cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.12.24.251 Par Nicolas Coolman (2016/12/24)
~ Démarré par HAMARD (Administrator) (2017/02/23 17:28:25)
~ Web: https://www.nicolascoolman.com
~ Blog: https://www.anti-malware.top
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\HAMARD\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\HAMARD\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 10 Home, 32-bit (Build 14393) =>.Microsoft Corporation

---\\ Informations sur les produits Windows (3) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK

---\\ Logiciels de protection (2) - 13s
Malwarebytes Anti-Malware version 2.2.1.1043 (Protection)
Windows Defender (Activate) (Protection)

---\\ Logiciels d'optimisation (1) - 14s
~ CCleaner v5.26 (Optimize)

---\\ Surveillance de Logiciels (2) - 14s
~ Adobe Flash Player 24 PPAPI (Surveillance)
~ Adobe Acrobat Reader DC - Français (Surveillance)

---\\ Logiciels de partage P2P (1) - 15s
~ µTorrent v3.4.5.41372 (P2P)

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 15 Stepping 13, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 2096.436 MB (42% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 140 GB (40%) free of 342 GB : OK =>.Disk Space

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: HAMARD-AUDOUIN
~ User Name: HAMARD
~ Logged in as Administrator

---\\ Etat du Centre de Sécurité Windows (7) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Recherche particulière de fichiers génériques (24) - 3s
[MD5.AF46710DDB8B0E304AA4FD2B940CABD8] - 10/12/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4311736] =>.Microsoft Windows®
[MD5.111474C61232202B5B588D2B512CBB25] - 16/07/2016 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [61952] =>.Microsoft Corporation
[MD5.B315D888C2AC5007D0F87880CE92102A] - 16/07/2016 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [205112] =>.Microsoft Windows Publisher®
[MD5.0D8CA86B639533ED0A7FE1792C5BE600] - 10/12/2016 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [2256384] =>.Microsoft Corporation
[MD5.A06A990AFF3DE17AAE7E7312EBAE90DF] - 14/12/2016 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [578560] =>.Microsoft Corporation
[MD5.7C880AA65587F2B274D2633E69CB19C8] - 16/07/2016 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [390144] =>.Microsoft Corporation
[MD5.227CFE3EDA82029AAC1C088A16297CD7] - 10/12/2016 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [496872] =>.Microsoft Windows®
[MD5.5E743494C3D549E495D30E4B2A30A110] - 16/07/2016 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] =>.Microsoft Corporation
[MD5.3B5BE5B3D3CE8D9834C2C9B325AC6A29] - 10/12/2016 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [482656] =>.Microsoft Windows®
[MD5.1D8B6976EC75698485A195A06B2DEBAC] - 16/07/2016 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [23392] =>.Microsoft Windows®
[MD5.9577B2171AD8DBC6A8BAAD75232CBF38] - 16/07/2016 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [74752] =>.Microsoft Corporation
[MD5.67B188419B7018D7956A38C89EFCC70A] - 16/07/2016 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [130560] =>.Microsoft Corporation
[MD5.9C24695688530F014821E30FC8FFD3C9] - 10/12/2016 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [113152] =>.Microsoft Corporation
[MD5.E67AAF24F03D9D1B7616C0F5663556CA] - 16/07/2016 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [67072] =>.Microsoft Corporation
[MD5.7D889F2D2464940C2DA8A218F5282F21] - 16/07/2016 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [90624] =>.Microsoft Corporation
[MD5.3FDB0E7AC49A78D21B470863CDA5E342] - 16/07/2016 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [188416] =>.Microsoft Corporation
[MD5.9549298C64834EF719F81C272ED03CD3] - 10/12/2016 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [399712] =>.Microsoft Windows®
[MD5.19B3776EE853B95924BAEDEF14702135] - 16/07/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [217088] =>.Microsoft Corporation
[MD5.08EFFF2FFD9E85CEDBC103B1C514EDBD] - 10/12/2016 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [1957216] =>.Microsoft Windows®
[MD5.102319D1AB9C8AE57ABF4542C15E46E5] - 16/07/2016 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [81920] =>.Microsoft Corporation
[MD5.26F09741A8FF5EE03C66B33EB5C2A7D2] - 16/07/2016 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [80896] =>.Microsoft Corporation
[MD5.F064A9E33658E8A73280AE8AA5723C59] - 16/07/2016 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [131072] =>.Microsoft Corporation
[MD5.E8DC8115AE2C912694ACB51BD48D417D] - 16/07/2016 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [95072] =>.Microsoft Windows®
[MD5.8FC38A2B3D7A58A69065F43479E848FA] - 16/07/2016 - (.Microsoft Corporation - Volume Shadow Copy driver.) -- C:\WINDOWS\System32\drivers\volsnap.sys [353120] =>.Microsoft Windows®

---\\ Google Chrome, Démarrage,Recherche,Extensions (2) - 0s
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda]
G2 - GCE: Preference [User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm]

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (1) - 5s
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_24_0_0_194.dll =>.Adobe Systems Incorporated

---\\ Opera, Démarrage,Recherche,Plugins (1) - 0s
B2 - EXT: [gorhill] C:\Users\HAMARD\AppData\Roaming\Opera Software\Opera Stable\Extensions\kccohkcpppjjkkjppopfnflnebibpida

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (12) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://r.orange.fr/ =>.Orange SA
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com =>.Google Inc.
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com =>.Google Inc.
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com =>.Google Inc.
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com =>.Google Inc.
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com =>.Google Inc.
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com =>.Google Inc.
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com =>.Google Inc.
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer,Proxy Management (5) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies []

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\WINDOWS\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Scan Additionnel (1) - 0s
~ Aucun élément malicieux ou superflu trouvé.

---\\ Récapitulatif des éléments trouvés sur votre station (1) - 0s
~ Aucun élément malicieux ou superflu trouvé.

~ End of the scan, 39591 items in 00mn26s (123)

Publicité


Signaler le contenu de ce document

Publicité