cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.12.29.199 Par Nicolas Coolman (2015/12/29)
~ Démarré par Administrateur (Administrator) (2015/12/29 07:54:11)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Documents and Settings\Administrateur\Bureau\ZHPDiag.txt
~ Rapport: C:\Documents and Settings\Administrateur\Application Data\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
Windows XP, 32-bit Service Pack 3 (Build 2600)

---\\ Navigateurs Internet (3) - 0s
GCIE: Google Chrome v47.0.2526.106
MFIE: Mozilla Firefox 43.0.2 (x86 ar) v43.0.2
MSIE: Internet Explorer v8.0.6001.18702

---\\ Informations sur les produits Windows (4) - 0s
Windows Automatic Updates : OK
Windows Activation Technologies : KO
Windows Genuine Advantage : OK
Windows Guenuine Advantage (antiwpa) : OK

---\\ Logiciels de protection (1) - 1s
Avast Free Antivirus v10.4.2233

---\\ Surveillance de Logiciels (2) - 1s
Adobe Flash Player 20 PPAPI
Adobe Reader XI

---\\ Informations sur le système (7) - 0s
~ Operating System: x86 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 1012.908 MB (29% free)
System Restore: Désactivé (Disabled)
System drive C: has 22 GB () free of 39 GB
Total RAM: 1012.908 MB (39% free)

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: LILE-0AD77A819F
~ User Name: Administrateur
~ Logged in as Administrator

---\\ Enumération des unités disques (4) - 0s
~ Drive C: has 22 GB free of 39 GB (System)
~ Drive D: has 82 GB free of 89 GB
~ Drive E: has 85 GB free of 89 GB
~ Drive F: has 83 GB free of 85 GB

---\\ Etat du Centre de Sécurité Windows (8) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: Modified
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (23) - 1s
[MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - 14/04/2008 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [1037824] ©
[MD5.93AD0B78C7357A05F50E594EC7C22300] - 14/04/2008 - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\rundll32.exe [33792] ©
[MD5.E1948B1F45A176FB4A0251446A5AE86D] - 06/03/2014 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\WINDOWS\System32\wininet.dll [920064] ©
[MD5.DD73D6B9F6B4CB630CF35B438B540174] - 14/04/2008 - (.Microsoft Corporation - Application d'ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [512000] ©
[MD5.4992C88B25C429744D255C35C756BB7B] - 03/03/2011 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\System32\dnsapi.dll [149504] ©
[MD5.F6B7B1ECD7B41736BDB6FF4B092BCB79] - 17/08/2011 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [138496] ©
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] - 13/04/2008 - (.Microsoft Corporation - IDE/ATAPI Port Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [96512] ©
[MD5.C885B02847F5D2FD45A24E219ED93B32] - 14/04/2008 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [63744] ©
[MD5.1F4260CC5B42272D71F79E570A27A4FE] - 14/04/2008 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [62976] ©
[MD5.31F923EB2170FC172C81ABDA0045D18C] - 14/04/2008 - (.Microsoft Corporation - Pilote de cryptographie FIPS.) -- C:\WINDOWS\System32\drivers\Fips.sys [44672] ©
[MD5.573C7D0A32852B48F3058CFD8026F511] - 14/04/2008 - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [144384]
[MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - 14/04/2008 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [54144] ©
[MD5.083A052659F5310DD8B6A6CB05EDCF8E] - 14/04/2008 - (.Microsoft Corporation - IMAPI Kernel Driver.) -- C:\WINDOWS\System32\drivers\Imapi.sys [42112] ©
[MD5.CC748EA12C6EFFDE940EE98098BF96BB] - 14/04/2008 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [152832] ©
[MD5.23C74D75E36E7158768DD63D92789A91] - 14/04/2008 - (.Microsoft Corporation - IPSec Driver.) -- C:\WINDOWS\System32\drivers\IPSec.sys [75264] ©
[MD5.FB2FCCC70F7174C7BF64F48E96D3ADF4] - 15/07/2011 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [457856] ©
[MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - 14/04/2008 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [162816] ©
[MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - 14/04/2008 - (.Microsoft Corporation - NT File System Driver.) -- C:\WINDOWS\System32\drivers\ntfs.sys [574976] ©
[MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - 16/12/2008 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [80384] ©
[MD5.11B4A627BC9614B885C4969BFA5FF8A6] - 14/04/2008 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [51328] ©
[MD5.15CABD0F7C00C47C70124907916AF3F1] - 13/04/2008 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [196224] ©
[MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - 13/04/2008 - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) -- C:\WINDOWS\System32\drivers\redbook.sys [58752] ©
[MD5.46DE1126684369BACE4849E4FC8C43CA] - 14/04/2008 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [53376] ©

---\\ Liste des services NT non Microsoft et non désactivés (4) - 0s
O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software a.s.®
O23 - Service: egGetSvc (egGetSvc) . (.Copyright (C) EagleGet 2014~2015 - EGMonitor.) - C:\Program Files\EagleGet\EGMonitor.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: VIA Karaoke digital mixer Service (KaraokeService) . (.VIA Technologies, Inc. - Service binary.) - C:\WINDOWS\system32\KaraokeSer.exe =>.VIA Technologies Inc.®

---\\ Processus lancés (7) - 1s
[MD5.255E405D801CF01247390F38F92D8042] - (...) -- C:\Program Files\Unlocker\UnlockerAssistant.exe [17408] [PID.2004]
[MD5.F7601441AB1706C39963E504A1FD2605] - (.EagleGet.com - EagleGet Free Downloader.) -- C:\Program Files\EagleGet\EagleGet.exe [1898496] [PID.2024]
[MD5.387A6776E327112B5D012F0D108C8AF5] - (.Copyright (C) EagleGet 2014~2015 - EGMonitor.) -- C:\Program Files\EagleGet\EGMonitor.exe [235520] [PID.428]
[MD5.233B5852363BFB41D73D219FA8528AF4] - (.BitTorrent Inc. - WebHelper.) -- C:\Documents and Settings\Administrateur\Application Data\uTorrent\updates\3.4.5_41372\utorrentie.exe [336896] [PID.1536]
[MD5.233B5852363BFB41D73D219FA8528AF4] - (.BitTorrent Inc. - WebHelper.) -- C:\Documents and Settings\Administrateur\Application Data\uTorrent\updates\3.4.5_41372\utorrentie.exe [336896] [PID.1868]
[MD5.387A6776E327112B5D012F0D108C8AF5] - (.Copyright (C) EagleGet 2014~2015 - EGMonitor.) -- C:\Program Files\EagleGet\EGMonitor.exe [235520] [PID.2248]
[MD5.5A1F89FA66AA5581EBF82EF45D4E2A98] - (.Copyright (C) 2015 Nicolas Coolman - ZHPDiag.) -- C:\Documents and Settings\Administrateur\Mes documents\EGDownloads\ZHPDiag3.exe [2048000] [PID.968] ©

---\\ Google Chrome, Démarrage,Recherche,Extensions (6) - 0s
G0 - GCSP: Preferences [User Data\Default][HomePage] http://r20---sn-hgn7zn7e.gvt1.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://redirector.gvt1.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients2.google.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.dz

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (5) - 1s
M0 - MFSP: prefs.js [Administrateur - tq82vj4k.default-1433961452859] https://www.google.com
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ©
P2 - EXT: (.EagleGet - EagleGet.) -- C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\tq82vj4k.default-1433961452859\extensions\eagleget_ffext@eagleget.com ©
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_20_0_0_235.dll ©
P2 - FPN: [HKLM] [@qq.com/QQlive] - (.QQLive.) -- C:\Program Files\Tencent\QQLive\9.10.1059.0\npQQLive.dll =>PUP.Optional.TencentAddressBar

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (11) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.gamehitzone.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.wolframalpha.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.wolframalpha.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.wolframalpha.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.wolframalpha.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 0
R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 1

---\\ Internet Explorer,Proxy Management (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (16)

---\\ Browser Helper Object de navigateur (BHO) (2) - 1s
O2 - BHO: bteagleget.com - {1E871FF8-029C-4732-8AA7-39E3D3872057} . (.EagleGet.com - IEGrab.) -- C:\Program Files\EagleGet\eagleSniffer.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll =>.AVAST Software a.s.®

---\\ Applications lancées au démarrage du système (23) - 0s
O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe =>.AVAST Software a.s.®
O4 - HKLM\..\Run: [UnlockerAssistant] . (...) -- C:\Program Files\Unlocker\UnlockerAssistant.exe
O4 - HKLM\..\Run: [KernelFaultCheck] C:\WINDOWS\system32\dumprep 0 -k (.not file.)
O4 - HKCU\..\Run: [EagleGet] . (.EagleGet.com - EagleGet Free Downloader.) -- C:\Program Files\EagleGet\EagleGet.exe
O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Documents and Settings\Administrateur\Application Data\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- D:\CCleaner\CCleaner.exe =>.Piriform Ltd®
O4 - HKCU\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O4 - HKUS\.DEFAULT\..\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32
O4 - HKUS\.DEFAULT\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N
O4 - HKUS\.DEFAULT\..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_17_0_0_190_Plugin.exe (.not file.)
O4 - HKUS\S-1-5-18\..\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32
O4 - HKUS\S-1-5-18\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N
O4 - HKUS\S-1-5-18\..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_17_0_0_190_Plugin.exe (.not file.)
O4 - HKUS\S-1-5-19\..\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32
O4 - HKUS\S-1-5-19\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N
O4 - HKUS\S-1-5-20\..\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32
O4 - HKUS\S-1-5-20\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N
O4 - HKUS\S-1-5-21-1757981266-515967899-682003330-500\..\Run: [EagleGet] . (.EagleGet.com - EagleGet Free Downloader.) -- C:\Program Files\EagleGet\EagleGet.exe
O4 - HKUS\S-1-5-21-1757981266-515967899-682003330-500\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Documents and Settings\Administrateur\Application Data\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - HKUS\S-1-5-21-1757981266-515967899-682003330-500\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- D:\CCleaner\CCleaner.exe =>.Piriform Ltd®
O4 - HKUS\S-1-5-21-1757981266-515967899-682003330-500\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©

---\\ Raccourcis Global Startup (8) - 2s
O4 - GS\Desktop [Administrateur]: QQ影音.lnk . (.腾讯科技(深圳)有限公司 - QQ影音.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar
O4 - GS\Quicklaunch [Administrateur]: QQ影音.lnk . (.腾讯科技(深圳)有限公司 - QQ影音.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar
O4 - GS\Desktop [HelpAssistant]: QQ影音.lnk . (.腾讯科技(深圳)有限公司 - QQ影音.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar
O4 - GS\Quicklaunch [HelpAssistant]: QQ影音.lnk . (.腾讯科技(深圳)有限公司 - QQ影音.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar
O4 - GS\Desktop [Invité]: QQ影音.lnk . (.腾讯科技(深圳)有限公司 - QQ影音.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar
O4 - GS\Quicklaunch [Invité]: QQ影音.lnk . (.腾讯科技(深圳)有限公司 - QQ影音.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar
O4 - GS\Desktop [SUPPORT_388945a0]: QQ影音.lnk . (.腾讯科技(深圳)有限公司 - QQ影音.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar
O4 - GS\Quicklaunch [SUPPORT_388945a0]: QQ影音.lnk . (.腾讯科技(深圳)有限公司 - QQ影音.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar

---\\ Modification Domaine/Adresses DNS (2) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{827C07C7-F460-456D-892A-6380C262D1D7}: DhcpNameServer = 192.168.1.1

---\\ Protocole additionnel (22) - 1s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll ©
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll ©
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API.) -- C:\WINDOWS\system32\inetcomm.dll ©
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll ©
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll ©
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll ©
O18 - Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} . (.Microsoft Corporation - WIA Scripting Layer.) -- C:\WINDOWS\system32\wiascr.dll ©
O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll ©
O18 - Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll ©

---\\ Logiciels installés (35) - 7s
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU] -- uTorrent =>.BitTorrent Inc®
O42 - Logiciel: Adobe Flash Player 20 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 20 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 20 PPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player PPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Reader XI (11.0.08) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} ©
O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM] -- Avast =>.AVAST Software a.s.®
O42 - Logiciel: Dancer Plus! LE de Microsoft - (.Microsoft Corporation.) [HKLM] -- {1A103D70-5C9B-4E1A-B306-5106C68F9914} ©
O42 - Logiciel: EagleGet version 2.0.4.5 - (.EagleGet.) [HKLM] -- {F6D8142A-B30B-454B-9EE0-08A7B997DFE4}_is1 ©
O42 - Logiciel: ExtremeCopy - (.Easersoft.) [HKLM] -- {9B4091A4-9556-402F-B703-31C203BDE889} ©
O42 - Logiciel: Foxit Reader 5.4.5.124 - (.oszone.net.) [HKLM] -- Foxit Reader
O42 - Logiciel: Google Chrome - (.Google Inc‎.‎.) [HKLM] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} ©
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} ©
O42 - Logiciel: Mozilla Firefox 43.0.2 (x86 ar) - (.Mozilla.) [HKLM] -- Mozilla Firefox 43.0.2 (x86 ar) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService ©
O42 - Logiciel: MPC-HC 1.7.7 - (.MPC-HC Team.) [HKLM] -- {2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1 =>.Open Source Developer, Fotis Zafiropoulos®
O42 - Logiciel: Nero 12 - (.Nero AG.) [HKLM] -- {560FC78C-A4B2-461D-9B47-820C1EEF87B8} ©
O42 - Logiciel: Nero Audio Pack 1 - (.Nero AG.) [HKLM] -- {A7A0BF2E-31CC-49E3-9913-52C503EB969D} ©
O42 - Logiciel: Nero Blu-ray Player - (.Nero AG.) [HKLM] -- {A2FE691E-3F8E-4E30-AA7D-FF17AC77EA87} ©
O42 - Logiciel: Nero Burning ROM - (.Nero AG.) [HKLM] -- {5963F4B4-D138-47CD-ADEF-470E87E185BD} ©
O42 - Logiciel: Nero ControlCenter - (.Nero AG.) [HKLM] -- {ABC88553-8770-4B97-B43E-5A90647A5B63} ©
O42 - Logiciel: Nero Core Components - (.Nero AG.) [HKLM] -- {BEBEE34D-84A2-4EDD-8BEA-96CC54371263} ©
O42 - Logiciel: Nero Disc Menus Basic - (.Nero AG.) [HKLM] -- {E17BCB76-9924-4BD5-B6D6-50D3407B4E74} ©
O42 - Logiciel: Nero Effects Basic - (.Nero AG.) [HKLM] -- {29F67D84-3A70-456E-806A-52301B02070B} ©
O42 - Logiciel: Nero Kwik Themes Basic - (.Nero AG.) [HKLM] -- {1B6F5E51-575E-4693-BCA2-7543570D076D} ©
O42 - Logiciel: Nero PiP Effects Basic - (.Nero AG.) [HKLM] -- {ACE49D50-19CD-44A6-B192-46F985283B26} ©
O42 - Logiciel: Nero SharedVideoCodecs - (.Nero AG.) [HKLM] -- {2432E589-6256-4513-B0BF-EFA8E325D5F0} ©
O42 - Logiciel: Prerequisite installer - (.Nero AG.) [HKLM] -- {3AAB08A3-F129-4BD5-B409-AE674F93759D} ©
O42 - Logiciel: QQ影音3.9 - (.腾讯科技(深圳)有限公司.) [HKCU] -- QQPlayer
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} ©
O42 - Logiciel: TeraCopy 2.3 - (.Code Sector.) [HKLM] -- TeraCopy_is1 {71C5DF6381C2F42A65159FEE0540F57E}
O42 - Logiciel: Unlocker 1.9.2 - (.Cedrick Collomb.) [HKLM] -- Unlocker ©
O42 - Logiciel: WebFldrs XP - (.Microsoft Corporation.) [HKLM] -- {350C940c-3D7C-4EE8-BAA9-00BCB3D54227} ©
O42 - Logiciel: Welcome App (Start-up experience) - (.Nero AG.) [HKLM] -- {828175FA-7307-4DBF-95AD-9CEE086B6F45} ©
O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8 =>.Microsoft Corporation®

---\\ HKCU & HKLM Software Keys (98) - 7s
HKLM\SOFTWARE\Acoustica
HKLM\SOFTWARE\AdwCleaner
HKLM\SOFTWARE\AVAST Software
HKLM\SOFTWARE\C07ft5Y
HKLM\SOFTWARE\Code Sector
HKLM\SOFTWARE\CoreCodec
HKLM\SOFTWARE\CyberLink
HKLM\SOFTWARE\dlsecuretb
HKLM\SOFTWARE\DVDVideoSoft
HKLM\SOFTWARE\EagleGet
HKLM\SOFTWARE\Foxit Software
HKLM\SOFTWARE\Gemplus
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\HaaliMkx
HKLM\SOFTWARE\INTEL
HKLM\SOFTWARE\InterVideo
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\Licenses
HKLM\SOFTWARE\LogMeInRescueCallingCard
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\McAfee.com
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\MSI
HKLM\SOFTWARE\Nero
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\Opera Software
HKLM\SOFTWARE\Pandora.TV
HKLM\SOFTWARE\PCTools
HKLM\SOFTWARE\Program Groups
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\Schlumberger
HKLM\SOFTWARE\Skype
HKLM\SOFTWARE\Sonic
HKLM\SOFTWARE\Spiral Monkey
HKLM\SOFTWARE\Symantec
HKLM\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar
HKLM\SOFTWARE\Windows 3.1 Migration Status
HKCU\SOFTWARE\7-Zip
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AppLid
HKCU\SOFTWARE\AVAST Software
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Cineform
HKCU\SOFTWARE\Code Sector
HKCU\SOFTWARE\CoreAAC
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\Desktop Architect
HKCU\SOFTWARE\drpsu
HKCU\SOFTWARE\DRPSu Updater
HKCU\SOFTWARE\DSP-worx
HKCU\SOFTWARE\DVDXStudios
HKCU\SOFTWARE\EagleGet
HKCU\SOFTWARE\Easersoft
HKCU\SOFTWARE\FemtaCom
HKCU\SOFTWARE\Foxit Software
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\Glarysoft
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\IMDownloader
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\Ligos
HKCU\SOFTWARE\LogMeInRescueCallingCard
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\malavida
HKCU\SOFTWARE\MatchWare
HKCU\SOFTWARE\MediaChance
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MPC-HC
HKCU\SOFTWARE\Nero
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore
HKCU\SOFTWARE\Project07
HKCU\SOFTWARE\RealNetworks
HKCU\SOFTWARE\Revenger inc.
HKCU\SOFTWARE\RocketDock
HKCU\SOFTWARE\SamLab.ws
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Spiral Monkey
HKCU\SOFTWARE\SubSystems
HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader
HKCU\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar
HKCU\SOFTWARE\Toggle
HKCU\SOFTWARE\UberIcon-v1.0.0
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Winamp
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\WPI
HKCU\SOFTWARE\ZebHelpProcess Helper

---\\ Contenu des dossiers Programmes (144) - 25s
O43 - CFD: 07/01/2015 - [0] D -- C:\Program Files\Acoustica MP3 Audio Mixer
O43 - CFD: 17/01/2015 - [] D -- C:\Program Files\Adobe =>.Adobe Systems, Incorporated®
O43 - CFD: 25/03/2015 - [] D -- C:\Program Files\AVAST Software =>.AVAST Software a.s.®
O43 - CFD: 26/01/2015 - [] D -- C:\Program Files\Dancer Plus! LE de Microsoft
O43 - CFD: 19/10/2015 - [] D -- C:\Program Files\EagleGet
O43 - CFD: 24/12/2015 - [] D -- C:\Program Files\Easersoft
O43 - CFD: 12/12/2015 - [] D -- C:\Program Files\Fichiers communs =>PUP.Optional.TencentAddressBar
O43 - CFD: 06/12/2014 - [] D -- C:\Program Files\Foxit Software {64A7A038A7B2}
O43 - CFD: 13/06/2015 - [] D -- C:\Program Files\Google =>.Google Inc®
O43 - CFD: 23/09/2010 - [] D -- C:\Program Files\Intel =>.Intel Corporation®
O43 - CFD: 25/11/2014 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 30/04/2015 - [] D -- C:\Program Files\Java =>.Oracle America, Inc.®
O43 - CFD: 26/01/2015 - [] D -- C:\Program Files\Microsoft Plus! Digital Media Edition
O43 - CFD: 23/12/2015 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla Corporation®
O43 - CFD: 24/09/2010 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla Corporation®
O43 - CFD: 20/12/2014 - [] D -- C:\Program Files\MPC-HC =>.Open Source Developer, Fotis Zafiropoulos®
O43 - CFD: 28/11/2015 - [] D -- C:\Program Files\MSECache
O43 - CFD: 23/09/2010 - [] D -- C:\Program Files\MSN Gaming Zone
O43 - CFD: 06/11/2014 - [] D -- C:\Program Files\Nero =>.Nero AG®
O43 - CFD: 24/11/2014 - [] D -- C:\Program Files\Outlook Express
O43 - CFD: 26/01/2015 - [] D -- C:\Program Files\Plus!
O43 - CFD: 23/09/2010 - [] D -- C:\Program Files\Services en ligne
O43 - CFD: 19/11/2015 - [] D -- C:\Program Files\Tencent =>PUP.Optional.TencentAddressBar =>PUP.Optional.TencentAddressBar
O43 - CFD: 24/12/2015 - [] D -- C:\Program Files\TeraCopy {71C5DF6381C2F42A65159FEE0540F57E}
O43 - CFD: 23/09/2010 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 23/11/2015 - [] D -- C:\Program Files\Unlocker
O43 - CFD: 23/09/2010 - [] D -- C:\Program Files\Windows Media Connect 2
O43 - CFD: 23/09/2010 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 23/09/2010 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 23/09/2010 - [0] HD -- C:\Program Files\WindowsUpdate
O43 - CFD: 24/09/2010 - [] D -- C:\Program Files\WinRAR
O43 - CFD: 23/09/2010 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 23/09/2010 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\AVAST Software
O43 - CFD: 04/07/2015 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 19/10/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\EagleGet
O43 - CFD: 24/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ExtremeCopy
O43 - CFD: 06/12/2014 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Foxit Reader
O43 - CFD: 19/11/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Google Chrome
O43 - CFD: 23/09/2010 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux
O43 - CFD: 20/12/2014 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\MPC-HC
O43 - CFD: 06/11/2014 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Nero
O43 - CFD: 23/09/2010 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration
O43 - CFD: 24/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\TeraCopy
O43 - CFD: 30/10/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR
O43 - CFD: 24/09/2010 - [] D -- C:\Documents and Settings\All Users\Application Data\Adobe
O43 - CFD: 20/10/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Agnitum
O43 - CFD: 25/03/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\AVAST Software
O43 - CFD: 20/11/2015 - [0] D -- C:\Documents and Settings\All Users\Application Data\Babylon =>PUP.Optional.Babylon
O43 - CFD: 22/03/2015 - [] HD -- C:\Documents and Settings\All Users\Application Data\Common Files
O43 - CFD: 19/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\DVD X Studios
O43 - CFD: 14/06/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\EagleGet
O43 - CFD: 11/03/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\ESET
O43 - CFD: 24/09/2010 - [0] D -- C:\Documents and Settings\All Users\Application Data\IDM
O43 - CFD: 17/01/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\McAfee
O43 - CFD: 22/03/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\MFAData
O43 - CFD: 30/04/2015 - [] SD -- C:\Documents and Settings\All Users\Application Data\Microsoft
O43 - CFD: 27/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Microsoft Help
O43 - CFD: 27/12/2014 - [] D -- C:\Documents and Settings\All Users\Application Data\Mozilla
O43 - CFD: 06/11/2014 - [] D -- C:\Documents and Settings\All Users\Application Data\Nero
O43 - CFD: 24/01/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Norton
O43 - CFD: 26/01/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\NortonInstaller
O43 - CFD: 23/09/2010 - [] D -- C:\Documents and Settings\All Users\Application Data\Package Cache
O43 - CFD: 24/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\PC Tools
O43 - CFD: 30/10/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Skype
O43 - CFD: 30/04/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Sun
O43 - CFD: 24/11/2015 - [0] AD -- C:\Documents and Settings\All Users\Application Data\TEMP
O43 - CFD: 20/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Tencent =>PUP.Optional.TencentAddressBar
O43 - CFD: 13/12/2015 - [] D -- C:\Program Files\Fichiers communs\48ed1695-d484-472b-bd42-582714ef1368
O43 - CFD: 17/01/2015 - [] D -- C:\Program Files\Fichiers communs\Adobe
O43 - CFD: 19/10/2015 - [] D -- C:\Program Files\Fichiers communs\EagleGet
O43 - CFD: 23/09/2010 - [] D -- C:\Program Files\Fichiers communs\MSSoap
O43 - CFD: 06/11/2014 - [] D -- C:\Program Files\Fichiers communs\Nero
O43 - CFD: 24/09/2010 - [] D -- C:\Program Files\Fichiers communs\ODBC
O43 - CFD: 23/09/2010 - [] D -- C:\Program Files\Fichiers communs\Services
O43 - CFD: 24/09/2010 - [] D -- C:\Program Files\Fichiers communs\SpeechEngines
O43 - CFD: 27/11/2015 - [] D -- C:\Program Files\Fichiers communs\System
O43 - CFD: 19/11/2015 - [] D -- C:\Program Files\Fichiers communs\Tencent =>PUP.Optional.TencentAddressBar
O43 - CFD: 23/09/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Adobe
O43 - CFD: 24/09/2010 - [] D -- C:\Documents and Settings\Administrateur\Application Data\AIMP3
O43 - CFD: 25/03/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\AVAST Software
O43 - CFD: 20/11/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Babylon =>PUP.Optional.Babylon
O43 - CFD: 24/03/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\BSplayer PRO
O43 - CFD: 16/09/2015 - [0] D -- C:\Documents and Settings\Administrateur\Application Data\DiskDefrag
O43 - CFD: 06/01/2015 - [0] D -- C:\Documents and Settings\Administrateur\Application Data\DMCache
O43 - CFD: 18/09/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Dream Aquarium
O43 - CFD: 25/03/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Dropbox
O43 - CFD: 07/01/2015 - [0] D -- C:\Documents and Settings\Administrateur\Application Data\DRPSu
O43 - CFD: 07/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\DVDVideoSoft
O43 - CFD: 19/10/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\EagleGet
O43 - CFD: 24/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\ExtremeCopy
O43 - CFD: 20/10/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\GlarySoft
O43 - CFD: 10/03/2015 - [0] D -- C:\Documents and Settings\Administrateur\Application Data\Help
O43 - CFD: 23/09/2010 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Identities
O43 - CFD: 06/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\IDM
O43 - CFD: 30/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\ImTOO
O43 - CFD: 12/01/2015 - [0] D -- C:\Documents and Settings\Administrateur\Application Data\iolo
O43 - CFD: 06/11/2014 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Macromedia
O43 - CFD: 24/09/2010 - [0] D -- C:\Documents and Settings\Administrateur\Application Data\Media Player Classic
O43 - CFD: 24/11/2015 - [] SD -- C:\Documents and Settings\Administrateur\Application Data\Microsoft
O43 - CFD: 24/09/2010 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Mozilla
O43 - CFD: 24/12/2014 - [] D -- C:\Documents and Settings\Administrateur\Application Data\MPC-HC
O43 - CFD: 06/11/2014 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Nero
O43 - CFD: 08/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Opera Software
O43 - CFD: 03/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Power Mp3 Cutter
O43 - CFD: 03/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Power Mp3 Recorder
O43 - CFD: 24/11/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Product_RM
O43 - CFD: 24/11/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Registry Mechanic
O43 - CFD: 17/09/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Skype
O43 - CFD: 06/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\sparta111
O43 - CFD: 24/09/2010 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Sports Interactive
O43 - CFD: 30/04/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Sun
O43 - CFD: 20/11/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Tencent =>PUP.Optional.TencentAddressBar
O43 - CFD: 24/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\TeraCopy
O43 - CFD: 09/03/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\TP
O43 - CFD: 24/09/2010 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Unity
O43 - CFD: 29/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\uTorrent
O43 - CFD: 24/09/2010 - [] D -- C:\Documents and Settings\Administrateur\Application Data\WinRAR
O43 - CFD: 29/12/2015 - [] D -- C:\Documents and Settings\Administrateur\Application Data\ZHP
O43 - CFD: 04/07/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Adobe
O43 - CFD: 22/03/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Avg2015
O43 - CFD: 20/11/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Babylon =>PUP.Optional.Babylon
O43 - CFD: 22/02/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\ESET
O43 - CFD: 19/10/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google
O43 - CFD: 10/03/2015 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Help
O43 - CFD: 02/12/2014 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Identities
O43 - CFD: 22/03/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\MFAData
O43 - CFD: 17/12/2015 - [] SD -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft
O43 - CFD: 24/09/2010 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft Help
O43 - CFD: 24/09/2010 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla
O43 - CFD: 08/01/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Opera Software
O43 - CFD: 24/09/2010 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Skype
O43 - CFD: 10/01/2015 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Sparta
O43 - CFD: 24/09/2010 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Sports Interactive
O43 - CFD: 30/04/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Sun
O43 - CFD: 24/03/2015 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Temp
O43 - CFD: 24/09/2010 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Unity
O43 - CFD: 30/10/2015 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\WMTools Downloaded Files
O43 - CFD: 23/09/2010 - [] RD -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 24/11/2015 - [] RD -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 25/11/2014 - [] SD -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Outils d'administration
O43 - CFD: 20/11/2015 - [] D -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Unlocker
O43 - CFD: 30/10/2015 - [] D -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\WinRAR
O43 - CFD: 19/11/2015 - [] D -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\腾讯软件
O43 - CFD: 29/12/2015 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla Corporation®

---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 1s
O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - avast! Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software a.s.®
O106 - SIOI: Offline Files Menu [Fichiers hors connexion] - {750fdf0e-2a26-11d1-a3ea-080036587f03}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\system32\cscui.dll ©

---\\ Enumération des clés StartupReg (3) - 0s
O53 - SMSR:HKLM\...\startupreg\ctfmon.exe [Key] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe ©
O53 - SMSR:HKLM\...\startupreg\GrooveMonitor [Key] . (...) -- C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\KernelFaultCheck [Key] . (...) -- C:\WINDOWS\system32\dumprep 0 -k (.not file.)

---\\ Liste des pilotes du système (47) - 11s
O58 - SDL:2015/09/22 06:44:19 A . (.AVAST Software - avast! HWID.) -- C:\WINDOWS\System32\drivers\aswHwid.sys [24016] =>.AVAST Software a.s.®
O58 - SDL:2015/09/22 06:44:20 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys [76000] =>.AVAST Software a.s.®
O58 - SDL:2015/09/22 06:44:19 A . (.AVAST Software - avast! TDI Redirect Driver.) -- C:\WINDOWS\System32\drivers\aswRdr.sys [55200] =>.AVAST Software a.s.®
O58 - SDL:2015/09/22 06:44:20 A . (.AVAST Software - avast! Revert.) -- C:\WINDOWS\System32\drivers\aswRvrt.sys [49776] =>.AVAST Software a.s.®
O58 - SDL:2015/11/06 17:56:43 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\WINDOWS\System32\drivers\aswsnx.sys [794952] =>.AVAST Software a.s.®
O58 - SDL:2015/11/06 17:56:45 A . (.AVAST Software - avast! self protection module.) -- C:\WINDOWS\System32\drivers\aswsp.sys [435464] =>.AVAST Software a.s.®
O58 - SDL:2015/09/22 06:44:32 A . (.AVAST Software - avast! Stream Filter.) -- C:\WINDOWS\System32\drivers\aswStmXP.sys [157888] =>.AVAST Software a.s.®
O58 - SDL:2015/09/22 06:44:40 A . (.AVAST Software - avast! TDI Filter Driver.) -- C:\WINDOWS\System32\drivers\aswTdi.sys [57888] =>.AVAST Software a.s.®
O58 - SDL:2015/09/22 06:44:24 A . (.AVAST Software - avast! VM Monitor.) -- C:\WINDOWS\System32\drivers\aswVmm.sys [208664] =>.AVAST Software a.s.®
O58 - SDL:2008/12/16 17:27:52 AC . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\System32\drivers\cinemst2.sys [262528] ©
O58 - SDL:2008/12/16 17:27:52 AC . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\System32\drivers\cpqdap01.sys [11776] ©
O58 - SDL:2008/04/14 12:00:00 AC . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- C:\WINDOWS\System32\drivers\dmboot.sys [800256] ©
O58 - SDL:2008/04/14 12:00:00 AC . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\System32\drivers\dmio.sys [154496] ©
O58 - SDL:2008/04/14 12:00:00 AC . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\System32\drivers\dmload.sys [5888] ©
O58 - SDL:2015/07/29 21:04:52 AC . (.eagleGet - eagleGet Network Filter.) -- C:\WINDOWS\System32\drivers\eagleGet.sys [94720] ©
O58 - SDL:2014/08/18 10:28:32 AC . (.ESET - Amon monitor.) -- C:\WINDOWS\System32\drivers\eamonm.sys [191928] =>.ESET, spol. s r.o.®
O58 - SDL:2014/08/18 10:28:32 AC . (.ESET - ESET Helper driver.) -- C:\WINDOWS\System32\drivers\ehdrv.sys [135296] =>.ESET, spol. s r.o.®
O58 - SDL:2014/08/18 10:28:32 AC . (.ESET - ESET Antivirus Network Redirector.) -- C:\WINDOWS\System32\drivers\epfwtdir.sys [119792] =>.ESET, spol. s r.o.®
O58 - SDL:2008/04/14 12:00:00 AC . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [144384]
O58 - SDL:2012/08/28 15:34:36 AC . (.Intel Corporation - Intel Graphics Miniport Driver.) -- C:\WINDOWS\System32\drivers\igxpmp32.sys [2019200] ©
O58 - SDL:2013/01/31 14:43:05 AC . (.Atheros Communications, Inc. - Atheros L1F PCI-E Ethernet Controller ndis.) -- C:\WINDOWS\System32\drivers\l1c51x86.sys [89680] =>.Atheros Communications Inc.®
O58 - SDL:2008/12/16 17:27:52 AC . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\nikedrv.sys [12032] ©
O58 - SDL:2013/03/08 20:25:09 AC . (.OrangeWare Corporation - USB 2.0 Hub Driver.) -- C:\WINDOWS\System32\drivers\ousb2hub.sys [55552]
O58 - SDL:2013/03/08 20:25:09 AC . (.OrangeWare Corporation - USB 2.0 Enhanced Host Controller Driver.) -- C:\WINDOWS\System32\drivers\ousbehci.sys [41600]
O58 - SDL:2008/04/14 12:00:00 AC . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- C:\WINDOWS\System32\drivers\ptilink.sys [17792] ©
O58 - SDL:2008/12/16 17:27:52 AC . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\System32\drivers\rio8drv.sys [12032] ©
O58 - SDL:2008/12/16 17:27:52 AC . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\riodrv.sys [12032] ©
O58 - SDL:2008/04/14 12:00:00 AC . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [20480] ©
O58 - SDL:2015/10/29 18:02:15 A . (.Tencent - Tencent Common Protect-TsTurboA.) -- C:\WINDOWS\System32\drivers\TenCommProtect.sys [42296] =>PUP.Optional.TencentAddressBar
O58 - SDL:2008/12/16 17:27:52 AC . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\System32\drivers\tsbvcap.sys [21376] ©
O58 - SDL:2008/12/16 17:27:52 AC . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\System32\drivers\vdmindvd.sys [58112] ©
O58 - SDL:2012/11/30 14:54:10 RAC . (.VIA Technologies, Inc. - VIA High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\viahduaa.sys [2558712] =>.VIA Technologies Inc.®
O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\ansi.sys [9037]
O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\country.sys [27097]
O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\himem.sys [4912]
O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\key01.sys [42809]
O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\keyboard.sys [42537]
O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\ntdos.sys [27916]
O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\ntdos404.sys [29146]
O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\ntdos411.sys [29370]
O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\ntdos412.sys [29274]
O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\ntdos804.sys [29146]
O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\ntio.sys [34000]
O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\ntio404.sys [34560]
O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\ntio411.sys [35648]
O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\ntio412.sys [35424]
O58 - SDL:2008/04/14 12:00:00 AC . (...) -- C:\WINDOWS\System32\ntio804.sys [34560]

---\\ Associations Shell Spawning (9) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\system32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®

---\\ Menu de démarrage Internet (12) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe ©

---\\ Recherche d'infection sur les navigateurs (18) - 13s
O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("browser.search.searchengine.alias", "istartsurf"); =>PUP.Optional.IsStart
O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("browser.search.searchengine.desc", "this is my first firefox searchEngine"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("browser.search.searchengine.iconURL", "http://www.istartsurf.com/favicon.ico"); =>PUP.Optional.IsStart
O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("browser.search.searchengine.name", "istartsurf"); =>PUP.Optional.IsStart
O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("browser.search.searchengine.ptid", "cor"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("browser.search.searchengine.ref", ""); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("browser.search.searchengine.ts", ""); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("browser.search.searchengine.type", ""); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("browser.search.searchengine.uid", "WDCXWD3200AVVS-63L2B0_WD-WCAV1648167881678"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("browser.search.searchengine.url", "http://www.istartsurf.com/web/?type=ds&ts=1446136469&z=6104d263a52857e31d569dcgezaz1[...] =>PUP.Optional.IsStart
O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("extensions.LVD-SAE.uninstallUrl", "http://lp.ilividnewtab.com/uninstall.php?extid=LVD-SAE@iacsearchandmedia.com&extver=[...] =>PUP.Optional.Bandoo
O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("extensions.defsearchp@gmail.com.install-event-fired", true); =>PUP.Optional.PriceFountain
O69 - SBI: prefs.js [Administrateur - tq82vj4k.default-1433961452859] user_pref("extensions.deskCutv2@gmail.com.install-event-fired", true); =>PUP.Optional.DeskCut
O69 - SBI: SearchScopes [HKCU] {0191A6B0-1154-4C22-9182-23A95BBE92D9} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKCU] {2de06457-88b8-4989-9288-5fe9c2584ab8} [DefaultScope] - (WolframAlpha (avast!)) - http://www.wolframalpha.com/
O69 - SBI: SearchScopes [HKLM] {0191A6B0-1154-4C22-9182-23A95BBE92D9} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKLM] {2de06457-88b8-4989-9288-5fe9c2584ab8} [DefaultScope] - (Wolfram
---\\ Enumère les services démarrés par Svchost (40) - 1s
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\WINDOWS\system32\appmgmts.dll [176640] ©
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496] ©
O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [78336] ©
O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464] ©
O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576] ©
O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488] ©
O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\system32\ersvc.dll [23040] ©
O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - .) -- C:\WINDOWS\system32\es.dll [253952] ©
O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: HidServ (HidServ) . (...) -- C:\WINDOWS\System32\hidserv.dll [0]
O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [99840] ©
O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [132096] ©
O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\system32\msgsvc.dll [33792] ©
O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144] ©
O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- C:\WINDOWS\system32\mswsock.dll [247808] ©
O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [53248] ©
O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560] ©
O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [18944] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\WINDOWS\system32\ipnathlp.dll [332800] ©
O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\system32\tapisrv.dll [249856] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112] ©
O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176] ©
O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483840] ©
O83 - Search Svchost Services: Wmi (Wmi) . (.Microsoft Corporation - API avancées Windows 32.) -- C:\WINDOWS\system32\advapi32.dll [685568] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\wmisvc.dll [145408] ©
O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896] ©
O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024] ©
O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376] ©
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\system32\qmgr.dll [409088] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] ©
O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll [38400] ©
O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- C:\WINDOWS\system32\mspmsnsv.dll [27136] ©

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (10) - 14s

SS - Demand [29/12/2015] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [22/09/2015] [ 146600] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software a.s.®
SR - Auto [25/09/2015] [ 235520] egGetSvc (egGetSvc) . (.Copyright (C) EagleGet 2014~2015.) - C:\Program Files\EagleGet\EGMonitor.exe
SS - Auto [01/09/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [01/09/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Auto [30/11/2012] [ 88696] VIA Karaoke digital mixer Service (KaraokeService) . (.VIA Technologies, Inc..) - C:\WINDOWS\system32\KaraokeSer.exe =>.VIA Technologies Inc.®
SS - Demand [23/12/2015] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SR - Demand [29/12/2015] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SS - Demand [29/12/2015] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®

---\\ Scan Additionnel (11) - 0s
HKLM\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar
HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore
HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader
HKCU\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar
C:\Program Files\Tencent =>PUP.Optional.TencentAddressBar
C:\Documents and Settings\All Users\Application Data\Babylon =>PUP.Optional.Babylon
C:\Documents and Settings\All Users\Application Data\Tencent =>PUP.Optional.TencentAddressBar
C:\Program Files\Fichiers communs\Tencent =>PUP.Optional.TencentAddressBar
C:\Documents and Settings\Administrateur\Application Data\Babylon =>PUP.Optional.Babylon
C:\Documents and Settings\Administrateur\Application Data\Tencent =>PUP.Optional.TencentAddressBar
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Babylon =>PUP.Optional.Babylon

---\\ Récapitulatif des éléments trouvés sur votre station (9) - 0s
http://www.nicolascoolman.fr/?p=368 =>PUP.Optional.TencentAddressBar
http://www.nicolascoolman.fr/?p=279 =>Adware.InstallCore
http://www.nicolascoolman.fr/?p=4664 =>.Superfluous.Downloader
http://www.nicolascoolman.fr/?p=170 =>PUP.Optional.Babylon
http://www.nicolascoolman.fr/pup-isstart/ =>PUP.Optional.IsStart
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.SearchEngine
http://www.nicolascoolman.fr/?p=237 =>PUP.Optional.Bandoo
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.PriceFountain
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.DeskCut

~ End of the scan, 26028 items in 00h01mn34s (626)(0)

Publicité


Signaler le contenu de ce document

Publicité