~ ZHPDiag v2016.3.8.67 Par Nicolas Coolman (2016/03/08) ~ Démarré par Nicolas (Administrator) (2016/03/10 18:25:35) ~ Site: http://www.nicolascoolman.com ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\Nicolas\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Nicolas\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows VISTA, 32-bit Service Pack 2 (Build 6002) ---\\ Navigateurs Internet (2) - 0s GCIE: Google Chrome v48.0.2564.116 MSIE: Internet Explorer v9.0.8112.16421 ---\\ Informations sur les produits Windows (9) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows Operating System - Vista, OEM_SLP channel System Locked Preinstallation (OEM_SLP) : OK Windows ID Activation : OK ~ Windows Partial Key : WRMG7 Windows License : OK Windows Automatic Updates : OK Windows Activation Technologies : KO ---\\ Logiciels de protection (2) - 3s Avast Free Antivirus v11.1.2253 Malwarebytes Anti-Malware version 2.2.0.1024 ---\\ Logiciels d'optimisation (1) - 3s CCleaner v4.10 ---\\ Surveillance de Logiciels (2) - 3s Adobe Flash Player 10 ActiveX Adobe Reader 9 - Français ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 6 Model 15 Stepping 13, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 2024.728 MB (50% free) System Restore: Activé (Enable) System drive C: has 52 GB () free of 142 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: PC-DE-NICOLAS ~ User Name: Nicolas ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 52 GB free of 142 GB (System) ~ Drive E: has 0 GB free of 0 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (24) - 1s [MD5.D07D4C3038F3578FFCE1C0237F2A1253] - 11/04/2009 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2926592] =>.Microsoft Corporation [MD5.4B555106290BD117334E9A08761C035A] - 02/11/2006 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] =>.Microsoft Corporation [MD5.101BA3EA053480BB5D957EF37C06B5ED] - 21/01/2008 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [96768] =>.Microsoft Corporation [MD5.3252D4791357FEE6C2BAF0619C041317] - 19/09/2014 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [1129472] =>.Microsoft Corporation [MD5.898E7C06A350D4A1A64A9EA264D55452] - 11/04/2009 - (.Microsoft Corporation - Application d'ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [314368] =>.Microsoft Corporation [MD5.85E861D0B88DB2B54ACB0839654C09F7] - 02/03/2011 - (.Microsoft Corporation - DNS DLL de l'API Client.) -- C:\Windows\System32\dnsapi.dll [168448] =>.Microsoft Corporation [MD5.95F5FF73B076576C41740F1A842B9B57] - 12/01/2010 - (.Microsoft Corporation - DLL client de l'API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation [MD5.F5272A105F59A7B3B345D9D6D87DA7AD] - 30/05/2014 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [273408] =>.Microsoft Corporation [MD5.1F05B78AB91C9075565A9D8A4B880BC4] - 11/04/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [19944] =>.Microsoft Windows® [MD5.7ADD03E75BEB9E6DD102C3081D29840A] - 21/01/2008 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70144] =>.Microsoft Corporation [MD5.6B4BFFB9BECD728097024276430DB314] - 11/04/2009 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [67072] =>.Microsoft Corporation [MD5.622C41A07CA7E6DD91770F50D532CB6C] - 14/04/2011 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [75264] =>.Microsoft Corporation [MD5.062452B7FFD68C8C042A6261FE8DFF4A] - 11/04/2009 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [561152] =>.Microsoft Corporation [MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - 21/01/2008 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [54784] =>.Microsoft Corporation [MD5.8793643A67B42CEC66490B2A0CF92D68] - 21/01/2008 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [100864] =>.Microsoft Corporation [MD5.1E94971C4B446AB2290DEB71D01CF0C2] - 29/04/2011 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [106496] =>.Microsoft Corporation [MD5.ECD64230A59CBD93C85F1CD1CAB9F3F6] - 11/04/2009 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [185856] =>.Microsoft Corporation [MD5.2C1121F2B87E9A6B12485DF53CD848C7] - 03/03/2013 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1082232] =>.Microsoft Windows® [MD5.0FA9B5055484649D63C303FE404E5F4D] - 02/11/2006 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [79360] =>.Microsoft Corporation [MD5.A214ADBAF4CB47DD2728859EF31F26B0] - 21/01/2008 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [76288] =>.Microsoft Corporation [MD5.943B18305EAE3935598A9B4A3D560B4C] - 11/04/2009 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [248320] =>.Microsoft Corporation [MD5.7B75299A4D201D6A6533603D6914AB04] - 11/04/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [66560] =>.Microsoft Corporation [MD5.76B06EB8A01FC8624D699E7045303E54] - 11/04/2009 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [72192] =>.Microsoft Corporation [MD5.786DB5771F05EF300390399F626BF30A] - 21/08/2012 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [224640] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (10) - 1s O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe =>.AVAST Software a.s.® O23 - Service: EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) - C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE =>.Seiko Epson Corporation O23 - Service: Empowering Technology Service (ETService) . (.Copyright © 2007 - Acer Empowering Technology Framework Servic.) - C:\Program Files\EMACHINES\eMachines Recovery Management\Service\ETService.exe O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: IviRegMgr (IviRegMgr) . (.InterVideo - RegMgr Module.) - C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe =>.Intervideo, Inc.® O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company - .) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe =>.Hewlett-Packard Company O23 - Service: (MBAMService) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) . (.NewTech InfoSystems, Inc. - NTI Backup Now 5 BackupSvc Application.) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe =>.NewTech Infosystems, Inc® O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) . (...) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl® ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (15) - 65s SR - Auto [09/03/2016] [ 237096] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe =>.AVAST Software a.s.® SS - Disabl [03/03/2008] [ 16384] NTI Backup Now 5 Agent Service (BUNAgentSvc) . (.NewTech Infosystems, Inc..) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe =>.NewTech InfoSystems, Inc. SR - Auto [11/01/2007] [ 113664] EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) . (.SEIKO EPSON CORPORATION.) - C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE =>.Seiko Epson Corporation SR - Auto [11/06/2008] [ 24576] Empowering Technology Service (ETService) . (.Copyright © 2007.) - C:\Program Files\EMACHINES\eMachines Recovery Management\Service\ETService.exe SS - Demand [04/09/2010] [ 30192] Google Desktop Manager 5.9.1005.12335 (GoogleDesktopManager-051210-111108) . (.Google.) - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe =>.Google Inc® SS - Auto [26/02/2016] [ 154440] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [26/02/2016] [ 154440] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [22/08/2012] [ 194032] Google Software Updater (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe =>.Google Inc® SR - Auto [04/01/2007] [ 112152] IviRegMgr (IviRegMgr) . (.InterVideo.) - C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe =>.Intervideo, Inc.® SR - Auto [17/01/2007] [ 61440] LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe =>.Hewlett-Packard Company SS - Auto [05/10/2015] [ 1135416] (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® SR - Auto [06/04/2008] [ 50424] NTI Backup Now 5 Backup Service (NTIBackupSvc) . (.NewTech InfoSystems, Inc..) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe =>.NewTech Infosystems, Inc® SR - Auto [04/04/2008] [ 131072] NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) . (...) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe SS - Auto [23/10/2013] [ 172192] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl® ---\\ Processus lancés (19) - 2s [MD5.501E11AE85EE28D305D228F5931AC76C] - (.AVAST Software - avast! Service.) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [237096] [PID.1816] =>.AVAST Software a.s.® [MD5.69B16C7B7746BA5C642FC05B3561FC73] - (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe [34672] [PID.784] =>.Adobe Systems, Incorporated® [MD5.B9AA850CDA55097EB13E03698C8F5828] - (.Intel Corporation - igfxsrvc Module.) -- C:\Windows\System32\igfxsrvc.exe [266776] [PID.2300] =>.Intel Corporation® [MD5.8FE6AB59CAB8F2C038FEA9522A5EEBA7] - (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE [113664] [PID.2632] =>.Seiko Epson Corporation [MD5.4D06D9A26227AC485305133916888DF1] - (.Copyright © 2007 - Acer Empowering Technology Framework Servic.) -- C:\Program Files\EMACHINES\eMachines Recovery Management\Service\ETService.exe [24576] [PID.2700] [MD5.213822072085B5BBAD9AF30AB577D817] - (.InterVideo - RegMgr Module.) -- C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe [112152] [PID.2844] =>.Intervideo, Inc.® [MD5.793FF718477345CD5D232C50BED1E452] - (.Hewlett-Packard Company - .) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe [61440] [PID.2944] =>.Hewlett-Packard Company [MD5.CB76F68BA0D57C5D25B538981B1C611C] - (.NewTech InfoSystems, Inc. - NTI Backup Now 5 BackupSvc Application.) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [50424] [PID.3180] =>.NewTech Infosystems, Inc® [MD5.DF1C10A75DF7E50195FC417F88A33227] - (...) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [131072] [PID.3304] [MD5.00DAA6154E1A232751D03D7A2D7760BF] - (.Dritek System Inc. - Acer Launch Manager Keyboard Application.) -- C:\Program Files\Launch Manager\LManager.exe [768520] [PID.3144] =>.Dritek System Inc.® [MD5.5E6DCE5FFCE1F21EF5BD690CB8CFD57B] - (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe [6244896] [PID.3140] =>.Realtek Semiconductor Corp® [MD5.1029B84ECBE4B95ACB8491A3FE63D70F] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [136216] [PID.2740] =>.Intel Corporation® [MD5.3CD5BBDA19A1AB4EBA359E0A14FDF0F0] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [171032] [PID.3324] =>.Intel Corporation® [MD5.3142195521FEE436088EE8A5748DE1B1] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [170520] [PID.2908] =>.Intel Corporation® [MD5.0084A1D95AE094B4910B63A8757E71E9] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\avastui.exe [7137664] [PID.3256] =>.AVAST Software a.s.® [MD5.58920E6A409046BA06548D9D139CE0F0] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe [20584608] [PID.560] =>.Skype Software Sarl® [MD5.F2F3617C63B87AA2DE139DC9E37420B5] - (.Intel Corporation - igfxext Module.) -- C:\Windows\System32\igfxext.exe [179224] [PID.2068] =>.Intel Corporation® [MD5.B9AA850CDA55097EB13E03698C8F5828] - (.Intel Corporation - igfxsrvc Module.) -- C:\Windows\System32\igfxsrvc.exe [266776] [PID.2116] =>.Intel Corporation® [MD5.A5A9C15C851F41E985E7C67FE7938E44] - (.Nicolas Coolman - ZHPDiag.) -- c:\Users\Nicolas\Downloads\ZHPDiag3.exe [2148352] [PID.4232] =>.Nicolas Coolman ---\\ Google Chrome, Démarrage,Recherche,Extensions (15) - 6s G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.fr G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients2.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://consent.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.googleapis.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.com G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [eofcbnmajmjmplflapaojjnihcjkigck] Avast SafePrice G2 - GCE: Preference [User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (1) - 1s P2 - FPN: [HKLM] [@divx.com/DivX Browser Plugin,version=1.0.0] - (.DivX,Inc..) -- C:\Program Files\DivX\DivX Web Player\npdivx32.dll ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (14) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2 ---\\ Internet Explorer,Proxy Management (5) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl" ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (20) ---\\ Browser Helper Object de navigateur (BHO) (3) - 1s O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll =>.Adobe Systems, Incorporated® O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} . (.Skype Technologies S.A. - Skype add-on for IE.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Technologies SA® O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll =>.AVAST Software a.s.® ---\\ Internet Explorer, Barre d'outil (1) - 0s O3 - Toolbar: 0x00000000000000000000000000000000 - [HKCU]{00000000-0000-0000-0000-000000000000} . (...) -- (.not file.) ---\\ Applications lancées au démarrage du système (23) - 8s O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe =>.Adobe Systems, Incorporated® O4 - HKLM\..\Run: [LManager] . (.Dritek System Inc. - Acer Launch Manager Keyboard Application.) -- C:\Program Files\Launch Manager\LManager.exe =>.Dritek System Inc.® O4 - HKLM\..\Run: [eRecoveryService] (Orphean) O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe =>.Realtek Semiconductor Corp® O4 - HKLM\..\Run: [Skytel] . (.Realtek Semiconductor Corp. - Realtek Voice Manager.) -- C:\Windows\Skytel.exe =>.Realtek Semiconductor Corp. O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe =>.Intel Corporation® O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation® O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation® O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\avastui.exe =>.AVAST Software a.s.® O4 - HKCU\..\Run: [EPSON Stylus D120 Series] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\System32\spool\drivers\w32x86\3\E_FATICCE.EXE =>.Seiko Epson Corporation O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - HKCU\..\Run: [Google+ Auto Backup] . (.Google Inc. - AutoBackup.) -- C:\Program Files\Google\Google+ Auto Backup\Google+ Auto Backup.exe =>.Google Inc® O4 - HKUS\.DEFAULT\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Windows\System32\config\systemprofile\AppData\Local\Google\Update\GoogleUpdate.exe =>.Google Inc® O4 - HKUS\.DEFAULT\..\Run: [Google+ Auto Backup] . (.Google Inc. - AutoBackup.) -- C:\Windows\System32\config\systemprofile\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe =>.Google Inc® O4 - HKUS\S-1-5-18\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Windows\System32\config\systemprofile\AppData\Local\Google\Update\GoogleUpdate.exe =>.Google Inc® O4 - HKUS\S-1-5-18\..\Run: [Google+ Auto Backup] . (.Google Inc. - AutoBackup.) -- C:\Windows\System32\config\systemprofile\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe =>.Google Inc® O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- rundll32.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- rundll32.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-1076647096-235426978-2366649360-1000\..\Run: [EPSON Stylus D120 Series] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\System32\spool\drivers\w32x86\3\E_FATICCE.EXE =>.Seiko Epson Corporation O4 - HKUS\S-1-5-21-1076647096-235426978-2366649360-1000\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - HKUS\S-1-5-21-1076647096-235426978-2366649360-1000\..\Run: [Google+ Auto Backup] . (.Google Inc. - AutoBackup.) -- C:\Program Files\Google\Google+ Auto Backup\Google+ Auto Backup.exe =>.Google Inc® ---\\ Raccourcis Global Startup (39) - 19s O4 - GS\Desktop [Administrateur]: Documents - Raccourci.lnk . (...) C:\Users\Nicolas\Documents O4 - GS\Desktop [Administrateur]: Funbridge.lnk . (.Goto.Games - Funbridge.) C:\Program Files\Goto.Games\Funbridge\funbridge.exe =>.Goto.Games O4 - GS\Desktop [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Desktop [Administrateur]: GotoBridge 2005.lnk . (...) C:\Program Files\Goto.Games\Bridge2005\gb2005.exe O4 - GS\Desktop [Administrateur]: Images - Raccourci.lnk . (...) C:\Users\Nicolas\Pictures O4 - GS\Desktop [Administrateur]: Lecteur CD - Raccourci.lnk . (...) E:\ O4 - GS\Desktop [Administrateur]: Microsoft Word.lnk . (...) C:\Windows\Installer\{0001040C-78E1-11D2-B60F-006097C998E7}\wordicon.exe O4 - GS\Desktop [Administrateur]: Musique - Raccourci.lnk . (...) C:\Users\Nicolas\Music O4 - GS\Desktop [Administrateur]: Searches - Raccourci.lnk . (...) C:\Users\Nicolas\Pictures\2009\6. été 09 nouchette\Searches O4 - GS\Desktop [Administrateur]: Vidéos - Raccourci.lnk . (...) C:\Users\Nicolas\Videos O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Nicolas\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: NICOLAS (F) - Raccourci.lnk . (...) F:\ O4 - GS\Quicklaunch [Administrateur]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files\Google\Picasa3\Picasa3.exe =>.Google Inc® O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\Desktop [Nicolas]: Documents - Raccourci.lnk . (...) C:\Users\Nicolas\Documents O4 - GS\Desktop [Nicolas]: Funbridge.lnk . (.Goto.Games - Funbridge.) C:\Program Files\Goto.Games\Funbridge\funbridge.exe =>.Goto.Games O4 - GS\Desktop [Nicolas]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Desktop [Nicolas]: GotoBridge 2005.lnk . (...) C:\Program Files\Goto.Games\Bridge2005\gb2005.exe O4 - GS\Desktop [Nicolas]: Images - Raccourci.lnk . (...) C:\Users\Nicolas\Pictures O4 - GS\Desktop [Nicolas]: Lecteur CD - Raccourci.lnk . (...) E:\ O4 - GS\Desktop [Nicolas]: Microsoft Word.lnk . (...) C:\Windows\Installer\{0001040C-78E1-11D2-B60F-006097C998E7}\wordicon.exe O4 - GS\Desktop [Nicolas]: Musique - Raccourci.lnk . (...) C:\Users\Nicolas\Music O4 - GS\Desktop [Nicolas]: Searches - Raccourci.lnk . (...) C:\Users\Nicolas\Pictures\2009\6. été 09 nouchette\Searches O4 - GS\Desktop [Nicolas]: Vidéos - Raccourci.lnk . (...) C:\Users\Nicolas\Videos O4 - GS\Desktop [Nicolas]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Nicolas\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Nicolas]: NICOLAS (F) - Raccourci.lnk . (...) F:\ O4 - GS\Quicklaunch [Nicolas]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files\Google\Picasa3\Picasa3.exe =>.Google Inc® O4 - GS\sendTo [Nicolas]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\CommonDesktop [Public]: Atelier Photo FNAC.lnk . (...) C:\Program Files\FNAC\Atelier Photo FNAC\Atelier Photo FNAC.exe O4 - GS\CommonDesktop [Public]: Avast Free Antivirus.lnk . (.AVAST Software - avast! Antivirus.) C:\Program Files\Alwil Software\Avast5\AvastUI.exe =>.AVAST Software a.s.® O4 - GS\CommonDesktop [Public]: Avast SafeZone Browser.lnk . (.Avast Software - Avast SafeZone Browser.) C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software s.r.o.® O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd® O4 - GS\CommonDesktop [Public]: EPSON Stylus C110_D120 Manuel.lnk . (...) C:\Program Files\EPSON\TPMANUAL\ESC110_D120\FRA\USE_G\INDEX.HTM O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\CommonDesktop [Public]: Google Earth.lnk . (.Google - Google Earth.) C:\Program Files\Google\Google Earth\client\googleearth.exe =>.Google O4 - GS\CommonDesktop [Public]: Microsoft Works.lnk . (.Microsoft® Corporation - Microsoft® Works.) C:\Program Files\Microsoft Works\MSWorks.exe =>.Microsoft Corporation® O4 - GS\CommonDesktop [Public]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files\Google\Picasa3\Picasa3.exe =>.Google Inc® O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\System32\taskschd.msc ---\\ Modification Domaine/Adresses DNS (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.1 89.2.0.2 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3C108A59-87ED-4CFA-992B-60C18A331504}: DhcpNameServer = 192.168.201.18 192.168.201.12 192.168.201.2 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{EAF9D401-F965-41FA-BDFB-7906156AEE0E}: DhcpNameServer = 89.2.0.1 89.2.0.2 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3C108A59-87ED-4CFA-992B-60C18A331504}: DhcpDomain = smia.local ---\\ Protocole additionnel (24) - 5s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation® O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- c:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll =>.Microsoft Corporation® O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype for COM API.) -- C:\Program Files\Common Files\Skype\Skype4COM.dll =>.Skype Technologies SA® O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (1) - 0s O20 - AppInit_DLLs: . (.Google - Google Desktop.) - C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll ---\\ Logiciels installés (60) - 34s O42 - Logiciel: AAC Decoder - (.DivX, Inc..) [HKLM] -- {AEF9DC35ADDF4825B049ACBFD1C6EB37} =>.DivX, Inc. O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Reader 9 - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-A90000000001} =>.Adobe Systems Incorporated O42 - Logiciel: Archiveur WinRAR - (...) [HKLM] -- WinRAR archiver O42 - Logiciel: Atelier Photo FNAC - (...) [HKLM] -- Atelier Photo FNAC O42 - Logiciel: AutoUpdate - (...) [HKLM] -- {18D10072035C4515918F7E37EAFAACFC} O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM] -- avast =>.AVAST Software a.s.® O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: Diner Dash - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110305887} =>.Oberon Media O42 - Logiciel: DivX Codec - (.DivX, Inc..) [HKLM] -- {7B63B2922B174135AFC0E1377DD81EC2} =>.DivX, Inc. O42 - Logiciel: DivX Converter - (.DivX, Inc..) [HKLM] -- {13F3917B56CD4C25848BDC69916971BB} =>.DivX, Inc. O42 - Logiciel: DivX Converter - (.DivX, Inc..) [HKLM] -- {B13A7C41581B411290FBC0395694E2A9} =>.DivX, Inc. O42 - Logiciel: DivX Player - (.DivX, Inc..) [HKLM] -- {8ADFC4160D694100B5B8A22DE9DCABD9} =>.DivX, Inc. O42 - Logiciel: DivX Plus DirectShow Filters - (.DivX, Inc..) [HKLM] -- DivX Plus DirectShow Filters =>.DivX, Inc. O42 - Logiciel: DivX Version Checker - (.DivX, Inc..) [HKLM] -- {3FC7CBBC4C1E11DCA1A752EA55D89593} =>.DivX, Inc. O42 - Logiciel: DivX Web Player - (.DivX,Inc..) [HKLM] -- {B7050CBDB2504B34BC2A9CA0A692CC29} O42 - Logiciel: eMachines - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11019760} =>.Oberon Media O42 - Logiciel: eMachines Recovery Management - (.Acer Incorporated.) [HKLM] -- {7F811A54-5A09-4579-90E1-C93498E230D9} =>.Acer Incorporated® O42 - Logiciel: eMachines ScreenSaver - (.Acer Incorporated.) [HKLM] -- {79DD56FC-DB8B-47F5-9C80-78B62E05F9BC} =>.Acer Incorporated O42 - Logiciel: EPSON Logiciel imprimante - (.SEIKO EPSON Corporation.) [HKLM] -- EPSON Printer and Utilities =>.SEIKO EPSON Corporation® O42 - Logiciel: EPSON Stylus C110_D120 Manuel - (...) [HKLM] -- EPSON Stylus C110_D120 Guide d'utilisation =>.SEIKO EPSON Corporation® O42 - Logiciel: Freeplayer - (.Free.) [HKLM] -- Freeplayer =>.Free O42 - Logiciel: Funbridge - (...) [HKLM] -- Funbridge O42 - Logiciel: Galapago - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111307457} =>.Oberon Media O42 - Logiciel: GearDrvs - (.GEAR Software.) [HKLM] -- {CB84F0F2-927B-458D-9DC5-87832E3DC653} =>.GEAR Software O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Desktop - (.Google.) [HKLM] -- Google Desktop =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>.Google Inc. O42 - Logiciel: Google Earth - (.Google.) [HKLM] -- {4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E} =>.Google O42 - Logiciel: Google+ Auto Backup - (.Google.) [HKLM] -- {A50DE037-B5C0-4C8A-8049-B0C576B313D1} =>.Google O42 - Logiciel: GotoBridge 2005 - (...) [HKLM] -- GotoBridge 2005 O42 - Logiciel: H.264 Decoder - (.DivX, Inc..) [HKLM] -- {A96E97134CA649888820BCDE5E300BBD} =>.DivX, Inc. O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- HDMI =>.Intel Corporation® O42 - Logiciel: InterVideo WinDVD 8 - (.InterVideo Inc..) [HKLM] -- {20471B27-D702-4FE8-8DEC-0702CC8C0A85} =>.InterVideo Inc. O42 - Logiciel: InterVideo WinDVD 8 - (.InterVideo Inc..) [HKLM] -- InstallShield_{20471B27-D702-4FE8-8DEC-0702CC8C0A85} =>.InterVideo Inc. O42 - Logiciel: La majeure 5ème gagnante - (.Editions Le Bridgeur.) [HKLM] -- La majeure 5ème gagnante_is1 O42 - Logiciel: Launch Manager - (...) [HKLM] -- LManager =>.Dritek System Inc.® O42 - Logiciel: LightScribe 1.4.142.1 - (.http://www.lightscribe.com.) [HKLM] -- {CE386A4E-D0DA-4208-8235-BCE43275C694} =>.http://www.lightscribe.com O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.0.1024 - (.Malwarebytes.) [HKLM] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes O42 - Logiciel: Microsoft Access 2000 SR-1 Runtime - (.Microsoft Corporation.) [HKLM] -- {0018040C-78E1-11D2-B60F-006097C998E7} =>.Microsoft Corporation O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {0214A441-A4AB-43A8-8DEF-2F73C5364673} =>.Microsoft Corporation O42 - Logiciel: MKV Splitter - (.DivX, Inc..) [HKLM] -- {AAC389499AEF40428987B3D30CFC76C9} =>.DivX, Inc. O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} =>.Microsoft Corporation O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} =>.Microsoft Corporation O42 - Logiciel: Mystery Case Files - Huntsville - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111118433} =>.Oberon Media O42 - Logiciel: Mystery Solitaire - Secret Island - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111796363} =>.Oberon Media O42 - Logiciel: Notification de cadeaux MSN - (.Microsoft.) [HKCU] -- Notification de cadeaux MSN =>.Microsoft O42 - Logiciel: NTI Backup Now 5 - (.NewTech Infosystems.) [HKLM] -- InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403} =>.NewTech Infosystems O42 - Logiciel: NTI Backup Now Standard - (.NewTech Infosystems.) [HKLM] -- {12EFA1A4-AC3B-443C-8143-237EDE760403} =>.NewTech Infosystems O42 - Logiciel: NTI Media Maker 8 - (.NewTech Infosystems.) [HKLM] -- {2413930C-8309-47A6-BC61-5EF27A4222BC} =>.NewTech Infosystems O42 - Logiciel: NTI Media Maker 8 - (.NewTech Infosystems.) [HKLM] -- InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC} =>.NewTech Infosystems O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM] -- Picasa 3 =>.Google, Inc. O42 - Logiciel: RayV - (.RayV.) [HKLM] -- RayV =>.RayV O42 - Logiciel: Realtek 8169 8168 8101E 8102E Ethernet Driver - (.Realtek.) [HKLM] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Macrovision Corporation® O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp. O42 - Logiciel: SafeZone Stable 1.48.2066.44 - (.Avast Software.) [HKLM] -- SafeZone 1.48.2066.44 =>.AVAST Software s.r.o.® O42 - Logiciel: Skype web features - (.Skype Technologies S.A..) [HKLM] -- {541DEAC0-5F3D-45E6-B7CB-94ECF3B96748} =>.Skype Technologies S.A. O42 - Logiciel: Skype™ 6.11 - (.Skype Technologies S.A..) [HKLM] -- {4E76FF7E-AEBA-4C87-B788-CD47E5425B9D} =>.Skype Technologies S.A. O42 - Logiciel: VC80CRTRedist - 8.0.50727.762 - (.DivX, Inc.) [HKLM] -- {767CC44C-9BBC-438D-BAD3-FD4595DD148B} =>.DivX, Inc ---\\ HKCU & HKLM Software Keys (89) - 34s HKLM\SOFTWARE\Acer HKLM\SOFTWARE\Acer Incorporated HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\AdwCleaner HKLM\SOFTWARE\Alps HKLM\SOFTWARE\ALWIL Software HKLM\SOFTWARE\Atelier Photo FNAC HKLM\SOFTWARE\AVAST Software HKLM\SOFTWARE\BrowserChoice HKLM\SOFTWARE\COMON HKLM\SOFTWARE\Compal HKLM\SOFTWARE\Conexant HKLM\SOFTWARE\CXT HKLM\SOFTWARE\Digital River HKLM\SOFTWARE\DivX HKLM\SOFTWARE\DivXNetworks HKLM\SOFTWARE\EPSON HKLM\SOFTWARE\Gateway HKLM\SOFTWARE\Google HKLM\SOFTWARE\HPS HKLM\SOFTWARE\IM Providers HKLM\SOFTWARE\Intel HKLM\SOFTWARE\InterVideo HKLM\SOFTWARE\LightScribe HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\muvee Technologies HKLM\SOFTWARE\NewTech Infosystems HKLM\SOFTWARE\Oberon Media HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\OemSetup HKLM\SOFTWARE\Piriform HKLM\SOFTWARE\RayV HKLM\SOFTWARE\Realtek HKLM\SOFTWARE\Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\RTLSetup HKLM\SOFTWARE\Skype HKLM\SOFTWARE\SRS Labs HKLM\SOFTWARE\Symantec HKLM\SOFTWARE\SymDebug HKLM\SOFTWARE\Volatile HKLM\SOFTWARE\Waves Audio HKLM\SOFTWARE\WholeSecurity HKLM\SOFTWARE\WOW6432Node HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Alps HKCU\SOFTWARE\ALWIL Software HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\AVAST Software HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\CeWe Color HKCU\SOFTWARE\Compal HKCU\SOFTWARE\DivXNetworks HKCU\SOFTWARE\EPSON HKCU\SOFTWARE\Freeplayer HKCU\SOFTWARE\Google HKCU\SOFTWARE\Goto HKCU\SOFTWARE\Goto.Games HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Intel HKCU\SOFTWARE\InterVideo HKCU\SOFTWARE\keyhole.com HKCU\SOFTWARE\Le Bridgeur HKCU\SOFTWARE\Local AppWizard-Generated Applications HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\MainConcept HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\NewTech Infosystems HKCU\SOFTWARE\Novell HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Opendisc HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\RayV HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\SEIKO EPSON HKCU\SOFTWARE\Skype HKCU\SOFTWARE\Sony Corporation HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Aurigma HKCU\SOFTWARE\AppDataLow\Google HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Google ---\\ Contenu des dossiers Programmes (186) - 289s O43 - CFD: 11/01/2010 - [] D -- C:\Program Files\Acer Incorporated O43 - CFD: 11/01/2010 - [] D -- C:\Program Files\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 12/12/2010 - [] D -- C:\Program Files\Alwil Software =>.AVAST Software a.s.® O43 - CFD: 24/11/2008 - [0] D -- C:\Program Files\Apoint2K O43 - CFD: 09/03/2016 - [] D -- C:\Program Files\AVAST Software =>.AVAST Software s.r.o.® O43 - CFD: 26/02/2014 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd® O43 - CFD: 21/05/2014 - [] D -- C:\Program Files\Common Files O43 - CFD: 11/01/2010 - [] D -- C:\Program Files\DivX O43 - CFD: 11/01/2010 - [] D -- C:\Program Files\EMACHINES O43 - CFD: 12/12/2010 - [] D -- C:\Program Files\eMachines GameZone O43 - CFD: 26/09/2010 - [] D -- C:\Program Files\EPSON =>.SEIKO EPSON Corporation® O43 - CFD: 11/01/2010 - [0] SHD -- C:\Program Files\Fichiers communs O43 - CFD: 04/11/2010 - [] D -- C:\Program Files\FNAC O43 - CFD: 11/01/2010 - [] D -- C:\Program Files\Freeplayer O43 - CFD: 26/02/2014 - [] D -- C:\Program Files\Google =>.Google Inc® O43 - CFD: 11/01/2010 - [] D -- C:\Program Files\Goto.Games O43 - CFD: 22/02/2010 - [] HD -- C:\Program Files\InstallShield Installation Information =>.Macrovision Corporation® O43 - CFD: 11/01/2010 - [] D -- C:\Program Files\Intel O43 - CFD: 29/10/2014 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 11/01/2010 - [] D -- C:\Program Files\InterVideo =>.Intervideo, Inc.® O43 - CFD: 11/01/2010 - [] D -- C:\Program Files\Launch Manager O43 - CFD: 10/03/2016 - [] D -- C:\Program Files\Malwarebytes Anti-Malware =>.Malwarebytes Corporation® O43 - CFD: 26/02/2014 - [0] D -- C:\Program Files\Microsoft O43 - CFD: 12/01/2010 - [] D -- C:\Program Files\Microsoft Games O43 - CFD: 02/05/2012 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 11/01/2010 - [] D -- C:\Program Files\Microsoft Office Suite Activation Assistant =>.Digital River, Inc.® O43 - CFD: 11/01/2010 - [] D -- C:\Program Files\Microsoft Visual Studio O43 - CFD: 11/10/2012 - [] D -- C:\Program Files\Microsoft Works =>.Microsoft Corporation® O43 - CFD: 26/10/2010 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 04/09/2010 - [] D -- C:\Program Files\Movie Maker O43 - CFD: 25/01/2014 - [] D -- C:\Program Files\Mozilla Firefox O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\MSBuild O43 - CFD: 17/01/2009 - [0] D -- C:\Program Files\MSXML 4.0 O43 - CFD: 11/01/2010 - [] D -- C:\Program Files\NewTech Infosystems =>.NewTech Infosystems, Inc® O43 - CFD: 11/01/2010 - [] D -- C:\Program Files\Oberon Media O43 - CFD: 14/02/2010 - [] D -- C:\Program Files\RayV {2D1583942366124C1CBE1CC772B036BB} O43 - CFD: 11/01/2010 - [] D -- C:\Program Files\Realtek O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 24/03/2014 - [] RD -- C:\Program Files\Skype =>.Skype Software Sarl® O43 - CFD: 11/01/2010 - [] D -- C:\Program Files\Snapshot Viewer O43 - CFD: 02/11/2006 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 15/02/2010 - [] D -- C:\Program Files\Windows Calendar O43 - CFD: 15/02/2010 - [] D -- C:\Program Files\Windows Collaboration O43 - CFD: 15/02/2010 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Windows® O43 - CFD: 29/10/2014 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 17/12/2010 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 25/10/2010 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 11/01/2010 - [] D -- C:\Program Files\Windows NT O43 - CFD: 15/02/2010 - [] D -- C:\Program Files\Windows Photo Gallery O43 - CFD: 16/02/2010 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 15/02/2010 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 11/01/2010 - [] D -- C:\Program Files\WinRAR O43 - CFD: 21/01/2008 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 21/01/2008 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 04/11/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Atelier Photo FNAC O43 - CFD: 26/02/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 11/01/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX O43 - CFD: 11/01/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eMachines O43 - CFD: 11/01/2010 - [] AD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eMachines Documentation O43 - CFD: 11/01/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eMachines GameZone O43 - CFD: 28/09/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON O43 - CFD: 21/01/2008 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Extras and Upgrades O43 - CFD: 11/01/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freeplayer O43 - CFD: 11/01/2010 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 05/09/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Desktop O43 - CFD: 31/12/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth O43 - CFD: 25/01/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google+ Auto Backup O43 - CFD: 11/01/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Goto.Games O43 - CFD: 11/01/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\InterVideo WinDVD O43 - CFD: 11/01/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\La majeure 5ème gagnante O43 - CFD: 11/01/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Launch Manager O43 - CFD: 02/11/2006 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 10/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 21/02/2010 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 11/10/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works O43 - CFD: 11/01/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTI Backup Now 5 O43 - CFD: 11/01/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTI Media Maker 8 O43 - CFD: 21/02/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office O43 - CFD: 25/01/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3 O43 - CFD: 14/02/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RayV O43 - CFD: 28/01/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 12/12/2010 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 02/11/2006 - [] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 11/01/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 11/01/2010 - [] D -- C:\ProgramData\Acer O43 - CFD: 11/01/2010 - [] D -- C:\ProgramData\Adobe O43 - CFD: 12/12/2010 - [] D -- C:\ProgramData\Alwil Software O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 09/03/2016 - [] D -- C:\ProgramData\AVAST Software O43 - CFD: 11/01/2010 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 16/01/2011 - [] D -- C:\ProgramData\DivX O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 28/09/2010 - [] D -- C:\ProgramData\EPSON O43 - CFD: 11/01/2010 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 11/01/2010 - [] D -- C:\ProgramData\FloodLightGames O43 - CFD: 26/02/2014 - [] D -- C:\ProgramData\Google O43 - CFD: 04/11/2010 - [] D -- C:\ProgramData\hps O43 - CFD: 16/01/2011 - [] D -- C:\ProgramData\InterVideo O43 - CFD: 10/03/2016 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 11/01/2010 - [] D -- C:\ProgramData\McAfee O43 - CFD: 11/01/2010 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 26/02/2014 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 29/10/2014 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 11/01/2010 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 24/03/2014 - [] D -- C:\ProgramData\Skype O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 12/12/2010 - [] D -- C:\ProgramData\Symantec O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 23/11/2010 - [] D -- C:\ProgramData\WindowsSearch O43 - CFD: 11/01/2010 - [] D -- C:\ProgramData\{3276BE95_AF08_429F_A64F_CA64CB79BCF6} O43 - CFD: 11/01/2010 - [] D -- C:\Program Files\Common Files\Adobe O43 - CFD: 21/05/2014 - [] D -- C:\Program Files\Common Files\DESIGNER O43 - CFD: 11/01/2010 - [] D -- C:\Program Files\Common Files\InstallShield O43 - CFD: 11/01/2010 - [] D -- C:\Program Files\Common Files\InterVideo O43 - CFD: 11/01/2010 - [] D -- C:\Program Files\Common Files\LightScribe O43 - CFD: 09/03/2012 - [] D -- C:\Program Files\Common Files\microsoft shared O43 - CFD: 11/01/2010 - [] D -- C:\Program Files\Common Files\muvee Technologies O43 - CFD: 11/01/2010 - [] D -- C:\Program Files\Common Files\Oberon Media O43 - CFD: 11/01/2010 - [] D -- C:\Program Files\Common Files\PX Storage Engine O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Common Files\Services O43 - CFD: 24/03/2014 - [] D -- C:\Program Files\Common Files\Skype O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 12/12/2010 - [] D -- C:\Program Files\Common Files\Symantec Shared O43 - CFD: 21/11/2011 - [] D -- C:\Program Files\Common Files\System O43 - CFD: 11/01/2010 - [] D -- C:\Users\Nicolas\AppData\Roaming\Adobe O43 - CFD: 09/03/2016 - [] D -- C:\Users\Nicolas\AppData\Roaming\AVAST Software O43 - CFD: 11/01/2010 - [] D -- C:\Users\Nicolas\AppData\Roaming\DivX O43 - CFD: 11/01/2010 - [] D -- C:\Users\Nicolas\AppData\Roaming\Google O43 - CFD: 11/01/2010 - [] D -- C:\Users\Nicolas\AppData\Roaming\Icones O43 - CFD: 11/01/2010 - [] D -- C:\Users\Nicolas\AppData\Roaming\Identities O43 - CFD: 26/09/2010 - [] D -- C:\Users\Nicolas\AppData\Roaming\InstallShield O43 - CFD: 11/01/2010 - [] D -- C:\Users\Nicolas\AppData\Roaming\InterVideo O43 - CFD: 11/01/2010 - [] D -- C:\Users\Nicolas\AppData\Roaming\Macromedia O43 - CFD: 20/05/2010 - [] SD -- C:\Users\Nicolas\AppData\Roaming\Microsoft O43 - CFD: 20/02/2010 - [0] D -- C:\Users\Nicolas\AppData\Roaming\Microsoft Web Folders O43 - CFD: 14/03/2013 - [] D -- C:\Users\Nicolas\AppData\Roaming\RayV O43 - CFD: 09/03/2016 - [] D -- C:\Users\Nicolas\AppData\Roaming\Skype O43 - CFD: 29/05/2012 - [] D -- C:\Users\Nicolas\AppData\Roaming\skypePM O43 - CFD: 11/01/2010 - [] D -- C:\Users\Nicolas\AppData\Roaming\Symantec O43 - CFD: 20/05/2010 - [] D -- C:\Users\Nicolas\AppData\Roaming\Template O43 - CFD: 11/01/2010 - [] D -- C:\Users\Nicolas\AppData\Roaming\U3 O43 - CFD: 11/01/2010 - [] D -- C:\Users\Nicolas\AppData\Roaming\vlc O43 - CFD: 31/01/2009 - [0] D -- C:\Users\Nicolas\AppData\Roaming\WinRAR O43 - CFD: 10/03/2016 - [] D -- C:\Users\Nicolas\AppData\Roaming\ZHP O43 - CFD: 11/01/2010 - [] D -- C:\Users\Nicolas\AppData\Local\Adobe O43 - CFD: 11/01/2010 - [0] SHD -- C:\Users\Nicolas\AppData\Local\Application Data O43 - CFD: 10/02/2010 - [0] D -- C:\Users\Nicolas\AppData\Local\Bron.tok-16-10 =>Worm.Brontok O43 - CFD: 11/03/2010 - [0] D -- C:\Users\Nicolas\AppData\Local\Bron.tok-16-11 =>Worm.Brontok O43 - CFD: 12/10/2010 - [0] D -- C:\Users\Nicolas\AppData\Local\Bron.tok-16-12 =>Worm.Brontok O43 - CFD: 13/04/2010 - [0] D -- C:\Users\Nicolas\AppData\Local\Bron.tok-16-13 =>Worm.Brontok O43 - CFD: 15/04/2010 - [0] D -- C:\Users\Nicolas\AppData\Local\Bron.tok-16-15 =>Worm.Brontok O43 - CFD: 16/04/2010 - [0] D -- C:\Users\Nicolas\AppData\Local\Bron.tok-16-16 =>Worm.Brontok O43 - CFD: 02/03/2010 - [0] D -- C:\Users\Nicolas\AppData\Local\Bron.tok-16-2 =>Worm.Brontok O43 - CFD: 20/07/2010 - [0] D -- C:\Users\Nicolas\AppData\Local\Bron.tok-16-20 =>Worm.Brontok O43 - CFD: 21/07/2010 - [0] D -- C:\Users\Nicolas\AppData\Local\Bron.tok-16-21 =>Worm.Brontok O43 - CFD: 23/02/2010 - [0] D -- C:\Users\Nicolas\AppData\Local\Bron.tok-16-23 =>Worm.Brontok O43 - CFD: 24/10/2010 - [0] D -- C:\Users\Nicolas\AppData\Local\Bron.tok-16-24 =>Worm.Brontok O43 - CFD: 25/02/2010 - [0] D -- C:\Users\Nicolas\AppData\Local\Bron.tok-16-25 =>Worm.Brontok O43 - CFD: 03/02/2010 - [0] D -- C:\Users\Nicolas\AppData\Local\Bron.tok-16-3 =>Worm.Brontok O43 - CFD: 04/02/2010 - [0] D -- C:\Users\Nicolas\AppData\Local\Bron.tok-16-4 =>Worm.Brontok O43 - CFD: 05/02/2010 - [0] D -- C:\Users\Nicolas\AppData\Local\Bron.tok-16-5 =>Worm.Brontok O43 - CFD: 06/02/2010 - [0] D -- C:\Users\Nicolas\AppData\Local\Bron.tok-16-6 =>Worm.Brontok O43 - CFD: 07/02/2010 - [0] D -- C:\Users\Nicolas\AppData\Local\Bron.tok-16-7 =>Worm.Brontok O43 - CFD: 08/02/2010 - [0] D -- C:\Users\Nicolas\AppData\Local\Bron.tok-16-8 =>Worm.Brontok O43 - CFD: 09/02/2010 - [0] D -- C:\Users\Nicolas\AppData\Local\Bron.tok-16-9 =>Worm.Brontok O43 - CFD: 26/02/2014 - [] D -- C:\Users\Nicolas\AppData\Local\Google O43 - CFD: 11/01/2010 - [0] SHD -- C:\Users\Nicolas\AppData\Local\Historique O43 - CFD: 12/12/2010 - [] D -- C:\Users\Nicolas\AppData\Local\Loc.Mail.Bron.Tok =>Worm.Brontok O43 - CFD: 26/02/2014 - [] D -- C:\Users\Nicolas\AppData\Local\Microsoft O43 - CFD: 11/01/2010 - [] D -- C:\Users\Nicolas\AppData\Local\Microsoft Games O43 - CFD: 07/02/2009 - [0] D -- C:\Users\Nicolas\AppData\Local\Microsoft Help O43 - CFD: 03/02/2010 - [0] D -- C:\Users\Nicolas\AppData\Local\Ok-SendMail-Bron-tok O43 - CFD: 11/01/2010 - [] D -- C:\Users\Nicolas\AppData\Local\Symantec O43 - CFD: 10/03/2016 - [] D -- C:\Users\Nicolas\AppData\Local\Temp O43 - CFD: 11/01/2010 - [0] SHD -- C:\Users\Nicolas\AppData\Local\Temporary Internet Files O43 - CFD: 09/03/2016 - [] D -- C:\Users\Nicolas\AppData\Local\VirtualStore O43 - CFD: 11/01/2010 - [] D -- C:\Users\Nicolas\AppData\Local\WindowsUpdate O43 - CFD: 21/01/2008 - [] RD -- C:\Users\Nicolas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 11/01/2010 - [] RD -- C:\Users\Nicolas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 11/01/2010 - [] D -- C:\Users\Nicolas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Goto.Games O43 - CFD: 21/01/2008 - [] RD -- C:\Users\Nicolas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 26/02/2014 - [] RD -- C:\Users\Nicolas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 11/01/2010 - [] D -- C:\Users\Nicolas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Will-Bridge O43 - CFD: 11/01/2010 - [] D -- C:\Users\Nicolas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ ShellIconOverlayIdentifiers (SIOI) (4) - 0s O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - avast! Shell Extension.) -- C:\Program Files\Alwil Software\Avast5\ashShell.dll =>.AVAST Software a.s.® O106 - SIOI: MPCBIconOverlays.OkOverlayIcon [1AMPCBOK] - {04cd1f3e-81d5-4904-a3ab-e0f99a7d769d}. (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- mscoree.dll =>.Microsoft Corporation® O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - Extension d'environnement du périphérique d.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation ---\\ Enumération des clés StartupReg (4) - 1s O53 - SMSR:HKLM\...\startupreg\BkupTray [Key] . (.Copyright (c)2005-2007, NewTech Infosystems, Inc. All - NTI Backup Now 5 Tray Module.) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe O53 - SMSR:HKLM\...\startupreg\Google Desktop Search [Key] . (.Google - Google Desktop.) -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe =>.Google O53 - SMSR:HKLM\...\startupreg\RayV [Key] . (.RayV - RayV.) -- C:\Program Files\RayV\RayV\RayV.exe =>.RayV O53 - SMSR:HKLM\...\startupreg\Windows Defender [Key] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe =>.Microsoft Corporation ---\\ Liste des pilotes du système (88) - 49s O58 - SDL:2008/01/21 03:23:45 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422968] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:50 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [300600] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:50 A . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) -- C:\Windows\System32\drivers\adpu160m.sys [101432] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:51 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [149560] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:26 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [17464] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:48 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [79416] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:49 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [79928] =>.Microsoft Windows® O58 - SDL:2016/03/09 18:40:57 A . (.AVAST Software - avast! HWID.) -- C:\Windows\System32\drivers\aswHwid.sys [32792] =>.AVAST Software a.s.® O58 - SDL:2016/03/09 18:39:33 A . (.AVAST Software - avast! Keyboard Filter Driver.) -- C:\Windows\System32\drivers\aswKbd.sys [35096] =>.AVAST Software a.s.® O58 - SDL:2016/03/09 19:31:07 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswmonflt.sys [91168] =>.AVAST Software a.s.® O58 - SDL:2016/03/09 18:40:56 A . (.AVAST Software - avast! TDI Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr.sys [64272] =>.AVAST Software a.s.® O58 - SDL:2016/03/09 18:40:57 A . (.AVAST Software - avast! Revert.) -- C:\Windows\System32\drivers\aswRvrt.sys [58776] =>.AVAST Software a.s.® O58 - SDL:2016/03/09 19:31:08 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswsnx.sys [816304] =>.AVAST Software a.s.® O58 - SDL:2016/03/09 19:28:38 A . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\drivers\aswsp.sys [447848] =>.AVAST Software a.s.® O58 - SDL:2016/03/09 18:40:58 A . (.AVAST Software - avast! Stream Filter.) -- C:\Windows\System32\drivers\aswStmXP.sys [171608] =>.AVAST Software a.s.® O58 - SDL:2016/03/09 18:40:58 A . (.AVAST Software - avast! TDI Filter Driver.) -- C:\Windows\System32\drivers\aswTdi.sys [67088] =>.AVAST Software a.s.® O58 - SDL:2016/03/09 19:25:17 A . (.AVAST Software - avast! VM Monitor.) -- C:\Windows\System32\drivers\aswvmm.sys [221240] =>.AVAST Software a.s.® O58 - SDL:2007/10/26 07:41:02 A . (.Broadcom Corp. - Broadcom 802.11 Network Adapter wireless dr.) -- C:\Windows\System32\drivers\BCMWL6.SYS [1044984] =>.Broadcom Corporation® O58 - SDL:2006/11/02 09:24:45 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] =>.Brother Industries, Ltd. O58 - SDL:2006/11/02 09:24:46 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] =>.Brother Industries, Ltd. O58 - SDL:2006/11/02 09:25:24 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [71808] =>.Brother Industries Ltd. O58 - SDL:2006/11/02 09:24:44 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] =>.Brother Industries Ltd. O58 - SDL:2006/11/02 09:24:44 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] =>.Brother Industries Ltd. O58 - SDL:2006/11/02 09:24:47 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] =>.Brother Industries Ltd. O58 - SDL:2008/01/21 03:23:26 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [19000] =>.Microsoft Windows® O58 - SDL:2006/11/02 10:50:11 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [71272] =>.Microsoft Windows® O58 - SDL:2006/11/02 14:29:36 A . (.Dritek System Inc. - Dritek PS2 Keyboard Filter Driver.) -- C:\Windows\System32\drivers\DKbFltr.sys [21264] =>.Dritek System Inc.® O58 - SDL:2008/01/21 03:23:49 A . (.Intel Corporation - Pilote désérialisé NDIS 6 de la carte Intel.) -- C:\Windows\System32\drivers\E1G60I32.sys [118784] =>.Intel Corporation O58 - SDL:2008/01/21 03:23:46 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [342584] =>.Microsoft Windows® O58 - SDL:2009/03/09 18:49:04 A . (...) -- C:\Windows\System32\drivers\enodpl.sys [7552] O58 - SDL:2008/04/17 13:12:54 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\drivers\GEARAspiWDM.sys [15464] =>.GEAR Software Inc.® O58 - SDL:2008/01/21 03:23:51 A . (.Hewlett-Packard Company - Smart Array Storport Driver.) -- C:\Windows\System32\drivers\HpCISSs.sys [40504] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:47 A . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) -- C:\Windows\System32\drivers\iaStorV.sys [235064] =>.Microsoft Windows® O58 - SDL:2010/08/25 19:31:30 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [9024512] =>.Intel Corporation O58 - SDL:2006/11/02 10:50:17 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41576] =>.Microsoft Windows® O58 - SDL:2008/06/11 11:13:24 A . (.Acer, Inc. - int15.) -- C:\Windows\System32\drivers\int15.sys [15392] =>.Acer Incorporated® O58 - SDL:2008/06/11 11:13:24 A . (.Acer, Inc. - int15.) -- C:\Windows\System32\drivers\int15_64.sys [17952] =>.Acer Incorporated® O58 - SDL:2006/11/02 10:50:07 A . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\System32\drivers\iteatapi.sys [35944] =>.Microsoft Windows® O58 - SDL:2006/11/02 10:50:09 A . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\System32\drivers\iteraid.sys [35944] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:48 A . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [96312] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:50 A . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89656] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:47 A . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96312] =>.Microsoft Windows® O58 - SDL:2015/10/05 09:50:04 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [23256] =>.Malwarebytes Corporation® O58 - SDL:2015/10/05 09:50:08 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [94936] =>.Malwarebytes Corporation® O58 - SDL:2016/03/10 00:36:11 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [170200] =>.Malwarebytes Corporation® O58 - SDL:2008/01/21 03:23:51 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [31288] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:51 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [386616] =>.Microsoft Windows® O58 - SDL:2006/11/02 10:49:59 A . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\Mraid35x.sys [33384] =>.Microsoft Windows® O58 - SDL:2015/10/05 09:50:12 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [51928] =>.Malwarebytes Corporation® O58 - SDL:2006/11/02 10:50:19 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [45160] =>.Microsoft Windows® O58 - SDL:2008/01/30 10:52:06 A . (.NewTech Infosystems, Inc. - NTI CD-ROM Filter Driver.) -- C:\Windows\System32\drivers\NTIDrvr.sys [14848] =>.NewTech Infosystems, Inc® O58 - SDL:2006/11/02 08:36:50 A . (.N-trig Innovative Technologies - Pilote intégré de digitalisateur de tablett.) -- C:\Windows\System32\drivers\ntrigdigi.sys [20608] =>.N-trig Innovative Technologies O58 - SDL:2008/01/21 03:23:45 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [102968] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:45 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [45112] =>.Microsoft Windows® O58 - SDL:2007/04/03 10:43:28 A . (.Philips Semiconductors GmbH - Ph3xIBxx.) -- C:\Windows\System32\drivers\Ph3xIB32.sys [1131136] O58 - SDL:2008/01/21 03:23:49 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1122360] =>.Microsoft Windows® O58 - SDL:2006/11/02 10:50:35 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106088] =>.Microsoft Windows® O58 - SDL:2007/04/17 20:09:28 A . (.InterVideo - regi driver.) -- C:\Windows\System32\drivers\regi.sys [11032] =>.Intervideo, Inc.® O58 - SDL:2008/06/27 11:33:20 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [2147928] =>.Realtek Semiconductor Corp® O58 - SDL:2008/06/10 11:54:36 A . (.Realtek Corporation - Realtek 8101E/8168/8169 NDIS6 32-bit Driver.) -- C:\Windows\System32\drivers\Rtlh86.sys [123904] =>.Realtek Corporation O58 - SDL:2006/11/02 07:37:21 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2008/01/21 03:23:51 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [74808] =>.Microsoft Windows® O58 - SDL:2006/11/02 10:50:05 A . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) -- C:\Windows\System32\drivers\symc8xx.sys [35944] =>.Microsoft Windows® O58 - SDL:2009/02/19 12:31:42 A . (.Symantec Corporation - NDIS 6.0 Filter Driver for Windows Vista.) -- C:\Windows\System32\drivers\SymIMV.sys [24112] =>.Symantec Corporation® O58 - SDL:2006/11/02 10:49:56 A . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_hi.sys [31848] =>.Microsoft Windows® O58 - SDL:2006/11/02 10:50:03 A . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_u3.sys [34920] =>.Microsoft Windows® O58 - SDL:2009/03/09 18:49:07 A . (...) -- C:\Windows\System32\drivers\tandpl.sys [4736] O58 - SDL:2008/01/30 10:51:50 A . (.NewTech Infosystems Corporation - NTI CDROM Filter Driver.) -- C:\Windows\System32\drivers\UBHelper.sys [13824] =>.NewTech Infosystems, Inc® O58 - SDL:2008/01/21 03:23:45 A . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\System32\drivers\uliahci.sys [238648] =>.Microsoft Windows® O58 - SDL:2006/11/02 10:50:35 A . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win200.) -- C:\Windows\System32\drivers\ulsata.sys [98408] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:47 A . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\System32\drivers\ulsata2.sys [115816] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:26 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [20024] =>.Microsoft Windows® O58 - SDL:2008/01/21 03:23:48 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [130616] =>.Microsoft Windows® O58 - SDL:2006/11/02 08:09:42 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:2006/11/02 08:09:45 A . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:2006/11/02 08:09:41 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:2006/11/02 08:09:44 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:2006/11/02 08:09:44 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:2006/11/02 08:09:29 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:2006/11/02 08:09:35 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:2006/11/02 08:09:38 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:2006/11/02 08:09:40 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:2006/11/02 08:09:31 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:2006/11/02 08:09:20 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:2006/11/02 08:09:23 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:2006/11/02 08:09:24 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:2006/11/02 08:09:26 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:2006/11/02 08:09:22 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] ---\\ Associations Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (12) - 1s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\Launcher.exe =>.AVAST Software s.r.o.® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software ---\\ Recherche d'infection sur les navigateurs (3) - 0s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {5D39880D-2AB3-4F20-BEDA-D14AEA006288} [DefaultScope] - (Google) - http://www.google.com/ O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ ---\\ Enumère les services démarrés par Svchost (32) - 4s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [24576] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [62976] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [125952] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [576512] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [444928] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [315392] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d'accès distant.) -- C:\Windows\System32\rasmans.dll [262144] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [68608] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [47104] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\Windows\System32\ipnathlp.dll [288256] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242688] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes Termi.) -- C:\Windows\System32\termsrv.dll [449024] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1933848] =>.Microsoft Windows Component Publisher® O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [758784] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [200704] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [19968] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [33280] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [111616] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [45056] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [153088] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [57344] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [162304] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [601600] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service de configuration des services Termi.) -- C:\Windows\System32\SessEnv.dll [84992] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [81920] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [68096] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [148992] =>.Microsoft Corporation ---\\ Liste des exceptions du parefeu Windows (4) - 4s O87 - FAEL: "{E8257C08-95DD-47C7-A8AA-F3BF72CBE37B}" [In-None-P17-TRUE] .(...) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe O87 - FAEL: "{52F0B77B-54CF-4A82-A62D-48404F406663}" [In-None-P6-TRUE] .(...) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe O87 - FAEL: "TCP Query User{4D30FF03-34A1-4D29-9DFE-1D2181929970}C:\program files\freeplayer\vlc\vlc.exe" [In-None-P6-TRUE] .(...) -- C:\program files\freeplayer\vlc\vlc.exe O87 - FAEL: "UDP Query User{2F56EAB9-0EE7-4B10-B49E-18DD3829BB4E}C:\program files\freeplayer\vlc\vlc.exe" [In-None-P17-TRUE] .(...) -- C:\program files\freeplayer\vlc\vlc.exe ---\\ Scan Additionnel (20) - 0s C:\Users\Nicolas\AppData\Local\Bron.tok-16-10 =>Worm.Brontok C:\Users\Nicolas\AppData\Local\Bron.tok-16-11 =>Worm.Brontok C:\Users\Nicolas\AppData\Local\Bron.tok-16-12 =>Worm.Brontok C:\Users\Nicolas\AppData\Local\Bron.tok-16-13 =>Worm.Brontok C:\Users\Nicolas\AppData\Local\Bron.tok-16-15 =>Worm.Brontok C:\Users\Nicolas\AppData\Local\Bron.tok-16-16 =>Worm.Brontok C:\Users\Nicolas\AppData\Local\Bron.tok-16-2 =>Worm.Brontok C:\Users\Nicolas\AppData\Local\Bron.tok-16-20 =>Worm.Brontok C:\Users\Nicolas\AppData\Local\Bron.tok-16-21 =>Worm.Brontok C:\Users\Nicolas\AppData\Local\Bron.tok-16-23 =>Worm.Brontok C:\Users\Nicolas\AppData\Local\Bron.tok-16-24 =>Worm.Brontok C:\Users\Nicolas\AppData\Local\Bron.tok-16-25 =>Worm.Brontok C:\Users\Nicolas\AppData\Local\Bron.tok-16-3 =>Worm.Brontok C:\Users\Nicolas\AppData\Local\Bron.tok-16-4 =>Worm.Brontok C:\Users\Nicolas\AppData\Local\Bron.tok-16-5 =>Worm.Brontok C:\Users\Nicolas\AppData\Local\Bron.tok-16-6 =>Worm.Brontok C:\Users\Nicolas\AppData\Local\Bron.tok-16-7 =>Worm.Brontok C:\Users\Nicolas\AppData\Local\Bron.tok-16-8 =>Worm.Brontok C:\Users\Nicolas\AppData\Local\Bron.tok-16-9 =>Worm.Brontok C:\Users\Nicolas\AppData\Local\Loc.Mail.Bron.Tok =>Worm.Brontok ---\\ Récapitulatif des éléments trouvés sur votre station (1) - 0s http://www.nicolascoolman.fr/?p=384 =>Worm.Brontok ~ End of the scan, 31041 items in 00h09mn17s (792)(0)