cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Rapport de ZHPDiag v1.3.5.121 par Nicolas Coolman, Update du 23/02/2013
Run by Jeff at 24/02/2013 14:27:01
State : Version � jour.
High Elevated Privileges : OK
UAC : Activate by user


---\\ Web Browser
MSIE: Internet Explorer v8.0.6001.19400
MFIE: Mozilla Firefox 18.0.2 v18.0.2 (Defaut)
GCIE: Google Chrome

---\\ Windows Product Information
~ Langage: Fran�ais
Windows Vista Home Premium Edition, 32-bit Service Pack 2 (Build 6002)
Windows Server License Manager Script : OK
~ Vista, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : MQ3CQ
Windows License : OK
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK

---\\ System Information
~ Processor: x86 Family 6 Model 14 Stepping 12, GenuineIntel
~ Operating System: 32 Bits
Boot mode: Normal (Normal boot)
Total RAM: 1790 MB (47% free)
System Restore: Activ� (Enable)
System drive C: has 33 GB (23%) free of 141 GB

---\\ Logged in mode
~ Computer Name: LOSSANTOS
~ User Name: Jeff
~ All Users Names: Jeff, ASPNET, Administrateur,
~ Unselected Option: O45,O61,O62,O65,O66,O80,O82,O89
Logged in as Administrator

---\\ Environnement Variables
~ System Unit : C:\
~ %AppData% : C:\Users\Jeff\AppData\Roaming\
~ %Desktop% : C:\Users\Jeff\Desktop\
~ %Favorites% : C:\Users\Jeff\Favorites\
~ %LocalAppData% : C:\Users\Jeff\AppData\Local\
~ %StartMenu% : C:\Users\Jeff\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 33 Go of 141 Go)
D:\ CD-ROM drive (Free 0 Go of 8 Go)



---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Scan Security Center in 00mn 00s



---\\ Recherche particuli�re de fichiers g�n�riques
[MD5.D07D4C3038F3578FFCE1C0237F2A1253] - (.Microsoft Corporation - Explorateur Windows.) (.11/04/2009 - 07:27:36.) -- C:\Windows\Explorer.exe [2926592]
[MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de d�marrage de Windows.) (.19/01/2008 - 08:33:37.) -- C:\Windows\System32\Wininit.exe [96768]
[MD5.3652AA7B2FC078FACEE1B90523753A48] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.05/01/2013 - 12:59:52.) -- C:\Windows\System32\wininet.dll [916480]
[MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.11/04/2009 - 07:28:13.) -- C:\Windows\System32\Winlogon.exe [314368]
[MD5.3911B972B55FEA0478476B2E777B29FA] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.21/04/2011 - 14:58:27.) -- C:\Windows\system32\Drivers\AFD.sys [273408]
[MD5.1F05B78AB91C9075565A9D8A4B880BC4] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.11/04/2009 - 07:32:26.) -- C:\Windows\system32\Drivers\atapi.sys [19944]
[MD5.7ADD03E75BEB9E6DD102C3081D29840A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.19/01/2008 - 06:28:02.) -- C:\Windows\system32\Drivers\Cdfs.sys [70144]
[MD5.6B4BFFB9BECD728097024276430DB314] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.11/04/2009 - 05:39:17.) -- C:\Windows\system32\Drivers\Cdrom.sys [67072]
[MD5.622C41A07CA7E6DD91770F50D532CB6C] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.14/04/2011 - 15:59:03.) -- C:\Windows\system32\Drivers\DfsC.sys [75264]
[MD5.062452B7FFD68C8C042A6261FE8DFF4A] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.11/04/2009 - 05:42:42.) -- C:\Windows\system32\Drivers\HDAudBus.sys [561152]
[MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - (.Microsoft Corporation - Pilote de port i8042.) (.19/01/2008 - 06:49:18.) -- C:\Windows\system32\Drivers\i8042prt.sys [54784]
[MD5.8793643A67B42CEC66490B2A0CF92D68] - (.Microsoft Corporation - IP Network Address Translator.) (.19/01/2008 - 06:56:28.) -- C:\Windows\system32\Drivers\IpNat.sys [100864]
[MD5.1E94971C4B446AB2290DEB71D01CF0C2] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.29/04/2011 - 14:24:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [106496]
[MD5.ECD64230A59CBD93C85F1CD1CAB9F3F6] - (.Microsoft Corporation - MBT Transport driver.) (.11/04/2009 - 05:45:37.) -- C:\Windows\system32\Drivers\netBT.sys [185856]
[MD5.6A4A98CEE84CF9E99564510DDA4BAA47] - (.Microsoft Corporation - Pilote du syst�me de fichiers NT.) (.11/04/2009 - 07:32:49.) -- C:\Windows\system32\Drivers\ntfs.sys [1083880]
[MD5.0FA9B5055484649D63C303FE404E5F4D] - (.Microsoft Corporation - Pilote de port parall�le.) (.02/11/2006 - 09:51:30.) -- C:\Windows\system32\Drivers\Parport.sys [79360]
[MD5.A214ADBAF4CB47DD2728859EF31F26B0] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.19/01/2008 - 06:56:34.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [76288]
[MD5.E8BD98D46F2ED77132BA927FCCB47D8B] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.02/11/2006 - 10:03:00.) -- C:\Windows\system32\Drivers\rdpdr.sys [242688]
[MD5.7B75299A4D201D6A6533603D6914AB04] - (.Microsoft Corporation - SMB Transport driver.) (.11/04/2009 - 05:45:22.) -- C:\Windows\system32\Drivers\smb.sys [66560]
[MD5.76B06EB8A01FC8624D699E7045303E54] - (.Microsoft Corporation - TDI Translation Driver.) (.11/04/2009 - 05:45:56.) -- C:\Windows\system32\Drivers\tdx.sys [72192]
[MD5.786DB5771F05EF300390399F626BF30A] - (.Microsoft Corporation - Pilote de clich� instantan� du volume.) (.21/08/2012 - 12:47:42.) -- C:\Windows\system32\Drivers\volsnap.sys [224640]
~ Scan Generic Processes in 00mn 00s



---\\ Etat des fichiers cach�s (Cach�/Total)
~ Mes images (My Pictures) : 1/833
~ Mes musiques (My Musics) : 5/2258
~ Mes Videos (My Videos) : 1/3
~ Mes Favoris (My Favorites) : 1/77
~ Mes Documents (My Documents) : 1/144
~ Mon Bureau (My Desktop) : 1/1168
~ Menu demarrer (Programs) : 1/29
~ Scan Hidden Files in 00mn 07s



---\\ Processus lanc�s
[MD5.916B09138B35CBC306D71509E21330BA] - (.Synaptics, Inc. - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [815104] [PID.3276]
[MD5.32E4E820EDBD675009605F90DD97EE6C] - (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe [4186112] [PID.3340]
[MD5.12916E0642E92561C98B18A2A2D01B14] - (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [252848] [PID.3356]
[MD5.1ACBA585D47FB69C12F26074517EFE5A] - (.Ask - Ask Updater.) -- C:\Program Files\Ask.com\Updater\Updater.exe [1644680] [PID.3376]
[MD5.2E0B0A051FFAA86E358465BB0880D453] - (.Microsoft Corporation - Windows Update.) -- C:\Windows\system32\wuauclt.exe [53784] [PID.2700]
[MD5.58ED0528F2B1BFB3301BC10E0E707C35] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [917400] [PID.3488]
[MD5.B45F1D52C0A9519028BD95D34FFAB216] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files\Mozilla Firefox\plugin-container.exe [17304] [PID.3768]
[MD5.476FD5F12C0FF32CDF0A179320FCB726] - (.Adobe Systems, Inc. - Adobe Flash Player 11.5 r502.) -- C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_5_502_149.exe [1808240] [PID.3392]
[MD5.ED48AD981F026087F485403A3C2B0897] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [5696512] [PID.580]
[MD5.6080A176D09435FC8E6E800996656E18] - (.Microsoft Corporation - Console IME.) -- C:\Windows\system32\conime.exe [69120] [PID.3256]
[MD5.3481D12334F065BBA19C16399C9CB171] - (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) -- C:\Windows\system32\Ati2evxx.exe [565248] [PID.1148]
[MD5.862BB4CBC05D80C5B45BE430E5EF872F] - (.Microsoft Corporation - Service de gestion des licences Microsoft.) -- C:\Windows\system32\SLsvc.exe [3408896] [PID.1372]
[MD5.66597AD6098352D11239C0C42100B176] - (.Pas de propri�taire - ASLDR Service.) -- C:\Program Files\ATK Hotkey\ASLDRSrv.exe [94208] [PID.1772]
[MD5.8FA553E9AE69808D99C164733A0F9590] - (.AVAST Software - avast! Service.) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [44808] [PID.1784]
[MD5.3927397AC60D943DAF8808AFFED582B7] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [65192] [PID.368]
[MD5.85180CF88C5EBAD73B452A43A004CA51] - (.AOL LLC - AOL Connectivity Service.) -- C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe [46640] [PID.344]
[MD5.43DC4FC662DF064535E30B17C8B5AB00] - (.Apple Inc. - Apple Mobile Device Service.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [132424] [PID.336]
[MD5.3F56903E124E820AEECE6D471583C6C1] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [238888] [PID.724]
[MD5.837608240884733792DDAE81E50B802A] - (.Microsoft Corporation - SQL Server Windows NT.) -- C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [29293408] [PID.1360]
[MD5.910FBA95EE4F56449AA81315884C8EFD] - (.Sonic Solutions - RoxSniffer9 Module.) -- C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe [166648] [PID.596]
[MD5.86EBD8B1F23E743AAD21F4D5B4D40985] - (.Microsoft Corporation - SQL Browser Service EXE.) -- C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [238944] [PID.2200]
[MD5.D89083C4EB02DACA8F944B0E05E57F9D] - (.Microsoft Corporation - SQL Server VSS Writer.) -- C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [86880] [PID.2232]
[MD5.9638E5820858593A12005C753B03CEAE] - (.Sonic Solutions - RoxMediaDB9 Module.) -- C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe [887544] [PID.2844]
[MD5.56D78051C5FB6CADC6D43F26F2D58E80] - (.ATK0100 - HControl.) -- C:\Program Files\ATK Hotkey\Hcontrol.exe [225280] [PID.2976]
[MD5.16DEF7EBCB7BB73A55F7486C6D42E288] - (.Pas de propri�taire - ATKOSD.) -- C:\Program Files\ATK Hotkey\ATKOSD.exe [2420736] [PID.2728]
~ Scan Processes Running in 00mn 02s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
C:\Users\Jeff\AppData\Roaming\Mozilla\Firefox\Profiles\bfmnjt6z.default-1361533608465\prefs.js
M3 - MFPP: Plugins - [Jeff] -- C:\Users\Jeff\AppData\Roaming\Mozilla\Firefox\Profiles\bfmnjt6z.default-1361533608465\searchplugins\askcom.xml
M3 - MFPP: Plugins - [Jeff] -- C:\Program Files\Mozilla FireFox\searchplugins\amazon-france.xml
M3 - MFPP: Plugins - [Jeff] -- C:\Program Files\Mozilla FireFox\searchplugins\bing.xml
M3 - MFPP: Plugins - [Jeff] -- C:\Program Files\Mozilla FireFox\searchplugins\cnrtl-tlfi-fr.xml
M3 - MFPP: Plugins - [Jeff] -- C:\Program Files\Mozilla FireFox\searchplugins\eBay-france.xml
M3 - MFPP: Plugins - [Jeff] -- C:\Program Files\Mozilla FireFox\searchplugins\google.xml
M3 - MFPP: Plugins - [Jeff] -- C:\Program Files\Mozilla FireFox\searchplugins\wikipedia-fr.xml
M3 - MFPP: Plugins - [Jeff] -- C:\Program Files\Mozilla FireFox\searchplugins\yahoo-france.xml
M2 - MFEP: prefs.js [Jeff - bfmnjt6z.default-1361533608465\toolbar@ask.com] [] v (.Ask.com.)
P2 - FPN:Firefox Plugin Navigator . (.Microsoft Corporation - np-mswmp.) -- C:\Program Files\Mozilla Firefox\Plugins\np-mswmp.dll
P2 - FPN:Firefox Plugin Navigator . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 10.1.6.) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin2.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin3.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin4.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin5.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin6.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin7.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF32_11_5_502_149.dll
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (...) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
P2 - FPN: [HKLM] [@java.com/DTPlugin,version=10.15.2] - (.Oracle Corporation - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- C:\Windows\system32\npDeployJava1.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=10.15.2] - (.Oracle Corporation - Next Generation Java Plug-in 10.15.2 for Mozilla browsers.) -- C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 4.1.10329.0.) -- c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll
P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.135\npGoogleUpdate3.dll
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.135\npGoogleUpdate3.dll
P2 - FPN: [HKLM] [Adobe Reader] - (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 10.1.6.) -- C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
~ Scan Firefox Browser in 00mn 00s



---\\ Internet Explorer, D�marrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 10.1.6.) (No version) -- (.not file.)
R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 10.1.6.) (No version) -- (.not file.)
R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2
~ Scan IE Browser in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Scan Proxy management in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"
~ Scan Keys in 00mn 00s



---\\ Redirection du fichier Hosts (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Scan Hosts File in 00mn 04s
~ Nombre de lignes (Lines number): 11453



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} . (.Hewlett-Packard Co. - HP Smart Web Printing add-on for Internet E.) -- C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - WindowsLiveLogin.dll.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} . (.Packard Bell - BAE.dll.) -- C:\Program Files\Google\Google_BAE\BAE.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} . (.Ask - Ask Toolbar.) -- C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} . (.Hewlett-Packard Co. - HP Smart Web Printing add-on for Internet E.) -- C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
~ Scan BHO in 00mn 00s



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: avast! WebRep - [HKLM]{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O3 - Toolbar: Ask Toolbar - [HKLM]{D4027C7F-154A-4066-A1AD-4243D8127440} . (.Ask - Ask Toolbar.) -- C:\Program Files\Ask.com\GenericAskToolbar.dll
~ Scan Toolbar in 00mn 00s



---\\ Applications d�marr�es par registre & par dossier (O4)
O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics, Inc. - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe
O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe
O4 - HKLM\..\Run: [ApnUpdater] . (.Ask - Ask Updater.) -- C:\Program Files\Ask.com\Updater\Updater.exe
~ Scan Application in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - GS\Programs: Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\Programs: Windows Mail.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Mail\WinMail.exe
O4 - GS\Programs: Windows Media Player.lnk . (...) -- C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 (.not file.)
O4 - GS\Desktop: Audacity.lnk . (.The Audacity Team.) -- C:\Program Files\Audacity 1.3 Beta (Unicode)\audacity.exe
O4 - GS\Desktop: Dropbox.lnk . (...) -- C:\Users\Jeff\AppData\Roaming\Dropbox\bin\Dropbox.exe /home (.not file.)
O4 - GS\Desktop: Free Mp3 Wma Converter.lnk . (.Koyote Soft - Renan Broquin.) -- C:\Program Files\Free Audio Pack\FreeConverter\FreeConverter.exe
O4 - GS\Desktop: TimeAdjuster.lnk . (...) -- C:\Program Files\TimeAdjuster\time_adjuster.exe
O4 - GS\Desktop: Windows Movie Maker.lnk . (.Microsoft Corporation.) -- C:\Program Files\Movie Maker\MOVIEMK.exe
O4 - GS\Desktop: WinMail.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Mail\WinMail.exe
O4 - GS\QuickLaunch: iTunes.lnk . (...) -- C:\Windows\Installer\{585776BC-4BD6-4BD2-A19A-1D6CB44A403B}\iTunesIco.exe
O4 - GS\QuickLaunch: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\QuickLaunch: Mozilla Firefox.lnk . (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O4 - GS\QuickLaunch: Windows Media Player.lnk . (...) -- C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 (.not file.)
O4 - GS\QuickLaunch: �Torrent.lnk . (.BitTorrent, Inc..) -- C:\Program Files\uTorrent\uTorrent.exe
~ Scan Global Startup in 00mn 00s



---\\ Boutons situ�s sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -- Cl� orpheline
O9 - Extra button: Afficher ou masquer l'HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} . (.Hewlett-Packard Co. - HP Smart Web Printing add-on for Internet Explorer.) -- C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
~ Scan IE Extra Buttons in 00mn 00s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d�espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d�espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\Windows\system32\wshbth.dll
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
O10 - WLSP:\000000000008\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files\Bonjour\mdnsNSP.dll
~ Scan Winsock in 00mn 00s



---\\ Site dans la Zone de confiance d'Internet Explorer (O15)
O15 - Trusted Zone: [HKCU\...\Domains] http.mappy.com
O15 - Trusted Zone: [HKCU\...\Domains] http.orange.fr
~ Scan IE Zone Confiance in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{0812F9AF-9798-4E60-B140-6FBC5ED262B3}: NameServer = 89.2.0.1,89.2.0.2
O17 - HKLM\System\CCS\Services\Tcpip\..\{1BAEACB4-9443-4FB4-B0C5-357B5DAA785F}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\..\{1BAEACB4-9443-4FB4-B0C5-357B5DAA785F}: DhcpDomain = lan
O17 - HKLM\System\CS1\Services\Tcpip\..\{0812F9AF-9798-4E60-B140-6FBC5ED262B3}: NameServer = 89.2.0.1,89.2.0.2
O17 - HKLM\System\CS1\Services\Tcpip\..\{1BAEACB4-9443-4FB4-B0C5-357B5DAA785F}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{1BAEACB4-9443-4FB4-B0C5-357B5DAA785F}: DhcpDomain = lan
O17 - HKLM\System\CS2\Services\Tcpip\..\{0812F9AF-9798-4E60-B140-6FBC5ED262B3}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS2\Services\Tcpip\..\{1BAEACB4-9443-4FB4-B0C5-357B5DAA785F}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS2\Services\Tcpip\..\{0812F9AF-9798-4E60-B140-6FBC5ED262B3}: DhcpDomain = lan
O17 - HKLM\System\CS2\Services\Tcpip\..\{1BAEACB4-9443-4FB4-B0C5-357B5DAA785F}: DhcpDomain = lan
O17 - HKLM\System\CS3\Services\Tcpip\..\{0812F9AF-9798-4E60-B140-6FBC5ED262B3}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS3\Services\Tcpip\..\{1BAEACB4-9443-4FB4-B0C5-357B5DAA785F}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS3\Services\Tcpip\..\{0812F9AF-9798-4E60-B140-6FBC5ED262B3}: DhcpDomain = lan
O17 - HKLM\System\CS3\Services\Tcpip\..\{1BAEACB4-9443-4FB4-B0C5-357B5DAA785F}: DhcpDomain = lan
~ Scan Domain in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\system32\mshtml.dll
O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
~ Scan Protocole Additionnel in 00mn 00s



---\\ Cl� de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Contr�leur de site Web.) -- C:\Windows\System32\webcheck.dll
~ Scan SSODL in 00mn 00s



---\\ Cl� de Registre autorun SharedTaskScheduler (STS) (O22)
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Biblioth�que de l'interface utilisateur du.) -- C:\Windows\System32\browseui.dll
~ Scan STS/SSO in 00mn 00s



---\\ Liste des services NT non Microsoft et non d�sactiv�s (O23)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: AOL Connectivity Service (AOL ACS) . (.AOL LLC - AOL Connectivity Service.) - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - Apple Mobile Device Service.) - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: ASLDR Service (ASLDRService) . (.Pas de propri�taire - ASLDR Service.) - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
O23 - Service: (Ati External Event Utility) . (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) - C:\Windows\System32\Ati2evxx.exe
O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) . (.Sonic Solutions - RoxSniffer9 Module.) - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe
~ Scan Services in 00mn 08s



---\\ Enum�ration Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
O24 - Desktop General: BackupWallPaper - .(...) - C:\Windows\Web\Wallpaper\Packard Bell\Wallpaper\Wallpaper Galactic_1900x1440.jpg
O24 - Desktop General: WallPaper - .(...) - C:\Windows\Web\Wallpaper\Packard Bell\Wallpaper\Wallpaper Galactic_1900x1440.jpg
~ Scan Desktop Component in 00mn 00s



---\\ BootExecute (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ Scan Keys in 00mn 00s



---\\ T�ches planifi�es en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Extension de garantie.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\HDReg.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Recovery DVD Creator.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\User_Feed_Synchronization-{97D72ACA-7D15-4CDC-82E8-1740C8E0B1C6}.job
[MD5.EC807244904FA170C299AB06D87FBDBE] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
[MD5.7F19838AC317C34FCED020BE529AF71E] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\Alwil Software\Avast5\AvastEmUpdate.exe
[MD5.FA52C48CA18EDFB00180FD465E8F0B08] [APT] [Extension de garantie] (.Packard Bell BV.) -- C:\Program Files\Packard Bell\SetupmyPC\PBCarNot.exe
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe
[MD5.B6D82C30267289D56B4BFDE3715D8F9F] [APT] [Recovery DVD Creator] (.Packard Bell BV.) -- C:\Program Files\Packard Bell\SetupMyPc\MCDCheck.exe
[MD5.0E4D145F0B0612957D0E4959B1CC88AD] [APT] [Scheduled Update for Ask Toolbar] (...) -- C:\Program Files\Ask.com\UpdateTask.exe
[MD5.CBEC06E32D0AC9C3D0A9199EDC1FB959] [APT] [{46E61FD5-06B3-400B-AE82-68DFDC6478F6}] (.Skype Technologies S.A..) -- C:\Program Files\Skype\Phone\Skype.exe
[MD5.CBEC06E32D0AC9C3D0A9199EDC1FB959] [APT] [{80A2AF79-9A70-4F1F-A3C6-8C40634DC5F0}] (.Skype Technologies S.A..) -- C:\Program Files\Skype\Phone\Skype.exe
[MD5.9EE4D9EEE94305164258EC7FC6A03E02] [APT] [{9C0053EA-1857-4EA4-9A71-04BD09F12679}] (.IrekSoftware.com.) -- C:\tools\time-adjuster_time_adjuster_3.1_francais_11087\Setup.exe
[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
~ Scan Scheduled Task in 00mn 05s



---\\ Composants install�s (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll
O40 - ASIC: Internet Explorer - >{26923b43-4d38-484f-9b9e-de460746276c} . (.Microsoft Corporation - Utilitaire d�initialisation d�Internet Explorer par utilisateur.) -- C:\Windows\system32\ie4uinit.exe
O40 - ASIC: Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} . (.Sun Microsystems, Inc. - Java(TM) 2 Platform Standard Edition binary.) -- C:\Program Files\Java\jre1.5.0_17\bin\regutils.dll
O40 - ASIC: Microsoft Windows Media Player 11.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll
O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
O40 - ASIC: Microsoft Windows Mail 7 - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe
O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll
O40 - ASIC: Windows Desktop Update - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O40 - ASIC: Internet Explorer - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d�initialisation d�Internet Explorer par utilisateur.) -- C:\Windows\system32\ie4uinit.exe
O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll
O40 - ASIC: Macromedia Shockwave Flash - {D27CDB6E-AE6D-11CF-96B8-444553540000} . (.Adobe Systems, Inc. - Adobe Flash Player 10.0 r22.) -- C:\Windows\system32\Macromed\Flash\Flash10b.ocx
~ Scan Active Setup in 00mn 00s



---\\ Pilotes lanc�s au d�marrage (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: (i8042prt) . (.Microsoft Corporation - Pilote de port i8042.) - C:\Windows\System32\DRIVERS\i8042prt.sys
O41 - Driver: (kbdclass) . (.Microsoft Corporation - Pilote de la classe Clavier.) - C:\Windows\System32\DRIVERS\kbdclass.sys
O41 - Driver: (mouclass) . (.Microsoft Corporation - Pilote de la classe Souris.) - C:\Windows\System32\DRIVERS\mouclass.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: (netbt) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (PSched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: (RasAcd) . (.Microsoft Corporation - RAS Automatic Connection Driver.) - C:\Windows\System32\DRIVERS\rasacd.sys
O41 - Driver: (rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: (RDPENCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (Smb) . (.Microsoft Corporation - SMB Transport driver.) - C:\Windows\System32\DRIVERS\smb.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Terminal Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
O41 - Driver: (ws2ifsl) . (.Microsoft Corporation - Winsock2 IFS Layer.) - C:\Windows\system32\drivers\ws2ifsl.sys
~ Scan Drivers in 00mn 00s



---\\ Logiciels install�s (O42)
O42 - Logiciel: 32 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM] -- {92127AF5-FDD8-4ADF-BC40-C356C9EE0B7D}
O42 - Logiciel: ADSL Neuf - (.Pas de propri�taire.) [HKLM] -- NEUF_FR
O42 - Logiciel: AOL - Assistant de d�sinstallation - (.Pas de propri�taire.) [HKLM] -- Programme de d�sinstallation AOL
O42 - Logiciel: ATK Hotkey - (.ATK.) [HKLM] -- {3912D529-02BC-4CA8-B5ED-0D0C20EB6003}
O42 - Logiciel: Active@ ISO Burner - (.LSoft Technologies.) [HKLM] -- {7694E0B1-2332-448B-9235-929F84B41E3F}
O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin
O42 - Logiciel: Adobe Flash Player 9 ActiveX - (.Adobe Systems.) [HKLM] -- ShockwaveFlash
O42 - Logiciel: Adobe Reader 8 - (.Pas de propri�taire.) [HKLM] -- AdobeReader
O42 - Logiciel: Adobe Reader X (10.1.6) - Fran�ais - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AA1000000001}
O42 - Logiciel: Adobe Shockwave Player - (.Adobe Systems, Inc..) [HKLM] -- {A7DB362E-16DC-4E29-8A34-E74381E00B5B}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {AFA20D47-69C3-4030-8DF8-D37466E70F13}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
O42 - Logiciel: Ask Toolbar - (.Ask.com.) [HKLM] -- {86D4B82A-ABED-442A-BE86-96357B70F4FE}
O42 - Logiciel: Ask Toolbar Updater - (.Ask.com.) [HKCU] -- {79A765E1-C399-405B-85AF-466F52E918B0}
O42 - Logiciel: Atheros Driver Installation Program - (.Atheros.) [HKLM] -- {28006915-2739-4EBE-B5E8-49B25D32EB33}
O42 - Logiciel: Audacity 1.3.12 (Unicode) - (.Audacity Team.) [HKLM] -- Audacity 1.3 Beta (Unicode)_is1
O42 - Logiciel: Bison 11/28/2006,6.32.03.002 - (.Pas de propri�taire.) [HKLM] -- CMOS
O42 - Logiciel: Bluesoleil3.2.1.2 Release 070314 - (.IVT Corporation.) [HKLM] -- {AF98AF15-161E-42EC-9008-1CCF9BB83961}
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {07287123-B8AC-41CE-8346-3D777245C35B}
O42 - Logiciel: Brother MFL-Pro Suite - (.Brother Industries, Ltd..) [HKLM] -- {A3FEC306-FBFF-4B0D-95B9-F9C67C65079E}
O42 - Logiciel: Browser Address Error Redirector - (.Pas de propri�taire.) [HKLM] -- {3EE33958-7381-4E7B-A4F3-6E43098E9E9C}
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
O42 - Logiciel: Creator 9 - (.Pas de propri�taire.) [HKLM] -- CREATOR9
O42 - Logiciel: Crystal Reports for .NET Framework 2.0 (x86) - (.Business Objects.) [HKLM] -- {7C05EEDD-E565-4E2B-ADE4-0C784C17311C}
O42 - Logiciel: Defraggler - (.Piriform.) [HKLM] -- Defraggler
O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKCU] -- Dropbox
O42 - Logiciel: FFmpeg for Audacity on Windows - (.Pas de propri�taire.) [HKLM] -- FFmpeg for Audacity on Windows_is1
O42 - Logiciel: File Type Assistant - (.Trusted Software.) [HKLM] -- Trusted Software Assistant_is1
O42 - Logiciel: Firefox - (.Pas de propri�taire.) [HKLM] -- FirefoxFR
O42 - Logiciel: Flash Player 9 Internet Explorer - (.Pas de propri�taire.) [HKLM] -- Flashplayer
O42 - Logiciel: Free Mp3 Wma Converter V 1.7.2 - (.Koyote Soft.) [HKLM] -- Free Mp3 Wma Converter_is1
O42 - Logiciel: GIMP 2.6.8 - (.Pas de propri�taire.) [HKLM] -- WinGimp-2.0_is1
O42 - Logiciel: Google BAE - (.Pas de propri�taire.) [HKLM] -- GoogleBAE
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: HDReg France - (.Acxiom.) [HKLM] -- {0ED40D2A-7131-4FE7-941E-5C329336F712}
O42 - Logiciel: HP Deskjet F2400 All-In-One Driver Software 13.0 Rel .6 - (.HP.) [HKLM] -- {CDBF8C2D-04B0-4F9B-9AE1-7422F7F0EC94}
O42 - Logiciel: HP Photosmart All-In-One Driver Software 10.0 Rel .2 - (.HP.) [HKLM] -- {86D3D561-D1FD-4d57-8395-20030467E0F9}
O42 - Logiciel: HP Print Projects 1.0 - (.HP.) [HKLM] -- HP Print Projects
O42 - Logiciel: HP Smart Web Printing 4.5 - (.HP.) [HKLM] -- HP Smart Web Printing
O42 - Logiciel: IZArc 4.1 - (.Ivan Zahariev.) [HKLM] -- {97C82B44-D408-4F14-9252-47FC1636D23E}_is1
O42 - Logiciel: Infocentre Rev. 2.0 - (.Pas de propri�taire.) [HKLM] -- Infocentre
O42 - Logiciel: J2SE Runtime Environment 5.0 Update 17 - (.Sun Microsystems, Inc..) [HKLM] -- {3248F0A8-6813-11D6-A77B-00B0D0150170}
O42 - Logiciel: Java 7 Update 15 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83217015FF}
O42 - Logiciel: K-Lite Codec Pack 6.6.0 (Full) - (.Pas de propri�taire.) [HKLM] -- KLiteCodecPack_is1
O42 - Logiciel: LAME v3.99.3 (for Windows) - (.Pas de propri�taire.) [HKLM] -- LAME_is1
O42 - Logiciel: MSXML 4.0 SP2 (KB936181) - (.Microsoft Corporation.) [HKLM] -- {C04E32E0-0416-434D-AFB9-6969D703A9EF}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: Malwarebytes Anti-Malware version 1.62.0.1300 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1
O42 - Logiciel: Metaboli - (.Pas de propri�taire.) [HKLM] -- METABOLI
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {6B1CB38D-E2E4-4a30-933D-EFDEBA76AD9C}
O42 - Logiciel: Microsoft Works 8.5 - (.Pas de propri�taire.) [HKLM] -- MSWorks85
O42 - Logiciel: Mozilla Firefox 18.0.2 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 18.0.2 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService
O42 - Logiciel: NIS2007 - (.Pas de propri�taire.) [HKLM] -- NIS2007_FR
O42 - Logiciel: Nokia Connectivity Cable Driver - (.Pas de propri�taire.) [HKLM] -- {BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}
O42 - Logiciel: OFFICE One 150 Templates v7 - (.ISSENDIS.) [HKLM] -- {BA147801-8946-4BBE-BE17-A2199CE52C81}
O42 - Logiciel: OFFICE One 7.0 - (.ISSENDIS.) [HKLM] -- {1EF377AC-035A-48BE-8EF7-D18D36308CE9}
O42 - Logiciel: OFFICE One ClipArt v7 - (.ISSENDIS.) [HKLM] -- {B8F3555E-B918-445E-97D1-BC4861C4EF59}
O42 - Logiciel: OFFICE One Fonts v7 - (.ISSENDIS.) [HKLM] -- {CC0C788C-7C68-47A9-BFBF-0DF7B205B4CC}
O42 - Logiciel: OFFICE One License v7 - (.ISSENDIS.) [HKLM] -- {E1A7B28B-AA31-442C-A4FA-598B65A7F5DA}
O42 - Logiciel: OFFICE One Menu v7 - (.ISSENDIS.) [HKLM] -- {85C5827E-106F-4497-8066-B7CFEBBEA91D}
O42 - Logiciel: OFFICE One Notes v7 - (.ISSENDIS.) [HKLM] -- {5D2683BE-2C44-4DB5-BECD-87B324077A7F}
O42 - Logiciel: OFFICE One QuickZip v7 - (.ISSENDIS.) [HKLM] -- {87DEF84E-51A5-4A0E-91C2-E012E92DE69B}
O42 - Logiciel: OFFICE One Safety-Box v7 - (.ISSENDIS.) [HKLM] -- {B243ABE9-57C2-4B97-BA6B-37DF6C0208ED}
O42 - Logiciel: OFFICE One Startup v7 - (.ISSENDIS.) [HKLM] -- {FEC30F06-A382-47D1-B828-859AC641EB1D}
O42 - Logiciel: Office One - (.Pas de propri�taire.) [HKLM] -- OFFICE
O42 - Logiciel: PDFCreator - (.pdfforge.) [HKLM] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}
O42 - Logiciel: Packard Bell Demo - (.Pas de propri�taire.) [HKLM] -- PB_DEMO
O42 - Logiciel: Packard Bell ImageWriter - (.Pas de propri�taire.) [HKLM] -- ImageWriter
O42 - Logiciel: Packard Bell LCD Test - (.Pas de propri�taire.) [HKLM] -- LCDTest
O42 - Logiciel: Packard Bell Updator - (.Pas de propri�taire.) [HKLM] -- Updator
O42 - Logiciel: Picasa2 - (.Google, Inc..) [HKLM] -- Picasa2
O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {F958CA02-BB40-4007-894B-258729456EE4}
O42 - Logiciel: RTC Client API v1.2 - (.Microsoft.) [HKLM] -- {44CDBD1B-89FB-4E02-8319-2A4C550F664A}
O42 - Logiciel: Realtek 8139 and 8139C+ Ethernet Network Card Driver for Windows Vista - (.Realtek.) [HKLM] -- {AE46ABD3-D625-467F-B5A7-8D3FFF077F0D}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Roxio Creator 9 LE - (.Roxio.) [HKLM] -- {B7FB0C86-41A4-4402-9A33-912C462042A0}
O42 - Logiciel: SUPER � Version 2010.bld.38 (May 2, 2010) - (.eRightSoft.) [HKLM] -- SUPER �
O42 - Logiciel: Samsung ML-1865W Series - (.Samsung Electronics Co., Ltd..) [HKLM] -- Samsung ML-1865W Series
O42 - Logiciel: SetUp My PC - (.Pas de propri�taire.) [HKLM] -- SETUPMYPC_FR
O42 - Logiciel: Shockwave player 10 - (.Pas de propri�taire.) [HKLM] -- Shockwave
O42 - Logiciel: Shop for HP Supplies - (.HP.) [HKLM] -- Shop for HP Supplies
O42 - Logiciel: Skype Toolbars - (.Skype Technologies S.A..) [HKLM] -- {B6CF2967-C81E-40C0-9815-C05774FEF120}
O42 - Logiciel: Skype� 5.10 - (.Skype Technologies S.A..) [HKLM] -- {EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}
O42 - Logiciel: Spelling Dictionaries Support For Adobe Reader 8 - (.Adobe Systems.) [HKLM] -- {AC76BA86-7AD7-5464-3428-800000000003}
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics.) [HKLM] -- SynTPDeinstKey
O42 - Logiciel: Time Adjuster STANDARD 3.1 - (.IrekSoftware.com.) [HKCU] -- TimeAdjuster
O42 - Logiciel: USB2.0 350K WebCam - (.Pas de propri�taire.) [HKLM] -- {4A57592C-FF92-4083-97A9-92783BD5AFB4}
O42 - Logiciel: Video ATI v8.332 - (.Pas de propri�taire.) [HKLM] -- VIDEO_RIO
O42 - Logiciel: WalterShop - (.Durable.com.) [HKLM] -- WalterShop
O42 - Logiciel: Windows Media Player Firefox Plugin - (.Microsoft Corp.) [HKLM] -- {69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}
O42 - Logiciel: avast! Free Antivirus v7.0.1474.0 - (.AVAST Software.) [HKLM] -- avast
O42 - Logiciel: eMule - (.Pas de propri�taire.) [HKLM] -- eMule
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM] -- {585776BC-4BD6-4BD2-A19A-1D6CB44A403B}
O42 - Logiciel: �Torrent - (.Pas de propri�taire.) [HKLM] -- uTorrent

---\\ HKCU & HKLM Software Keys
[HKCU\Software\1ClickDownload]
[HKCU\Software\AC3Filter]
[HKCU\Software\ALWIL Software]
[HKCU\Software\APN]
[HKCU\Software\ATI Technologies Inc.]
[HKCU\Software\ATI]
[HKCU\Software\AVAST Software]
[HKCU\Software\Adobe]
[HKCU\Software\America Online]
[HKCU\Software\AppDataLow\Software\Adobe]
[HKCU\Software\AppDataLow\Software\AskToolbar]
[HKCU\Software\AppDataLow\Software\Google]
[HKCU\Software\AppDataLow\Software\Microsoft]
[HKCU\Software\AppDataLow\Software\{01A7BDE8-3937-6511-600C-83AF2D538B22}]
[HKCU\Software\AppDataLow\Software]
[HKCU\Software\AppDataLow\ac8641e]
[HKCU\Software\AppDataLow]
[HKCU\Software\Apple Computer, Inc.]
[HKCU\Software\Ask.com]
[HKCU\Software\Audacity]
[HKCU\Software\BitTorrent]
[HKCU\Software\Brother]
[HKCU\Software\BrowserTemp]
[HKCU\Software\CDDB]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\CoreAAC]
[HKCU\Software\Cygnus Solutions]
[HKCU\Software\EasyBits]
[HKCU\Software\Freeware]
[HKCU\Software\GNU]
[HKCU\Software\Gabest]
[HKCU\Software\Google]
[HKCU\Software\HP]
[HKCU\Software\Haali]
[HKCU\Software\Hewlett-Packard]
[HKCU\Software\IE]
[HKCU\Software\IM Providers]
[HKCU\Software\IZSoftware]
[HKCU\Software\Imaxel]
[HKCU\Software\InstallShield]
[HKCU\Software\IrekZielinskiSoft]
[HKCU\Software\JavaSoft]
[HKCU\Software\LSoft Technologies]
[HKCU\Software\Ligos]
[HKCU\Software\MONOGRAM]
[HKCU\Software\Macromedia]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\MediaInfo]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Mozilla]
[HKCU\Software\NCH Software]
[HKCU\Software\NCH Swift Sound]
[HKCU\Software\Netscape]
[HKCU\Software\PDF Architect]
[HKCU\Software\PDFCreator]
[HKCU\Software\PIXELA]
[HKCU\Software\Packard Bell]
[HKCU\Software\Pinnacle Systems]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\RadLight]
[HKCU\Software\RealNetworks]
[HKCU\Software\Realtek]
[HKCU\Software\Roxio]
[HKCU\Software\SFR]
[HKCU\Software\SSPrint]
[HKCU\Software\Samsung]
[HKCU\Software\Skype]
[HKCU\Software\Sonic]
[HKCU\Software\Synaptics]
[HKCU\Software\Sysinternals]
[HKCU\Software\Trolltech]
[HKCU\Software\Vodafone]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\YahooPartnerToolbar]
[HKCU\Software\Yahoo]
[HKCU\Software\ZebHelpProcess Helper]
[HKCU\Software\eMule]
[HKCU\Software\madFlac]
[HKLM\Software\13fe]
[HKLM\Software\ALWIL Software]
[HKLM\Software\APN]
[HKLM\Software\ATI Technologies]
[HKLM\Software\ATI]
[HKLM\Software\ATK]
[HKLM\Software\AVAST Software]
[HKLM\Software\Adobe]
[HKLM\Software\America Online]
[HKLM\Software\Apple Computer, Inc.]
[HKLM\Software\Apple Inc.]
[HKLM\Software\AsLdr]
[HKLM\Software\AskToolbar]
[HKLM\Software\Atheros]
[HKLM\Software\AviSynth]
[HKLM\Software\BisonCam]
[HKLM\Software\Brother Industries, Ltd.]
[HKLM\Software\Brother]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Codec Tweak Tool]
[HKLM\Software\Crystal Decisions]
[HKLM\Software\Cygnus Solutions]
[HKLM\Software\Debug]
[HKLM\Software\Dropbox]
[HKLM\Software\Environment]
[HKLM\Software\FFmpeg for Audacity]
[HKLM\Software\FreeCDRIP]
[HKLM\Software\FullCircle]
[HKLM\Software\GNU]
[HKLM\Software\Gabest]
[HKLM\Software\Google]
[HKLM\Software\HaaliMkx]
[HKLM\Software\Hewlett-Packard]
[HKLM\Software\ISSENDIS]
[HKLM\Software\IVT Corporation]
[HKLM\Software\IZSoftware]
[HKLM\Software\InstallShield]
[HKLM\Software\InstalledOptions]
[HKLM\Software\Intel]
[HKLM\Software\InterVideo]
[HKLM\Software\JavaSoft]
[HKLM\Software\JreMetrics]
[HKLM\Software\KLCodecPack]
[HKLM\Software\LSoft Technologies]
[HKLM\Software\Lame For Audacity]
[HKLM\Software\Macromedia]
[HKLM\Software\Malwarebytes' Anti-Malware]
[HKLM\Software\MicroVision]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\NCH Software]
[HKLM\Software\NCH Swift Sound]
[HKLM\Software\ODBC]
[HKLM\Software\OpenOffice.org]
[HKLM\Software\PDFCreator]
[HKLM\Software\PIXELA]
[HKLM\Software\PegasusImaging]
[HKLM\Software\Pinnacle Systems]
[HKLM\Software\Piriform]
[HKLM\Software\Policies]
[HKLM\Software\QSR]
[HKLM\Software\RTLSetup]
[HKLM\Software\Realtek Semiconductor Corp.]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\Roxio]
[HKLM\Software\SPanel]
[HKLM\Software\SSPrint]
[HKLM\Software\Samsung]
[HKLM\Software\SimplyGen]
[HKLM\Software\Skype]
[HKLM\Software\Sonic]
[HKLM\Software\SymNRT]
[HKLM\Software\Symantec]
[HKLM\Software\Synaptics]
[HKLM\Software\The Silicon Realms Toolworks]
[HKLM\Software\Trad-FR]
[HKLM\Software\Uniblue]
[HKLM\Software\Volatile]
[HKLM\Software\WebCam]
[HKLM\Software\WholeSecurity]
[HKLM\Software\Windows]
[HKLM\Software\Wow6432Node]
[HKLM\Software\Xing Technology Corp.]
[HKLM\Software\illiminable]
[HKLM\Software\mozilla.org]
~ Scan Softwares in 00mn 00s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 12/02/2013 - 15:27:43 - [159,371] ----D C:\Program Files\Adobe
O43 - CFD: 01/02/2010 - 17:27:20 - [294,750] ----D C:\Program Files\Alwil Software
O43 - CFD: 25/11/2007 - 15:01:00 - [0,001] ----D C:\Program Files\AOL
O43 - CFD: 24/05/2007 - 21:52:47 - [31,429] ----D C:\Program Files\AOL 9.0 VR
O43 - CFD: 23/12/2011 - 14:17:51 - [2,316] ----D C:\Program Files\Apple Software Update
O43 - CFD: 24/02/2013 - 11:38:38 - [3,514] ----D C:\Program Files\Ask.com
O43 - CFD: 24/05/2007 - 21:47:36 - [0,001] ----D C:\Program Files\Atheros
O43 - CFD: 24/05/2007 - 21:42:44 - [13,735] ----D C:\Program Files\ATI
O43 - CFD: 24/05/2007 - 21:43:46 - [50,502] ----D C:\Program Files\ATI Technologies
O43 - CFD: 24/05/2007 - 21:40:22 - [4,575] ----D C:\Program Files\ATK Hotkey
O43 - CFD: 27/03/2011 - 16:01:39 - [32,784] ----D C:\Program Files\Audacity 1.3 Beta (Unicode)
O43 - CFD: 22/01/2009 - 18:26:19 - [0,140] ----D C:\Program Files\AviSynth 2.5
O43 - CFD: 23/12/2011 - 14:17:02 - [0,375] ----D C:\Program Files\Bonjour
O43 - CFD: 12/09/2009 - 13:36:13 - [36,894] ----D C:\Program Files\Brother
O43 - CFD: 18/08/2012 - 16:31:51 - [4,750] ----D C:\Program Files\CCleaner
O43 - CFD: 10/11/2007 - 21:57:45 - [0,690] ----D C:\Program Files\Club-Internet
O43 - CFD: 07/09/2012 - 04:55:09 - [511,459] ----D C:\Program Files\Common Files
O43 - CFD: 22/08/2012 - 17:58:12 - [4,537] ----D C:\Program Files\Defraggler
O43 - CFD: 02/01/2013 - 20:31:16 - [28,604] ----D C:\Program Files\Dropbox
O43 - CFD: 20/08/2012 - 21:56:01 - [10,236] ----D C:\Program Files\eMule
O43 - CFD: 30/08/2010 - 12:57:11 - [27,543] ----D C:\Program Files\eRightSoft
O43 - CFD: 22/01/2013 - 16:57:29 - [19,501] ----D C:\Program Files\FFmpeg for Audacity
O43 - CFD: 25/09/2007 - 09:30:52 - [0] ----D C:\Program Files\Fichiers communs
O43 - CFD: 07/11/2011 - 11:19:06 - [1,979] ----D C:\Program Files\File Type Assistant
O43 - CFD: 20/01/2012 - 11:50:00 - [0] ----D C:\Program Files\FinalTorrent
O43 - CFD: 02/05/2008 - 11:14:31 - [8,864] ----D C:\Program Files\Free Audio Pack
O43 - CFD: 01/02/2010 - 10:02:55 - [94,622] ----D C:\Program Files\GIMP-2.0
O43 - CFD: 05/02/2013 - 19:54:07 - [5,770] ----D C:\Program Files\Google
O43 - CFD: 24/05/2007 - 21:48:26 - [1,853] ----D C:\Program Files\HDReg
O43 - CFD: 01/10/2012 - 10:57:12 - [161,020] ----D C:\Program Files\HP
O43 - CFD: 23/11/2010 - 08:55:28 - [0] ----D C:\Program Files\imaxel
O43 - CFD: 31/10/2011 - 10:07:20 - [42,063] --H-D C:\Program Files\InstallShield Installation Information
O43 - CFD: 14/02/2013 - 09:10:51 - [5,634] ----D C:\Program Files\Internet Explorer
O43 - CFD: 20/05/2008 - 11:13:45 - [1,228] ----D C:\Program Files\iPod
O43 - CFD: 24/05/2007 - 22:16:55 - [1,406] ----D C:\Program Files\ISSENDIS
O43 - CFD: 20/05/2008 - 11:14:05 - [71,379] ----D C:\Program Files\iTunes
O43 - CFD: 29/01/2010 - 21:12:17 - [11,688] ----D C:\Program Files\IVT Corporation
O43 - CFD: 25/05/2010 - 13:26:12 - [12,874] ----D C:\Program Files\IZArc
O43 - CFD: 24/02/2013 - 11:26:42 - [177,739] ----D C:\Program Files\Java
O43 - CFD: 12/12/2010 - 20:14:12 - [45,388] ----D C:\Program Files\K-Lite Codec Pack
O43 - CFD: 22/01/2013 - 17:03:24 - [1,540] ----D C:\Program Files\Lame For Audacity
O43 - CFD: 31/10/2011 - 10:07:25 - [3,341] ----D C:\Program Files\LSoft Technologies
O43 - CFD: 18/08/2012 - 18:58:19 - [11,926] ----D C:\Program Files\Malwarebytes' Anti-Malware
O43 - CFD: 02/11/2006 - 13:37:34 - [89,117] ----D C:\Program Files\Microsoft Games
O43 - CFD: 24/05/2007 - 22:26:49 - [4,030] ----D C:\Program Files\Microsoft Office
O43 - CFD: 30/07/2012 - 02:34:00 - [36,641] ----D C:\Program Files\Microsoft Silverlight
O43 - CFD: 25/08/2011 - 23:42:14 - [228,577] ----D C:\Program Files\Microsoft SQL Server
O43 - CFD: 08/11/2009 - 10:50:50 - [143,405] ----D C:\Program Files\Microsoft Works
O43 - CFD: 02/08/2011 - 17:44:09 - [0,993] ----D C:\Program Files\Microsoft.NET
O43 - CFD: 13/08/2010 - 10:59:52 - [94,740] ----D C:\Program Files\Movie Maker
O43 - CFD: 06/02/2013 - 20:03:54 - [47,309] ----D C:\Program Files\Mozilla Firefox
O43 - CFD: 07/02/2013 - 10:23:22 - [0,212] ----D C:\Program Files\Mozilla Maintenance Service
O43 - CFD: 02/11/2006 - 13:37:34 - [0,025] ----D C:\Program Files\MSBuild
O43 - CFD: 29/09/2007 - 21:39:48 - [0] ----D C:\Program Files\MSXML 4.0
O43 - CFD: 24/05/2007 - 22:21:52 - [245,670] ----D C:\Program Files\OFFICE ONE 7.0
O43 - CFD: 24/05/2007 - 22:20:54 - [66,421] ----D C:\Program Files\OFFICE One v7
O43 - CFD: 24/05/2007 - 22:24:44 - [1496,992] ----D C:\Program Files\Packard Bell
O43 - CFD: 12/02/2013 - 16:34:19 - [24,696] ----D C:\Program Files\PDFCreator
O43 - CFD: 24/05/2007 - 22:24:28 - [26,235] ----D C:\Program Files\Picasa2
O43 - CFD: 07/03/2011 - 22:20:31 - [0] ----D C:\Program Files\PIXELA
O43 - CFD: 30/12/2008 - 16:10:48 - [73,635] ----D C:\Program Files\QuickTime
O43 - CFD: 10/02/2010 - 10:21:37 - [0] ----D C:\Program Files\Real
O43 - CFD: 24/05/2007 - 21:46:42 - [11,365] ----D C:\Program Files\Realtek
O43 - CFD: 02/11/2006 - 13:37:34 - [36,069] ----D C:\Program Files\Reference Assemblies
O43 - CFD: 24/05/2007 - 21:58:15 - [70,746] ----D C:\Program Files\Roxio
O43 - CFD: 27/10/2011 - 13:59:43 - [82,648] ----D C:\Program Files\Samsung
O43 - CFD: 27/10/2011 - 14:02:53 - [10,012] ----D C:\Program Files\SamsungPrinterLiveUpdate
O43 - CFD: 18/12/2008 - 14:20:13 - [29,577] ----D C:\Program Files\Securitoo
O43 - CFD: 04/08/2010 - 14:43:18 - [0] ----D C:\Program Files\SFR
O43 - CFD: 07/09/2012 - 04:55:09 - [26,198] R---D C:\Program Files\Skype
O43 - CFD: 25/05/2007 - 07:04:21 - [12,790] ----D C:\Program Files\Synaptics
O43 - CFD: 01/06/2010 - 10:03:06 - [1,951] ----D C:\Program Files\TimeAdjuster
O43 - CFD: 25/02/2011 - 17:00:52 - [0,772] ----D C:\Program Files\trend micro
O43 - CFD: 25/05/2010 - 13:26:27 - [7,353] ----D C:\Program Files\Uniblue
O43 - CFD: 02/11/2006 - 14:01:55 - [0] --H-D C:\Program Files\Uninstall Information
O43 - CFD: 01/06/2010 - 14:39:48 - [0] ----D C:\Program Files\URUSoft
O43 - CFD: 13/01/2012 - 15:46:42 - [0,703] ----D C:\Program Files\uTorrent
O43 - CFD: 01/02/2010 - 09:41:43 - [8,293] ----D C:\Program Files\WalterShop.com
O43 - CFD: 04/02/2010 - 19:29:18 - [0,970] ----D C:\Program Files\Windows Calendar
O43 - CFD: 04/02/2010 - 19:29:18 - [2,610] ----D C:\Program Files\Windows Collaboration
O43 - CFD: 04/02/2010 - 19:29:15 - [4,283] ----D C:\Program Files\Windows Defender
O43 - CFD: 30/07/2012 - 02:31:14 - [6,757] ----D C:\Program Files\Windows Journal
O43 - CFD: 07/02/2010 - 14:00:31 - [0,234] ----D C:\Program Files\Windows Live SkyDrive
O43 - CFD: 17/12/2010 - 09:46:10 - [8,694] ----D C:\Program Files\Windows Mail
O43 - CFD: 15/10/2010 - 09:39:44 - [4,286] ----D C:\Program Files\Windows Media Player
O43 - CFD: 25/09/2007 - 09:30:52 - [7,589] ----D C:\Program Files\Windows NT
O43 - CFD: 04/02/2010 - 19:29:16 - [12,902] ----D C:\Program Files\Windows Photo Gallery
O43 - CFD: 04/02/2010 - 19:29:18 - [7,442] ----D C:\Program Files\Windows Sidebar
O43 - CFD: 24/02/2013 - 14:27:34 - [15,457] ----D C:\Program Files\ZHPDiag
O43 - CFD: 12/02/2013 - 15:28:06 - [3,797] ----D C:\Program Files\Common Files\Adobe
O43 - CFD: 25/11/2007 - 15:00:35 - [43,804] ----D C:\Program Files\Common Files\aol
O43 - CFD: 24/05/2007 - 21:52:03 - [4,055] ----D C:\Program Files\Common Files\aolshare
O43 - CFD: 20/05/2008 - 11:06:48 - [35,166] ----D C:\Program Files\Common Files\Apple
O43 - CFD: 02/08/2011 - 17:49:06 - [35,644] ----D C:\Program Files\Common Files\Business Objects
O43 - CFD: 18/12/2008 - 14:15:14 - [0,034] ----D C:\Program Files\Common Files\France Telecom
O43 - CFD: 30/05/2010 - 18:49:35 - [0,507] ----D C:\Program Files\Common Files\Hewlett-Packard
O43 - CFD: 30/05/2010 - 18:50:29 - [0,639] ----D C:\Program Files\Common Files\HP
O43 - CFD: 24/05/2007 - 21:56:35 - [12,467] ----D C:\Program Files\Common Files\InstallShield
O43 - CFD: 24/02/2013 - 11:28:04 - [29,559] ----D C:\Program Files\Common Files\Java
O43 - CFD: 25/08/2011 - 23:38:02 - [226,489] ----D C:\Program Files\Common Files\microsoft shared
O43 - CFD: 24/05/2007 - 21:52:03 - [2,288] ----D C:\Program Files\Common Files\Nullsoft
O43 - CFD: 13/02/2010 - 15:03:56 - [0] ----D C:\Program Files\Common Files\Real
O43 - CFD: 24/05/2007 - 21:57:49 - [62,525] ----D C:\Program Files\Common Files\Roxio Shared
O43 - CFD: 02/11/2006 - 12:18:33 - [0,003] ----D C:\Program Files\Common Files\Services
O43 - CFD: 07/09/2012 - 04:55:09 - [2,056] ----D C:\Program Files\Common Files\Skype
O43 - CFD: 24/05/2007 - 21:57:49 - [3,744] ----D C:\Program Files\Common Files\Sonic Shared
O43 - CFD: 02/11/2006 - 12:18:33 - [39,198] ----D C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 24/05/2007 - 21:58:16 - [0,568] ----D C:\Program Files\Common Files\SureThing Shared
O43 - CFD: 06/04/2009 - 11:00:34 - [0,564] ----D C:\Program Files\Common Files\Symantec Shared
O43 - CFD: 10/11/2011 - 13:32:15 - [8,333] ----D C:\Program Files\Common Files\System
O43 - CFD: 07/02/2010 - 13:25:26 - [0] ----D C:\Program Files\Common Files\Windows Live
O43 - CFD: 18/02/2008 - 19:03:48 - [0,019] -SH-D C:\Program Files\Common Files\WindowsLiveInstaller
O43 - CFD: 12/02/2013 - 15:30:01 - [134,049] ----D C:\ProgramData\Adobe
O43 - CFD: 01/02/2010 - 17:27:20 - [91,314] ----D C:\ProgramData\Alwil Software
O43 - CFD: 24/05/2007 - 21:52:44 - [40,063] ----D C:\ProgramData\AOL
O43 - CFD: 20/05/2008 - 11:06:42 - [42,335] ----D C:\ProgramData\Apple
O43 - CFD: 20/05/2008 - 11:13:25 - [80,735] ----D C:\ProgramData\Apple Computer
O43 - CFD: 02/11/2006 - 14:02:03 - [0] ----D C:\ProgramData\Application Data
O43 - CFD: 01/09/2012 - 09:02:34 - [0] ----D C:\ProgramData\Ask
O43 - CFD: 24/05/2007 - 21:47:11 - [0,005] ----D C:\ProgramData\Atheros
O43 - CFD: 29/01/2010 - 21:19:01 - [0,013] ----D C:\ProgramData\Bluetooth
O43 - CFD: 12/09/2009 - 13:32:58 - [0,545] ----D C:\ProgramData\Brother
O43 - CFD: 25/09/2007 - 09:30:52 - [0] ----D C:\ProgramData\Bureau
O43 - CFD: 25/11/2007 - 15:00:02 - [0,025] ----D C:\ProgramData\Ciel
O43 - CFD: 02/11/2006 - 14:02:03 - [0] ----D C:\ProgramData\Desktop
O43 - CFD: 02/11/2006 - 14:02:03 - [0] ----D C:\ProgramData\Documents
O43 - CFD: 21/05/2010 - 13:39:20 - [0] ----D C:\ProgramData\eMule
O43 - CFD: 25/09/2007 - 09:30:52 - [0] ----D C:\ProgramData\Favoris
O43 - CFD: 02/11/2006 - 14:02:03 - [0] ----D C:\ProgramData\Favorites
O43 - CFD: 31/03/2009 - 10:59:56 - [0,542] ----D C:\ProgramData\Google
O43 - CFD: 01/10/2012 - 10:06:40 - [0,064] ----D C:\ProgramData\Hewlett-Packard
O43 - CFD: 01/10/2012 - 10:24:14 - [7,423] ----D C:\ProgramData\HP
O43 - CFD: 24/05/2007 - 21:58:31 - [0,000] ----D C:\ProgramData\InstallShield
O43 - CFD: 05/04/2009 - 20:10:52 - [16,709] ----D C:\ProgramData\Malwarebytes
O43 - CFD: 25/09/2007 - 09:30:52 - [0] ----D C:\ProgramData\Menu D�marrer
O43 - CFD: 19/11/2010 - 08:55:01 - [246,362] ----D C:\ProgramData\Microsoft
O43 - CFD: 25/09/2007 - 09:30:52 - [0] ----D C:\ProgramData\Mod�les
O43 - CFD: 29/08/2012 - 18:04:47 - [0,034] ----D C:\ProgramData\Mozilla
O43 - CFD: 01/02/2009 - 11:41:23 - [0] ----D C:\ProgramData\NCH Software
O43 - CFD: 24/05/2007 - 22:21:01 - [0,002] ----D C:\ProgramData\OFFICE One v7
O43 - CFD: 20/02/2013 - 12:46:24 - [0] ----D C:\ProgramData\PDF Architect
O43 - CFD: 22/07/2009 - 18:36:26 - [0,025] ----D C:\ProgramData\Pinnacle
O43 - CFD: 23/11/2010 - 08:52:38 - [0,000] ----D C:\ProgramData\Pixela
O43 - CFD: 23/04/2008 - 11:04:10 - [0,015] ----D C:\ProgramData\Roxio
O43 - CFD: 07/09/2012 - 04:55:41 - [68,602] ----D C:\ProgramData\Skype
O43 - CFD: 06/07/2011 - 19:25:35 - [9,318] ----D C:\ProgramData\Skype Extras
O43 - CFD: 28/09/2007 - 18:38:24 - [0,001] ----D C:\ProgramData\Sonic
O43 - CFD: 02/11/2006 - 14:02:03 - [0] ----D C:\ProgramData\Start Menu
O43 - CFD: 05/01/2011 - 08:49:12 - [0,000] ----D C:\ProgramData\Sun
O43 - CFD: 06/04/2009 - 10:32:28 - [0] ----D C:\ProgramData\Symantec
O43 - CFD: 02/11/2006 - 14:02:04 - [0] ----D C:\ProgramData\Templates
O43 - CFD: 10/12/2009 - 11:50:35 - [0,000] ----D C:\ProgramData\Vodafone
O43 - CFD: 30/05/2010 - 19:27:32 - [0,000] ----D C:\ProgramData\WEBREG
O43 - CFD: 22/02/2012 - 20:42:52 - [0] ----D C:\ProgramData\WindowsSearch
O43 - CFD: 06/04/2009 - 09:53:19 - [0] ----D C:\ProgramData\WinZip
O43 - CFD: 18/02/2008 - 18:57:41 - [0,214] ----D C:\ProgramData\WLInstaller
O43 - CFD: 12/02/2013 - 15:28:53 - [6,847] ----D C:\Users\Jeff\AppData\Roaming\Adobe
O43 - CFD: 26/09/2007 - 12:36:56 - [0,972] ----D C:\Users\Jeff\AppData\Roaming\AOL
O43 - CFD: 20/05/2008 - 11:14:25 - [0,154] ----D C:\Users\Jeff\AppData\Roaming\Apple Computer
O43 - CFD: 26/09/2007 - 12:10:44 - [0] ----D C:\Users\Jeff\AppData\Roaming\ATI
O43 - CFD: 09/02/2013 - 01:51:15 - [0,024] ----D C:\Users\Jeff\AppData\Roaming\Audacity
O43 - CFD: 12/09/2009 - 13:42:47 - [0] R---D C:\Users\Jeff\AppData\Roaming\Brother
O43 - CFD: 26/01/2013 - 18:03:08 - [31,709] ----D C:\Users\Jeff\AppData\Roaming\Dropbox
O43 - CFD: 25/11/2007 - 14:58:28 - [0] ----D C:\Users\Jeff\AppData\Roaming\Google
O43 - CFD: 22/02/2013 - 08:38:50 - [0,000] ----D C:\Users\Jeff\AppData\Roaming\gtk-2.0
O43 - CFD: 10/06/2010 - 11:11:00 - [0,056] ----D C:\Users\Jeff\AppData\Roaming\HP
O43 - CFD: 25/09/2007 - 09:40:19 - [0] ----D C:\Users\Jeff\AppData\Roaming\Identities
O43 - CFD: 26/09/2007 - 12:36:55 - [0,003] ----D C:\Users\Jeff\AppData\Roaming\Macromedia
O43 - CFD: 05/04/2009 - 20:10:58 - [0] ----D C:\Users\Jeff\AppData\Roaming\Malwarebytes
O43 - CFD: 02/11/2006 - 13:37:34 - [0] ----D C:\Users\Jeff\AppData\Roaming\Media Center Programs
O43 - CFD: 21/02/2013 - 22:32:21 - [0,000] ----D C:\Users\Jeff\AppData\Roaming\Media Player Classic
O43 - CFD: 25/08/2012 - 12:48:43 - [1,493] -S--D C:\Users\Jeff\AppData\Roaming\Microsoft
O43 - CFD: 02/01/2009 - 17:41:55 - [15,503] ----D C:\Users\Jeff\AppData\Roaming\Mozilla
O43 - CFD: 01/02/2009 - 11:43:05 - [3,581] ----D C:\Users\Jeff\AppData\Roaming\NCH Software
O43 - CFD: 25/09/2007 - 09:40:51 - [0,000] ----D C:\Users\Jeff\AppData\Roaming\OFFICE One v7
O43 - CFD: 23/02/2013 - 18:36:06 - [5,834] ----D C:\Users\Jeff\AppData\Roaming\OFFICEOne7
O43 - CFD: 25/11/2007 - 14:56:21 - [0,158] ----D C:\Users\Jeff\AppData\Roaming\Packard Bell
O43 - CFD: 13/02/2013 - 20:21:11 - [0,007] ----D C:\Users\Jeff\AppData\Roaming\PDF Architect
O43 - CFD: 12/02/2013 - 16:31:17 - [0,001] ----D C:\Users\Jeff\AppData\Roaming\pdfforge
O43 - CFD: 06/04/2008 - 12:34:19 - [8,898] ----D C:\Users\Jeff\AppData\Roaming\Roxio
O43 - CFD: 28/07/2010 - 18:12:36 - [0,170] ----D C:\Users\Jeff\AppData\Roaming\SFR
O43 - CFD: 07/09/2012 - 05:06:44 - [3,850] ----D C:\Users\Jeff\AppData\Roaming\Skype
O43 - CFD: 07/07/2011 - 22:08:53 - [0,061] ----D C:\Users\Jeff\AppData\Roaming\skypePM
O43 - CFD: 26/09/2007 - 12:28:14 - [0,018] ----D C:\Users\Jeff\AppData\Roaming\Talkback
O43 - CFD: 04/12/2008 - 12:34:11 - [0,105] ----D C:\Users\Jeff\AppData\Roaming\U3
O43 - CFD: 25/05/2010 - 13:27:33 - [0,545] ----D C:\Users\Jeff\AppData\Roaming\Uniblue
O43 - CFD: 23/02/2013 - 20:06:27 - [4,872] ----D C:\Users\Jeff\AppData\Roaming\uTorrent
O43 - CFD: 08/12/2009 - 17:38:43 - [5,774] ----D C:\Users\Jeff\AppData\Roaming\Vodafone
O43 - CFD: 26/02/2008 - 13:46:52 - [53,490] ----D C:\Users\Jeff\AppData\Local\Adobe
O43 - CFD: 25/09/2007 - 09:41:09 - [0,131] ----D C:\Users\Jeff\AppData\Local\AOL
O43 - CFD: 24/02/2013 - 11:38:29 - [0,000] ----D C:\Users\Jeff\AppData\Local\APN
O43 - CFD: 20/05/2008 - 11:08:49 - [79,803] ----D C:\Users\Jeff\AppData\Local\Apple
O43 - CFD: 20/05/2008 - 11:30:26 - [0,693] ----D C:\Users\Jeff\AppData\Local\Apple Computer
O43 - CFD: 25/09/2007 - 09:36:03 - [0] ----D C:\Users\Jeff\AppData\Local\Application Data
O43 - CFD: 23/11/2010 - 08:54:13 - [0,028] ----D C:\Users\Jeff\AppData\Local\ApplicationHistory
O43 - CFD: 06/02/2009 - 10:59:15 - [0] ----D C:\Users\Jeff\AppData\Local\Apps
O43 - CFD: 26/09/2007 - 12:10:44 - [0,047] ----D C:\Users\Jeff\AppData\Local\ATI
O43 - CFD: 22/07/2009 - 18:35:54 - [134,535] ----D C:\Users\Jeff\AppData\Local\Downloaded Installations
O43 - CFD: 21/05/2010 - 13:39:20 - [1,214] ----D C:\Users\Jeff\AppData\Local\eMule
O43 - CFD: 14/12/2011 - 12:21:51 - [0,000] ----D C:\Users\Jeff\AppData\Local\Google
O43 - CFD: 25/09/2007 - 09:36:03 - [0,282] -SH-D C:\Users\Jeff\AppData\Local\Historique
O43 - CFD: 30/05/2010 - 19:07:19 - [0] ----D C:\Users\Jeff\AppData\Local\HP
O43 - CFD: 02/08/2011 - 17:55:13 - [1,136] ----D C:\Users\Jeff\AppData\Local\IsolatedStorage
O43 - CFD: 25/08/2012 - 12:48:43 - [0] ----D C:\Users\Jeff\AppData\Local\Macromedia
O43 - CFD: 25/08/2012 - 12:48:43 - [157,583] ----D C:\Users\Jeff\AppData\Local\Microsoft
O43 - CFD: 29/03/2011 - 16:58:37 - [0,089] ----D C:\Users\Jeff\AppData\Local\Microsoft Games
O43 - CFD: 25/09/2007 - 09:40:02 - [78,947] ----D C:\Users\Jeff\AppData\Local\Mozilla
O43 - CFD: 06/02/2010 - 21:56:49 - [0] ----D C:\Users\Jeff\AppData\Local\PIXELA
O43 - CFD: 31/10/2011 - 11:35:35 - [0,019] ----D C:\Users\Jeff\AppData\Local\PSU
O43 - CFD: 29/07/2010 - 11:27:28 - [0,001] ----D C:\Users\Jeff\AppData\Local\SFR
O43 - CFD: 24/02/2013 - 14:25:25 - [22,683] ----D C:\Users\Jeff\AppData\Local\temp
O43 - CFD: 25/09/2007 - 09:36:03 - [0] ----D C:\Users\Jeff\AppData\Local\Temporary Internet Files
O43 - CFD: 25/09/2007 - 09:41:26 - [130,228] ----D C:\Users\Jeff\AppData\Local\VirtualStore
O43 - CFD: 08/12/2009 - 17:36:14 - [11,083] ----D C:\Users\Jeff\AppData\Local\{D53238E8-3427-491E-A57E-097FA966AAC1}
O43 - CFD: 02/11/2006 - 13:54:36 - [0,014] R---D C:\Users\Jeff\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 25/09/2007 - 09:40:30 - [0,000] R---D C:\Users\Jeff\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 02/04/2009 - 08:43:18 - [0,003] ----D C:\Users\Jeff\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 26/01/2013 - 12:23:26 - [0,002] ----D C:\Users\Jeff\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
O43 - CFD: 02/11/2006 - 13:50:41 - [0,001] R---D C:\Users\Jeff\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 26/01/2013 - 18:09:46 - [0,000] R---D C:\Users\Jeff\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 01/06/2010 - 10:03:06 - [0] ----D C:\Users\Jeff\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TimeAdjuster
~ Scan Program Folder in 00mn 26s



---\\ Derniers fichiers modifi�s ou cr�es sous Windows et System32 (O44)
O44 - LFC:[MD5.FC7EB3F93A63454CE09F6E73CE61D242] - 24/02/2013 - 13:16:55 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1255722]
O44 - LFC:[MD5.5D6B05CC2934168680D249AE5B829B17] - 24/02/2013 - 13:12:57 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.674F852FAE7E686F74EF11A4FE44ED21] - 24/02/2013 - 11:27:08 ---A- . (.Oracle Corporation - Pas de description.) -- C:\Windows\System32\WindowsAccessBridge.dll [94112]
O44 - LFC:[MD5.0BB7DBD90C9124CF45299513FE16D082] - 24/02/2013 - 11:26:55 ---A- . (.Oracle Corporation - Java(TM) Web Start Launcher.) -- C:\Windows\System32\javaws.exe [262560]
O44 - LFC:[MD5.959063AAAC7E288B1AF52F94D9C22188] - 24/02/2013 - 11:26:54 ---A- . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Windows\System32\javaw.exe [174496]
O44 - LFC:[MD5.D06B12E04934D268822F52C17EDDE7A8] - 24/02/2013 - 11:26:53 ---A- . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Windows\System32\java.exe [174496]
O44 - LFC:[MD5.1B197A0ED28DB310AB67591567C3787A] - 24/02/2013 - 11:26:52 ---A- . (.Oracle Corporation - NPRuntime Script Plug-in Library for Java(T.) -- C:\Windows\System32\npdeployJava1.dll [861088]
O44 - LFC:[MD5.441104963F07A84A64DE3C3244909388] - 24/02/2013 - 11:26:51 ---A- . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Windows\System32\deployJava1.dll [782240]
O44 - LFC:[MD5.289048D6ED9407CD9FEE7CCC7845E8B5] - 22/02/2013 - 15:42:51 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.TMP [5242]
O44 - LFC:[MD5.113200AD8A9606941F9C690031F76C98] - 22/02/2013 - 15:41:38 ---A- . (...) -- C:\Windows\setupact.log [695]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 22/02/2013 - 15:41:35 ---A- . (...) -- C:\Windows\setuperr.log [0]
O44 - LFC:[MD5.14B7E7EA73FEDFCBD323A6AC4175ADCF] - 21/02/2013 - 09:23:00 ---A- . (...) -- C:\Windows\System32\FNTCACHE.DAT [661824]
O44 - LFC:[MD5.DA32E0D240146EB2481B7D4C3C358C3E] - 12/02/2013 - 16:31:11 ---A- . (.pdfforge GbR - pdfcmon.) -- C:\Windows\System32\pdfcmon.dll [88576]
O44 - LFC:[MD5.6280A479148CAEAD59E17A0CC3789161] - 08/02/2013 - 12:29:19 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\Windows\System32\FlashPlayerApp.exe [697712]
O44 - LFC:[MD5.3E5633C0E3B4FE04E6EBFFA597227617] - 08/02/2013 - 12:29:19 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [74096]
O44 - LFC:[MD5.1E41934BC23AB3279819C1469AF870F4] - 02/02/2013 - 11:19:21 ---A- . (...) -- C:\Windows\System32\jupdate-1.6.0_39-b04.log [3535]
~ Scan Files in 00mn 34s



---\\ D�ni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l'�diteur de configuration de s�curit� Windows.) -- C:\Windows\System32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de s�curit� Kerberos.) -- C:\Windows\System32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll
~ Scan Keys in 00mn 00s



---\\ Contr�le du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmboot.sys . (...) -- C:\Windows\System32\Drivers\dmboot.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmio.sys . (...) -- C:\Windows\System32\Drivers\dmio.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmload.sys . (...) -- C:\Windows\System32\Drivers\dmload.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris s�rie.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sr.sys . (...) -- C:\Windows\System32\Drivers\sr.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Volume Manager Extension Driver.) -- C:\Windows\System32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmboot.sys . (...) -- C:\Windows\System32\Drivers\dmboot.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmio.sys . (...) -- C:\Windows\System32\Drivers\dmio.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmload.sys . (...) -- C:\Windows\System32\Drivers\dmload.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ip6fw.sys . (...) -- C:\Windows\System32\Drivers\ip6fw.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpcdd.sys . (.Microsoft Corporation - RDP Miniport.) -- C:\Windows\System32\Drivers\rdpcdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpdd.sys . (...) -- C:\Windows\System32\Drivers\rdpdd.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpwd.sys . (.Microsoft Corporation - RDP Terminal Stack Driver.) -- C:\Windows\System32\Drivers\rdpwd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris s�rie.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sr.sys . (...) -- C:\Windows\System32\Drivers\sr.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\tdpipe.sys . (.Microsoft Corporation - Named Pipe Transport Driver.) -- C:\Windows\System32\Drivers\tdpipe.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\tdtcp.sys . (.Microsoft Corporation - TCP Transport Driver.) -- C:\Windows\System32\Drivers\tdtcp.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Volume Manager Extension Driver.) -- C:\Windows\System32\Drivers\volmgrx.sys
~ Scan CSB in 00mn 00s



---\\ MountPoints2 Shell Key (O51) (None)

---\\ Trojan Driver Search Data (HKLM) (O52)
O52 - TDSD: \Drivers32\"vidc.i420"="i420vfw.dll" . (.www.helixcommunity.org - Helix I420 YUV Codec.) -- C:\Windows\System32\i420vfw.dll
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Codec Cinepak�.) -- C:\Windows\System32\iccvid.dll
O52 - TDSD: \Drivers32\"VIDC.XVID"="xvidvfw.dll" . (...) -- C:\Windows\System32\xvidvfw.dll
O52 - TDSD: \Drivers32\"VIDC.YV12"="yv12vfw.dll" . (.www.helixcommunity.org - Helix YV12 YUV Codec.) -- C:\Windows\System32\yv12vfw.dll
O52 - TDSD: \Drivers32\"msacm.ac3acm"="ac3acm.acm" . (.fccHandler - AC-3 ACM Codec.) -- C:\Windows\System32\ac3acm.acm
O52 - TDSD: \Drivers32\"msacm.lameacm"="lameACM.acm" . (.http://www.mp3dev.org/ - Lame MP3 codec engine.) -- C:\Windows\System32\lameACM.acm
O52 - TDSD: \Drivers32\"VIDC.FFDS"="ff_vfw.dll" . (...) -- C:\Windows\System32\ff_vfw.dll
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \drivers.desc\"ac3acm.acm"="AC-3 ACM Codec" . (.fccHandler - AC-3 ACM Codec.) -- C:\Windows\System32\ac3acm.acm
O52 - TDSD: \drivers.desc\"ff_vfw.dll"="ffdshow video encoder" . (...) -- C:\Windows\System32\ff_vfw.dll
~ Scan Keys in 00mn 00s



---\\ ShareTools MSconfig StartupReg (O53)
O53 - SMSR:HKLM\...\startupreg\AOL Fast Start [Key] . (.AOL - AOL.) -- C:\Program Files\AOL 9.0 VR\AOL.exe
O53 - SMSR:HKLM\...\startupreg\HostManager [Key] . (.America Online, Inc. - AOL.) -- C:\Program Files\Common Files\AOL\1180039809\ee\AOLSoftware.exe
O53 - SMSR:HKLM\...\startupreg\Picasa Media Detector [Key] . (.Google Inc. - Picasa.) -- C:\Program Files\Picasa2\PicasaMediaDetector.exe
O53 - SMSR:HKLM\...\startupreg\RoxWatchTray [Key] . (.Sonic Solutions - RoxMMTrayApp Module.) -- C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
O53 - SMSR:HKLM\...\startupreg\Samsung PanelMgr [Key] . (...) -- C:\Windows\Samsung\PanelMgr\SSMMgr.exe
O53 - SMSR:HKLM\...\startupreg\toolbar_eula_launcher [Key] . (...) -- C:\Program Files\Packard Bell\GOOGLE_EULA\EULALauncher.exe
~ Scan SMSR Keys in 00mn 00s



---\\ Microsoft Control Security Providers (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - TS Single Sign On Security Package.) -- C:\Windows\System32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - TS Single Sign On Security Package.) -- C:\Windows\System32\credssp.dll
~ Scan Keys in 00mn 00s



---\\ Microsoft Windows Policies System (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=2
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=0
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "UacDisableNotify"=0
O55 - MWPS:[HKLM\...\Policies\System] - "DisableRegistryTools"=0
~ Scan Keys in 00mn 00s



---\\ Microsoft Windows Policies Explorer (O56)
O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveAutoRun"=0
O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveTypeAutoRun"=145
O56 - MWPE:[HKCU\...\policies\Explorer] - "HonorAutoRunSetting"=1
O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDrives"=0
O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDesktop"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoDriveAutoRun"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoDriveTypeAutoRun"=145
O56 - MWPE:[HKLM\...\policies\Explorer] - "HonorAutoRunSetting"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "BindDirectlyToPropertySetStorage"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoDrives"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoDesktop"=0
~ Scan Keys in 00mn 00s



---\\ Liste des Drivers Syst�me (O58)
O58 - SDL:[MD5.2EDC5BBAC6C651ECE337BDE8ED97C9FB] - 02/11/2006 - 10:51:38 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [420968]
O58 - SDL:[MD5.8AAD333C876590293F72B315E162BCC7] - 02/11/2006 - 08:09:42 ---A- . (...) -- C:\Windows\System32\ANSI.SYS [9029]
~ Scan Drivers in 00mn 00s



---\\ Liste des outils de nettoyage (O63)
O63 - Logiciel: ZHPDiag 1.3.5 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
O63 - Logiciel: Toolbar SD - (.IDN Team.)
~ Scan ADS in 00mn 00s



---\\ Liste des services Legacy (O64)
O64 - Services: CurCS - 30/10/2012 - C:\Windows\System32\Drivers\aswFsBlk.sys (aswFsBlk) .(.AVAST Software - avast! File System Access Blocking Driver.) - LEGACY_ASWFSBLK
O64 - Services: CurCS - 30/10/2012 - C:\Windows\system32\drivers\aswMonFlt.sys (aswMonFlt) .(.AVAST Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT
O64 - Services: CurCS - 30/10/2012 - C:\Windows\System32\Drivers\aswRdr.sys (aswRdr) .(.AVAST Software - avast! TDI Redirect Driver.) - LEGACY_ASWRDR
O64 - Services: CurCS - 30/10/2012 - C:\Windows\System32\Drivers\aswSnx.sys (aswSnx) .(.AVAST Software - avast! Virtualization Driver.) - LEGACY_ASWSNX
O64 - Services: CurCS - 30/10/2012 - C:\Windows\System32\Drivers\aswSP.sys (aswSP) .(.AVAST Software - avast! self protection module.) - LEGACY_ASWSP
O64 - Services: CurCS - 30/10/2012 - C:\Windows\System32\Drivers\aswTdi.sys (aswTdi) .(.AVAST Software - avast! TDI Filter Driver.) - LEGACY_ASWTDI
O64 - Services: CurCS - 28/11/2006 - C:\Windows\System32\Drivers\PCAMp50.sys (PCAMp50) .(.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 MPR Protocol Driver.) - LEGACY_PCAMP50
O64 - Services: CurCS - 28/11/2006 - C:\Windows\System32\Drivers\PCASp50.sys (PCASp50) .(.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 SPR Protocol Driver.) - LEGACY_PCASP50
O64 - Services: CurCS - 02/11/2006 - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV
O64 - Services: CurCS - ??\??\???? - C:\Windows\System32\Drivers\sptd.sys - sptd (sptd) .(...) - LEGACY_SPTD
O64 - Services: CurCS - 09/06/2010 - C:\Windows\system32\Drivers\SSPORT.sys (SSPORT) .(.Samsung Electronics - 32bit Port Contention Driver.) - LEGACY_SSPORT
~ Scan Services in 00mn 00s



---\\ File Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d'�v�nements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - �diteur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O67 - Shell Spawning: <.bat> [HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKCR\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O67 - Shell Spawning: <.cmd> [HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKCR\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d'�v�nements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> [HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKCR\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O67 - Shell Spawning: <.js> [HKCR\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> [HKCR\..\open\Command] (.Microsoft Corporation - �diteur du Registre.) -- C:\Windows\regedit.exe
~ Scan Keys in 00mn 00s



---\\ Start Menu Internet (O68)
O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (.AOL - AOL.) -- C:\Program Files\AOL 9.0 VR\aol.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
~ Scan Keys in 00mn 00s



---\\ Search Browser Infection (O69)
O69 - SBI: C:\Users\Jeff\AppData\Roaming\Mozilla\Firefox\Profiles\bfmnjt6z.default-1361533608465\searchplugins\askcom.xml
O69 - SBI: SearchScopes [HKCU] ${searchCLSID} - (@ieframe.dll,-12512) - http://search.live.com
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - () - http://search.live.com
O69 - SBI: SearchScopes [HKCU] {45544324-6378-4B29-A251-8F816B04F5E4} [DefaultScope] - (Search) - http://start.funmoods.com
O69 - SBI: SearchScopes [HKCU] {A93B9F71-54DD-4C2B-9B03-3DB6BDEA4751} - (Ask Search) - http://websearch.ask.com
O69 - SBI: SearchScopes [HKCU] {E4CDCB53-E308-4225-9E75-84D3A454205C} - (Live Search) - http://search.live.com
~ Scan Keys in 00mn 00s



---\\ Recherche des services d�marr�s par Svchost (O83)
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Exp�rience d�application.) -- C:\Windows\System32\aelupsvc.dll [24576]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux probl�mes.) -- C:\Windows\System32\wercplsupport.dll [62976]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes � puce Microsoft.) -- C:\Windows\System32\certprop.dll [40448]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes � puce Microsoft.) -- C:\Windows\System32\certprop.dll [40448]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [125952]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de strat�gie de groupe.) -- C:\Windows\System32\gpsvc.dll [576512]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [438784]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [315392]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de num�rotation automatique d�acc�s distant.) -- C:\Windows\System32\rasauto.dll [90624]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d'acc�s distant.) -- C:\Windows\System32\rasmans.dll [262144]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d�interface dynamique.) -- C:\Windows\System32\mprdim.dll [68608]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d��v�nements syst�me (SENS).) -- C:\Windows\System32\sens.dll [47104]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance � Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [288256]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de t�l�phonie Microsoft� Windows(TM).) -- C:\Windows\System32\tapisrv.dll [242688]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes Terminal Server.) -- C:\Windows\System32\termsrv.dll [449024]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise � jour automatique Windows Update.) -- C:\Windows\System32\wuaueng.dll [1933848]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arri�re-plan.) -- C:\Windows\System32\qmgr.dll [758784]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivit� IPv6 sur un r�seau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [200704]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll [19968]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d�application.) -- C:\Windows\System32\appinfo.dll [33280]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de d�couverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [111616]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multim�dias.) -- C:\Windows\System32\mmcss.dll [45056]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [153088]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [57344]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [162304]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de t�ches.) -- C:\Windows\System32\schedsvc.dll [601600]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service de configuration des services Terminal Server.) -- C:\Windows\System32\sessenv.dll [84992]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d�ordinateurs.) -- C:\Windows\System32\browser.dll [81920]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des cl�s.) -- C:\Windows\System32\kmsvc.dll [68096]
~ Scan Services in 00mn 00s



---\\ Recherche particuliere � la racine de certains dossiers (O84)
[MD5.A5BC72A6E4B314DFBBA7523589A80993] [SPRF][21/12/2011] (...) -- C:\Users\Jeff\AppData\Local\d3d9caps.dat [1356]
[MD5.147F9AF3296393605CECAA17F1198B77] [SPRF][25/09/2007] (...) -- C:\Users\Jeff\AppData\Local\fusioncache.dat [92]
[MD5.CE755676AE6D27A1EFEEFB0F3C70A929] [SPRF][24/02/2013] (.Ask.com - AskStub Application.) -- C:\Users\Jeff\AppData\Local\Temp\APNStub.exe [358600]
[MD5.3D7CDC3E67A97110321BF7453C649B1F] [SPRF][23/02/2013] (...) -- C:\Users\Jeff\AppData\Local\Temp\DeltaTB.exe [775664]
[MD5.B8D0E42594586243344C6F3341EF38F6] [SPRF][23/02/2013] (.Visicom Media Inc. - File Bulldog Toolbar Installer.) -- C:\Users\Jeff\AppData\Local\Temp\filebulldogTb_1.0.0.8.exe [2486648]
[MD5.5CC163324A11091C975B686EF4C52C73] [SPRF][16/02/2013] (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Users\Jeff\AppData\Local\Temp\jre-7u15-windows-i586-iftw.exe [897448]
[MD5.C969BCFA5CB2A54411FB075D067B71AC] [SPRF][23/02/2013] (.PC Utilities Pro - Fix, clean, optimize your PC!.) -- C:\Users\Jeff\AppData\Local\Temp\OptimizerPro.exe [4159008]
[MD5.D88D453C3DDBE7CD0056B36FFA115573] [SPRF][23/02/2013] (.QuickShare - QuickShare.) -- C:\Users\Jeff\AppData\Local\Temp\QuickShare1.exe [7900944]
[MD5.1A5688ABCF267436AA6EBE1D476B1D06] [SPRF][23/02/2013] (.SmartTweak Software - UpdateMyDrivers Installation.) -- C:\Users\Jeff\AppData\Local\Temp\UpdateMyDrivers.exe [3838392]
[MD5.98FBE98D57147D393B4A23FE744C9A93] [SPRF][24/02/2013] (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Jeff\Desktop\ZHPDiag2.exe [5402780]
[MD5.18075B2C9F0F300BEE209744A8BEC353] [SPRF][05/01/2009] (...) -- C:\Windows\Downloaded Program Files\bdcore.dll [32]
[MD5.8CE7705CB43B03BB7970B04087C7758F] [SPRF][30/06/2006] (.InstallShield Software Corporation - InstallShield Update Service Setup Player Module.) -- C:\Windows\Downloaded Program Files\dwusplay.dll [29616]
[MD5.01E2ECA759056F23C73A035FDABB2D6D] [SPRF][30/06/2006] (.InstallShield Software Corporation - InstallShield Update Service Setup Player.) -- C:\Windows\Downloaded Program Files\dwusplay.exe [201648]
[MD5.2B1C4C87EB20ADDBA59DCA975E28DFFB] [SPRF][05/01/2009] (...) -- C:\Windows\Downloaded Program Files\ipsupd.dll [741376]
[MD5.A54F3D88767BB8C7DC18D8263385DED2] [SPRF][16/05/2007] (.Macrovision Corporation - Macrovision Software Manager Web Agent.) -- C:\Windows\Downloaded Program Files\isusweb.dll [483328]
[MD5.18075B2C9F0F300BEE209744A8BEC353] [SPRF][05/01/2009] (...) -- C:\Windows\Downloaded Program Files\libfn.dll [32]
~ Scan Files in 00mn 01s



---\\ Firewall Active Exception List (FirewallRules) (O87)
O87 - FAEL: "{C4485286-1E7F-4475-98AD-E68DC0607FA2}" | In - Public - P6 - TRUE | .(.AOL LLC - AOL Autoconnect.) -- C:\Program Files\Common Files\aol\acs\AOLDial.exe
O87 - FAEL: "{4482B0D8-125A-4FD0-99C9-FD6518517D11}" | In - Public - P17 - TRUE | .(.AOL LLC - AOL Autoconnect.) -- C:\Program Files\Common Files\aol\acs\AOLDial.exe
O87 - FAEL: "{BD16DBA7-3938-4651-A078-89434B2691D5}" | In - Public - P6 - TRUE | .(.AOL LLC - AOL Connectivity Service.) -- C:\Program Files\Common Files\aol\acs\AOLacsd.exe
O87 - FAEL: "{7F8EB742-0F25-4C2F-ABA3-F17BD94AF68E}" | In - Public - P17 - TRUE | .(.AOL LLC - AOL Connectivity Service.) -- C:\Program Files\Common Files\aol\acs\AOLacsd.exe
O87 - FAEL: "{75023CA3-71EB-47B5-84D4-B6F3B3D4770B}" | In - Public - P6 - TRUE | .(.AOL, LLC. - AOL Software.) -- C:\Program Files\AOL 9.0 VR\waol.exe
O87 - FAEL: "{8061C73B-26E3-49AA-BC08-B96E86C00258}" | In - Public - P17 - TRUE | .(.AOL, LLC. - AOL Software.) -- C:\Program Files\AOL 9.0 VR\waol.exe
O87 - FAEL: "{5CF28A18-4973-438A-BCD4-209C11C21F0B}" | In - Public - P6 - TRUE | .(.AOL LLC - AOL TopSpeed.) -- C:\Program Files\Common Files\aol\TopSpeed\3.0\aoltpsd3.exe
O87 - FAEL: "{FA472820-C542-44B7-A9DF-C041AE4AF471}" | In - Public - P17 - TRUE | .(.AOL LLC - AOL TopSpeed.) -- C:\Program Files\Common Files\aol\TopSpeed\3.0\aoltpsd3.exe
O87 - FAEL: "{82189605-0F08-4CA1-BFA5-0A93F5FFD8EB}" | In - Public - P6 - TRUE | .(.AOL LLC - AOL Loader.) -- C:\Program Files\Common Files\aol\Loader\aolload.exe
O87 - FAEL: "{5E73B93B-BCE4-4936-B5D4-1347CFC75FAB}" | In - Public - P17 - TRUE | .(.AOL LLC - AOL Loader.) -- C:\Program Files\Common Files\aol\Loader\aolload.exe
O87 - FAEL: "{F761FB81-43F1-49D2-B376-428C1641D980}" | In - Public - P6 - TRUE | .(.AOL LLC - System Information Application.) -- C:\Program Files\Common Files\aol\System Information\sinf.exe
O87 - FAEL: "{A2E78BBC-2072-41CC-91A2-AFFE02798F17}" | In - Public - P17 - TRUE | .(.AOL LLC - System Information Application.) -- C:\Program Files\Common Files\aol\System Information\sinf.exe
O87 - FAEL: "{A9959F99-12EF-4564-A5CD-A54DD5EFCBD7}" | In - Public - P6 - TRUE | .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe
O87 - FAEL: "{63861214-B769-4F56-8928-10D4BB300A31}" | In - Public - P6 - TRUE | .(.Apple Inc. - iTunes.) -- C:\Program Files\iTunes\iTunes.exe
O87 - FAEL: "{AE369D16-DEAB-4613-B401-7C6DD1E5896A}" | In - Public - P17 - TRUE | .(.Apple Inc. - iTunes.) -- C:\Program Files\iTunes\iTunes.exe
O87 - FAEL: "{ADB197A4-7A31-471B-9317-A42453AB71F1}" | In - Public - P6 - TRUE | .(.IVT Corporation. - Bluetooth Application.) -- C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
O87 - FAEL: "{B78101C1-1EE8-471F-BFE2-02088922FED6}" | In - Public - P17 - TRUE | .(.IVT Corporation. - Bluetooth Application.) -- C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
O87 - FAEL: "TCP Query User{E1101309-3DDF-485E-B6AF-55027EE81B22}C:\program files\emule\emule.exe" | In - Public - P6 - TRUE | .(.http://www.emule-project.net - eMule.) -- C:\program files\emule\emule.exe
O87 - FAEL: "UDP Query User{5660E82E-A3C2-477B-A437-FD269B17F4BF}C:\program files\emule\emule.exe" | In - Public - P17 - TRUE | .(.http://www.emule-project.net - eMule.) -- C:\program files\emule\emule.exe
O87 - FAEL: "TCP Query User{84D0898A-7BEA-42F9-ADC5-B59A06B992CE}C:\program files\mozilla firefox\firefox.exe" | In - Public - P6 - TRUE | .(.Mozilla Corporation - Firefox.) -- C:\program files\mozilla firefox\firefox.exe
O87 - FAEL: "UDP Query User{F167FA69-CCD7-4D11-AEEB-E076AE979B64}C:\program files\mozilla firefox\firefox.exe" | In - Public - P17 - TRUE | .(.Mozilla Corporation - Firefox.) -- C:\program files\mozilla firefox\firefox.exe
O87 - FAEL: "{1F503A61-AD69-451B-B111-D2AC3B36AFE5}" | In - Public - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe
O87 - FAEL: "{CCDB82B2-A786-4A16-9021-08E94D5CA3A2}" | In - Public - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe
O87 - FAEL: "{8F524352-6DA1-409B-BF27-2CF94981DD42}" | In - None - P6 - TRUE | .(.BitTorrent, Inc. - �Torrent.) -- C:\Program Files\uTorrent\uTorrent.exe
O87 - FAEL: "{748C882A-47A1-4E85-9269-FB8D730B9E4D}" | In - None - P17 - TRUE | .(.BitTorrent, Inc. - �Torrent.) -- C:\Program Files\uTorrent\uTorrent.exe
O87 - FAEL: "TCP Query User{F1BA01CF-2A9F-4C41-B198-AF48310B652F}C:\program files\mozilla firefox\plugin-container.exe" | In - Public - P6 - TRUE | .(.Mozilla Corporation.) -- C:\program files\mozilla firefox\plugin-container.exe
O87 - FAEL: "UDP Query User{5BE52793-F480-42D3-9156-D872FD2793F4}C:\program files\mozilla firefox\plugin-container.exe" | In - Public - P17 - TRUE | .(.Mozilla Corporation.) -- C:\program files\mozilla firefox\plugin-container.exe
O87 - FAEL: "{48390D04-58D4-4C0A-BB69-5C9629B7D7F6}" | In - Public - P6 - TRUE | .(.Dropbox, Inc. - Dropbox.) -- C:\Users\Jeff\AppData\Roaming\Dropbox\bin\Dropbox.exe
O87 - FAEL: "{7BE57F51-044A-471D-8E29-DBB29138DD5D}" | In - Public - P17 - TRUE | .(.Dropbox, Inc. - Dropbox.) -- C:\Users\Jeff\AppData\Roaming\Dropbox\bin\Dropbox.exe
~ Scan Firewall in 00mn 02s



---\\ Scan Additionnel (O88)
Database Version : v2.10854 - (23/02/2013)
Cl�s trouv�es (Keys found) : 59
Valeurs trouv�es (Values found) : 3
Dossiers trouv�s (Folders found) : 3
Fichiers trouv�s (Files found) : 0

[HKLM\Software\Classes\CLSID\{35b8892d-c3fb-4d88-990d-31db2ebd72bd}] =>Adware.RecordNRip
[HKLM\Software\Classes\Interface\{3f607e46-0d3c-4442-b1de-de7fa4768f5c}] =>Adware.RecordNRip
[HKLM\Software\Classes\TypeLib\{93e3d79c-0786-48ff-9329-93bc9f6dc2b3}] =>Adware.RecordNRip
[HKLM\Software\Classes\Interface\{fe0273d1-99df-4ac0-87d5-1371c6271785}] =>Adware.RecordNRip
[HKLM\Software\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}] =>Toolbar.AskTBar
[HKLM\Software\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}] =>Adware.AskSBAR
[HKLM\Software\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}] =>Toolbar.Ask
[HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}] =>Adware.Yontoo
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}] =>Toolbar.Agent
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}] =>Toolbar.Agent
[HKLM\Software\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}] =>Toolbar.Ask
[HKLM\Software\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}] =>Adware.AskSBAR
[HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}] =>Adware.AskSBAR
[HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}] =>Adware.AskSBAR
[HKLM\Software\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}] =>Toolbar.Ask
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}] =>Toolbar.Agent
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}] =>Toolbar.Agent
[HKLM\Software\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}] =>Adware.AskSBAR
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}] =>Adware.AskSBAR
[HKLM\Software\Classes\AppID\Complitly.DLL] =>Adware.PredictAd
[HKLM\Software\Classes\AppID\GenericAskToolbar.DLL] =>Adware.AskSBAR
[HKLM\Software\Classes\GenericAskToolbar.ToolbarWnd] =>Adware.AskSBAR
[HKLM\Software\Classes\GenericAskToolbar.ToolbarWnd.1] =>Adware.AskSBAR
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED] =>Toolbar.Ask
[HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF] =>Toolbar.AVGSearch
[HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF] =>Toolbar.AVGSearch
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF] =>Toolbar.AVGSearch
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9] =>Adware.MyWebSearch
[HKCU\Software\1ClickDownload] =>PUP.1ClickDownloader
[HKCU\Software\APN] =>Toolbar.Ask
[HKLM\Software\APN] =>Toolbar.Ask
[HKCU\Software\Ask.com] =>Toolbar.AskBar
[HKCU\Software\AppDataLow\Software\AskToolbar] =>Toolbar.AskTBar
[HKLM\Software\AskToolbar] =>Toolbar.AskTBar
[HKLM\Software\SimplyGen] =>Adware.PredictAd
[HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}] =>Toolbar.AskBar
[HKLM\Software\Classes\Prod.cap] =>Adware.Bandoo
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2] =>Toolbar.Ask
[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] =>Toolbar.Bing
[HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] =>Toolbar.Bing
[HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks]:{00000000-6E41-4FD3-8538-502F5495E5FC} =>Adware.ShopperReports
[HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{D4027C7F-154A-4066-A1AD-4243D8127440} =>Adware.AskSBAR
[HKLM\Software\Microsoft\Windows\CurrentVersion\Run]:ApnUpdater =>Adware.GameSpyArcade
C:\Program Files\Ask.com =>Toolbar.AskBar
C:\Users\Jeff\AppData\LocalLow\AskToolbar =>Toolbar.AskTBar
C:\Users\Jeff\AppData\Roaming\Mozilla\Firefox\Profiles\bfmnjt6z.default-1361533608465\Extensions\toolbar@ask.com =>Toolbar.AskTBar
~ Scan Additionnel in 00mn 26s



---\\ Product Upgrade Codes (O90)
O90 - PUC: "1B3F9E905692B8D36F42F2449DB9350B" . (.Catalyst Control Center Graphics Light.) -- C:\Windows\Installer\{09E9F3B1-2965-3D8B-F624-2F44D99B53B0}\ARPPRODUCTICON.exe
O90 - PUC: "20AC859F04BB700498B452789254E64E" . (.QuickTime.) -- C:\Windows\Installer\{F958CA02-BB40-4007-894B-258729456EE4}\Installer.ico
O90 - PUC: "2A7527EE2A93F2D4D9CA9F2FB5A81E8D" . (.Skype� 5.10.) -- C:\Windows\Installer\{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}\SkypeIcon.exe
O90 - PUC: "32178270CA8BEC143864D37727543CB5" . (.Bonjour.) -- C:\Windows\Installer\{07287123-B8AC-41CE-8346-3D777245C35B}\Installer.ico
O90 - PUC: "393793D005B925c4485D773E4482F978" . (.Roxio Creator Data.) -- C:\Windows\Installer\{0D397393-9B50-4c52-84D5-77E344289F87}\RoxioCentral.exe
O90 - PUC: "41DC8ECD5FBF46449B4A1EE87453647C" . (.Assistant de connexion Windows Live.) -- C:\Windows\Installer\{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}\prodicon.ico
O90 - PUC: "46B5A9879DD95AB419A50FCFA0B1B7EF" . (.Apple Software Update.) -- C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\Installer.ico
O90 - PUC: "51FA89FAE161CE240980C1FCB98B9316" . (.Bluesoleil3.2.1.2 Release 070314.) -- C:\Windows\Installer\{AF98AF15-161E-42EC-9008-1CCF9BB83961}\ARPPRODUCTICON.exe
O90 - PUC: "5A5DBFD7B88F87DE5EDFBF991483BB52" . (.ccc-utility.) -- C:\Windows\Installer\{7DFBD5A5-F88B-ED78-E5FD-FB994138BB25}\ARPPRODUCTICON.exe
O90 - PUC: "68AB67CA7DA746454382080000000030" . (.Spelling Dictionaries Support For Adobe Reader 8.) -- C:\Windows\Installer\{AC76BA86-7AD7-5464-3428-800000000003}\ARPPRODUCTICON.exe
O90 - PUC: "68AB67CA7DA76301B744AA0100000010" . (.Adobe Reader X (10.1.6) - Fran�ais.) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AA1000000001}\SC_Reader.ico
O90 - PUC: "68C0BF7B4A142044A93319C26402240A" . (.Roxio Creator 9 LE.) -- C:\Windows\Installer\{B7FB0C86-41A4-4402-9A33-912C462042A0}\ARPPRODUCTICON.exe
O90 - PUC: "723C371F5AAF364DC2DB4A18C8E7CDC8" . (.Catalyst Control Center Graphics Full Existing.) -- C:\Windows\Installer\{F173C327-FAA5-D463-2CBD-A4818C7EDC8C}\ARPPRODUCTICON.exe
O90 - PUC: "74D02AFA3C960304D88F3D47667EF031" . (.Apple Mobile Device Support.) -- C:\Windows\Installer\{AFA20D47-69C3-4030-8DF8-D37466E70F13}\Installer.ico
O90 - PUC: "7692FC6BE18C0C0489510C7547EF1F02" . (.Skype Toolbars.) -- C:\Windows\Installer\{B6CF2967-C81E-40C0-9815-C05774FEF120}\IconUninstallIco
O90 - PUC: "7CFCFF386C886c14782559A85423C528" . (.Roxio Creator Audio.) -- C:\Windows\Installer\{83FFCFC7-88C6-41c6-8752-958A45325C82}\RoxioCentral.exe
O90 - PUC: "7D5ECD5BDDF62C5D6C7B412E466E599C" . (.Catalyst Control Center Core Implementation.) -- C:\Windows\Installer\{B5DCE5D7-6FDD-D5C2-C6B7-14E264E695C9}\ARPPRODUCTICON.exe
O90 - PUC: "7DDFFFA258DE09A4C825D59ABECDB9F8" . (.Microsoft SQL Server 2005 Express Edition (QSRNVIVO).) -- C:\Windows\Installer\{2AFFFDD7-ED85-4A90-8C52-5DA9EBDC9B8F}\ARPIcon.ico
O90 - PUC: "8CDC4930DBAF8de41B4030938367FDFD" . (.Roxio Creator Tools.) -- C:\Windows\Installer\{0394CDC8-FABD-4ed8-B104-03393876DFDF}\RoxioCentral.exe
O90 - PUC: "983B05722D2A359499AC721C2F8A6EDF" . (.Microsoft SQL Server 2005 Tools Express Edition.) -- C:\Windows\Installer\{2750B389-A2D2-4953-99CA-27C1F2A8E6FD}\ARPIcon.ico
O90 - PUC: "98B4807E0E963B641A81F8990D9688DC" . (.Microsoft SQL Server VSS Writer.) -- C:\Windows\Installer\{E7084B89-69E0-46B3-A118-8F99D06988CD}\ARPIco
O90 - PUC: "A28B4D68DEBAA244EB686953B7074FEF" . (.Ask Toolbar.) -- C:\Windows\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}\ARPPRODUCTICON.exe
O90 - PUC: "A8DDC9166B411a34BAC6F0E44EC80E84" . (.Roxio Creator Copy.) -- C:\Windows\Installer\{619CDD8A-14B6-43a1-AB6C-0F4EE48CE048}\RoxioCentral.exe
O90 - PUC: "B0860B8CEADC9084F91983B7D60EF0C7" . (.Roxio Creator 9 LE.) -- C:\Windows\Installer\{C8B0680B-CDAE-4809-9F91-387B6DE00F7C}\RoxioCentral.exe
O90 - PUC: "B5CD061465C43C0D5CDF5FDBDAC388B2" . (.ATI Catalyst Install Manager.) -- C:\Windows\Installer\{4160DC5B-4C56-D0C3-C5FD-F5BDAD3C882B}\ARPPRODUCTICON.exe
O90 - PUC: "CA773FE1A530EB84E87F1DD86303C89E" . (.OFFICE One 7.0.) -- C:\Windows\Installer\{1EF377AC-035A-48BE-8EF7-D18D36308CE9}\soffice.exe
O90 - PUC: "CB6775856DB42DB41AA9D1C64BA404B3" . (.iTunes.) -- C:\Windows\Installer\{585776BC-4BD6-4BD2-A19A-1D6CB44A403B}\Installer.ico
O90 - PUC: "CDBE3516B25A42B6A4C3C58C8FB50EFD" . (.Catalyst Control Center Graphics Full New.) -- C:\Windows\Installer\{6153EBDC-A52B-6B24-4A3C-5CC8F85BE0DF}\ARPPRODUCTICON.exe
O90 - PUC: "CF4A3716D24D6A9625AC3A4069837906" . (.ccc-core-static.) -- C:\Windows\Installer\{6173A4FC-D42D-69A6-52CA-A30496389760}\ARPPRODUCTICON.exe
O90 - PUC: "D5C37EC30F8D0D6D5EBA937A89FB5417" . (.Skins.) -- C:\Windows\Installer\{3CE73C5D-D8F0-D6D0-E5AB-39A798BF4571}\ARPPRODUCTICON.exe
O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" . (.Microsoft Silverlight.) -- c:\Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon
O90 - PUC: "D83BC1B64E2E03a439D3FEEDAB67DAC9" . (.Microsoft Works.) -- C:\Windows\Installer\{6B1CB38D-E2E4-4a30-933D-EFDEBA76AD9C}\Win2Kico.exe
O90 - PUC: "DDB6C50237B7ED245850A990F3532A83" . (.Outil de t�l�chargement Windows Live.) -- C:\Windows\Installer\{205C6BDD-7B73-42DE-8505-9A093F35A238}\RichUpload.ico
O90 - PUC: "EE3C5F35DE50038499B4052B0F5DF0EC" . (.Microsoft SQL Server Setup Support Files (English).) -- C:\Windows\Installer\{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}\ARPIcon.ico
O90 - PUC: "F23D07676EAD94E4C8B83B0FB8B56168" . (.Microsoft SQL Server Native Client.) -- C:\Windows\Installer\{7670D32F-DAE6-4E49-8C8B-B3F08B5B1686}\ARPIco
~ Scan Files in 00mn 00s



---\\ Etat g�n�ral des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SR - | Auto 18/12/2012 65192 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
SS - | Demand 08/02/2013 251248 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
SR - | Auto 23/10/2006 46640 | (AOL ACS) . (.AOL LLC.) - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
SR - | Auto 26/03/2009 132424 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
SR - | Auto 94208 | (ASLDRService) . (...) - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
SR - | Auto 02/02/2007 565248 | (Ati External Event Utility) . (.ATI Technologies Inc..) - C:\Windows\System32\Ati2evxx.exe
SR - | Auto 30/10/2012 44808 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
SR - | Auto 12/12/2008 238888 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe
SS - | Auto 05/02/2013 136176 | (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 05/02/2013 136176 | (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 26/05/2009 182768 | (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
SS - | Demand 14/11/2005 69632 | (IDriverT) . (.Macrovision Corporation.) - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
SS - | Demand 30/03/2008 504104 | (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe
SS - | Demand 06/02/2013 115608 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
SR - | Auto 19/01/2008 21504 | C:\Windows\system32\HPZinw12.dll (Net Driver HPZ12) . (.Hewlett-Packard.) - C:\Windows\System32\svchost.exe
SR - | Auto 19/01/2008 21504 | C:\Windows\system32\HPZipm12.dll (Pml Driver HPZ12) . (.Hewlett-Packard.) - C:\Windows\System32\svchost.exe
SR - | Demand 11/01/2007 887544 | (RoxMediaDB9) . (.Sonic Solutions.) - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
SR - | Auto 11/01/2007 166648 | (RoxWatch9) . (.Sonic Solutions.) - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
SS - | Auto 13/07/2012 160944 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe
SS - | Demand 14/09/2006 73728 | (stllssvr) . (.MicroVision Development, Inc..) - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
SR - | Auto 19/01/2008 21504 | C:\Program Files\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Auto 19/01/2008 21504 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
~ Scan Services in 00mn 01s



End of the scan (1373 lines in 02mn 34s)(0)

Publicité


Signaler le contenu de ce document

Publicité