOFTWARE\RTLSetup HKLM\SOFTWARE\Sonic HKLM\SOFTWARE\SRS Labs HKLM\SOFTWARE\Visan HKLM\SOFTWARE\WafCX HKLM\SOFTWARE\Waves Audio HKLM\SOFTWARE\Wondershare HKLM\SOFTWARE\WOW6432Node HKCU\SOFTWARE\Acro Software Inc HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\ATI HKCU\SOFTWARE\ATI Technologies Inc. HKCU\SOFTWARE\BEID HKCU\SOFTWARE\Google HKCU\SOFTWARE\Hewlett-Packard HKCU\SOFTWARE\HP HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\KasperskyLab HKCU\SOFTWARE\Local AppWizard-Generated Applications HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\Visan HKCU\SOFTWARE\Wondershare HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\JavaSoft ---\\ Contenu des dossiers Programmes (114) - 15s O43 - CFD: 03/02/2016 - [] D -- C:\Program Files\Acro Software =>.Acro Software Inc.® O43 - CFD: 02/02/2016 - [] D -- C:\Program Files\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 02/02/2016 - [] D -- C:\Program Files\AMD O43 - CFD: 02/02/2016 - [] D -- C:\Program Files\ATI O43 - CFD: 02/02/2016 - [] D -- C:\Program Files\ATI Technologies O43 - CFD: 03/02/2016 - [] D -- C:\Program Files\BeID Minidriver O43 - CFD: 03/02/2016 - [] D -- C:\Program Files\Belgium Identity Card O43 - CFD: 02/02/2016 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd® O43 - CFD: 03/02/2016 - [] D -- C:\Program Files\Common Files O43 - CFD: 03/02/2016 - [] D -- C:\Program Files\DIFX O43 - CFD: 02/02/2016 - [0] SHD -- C:\Program Files\Fichiers communs O43 - CFD: 02/02/2016 - [] D -- C:\Program Files\Google =>.Google Inc® O43 - CFD: 03/02/2016 - [] D -- C:\Program Files\GPLGS O43 - CFD: 03/02/2016 - [] D -- C:\Program Files\HP =>.Hewlett-Packard Company® O43 - CFD: 03/02/2016 - [] D -- C:\Program Files\HP Photo Creations =>.Visan Industries® O43 - CFD: 04/02/2016 - [] HD -- C:\Program Files\InstallShield Installation Information =>.Macrovision Corporation® O43 - CFD: 05/02/2016 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 03/02/2016 - [] D -- C:\Program Files\Java =>.Oracle America, Inc.® O43 - CFD: 04/02/2016 - [] D -- C:\Program Files\Juniper Networks O43 - CFD: 02/02/2016 - [] D -- C:\Program Files\Kaspersky Lab {0F668FB0F0F002B774C7DDBD769EE5B1} O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Microsoft Games O43 - CFD: 02/02/2016 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 02/02/2016 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 03/02/2016 - [] D -- C:\Program Files\Movie Maker O43 - CFD: 03/02/2016 - [] D -- C:\Program Files\Mozilla Firefox O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\MSBuild O43 - CFD: 02/02/2016 - [] D -- C:\Program Files\Realtek O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 02/11/2006 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 03/02/2016 - [] D -- C:\Program Files\Windows Calendar O43 - CFD: 03/02/2016 - [] D -- C:\Program Files\Windows Collaboration O43 - CFD: 03/02/2016 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Windows® O43 - CFD: 03/02/2016 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 03/02/2016 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 03/02/2016 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 02/02/2016 - [] D -- C:\Program Files\Windows NT O43 - CFD: 03/02/2016 - [] D -- C:\Program Files\Windows Photo Gallery O43 - CFD: 03/02/2016 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 03/02/2016 - [] D -- C:\Program Files\Wondershare =>.Shenzhen Wondershare Information Technology Co., Ltd.® O43 - CFD: 02/02/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 02/02/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 03/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belgium - eID O43 - CFD: 02/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center O43 - CFD: 02/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 03/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CutePDF O43 - CFD: 21/01/2008 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Extras and Upgrades O43 - CFD: 04/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Feu Vert pour le permis de conduire O43 - CFD: 21/01/2008 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 03/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP O43 - CFD: 03/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 02/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security O43 - CFD: 02/11/2006 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 02/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 02/11/2006 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 02/11/2006 - [] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 06/02/2016 - [] D -- C:\ProgramData\Adobe O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 02/02/2016 - [] D -- C:\ProgramData\ATI O43 - CFD: 02/02/2016 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 04/02/2016 - [] D -- C:\ProgramData\CreativePark O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 02/02/2016 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 03/02/2016 - [] D -- C:\ProgramData\HP O43 - CFD: 03/02/2016 - [] D -- C:\ProgramData\HP Photo Creations O43 - CFD: 06/02/2016 - [] D -- C:\ProgramData\Kaspersky Lab O43 - CFD: 02/02/2016 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 02/02/2016 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 02/02/2016 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 03/02/2016 - [] D -- C:\ProgramData\Oracle O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 03/02/2016 - [] D -- C:\ProgramData\Visan O43 - CFD: 03/02/2016 - [] D -- C:\ProgramData\wondershare O43 - CFD: 02/02/2016 - [] D -- C:\Program Files\Common Files\Adobe O43 - CFD: 04/02/2016 - [] D -- C:\Program Files\Common Files\InstallShield O43 - CFD: 03/02/2016 - [] D -- C:\Program Files\Common Files\Java O43 - CFD: 02/02/2016 - [] D -- C:\Program Files\Common Files\microsoft shared O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Common Files\Services O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 03/02/2016 - [] D -- C:\Program Files\Common Files\System O43 - CFD: 02/02/2016 - [] D -- C:\Users\Ordi de Louis\AppData\Roaming\Adobe O43 - CFD: 02/02/2016 - [] D -- C:\Users\Ordi de Louis\AppData\Roaming\ATI O43 - CFD: 03/02/2016 - [] D -- C:\Users\Ordi de Louis\AppData\Roaming\HpUpdate O43 - CFD: 02/02/2016 - [] D -- C:\Users\Ordi de Louis\AppData\Roaming\Identities O43 - CFD: 02/02/2016 - [] D -- C:\Users\Ordi de Louis\AppData\Roaming\InstallShield O43 - CFD: 04/02/2016 - [] D -- C:\Users\Ordi de Louis\AppData\Roaming\Juniper Networks O43 - CFD: 05/02/2016 - [] D -- C:\Users\Ordi de Louis\AppData\Roaming\Macromedia O43 - CFD: 02/11/2006 - [0] D -- C:\Users\Ordi de Louis\AppData\Roaming\Media Center Programs O43 - CFD: 04/02/2016 - [] SD -- C:\Users\Ordi de Louis\AppData\Roaming\Microsoft O43 - CFD: 03/02/2016 - [] D -- C:\Users\Ordi de Louis\AppData\Roaming\Sun O43 - CFD: 03/02/2016 - [] D -- C:\Users\Ordi de Louis\AppData\Roaming\Wondershare O43 - CFD: 06/02/2016 - [] D -- C:\Users\Ordi de Louis\AppData\Roaming\ZHP O43 - CFD: 03/02/2016 - [] D -- C:\Users\Ordi de Louis\AppData\Local\Adobe O43 - CFD: 02/02/2016 - [0] SHD -- C:\Users\Ordi de Louis\AppData\Local\Application Data O43 - CFD: 02/02/2016 - [] D -- C:\Users\Ordi de Louis\AppData\Local\Apps O43 - CFD: 02/02/2016 - [] D -- C:\Users\Ordi de Louis\AppData\Local\ATI O43 - CFD: 03/02/2016 - [0] D -- C:\Users\Ordi de Louis\AppData\Local\CutePDF Writer O43 - CFD: 02/02/2016 - [0] D -- C:\Users\Ordi de Louis\AppData\Local\Deployment O43 - CFD: 05/02/2016 - [] D -- C:\Users\Ordi de Louis\AppData\Local\ElevatedDiagnostics O43 - CFD: 02/02/2016 - [] D -- C:\Users\Ordi de Louis\AppData\Local\Google O43 - CFD: 02/02/2016 - [0] SHD -- C:\Users\Ordi de Louis\AppData\Local\Historique O43 - CFD: 03/02/2016 - [] D -- C:\Users\Ordi de Louis\AppData\Local\HP O43 - CFD: 04/02/2016 - [] D -- C:\Users\Ordi de Louis\AppData\Local\Juniper Networks O43 - CFD: 05/02/2016 - [] D -- C:\Users\Ordi de Louis\AppData\Local\Microsoft O43 - CFD: 06/02/2016 - [] D -- C:\Users\Ordi de Louis\AppData\Local\Temp O43 - CFD: 02/02/2016 - [0] SHD -- C:\Users\Ordi de Louis\AppData\Local\Temporary Internet Files O43 - CFD: 02/02/2016 - [] D -- C:\Users\Ordi de Louis\AppData\Local\VirtualStore O43 - CFD: 02/02/2016 - [] D -- C:\Users\Ordi de Louis\AppData\Local\WindowsUpdate O43 - CFD: 21/01/2008 - [] RD -- C:\Users\Ordi de Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 02/02/2016 - [] RD -- C:\Users\Ordi de Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 21/01/2008 - [] RD -- C:\Users\Ordi de Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 02/02/2016 - [] RD -- C:\Users\Ordi de Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup ---\\ ShellIconOverlayIdentifiers (SIOI) (1) - 0s O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - Extension d'environnement du périphérique d.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation ---\\ Liste des pilotes du système (82) - 37s O58 - SDL:2004/04/30 13:35:00 A . (.Advanced Card Systems Ltd - PCSC/CCID IFD Handler.) -- C:\Windows\System32\drivers\a38usbxp.sys [24832] =>.Advanced Card Systems Ltd O58 - SDL:2008/01/21 03:23:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422968] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:25 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [300600] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:26 A . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) -- C:\Windows\System32\drivers\adpu160m.sys [101432] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:27 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [149560] =>.Microsoft Windows® O58 - SDL:2008/04/18 19:33:46 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\ahcix86s.sys [175632] =>.ATI Technologies, Inc® O58 - SDL:2008/01/21 03:23:00 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [17464] =>.Microsoft Windows® O58 - SDL:2007/10/12 02:40:14 A . (.Advanced Micro Devices - AMD PCI SATA/IDE Bus Driver.) -- C:\Windows\System32\drivers\amdide.sys [10632] {1F06A8A5B43F4560D551F85A461BFD2D} =>.Advanced Micro Devices O58 - SDL:2008/01/21 03:23:23 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [79416] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:24 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [79928] =>.Microsoft Windows® O58 - SDL:2008/06/03 07:22:55 A . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [3695104] =>.ATI Technologies Inc. O58 - SDL:2008/04/28 14:26:42 A . (.ATI Technologies Inc. - ATI PCIE Driver for ATI PCIE chipset.) -- C:\Windows\System32\drivers\AtiPcie.sys [14352] =>.ATI Technologies, Inc® O58 - SDL:2006/11/02 09:24:45 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] =>.Brother Industries, Ltd. O58 - SDL:2006/11/02 09:24:46 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] =>.Brother Industries, Ltd. O58 - SDL:2006/11/02 09:25:24 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [71808] =>.Brother Industries Ltd. O58 - SDL:2006/11/02 09:24:44 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] =>.Brother Industries Ltd. O58 - SDL:2006/11/02 09:24:44 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] =>.Brother Industries Ltd. O58 - SDL:2006/11/02 09:24:47 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] =>.Brother Industries Ltd. O58 - SDL:2008/01/21 03:23:00 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [19000] =>.Microsoft Windows® O58 - SDL:2015/07/06 00:10:20 A . (.Kaspersky Lab ZAO - Cryptographic Module Driver x86 (Weak).) -- C:\Windows\System32\drivers\cm_km.sys [201912] =>.Kaspersky Lab® O58 - SDL:2006/11/02 10:50:11 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [71272] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:24 A . (.Intel Corporation - Pilote désérialisé NDIS 6 de la carte Intel.) -- C:\Windows\System32\drivers\E1G60I32.sys [118784] =>.Intel Corporation O58 - SDL:2008/01/21 03:23:22 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [342584] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:26 A . (.Hewlett-Packard Company - Smart Array Storport Driver.) -- C:\Windows\System32\drivers\HpCISSs.sys [40504] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:23 A . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) -- C:\Windows\System32\drivers\iaStorV.sys [235064] =>.Microsoft Windows® O58 - SDL:2006/11/02 10:50:17 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41576] =>.Microsoft Windows® O58 - SDL:2006/11/02 10:50:07 A . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\System32\drivers\iteatapi.sys [35944] =>.Microsoft Windows® O58 - SDL:2006/11/02 10:50:09 A . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\System32\drivers\iteraid.sys [35944] =>.Microsoft Windows® O58 - SDL:2015/09/11 20:30:36 A . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) -- C:\Windows\System32\drivers\kl1.sys [155304] =>.Kaspersky Lab® O58 - SDL:2015/06/06 08:50:18 A . (.Kaspersky Lab ZAO - Backup Disk Filter [fre_wnet_x86].) -- C:\Windows\System32\drivers\klbackupdisk.sys [46776] =>.Kaspersky Lab® O58 - SDL:2015/12/01 22:42:12 A . (.AO Kaspersky Lab - Backup File Filter [fre_wlh_x86].) -- C:\Windows\System32\drivers\klbackupflt.sys [66440] {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab O58 - SDL:2015/12/02 00:21:12 A . (.AO Kaspersky Lab - Virtual Disk [fre_wnet_x86].) -- C:\Windows\System32\drivers\kldisk.sys [67456] =>.Kaspersky Lab® O58 - SDL:2015/12/11 17:27:58 A . (.AO Kaspersky Lab - Filter Core [fre_wlh_x86].) -- C:\Windows\System32\drivers\klflt.sys [145800] {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab O58 - SDL:2015/12/19 22:17:50 A . (.AO Kaspersky Lab - klhk [fre_wlh_x86].) -- C:\Windows\System32\drivers\klhk.sys [53640] {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab O58 - SDL:2015/12/11 17:28:02 A . (.AO Kaspersky Lab - Core System Interceptors [fre_wlh_x86].) -- C:\Windows\System32\drivers\klif.sys [777096] {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab O58 - SDL:2015/12/01 10:59:42 A . (.AO Kaspersky Lab - Packet Network Filter [fre_wlh_x86].) -- C:\Windows\System32\drivers\klim6.sys [45440] =>.Kaspersky Lab® O58 - SDL:2015/11/11 11:56:28 A . (.AO Kaspersky Lab - Keyboard Device Filter [fre_wlh_x86].) -- C:\Windows\System32\drivers\klkbdflt.sys [46464] =>.Kaspersky Lab® O58 - SDL:2015/06/07 01:50:04 A . (.Kaspersky Lab ZAO - Mouse Device Filter [fre_wlh_x86].) -- C:\Windows\System32\drivers\klmouflt.sys [38072] =>.Kaspersky Lab® O58 - SDL:2015/12/07 16:08:20 A . (.AO Kaspersky Lab - Format Recognizer [fre_wnet_x86].) -- C:\Windows\System32\drivers\klpd.sys [41864] {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab O58 - SDL:2015/11/23 17:05:14 A . (.AO Kaspersky Lab - TDI Network Connection Filter Driver [fre_w.) -- C:\Windows\System32\drivers\kltdf.sys [83328] =>.Kaspersky Lab® O58 - SDL:2015/06/11 15:52:38 A . (.Kaspersky Lab ZAO - Network filtering component [fre_wxp_x86].) -- C:\Windows\System32\drivers\kltdi.sys [54328] =>.Kaspersky Lab® O58 - SDL:2015/12/03 00:36:22 A . (.AO Kaspersky Lab - Network Processor [fre_wnet_x86].) -- C:\Windows\System32\drivers\kneps.sys [161672] {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab O58 - SDL:2008/01/21 03:23:23 A . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [96312] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:25 A . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89656] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:23 A . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96312] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:27 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [31288] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:27 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [386616] =>.Microsoft Windows® O58 - SDL:2006/11/02 10:49:59 A . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\Mraid35x.sys [33384] =>.Microsoft Windows® O58 - SDL:2006/11/02 10:50:19 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [45160] =>.Microsoft Windows® O58 - SDL:2006/11/02 08:36:50 A . (.N-trig Innovative Technologies - Pilote intégré de digitalisateur de tablett.) -- C:\Windows\System32\drivers\ntrigdigi.sys [20608] =>.N-trig Innovative Technologies O58 - SDL:2008/01/21 03:23:21 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [102968] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:21 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [45112] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:24 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1122360] =>.Microsoft Windows® O58 - SDL:2006/11/02 10:50:35 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106088] =>.Microsoft Windows® O58 - SDL:2008/06/03 00:11:40 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [2147544] =>.Realtek Semiconductor Corp® O58 - SDL:2010/03/04 13:50:14 A . (.Realtek - Realtek 8136/8168/8169 NDIS6 32-bit Driver.) -- C:\Windows\System32\drivers\Rtlh86.sys [261152] =>.Realtek Semiconductor Corp® O58 - SDL:2006/11/02 07:37:21 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2008/01/21 03:23:26 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [74808] =>.Microsoft Windows® O58 - SDL:2006/11/02 10:50:05 A . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) -- C:\Windows\System32\drivers\symc8xx.sys [35944] =>.Microsoft Windows® O58 - SDL:2006/11/02 10:49:56 A . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_hi.sys [31848] =>.Microsoft Windows® O58 - SDL:2006/11/02 10:50:03 A . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_u3.sys [34920] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:20 A . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\System32\drivers\uliahci.sys [238648] =>.Microsoft Windows® O58 - SDL:2006/11/02 10:50:35 A . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win200.) -- C:\Windows\System32\drivers\ulsata.sys [98408] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:23 A . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\System32\drivers\ulsata2.sys [115816] =>.Microsoft Windows® O58 - SDL:2008/05/28 17:54:20 A . (.Advanced Micro Devices Inc. - AMD USB Filter Driver.) -- C:\Windows\System32\drivers\usbfilter.sys [22072] {19201E5AE135CE9C8C77CE0C7B8ACA13} =>.Advanced Micro Devices Inc. O58 - SDL:2008/01/21 03:23:00 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [20024] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:23 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [130616] =>.Microsoft Windows® O58 - SDL:2006/11/02 08:09:42 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:2006/11/02 08:09:45 A . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:2006/11/02 08:09:41 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:2006/11/02 08:09:44 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:2006/11/02 08:09:44 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:2006/11/02 08:09:29 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:2006/11/02 08:09:35 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:2006/11/02 08:09:38 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:2006/11/02 08:09:40 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:2006/11/02 08:09:31 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:2006/11/02 08:09:20 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:2006/11/02 08:09:23 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:2006/11/02 08:09:24 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:2006/11/02 08:09:26 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:2006/11/02 08:09:22 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (3) - 11s O61 - LFC: 2016/02/02 12:45:55 A . (..) -- C:\Users\Ordi de Louis\AppData\Local\Microsoft\Windows\1036\StructuredQuerySchema.bin [203537] O61 - LFC: 2016/02/06 12:11:09 A . (..) -- C:\Users\Ordi de Louis\AppData\Local\ATI\ACE\Manifest.Bin [16595] O61 - LFC: 2016/02/03 14:13:57 A . (..) -- C:\Users\Ordi de Louis\AppData\Local\Adobe\Acrobat\11.0\UserCache.bin [61422] ---\\ Associations Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe {610284A3000000000020} =>.Microsoft Corporation O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (8) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe {610284A3000000000020} =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Recherche d'infection sur les navigateurs (2) - 0s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://search.live.com/ O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://search.live.com/ ---\\ Enumère les services démarrés par Svchost (31) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [24576] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [62976] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [125952] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [576512] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [438784] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [315392] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d'accès distant.) -- C:\Windows\System32\rasmans.dll [262144] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [68608] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [47104] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\Windows\System32\ipnathlp.dll [288256] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242688] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes Termi.) -- C:\Windows\System32\termsrv.dll [449024] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1933848] =>.Microsoft Windows Component Publisher® O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [758784] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [200704] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [19968] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [33280] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [111616] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [45056] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [153088] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [57344] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [162304] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [601600] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service de configuration des services Termi.) -- C:\Windows\System32\SessEnv.dll [84992] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [81920] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [68096] =>.Microsoft Corporation ---\\ Scan Additionnel (1) - 0s ~ Aucun élément malicieux ou superflu trouvé. ---\\ Récapitulatif des éléments trouvés sur votre station (1) - 0s ~ Aucun élément malicieux ou superflu trouvé. ~ End of the scan, 13019 items in 00h02mn15s (579)(0)