cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Rapport de ZHPDiag v1.34.76 par Nicolas Coolman, Update du 01/02/2013
Run by mylene at 02/02/2013 16:04:22
State : Version � jour.
UAC : Deactivate by program


---\\ Web Browser
MSIE: Internet Explorer v9.0.8112.16421
MFIE: Mozilla Firefox 18.0.1 v18.0.1 (Defaut)

---\\ Windows Product Information
~ Langage: Fran�ais
Windows 7 Starter Edition, 32-bit Service Pack 1 (Build 7601)
Windows Server License Manager Script : OK
Software Protection Service (Protection logicielle) : KO
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ System Information
~ Processor: x86 Family 6 Model 54 Stepping 1, GenuineIntel
~ Operating System: 32 Bits
Boot mode: Sans �chec avec prise en charge du r�seau (Fail-safe with network boot)
Total RAM: 1012 MB (55% free)
System Restore: Activ� (Enable)
System drive C: has 263 GB (92%) free of 285 GB

---\\ Logged in mode
~ Computer Name: MYLENE-PC
~ User Name: mylene
~ All Users Names: mylene, Administrateur,
~ Unselected Option: O45,O61,O62,O65,O66,O80,O82,O89
Logged in as Administrator

---\\ Environnement Variables
~ System Unit : C:\
~ %AppData% : C:\Users\mylene\AppData\Roaming\
~ %Desktop% : C:\Users\mylene\Desktop\
~ %Favorites% : C:\Users\mylene\Favorites\
~ %LocalAppData% : C:\Users\mylene\AppData\Local\
~ %StartMenu% : C:\Users\mylene\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 263 Go of 285 Go)



---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Scan Security Center in 00mn 00s



---\\ Recherche particuli�re de fichiers g�n�riques
[MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - (.Microsoft Corporation - Explorateur Windows.) (.14/07/2011 - 02:34:17.) -- C:\Windows\Explorer.exe [2616320]
[MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de d�marrage de Windows.) (.14/07/2009 - 02:14:45.) -- C:\Windows\System32\Wininit.exe [96256]
[MD5.1D94FA7C81D2FFE494AF094619BA706F] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.14/12/2011 - 03:57:18.) -- C:\Windows\System32\wininet.dll [1127424]
[MD5.6D13E1406F50C66E2A95D97F22C47560] - (.Microsoft Corporation - Application d�ouverture de session Windows.) (.20/11/2010 - 22:29:06.) -- C:\Windows\System32\Winlogon.exe [286720]
[MD5.E3AE23569749DE12D45BA3B489A036AE] - (.Microsoft Corporation - Biblioth�que de licences.) (.20/11/2010 - 22:29:24.) -- C:\Windows\System32\sppcomapi.dll [193536]
[MD5.9EBBBA55060F786F0FCAA3893BFA2806] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.14/07/2011 - 02:30:42.) -- C:\Windows\system32\Drivers\AFD.sys [338944]
[MD5.338C86357871C167A96AB976519BF59E] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:26:15.) -- C:\Windows\system32\Drivers\atapi.sys [21584]
[MD5.77EA11B065E0A8AB902D78145CA51E10] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:11:15.) -- C:\Windows\system32\Drivers\Cdfs.sys [70656]
[MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 22:29:03.) -- C:\Windows\system32\Drivers\Cdrom.sys [108544]
[MD5.F024449C97EC1E464AAFFDA18593DB88] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 22:29:07.) -- C:\Windows\system32\Drivers\DfsC.sys [78336]
[MD5.9036377B8A6C15DC2EEC53E489D159B5] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 22:29:03.) -- C:\Windows\system32\Drivers\HDAudBus.sys [108544]
[MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:11:24.) -- C:\Windows\system32\Drivers\i8042prt.sys [80896]
[MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 00:54:29.) -- C:\Windows\system32\Drivers\IpNat.sys [101888]
[MD5.5D16C921E3671636C0EBA3BBAAC5FD25] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.14/07/2011 - 02:36:43.) -- C:\Windows\system32\Drivers\MRxSmb.sys [123904]
[MD5.280122DDCF04B378EDD1AD54D71C1E54] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 22:29:08.) -- C:\Windows\system32\Drivers\netBT.sys [187904]
[MD5.81189C3D7763838E55C397759D49007A] - (.Microsoft Corporation - Pilote du syst�me de fichiers NT.) (.14/07/2011 - 02:37:59.) -- C:\Windows\system32\Drivers\ntfs.sys [1211264]
[MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - (.Microsoft Corporation - Pilote de port parall�le.) (.14/07/2009 - 00:45:35.) -- C:\Windows\system32\Drivers\Parport.sys [79360]
[MD5.D9F91EAFEC2815365CBE6D167E4E332A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.14/07/2009 - 00:54:34.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [78848]
[MD5.3E21C083B8A01CB70BA1F09303010FCE] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 00:53:41.) -- C:\Windows\system32\Drivers\smb.sys [71168]
[MD5.B459575348C20E8121D6039DA063C704] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 22:29:07.) -- C:\Windows\system32\Drivers\tdx.sys [74752]
[MD5.F497F67932C6FA693D7DE2780631CFE7] - (.Microsoft Corporation - Pilote de clich� instantan� du volume.) (.20/11/2010 - 22:29:03.) -- C:\Windows\system32\Drivers\volsnap.sys [245632]
~ Scan Generic Processes in 00mn 00s



---\\ Etat des fichiers cach�s (Cach�/Total)
~ Mes images (My Pictures) : 1/35
~ Mes Favoris (My Favorites) : 1/18
~ Menu demarrer (Programs) : 1/22
~ Scan Hidden Files in 00mn 00s



---\\ Processus lanc�s
[MD5.D7826A7440444F40E0406CF37FD2FA88] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [917400] [PID.2004]
[MD5.9A4841A0CE83A768F7A5F4BA97DE02B5] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files\Mozilla Firefox\plugin-container.exe [17304] [PID.908]
[MD5.4EBF0CF9B48781DA145A147AA7E9E505] - (.Adobe Systems, Inc. - Adobe Flash Player 11.5 r502.) -- C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_5_502_146.exe [1808392] [PID.808]
[MD5.72CB29B523061FF64B3F66B8F3A5E034] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [5648896] [PID.1872]
~ Scan Processes Running in 00mn 00s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
C:\Users\mylene\AppData\Roaming\Mozilla\Firefox\Profiles\j3m8pwj1.default\prefs.js
C:\Users\mylene\AppData\Roaming\Mozilla\Firefox\Profiles\j3m8pwj1.default\user.js
M3 - MFPP: Plugins - [mylene] -- C:\Users\mylene\AppData\Roaming\Mozilla\Firefox\Profiles\j3m8pwj1.default\searchplugins\bingp.xml
M3 - MFPP: Plugins - [mylene] -- C:\Users\mylene\AppData\Roaming\Mozilla\Firefox\Profiles\j3m8pwj1.default\searchplugins\BrowserProtect.xml
M3 - MFPP: Plugins - [mylene] -- C:\Program Files\Mozilla FireFox\searchplugins\amazon-france.xml
M3 - MFPP: Plugins - [mylene] -- C:\Program Files\Mozilla FireFox\searchplugins\babylon.xml
M3 - MFPP: Plugins - [mylene] -- C:\Program Files\Mozilla FireFox\searchplugins\bing.xml
M3 - MFPP: Plugins - [mylene] -- C:\Program Files\Mozilla FireFox\searchplugins\cnrtl-tlfi-fr.xml
M3 - MFPP: Plugins - [mylene] -- C:\Program Files\Mozilla FireFox\searchplugins\eBay-france.xml
M3 - MFPP: Plugins - [mylene] -- C:\Program Files\Mozilla FireFox\searchplugins\google.xml
M3 - MFPP: Plugins - [mylene] -- C:\Program Files\Mozilla FireFox\searchplugins\wikipedia-fr.xml
M3 - MFPP: Plugins - [mylene] -- C:\Program Files\Mozilla FireFox\searchplugins\yahoo-france.xml
M0 - MFSP: prefs.js [mylene - j3m8pwj1.default] http://search.babylon.com
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF32_11_5_502_146.dll
P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 4.1.10329.0.) -- c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll
P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=14.0.8117.0416] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3502.0922] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
P2 - FPN: [HKLM] [@WildTangent.com/GamesAppPresenceDetector,Version=1.0] - (...) -- C:\Program Files\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll
P2 - FPN: [HKLM] [Adobe Reader] - (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 10.1.0.) -- C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
~ Scan Firefox Browser in 00mn 00s



---\\ Internet Explorer, D�marrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://packardbell.msn.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://packardbell.msn.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)) -- C:\Windows\System32\ieframe.dll
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
~ Scan IE Browser in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Scan Proxy management in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Scan Keys in 00mn 00s



---\\ Redirection du fichier Hosts (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Scan Hosts File in 00mn 00s
~ Nombre de lignes (Lines number): 21



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} Cl� orpheline
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} . (.Symantec Corporation - coIEPlugIn.) -- C:\Program Files\Norton Internet Security\Engine\19.9.0.9\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} . (.Symantec Corporation - IPS Browser Helper DLL.) -- C:\Program Files\Norton Internet Security\Engine\19.9.0.9\IPS\IPSBHO.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - WindowsLiveLogin.dll.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} . (...) -- "C:\Program Files\Microsoft\BingBar\BingExt.dll" (.not file.)
~ Scan BHO in 00mn 00s



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: Norton Toolbar - [HKLM]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} . (.Symantec Corporation - coIEPlugIn.) -- C:\Program Files\Norton Internet Security\Engine\19.9.0.9\coIEPlg.dll
O3 - Toolbar: Bing Bar - [HKLM]{8dcb7100-df86-4384-8842-8fa844297b3f} . (.Microsoft Corporation. - Extensions du client Bing.) -- C:\Program Files\Microsoft\BingBar\BingExt.dll
~ Scan Toolbar in 00mn 00s



---\\ Applications d�marr�es par registre & par dossier (O4)
O4 - HKLM\..\Run: [Norton Online Backup] . (.Symantec Corporation - Norton Online Backup Service.) -- C:\Program Files\Symantec\Norton Online Backup\NOBuClient.exe
O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [GfxServiceInstall] . (...) -- C:\Windows\system32\GfxCUIServiceInstall.vbs
O4 - HKLM\..\Run: [LManager] . (.Dritek System Inc. - Launch Manager.) -- C:\Program Files\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [ETDCtrl] . (.ELAN Microelectronics Corp. - ETD Control Center.) -- C:\Program Files\Elantech\ETDCtrl.exe
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
O4 - HKLM\..\Run: [Power Management] . (.Acer Incorporated - ePowerTray.) -- C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe
O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-21-2555609281-1652748078-2745268579-1000\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe
O4 - HKUS\S-1-5-21-2555609281-1652748078-2745268579-1000\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
~ Scan Application in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - Global Startup: C:\Users\mylene\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
~ Scan Global Startup in 00mn 00s



---\\ Invisibilit� de l'ic�ne d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ Scan IE Control Panel in 00mn 00s



---\\ Boutons situ�s sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: @C:\Program Files\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} . (.Evernote Corp., 333 W Evelyn Ave. Mountain - Evernote Clipper for Microsoft Internet Explorer.) -- C:\Program Files\Evernote\Evernote\Ev
~ Scan IE Extra Buttons in 00mn 00s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d�affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d�espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d�espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
~ Scan Winsock in 00mn 00s



---\\ Objets ActiveX (Downloaded Program Files)(O16)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
~ Scan Objets ActiveX in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{0E7EAF66-0202-4CD2-92C1-2B96E5FFFDC2}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{0E7EAF66-0202-4CD2-92C1-2B96E5FFFDC2}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{0E7EAF66-0202-4CD2-92C1-2B96E5FFFDC2}: DhcpNameServer = 192.168.1.1
~ Scan Domain in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contr�le ActiveX pour le flux vid�o.) -- C:\Windows\System32\msvidctl.dll
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft� InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\system32\inetcomm.dll
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft� InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll
O18 - Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype for COM API.) -- C:\Program Files\Common Files\Skype\Skype4COM.dll
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contr�le ActiveX pour le flux vid�o.) -- C:\Windows\System32\msvidctl.dll
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
~ Scan Protocole Additionnel in 00mn 00s



---\\ Valeur de Registre AppInit_DLLs et sous-cl�s Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll
~ Scan Winlogon in 00mn 00s



---\\ Valeur de Registre AppInit_DLLs et sous-cl�s Winlogon Notify (autorun) (O20)
O20 - AppInit_DLLs: . (...) - C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.dll
~ Scan AppInit DLL in 00mn 00s



---\\ Cl� de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ Scan SSODL in 00mn 00s



---\\ Liste des services NT non Microsoft et non d�sactiv�s (O23)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: BrowserProtect (BrowserProtect) . (...) - C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe
O23 - Service: Dritek WMI Service (DsiWMIService) . (.Dritek System Inc. - Dritek WMI Service.) - C:\Program Files\Launch Manager\dsiwmis.exe
O23 - Service: ePower Service (ePowerSvc) . (.Acer Incorporated - ePowerSvc.) - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe
O23 - Service: GREGService (GREGService) . (.Acer Incorporated - Global Registration Service.) - C:\Program Files\Packard Bell\Registration\GREGsvc.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc. - Realtek Card Reader Icon Tool..) - C:\Program Files\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: Live Updater Service (Live Updater Service) . (.Acer Incorporated - Updater Service.) - C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
O23 - Service: Norton Internet Security (NIS) . (.Symantec Corporation - Symantec Service Framework.) - C:\Program Files\Norton Internet Security\Engine\19.9.0.9\ccSvcHst.exe
O23 - Service: Norton Online Backup (NOBU) . (.Symantec Corporation - Norton Online Backup Service.) - C:\Program Files\Symantec\Norton Online Backup\NOBuAgent.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe
~ Scan Services in 00mn 05s



---\\ Enum�ration Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Scan Desktop Component in 00mn 00s



---\\ BootExecute (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ Scan Keys in 00mn 00s



---\\ T�ches planifi�es en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job
~ Scan Scheduled Task in 00mn 00s



---\\ Composants install�s (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll
O40 - ASIC: Internet Explorer - >{26923b43-4d38-484f-9b9e-de460746276c} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: Browser Customizations - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} . (.Microsoft Corporation - Personnalisation d�IEAK.) -- C:\Windows\System32\iedkcs32.dll
O40 - ASIC: Microsoft Windows Media Player 12.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll
O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
O40 - ASIC: Microsoft Windows - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe
O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll
O40 - ASIC: Windows Desktop Update - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O40 - ASIC: Web Platform Customizations - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll
~ Scan Active Setup in 00mn 00s



---\\ Pilotes lanc�s au d�marrage (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (BHDrvx86) . (.Symantec Corporation - BASH Driver.) - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\BASHDefs\20130116.013\BHDrvx86.sys
O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\drivers\blbdrive.sys
O41 - Driver: (ccSet_NIS) . (.Symantec Corporation - Common Client Settings Driver.) - C:\Windows\system32\drivers\NIS\1309000.009\ccSetx86.sys
O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
O41 - Driver: (eeCtrl) . (.Symantec Corporation - Symantec Eraser Control Driver.) - C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys
O41 - Driver: (IDSVix86) . (.Symantec Corporation - IDS Core Driver.) - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\IPSDefs\20130201.001\IDSvix86.sys
O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-syst�me de mise en m�moire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys
O41 - Driver: (SRTSPX) . (.Symantec Corporation - Symantec AutoProtect.) - C:\Windows\system32\drivers\NIS\1309000.009\SRTSPX.sys
O41 - Driver: (SymIRON) . (.Symantec Corporation - Iron Driver.) - C:\Windows\system32\drivers\NIS\1309000.009\Ironx86.sys
O41 - Driver: (SymNetS) . (.Symantec Corporation - Network Security Driver.) - C:\Windows\system32\Drivers\NIS\1309000.009\SYMNETS.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys
O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys
O41 - Driver: (IDSVix86) . (.Symantec Corporation - IDS Core Driver.) - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\IPSDefs\20130131.001\IDSvix86.sys
~ Scan Drivers in 00mn 20s



---\\ Logiciels install�s (O42)
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {AFF7E080-1974-45BF-9310-10DE1A1F5ED0}
O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin
O42 - Logiciel: Adobe Reader X (10.1.0) MUI - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-FFFF-7B44-AA0000000001}
O42 - Logiciel: Akhra: The Treasures - (.WildTangent.) [HKLM] -- WTA-7582d8ed-4530-4289-853f-fa55a8ce2123
O42 - Logiciel: Alice's Magical Mahjong - (.WildTangent.) [HKLM] -- WTA-0e2431d0-0c13-4bb9-be55-998346fe02e7
O42 - Logiciel: Babylon Chrome Toolbar - (.Babylon Ltd.) [HKLM] -- {E55E7026-EF2A-4A17-AAA7-DB98EA3FD1B1}
O42 - Logiciel: Bejeweled 3 - (.WildTangent.) [HKLM] -- WTA-2e057cab-f511-481a-bb79-5aca019bc99d
O42 - Logiciel: Bing Bar - (.Microsoft Corporation.) [HKLM] -- {C28D96C0-6A90-459E-A077-A6706F4EC0FC}
O42 - Logiciel: BrowserProtect - (.Bit89 Inc.) [HKLM] -- {15D2D75C-9CB2-4efd-BAD7-B9B4CB4BC693}
O42 - Logiciel: Chuzzle Deluxe - (.WildTangent.) [HKLM] -- WTA-36c5b6ae-fe06-4937-b8e8-596a9fd12da5
O42 - Logiciel: Diego's Ultimate Rescue - (.WildTangent.) [HKLM] -- WTA-10bad245-0a3a-4afa-b677-25da4d140921
O42 - Logiciel: ETDWare PS/2-X86 8.0.6.0_WHQL - (.ELAN Microelectronic Corp..) [HKLM] -- Elantech
O42 - Logiciel: Evernote v. 4.5.2 - (.Evernote Corp..) [HKLM] -- {F77EF646-19EB-11E1-9A9E-984BE15F174E}
O42 - Logiciel: Final Drive: Nitro - (.WildTangent.) [HKLM] -- WTA-3449b694-e47f-4c61-adbb-bac3dab462fc
O42 - Logiciel: Fooz Kids - (.FUHU, Inc..) [HKLM] -- FoozKids
O42 - Logiciel: Fooz Kids - (.FUHU, Inc..) [HKLM] -- {52A066FB-6188-DE44-5170-A9F8003BBF5A}
O42 - Logiciel: Fooz Kids Platform - (.FUHU, Inc..) [HKLM] -- {8D68CE08-9A14-4B7B-9857-3C646A2F34C7}
O42 - Logiciel: Identity Card - (.Packard Bell.) [HKLM] -- Identity Card
O42 - Logiciel: Insaniquarium Deluxe - (.WildTangent.) [HKLM] -- WTA-5b87ba9a-7c2f-43f2-b2b4-1019857efd16
O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421}
O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC}
O42 - Logiciel: Launch Manager - (.Packard Bell.) [HKLM] -- LManager
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Mozilla Firefox 18.0.1 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 18.0.1 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService
O42 - Logiciel: My Farm Life - (.WildTangent.) [HKLM] -- WTA-0aa6b6ca-d63d-4bcf-98ed-327d9519909a
O42 - Logiciel: My Kingdom for the Princess 3 - (.WildTangent.) [HKLM] -- WTA-71df113d-e742-476f-8a57-f8d6e3819ef5
O42 - Logiciel: Norton Internet Security - (.Symantec Corporation.) [HKLM] -- NIS
O42 - Logiciel: Norton Online Backup - (.Symantec Corporation.) [HKLM] -- {40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}
O42 - Logiciel: Packard Bell Games - (.WildTangent.) [HKLM] -- WildTangent packardbell Master Uninstall
O42 - Logiciel: Packard Bell Power Management - (.Packard Bell.) [HKLM] -- {3DB0448D-AD82-4923-B305-D001E521A964}
O42 - Logiciel: Packard Bell Recovery Management - (.Packard Bell.) [HKLM] -- {7F811A54-5A09-4579-90E1-C93498E230D9}
O42 - Logiciel: Packard Bell Registration - (.Packard Bell.) [HKLM] -- Packard Bell Registration
O42 - Logiciel: Packard Bell ScreenSaver - (.Packard Bell .) [HKLM] -- Packard Bell Screensaver
O42 - Logiciel: Packard Bell Social Networks - (.CyberLink Corp..) [HKLM] -- InstallShield_{64EF903E-D00A-414C-94A4-FBA368FFCDC9}
O42 - Logiciel: Packard Bell Social Networks - (.CyberLink Corp..) [HKLM] -- {64EF903E-D00A-414C-94A4-FBA368FFCDC9}
O42 - Logiciel: Packard Bell Updater - (.Packard Bell.) [HKLM] -- {EE171732-BEB4-4576-887D-CB62727F01CA}
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM] -- {C1594429-8296-4652-BF54-9DBE4932A44C}
O42 - Logiciel: Running Sheep - (.WildTangent.) [HKLM] -- WTA-5f411bdd-11ae-4f89-8184-aec34391a3b8
O42 - Logiciel: Skip-Bo - Castaway Caper - (.WildTangent.) [HKLM] -- WTA-b8d25645-2d04-400d-ba3e-91bd3e330c26
O42 - Logiciel: Skype� 6.1 - (.Skype Technologies S.A..) [HKLM] -- {4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}
O42 - Logiciel: Slingo Deluxe - (.WildTangent.) [HKLM] -- WTA-9220b556-6360-422e-95f3-131be5fd4592
O42 - Logiciel: Super Granny 6 - (.WildTangent.) [HKLM] -- WTA-e9ba15e8-7d04-49e5-b713-507d3660e58c
O42 - Logiciel: Update Installer for WildTangent Games App - (.WildTangent.) [HKLM] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App
O42 - Logiciel: Wedding Dash - (.WildTangent.) [HKLM] -- WTA-fe65866d-b8a0-4cc2-b0d7-2257a8b60b4e
O42 - Logiciel: Welcome Center - (.Packard Bell.) [HKLM] -- Packard Bell Welcome Center
O42 - Logiciel: WildTangent Games App (Packard Bell Games) - (.WildTangent.) [HKLM] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-packardbell
O42 - Logiciel: eBay Worldwide - (.OEM.) [HKLM] -- {D3E5A972-9A15-427D-AE78-8181A5FD943C}

---\\ HKCU & HKLM Software Keys
[HKCU\Software\58e8ddfb16deb40]
[HKCU\Software\Acer]
[HKCU\Software\Adobe]
[HKCU\Software\AppDataLow\Software\Microsoft]
[HKCU\Software\AppDataLow\Software]
[HKCU\Software\AppDataLow]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\Cyberlink]
[HKCU\Software\DataMngr]
[HKCU\Software\DataMngr_Toolbar]
[HKCU\Software\Dritek]
[HKCU\Software\Elantech]
[HKCU\Software\IM Providers]
[HKCU\Software\InstallCore]
[HKCU\Software\Intel]
[HKCU\Software\Local AppWizard-Generated Applications]
[HKCU\Software\Macromedia]
[HKCU\Software\Mozilla]
[HKCU\Software\OEM]
[HKCU\Software\Policies]
[HKCU\Software\Realtek]
[HKCU\Software\Skype-BackupBySkypePortable]
[HKCU\Software\Skype]
[HKCU\Software\Symantec]
[HKCU\Software\TeleCharger]
[HKCU\Software\ZebHelpProcess Helper]
[HKLM\Software\58e8ddfb16deb40]
[HKLM\Software\ATI Technologies]
[HKLM\Software\Acer]
[HKLM\Software\Adobe]
[HKLM\Software\Babylon]
[HKLM\Software\CBSTEST]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Cyberlink]
[HKLM\Software\DTS]
[HKLM\Software\DataMngr]
[HKLM\Software\Dolby]
[HKLM\Software\Dritek]
[HKLM\Software\Evernote]
[HKLM\Software\FUHU, Inc.]
[HKLM\Software\Google]
[HKLM\Software\IM Providers]
[HKLM\Software\Intel]
[HKLM\Software\Knowles]
[HKLM\Software\Macromedia]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\Norton]
[HKLM\Software\ODBC]
[HKLM\Software\OEM]
[HKLM\Software\OOBEOffer]
[HKLM\Software\OemSetup]
[HKLM\Software\Packard Bell]
[HKLM\Software\Policies]
[HKLM\Software\RTLSetup]
[HKLM\Software\Realtek Semiconductor Corp.]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\SRS Labs]
[HKLM\Software\Skype]
[HKLM\Software\SonicFocus]
[HKLM\Software\Symantec]
[HKLM\Software\Tarma Installer]
[HKLM\Software\WOW6432Node]
[HKLM\Software\Waves Audio]
[HKLM\Software\WildTangent]
[HKLM\Software\mozilla.org]
~ Scan Softwares in 00mn 00s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 30/01/2013 - 19:30:29 - [0,661] ----D C:\Program Files\Accessory Store
O43 - CFD: 13/04/2012 - 12:13:03 - [453,044] ----D C:\Program Files\Adobe
O43 - CFD: 30/01/2013 - 20:40:43 - [119,458] ----D C:\Program Files\Common Files
O43 - CFD: 31/01/2013 - 03:27:25 - [3,997] ----D C:\Program Files\DVD Maker
O43 - CFD: 30/01/2013 - 18:53:02 - [12,574] ----D C:\Program Files\Elantech
O43 - CFD: 13/04/2012 - 11:43:29 - [170,242] ----D C:\Program Files\Evernote
O43 - CFD: 30/01/2013 - 19:29:30 - [0] R---D C:\Program Files\Fichiers communs
O43 - CFD: 13/04/2012 - 12:13:04 - [21,344] ----D C:\Program Files\Fooz Kids
O43 - CFD: 30/01/2013 - 19:12:31 - [63,913] --H-D C:\Program Files\InstallShield Installation Information
O43 - CFD: 30/01/2013 - 18:43:37 - [26,095] ----D C:\Program Files\Intel
O43 - CFD: 02/02/2013 - 15:09:08 - [4,935] ----D C:\Program Files\Internet Explorer
O43 - CFD: 30/01/2013 - 18:50:10 - [8,668] ----D C:\Program Files\Launch Manager
O43 - CFD: 30/01/2013 - 21:33:28 - [20,149] ----D C:\Program Files\Microsoft
O43 - CFD: 14/07/2009 - 05:52:30 - [44,521] ----D C:\Program Files\Microsoft Games
O43 - CFD: 30/01/2013 - 19:09:27 - [6,126] ----D C:\Program Files\Microsoft Office
O43 - CFD: 02/02/2013 - 15:07:51 - [36,641] ----D C:\Program Files\Microsoft Silverlight
O43 - CFD: 30/01/2013 - 21:34:28 - [1,745] ----D C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 30/01/2013 - 20:15:12 - [44,642] ----D C:\Program Files\Mozilla Firefox
O43 - CFD: 30/01/2013 - 20:15:19 - [0,212] ----D C:\Program Files\Mozilla Maintenance Service
O43 - CFD: 14/07/2009 - 05:52:30 - [0,025] ----D C:\Program Files\MSBuild
O43 - CFD: 13/04/2012 - 12:10:14 - [221,848] ----D C:\Program Files\Norton Internet Security
O43 - CFD: 13/04/2012 - 12:09:49 - [50,296] ----D C:\Program Files\NortonInstaller
O43 - CFD: 30/01/2013 - 19:30:58 - [0,105] ----D C:\Program Files\OEM
O43 - CFD: 30/01/2013 - 19:12:31 - [101,371] ----D C:\Program Files\Packard Bell
O43 - CFD: 13/04/2012 - 12:05:57 - [260,272] ----D C:\Program Files\Packard Bell Games
O43 - CFD: 30/01/2013 - 19:30:18 - [0,127] ----D C:\Program Files\Preload
O43 - CFD: 30/01/2013 - 18:56:14 - [46,671] ----D C:\Program Files\Realtek
O43 - CFD: 14/07/2009 - 05:52:30 - [37,345] ----D C:\Program Files\Reference Assemblies
O43 - CFD: 30/01/2013 - 20:40:43 - [18,091] R---D C:\Program Files\Skype
O43 - CFD: 30/01/2013 - 19:06:01 - [33,217] ----D C:\Program Files\Social Networks
O43 - CFD: 13/04/2012 - 12:11:05 - [4,982] ----D C:\Program Files\Symantec
O43 - CFD: 13/04/2012 - 12:11:09 - [0,727] ----D C:\Program Files\SymSilent
O43 - CFD: 30/01/2013 - 18:57:40 - [0] --H-D C:\Program Files\Temp
O43 - CFD: 14/07/2009 - 05:53:23 - [0] --H-D C:\Program Files\Uninstall Information
O43 - CFD: 13/04/2012 - 11:39:27 - [9,782] ----D C:\Program Files\WildTangent Games
O43 - CFD: 31/01/2013 - 03:27:24 - [2,909] ----D C:\Program Files\Windows Defender
O43 - CFD: 30/01/2013 - 21:36:16 - [134,104] ----D C:\Program Files\Windows Live
O43 - CFD: 30/01/2013 - 21:32:53 - [0,234] ----D C:\Program Files\Windows Live SkyDrive
O43 - CFD: 31/01/2013 - 03:27:25 - [5,895] ----D C:\Program Files\Windows Mail
O43 - CFD: 31/01/2013 - 03:27:25 - [6,298] ----D C:\Program Files\Windows Media Player
O43 - CFD: 30/01/2013 - 19:29:30 - [11,632] ----D C:\Program Files\Windows NT
O43 - CFD: 31/01/2013 - 03:27:25 - [4,213] ----D C:\Program Files\Windows Photo Viewer
O43 - CFD: 20/11/2010 - 22:33:48 - [0,181] ----D C:\Program Files\Windows Portable Devices
O43 - CFD: 31/01/2013 - 03:27:25 - [6,314] ----D C:\Program Files\Windows Sidebar
O43 - CFD: 02/02/2013 - 16:04:25 - [11,883] ----D C:\Program Files\ZHPDiag
O43 - CFD: 13/04/2012 - 12:07:26 - [18,068] ----D C:\Program Files\Common Files\Adobe
O43 - CFD: 13/04/2012 - 12:13:02 - [29,675] ----D C:\Program Files\Common Files\Adobe AIR
O43 - CFD: 30/01/2013 - 18:56:06 - [1,943] ----D C:\Program Files\Common Files\InstallShield
O43 - CFD: 30/01/2013 - 21:33:02 - [17,761] ----D C:\Program Files\Common Files\microsoft shared
O43 - CFD: 14/07/2009 - 03:37:05 - [0,003] ----D C:\Program Files\Common Files\Services
O43 - CFD: 30/01/2013 - 20:40:43 - [2,056] ----D C:\Program Files\Common Files\Skype
O43 - CFD: 14/07/2009 - 03:37:05 - [39,200] ----D C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 31/01/2013 - 00:38:30 - [0,982] ----D C:\Program Files\Common Files\Symantec Shared
O43 - CFD: 31/01/2013 - 03:27:25 - [9,771] ----D C:\Program Files\Common Files\System
O43 - CFD: 13/04/2012 - 11:46:11 - [0] ----D C:\Program Files\Common Files\Windows Live
O43 - CFD: 01/02/2013 - 21:57:26 - [0,000] ----D C:\ProgramData\Adobe
O43 - CFD: 14/07/2009 - 05:53:55 - [0] --H-D C:\ProgramData\Application Data
O43 - CFD: 30/01/2013 - 20:24:54 - [0] ----D C:\ProgramData\Babylon
O43 - CFD: 30/01/2013 - 20:26:07 - [7,597] ----D C:\ProgramData\BrowserProtect
O43 - CFD: 30/01/2013 - 19:29:30 - [0] --H-D C:\ProgramData\Bureau
O43 - CFD: 30/01/2013 - 19:06:01 - [0,000] ----D C:\ProgramData\CLSK
O43 - CFD: 31/01/2013 - 19:23:27 - [0,005] ----D C:\ProgramData\CyberLink
O43 - CFD: 14/07/2009 - 05:53:55 - [0] --H-D C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - 05:53:55 - [0] --H-D C:\ProgramData\Documents
O43 - CFD: 13/04/2012 - 11:43:16 - [0] ----D C:\ProgramData\Evernote
O43 - CFD: 30/01/2013 - 19:29:30 - [0] --H-D C:\ProgramData\Favoris
O43 - CFD: 14/07/2009 - 05:53:55 - [0] --H-D C:\ProgramData\Favorites
O43 - CFD: 13/04/2012 - 12:13:05 - [0] ----D C:\ProgramData\Fooz Kids
O43 - CFD: 30/01/2013 - 19:06:01 - [0,011] ----D C:\ProgramData\install_clap
O43 - CFD: 30/01/2013 - 19:29:30 - [0] --H-D C:\ProgramData\Menu D�marrer
O43 - CFD: 30/01/2013 - 21:02:38 - [2021,593] -S--D C:\ProgramData\Microsoft
O43 - CFD: 30/01/2013 - 19:29:30 - [0] --H-D C:\ProgramData\Mod�les
O43 - CFD: 30/01/2013 - 20:15:19 - [0,000] ----D C:\ProgramData\Mozilla
O43 - CFD: 30/01/2013 - 19:33:09 - [287,028] ----D C:\ProgramData\Norton
O43 - CFD: 13/04/2012 - 12:09:49 - [1,069] ----D C:\ProgramData\NortonInstaller
O43 - CFD: 30/01/2013 - 19:34:36 - [0,001] ----D C:\ProgramData\oem
O43 - CFD: 13/04/2012 - 11:44:23 - [0,235] ----D C:\ProgramData\Packard Bell
O43 - CFD: 01/02/2013 - 12:53:01 - [38,210] ----D C:\ProgramData\Skype
O43 - CFD: 14/07/2009 - 05:53:55 - [0] --H-D C:\ProgramData\Start Menu
O43 - CFD: 13/04/2012 - 12:06:18 - [0,003] ----D C:\ProgramData\Symantec
O43 - CFD: 31/01/2013 - 13:18:27 - [1,195] ----D C:\ProgramData\Tarma Installer
O43 - CFD: 30/01/2013 - 19:10:08 - [0,378] ----D C:\ProgramData\Temp
O43 - CFD: 14/07/2009 - 05:53:55 - [0] --H-D C:\ProgramData\Templates
O43 - CFD: 13/04/2012 - 11:42:44 - [853,715] ----D C:\ProgramData\WildTangent
O43 - CFD: 01/02/2013 - 00:45:53 - [0] ----D C:\Users\mylene\AppData\Roaming\Adobe
O43 - CFD: 30/01/2013 - 20:26:09 - [2,565] ----D C:\Users\mylene\AppData\Roaming\BabSolution
O43 - CFD: 30/01/2013 - 20:24:54 - [0,008] ----D C:\Users\mylene\AppData\Roaming\Babylon
O43 - CFD: 31/01/2013 - 19:20:00 - [0,028] ----D C:\Users\mylene\AppData\Roaming\CyberLink
O43 - CFD: 30/01/2013 - 19:32:33 - [0] ----D C:\Users\mylene\AppData\Roaming\Identities
O43 - CFD: 13/04/2012 - 12:13:03 - [0,055] ----D C:\Users\mylene\AppData\Roaming\Macromedia
O43 - CFD: 01/02/2013 - 00:45:53 - [2,352] -S--D C:\Users\mylene\AppData\Roaming\Microsoft
O43 - CFD: 30/01/2013 - 20:18:24 - [15,472] ----D C:\Users\mylene\AppData\Roaming\Mozilla
O43 - CFD: 02/02/2013 - 15:15:55 - [4,000] ----D C:\Users\mylene\AppData\Roaming\Skype
O43 - CFD: 01/02/2013 - 13:06:06 - [0] ----D C:\Users\mylene\AppData\Roaming\SkypePM
O43 - CFD: 31/01/2013 - 17:03:15 - [0,001] ----D C:\Users\mylene\AppData\Roaming\SNS
O43 - CFD: 01/02/2013 - 00:45:53 - [9,256] ----D C:\Users\mylene\AppData\Local\Adobe
O43 - CFD: 30/01/2013 - 19:30:03 - [0] ----D C:\Users\mylene\AppData\Local\Application Data
O43 - CFD: 31/01/2013 - 19:19:34 - [0] ----D C:\Users\mylene\AppData\Local\CyberLink
O43 - CFD: 30/01/2013 - 19:30:03 - [0] ----D C:\Users\mylene\AppData\Local\Historique
O43 - CFD: 01/02/2013 - 21:58:40 - [0] ----D C:\Users\mylene\AppData\Local\Macromedia
O43 - CFD: 01/02/2013 - 00:45:53 - [171,104] ----D C:\Users\mylene\AppData\Local\Microsoft
O43 - CFD: 30/01/2013 - 20:15:46 - [9,485] ----D C:\Users\mylene\AppData\Local\Mozilla
O43 - CFD: 02/02/2013 - 16:05:16 - [76,852] ----D C:\Users\mylene\AppData\Local\Temp
O43 - CFD: 30/01/2013 - 19:30:03 - [0] ----D C:\Users\mylene\AppData\Local\Temporary Internet Files
O43 - CFD: 30/01/2013 - 19:30:05 - [0] ----D C:\Users\mylene\AppData\Local\VirtualStore
O43 - CFD: 14/07/2009 - 05:42:04 - [0,014] R---D C:\Users\mylene\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 30/01/2013 - 19:32:42 - [0,000] R---D C:\Users\mylene\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 30/01/2013 - 20:26:22 - [0,001] ----D C:\Users\mylene\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserProtect
O43 - CFD: 14/07/2009 - 05:37:42 - [0,001] R---D C:\Users\mylene\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 30/01/2013 - 19:32:42 - [0,000] R---D C:\Users\mylene\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
~ Scan Program Folder in 00mn 22s



---\\ Derniers fichiers modifi�s ou cr�es sous Windows et System32 (O44)
O44 - LFC:[MD5.138F1322701B326CF87A927B13B6DCB7] - 02/02/2013 - 16:01:16 ---A- . (...) -- C:\Windows\ntbtlog.txt [259286]
O44 - LFC:[MD5.844AB97C0AB575CB8F5BDEB322813F74] - 02/02/2013 - 16:01:09 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.BAF9D84EE4AA3F7EDF793DBA4905CF1B] - 02/02/2013 - 16:00:06 ---A- . (...) -- C:\Windows\setupact.log [32594]
O44 - LFC:[MD5.6FB4C40774E7433000E2D6D0AFF1AB21] - 02/02/2013 - 15:55:08 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1672623]
O44 - LFC:[MD5.A95782AA14BAFFAB4B1B9CC87C4B2F7A] - 02/02/2013 - 15:22:06 --HA- . (...) -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [16480]
O44 - LFC:[MD5.A95782AA14BAFFAB4B1B9CC87C4B2F7A] - 02/02/2013 - 15:22:06 --HA- . (...) -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [16480]
O44 - LFC:[MD5.680CE43141FB1F432CD375063450E0C0] - 01/02/2013 - 21:54:14 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\Windows\System32\FlashPlayerApp.exe [697864]
O44 - LFC:[MD5.72AC0DB22D016619E0AD3F9C411B9738] - 01/02/2013 - 21:54:14 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [74248]
O44 - LFC:[MD5.1661DEA190B03481F08A55D7ECC5B578] - 31/01/2013 - 21:31:31 ---A- . (...) -- C:\Windows\MEMORY.DMP [201888720]
O44 - LFC:[MD5.3AFB7BAD0967EACE8D3ED16CF2A8FD8A] - 01/02/2013 - 13:12:49 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1524562]
O44 - LFC:[MD5.EED51D56C1041D48C08D31CFC0876496] - 01/02/2013 - 13:12:49 ---A- . (...) -- C:\Windows\System32\perfc009.dat [103568]
O44 - LFC:[MD5.FF7FA933B2ABBB07373BDCD201A1ABA9] - 01/02/2013 - 13:12:49 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [127684]
O44 - LFC:[MD5.EE946017F68304658A20B6732CE5F8B8] - 01/02/2013 - 13:12:49 ---A- . (...) -- C:\Windows\System32\perfh009.dat [607190]
O44 - LFC:[MD5.E4468BFBF99A521D733AA7B7BB2359F4] - 01/02/2013 - 13:12:49 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [695004]
O44 - LFC:[MD5.07BA000B2E67565BDF112C35171865A5] - 31/01/2013 - 03:26:53 ---A- . (...) -- C:\Windows\System32\perfd00C.dat [38160]
O44 - LFC:[MD5.04F6C9757DB75FF27C427E5B31DDB289] - 31/01/2013 - 03:26:53 ---A- . (...) -- C:\Windows\System32\perfi00C.dat [344522]
O44 - LFC:[MD5.6FBB766EB79F9EED3684194EEAF838DF] - 31/01/2013 - 03:19:06 ---A- . (...) -- C:\Windows\ChangeLang_Done.tag [11453]
O44 - LFC:[MD5.7EDE42530E8D00A69CAD2BC757D6A1D1] - 30/01/2013 - 21:35:39 ---A- . (...) -- C:\Windows\DirectX.log [29586]
O44 - LFC:[MD5.AD0749DE919D8E834FA99719CBA82D5B] - 30/01/2013 - 21:23:31 ----- . (...) -- C:\bootsqm.dat [3480]
O44 - LFC:[MD5.2087D5BDCFBED52E55CD6072356E8824] - 30/01/2013 - 19:39:19 ---A- . (...) -- C:\Windows\Patch.log [19267]
O44 - LFC:[MD5.46C61F995D7A38A7E26D339233914214] - 30/01/2013 - 19:27:51 ---A- . (...) -- C:\Windows\System32\license.rtf [190563]
O44 - LFC:[MD5.6D8DA2930D7AB1C75C233792D5E712E6] - 30/01/2013 - 19:25:19 ---A- . (...) -- C:\Windows\DtcInstall.log [4059]
O44 - LFC:[MD5.B88D2B6867AE03882DE5C0AEC5B34442] - 30/01/2013 - 19:04:21 ---A- . (...) -- C:\Windows\System32\results.xml [15056]
O44 - LFC:[MD5.0098E1536DB7F4C691623C08D28D80A8] - 30/01/2013 - 19:02:11 ---A- . (...) -- C:\Windows\Driver_install.log [434]
O44 - LFC:[MD5.C9135DA1C45AD58808A11B9F0749D6A5] - 30/01/2013 - 18:56:25 ---A- . (.Waves Audio Ltd. - General Library for Plug-Ins.) -- C:\Windows\System32\WavesGUILib.dll [1725784]
O44 - LFC:[MD5.CE1E84AA03EE50362D3C69382DCFA294] - 30/01/2013 - 18:56:25 ---A- . (.Waves Audio Ltd. - General Library for Plug-Ins.) -- C:\Windows\System32\WavesLib.dll [1783056]
O44 - LFC:[MD5.272BF8E5DBDAF0614CC367A25EA3B256] - 30/01/2013 - 18:56:24 ---A- . (.SRS Labs, Inc. - COM object implementing SRS Headphone 360.) -- C:\Windows\System32\SRSHP360.dll [173296]
O44 - LFC:[MD5.029F36DE21AFBDD2865CC657E252EBA7] - 30/01/2013 - 18:56:24 ---A- . (.SRS Labs, Inc. - TruSurround HD and HD4 COM object for Windo.) -- C:\Windows\System32\SRSTSHD.dll [185584]
O44 - LFC:[MD5.8C83CED38F8CAC3E8D5A953C03BCF4B4] - 30/01/2013 - 18:56:24 ---A- . (.SRS Labs, Inc. - TruSurroundXT Module.) -- C:\Windows\System32\SRSTSXT.dll [345328]
O44 - LFC:[MD5.A258F7B2B84E88118369B0B2196CC257] - 30/01/2013 - 18:56:24 ---A- . (.SRS Labs, Inc. - WOW HD COM object for Windows.) -- C:\Windows\System32\SRSWOW.dll [140528]
O44 - LFC:[MD5.732C6ACAC96D60DF38F5B54989E53EBB] - 30/01/2013 - 18:56:24 ---A- . (.Sony Corporation - Sony SFSS APO(32bit).) -- C:\Windows\System32\SFSS_APO.dll [192104]
O44 - LFC:[MD5.D9397A5E3929F61FFA83F07285C414C5] - 30/01/2013 - 18:56:24 ---A- . (.Synopsys, Inc. - SFAPO.DLL.) -- C:\Windows\System32\SFAPO.dll [68960]
O44 - LFC:[MD5.736B9CBB1AF8324171CFA3787A024588] - 30/01/2013 - 18:56:24 ---A- . (.Synopsys, Inc. - SFCOM.DLL.) -- C:\Windows\System32\SFCOM.dll [74080]
O44 - LFC:[MD5.4D7D49A61594B8A643EA8EAF74F2150C] - 30/01/2013 - 18:56:24 ---A- . (.Synopsys, Inc. - SFNHK.DLL.) -- C:\Windows\System32\SFNHK.dll [214368]
O44 - LFC:[MD5.8F3710245B1B923D6C0A2C15BB49C84A] - 30/01/2013 - 18:56:24 ---A- . (.TOSHIBA CORPORATION. - Tepeq APO.) -- C:\Windows\System32\TepeqAPO.dll [58264]
O44 - LFC:[MD5.47AC41518B5DCD65FCED33A129CDB1C1] - 30/01/2013 - 18:56:24 ---A- . (.TOSHIBA Corporation - TOSHIBA Audio Enhancement APO.) -- C:\Windows\System32\tadefxapo.dll [134584]
O44 - LFC:[MD5.A3637A3C6B21D10525EFC9630E4A1F9E] - 30/01/2013 - 18:56:24 ---A- . (.TOSHIBA Corporation - TOSHIBA Audio Enhancement APO.) -- C:\Windows\System32\tadefxapo2.dll [817600]
O44 - LFC:[MD5.38136C24E80EA6C7C0A227A2AD433FA7] - 30/01/2013 - 18:56:24 ---A- . (.TOSHIBA Corporation - TOSHIBA Audio Enhancement.) -- C:\Windows\System32\tosade.dll [1379760]
O44 - LFC:[MD5.FDD0B0C903B34CD57A36327C0E7C879C] - 30/01/2013 - 18:56:23 ---A- . (.Realtek Semiconductor Corp. - Realtek APO API.) -- C:\Windows\System32\RtkApoApi.dll [617064]
O44 - LFC:[MD5.0CF1A36569C7D095F83FCFB79F813CEA] - 30/01/2013 - 18:56:23 ---A- . (.Realtek Semiconductor Corp. - Realtek HD Audio Coinstaller.) -- C:\Windows\System32\RtkCoInstII.dll [83560]
O44 - LFC:[MD5.4B540CD34B883C174008F33F249D6773] - 30/01/2013 - 18:56:23 ---A- . (.Realtek Semiconductor Corp. - Realtek HD Audio Coinstaller.) -- C:\Windows\System32\RtkCoLDR.dll [13416]
O44 - LFC:[MD5.A32BFF5625B0BD00553917828AB24CF9] - 30/01/2013 - 18:56:23 ---A- . (.Realtek Semiconductor Corp. - Realtek HD Audio Control Panel.) -- C:\Windows\System32\RTSndMgr.cpl [1497704]
O44 - LFC:[MD5.A3DCFBFF3929313CE16C3ECE822267D4] - 30/01/2013 - 18:56:23 ---A- . (.Realtek Semiconductor Corp. - Realtek LFX/GFX DSP UI component for Window.) -- C:\Windows\System32\RtkPgExt.dll [2378856]
O44 - LFC:[MD5.303129C4432D58DE0A56CF6F25512956] - 30/01/2013 - 18:56:23 ---A- . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\Drivers\RTKVHDA.sys [3932584]
O44 - LFC:[MD5.542393A7C1672C6F49F3520A6E4FF00A] - 30/01/2013 - 18:56:23 ---A- . (.Realtek Semiconductor Corp. - Realtek(r) LFX/GFX DSP component.) -- C:\Windows\System32\RtkAPO.dll [3321960]
O44 - LFC:[MD5.C45E7C12A5C6CA76AD577A1D8E982283] - 30/01/2013 - 18:56:19 ---A- . (.Dolby Laboratories - Dolby PCEE4 ASL Analog x86.) -- C:\Windows\System32\R4EEA32A.dll [88408]
O44 - LFC:[MD5.AD49F27A24E90E1549FA7089F8D4B0E7] - 30/01/2013 - 18:56:19 ---A- . (.Dolby Laboratories - Dolby PCEE4 COM DLL x86.) -- C:\Windows\System32\R4EED32A.dll [345944]
O44 - LFC:[MD5.DA070B7D24C1C437487B7EA5977B4C83] - 30/01/2013 - 18:56:19 ---A- . (.Dolby Laboratories - Dolby PCEE4 Control Panel x86.) -- C:\Windows\System32\R4EEP32A.dll [3296600]
O44 - LFC:[MD5.01B187108DDCB9A977D9142684FF7551] - 30/01/2013 - 18:56:19 ---A- . (.Dolby Laboratories - Dolby PCEE4 GFX APO x86.) -- C:\Windows\System32\R4EEG32A.dll [61272]
O44 - LFC:[MD5.E16A9D9FEF615233F7B5C5274556C05B] - 30/01/2013 - 18:56:19 ---A- . (.Dolby Laboratories - Dolby PCEE4 LFX APO x86.) -- C:\Windows\System32\R4EEL32A.dll [103256]
O44 - LFC:[MD5.E232507C219A1957880D4EB6D022FAC7] - 30/01/2013 - 18:56:19 ---A- . (.Dolby Laboratories, Inc. - Dolby PCEE3 COM DLL x86.) -- C:\Windows\System32\RTEED32A.dll [170840]
O44 - LFC:[MD5.A6686775084244141483AEA0391508D2] - 30/01/2013 - 18:56:19 ---A- . (.Dolby Laboratories, Inc. - Dolby PCEE3 Control Panel x86.) -- C:\Windows\System32\RTEEP32A.dll [359768]
O44 - LFC:[MD5.3DE99987154319C901A6537BA8777CB9] - 30/01/2013 - 18:56:19 ---A- . (.Dolby Laboratories, Inc. - Dolby PCEE3 GFX APO x86.) -- C:\Windows\System32\RTEEG32A.dll [64856]
O44 - LFC:[MD5.5B18398DEDE4A4A78651CD34F0A217A5] - 30/01/2013 - 18:56:19 ---A- . (.Dolby Laboratories, Inc. - Dolby PCEE3 LFX APO x86.) -- C:\Windows\System32\RTEEL32A.dll [78680]
O44 - LFC:[MD5.C619CDFA5CDC5A346C89870010A2391C] - 30/01/2013 - 18:56:19 ---A- . (.Dolby Laboratories, Inc. - PCEE3 DAA Control Panel x86.) -- C:\Windows\System32\RP3DAA32.dll [295768]
O44 - LFC:[MD5.4F92047498EFEA076E3745C291481975] - 30/01/2013 - 18:56:19 ---A- . (.Dolby Laboratories, Inc. - PCEE3 DHT Control Panel x86.) -- C:\Windows\System32\RP3DHT32.dll [295768]
O44 - LFC:[MD5.266420D6F41A88A251CFF883E7063BAC] - 30/01/2013 - 18:56:19 ---A- . (.Realtek Semiconductor Corp. - Realtek HD Audio Coinstaller Resource.) -- C:\Windows\System32\RCoRes.dat [2765312]
O44 - LFC:[MD5.6C75723CB2309D23A3A16EF9F45B2F49] - 30/01/2013 - 18:56:19 ---A- . (.Waves Audio Ltd. - MaxxVolumeSD APO.) -- C:\Windows\System32\MaxxVolumeSDAPO.dll [252760]
O44 - LFC:[MD5.4C8DBAECEFE8238FCD06D704F3F12300] - 30/01/2013 - 18:56:19 ---A- . (.Waves Audio Ltd. - Pas de description.) -- C:\Windows\System32\MaxxAudioEQ.dll [1836376]
O44 - LFC:[MD5.6BEA5DF1D50E2B2B9621D90FC063559C] - 30/01/2013 - 18:56:19 ---A- . (.Waves Audio Ltd. - Pas de description.) -- C:\Windows\System32\MaxxAudioRealtek.dll [5522776]
O44 - LFC:[MD5.534D8DC4D6068EB27E3B6E2B69250D92] - 30/01/2013 - 18:56:19 ---A- . (.Waves Audio Ltd. - Waves Realtek App.) -- C:\Windows\System32\MaxxAudioRealtek2.dll [1099096]
O44 - LFC:[MD5.56056DF5DC4CFCCA657E57E8FF3714B0] - 30/01/2013 - 18:56:18 ---A- . (.Knowles Acoustics - Knowles HD Audio APO.) -- C:\Windows\System32\KAAPORT.dll [357712]
O44 - LFC:[MD5.E5F92DD9448FA937E331C4576F048DBD] - 30/01/2013 - 18:56:18 ---A- . (.Waves Audio Ltd. - MaxxAudio APO Shell.) -- C:\Windows\System32\MaxxAudioAPOShell.dll [685400]
O44 - LFC:[MD5.84AB243EBB8839C268BA45975BD6558C] - 30/01/2013 - 18:56:18 ---A- . (.Waves Audio Ltd. - MaxxAudio APO.) -- C:\Windows\System32\MaxxAudioAPO.dll [132368]
O44 - LFC:[MD5.57C588F098C811E9459AC7034349AF6F] - 30/01/2013 - 18:56:18 ---A- . (.Waves Audio Ltd. - MaxxAudio APO.) -- C:\Windows\System32\MaxxAudioAPO20.dll [232792]
O44 - LFC:[MD5.EE03F5DEF3A7EFC3B798122DEBDD1017] - 30/01/2013 - 18:56:18 ---A- . (.Waves Audio Ltd. - MaxxAudio APO.) -- C:\Windows\System32\MaxxAudioAPO30.dll [259928]
O44 - LFC:[MD5.6353994C972CB58EB01854C6FDFAC80D] - 30/01/2013 - 18:56:15 ---A- . (.Andrea Electronics Corporation - Render Noise Filters (32-bit).) -- C:\Windows\System32\AERTARen.dll [96160]
O44 - LFC:[MD5.4A635AE3CC50F6BF1317957D1FEE975A] - 30/01/2013 - 18:56:15 ---A- . (.DTS - DTS Bass Enhancement COM DLL.) -- C:\Windows\System32\DTSBassEnhancementDLL.dll [654952]
O44 - LFC:[MD5.B447DFE249DAD3577A9CCCC6960A57D2] - 30/01/2013 - 18:56:15 ---A- . (.DTS - DTS Boost COM DLL.) -- C:\Windows\System32\DTSBoostDLL.dll [1220200]
O44 - LFC:[MD5.C77A4CA13CF78E242C5844D045EDFDA0] - 30/01/2013 - 18:56:15 ---A- . (.DTS - DTS GFX APO.) -- C:\Windows\System32\DTSGFXAPO.dll [218728]
O44 - LFC:[MD5.3B7950071A28E861C877BA77742D9577] - 30/01/2013 - 18:56:15 ---A- . (.DTS - DTS GFX APO.) -- C:\Windows\System32\DTSGFXAPONS.dll [218728]
O44 - LFC:[MD5.3781415D2B09DB870C0B9DFEB29A88D9] - 30/01/2013 - 18:56:15 ---A- . (.DTS - DTS GFX APO.) -- C:\Windows\System32\DTSU2PGFX32.dll [390656]
O44 - LFC:[MD5.5A65D120056B4B814E703E100FDE14C6] - 30/01/2013 - 18:56:15 ---A- . (.DTS - DTS Gain Compensator COM DLL.) -- C:\Windows\System32\DTSGainCompensatorDLL.dll [389736]
O44 - LFC:[MD5.5328523AC3FE93F61054823D90DA73A5] - 30/01/2013 - 18:56:15 ---A- . (.DTS - DTS LFX APO.) -- C:\Windows\System32\DTSLFXAPO.dll [218216]
O44 - LFC:[MD5.040BE746CB773CBBDE5A5EF313C1C5EA] - 30/01/2013 - 18:56:15 ---A- . (.DTS - DTS LFX APO.) -- C:\Windows\System32\DTSU2PLFX32.dll [413696]
O44 - LFC:[MD5.2014F956A83FD7CB04CBDDC6BB82D706] - 30/01/2013 - 18:56:15 ---A- . (.DTS - DTS LFX APO.) -- C:\Windows\System32\DTSU2PREC32.dll [327168]
O44 - LFC:[MD5.255A4B9B8008773D0B143E22A21AB4FA] - 30/01/2013 - 18:56:15 ---A- . (.DTS - DTS Limiter COM DLL.) -- C:\Windows\System32\DTSLimiterDLL.dll [375400]
O44 - LFC:[MD5.4CB970E9423433CC834BF54588E0AA5A] - 30/01/2013 - 18:56:15 ---A- . (.DTS - DTS NEO:PC COM DLL.) -- C:\Windows\System32\DTSNeoPCDLL.dll [458344]
O44 - LFC:[MD5.5ADA836A4F9E4C0CF9CC1BFDBAA9D37F] - 30/01/2013 - 18:56:15 ---A- . (.DTS - DTS Surround Sensation Headphone COM DLL.) -- C:\Windows\System32\DTSS2HeadphoneDLL.dll [1292904]
O44 - LFC:[MD5.C1D3FC8F45C3AA7F0F03DA2A0D384524] - 30/01/2013 - 18:56:15 ---A- . (.DTS - DTS Surround Sensation Speaker COM DLL.) -- C:\Windows\System32\DTSS2SpeakerDLL.dll [1509480]
O44 - LFC:[MD5.426246A4B6A7D1A1D12AAB6BB2E483C5] - 30/01/2013 - 18:56:15 ---A- . (.DTS - DTS Symmetry COM DLL.) -- C:\Windows\System32\DTSSymmetryDLL.dll [631400]
O44 - LFC:[MD5.BAF09FCD09873CF0A3ADF4752F6B144B] - 30/01/2013 - 18:56:15 ---A- . (.DTS - DTS Voice Clarity COM DLL.) -- C:\Windows\System32\DTSVoiceClarityDLL.dll [601704]
O44 - LFC:[MD5.C4CF3E9D0B4225B1ED2C9E605BBFD432] - 30/01/2013 - 18:56:15 ---A- . (.Fortemedia Corporation - Fortemedia SAMSoft sAPO.) -- C:\Windows\System32\FMAPO.dll [2189888]
O44 - LFC:[MD5.2CCEAF03E8AF4543171D236DF21DC29A] - 30/01/2013 - 18:56:14 ---A- . (.Andrea Electronics Corporation - Capture Noise Filters (32-bit).) -- C:\Windows\System32\AERTACap.dll [175200]
O44 - LFC:[MD5.2FA617D1B062B8D9F08036E90003B3E2] - 30/01/2013 - 18:56:13 ---A- . (.Realtek Semiconductor Corp. - RtlExUpd DLL for setup utility function.) -- C:\Windows\RtlExUpd.dll [1698408]
O44 - LFC:[MD5.7FD1956E221C3750E0532A48E8EDD305] - 30/01/2013 - 18:53:23 ---A- . (.Pas de propri�taire - About Page.) -- C:\Windows\System32\RtNicProp32.dll [80416]
O44 - LFC:[MD5.6A2586DCB5B04A52404699EB325DF1DB] - 30/01/2013 - 18:53:23 ---A- . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.20 32-bit Dr.) -- C:\Windows\System32\Drivers\Rt86win7.sys [490088]
O44 - LFC:[MD5.65A5BD4A43ED3C029A514E7502CD804F] - 30/01/2013 - 18:53:23 ---A- . (.Realtek Semiconductor Corporation - RTNUninst.) -- C:\Windows\System32\RTNUninst32.dll [100896]
O44 - LFC:[MD5.FE842C465E0412D51915FD9414571A10] - 30/01/2013 - 18:53:04 ---A- . (...) -- C:\Windows\DPINST.LOG [4762]
O44 - LFC:[MD5.EF3024328398C07DE0BDF35B67ABEC68] - 30/01/2013 - 18:50:10 ---A- . (...) -- C:\Windows\LMv4.UNI [172]
O44 - LFC:[MD5.E39DCDE0722F11BA367F75576D5545E0] - 30/01/2013 - 18:49:07 ---A- . (.Realtek Semiconductor Corp. - Realtek Card Reader Icon Dll.) -- C:\Windows\System32\RtsPStorIcon.dll [9888360]
O44 - LFC:[MD5.683B328B077D21F06E18C426DBAC0616] - 30/01/2013 - 18:49:07 ---A- . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\Windows\System32\Drivers\RtsPStor.sys [254056]
O44 - LFC:[MD5.1D91C1A56B1FD224868E81C994A2463F] - 30/01/2013 - 18:39:06 ---A- . (...) -- C:\Windows\System32\FNTCACHE.DAT [257848]
O44 - LFC:[MD5.AC7860C1DEB853D6AE7B25D490CCED06] - 30/01/2013 - 18:37:49 ---A- . (...) -- C:\Windows\mSataSettings.log [25]
O44 - LFC:[MD5.9E8B0405F4DC32D58279A714FB1E6B3C] - 30/01/2013 - 18:37:09 ---A- . (...) -- C:\Windows\TSSysprep.log [3652]
O44 - LFC:[MD5.1C89E483758777425866218A65FE5890] - 10/01/2012 - 14:03:40 ---A- . (...) -- C:\Windows\System32\Drivers\RTAIODAT.DAT [216472]
O44 - LFC:[MD5.7FB4981A4B217EEB5D9C4DE291125485] - 09/01/2012 - 07:48:36 ---A- . (...) -- C:\Windows\System32\Drivers\RtPCEE4.DAT [107248]
O44 - LFC:[MD5.99E26EFF2A113E052CB973E989835DC3] - 26/09/2011 - 15:41:10 ---A- . (...) -- C:\Windows\System32\Drivers\rtkhdaud.dat [24]
O44 - LFC:[MD5.E67AAB6205BD45C9A9644CDAC9CE9664] - 23/09/2010 - 10:21:40 ---A- . (...) -- C:\Windows\System32\Drivers\RtPCEE3.DAT [39672]
O44 - LFC:[MD5.DAE054749540938A0889AA40E0D5594A] - 22/03/2010 - 06:21:38 ---A- . (...) -- C:\Windows\System32\Drivers\RtHdatEx.dat [1448]
O44 - LFC:[MD5.4E84A165644886CC5333335C289B33D0] - 22/03/2010 - 06:21:36 ---A- . (...) -- C:\Windows\System32\Drivers\RTConvEQ.dat [247560]
O44 - LFC:[MD5.C104D162A7AC593908FCE05456300619] - 11/02/2010 - 08:45:00 ---A- . (...) -- C:\Windows\System32\Drivers\RTHDAEQ1.dat [176]
O44 - LFC:[MD5.530A9FEB236FF8DD1BC941A7F08E6561] - 26/01/2010 - 14:52:20 ---A- . (...) -- C:\Windows\System32\Drivers\RTEQEX3.dat [520]
O44 - LFC:[MD5.2EAE98B466CFE4C9362D004ED469422A] - 10/07/2009 - 02:32:32 ---A- . (...) -- C:\Windows\InfoCtrPackard Bell.ico [411494]
O44 - LFC:[MD5.57B8D47F171677E88563A42924D64D3D] - 21/08/2008 - 06:43:36 ---A- . (...) -- C:\Windows\System32\Drivers\RTEQEX2.dat [520]
O44 - LFC:[MD5.EBCA7473A23120CAE4066BEB3835D48F] - 26/06/2005 - 22:29:50 ---A- . (...) -- C:\Windows\System32\Drivers\RTEQEX0.dat [520]
O44 - LFC:[MD5.FCA6883B690E3722B6A60ADA972A831A] - 26/06/2005 - 22:29:28 ---A- . (...) -- C:\Windows\System32\Drivers\RTEQEX1.dat [520]
~ Scan Files in 00mn 21s



---\\ D�ni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package�v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l��diteur de configuration de s�curit� Windows.) -- C:\Windows\System32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de s�curit� Kerberos.) -- C:\Windows\System32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package�v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll
~ Scan Keys in 00mn 00s



---\\ Contr�le du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris s�rie.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d�extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris s�rie.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d�extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
~ Scan CSB in 00mn 00s



---\\ MountPoints2 Shell Key (O51) (None)

---\\ Trojan Driver Search Data (HKLM) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Codec Cinepak�.) -- C:\Windows\System32\iccvid.dll
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
~ Scan Keys in 00mn 00s



---\\ ShareTools MSconfig StartupReg (O53) (None)

---\\ Microsoft Control Security Providers (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
~ Scan Keys in 00mn 00s



---\\ Microsoft Windows Policies System (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
~ Scan Keys in 00mn 00s



---\\ Liste des Drivers Syst�me (O58)
O58 - SDL:[MD5.21E785EBD7DC90A06391141AAC7892FB] - 14/07/2009 - 02:26:15 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [422976]
O58 - SDL:[MD5.8AAD333C876590293F72B315E162BCC7] - 13/07/2009 - 22:40:41 ---A- . (...) -- C:\Windows\System32\ANSI.SYS [9029]
~ Scan Drivers in 00mn 00s



---\\ Liste des outils de nettoyage (O63)
O63 - Logiciel: ZHPDiag 1.34 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
~ Scan ADS in 00mn 00s



---\\ Liste des services Legacy (O64)
O64 - Services: CurCS - 14/07/2011 - C:\Windows\system32\drivers\afd.sys (AFD) .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD
O64 - Services: CurCS - 16/01/2013 - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\BASHDefs\20130116.013\BHDrvx86.sys (BHDrvx86) .(.Symantec Corporation - BASH Driver.) - LEGACY_BHDRVX86
O64 - Services: CurCS - 07/06/2012 - C:\Windows\system32\drivers\NIS\1309000.009\ccSetx86.sys (ccSet_NIS) .(.Symantec Corporation - Common Client Settings Driver.) - LEGACY_CCSET_NIS
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\clfs.sys (CLFS) .(.Microsoft Corporation - Common Log File System Driver.) - LEGACY_CLFS
O64 - Services: CurCS - 17/11/2011 - C:\Windows\System32\Drivers\cng.sys (CNG) .(.Microsoft Corporation - Kernel Cryptography, Next Generation.) - LEGACY_CNG
O64 - Services: CurCS - 30/01/2013 - C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys (eeCtrl) .(.Symantec Corporation - Symantec Eraser Control Driver.) - LEGACY_EECTRL
O64 - Services: CurCS - 30/01/2013 - C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys (EraserUtilRebootDrv) .(.Symantec Corporation - Symantec Eraser Utility Driver.) - LEGACY_ERASERUTILREBOOTDRV
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\fvevol.sys (fvevol) .(.Microsoft Corporation - BitLocker Drive Encryption Driver.) - LEGACY_FVEVOL
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\hwpolicy.sys (hwpolicy) .(.Microsoft Corporation - Hardware Policy Driver.) - LEGACY_HWPOLICY
O64 - Services: CurCS - 30/01/2013 - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\IPSDefs\20130201.001\IDSvix86.sys (IDSVix86) .(.Symantec Corporation - IDS Core Driver.) - LEGACY_IDSVIX86
O64 - Services: CurCS - 26/02/2012 - C:\Windows\System32\DRIVERS\igddim32.sys (igddim32) .(.Intel Corporation - Intel (R) WDDM Kernel Mode Driver.) - LEGACY_IGDDIM32
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\lltdio.sys (lltdio) .(.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) - LEGACY_LLTDIO
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\luafv.sys (luafv) .(.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) - LEGACY_LUAFV
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\wkssvc.dll (mrxsmb20) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB20
O64 - Services: CurCS - 30/01/2013 - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\VirusDefs\20130201.033\NAVENG.sys (NAVENG) .(.Symantec Corporation - AV Engine.) - LEGACY_NAVENG
O64 - Services: CurCS - 30/01/2013 - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\VirusDefs\20130201.033\NAVEX15.sys (NAVEX15) .(.Symantec Corporation - AV Engine.) - LEGACY_NAVEX15
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\ndis.sys (NDIS) .(.Microsoft Corporation - Pilote NDIS 6.20.) - LEGACY_NDIS
O64 - Services: CurCS - 20/11/2010 - C:\Windows\system32\drivers\netbt.sys (NetBT) .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\pacer.sys (Psched) .(.Microsoft Corporation - Planificateur de paquets QoS.) - LEGACY_PSCHED
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\rspndr.sys (rspndr) .(.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) - LEGACY_RSPNDR
O64 - Services: CurCS - ??\??\???? - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV
O64 - Services: CurCS - 06/07/2012 - C:\Windows\system32\Drivers\NIS\1309000.009\SRTSP.sys (SRTSP) .(.Symantec Corporation - Symantec AutoProtect.) - LEGACY_SRTSP
O64 - Services: CurCS - 06/07/2012 - C:\Windows\system32\drivers\NIS\1309000.009\SRTSPX.sys (SRTSPX) .(.Symantec Corporation - Symantec AutoProtect.) - LEGACY_SRTSPX
O64 - Services: CurCS - 14/07/2011 - C:\Windows\System32\DRIVERS\srvnet.sys (srvnet) .(.Microsoft Corporation - Server Network driver.) - LEGACY_SRVNET
O64 - Services: CurCS - 15/08/2011 - C:\Windows\System32\drivers\NIS\1309000.009\SYMDS.sys (SymDS) .(.Symantec Corporation - Symantec Data Store.) - LEGACY_SYMDS
O64 - Services: CurCS - 22/05/2012 - C:\Windows\System32\drivers\NIS\1309000.009\SYMEFA.sys (SymEFA) .(.Symantec Corporation - Symantec Extended File Attributes.) - LEGACY_SYMEFA
O64 - Services: CurCS - 13/04/2012 - C:\Windows\system32\Drivers\SYMEVENT.sys (SymEvent) .(.Symantec Corporation - Symantec Event Library.) - LEGACY_SYMEVENT
O64 - Services: CurCS - 18/04/2012 - C:\Windows\system32\drivers\NIS\1309000.009\Ironx86.sys (SymIRON) .(.Symantec Corporation - Iron Driver.) - LEGACY_SYMIRON
O64 - Services: CurCS - 18/04/2012 - C:\Windows\system32\Drivers\NIS\1309000.009\SYMNETS.sys (SymNetS) .(.Symantec Corporation - Network Security Driver.) - LEGACY_SYMNETS
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\vga.sys (VgaSave) .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE
O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\drivers\volsnap.sys (volsnap) .(.Microsoft Corporation - Pilote de clich� instantan� du volume.) - LEGACY_VOLSNAP
O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\rascfg.dll (Wanarpv6) .(.Microsoft Corporation - Objets de configuration RAS.) - LEGACY_WANARPV6
~ Scan Services in 00mn 00s



---\\ File Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d��v�nements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft � Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - �diteur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O67 - Shell Spawning: <.bat> [HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> [HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKCR\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d��v�nements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> [HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKCR\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O67 - Shell Spawning: <.js> [HKCR\..\open\Command] (.Microsoft Corporation - Microsoft � Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> [HKCR\..\open\Command] (.Microsoft Corporation - �diteur du Registre.) -- C:\Windows\regedit.exe
~ Scan Keys in 00mn 00s



---\\ Start Menu Internet (O68)
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Windows\System32\ie4uinit.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Windows\System32\ie4uinit.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Windows\System32\ie4uinit.exe (.not file.)
~ Scan Keys in 00mn 00s



---\\ Search Browser Infection (O69)
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("avg.install.userHPSettings", "http://search.babylon.com/?affID=113357&tt=300113_tbnew&babsrc=HP_ss&mntrId=38c65a7100000[...]
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("avg.install.userSPSettings", "Search the web (Babylon)");
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("browser.newtab.url", "http://search.babylon.com/?affID=113357&tt=300113_tbnew&babsrc=NT_ss&mntrId=38c65a710000000000000[...]
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("browser.search.selectedEngine", "Search the web (Babylon)");
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("browser.startup.homepage", "http://search.babylon.com/?affID=113357&tt=300113_tbnew&babsrc=HP_ss&mntrId=38c65a710000000[...]
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.admin", false);
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.aflt", "babsst");
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.appId", "{BDB69379-802F-4eaf-B541-F8DE92DD98DB}");
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.autoRvrt", "false");
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.bbDpng", "31");
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.cntry", "FR");
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.dfltLng", "en");
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.dpkLst", "");
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.excTlbr", false);
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.ffxUnstlRst", false);
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.hdrMd5", "21950901308B6F9B33BCC931E59E5F44");
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.id", "38c65a71000000000000047d7bbd0bc0");
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.instlDay", "15735");
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.instlRef", "sst");
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.lastVrsnTs", "1.8.11.220:26:26");
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.newTab", false);
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.pnu_tb9", "{\"newVrsn\":\"6\",\"lastVrsn\":\"6\",\"vrsnLoad\":\"\",\"showMsg\":\"false\",\"sh[...]
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar");
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.prtnrId", "babylon");
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.rvrt", "false");
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.sg", "azb");
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.smplGrp", "none");
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.tlbrId", "tb9");
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.tlbrSrchUrl", "http://search.babylon.com/?babsrc=TB_def&mntrId=38c65a71000000000000047d7bbd0b[...]
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.vrsn", "1.8.11.2");
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.vrsnTs", "1.8.11.220:26:26");
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar.vrsni", "1.8.11.2");
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar_i.babExt", "");
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar_i.babTrack", "affID=113357&tt=300113_tbnew");
O69 - SBI: prefs.js [mylene - j3m8pwj1.default] user_pref("extensions.BabylonToolbar_i.srcExt", "ss");
O69 - SBI: SearchScopes [HKCU] {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} - (Search the web (Babylon)) - http://search.babylon.com
~ Scan Keys in 00mn 00s



---\\ Recherche des services d�marr�s par Svchost (O83)
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Exp�rience d�application.) -- C:\Windows\System32\aelupsvc.dll [62464]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes � puce Microsoft.) -- C:\Windows\System32\certprop.dll [67584]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes � puce Microsoft.) -- C:\Windows\System32\certprop.dll [67584]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168960]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de strat�gie de groupe.) -- C:\Windows\System32\gpsvc.dll [593408]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [674304]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [473600]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de num�rotation automatique d�acc�s distant.) -- C:\Windows\System32\rasauto.dll [90624]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d�acc�s distant.) -- C:\Windows\System32\rasmans.dll [286208]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d�interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d��v�nements syst�me (SENS).) -- C:\Windows\System32\sens.dll [49664]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l�application d�assistance � Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [300544]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de t�l�phonie Microsoft� Windows(TM).) -- C:\Windows\System32\tapisrv.dll [242176]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur h�te de session Burea.) -- C:\Windows\System32\termsrv.dll [521216]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise � jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [1933848]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arri�re-plan.) -- C:\Windows\System32\qmgr.dll [585728]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivit� IPv6 sur un r�seau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [499712]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d�ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [21504]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d�application.) -- C:\Windows\System32\appinfo.dll [47104]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de d�couverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multim�dias.) -- C:\Windows\System32\mmcss.dll [49664]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux probl�mes.) -- C:\Windows\System32\wercplsupport.dll [61440]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164352]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de t�ches.) -- C:\Windows\System32\schedsvc.dll [750592]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des cl�s.) -- C:\Windows\System32\kmsvc.dll [71168]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau � distance.) -- C:\Windows\System32\sessenv.dll [113664]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d�ordinateurs.) -- C:\Windows\System32\browser.dll [102400]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des th�mes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800]
~ Scan Services in 00mn 00s



---\\ Recherche particuliere � la racine de certains dossiers (O84)
[MD5.07356626437A164BB31285D2303DFEFB] [SPRF][30/01/2013] (.Skype Technologies S.A. - Skype.) -- C:\Users\mylene\AppData\Local\Temp\SkypeSetup.exe [20903528]
~ Scan Files in 00mn 03s



---\\ Firewall Active Exception List (FirewallRules) (O87)
O87 - FAEL: "{1F977B11-D3BD-4C6D-B8C6-BBE9FBAA2572}" | In - None - P17 - TRUE | .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe
~ Scan Firewall in 00mn 01s



---\\ Scan Additionnel (O88)
Database Version : v2.10502 - (01/02/2013)
Cl�s trouv�es (Keys found) : 19
Valeurs trouv�es (Values found) : 0
Dossiers trouv�s (Folders found) : 3
Fichiers trouv�s (Files found) : 2

[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ecdf796-c2dc-4d79-a620-cce0c0a66cc9}] =>Toolbar.Babylon
[HKLM\Software\Classes\CLSID\{80922ee0-8a76-46ae-95d5-bd3c3fe0708d}] =>Toolbar.Alot
[HKLM\Software\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}] =>Toolbar.Alot
[HKLM\Software\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}] =>Adware.CDNHelper
[HKLM\Software\Classes\AppID\{BDB69379-802F-4eaf-B541-F8DE92DD98DB}] =>Toolbar.Babylon
[HKLM\Software\Google\Chrome\Extensions\dhkplhfnhceodhffomolpfigojocbpcb] =>Toolbar.Babylon
[HKLM\Software\Google\Chrome\Extensions\pgafcinpmmpklohkojmllohdhomoefph] =>PUP.SpecialSavings
[HKCU\Software\DataMngr] =>Adware.Bandoo
[HKLM\Software\DataMngr] =>Adware.Bandoo
[HKLM\Software\Tarma Installer] =>Toolbar.Agent
[HKLM\Software\Microsoft\Tracing\MyBabylontb_RASAPI32] =>Toolbar.Babylon
[HKLM\Software\Microsoft\Tracing\MyBabylontb_RASMANCS] =>Toolbar.Babylon
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4EFD-BAD7-B9B4CB4BC693}] =>Toolbar.Babylon
[HKLM\Software\Classes\Prod.cap] =>Adware.Bandoo
[HKCU\Software\InstallCore] =>Adware.InstallCore
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings] =>PUP.BProtector
[HKLM\Software\Classes\Installer\Features\6207E55EA2FE71A4AA7ABD89AEF31D1B] =>PUP.DealPly
[HKLM\Software\Classes\Installer\Products\6207E55EA2FE71A4AA7ABD89AEF31D1B] =>PUP.DealPly
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\6207E55EA2FE71A4AA7ABD89AEF31D1B] =>PUP.DealPly
C:\ProgramData\Babylon =>Toolbar.Babylon
C:\Users\mylene\AppData\Roaming\Babylon =>Toolbar.Babylon
C:\Users\mylene\AppData\Roaming\BabSolution =>Hijacker.BabSolution
C:\Users\mylene\AppData\Roaming\Mozilla\Firefox\Profiles\j3m8pwj1.default\bprotector_extensions.sqlite =>PUP.BProtector
C:\Users\mylene\AppData\Roaming\Mozilla\Firefox\Profiles\j3m8pwj1.default\bprotector_prefs.js =>PUP.BProtector
~ Scan Additionnel in 00mn 18s



---\\ Product Upgrade Codes (O90)
O90 - PUC: "00004159070000000000000000F01FEC" . (.Microsoft Office 2010.) -- C:\Windows\Installer\{95140000-0070-0000-0000-0000000FF1CE}\oobeicon.exe
O90 - PUC: "0C69D82C09A6E9540A776A07F6E40CCF" . (.Bing Bar.) -- C:\Windows\Installer\{C28D96C0-6A90-459E-A077-A6706F4EC0FC}\icon_installer_ico
O90 - PUC: "1D034B0FAA6BD374B960AAD30DF10D8B" . (.Microsoft SQL Server 2005 Compact Edition [ENU].) -- C:\Windows\Installer\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}\ProductIcon
O90 - PUC: "279A5E3D51A9D724EA8718185ADF49C3" . (.eBay Worldwide.) -- c:\Windows\Installer\{D3E5A972-9A15-427D-AE78-8181A5FD943C}\_6FEFF9B68218417F98F549.exe
O90 - PUC: "41DC8ECD5FBF46449B4A1EE87453647C" . (.Assistant de connexion Windows Live.) -- C:\Windows\Installer\{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}\prodicon.ico
O90 - PUC: "6207E55EA2FE71A4AA7ABD89AEF31D1B" . (.Babylon Chrome Toolbar.) -- C:\Windows\Installer\{E55E7026-EF2A-4A17-AAA7-DB98EA3FD1B1}\BabylonSetup.ico
O90 - PUC: "646FE77FBE911E11A9E989B41EF571E4" . (.Evernote v. 4.5.2.) -- C:\Windows\Installer\{F77EF646-19EB-11E1-9A9E-984BE15F174E}\Evernote.ico
O90 - PUC: "68AB67CA7DA7FFFFB744AA0000000010" . (.Adobe Reader X (10.1.0) MUI.) -- C:\Windows\Installer\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}\SC_Reader.ico
O90 - PUC: "6FD66A043D225B447A3D381B812A0CCD" . (.Norton Online Backup.) -- C:\Windows\Installer\{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}\MainIcon.ico
O90 - PUC: "907018673D7AD86419761A87C0E167C6" . (.Windows Live FolderShare.) -- C:\Windows\Installer\{76810709-A7D3-468D-9167-A1780C1E766C}\FolderShare48x48.ico
O90 - PUC: "96740EE14C1960A4297BCFFA6EABDB9D" . (.Galerie de photos Windows Live.) -- C:\Windows\Installer\{1EE04769-91C4-4A06-92B7-FCAFE6BABDD9}\WLXPhotoGalleryIcon.exe
O90 - PUC: "D381B5441F4F8C549BBD1F3155AC56B7" . (.Windows Live Messenger.) -- C:\Windows\Installer\{445B183D-F4F1-45C8-B9DB-F11355CA657B}\MsblIco.Exe
O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" . (.Microsoft Silverlight.) -- c:\Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon
O90 - PUC: "DDB6C50237B7ED245850A990F3532A83" . (.Outil de t�l�chargement Windows Live.) -- C:\Windows\Installer\{205C6BDD-7B73-42DE-8505-9A093F35A238}\RichUpload.ico
O90 - PUC: "E309FE46A00DC414494ABF3A86FFDC9C" . (.Social Networks.) -- C:\Windows\Installer\{64EF903E-D00A-414C-94A4-FBA368FFCDC9}\ARPPRODUCTICON.exe
O90 - PUC: "E7FF67E4ABEA78C47B88DC745E24B5D9" . (.Skype� 6.1.) -- C:\Windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe
~ Scan Files in 00mn 00s



---\\ Random Export Key (O91)
[HKCU\Software\58e8ddfb16deb40]:GUID="{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}"
[HKCU\Software\58e8ddfb16deb40]:HPCHREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE"
[HKCU\Software\58e8ddfb16deb40]:HPCHREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig=="
[HKCU\Software\58e8ddfb16deb40]:HPCHREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U="
[HKCU\Software\58e8ddfb16deb40]:HPFFREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE"
[HKCU\Software\58e8ddfb16deb40]:HPFFREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig=="
[HKCU\Software\58e8ddfb16deb40]:HPFFREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U="
[HKCU\Software\58e8ddfb16deb40]:HPIEREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE"
[HKCU\Software\58e8ddfb16deb40]:HPIEREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig=="
[HKCU\Software\58e8ddfb16deb40]:HPIEREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U="
[HKCU\Software\58e8ddfb16deb40]:INSTALL_FOLDER_NAME="BrowserProtect"
[HKCU\Software\58e8ddfb16deb40]:KWFFREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE"
[HKCU\Software\58e8ddfb16deb40]:KWFFREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig=="
[HKCU\Software\58e8ddfb16deb40]:KWFFREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U="
[HKCU\Software\58e8ddfb16deb40]:NTCHREGEXP0="FO81jovjQUF+5S6+haV7vGe3TMfw8oqWAhSaKzFS9OtdgZ1j5X+B4jW/459R"
[HKCU\Software\58e8ddfb16deb40]:NTFFREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE"
[HKCU\Software\58e8ddfb16deb40]:NTFFREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig=="
[HKCU\Software\58e8ddfb16deb40]:NTFFREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U="
[HKCU\Software\58e8ddfb16deb40]:PROTECTOR_DLL_NAME="BrowserProtect.dll"
[HKCU\Software\58e8ddfb16deb40]:PROTECT_EXE_NAME="BrowserProtect.exe"
[HKCU\Software\58e8ddfb16deb40]:SECHREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE"
[HKCU\Software\58e8ddfb16deb40]:SECHREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig=="
[HKCU\Software\58e8ddfb16deb40]:SECHREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U="
[HKCU\Software\58e8ddfb16deb40]:SEFFREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE"
[HKCU\Software\58e8ddfb16deb40]:SEFFREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig=="
[HKCU\Software\58e8ddfb16deb40]:SEFFREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U="
[HKCU\Software\58e8ddfb16deb40]:SEIEREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE"
[HKCU\Software\58e8ddfb16deb40]:SEIEREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig=="
[HKCU\Software\58e8ddfb16deb40]:SEIEREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U="
[HKCU\Software\58e8ddfb16deb40]:SERVICE_NAME="BrowserProtect"
[HKCU\Software\58e8ddfb16deb40]:usrcheckbox="0"
[HKCU\Software\58e8ddfb16deb40]:version="2.6.1095.52"
[HKLM\Software\58e8ddfb16deb40]:GUID="{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}"
[HKLM\Software\58e8ddfb16deb40]:HPCHREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE"
[HKLM\Software\58e8ddfb16deb40]:HPCHREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig=="
[HKLM\Software\58e8ddfb16deb40]:HPCHREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U="
[HKLM\Software\58e8ddfb16deb40]:HPFFREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE"
[HKLM\Software\58e8ddfb16deb40]:HPFFREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig=="
[HKLM\Software\58e8ddfb16deb40]:HPFFREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U="
[HKLM\Software\58e8ddfb16deb40]:HPIEREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE"
[HKLM\Software\58e8ddfb16deb40]:HPIEREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig=="
[HKLM\Software\58e8ddfb16deb40]:HPIEREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U="
[HKLM\Software\58e8ddfb16deb40]:INSTALL_FOLDER_NAME="BrowserProtect"
[HKLM\Software\58e8ddfb16deb40]:KWFFREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE"
[HKLM\Software\58e8ddfb16deb40]:KWFFREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig=="
[HKLM\Software\58e8ddfb16deb40]:KWFFREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U="
[HKLM\Software\58e8ddfb16deb40]:NTCHREGEXP0="FO81jovjQUF+5S6+haV7vGe3TMfw8oqWAhSaKzFS9OtdgZ1j5X+B4jW/459R"
[HKLM\Software\58e8ddfb16deb40]:NTFFREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE"
[HKLM\Software\58e8ddfb16deb40]:NTFFREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig=="
[HKLM\Software\58e8ddfb16deb40]:NTFFREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U="
[HKLM\Software\58e8ddfb16deb40]:PROTECTOR_DLL_NAME="BrowserProtect.dll"
[HKLM\Software\58e8ddfb16deb40]:PROTECT_EXE_NAME="BrowserProtect.exe"
[HKLM\Software\58e8ddfb16deb40]:SECHREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE"
[HKLM\Software\58e8ddfb16deb40]:SECHREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig=="
[HKLM\Software\58e8ddfb16deb40]:SECHREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U="
[HKLM\Software\58e8ddfb16deb40]:SEFFREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE"
[HKLM\Software\58e8ddfb16deb40]:SEFFREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig=="
[HKLM\Software\58e8ddfb16deb40]:SEFFREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U="
[HKLM\Software\58e8ddfb16deb40]:SEIEREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE"
[HKLM\Software\58e8ddfb16deb40]:SEIEREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig=="
[HKLM\Software\58e8ddfb16deb40]:SEIEREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U="
[HKLM\Software\58e8ddfb16deb40]:SERVICE_NAME="BrowserProtect"
[HKLM\Software\58e8ddfb16deb40]:usrcheckbox="0"
[HKLM\Software\58e8ddfb16deb40]:version="2.6.1095.52"
~ Scan Export Key Software in 00mn 00s



---\\ Etat g�n�ral des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SS - | Auto 06/06/2011 64952 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
SS - | Demand 01/02/2013 251400 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
SS - | Demand 07/06/2011 191752 | (BBSvc) . (.Microsoft Corporation..) - C:\Program Files\Microsoft\BingBar\BBSvc.exe
SS - | Auto 12/05/2011 249648 | (BBUpdate) . (.Microsoft Corporation.) - C:\Program Files\Microsoft\BingBar\SeaPort.exe
SS - | Auto 2550224 | (BrowserProtect) . (...) - C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe
SS - | Auto 01/07/2011 353360 | (DsiWMIService) . (.Dritek System Inc..) - C:\Program Files\Launch Manager\dsiwmis.exe
SS - | Auto 07/02/2012 738688 | (ePowerSvc) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe
SS - | Demand 12/10/2010 206072 | (GamesAppService) . (.WildTangent, Inc..) - C:\Program Files\WildTangent Games\App\GamesAppService.exe
SS - | Auto 29/02/2012 28264 | (GREGService) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Registration\GREGsvc.exe
SS - | Auto 06/11/2010 13336 | (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
SS - | Auto 07/03/2011 1755136 | (IconMan_R) . (.Realsil Microelectronics Inc..) - C:\Program Files\Realtek\Realtek PCIE Card Reader\RIconMan.exe
SS - | Auto 07/02/2012 255376 | (Live Updater Service) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
SS - | Demand 16/01/2013 115608 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
SR - | Auto 16/06/2012 138272 | (NIS) . (.Symantec Corporation.) - C:\Program Files\Norton Internet Security\Engine\19.9.0.9\ccSvcHst.exe
SS - | Auto 01/06/2010 2057560 | (NOBU) . (.Symantec Corporation.) - C:\Program Files\Symantec\Norton Online Backup\NOBuAgent.exe
SS - | Auto 08/01/2013 161536 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe
SS - | Demand 14/07/2009 20992 | C:\Program Files\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SS - | Auto 14/07/2009 20992 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
~ Scan Services in 00mn 03s



End of the scan (1135 lines in 01mn 55s)(0)

Publicité


Signaler le contenu de ce document

Publicité