cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.7.12.88 Par Nicolas Coolman (2015/07/12)
~ Démarré par Utilisateur (Administrator) (2015/07/12 09:50:32)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Documents and Settings\Utilisateur\Bureau\ZHPDiag.txt
~ Rapport: C:\Documents and Settings\Utilisateur\Application Data\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
~ Windows XP, 32-bit Service Pack 3 (Build 2600)

---\\ Navigateurs Internet (2) - 0s
GCIE: Google Chrome v43.0.2357.132
MSIE: Internet Explorer v8.0.6001.18702

---\\ Logiciels de protection (2) - 1s
Avast Free Antivirus v10.2.2218
Malwarebytes Anti-Malware version 2.1.8.1057

---\\ Logiciels de protection et autres (Superflus) (2) - 1s
ESET Online Scanner v3
SUPERAntiSpyware v6.0.1200

---\\ Logiciels d'optimisation (1) - 1s
CCleaner v5.07

---\\ Surveillance de Logiciels (2) - 1s
Adobe Flash Player 18 ActiveX
Adobe Reader XI

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 15 Model 44 Stepping 2, AuthenticAMD
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
~ Total physical RAM (KB): 1047856
~ System Restore: Activé (Enable)
~ System drive C: has 122 GB free of 152 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: UTILISAT-A93D12
~ User Name: Utilisateur
~ Logged in as Administrator

---\\ Enumération des unités disques (3) - 0s
~ Drive C: has 122 GB free of 152 GB (System)
~ Drive G: has 1 GB free of 1 GB
~ Drive J: has 0 GB free of 0 GB

---\\ Recherche particulière de fichiers génériques (22) - 1s
[MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [1037824]
[MD5.93AD0B78C7357A05F50E594EC7C22300] - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) () -- C:\WINDOWS\System32\rundll32.exe [33792]
[MD5.E1948B1F45A176FB4A0251446A5AE86D] - (.Microsoft Corporation - Internet Extensions for Win32.) () -- C:\WINDOWS\System32\wininet.dll [920064]
[MD5.DD73D6B9F6B4CB630CF35B438B540174] - (.Microsoft Corporation - Application d'ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [512000]
[MD5.1E44BC1E83D8FD2305F8D452DB109CF9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [138496]
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] - (.Microsoft Corporation - IDE/ATAPI Port Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [96512]
[MD5.C885B02847F5D2FD45A24E219ED93B32] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [63744]
[MD5.1F4260CC5B42272D71F79E570A27A4FE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [62976]
[MD5.31F923EB2170FC172C81ABDA0045D18C] - (.Microsoft Corporation - Pilote de cryptographie FIPS.) () -- C:\WINDOWS\System32\drivers\Fips.sys [44672]
[MD5.573C7D0A32852B48F3058CFD8026F511] - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [144384]
[MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [54144]
[MD5.083A052659F5310DD8B6A6CB05EDCF8E] - (.Microsoft Corporation - IMAPI Kernel Driver.) () -- C:\WINDOWS\System32\drivers\Imapi.sys [42112]
[MD5.CC748EA12C6EFFDE940EE98098BF96BB] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [152832]
[MD5.23C74D75E36E7158768DD63D92789A91] - (.Microsoft Corporation - IPSec Driver.) () -- C:\WINDOWS\System32\drivers\IPSec.sys [75264]
[MD5.7D304A5EB4344EBEEAB53A2FE3FFB9F0] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [456320]
[MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [162816]
[MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - (.Microsoft Corporation - NT File System Driver.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [574976]
[MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [80384]
[MD5.11B4A627BC9614B885C4969BFA5FF8A6] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [51328]
[MD5.15CABD0F7C00C47C70124907916AF3F1] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [196224]
[MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) () -- C:\WINDOWS\System32\drivers\redbook.sys [58752]
[MD5.46DE1126684369BACE4849E4FC8C43CA] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [53376]

---\\ Processus lancés (7) - 1s
[MD5.A2EAEB497CA29ECAEAF0DF66AD85C57D] - (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) -- C:\WINDOWS\system32\ati2evxx.exe [413696] [PID.788]
[MD5.54236E79A44F909612391C8A2D70D512] - (.Avast Software s.r.o. - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336] [PID.1264]
[MD5.A2EAEB497CA29ECAEAF0DF66AD85C57D] - (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) -- C:\WINDOWS\system32\ati2evxx.exe [413696] [PID.1312]
[MD5.65C6AA484AD2287D20541C7735989437] - (.Avast Software s.r.o. - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe [5515496] [PID.196]
[MD5.DE91AA01B01FF8F5837C46EF0B51B57F] - (.Greenshot - Greenshot.) -- C:\Program Files\Greenshot\Greenshot.exe [540672] [PID.252]
[MD5.DB13097358D7DFB4329CB286552EB3D9] - (.SUPERAntiSpyware - SUPERAntiSpyware Application.) -- C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6715160] [PID.468]
[MD5.72D6D8E2D4F82C6E829125C7EC2A88F9] - (.SUPERAntiSpyware.com - Core Service.) -- C:\Program Files\SUPERAntiSpyware\SASCore.exe [142648] [PID.728]

---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (14) - 0s
G0 - GCSP: Preferences [User Data\Default][HomePage] "http://adfarm.mediaplex.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "http://forum.pcastuces.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "http://pagead2.googlesyndication.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "http://www.mywot.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://accounts.google.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://accounts.youtube.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://clients4.google.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://secure.mywot.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://www.google.com/"
G0 - GCSP: Preferences [User Data\Default][HomePage] "https://www.googleapis.com/"
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] "http://www.google.com/"
G2 - GCE: Extension [User Data\Default] [bhmmomiinigofkjcapegjjndpbikblnp] WOT
G2 - GCE: Extension [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Extension [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (10) - 1s
P2 - FPN: [HKLM] [@canon.com/EPPEX] - (.CANON INC..) -- C:\Program Files\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll
P2 - FPN: [HKLM] [@java.com/DTPlugin,version=11.45.2] - (.Oracle Corporation.) -- C:\Program Files\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=11.45.2] - (.Oracle Corporation.) -- C:\Program Files\Java\jre1.8.0_45\bin\plugin2\npjp2.dll
P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (.Microsoft.) -- c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.0] - (.VideoLAN.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.2] - (.VideoLAN.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.3] - (.VideoLAN.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.5] - (.VideoLAN.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.2.0] - (.VideoLAN.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.2.1] - (.VideoLAN.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (12) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer, Proxy Management (R5) (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

---\\ Hosts file redirection (O1) (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (20)

---\\ Browser Helper Object de navigateur (BHO) (O2) (4) - 1s
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_45\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.Avast Software s.r.o. - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: WOT Helper - {C920E44A-7F78-4E64-BDD7-A57026E7FEB7} . (...) -- C:\Program Files\WOT\WOT.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_45\bin\jp2ssv.dll

---\\ Internet Explorer Toolbars (O3) (3) - 0s
O3 - Toolbar: 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{1E796980-9CC5-11D1-A83F-00C04FC99D61} . (...) -- (.not file.)
O3 - Toolbar: 0x466557714D35C941AAE831F2EC22BF0D - [HKCU]{71576546-354D-41C9-AAE8-31F2EC22BF0D} . (...) -- C:\Program Files\WOT\WOT.dll
O3 - Toolbar: WOT - [HKLM]{71576546-354D-41c9-AAE8-31F2EC22BF0D} . (...) -- C:\Program Files\WOT\WOT.dll

---\\ Applications lancées au démarrage du sytème (O4) (14) - 1s
O4 - HKLM\..\Run: [AvastUI.exe] . (.Avast Software s.r.o. - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe
O4 - HKLM\..\Run: [Greenshot] . (.Greenshot - Greenshot.) -- C:\Program Files\Greenshot\Greenshot.exe
O4 - HKCU\..\Run: [Avast-Browser-Cleanup] C:\Program Files\AVAST Software\Avast\BrowserCleanup.exe/RunOnce (.not file.)
O4 - HKCU\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] . (.SUPERAntiSpyware - SUPERAntiSpyware Application.) -- C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-21-1614895754-261903793-1417001333-1004\..\Run: [Avast-Browser-Cleanup] C:\Program Files\AVAST Software\Avast\BrowserCleanup.exe/RunOnce (.not file.)
O4 - HKUS\S-1-5-21-1614895754-261903793-1417001333-1004\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-21-1614895754-261903793-1417001333-1004\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe
O4 - HKUS\S-1-5-21-1614895754-261903793-1417001333-1004\..\Run: [SUPERAntiSpyware] . (.SUPERAntiSpyware - SUPERAntiSpyware Application.) -- C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

---\\ Modification Domaine/Adresses DNS (O17) (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

---\\ Protocole additionnel (O18) (2) - 1s
O18 - Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} . (.Belarc, Inc. - Belarc VoilaX Control.) -- C:\Program Files\Belarc\BelarcAdvisor\System\BAVoilaX.dll
O18 - Handler: wot - {C2A44D6B-CB9F-4663-88A6-DF2F26E4D952} . (...) -- C:\Program Files\WOT\WOT.dll

---\\ Liste des services NT non Microsoft et non désactivés (O23) (5) - 0s
O23 - Service: SAS Core Service (!SASCORE) . (.SUPERAntiSpyware.com - Core Service.) - C:\Program Files\SUPERAntiSpyware\SASCore.exe
O23 - Service: (Ati HotKey Poller) . (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) - C:\WINDOWS\system32\ati2evxx.exe
O23 - Service: Avast Antivirus (avast! Antivirus) . (.Avast Software s.r.o. - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe

---\\ Tâches planifiées en automatique (O39) (5) - 1s
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\avast! Emergency Update.job [364]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1052]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1056]
O39 - APT:Automatic Planified Task - (...) -- C:\WINDOWS\Tasks\Notification de fin de service de Microsoft Windows XP -mensuellement.job [228]

---\\ Logiciels installés (O42) (40) - 10s
O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: AM-DeadLink 4.7 - (.www.aignes.com.) [HKLM] -- aignesamdeadlink_is1
O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM] -- Avast
O42 - Logiciel: Belarc Advisor 8.4 - (.Belarc Inc..) [HKLM] -- Belarc Advisor
O42 - Logiciel: Canon MG5500 series On-screen Manual - (.Canon Inc..) [HKLM] -- Canon MG5500 series On-screen Manual
O42 - Logiciel: Canon My Image Garden - (.Canon Inc..) [HKLM] -- Canon My Image Garden
O42 - Logiciel: Canon My Image Garden Design Files - (.Canon Inc..) [HKLM] -- Canon My Image Garden Design Files
O42 - Logiciel: Canon My Printer - (.Canon Inc..) [HKLM] -- CanonMyPrinter
O42 - Logiciel: Canon Quick Menu - (.Canon Inc..) [HKLM] -- CanonQuickMenu
O42 - Logiciel: Canon IJ Scan Utility - (.Canon Inc..) [HKLM] -- Canon_IJ_Scan_Utility
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
O42 - Logiciel: Convertisseur 1.5 - (...) [HKLM] -- Convertisseur_is1
O42 - Logiciel: Defraggler - (.Piriform.) [HKLM] -- Defraggler
O42 - Logiciel: Enregistrement utilisateur de Canon MG5500 series - (.?Canon Inc..) [HKLM] -- Enregistrement utilisateur de Canon MG5500 series
O42 - Logiciel: ESET Online Scanner v3 - (...) [HKLM] -- ESET Online Scanner
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome
O42 - Logiciel: Greenshot 1.2.6.7 - (.Greenshot.) [HKLM] -- Greenshot_is1
O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8
O42 - Logiciel: Malwarebytes Anti-Malware version 2.1.8.1057 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes Anti-Malware_is1
O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM] -- Picasa 3
O42 - Logiciel: PrivaZer - (.Goversoft LLC.) [HKLM] -- PrivaZer
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player
O42 - Logiciel: Windows Media Format 11 runtime - (...) [HKLM] -- Windows Media Format Runtime
O42 - Logiciel: Lecteur Windows Media 11 - (...) [HKLM] -- Windows Media Player
O42 - Logiciel: WinRAR 5.21 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver
O42 - Logiciel: ZHPFix 2015 - (.Nicolas Coolman.) [HKLM] -- ZHPFix_is1
O42 - Logiciel: Canon MG5500 series MP Drivers - (.Canon Inc..) [HKLM] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5500_series
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
O42 - Logiciel: Java 8 Update 45 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218045F0}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1
O42 - Logiciel: Rep-Listing - (.JPA.) [HKLM] -- {887EF08A-011E-477C-B6CB-01E540538ADB}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Visionneuse Microsoft PowerPoint - (.Microsoft Corporation.) [HKLM] -- {95140000-00AF-040C-0000-0000000FF1CE}
O42 - Logiciel: PC Sync - (.Orange.) [HKLM] -- {A4DCAA77-151D-4CE9-8D79-E4ADB48031A2}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Adobe Reader XI (11.0.10) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AB0000000001}
O42 - Logiciel: SUPERAntiSpyware - (.SUPERAntiSpyware.com.) [HKLM] -- {CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}
O42 - Logiciel: PhotoFiltre 7 - (...) [HKCU] -- PhotoFiltre 7

---\\ HKCU & HKLM Software Keys (112) - 10s
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\AdwCleaner
HKLM\SOFTWARE\ATI Technologies
HKLM\SOFTWARE\ATI Technologies Inc.
HKLM\SOFTWARE\AVAST Software
HKLM\SOFTWARE\Belarc
HKLM\SOFTWARE\BrowserChoice
HKLM\SOFTWARE\C07ft5Y
HKLM\SOFTWARE\Canon
HKLM\SOFTWARE\Canon_Inc_IC
HKLM\SOFTWARE\DivXNetworks
HKLM\SOFTWARE\Eset
HKLM\SOFTWARE\Gemplus
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\InstallShield
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JPA
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\jumpshot.com
HKLM\SOFTWARE\Lavasoft
HKLM\SOFTWARE\Lexmark
HKLM\SOFTWARE\LibreOffice
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\Nero
HKLM\SOFTWARE\NETGEAR
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\Oracle
HKLM\SOFTWARE\Orange
HKLM\SOFTWARE\Piriform
HKLM\SOFTWARE\Program Groups
HKLM\SOFTWARE\Realtek
HKLM\SOFTWARE\Realtek Semiconductor Corp.
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\RtWLan
HKLM\SOFTWARE\Schlumberger
HKLM\SOFTWARE\SERCOMM
HKLM\SOFTWARE\Set8192CU
HKLM\SOFTWARE\ShunSoft
HKLM\SOFTWARE\SUPERAntiSpyware.com
HKLM\SOFTWARE\The Document Foundation
HKLM\SOFTWARE\TuneUp
HKLM\SOFTWARE\VideoLAN
HKLM\SOFTWARE\Voxmobili
HKLM\SOFTWARE\Windows 3.1 Migration Status
HKLM\SOFTWARE\WinRAR
HKLM\SOFTWARE\WSWNA3100M
HKCU\SOFTWARE\7-Zip
HKCU\SOFTWARE\ABBYY
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Against Intuition
HKCU\SOFTWARE\aignes
HKCU\SOFTWARE\ANI
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\ArcSoft
HKCU\SOFTWARE\ATI
HKCU\SOFTWARE\AVAST Software
HKCU\SOFTWARE\Belarc
HKCU\SOFTWARE\Canneverbe Limited
HKCU\SOFTWARE\Canon
HKCU\SOFTWARE\CanonBJ
HKCU\SOFTWARE\Commercial Research
HKCU\SOFTWARE\ESET
HKCU\SOFTWARE\FRANCE TELECOM
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\GlarySoft
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\HookNetwork
HKCU\SOFTWARE\Icaros
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\ITNConv
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\KC Softwares
HKCU\SOFTWARE\Lavalys
HKCU\SOFTWARE\Lexmark
HKCU\SOFTWARE\LexmarkFax
HKCU\SOFTWARE\LexmarkPhoto
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\madFlac
HKCU\SOFTWARE\madshi
HKCU\SOFTWARE\MediaInfo
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MyImgur
HKCU\SOFTWARE\Nero
HKCU\SOFTWARE\NETGEAR
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Orange-France
HKCU\SOFTWARE\PhotoFiltre 7
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\PTP
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\Rep-Listing
HKCU\SOFTWARE\SCC
HKCU\SOFTWARE\SUPERAntiSpyware.com
HKCU\SOFTWARE\The Document Foundation
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\TuneUp
HKCU\SOFTWARE\Ultracopier
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\Voxmobili
HKCU\SOFTWARE\VSRevoGroup
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Against Intuition

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (222) - 10s
O43 - CFD: 2014/02/14 18:04:33 - [] D -- C:\Program Files\Abbyy FineReader 6.0 Sprint
O43 - CFD: 2014/01/23 10:16:31 - [] D -- C:\Program Files\Adobe
O43 - CFD: 2015/04/10 18:27:55 - [] D -- C:\Program Files\AM-DeadLink
O43 - CFD: 2015/05/31 12:34:32 - [] D -- C:\Program Files\ar-JO
O43 - CFD: 2014/01/22 18:20:29 - [] D -- C:\Program Files\AVAST Software
O43 - CFD: 2014/10/22 13:26:49 - [] D -- C:\Program Files\Belarc
O43 - CFD: 2015/05/31 12:34:32 - [] D -- C:\Program Files\bg-BG
O43 - CFD: 2015/05/31 12:34:32 - [] D -- C:\Program Files\ca
O43 - CFD: 2015/03/30 12:58:30 - [] D -- C:\Program Files\Canon
O43 - CFD: 2015/02/15 12:32:55 - [] HD -- C:\Program Files\CanonBJ
O43 - CFD: 2015/06/25 16:56:17 - [] D -- C:\Program Files\CCleaner
O43 - CFD: 2015/06/01 13:05:52 - [] D -- C:\Program Files\CDBurnerXP
O43 - CFD: 2015/02/19 21:28:04 - [] D -- C:\Program Files\Convertisseur
O43 - CFD: 2015/05/31 12:34:32 - [] D -- C:\Program Files\cs-CZ
O43 - CFD: 2014/02/13 21:43:08 - [] D -- C:\Program Files\CyberLink DVD Solution
O43 - CFD: 2015/05/31 12:34:32 - [] D -- C:\Program Files\da-DK
O43 - CFD: 2015/03/13 21:25:47 - [] D -- C:\Program Files\Defraggler
O43 - CFD: 2015/05/31 12:34:32 - [] D -- C:\Program Files\el-GR
O43 - CFD: 2015/05/31 12:34:32 - [] D -- C:\Program Files\es-AR
O43 - CFD: 2015/05/31 12:34:32 - [] D -- C:\Program Files\es-ES
O43 - CFD: 2015/05/31 12:34:32 - [] D -- C:\Program Files\es-MX
O43 - CFD: 2014/03/05 15:13:11 - [] D -- C:\Program Files\ESET
O43 - CFD: 2015/05/31 12:34:32 - [] D -- C:\Program Files\et-EE
O43 - CFD: 2015/05/31 12:34:32 - [] D -- C:\Program Files\fi-FI
O43 - CFD: 2015/04/15 01:59:34 - [] D -- C:\Program Files\Fichiers communs
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\fr-FR
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\gl
O43 - CFD: 2015/06/05 23:02:25 - [] D -- C:\Program Files\Google
O43 - CFD: 2015/06/05 12:52:45 - [] D -- C:\Program Files\Greenshot
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\he-IL
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\hr-HR
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\hu-HU
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\id-ID
O43 - CFD: 2015/01/02 23:40:39 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 2014/04/09 22:38:29 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\it-IT
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\ja-JP
O43 - CFD: 2015/04/15 02:03:54 - [] D -- C:\Program Files\Java
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\ka-GE
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\kk-KZ
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\ko-KR
O43 - CFD: 2015/06/30 17:26:29 - [] D -- C:\Program Files\LibreOffice 4
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\lt-LT
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\lv-LV
O43 - CFD: 2015/06/30 12:12:49 - [] D -- C:\Program Files\Malwarebytes Anti-Malware
O43 - CFD: 2014/11/14 10:08:17 - [] D -- C:\Program Files\Messenger
O43 - CFD: 2014/01/22 16:44:41 - [] D -- C:\Program Files\microsoft frontpage
O43 - CFD: 2014/02/24 19:31:24 - [] D -- C:\Program Files\Microsoft Office
O43 - CFD: 2014/07/24 21:37:36 - [] D -- C:\Program Files\Microsoft Silverlight
O43 - CFD: 2014/04/13 23:12:36 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 2014/01/22 17:32:36 - [] D -- C:\Program Files\Movie Maker
O43 - CFD: 2014/01/25 00:38:12 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 2014/02/24 19:30:55 - [] D -- C:\Program Files\MSECache
O43 - CFD: 2014/01/22 16:40:36 - [] D -- C:\Program Files\MSN
O43 - CFD: 2014/01/22 16:41:06 - [] D -- C:\Program Files\MSN Gaming Zone
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\nb-NO
O43 - CFD: 2014/01/22 17:01:22 - [] D -- C:\Program Files\NETGEAR
O43 - CFD: 2014/01/22 16:42:46 - [] D -- C:\Program Files\NetMeeting
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\nl-NL
O43 - CFD: 2014/01/22 16:41:14 - [] D -- C:\Program Files\Online Services
O43 - CFD: 2014/02/03 00:53:11 - [] D -- C:\Program Files\Outlook Express
O43 - CFD: 2014/02/12 00:05:54 - [] D -- C:\Program Files\Paragon Software
O43 - CFD: 2015/04/15 07:27:17 - [] D -- C:\Program Files\PC Sync
O43 - CFD: 2014/01/25 12:00:34 - [] D -- C:\Program Files\PhotoFiltre 7
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\pl-PL
O43 - CFD: 2015/07/05 20:24:59 - [] D -- C:\Program Files\PrivaZer
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\pt-BR
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\pt-PT
O43 - CFD: 2014/01/25 00:38:02 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 2014/11/30 12:05:12 - [] D -- C:\Program Files\Replisting
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\Resources
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\ro-RO
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\ru-RU
O43 - CFD: 2014/01/22 16:43:13 - [] D -- C:\Program Files\Services en ligne
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\sk-SK
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\sl-SI
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\sr-Cyrl-CS
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\sr-Latn-CS
O43 - CFD: 2014/03/29 09:41:38 - [] D -- C:\Program Files\Stellarium
O43 - CFD: 2015/07/08 15:00:39 - [] D -- C:\Program Files\SUPERAntiSpyware
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\sv-SE
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\tr-TR
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\uk-UA
O43 - CFD: 2014/10/19 23:21:47 - [] D -- C:\Program Files\VideoLAN
O43 - CFD: 2014/01/26 21:05:11 - [] D -- C:\Program Files\VS Revo Group
O43 - CFD: 2014/04/18 20:23:20 - [] D -- C:\Program Files\Windows Desktop Search
O43 - CFD: 2014/02/04 03:55:34 - [] D -- C:\Program Files\Windows Media Connect 2
O43 - CFD: 2015/02/14 12:49:54 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 2014/01/22 16:40:58 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 2014/03/03 23:50:02 - [] D -- C:\Program Files\WinHTTrack
O43 - CFD: 2015/04/19 20:20:05 - [] D -- C:\Program Files\WinRAR
O43 - CFD: 2014/01/26 12:49:11 - [] D -- C:\Program Files\WOT
O43 - CFD: 2014/01/22 16:44:41 - [] D -- C:\Program Files\xerox
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\zh-CHS
O43 - CFD: 2015/05/31 12:34:34 - [] D -- C:\Program Files\zh-CHT
O43 - CFD: 2015/07/11 23:36:34 - [] D -- C:\Program Files\ZHPFix
O43 - CFD: 2014/04/18 20:23:17 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 2015/04/10 18:27:55 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\AM-DeadLink
O43 - CFD: 2014/11/21 10:53:39 - [0] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\AVAST Software
O43 - CFD: 2015/02/15 12:34:07 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Canon MG5500 series Manual
O43 - CFD: 2015/02/15 12:59:22 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Canon Utilities
O43 - CFD: 2014/06/29 08:23:31 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CCleaner
O43 - CFD: 2015/02/19 21:28:04 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Convertisseur
O43 - CFD: 2014/01/31 01:30:10 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Defraggler
O43 - CFD: 2015/03/26 01:20:08 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 2015/02/15 12:56:18 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Enregistrement utilisateur de Canon MG5500 series
O43 - CFD: 2015/06/05 23:02:57 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Google Chrome
O43 - CFD: 2015/06/05 12:52:46 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Greenshot
O43 - CFD: 2014/11/27 17:48:56 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Java
O43 - CFD: 2014/01/22 16:41:15 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux
O43 - CFD: 2015/07/09 10:13:54 - [0] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\KC Softwares
O43 - CFD: 2015/06/30 17:26:58 - [] SD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\LibreOffice 4.4
O43 - CFD: 2015/06/30 12:12:48 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Malwarebytes Anti-Malware
O43 - CFD: 2014/07/24 01:05:26 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Silverlight
O43 - CFD: 2014/10/10 16:42:46 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\OLYMPUS Camera
O43 - CFD: 2014/04/18 20:23:51 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration
O43 - CFD: 2015/01/02 23:40:59 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\PC Sync
O43 - CFD: 2014/01/25 11:32:51 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Picasa 3
O43 - CFD: 2014/03/29 09:41:45 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Stellarium
O43 - CFD: 2014/10/19 23:22:25 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN
O43 - CFD: 2015/04/19 20:20:08 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR
O43 - CFD: 2015/07/11 23:26:04 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ZHP
O43 - CFD: 2014/01/23 11:01:49 - [] D -- C:\Documents and Settings\All Users\Application Data\Adobe
O43 - CFD: 2014/01/22 18:20:14 - [] D -- C:\Documents and Settings\All Users\Application Data\AVAST Software
O43 - CFD: 2014/01/25 00:46:31 - [] D -- C:\Documents and Settings\All Users\Application Data\Canneverbe Limited
O43 - CFD: 2015/03/30 12:59:07 - [0] HD -- C:\Documents and Settings\All Users\Application Data\Canon Easy-WebPrint EX
O43 - CFD: 2015/02/15 12:33:29 - [] HD -- C:\Documents and Settings\All Users\Application Data\CanonBJ
O43 - CFD: 2015/02/15 14:04:02 - [] HD -- C:\Documents and Settings\All Users\Application Data\CanonIJEGV
O43 - CFD: 2015/02/15 12:20:43 - [] HD -- C:\Documents and Settings\All Users\Application Data\CanonIJETV
O43 - CFD: 2015/02/15 13:44:27 - [] HD -- C:\Documents and Settings\All Users\Application Data\CanonIJMIG
O43 - CFD: 2015/02/15 13:41:41 - [] HD -- C:\Documents and Settings\All Users\Application Data\CanonIJScan
O43 - CFD: 2015/02/15 12:53:25 - [] D -- C:\Documents and Settings\All Users\Application Data\CanonIJWSpt
O43 - CFD: 2014/02/15 01:36:59 - [] HD -- C:\Documents and Settings\All Users\Application Data\Common Files
O43 - CFD: 2014/02/12 00:07:27 - [] D -- C:\Documents and Settings\All Users\Application Data\explauncher
O43 - CFD: 2014/01/27 22:22:52 - [] D -- C:\Documents and Settings\All Users\Application Data\Google
O43 - CFD: 2014/03/03 23:49:47 - [] D -- C:\Documents and Settings\All Users\Application Data\Google Updater
O43 - CFD: 2014/02/12 00:07:24 - [] D -- C:\Documents and Settings\All Users\Application Data\launcher
O43 - CFD: 2014/09/04 13:35:27 - [] D -- C:\Documents and Settings\All Users\Application Data\Lavasoft
O43 - CFD: 2015/04/29 23:26:41 - [] D -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
O43 - CFD: 2014/04/16 23:22:53 - [] SD -- C:\Documents and Settings\All Users\Application Data\Microsoft
O43 - CFD: 2014/02/15 01:10:43 - [] D -- C:\Documents and Settings\All Users\Application Data\Nero
O43 - CFD: 2015/04/15 02:08:37 - [] D -- C:\Documents and Settings\All Users\Application Data\Oracle
O43 - CFD: 2015/05/06 23:44:33 - [] D -- C:\Documents and Settings\All Users\Application Data\privazer
O43 - CFD: 2014/02/12 00:08:46 - [] D -- C:\Documents and Settings\All Users\Application Data\restore
O43 - CFD: 2014/01/27 21:35:20 - [] D -- C:\Documents and Settings\All Users\Application Data\Sun
O43 - CFD: 2015/07/08 15:00:11 - [] D -- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
O43 - CFD: 2014/02/15 01:38:43 - [] D -- C:\Documents and Settings\All Users\Application Data\TuneUp Software
O43 - CFD: 2014/01/22 17:06:53 - [] D -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
O43 - CFD: 2014/02/15 01:36:59 - [] SHD -- C:\Documents and Settings\All Users\Application Data\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
O43 - CFD: 2014/01/23 10:16:56 - [] D -- C:\Program Files\Fichiers communs\Adobe
O43 - CFD: 2014/03/29 13:03:56 - [] D -- C:\Program Files\Fichiers communs\InstallShield
O43 - CFD: 2015/04/15 01:59:34 - [] D -- C:\Program Files\Fichiers communs\Java
O43 - CFD: 2014/02/24 19:31:21 - [] D -- C:\Program Files\Fichiers communs\Microsoft Shared
O43 - CFD: 2014/01/22 16:42:42 - [] D -- C:\Program Files\Fichiers communs\MSSoap
O43 - CFD: 2014/01/22 16:42:45 - [] D -- C:\Program Files\Fichiers communs\Services
O43 - CFD: 2014/01/22 17:20:51 - [] D -- C:\Program Files\Fichiers communs\SpeechEngines
O43 - CFD: 2014/01/22 16:42:08 - [] D -- C:\Program Files\Fichiers communs\System
O43 - CFD: 2014/01/23 10:26:48 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Absolute Uninstaller
O43 - CFD: 2014/01/23 10:29:06 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Adobe
O43 - CFD: 2012/12/22 12:40:56 - [0] D -- C:\Documents and Settings\Utilisateur\Application Data\AdobeUM
O43 - CFD: 2014/01/23 10:26:50 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\aignes
O43 - CFD: 2014/01/23 10:26:52 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\ArcSoft
O43 - CFD: 2014/01/23 10:29:06 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\ATI
O43 - CFD: 2014/01/22 11:09:31 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\AVAST Software
O43 - CFD: 2014/01/23 10:27:11 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Canneverbe Limited
O43 - CFD: 2015/02/16 21:13:11 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Canon
O43 - CFD: 2015/02/19 21:33:51 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\convertisseur
O43 - CFD: 2015/05/07 00:06:11 - [0] D -- C:\Documents and Settings\Utilisateur\Application Data\dvdcss
O43 - CFD: 2014/01/23 10:29:06 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\FaxCtr
O43 - CFD: 2014/01/23 10:27:11 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\GlarySoft
O43 - CFD: 2014/01/23 10:27:11 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Google
O43 - CFD: 2015/06/05 12:54:38 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Greenshot
O43 - CFD: 2012/12/02 21:16:09 - [0] D -- C:\Documents and Settings\Utilisateur\Application Data\Help
O43 - CFD: 2014/01/23 10:29:06 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Identities
O43 - CFD: 2014/01/22 11:11:40 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\InstallShield
O43 - CFD: 2015/07/09 10:19:40 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\KC Softwares
O43 - CFD: 2014/09/04 13:39:13 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\LavasoftStatistics
O43 - CFD: 2014/01/23 10:27:11 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Lexmark Productivity Studio
O43 - CFD: 2014/02/02 17:48:56 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\LibreOffice
O43 - CFD: 2014/01/22 11:09:33 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Macromedia
O43 - CFD: 2013/01/25 00:18:53 - [0] D -- C:\Documents and Settings\Utilisateur\Application Data\Media Player Classic
O43 - CFD: 2014/01/23 10:29:06 - [] SD -- C:\Documents and Settings\Utilisateur\Application Data\Microsoft
O43 - CFD: 2014/01/23 10:29:06 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\MyImgur
O43 - CFD: 2014/02/01 16:25:22 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Nero
O43 - CFD: 2014/02/18 01:45:15 - [0] D -- C:\Documents and Settings\Utilisateur\Application Data\Notepad++
O43 - CFD: 2014/01/24 17:22:03 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\OpenOffice
O43 - CFD: 2014/08/26 14:06:40 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Oracle
O43 - CFD: 2015/03/14 01:08:08 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Orange-France
O43 - CFD: 2014/02/14 19:36:45 - [0] D -- C:\Documents and Settings\Utilisateur\Application Data\PasteCopy.NET
O43 - CFD: 2014/01/23 10:27:15 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\PhotoFiltre 7
O43 - CFD: 2014/03/29 13:09:47 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Stellarium
O43 - CFD: 2014/01/23 10:27:15 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Sun
O43 - CFD: 2015/07/08 15:00:39 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\SUPERAntiSpyware.com
O43 - CFD: 2014/10/13 20:35:13 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\temp
O43 - CFD: 2014/02/15 01:38:19 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\TuneUp Software
O43 - CFD: 2015/06/09 08:46:03 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\vlc
O43 - CFD: 2015/01/02 23:41:03 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\Voxmobili
O43 - CFD: 2014/01/23 10:09:50 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\WinRAR
O43 - CFD: 2015/07/12 09:50:37 - [] D -- C:\Documents and Settings\Utilisateur\Application Data\ZHP
O43 - CFD: 2015/06/13 14:15:40 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Adobe
O43 - CFD: 2014/01/23 10:27:22 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\ATI
O43 - CFD: 2014/01/27 22:21:50 - [0] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Deployment
O43 - CFD: 2015/03/02 10:38:06 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Google
O43 - CFD: 2015/07/10 07:31:04 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Greenshot
O43 - CFD: 2014/02/18 17:37:34 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Help
O43 - CFD: 2014/01/23 10:27:39 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Identities
O43 - CFD: 2015/06/16 21:54:57 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Le Cloud Orange
O43 - CFD: 2014/12/26 17:28:18 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Microsoft
O43 - CFD: 2015/07/05 22:13:32 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\PrivaZer
O43 - CFD: 2014/03/11 21:46:57 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Programs
O43 - CFD: 2014/03/29 13:09:43 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\stellarium
O43 - CFD: 2014/01/23 10:27:41 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Sun
O43 - CFD: 2015/06/20 07:50:31 - [] D -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Temp
O43 - CFD: 2014/01/22 11:10:32 - [] RD -- C:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 2012/11/27 22:22:12 - [0] D -- C:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\Accessories
O43 - CFD: 2014/03/03 23:50:05 - [0] RD -- C:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 2015/03/15 16:31:22 - [] D -- C:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\Le Cloud d'Orange - Transfert de fichiers
O43 - CFD: 2014/01/23 10:28:02 - [] D -- C:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\Outils d'administration
O43 - CFD: 2014/01/25 12:00:34 - [] D -- C:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\PhotoFiltre 7
O43 - CFD: 2015/05/06 23:44:34 - [] D -- C:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\PrivaZer
O43 - CFD: 2014/08/14 03:04:28 - [] D -- C:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\Revo Uninstaller
O43 - CFD: 2015/04/19 20:20:07 - [] D -- C:\Documents and Settings\Utilisateur\Menu Démarrer\Programmes\WinRAR

---\\ Enumération des clés de registre StartupReg (SMSR) (O53) (7) - 0s
O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe
O53 - SMSR:HKLM\...\startupreg\CanonQuickMenu [Key] . (.CANON INC. - Canon Quick Menu.) -- C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE
O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe
O53 - SMSR:HKLM\...\startupreg\ctfmon.exe [Key] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe
O53 - SMSR:HKLM\...\startupreg\SUPERAntiSpyware [Key] . (.SUPERAntiSpyware - SUPERAntiSpyware Application.) -- C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O53 - SMSR:HKLM\...\startupreg\swg [Key] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

---\\ Liste des pilotes du système (SDL) (O58) (45) - 5s
O58 - SDL:2005/07/26 11:15:58 A . (.Realtek Semiconductor Corp. - Realtek AC'97 Audio Driver (WDM).) -- C:\WINDOWS\System32\drivers\ALCXWDM.SYS [2324160]
O58 - SDL:2015/05/04 23:23:42 A . (...) -- C:\WINDOWS\System32\drivers\aswHwid.sys [24144]
O58 - SDL:2015/05/04 23:23:42 A . (.Avast Software s.r.o. - avast! File System Minifilter for Windows 2.) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys [74976]
O58 - SDL:2015/05/04 23:23:42 A . (.Avast Software s.r.o. - avast! TDI Redirect Driver.) -- C:\WINDOWS\System32\drivers\aswRdr.sys [55200]
O58 - SDL:2015/05/04 23:23:42 A . (...) -- C:\WINDOWS\System32\drivers\aswRvrt.sys [49904]
O58 - SDL:2015/05/04 23:23:23 A . (.Avast Software s.r.o. - avast! Virtualization Driver.) -- C:\WINDOWS\System32\drivers\aswSnx.sys [787760]
O58 - SDL:2015/06/26 23:50:08 A . (.Avast Software s.r.o. - avast! self protection module.) -- C:\WINDOWS\System32\drivers\aswsp.sys [428120]
O58 - SDL:2015/05/04 23:23:42 A . (.Avast Software s.r.o. - avast! TDI Filter Driver.) -- C:\WINDOWS\System32\drivers\aswTdi.sys [57888]
O58 - SDL:2015/05/04 23:23:42 A . (...) -- C:\WINDOWS\System32\drivers\aswVmm.sys [209048]
O58 - SDL:2006/05/03 18:50:42 A . (.ATI Technologies Inc. - ATI Radeon WindowsNT Miniport Driver.) -- C:\WINDOWS\System32\drivers\ati2mtag.sys [1540608]
O58 - SDL:2013/09/10 19:25:16 A . (...) -- C:\WINDOWS\System32\drivers\BANTExt.sys [3840]
O58 - SDL:2008/04/14 14:00:00 A . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\System32\drivers\cinemst2.sys [262528]
O58 - SDL:2008/04/14 14:00:00 A . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\System32\drivers\cpqdap01.sys [11776]
O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- C:\WINDOWS\System32\drivers\dmboot.sys [800256]
O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\System32\drivers\dmio.sys [154496]
O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\System32\drivers\dmload.sys [5888]
O58 - SDL:2008/04/14 14:00:00 A . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [144384]
O58 - SDL:2015/06/18 08:41:36 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [23256]
O58 - SDL:2015/06/18 08:41:46 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [121560]
O58 - SDL:2015/07/11 09:08:08 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [98520]
O58 - SDL:2008/04/14 14:00:00 A . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\nikedrv.sys [12032]
O58 - SDL:2008/04/14 14:00:00 A . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- C:\WINDOWS\System32\drivers\ptilink.sys [17792]
O58 - SDL:2008/04/14 14:00:00 A . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\System32\drivers\rio8drv.sys [12032]
O58 - SDL:2008/04/14 14:00:00 A . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\riodrv.sys [12032]
O58 - SDL:2008/04/13 11:35:40 A . (.Realtek Semiconductor Corporation - Realtek RTL8139 NDIS 5.0 Driver.) -- C:\WINDOWS\System32\drivers\RTL8139.sys [20992]
O58 - SDL:2008/04/14 14:00:00 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [20480]
O58 - SDL:2013/08/25 11:30:48 A . (...) -- C:\WINDOWS\System32\drivers\StarOpen.sys [13120]
O58 - SDL:2008/04/14 14:00:00 A . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\System32\drivers\tsbvcap.sys [21376]
O58 - SDL:2008/04/14 14:00:00 A . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\System32\drivers\vdmindvd.sys [58112]
O58 - SDL:2011/12/30 16:23:16 A . (.NETGEAR Corporation - NETGEAR WNA3100M USB NDIS Driver.) -- C:\WINDOWS\System32\drivers\WNA3100M.sys [1323880]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ansi.sys [9037]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\country.sys [27097]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\himem.sys [4912]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\key01.sys [42809]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\keyboard.sys [42537]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos.sys [27916]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos404.sys [29146]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos411.sys [29370]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos412.sys [29274]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos804.sys [29146]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio.sys [34000]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio404.sys [34560]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio411.sys [35648]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio412.sys [35424]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio804.sys [34560]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (10) - 7s
O61 - LFC: 2015/07/08 14:59:11 A . (.SUPERAntiSpyware.) -- C:\Documents and Settings\Utilisateur\Mes documents\heulin-michel\SUPERAntiSpyware.exe [22457640]
O61 - LFC: 2015/07/11 16:00:26 A . (..) -- C:\Documents and Settings\Utilisateur\Mes documents\heulin-michel\utilisation hébergeur cjoint.com [19074]
O61 - LFC: 2015/07/05 18:11:19 A . (.KC Softwares.) -- C:\Documents and Settings\Utilisateur\Mes documents\heulin-michel\sumo\sumo\SUMo.exe [1721560]
O61 - LFC: 2015/07/05 20:24:13 A . (.Goversoft LLC.) -- C:\Documents and Settings\Utilisateur\Mes documents\Downloads\privazer_free.exe [7580296]
O61 - LFC: 2015/07/07 10:39:59 A . (..) -- C:\Documents and Settings\Utilisateur\Mes documents\Downloads\SaveMe.exe [5551104]
O61 - LFC: 2015/07/09 09:56:49 A . (.KC Softwares.) -- C:\Documents and Settings\Utilisateur\Mes documents\Downloads\sumo.exe [1584688]
O61 - LFC: 2015/07/05 18:11:19 A . (.KC Softwares.) -- C:\Documents and Settings\Utilisateur\Mes documents\Downloads\sumo\sumo\SUMo.exe [1721560]
O61 - LFC: 2015/07/05 22:13:31 A . (.SQLite Development Team.) -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\PrivaZer\sqlite3.dll [658797]
O61 - LFC: 2015/07/12 09:27:38 A . (..) -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849]
O61 - LFC: 2015/07/05 16:16:51 A . (..) -- C:\Documents and Settings\Utilisateur\Local Settings\Application Data\Adobe\Acrobat\11.0\UserCache.bin [59653]

---\\ Associations Shell Spawning (O67) (9) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\system32\wscript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (SMI) (O68) (9) - 0s
O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe

---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (4) - 0s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {1C2711C5-5AE8-4996-9F89-E848B25A9CF5} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKCU] {59B28617-1B78-44AE-854B-C1DA9DF4BF83} - ((www.google.com) Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKCU] {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} - (Microsoft (Bing)) - http://www.bing.com/

---\\ Enumère les services démarrés par Svchost (SSS) (O83) (39) - 2s
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (...) -- C:\WINDOWS\System32\appmgmts.dll [0]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496]
O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [78336]
O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464]
O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576]
O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488]
O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\system32\ersvc.dll [23040]
O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - .) -- C:\WINDOWS\system32\es.dll [253952]
O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: HidServ (HidServ) . (.Microsoft Corporation - HID Audio Service.) -- C:\WINDOWS\system32\hidserv.dll [21504]
O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [99840]
O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [132096]
O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\system32\msgsvc.dll [33792]
O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144]
O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- C:\WINDOWS\system32\mswsock.dll [247808]
O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [53248]
O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560]
O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [18944]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\WINDOWS\system32\ipnathlp.dll [332800]
O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\system32\tapisrv.dll [249856]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112]
O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176]
O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483840]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\wmisvc.dll [145408]
O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896]
O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024]
O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\system32\qmgr.dll [409088]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll [38400]
O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- C:\WINDOWS\system32\mspmsnsv.dll [27136]

---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) (8) - 19s
SR - Auto [2014/07/23 01:47:10] [ 142648] SAS Core Service (!SASCORE) . (.SUPERAntiSpyware.com.) - C:\Program Files\SUPERAntiSpyware\SASCore.exe
SS - Demand [2015/07/09 18:11:57] [ 268976] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
SR - Auto [2006/05/03 18:43:46] [ 413696] (Ati HotKey Poller) . (.ATI Technologies Inc..) - C:\WINDOWS\system32\ati2evxx.exe
SR - Auto [2015/05/04 23:23:30] [ 343336] Avast Antivirus (avast! Antivirus) . (.Avast Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
SS - Auto [2014/01/27 22:21:54] [ 116648] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - Demand [2014/01/27 22:21:54] [ 116648] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - Demand [2014/03/28 21:38:13] [ 194032] Google Software Updater (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
SS - Auto [2015/06/18 08:39:50] [ 1133880] (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe

---\\ Scan Additionnel (O88) (1) - 0s
~ Aucun élément malicieux trouvé.

---\\ Récapitulatif des détections trouvées sur votre station (1) - 0s
~ Aucun élément malicieux trouvé.

~ End of the scan, 30959 items in 74 seconds (673)(0)()

Publicité


Signaler le contenu de ce document

Publicité