~ ZHPDiag v2017.1.29.20 Par Nicolas Coolman (2017/01/29) ~ Démarré par Orion (Administrator) (2017/01/29 16:30:25) ~ Web: https://www.nicolascoolman.com ~ Blog: https://www.anti-malware.top ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: ~ Mode: Scanner ~ Rapport: C:\Documents and Settings\Orion\Bureau\ZHPDiag.txt ~ Rapport: C:\Documents and Settings\Orion\Application Data\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ Démarrage du système: Normal (Normal boot) Windows XP, 32-bit Service Pack 3 (Build 2600) =>.Microsoft Corporation ---\\ Navigateurs Internet (3) - 5s ~ GCIE: Google Chrome v33.0.1750.154 ~ MFIE: Mozilla Firefox 48.0.2 (x86 fr) ~ MSIE: Internet Explorer v8.0.6001.18702 ---\\ Informations sur les produits Windows (4) - 0s Key Management Service client information : KO Windows Automatic Updates : OK Windows Activation Technologies : KO Windows Genuine Advantage : OK ---\\ Logiciels de protection (1) - 8s Norton Internet Security v20.6.0.27 (Protection) ---\\ Logiciels d'optimisation (1) - 10s ~ CCleaner v3.06 (Optimize) ---\\ Surveillance de Logiciels (2) - 10s ~ Adobe Flash Player 15 Plugin (Surveillance) ~ Adobe Reader XI (Surveillance) ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 6 Model 10 Stepping 0, AuthenticAMD ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 720.368 MB (26% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 1 GB (%) free of 20 GB : ATTENTION =>Warning Disk Space ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: ORIONPC ~ User Name: Orion ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 2s ~ Drive C: has 1 GB free of 20 GB (System) ~ Drive E: has 54 GB free of 56 GB ---\\ Etat du Centre de Sécurité Windows (9) - 0s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (23) - 6s [MD5.B21F80F087299AA132A45EF7B8DBF96B] - 21/05/2013 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [144368] =>.Microsoft Corporation [MD5.93AD0B78C7357A05F50E594EC7C22300] - 21/05/2013 - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\rundll32.exe [144368] =>.Microsoft Corporation [MD5.F8DD21FC65131E064FBF11F01E4F4BFD] - 21/05/2013 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\WINDOWS\System32\wininet.dll [144368] =>.Microsoft Corporation [MD5.C8265BF2D6967AA332764FD56B54AD07] - 21/05/2013 - (.Microsoft Corporation - Application d'ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [144368] =>.Microsoft Corporation [MD5.4992C88B25C429744D255C35C756BB7B] - 21/05/2013 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\System32\dnsapi.dll [144368] =>.Microsoft Corporation [MD5.F6B7B1ECD7B41736BDB6FF4B092BCB79] - 21/05/2013 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [144368] =>.Microsoft Corporation [MD5.9F3A2F5AA6875C72BF062C712CFA2674] - 21/05/2013 - (.Microsoft Corporation - IDE/ATAPI Port Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [144368] =>.Microsoft Corporation [MD5.C885B02847F5D2FD45A24E219ED93B32] - 21/05/2013 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [144368] =>.Microsoft Corporation [MD5.4B0A100EAF5C49EF3CCA8C641431EACC] - 21/05/2013 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [144368] =>.Microsoft Corporation [MD5.31F923EB2170FC172C81ABDA0045D18C] - 21/05/2013 - (.Microsoft Corporation - Pilote de cryptographie FIPS.) -- C:\WINDOWS\System32\drivers\Fips.sys [144368] =>.Microsoft Corporation [MD5.573C7D0A32852B48F3058CFD8026F511] - 21/05/2013 - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [144368] [MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - 21/05/2013 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [144368] =>.Microsoft Corporation [MD5.083A052659F5310DD8B6A6CB05EDCF8E] - 21/05/2013 - (.Microsoft Corporation - IMAPI Kernel Driver.) -- C:\WINDOWS\System32\drivers\Imapi.sys [144368] =>.Microsoft Corporation [MD5.CC748EA12C6EFFDE940EE98098BF96BB] - 21/05/2013 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [144368] =>.Microsoft Corporation [MD5.23C74D75E36E7158768DD63D92789A91] - 21/05/2013 - (.Microsoft Corporation - IPSec Driver.) -- C:\WINDOWS\System32\drivers\IPSec.sys [144368] =>.Microsoft Corporation [MD5.FB2FCCC70F7174C7BF64F48E96D3ADF4] - 21/05/2013 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [144368] =>.Microsoft Corporation [MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - 21/05/2013 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [144368] =>.Microsoft Corporation [MD5.AE8CAD8F28DB13B515A68510A539B0B8] - 21/05/2013 - (.Microsoft Corporation - NT File System Driver.) -- C:\WINDOWS\System32\drivers\ntfs.sys [144368] =>.Microsoft Corporation [MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - 21/05/2013 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [144368] =>.Microsoft Corporation [MD5.11B4A627BC9614B885C4969BFA5FF8A6] - 21/05/2013 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [144368] =>.Microsoft Corporation [MD5.47EA20320E3D6FDC7B7BB22B2B881CA6] - 21/05/2013 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [144368] =>.Microsoft Corporation [MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - 21/05/2013 - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) -- C:\WINDOWS\System32\drivers\redbook.sys [144368] =>.Microsoft Corporation [MD5.46DE1126684369BACE4849E4FC8C43CA] - 21/05/2013 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [144368] =>.Microsoft Corporation ---\\ Liste des services NT non Microsoft et non désactivés (5) - 68s O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: KMService (KMService) . (...) - C:\WINDOWS\system32\srvany.exe =>PUP.Optional.Office O23 - Service: (Net Driver HPZ12) . (.Hewlett-Packard - Dot4Net Module.) - C:\WINDOWS\system32\HPZinw12.dll =>.Hewlett-Packard O23 - Service: Norton Internet Security (NIS) . (.Symantec Corporation - Symantec Service Framework.) - C:\Program Files\Norton Internet Security\Engine\20.6.0.27\ccsvchst.exe =>.Symantec Corporation® O23 - Service: (Pml Driver HPZ12) . (.Hewlett-Packard - PmlDrv Module.) - C:\WINDOWS\system32\HPZipm12.dll =>.Hewlett-Packard ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (9) - 98s SS - Demand [21/05/2013] [ 144368] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SS - Auto [21/05/2013] [ 144368] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [21/05/2013] [ 144368] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [21/05/2013] [ 144368] Google Software Updater (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe =>.Google Inc® SR - Auto [21/05/2013] [ 144368] KMService (KMService) . (...) - C:\WINDOWS\system32\srvany.exe =>PUP.Optional.Office SS - Disabl [21/05/2013] [ 144368] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Auto [21/05/2013] [ 144368] (Net Driver HPZ12) . (.Hewlett-Packard.) - C:\WINDOWS\system32\HPZinw12.dll =>.Hewlett-Packard SR - Auto [21/05/2013] [ 144368] Norton Internet Security (NIS) . (.Symantec Corporation.) - C:\Program Files\Norton Internet Security\Engine\20.6.0.27\ccsvchst.exe =>.Symantec Corporation® SR - Auto [21/05/2013] [ 144368] (Pml Driver HPZ12) . (.Hewlett-Packard.) - C:\WINDOWS\system32\HPZipm12.dll =>.Hewlett-Packard ---\\ Tâches planifiées en automatique (5) - 4s O39 - APT: Adobe Flash Player Updater - (...) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [144368] (.Orphan.) =>.Superfluous.Orphan O39 - APT: GoogleUpdateTaskMachineCore - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [144368] (.Orphan.) =>.Superfluous.Orphan O39 - APT: GoogleUpdateTaskMachineUA - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [144368] (.Orphan.) =>.Superfluous.Orphan O39 - APT: Unknown - (...) -- C:\WINDOWS\Tasks\Notification de fin de service de Microsoft Windows XP - à la connexion.job [144368] O39 - APT: Notification de fin de service de Microsoft Windows XP -mensuellement - (...) -- C:\WINDOWS\Tasks\Notification de fin de service de Microsoft Windows XP -mensuellement.job [144368] (.Orphan.) =>.Superfluous.Orphan ---\\ Applications lancées au démarrage du système (14) - 1s O4 - HKLM\..\Run: [VTTimer] . (.S3 Graphics, Inc. - .) -- C:\WINDOWS\System32\VTTimer.exe =>.S3 Graphics, Inc. O4 - HKLM\..\Run: [BCSSync] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files\Microsoft Office\Office14\BCSSync.exe =>.Microsoft Corporation® O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems, Incorporated® O4 - HKLM\..\Run: [KernelFaultCheck] C:\WINDOWS\system32\dumprep 0 -k (.not file.) O4 - HKLM\..\Run: [SoundMan] . (.Realtek Semiconductor Corp. - Realtek Sound Manager.) -- C:\WINDOWS\SOUNDMAN.EXE =>.Realtek Semiconductor Corp. O4 - HKCU\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe =>.Microsoft Corporation O4 - HKCU\..\Run: [MSMSGS] . (.Microsoft Corporation - Windows Messenger.) -- C:\Program Files\Messenger\msmsgs.exe =>.Microsoft Corporation O4 - HKCU\..\Run: [Adobe Reader Synchronizer] . (.Adobe Systems Incorporated - Adobe Collaboration Synchronizer 11.0.) -- C:\Program Files\Adobe\Reader 11.0\Reader\AdobeCollabSync.exe =>.Adobe Systems, Incorporated® O4 - HKUS\.DEFAULT\..\RunOnce: [_nltide_3] rundll32 advpack.dll O4 - HKUS\S-1-5-18\..\RunOnce: [_nltide_3] rundll32 advpack.dll O4 - HKUS\S-1-5-20\..\RunOnce: [_nltide_3] rundll32 advpack.dll O4 - HKUS\S-1-5-21-1482476501-2111687655-1177238915-500\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-1482476501-2111687655-1177238915-500\..\Run: [MSMSGS] . (.Microsoft Corporation - Windows Messenger.) -- C:\Program Files\Messenger\msmsgs.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-1482476501-2111687655-1177238915-500\..\Run: [Adobe Reader Synchronizer] . (.Adobe Systems Incorporated - Adobe Collaboration Synchronizer 11.0.) -- C:\Program Files\Adobe\Reader 11.0\Reader\AdobeCollabSync.exe =>.Adobe Systems, Incorporated® ---\\ Processus lancés (8) - 2s [MD5.09F1A97848BFAB3F36EB216681465B85] - (.S3 Graphics, Inc. - .) -- C:\WINDOWS\system32\VTTimer.exe [53248] [PID.512] =>.S3 Graphics, Inc. [MD5.80FD4D46B0E9B620CF757A9A5C789329] - (.Realtek Semiconductor Corp. - Realtek Sound Manager.) -- C:\WINDOWS\soundman.exe [577536] [PID.548] =>.Realtek Semiconductor Corp. [MD5.4635935FC972C582632BF45C26BFCB0E] - (...) -- C:\WINDOWS\system32\srvany.exe [8192] [PID.1020] [MD5.82865FF17BC664C711EFA674759F9991] - (...) -- C:\WINDOWS\KMService.exe [77824] [PID.1092] [MD5.1BF9D6476061B31CD7FC2BF848529A56] - (.Symantec Corporation - Symantec Service Framework.) -- C:\Program Files\Norton Internet Security\Engine\20.6.0.27\ccsvchst.exe [144368] [PID.1784] =>.Symantec Corporation® [MD5.1BF9D6476061B31CD7FC2BF848529A56] - (.Symantec Corporation - Symantec Service Framework.) -- C:\Program Files\Norton Internet Security\Engine\20.6.0.27\ccsvchst.exe [144368] [PID.1100] =>.Symantec Corporation® [MD5.728935A0F1E0D2C2B5EEC2F3A1280B9D] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [392136] [PID.2744] =>.Mozilla Corporation® [MD5.8D883619931CA818961D1072A3328BAC] - (.Nicolas Coolman - ZHPDiag.) -- E:\ZHPDiag3.exe [2657792] [PID.2380] =>.Nicolas Coolman ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (2) - 3s P2 - EXT FILE: (.Firefox Hotfix - Firefox Hotfix: avoid updates that wou.) -- C:\Documents and Settings\Orion\Application Data\Mozilla\Firefox\Profiles\pto045zd.default-1483803091968\extensions\firefox-hotfix@mozilla.org.xpi =>.Firefox Hotfix P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_15_0_0_246.dll =>.Adobe Systems Incorporated ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (12) - 0s R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com =>.Google Inc. R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ =>.Google Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ =>.Google Inc. R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ =>.Google Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (7) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl" ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (20) ---\\ Browser Helper Object de navigateur (BHO) (6) - 1s O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} . (...) -- C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (.not file.) O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} . (.Symantec Corporation - coIEPlugIn.) -- C:\Program Files\Norton Internet Security\Engine\20.6.0.27\coieplg.dll =>.Symantec Corporation® O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} . (.Symantec Corporation - IPS Browser Helper DLL.) -- C:\Program Files\Norton Internet Security\Engine\20.6.0.27\ips\ipsbho.dll =>.Symantec Corporation® O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL =>.Microsoft Corporation® O2 - BHO: Microsoft Web Test Recorder 10.0 Helper - {DDA57003-0068-4ed2-9D32-4D1EC707D94D} . (...) -- C:\Program Files\Microsoft Visual Studio 10.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll (.not file.) ---\\ Raccourcis Global Startup (47) - 5s O4 - GS\Desktop [ASPNET]: Chrome..lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Desktop [ASPNET]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Desktop [ASPNET]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Quicklaunch [ASPNET]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [ASPNET]: Raccourci vers adwcleaner_6.043.lnk . (.Malwarebytes - AdwCleaner is a free Adware/PUP removal too.) C:\Documents and Settings\Orion\Bureau\adwcleaner_6.043.exe =>.Malwarebytes Corporation® O4 - GS\Quicklaunch [ASPNET]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Programs [ASPNET]: Assistance à distance.lnk . (.Microsoft Corporation - Assistance à distance Microsoft.) C:\WINDOWS\system32\rcimlby.exe -LaunchRA =>.Microsoft Corporation O4 - GS\Programs [ASPNET]: Clavier visuel.lnk . (.Microsoft Corporation - Clavier visuel.) C:\WINDOWS\system32\osk.exe =>.Microsoft Corporation O4 - GS\Programs [ASPNET]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\IEXPLORE.EXE =>.Microsoft Corporation O4 - GS\Programs [ASPNET]: Microsoft Virtual PC.lnk . (.Microsoft Corporation - Virtual PC 2007.) E:\Virtual PC.exe =>.Microsoft Corporation® O4 - GS\Programs [ASPNET]: OneNote 2010 - Capture d’écran et lancement.lnk . (.Microsoft Corporation - Microsoft OneNote Quick Launcher.) C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE /tsr =>.Microsoft Corporation® O4 - GS\Programs [ASPNET]: Outlook Express.lnk . (.Microsoft Corporation - Outlook Express.) C:\Program Files\Outlook Express\msimn.exe =>.Microsoft Corporation O4 - GS\Desktop [HelpAssistant]: Chrome..lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Desktop [HelpAssistant]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Desktop [HelpAssistant]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Quicklaunch [HelpAssistant]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [HelpAssistant]: Raccourci vers adwcleaner_6.043.lnk . (.Malwarebytes - AdwCleaner is a free Adware/PUP removal too.) C:\Documents and Settings\Orion\Bureau\adwcleaner_6.043.exe =>.Malwarebytes Corporation® O4 - GS\Quicklaunch [HelpAssistant]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Programs [HelpAssistant]: Assistance à distance.lnk . (.Microsoft Corporation - Assistance à distance Microsoft.) C:\WINDOWS\system32\rcimlby.exe -LaunchRA =>.Microsoft Corporation O4 - GS\Programs [HelpAssistant]: Clavier visuel.lnk . (.Microsoft Corporation - Clavier visuel.) C:\WINDOWS\system32\osk.exe =>.Microsoft Corporation O4 - GS\Programs [HelpAssistant]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\IEXPLORE.EXE =>.Microsoft Corporation O4 - GS\Programs [HelpAssistant]: Microsoft Virtual PC.lnk . (.Microsoft Corporation - Virtual PC 2007.) E:\Virtual PC.exe =>.Microsoft Corporation® O4 - GS\Programs [HelpAssistant]: OneNote 2010 - Capture d’écran et lancement.lnk . (.Microsoft Corporation - Microsoft OneNote Quick Launcher.) C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE /tsr =>.Microsoft Corporation® O4 - GS\Programs [HelpAssistant]: Outlook Express.lnk . (.Microsoft Corporation - Outlook Express.) C:\Program Files\Outlook Express\msimn.exe =>.Microsoft Corporation O4 - GS\Desktop [Orion]: Chrome..lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Desktop [Orion]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Desktop [Orion]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Quicklaunch [Orion]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [Orion]: Raccourci vers adwcleaner_6.043.lnk . (.Malwarebytes - AdwCleaner is a free Adware/PUP removal too.) C:\Documents and Settings\Orion\Bureau\adwcleaner_6.043.exe =>.Malwarebytes Corporation® O4 - GS\Quicklaunch [Orion]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Programs [Orion]: Assistance à distance.lnk . (.Microsoft Corporation - Assistance à distance Microsoft.) C:\WINDOWS\system32\rcimlby.exe -LaunchRA =>.Microsoft Corporation O4 - GS\Programs [Orion]: Clavier visuel.lnk . (.Microsoft Corporation - Clavier visuel.) C:\WINDOWS\system32\osk.exe =>.Microsoft Corporation O4 - GS\Programs [Orion]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\IEXPLORE.EXE =>.Microsoft Corporation O4 - GS\Programs [Orion]: Microsoft Virtual PC.lnk . (.Microsoft Corporation - Virtual PC 2007.) E:\Virtual PC.exe =>.Microsoft Corporation® O4 - GS\Programs [Orion]: OneNote 2010 - Capture d’écran et lancement.lnk . (.Microsoft Corporation - Microsoft OneNote Quick Launcher.) C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE /tsr =>.Microsoft Corporation® O4 - GS\Programs [Orion]: Outlook Express.lnk . (.Microsoft Corporation - Outlook Express.) C:\Program Files\Outlook Express\msimn.exe =>.Microsoft Corporation O4 - GS\CommonDesktop [Public]: Speccy.lnk . (.Piriform Ltd - Speccy.) C:\Program Files\Speccy\Speccy.exe =>.Piriform Ltd® O4 - GS\Programs [Public]: Assistance à distance.lnk . (.Microsoft Corporation - Assistance à distance Microsoft.) C:\WINDOWS\system32\rcimlby.exe -LaunchRA =>.Microsoft Corporation O4 - GS\Programs [Public]: Clavier visuel.lnk . (.Microsoft Corporation - Clavier visuel.) C:\WINDOWS\system32\osk.exe =>.Microsoft Corporation O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\IEXPLORE.EXE =>.Microsoft Corporation O4 - GS\Programs [Public]: Microsoft Virtual PC.lnk . (.Microsoft Corporation - Virtual PC 2007.) E:\Virtual PC.exe =>.Microsoft Corporation® O4 - GS\Programs [Public]: OneNote 2010 - Capture d’écran et lancement.lnk . (.Microsoft Corporation - Microsoft OneNote Quick Launcher.) C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE /tsr =>.Microsoft Corporation® O4 - GS\Programs [Public]: Outlook Express.lnk . (.Microsoft Corporation - Outlook Express.) C:\Program Files\Outlook Express\msimn.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Adobe Reader XI.lnk . (...) C:\WINDOWS\Installer\{AC76BA86-7AD7-1036-7B44-AB0000000001}\SC_Reader.ico =>.Adobe Inc. O4 - GS\ProgramsCommon [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: Windows Messenger.lnk . (.Microsoft Corporation - Windows Messenger.) C:\Program Files\Messenger\msmsgs.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows Movie Maker.lnk . (.Microsoft Corporation - Windows Movie Maker.) C:\Program Files\Movie Maker\moviemk.exe =>.Microsoft Corporation ---\\ Modification Domaine/Adresses DNS (2) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{7EC6414E-03D2-4BBE-8DD5-B31391C9B7D5}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress ---\\ Protocole additionnel (27) - 1s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll =>.Microsoft Corporation O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API.) -- C:\WINDOWS\system32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation® O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll =>.Microsoft Corporation O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll =>.Microsoft Corporation O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation O18 - Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} . (.Microsoft Corporation - WIA Scripting Layer.) -- C:\WINDOWS\system32\wiascr.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll =>.Microsoft Corporation O18 - Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE14\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Logiciels installés (48) - 45s O42 - Logiciel: 32 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM] -- {60FFB3E0-6D5B-4D73-AE5B-07E58B83AF0C} =>.Hewlett-Packard O42 - Logiciel: Adobe Flash Player 15 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 16 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Reader XI (11.0.08) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Shockwave Player 11.5 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player =>.Adobe Systems, Inc. O42 - Logiciel: Alky for Applications (Windows XP) - (.Alky Team.) [HKLM] -- {BB05D173-9681-4812-A7FA-BD4042A3DA00} =>.Alky Team O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: Crystal Reports for Visual Studio - (.SAP.) [HKLM] -- {AC41D924-8C68-4BD5-A7A1-0AE4176C31A6} =>.SAP O42 - Logiciel: DJ_AIO_06_F2400_SW_Min - (.Hewlett-Packard.) [HKLM] -- {5546F4E9-B0F4-4F54-B949-2AB006C9284F} =>.Hewlett-Packard O42 - Logiciel: Dotfuscator Software Services - Community Edition - (.PreEmptive Solutions.) [HKLM] -- {41B31ABE-5A6E-498A-8F28-3BA3B8779A41} =>.PreEmptive Solutions O42 - Logiciel: Foxit Reader - (.Foxit Software.) [HKLM] -- Foxit Reader =>.Foxit Software O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect O42 - Logiciel: HP Deskjet F2400 All-in-One Driver 14.0 Rel. 6 - (.HP.) [HKLM] -- {819CA3BC-2FF8-4811-B42F-421F7BFD3559} =>.Hewlett Packard® O42 - Logiciel: ImgBurn - (.LIGHTNING UK!.) [HKLM] -- ImgBurn =>.LIGHTNING UK! O42 - Logiciel: LogonStudio - (..) [HKLM] -- LogonStudio O42 - Logiciel: Media Player Classic - Home Cinema - (.MPC-HC Team.) [HKLM] -- Media Player Classic - Home Cinema =>.MPC-HC Team O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM] -- {95120000-00B9-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft National Language Support Downlevel APIs - (.Microsoft Corporation.) [HKLM] -- NLSDownlevelMapping =>.Microsoft Corporation® O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Microsoft Silverlight 3 SDK - (.Microsoft Corporation.) [HKLM] -- {2012098D-EEE9-4769-8DD3-B038050854D4} =>.Microsoft Corporation O42 - Logiciel: Microsoft Software Update for Web Folders (French) 14 - (.Microsoft Corporation.) [HKLM] -- {90140000-0010-040C-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Virtual PC 2007 - (.Microsoft Corporation.) [HKLM] -- {8A7CAA24-7B23-410B-A7C3-F994B0944160} =>.Microsoft Corporation O42 - Logiciel: Mozilla Firefox 48.0.2 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 48.0.2 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E} =>.Microsoft Corporation O42 - Logiciel: MSXML 6.0 Parser (KB927977) - (.Microsoft Corporation.) [HKLM] -- {5A710547-B58E-488B-828D-CA9A25A0533C} =>.Microsoft Corporation O42 - Logiciel: Norton Internet Security - (.Symantec Corporation.) [HKLM] -- NIS =>.Symantec Corporation® O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM] -- Picasa 3 =>.Google Inc® O42 - Logiciel: Realtek AC'97 Audio - (.Realtek Semiconductor Corp..) [HKLM] -- {FB08F381-6533-4108-B7DD-039E11FBC27E} =>.Realtek Semiconductor Corp. O42 - Logiciel: S3GSetup - (.S3 Graphics.) [HKLM] -- {2B43252C-A1E3-4C47-927C-9F2C276D3515} =>.S3 Graphics O42 - Logiciel: Scan - (.Hewlett-Packard.) [HKLM] -- {06A1D88C-E102-4527-AF70-29FFD7AF215A} =>.Hewlett-Packard O42 - Logiciel: Service Pack 1 for SQL Server 2008 (KB968369) - (.Microsoft Corporation.) [HKLM] -- KB968369 =>.Microsoft Corporation® O42 - Logiciel: Sierra On-Line Games (Remove only) - (..) [HKLM] -- Sierra Uninstall O42 - Logiciel: Speccy - (.Piriform.) [HKLM] -- Speccy =>.Piriform Ltd® O42 - Logiciel: Sql Server Customer Experience Improvement Program - (.Microsoft Corporation.) [HKLM] -- {C965F01C-76EA-4BD7-973E-46236AE312D7} =>.Microsoft Corporation O42 - Logiciel: Toolbox - (.Hewlett-Packard.) [HKLM] -- {292F0F52-B62D-4E71-921B-89A682402201} =>.Hewlett-Packard O42 - Logiciel: Unlocker 1.9.1 - (.Cedrick Collomb.) [HKLM] -- Unlocker =>.Cedrick Collomb O42 - Logiciel: VIA/S3G Display Driver - (..) [HKLM] -- VIA/S3G UniChrome Family Win2K/XP Display O42 - Logiciel: Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 ENU - (.Microsoft Corporation.) [HKLM] -- {112C23F2-C036-4D40-BED4-0CB47BF5555C} =>.Microsoft Corporation O42 - Logiciel: VLC media player 1.1.9 - (.VideoLAN.) [HKLM] -- VLC media player =>.VideoLAN O42 - Logiciel: Volet Windows - (.Microsoft Corporation.) [HKLM] -- Windows Sidebar =>.Microsoft Corporation O42 - Logiciel: Web Deployment Tool - (.Microsoft Corporation.) [HKLM] -- {0F37D969-1260-419E-B308-EF7D29ABDE20} =>.Microsoft Corporation O42 - Logiciel: WebFldrs XP - (.Microsoft Corporation.) [HKLM] -- {350C940c-3D7C-4EE8-BAA9-00BCB3D54227} =>.Microsoft Corporation O42 - Logiciel: Windows Feature Pack for Storage (32-bit) - IMAPI update for Blu-Ray - (.Microsoft Corporation.) [HKLM] -- KB952011 =>.Microsoft Corporation O42 - Logiciel: WinRAR 4.00 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver =>.win.rar GmbH O42 - Logiciel: XML Paper Specification Shared Components Language Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- XPSEPSCLP =>.Microsoft Corporation® ---\\ HKCU & HKLM Software Keys (71) - 45s HKLM\SOFTWARE\Adobe =>.Adobe HKLM\SOFTWARE\AppDataLow =>.Microsoft Corporation HKLM\SOFTWARE\Big Fish Games =>.Big Fish Games HKLM\SOFTWARE\C07ft5Y =>.Total War Game HKLM\SOFTWARE\Canon =>.Canon HKLM\SOFTWARE\DivXNetworks =>.DivXNetworks HKLM\SOFTWARE\DT Soft =>.DT Soft Ltd HKLM\SOFTWARE\Foxit Software =>.Foxit Software HKLM\SOFTWARE\Gabest =>.Gabest HKLM\SOFTWARE\Gemplus =>.Gemplus HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard HKLM\SOFTWARE\ICE =>.Legitimate HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\InterVideo =>.InterVideo HKLM\SOFTWARE\LogMeInRescueCallingCard =>.LogMeIn Entreprise HKLM\SOFTWARE\Macromedia =>.Macromedia HKLM\SOFTWARE\mcafeeupdater =>.McAfee Inc. HKLM\SOFTWARE\Micromega Software System HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\mozilla.org =>.mozilla.org HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\Norton =>.Norton HKLM\SOFTWARE\Notepad++ =>.Don Ho HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\OldTimer Tools =>.OldTimer Tools HKLM\SOFTWARE\Piriform =>.Piriform HKLM\SOFTWARE\Program Groups =>.Program Groups HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\S3 HKLM\SOFTWARE\Schlumberger =>.Schlumberger HKLM\SOFTWARE\Secure =>.Superfluous.SecurePCCleaner HKLM\SOFTWARE\SierraOnLine HKLM\SOFTWARE\Stardock =>.Stardock HKLM\SOFTWARE\Symantec =>.Symantec HKLM\SOFTWARE\VideoLAN =>.VideoLAN HKLM\SOFTWARE\Windows 3.1 Migration Status =>.Microsoft Corporation HKLM\SOFTWARE\WinRAR =>.WinRAR HKLM\SOFTWARE\YWR2YW5jZXBjdG9vbHMub3Jn HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\Avance =>.Avance Software HKCU\SOFTWARE\Canon =>.Canon HKCU\SOFTWARE\DT Soft =>.DT Soft Ltd HKCU\SOFTWARE\Foxit Software =>.Foxit Software HKCU\SOFTWARE\Gabest =>.Gabest HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard HKCU\SOFTWARE\Hilgraeve Inc HKCU\SOFTWARE\ImgBurn =>.Lightning UK HKCU\SOFTWARE\Intel =>.Intel HKCU\SOFTWARE\Licenses =>.Microsoft Corporation HKCU\SOFTWARE\LiveGadgets.net HKCU\SOFTWARE\LogMeInRescueCallingCard =>.LogMeIn Entreprise HKCU\SOFTWARE\Macromedia =>.Macromedia HKCU\SOFTWARE\Micromega Software System HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\Norton =>.Norton HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\Piriform =>.Piriform HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\Settings =>.Samsung Electronics HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKCU\SOFTWARE\AppDataLow\Software\Macromedia =>.Macromedia ---\\ Contenu des dossiers Programmes (129) - 14s O43 - CFD: 02/12/2014 - [] D -- C:\Program Files\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\Alky for Applications O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd O43 - CFD: 28/11/2012 - [0] D -- C:\Program Files\ComPlus Applications =>.Microsoft Corporation O43 - CFD: 21/01/2017 - [] D -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\Foxit Software =>.Foxit Software O43 - CFD: 07/01/2017 - [] D -- C:\Program Files\Google =>.Google Inc® O43 - CFD: 29/11/2012 - [] D -- C:\Program Files\HP =>.Hewlett-Packard O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\ImgBurn =>.Lightning UK O43 - CFD: 28/11/2012 - [] HD -- C:\Program Files\InstallShield Installation Information =>.InstallShield Software O43 - CFD: 27/01/2017 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\Media Player Classic - Home Cinema O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\Messenger =>.Microsoft Corporation O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation O43 - CFD: 19/11/2016 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 05/01/2017 - [] D -- C:\Program Files\Microsoft SQL Server =>.Microsoft Corporation O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition =>.Microsoft Corporation O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\Microsoft Synchronization Services =>.Microsoft Corporation O43 - CFD: 05/01/2017 - [] D -- C:\Program Files\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\Movie Maker =>.Microsoft Corporation O43 - CFD: 31/12/2016 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla O43 - CFD: 22/11/2016 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 05/01/2017 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 18/11/2016 - [] D -- C:\Program Files\MSXML 4.0 =>.Microsoft Corporation O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\NetMeeting =>.Microsoft Corporation O43 - CFD: 14/01/2013 - [] D -- C:\Program Files\Norton Internet Security =>.Symantec O43 - CFD: 14/01/2013 - [] D -- C:\Program Files\NortonInstaller =>.Symantec O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\Notepad++ =>.Don Ho O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\Online Services =>.Hewlett-Packard O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\Outlook Express =>.Microsoft Corporation O43 - CFD: 14/01/2017 - [] D -- C:\Program Files\Pale Moon O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\Realtek AC97 =>.Realtek Semiconductor Corp. O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\Services en ligne =>.Hewlett-Packard O43 - CFD: 20/01/2017 - [] D -- C:\Program Files\Speccy =>.Piriform O43 - CFD: 14/01/2013 - [] D -- C:\Program Files\Symantec =>.Symantec O43 - CFD: 28/11/2012 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 05/01/2017 - [] D -- C:\Program Files\Unlocker =>.Cedrick Collomb O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\VIA =>.VIA O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\VistaExperience.org O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\WinCustomize O43 - CFD: 14/01/2017 - [] D -- C:\Program Files\Windows Media Connect 2 =>.Microsoft Corporation O43 - CFD: 25/01/2017 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 26/02/2013 - [] D -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 28/11/2012 - [0] HD -- C:\Program Files\WindowsUpdate =>.Microsoft Corporation O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\WinRAR =>.WinRAR O43 - CFD: 10/01/2017 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires =>.Microsoft Corporation O43 - CFD: 28/11/2012 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CCleaner =>.Piriform Ltd O43 - CFD: 10/01/2017 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage =>.Microsoft Corporation O43 - CFD: 28/11/2012 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Foxit Reader =>.Foxit Corporation O43 - CFD: 27/01/2017 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Google Chrome =>.Google Inc. O43 - CFD: 28/11/2012 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ImgBurn =>.Lightning UK O43 - CFD: 28/11/2012 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Media Player Classic =>.Microsoft Corporation O43 - CFD: 18/11/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 08/07/2014 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Norton Internet Security =>.Symantec O43 - CFD: 28/11/2012 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration =>.Microsoft Corporation O43 - CFD: 20/12/2012 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Picasa 3 =>.Google Inc. O43 - CFD: 28/11/2012 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Sierra =>.Sierra O43 - CFD: 15/01/2017 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Speccy =>.Piriform O43 - CFD: 06/01/2017 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN =>.VideoLan Team O43 - CFD: 28/11/2012 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinCustomize O43 - CFD: 28/11/2012 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR =>.WinRAR O43 - CFD: 02/12/2014 - [] D -- C:\Documents and Settings\All Users\Application Data\Adobe =>.Adobe O43 - CFD: 28/11/2012 - [] D -- C:\Documents and Settings\All Users\Application Data\BigFishGamesCache O43 - CFD: 05/04/2013 - [] D -- C:\Documents and Settings\All Users\Application Data\CanonIJWSpt =>.Canon Inc. O43 - CFD: 28/11/2012 - [] D -- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite =>.DAEMON Tools O43 - CFD: 09/01/2017 - [] D -- C:\Documents and Settings\All Users\Application Data\Malwarebytes =>.Malwarebytes O43 - CFD: 22/09/2013 - [] D -- C:\Documents and Settings\All Users\Application Data\McAfee =>.McAfee O43 - CFD: 05/01/2017 - [] SD -- C:\Documents and Settings\All Users\Application Data\Microsoft =>.Microsoft Corporation O43 - CFD: 20/01/2017 - [] D -- C:\Documents and Settings\All Users\Application Data\Microsoft Help =>.Microsoft Corporation O43 - CFD: 05/01/2017 - [] D -- C:\Documents and Settings\All Users\Application Data\Microsoft Visual Studio =>.Microsoft Corporation O43 - CFD: 09/12/2012 - [] D -- C:\Documents and Settings\All Users\Application Data\Mozilla =>.Mozilla Corporation O43 - CFD: 28/12/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\Norton =>.Norton O43 - CFD: 14/01/2013 - [] D -- C:\Documents and Settings\All Users\Application Data\NortonInstaller =>.Symantec O43 - CFD: 05/01/2017 - [] D -- C:\Documents and Settings\All Users\Application Data\PreEmptive Solutions =>.PreEmptive Solutions O43 - CFD: 21/01/2017 - [] D -- C:\Documents and Settings\All Users\Application Data\VMware =>.VMware O43 - CFD: 29/12/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage =>.Microsoft Corporation O43 - CFD: 02/12/2014 - [] D -- C:\Program Files\Fichiers communs\Adobe =>.Adobe O43 - CFD: 05/04/2013 - [] D -- C:\Program Files\Fichiers communs\CANON =>.Canon O43 - CFD: 19/11/2016 - [] D -- C:\Program Files\Fichiers communs\DESIGNER =>.Designer O43 - CFD: 29/11/2012 - [] D -- C:\Program Files\Fichiers communs\Hewlett-Packard =>.Hewlett-Packard O43 - CFD: 29/11/2012 - [] D -- C:\Program Files\Fichiers communs\HP =>.Hewlett-Packard O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\Fichiers communs\InstallShield =>.InstallShield O43 - CFD: 06/01/2017 - [] D -- C:\Program Files\Fichiers communs\Merge Modules =>.Microsoft Corporation O43 - CFD: 07/01/2017 - [] D -- C:\Program Files\Fichiers communs\Microsoft Shared =>.Microsoft Corporation O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\Fichiers communs\MSSoap =>.Microsoft Corporation O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\Fichiers communs\ODBC =>.DB Connectivity Solutions O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\Fichiers communs\Services =>.Microsoft Corporation O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\Fichiers communs\SpeechEngines =>.Microsoft Corporation O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\Fichiers communs\Stardock =>.Stardock O43 - CFD: 15/01/2013 - [] D -- C:\Program Files\Fichiers communs\Symantec Shared =>.Symantec Corporation O43 - CFD: 28/11/2012 - [] D -- C:\Program Files\Fichiers communs\System =>.Microsoft Corporation O43 - CFD: 21/01/2017 - [] D -- C:\Program Files\Fichiers communs\VMware =>.VMware O43 - CFD: 16/11/2016 - [] D -- C:\Documents and Settings\Orion\Application Data\Adobe =>.Adobe O43 - CFD: 24/12/2016 - [] D -- C:\Documents and Settings\Orion\Application Data\Canon =>.Canon O43 - CFD: 28/11/2012 - [] D -- C:\Documents and Settings\Orion\Application Data\DAEMON Tools Lite =>.DAEMON Tools O43 - CFD: 09/01/2017 - [] D -- C:\Documents and Settings\Orion\Application Data\FileOpenerWindows =>Adware.InstallCore O43 - CFD: 28/11/2012 - [] D -- C:\Documents and Settings\Orion\Application Data\Foxit Software =>.Foxit Software O43 - CFD: 22/01/2013 - [] D -- C:\Documents and Settings\Orion\Application Data\Google =>.Google O43 - CFD: 20/11/2016 - [0] D -- C:\Documents and Settings\Orion\Application Data\Help =>.Microsoft Corporation O43 - CFD: 28/11/2012 - [] D -- C:\Documents and Settings\Orion\Application Data\Identities =>.Microsoft Corporation O43 - CFD: 10/01/2017 - [] D -- C:\Documents and Settings\Orion\Application Data\ImgBurn =>.Lightning UK O43 - CFD: 22/01/2013 - [] D -- C:\Documents and Settings\Orion\Application Data\Macromedia =>.Macromedia O43 - CFD: 14/01/2017 - [0] D -- C:\Documents and Settings\Orion\Application Data\Media Player Classic =>.Microsoft Corporation O43 - CFD: 21/01/2017 - [] SD -- C:\Documents and Settings\Orion\Application Data\Microsoft =>.Microsoft Corporation O43 - CFD: 05/01/2017 - [] D -- C:\Documents and Settings\Orion\Application Data\Microsoft Corporation =>.Microsoft Corporation O43 - CFD: 06/01/2017 - [] D -- C:\Documents and Settings\Orion\Application Data\Mozilla =>.Mozilla Corporation O43 - CFD: 29/11/2012 - [] D -- C:\Documents and Settings\Orion\Application Data\MSNInstaller =>.Microsoft Corporation O43 - CFD: 28/11/2012 - [] D -- C:\Documents and Settings\Orion\Application Data\Notepad++ =>.Don Ho O43 - CFD: 16/11/2016 - [0] D -- C:\Documents and Settings\Orion\Application Data\Systweak =>.Superfluous.Systweak O43 - CFD: 09/01/2017 - [] D -- C:\Documents and Settings\Orion\Application Data\UniDU O43 - CFD: 02/01/2017 - [] D -- C:\Documents and Settings\Orion\Application Data\vlc =>.VideoLan Team O43 - CFD: 28/11/2012 - [] D -- C:\Documents and Settings\Orion\Application Data\WinRAR =>.WinRAR O43 - CFD: 29/01/2017 - [] D -- C:\Documents and Settings\Orion\Application Data\ZHP =>.Nicolas Coolman O43 - CFD: 16/11/2016 - [] D -- C:\Documents and Settings\Orion\Local Settings\Application Data\Adobe =>.Adobe O43 - CFD: 13/01/2017 - [0] D -- C:\Documents and Settings\Orion\Local Settings\Application Data\Deployment =>.Microsoft Corporation O43 - CFD: 06/01/2017 - [] D -- C:\Documents and Settings\Orion\Local Settings\Application Data\Google =>.Google O43 - CFD: 29/11/2012 - [0] D -- C:\Documents and Settings\Orion\Local Settings\Application Data\Help =>.Microsoft Corporation O43 - CFD: 25/12/2012 - [] D -- C:\Documents and Settings\Orion\Local Settings\Application Data\HP =>.Hewlett-Packard O43 - CFD: 29/11/2012 - [] D -- C:\Documents and Settings\Orion\Local Settings\Application Data\Identities =>.Microsoft Corporation O43 - CFD: 29/01/2017 - [] SD -- C:\Documents and Settings\Orion\Local Settings\Application Data\Microsoft =>.Microsoft Corporation O43 - CFD: 28/11/2012 - [0] D -- C:\Documents and Settings\Orion\Local Settings\Application Data\Microsoft Help =>.Microsoft Corporation O43 - CFD: 28/11/2012 - [] D -- C:\Documents and Settings\Orion\Local Settings\Application Data\Mozilla =>.Mozilla Corporation O43 - CFD: 16/11/2016 - [0] D -- C:\Documents and Settings\Orion\Local Settings\Application Data\WMTools Downloaded Files =>.WMTools O43 - CFD: 30/12/2016 - [] RD -- C:\Documents and Settings\Orion\Menu Démarrer\Programmes\Accessoires =>.Microsoft Corporation O43 - CFD: 15/01/2017 - [] RD -- C:\Documents and Settings\Orion\Menu Démarrer\Programmes\Démarrage =>.Microsoft Corporation O43 - CFD: 28/11/2012 - [] D -- C:\Documents and Settings\Orion\Menu Démarrer\Programmes\WinRAR =>.WinRAR ---\\ ShellIconOverlayIdentifiers (SIOI) (6) - 1s O106 - SIOI: Offline Files Menu [Fichiers hors connexion] - {750fdf0e-2a26-11d1-a3ea-080036587f03}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\system32\cscui.dll =>.Microsoft Corporation O106 - SIOI: Groove Explorer Icon Overlay 1 (GFS Unread Stub) [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] - {99FD978C-D287-4F50-827F-B2C658EDA8E7}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2 (GFS Stub) [Groove Explorer Icon Overlay 2 (GFS Stub)] - {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2.5 (GFS Unread Folder) [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] - {920E6DB1-9907-4370-B3A0-BAFC03D81399}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 3 (GFS Folder) [Groove Explorer Icon Overlay 3 (GFS Folder)] - {16F3DD56-1AF5-4347-846D-7C10C4192619}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 4 (GFS Unread Mark) [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] - {2916C86E-86A6-43FE-8112-43ABE6BF8DCC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® ---\\ Enumération des clés StartupReg (1) - 0s O53 - SMSR:HKLM\...\startupreg\LogonStudio [Key] . (.Stardock and Luca Saggese - .) -- C:\Program Files\WinCustomize\LogonStudio\logonstudio.exe ---\\ Liste des pilotes du système (42) - 8s O58 - SDL:2008/09/24 10:40:22 RA . (.Realtek Semiconductor Corp. - Realtek AC'97 Audio Driver (WDM).) -- C:\WINDOWS\System32\drivers\alcxwdm.sys [144368] =>.Realtek Semiconductor Corp. O58 - SDL:2011/06/21 12:57:55 A . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\System32\drivers\cinemst2.sys [144368] =>.RAVISENT Technologies Inc. O58 - SDL:2011/06/21 12:57:55 A . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\System32\drivers\cpqdap01.sys [144368] =>.Compaq Computer Corporation O58 - SDL:2008/04/13 18:05:08 A . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- C:\WINDOWS\System32\drivers\dmboot.sys [144368] =>.Microsoft Corp., Veritas Software O58 - SDL:2008/04/13 18:05:14 A . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\System32\drivers\dmio.sys [144368] =>.Microsoft Corp., Veritas Software O58 - SDL:2002/08/30 13:00:00 A . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\System32\drivers\dmload.sys [144368] =>.Microsoft Corp., Veritas Software. O58 - SDL:2001/08/17 19:13:08 A . (.VIA Technologies, Inc. - NDIS 5.0 miniport driver.) -- C:\WINDOWS\System32\drivers\fetnd5.sys [144368] =>.VIA Technologies, Inc. O58 - SDL:2008/04/13 08:36:06 A . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [144368] =>.Microsoft Corporation O58 - SDL:2008/10/29 01:27:07 A . (.HP - IEEE-1284.4-1999 Driver (Windows 2000).) -- C:\WINDOWS\System32\drivers\HPZid412.sys [144368] =>.HP O58 - SDL:2008/10/29 01:27:07 A . (.HP - IEEE-1284.4-1999 Print Class Driver.) -- C:\WINDOWS\System32\drivers\HPZipr12.sys [144368] =>.HP O58 - SDL:2008/10/29 01:27:07 A . (.HP - 1284.4<->Usb Datalink Driver (Windows 2000).) -- C:\WINDOWS\System32\drivers\HPZius12.sys [144368] =>.HP O58 - SDL:2011/05/11 10:25:01 A . (.Marvell Semiconductor Inc. - Marvell Aux NV Bridge DLL.) -- C:\WINDOWS\System32\drivers\mv61xxmm.sys [144368] =>.Marvell Semiconductor® O58 - SDL:2011/05/11 10:25:01 A . (.Marvell Semiconductor Inc. - Marvell Aux NV Bridge DLL.) -- C:\WINDOWS\System32\drivers\mv64xxmm.sys [144368] =>.Marvell Semiconductor Inc. O58 - SDL:2011/05/11 10:25:01 A . (.Marvell Semiconductor Inc. - Marvell Aux NV Bridge DLL.) -- C:\WINDOWS\System32\drivers\mvxxmm.sys [144368] =>.Marvell Semiconductor® O58 - SDL:2011/06/21 12:57:55 A . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\nikedrv.sys [144368] =>.S3/Diamond Multimedia Systems O58 - SDL:2002/08/30 13:00:00 A . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- C:\WINDOWS\System32\drivers\ptilink.sys [144368] =>.Parallel Technologies, Inc. O58 - SDL:2011/06/21 12:57:55 A . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\System32\drivers\rio8drv.sys [144368] =>.S3/Diamond Multimedia Systems O58 - SDL:2011/06/21 12:57:55 A . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\riodrv.sys [144368] =>.S3/Diamond Multimedia Systems O58 - SDL:2008/04/13 08:39:16 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [144368] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2013/06/19 09:30:19 A . (.Symantec Corporation - Symantec Event Library.) -- C:\WINDOWS\System32\drivers\SYMEVENT.SYS [144368] =>.Symantec Corporation® O58 - SDL:2011/06/21 12:57:55 A . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\System32\drivers\tsbvcap.sys [144368] =>.Toshiba Corporation O58 - SDL:2017/01/16 18:10:44 A . (.Oracle Corporation - VirtualBox Host-Only Network Adapter Driver.) -- C:\WINDOWS\System32\drivers\VBoxNetAdp.sys [144368] =>.Oracle Corporation® O58 - SDL:2011/06/21 12:57:55 A . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\System32\drivers\vdmindvd.sys [144368] =>.RAVISENT Technologies Inc. O58 - SDL:2011/05/11 10:25:07 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\viaide.sys [144368] =>.VIA Technologies, Inc. O58 - SDL:2011/06/21 13:16:49 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\videX32.sys [144368] =>.VIA Technologies, Inc. O58 - SDL:2005/03/08 10:50:16 A . (.Copyright (C) VIA/S3 Graphics Co, Ltd. - VIA/S3G Miniport Driver.) -- C:\WINDOWS\System32\drivers\vtmini.sys [144368] O58 - SDL:2011/06/21 13:16:49 A . (.VIA Technologies, Inc. - ATA/ATAPI devices Hot-Plug/DIPM monitor.) -- C:\WINDOWS\System32\drivers\xfilt.sys [144368] =>.VIA Technologies, Inc. O58 - SDL:2002/08/30 13:00:00 AC . (...) -- C:\WINDOWS\System32\ansi.sys [144368] =>.Microsoft Corporation O58 - SDL:2002/08/30 13:00:00 A . (...) -- C:\WINDOWS\System32\country.sys [144368] =>.Microsoft Corporation O58 - SDL:2002/08/30 13:00:00 A . (...) -- C:\WINDOWS\System32\himem.sys [144368] =>.Microsoft Corporation O58 - SDL:2002/08/30 13:00:00 AC . (...) -- C:\WINDOWS\System32\key01.sys [144368] =>.Microsoft Corporation O58 - SDL:2008/04/13 08:50:56 A . (...) -- C:\WINDOWS\System32\keyboard.sys [144368] =>.Microsoft Corporation O58 - SDL:2002/08/30 13:00:00 A . (...) -- C:\WINDOWS\System32\ntdos.sys [144368] =>.Microsoft Corporation O58 - SDL:2002/08/30 13:00:00 AC . (...) -- C:\WINDOWS\System32\ntdos404.sys [144368] =>.Microsoft Corporation O58 - SDL:2002/08/30 13:00:00 AC . (...) -- C:\WINDOWS\System32\ntdos411.sys [144368] =>.Microsoft Corporation O58 - SDL:2002/08/30 13:00:00 AC . (...) -- C:\WINDOWS\System32\ntdos412.sys [144368] =>.Microsoft Corporation O58 - SDL:2002/08/30 13:00:00 AC . (...) -- C:\WINDOWS\System32\ntdos804.sys [144368] =>.Microsoft Corporation O58 - SDL:2008/04/13 08:49:52 A . (...) -- C:\WINDOWS\System32\ntio.sys [144368] =>.Microsoft Corporation O58 - SDL:2008/04/13 08:49:44 AC . (...) -- C:\WINDOWS\System32\ntio404.sys [144368] =>.Microsoft Corporation O58 - SDL:2008/04/13 08:49:40 AC . (...) -- C:\WINDOWS\System32\ntio411.sys [144368] =>.Microsoft Corporation O58 - SDL:2008/04/13 08:49:44 AC . (...) -- C:\WINDOWS\System32\ntio412.sys [144368] =>.Microsoft Corporation O58 - SDL:2008/04/13 08:49:42 AC . (...) -- C:\WINDOWS\System32\ntio804.sys [144368] =>.Microsoft Corporation ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (2) - 64s O61 - LFC: 2017/01/29 13:52:25 A . (..) -- C:\Documents and Settings\Orion\Bureau\Musique.bat [14] O61 - LFC: 2017/01/25 16:24:12 A . (..) -- C:\Documents and Settings\Orion\Bureau\Windows_Vista_SP2_x86_FR.iso [38052] ---\\ Associations Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\system32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ Menu de démarrage Internet (13) - 1s O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe =>.Microsoft Corporation ---\\ Recherche d'infection sur les navigateurs (16) - 19s O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://search.live.com/ O69 - SBI: SearchScopes [HKUS\.DEFAULT] {05CE69CA-A467-40B4-A6D0-D63850F144CC} - (Recherche sur Ebay) - http://search.ebay.fr/ =>.eBay O69 - SBI: SearchScopes [HKUS\.DEFAULT] {0CACCF86-4D37-4DBE-9AAF-51C817A8A58C} - (Recherche sur Myspace) - http://sads.myspace.com/ O69 - SBI: SearchScopes [HKUS\.DEFAULT] {129F152A-0117-474E-80ED-DA48936E3976} - (Recherche sur Fnac.com) - http://www3.fnac.com/ O69 - SBI: SearchScopes [HKUS\.DEFAULT] {48682094-7DFB-4581-9A68-A8414F1C4327} - (Recherche sur Linternaute) - http://recherche.linternaute.com/ O69 - SBI: SearchScopes [HKUS\.DEFAULT] {4FC1B895-E129-4345-B101-CF4EF5EF80C8} [DefaultScope] - (Recherche sur Google) - http://www.google.com/ =>.Google Inc. O69 - SBI: SearchScopes [HKUS\S-1-5-18] {05CE69CA-A467-40B4-A6D0-D63850F144CC} - (Recherche sur Ebay) - http://search.ebay.fr/ =>.eBay O69 - SBI: SearchScopes [HKUS\S-1-5-18] {0CACCF86-4D37-4DBE-9AAF-51C817A8A58C} - (Recherche sur Myspace) - http://sads.myspace.com/ O69 - SBI: SearchScopes [HKUS\S-1-5-18] {129F152A-0117-474E-80ED-DA48936E3976} - (Recherche sur Fnac.com) - http://www3.fnac.com/ O69 - SBI: SearchScopes [HKUS\S-1-5-18] {48682094-7DFB-4581-9A68-A8414F1C4327} - (Recherche sur Linternaute) - http://recherche.linternaute.com/ O69 - SBI: SearchScopes [HKUS\S-1-5-18] {4FC1B895-E129-4345-B101-CF4EF5EF80C8} [DefaultScope] - (Recherche sur Google) - http://www.google.com/ =>.Google Inc. O69 - SBI: SearchScopes [HKUS\S-1-5-20] {05CE69CA-A467-40B4-A6D0-D63850F144CC} - (Recherche sur Ebay) - http://search.ebay.fr/ =>.eBay O69 - SBI: SearchScopes [HKUS\S-1-5-20] {0CACCF86-4D37-4DBE-9AAF-51C817A8A58C} - (Recherche sur Myspace) - http://sads.myspace.com/ O69 - SBI: SearchScopes [HKUS\S-1-5-20] {129F152A-0117-474E-80ED-DA48936E3976} - (Recherche sur Fnac.com) - http://www3.fnac.com/ O69 - SBI: SearchScopes [HKUS\S-1-5-20] {48682094-7DFB-4581-9A68-A8414F1C4327} - (Recherche sur Linternaute) - http://recherche.linternaute.com/ O69 - SBI: SearchScopes [HKUS\S-1-5-20] {4FC1B895-E129-4345-B101-CF4EF5EF80C8} [DefaultScope] - (Recherche sur Google) - http://www.google.com/ =>.Google Inc. ---\\ Enumère les services démarrés par Svchost (36) - 3s O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\WINDOWS\system32\appmgmts.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [144368] =>.Microsoft Corp. O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - .) -- C:\WINDOWS\system32\es.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: HidServ (HidServ) . (.Microsoft Corporation - HID Audio Service.) -- C:\WINDOWS\system32\hidserv.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- C:\WINDOWS\system32\mswsock.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\WINDOWS\system32\ipnathlp.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\system32\tapisrv.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: Wmi (Wmi) . (.Microsoft Corporation - API avancées Windows 32.) -- C:\WINDOWS\system32\advapi32.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\wmisvc.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\system32\qmgr.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [144368] {610997F400010000000C} =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [144368] =>.Microsoft Corporation O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- C:\WINDOWS\system32\mspmsnsv.dll [144368] =>.Microsoft Corporation ---\\ Scan Additionnel (6) - 0s HKLM\SYSTEM\CurrentControlSet\Services\KMService =>PUP.Optional.Office C:\WINDOWS\system32\srvany.exe =>PUP.Optional.Office HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect C:\Documents and Settings\Orion\Application Data\FileOpenerWindows =>Adware.InstallCore C:\Documents and Settings\Orion\Application Data\Systweak =>.Superfluous.Systweak ---\\ Récapitulatif des éléments trouvés sur votre station (5) - 0s https://www.nicolascoolman.com/fr/hijacker-office/ =>PUP.Optional.Office https://nicolascoolman.eu/2017/01/28/heuristic-suspect/ =>Heuristic.Suspect https://www.anti-malware.top/2016/06/08/superfluous-securepccleaner/ =>.Superfluous.SecurePCCleaner https://www.anti-malware.top/2016/04/22/adware-installcore/ =>Adware.InstallCore https://www.nicolascoolman.com/fr/pup-systweak/ =>.Superfluous.Systweak ~ Unselected Options: O82, ~ End of the scan, 70449 items in 27mn55s (676)(0)