~ ZHPDiag v2015.12.22.194 Par Nicolas Coolman (2015/12/22) ~ Démarré par poste05 (Administrator) (2015/12/23 10:48:26) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\poste05\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\poste05\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ Démarrage du système: Normal (Normal boot) Windows 7 Starter, 32-bit Service Pack 1 (Build 7601) ---\\ Navigateurs Internet (2) - 0s MFIE: Mozilla Firefox 40.0.3 (x86 ar) v40.0.3 MSIE: Internet Explorer v8.0.7601.17514 ---\\ Informations sur les produits Windows (4) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : KO ---\\ Logiciels de protection (1) - 4s Windows Defender W7 (Activate) ---\\ Surveillance de Logiciels (2) - 4s Adobe Flash Player 20 NPAPI Adobe Reader 9.5.5 ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 6 Model 23 Stepping 10, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 2096.44 MB (52% free) System Restore: Activé (Enable) System drive C: has 36 GB () free of 59 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: POSTE06-PC ~ User Name: poste05 ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 10s ~ Drive C: has 36 GB free of 59 GB (System) ~ Drive D: has 92 GB free of 92 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Recherche particulière de fichiers génériques (24) - 1s [MD5.40D777B7A95E00593EB1568C68514493] - 20/11/2010 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2616320] © [MD5.51138BEEA3E2C21EC44D0932C71762A8] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] © [MD5.B5C5DCAD3899512020D135600129D665] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [96256] © [MD5.44214C94911C7CFB1D52CB64D5E8368D] - 20/11/2010 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [980992] © [MD5.6D13E1406F50C66E2A95D97F22C47560] - 20/11/2010 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [286720] © [MD5.E3AE23569749DE12D45BA3B489A036AE] - 20/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [193536] © [MD5.59DF156711A76BCB993253EC6C9BBF41] - 20/11/2010 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [270336] © [MD5.129F80D7868E30DF3E3DE33A1D3132B4] - 07/02/2011 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] © [MD5.1151FD4FB0216CFED887BFDE29EBD516] - 20/11/2010 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [338944] © [MD5.338C86357871C167A96AB976519BF59E] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [21584] =>.Microsoft Windows® [MD5.77EA11B065E0A8AB902D78145CA51E10] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70656] © [MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - 20/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [108544] © [MD5.F024449C97EC1E464AAFFDA18593DB88] - 20/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [78336] © [MD5.9036377B8A6C15DC2EEC53E489D159B5] - 20/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [108544] © [MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [80896] © [MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [101888] © [MD5.B272B4C3E085EA860C12F2E4FAF2FFA2] - 20/11/2010 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [123904] © [MD5.280122DDCF04B378EDD1AD54D71C1E54] - 20/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [187904] © [MD5.33C3093D09017CFE2E219F2472BFF6EB] - 20/11/2010 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1211264] =>.Microsoft Windows® [MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [79360] © [MD5.D9F91EAFEC2815365CBE6D167E4E332A] - 14/07/2009 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [78848] © [MD5.3E21C083B8A01CB70BA1F09303010FCE] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [71168] © [MD5.B459575348C20E8121D6039DA063C704] - 20/11/2010 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [74752] © [MD5.F497F67932C6FA693D7DE2780631CFE7] - 20/11/2010 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [245632] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (4) - 1s O23 - Service: DFServ (DFServ) . (.Faronics Corporation - Deep Freeze service.) - C:\Program Files\Faronics\Deep Freeze\Install C-0\DFServ.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl® O23 - Service: Baidu Spark Service (SparkSvc) . (.Baidu Inc. - spark.) - C:\Program Files\baidu\Spark33.8.9999.10081\sparkservice.exe {5FAEE9E83F32948F3B2040AC6DF0145C} O23 - Service: Software Updater (SrvUpdater) . (.Copyright © 2012 - Upd4ter.) - C:\Program Files\SoftwareUpdater\UpdaterService.exe ---\\ Tâches planifiées en automatique (5) - 3s [MD5.F54564025D2284AE498E51D7C139F971] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [269504] =>.Adobe Systems Incorporated® [MD5.9D59FD697823486EB341A0E6EE662B9D] [APT] [SparkUpdater] (.Baidu.com, Inc..) -- C:\Program Files\baidu\Spark33.8.9999.10081\SparkUpdate.exe [1372472] {5FAEE9E83F32948F3B2040AC6DF0145C} O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] © O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3940] © O39 - APT: SparkUpdater - (.Baidu.com, Inc..) -- C:\Windows\System32\Tasks\SparkUpdater [4098] ---\\ Processus lancés (15) - 2s [MD5.790835469937F5A012E5968796CBDEE4] - (.Ates Yazilim, Bilgisayar & Internet Teknolojileri Tic - HandyCafe Client.) -- C:\Program Files\handyCafe\Client\hndclient.exe [2102688] [PID.2620] [MD5.923BD51A3D53C0924EA930234B2665C3] - (.Faronics Corporation - Deep Freeze utility.) -- C:\Program Files\Faronics\Deep Freeze\Install C-0\_$Df\FrzState2k.exe [1785857] [PID.2704] [MD5.3F98B594E5404311D464769733DF5125] - (.Zbshareware Lab - USB Disk Security.) -- C:\Program Files\USB Disk Security\USBGuard.exe [658632] [PID.2832] {00CCE1EA3E08123F0BC1B492F00E40C9BA} © [MD5.98F101E69EA59EFAE909EEDD16E434B5] - (.Gsi Technologies - .) -- C:\Program Files\Golden Filter Premium\GFPro.exe [1650688] [PID.2888] [MD5.C3B2CBB9EDE92A7AC354BA315C5C659A] - (.Ates Yazilim, Bilgisayar & Internet Teknolojileri Tic - _hndguard.exe.) -- C:\Program Files\handyCafe\Client\_hndguard.exe [62808] [PID.3400] {716F910B0E1E48997DB119F203A7C144} [MD5.001C8273B6A21A4B8DA10CDCE833EC4A] - (.Gsi Technologies - .) -- C:\Windows\System32\mssvr32.exe [77824] [PID.3524] [MD5.181B6EC36DB53AE6372230544C7E0427] - (.Copyright © 2012 - Upd4ter Sw.) -- C:\Program Files\SoftwareUpdater\AppsUpdater.exe [74240] [PID.2420] [MD5.9E702E6AAA1A61AF33AFCD20F10A6241] - (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Spark33.8.9999.10081\spark.exe [983352] [PID.3832] {5FAEE9E83F32948F3B2040AC6DF0145C} [MD5.9E702E6AAA1A61AF33AFCD20F10A6241] - (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Spark33.8.9999.10081\spark.exe [983352] [PID.3736] {5FAEE9E83F32948F3B2040AC6DF0145C} [MD5.9E702E6AAA1A61AF33AFCD20F10A6241] - (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Spark33.8.9999.10081\spark.exe [983352] [PID.2312] {5FAEE9E83F32948F3B2040AC6DF0145C} [MD5.9E702E6AAA1A61AF33AFCD20F10A6241] - (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Spark33.8.9999.10081\spark.exe [983352] [PID.320] {5FAEE9E83F32948F3B2040AC6DF0145C} [MD5.9E702E6AAA1A61AF33AFCD20F10A6241] - (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Spark33.8.9999.10081\spark.exe [983352] [PID.2208] {5FAEE9E83F32948F3B2040AC6DF0145C} [MD5.9E702E6AAA1A61AF33AFCD20F10A6241] - (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Spark33.8.9999.10081\spark.exe [983352] [PID.2396] {5FAEE9E83F32948F3B2040AC6DF0145C} [MD5.9E702E6AAA1A61AF33AFCD20F10A6241] - (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Spark33.8.9999.10081\spark.exe [983352] [PID.2584] {5FAEE9E83F32948F3B2040AC6DF0145C} [MD5.FF4845D2C90EEE2F68F5F302F287E709] - (.Copyright (C) 2015 Nicolas Coolman - ZHPDiag.) -- C:\Users\poste05\Desktop\ZHPDiag3.exe [2038272] [PID.3336] © ---\\ Google Chrome, Démarrage,Recherche,Extensions (7) - 0s G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [lkemddiljapcmhicklfpcbpfffahfbja] [http://www.linkszb.com/addon/chrome/update.xml] Web Navigation =>Hijacker.Browser G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (3) - 0s P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\Ask.xml P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} © P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_20_0_0_235.dll © ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (10) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.handycafe.com/ R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (5) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = http://192.168.137.1:918; http://192.168.1.10:918 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) © F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) © F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) © ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (1) ---\\ Browser Helper Object de navigateur (BHO) (4) - 1s O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll =>.Adobe Systems, Incorporated® O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O2 - BHO: Microsoft Web Test Recorder 10.0 Helper - {876d9f09-c6d6-4324-a2cc-04dd9a4de12f} . (.Microsoft Corporation - Microsoft Web Test Recorder Helper.) -- C:\Program Files\Microsoft Visual Studio 11.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll =>.Microsoft Corporation® O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl® ---\\ Applications lancées au démarrage du système (10) - 0s O4 - HKLM\..\Run: [hndclient] . (.Ates Yazilim, Bilgisayar & Internet Teknolojileri Tic - HandyCafe Client.) -- C:\Program Files\handyCafe\Client\hndclient.exe O4 - HKLM\..\Run: [USB Security] . (.Zbshareware Lab - USB Disk Security.) -- C:\Program Files\USB Disk Security\USBGuard.exe {00CCE1EA3E08123F0BC1B492F00E40C9BA} © O4 - HKLM\..\Run: [GrooveMonitor] . (.Microsoft Corporation - GrooveMonitor Utility.) -- C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe =>.Microsoft Corporation® O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe =>.Adobe Systems, Incorporated® O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems, Incorporated® O4 - HKLM\..\Run: [GoldenFilterPro] . (.Gsi Technologies - .) -- C:\Program Files\Golden Filter Premium\GFPro.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe © O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe © ---\\ Raccourcis Global Startup (6) - 25s O4 - GS\Desktop [Administrateur]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar O4 - GS\Quicklaunch [Administrateur]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar O4 - GS\Desktop [Invité]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar O4 - GS\Quicklaunch [Invité]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar O4 - GS\Desktop [poste05]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar O4 - GS\Quicklaunch [poste05]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar ---\\ Modification Domaine/Adresses DNS (2) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.2.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2288C5FC-85B7-4E31-996B-D291F2562E72}: DhcpNameServer = 192.168.1.1 192.168.2.1 ---\\ Protocole additionnel (27) - 1s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll © O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} . (.Microsoft Corporation - GrooveSystemServices Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll =>.Microsoft Corporation® O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll © O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation® O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype4COM.) -- C:\Program Files\Common Files\Skype\Skype4COM.dll =>.Skype Software Sarl® O18 - Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl® O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll © O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Logiciels installés (66) - 5s O42 - Logiciel: Adobe Flash Player 20 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 20 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Reader 9.5.5 - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1033-7B44-A95000000001} © O42 - Logiciel: Adobe Shockwave Player 12.0 - (.Adobe Systems, Inc.) [HKLM] -- {AA3B06B1-E89A-43C6-A26B-7109DB4BEE7B} © O42 - Logiciel: Allgemeine Runtime Files (x86) - (.Sereby Corporation.) [HKLM] -- {1F6D1DB5-82B5-41A4-85A2-0A382C142A35}_is1 O42 - Logiciel: Baidu Browser - (.Baidu Inc..) [HKLM] -- Spark {5FAEE9E83F32948F3B2040AC6DF0145C} O42 - Logiciel: Blend for Visual Studio 2012 - (.Microsoft Corporation.) [HKLM] -- {57F20F04-014D-453F-B6A3-AE9485C4DFAB} © O42 - Logiciel: Blend for Visual Studio 2012 FRA resources - (.Microsoft Corporation.) [HKLM] -- {C0AD26D9-8705-42E7-BD41-BE7E95A7DC31} © O42 - Logiciel: Canon LBP2900 - (...) [HKLM] -- Canon LBP2900 {5144D731BBB6072C54AB3D53C952930D} O42 - Logiciel: Composants requis pour SSDT - (.Microsoft Corporation.) [HKLM] -- {ACFCFF42-CA92-499C-8549-CC7A05CBEC34} © O42 - Logiciel: DirectX 9.0c Extra Files (x86, x64) - (.Sereby Corporation.) [HKLM] -- {8729E65B-8C12-4A42-B1FE-E4DA7ED52855}_is1 O42 - Logiciel: DirectX for Managed Code - (.Sereby Corporation.) [HKLM] -- {FDF7187F-3960-4BEC-916D-98C9A83E3A68}_is1 O42 - Logiciel: Dotfuscator and Analytics Community Edition - (.PreEmptive Solutions.) [HKLM] -- {372D17F6-A54E-4A01-B264-1314890FFE61} © O42 - Logiciel: Entity Framework Designer pour Visual Studio 2012 - FRA - (.Microsoft Corporation.) [HKLM] -- {7A1D7D34-8463-4261-8B97-425385649EF3} © O42 - Logiciel: Golden Filter Premium 3.1 - (.Gsi Technologies.) [HKLM] -- Golden Filter Premium O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU] -- Google Chrome =>.Google Inc® O42 - Logiciel: handyCafe Client - (.Ates Software.) [HKLM] -- handyCafe Client O42 - Logiciel: IIS 8.0 Express - (.Microsoft Corporation.) [HKLM] -- {B8FFB7D6-6ABD-47C3-8BAD-86FF5D8F3EDC} © O42 - Logiciel: IIS Express Application Compatibility Database for x86 - (...) [HKLM] -- {fdfba1f3-74ae-4255-9c10-a0f552b4610f}.sdb O42 - Logiciel: LocalESPC - (.Microsoft Corporation.) [HKLM] -- {BDBE5D2A-AAB7-77BD-7A0E-5006665CE7C6} © O42 - Logiciel: LocalESPCui for fr-fr - (.Microsoft.) [HKLM] -- {19237788-1FD2-E24E-8B1F-AED171DC45D1} © O42 - Logiciel: Microsoft LightSwitch for Visual Studio 2012 Core - (.Microsoft Corporation.) [HKLM] -- {7437A4B9-314F-3B8F-827B-22909146E471} © O42 - Logiciel: Microsoft LightSwitch pour Visual Studio 2012 CoreRes - FRA - (.Microsoft Corporation.) [HKLM] -- {A0D887F7-79CA-39C7-9B12-346AF8CC4A89} © O42 - Logiciel: Microsoft NuGet - Visual Studio 2012 - (.Microsoft Corporation.) [HKLM] -- {00EC8ABC-3C5A-40F8-A8CB-E7DCD5ABFA05} © O42 - Logiciel: Microsoft Portable Library Multi-Targeting Pack - (.Microsoft Corporation.) [HKLM] -- {C4CAD994-6EA2-3121-8352-DA593150B322} © O42 - Logiciel: Microsoft Portable Library Multi-Targeting Pack Language Pack - fra - (.Microsoft Corporation.) [HKLM] -- {1B65CF1B-3637-3A82-958C-EE0E4C2838BF} © O42 - Logiciel: Microsoft Report Viewer Add-On for Visual Studio 2012 - (.Microsoft Corporation.) [HKLM] -- {1DB43E5A-2F24-4F51-92B0-A2C0EBF5C742} © O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} © O42 - Logiciel: Microsoft Silverlight 4 SDK - Français - (.Microsoft Corporation.) [HKLM] -- {C7954680-C2B0-4DA7-B0D6-3E2F69D663D7} © O42 - Logiciel: Microsoft Silverlight 5 SDK - FRA - (.Microsoft Corporation.) [HKLM] -- {80125E8C-304D-4637-974A-2547049B0E24} © O42 - Logiciel: Microsoft Web Deploy 3.0 - (.Microsoft Corporation.) [HKLM] -- {E43AC95E-66B0-4CEC-AADD-C9BFEF5A4C0A} © O42 - Logiciel: Microsoft Web Deploy dbSqlPackage Provider - FRA - (.Microsoft Corporation.) [HKLM] -- {C76D761C-FF45-442C-A3BA-601C4E1167FD} © O42 - Logiciel: Microsoft Web Developer Tools - Visual Studio 2012 - (.Microsoft Corporation.) [HKLM] -- {B96FCD4F-6EDD-4258-8A6D-0FCEA8445E3E} © O42 - Logiciel: Microsoft Web Developer Tools - Visual Studio 2012 - FRA - (.Microsoft Corporation.) [HKLM] -- {BDDC6A0A-2DBF-482A-97E4-90B82708DED5} © O42 - Logiciel: Microsoft Web Platform Installer 4.0 - (.Microsoft Corporation.) [HKLM] -- {1F4DF099-EA5C-482D-9901-C0A8B539B417} © O42 - Logiciel: Module linguistique de Dotfuscator and Analytics Community Edition - (.PreEmptive Solutions.) [HKLM] -- {4B9F673F-EBCA-4E5B-ADD7-FB1138862C44} © O42 - Logiciel: Module linguistique de la visionneuse d'aide Microsoft 2.0 - FRA - (.Microsoft Corporation.) [HKLM] -- {8E2132F6-071A-3768-8691-B7D12FD7531D} © O42 - Logiciel: Module linguistique de la visionneuse d'aide Microsoft 2.0 - FRA - (.Microsoft Corporation.) [HKLM] -- Module linguistique de la visionneuse d'aide Microsoft 2.0 - FRA © O42 - Logiciel: Module Microsoft Report Viewer pour Visual Studio 2012 - (.Microsoft Corporation.) [HKLM] -- {BAD4734F-5B17-49A5-AE47-DB474B0D224F} © O42 - Logiciel: Mozilla Firefox 40.0.3 (x86 ar) - (.Mozilla.) [HKLM] -- Mozilla Firefox 40.0.3 (x86 ar) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService © O42 - Logiciel: PreEmptive Analytics Client French Language Pack - (.PreEmptive Solutions.) [HKLM] -- {A9514D8B-004D-4685-A1CF-ACFD30EBD238} © O42 - Logiciel: PreEmptive Analytics Visual Studio Components - (.PreEmptive Solutions.) [HKLM] -- {2C76E3DA-BA76-4FAD-B1B1-72B46D639028} © O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701} © O42 - Logiciel: Skype™ 7.8 - (.Skype Technologies S.A..) [HKLM] -- {6A0549A9-1B96-498C-ACBC-3943001FEB19} © O42 - Logiciel: SoftwareUpdater - (...) [HKLM] -- SoftwareUpdater =>PUP.Optional.SoftwareUpdater O42 - Logiciel: Spark - (.Baidu, Inc..) [HKCU] -- Spark © O42 - Logiciel: Tools for .Net 3.5 - (.Microsoft Corporation.) [HKLM] -- {1690CE56-2231-4E59-9006-A0876D949EA8} © O42 - Logiciel: Tools for .Net 3.5 - FRA Lang Pack - (.Microsoft Corporation.) [HKLM] -- {C37962EE-EE24-4E9F-8A41-514ACD79177C} © O42 - Logiciel: Types CLR du système Microsoft pour SQL Server 2012 - (.Microsoft Corporation.) [HKLM] -- {7927D9E5-963C-4AE1-8419-544D0D454435} © O42 - Logiciel: Update for (KB2504637) - (.Microsoft Corporation.) [HKLM] -- {CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637 © O42 - Logiciel: USB Disk Security - (.Zbshareware Lab.) [HKLM] -- USB Disk Security_is1 © O42 - Logiciel: Visual Studio Extensions for Windows Library for JavaScript - (.Microsoft Corporation.) [HKLM] -- {89B4532E-19CE-4FA9-9692-10BFD5A38532} © O42 - Logiciel: WCF Data Services 5.0 (for OData v3) FRA Language Pack - (.Microsoft Corporation.) [HKLM] -- {BF9DC8DC-0891-405A-9AFC-21F1D10FBDB0} © O42 - Logiciel: WCF Data Services 5.0 (for OData v3) Primary Components - (.Microsoft Corporation.) [HKLM] -- {0BCC836F-0B28-4090-B58A-64883BAA3B2F} © O42 - Logiciel: WCF Data Services Tools for Visual Studio 11 FRA Language Pack - (.Microsoft Corporation.) [HKLM] -- {73105938-42A2-457F-9E9D-DB9514BE89E2} © O42 - Logiciel: WCF RIA Services V1.0 SP2 - (.Microsoft Corporation.) [HKLM] -- {3A523AF9-D32F-4C85-8388-0335731F3405} © O42 - Logiciel: Windows App Certification Kit Native Components - (.Microsoft Corporation.) [HKLM] -- {AD17194D-3829-E59E-99A4-EC47097722CA} © O42 - Logiciel: Windows App Certification Kit x86 - (.Microsoft Corporation.) [HKLM] -- {CEE1F4AA-FAAE-6574-8AE6-93727FD6C246} © O42 - Logiciel: Windows Runtime Intellisense Content - fr-fr - (.Microsoft Corporation.) [HKLM] -- {BECE69E4-6664-3C4F-DDBF-A4E226B8957C} © O42 - Logiciel: Windows Software Development Kit - (.Microsoft Corporation.) [HKLM] -- {60D5EF2A-4E0C-2C30-38F6-59C26E134F4A} © O42 - Logiciel: Windows Software Development Kit DirectX x86 Remote - (.Microsoft Corporation.) [HKLM] -- {23176E97-26CB-C72A-19EB-BFB21AC1D15A} © O42 - Logiciel: Windows Software Development Kit for Windows Store Apps - (.Microsoft Corporation.) [HKLM] -- {D11F66FF-82B3-DDB8-1146-525370552BE1} © O42 - Logiciel: Windows Software Development Kit for Windows Store Apps DirectX x86 Remote - (.Microsoft Corporation.) [HKLM] -- {42F61556-29ED-8122-F39E-6F04EA5FF279} © O42 - Logiciel: WinRAR 4.00 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver © O42 - Logiciel: Xilisoft Video Converter Ultimate - (.Xilisoft.) [HKLM] -- Xilisoft Video Converter Ultimate © ---\\ HKCU & HKLM Software Keys (58) - 5s HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\AMD HKLM\SOFTWARE\AppDataLow HKLM\SOFTWARE\ATI Technologies HKLM\SOFTWARE\Baidu HKLM\SOFTWARE\Canon HKLM\SOFTWARE\CBSTEST HKLM\SOFTWARE\CloudOPTInfo HKLM\SOFTWARE\Faronics HKLM\SOFTWARE\Google HKLM\SOFTWARE\handyCafe HKLM\SOFTWARE\IM Providers HKLM\SOFTWARE\Intel HKLM\SOFTWARE\Internet Download Manager HKLM\SOFTWARE\JavaSoft HKLM\SOFTWARE\JreMetrics HKLM\SOFTWARE\Kyocera Mita HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\mozilla.org HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\NuGet HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\PreEmptive Solutions HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\SafetyNut =>PUP.Optional.MoviesToolbar HKLM\SOFTWARE\Skype HKLM\SOFTWARE\SoftwareUpdater =>PUP.Optional.SoftwareUpdater HKLM\SOFTWARE\TinaSoft HKLM\SOFTWARE\Vittalia =>PUP.Optional.Vittalia HKLM\SOFTWARE\WinRAR HKLM\SOFTWARE\WOW6432Node HKLM\SOFTWARE\zbshareware HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\baidu HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\drpsu HKCU\SOFTWARE\Google HKCU\SOFTWARE\handyCafe HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\PowerPack HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\Skype HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Xilisoft HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Adobe HKCU\SOFTWARE\AppDataLow\Software\JavaSoft HKCU\SOFTWARE\AppDataLow\Software\Macromedia ---\\ Contenu des dossiers Programmes (138) - 67s O43 - CFD: 05/08/2014 - [] D -- C:\Program Files\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 09/08/2015 - [] D -- C:\Program Files\Application Verifier O43 - CFD: 15/05/2015 - [] D -- C:\Program Files\baidu O43 - CFD: 05/02/2009 - [] D -- C:\Program Files\Canon {5144D731BBB6072C54AB3D53C952930D} O43 - CFD: 18/09/2015 - [] D -- C:\Program Files\Common Files O43 - CFD: 09/05/2014 - [] D -- C:\Program Files\DVD Maker O43 - CFD: 27/04/2014 - [] D -- C:\Program Files\Faronics O43 - CFD: 26/04/2014 - [0] SHD -- C:\Program Files\Fichiers communs O43 - CFD: 15/05/2015 - [] RASHD -- C:\Program Files\Golden Filter Premium O43 - CFD: 30/01/2015 - [] D -- C:\Program Files\handyCafe O43 - CFD: 09/08/2015 - [] D -- C:\Program Files\HTML Help Workshop =>.Microsoft Corporation® O43 - CFD: 09/08/2015 - [] D -- C:\Program Files\IIS {3300000008E279FA0D255845EA000000000008} O43 - CFD: 09/08/2015 - [] D -- C:\Program Files\IIS Express =>.Microsoft Corporation® O43 - CFD: 05/02/2009 - [] D -- C:\Program Files\Internet Download Manager =>.Tonec Inc.® O43 - CFD: 09/05/2014 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 09/08/2015 - [] D -- C:\Program Files\Microsoft =>.Microsoft Corporation® O43 - CFD: 09/08/2015 - [] D -- C:\Program Files\Microsoft ASP.NET =>.Microsoft Corporation® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Microsoft Games O43 - CFD: 09/08/2015 - [] D -- C:\Program Files\Microsoft Help Viewer =>.Microsoft Corporation® O43 - CFD: 26/04/2014 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 09/08/2015 - [] D -- C:\Program Files\Microsoft SDKs =>.Microsoft Corporation® O43 - CFD: 26/04/2014 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 09/08/2015 - [] D -- C:\Program Files\Microsoft SQL Server =>.Microsoft Corporation® O43 - CFD: 09/08/2015 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition O43 - CFD: 26/04/2014 - [] D -- C:\Program Files\Microsoft Visual Studio O43 - CFD: 09/08/2015 - [] D -- C:\Program Files\Microsoft Visual Studio 11.0 =>.Microsoft Corporation® O43 - CFD: 26/04/2014 - [] D -- C:\Program Files\Microsoft Visual Studio 8 O43 - CFD: 09/08/2015 - [] D -- C:\Program Files\Microsoft WCF Data Services O43 - CFD: 09/08/2015 - [] D -- C:\Program Files\Microsoft Web Tools =>.Microsoft Corporation® O43 - CFD: 26/04/2014 - [] D -- C:\Program Files\Microsoft Works O43 - CFD: 26/04/2014 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 18/09/2015 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla Corporation® O43 - CFD: 18/09/2015 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla Corporation® O43 - CFD: 09/08/2015 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation® O43 - CFD: 09/08/2015 - [] D -- C:\Program Files\NuGet O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 23/12/2015 - [] RD -- C:\Program Files\Skype =>.Skype Software Sarl® O43 - CFD: 23/12/2015 - [] D -- C:\Program Files\SoftwareUpdater O43 - CFD: 26/04/2014 - [] D -- C:\Program Files\Tencent =>PUP.Optional.TencentAddressBar =>PUP.Optional.TencentAddressBar O43 - CFD: 26/04/2014 - [] D -- C:\Program Files\TinaSoft O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 07/11/2014 - [] D -- C:\Program Files\USB Disk Security {00CCE1EA3E08123F0BC1B492F00E40C9BA} O43 - CFD: 09/05/2014 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 09/08/2015 - [] D -- C:\Program Files\Windows Kits =>.Microsoft Corporation® O43 - CFD: 09/05/2014 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 09/05/2014 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 26/04/2014 - [] D -- C:\Program Files\Windows NT O43 - CFD: 09/05/2014 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 20/11/2010 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 09/05/2014 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 26/04/2014 - [] D -- C:\Program Files\WinRAR O43 - CFD: 26/04/2014 - [] D -- C:\Program Files\Xilisoft O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 15/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Baidu Browser O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 30/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\handyCafe O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 26/04/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 26/04/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 09/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 4 SDK - Français O43 - CFD: 09/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 5 SDK - Français O43 - CFD: 09/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2012 O43 - CFD: 05/02/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Programme de désinstallation de l'imprimante Canon O43 - CFD: 18/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 05/02/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 26/08/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\USB Disk Security O43 - CFD: 09/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits O43 - CFD: 26/04/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 05/08/2014 - [] D -- C:\ProgramData\Adobe O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 15/05/2015 - [] D -- C:\ProgramData\Baidu O43 - CFD: 26/04/2014 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 26/04/2014 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 30/01/2015 - [] D -- C:\ProgramData\handyCafe O43 - CFD: 02/08/2014 - [0] D -- C:\ProgramData\IDM O43 - CFD: 26/04/2014 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 09/08/2015 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 26/04/2014 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 26/04/2014 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 26/04/2014 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 09/08/2015 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 09/08/2015 - [] D -- C:\ProgramData\PreEmptive Solutions O43 - CFD: 09/08/2015 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 18/09/2015 - [] D -- C:\ProgramData\Skype O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 26/04/2014 - [] D -- C:\ProgramData\Sun O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 09/08/2015 - [] D -- C:\ProgramData\Windows App Certification Kit O43 - CFD: 26/04/2014 - [] D -- C:\ProgramData\Zbshareware Lab O43 - CFD: 05/08/2014 - [] D -- C:\Program Files\Common Files\Adobe O43 - CFD: 26/04/2014 - [] D -- C:\Program Files\Common Files\DESIGNER O43 - CFD: 09/08/2015 - [] D -- C:\Program Files\Common Files\Merge Modules O43 - CFD: 09/08/2015 - [] D -- C:\Program Files\Common Files\Microsoft O43 - CFD: 09/08/2015 - [] D -- C:\Program Files\Common Files\microsoft shared O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\Services O43 - CFD: 18/09/2015 - [] D -- C:\Program Files\Common Files\Skype O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 09/05/2014 - [] D -- C:\Program Files\Common Files\System O43 - CFD: 26/04/2014 - [] D -- C:\Users\poste05\AppData\Roaming\Adobe O43 - CFD: 15/05/2015 - [] D -- C:\Users\poste05\AppData\Roaming\Baidu O43 - CFD: 04/08/2014 - [] D -- C:\Users\poste05\AppData\Roaming\DMCache O43 - CFD: 26/04/2014 - [] D -- C:\Users\poste05\AppData\Roaming\Identities O43 - CFD: 04/08/2014 - [] D -- C:\Users\poste05\AppData\Roaming\IDM O43 - CFD: 26/04/2014 - [] D -- C:\Users\poste05\AppData\Roaming\Macromedia O43 - CFD: 09/08/2015 - [] SD -- C:\Users\poste05\AppData\Roaming\Microsoft O43 - CFD: 26/04/2014 - [] D -- C:\Users\poste05\AppData\Roaming\Mozilla O43 - CFD: 18/09/2015 - [] D -- C:\Users\poste05\AppData\Roaming\Skype O43 - CFD: 22/08/2014 - [] D -- C:\Users\poste05\AppData\Roaming\uTorrent O43 - CFD: 26/04/2014 - [] D -- C:\Users\poste05\AppData\Roaming\WinRAR O43 - CFD: 26/04/2014 - [] D -- C:\Users\poste05\AppData\Roaming\Xilisoft Corporation O43 - CFD: 26/04/2014 - [] D -- C:\Users\poste05\AppData\Roaming\Zbshareware Lab O43 - CFD: 23/12/2015 - [] D -- C:\Users\poste05\AppData\Roaming\ZHP O43 - CFD: 15/05/2015 - [] D -- C:\Users\poste05\AppData\Local\Adobe O43 - CFD: 26/04/2014 - [0] SHD -- C:\Users\poste05\AppData\Local\Application Data O43 - CFD: 26/04/2014 - [] D -- C:\Users\poste05\AppData\Local\Google O43 - CFD: 26/04/2014 - [0] SHD -- C:\Users\poste05\AppData\Local\Historique O43 - CFD: 27/04/2014 - [] D -- C:\Users\poste05\AppData\Local\Macromedia O43 - CFD: 09/08/2015 - [] D -- C:\Users\poste05\AppData\Local\Microsoft O43 - CFD: 26/04/2014 - [0] D -- C:\Users\poste05\AppData\Local\Microsoft Help O43 - CFD: 26/04/2014 - [] D -- C:\Users\poste05\AppData\Local\Mozilla O43 - CFD: 26/04/2014 - [] D -- C:\Users\poste05\AppData\Local\Programs O43 - CFD: 09/05/2014 - [] D -- C:\Users\poste05\AppData\Local\Skype O43 - CFD: 26/08/2014 - [] D -- C:\Users\poste05\AppData\Local\Spark O43 - CFD: 23/12/2015 - [] D -- C:\Users\poste05\AppData\Local\Temp O43 - CFD: 26/04/2014 - [0] SHD -- C:\Users\poste05\AppData\Local\Temporary Internet Files O43 - CFD: 26/04/2014 - [0] D -- C:\Users\poste05\AppData\Local\VirtualStore O43 - CFD: 14/07/2009 - [] RD -- C:\Users\poste05\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 26/04/2014 - [] RD -- C:\Users\poste05\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 26/04/2014 - [] D -- C:\Users\poste05\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 14/07/2009 - [] RD -- C:\Users\poste05\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 05/02/2009 - [] RD -- C:\Users\poste05\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 26/04/2014 - [] D -- C:\Users\poste05\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tencent =>PUP.Optional.TencentAddressBar O43 - CFD: 26/04/2014 - [] D -- C:\Users\poste05\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 26/04/2014 - [] D -- C:\Users\poste05\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Xilisoft ---\\ ShellIconOverlayIdentifiers (SIOI) (7) - 0s O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll © O106 - SIOI: Groove Explorer Icon Overlay 1 (GFS Unread Stub) [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] - {99FD978C-D287-4F50-827F-B2C658EDA8E7}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2 (GFS Stub) [Groove Explorer Icon Overlay 2 (GFS Stub)] - {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2.5 (GFS Unread Folder) [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] - {920E6DB1-9907-4370-B3A0-BAFC03D81399}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 3 (GFS Folder) [Groove Explorer Icon Overlay 3 (GFS Folder)] - {16F3DD56-1AF5-4347-846D-7C10C4192619}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 4 (GFS Unread Mark) [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] - {2916C86E-86A6-43FE-8112-43ABE6BF8DCC}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll © ---\\ Liste des pilotes du système (61) - 4s O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400] =>.Microsoft Windows® O58 - SDL:2010/11/20 22:29:03 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [80256] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312] =>.Microsoft Windows® O58 - SDL:2010/11/20 22:29:03 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [22400] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:09:17 A . (.ATI Technologies Inc. - Pilote en mode noyau ATI Radeon.) -- C:\Windows\System32\drivers\atikmdag.sys [4194816] © O58 - SDL:2009/07/13 23:02:49 A . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gi.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888] © O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] © O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] © O58 - SDL:2009/07/14 01:57:25 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [272128] © O58 - SDL:2009/07/13 23:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] © O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] © O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] © O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080] © O58 - SDL:2009/07/14 02:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952] =>.Microsoft Windows® O58 - SDL:2012/09/04 11:37:24 A . (.Faronics Corporation - Deep Freeze driver.) -- C:\Windows\System32\drivers\DeepFrz.sys [151640] {364AA3D26F9DAE3BE76E8078F83DFB5A} O58 - SDL:2012/09/04 11:37:36 A . (.Faronics Corporation - Deep Freeze driver.) -- C:\Windows\System32\drivers\DfDiskLow.sys [29912] {364AA3D26F9DAE3BE76E8078F83DFB5A} O58 - SDL:2009/07/14 02:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160] © O58 - SDL:2009/07/13 23:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624] © O58 - SDL:2009/07/14 02:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152] =>.Microsoft Windows® O58 - SDL:2010/11/20 22:29:03 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332160] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624] =>.Microsoft Windows® O58 - SDL:2010/11/20 22:29:03 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117120] =>.Microsoft Windows® O58 - SDL:2010/11/20 22:29:03 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [143744] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:02:52 A . (.Realtek Corporation - Realtek 8101E/8168/8169 NDIS 6.20 32-bit Dr.) -- C:\Windows\System32\drivers\Rt86win7.sys [139776] © O58 - SDL:2009/07/13 21:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] © O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904] =>.Microsoft Windows® O58 - SDL:2009/07/13 22:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:2009/07/13 22:40:44 A . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:2009/07/13 22:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:2009/07/13 22:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:2009/07/13 22:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:2009/07/13 22:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:2009/07/13 22:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:2009/07/13 22:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:2009/07/13 22:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:2009/07/13 22:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:2009/07/13 22:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:2009/07/13 22:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:2009/07/13 22:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] ---\\ Associations Shell Spawning (11) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe © O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe © O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Spark33.8.9999.10081\spark.exe {5FAEE9E83F32948F3B2040AC6DF0145C} O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe © O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe © O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ Menu de démarrage Internet (20) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Spark33.8.9999.10081\Spark.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\poste05\AppData\Local\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (...) -- C:\Program Files\baidu\Spark\Spark.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Spark33.8.9999.10081\spark.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Users\poste05\AppData\Local\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: <>[HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files\baidu\Spark\Spark.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Spark33.8.9999.10081\spark.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Users\poste05\AppData\Local\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: <>[HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files\baidu\Spark\Spark.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Spark33.8.9999.10081\spark.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Users\poste05\AppData\Local\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: <>[HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files\baidu\Spark\Spark.exe (.not file.) ---\\ Recherche d'infection sur les navigateurs (1) - 4s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ ---\\ Enumère les services démarrés par Svchost (32) - 0s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464] © O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] © O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] © O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168960] © O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [593408] © O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [674304] © O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [473600] © O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] © O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [286208] © O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264] © O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [49664] © O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [300544] © O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242176] © O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [521216] © O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1914368] © O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [585728] © O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192] © O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [499712] © O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [21504] © O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104] © O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688] © O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [49664] © O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440] © O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304] © O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164352] © O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [750592] © O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [71168] © O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [113664] © O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] © O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102400] © O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376] © O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800] © ---\\ Liste des exceptions du parefeu Windows (20) - 2s O87 - FAEL: "TCP Query User{DD92CF7C-569B-4393-A243-78BB70AB0003}C:\program files\tinasoft\easy cafe client\client.exe" [In-None-P6-TRUE] .(...) -- C:\program files\tinasoft\easy cafe client\client.exe O87 - FAEL: "UDP Query User{2D2B0532-8487-48DF-AC19-D8E85090C1E5}C:\program files\tinasoft\easy cafe client\client.exe" [In-None-P17-TRUE] .(...) -- C:\program files\tinasoft\easy cafe client\client.exe O87 - FAEL: "{50CA5253-D88D-45B1-A050-EDCAA4211F77}" [In-None-P6-TRUE] .(.Faronics Corporation - Deep Freeze service.) -- C:\Program Files\Faronics\Deep Freeze\Install C-0\DFServ.exe O87 - FAEL: "{8CBDD50B-6BA1-44E8-8A0B-51916C4206B6}" [Out-None-P6-TRUE] .(.Faronics Corporation - Deep Freeze service.) -- C:\Program Files\Faronics\Deep Freeze\Install C-0\DFServ.exe O87 - FAEL: "{0332EC45-D5A9-4E56-BA44-89D8D84B94FB}" [In-None-P17-TRUE] .(.Faronics Corporation - Deep Freeze service.) -- C:\Program Files\Faronics\Deep Freeze\Install C-0\DFServ.exe O87 - FAEL: "{7937AC31-B13B-4837-945A-300823380F33}" [Out-None-P17-TRUE] .(.Faronics Corporation - Deep Freeze service.) -- C:\Program Files\Faronics\Deep Freeze\Install C-0\DFServ.exe O87 - FAEL: "TCP Query User{FB732445-EEFF-459E-832F-F5DE609C3EA7}C:\program files\tinasoft\easy cafe client\client.exe" [In-None-P6-TRUE] .(...) -- C:\program files\tinasoft\easy cafe client\client.exe O87 - FAEL: "UDP Query User{84E1AC2F-05CC-406F-8E73-93088AE764F0}C:\program files\tinasoft\easy cafe client\client.exe" [In-None-P17-TRUE] .(...) -- C:\program files\tinasoft\easy cafe client\client.exe O87 - FAEL: "{DE23ECE3-7190-4940-9C7C-DB2BDAD7D389}" [In-None-P6-TRUE] .(...) -- C:\Program Files\baidu\Spark\Spark.exe (.not file.) O87 - FAEL: "{AB6B129A-EF26-487C-91FA-A79E81B305FD}" [In-None-P17-TRUE] .(...) -- C:\Program Files\baidu\Spark\Spark.exe (.not file.) O87 - FAEL: "{A441FB84-AC9B-467E-91E9-49D493BB7430}" [In-None-P6-TRUE] .(...) -- C:\Program Files\baidu\Spark\baidu_dumper.exe (.not file.) O87 - FAEL: "{D7757115-EC7E-4249-A73A-8248564B62CE}" [In-None-P17-TRUE] .(...) -- C:\Program Files\baidu\Spark\baidu_dumper.exe (.not file.) O87 - FAEL: "{589D696A-25F6-4A62-8053-456C04F16A8C}" [In-None-P6-TRUE] .(.Ates Yazilim, Bilgisayar & Internet Teknolojileri Tic - HandyCafe Client.) -- C:\Program Files\handyCafe\Client\hndclient.exe O87 - FAEL: "{F651C1F9-99AA-458C-80DC-A1FFBCC1D580}" [In-None-P17-TRUE] .(.Ates Yazilim, Bilgisayar & Internet Teknolojileri Tic - HandyCafe Client.) -- C:\Program Files\handyCafe\Client\hndclient.exe O87 - FAEL: "{B46FF0BE-EF68-4834-9F64-F469BED825CE}" [In-None-P6-TRUE] .(.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Spark33.8.9999.10081\Spark.exe {5FAEE9E83F32948F3B2040AC6DF0145C} O87 - FAEL: "{83EB0CCF-1439-4D79-AC49-321DE0C072DA}" [In-None-P17-TRUE] .(.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Spark33.8.9999.10081\Spark.exe {5FAEE9E83F32948F3B2040AC6DF0145C} O87 - FAEL: "{ADBCB692-F4BA-4DB0-9AE4-4EBF10BF2FE8}" [In-None-P6-TRUE] .(...) -- C:\Program Files\baidu\Spark33.8.9999.10081\bdtray.exe (.not file.) O87 - FAEL: "{8D5C83D8-38DE-4E45-8587-A8EE5A1DA65D}" [In-None-P17-TRUE] .(...) -- C:\Program Files\baidu\Spark33.8.9999.10081\bdtray.exe (.not file.) O87 - FAEL: "{2FC46870-4DA4-4091-9891-F1A68FB1B959}" [In-None-P6-TRUE] .(.Ates Yazilim, Bilgisayar & Internet Teknolojileri Tic - HandyCafe Client.) -- C:\Program Files\handyCafe\Client\hndclient.exe O87 - FAEL: "{93A7BBDB-E5CD-4844-9320-F70A564DE842}" [In-None-P17-TRUE] .(.Ates Yazilim, Bilgisayar & Internet Teknolojileri Tic - HandyCafe Client.) -- C:\Program Files\handyCafe\Client\hndclient.exe ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (8) - 10s SS - Demand [23/12/2015] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [04/09/2012] [ 1092096] DFServ (DFServ) . (.Faronics Corporation.) - C:\Program Files\Faronics\Deep Freeze\Install C-0\DFServ.exe SS - Demand [18/09/2015] [ 149160] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SS - Auto [09/07/2015] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl® SR - Auto [23/12/2015] [ 97080] Baidu Spark Service (SparkSvc) . (.Baidu Inc..) - C:\Program Files\baidu\Spark33.8.9999.10081\sparkservice.exe {5FAEE9E83F32948F3B2040AC6DF0145C} SS - Demand [25/08/2014] [ 1350848] Baidu Spark Updater (SparkUpdater) . (.Baidu.com, Inc..) - C:\Program Files\baidu\SparkUpdate\Sparkupdate.exe SR - Auto [29/09/2014] [ 29696] Software Updater (SrvUpdater) . (.Copyright © 2012.) - C:\Program Files\SoftwareUpdater\UpdaterService.exe ---\\ Scan Additionnel (7) - 0s C:\Users\poste05\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkemddiljapcmhicklfpcbpfffahfbja =>Hijacker.Browser HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SoftwareUpdater =>PUP.Optional.SoftwareUpdater HKLM\SOFTWARE\SafetyNut =>PUP.Optional.MoviesToolbar HKLM\SOFTWARE\SoftwareUpdater =>PUP.Optional.SoftwareUpdater HKLM\SOFTWARE\Vittalia =>PUP.Optional.Vittalia C:\Program Files\Tencent =>PUP.Optional.TencentAddressBar C:\Users\poste05\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tencent =>PUP.Optional.TencentAddressBar ---\\ Récapitulatif des éléments trouvés sur votre station (5) - 0s http://www.nicolascoolman.fr/?p=4664 =>Hijacker.Browser http://www.nicolascoolman.fr/?p=368 =>PUP.Optional.TencentAddressBar http://www.nicolascoolman.fr/?p=641 =>PUP.Optional.SoftwareUpdater http://www.nicolascoolman.fr/?p=657 =>PUP.Optional.MoviesToolbar http://www.nicolascoolman.fr/?p=1308 =>PUP.Optional.Vittalia ~ End of the scan, 30526 items in 00h02mn42s (627)(0)