~ ZHPDiag v2016.5.29.100 Par Nicolas Coolman (2016/05/29) ~ Démarré par sup (Administrator) (2016/05/30 18:36:11) ~ Site: http://www.nicolascoolman.com ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\sup\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\sup\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ Démarrage du système: Normal (Normal boot) Windows VISTA, 32-bit (Build 6000) ---\\ Navigateurs Internet (2) - 0s GCIE: Google Chrome v49.0.2623.112 MSIE: Internet Explorer v7.0.6000.16916 ---\\ Informations sur les produits Windows (9) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows Operating System - Vista, OEM_SLP channel System Locked Preinstallation (OEM_SLP) : OK Windows ID Activation : OK ~ Windows Partial Key : 6CJ97 Windows License : OK Windows Automatic Updates : OK Windows Activation Technologies : KO ---\\ Logiciels d'optimisation (1) - 1s CCleaner v5.05 ---\\ Surveillance de Logiciels (1) - 1s Adobe Flash Player 13 Plugin ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 6 Model 15 Stepping 13, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 2096.064 MB (43% free) System Restore: Activé (Enable) System drive C: has 106 GB () free of 148 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: PC-DE-MARIOEMPE ~ User Name: sup ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 106 GB free of 148 GB (System) ~ Drive D: has 148 GB free of 148 GB ---\\ Etat du Centre de Sécurité Windows (13) - 0s [HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: Modified [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (24) - 1s [MD5.37440D09DEAE0B672A04DCCF7ABF06BE] - 29/10/2008 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2923520] =>.Microsoft Corporation [MD5.4B555106290BD117334E9A08761C035A] - 02/11/2006 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] =>.Microsoft Corporation [MD5.D4385B03E8CCCEE6F0EE249F827C1F3E] - 02/11/2006 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [95744] =>.Microsoft Corporation [MD5.2BD22AA29893876347BA1BE62487748A] - 27/08/2009 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [832512] =>.Microsoft Corporation [MD5.9F75392B9128A91ABAFB044EA350BAAD] - 02/11/2006 - (.Microsoft Corporation - Application d'ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [308224] =>.Microsoft Corporation [MD5.1CF533790D3D883A7AB671040FB18A93] - 16/12/2007 - (.Microsoft Corporation - DNS DLL de l'API Client.) -- C:\Windows\System32\dnsapi.dll [162816] =>.Microsoft Corporation [MD5.FF524497A864EDF9C040E31DB29D6449] - 02/11/2006 - (.Microsoft Corporation - DLL client de l'API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation [MD5.5D24CAF8EFD924A875698FF28384DB8B] - 02/11/2006 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [270336] =>.Microsoft Corporation [MD5.4F4FCB8B6EA06784FB6D475B7EC7300F] - 02/11/2006 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [19048] =>.Microsoft Windows® [MD5.6C3A437FC873C6F6A4FC620B6888CB86] - 02/11/2006 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70144] =>.Microsoft Corporation [MD5.8D1866E61AF096AE8B582454F5E4D303] - 02/11/2006 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [67072] =>.Microsoft Corporation [MD5.A7179DE59AE269AB70345527894CCD7C] - 02/11/2006 - (.Microsoft Corporation - DFS Client MUP Surrogate Driver.) -- C:\Windows\System32\drivers\DfsC.sys [74752] =>.Microsoft Corporation [MD5.0DB613A7E427B5663563677796FD5258] - 10/07/2007 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [53760] =>.Microsoft Corporation [MD5.1C9EE072BAA3ABB460B91D7EE9152660] - 01/03/2008 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [54784] =>.Microsoft Corporation [MD5.10077C35845101548037DF04FD1A420B] - 02/11/2006 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [99840] =>.Microsoft Corporation [MD5.529B64F9735D27FEF1B8EA1678F8C79E] - 01/03/2008 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [101888] =>.Microsoft Corporation [MD5.E3A168912E7EEFC3BD3B814720D68B41] - 02/11/2006 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [184320] =>.Microsoft Corporation [MD5.3F379380A4A2637F559444E338CF1B51] - 02/11/2006 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1056360] =>.Microsoft Windows® [MD5.0FA9B5055484649D63C303FE404E5F4D] - 02/11/2006 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [79360] =>.Microsoft Corporation [MD5.68B0019FEE429EC49D29017AF937E482] - 10/07/2007 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [74752] =>.Microsoft Corporation [MD5.E8BD98D46F2ED77132BA927FCCB47D8B] - 02/11/2006 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [242688] =>.Microsoft Corporation [MD5.AC0D90738ADB51A6FD12FF00874A2162] - 02/11/2006 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [66048] =>.Microsoft Corporation [MD5.AB4FDE8AF4A0270A46A001C08CBCE1C2] - 02/11/2006 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [68096] =>.Microsoft Corporation [MD5.11EF6C1CAEF76B685233450A126125D6] - 02/11/2006 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [208488] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (12) - 1s O23 - Service: Acer HomeMedia Connect Service (Acer HomeMedia Connect Service) . (.CyberLink - CLMSServer.) - C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe =>.CyberLink O23 - Service: ePerformance Service (AcerMemUsageCheckService) . (.Copyright © 2006 - MemCheck.Service.) - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe O23 - Service: Apache2.4 (Apache2.4) . (...) - C:\xampp\apache\bin\httpd.exe (.not file.) O23 - Service: (Ati External Event Utility) . (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) - C:\Windows\System32\Ati2evxx.exe =>.ATI Technologies Inc. O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® O23 - Service: eDSService.exe (eDataSecurity Service) . (.HiTRSUT - eDataSecurity Service.) - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe =>.HiTRUST Inc.® O23 - Service: eRecovery Service (eRecoveryService) . (.Acer Inc. - eRecoveryService.) - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe =>.Acer Inc. O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company - .) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe =>.Hewlett-Packard Company O23 - Service: Planificateur LiveUpdate automatique (Planificateur LiveUpdate automatique) . (...) - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (.not file.) O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004 - RichVideo Module.) - C:\Program Files\CyberLink\Shared Files\RichVideo.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl® ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (14) - 38s SR - Auto [21/06/2007] [ 269448] Acer HomeMedia Connect Service (Acer HomeMedia Connect Service) . (.CyberLink.) - C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe =>.CyberLink SR - Auto [16/04/2007] [ 28672] ePerformance Service (AcerMemUsageCheckService) . (.Copyright © 2006.) - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe SS - Demand [21/04/2014] [ 257712] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [27/07/2007] [ 610304] (Ati External Event Utility) . (.ATI Technologies Inc..) - C:\Windows\System32\Ati2evxx.exe =>.ATI Technologies Inc. SR - Auto [30/08/2011] [ 390504] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® SR - Auto [25/04/2007] [ 457512] eDSService.exe (eDataSecurity Service) . (.HiTRSUT.) - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe =>.HiTRUST Inc.® SR - Auto [03/07/2007] [ 53248] eRecovery Service (eRecoveryService) . (.Acer Inc..) - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe =>.Acer Inc. SS - Demand [03/03/2009] [ 33176] getPlus(R) Helper (getPlus(R) Helper) . (.NOS Microsystems Ltd..) - C:\Program Files\NOS\bin\getPlus_HelperSvc.exe {034976D0066A8EA5B1AD813C3B89B656} =>.NOS Microsystems Ltd. SS - Auto [18/05/2016] [ 152216] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [18/05/2016] [ 152216] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Auto [17/01/2007] [ 61440] LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe =>.Hewlett-Packard Company SR - Auto [19/07/2006] [ 262247] Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004.) - C:\Program Files\CyberLink\Shared Files\RichVideo.exe SR - Auto [18/02/2015] [ 315488] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl® ---\\ Processus lancés (21) - 2s [MD5.581B9BE9E92A0F3856CC85EC011EDC6F] - (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) -- C:\Windows\System32\Ati2evxx.exe [610304] [PID.1052] =>.ATI Technologies Inc. [MD5.581B9BE9E92A0F3856CC85EC011EDC6F] - (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) -- C:\Windows\System32\Ati2evxx.exe [610304] [PID.1464] =>.ATI Technologies Inc. [MD5.46EAC4B8E96DC32381B39775330DB901] - (...) -- C:\Acer\Empowering Technology\SysMonitor.exe [326440] [PID.1192] =>.Acer Incorporated® [MD5.E090EE780714E376062198C6625D5B51] - (.HiTRUST - eDataSecurity System Loader( Load and prepa.) -- C:\Acer\Empowering Technology\eDataSecurity\eDSLoader.exe [457216] [PID.1228] =>.HiTRUST [MD5.12916E0642E92561C98B18A2A2D01B14] - (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [252848] [PID.1252] =>.Oracle America, Inc.® [MD5.7C98599DC1B7C7103A52B2C0BF462C56] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [49152] [PID.1620] =>.Advanced Micro Devices Inc. [MD5.F9FF84C1377C9CDD6046750321F52021] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe [31683168] [PID.944] =>.Skype Software Sarl® [MD5.1F014EA12ECB13C909DA9395E9CD3D18] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [6278424] [PID.1932] =>.Piriform Ltd® [MD5.F0EA603E7B91046CA48EA4B3593A007D] - (.Micro Application - .) -- C:\Program Files\Micro Application\LauncherMA.exe [485376] [PID.1820] =>.Micro Application [MD5.361E3CEBB39804FEE11D94322F4CA968] - (.Acer Inc. - Acer Empowering Techonology Framework Launc.) -- C:\Acer\Empowering Technology\ACER.EMPOWERING.FRAMEWORK.SUPERVISOR.EXE [323584] [PID.2256] =>.Acer Inc. [MD5.4F779AD993A2975D945EE6985CAC0FEA] - (.Acer Inc. - eRecovery agent.) -- C:\Acer\Empowering Technology\eRecovery\eRAgent.exe [397312] [PID.2280] =>.Acer Inc. [MD5.517D30057C726C797764BFD70A55D82A] - (.CyberLink - CLMSServer.) -- C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe [269448] [PID.2296] =>.CyberLink [MD5.D72B2DAE9E73C58D6E09C3D782AA1E23] - (.Copyright © 2006 - MemCheck.Service.) -- C:\Acer\Empowering Technology\ePerformance\MemCheck.exe [28672] [PID.2316] [MD5.DB5BEA73EDAF19AC68B2C0FAD0F92B1A] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [390504] [PID.2412] =>.Apple Inc.® [MD5.F54907AA07F60AFF81E1E09E97AF98B0] - (.HiTRSUT - eDataSecurity Service.) -- C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe [457512] [PID.2448] =>.HiTRUST Inc.® [MD5.793FF718477345CD5D232C50BED1E452] - (.Hewlett-Packard Company - .) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe [61440] [PID.2512] =>.Hewlett-Packard Company [MD5.C1C132455200AD4704142442C89D0FA4] - (.Copyright 2004 - RichVideo Module.) -- C:\Program Files\CyberLink\Shared Files\RichVideo.exe [262247] [PID.2652] [MD5.A7B084BFBBD582A843D2F5C35220F962] - (.Acer Inc. - eRecoveryService.) -- C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe [53248] [PID.2916] =>.Acer Inc. [MD5.BE9A6C91999C1FB796F980C794E7DB9C] - (.ATI Technologies Inc. - Catalyst Control Centre: Host application.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe [49152] [PID.3744] =>.ATI Technologies Inc. [MD5.2D5C8C564EBE3BCAA7B8B10DCCE38799] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\sup\AppData\Roaming\ZHP\ZHPDiag3.exe [2211840] [PID.596] =>.Nicolas Coolman [MD5.50FCC5C822A6B4FC6F377EE9F9F37C7B] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [152216] [PID.3552] =>.Google Inc® ---\\ Google Chrome, Démarrage,Recherche,Extensions (19) - 0s G0 - GCSP: Preferences [User Data\Default][HomePage] http://accounts.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://pagead2.googlesyndication.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://scontent-cdg2-1.xx.fbcdn.net G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.facebook.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.fr G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.sosvirus.net G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [cehdakiococlfmjcbebbkjkfjhbieknh] Battlefield Heroes G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (2) - 1s P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_13_0_0_182.dll =>.Adobe Systems Incorporated P2 - FPN: [HKLM] [@pandonetworks.com/PandoWebPlugin] - (.Pando Networks Inc..) -- C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll =>.Pando Networks Inc. ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (18) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://global.acer.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.fr.acer.yahoo.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = http://www.google.com R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2 ---\\ Internet Explorer,Proxy Management (5) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\System32\Userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl" ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (20) ---\\ Browser Helper Object de navigateur (BHO) (3) - 0s O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\ssv.dll =>.Oracle America, Inc.® O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} . (.HiTRUST - ActiveToolBand Module.) -- C:\Windows\System32\ActiveToolBand.dll =>.HiTRUST O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\jp2ssv.dll =>.Oracle America, Inc.® ---\\ Internet Explorer, Barre d'outil (1) - 0s O3 - Toolbar: 0xB1C218236549D4119B18009027A5CD4F - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} . (...) -- (.not file.) ---\\ Applications lancées au démarrage du système (33) - 2s O4 - HKLM\..\Run: [Windows Defender] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe =>.Microsoft Windows® O4 - HKLM\..\Run: [Acer Empowering Technology Monitor] . (...) -- C:\Acer\Empowering Technology\SysMonitor.exe =>.Acer Incorporated® O4 - HKLM\..\Run: [eDataSecurity Loader] . (.HiTRUST - eDataSecurity System Loader( Load and prepa.) -- C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe =>.HiTRUST O4 - HKLM\..\Run: [PCMMediaSharing] . (...) -- C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\PCMMediaSharing.exe O4 - HKLM\..\Run: [Acer Tour] (Orphean) O4 - HKLM\..\Run: [Apanel] C:\ACERSW\config\SetApanel.cmd (.not file.) O4 - HKLM\..\Run: [StartCCC] . (...) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe O4 - HKLM\..\Run: [WarReg_PopUp] . (.Acer Inc. - WR_PopUp.) -- C:\Acer\WR_PopUp\WarReg_PopUp.exe =>.Acer Inc. O4 - HKLM\..\Run: [eRecoveryService] (Orphean) O4 - HKLM\..\Run: [Acer Tour Reminder] . (.Acer Inc. - Acer Tour Reminder.) -- C:\Acer\AcerTour\Reminder.exe =>.Acer Inc. O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.® O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKCU\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehtray.exe =>.Microsoft Corporation O4 - HKCU\..\Run: [Acer Tour Reminder] (Orphean) O4 - HKCU\..\Run: [MsnMsgr] C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe (.not file.) O4 - HKCU\..\Run: [mssagig] c:\users\sup\appdata\local\mssagig.exe (.not file.) O4 - HKCU\..\Run: [MoneyAgent] C:\Program Files\Microsoft Money\System\mnyexpr.exe (.not file.) O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd® O4 - HKUS\.DEFAULT\..\Run: [Acer Tour Reminder] . (.Acer Inc. - Acer Tour Reminder.) -- C:\Acer\AcerTour\Reminder.exe =>.Acer Inc. O4 - HKUS\S-1-5-18\..\Run: [Acer Tour Reminder] . (.Acer Inc. - Acer Tour Reminder.) -- C:\Acer\AcerTour\Reminder.exe =>.Acer Inc. O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-4023261460-746696566-2971954482-1000\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-4023261460-746696566-2971954482-1000\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehtray.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-4023261460-746696566-2971954482-1000\..\Run: [Acer Tour Reminder] (Orphean) O4 - HKUS\S-1-5-21-4023261460-746696566-2971954482-1000\..\Run: [MsnMsgr] C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe (.not file.) O4 - HKUS\S-1-5-21-4023261460-746696566-2971954482-1000\..\Run: [mssagig] c:\users\sup\appdata\local\mssagig.exe (.not file.) O4 - HKUS\S-1-5-21-4023261460-746696566-2971954482-1000\..\Run: [MoneyAgent] C:\Program Files\Microsoft Money\System\mnyexpr.exe (.not file.) O4 - HKUS\S-1-5-21-4023261460-746696566-2971954482-1000\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - HKUS\S-1-5-21-4023261460-746696566-2971954482-1000\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd® ---\\ Raccourcis Global Startup (29) - 5s O4 - GS\Desktop [Administrateur]: AusLogics Disk Defrag.lnk . (...) C:\Program Files\Auslogics\AusLogics Disk Defrag\diskdefrag.exe O4 - GS\Desktop [Administrateur]: OpenOffice.org Calc.lnk . (...) C:\Program Files\OpenOffice.org 2.4\program\scalc.exe O4 - GS\Desktop [Administrateur]: OpenOffice.org Writer.lnk . (...) C:\Program Files\OpenOffice.org 2.4\program\swriter.exe O4 - GS\Desktop [Administrateur]: PhotoFiltre Studio X.lnk . (.PhotoFiltre - PhotoFiltre Studio X.) C:\Program Files\PhotoFiltre Studio X\pfstudiox.exe =>.PhotoFiltre O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\sup\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\Startup [Administrateur]: Lanceur.lnk . (.Micro Application - .) C:\Program Files\Micro Application\LauncherMA.exe =>.Micro Application O4 - GS\Desktop [sup]: AusLogics Disk Defrag.lnk . (...) C:\Program Files\Auslogics\AusLogics Disk Defrag\diskdefrag.exe O4 - GS\Desktop [sup]: OpenOffice.org Calc.lnk . (...) C:\Program Files\OpenOffice.org 2.4\program\scalc.exe O4 - GS\Desktop [sup]: OpenOffice.org Writer.lnk . (...) C:\Program Files\OpenOffice.org 2.4\program\swriter.exe O4 - GS\Desktop [sup]: PhotoFiltre Studio X.lnk . (.PhotoFiltre - PhotoFiltre Studio X.) C:\Program Files\PhotoFiltre Studio X\pfstudiox.exe =>.PhotoFiltre O4 - GS\Desktop [sup]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\sup\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [sup]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\sendTo [sup]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\Startup [sup]: Lanceur.lnk . (.Micro Application - .) C:\Program Files\Micro Application\LauncherMA.exe =>.Micro Application O4 - GS\CommonDesktop [Public]: Acer Arcade Live.lnk . (...) C:\Program Files\Acer Arcade Live\Acer Arcade Live Main Page\Acer Arcade Live.mcl O4 - GS\CommonDesktop [Public]: Acer Tour.lnk . (.Copyright (C) 2006 - Acer Tour.) C:\Acer\AcerTour\AcerTour.exe O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd® O4 - GS\CommonDesktop [Public]: Empowering Technology.lnk . (.Acer Inc. - Acer Empowering Techonology Framework Launc.) C:\Acer\Empowering Technology\Acer.Empowering.Framework.Supervisor.exe =>.Acer Inc. O4 - GS\CommonDesktop [Public]: EPSON File Manager.lnk . (.SEIKO EPSON CORPORATION - EPSON File Manager.) C:\Program Files\epson\Creativity Suite\File Manager\EFileManager.exe =>.Seiko Epson Corporation O4 - GS\CommonDesktop [Public]: EPSON Scan.lnk . (.SEIKO EPSON CORP. - EPSON Scan.) C:\Windows\twain_32\escndv\escndv.exe =>.SEIKO EPSON CORP. O4 - GS\CommonDesktop [Public]: eSobi v2.lnk . (.Macrovision Corporation - InstallShield.) C:\Windows\Installer\{15D967B5-A4BE-42AE-9E84-64CD062B25AA}\esobi_app_desktop_15D967B5A4BE42AE9E8464CD062B25AA.exe =>.Macrovision Corporation O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\CommonDesktop [Public]: Installation du Contrôle Parental.lnk . (.InstallShield Software Corporation - InstallShield (R) Setup Launcher.) C:\Program Files\Securitoo\Controle Parental\Controle_parental.exe =>.Optenet, S.A.® O4 - GS\CommonDesktop [Public]: Je me forme au PC avec Windows Vista.lnk . (...) C:\Program Files\Micro Application\Je me forme au PC avec Windows Vista\Formation Windows Vista et Internet.exe O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}\SkypeIcon.exe O4 - GS\Startup [Public]: Empowering Technology Launcher.lnk . (.Acer Inc. - Acer eAP Launch Tool.) C:\Acer\Empowering Technology\eAPLauncher.exe =>.Acer Incorporated® O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\System32\taskschd.msc ---\\ Modification Domaine/Adresses DNS (2) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{C2B218E3-51B5-434A-8775-34E10D41BD45}: DhcpNameServer = 192.168.1.1 192.168.1.1 ---\\ Protocole additionnel (25) - 0s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- c:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll =>.Microsoft Corporation O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype4COM.) -- C:\Program Files\Common Files\Skype\Skype4COM.dll =>.Skype Software Sarl® O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Logiciels installés (71) - 21s O42 - Logiciel: Acer Arcade Live Main Page - (.Acer Inc..) [HKLM] -- {EFBDC2B0-FAA8-4B78-8DE1-AEBE7958FA37} =>.Acer Inc. O42 - Logiciel: Acer DV Magician - (.Acer Inc..) [HKLM] -- {F6EFFB76-4A07-11DA-9D78-000129760D75} =>.Acer Inc. O42 - Logiciel: Acer DVDivine - (.Acer Inc..) [HKLM] -- {B145EC69-66F5-11D8-9D75-000129760D75} =>.Acer Inc. O42 - Logiciel: Acer eDataSecurity Management - (.HiTRUST Inc..) [HKLM] -- {AEEAE013-92F1-4515-B278-139F1A692A36} =>.HiTRUST Inc.® O42 - Logiciel: Acer Empowering Technology - (.Acer Inc..) [HKLM] -- {AB6097D9-D722-4987-BD9E-A076E2848EE2} =>.Acer Inc. O42 - Logiciel: Acer ePerformance Management - (.Acer Inc..) [HKLM] -- {D462BF9E-0C35-4705-BF9B-3DF9F3816643} =>.Acer Inc. O42 - Logiciel: Acer HomeMedia - (.Acer Inc..) [HKLM] -- {AA4BF92B-2AAF-11DA-9D78-000129760D75} =>.Acer Inc. O42 - Logiciel: Acer HomeMedia Connect - (.Acer Inc..) [HKLM] -- {132888AE-EF67-41C5-BCA2-7D5D2488AB63} =>.Acer Inc. O42 - Logiciel: Acer ScreenSaver - (.Acer Inc..) [HKLM] -- {79DD56FC-DB8B-47F5-9C80-78B62E05F9BC} =>.Acer Inc. O42 - Logiciel: Acer SlideShow DVD - (.Acer Inc..) [HKLM] -- {41581EF5-45A7-11DA-9D78-000129760D75} =>.Acer Inc. O42 - Logiciel: Acer Tour - (.Acer Inc..) [HKLM] -- {94389919-B0AA-4882-9BE8-9F0B004ECA35} =>.Acer Inc. O42 - Logiciel: Acer VideoMagician - (.Acer Inc..) [HKLM] -- {F79A208D-D929-11D9-9D77-000129760D75} =>.Acer Inc. O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 13 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin =>.Adobe Systems Incorporated® O42 - Logiciel: ATI Catalyst Install Manager - (.ATI Technologies, Inc..) [HKLM] -- {4160DC5B-4C56-D0C3-C5FD-F5BDAD3C882B} =>.ATI Technologies, Inc. O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {79155F2B-9895-49D7-8612-D92580E0DE5B} =>.Apple Inc. O42 - Logiciel: Camera RAW Plug-In for EPSON Creativity Suite - (...) [HKLM] -- {8DAC1AE4-33D1-4A78-8A42-00E09EDECC3E} O42 - Logiciel: Catalyst Control Center Core Implementation - (.ATI.) [HKLM] -- {1355EDEA-47AF-C760-F679-EF573C74746A} =>.ATI O42 - Logiciel: Catalyst Control Center Graphics Full Existing - (.ATI.) [HKLM] -- {D3261A3E-9B08-AE79-A3FB-80179A585A5D} =>.ATI O42 - Logiciel: Catalyst Control Center Graphics Full New - (.ATI.) [HKLM] -- {197A0218-F4A7-59A5-1BEE-F4D681DDD1E7} =>.ATI O42 - Logiciel: Catalyst Control Center Graphics Light - (.ATI.) [HKLM] -- {75A40056-A32E-1852-4ADC-F795E1446FEF} =>.ATI O42 - Logiciel: Catalyst Control Center Graphics Previews Vista - (.ATI.) [HKLM] -- {13B8311B-4B73-E6D2-EEC2-2AC52EEF1CDD} =>.ATI O42 - Logiciel: Catalyst Control Center Localization Danish - (.ATI.) [HKLM] -- {B22094E7-117B-5D18-3A0A-C811937113AD} =>.ATI O42 - Logiciel: Catalyst Control Center Localization Dutch - (.ATI.) [HKLM] -- {DF8849AF-F8B8-7466-BA31-7C8F755B0E69} =>.ATI O42 - Logiciel: Catalyst Control Center Localization Finnish - (.ATI.) [HKLM] -- {DD555562-299E-C58A-847B-B6C05957A65E} =>.ATI O42 - Logiciel: Catalyst Control Center Localization French - (.ATI.) [HKLM] -- {E8D4696B-0140-033C-C170-A2FA601DC425} =>.ATI O42 - Logiciel: Catalyst Control Center Localization German - (.ATI.) [HKLM] -- {D3E8C04E-E5B9-3A71-6A64-E774F90B1895} =>.ATI O42 - Logiciel: Catalyst Control Center Localization Italian - (.ATI.) [HKLM] -- {6BA3A2B0-3E1E-EA79-EC7D-52A61BB51AE1} =>.ATI O42 - Logiciel: Catalyst Control Center Localization Japanese - (.ATI.) [HKLM] -- {4CDDFF57-4026-96AB-CED3-CC5A08A405E8} =>.ATI O42 - Logiciel: Catalyst Control Center Localization Norwegian - (.ATI.) [HKLM] -- {4DD0182F-1F08-C6BE-3C3A-68B4CB455F50} =>.ATI O42 - Logiciel: Catalyst Control Center Localization Spanish - (.ATI.) [HKLM] -- {A51E4CE7-395C-DCBE-428E-38D061009C59} =>.ATI O42 - Logiciel: Catalyst Control Center Localization Swedish - (.ATI.) [HKLM] -- {C2AC4582-FDA5-29A9-1C61-97631871A871} =>.ATI O42 - Logiciel: ccc-core-static - (.Nom de votre société.) [HKLM] -- {7C8E4518-0FF0-6320-7DF6-A9A590D67D52} O42 - Logiciel: ccc-utility - (.ATI.) [HKLM] -- {98076F38-8493-0AF7-41C4-6172F8D1F410} =>.ATI O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: Complément Microsoft Word pour Microsoft Works Suite - (.Microsoft Corporation.) [HKLM] -- {F6B1CD0F-DB2D-4666-A168-C46390AD8C4A} =>.Microsoft Corporation O42 - Logiciel: EPSON Attach To Email - (.SEIKO EPSON.) [HKLM] -- {20C45B32-5AB6-46A4-94EF-58950CAF05E5} =>.SEIKO EPSON O42 - Logiciel: EPSON Attach To Email - (.SEIKO EPSON.) [HKLM] -- InstallShield_{20C45B32-5AB6-46A4-94EF-58950CAF05E5} =>.SEIKO EPSON O42 - Logiciel: EPSON Copy Utility 3 - (...) [HKLM] -- {67EDD823-135A-4D59-87BD-950616D6E857} O42 - Logiciel: EPSON Easy Photo Print - (...) [HKLM] -- {B66E665A-DF96-4C38-9422-C7F74BC1B4E5} O42 - Logiciel: EPSON File Manager - (...) [HKLM] -- {2EB81825-E9EE-44F4-8F51-1240C3898DC6} O42 - Logiciel: EPSON Logiciel imprimante - (.SEIKO EPSON Corporation.) [HKLM] -- EPSON Printer and Utilities =>.SEIKO EPSON Corporation® O42 - Logiciel: EPSON Scan - (...) [HKLM] -- EPSON Scanner =>.SEIKO EPSON Corporation® O42 - Logiciel: EPSON Scan Assistant - (...) [HKLM] -- {2A88F1BF-7041-4E42-84B1-6B4ACB83AC64} O42 - Logiciel: eSobi v2 - (.esobi Inc..) [HKLM] -- {15D967B5-A4BE-42AE-9E84-64CD062B25AA} =>.esobi Inc. O42 - Logiciel: eSobi v2 - (.esobi Inc..) [HKLM] -- InstallShield_{15D967B5-A4BE-42AE-9E84-64CD062B25AA} =>.esobi Inc. O42 - Logiciel: FileZilla Client 3.7.3 - (.Tim Kosse.) [HKLM] -- FileZilla Client =>.Tim Kosse O42 - Logiciel: getPlus(R) for Adobe - (.NOS Microsystems Ltd..) [HKLM] -- {CF40ACC5-E1BB-4aff-AC72-04C2F616BCA7} {034976D0066A8EA5B1AD813C3B89B656} =>.NOS Microsystems Ltd. O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect O42 - Logiciel: Java 7 Update 17 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83217017FF} =>.Oracle O42 - Logiciel: Java Auto Updater - (.Sun Microsystems, Inc..) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Sun Microsystems, Inc. O42 - Logiciel: Je me forme au PC avec Windows Vista - (.Micro Application.) [HKLM] -- {EF479360-3731-45DB-8E97-7C42469D8834} =>.Micro Application O42 - Logiciel: LauncherMA - (.Micro Application.) [HKLM] -- {C06EFB22-B5DB-46C5-9215-BCB5C19C0858} =>.Micro Application O42 - Logiciel: LightScribe 1.4.142.1 - (.http://www.lightscribe.com.) [HKLM] -- {CE386A4E-D0DA-4208-8235-BCE43275C694} =>.http://www.lightscribe.com O42 - Logiciel: Microsoft Antimalware Service FR-FR Language Pack - (.Microsoft Corporation.) [HKLM] -- {A4526B5A-89C0-4F4B-9E6E-4F883374D5F9} =>.Microsoft Corporation O42 - Logiciel: Microsoft Picture It! Photo 7.0 - (.Microsoft Corporation.) [HKLM] -- {369B36BE-3D64-4641-9AEA-808D436FE132} =>.Microsoft Corporation O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {6B1CB38D-E2E4-4a30-933D-EFDEBA76AD9C} =>.Microsoft Corporation O42 - Logiciel: Microsoft Works 7.0 - (.Microsoft Corporation.) [HKLM] -- {64D114CE-4234-45C2-B60A-2B07D5A48F72} =>.Microsoft Corporation O42 - Logiciel: MSXML 4.0 SP2 (KB936181) - (.Microsoft Corporation.) [HKLM] -- {C04E32E0-0416-434D-AFB9-6969D703A9EF} =>.Microsoft Corporation O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} =>.Microsoft Corporation O42 - Logiciel: Notepad++ - (.Notepad++ Team.) [HKLM] -- Notepad++ =>.Notepad++ Team O42 - Logiciel: OpenOffice.org 2.4 - (.OpenOffice.org.) [HKLM] -- {A122962F-331A-4C2E-93DB-AD92D8A4FB14} =>.OpenOffice.org O42 - Logiciel: OS Pack Works Suite - (.Microsoft Corporation.) [HKLM] -- {E38D381A-ABCF-4D97-9D9C-B3A8529DCA15} =>.Microsoft Corporation O42 - Logiciel: PhotoFiltre Studio X - (...) [HKCU] -- PhotoFiltre Studio X O42 - Logiciel: Sélecteur d'installation de Microsoft Works Suite 2003 - (...) [HKLM] -- Works2003Setup O42 - Logiciel: Skins - (.ATI.) [HKLM] -- {22FA3E58-DB68-A4D1-2DEE-07E876C64D53} =>.ATI O42 - Logiciel: Skype™ 7.3 - (.Skype Technologies S.A..) [HKLM] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} =>.Skype Technologies S.A. O42 - Logiciel: Visual Studio 2012 x86 Redistributables - (.AVG Technologies CZ, s.r.o..) [HKLM] -- {98EFF19A-30AB-4E4B-B943-F06B1C63EBF8} =>.AVG Technologies CZ, s.r.o. O42 - Logiciel: WinRAR 5.00 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver =>.win.rar GmbH® ---\\ HKCU & HKLM Software Keys (118) - 21s HKLM\SOFTWARE\Acer HKLM\SOFTWARE\Acer Inc. HKLM\SOFTWARE\AdsFix HKLM\SOFTWARE\AdwCleaner HKLM\SOFTWARE\Apple Inc. HKLM\SOFTWARE\ATI HKLM\SOFTWARE\ATI Technologies HKLM\SOFTWARE\Avg Secure Update HKLM\SOFTWARE\BitDefender HKLM\SOFTWARE\Boonty HKLM\SOFTWARE\COKTEL HKLM\SOFTWARE\CyberLink HKLM\SOFTWARE\Dofus2 HKLM\SOFTWARE\Electronic Arts HKLM\SOFTWARE\EPSON HKLM\SOFTWARE\FileZilla 3 HKLM\SOFTWARE\FileZilla Client HKLM\SOFTWARE\FRANCE TELECOM HKLM\SOFTWARE\GEAR Software HKLM\SOFTWARE\Google HKLM\SOFTWARE\IM Providers HKLM\SOFTWARE\InstallShield HKLM\SOFTWARE\Intel HKLM\SOFTWARE\Intel Corporation HKLM\SOFTWARE\Inventel HKLM\SOFTWARE\JavaSoft HKLM\SOFTWARE\JreMetrics HKLM\SOFTWARE\LightScribe HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\Micro Application HKLM\SOFTWARE\MimarSinan HKLM\SOFTWARE\Mooii HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\mozilla.org HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\muvee Technologies HKLM\SOFTWARE\NewTech Infosystems HKLM\SOFTWARE\NOS HKLM\SOFTWARE\Notepad++ HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\OpenOffice.org HKLM\SOFTWARE\Pando Networks HKLM\SOFTWARE\ParisHilton HKLM\SOFTWARE\Piriform HKLM\SOFTWARE\Red Storm Entertainment HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\SECURITOO HKLM\SOFTWARE\Skype HKLM\SOFTWARE\Sonic HKLM\SOFTWARE\SRS Labs HKLM\SOFTWARE\Symantec HKLM\SOFTWARE\SymDebug HKLM\SOFTWARE\SymNRT HKLM\SOFTWARE\Sysinternals HKLM\SOFTWARE\TeamViewer HKLM\SOFTWARE\Thomson HKLM\SOFTWARE\Trolltech HKLM\SOFTWARE\WholeSecurity HKLM\SOFTWARE\Windows HKLM\SOFTWARE\WinRAR HKLM\SOFTWARE\WinU HKLM\SOFTWARE\Wow6432Node HKLM\SOFTWARE\Yahoo =>.Yahoo! HKCU\SOFTWARE\Acer HKCU\SOFTWARE\AcerUtil HKCU\SOFTWARE\AdsFix HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\ATI HKCU\SOFTWARE\ATI Technologies Inc. HKCU\SOFTWARE\AusLogics HKCU\SOFTWARE\Avast Software HKCU\SOFTWARE\Bitdefender HKCU\SOFTWARE\Boonty HKCU\SOFTWARE\Bugsplat HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\EPSON HKCU\SOFTWARE\eSobi HKCU\SOFTWARE\Facebook HKCU\SOFTWARE\fcn =>Adware.Navipromo HKCU\SOFTWARE\Google HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\MDO HKCU\SOFTWARE\Micro Application HKCU\SOFTWARE\Mooii HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\NewTech Infosystems HKCU\SOFTWARE\NOS HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\OpenOffice.org HKCU\SOFTWARE\Pando Networks HKCU\SOFTWARE\ParisHilton HKCU\SOFTWARE\PhotoFiltre Studio X HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\SecuROM HKCU\SOFTWARE\SEIKO EPSON HKCU\SOFTWARE\Skype HKCU\SOFTWARE\SkypeRS HKCU\SOFTWARE\Softwin HKCU\SOFTWARE\Symantec HKCU\SOFTWARE\Sysinternals HKCU\SOFTWARE\TeamViewer HKCU\SOFTWARE\TechSmith HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Yahoo =>.Yahoo! HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Aurigma HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\JavaSoft HKCU\SOFTWARE\AppDataLow\Software\Yahoo ---\\ Contenu des dossiers Programmes (216) - 47s O43 - CFD: 10/07/2007 - [] D -- C:\Program Files\Acer Arcade Live O43 - CFD: 05/12/2007 - [] D -- C:\Program Files\Acer Inc O43 - CFD: 10/07/2007 - [] D -- C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites O43 - CFD: 29/07/2009 - [] D -- C:\Program Files\Alwil Software O43 - CFD: 05/12/2007 - [] D -- C:\Program Files\ATI =>.ATI Technologies, Inc® O43 - CFD: 05/12/2007 - [] D -- C:\Program Files\ATI Technologies O43 - CFD: 09/02/2011 - [] D -- C:\Program Files\BeDesk Express Facturation 2011 O43 - CFD: 17/07/2008 - [] D -- C:\Program Files\BitDefender O43 - CFD: 01/08/2014 - [] D -- C:\Program Files\Bonjour =>.Apple Inc.® O43 - CFD: 24/08/2011 - [] D -- C:\Program Files\BoontyGames O43 - CFD: 12/05/2015 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd® O43 - CFD: 02/10/2014 - [] D -- C:\Program Files\Common Files O43 - CFD: 10/07/2007 - [] D -- C:\Program Files\CyberLink O43 - CFD: 05/11/2014 - [] D -- C:\Program Files\EA Games O43 - CFD: 20/04/2015 - [] D -- C:\Program Files\epson O43 - CFD: 10/07/2007 - [] D -- C:\Program Files\eSobi =>.Websurf Technology Inc.® O43 - CFD: 05/12/2007 - [0] SHD -- C:\Program Files\Fichiers communs O43 - CFD: 13/12/2013 - [] D -- C:\Program Files\FileZilla FTP Client O43 - CFD: 09/08/2014 - [] D -- C:\Program Files\Google =>.Google Inc® O43 - CFD: 13/03/2013 - [0] D -- C:\Program Files\GUMA13E.tmp O43 - CFD: 05/08/2014 - [] HD -- C:\Program Files\InstallShield Installation Information =>.CyberLink® O43 - CFD: 17/10/2009 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 29/02/2008 - [] D -- C:\Program Files\Inventel O43 - CFD: 14/03/2013 - [] D -- C:\Program Files\Java =>.Oracle America, Inc.® O43 - CFD: 03/08/2009 - [] D -- C:\Program Files\Micro Application O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Microsoft Games O43 - CFD: 21/02/2012 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 05/03/2013 - [] D -- C:\Program Files\Microsoft Picture It! 7 =>.Microsoft Corporation® O43 - CFD: 09/03/2008 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition O43 - CFD: 23/10/2010 - [] D -- C:\Program Files\Microsoft Visual Studio O43 - CFD: 23/10/2010 - [] D -- C:\Program Files\Microsoft Visual Studio 8 O43 - CFD: 07/05/2015 - [] D -- C:\Program Files\Microsoft Works O43 - CFD: 12/06/2008 - [] D -- C:\Program Files\Microsoft Works Suite 2003 O43 - CFD: 23/10/2010 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Movie Maker O43 - CFD: 23/10/2010 - [] D -- C:\Program Files\MSBuild O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\MSN {61060830000400000066} O43 - CFD: 01/03/2008 - [0] D -- C:\Program Files\MSXML 4.0 O43 - CFD: 03/06/2009 - [] D -- C:\Program Files\NOS {034976D0066A8EA5B1AD813C3B89B656} O43 - CFD: 15/12/2013 - [] D -- C:\Program Files\Notepad++ O43 - CFD: 29/07/2008 - [] D -- C:\Program Files\OpenOffice.org 2.4 O43 - CFD: 21/02/2012 - [] D -- C:\Program Files\Orange O43 - CFD: 03/11/2013 - [] D -- C:\Program Files\Pando Networks O43 - CFD: 26/12/2013 - [] D -- C:\Program Files\PhotoFiltre Studio X O43 - CFD: 10/07/2007 - [] D -- C:\Program Files\Realtek O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 17/07/2009 - [] D -- C:\Program Files\Securitoo =>.Optenet, S.A.® O43 - CFD: 20/04/2015 - [] RD -- C:\Program Files\Skype =>.Skype Software Sarl® O43 - CFD: 15/12/2013 - [] D -- C:\Program Files\TeamViewer O43 - CFD: 20/04/2015 - [] D -- C:\Program Files\theHunter O43 - CFD: 02/11/2006 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Windows Calendar O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Windows Collaboration O43 - CFD: 10/07/2007 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Windows® O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 12/05/2015 - [] D -- C:\Program Files\Windows Live =>.Microsoft Corporation® O43 - CFD: 01/03/2008 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 13/08/2009 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 05/12/2007 - [] D -- C:\Program Files\Windows NT O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Windows Photo Gallery O43 - CFD: 01/03/2008 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 08/09/2013 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 21/02/2012 - [] D -- C:\Program Files\Yahoo! =>.Yahoo! Inc.® O43 - CFD: 21/02/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 10/07/2007 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Arcade Live O43 - CFD: 05/12/2007 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Empowering Technology O43 - CFD: 10/07/2007 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AcerSystem O43 - CFD: 02/11/2006 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 24/08/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BoontyGames O43 - CFD: 05/12/2007 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center O43 - CFD: 01/03/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Install Manager O43 - CFD: 12/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 25/01/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\COKTEL O43 - CFD: 20/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON O43 - CFD: 27/01/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Creativity Suite O43 - CFD: 27/01/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Scan O43 - CFD: 10/07/2007 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eSobi v2 O43 - CFD: 02/11/2006 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Extras and Upgrades O43 - CFD: 13/12/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client O43 - CFD: 10/07/2007 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 29/02/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Livebox O43 - CFD: 02/11/2006 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 17/12/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Micro Application O43 - CFD: 23/10/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 10/12/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works O43 - CFD: 15/12/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ O43 - CFD: 29/07/2008 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 2.4 O43 - CFD: 27/07/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Orange O43 - CFD: 26/12/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre Studio X O43 - CFD: 02/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 29/07/2008 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 05/08/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sécurité Internet 2009 O43 - CFD: 03/08/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sécurité Internet 2009 Edition 2010 O43 - CFD: 02/11/2006 - [] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 12/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live O43 - CFD: 08/09/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 01/08/2014 - [] D -- C:\ProgramData\Apple O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 05/12/2007 - [] D -- C:\ProgramData\ATI O43 - CFD: 29/05/2016 - [] D -- C:\ProgramData\AVAST Software O43 - CFD: 27/04/2015 - [] D -- C:\ProgramData\Avg_Update_0215pit O43 - CFD: 06/05/2015 - [] D -- C:\ProgramData\Avg_Update_0415avt O43 - CFD: 05/12/2007 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 27/04/2015 - [] HD -- C:\ProgramData\Common Files O43 - CFD: 10/07/2007 - [] D -- C:\ProgramData\CyberLink O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 27/01/2008 - [] D -- C:\ProgramData\EPSON O43 - CFD: 27/01/2008 - [] D -- C:\ProgramData\eSobi O43 - CFD: 05/12/2007 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 06/08/2014 - [] D -- C:\ProgramData\Google O43 - CFD: 14/12/2014 - [] D -- C:\ProgramData\Hunter O43 - CFD: 03/10/2013 - [] D -- C:\ProgramData\LogMeIn O43 - CFD: 05/12/2007 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 18/05/2016 - [] D -- C:\ProgramData\MFAData O43 - CFD: 05/08/2010 - [] D -- C:\ProgramData\Micro Application O43 - CFD: 14/03/2013 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 20/05/2016 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 05/12/2007 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 28/07/2009 - [] D -- C:\ProgramData\NortonInstaller O43 - CFD: 03/06/2009 - [] D -- C:\ProgramData\NOS O43 - CFD: 20/04/2015 - [] D -- C:\ProgramData\Skype O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 14/03/2013 - [] D -- C:\ProgramData\Sun O43 - CFD: 02/11/2006 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 27/01/2008 - [] D -- C:\ProgramData\UDL O43 - CFD: 09/03/2008 - [] D -- C:\ProgramData\WLInstaller O43 - CFD: 19/07/2010 - [] D -- C:\ProgramData\{429CAD59-35B1-4DBC-BB6D-1DB246563521} O43 - CFD: 17/07/2008 - [] D -- C:\Program Files\Common Files\BitDefender O43 - CFD: 23/10/2010 - [] D -- C:\Program Files\Common Files\DESIGNER O43 - CFD: 27/01/2008 - [] D -- C:\Program Files\Common Files\InstallShield O43 - CFD: 14/03/2013 - [] D -- C:\Program Files\Common Files\Java O43 - CFD: 10/07/2007 - [] D -- C:\Program Files\Common Files\LightScribe O43 - CFD: 02/05/2008 - [] D -- C:\Program Files\Common Files\Micro Application Shared O43 - CFD: 12/05/2015 - [] D -- C:\Program Files\Common Files\microsoft shared O43 - CFD: 01/08/2014 - [] D -- C:\Program Files\Common Files\NewTech Infosystems O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Common Files\Services O43 - CFD: 02/10/2014 - [] D -- C:\Program Files\Common Files\Skype O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 29/07/2008 - [] D -- C:\Program Files\Common Files\Symantec Shared O43 - CFD: 15/03/2013 - [] D -- C:\Program Files\Common Files\System O43 - CFD: 01/02/2010 - [] D -- C:\Program Files\Common Files\Windows Live O43 - CFD: 09/03/2008 - [] SHDC -- C:\Program Files\Common Files\WindowsLiveInstaller O43 - CFD: 12/05/2015 - [] D -- C:\Users\sup\AppData\Roaming\.ascentia O43 - CFD: 11/11/2014 - [] D -- C:\Users\sup\AppData\Roaming\.lifecraft O43 - CFD: 04/10/2014 - [] D -- C:\Users\sup\AppData\Roaming\.minecraft O43 - CFD: 05/11/2009 - [] D -- C:\Users\sup\AppData\Roaming\Adobe O43 - CFD: 26/01/2008 - [0] D -- C:\Users\sup\AppData\Roaming\AdobeUM O43 - CFD: 05/12/2007 - [] D -- C:\Users\sup\AppData\Roaming\ATI O43 - CFD: 29/07/2008 - [] D -- C:\Users\sup\AppData\Roaming\Auslogics O43 - CFD: 21/07/2008 - [] D -- C:\Users\sup\AppData\Roaming\CyberLink O43 - CFD: 26/01/2014 - [] D -- C:\Users\sup\AppData\Roaming\EPSON O43 - CFD: 12/05/2015 - [] D -- C:\Users\sup\AppData\Roaming\FileZilla O43 - CFD: 20/04/2013 - [] D -- C:\Users\sup\AppData\Roaming\Google O43 - CFD: 21/12/2008 - [] D -- C:\Users\sup\AppData\Roaming\Icone O43 - CFD: 06/05/2010 - [] D -- C:\Users\sup\AppData\Roaming\Icones O43 - CFD: 26/12/2013 - [] D -- C:\Users\sup\AppData\Roaming\Identities O43 - CFD: 17/03/2014 - [0] D -- C:\Users\sup\AppData\Roaming\InstallDir O43 - CFD: 27/01/2008 - [] D -- C:\Users\sup\AppData\Roaming\InstallShield O43 - CFD: 05/12/2007 - [] D -- C:\Users\sup\AppData\Roaming\Macromedia O43 - CFD: 02/11/2006 - [0] D -- C:\Users\sup\AppData\Roaming\Media Center Programs O43 - CFD: 02/05/2008 - [0] D -- C:\Users\sup\AppData\Roaming\Micro Application O43 - CFD: 08/12/2014 - [] SD -- C:\Users\sup\AppData\Roaming\Microsoft O43 - CFD: 28/10/2013 - [] D -- C:\Users\sup\AppData\Roaming\Mozilla O43 - CFD: 15/12/2013 - [] D -- C:\Users\sup\AppData\Roaming\Notepad++ O43 - CFD: 02/12/2014 - [] D -- C:\Users\sup\AppData\Roaming\OpenOffice.org2 O43 - CFD: 16/01/2008 - [0] D -- C:\Users\sup\AppData\Roaming\PeerNetworking O43 - CFD: 26/12/2013 - [] D -- C:\Users\sup\AppData\Roaming\PhotoFiltre Studio X O43 - CFD: 11/05/2014 - [] D -- C:\Users\sup\AppData\Roaming\PhotoScape O43 - CFD: 03/11/2013 - [] D -- C:\Users\sup\AppData\Roaming\Riot Games O43 - CFD: 29/05/2016 - [] D -- C:\Users\sup\AppData\Roaming\Skype O43 - CFD: 12/05/2015 - [] D -- C:\Users\sup\AppData\Roaming\TeamViewer O43 - CFD: 26/01/2008 - [] D -- C:\Users\sup\AppData\Roaming\Template O43 - CFD: 14/12/2014 - [] D -- C:\Users\sup\AppData\Roaming\theHunter O43 - CFD: 27/04/2015 - [] D -- C:\Users\sup\AppData\Roaming\TuneUp Software O43 - CFD: 09/09/2013 - [] D -- C:\Users\sup\AppData\Roaming\WinRAR O43 - CFD: 30/05/2016 - [] D -- C:\Users\sup\AppData\Roaming\ZHP O43 - CFD: 21/07/2008 - [] D -- C:\Users\sup\AppData\Local\Acer Arcade Live O43 - CFD: 21/04/2014 - [] D -- C:\Users\sup\AppData\Local\Adobe O43 - CFD: 17/08/2014 - [] D -- C:\Users\sup\AppData\Local\Ankama O43 - CFD: 19/07/2010 - [] D -- C:\Users\sup\AppData\Local\Apple O43 - CFD: 05/12/2007 - [0] SHD -- C:\Users\sup\AppData\Local\Application Data O43 - CFD: 05/12/2007 - [] D -- C:\Users\sup\AppData\Local\ATI O43 - CFD: 23/07/2015 - [] D -- C:\Users\sup\AppData\Local\Avg O43 - CFD: 20/04/2015 - [] D -- C:\Users\sup\AppData\Local\Clavier+ O43 - CFD: 12/05/2015 - [] D -- C:\Users\sup\AppData\Local\Facebook O43 - CFD: 29/05/2016 - [] D -- C:\Users\sup\AppData\Local\Google O43 - CFD: 05/12/2007 - [0] SHD -- C:\Users\sup\AppData\Local\Historique O43 - CFD: 03/10/2013 - [] D -- C:\Users\sup\AppData\Local\LogMeIn O43 - CFD: 18/05/2016 - [] D -- C:\Users\sup\AppData\Local\LogMeIn Hamachi O43 - CFD: 27/04/2015 - [] D -- C:\Users\sup\AppData\Local\MFAData O43 - CFD: 27/04/2015 - [] D -- C:\Users\sup\AppData\Local\Microsoft O43 - CFD: 18/02/2008 - [] D -- C:\Users\sup\AppData\Local\Microsoft Games O43 - CFD: 18/07/2008 - [0] D -- C:\Users\sup\AppData\Local\Microsoft Help O43 - CFD: 28/10/2013 - [] D -- C:\Users\sup\AppData\Local\Mozilla O43 - CFD: 05/12/2007 - [] D -- C:\Users\sup\AppData\Local\PowerCinema O43 - CFD: 05/11/2014 - [] D -- C:\Users\sup\AppData\Local\PunkBuster O43 - CFD: 05/03/2014 - [] D -- C:\Users\sup\AppData\Local\Skype O43 - CFD: 30/05/2016 - [] D -- C:\Users\sup\AppData\Local\Temp O43 - CFD: 05/12/2007 - [0] SHD -- C:\Users\sup\AppData\Local\Temporary Internet Files O43 - CFD: 03/03/2008 - [] D -- C:\Users\sup\AppData\Local\VirtualStore O43 - CFD: 02/11/2006 - [] RD -- C:\Users\sup\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 05/12/2007 - [] RD -- C:\Users\sup\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 09/02/2011 - [] D -- C:\Users\sup\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BeDesk Express Facturation 2011 O43 - CFD: 25/01/2009 - [] D -- C:\Users\sup\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\COKTEL O43 - CFD: 17/08/2014 - [] D -- C:\Users\sup\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dofus2 O43 - CFD: 02/11/2006 - [] RD -- C:\Users\sup\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 15/12/2013 - [0] D -- C:\Users\sup\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ O43 - CFD: 26/12/2013 - [0] D -- C:\Users\sup\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre Studio X O43 - CFD: 18/08/2014 - [] RD -- C:\Users\sup\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 08/09/2013 - [] D -- C:\Users\sup\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 14/03/2013 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Google O43 - CFD: 04/11/2013 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\LogMeIn Hamachi O43 - CFD: 03/11/2009 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft O43 - CFD: 10/07/2007 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\PowerCinema ---\\ Enumération des clés StartupReg (2) - 0s O53 - SMSR:HKLM\...\startupreg\WeatherDPA [Key] . (...) -- C:\Program Files\Zango\bin\10.3.37.0\Weather.exe (.not file.) =>PUP.Optional.Zango O53 - SMSR:HKLM\...\startupreg\ZangoOE [Key] . (...) -- C:\Program Files\Zango\bin\10.3.37.0\OEAddOn.exe (.not file.) =>PUP.Optional.Zango ---\\ Liste des pilotes du système (74) - 7s O58 - SDL:2006/11/02 11:51:38 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [420968] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:51:32 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297576] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:35 A . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) -- C:\Windows\System32\drivers\adpu160m.sys [98408] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:51:00 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [147048] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:49:20 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14952] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:09 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [67688] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:10 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [67688] =>.Microsoft Windows® O58 - SDL:2007/07/27 23:36:38 A . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [2929664] =>.ATI Technologies Inc. O58 - SDL:2006/11/02 10:24:45 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] =>.Brother Industries, Ltd. O58 - SDL:2006/11/02 10:24:46 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] =>.Brother Industries, Ltd. O58 - SDL:2006/11/02 10:25:24 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [71808] =>.Brother Industries Ltd. O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] =>.Brother Industries Ltd. O58 - SDL:2006/11/02 10:24:44 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] =>.Brother Industries Ltd. O58 - SDL:2006/11/02 10:24:47 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] =>.Brother Industries Ltd. O58 - SDL:2006/11/02 11:49:28 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [16488] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:11 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [71272] =>.Microsoft Windows® O58 - SDL:2006/11/02 09:30:54 A . (.Intel Corporation - Pilote désérialisé NDIS 6 de la carte Intel.) -- C:\Windows\System32\drivers\E1G60I32.sys [117760] =>.Intel Corporation O58 - SDL:2006/11/02 11:51:34 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [316520] =>.Microsoft Windows® O58 - SDL:2009/05/18 13:17:00 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\drivers\GEARAspiWDM.sys [26600] =>.GEAR Software Inc.® O58 - SDL:2009/03/18 18:35:40 AH . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\Windows\System32\drivers\hamachi.sys [26176] =>.LogMeIn, Inc.® O58 - SDL:2006/11/02 11:50:10 A . (.Hewlett-Packard Company - Smart Array Storport Driver.) -- C:\Windows\System32\drivers\HpCISSs.sys [37480] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:51:25 A . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) -- C:\Windows\System32\drivers\iaStorV.sys [232040] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:17 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41576] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:07 A . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\System32\drivers\iteatapi.sys [35944] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:09 A . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\System32\drivers\iteraid.sys [35944] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:04 A . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [65640] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:05 A . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [65640] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:10 A . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [65640] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:49:53 A . (.LSI Logic Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [28776] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:49:59 A . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\Mraid35x.sys [33384] =>.Microsoft Windows® O58 - SDL:2006/09/29 09:59:35 A . (.Marvell Semiconductor, Inc - NDIS 5.1 driver.) -- C:\Windows\System32\drivers\MRVW225.sys [299904] O58 - SDL:2006/11/02 11:50:19 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [45160] =>.Microsoft Windows® O58 - SDL:2007/07/10 15:36:42 A . (.NewTech Infosystems, Inc. - NTI CD-ROM Filter Driver.) -- C:\Windows\System32\drivers\NTIDrvr.sys [6144] =>.NewTech InfoSystems, Inc. O58 - SDL:2006/11/02 09:36:50 A . (.N-trig Innovative Technologies - Pilote intégré de digitalisateur de tablett.) -- C:\Windows\System32\drivers\ntrigdigi.sys [20608] =>.N-trig Innovative Technologies O58 - SDL:2006/11/02 11:50:24 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [88680] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:13 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [40040] =>.Microsoft Windows® O58 - SDL:2006/11/28 22:46:22 N . (.Printing Communications Assoc., Inc. (PCAUSA) - PCAUSA NDIS 5.0 MPR Protocol Driver.) -- C:\Windows\System32\drivers\PCAMp50.sys [28224] =>.PRINTING COMMUNICATIONS ASSOC., INC.® O58 - SDL:2006/11/28 22:46:20 N . (.Printing Communications Assoc., Inc. (PCAUSA) - PCAUSA NDIS 5.0 SPR Protocol Driver.) -- C:\Windows\System32\drivers\PCASp50.sys [27072] =>.PRINTING COMMUNICATIONS ASSOC., INC.® O58 - SDL:2007/04/25 16:34:38 A . (.HiTRUST - PSD Filter Driver.) -- C:\Windows\System32\drivers\psdfilter.sys [20776] =>.HiTRUST Inc.® O58 - SDL:2007/04/25 16:34:44 A . (.HiTRUST - PSD Named Pipe Driver.) -- C:\Windows\System32\drivers\PSDNServ.sys [16680] =>.HiTRUST Inc.® O58 - SDL:2007/04/25 16:34:40 A . (.HiTRUST - PSD Virtual Disk Driver.) -- C:\Windows\System32\drivers\psdvdisk.sys [60712] =>.HiTRUST Inc.® O58 - SDL:2006/11/02 11:51:45 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [900712] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:35 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106088] =>.Microsoft Windows® O58 - SDL:2006/11/02 08:37:21 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2007/01/24 11:08:06 A . (.Silicon Integrated Systems Corporation - SiS AGPv3.5 Filter.) -- C:\Windows\System32\drivers\SISAGPX.SYS [56184] =>.Silicon Integrated Systems Corporation O58 - SDL:2007/01/22 10:09:08 A . (.Silicon Integrated Systems Corp. - NDIS 6.0 Miniport Driver for SiS191/SiS190.) -- C:\Windows\System32\drivers\SiSGB6.sys [46592] =>.Silicon Integrated Systems Corp. O58 - SDL:2007/06/05 13:08:56 A . (.Silicon Integrated Systems Corporation - SiS VGA Kernal Mode Vista Driver.) -- C:\Windows\System32\drivers\SISGRKMD.sys [454520] =>.Silicon Integrated Systems Corporation O58 - SDL:2006/11/02 11:50:10 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [38504] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:16 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [71784] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:05 A . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) -- C:\Windows\System32\drivers\symc8xx.sys [35944] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:49:56 A . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_hi.sys [31848] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:03 A . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_u3.sys [34920] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:51:25 A . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\System32\drivers\uliahci.sys [235112] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:35 A . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win200.) -- C:\Windows\System32\drivers\ulsata.sys [98408] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:45 A . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\System32\drivers\ulsata2.sys [115816] =>.Microsoft Windows® O58 - SDL:2014/06/10 21:50:24 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl.sys [45056] =>.Apple, Inc. O58 - SDL:2006/11/02 11:49:30 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17512] =>.Microsoft Windows® O58 - SDL:2006/11/02 11:50:41 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR X86-32.) -- C:\Windows\System32\drivers\vsmraid.sys [112232] =>.Microsoft Windows® O58 - SDL:2006/11/02 09:09:42 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:2006/11/02 09:09:45 A . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:2015/08/03 12:12:32 AH . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\Windows\System32\hamachi.sys [26176] =>.LogMeIn, Inc.® O58 - SDL:2006/11/02 09:09:41 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:2006/11/02 09:09:44 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:2006/11/02 09:09:29 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:2006/11/02 09:09:35 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:2006/11/02 09:09:38 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:2006/11/02 09:09:40 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:2006/11/02 09:09:31 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:2006/11/02 09:09:20 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:2006/11/02 09:09:23 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:2006/11/02 09:09:24 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:2006/11/02 09:09:26 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:2006/11/02 09:09:22 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (1) - 14s O61 - LFC: 2016/05/30 18:35:02 A . (..) -- C:\Users\sup\AppData\Local\ATI\ACE\Manifest.Bin [14114] ---\\ Associations Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (...) -- C:\Program Files\Orange\Launcher\Launcher.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (9) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Orange\Launcher\Launcher.exe -appid browser O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Recherche d'infection sur les navigateurs (8) - 5s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {2ec61f9f-edd6-4035-b020-2aaf8b3d60e4} - (YouGoo) - http://www.yougoo.fr/ =>PUP.Optional.YouGoo O69 - SBI: SearchScopes [HKCU] {4593A22E-AF0B-4614-9DE5-EBCE892D64B1} - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com/ O69 - SBI: SearchScopes [HKCU] {7C20EF0C-3E57-4748-B938-D3C499F417DC} - (Yahoo! Search) - http://search.yahoo.com/ =>.Yahoo Search O69 - SBI: SearchScopes [HKCU] {88e710b5-783d-49d1-8e26-4674d090a941} - (Searcheo) - http://www.searcheo.fr/ =>PUP.Optional.Searcheo O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ O69 - SBI: SearchScopes [HKLM] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com/ ---\\ Enumère les services démarrés par Svchost (31) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [24576] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [63488] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [245248] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [39936] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [39936] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [121344] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [569344] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [416768] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [310272] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d'accès distant.) -- C:\Windows\System32\rasmans.dll [234496] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [65536] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [47104] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\Windows\System32\ipnathlp.dll [286720] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242688] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes Termi.) -- C:\Windows\System32\termsrv.dll [427520] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1929952] =>.Microsoft Windows Component Publisher® O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [750080] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [245248] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [178688] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [19968] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [33280] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [111104] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [45056] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [152576] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [34816] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [161280] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [595456] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service de configuration des services Termi.) -- C:\Windows\System32\SessEnv.dll [92160] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [81408] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [69120] =>.Microsoft Corporation ---\\ Liste des exceptions du parefeu Windows (11) - 2s O87 - FAEL: "{08CE541C-C10F-4C2F-B105-150478454441}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe (.not file.) O87 - FAEL: "{72605CFB-7111-498E-B345-5DC865E4728D}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Windows Live\Messenger\livecall.exe (.not file.) O87 - FAEL: "{B42BA239-9D8E-44B0-8D09-82723E920B27}" [In-None-P17-TRUE] .(...) -- C:\Program Files\WinZip Driver Updater\winzipdu.exe (.not file.) O87 - FAEL: "TCP Query User{8660D750-69EF-4FD7-AC5F-B483DCEC9F49}C:\xampp\apache\bin\httpd.exe" [In-None-P6-TRUE] .(...) -- C:\xampp\apache\bin\httpd.exe (.not file.) O87 - FAEL: "UDP Query User{DE6DD306-4191-47C2-BB15-DF06992C9D5E}C:\xampp\apache\bin\httpd.exe" [In-None-P17-TRUE] .(...) -- C:\xampp\apache\bin\httpd.exe (.not file.) O87 - FAEL: "TCP Query User{673E66DE-F5DD-46B0-98F6-43418C3302D8}C:\xampp\mysql\bin\mysqld.exe" [In-None-P6-TRUE] .(...) -- C:\xampp\mysql\bin\mysqld.exe (.not file.) O87 - FAEL: "UDP Query User{2459170C-6069-4EE7-88FD-BD6C5810C97C}C:\xampp\mysql\bin\mysqld.exe" [In-None-P17-TRUE] .(...) -- C:\xampp\mysql\bin\mysqld.exe (.not file.) O87 - FAEL: "{3795AC36-9090-4650-8D1B-49004617B65F}" [In-None-P6-TRUE] .(...) -- C:\Windows\System32\PnkBstrB.exe (.not file.) O87 - FAEL: "{98757DC7-AD20-4639-AAB2-AA9D7C52C4A6}" [In-None-P17-TRUE] .(...) -- C:\Windows\System32\PnkBstrB.exe (.not file.) O87 - FAEL: "{E3514E0A-556E-4927-B820-753194103B19}" [In-None-P6-TRUE] .(...) -- C:\Program Files\AVG\AVG2015\avgmfapx.exe (.not file.) O87 - FAEL: "{6185ED2E-2AD1-4124-B4D4-CBF7E824441A}" [In-None-P17-TRUE] .(...) -- C:\Program Files\AVG\AVG2015\avgmfapx.exe (.not file.) ---\\ Scan Additionnel (6) - 0s HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect HKCU\SOFTWARE\fcn =>Adware.Navipromo HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2ec61f9f-edd6-4035-b020-2aaf8b3d60e4} =>PUP.Optional.YouGoo HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{88e710b5-783d-49d1-8e26-4674d090a941} =>PUP.Optional.Searcheo ---\\ Récapitulatif des éléments trouvés sur votre station (6) - 0s http://www.nicolascoolman.info/2016/04/22/heuristic-suspect/ =>Heuristic.Suspect http://www.nicolascoolman.fr/?p=965 =>Adware.Navipromo http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Downloader http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Zango http://www.nicolascoolman.fr/?p=1435 =>PUP.Optional.YouGoo http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Searcheo ~ End of the scan, 23389 items in 00h05mn03s (849)(0)