cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Rapport de ZHPDiag v1.24.18 par Nicolas Coolman
Run by claude at 2016-11-06 10:29:32
Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
Platform : Windows 8.1
MSIE: Internet Explorer v9.11.9600.18500
MFIE: Mozilla Firefox 49.0.2 (x86 fr)

Boot mode: Normal (Normal boot)
Total RAM: 4,0 Gb (82 % free)
System drive C: 1843 Go (1617 Go free)

---\\ Processus lancés
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Western Digital\WD App Manager\AppManagerLauncher.exe
C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe
C:\Program Files (x86)\Western Digital\WD Utilities\WDDriveUtilitiesHelper.exe
C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\claude\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe
C:\Program Files\CCleaner\CCleaner64.exe
C:\Program Files (x86)\Content Manager\launchCM.exe
C:\Program Files (x86)\TechSmith\Jing\Jing.exe
C:\Users\claude\AppData\Roaming\Spotify\SpotifyWebHelper.exe
C:\Users\claude\AppData\Roaming\Spotify\Spotify.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe

---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
F2 - REG:system.ini: UserInit=userinit.exe,
F2 - REG:system.ini: Shell=explorer.exe

---\\ Pages de démarrage d'Internet Explorer (R0)
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com

---\\ Pages de recherche d'Internet Explorer (R1)
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

---\\ Internet Explorer URLSearchHook (R3)
R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll

---\\ Redirection du fichier Hosts (O1)
O1 - Hosts: 0.0.0.0 0.0.0.0 # fix for traceroute and netstat display anomaly
O1 - Hosts: 0.0.0.0 tracking.opencandy.com.s3.amazonaws.com
O1 - Hosts: 0.0.0.0 media.opencandy.com
O1 - Hosts: 0.0.0.0 cdn.opencandy.com
O1 - Hosts: 0.0.0.0 tracking.opencandy.com
O1 - Hosts: 0.0.0.0 api.opencandy.com
O1 - Hosts: 0.0.0.0 api.recommendedsw.com
O1 - Hosts: 0.0.0.0 installer.betterinstaller.com
O1 - Hosts: 0.0.0.0 installer.filebulldog.com
O1 - Hosts: 0.0.0.0 d3oxtn1x3b8d7i.cloudfront.net
O1 - Hosts: 0.0.0.0 inno.bisrv.com
O1 - Hosts: 0.0.0.0 nsis.bisrv.com
O1 - Hosts: 0.0.0.0 cdn.file2desktop.com
O1 - Hosts: 0.0.0.0 cdn.goateastcach.us
O1 - Hosts: 0.0.0.0 cdn.guttastatdk.us
O1 - Hosts: 0.0.0.0 cdn.inskinmedia.com
O1 - Hosts: 0.0.0.0 cdn.insta.oibundles2.com
O1 - Hosts: 0.0.0.0 cdn.insta.playbryte.com
O1 - Hosts: 0.0.0.0 cdn.llogetfastcach.us
O1 - Hosts: 0.0.0.0 cdn.montiera.com
O1 - Hosts: 0.0.0.0 cdn.msdwnld.com
O1 - Hosts: 0.0.0.0 cdn.mypcbackup.com
O1 - Hosts: 0.0.0.0 cdn.ppdownload.com
O1 - Hosts: 0.0.0.0 cdn.riceateastcach.us
O1 - Hosts: 0.0.0.0 cdn.shyapotato.us
O1 - Hosts: 0.0.0.0 cdn.solimba.com
O1 - Hosts: 0.0.0.0 cdn.tuto4pc.com
O1 - Hosts: 0.0.0.0 cdn.appround.biz
O1 - Hosts: 0.0.0.0 cdn.bigspeedpro.com
O1 - Hosts: 0.0.0.0 cdn.bispd.com
O1 - Hosts: 0.0.0.0 cdn.bisrv.com
O1 - Hosts: 0.0.0.0 cdn.cdndp.com
O1 - Hosts: 0.0.0.0 cdn.download.sweetpacks.com
O1 - Hosts: 0.0.0.0 cdn.dpdownload.com
O1 - Hosts: 0.0.0.0 cdn.visualbee.net

---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll

---\\ Applications démarrées automatiquement par le registre (O4)
O4 - HKLM\..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [WDAppManager] C:\Program Files (x86)\Western Digital\WD App Manager\AppManagerLauncher.exe
O4 - HKLM\..\Run: [WD Drive Unlocker] C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe
O4 - HKLM\..\Run: [DriveUtilitiesHelper] C:\Program Files (x86)\Western Digital\WD Utilities\WDDriveUtilitiesHelper.exe
O4 - HKLM\..\Run: [WD Quick View] C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
O4 - HKCU\..\Run: [Epson Stylus NX420(Réseau)] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIGCA.EXE /FU C:\WINDOWS\TEMP\E_S298E.tmp /EF HKCU
O4 - HKCU\..\Run: [Google Update] C:\Users\claude\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [GarminExpressTrayApp] C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [CmTray] C:\Program Files (x86)\Content Manager\launchCM.exe
O4 - HKCU\..\Run: [Jing] C:\Program Files (x86)\TechSmith\Jing\Jing.exe
O4 - HKCU\..\Run: [Spotify Web Helper] C:\Users\claude\AppData\Roaming\Spotify\SpotifyWebHelper.exe
O4 - HKCU\..\Run: [Spotify] C:\Users\claude\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized
O4 - HKCU\..\Run: [Skype] C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [EPSON378B21 (Epson Stylus NX420)] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIGCA.EXE /FU C:\WINDOWS\TEMP\E_SE25.tmp /EF HKCU
O4 - HKLM\..\policies\Explorer: [ForceActiveDesktopOn] Data=0
O4 - HKLM\..\policies\Explorer: [NoActiveDesktopChanges] Data=1
O4 - HKLM\..\policies\Explorer: [NoActiveDesktop] Data=1

---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\Resources\Icons\HP.ico
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll,205

---\\ Onglet supplémentaire dans les options avancées d'Internet Explorer (O11)
O11 - Options group: [accelerated_graphics] Accelerated graphics - C:\Windows\SysWOW64\inetcpl.cpl
O11 - Options group: [accessibility] Accessibility - C:\Windows\SysWOW64\inetcpl.cpl
O11 - Options group: [browse] Browsing - C:\Windows\SysWOW64\inetcpl.cpl
O11 - Options group: [crypto] Security - C:\Windows\SysWOW64\inetcpl.cpl
O11 - Options group: [http] HTTP settings - C:\Windows\SysWOW64\inetcpl.cpl
O11 - Options group: [international] International - C:\Windows\SysWOW64\inetcpl.cpl
O11 - Options group: [multimedia] Multimedia - C:\Windows\SysWOW64\inetcpl.cpl

---\\ Protocole additionnel et piratage de protocole (O18)
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\SysWOW64\urlmon.dll
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysWOW64\msvidctl.dll
O18 - Handler: intu-ir2014 - {980B949F-E16E-4459-88E8-580392AEF9AE} - C:\Program Files (x86)\ImpotRapide 2014\ic2014pp.dll
O18 - Handler: intu-ir2015 - {6BEE4271-88EB-43B7-BEE1-54B77DC65F9C} - C:\Program Files (x86)\ImpotRapide 2015\ic2015pp.dll
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\SysWOW64\inetcomm.dll
O18 - Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\SysWOW64\msvidctl.dll

---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - (not file)

---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-3502866833-2309048198-4164964105-1001Core.job
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-3502866833-2309048198-4164964105-1001UA.job
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\HPCeeScheduleForclaude.job

---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\WINDOWS\system32\unregmp2.exe /ShowWMP
O40 - ASIC: Microsoft Windows Media Player 12.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\Windows\SysWOW64\wmpdxm.dll
O40 - ASIC: Offline Browsing Pack - {3af36230-a269-11d1-b5bf-0000f8051515} - (not file)
O40 - ASIC: Microsoft Windows - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
O40 - ASIC: DirectDrawEx - {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - (not file)
O40 - ASIC: Internet Explorer Help - {45ea75a0-a269-11d1-b5bf-0000f8051515} - (not file)
O40 - ASIC: Microsoft Windows Script 5.6 - {4f645220-306d-11d2-995d-00c04f98bbc9} - (not file)
O40 - ASIC: Internet Explorer Setup Tools - {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - (not file)
O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} - (not file)
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} - C:\WINDOWS\system32\unregmp2.exe /FirstLogon
O40 - ASIC: MSN Site Access - {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - (not file)
O40 - ASIC: Address Book 7 - {7790769C-0471-11d2-AF11-00C04FA35D02} - (not file)
O40 - ASIC: .NET Framework - {7C028AF8-F614-47B3-82DA-BA94E41B1089} - (not file)
O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install
O40 - ASIC: Google Chrome - {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.71\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
O40 - ASIC: Dynamic HTML Data Binding - {9381D8F2-0288-11D0-9501-00AA00B911A5} - (not file)
O40 - ASIC: .NET Framework - {C6BAF60B-6E91-453F-BFF9-D3789CFEFCDD} - (not file)
O40 - ASIC: Internet Explorer Core Fonts - {C9E9A340-D1F1-11D0-821E-444553540600} - (not file)
O40 - ASIC: HTML Help - {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - (not file)
O40 - ASIC: Active Directory Service Interface - {E92B03AB-B707-11d2-9CBD-0000F87A369E} - (not file)
O40 - ASIC: .NET Framework - {EC43E638-09F0-38CC-A585-72FCCDDF035C} - (not file)

---\\ Logiciels installés (O42)
O42 - Logiciel: 4 Elements II
O42 - Logiciel: Adobe AIR
O42 - Logiciel: Adobe Acrobat Reader DC - Français
O42 - Logiciel: Adobe Flash Player 23 NPAPI
O42 - Logiciel: Adobe Refresh Manager
O42 - Logiciel: Adobe Shockwave Player 12.2
O42 - Logiciel: Alcor Micro USB Card Reader Driver
O42 - Logiciel: Ashampoo Burning Studio FREE v.1.14.5
O42 - Logiciel: Avast Antivirus Gratuit
O42 - Logiciel: Azkend 2: The World Beneath
O42 - Logiciel: Bejeweled 3
O42 - Logiciel: Build-a-lot
O42 - Logiciel: Building the Great Wall of China Collector's Edition
O42 - Logiciel: Catalyst Control Center - Branding
O42 - Logiciel: Cisco EAP-FAST Module
O42 - Logiciel: Cisco LEAP Module
O42 - Logiciel: Cisco PEAP Module
O42 - Logiciel: Content Manager
O42 - Logiciel: Curse at Twilight
O42 - Logiciel: CyberLink Media Suite 10
O42 - Logiciel: CyberLink Power Media Player 12
O42 - Logiciel: CyberLink Power2Go 8
O42 - Logiciel: CyberLink PowerBackup 2.6
O42 - Logiciel: CyberLink PowerDirector 12
O42 - Logiciel: Cyberlink PhotoDirector
O42 - Logiciel: Delicious - Emily's Wonder Wedding Premium Edition
O42 - Logiciel: Drive Rescue 1.9
O42 - Logiciel: EPSON Scan
O42 - Logiciel: Elevated Installer
O42 - Logiciel: Epson CreativeZone
O42 - Logiciel: Epson Easy Photo Print 2
O42 - Logiciel: Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser)
O42 - Logiciel: Epson Event Manager
O42 - Logiciel: EpsonNet Print
O42 - Logiciel: EpsonNet Setup 3.2
O42 - Logiciel: Evernote v. 5.5.3
O42 - Logiciel: Farm Frenzy
O42 - Logiciel: Fishdom 3: Collector's Edition
O42 - Logiciel: Foxit PhantomPDF
O42 - Logiciel: Garmin City Navigator North America NT 2016.20
O42 - Logiciel: Garmin Express
O42 - Logiciel: Garmin Express Tray
O42 - Logiciel: GenoPro 3.0.0.6
O42 - Logiciel: Google Chrome
O42 - Logiciel: Google Earth
O42 - Logiciel: Google Talk Plugin
O42 - Logiciel: Google Update Helper
O42 - Logiciel: Governor of Poker 2 Premium Edition
O42 - Logiciel: HP Customer Experience Enhancements
O42 - Logiciel: HP Documentation
O42 - Logiciel: HP Recovery Manager
O42 - Logiciel: HP SimplePass
O42 - Logiciel: HP Support Assistant
O42 - Logiciel: HP Support Solutions Framework
O42 - Logiciel: Hewlett-Packard ACLM.NET v1.2.2.3
O42 - Logiciel: ImpôtRapide 2014
O42 - Logiciel: ImpôtRapide 2015
O42 - Logiciel: Java 8 Update 111
O42 - Logiciel: Jewel Match 3
O42 - Logiciel: Jing
O42 - Logiciel: Joining Hands 2
O42 - Logiciel: KC Softwares HDDExpert
O42 - Logiciel: LUXOR Evolved
O42 - Logiciel: Letters from Nowhere 2
O42 - Logiciel: Lost in Reefs 2
O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.1.1043
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106
O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005
O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005
O42 - Logiciel: Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005
O42 - Logiciel: Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005
O42 - Logiciel: MozBackup 1.5.1
O42 - Logiciel: Mozilla Firefox 49.0.2 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service
O42 - Logiciel: ODF Viewer Beta 2
O42 - Logiciel: Office 15 Click-to-Run Extensibility Component
O42 - Logiciel: Office 15 Click-to-Run Localization Component
O42 - Logiciel: OpenOffice 4.1.2
O42 - Logiciel: Peggle Nights
O42 - Logiciel: Penguins!
O42 - Logiciel: Plants vs. Zombies - Game of the Year
O42 - Logiciel: Plugin Radio FR 3.2
O42 - Logiciel: Polar Bowler 1st Frame
O42 - Logiciel: Realtek Card Reader
O42 - Logiciel: Realtek High Definition Audio Driver
O42 - Logiciel: Roads of Rome 3
O42 - Logiciel: SDFormatter
O42 - Logiciel: SafeZone Stable 1.51.2220.62
O42 - Logiciel: Secunia PSI (3.0.0.11003)
O42 - Logiciel: Skype Click to Call
O42 - Logiciel: Skype Web Plugin
O42 - Logiciel: Skype™ 7.29
O42 - Logiciel: Solitaire Mystery Four Seasons
O42 - Logiciel: Streaming Audio Recorder version 3.4.5
O42 - Logiciel: Trinklit Supreme
O42 - Logiciel: Unchecky v1.0.1
O42 - Logiciel: Update Installer for WildTangent Games App
O42 - Logiciel: VIDBOX Driver
O42 - Logiciel: VLC media player
O42 - Logiciel: Vacation Quest™ - Australia
O42 - Logiciel: Viking Saga
O42 - Logiciel: Visionneuse Microsoft PowerPoint
O42 - Logiciel: WD Backup
O42 - Logiciel: WD Drive Utilities
O42 - Logiciel: WD Quick View
O42 - Logiciel: WD Security
O42 - Logiciel: WildTangent Games
O42 - Logiciel: WildTangent Games App for HP
O42 - Logiciel: Winamp
O42 - Logiciel: Youda Jewel Shop
O42 - Logiciel: honestech VHS to DVD 8.0 Deluxe
O42 - Logiciel: swMSM

---\\ Contenu des dossiers Fichiers Communs (O43)
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Adobe
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\AMD AVT
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\AmUStor
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Apowersoft
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Ashampoo
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\ATI Technologies
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Bonjour
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Cisco
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Content Manager
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Convar
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\CyberLink
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Drive Rescue
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\epson
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Epson Software
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\EpsonNet
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Evernote
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Foxit PhantomPDF
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Garmin
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\GenoPro
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Google
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Hard Disk Sentinel
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Hewlett-Packard
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\honestech
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\honestech VHS to DVD 8.0 Deluxe
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\ImpotRapide 2014
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\ImpotRapide 2015
O43 - CFD:Common File Directory --H-D- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Internet Explorer
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Java
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\KC Softwares
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Malwarebytes Anti-Malware
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\McAfee
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Microsoft Office
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Microsoft.NET
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Movie Maker
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\MozBackup
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\mp3DirectCut
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\MSBuild
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\MSECache
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\OD Fellowship
O43 - CFD:Common File Directory R---D- C:\Program Files (x86)\Online Services
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\OpenOffice 4
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\PhotoFiltre 7
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Realtek
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Reference Assemblies
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\SDA
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Secunia
O43 - CFD:Common File Directory R---D- C:\Program Files (x86)\Skype
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\TechSmith
O43 - CFD:Common File Directory --H-D- C:\Program Files (x86)\Temp
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Unchecky
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\VIDBOX NW03
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\VideoLAN
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Western Digital
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\WildGames
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\WildTangent Games
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Winamp
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Windows Defender
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Windows Mail
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Windows Media Player
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Windows NT
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD:Common File Directory -SH-D- C:\Program Files (x86)\Windows Sidebar
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\ZHPDiag
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\Adobe AIR
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\ATI Technologies
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\AV
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\CyberLink
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\EPSON
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\Intuit
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\Java
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\logishrd
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\Nikon
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\PX Storage Engine
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\Services
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\Skype
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\System
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\Western Digital
O43 - CFD:Common File Directory ----D- C:\Program Files (x86)\Common Files\Windows Live

---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:Last File Created 2016-10-12 - 07:37:55 ---A- C:\WINDOWS\System32\swhealthex.log
O44 - LFC:Last File Created 2016-10-31 - 11:43:36 ---A- C:\WINDOWS\System32\DOErrors.log
O44 - LFC:Last File Created 2016-11-05 - 11:37:36 ---A- C:\WINDOWS\setuperr.log
O44 - LFC:Last File Created 2016-11-05 - 11:48:30 ---A- C:\WINDOWS\System32\WindowsAccessBridge-32.dll
O44 - LFC:Last File Created 2016-11-06 - 07:45:15 ---A- C:\WINDOWS\PFRO.log
O44 - LFC:Last File Created 2016-11-06 - 07:45:30 ---A- C:\WINDOWS\setupact.log
O44 - LFC:Last File Created 2016-11-06 - 07:47:21 -S-A- C:\WINDOWS\bootstat.dat
O44 - LFC:Last File Created 2016-11-06 - 10:11:01 ---A- C:\WINDOWS\WindowsUpdate.log

---\\ MountPoints2 Shell Key (MPSK) (O51)
O51 - MPSK:{356c5e3d-5a68-11e6-829c-7429afd8a27a}\Shell\AutoRun\command - "K:\WD Drive Unlock.exe" autoplay=true

---\\ Trojan Driver Search Data (TDSD) (O52)
O52 - TDSD:HKLM\...\Drivers32\"msacm.msgsm610"="msgsm32.acm"
O52 - TDSD:HKLM\...\Drivers32\"msacm.msg711"="msg711.acm"
O52 - TDSD:HKLM\...\Drivers32\"msacm.l3acm"="C:\Windows\SysWOW64\l3codeca.acm"
O52 - TDSD:HKLM\...\Drivers32\"vidc.yuy2"="msyuv.dll"
O52 - TDSD:HKLM\...\Drivers32\"vidc.i420"="lvcodec2.dll"
O52 - TDSD:HKLM\...\Drivers32\"vidc.cvid"="iccvid.dll"
O52 - TDSD:HKLM\...\Drivers32\"vidc.yvyu"="msyuv.dll"
O52 - TDSD:HKLM\...\Drivers32\"vidc.yvu9"="tsbyuv.dll"
O52 - TDSD:HKLM\...\Drivers32\"wavemapper"="msacm32.drv"
O52 - TDSD:HKLM\...\Drivers32\"midimapper"="midimap.dll"
O52 - TDSD:HKLM\...\Drivers32\"vidc.uyvy"="msyuv.dll"
O52 - TDSD:HKLM\...\Drivers32\"msacm.imaadpcm"="imaadp32.acm"
O52 - TDSD:HKLM\...\Drivers32\"msacm.msadpcm"="msadp32.acm"
O52 - TDSD:HKLM\...\Drivers32\"vidc.iyuv"="iyuv_32.dll"
O52 - TDSD:HKLM\...\Drivers32\"vidc.mrle"="msrle32.dll"
O52 - TDSD:HKLM\...\Drivers32\"vidc.msvc"="msvidc32.dll"
O52 - TDSD:HKLM\...\Drivers32\"wave2"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"midi2"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"mixer2"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"aux2"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"wave1"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"midi1"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"mixer1"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"aux1"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"wave"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"midi"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"mixer"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"aux"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"wave3"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"midi3"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"mixer3"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"aux3"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"wave4"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"midi4"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"mixer4"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"aux4"="wdmaud.drv"
O52 - TDSD:HKLM\...\drivers.desc\"C:\Windows\SysWOW64\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec"

---\\ Microsoft Windows Policies System (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableCursorSuppression"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "SoftwareSASGeneration"=1

---\\ Microsoft Windows Policies Explorer (MWPE) (O56)
O56 - MWPE:[HKLM\...\Policies\Explorer] - "ForceActiveDesktopOn"=0
O56 - MWPE:[HKLM\...\Policies\Explorer] - "NoActiveDesktopChanges"=1
O56 - MWPE:[HKLM\...\Policies\Explorer] - "NoActiveDesktop"=1

---\\ Liste des outils de nettoyage (LATC) (O63)
O63 - Logiciel: ZHPDiag 1.24


End of the scan: 462 lines

Publicité


Signaler le contenu de ce document

Publicité