cjoint

Publicité

Priorité au Logiciel Libre! Je soutiens l'April.

Publicité

Priorité au Logiciel Libre! Je soutiens l'April.

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.7.20.20 Par Nicolas Coolman (2015/07/20)
~ Démarré par ssssssssssssssss (Administrator) (2015/07/20 21:50:27)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Documents and Settings\ssssssssssssssss\Bureau\ZHPDiag.txt
~ Rapport: C:\Documents and Settings\ssssssssssssssss\Application Data\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
~ Windows XP, 32-bit Service Pack 3 (Build 2600)

---\\ Navigateurs Internet (1) - 0s
MSIE: Internet Explorer v8.0.6001.18702

---\\ Logiciels de protection (1) - 14s
Avast Free Antivirus v10.3.2223

---\\ Logiciels de protection et autres (Superflus) (1) - 16s
McAfee Security Scan Plus v3.8.130.10

---\\ Surveillance de Logiciels (2) - 17s
Adobe Flash Player 18 NPAPI
Adobe Reader X

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 28 Stepping 10, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 1038.444 MB (54% free)
~ System Restore: Activé (Enable)
~ System drive C: has 50 GB free of 81 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: YOUR-W5IQG87FIT
~ User Name: ssssssssssssssss
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 50 GB free of 81 GB (System)
~ Drive D: has 63 GB free of 63 GB

---\\ Etat du Centre de Sécurité Windows (9) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (22) - 8s
[MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [1037824]
[MD5.93AD0B78C7357A05F50E594EC7C22300] - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) () -- C:\WINDOWS\System32\rundll32.exe [33792]
[MD5.E1948293F7CBC38987270432935D8D05] - (.Microsoft Corporation - Internet Extensions for Win32.) () -- C:\WINDOWS\System32\wininet.dll [920064]
[MD5.DD73D6B9F6B4CB630CF35B438B540174] - (.Microsoft Corporation - Application d'ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [512000]
[MD5.1E44BC1E83D8FD2305F8D452DB109CF9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [138496]
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] - (.Microsoft Corporation - IDE/ATAPI Port Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [96512]
[MD5.C885B02847F5D2FD45A24E219ED93B32] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [63744]
[MD5.1F4260CC5B42272D71F79E570A27A4FE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [62976]
[MD5.31F923EB2170FC172C81ABDA0045D18C] - (.Microsoft Corporation - Pilote de cryptographie FIPS.) () -- C:\WINDOWS\System32\drivers\Fips.sys [44672]
[MD5.573C7D0A32852B48F3058CFD8026F511] - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [144384]
[MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [54144]
[MD5.083A052659F5310DD8B6A6CB05EDCF8E] - (.Microsoft Corporation - IMAPI Kernel Driver.) () -- C:\WINDOWS\System32\drivers\Imapi.sys [42112]
[MD5.CC748EA12C6EFFDE940EE98098BF96BB] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [152832]
[MD5.23C74D75E36E7158768DD63D92789A91] - (.Microsoft Corporation - IPSec Driver.) () -- C:\WINDOWS\System32\drivers\IPSec.sys [75264]
[MD5.7D304A5EB4344EBEEAB53A2FE3FFB9F0] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [456320]
[MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [162816]
[MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - (.Microsoft Corporation - NT File System Driver.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [574976]
[MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [80384]
[MD5.11B4A627BC9614B885C4969BFA5FF8A6] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [51328]
[MD5.15CABD0F7C00C47C70124907916AF3F1] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [196224]
[MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) () -- C:\WINDOWS\System32\drivers\redbook.sys [58752]
[MD5.46DE1126684369BACE4849E4FC8C43CA] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [53376]

---\\ Processus lancés (12) - 15s
[MD5.A97E144E84A665B22AE6E6A93E4DD465] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600] [PID.1512]
[MD5.80BC9C74AAB699A74667F10627683423] - (...) -- C:\Program Files\ASUS\LiveUpdate\LiveUpdate.exe [751592] [PID.1500]
[MD5.360600AE01D1ABDD1FCEF8AFA32AF96D] - (.ASUS - CapsAndNumKeyNotify.) -- C:\Program Files\EeePC\CapsHook\CapsHook.exe [445344] [PID.1700]
[MD5.B46CE68FDD8D83FBBAC2E006BB3CD8B7] - (.Realtek Semiconductor Corp. - Realtek HD Audio Control Panel.) -- C:\WINDOWS\RTHDCPL.EXE [19523616] [PID.1708]
[MD5.0E5A2EC4C58A0F33B00C63953B593DAD] - (.France Telecom SA - .) -- C:\Program Files\CardDetector\HUAWEI1752_1552\CardDetector.exe [282624] [PID.1780]
[MD5.3B39FF4F3184A2A1541D6BBC21BC64FF] - (.CANON INC. - Canon Quick Menu.) -- C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE [1285704] [PID.2036]
[MD5.799450710D1B09FAF0D220B4DA3BF431] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [6109776] [PID.180]
[MD5.63962285A0C3C9752CB15A62E0FE9E6A] - (.France Telecom SA - .) -- C:\Program Files\Fichiers communs\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe [77824] [PID.236]
[MD5.C5E4602D85029C666A42890A3B2DFA45] - (.Copyright CANON INC. 2006-2013 - Inkjet Printer/Scanner/Fax Extended Survey.) -- C:\Program Files\Canon\IJPLM\ijplmsvc.exe [140936] [PID.364]
[MD5.188F2F9019DB3E99DBA4D43ED75E5315] - (.Reimage® - Reimage Real Time Protection.) -- C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [6086640] [PID.504] =>PUP.Optional.ReImageRepair
[MD5.BD6D05926BE208FEBBBB49362FFD8E34] - (.Reimage® - Reimage System Protection.) -- C:\Program Files\Reimage\Reimage Protector\ReiSystem.exe [5615592] [PID.748] =>PUP.Optional.ReImageRepair
[MD5.590188C1217710A0201795355284B78C] - (.CANON INC. - Canon Quick Menu Image Display.) -- C:\Program Files\Canon\Quick Menu\CNQMSWCS.EXE [991848] [PID.5072]

---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (2) - 0s
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] YouTube
G2 - GCE: Preference [User Data\Default] [dlfienamagdnkekbbbocojppncdambda] Complitly plugin for chrome =>PUP.Optional.PredictAd

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (21) - 11s
M1 - SPR:Search Page Redirection - C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.FRA
P2 - EXT FILE: (...) -- C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\searchplugins\bing.xml
P2 - EXT FILE: (...) -- C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\searchplugins\conduit.xml =>PUP.Optional.Conduit
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\amazon-france.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\bing.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\ddg.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\eBay-france.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\google.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\yahoo-france.xml
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
P2 - EXT: (.20-20 Technologies - Visualisateur 3D de 20-20.) -- C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\extensions\2020Player_IKEA@2020Technologies.com
P2 - EXT: (.Babylon - Babylon.) -- C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\extensions\ffxtlbr@babylon.com =>PUP.Optional.Babylon
P2 - EXT: (.SimplyGen Ltd. - Complitly - Speed up your search with your personal search suggestions tool.) -- C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\extensions\{33e0daa6-3af3-d8b5-6752-10e949c61516}
P2 - EXT: (.ClientConnect Ltd. - 01NET.com .) -- C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\extensions\{8e5025c2-8ea3-430d-80b8-a14151068a6d} =>PUP.Optional.ClientConnect
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_18_0_0_209.dll
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
P2 - FPN: [HKLM] [@canon.com/EPPEX] - (.CANON INC..) -- C:\Program Files\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (10) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = http://search.babylon.com/ =>PUP.Optional.Babylon
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer, Proxy Management (R5) (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride =
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 1s
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

---\\ Hosts file redirection (O1) (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (20)

---\\ Browser Helper Object de navigateur (BHO) (O2) (5) - 2s
O2 - BHO: Complitly - {0FB6A909-6086-458F-BD92-1F8EE10042A0} . (.SimplyGen - Complitly - Helps you search the web.) -- C:\Documents and Settings\ssssssssssssssss\Application Data\Complitly\Complitly.dll =>PUP.Optional.PredictAd
O2 - BHO: Babylon toolbar helper - {2EECD738-5844-4a99-B4B6-146BF802613B} . (...) -- C:\Program Files\BabylonToolbar\BabylonToolbar\1.5.3.17\bh\BabylonToolbar.dll (.not file.) =>PUP.Optional.Babylon
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} . (.CANON INC. - Easy-WebPrint EX.) -- C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} (Orphean)
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll

---\\ Internet Explorer Toolbars (O3) (4) - 1s
O3 - Toolbar: 0xEF44FA216D37534D9B0F8A89D3229068 - [HKCU]{21FA44EF-376D-4D53-9B0F-8A89D3229068} . (...) -- (.not file.)
O3 - Toolbar: 0x86989D756F0C9844BAB64A5F47C6C72F - [HKCU]{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} . (.CANON INC. - Easy-WebPrint EX.) -- C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll
O3 - Toolbar: Babylon Toolbar - [HKLM]{98889811-442D-49dd-99D7-DC866BE87DBC} . (...) -- C:\Program Files\BabylonToolbar\BabylonToolbar\1.5.3.17\BabylonToolbarTlbr.dll (.not file.) =>PUP.Optional.Babylon
O3 - Toolbar: Canon Easy-WebPrint EX - [HKLM]{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} . (.CANON INC. - Easy-WebPrint EX.) -- C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll

---\\ Applications lancées au démarrage du sytème (O4) (35) - 6s
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [LiveUpdate] . (...) -- C:\Program Files\ASUS\LiveUpdate\LiveUpdate.exe
O4 - HKLM\..\Run: [SynAsusAcpi] %ProgramFiles%\Synaptics\SynTP\SynAsusAcpi.exe
O4 - HKLM\..\Run: [EeeSplendidAgent] C:\Program Files\ASUS\EPC\EeeSplendid\AsAgent.exe (.not file.)
O4 - HKLM\..\Run: [IMJPMIG8.1] . (.Microsoft Corporation - Microsoft IME.) -- C:\WINDOWS\ime\imjp8_1\imjpmig.exe
O4 - HKLM\..\Run: [MSPY2002] . (...) -- C:\WINDOWS\system32\IME\PINTLGNT\IMSCINST.EXE
O4 - HKLM\..\Run: [PHIME2002ASync] . (.Microsoft Corporation - ???????? 2002a.) -- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE
O4 - HKLM\..\Run: [PHIME2002A] . (.Microsoft Corporation - ???????? 2002a.) -- C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE
O4 - HKLM\..\Run: [CapsHook] . (.ASUS - CapsAndNumKeyNotify.) -- C:\Program Files\EeePC\CapsHook\CapsHook.exe
O4 - HKLM\..\Run: [RTHDCPL] . (.Realtek Semiconductor Corp. - Realtek HD Audio Control Panel.) -- C:\WINDOWS\RTHDCPL.EXE
O4 - HKLM\..\Run: [AsusTray] . (.ASUSTeK Computer Inc. - Eee PC Tray Utility.) -- C:\Program Files\EeePC\ACPI\AsTray.exe
O4 - HKLM\..\Run: [AsusEPCMonitor] . (.ASUSTeK Computer Inc. - AsEPCMon.) -- C:\Program Files\EeePC\ACPI\AsEPCMon.exe
O4 - HKLM\..\Run: [AsusACPIServer] . (.ASUSTeK Computer Inc. - Asus Eee PC ACPI Service.) -- C:\Program Files\EeePC\ACPI\AsAcpiSvr.exe
O4 - HKLM\..\Run: [Lexmark X1100 Series] C:\Program Files\Lexmark X1100 Series\lxbkbmgr.exe (.not file.)
O4 - HKLM\..\Run: [CardDetectorHUAWEI1752_1552] . (.France Telecom SA - .) -- C:\Program Files\CardDetector\HUAWEI1752_1552\CardDetector.exe
O4 - HKLM\..\Run: [BEWINTERNET-FR-DMESessionManager] . (.France Telecom SA - .) -- C:\Program Files\OrangeBS\BEWInternet\SessionManager\SessionManager.exe
O4 - HKLM\..\Run: [BCSSync] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files\Microsoft Office\Office14\BCSSync.exe
O4 - HKLM\..\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Fichiers communs\Apple\Apple Application Support\APSDaemon.exe
O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe
O4 - HKLM\..\Run: [CanonQuickMenu] . (.CANON INC. - Canon Quick Menu.) -- C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE
O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
O4 - HKCU\..\Run: [MSMSGS] . (.Microsoft Corporation - Windows Messenger.) -- C:\Program Files\Messenger\msmsgs.exe
O4 - HKCU\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DriverFinder] C:\Program Files\DriverFinder\DriverFinder.exe (.not file.) =>PUP.Optional.DriverFinder
O4 - HKCU\..\Run: [Akamai NetSession Interface] . (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Akamai\netsession_win.exe
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-21-2226361383-2899391517-528346644-1006\..\Run: [MSMSGS] . (.Microsoft Corporation - Windows Messenger.) -- C:\Program Files\Messenger\msmsgs.exe
O4 - HKUS\S-1-5-21-2226361383-2899391517-528346644-1006\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-21-2226361383-2899391517-528346644-1006\..\Run: [DriverFinder] C:\Program Files\DriverFinder\DriverFinder.exe (.not file.) =>PUP.Optional.DriverFinder
O4 - HKUS\S-1-5-21-2226361383-2899391517-528346644-1006\..\Run: [Akamai NetSession Interface] . (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Akamai\netsession_win.exe

---\\ Raccourcis Global Startup (O4G) (1) - 12s
O4 - GS\CommonDesktop [Public]: PC Scan & Repair by Reimage.lnk . (.Reimage® - Reimage Downloader.) C:\Program Files\Reimage\Reimage Repair\ReimageRepair.exe =>PUP.Optional.ReImageRepair

---\\ Modification Domaine/Adresses DNS (O17) (6) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = lan
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpDomain = lan
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpDomain = lan

---\\ Liste des services NT non Microsoft et non désactivés (O23) (8) - 2s
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) . (.France Telecom SA - .) - C:\Program Files\Fichiers communs\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) . (.Copyright CANON INC. 2006-2013 - Inkjet Printer/Scanner/Fax Extended Survey.) - C:\Program Files\Canon\IJPLM\ijplmsvc.exe
O23 - Service: LexBce Server (LexBceS) . (...) - C:\WINDOWS\system32\lexbces.exe (.not file.)
O23 - Service: Reimage Real Time Protector (ReimageRealTimeProtector) . (.Reimage® - Reimage Real Time Protection.) - C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe =>PUP.Optional.ReImageRepair
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe

---\\ Tâches planifiées en automatique (O39) (7) - 1s
O39 - APT: - (...) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT: - (...) -- C:\WINDOWS\Tasks\AppleSoftwareUpdate.job [284]
O39 - APT: - (...) -- C:\WINDOWS\Tasks\avast! Emergency Update.job [316]
O39 - APT: - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1052]
O39 - APT: - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1056]
O39 - APT: - (...) -- C:\WINDOWS\Tasks\Reimage Reminder.job [296] =>PUP.Optional.ReImageRepair
O39 - APT: - (...) -- C:\WINDOWS\Tasks\ReimageUpdater.job [354] =>PUP.Optional.ReImageRepair

---\\ Logiciels installés (O42) (81) - 26s
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR
O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI
O42 - Logiciel: ASUS VIBE - (.Ecareme, Inc..) [HKLM] -- ASUS VIBE
O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM] -- avast
O42 - Logiciel: Babylon toolbar on IE - (...) [HKLM] -- BabylonToolbar =>PUP.Optional.Babylon
O42 - Logiciel: Canon MG5500 series On-screen Manual - (.Canon Inc..) [HKLM] -- Canon MG5500 series On-screen Manual
O42 - Logiciel: Canon My Image Garden - (.Canon Inc..) [HKLM] -- Canon My Image Garden
O42 - Logiciel: Canon My Image Garden Design Files - (.Canon Inc..) [HKLM] -- Canon My Image Garden Design Files
O42 - Logiciel: Canon Inkjet Printer/Scanner/Fax Extended Survey Program - (.Canon Inc..) [HKLM] -- CANONIJPLM100
O42 - Logiciel: Canon My Printer - (.Canon Inc..) [HKLM] -- CanonMyPrinter
O42 - Logiciel: Canon Quick Menu - (.Canon Inc..) [HKLM] -- CanonQuickMenu
O42 - Logiciel: Card Detector for Huawei E1752 and E1552 - (...) [HKLM] -- CardDetectorHUAWEI1752_1552
O42 - Logiciel: Canon Easy-WebPrint EX - (.Canon Inc..) [HKLM] -- Easy-WebPrint EX
O42 - Logiciel: Eee Docking 1.3.12.0 - (.ASUSTeK Computer Inc..) [HKLM] -- Eee Docking_is1
O42 - Logiciel: Enregistrement utilisateur de Canon MG5500 series - (.?Canon Inc..) [HKLM] -- Enregistrement utilisateur de Canon MG5500 series
O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- HDMI
O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8
O42 - Logiciel: FontResizer - (.ASUSTek.) [HKLM] -- InstallShield_{17780F99-A9DF-450B-81B3-6781B20A17A8}
O42 - Logiciel: Bon de commande SIDN - K-Zam OFFLINE - (.UNKNOWN.) [HKLM] -- K-ZAM-OFFLINE
O42 - Logiciel: Hotfix for Windows Media Format 11 SDK (KB929399) - (.Microsoft Corporation.) [HKLM] -- KB929399
O42 - Logiciel: Hotfix for Windows XP (KB954550-v5) - (.Microsoft Corporation.) [HKLM] -- KB954550-v5
O42 - Logiciel: Windows Management Framework Core - (.Microsoft Corporation.) [HKLM] -- KB968930
O42 - Logiciel: Hotfix for Windows XP (KB976002-v5) - (.Microsoft Corporation.) [HKLM] -- KB976002-v5
O42 - Logiciel: McAfee Security Scan Plus - (.McAfee, Inc..) [HKLM] -- McAfee Security Scan
O42 - Logiciel: Mozilla Firefox 39.0 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 39.0 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService
O42 - Logiciel: Microsoft Compression Client Pack 1.0 for Windows XP - (.Microsoft Corporation.) [HKLM] -- MSCompPackV1
O42 - Logiciel: Reimage Repair - (.Reimage.) [HKLM] -- Reimage Repair =>PUP.Optional.ReImageRepair
O42 - Logiciel: VLC media player 1.1.11 - (.VideoLAN.) [HKLM] -- VLC media player
O42 - Logiciel: Microsoft Kernel-Mode Driver Framework Feature Pack 1.7 - (.Microsoft Corporation.) [HKLM] -- Wdf01007
O42 - Logiciel: Microsoft Kernel-Mode Driver Framework Feature Pack 1.9 - (.Microsoft Corporation.) [HKLM] -- Wdf01009
O42 - Logiciel: Windows Genuine Advantage Notifications (KB905474) - (.Microsoft Corporation.) [HKLM] -- WgaNotify
O42 - Logiciel: Windows Media Format 11 runtime - (...) [HKLM] -- Windows Media Format Runtime
O42 - Logiciel: Lecteur Windows Media 11 - (...) [HKLM] -- Windows Media Player
O42 - Logiciel: Windows Media Format 11 runtime - (.Microsoft Corporation.) [HKLM] -- WMFDist11
O42 - Logiciel: Windows Media Player 11 - (.Microsoft Corporation.) [HKLM] -- wmp11
O42 - Logiciel: Microsoft User-Mode Driver Framework Feature Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- Wudf01000
O42 - Logiciel: FontResizer - (.ASUSTek.) [HKLM] -- {17780F99-A9DF-450B-81B3-6781B20A17A8}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C}
O42 - Logiciel: Asus ACPI Driver - (.AsusTek Computer.) [HKLM] -- {19F5658D-92E8-4A08-8657-D38ABB1574B2}
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
O42 - Logiciel: Atheros Client Installation Program - (.Atheros.) [HKLM] -- {28006915-2739-4EBE-B5E8-49B25D32EB33}
O42 - Logiciel: Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver - (.Atheros Communications Inc..) [HKLM] -- {3108C217-BE83-42E4-AE9E-A56A2A92E549}
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {343666E2-A059-48AC-AD67-230BF74E2DB2}
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2721691) - (.Microsoft Corporation.) [HKLM] -- {355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}
O42 - Logiciel: LiveUpdate - (.Asus.) [HKLM] -- {38E5A3B1-ADF1-47E0-8024-76310A30EB36}
O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {3B160861-7250-451E-B5EE-8B92BF30A710}
O42 - Logiciel: Visual Studio C++ 10.0 Runtime - (.TomTom International B.V..) [HKLM] -- {4412F224-3849-4461-A3E9-DEEF8D252790}
O42 - Logiciel: CapsHook - (.AsusTek Computer.) [HKLM] -- {4B5092B6-F231-4D18-83BC-2618B729CA45}
O42 - Logiciel: Complitly - (.Complitly.) [HKLM] -- {4FFBB818-B13C-11E0-931D-B2664824019B}_is1 =>PUP.Optional.PredictAd
O42 - Logiciel: ASUSUpdate for Eee PC - (.ASUSTeK Computer Inc..) [HKLM] -- {587178E7-B1DF-494E-9838-FA4DD36E873C}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
O42 - Logiciel: EeeSplendid - (.ASUS.) [HKLM] -- {6333FC29-BFE5-4024-AC78-958A1A7555D1}
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {65CB4C08-C47B-4A7E-A6A4-50C06ADA5FC6}
O42 - Logiciel: Bon de commande SIDN - K-Zam OFFLINE - (.UNKNOWN.) [HKLM] -- {69C43694-CDC6-7829-DA72-C10FD177DD7E}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {8153ED9A-C94A-426E-9880-5E6775C08B62}
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB973685) - (.Microsoft Corporation.) [HKLM] -- {859DFA95-E4A6-48CD-B88E-A3E483E89B44}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Microsoft Sync Framework Runtime Native v1.0 (x86) - (.Microsoft Corporation.) [HKLM] -- {8A74E887-8F0F-4017-AF53-CBA42211AAA5}
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {8E5233E1-7495-44FB-8DEB-4BE906D59619}
O42 - Logiciel: Ralink RT2860 Wireless LAN Card - (.Ralink.) [HKLM] -- {8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}
O42 - Logiciel: Segoe UI - (.Microsoft Corp.) [HKLM] -- {A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-0804-1033-1959-001824147215}
O42 - Logiciel: Adobe Reader X (10.1.6) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AA1000000001}
O42 - Logiciel: Microsoft Sync Framework Services Native v1.0 (x86) - (.Microsoft Corporation.) [HKLM] -- {BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
O42 - Logiciel: Business Everywhere - (...) [HKLM] -- {BEWINTERNET-FR-DME}.UninstallSuite
O42 - Logiciel: EzMessenger - (.ASUS.) [HKLM] -- {C72CA49A-9237-4810-8449-45DA3BD26D64}
O42 - Logiciel: Game Park Console - (.Oberon Media, Inc..) [HKLM] -- {D44AA979-47C2-4BC0-A860-09A54224EA44}_is1
O42 - Logiciel: Data Sync - (.ASUS.) [HKLM] -- {D806E63B-0C11-4061-8DA9-1E980FB9A9EB}
O42 - Logiciel: USB2.0 UVC VGA WebCam - (.Realtek Semiconductor Corp..) [HKLM] -- {E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}
O42 - Logiciel: Skype™ 5.10 - (.Skype Technologies S.A..) [HKLM] -- {EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}
O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM] -- {F6D6B258-E3CA-4AAC-965A-68D3E3140A8C}
O42 - Logiciel: Akamai NetSession Interface - (.Akamai Technologies, Inc.) [HKCU] -- Akamai

---\\ HKCU & HKLM Software Keys (98) - 26s
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\Apple Computer, Inc.
HKLM\SOFTWARE\Apple Inc.
HKLM\SOFTWARE\ASUS
HKLM\SOFTWARE\AsusTek Computer
HKLM\SOFTWARE\Atelier Photo FNAC
HKLM\SOFTWARE\Atheros
HKLM\SOFTWARE\Atheros Communications Inc.
HKLM\SOFTWARE\AVAST Software
HKLM\SOFTWARE\Babylon =>PUP.Optional.Babylon
HKLM\SOFTWARE\BabylonToolbar =>PUP.Optional.Babylon
HKLM\SOFTWARE\BrowserChoice
HKLM\SOFTWARE\C07ft5Y
HKLM\SOFTWARE\Canon
HKLM\SOFTWARE\Canon_Inc_IC
HKLM\SOFTWARE\Conduit =>PUP.Optional.Conduit
HKLM\SOFTWARE\CoreSecurity
HKLM\SOFTWARE\Creative Tech
HKLM\SOFTWARE\Dell
HKLM\SOFTWARE\ECAREME
HKLM\SOFTWARE\FRANCE TELECOM
HKLM\SOFTWARE\GEAR Software
HKLM\SOFTWARE\Gemplus
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\Hewlett-Packard
HKLM\SOFTWARE\Huawei technologies
HKLM\SOFTWARE\InstalledOptions
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\Lexmark
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\McAfee.com
HKLM\SOFTWARE\mcafeeupdater
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\Oberon Media
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\Program Groups
HKLM\SOFTWARE\Ralink
HKLM\SOFTWARE\Realtek
HKLM\SOFTWARE\Realtek Semiconductor Corp.
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\Reimage =>PUP.Optional.ReImageRepair
HKLM\SOFTWARE\Schlumberger
HKLM\SOFTWARE\Secure
HKLM\SOFTWARE\SimplyGen =>PUP.Optional.PredictAd
HKLM\SOFTWARE\Skyhook Wireless
HKLM\SOFTWARE\Skype
HKLM\SOFTWARE\Synaptics
HKLM\SOFTWARE\TomTom
HKLM\SOFTWARE\VideoLAN
HKLM\SOFTWARE\Windows 3.1 Migration Status
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Akamai
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\ASUS
HKCU\SOFTWARE\Avast Software
HKCU\SOFTWARE\BabylonToolbar =>PUP.Optional.Babylon
HKCU\SOFTWARE\BrowserTemp
HKCU\SOFTWARE\BVRP Software
HKCU\SOFTWARE\Canon
HKCU\SOFTWARE\Carambis
HKCU\SOFTWARE\Complitly =>PUP.Optional.PredictAd
HKCU\SOFTWARE\Conduit =>PUP.Optional.Conduit
HKCU\SOFTWARE\ConduitSearchScopes =>PUP.Optional.Conduit
HKCU\SOFTWARE\ECAREME
HKCU\SOFTWARE\FLEXnet
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JEDI-VCL
HKCU\SOFTWARE\LexmarkPhoto
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Macrovision
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Reimage =>PUP.Optional.ReImageRepair
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Smartbar =>PUP.Optional.SmartBar
HKCU\SOFTWARE\Softonic =>PUP.Optional.Softonic
HKCU\SOFTWARE\Sony Ericsson
HKCU\SOFTWARE\Synaptics
HKCU\SOFTWARE\TomTom
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Vodafone
HKCU\SOFTWARE\Widcomm
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\YahooPartnerToolbar =>Toolbar.YahooPartner
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Conduit =>PUP.Optional.Conduit

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (173) - 35s
O43 - CFD: 2012/06/21 15:51:37 - [] D -- C:\Program Files\Adobe
O43 - CFD: 2012/02/29 19:52:29 - [] D -- C:\Program Files\Apple Software Update
O43 - CFD: 2010/06/30 14:29:49 - [] D -- C:\Program Files\ASUS
O43 - CFD: 2010/03/10 14:47:23 - [] D -- C:\Program Files\Atheros
O43 - CFD: 2012/06/20 22:32:31 - [] D -- C:\Program Files\AVAST Software
O43 - CFD: 2013/02/22 23:19:38 - [] D -- C:\Program Files\Bon de commande SIDN - K-Zam OFFLINE
O43 - CFD: 2015/07/20 16:59:40 - [] D -- C:\Program Files\Canon
O43 - CFD: 2011/10/03 13:14:33 - [] D -- C:\Program Files\CardDetector
O43 - CFD: 2011/12/26 22:26:22 - [] D -- C:\Program Files\Complitly =>PUP.Optional.PredictAd
O43 - CFD: 2009/12/15 07:09:45 - [0] D -- C:\Program Files\ComPlus Applications
O43 - CFD: 2012/06/21 14:56:09 - [] D -- C:\Program Files\Conduit
O43 - CFD: 2012/06/21 14:44:54 - [] D -- C:\Program Files\EasyPHP-5.3.9
O43 - CFD: 2010/03/10 15:03:18 - [] D -- C:\Program Files\EBI
O43 - CFD: 2010/06/30 14:36:45 - [] D -- C:\Program Files\EeePC
O43 - CFD: 2012/09/23 10:06:36 - [] D -- C:\Program Files\Fichiers communs
O43 - CFD: 2013/08/16 22:56:06 - [] D -- C:\Program Files\Free PDF to Word Converter
O43 - CFD: 2012/12/14 11:54:43 - [] D -- C:\Program Files\Google
O43 - CFD: 2012/10/30 21:01:46 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 2010/03/10 14:50:06 - [] D -- C:\Program Files\Intel
O43 - CFD: 2012/12/13 19:35:13 - [] D -- C:\Program Files\Intel Desktop Board
O43 - CFD: 2014/01/26 16:52:19 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 2012/02/29 19:53:17 - [] D -- C:\Program Files\iPod
O43 - CFD: 2012/02/29 19:54:53 - [] D -- C:\Program Files\iTunes
O43 - CFD: 2014/01/26 16:56:42 - [] D -- C:\Program Files\McAfee Security Scan
O43 - CFD: 2010/03/10 14:30:07 - [] D -- C:\Program Files\Messenger
O43 - CFD: 2013/08/16 23:02:44 - [] D -- C:\Program Files\Microsoft
O43 - CFD: 2011/12/24 18:00:56 - [] D -- C:\Program Files\Microsoft Analysis Services
O43 - CFD: 2009/12/15 07:11:53 - [] D -- C:\Program Files\microsoft frontpage
O43 - CFD: 2011/12/24 18:12:40 - [] D -- C:\Program Files\Microsoft Office
O43 - CFD: 2013/07/12 11:43:38 - [] D -- C:\Program Files\Microsoft Silverlight
O43 - CFD: 2011/12/24 18:12:36 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 2010/03/10 15:00:14 - [] D -- C:\Program Files\Microsoft Sync Framework
O43 - CFD: 2011/12/24 18:13:46 - [] D -- C:\Program Files\Microsoft Synchronization Services
O43 - CFD: 2011/12/24 18:03:11 - [] D -- C:\Program Files\Microsoft Visual Studio 8
O43 - CFD: 2012/10/13 12:20:37 - [] D -- C:\Program Files\Microsoft Works
O43 - CFD: 2015/07/20 15:29:55 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 2011/01/11 21:09:51 - [] D -- C:\Program Files\Movie Maker
O43 - CFD: 2015/07/20 14:55:42 - [] D -- C:\Program Files\Mozilla Firefox
O43 - CFD: 2015/07/20 14:55:42 - [] D -- C:\Program Files\Mozilla Maintenance Service
O43 - CFD: 2011/12/24 18:15:26 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 2013/03/05 20:57:04 - [] D -- C:\Program Files\MSECache
O43 - CFD: 2009/12/15 07:09:04 - [] D -- C:\Program Files\MSN Gaming Zone
O43 - CFD: 2010/03/10 14:23:10 - [] D -- C:\Program Files\MSXML 4.0
O43 - CFD: 2009/12/15 07:10:03 - [] D -- C:\Program Files\NetMeeting
O43 - CFD: 2011/10/03 13:17:08 - [] D -- C:\Program Files\OrangeBS
O43 - CFD: 2011/01/11 12:15:37 - [] D -- C:\Program Files\Outlook Express
O43 - CFD: 2011/01/05 21:33:43 - [] D -- C:\Program Files\Realtek
O43 - CFD: 2010/05/06 22:47:36 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 2015/07/20 17:37:14 - [] D -- C:\Program Files\Reimage =>PUP.Optional.ReImageRepair
O43 - CFD: 2009/12/15 07:10:14 - [] D -- C:\Program Files\Services en ligne
O43 - CFD: 2012/09/23 10:06:36 - [] RD -- C:\Program Files\Skype
O43 - CFD: 2012/12/13 20:30:36 - [] D -- C:\Program Files\Synaptics
O43 - CFD: 2011/10/13 13:37:42 - [] D -- C:\Program Files\VideoLAN
O43 - CFD: 2011/08/23 14:55:04 - [] D -- C:\Program Files\Windows Live
O43 - CFD: 2010/03/10 14:58:23 - [] D -- C:\Program Files\Windows Live SkyDrive
O43 - CFD: 2010/03/10 15:02:47 - [] D -- C:\Program Files\Windows Media Connect 2
O43 - CFD: 2010/03/10 15:03:10 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 2009/12/15 07:09:01 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 2009/12/15 07:10:16 - [0] HD -- C:\Program Files\WindowsUpdate
O43 - CFD: 2009/12/15 07:11:53 - [] D -- C:\Program Files\xerox
O43 - CFD: 2010/06/30 15:03:34 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 2010/06/30 14:30:02 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ASUS
O43 - CFD: 2015/07/20 15:58:42 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Canon MG5500 series Manual
O43 - CFD: 2015/07/20 16:06:43 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Canon Utilities
O43 - CFD: 2014/01/26 16:56:45 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 2012/06/21 14:44:37 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\EasyPHP 5.3.9
O43 - CFD: 2015/07/20 16:59:50 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Enregistrement utilisateur de Canon MG5500 series
O43 - CFD: 2010/05/06 22:56:25 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Game Park
O43 - CFD: 2012/12/14 12:51:10 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\iTunes
O43 - CFD: 2009/12/15 07:09:10 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux
O43 - CFD: 2011/11/29 19:49:27 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Lexmark 840 Series
O43 - CFD: 2014/01/26 16:56:59 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\McAfee Security Scan Plus
O43 - CFD: 2011/12/24 18:16:34 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Office
O43 - CFD: 2013/07/12 09:29:29 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Silverlight
O43 - CFD: 2012/10/13 12:20:38 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Works
O43 - CFD: 2011/10/03 13:21:43 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Orange Business Services
O43 - CFD: 2010/03/10 14:15:01 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration
O43 - CFD: 2015/07/20 17:36:26 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Reimage Repair =>PUP.Optional.ReImageRepair
O43 - CFD: 2011/12/24 18:16:34 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\SharePoint
O43 - CFD: 2012/09/23 10:06:36 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Skype
O43 - CFD: 2011/10/13 13:38:33 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN
O43 - CFD: 2011/07/13 00:04:58 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Windows Live
O43 - CFD: 2012/06/23 22:37:26 - [] D -- C:\Documents and Settings\All Users\Application Data\Adobe
O43 - CFD: 2012/02/29 19:51:07 - [] D -- C:\Documents and Settings\All Users\Application Data\Apple
O43 - CFD: 2012/02/29 19:53:06 - [] D -- C:\Documents and Settings\All Users\Application Data\Apple Computer
O43 - CFD: 2010/03/10 14:47:28 - [] D -- C:\Documents and Settings\All Users\Application Data\Atheros
O43 - CFD: 2015/07/20 20:57:27 - [] D -- C:\Documents and Settings\All Users\Application Data\AVAST Software
O43 - CFD: 2011/12/26 22:26:27 - [0] D -- C:\Documents and Settings\All Users\Application Data\Babylon =>PUP.Optional.Babylon
O43 - CFD: 2015/07/20 16:14:10 - [] HD -- C:\Documents and Settings\All Users\Application Data\Canon Easy-WebPrint EX
O43 - CFD: 2015/07/20 15:26:45 - [] HD -- C:\Documents and Settings\All Users\Application Data\CanonIJETV
O43 - CFD: 2015/07/20 16:13:03 - [] HD -- C:\Documents and Settings\All Users\Application Data\CanonIJMIG
O43 - CFD: 2015/07/20 16:13:04 - [] D -- C:\Documents and Settings\All Users\Application Data\CanonIJPLM
O43 - CFD: 2015/07/20 16:11:30 - [] HD -- C:\Documents and Settings\All Users\Application Data\CanonIJQuickMenu
O43 - CFD: 2015/07/20 16:06:36 - [] D -- C:\Documents and Settings\All Users\Application Data\CanonIJWSpt
O43 - CFD: 2010/03/10 15:03:25 - [0] D -- C:\Documents and Settings\All Users\Application Data\EBI
O43 - CFD: 2011/01/10 03:38:25 - [] D -- C:\Documents and Settings\All Users\Application Data\FLEXnet
O43 - CFD: 2012/12/14 11:54:25 - [] D -- C:\Documents and Settings\All Users\Application Data\Google
O43 - CFD: 2011/01/10 03:38:25 - [] D -- C:\Documents and Settings\All Users\Application Data\Macrovision
O43 - CFD: 2012/06/21 15:32:12 - [] D -- C:\Documents and Settings\All Users\Application Data\McAfee
O43 - CFD: 2012/06/21 15:32:16 - [] D -- C:\Documents and Settings\All Users\Application Data\McAfee Security Scan
O43 - CFD: 2013/08/16 23:02:44 - [] SD -- C:\Documents and Settings\All Users\Application Data\Microsoft
O43 - CFD: 2013/07/12 10:01:02 - [] D -- C:\Documents and Settings\All Users\Application Data\Microsoft Help
O43 - CFD: 2012/06/11 07:39:09 - [] D -- C:\Documents and Settings\All Users\Application Data\Mozilla
O43 - CFD: 2010/05/06 22:56:17 - [] D -- C:\Documents and Settings\All Users\Application Data\OberonGameConsole
O43 - CFD: 2010/03/10 14:47:50 - [] D -- C:\Documents and Settings\All Users\Application Data\Ralink Driver
O43 - CFD: 2015/07/20 17:37:49 - [] D -- C:\Documents and Settings\All Users\Application Data\Reimage Protector =>PUP.Optional.ReImageRepair
O43 - CFD: 2010/03/10 15:03:25 - [0] D -- C:\Documents and Settings\All Users\Application Data\RSMR
O43 - CFD: 2012/09/23 10:06:50 - [] D -- C:\Documents and Settings\All Users\Application Data\Skype
O43 - CFD: 2012/12/13 20:29:21 - [] D -- C:\Documents and Settings\All Users\Application Data\Synaptics
O43 - CFD: 2011/01/10 03:38:29 - [] D -- C:\Documents and Settings\All Users\Application Data\Vodafone
O43 - CFD: 2010/03/10 14:23:48 - [] D -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
O43 - CFD: 2012/02/29 19:54:53 - [] D -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
O43 - CFD: 2012/06/21 15:52:09 - [] D -- C:\Program Files\Fichiers communs\Adobe
O43 - CFD: 2012/06/21 15:36:16 - [] D -- C:\Program Files\Fichiers communs\Adobe AIR
O43 - CFD: 2012/02/29 19:53:10 - [] D -- C:\Program Files\Fichiers communs\Apple
O43 - CFD: 2011/12/24 18:13:42 - [] D -- C:\Program Files\Fichiers communs\DESIGNER
O43 - CFD: 2013/08/16 22:54:07 - [] D -- C:\Program Files\Fichiers communs\France Telecom
O43 - CFD: 2010/06/30 14:29:33 - [] D -- C:\Program Files\Fichiers communs\InstallShield
O43 - CFD: 2012/06/22 19:30:44 - [] D -- C:\Program Files\Fichiers communs\Microsoft Shared
O43 - CFD: 2009/12/15 07:10:02 - [] D -- C:\Program Files\Fichiers communs\MSSoap
O43 - CFD: 2009/12/14 23:06:08 - [] D -- C:\Program Files\Fichiers communs\ODBC
O43 - CFD: 2009/12/15 07:10:03 - [] D -- C:\Program Files\Fichiers communs\Services
O43 - CFD: 2012/09/23 10:06:36 - [] D -- C:\Program Files\Fichiers communs\Skype
O43 - CFD: 2009/12/14 23:06:05 - [] D -- C:\Program Files\Fichiers communs\SpeechEngines
O43 - CFD: 2012/11/20 09:57:56 - [] D -- C:\Program Files\Fichiers communs\System
O43 - CFD: 2010/03/10 14:56:02 - [] D -- C:\Program Files\Fichiers communs\Windows Live
O43 - CFD: 2012/06/21 21:07:46 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Adobe
O43 - CFD: 2012/03/24 22:41:58 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Apple Computer
O43 - CFD: 2015/07/20 21:16:24 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\AVAST Software
O43 - CFD: 2011/12/26 22:26:26 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Babylon =>PUP.Optional.Babylon
O43 - CFD: 2011/12/26 22:27:07 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\BabylonToolbar =>PUP.Optional.Babylon
O43 - CFD: 2015/07/20 16:12:13 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Canon
O43 - CFD: 2015/07/20 16:09:30 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Canon Easy-WebPrint EX
O43 - CFD: 2011/07/04 15:43:06 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Carambis
O43 - CFD: 2011/12/26 22:26:21 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Complitly =>PUP.Optional.PredictAd
O43 - CFD: 2012/12/14 16:55:42 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\DriverFinder =>PUP.Optional.DriverFinder
O43 - CFD: 2011/01/09 22:02:29 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\FLEXnet
O43 - CFD: 2012/06/21 21:17:41 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\GetRightToGo
O43 - CFD: 2013/01/03 18:42:28 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Google
O43 - CFD: 2009/12/15 07:14:54 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Identities
O43 - CFD: 2010/03/10 14:47:15 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\InstallShield
O43 - CFD: 2012/06/21 17:48:33 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\K-ZAM-OFFLINE
O43 - CFD: 2012/07/05 21:33:26 - [0] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\kujytuo
O43 - CFD: 2011/01/05 21:51:34 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Macromedia
O43 - CFD: 2015/07/20 16:43:16 - [] SD -- C:\Documents and Settings\ssssssssssssssss\Application Data\Microsoft
O43 - CFD: 2011/03/04 21:24:53 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla
O43 - CFD: 2012/09/23 10:07:37 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Skype
O43 - CFD: 2012/12/14 12:22:32 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Synaptics
O43 - CFD: 2013/07/17 18:34:44 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\TomTom
O43 - CFD: 2012/02/29 19:32:26 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\vlc
O43 - CFD: 2011/01/10 21:54:02 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\Vodafone
O43 - CFD: 2015/07/20 21:51:21 - [] D -- C:\Documents and Settings\ssssssssssssssss\Application Data\ZHP
O43 - CFD: 2013/06/03 19:55:46 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Adobe
O43 - CFD: 2015/07/19 20:45:31 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Akamai
O43 - CFD: 2012/02/29 19:52:33 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Apple
O43 - CFD: 2013/03/05 20:49:35 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Apple Computer
O43 - CFD: 2010/05/06 22:56:11 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\ApplicationHistory
O43 - CFD: 2011/12/26 22:26:28 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Babylon =>PUP.Optional.Babylon
O43 - CFD: 2012/12/13 14:57:51 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Conduit
O43 - CFD: 2013/07/17 18:33:14 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Downloaded Installations
O43 - CFD: 2015/07/20 16:08:40 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Google
O43 - CFD: 2011/05/10 15:52:14 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Identities
O43 - CFD: 2013/08/16 23:02:44 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Microsoft
O43 - CFD: 2010/03/10 15:03:59 - [0] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Microsoft Help
O43 - CFD: 2011/03/04 21:24:26 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Mozilla
O43 - CFD: 2011/11/29 19:42:18 - [0] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\PackageAware =>PUP.Optional.BearShare
O43 - CFD: 2013/01/12 15:03:30 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\PCHealth
O43 - CFD: 2010/03/10 15:57:39 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Skyhook Wireless
O43 - CFD: 2012/06/21 21:07:46 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Temp
O43 - CFD: 2013/08/16 23:04:57 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\TomTom
O43 - CFD: 2011/01/10 03:37:53 - [] D -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\{07CF705A-5E09-4293-B4C7-0DA63E4ADA83}
O43 - CFD: 2010/03/10 15:09:56 - [] RD -- C:\Documents and Settings\ssssssssssssssss\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 2012/02/29 19:33:58 - [] RD -- C:\Documents and Settings\ssssssssssssssss\Menu Démarrer\Programmes\Démarrage

---\\ Enumération des clés de registre StartupReg (SMSR) (O53) (3) - 3s
O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] . (...) -- C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\MsnMsgr [Key] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
O53 - SMSR:HKLM\...\startupreg\Persistence [Key] . (.Intel Corporation - persistence Module.) -- C:\WINDOWS\system32\igfxpers.exe

---\\ Liste des pilotes du système (SDL) (O58) (59) - 88s
O58 - SDL:2009/11/18 01:16:00 A . (.Creative - Creative WDM 3D Audio Driver.) -- C:\WINDOWS\System32\drivers\Ambfilt.sys [1691480]
O58 - SDL:2010/03/31 03:40:20 A . (...) -- C:\WINDOWS\System32\drivers\AsUpIO.sys [11520]
O58 - SDL:2008/04/08 18:59:28 A . (.ASUSTeK Computer Inc. - ASUS ACPI Device Driver.) -- C:\WINDOWS\System32\drivers\ASUSACPI.SYS [10752]
O58 - SDL:1999/03/06 14:38:28 A . (...) -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS [6144]
O58 - SDL:2015/07/20 21:01:23 A . (.AVAST Software - avast! HWID.) -- C:\WINDOWS\System32\drivers\aswHwid.sys [24016]
O58 - SDL:2015/07/20 21:01:23 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys [76000]
O58 - SDL:2015/07/20 21:01:23 A . (.AVAST Software - avast! TDI Redirect Driver.) -- C:\WINDOWS\System32\drivers\aswRdr.sys [55200]
O58 - SDL:2015/07/20 21:01:23 A . (.AVAST Software - avast! Revert.) -- C:\WINDOWS\System32\drivers\aswRvrt.sys [49776]
O58 - SDL:2015/07/20 21:00:55 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\WINDOWS\System32\drivers\aswSnx.sys [788784]
O58 - SDL:2015/07/20 21:01:23 A . (.AVAST Software - avast! self protection module.) -- C:\WINDOWS\System32\drivers\aswSP.sys [433264]
O58 - SDL:2015/07/20 21:01:23 A . (.AVAST Software - avast! Stream Filter.) -- C:\WINDOWS\System32\drivers\aswStmXP.sys [161472]
O58 - SDL:2015/07/20 21:01:23 A . (.AVAST Software - avast! TDI Filter Driver.) -- C:\WINDOWS\System32\drivers\aswTdi.sys [57888]
O58 - SDL:2015/07/20 21:01:23 A . (.AVAST Software - avast! VM Monitor.) -- C:\WINDOWS\System32\drivers\aswVmm.sys [208664]
O58 - SDL:2009/08/12 02:04:30 A . (.Atheros Communications, Inc. - Driver for Atheros Wireless Network Adapter.) -- C:\WINDOWS\System32\drivers\athw.sys [1582624]
O58 - SDL:2008/09/26 02:30:12 A . (.Broadcom Corporation. - Broadcom Bluetooth IT Manager Filter.) -- C:\WINDOWS\System32\drivers\btwsecfl.sys [91176]
O58 - SDL:2008/04/14 14:00:00 A . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\System32\drivers\cinemst2.sys [262528]
O58 - SDL:2008/04/14 14:00:00 A . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\System32\drivers\cpqdap01.sys [11776]
O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- C:\WINDOWS\System32\drivers\dmboot.sys [800256]
O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\System32\drivers\dmio.sys [154496]
O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\System32\drivers\dmload.sys [5888]
O58 - SDL:2009/06/15 13:45:36 RA . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\ewusbfake.sys [102656]
O58 - SDL:2009/06/15 13:45:36 RA . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\ewusbmdm.sys [102400]
O58 - SDL:2009/05/18 14:17:00 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\WINDOWS\System32\drivers\GEARAspiWDM.sys [26600]
O58 - SDL:2008/04/14 14:00:00 A . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [144384]
O58 - SDL:2009/06/04 12:43:16 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\WINDOWS\System32\drivers\iaStor.sys [330264]
O58 - SDL:2009/09/24 11:55:32 A . (.Intel Corporation - Intel Graphics Miniport Driver.) -- C:\WINDOWS\System32\drivers\igxpmp32.sys [6301696]
O58 - SDL:2008/11/03 09:03:28 A . (. - Keyboard Filter Driver.) -- C:\WINDOWS\System32\drivers\kbfiltr.sys [13880]
O58 - SDL:2009/07/27 09:09:52 A . (.Atheros Communications, Inc. - Atheros AR813x/AR815x PCI-E Ethernet Contro.) -- C:\WINDOWS\System32\drivers\l1c51x86.sys [44032]
O58 - SDL:2009/11/18 01:17:00 A . (.Creative Technology Ltd. - Creative WDM Audio Driver (32-bit).) -- C:\WINDOWS\System32\drivers\Monfilt.sys [1395800]
O58 - SDL:2011/08/02 18:38:44 A . (.Apple Inc. - Apple Mobile Device Ethernet.) -- C:\WINDOWS\System32\drivers\netaapl.sys [18432]
O58 - SDL:2008/04/14 14:00:00 A . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\nikedrv.sys [12032]
O58 - SDL:2008/04/14 14:00:00 A . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- C:\WINDOWS\System32\drivers\ptilink.sys [17792]
O58 - SDL:2008/04/14 14:00:00 A . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\System32\drivers\rio8drv.sys [12032]
O58 - SDL:2008/04/14 14:00:00 A . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\riodrv.sys [12032]
O58 - SDL:2010/04/27 10:10:52 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RtkHDAud.sys [6031904]
O58 - SDL:2010/02/04 17:08:30 A . (.Realtek Semiconductor Corp. - Realtek UVC Driver for XP/Vista/Win7.) -- C:\WINDOWS\System32\drivers\rtsuvc.sys [73088]
O58 - SDL:2008/04/14 14:00:00 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [20480]
O58 - SDL:2008/04/14 14:00:00 A . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\System32\drivers\tsbvcap.sys [21376]
O58 - SDL:2011/08/02 18:38:56 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\WINDOWS\System32\drivers\usbaapl.sys [42496]
O58 - SDL:2008/04/14 14:00:00 A . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\System32\drivers\vdmindvd.sys [58112]
O58 - SDL:2010/03/10 15:57:40 A . (.Skyhook Wireless - WPS NDIS User Mode I/O Driver.) -- C:\WINDOWS\System32\drivers\wpsnuio.sys [13696]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ansi.sys [9037]
O58 - SDL:2009/08/12 02:04:30 A . (.Atheros Communications, Inc. - Driver for Atheros Wireless Network Adapter.) -- C:\WINDOWS\System32\athw.sys [1582624]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\country.sys [27097]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\himem.sys [4912]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\key01.sys [42809]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\keyboard.sys [42537]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos.sys [27916]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos404.sys [29146]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos411.sys [29370]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos412.sys [29274]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntdos804.sys [29146]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio.sys [34000]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio404.sys [34560]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio411.sys [35648]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio412.sys [35424]
O58 - SDL:2008/04/14 14:00:00 A . (...) -- C:\WINDOWS\System32\ntio804.sys [34560]
O58 - SDL:2008/02/20 03:52:54 A . (.Printing Communications Assoc., Inc. (PCAUSA) - PCAUSA NDIS 5.0 MPR Protocol Driver.) -- C:\WINDOWS\System32\pcampr5.sys [34688]
O58 - SDL:2008/02/20 03:52:54 A . (.Printing Communications Assoc., Inc. (PCAUSA) - PCAUSA NDIS 5.0 Protocol Driver.) -- C:\WINDOWS\System32\pcandis5.sys [32128]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (7) - 92s
O61 - LFC: 2015/07/19 20:51:07 A . (..) -- C:\Documents and Settings\ssssssssssssssss\Mes documents\Téléchargements\Firefox Setup Stub 39.0.exe [242904]
O61 - LFC: 2015/07/20 15:08:22 A . (.Application Installer Software.) -- C:\Documents and Settings\ssssssssssssssss\Mes documents\Téléchargements\installer_flash_player_Dutch.exe [820240]
O61 - LFC: 2015/07/20 16:57:34 A . (.Reimage®.) -- C:\Documents and Settings\ssssssssssssssss\Mes documents\Téléchargements\ReimageRepair.exe [772016] =>PUP.Optional.ReImageRepair
O61 - LFC: 2015/07/20 16:36:36 A . (..) -- C:\Documents and Settings\ssssssssssssssss\Mes documents\Téléchargements\win-mg5500-1_1-mcd.exe [52039216]
O61 - LFC: 2015/07/19 20:43:17 A . (.Akamai Technologies, Inc..) -- C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Akamai\installer_no_upload_silent.exe [10475384]
O61 - LFC: 2015/07/19 20:52:15 A . (.ClientConnect Ltd..) -- C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\extensions\{8e5025c2-8ea3-430d-80b8-a14151068a6d}\Plugins\npFirefoxPlugin.dll [216384] =>PUP.Optional.ClientConnect
O61 - LFC: 2015/07/19 20:52:09 A . (.ClientConnect Ltd..) -- C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\extensions\{8e5025c2-8ea3-430d-80b8-a14151068a6d}\ctypes\FirefoxCtype.dll [372000] =>PUP.Optional.ClientConnect

---\\ Menu de démarrage Internet (SMI) (O68) (8) - 2s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe

---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (144) - 144s
O69 - SBI: C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\searchplugins\conduit.xml
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284..clientLogServiceUrl", "http://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284..uninstallLogServiceUrl", "http://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.AboutPrivacyUrl", "http://www.conduit.com/privacy/default.aspx"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.GroupingServiceUrl", "http://grouping.services.conduit.com/"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.HomepageBeforeUnload", "http://search.conduit.com/?ctid=CT3128284&SearchSource=13"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.InstallationType", "ConduitNSISIntegration"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.IsProtectorsInit", true); =>PUP.Optional.MocaFlix
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.LanguagePackServiceUrl", "http://translation.users.conduit.com/Translation.ashx"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.SearchFromAddressBarUrl", "http://search.conduit.com/ResultsExt.aspx?ctid=CT3128284&SearchSource=2&q="); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.SearchInNewTabServiceUrl", "http://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID&UM=UM_ID"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.SearchProtectorEnabled", false); =>PUP.Optional.SearchProtect
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.SearchProtectorToolbarDisabled", false); =>PUP.Optional.SearchProtect
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.TBHomePageUrl", "http://search.conduit.com/?ctid=CT3128284&SearchSource=13"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,client.conduit-storage.com,OurToolb[...] =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.backendstorage.http://storage_conduit_com/marketplace/83/6d/8399d181-be98-42f2-b035-1616f617316d/.pricesparro[...] =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.backendstorage.mam_gk_appstate_pricegong", "6F6E"); =>PUP.Optional.PriceGong
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.conduit.com;apps.conduit.com;se[...] =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.http___storage_conduit_com_marketplace_83_6d_8399d181_be98_42f2_b035_1616f617316d_.pricesparrowuuid.from_oldb[...] =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.installType", "ConduitNSISIntegration"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.isPerformedSmartBarTransition", "true"); =>PUP.Optional.SmartBar
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.lastNewTabSettings", "{\"isEnabled\":true,\"newTabUrl\":\"http://www.trovigo.com/?gd=&ctid=CT3128284&octid=CT[...] =>PUP.Optional.Trovigo
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.mam_gk_appstate_pricegong.from_oldbar.enc", "b24="); =>PUP.Optional.PriceGong
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.myStuffSearchUrl", "http://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&oct[...] =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.myStuffServiceUrl", "http://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE[...] =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.originalSearchAddressUrl", "http://search.babylon.com/?AF=108988&babsrc=adbartrp&mntrId=bccde6950000000000002[...] =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.searchInNewTabValue", "https://www.trovigo.com/?gd=&ctid=CT3128284&octid=CT3128284&ISID=ISID_ID&SearchSource=[...] =>PUP.Optional.Trovigo
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.searchProtectorDialogDelayInSec", 10); =>PUP.Optional.SearchProtect
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.searchProtectorEnableByLogin", true); =>PUP.Optional.SearchProtect
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.smartbar.CTID", "CT3128284"); =>PUP.Optional.SmartBar
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.smartbar.Uninstall", "0"); =>PUP.Optional.SmartBar
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CT3128284.smartbar.toolbarName", "01NET.com "); =>PUP.Optional.SmartBar
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ConduitHomepagesList", "http://search.conduit.com/?ctid=CT3128284&SearchSource=13"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ConduitSearchList", "01NET.com Customized Web Search"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://Settings.toolbar.search.conduit.com/root/CT3128284/CT3128284", "\"8ae246463f38b6a54b90fd5a[...] =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://alerts.conduit-services.com/root/1524266/1519569/FR", "\"0\""); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://appsmetadata.toolbar.conduit-services.com/?ctid=CT3128284", "\"1360859319\""); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=fr", "y/LORlR12DbewW+JdTT[...] =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=fr", "S+IiKFOIcJRQQUQYxAuT[...] =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=fr", "Piuk0Y+XrAdQh3bNgUm[...] =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=fr", "36O4HhdlE7RKWjfvnlLR2g[...] =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.alert.conduit-services.com/alert/dlg.pkg", "\"8076e3ce381dcd1:0\""); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.14.0.1", "\"0d648794549cd1:0\"")[...] =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.14.1.0", "\"0e0a4327275cd1:0\"")[...] =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.15.1.0", "\"0343677cfb1cd1:0\"")[...] =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.16.0.100", "\"0343677cfb1cd1:0\"[...] =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.16.0.3", "\"0343677cfb1cd1:0\"")[...] =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.18.0.7", "\"0343677cfb1cd1:0\"")[...] =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.19.0.3", "\"dfe74040abc2ce1:0\""[...] =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://newtab.conduit-hosting.com/newtab/?ctid=CT3128284", "\"1deff-277-fb07dd00\""); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://servicemap.conduit-services.com/Toolbar/?ownerId=CT3128284", "\"7097fd37277b6a1b754b125bd1[...] =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://translation.toolbar.conduit-services.com/?locale=EB_LOCALE", "\"5f557fa45ff1a13a3b53882c18[...] =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ETag.http://translation.toolbar.conduit-services.com/?locale=fr", "\"0a6cd117206c07db62650c3450b78383\[...] =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.LatestLibsPath", "file:///C:\\Documents and Settings\\ssssssssssssssss\\Application Data\\Mozilla\\Fir[...] =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.LatestToolbarVersionInstalled", "3.14.0.1"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.MiniIPageGadgetSize.http://pricegong.conduitapps.com/v4//agreement/agree.html#pg_ext_msg_key_17c7ce34,[...] =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "http://search.babylon.com/?AF=108988&babsrc=adbartrp&mntrId=bccde69500[...] =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ToolbarsList", "CT3128284"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ToolbarsList2", "CT3128284"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.ToolbarsList4", "CT3128284"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.globalUserId", "83aa1c78-c040-4cb6-9b46-b2f7d80edd16"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.keywordURLSelectedCTID", "CT3128284"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.alertDialogsGetterLastCheckTime", "Thu Jun 21 2012 14:57:21 GMT+0200"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.alertEnabled", true); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.alertInfoInterval", 1440); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.alertInfoLastCheckTime", "Thu Jun 21 2012 17:53:05 GMT+0200"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.clientsServerUrl", "http://alert.client.conduit.com"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.locale", "en"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.loginIntervalMin", 1440); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.loginLastCheckTime", "Thu Jun 21 2012 14:57:14 GMT+0200"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.loginLastUpdateTime", "1313487611"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.servicesServerUrl", "http://alert.services.conduit.com"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.showTrayIcon", false); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.userCloseIntervalMin", 300); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.notifications.userId", "937a36ef-7899-47e3-a4ca-0dbe25255fc2"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.originalHomepage", "http://google.fr"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("CommunityToolbar.originalSearchEngine", "Google"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("Smartbar.SearchFromAddressBarSavedUrl", "http://search.babylon.com/?AF=108988&babsrc=adbartrp&mntrId=bccde6950000000000[...] =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("Smartbar.keywordURLSelectedCTID", "CT3128284"); =>PUP.Optional.SmartBar
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("browser.babylon.HPOnNewTab", "search.babylon.com"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("browser.newtab.url", "https://www.trovigo.com/?gd=&ctid=CT3128284&octid=CT3128284&ISID=ISID_ID&SearchSource=15&CUI=UN34[...] =>PUP.Optional.Trovigo
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("browser.search.defaulturl", "http://search.conduit.com/ResultsExt.aspx?ctid=CT3128284&SearchSource=3&q={searchTerms}"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("browser.search.order.1", "Search the web (Babylon)"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.admin", false); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.aflt", "babsst"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.babExt", ""); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.babTrack", "affID=108988"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.bbDpng", 20); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.dfltLng", "en"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.dfltSrch", true); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.hmpg", true); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.id", "bccde69500000000000020cf305c8b6c"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.instlDay", "15404"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.instlRef", "sst"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.keyWordUrl", "http://search.babylon.com/?AF=108988&babsrc=adbartrp&mntrId=bccde69500000000000[...] =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.lastDP", 20); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.lastVrsnTs", "1.5.3.1718:50:44"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.mntrFFxVrsn", "39.0"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.newTab", true); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.newTabUrl", "http://search.babylon.com/?babsrc=NT_FFUP"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.noFFXTlbr", false); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.propectorlck", 175981948); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.prtkDS", 0); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.prtkHmpg", 0); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.prtnrId", "babylon"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.ptch_0717", true); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.smplGrp", "azb"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.srcExt", "ss"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.storage\\storage\\mpvinpagemutex", "96e2b5fe1f0e7f4b210b69991a1afbe7@@@Mon Jul 20 2015 21:46:[...] =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.tlbrId", "base"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.vrsn", "1.5.3.17"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.vrsnTs", "1.5.3.1718:50:44"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.vrsni", "1.5.3.17"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.aflt", "babsst"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.babExt", ""); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.babTrack", "affID=108988"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.hardId", "bccde69500000000000020cf305c8b6c"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.id", "bccde69500000000000020cf305c8b6c"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.instlDay", "15404"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.instlRef", "sst"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.newTab", false); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.prdct", "BabylonToolbar"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.prtnrId", "babylon"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.smplGrp", "none"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.srcExt", "ss"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.tlbrId", "base"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.vrsn", "1.5.3.17"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.5.3.1718:50:44"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar_i.vrsni", "1.5.3.17"); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.enabledAddons", "2020Player_IKEA%402020Technologies.com:5.0.94.1,ffxtlbr%40babylon.com:1.2.0,%7B8e5025c2-8ea[...] =>PUP.Optional.Babylon
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("smartbar.addressBarOwnerCTID", "CT3128284"); =>PUP.Optional.SmartBar
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("smartbar.conduitHomepageList", "http://search.conduit.com/?ctid=CT3128284&SearchSource=13"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("smartbar.conduitSearchAddressUrlList", "http://search.conduit.com/ResultsExt.aspx?ctid=CT3128284&SearchSource=2&q=,http[...] =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("smartbar.homepageList", "http://search.conduit.com/?ctid=CT3128284&SearchSource=13"); =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("smartbar.machineId", "F4FMCMKQVP5M7Q7AG0UNVK9DWLJVTUKOMIO7+ZWIV3QLK+FE2JLK19MW0DAVJ1F4BZVYFQM0/BAZM2ZBSGGA6A"); =>PUP.Optional.SmartBar
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("smartbar.searchAddressUrlList", "http://search.conduit.com/ResultsExt.aspx?ctid=CT3128284&SearchSource=2&q=,http://sear[...] =>PUP.Optional.Conduit
O69 - SBI: prefs.js [ssssssssssssssss - b2amnmqe.default] user_pref("extensions.BabylonToolbar.storage\\storage\\mpvinpagemutex", "bd651b0b350a2f31dbbd1e0379e5d968@@@Mon Jul 20 2015 21:53:[...] =>PUP.Optional.Babylon
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} [DefaultScope] - (Search the web (Babylon)) - http://search.babylon.com/ =>PUP.Optional.Babylon
O69 - SBI: SearchScopes [HKCU] {81466A4D-5DCF-45DC-BC0B-86485A5F1B2B} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKCU] {afdbddaa-5d3f-42ee-b79c-185a7020515b} - (01NET.com Customized Web Search) - http://search.conduit.com/ =>PUP.Optional.Conduit

---\\ Enumère les services démarrés par Svchost (SSS) (O83) (39) - 10s
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (...) -- C:\WINDOWS\System32\appmgmts.dll [0]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496]
O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [78336]
O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464]
O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576]
O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488]
O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\system32\ersvc.dll [23040]
O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - .) -- C:\WINDOWS\system32\es.dll [253952]
O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: HidServ (HidServ) . (.Microsoft Corporation - HID Audio Service.) -- C:\WINDOWS\system32\hidserv.dll [21504]
O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [99840]
O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [132096]
O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\system32\msgsvc.dll [33792]
O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144]
O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- C:\WINDOWS\system32\mswsock.dll [247808]
O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [53248]
O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560]
O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [18944]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\WINDOWS\system32\ipnathlp.dll [332800]
O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\system32\tapisrv.dll [249856]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112]
O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176]
O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483840]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\wmisvc.dll [145408]
O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896]
O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024]
O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\system32\qmgr.dll [409088]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll [38400]
O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- C:\WINDOWS\system32\mspmsnsv.dll [27136]

---\\ Scan Additionnel (O88) (41) - 0s
C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe =>PUP.Optional.ReImageRepair
C:\Program Files\Reimage\Reimage Protector\ReiSystem.exe =>PUP.Optional.ReImageRepair
C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda
C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\searchplugins\conduit.xml =>PUP.Optional.Conduit
C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\extensions\ffxtlbr@babylon.com =>PUP.Optional.Babylon
C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\extensions\{8e5025c2-8ea3-430d-80b8-a14151068a6d} =>PUP.Optional.ClientConnect
C:\Documents and Settings\ssssssssssssssss\Application Data\Complitly\Complitly.dll =>PUP.Optional.PredictAd
HKLM\SYSTEM\CurrentControlSet\Services\ReimageRealTimeProtector =>PUP.Optional.ReImageRepair
C:\WINDOWS\Tasks\Reimage Reminder.job =>PUP.Optional.ReImageRepair
C:\WINDOWS\Tasks\ReimageUpdater.job =>PUP.Optional.ReImageRepair
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BabylonToolbar =>PUP.Optional.Babylon
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Reimage Repair =>PUP.Optional.ReImageRepair
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4FFBB818-B13C-11E0-931D-B2664824019B}_is1 =>PUP.Optional.PredictAd
HKLM\SOFTWARE\Babylon =>PUP.Optional.Babylon
HKLM\SOFTWARE\BabylonToolbar =>PUP.Optional.Babylon
HKLM\SOFTWARE\Conduit =>PUP.Optional.Conduit
HKLM\SOFTWARE\Reimage =>PUP.Optional.ReImageRepair
HKLM\SOFTWARE\SimplyGen =>PUP.Optional.PredictAd
HKCU\SOFTWARE\BabylonToolbar =>PUP.Optional.Babylon
HKCU\SOFTWARE\Complitly =>PUP.Optional.PredictAd
HKCU\SOFTWARE\Conduit =>PUP.Optional.Conduit
HKCU\SOFTWARE\ConduitSearchScopes =>PUP.Optional.Conduit
HKCU\SOFTWARE\Reimage =>PUP.Optional.ReImageRepair
HKCU\SOFTWARE\Smartbar =>PUP.Optional.SmartBar
HKCU\SOFTWARE\Softonic =>PUP.Optional.Softonic
HKCU\SOFTWARE\YahooPartnerToolbar =>Toolbar.YahooPartner
HKCU\SOFTWARE\AppDataLow\Software\Conduit =>PUP.Optional.Conduit =>PUP.Optional.Conduit
C:\Program Files\Complitly =>PUP.Optional.PredictAd
C:\Program Files\Reimage =>PUP.Optional.ReImageRepair
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Reimage Repair =>PUP.Optional.ReImageRepair
C:\Documents and Settings\All Users\Application Data\Babylon =>PUP.Optional.Babylon
C:\Documents and Settings\All Users\Application Data\Reimage Protector =>PUP.Optional.ReImageRepair
C:\Documents and Settings\ssssssssssssssss\Application Data\Babylon =>PUP.Optional.Babylon
C:\Documents and Settings\ssssssssssssssss\Application Data\BabylonToolbar =>PUP.Optional.Babylon
C:\Documents and Settings\ssssssssssssssss\Application Data\Complitly =>PUP.Optional.PredictAd
C:\Documents and Settings\ssssssssssssssss\Application Data\DriverFinder =>PUP.Optional.DriverFinder
C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\Babylon =>PUP.Optional.Babylon
C:\Documents and Settings\ssssssssssssssss\Local Settings\Application Data\PackageAware =>PUP.Optional.BearShare
C:\Documents and Settings\ssssssssssssssss\Mes documents\Téléchargements\ReimageRepair.exe =>PUP.Optional.ReImageRepair
C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\extensions\{8e5025c2-8ea3-430d-80b8-a14151068a6d}\Plugins\npFirefoxPlugin.dll =>PUP.Optional.ClientConnect
C:\Documents and Settings\ssssssssssssssss\Application Data\Mozilla\Firefox\Profiles\b2amnmqe.default\extensions\{8e5025c2-8ea3-430d-80b8-a14151068a6d}\ctypes\FirefoxCtype.dll =>PUP.Optional.ClientConnect

---\\ Récapitulatif des éléments trouvées sur votre station (14) - 1s
http://www.nicolascoolman.fr/rogue-reimagerepair/ =>PUP.Optional.ReImageRepair
http://www.nicolascoolman.fr/adware-predictad/ =>PUP.Optional.PredictAd
http://www.nicolascoolman.fr/toolbar-conduit/ =>PUP.Optional.Conduit
http://www.nicolascoolman.fr/pup-babylon/ =>PUP.Optional.Babylon
http://www.nicolascoolman.fr/blog =>PUP.Optional.ClientConnect
http://www.nicolascoolman.fr/blog =>PUP.Optional.DriverFinder
http://www.nicolascoolman.fr/hijacker-smartbar/ =>PUP.Optional.SmartBar
http://www.nicolascoolman.fr/blog =>PUP.Optional.Softonic
http://www.nicolascoolman.fr/blog =>Toolbar.YahooPartner
http://www.nicolascoolman.fr/pup-bearshare/ =>PUP.Optional.BearShare
http://www.nicolascoolman.fr/pup-mocaflix/ =>PUP.Optional.MocaFlix
http://www.nicolascoolman.fr/pup-searchprotect/ =>PUP.Optional.SearchProtect
http://www.nicolascoolman.fr/adware-pricegong/ =>PUP.Optional.PriceGong
http://www.nicolascoolman.fr/hijacker-trovigo/ =>PUP.Optional.Trovigo

~ End of the scan, 67861 items in 624 seconds (867)(0)()

Publicité

Soutenons La Quadrature du Net ! Soutenons La Quadrature du Net !

Signaler le contenu de ce document

Publicité

Soutenons La Quadrature du Net !