~ ZHPDiag v2016.3.28.76 Par Nicolas Coolman (2016/03/28) ~ Démarré par clementine (Administrator) (2016/03/29 21:13:40) ~ Site: http://www.nicolascoolman.com ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\clementine\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\clementine\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 7 Starter, 32-bit Service Pack 1 (Build 7601) ---\\ Navigateurs Internet (2) - 1s MFIE: Mozilla Firefox 34.0.5 (x86 fr) MSIE: Internet Explorer v11.0.9600.17959 ---\\ Informations sur les produits Windows (4) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : KO ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 6 Model 54 Stepping 1, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 1036.596 MB (14% free) System Restore: Activé (Enable) System drive C: has 244 GB () free of 291 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: CLEMENTINE-PC ~ User Name: clementine ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 244 GB free of 291 GB (System) ~ Drive D: has 2 GB free of 3 GB ---\\ Etat du Centre de Sécurité Windows (11) - 1s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (24) - 5s [MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - 14/07/2011 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2616320] =>.Microsoft Corporation [MD5.51138BEEA3E2C21EC44D0932C71762A8] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] =>.Microsoft Corporation [MD5.B5C5DCAD3899512020D135600129D665] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [96256] =>.Microsoft Corporation [MD5.0AC8CD2138FD10C4A0E2FF08F892359C] - 16/07/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [1951232] =>.Microsoft Corporation [MD5.52449FD429D6053B78AE564DEF303870] - 17/07/2014 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [304128] =>.Microsoft Corporation [MD5.E3AE23569749DE12D45BA3B489A036AE] - 20/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [193536] =>.Microsoft Corporation [MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 14/07/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [270336] =>.Microsoft Corporation [MD5.129F80D7868E30DF3E3DE33A1D3132B4] - 08/11/2014 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation [MD5.D0B388DA1D111A34366E04EB4A5DD156] - 30/05/2014 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [338944] =>.Microsoft Corporation [MD5.338C86357871C167A96AB976519BF59E] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [21584] =>.Microsoft Windows® [MD5.77EA11B065E0A8AB902D78145CA51E10] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70656] =>.Microsoft Corporation [MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - 20/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [108544] =>.Microsoft Corporation [MD5.F024449C97EC1E464AAFFDA18593DB88] - 20/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [78336] =>.Microsoft Corporation [MD5.9036377B8A6C15DC2EEC53E489D159B5] - 20/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [108544] =>.Microsoft Corporation [MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [80896] =>.Microsoft Corporation [MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [101888] =>.Microsoft Corporation [MD5.7A97B5B6E04AB52FA53C8EA574913A04] - 15/07/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [124416] =>.Microsoft Corporation [MD5.280122DDCF04B378EDD1AD54D71C1E54] - 20/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [187904] =>.Microsoft Corporation [MD5.C8DFF8D07755A66C7A4A738930F0FEAC] - 24/01/2014 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1212352] =>.Microsoft Windows® [MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [79360] =>.Microsoft Corporation [MD5.D9F91EAFEC2815365CBE6D167E4E332A] - 14/07/2009 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [78848] =>.Microsoft Corporation [MD5.3E21C083B8A01CB70BA1F09303010FCE] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [71168] =>.Microsoft Corporation [MD5.7FE680A3DFA421C4A8E4879AE4C5AAB0] - 11/11/2014 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [74752] =>.Microsoft Corporation [MD5.F497F67932C6FA693D7DE2780631CFE7] - 20/11/2010 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [245632] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (9) - 5s O23 - Service: Adobe Active File Monitor V9 (AdobeActiveFileMonitor9.0) . (.Adobe Systems Incorporated - Adobe Photoshop Elements 9.0 (component).) - c:\Program Files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe =>.Adobe Systems Incorporated® O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® O23 - Service: Dritek WMI Service (DsiWMIService) . (.Dritek System Inc. - Dritek WMI Service.) - C:\Program Files\Launch Manager\dsiwmis.exe =>.Dritek System Inc.® O23 - Service: ePower Service (ePowerSvc) . (.Acer Incorporated - ePowerSvc.) - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe =>.Acer Incorporated® O23 - Service: GREGService (GREGService) . (.Acer Incorporated - Global Registration Service.) - C:\Program Files\Packard Bell\Registration\GREGsvc.exe =>.Acer Incorporated® O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel Corporation® O23 - Service: IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc. - Realtek Card Reader Icon Tool..) - C:\Program Files\Realtek\Realtek PCIE Card Reader\RIconMan.exe =>.Realsil Microelectronics Inc. O23 - Service: Live Updater Service (Live Updater Service) . (.Acer Incorporated - Updater Service.) - C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe =>.Acer Incorporated® O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl® ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (12) - 66s SR - Auto [30/09/2010] [ 169408] Adobe Active File Monitor V9 (AdobeActiveFileMonitor9.0) . (.Adobe Systems Incorporated.) - c:\Program Files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe =>.Adobe Systems Incorporated® SR - Auto [06/06/2011] [ 64952] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® SR - Auto [01/07/2011] [ 353360] Dritek WMI Service (DsiWMIService) . (.Dritek System Inc..) - C:\Program Files\Launch Manager\dsiwmis.exe =>.Dritek System Inc.® SR - Auto [02/08/2011] [ 739944] ePower Service (ePowerSvc) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe =>.Acer Incorporated® SS - Demand [12/10/2010] [ 206072] GamesAppService (GamesAppService) . (.WildTangent, Inc..) - C:\Program Files\WildTangent Games\App\GamesAppService.exe =>.WildTangent Inc® SR - Auto [30/05/2011] [ 36456] GREGService (GREGService) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Registration\GREGsvc.exe =>.Acer Incorporated® SR - Auto [06/11/2010] [ 13336] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel Corporation® SR - Auto [07/03/2011] [ 1755136] IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc..) - C:\Program Files\Realtek\Realtek PCIE Card Reader\RIconMan.exe =>.Realsil Microelectronics Inc. SR - Auto [06/02/2012] [ 255376] Live Updater Service (Live Updater Service) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe =>.Acer Incorporated® SS - Demand [27/12/2014] [ 114800] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SS - Auto [11/12/2014] [ 315496] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl® ---\\ Tâches planifiées en automatique (2) - 3s [MD5.A93B9EA5E9AAA2CD3711C948A934EB47] [APT] [UALU notificatin] (.Acer Incorporated.) -- C:\Program Files\Packard Bell\Packard Bell Updater\UALU.exe [22392] (.Activate.) =>.Acer Incorporated® O39 - APT: UALU notificatin - (.Acer Incorporated.) -- C:\Windows\System32\Tasks\UALU notificatin [4018] =>.Acer Incorporated® ---\\ Processus lancés (22) - 6s [MD5.1474F121C3DF1232D3E7239C03691EE6] - (.Adobe Systems Incorporated - Adobe Photoshop Elements 9.0 (component).) -- c:\Program Files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe [169408] [PID.1744] =>.Adobe Systems Incorporated® [MD5.11A52CF7B265631DEEB24C6149309EFF] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [64952] [PID.1848] =>.Adobe Systems, Incorporated® [MD5.9DD3A22F804697606C2B7FF9E912FF6B] - (.Dritek System Inc. - Dritek WMI Service.) -- C:\Program Files\Launch Manager\dsiwmis.exe [353360] [PID.1928] =>.Dritek System Inc.® [MD5.F47D15467B3093E77A43808142E2CC2A] - (.Acer Incorporated - ePowerSvc.) -- C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [739944] [PID.1960] =>.Acer Incorporated® [MD5.A824317EA303679481EF1039A5D66212] - (.Dritek System Inc. - Launch Manager Worker.) -- C:\Program Files\Launch Manager\LMworker.exe [343632] [PID.1968] =>.Dritek System Inc.® [MD5.21ACFD2B4BF6C0F4D9080A437E400E88] - (.Dritek System Inc. - Launch Manager utility process.) -- C:\Program Files\Launch Manager\LMutilps32.exe [418896] [PID.1976] =>.Dritek System Inc.® [MD5.C9B2D1D3F86FD3673EF847DEF73B6F9E] - (.Acer Incorporated - Global Registration Service.) -- C:\Program Files\Packard Bell\Registration\GREGsvc.exe [36456] [PID.332] =>.Acer Incorporated® [MD5.0DFFBA5AE3D2E1C076BD8E6F52C4FDFB] - (.Realsil Microelectronics Inc. - Realtek Card Reader Icon Tool..) -- C:\Program Files\Realtek\Realtek PCIE Card Reader\RIconMan.exe [1755136] [PID.460] =>.Realsil Microelectronics Inc. [MD5.6BB516A31DE232DAB436FF3A117E1E80] - (.Acer Incorporated - Updater Service.) -- C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [255376] [PID.496] =>.Acer Incorporated® [MD5.766BE50DD0598AB0611B58157795A2C6] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [135168] [PID.2276] =>.Intel Corporation [MD5.4427D7FFAB91B2A427B15661D6678444] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [168960] [PID.2300] =>.Intel Corporation [MD5.76CC45CE5DCDDBA563BEDEE2E8F1C4E2] - (.Intel Corporation - igfxsrvc Module.) -- C:\Windows\System32\igfxsrvc.exe [261632] [PID.2336] =>.Intel Corporation [MD5.44B1EF93F2C1ACF466556DA1F58FE228] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [161280] [PID.2384] =>.Intel Corporation [MD5.9ABC4E3B00CFA3A47D5569F5B49FE42F] - (.Dritek System Inc. - Launch Manager.) -- C:\Program Files\Launch Manager\LManager.exe [1103440] [PID.2592] =>.Dritek System Inc.® [MD5.DCFE7CE897163498DDBEE99CA9332731] - (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1934632] [PID.2616] =>.Synaptics Incorporated® [MD5.A2AE41B76FA4A63B57B5453CF1C465A7] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [10082920] [PID.2624] =>.Realtek Semiconductor Corp® [MD5.E289F53C9B4AA3130FA8A04A3AD28701] - (.Acer Incorporated - ePowerTray.) -- C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe [715368] [PID.2820] =>.Acer Incorporated® [MD5.EB996D1BB30C87686BC91585A99139CB] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\Program Files\Synaptics\SynTP\SynTPHelper.exe [107816] [PID.3044] =>.Synaptics Incorporated® [MD5.B3E2D5B2C584C1B51ED9F8BADDE31278] - (.Intel Corporation - igfxext Module.) -- C:\Windows\System32\igfxext.exe [171520] [PID.3100] =>.Intel Corporation [MD5.915B5BB98F9E7FACACE65BF6600F3461] - (.Acer Incorporated - ePowerEvent.) -- C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerEvent.exe [469608] [PID.3492] =>.Acer Incorporated® [MD5.8FFF9083252C16FE3960173722605E9E] - (.Intel Corporation - IAStorDataSvc.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [13336] [PID.3848] =>.Intel Corporation® [MD5.1DE4831E18DC61E758EF7F3EB193B736] - (.Nicolas Coolman - ZHPDiag.) -- D:\ZHPDiag3-2.exe [2166272] [PID.5840] =>.Nicolas Coolman ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (5) - 3s P2 - EXT FILE: (...) -- C:\Users\clementine\AppData\Roaming\Mozilla\Firefox\Profiles\clohok2r.default\searchplugins\sweet-page.xml =>PUP.Optional.SweetPage P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} =>.Mozilla P2 - EXT: (.lightningnewtab.com - Fast Start.) -- C:\Users\clementine\AppData\Roaming\Mozilla\Firefox\Profiles\clohok2r.default\extensions\faststartff@gmail.com =>PUP.Optional.FastStart P2 - EXT: (.lipton - Search Enginer.) -- C:\Users\clementine\AppData\Roaming\Mozilla\Firefox\Profiles\clohok2r.default\extensions\searchengine@gmail.com P2 - FPN: [HKLM] [@WildTangent.com/GamesAppPresenceDetector,Version=1.0] - (.WildTangent.) -- C:\Program Files\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll =>.WildTangent ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (10) - 1s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkID=617910&ResetID=130858789996086815&GUID=00000000-0000-0000-0000-000000000000 R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkID=617910&ResetID=130858789988754802&GUID=00000000-0000-0000-0000-000000000000 R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?linkid=54896 R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.sweet-page.com/?type=hp&ts=1424629293&from=corfr&uid=wdcxwd3200bpvt-22jj5t0_wd-wx31eb1cra26cra26 =>PUP.Optional.SweetPage R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/web/?type=ds&ts=1424629293&from=corfr&uid=wdcxwd3200bpvt-22jj5t0_wd-wx31eb1cra26cra26&q={searchterms} =>PUP.Optional.SweetPage R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.sweet-page.com/?type=hp&ts=1424629293&from=corfr&uid=wdcxwd3200bpvt-22jj5t0_wd-wx31eb1cra26cra26 =>PUP.Optional.SweetPage R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/web/?type=ds&ts=1424629293&from=corfr&uid=wdcxwd3200bpvt-22jj5t0_wd-wx31eb1cra26cra26&q={searchterms} =>PUP.Optional.SweetPage R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 2s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Object de navigateur (BHO) (2) - 0s O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll =>.Adobe Systems, Incorporated® O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll =>.Microsoft Corporation® ---\\ Applications lancées au démarrage du système (14) - 3s O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems, Incorporated® O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe =>.Intel Corporation O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation O4 - HKLM\..\Run: [GfxServiceInstall] . (...) -- C:\Windows\System32\GfxCUIServiceInstall.vbs O4 - HKLM\..\Run: [LManager] . (.Dritek System Inc. - Launch Manager.) -- C:\Program Files\Launch Manager\LManager.exe =>.Dritek System Inc.® O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe =>.Synaptics Incorporated® O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe =>.Realtek Semiconductor Corp® O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated® O4 - HKLM\..\Run: [Power Management] . (.Acer Incorporated - ePowerTray.) -- C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe =>.Acer Incorporated® O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation ---\\ Raccourcis Global Startup (9) - 7s O4 - GS\Desktop [Administrateur]: PC Inspector File Recovery.lnk . (...) C:\Program Files\Convar\PC Inspector File Recovery\Filerecovery.exe O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (...) C:\Users\clementine\AppData\Roaming\ZHP\ZHPDiag3.exe O4 - GS\TaskBar [Administrateur]: Welcome Center.lnk . (.Acer Incorporated - Welcome Center.) C:\Program Files\Packard Bell\Welcome Center\OEMWelcomeCenter.exe =>.Acer Incorporated® O4 - GS\Desktop [clementine]: PC Inspector File Recovery.lnk . (...) C:\Program Files\Convar\PC Inspector File Recovery\Filerecovery.exe O4 - GS\Desktop [clementine]: ZHPDiag.lnk . (...) C:\Users\clementine\AppData\Roaming\ZHP\ZHPDiag3.exe O4 - GS\TaskBar [clementine]: Welcome Center.lnk . (.Acer Incorporated - Welcome Center.) C:\Program Files\Packard Bell\Welcome Center\OEMWelcomeCenter.exe =>.Acer Incorporated® O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}\SkypeIcon.exe O4 - GS\CommonDesktop [Public]: Video Web Camera.lnk . (.CyberLink Corp. - WebCam.) C:\Program Files\Video Web Camera\WebCam.exe =>.CyberLink® O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc ---\\ Modification Domaine/Adresses DNS (2) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{AEECAB33-8419-421E-918E-982F148EAEA0}: DhcpNameServer = 192.168.1.1 ---\\ Protocole additionnel (22) - 2s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files\Windows Live\Mail\mailcomm.dll =>.Microsoft Corporation® O18 - Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation® O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® ---\\ Logiciels installés (57) - 33s O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {FDB3B167-F4FA-461D-976F-286304A57B2A} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Community Help - (.Adobe Systems Incorporated.) [HKLM] -- {F302F4F0-588D-6501-1ACF-BE3FDCC9135D} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Community Help - (.Adobe Systems Incorporated.) [HKLM] -- chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Photoshop Elements 9 - (.Adobe Systems Incorporated.) [HKLM] -- {007F778D-F15C-4EAB-AE92-071D21FAF632} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Photoshop Elements 9 - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Photoshop Elements 9 =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Reader X (10.1.0) MUI - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-FFFF-7B44-AA0000000001} =>.Adobe Systems Incorporated O42 - Logiciel: Akhra: The Treasures - (.WildTangent.) [HKLM] -- WTA-71bb890a-20c1-4fcc-b2ca-02084f7a8ef3 =>.WildTangent Inc® O42 - Logiciel: Alice's Magical Mahjong - (.WildTangent.) [HKLM] -- WTA-a5523f60-b9e3-4ebd-9e4b-1c498e778935 =>.WildTangent Inc® O42 - Logiciel: Bejeweled 3 - (.WildTangent.) [HKLM] -- WTA-19810a32-d206-4e9f-9d1b-b6d6c32e4ca6 =>.WildTangent Inc® O42 - Logiciel: Chuzzle Deluxe - (.WildTangent.) [HKLM] -- WTA-f9828f91-ccff-43f1-8b4e-2d9fd4994336 =>.WildTangent Inc® O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft O42 - Logiciel: Diego's Ultimate Rescue - (.WildTangent.) [HKLM] -- WTA-d9ebd02f-22bd-4d14-96f2-266c53718cf6 =>.WildTangent Inc® O42 - Logiciel: Elements 9 Organizer - (.Adobe Systems Incorporated.) [HKLM] -- {433EACD8-4747-4A6A-826A-FFA9F39B0D40} =>.Adobe Systems Incorporated O42 - Logiciel: Elements STI Installer - (.Adobe Systems Incorporated.) [HKLM] -- {E2AE009D-37E5-4724-A6B8-0ED6A6BA4F68} =>.Adobe Systems Incorporated® O42 - Logiciel: Evernote v. 4.5.1 - (.Evernote Corp..) [HKLM] -- {28921580-E4BB-11E0-9FD7-1CC1DEF07CBE} =>.Evernote Corp. O42 - Logiciel: Final Drive: Nitro - (.WildTangent.) [HKLM] -- WTA-48ae1904-47fa-4fad-ae0b-be3ca5fed1c0 =>.WildTangent Inc® O42 - Logiciel: Identity Card - (.Packard Bell.) [HKLM] -- Identity Card =>.Acer Incorporated® O42 - Logiciel: Insaniquarium Deluxe - (.WildTangent.) [HKLM] -- WTA-10dd4352-012f-4379-ab78-8fe4aa6670f7 =>.WildTangent Inc® O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421} =>.Intel Corporation® O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation® O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} =>.Intel Corporation® O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} =>.Microsoft Corporation O42 - Logiciel: Launch Manager - (.Packard Bell.) [HKLM] -- LManager =>.Dritek System Inc.® O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E} =>.Microsoft Corporation O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM] -- {95120000-00B9-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Mozilla Firefox 34.0.5 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 34.0.5 (x86 fr) =>.Mozilla O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft O42 - Logiciel: My Farm Life - (.WildTangent.) [HKLM] -- WTA-01a38139-d0ef-483e-981f-b4464594d737 =>.WildTangent Inc® O42 - Logiciel: My Kingdom for the Princess 3 - (.WildTangent.) [HKLM] -- WTA-086e1090-6a5d-4252-ba39-1ead4b2ee81f =>.WildTangent Inc® O42 - Logiciel: Packard Bell Games - (.WildTangent.) [HKLM] -- WildTangent packardbell Master Uninstall =>.WildTangent Inc O42 - Logiciel: Packard Bell Power Management - (.Packard Bell.) [HKLM] -- {3DB0448D-AD82-4923-B305-D001E521A964} =>.Acer Incorporated® O42 - Logiciel: Packard Bell Recovery Management - (.Packard Bell.) [HKLM] -- {7F811A54-5A09-4579-90E1-C93498E230D9} =>.Acer Incorporated® O42 - Logiciel: Packard Bell Registration - (.Packard Bell.) [HKLM] -- Packard Bell Registration =>.Acer Incorporated® O42 - Logiciel: Packard Bell ScreenSaver - (.Packard Bell .) [HKLM] -- Packard Bell Screensaver =>.Acer Incorporated® O42 - Logiciel: Packard Bell Social Networks - (.CyberLink Corp..) [HKLM] -- {64EF903E-D00A-414C-94A4-FBA368FFCDC9} =>.CyberLink® O42 - Logiciel: Packard Bell Social Networks - (.CyberLink Corp..) [HKLM] -- InstallShield_{64EF903E-D00A-414C-94A4-FBA368FFCDC9} =>.CyberLink® O42 - Logiciel: Packard Bell Updater - (.Packard Bell.) [HKLM] -- {EE171732-BEB4-4576-887D-CB62727F01CA} =>.Acer Incorporated® O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp. O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM] -- {C1594429-8296-4652-BF54-9DBE4932A44C} =>.Realtek Semiconductor Corp® O42 - Logiciel: Running Sheep - (.WildTangent.) [HKLM] -- WTA-65b76649-e652-4cc6-8c0a-04363e63c692 =>.WildTangent Inc® O42 - Logiciel: Skip-Bo - Castaway Caper - (.WildTangent.) [HKLM] -- WTA-df11a757-6279-4c5f-a96a-b11f9b6427da =>.WildTangent Inc® O42 - Logiciel: Skype™ 7.0 - (.Skype Technologies S.A..) [HKLM] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} =>.Skype Technologies S.A. O42 - Logiciel: Slingo Deluxe - (.WildTangent.) [HKLM] -- WTA-61dbd859-29da-47eb-a444-20c8db768db1 =>.WildTangent Inc® O42 - Logiciel: Super Granny 6 - (.WildTangent.) [HKLM] -- WTA-b9beaf83-c1d0-4dac-9d92-c31f2b62a484 =>.WildTangent Inc® O42 - Logiciel: sweet-page uninstall - (.sweet-page.) [HKLM] -- sweet-page uninstall =>PUP.Optional.SweetPage O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM] -- SynTPDeinstKey =>.Synaptics Incorporated O42 - Logiciel: Update Installer for WildTangent Games App - (.WildTangent.) [HKLM] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App =>.WildTangent Inc O42 - Logiciel: Video Web Camera - (.CyberLink Corp..) [HKLM] -- {A0382E3C-7384-429A-9BFA-AF5888E5A193} =>.CyberLink® O42 - Logiciel: Video Web Camera - (.CyberLink Corp..) [HKLM] -- InstallShield_{A0382E3C-7384-429A-9BFA-AF5888E5A193} =>.CyberLink® O42 - Logiciel: Wedding Dash - (.WildTangent.) [HKLM] -- WTA-dd3fc29f-e044-4df7-95ed-cccd2f0e116a =>.WildTangent Inc® O42 - Logiciel: Welcome Center - (.Packard Bell.) [HKLM] -- Packard Bell Welcome Center =>.Acer Incorporated® O42 - Logiciel: WildTangent Games App (Packard Bell Games) - (.WildTangent.) [HKLM] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-packardbell =>.WildTangent Inc ---\\ HKCU & HKLM Software Keys (60) - 33s HKLM\SOFTWARE\Acer HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\ATI Technologies HKLM\SOFTWARE\CBSTEST HKLM\SOFTWARE\Cyberlink HKLM\SOFTWARE\Dolby HKLM\SOFTWARE\Dritek HKLM\SOFTWARE\DTS HKLM\SOFTWARE\Evernote HKLM\SOFTWARE\Google HKLM\SOFTWARE\IM Providers HKLM\SOFTWARE\InstalledOptions HKLM\SOFTWARE\Intel HKLM\SOFTWARE\Knowles HKLM\SOFTWARE\Licenses HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\mozilla.org HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\OEM HKLM\SOFTWARE\OemSetup HKLM\SOFTWARE\OOBEOffer HKLM\SOFTWARE\Packard Bell HKLM\SOFTWARE\Realtek HKLM\SOFTWARE\Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\RTLSetup HKLM\SOFTWARE\Skype HKLM\SOFTWARE\Sonic HKLM\SOFTWARE\SonicFocus HKLM\SOFTWARE\SRS Labs HKLM\SOFTWARE\supWindowsMangerProtect =>PUP.Optional.WpManager HKLM\SOFTWARE\sweet-pageSoftware =>PUP.Optional.SweetPage HKLM\SOFTWARE\Symantec HKLM\SOFTWARE\Synaptics HKLM\SOFTWARE\Waves Audio HKLM\SOFTWARE\WildTangent HKLM\SOFTWARE\WOW6432Node HKCU\SOFTWARE\Acer HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Convar HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\Dritek HKCU\SOFTWARE\InstallCore =>Adware.InstallCore HKCU\SOFTWARE\Intel HKCU\SOFTWARE\Local AppWizard-Generated Applications HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\MainConcept HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\Norton HKCU\SOFTWARE\OEM HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\Smart PC Solutions =>PUP.Optional.SmartPCSolutions HKCU\SOFTWARE\Symantec HKCU\SOFTWARE\Synaptics HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software ---\\ Contenu des dossiers Programmes (124) - 52s O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Accessory Store =>.Acer Incorporated® O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 23/03/2016 - [] D -- C:\Program Files\Common Files O43 - CFD: 22/02/2015 - [] D -- C:\Program Files\Convar O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\DVD Maker O43 - CFD: 16/12/2011 - [] D -- C:\Program Files\Evernote O43 - CFD: 08/11/2014 - [0] SHD -- C:\Program Files\Fichiers communs O43 - CFD: 08/11/2014 - [] HD -- C:\Program Files\InstallShield Installation Information =>.Macrovision Corporation® O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Intel =>.Intel Corporation® O43 - CFD: 04/09/2015 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Launch Manager =>.Dritek System Inc.® O43 - CFD: 08/11/2014 - [0] D -- C:\Program Files\Microsoft O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Microsoft Games O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 28/12/2015 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 16/12/2011 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition O43 - CFD: 22/12/2014 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 28/12/2015 - [] D -- C:\Program Files\Mozilla Firefox O43 - CFD: 30/12/2014 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla Corporation® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Packard Bell =>.Acer Incorporated® O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Packard Bell Games O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Realtek =>.Realtek Semiconductor Corp® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 02/09/2015 - [] RD -- C:\Program Files\Skype =>.Skype Software Sarl® O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Social Networks =>.CyberLink® O43 - CFD: 16/12/2011 - [] D -- C:\Program Files\SymSilent =>.Symantec Corporation® O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Synaptics =>.Synaptics Incorporated® O43 - CFD: 08/11/2014 - [0] HD -- C:\Program Files\Temp O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Video Web Camera =>.CyberLink® O43 - CFD: 16/12/2011 - [] D -- C:\Program Files\WildTangent Games =>.WildTangent Inc® O43 - CFD: 21/11/2014 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 16/12/2011 - [] D -- C:\Program Files\Windows Live =>.Microsoft Corporation® O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 04/09/2015 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Windows NT O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 20/11/2010 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 16/12/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Evernote O43 - CFD: 08/11/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 08/11/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 28/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 08/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Packard Bell - Security & Support O43 - CFD: 02/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 08/11/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Social Networks O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 08/11/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video Web Camera O43 - CFD: 16/12/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live O43 - CFD: 08/11/2014 - [] D -- C:\ProgramData\Adobe O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 08/11/2014 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 08/11/2014 - [] D -- C:\ProgramData\CLSK O43 - CFD: 31/08/2015 - [] D -- C:\ProgramData\CyberLink O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 16/12/2011 - [0] D -- C:\ProgramData\Evernote O43 - CFD: 08/11/2014 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 08/11/2014 - [] D -- C:\ProgramData\install_clap O43 - CFD: 08/11/2014 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 27/12/2014 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 08/11/2014 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 08/11/2014 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 23/03/2016 - [] D -- C:\ProgramData\Norton O43 - CFD: 16/12/2011 - [] D -- C:\ProgramData\NortonInstaller O43 - CFD: 08/11/2014 - [] D -- C:\ProgramData\oem O43 - CFD: 16/12/2011 - [] D -- C:\ProgramData\Packard Bell O43 - CFD: 02/09/2015 - [] D -- C:\ProgramData\Skype O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 22/02/2015 - [] AD -- C:\ProgramData\Temp O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 16/12/2011 - [] D -- C:\ProgramData\WildTangent O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Common Files\Adobe O43 - CFD: 16/12/2011 - [] D -- C:\Program Files\Common Files\Adobe AIR O43 - CFD: 31/08/2015 - [] D -- C:\Program Files\Common Files\AV O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Common Files\InstallShield O43 - CFD: 16/12/2011 - [] D -- C:\Program Files\Common Files\microsoft shared O43 - CFD: 08/11/2014 - [] D -- C:\Program Files\Common Files\PX Storage Engine O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\Services O43 - CFD: 02/09/2015 - [] D -- C:\Program Files\Common Files\Skype O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 30/11/2014 - [] D -- C:\Program Files\Common Files\System O43 - CFD: 16/12/2011 - [] D -- C:\Program Files\Common Files\Windows Live O43 - CFD: 08/11/2014 - [] D -- C:\Users\clementine\AppData\Roaming\Adobe O43 - CFD: 31/08/2015 - [] D -- C:\Users\clementine\AppData\Roaming\CyberLink O43 - CFD: 08/11/2014 - [] D -- C:\Users\clementine\AppData\Roaming\Identities O43 - CFD: 16/12/2011 - [] D -- C:\Users\clementine\AppData\Roaming\Macromedia O43 - CFD: 29/03/2016 - [] SD -- C:\Users\clementine\AppData\Roaming\Microsoft O43 - CFD: 08/11/2014 - [] D -- C:\Users\clementine\AppData\Roaming\Mozilla O43 - CFD: 17/01/2015 - [0] D -- C:\Users\clementine\AppData\Roaming\Windows Live Writer O43 - CFD: 29/03/2016 - [] D -- C:\Users\clementine\AppData\Roaming\ZHP O43 - CFD: 08/11/2014 - [] D -- C:\Users\clementine\AppData\Local\Adobe O43 - CFD: 08/11/2014 - [0] SHD -- C:\Users\clementine\AppData\Local\Application Data O43 - CFD: 23/03/2016 - [] D -- C:\Users\clementine\AppData\Local\CrashDumps O43 - CFD: 31/08/2015 - [] D -- C:\Users\clementine\AppData\Local\CyberLink O43 - CFD: 27/12/2015 - [0] SHD -- C:\Users\clementine\AppData\Local\EmieBrowserModeList O43 - CFD: 27/12/2015 - [0] SHD -- C:\Users\clementine\AppData\Local\EmieSiteList O43 - CFD: 27/12/2015 - [0] SHD -- C:\Users\clementine\AppData\Local\EmieUserList O43 - CFD: 08/11/2014 - [0] SHD -- C:\Users\clementine\AppData\Local\Historique O43 - CFD: 31/08/2015 - [] D -- C:\Users\clementine\AppData\Local\Microsoft O43 - CFD: 08/11/2014 - [] D -- C:\Users\clementine\AppData\Local\Mozilla O43 - CFD: 29/03/2016 - [] D -- C:\Users\clementine\AppData\Local\Temp O43 - CFD: 08/11/2014 - [0] SHD -- C:\Users\clementine\AppData\Local\Temporary Internet Files O43 - CFD: 08/11/2014 - [0] D -- C:\Users\clementine\AppData\Local\VirtualStore O43 - CFD: 04/09/2015 - [] D -- C:\Users\clementine\AppData\Local\Windows Live O43 - CFD: 17/01/2015 - [] D -- C:\Users\clementine\AppData\Local\Windows Live Writer O43 - CFD: 22/02/2015 - [0] D -- C:\Users\clementine\AppData\Local\{7C725F43-FF9A-42EF-A362-7F45D2C57141} =>.Superfluous.Empty O43 - CFD: 17/01/2015 - [0] D -- C:\Users\clementine\AppData\Local\{8D6E9D7C-39B3-4DF0-A20B-34E2DB31A89E} =>.Superfluous.Empty O43 - CFD: 31/08/2015 - [0] D -- C:\Users\clementine\AppData\Local\{93735635-402D-4780-B041-32A9CC59F743} =>.Superfluous.Empty O43 - CFD: 17/01/2015 - [0] D -- C:\Users\clementine\AppData\Local\{B402BC43-E3E4-4FAE-AF18-04C51909D19E} =>.Superfluous.Empty O43 - CFD: 22/03/2015 - [0] D -- C:\Users\clementine\AppData\Local\{C2448619-1E63-41A5-B47A-59B942742B98} =>.Superfluous.Empty O43 - CFD: 08/02/2015 - [0] D -- C:\Users\clementine\AppData\Local\{ED0A78A3-5C51-4046-9060-DEFE1FE054EE} =>.Superfluous.Empty O43 - CFD: 17/01/2015 - [0] D -- C:\Users\clementine\AppData\Local\{FCCF3FF3-5791-430E-A69E-B82B9642681D} =>.Superfluous.Empty O43 - CFD: 31/08/2015 - [0] D -- C:\Users\clementine\AppData\Local\{FFEAD167-B97D-42A4-97D8-94C040232EE6} =>.Superfluous.Empty O43 - CFD: 14/07/2009 - [] RD -- C:\Users\clementine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 04/09/2015 - [] RD -- C:\Users\clementine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 22/02/2015 - [] D -- C:\Users\clementine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Convar O43 - CFD: 14/07/2009 - [] RD -- C:\Users\clementine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 04/09/2015 - [] RD -- C:\Users\clementine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup ---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 1s O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation ---\\ Liste des pilotes du système (69) - 58s O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400] =>.Microsoft Windows® O58 - SDL:2011/07/14 03:37:59 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [80256] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312] =>.Microsoft Windows® O58 - SDL:2011/07/14 03:37:59 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [22400] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608] =>.Microsoft Windows® O58 - SDL:2009/07/14 00:02:49 A . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gi.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888] =>.Broadcom Corporation O58 - SDL:2011/08/18 14:38:20 A . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless dr.) -- C:\Windows\System32\drivers\BCMWL6.SYS [4268096] =>.Broadcom Corporation® O58 - SDL:2009/07/14 00:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] =>.Brother Industries, Ltd. O58 - SDL:2009/07/14 00:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] =>.Brother Industries, Ltd. O58 - SDL:2009/07/14 02:57:25 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [272128] =>.Brother Industries Ltd. O58 - SDL:2009/07/14 00:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] =>.Brother Industries Ltd. O58 - SDL:2009/07/14 00:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] =>.Brother Industries Ltd. O58 - SDL:2009/07/14 00:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] =>.Brother Industries Ltd. O58 - SDL:2009/07/14 00:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080] =>.Broadcom Corporation O58 - SDL:2009/10/20 04:00:00 A . (.Sonic Solutions - CDR4 CD and DVD Place Holder Driver (see Px.) -- C:\Windows\System32\drivers\cdr4_xp.sys [9072] =>.Sonic Solutions® O58 - SDL:2009/10/20 04:00:00 A . (.Sonic Solutions - CDRAL Place Holder Driver (see PxHelp).) -- C:\Windows\System32\drivers\cdralw2k.sys [9200] =>.Sonic Solutions® O58 - SDL:2009/07/14 03:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712] =>.Microsoft Windows® O58 - SDL:2009/07/14 00:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160] =>.Broadcom Corporation O58 - SDL:2009/07/14 00:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624] =>.Hauppauge Computer Works, Inc. O58 - SDL:2009/07/14 03:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152] =>.Microsoft Windows® O58 - SDL:2010/11/06 10:39:18 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x86.) -- C:\Windows\System32\drivers\iaStor.sys [354840] =>.Intel Corporation® O58 - SDL:2011/07/14 03:37:59 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332160] =>.Microsoft Windows® O58 - SDL:2011/12/30 12:03:00 A . (.Intel Corporation - Intel (R) WDDM Kernel Mode Driver.) -- C:\Windows\System32\drivers\igddim32.sys [1338368] =>.Intel Corporation O58 - SDL:2011/12/30 11:56:12 A . (.Intel Corporation - Intel (R) WDDM Kernel mode driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [418816] =>.Intel Corporation O58 - SDL:2009/07/14 03:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040] =>.Microsoft Windows® O58 - SDL:2011/06/09 17:37:56 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [278528] =>.Intel(R) Corporation O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624] =>.Microsoft Windows® O58 - SDL:2011/07/14 03:37:59 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117120] =>.Microsoft Windows® O58 - SDL:2011/07/14 03:37:59 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [143744] =>.Microsoft Windows® O58 - SDL:2010/03/19 04:00:00 A . (.Sonic Solutions - Px Engine Device Driver for Windows 2000/XP.) -- C:\Windows\System32\drivers\pxhelp20.sys [45648] =>.Sonic Solutions® O58 - SDL:2009/07/14 03:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064] =>.Microsoft Windows® O58 - SDL:2011/09/29 11:30:32 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.20 32-bit Dr.) -- C:\Windows\System32\drivers\Rt86win7.sys [490088] =>.Realtek Semiconductor Corp® O58 - SDL:2011/05/18 17:03:52 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [3501032] =>.Realtek Semiconductor Corp® O58 - SDL:2011/05/30 10:03:34 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\Windows\System32\drivers\RtsPStor.sys [254056] =>.Realtek Semiconductor Corp® O58 - SDL:2009/07/13 22:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2009/07/14 03:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072] =>.Microsoft Windows® O58 - SDL:2010/10/08 12:32:28 A . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\System32\drivers\SynTP.sys [1314736] =>.Synaptics Incorporated® O58 - SDL:2009/07/14 03:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:2009/07/13 23:40:44 A . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:2009/07/13 23:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:2009/07/13 23:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:2009/07/13 23:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:2009/07/13 23:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:2009/07/13 23:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:2009/07/13 23:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:2009/07/13 23:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:2009/07/13 23:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:2009/07/13 23:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:2009/07/13 23:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:2009/07/13 23:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:2009/07/13 23:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:2009/07/13 23:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] ---\\ Associations Shell Spawning (11) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (...) -- C:\Program Files\Mozilla Firefox\firefox.exe ---\\ Menu de démarrage Internet (8) - 1s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Mozilla Firefox\firefox.exe http://www.sweet-page.com/?type=sc&ts=1424629293&from=corfr&uid=WDCXWD3200BPVT-22JJ5T0_WD-WX31EB1CRA26CRA26 =>PUP.Optional.SweetPage O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Internet Explorer\iexplore.ex http://www.sweet-page.com/?type=sc&ts=1424629293&from=corfr&uid=WDCXWD3200BPVT-22JJ5T0_WD-WX31EB1CRA26CRA26 =>PUP.Optional.SweetPage O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Recherche d'infection sur les navigateurs (12) - 17s O69 - SBI: prefs.js [clementine - clohok2r.default] user_pref("browser.search.defaultenginename", "sweet-page"); =>PUP.Optional.SweetPage O69 - SBI: prefs.js [clementine - clohok2r.default] user_pref("browser.search.searchengine.alias", "sweet-page"); =>PUP.Optional.SweetPage O69 - SBI: prefs.js [clementine - clohok2r.default] user_pref("browser.search.searchengine.iconURL", "http://www.sweet-page.com/favicon.ico"); =>PUP.Optional.SweetPage O69 - SBI: prefs.js [clementine - clohok2r.default] user_pref("browser.search.searchengine.name", "sweet-page"); =>PUP.Optional.SweetPage O69 - SBI: prefs.js [clementine - clohok2r.default] user_pref("browser.search.searchengine.url", "http://www.sweet-page.com/web/?type=ds&ts=1424629293&from=corfr&uid=WDCXWD3200BPVT-2[...] =>PUP.Optional.SweetPage O69 - SBI: prefs.js [clementine - clohok2r.default] user_pref("browser.search.selectedEngine", "sweet-page"); =>PUP.Optional.SweetPage O69 - SBI: prefs.js [clementine - clohok2r.default] user_pref("extensions.quick_start.enable_search1", false); =>PUP.Optional.QuickStart O69 - SBI: prefs.js [clementine - clohok2r.default] user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false); =>PUP.Optional.QuickStart O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/search?q={searchTerms}&form=APBTDF&pc=MAPB&src=IE-SearchBox O69 - SBI: SearchScopes [HKCU] {33BB0A4E-99AF-4226-BDF6-49120163DE86} - (sweet-page) - http://www.sweet-page.com/web/?type=ds&ts=1424629293&from=corfr&uid=WDCXWD3200BPVT-22JJ5T0_WD-WX31EB1CRA26CRA26&q={searchTerms} =>PUP.Optional.SweetPage O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/search?q={searchTerms}&form=APBTDF&pc=MAPB&src=IE-SearchBox O69 - SBI: SearchScopes [HKLM] {33BB0A4E-99AF-4226-BDF6-49120163DE86} [DefaultScope] - (Bing) - http://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 ---\\ Enumère les services démarrés par Svchost (32) - 2s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168960] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [593408] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [679424] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [475136] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [286208] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [49664] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [300544] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242176] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [523776] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1973728] =>.Microsoft Windows Component Publisher® O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [585728] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [499712] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [21504] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [49664] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164864] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [750592] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [71168] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [113664] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102912] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800] =>.Microsoft Corporation ---\\ Scan Additionnel (10) - 0s C:\Users\clementine\AppData\Roaming\Mozilla\Firefox\Profiles\clohok2r.default\searchplugins\sweet-page.xml =>PUP.Optional.SweetPage C:\Users\clementine\AppData\Roaming\Mozilla\Firefox\Profiles\clohok2r.default\extensions\faststartff@gmail.com =>PUP.Optional.FastStart HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\sweet-page uninstall =>PUP.Optional.SweetPage HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\sweet-page uninstall =>PUP.Optional.SweetPage HKLM\SOFTWARE\supWindowsMangerProtect =>PUP.Optional.WpManager HKLM\SOFTWARE\sweet-pageSoftware =>PUP.Optional.SweetPage HKCU\SOFTWARE\InstallCore =>Adware.InstallCore HKCU\SOFTWARE\Smart PC Solutions =>PUP.Optional.SmartPCSolutions HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} =>PUP.Optional.SweetPage ---\\ Récapitulatif des éléments trouvés sur votre station (7) - 0s http://www.nicolascoolman.fr/?p=596 =>PUP.Optional.SweetPage http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.FastStart http://www.nicolascoolman.fr/?p=173 =>PUP.Optional.WpManager http://www.nicolascoolman.fr/?p=279 =>Adware.InstallCore http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.SmartPCSolutions http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Downloader http://www.nicolascoolman.fr/?p=666 =>PUP.Optional.QuickStart ~ End of the scan, 4714 items in 00h06mn44s (593)(0)