~ ZHPDiag v2016.5.13.96 Par Nicolas Coolman (2016/05/09) ~ Démarré par Administrateur (Administrator) (2016/05/15 19:32:11) ~ Site: http://www.nicolascoolman.com ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: F:\Documents and Settings\Administrateur\Bureau\ZHPDiag.txt ~ Rapport: F:\Documents and Settings\Administrateur\Application Data\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ Démarrage du système: Normal (Normal boot) Windows XP, 32-bit Service Pack 3 (Build 2600) ---\\ Navigateurs Internet (2) - 0s MFIE: Mozilla Firefox (3.0.3) v3.0.3 (fr) MSIE: Internet Explorer v7.0.5730.13 ---\\ Informations sur les produits Windows (3) - 1s Windows Automatic Updates : OK Windows Activation Technologies : KO Windows Genuine Advantage : KO ---\\ Logiciels de protection (2) - 2s Kaspersky Internet Security v15.0.2.361 Malwarebytes Anti-Malware version 2.2.1.1043 ---\\ Surveillance de Logiciels (2) - 2s Adobe Flash Player Plugin Adobe Reader 9 - Français ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 15 Model 6 Stepping 5, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 2061.484 MB (14% free) System Restore: Désactivé (Disabled) System drive F: has 9 GB () free of 37 GB =>Alerte espace disque inférieur à 20 Go ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: SWEET-93363ED41 ~ User Name: Administrateur ~ Logged in as Administrator ---\\ Enumération des unités disques (4) - 0s ~ Drive C: has 13 GB free of 25 GB ~ Drive D: has 7 GB free of 12 GB ~ Drive F: has 9 GB free of 37 GB (System) ~ Drive H: has 2 GB free of 3 GB ---\\ Etat du Centre de Sécurité Windows (8) - 0s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Recherche particulière de fichiers génériques (23) - 16s [MD5.BFBBBFE0913E6C9706F97598A6588B8F] - 27/09/2008 - (.Microsoft Corporation - Explorateur Windows.) -- F:\windows\Explorer.exe [1573888] =>.Microsoft Corporation [MD5.EFA551863AD71A69690A3685145FD378] - 27/09/2008 - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- F:\windows\System32\rundll32.exe [32256] =>.Microsoft Corporation [MD5.90B16FF3ACEC94B95BA95AA686442A47] - 27/09/2008 - (.Microsoft Corporation - Internet Extensions for Win32.) -- F:\windows\System32\wininet.dll [879616] =>.Microsoft Corporation [MD5.4BB6301D634C857A5089E8B24C5555E4] - 27/09/2008 - (.Microsoft Corporation - Application d'ouverture de session Windows.) -- F:\windows\System32\Winlogon.exe [593408] =>.Microsoft Corporation [MD5.B03E5AB30959E66A25AA6D30633A2047] - 28/07/2008 - (.Microsoft Corporation - DNS Client API DLL.) -- F:\windows\System32\dnsapi.dll [147968] =>.Microsoft Corporation [MD5.744B88B93D2A58A1EB84C11D48CA85C8] - 28/07/2008 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- F:\windows\System32\drivers\AFD.sys [138496] =>.Microsoft Corporation [MD5.9F3A2F5AA6875C72BF062C712CFA2674] - 27/09/2008 - (.Microsoft Corporation - IDE/ATAPI Port Driver.) -- F:\windows\System32\drivers\atapi.sys [96512] =>.Microsoft Corporation [MD5.C885B02847F5D2FD45A24E219ED93B32] - 14/04/2008 - (.Microsoft Corporation - CD-ROM File System Driver.) -- F:\windows\System32\drivers\Cdfs.sys [63744] =>.Microsoft Corporation [MD5.4B0A100EAF5C49EF3CCA8C641431EACC] - 02/05/2008 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- F:\windows\System32\drivers\Cdrom.sys [62976] =>.Microsoft Corporation [MD5.31F923EB2170FC172C81ABDA0045D18C] - 14/04/2008 - (.Microsoft Corporation - Pilote de cryptographie FIPS.) -- F:\windows\System32\drivers\Fips.sys [44672] =>.Microsoft Corporation [MD5.573C7D0A32852B48F3058CFD8026F511] - 14/04/2008 - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- F:\windows\System32\drivers\HDAudBus.sys [144384] [MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - 14/04/2008 - (.Microsoft Corporation - Pilote de port i8042.) -- F:\windows\System32\drivers\i8042prt.sys [54144] =>.Microsoft Corporation [MD5.083A052659F5310DD8B6A6CB05EDCF8E] - 14/04/2008 - (.Microsoft Corporation - IMAPI Kernel Driver.) -- F:\windows\System32\drivers\Imapi.sys [42112] =>.Microsoft Corporation [MD5.CC748EA12C6EFFDE940EE98098BF96BB] - 14/04/2008 - (.Microsoft Corporation - IP Network Address Translator.) -- F:\windows\System32\drivers\IpNat.sys [152832] =>.Microsoft Corporation [MD5.23C74D75E36E7158768DD63D92789A91] - 14/04/2008 - (.Microsoft Corporation - IPSec Driver.) -- F:\windows\System32\drivers\IPSec.sys [75264] =>.Microsoft Corporation [MD5.32ECB7D3C03532B4460E09E960A3B72E] - 30/07/2008 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- F:\windows\System32\drivers\MRxSmb.sys [455936] =>.Microsoft Corporation [MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - 14/04/2008 - (.Microsoft Corporation - MBT Transport driver.) -- F:\windows\System32\drivers\netBT.sys [162816] =>.Microsoft Corporation [MD5.A0857C97770034FD2AF17DC4014B5ABD] - 22/04/2008 - (.Microsoft Corporation - NT File System Driver.) -- F:\windows\System32\drivers\ntfs.sys [576384] =>.Microsoft Corporation [MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - 27/09/2008 - (.Microsoft Corporation - Pilote de port parallèle.) -- F:\windows\System32\drivers\Parport.sys [80384] =>.Microsoft Corporation [MD5.11B4A627BC9614B885C4969BFA5FF8A6] - 14/04/2008 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- F:\windows\System32\drivers\Rasl2tp.sys [51328] =>.Microsoft Corporation [MD5.15CABD0F7C00C47C70124907916AF3F1] - 27/09/2008 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- F:\windows\System32\drivers\rdpdr.sys [196224] =>.Microsoft Corporation [MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - 27/09/2008 - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) -- F:\windows\System32\drivers\redbook.sys [58752] =>.Microsoft Corporation [MD5.46DE1126684369BACE4849E4FC8C43CA] - 14/04/2008 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- F:\windows\System32\drivers\volsnap.sys [53376] =>.Microsoft Corporation ---\\ Liste des services NT non Microsoft et non désactivés (5) - 9s O23 - Service: Kaspersky Anti-Virus Service 15.0.2 (AVP15.0.2) . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) - F:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avp.exe =>.Kaspersky Lab® O23 - Service: CodeMeter Runtime Server (CodeMeter.exe) . (.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) - F:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe =>.WIBU-SYSTEMS AG® O23 - Service: (MBAMScheduler) . (.Malwarebytes - Malwarebytes Anti-Malware.) - F:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation® O23 - Service: (MBAMService) . (.Malwarebytes - Malwarebytes Anti-Malware.) - F:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® O23 - Service: Baidu Spark Service (SparkSvc) . (.Baidu Inc. - spark.) - F:\Program Files\baidu\Baidu Browser\sparkservice.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (8) - 70s SS - Demand [26/03/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - F:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SStop Pending - Auto [29/06/2015] [ 194000] Kaspersky Anti-Virus Service 15.0.2 (AVP15.0.2) . (.Kaspersky Lab ZAO.) - F:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avp.exe =>.Kaspersky Lab® SS - Demand [26/10/2012] [ 282112] BrYNSvc (BrYNSvc) . (.Brother Industries, Ltd..) - F:\Program Files\Browny02\BrYNSvc.exe =>.Brother Industries, Ltd. SR - Auto [19/07/2012] [ 2568120] CodeMeter Runtime Server (CodeMeter.exe) . (.WIBU-SYSTEMS AG.) - F:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe =>.WIBU-SYSTEMS AG® SR - Auto [10/03/2016] [ 1514464] (MBAMScheduler) . (.Malwarebytes.) - F:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation® SR - Auto [10/03/2016] [ 1136608] (MBAMService) . (.Malwarebytes.) - F:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® SR - Auto [29/02/2016] [ 97080] Baidu Spark Service (SparkSvc) . (.Baidu Inc..) - F:\Program Files\baidu\Baidu Browser\sparkservice.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® ---\\ Processus lancés (21) - 32s [MD5.A98D23910862BE46A333D9EB1398C57E] - (.Brother Industries, Ltd. - ControlCenter Main Process.) -- F:\Program Files\ControlCenter4\BrCtrlCntr.exe [505856] [PID.1120] =>.Brother Industries, Ltd. [MD5.360959BBD4F451E1AB811F4304232766] - (.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- F:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe [2568120] [PID.1088] =>.WIBU-SYSTEMS AG® [MD5.260440CBC6512C43B55F4AEBD45F3999] - (.Intel Corporation - hkcmd Module.) -- F:\WINDOWS\system32\hkcmd.exe [164352] [PID.1172] =>.Intel Corporation [MD5.3760DFC12A4DDA6101EFAC4AA28BB5FC] - (.Intel Corporation - persistence Module.) -- F:\WINDOWS\system32\igfxpers.exe [141312] [PID.1264] =>.Intel Corporation [MD5.9611577752E293259C7DCE19E9026362] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- F:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464] [PID.612] =>.Malwarebytes Corporation® [MD5.8EE66B490856B2823DF82BF1B747A738] - (.Brother Industries, Ltd. - ControlCenter UX System.) -- F:\Program Files\ControlCenter4\BrCcUxSys.exe [1448960] [PID.1972] =>.Brother Industries, Ltd. [MD5.F1A89A34388B5626F1548D393B23ECB1] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- F:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1136608] [PID.1012] =>.Malwarebytes Corporation® [MD5.F8E600B84423DB740BDAA7637F415D07] - (.Baidu Inc. - spark.) -- F:\Program Files\baidu\Baidu Browser\sparkservice.exe [97080] [PID.1076] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® [MD5.8E98E3EC16D2641005B4748CD330FB45] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- F:\Program Files\Malwarebytes Anti-Malware\mbam.exe [9926112] [PID.720] =>.Malwarebytes Corporation® [MD5.636FC1D18EB84795D23BA0B2769C593B] - (.Copyright (C) 2011 - spark.) -- F:\Program Files\baidu\Baidu Browser\spark.exe [983352] [PID.3376] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® [MD5.636FC1D18EB84795D23BA0B2769C593B] - (.Copyright (C) 2011 - spark.) -- F:\Program Files\baidu\Baidu Browser\spark.exe [983352] [PID.2496] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® [MD5.636FC1D18EB84795D23BA0B2769C593B] - (.Copyright (C) 2011 - spark.) -- F:\Program Files\baidu\Baidu Browser\spark.exe [983352] [PID.2528] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® [MD5.636FC1D18EB84795D23BA0B2769C593B] - (.Copyright (C) 2011 - spark.) -- F:\Program Files\baidu\Baidu Browser\spark.exe [983352] [PID.3512] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® [MD5.636FC1D18EB84795D23BA0B2769C593B] - (.Copyright (C) 2011 - spark.) -- F:\Program Files\baidu\Baidu Browser\spark.exe [983352] [PID.2688] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® [MD5.636FC1D18EB84795D23BA0B2769C593B] - (.Copyright (C) 2011 - spark.) -- F:\Program Files\baidu\Baidu Browser\spark.exe [983352] [PID.3480] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® [MD5.9543EEEB505C19834098A7A3C2CFF066] - (.azinfos - RAHAB ABDEL AZIZ.) -- F:\Program Files\AZIFOS\AZCOMPTEUR\AZCOMPTEUR.exe [2974720] [PID.1428] [MD5.636FC1D18EB84795D23BA0B2769C593B] - (.Copyright (C) 2011 - spark.) -- F:\Program Files\baidu\Baidu Browser\spark.exe [983352] [PID.1332] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® [MD5.636FC1D18EB84795D23BA0B2769C593B] - (.Copyright (C) 2011 - spark.) -- F:\Program Files\baidu\Baidu Browser\spark.exe [983352] [PID.2796] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® [MD5.C5942E02F11B1A68460D56F7A2D825DC] - (.Nicolas Coolman - ZHPDiag.) -- F:\Documents and Settings\Administrateur\Mes documents\ZHPDiag3.exe [2205184] [PID.5088] =>.Nicolas Coolman [MD5.9E48F55883EDB4ABD09CF461D332A663] - (.©1999-2015 Jonathan Bennett & AutoIt Team - Aut2Exe.) -- F:\Documents and Settings\Administrateur\Application Data\Microsoft\wuapp.exe [382464] [PID.4332] [MD5.636FC1D18EB84795D23BA0B2769C593B] - (.Copyright (C) 2011 - spark.) -- F:\Program Files\baidu\Baidu Browser\spark.exe [983352] [PID.5324] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (27) - 12s M0 - MFSP: prefs.js [Administrateur - mteietq8.default] http://www.google.fr/ M1 - SPR:Search Page Redirection - F:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} P2 - EXT: (.mozilla.org - Default Plug-in.) -- F:\Program Files\Mozilla Firefox\Plugins\npnul32.dll =>.Mozilla Corporation® P2 - EXT: (.Microsoft Corporation - Office Plugin for Netscape Navigator.) -- F:\Program Files\Mozilla Firefox\Plugins\NPOFF12.DLL =>.Microsoft Corporation® P2 - EXT: (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape.) -- F:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll =>.Adobe Systems, Incorporated® P2 - EXT: (...) -- F:\Program Files\Mozilla Firefox\Plugins\nppdf32.FRA P2 - EXT: (.RealNetworks, Inc. - RealPlayer(tm) LiveConnect-Enabled Plug-In.) -- F:\Program Files\Mozilla Firefox\Plugins\nppl3260.dll =>.RealNetworks, Inc. P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- F:\Program Files\Mozilla Firefox\Plugins\npqtplugin.dll =>.Apple Inc. P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- F:\Program Files\Mozilla Firefox\Plugins\npqtplugin2.dll =>.Apple Inc. P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- F:\Program Files\Mozilla Firefox\Plugins\npqtplugin3.dll =>.Apple Inc. P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- F:\Program Files\Mozilla Firefox\Plugins\npqtplugin4.dll =>.Apple Inc. P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- F:\Program Files\Mozilla Firefox\Plugins\npqtplugin5.dll =>.Apple Inc. P2 - EXT: (.RealNetworks, Inc. - 6.0.12.46.) -- F:\Program Files\Mozilla Firefox\Plugins\nprpjplug.dll =>.RealNetworks, Inc. P2 - EXT: (...) -- F:\Program Files\Mozilla Firefox\Plugins\QuickTimePlugin.class P2 - EXT: (.Reid Rankin, Michael McDonald - Adblock Filterset.G Updater.) -- F:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\mteietq8.default\extensions\filtersetg@updater P2 - EXT: (.Todd Agulnick - Foxmarks Bookmark Synchronizer.) -- F:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\mteietq8.default\extensions\foxmarks@kei.com P2 - EXT: (. - Snap Links (EladKarako Mod).) -- F:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\mteietq8.default\extensions\snaplinks@snaplinks.net P2 - EXT: (.Doron Rosenberg - Gmail Notifier.) -- F:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\mteietq8.default\extensions\{44d0a1b4-9c90-4f86-ac92-8680b5d6549e} P2 - EXT: (.Hong Jen Yee (PCMan) - IE Tab.) -- F:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\mteietq8.default\extensions\{77b819fa-95ad-4f2c-ac7c-486b356188a9} P2 - EXT: (.Michel Gutierrez - DownloadHelper.) -- F:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\mteietq8.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} =>.Michel Gutierrez P2 - EXT: (.Wladimir Palant - Adblock Plus.) -- F:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\mteietq8.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} P2 - EXT: (.Federico Parodi, Stefano Verna, Nils Maier - DownThemAll!.) -- F:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\mteietq8.default\extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8} P2 - EXT: (.Aaron Boodman; http://youngpup.net/ - Greasemonkey.) -- F:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\mteietq8.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781} P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- F:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll =>.Adobe Systems Incorporated P2 - FPN: [HKLM] [@kaspersky.com/content_blocker_663BE8] - (.kaspersky.com.) -- F:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\content_blocker@kaspersky.com =>.kaspersky.com P2 - FPN: [HKLM] [@kaspersky.com/online_banking_08806E] - (.kaspersky.com.) -- F:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\online_banking@kaspersky.com =>.kaspersky.com P2 - FPN: [HKLM] [@kaspersky.com/virtual_keyboard_074028] - (.kaspersky.com.) -- F:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\virtual_keyboard@kaspersky.com =>.kaspersky.com ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (12) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com.ph/intl/en R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 0 ---\\ Internet Explorer,Proxy Management (6) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=F:\windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=F:\windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl" ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (20) ---\\ Browser Helper Object de navigateur (BHO) (6) - 4s O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- F:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll =>.Adobe Systems, Incorporated® O2 - BHO: VirtualKeyboardBrowserHelperObject - {4A66AD60-A03D-4D01-86F0-5F0F7C0EF1AD} . (.Kaspersky Lab ZAO - Cumulative module contains VK, CB and OB pl.) -- F:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\IEExt\ie_plugin.dll =>.Kaspersky Lab® O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- F:\Program Files\Java\jre1.6.0_07\bin\ssv.dll =>.Sun Microsystems, Inc.® O2 - BHO: ContentBlockerBrowserHelperObject - {93BC2EA7-2F17-4729-948A-D2E03FFB2412} . (.Kaspersky Lab ZAO - Cumulative module contains VK, CB and OB pl.) -- F:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\IEExt\ie_plugin.dll =>.Kaspersky Lab® O2 - BHO: Safe Money Plugin - {AB379017-4C03-4E00-8EDF-E6D6AF7CCF82} . (.Kaspersky Lab ZAO - Cumulative module contains VK, CB and OB pl.) -- F:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\IEExt\ie_plugin.dll =>.Kaspersky Lab® O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} . (.IniCom Networks, Inc. - .) -- F:\Program Files\FlashFXP\IEFlash.dll {6A65DB17031C8BAD0E047B21CC6EF556} ---\\ Applications lancées au démarrage du système (14) - 1s O4 - HKLM\..\Run: [ControlCenter4] . (.Brother Industries, Ltd. - ControlCenter Launcher.) -- F:\Program Files\ControlCenter4\BrCcBoot.exe =>.Brother Industries, Ltd. O4 - HKLM\..\Run: [KernelFaultCheck] F:\windows\system32\dumprep 0 -k (.not file.) O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- F:\WINDOWS\system32\igfxtray.exe =>.Intel Corporation O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- F:\WINDOWS\system32\igfxpers.exe =>.Intel Corporation O4 - HKCU\..\Run: [Skype] F:\Program Files\Skype\Phone\Skype.exe (.not file.) O4 - HKUS\.DEFAULT\..\RunOnce: [JkDefrag] rundll32 advpack.dll O4 - HKUS\.DEFAULT\..\RunOnce: [SweetRegistry] rundll32 advpack.dll O4 - HKUS\S-1-5-18\..\RunOnce: [JkDefrag] rundll32 advpack.dll O4 - HKUS\S-1-5-18\..\RunOnce: [SweetRegistry] rundll32 advpack.dll O4 - HKUS\S-1-5-19\..\RunOnce: [JkDefrag] rundll32 advpack.dll O4 - HKUS\S-1-5-19\..\RunOnce: [SweetRegistry] rundll32 advpack.dll O4 - HKUS\S-1-5-20\..\RunOnce: [JkDefrag] rundll32 advpack.dll O4 - HKUS\S-1-5-20\..\RunOnce: [SweetRegistry] rundll32 advpack.dll O4 - HKUS\S-1-5-21-682003330-583907252-1177238915-500\..\Run: [Skype] F:\Program Files\Skype\Phone\Skype.exe (.not file.) ---\\ Raccourcis Global Startup (43) - 26s O4 - GS\Desktop [Administrateur]: Microsoft Office Word 2007.lnk . (...) F:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\Desktop [Administrateur]: New Folder Removal Tool.lnk . (...) F:\Program Files\New Folder Removal Tool\NewFolderRemovalTool.exe O4 - GS\Desktop [Administrateur]: Protection bancaire.lnk . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) F:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avpui.exe =>.Kaspersky Lab® O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) F:\Documents and Settings\Administrateur\Application Data\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Desktop [Administrateur]: تاريخ مؤسسة سونلغاز.docx.lnk . (...) F:\Documents and Settings\Administrateur\Bureau\تاريخ مؤسسة سونلغاز.docx O4 - GS\Quicklaunch [Administrateur]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) F:\Program Files\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O4 - GS\Quicklaunch [Administrateur]: FlashFXP.lnk . (.IniCom Networks, Inc. - FlashFXP.) F:\Program Files\FlashFXP\FlashFXP.exe O4 - GS\Quicklaunch [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) F:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [Administrateur]: PuTTY.lnk . (.Simon Tatham - SSH, Telnet and Rlogin client.) F:\Program Files\PuTTY\PuTTY.exe =>.Simon Tatham O4 - GS\Quicklaunch [Administrateur]: SABnzbd.lnk . (...) F:\Program Files\SABnzbd\SABnzbd.exe O4 - GS\Startup [Administrateur]: Windows Update.lnk . (.©1999-2015 Jonathan Bennett & AutoIt Team - Aut2Exe.) F:\Documents and Settings\Administrateur\Application Data\Microsoft\wuapp.exe O4 - GS\Desktop [HelpAssistant]: Microsoft Office Word 2007.lnk . (...) F:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\Desktop [HelpAssistant]: New Folder Removal Tool.lnk . (...) F:\Program Files\New Folder Removal Tool\NewFolderRemovalTool.exe O4 - GS\Desktop [HelpAssistant]: Protection bancaire.lnk . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) F:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avpui.exe =>.Kaspersky Lab® O4 - GS\Desktop [HelpAssistant]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) F:\Documents and Settings\Administrateur\Application Data\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Desktop [HelpAssistant]: تاريخ مؤسسة سونلغاز.docx.lnk . (...) F:\Documents and Settings\Administrateur\Bureau\تاريخ مؤسسة سونلغاز.docx O4 - GS\Quicklaunch [HelpAssistant]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) F:\Program Files\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O4 - GS\Quicklaunch [HelpAssistant]: FlashFXP.lnk . (.IniCom Networks, Inc. - FlashFXP.) F:\Program Files\FlashFXP\FlashFXP.exe O4 - GS\Quicklaunch [HelpAssistant]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) F:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [HelpAssistant]: PuTTY.lnk . (.Simon Tatham - SSH, Telnet and Rlogin client.) F:\Program Files\PuTTY\PuTTY.exe =>.Simon Tatham O4 - GS\Quicklaunch [HelpAssistant]: SABnzbd.lnk . (...) F:\Program Files\SABnzbd\SABnzbd.exe O4 - GS\Startup [HelpAssistant]: Windows Update.lnk . (.©1999-2015 Jonathan Bennett & AutoIt Team - Aut2Exe.) F:\Documents and Settings\Administrateur\Application Data\Microsoft\wuapp.exe O4 - GS\Desktop [SUPPORT_388945a0]: Microsoft Office Word 2007.lnk . (...) F:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\Desktop [SUPPORT_388945a0]: New Folder Removal Tool.lnk . (...) F:\Program Files\New Folder Removal Tool\NewFolderRemovalTool.exe O4 - GS\Desktop [SUPPORT_388945a0]: Protection bancaire.lnk . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) F:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avpui.exe =>.Kaspersky Lab® O4 - GS\Desktop [SUPPORT_388945a0]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) F:\Documents and Settings\Administrateur\Application Data\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Desktop [SUPPORT_388945a0]: تاريخ مؤسسة سونلغاز.docx.lnk . (...) F:\Documents and Settings\Administrateur\Bureau\تاريخ مؤسسة سونلغاز.docx O4 - GS\Quicklaunch [SUPPORT_388945a0]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) F:\Program Files\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O4 - GS\Quicklaunch [SUPPORT_388945a0]: FlashFXP.lnk . (.IniCom Networks, Inc. - FlashFXP.) F:\Program Files\FlashFXP\FlashFXP.exe O4 - GS\Quicklaunch [SUPPORT_388945a0]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) F:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [SUPPORT_388945a0]: PuTTY.lnk . (.Simon Tatham - SSH, Telnet and Rlogin client.) F:\Program Files\PuTTY\PuTTY.exe =>.Simon Tatham O4 - GS\Quicklaunch [SUPPORT_388945a0]: SABnzbd.lnk . (...) F:\Program Files\SABnzbd\SABnzbd.exe O4 - GS\Startup [SUPPORT_388945a0]: Windows Update.lnk . (.©1999-2015 Jonathan Bennett & AutoIt Team - Aut2Exe.) F:\Documents and Settings\Administrateur\Application Data\Microsoft\wuapp.exe O4 - GS\CommonDesktop [Public]: AZCOMPTEUR.lnk . (.azinfos - RAHAB ABDEL AZIZ.) F:\Program Files\AZIFOS\AZCOMPTEUR\AZCOMPTEUR.exe O4 - GS\CommonDesktop [Public]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) F:\Program Files\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O4 - GS\CommonDesktop [Public]: Brother Creative Center.lnk . (...) F:\Program Files\Brother\CreativeCenter\Brother Creative Center.url O4 - GS\CommonDesktop [Public]: Facebook.lnk . (.Copyright (C) 2011 - spark.) F:\Program Files\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O4 - GS\CommonDesktop [Public]: Google.lnk . (.Copyright (C) 2011 - spark.) F:\Program Files\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O4 - GS\CommonDesktop [Public]: Kaspersky Internet Security.lnk . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) F:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avpui.exe =>.Kaspersky Lab® O4 - GS\CommonDesktop [Public]: lm.lnk . (.Mozilla Corporation - Firefox.) F:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes - Malwarebytes Anti-Malware.) F:\Program Files\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\CommonDesktop [Public]: Version d’évaluation d’OmniJoin.lnk . (...) F:\Program Files\Brother\OmniJoin\OmniJoin.url O4 - GS\Programs [Public]: QuickPar.lnk . (.Peter B Clements - QuickPar (French).) F:\Program Files\QuickPar\QuickPar.exe ---\\ Modification Domaine/Adresses DNS (1) - 0s O17 - HKLM\System\CCS\Services\Tcpip\..\{70659F11-817C-4CDC-A60E-F7499E491E09}: NameServer = 4.2.2.3,4.2.2.4 ---\\ Protocole additionnel (27) - 11s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- F:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- F:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- F:\WINDOWS\system32\msvidctl.dll =>.Microsoft Corporation O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- F:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- F:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- F:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- F:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- F:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- F:\WINDOWS\system32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- F:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- F:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- F:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API.) -- F:\WINDOWS\system32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- F:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- F:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation® O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- F:\WINDOWS\system32\itss.dll =>.Microsoft Corporation O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- F:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- F:\WINDOWS\system32\msvidctl.dll =>.Microsoft Corporation O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- F:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation O18 - Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} . (.Microsoft Corporation - WIA Scripting Layer.) -- F:\WINDOWS\system32\wiascr.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- F:\WINDOWS\system32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- F:\WINDOWS\system32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- F:\WINDOWS\system32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- F:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- F:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} . (.Microsoft Corporation - DLL commune du shell Windows.) -- F:\WINDOWS\system32\shell32.dll =>.Microsoft Corporation O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- F:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Logiciels installés (54) - 52s O42 - Logiciel: Adobe Flash Player 21 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Reader 9 - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-A90000000001} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Shockwave Player - (.Adobe Systems Inc..) [HKLM] -- {54E4B63C-D252-454C-BE4F-468F102B331C} =>.Adobe Systems Inc. O42 - Logiciel: Archiveur WinRAR - (...) [HKLM] -- WinRAR archiver O42 - Logiciel: AZCOMPTEUR - (.Nom de votre société.) [HKLM] -- {4D8CD6DE-EB63-4979-ADA7-85FC7370C85F} O42 - Logiciel: Baidu Browser - (.Baidu Inc..) [HKLM] -- Spark =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O42 - Logiciel: Brother MFL-Pro Suite DCP-J152W - (.Brother Industries, Ltd..) [HKLM] -- {B742757A-7658-4E09-A51A-085CF0F7F4D3} =>.Macrovision Corporation® O42 - Logiciel: ClearType Tuning - (...) [HKLM] -- ClearTypeCPL O42 - Logiciel: Combined Community Codec Pack 2008-09-21 16:18 - (.CCCP Project.) [HKLM] -- Combined Community Codec Pack_is1 =>.CCCP Project O42 - Logiciel: CPU-Z - (...) [HKLM] -- CPUZ O42 - Logiciel: CurrPorts - (...) [HKLM] -- CurrPorts O42 - Logiciel: DAMN NFO Viewer Setup - (.DAMN.) [HKLM] -- {D5DE2E28-2BA1-4CF8-A4C5-D3D2AE0A9E38} =>.DAMN O42 - Logiciel: FlashFXP v3 - (.IniCom Networks, Inc..) [HKLM] -- {96E3AED5-3D0B-4BB0-84C2-1EDADB204487} O42 - Logiciel: GoRC - (...) [HKLM] -- GoRC O42 - Logiciel: GPU-Z - (...) [HKLM] -- GPUZ O42 - Logiciel: HD Tune - (...) [HKLM] -- HDTune O42 - Logiciel: HWMonitor - (...) [HKLM] -- HWMonitor O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- HDMI =>.Intel Corporation® O42 - Logiciel: Java(TM) 6 Update 7 - (.Sun Microsystems, Inc..) [HKLM] -- {3248F0A8-6813-11D6-A77B-00B0D0160070} =>.Sun Microsystems, Inc. O42 - Logiciel: JkDefrag - (...) [HKLM] -- JkDefrag O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM] -- {02FECEE0-16B2-43DB-BC3B-C844477FC142} =>.Kaspersky Lab O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM] -- InstallWIX_{02FECEE0-16B2-43DB-BC3B-C844477FC142} =>.Kaspersky Lab O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.1.1043 - (.Malwarebytes.) [HKLM] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes O42 - Logiciel: MemTest - (...) [HKLM] -- MemTest O42 - Logiciel: Microsoft DirectX Control Panel 9.0c - (...) [HKLM] -- DirectXCPL O42 - Logiciel: Microsoft Software Update for Web Folders (French) 12 - (.Microsoft Corporation.) [HKLM] -- {90120000-0010-040C-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Mozilla Firefox (3.0.3) - (.Mozilla.) [HKLM] -- Mozilla Firefox (3.0.3) =>.Mozilla Corporation® O42 - Logiciel: Nero Info Tool - (...) [HKLM] -- InfoTool O42 - Logiciel: New Folder Removal Tool - (.Security Stronghold.) [HKLM] -- New Folder Removal Tool_is1 =>.Security Stronghold O42 - Logiciel: Notepad++ - (...) [HKLM] -- Notepad++ O42 - Logiciel: Open Command Prompt Shell Extension - (.Kai Liu.) [HKLM] -- CmdOpen =>.Kai Liu O42 - Logiciel: Pserv - (...) [HKLM] -- Pserv O42 - Logiciel: PuTTY - (...) [HKLM] -- PuTTY O42 - Logiciel: QT Lite 2.7.0 - (...) [HKLM] -- qt7lite_is1 O42 - Logiciel: QuickPar 0.9 - (.Peter B. Clements.) [HKLM] -- QuickPar =>.Peter B. Clements O42 - Logiciel: Quicksys RegDefrag - (...) [HKLM] -- RegDefrag O42 - Logiciel: Real Alternative 1.8.4 Lite - (...) [HKLM] -- RealAlt_is1 O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp. O42 - Logiciel: RegScanner - (...) [HKLM] -- RegScanner O42 - Logiciel: SABnzbd (remove only) - (...) [HKLM] -- SABnzbd O42 - Logiciel: SABnzbOpen v1.0 - (...) [HKLM] -- SABnzbOpen_is1 O42 - Logiciel: Sysinternals Suite - (...) [HKLM] -- Sysinternals O42 - Logiciel: Tweak UI - (...) [HKLM] -- TweakUI O42 - Logiciel: Unlocker 1.8.7 - (.Cedrick Collomb.) [HKLM] -- Unlocker =>.Cedrick Collomb O42 - Logiciel: Update for Office 2007 (KB946691) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{A420F522-7395-4872-9882-C591B4B92278} =>.Microsoft O42 - Logiciel: Update for Outlook 2007 Junk Email Filter (kb956080) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{96CC215F-3F22-4E1E-A101-F0041934A456} =>.Microsoft O42 - Logiciel: Utilitaires Gnu Unix - (.GnuWin32.) [HKLM] -- Unix =>.GnuWin32 O42 - Logiciel: VirtualCloneDrive - (.Elaborate Bytes.) [HKLM] -- VirtualCloneDrive =>.Elaborate Bytes O42 - Logiciel: WebFldrs XP - (.Microsoft Corporation.) [HKLM] -- {350C940c-3D7C-4EE8-BAA9-00BCB3D54227} =>.Microsoft Corporation O42 - Logiciel: Windows Installer CleanUp - (...) [HKLM] -- MSI O42 - Logiciel: WinMover 3.2.0.6 - (.Andreas Eliasson (EliasAE).) [HKLM] -- WinMover_is1 O42 - Logiciel: XnView 1.94 - (.Gougelet Pierre-e.) [HKLM] -- XnView_is1 =>.Gougelet Pierre-e O42 - Logiciel: XnView Shell Extension 2.4.0 - (.Gougelet Pierre-e.) [HKLM] -- XnView Shell Extension_is1 =>.Gougelet Pierre-e ---\\ HKCU & HKLM Software Keys (104) - 52s HKLM\SOFTWARE\685D6D1C-D73A-4F37-B7E5E53660311DDB HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\Ahead HKLM\SOFTWARE\Apple Computer, Inc. HKLM\SOFTWARE\AtesSoft HKLM\SOFTWARE\Baidu HKLM\SOFTWARE\Borland HKLM\SOFTWARE\Brother HKLM\SOFTWARE\Brother Industries, Ltd. HKLM\SOFTWARE\C07ft5Y HKLM\SOFTWARE\CloudOPTInfo HKLM\SOFTWARE\Combined-Community-Codec-Pack HKLM\SOFTWARE\DAMN HKLM\SOFTWARE\Debug HKLM\SOFTWARE\DRWNewFree HKLM\SOFTWARE\EASEUS HKLM\SOFTWARE\Elaborate Bytes HKLM\SOFTWARE\FlashFXP HKLM\SOFTWARE\Gabest HKLM\SOFTWARE\Gemplus HKLM\SOFTWARE\GNU HKLM\SOFTWARE\Google HKLM\SOFTWARE\HaaliMkx HKLM\SOFTWARE\handyCafe HKLM\SOFTWARE\INTEL HKLM\SOFTWARE\InterVideo HKLM\SOFTWARE\IObit HKLM\SOFTWARE\JavaSoft HKLM\SOFTWARE\KasperskyLab HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\mozilla.org HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\Nero HKLM\SOFTWARE\Notepad++ HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\PixArt HKLM\SOFTWARE\Program Groups HKLM\SOFTWARE\QTLite HKLM\SOFTWARE\RealAlternative HKLM\SOFTWARE\RealNetworks HKLM\SOFTWARE\Realtek HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\Reimage =>.Superfluous.ReimageRepair HKLM\SOFTWARE\SABnzb HKLM\SOFTWARE\SABnzbd HKLM\SOFTWARE\Schlumberger HKLM\SOFTWARE\Secure HKLM\SOFTWARE\Skype HKLM\SOFTWARE\Software HKLM\SOFTWARE\T.Aragon HKLM\SOFTWARE\WIBU-SYSTEMS HKLM\SOFTWARE\Windows 3.1 Migration Status HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Baidu HKCU\SOFTWARE\Brother HKCU\SOFTWARE\DAMN HKCU\SOFTWARE\drpsu HKCU\SOFTWARE\El Software Solutions HKCU\SOFTWARE\Elaborate Bytes HKCU\SOFTWARE\EliasAE HKCU\SOFTWARE\elSoftware HKCU\SOFTWARE\FlashFXP HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\GetData HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\Haali HKCU\SOFTWARE\handyCafe HKCU\SOFTWARE\IM HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Intel HKCU\SOFTWARE\KasperskyLab HKCU\SOFTWARE\Local AppWizard-Generated Applications HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\MediaChance HKCU\SOFTWARE\MOVDLTool HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Nero HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\p-nand-q.com HKCU\SOFTWARE\QuickPar HKCU\SOFTWARE\RealNetworks HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\Reimage =>.Superfluous.ReimageRepair HKCU\SOFTWARE\reimagerepair =>.Superfluous.ReimageRepair HKCU\SOFTWARE\SABnzbd HKCU\SOFTWARE\Sysinternals HKCU\SOFTWARE\T.Aragon HKCU\SOFTWARE\techPowerUp HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\WPI HKCU\SOFTWARE\XnView HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Adobe ---\\ Contenu des dossiers Programmes (132) - 22s O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Adobe O43 - CFD: 27/03/2016 - [] D -- F:\Program Files\AZIFOS O43 - CFD: 20/01/2016 - [] D -- F:\Program Files\baidu =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Brother O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Browny02 O43 - CFD: 08/02/2016 - [] D -- F:\Program Files\CodeMeter =>.WIBU-SYSTEMS AG® O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Combined Community Codec Pack O43 - CFD: 19/01/2016 - [0] D -- F:\Program Files\ComPlus Applications O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\ControlCenter4 O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\DAMN NFO Viewer O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Elaborate Bytes O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Fichiers communs O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\FlashFXP O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Google O43 - CFD: 27/04/2016 - [] HD -- F:\Program Files\InstallShield Installation Information =>.Macrovision Corporation® O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Internet Explorer O43 - CFD: 26/03/2016 - [] D -- F:\Program Files\IObit =>.IObit Information Technology® O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Java O43 - CFD: 20/01/2016 - [] D -- F:\Program Files\Kaspersky Lab =>.Kaspersky Lab® O43 - CFD: 03/12/2016 - [] D -- F:\Program Files\Malwarebytes Anti-Malware =>.Malwarebytes Corporation® O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Microsoft Visual Studio O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Microsoft Works O43 - CFD: 20/01/2016 - [] D -- F:\Program Files\Microsoft.NET O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Movie Maker O43 - CFD: 13/05/2016 - [] D -- F:\Program Files\Mozilla Firefox =>.Mozilla Corporation® O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\MSECache O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\MSN Gaming Zone O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\NetMeeting O43 - CFD: 15/05/2016 - [] D -- F:\Program Files\New Folder Removal Tool O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Notepad++ O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Outlook Express O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\PuTTY O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\QT Lite O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\QuickPar O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Real Alternative O43 - CFD: 16/02/2016 - [] D -- F:\Program Files\SABnzbd O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\SABnzbOpen O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Services en ligne O43 - CFD: 19/01/2016 - [0] HD -- F:\Program Files\Uninstall Information O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Unlocker O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Utilitaires O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Windows Live Safety Center =>.Microsoft Corporation® O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Windows Media Connect 2 O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Windows Media Player O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Windows NT O43 - CFD: 19/01/2016 - [0] HD -- F:\Program Files\WindowsUpdate O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\WinMover O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\WinRAR O43 - CFD: 24/04/2016 - [] D -- F:\Program Files\XnView O43 - CFD: 19/01/2016 - [] RD -- F:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires O43 - CFD: 20/01/2016 - [] D -- F:\Documents and Settings\All Users\Menu Démarrer\Programmes\Baidu Browser O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\All Users\Menu Démarrer\Programmes\Brother O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\All Users\Menu Démarrer\Programmes\Combined Community Codec Pack O43 - CFD: 19/01/2016 - [] RD -- F:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage O43 - CFD: 19/01/2016 - [] RD -- F:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux O43 - CFD: 20/01/2016 - [] D -- F:\Documents and Settings\All Users\Menu Démarrer\Programmes\Kaspersky Internet Security O43 - CFD: 03/12/2016 - [] D -- F:\Documents and Settings\All Users\Menu Démarrer\Programmes\Malwarebytes Anti-Malware O43 - CFD: 03/02/2016 - [] D -- F:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Office O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\All Users\Menu Démarrer\Programmes\Mozilla Firefox O43 - CFD: 15/05/2016 - [] D -- F:\Documents and Settings\All Users\Menu Démarrer\Programmes\New Folder Removal Tool O43 - CFD: 19/01/2016 - [] RD -- F:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\All Users\Menu Démarrer\Programmes\QT Lite O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\All Users\Menu Démarrer\Programmes\Real Alternative O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\All Users\Menu Démarrer\Programmes\Virtual CloneDrive O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\All Users\Menu Démarrer\Programmes\Windows Sweet O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\All Users\Menu Démarrer\Programmes\XnView O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\All Users\Application Data\Adobe O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\All Users\Application Data\Apple Computer O43 - CFD: 20/01/2016 - [] D -- F:\Documents and Settings\All Users\Application Data\Baidu O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\All Users\Application Data\Brother O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\All Users\Application Data\ControlCenter4 O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\All Users\Application Data\FlashFXP O43 - CFD: 26/03/2016 - [] D -- F:\Documents and Settings\All Users\Application Data\IObit O43 - CFD: 15/05/2016 - [] D -- F:\Documents and Settings\All Users\Application Data\Kaspersky Lab O43 - CFD: 20/01/2016 - [] D -- F:\Documents and Settings\All Users\Application Data\Malwarebytes O43 - CFD: 17/03/2016 - [] SD -- F:\Documents and Settings\All Users\Application Data\Microsoft O43 - CFD: 03/05/2016 - [] D -- F:\Documents and Settings\All Users\Application Data\Microsoft Help O43 - CFD: 26/03/2016 - [] D -- F:\Documents and Settings\All Users\Application Data\ProductData O43 - CFD: 19/01/2016 - [0] D -- F:\Documents and Settings\All Users\Application Data\Real O43 - CFD: 12/02/2016 - [] D -- F:\Documents and Settings\All Users\Application Data\Skype O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Fichiers communs\Adobe O43 - CFD: 30/01/2016 - [] D -- F:\Program Files\Fichiers communs\Borland Shared O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Fichiers communs\DESIGNER O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Fichiers communs\Java O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Fichiers communs\Microsoft Shared O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Fichiers communs\MSSoap O43 - CFD: 20/01/2016 - [] D -- F:\Program Files\Fichiers communs\Nero O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Fichiers communs\ODBC O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Fichiers communs\Services O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Fichiers communs\SpeechEngines O43 - CFD: 19/01/2016 - [] D -- F:\Program Files\Fichiers communs\System O43 - CFD: 01/02/2016 - [] D -- F:\Documents and Settings\Administrateur\Application Data\Adobe O43 - CFD: 20/01/2016 - [] D -- F:\Documents and Settings\Administrateur\Application Data\Baidu O43 - CFD: 03/02/2016 - [] RD -- F:\Documents and Settings\Administrateur\Application Data\Brother O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\Administrateur\Application Data\ControlCenter4 O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\Administrateur\Application Data\EliasAE O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\Administrateur\Application Data\Identities O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\Administrateur\Application Data\InstallShield O43 - CFD: 26/03/2016 - [] D -- F:\Documents and Settings\Administrateur\Application Data\IObit O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\Administrateur\Application Data\Macromedia O43 - CFD: 22/01/2016 - [] D -- F:\Documents and Settings\Administrateur\Application Data\Media Player Classic O43 - CFD: 03/05/2016 - [] SD -- F:\Documents and Settings\Administrateur\Application Data\Microsoft O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\Administrateur\Application Data\Mozilla O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\Administrateur\Application Data\Notepad++ O43 - CFD: 21/03/2016 - [] D -- F:\Documents and Settings\Administrateur\Application Data\Real O43 - CFD: 04/04/2016 - [] D -- F:\Documents and Settings\Administrateur\Application Data\shamela O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\Administrateur\Application Data\Sun O43 - CFD: 21/01/2016 - [] D -- F:\Documents and Settings\Administrateur\Application Data\Thinstall O43 - CFD: 12/05/2016 - [0] D -- F:\Documents and Settings\Administrateur\Application Data\WebacamSurveyor O43 - CFD: 20/01/2016 - [0] D -- F:\Documents and Settings\Administrateur\Application Data\WinRAR O43 - CFD: 15/05/2016 - [] D -- F:\Documents and Settings\Administrateur\Application Data\ZHP O43 - CFD: 15/04/2016 - [] D -- F:\Documents and Settings\Administrateur\Local Settings\Application Data\Adobe O43 - CFD: 21/03/2016 - [] D -- F:\Documents and Settings\Administrateur\Local Settings\Application Data\Apple Computer O43 - CFD: 11/04/2016 - [] D -- F:\Documents and Settings\Administrateur\Local Settings\Application Data\Baidu O43 - CFD: 01/03/2016 - [] D -- F:\Documents and Settings\Administrateur\Local Settings\Application Data\Identities O43 - CFD: 19/01/2016 - [] SD -- F:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft O43 - CFD: 19/01/2016 - [0] D -- F:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft Help O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\Administrateur\Local Settings\Application Data\MiniService O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla O43 - CFD: 19/01/2016 - [0] D -- F:\Documents and Settings\Administrateur\Local Settings\Application Data\Real O43 - CFD: 16/02/2016 - [] D -- F:\Documents and Settings\Administrateur\Local Settings\Application Data\SABnzbd O43 - CFD: 20/01/2016 - [] D -- F:\Documents and Settings\Administrateur\Local Settings\Application Data\temp O43 - CFD: 15/05/2016 - [] RD -- F:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Accessoires O43 - CFD: 02/05/2016 - [] RD -- F:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Démarrage O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Notepad++ O43 - CFD: 15/05/2016 - [] RD -- F:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Outils d'administration O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\SABnzbd O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\WinMover O43 - CFD: 19/01/2016 - [] D -- F:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\WinRAR ---\\ ShellIconOverlayIdentifiers (SIOI) (1) - 0s O106 - SIOI: Offline Files Menu [Fichiers hors connexion] - {750fdf0e-2a26-11d1-a3ea-080036587f03}. (.Microsoft Corporation - IU de cache côté client.) -- F:\WINDOWS\system32\cscui.dll =>.Microsoft Corporation ---\\ Enumération des clés StartupReg (6) - 2s O53 - SMSR:HKLM\...\startupreg\Alcmtr [Key] . (.Realtek Semiconductor Corp. - Realtek Azalia Audio - Event Monitor.) -- ALCMTR.EXE (.not file.) =>.Realtek Semiconductor Corp. O53 - SMSR:HKLM\...\startupreg\BrHelp [Key] . (.Brother Industries, Ltd. - Brother Help Application.) -- F:\Program Files\Brother\Brother Help\BrotherHelp.exe =>.Brother Industries, Ltd. O53 - SMSR:HKLM\...\startupreg\BrStsMon00 [Key] . (.Brother Industries, Ltd. - Status Monitor Application.) -- F:\Program Files\Browny02\Brother\BrStMonW.exe =>.Brother Industries, Ltd. O53 - SMSR:HKLM\...\startupreg\RTHDCPL [Key] . (.Realtek Semiconductor Corp. - Realtek HD Audio Control Panel.) -- RTHDCPL.EXE (.not file.) =>.Realtek Semiconductor Corp. O53 - SMSR:HKLM\...\startupreg\VirtualCloneDrive [Key] . (.Elaborate Bytes AG - Virtual CloneDrive Daemon.) -- F:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe =>.Elaborate Bytes AG O53 - SMSR:HKLM\...\startupreg\WinMover [Key] . (.Andreas Eliasson (EliasAE) - WinMover executable.) -- F:\Program Files\WinMover\WinMover.exe ---\\ Liste des pilotes du système (51) - 16s O58 - SDL:2016/01/21 11:49:37 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- F:\windows\System32\drivers\51F9266A.sys [170200] =>.Malwarebytes Corporation® O58 - SDL:2004/10/15 05:50:20 A . (.Brother Industries Ltd. - Brother USB Scanner Driver.) -- F:\windows\System32\drivers\BrScnUsb.sys [15295] =>.Brother Industries Ltd. O58 - SDL:2008/09/27 12:31:20 A . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- F:\windows\System32\drivers\cinemst2.sys [262528] =>.RAVISENT Technologies Inc. O58 - SDL:2015/06/29 16:37:48 A . (.Kaspersky Lab UK Ltd - Cryptographic Module.) -- F:\windows\System32\drivers\cm_km_w.sys [197864] =>.Kaspersky Lab UK Ltd® O58 - SDL:2008/09/27 12:31:20 A . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- F:\windows\System32\drivers\cpqdap01.sys [11776] =>.Compaq Computer Corporation O58 - SDL:2008/04/13 19:05:08 A . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- F:\windows\System32\drivers\dmboot.sys [800256] =>.Microsoft Corp., Veritas Software O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- F:\windows\System32\drivers\dmio.sys [154496] =>.Microsoft Corp., Veritas Software O58 - SDL:2008/04/14 14:00:00 A . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- F:\windows\System32\drivers\dmload.sys [5888] =>.Microsoft Corp., Veritas Software. O58 - SDL:2008/07/21 14:11:58 A . (.Elaborate Bytes AG - ElbyCD Windows NT/2000/XP I/O driver.) -- F:\windows\System32\drivers\ElbyCDIO.sys [24392] =>.Elaborate Bytes AG® O58 - SDL:2008/04/14 14:00:00 A . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- F:\windows\System32\drivers\hdaudbus.sys [144384] O58 - SDL:2016/03/26 16:23:08 A . (.Intel Corporation - Intel Graphics Miniport Driver.) -- F:\windows\System32\drivers\igxpmp32.sys [2019200] =>.Intel Corporation O58 - SDL:2016/03/22 14:02:42 A . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) -- F:\windows\System32\drivers\kl1.sys [155304] =>.Kaspersky Lab® O58 - SDL:2015/06/29 16:37:48 A . (.Kaspersky Lab ZAO - Virtual Disk fre_wnet_x86.) -- F:\windows\System32\drivers\kldisk.sys [54640] =>.Kaspersky Lab® O58 - SDL:2015/06/29 16:37:48 A . (.Kaspersky Lab ZAO - Filter Core [fre_wnet_x86].) -- F:\windows\System32\drivers\klflt.sys [125656] =>.Kaspersky Lab® O58 - SDL:2016/03/22 14:02:40 A . (.AO Kaspersky Lab - klhk [fre_wnet_x86].) -- F:\windows\System32\drivers\klhk.sys [44216] =>.Kaspersky Lab® O58 - SDL:2016/03/22 14:02:43 A . (.Kaspersky Lab ZAO - Klif Mini-Filter [fre_wnet_x86].) -- F:\windows\System32\drivers\klif.sys [694688] =>.Kaspersky Lab® O58 - SDL:2013/04/19 11:44:54 A . (.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver.) -- F:\windows\System32\drivers\klim5.sys [36448] =>.Kaspersky Lab® O58 - SDL:2015/06/29 16:37:50 A . (.Kaspersky Lab ZAO - KLKBDFLT Keyboard Device Filter [fre_wnet_x.) -- F:\windows\System32\drivers\klkbdflt.sys [35696] =>.Kaspersky Lab® O58 - SDL:2015/06/29 16:37:50 A . (.Kaspersky Lab ZAO - KLMOUFLT Mouse Device Filter [fre_wnet_x86].) -- F:\windows\System32\drivers\klmouflt.sys [35184] =>.Kaspersky Lab® O58 - SDL:2015/06/29 16:37:50 A . (.Kaspersky Lab ZAO - KLPD [fre_wnet_x86].) -- F:\windows\System32\drivers\klpd.sys [23920] =>.Kaspersky Lab® O58 - SDL:2014/11/06 18:36:28 A . (.Kaspersky Lab ZAO - Kaspersky TDI Filter [fre_wxp_x86].) -- F:\windows\System32\drivers\kltdf.sys [68808] =>.Kaspersky Lab® O58 - SDL:2015/06/29 16:37:50 A . (.Kaspersky Lab ZAO - Network filtering component [fre_wxp_x86].) -- F:\windows\System32\drivers\kltdi.sys [54328] =>.Kaspersky Lab® O58 - SDL:2016/01/20 13:26:10 A . (.Kaspersky Lab ZAO - KNEPS Power [fre_wxp_x86].) -- F:\windows\System32\drivers\kneps.sys [157240] =>.Kaspersky Lab® O58 - SDL:2016/03/10 15:08:52 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- F:\windows\System32\drivers\mbam.sys [24448] =>.Malwarebytes Corporation® O58 - SDL:2016/03/10 15:09:00 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- F:\windows\System32\drivers\mbamchameleon.sys [123264] =>.Malwarebytes Corporation® O58 - SDL:2016/05/15 17:19:50 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- F:\windows\System32\drivers\MBAMSwissArmy.sys [170200] =>.Malwarebytes Corporation® O58 - SDL:2008/09/27 12:31:20 A . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- F:\windows\System32\drivers\nikedrv.sys [12032] =>.S3/Diamond Multimedia Systems O58 - SDL:2008/04/14 14:00:00 A . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- F:\windows\System32\drivers\ptilink.sys [17792] =>.Parallel Technologies, Inc. O58 - SDL:2008/09/27 12:31:20 A . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- F:\windows\System32\drivers\rio8drv.sys [12032] =>.S3/Diamond Multimedia Systems O58 - SDL:2008/09/27 12:31:20 A . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- F:\windows\System32\drivers\riodrv.sys [12032] =>.S3/Diamond Multimedia Systems O58 - SDL:2011/06/13 12:03:54 A . (.Realtek Semiconductor Corporation - Realtek 10/100/1000 NDIS 5.1 Driver.) -- F:\windows\System32\drivers\Rtenicxp.sys [306664] =>.Realtek Semiconductor Corp® O58 - SDL:2008/04/17 16:33:26 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- F:\windows\System32\drivers\RtkHDAud.sys [4707328] =>.Realtek Semiconductor Corp. O58 - SDL:2008/04/14 14:00:00 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- F:\windows\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2008/09/27 12:31:20 A . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- F:\windows\System32\drivers\tsbvcap.sys [21376] =>.Toshiba Corporation O58 - SDL:2008/07/17 02:12:47 A . (.Elaborate Bytes AG - VirtualCloneCD Driver.) -- F:\windows\System32\drivers\VClone.sys [28672] =>.Elaborate Bytes AG O58 - SDL:2008/09/27 12:31:20 A . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- F:\windows\System32\drivers\vdmindvd.sys [58112] =>.RAVISENT Technologies Inc. O58 - SDL:2008/04/14 14:00:00 A . (...) -- F:\windows\System32\ansi.sys [9037] O58 - SDL:2008/04/14 14:00:00 A . (...) -- F:\windows\System32\country.sys [27097] O58 - SDL:2008/04/14 14:00:00 A . (...) -- F:\windows\System32\himem.sys [4912] O58 - SDL:2008/04/14 14:00:00 A . (...) -- F:\windows\System32\key01.sys [42809] O58 - SDL:2008/04/14 14:00:00 A . (...) -- F:\windows\System32\keyboard.sys [42537] O58 - SDL:2008/04/14 14:00:00 A . (...) -- F:\windows\System32\ntdos.sys [27916] O58 - SDL:2008/04/14 14:00:00 A . (...) -- F:\windows\System32\ntdos404.sys [29146] O58 - SDL:2008/04/14 14:00:00 A . (...) -- F:\windows\System32\ntdos411.sys [29370] O58 - SDL:2008/04/14 14:00:00 A . (...) -- F:\windows\System32\ntdos412.sys [29274] O58 - SDL:2008/04/14 14:00:00 A . (...) -- F:\windows\System32\ntdos804.sys [29146] O58 - SDL:2008/04/14 14:00:00 A . (...) -- F:\windows\System32\ntio.sys [34000] O58 - SDL:2008/04/14 14:00:00 A . (...) -- F:\windows\System32\ntio404.sys [34560] O58 - SDL:2008/04/14 14:00:00 A . (...) -- F:\windows\System32\ntio411.sys [35648] O58 - SDL:2008/04/14 14:00:00 A . (...) -- F:\windows\System32\ntio412.sys [35424] O58 - SDL:2008/04/14 14:00:00 A . (...) -- F:\windows\System32\ntio804.sys [34560] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (1) - 24s O61 - LFC: 2016/05/11 17:32:06 A . (..) -- F:\Documents and Settings\Administrateur\Application Data\Adobe\Acrobat\9.0\UserCache.bin [42906] ---\\ Associations Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- F:\WINDOWS\system32\shell32.dll =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Copyright (C) 2011 - spark.) -- F:\Program Files\baidu\Baidu Browser\spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- F:\WINDOWS\system32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- F:\WINDOWS\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- F:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ Menu de démarrage Internet (13) - 1s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Copyright (C) 2011 - spark.) -- F:\Program Files\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- F:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- F:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (.Copyright (C) 2011 - spark.) -- F:\Program Files\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Copyright (C) 2011 - spark.) -- F:\Program Files\baidu\Baidu Browser\spark.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- F:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- F:\WINDOWS\system32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Copyright (C) 2011 - spark.) -- F:\Program Files\baidu\Baidu Browser\spark.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- F:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- F:\WINDOWS\system32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Copyright (C) 2011 - spark.) -- F:\Program Files\baidu\Baidu Browser\spark.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- F:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- F:\WINDOWS\system32\ie4uinit.exe =>.Microsoft Corporation ---\\ Recherche d'infection sur les navigateurs (6) - 5s O69 - SBI: SearchScopes [HKCU] {06B469CF-CDC2-47F4-81A9-8EA6E8506E45} [DefaultScope] - (Google) - http://www.google.fr/ O69 - SBI: SearchScopes [HKLM] {06B469CF-CDC2-47F4-81A9-8EA6E8506E45} [DefaultScope] - (Google) - http://www.google.fr/ O69 - SBI: SearchScopes [HKUS\.DEFAULT] {06B469CF-CDC2-47F4-81A9-8EA6E8506E45} [DefaultScope] - (Google) - http://www.google.fr/ O69 - SBI: SearchScopes [HKUS\S-1-5-18] {06B469CF-CDC2-47F4-81A9-8EA6E8506E45} [DefaultScope] - (Google) - http://www.google.fr/ O69 - SBI: SearchScopes [HKUS\S-1-5-19] {06B469CF-CDC2-47F4-81A9-8EA6E8506E45} [DefaultScope] - (Google) - http://www.google.fr/ O69 - SBI: SearchScopes [HKUS\S-1-5-20] {06B469CF-CDC2-47F4-81A9-8EA6E8506E45} [DefaultScope] - (Google) - http://www.google.fr/ ---\\ Enumère les services démarrés par Svchost (40) - 3s O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- F:\WINDOWS\system32\appmgmts.dll [176640] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- F:\WINDOWS\system32\audiosrv.dll [42496] =>.Microsoft Corporation O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- F:\WINDOWS\system32\browser.dll [77824] =>.Microsoft Corporation O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- F:\WINDOWS\system32\cryptsvc.dll [62464] =>.Microsoft Corporation O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- F:\WINDOWS\system32\dmserver.dll [24576] =>.Microsoft Corp. O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- F:\WINDOWS\system32\dhcpcsvc.dll [127488] =>.Microsoft Corporation O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- F:\WINDOWS\system32\ersvc.dll [23040] =>.Microsoft Corporation O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - .) -- F:\WINDOWS\system32\es.dll [253952] =>.Microsoft Corporation O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- F:\WINDOWS\system32\shsvcs.dll [135680] =>.Microsoft Corporation O83 - Search Svchost Services: HidServ (HidServ) . (...) -- F:\windows\System32\hidserv.dll [0] O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- F:\WINDOWS\system32\srvsvc.dll [96768] =>.Microsoft Corporation O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- F:\WINDOWS\system32\wkssvc.dll [134144] =>.Microsoft Corporation O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- F:\WINDOWS\system32\msgsvc.dll [33792] =>.Microsoft Corporation O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- F:\WINDOWS\system32\netman.dll [198144] =>.Microsoft Corporation O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- F:\WINDOWS\system32\mswsock.dll [247808] =>.Microsoft Corporation O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- F:\WINDOWS\system32\ntmssvc.dll [438272] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- F:\WINDOWS\system32\rasauto.dll [88576] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- F:\WINDOWS\system32\rasmans.dll [186368] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- F:\WINDOWS\system32\mprdim.dll [53248] =>.Microsoft Corporation O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- F:\WINDOWS\system32\schedsvc.dll [194560] =>.Microsoft Corporation O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- F:\WINDOWS\system32\seclogon.dll [18944] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- F:\WINDOWS\system32\sens.dll [39424] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- F:\WINDOWS\system32\ipnathlp.dll [332288] =>.Microsoft Corporation O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- F:\WINDOWS\system32\srsvc.dll [171520] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- F:\WINDOWS\system32\tapisrv.dll [249856] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- F:\WINDOWS\system32\shsvcs.dll [135680] =>.Microsoft Corporation O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- F:\WINDOWS\system32\trkwks.dll [90112] =>.Microsoft Corporation O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- F:\WINDOWS\system32\w32time.dll [178688] =>.Microsoft Corporation O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- F:\WINDOWS\system32\wzcsvc.dll [483328] =>.Microsoft Corporation O83 - Search Svchost Services: Wmi (Wmi) . (.Microsoft Corporation - API avancées Windows 32.) -- F:\WINDOWS\system32\advapi32.dll [685568] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- F:\WINDOWS\system32\wbem\wmisvc.dll [145408] =>.Microsoft Corporation O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- F:\WINDOWS\system32\wscsvc.dll [80896] =>.Microsoft Corporation O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- F:\WINDOWS\system32\xmlprov.dll [129024] =>.Microsoft Corporation O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- F:\WINDOWS\system32\qagentrt.dll [293376] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- F:\WINDOWS\system32\kmsvc.dll [61440] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- F:\WINDOWS\system32\qmgr.dll [409088] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- F:\WINDOWS\system32\wuauserv.dll [25800] {6102307E000000000006} =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- F:\WINDOWS\system32\shsvcs.dll [135680] =>.Microsoft Corporation O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- F:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll [38400] =>.Microsoft Corporation O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- F:\WINDOWS\system32\mspmsnsv.dll [27136] =>.Microsoft Corporation ---\\ Scan Additionnel (3) - 0s HKLM\SOFTWARE\Reimage =>.Superfluous.ReimageRepair HKCU\SOFTWARE\Reimage =>.Superfluous.ReimageRepair HKCU\SOFTWARE\reimagerepair =>.Superfluous.ReimageRepair ---\\ Récapitulatif des éléments trouvés sur votre station (1) - 0s http://www.nicolascoolman.fr/?p=1075 =>.Superfluous.ReimageRepair ~ End of the scan, 20004 items in 00h06mn55s (684)(0)