~ ZHPDiag v2017.2.24.35 Par Nicolas Coolman (2017/02/24) ~ Démarré par Administrateur (Administrator) (2017/02/24 22:51:00) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Documents and Settings\Administrateur\Bureau\ZHPDiag.txt ~ Rapport: C:\Documents and Settings\Administrateur\Application Data\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ Démarrage du système: Normal (Normal boot) Windows XP, 32-bit Service Pack 3 (Build 2600) =>.Microsoft Corporation ---\\ Navigateurs Internet (1) - 0s ~ MSIE: Internet Explorer v8.0.6001.18702 ---\\ Informations sur les produits Windows (3) - 0s Windows Automatic Updates : OK Windows Activation Technologies : KO Windows Genuine Advantage : OK ---\\ Logiciels de protection (1) - 2s 360 Total Security v8.2.0.1066 (Protection) ---\\ Surveillance de Logiciels (1) - 2s ~ Adobe Flash Player 22 ActiveX (Surveillance) ---\\ Logiciels de partage P2P (1) - 2s ~ µTorrent v3.4.9.43295 (P2P) ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 6 Model 13 Stepping 8, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 515.12 MB (52% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 0 GB (%) free of 3 GB : ATTENTION =>Warning Disk Space ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: WINDOWS-537239B ~ User Name: Administrateur ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 0 GB free of 3 GB (System) ~ Drive D: has 0 GB free of 7 GB ---\\ Etat du Centre de Sécurité Windows (7) - 1s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Recherche particulière de fichiers génériques (22) - 2s [MD5.6877DBD462E7C25057ABD01A970972AF] - 31/12/2015 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [1037824] =>.Microsoft Corporation [MD5.93AD0B78C7357A05F50E594EC7C22300] - 31/12/2015 - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\rundll32.exe [33792] =>.Microsoft Corporation [MD5.173D1E9D67C21049827129E3804F1BCF] - 31/12/2015 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\WINDOWS\System32\wininet.dll [920064] =>.Microsoft Corporation [MD5.E9CD61CFCC82989F24CC0736DC92C442] - 31/12/2015 - (.Microsoft Corporation - Application d'ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [513536] =>.Microsoft Corporation [MD5.4992C88B25C429744D255C35C756BB7B] - 31/12/2015 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\System32\dnsapi.dll [149504] =>.Microsoft Corporation [MD5.D80ED631D3AFD47C27311B0614AFA89F] - 31/12/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [138496] =>.Microsoft Corporation [MD5.9F3A2F5AA6875C72BF062C712CFA2674] - 13/04/2008 - (.Microsoft Corporation - IDE/ATAPI Port Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [96512] =>.Microsoft Corporation [MD5.C885B02847F5D2FD45A24E219ED93B32] - 31/12/2015 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [63744] =>.Microsoft Corporation [MD5.4B0A100EAF5C49EF3CCA8C641431EACC] - 31/12/2015 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [62976] =>.Microsoft Corporation [MD5.31F923EB2170FC172C81ABDA0045D18C] - 31/12/2015 - (.Microsoft Corporation - Pilote de cryptographie FIPS.) -- C:\WINDOWS\System32\drivers\Fips.sys [44672] =>.Microsoft Corporation [MD5.573C7D0A32852B48F3058CFD8026F511] - 31/12/2015 - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [144384] [MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - 31/12/2015 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [54144] =>.Microsoft Corporation [MD5.083A052659F5310DD8B6A6CB05EDCF8E] - 31/12/2015 - (.Microsoft Corporation - IMAPI Kernel Driver.) -- C:\WINDOWS\System32\drivers\Imapi.sys [42112] =>.Microsoft Corporation [MD5.CC748EA12C6EFFDE940EE98098BF96BB] - 31/12/2015 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [152832] =>.Microsoft Corporation [MD5.23C74D75E36E7158768DD63D92789A91] - 31/12/2015 - (.Microsoft Corporation - IPSec Driver.) -- C:\WINDOWS\System32\drivers\IPSec.sys [75264] =>.Microsoft Corporation [MD5.FB2FCCC70F7174C7BF64F48E96D3ADF4] - 31/12/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [457856] =>.Microsoft Corporation [MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - 31/12/2015 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [162816] =>.Microsoft Corporation [MD5.AE8CAD8F28DB13B515A68510A539B0B8] - 31/12/2015 - (.Microsoft Corporation - NT File System Driver.) -- C:\WINDOWS\System32\drivers\ntfs.sys [576512] =>.Microsoft Corporation [MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - 31/12/2015 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [80384] =>.Microsoft Corporation [MD5.11B4A627BC9614B885C4969BFA5FF8A6] - 31/12/2015 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [51328] =>.Microsoft Corporation [MD5.47EA20320E3D6FDC7B7BB22B2B881CA6] - 04/09/2009 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [195712] =>.Microsoft Corporation [MD5.46DE1126684369BACE4849E4FC8C43CA] - 31/12/2015 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [53376] =>.Microsoft Corporation ---\\ Liste des services NT non Microsoft et non désactivés (1) - 1s O23 - Service: 360 Total Security (QHActiveDefense) . (.QIHU 360 SOFTWARE CO. LIMITED - 360 Total Security.) - C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe =>.QIHU 360 SOFTWARE CO. LIMITED® ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (5) - 58s SS - Demand [02/08/2016] [ 270016] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SS - Demand [17/12/2014] [ 208928] Baidu MoboMarket Service (BASSVC) . (.Baidu, Inc..) - C:\Program Files\Baidu Security\MoboMarket\1.2.8.4379\bassvc.exe =>.Baidu Online Network Technology (Beijing)Co., Ltd® SS - Demand [07/05/2015] [ 1714448] Baidu PC Faster Service 5.1.0.0 (PCFasterSvc_{PCFaster_5.1.0.0}) . (.Baidu, Inc..) - C:\Program Files\PC Faster\5.1.0.0\PCFasterSvc.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® SR - Auto [31/12/2015] [ 906872] 360 Total Security (QHActiveDefense) . (.QIHU 360 SOFTWARE CO. LIMITED.) - C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe =>.QIHU 360 SOFTWARE CO. LIMITED® SS - Demand [10/07/2016] [ 97080] Baidu Spark Service (SparkSvc) . (.Baidu Inc..) - C:\Program Files\baidu\Baidu Browser\sparkservice.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® ---\\ Tâches planifiées en automatique (2) - 4s O39 - APT: Adobe Flash Player Updater - (...) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] (.Orphan.) =>.Superfluous.Orphan O39 - APT: SparkUpdater - (...) -- C:\WINDOWS\Tasks\SparkUpdater.job [394] (.Orphan.) =>.Superfluous.Orphan ---\\ Applications lancées au démarrage du système (21) - 1s O4 - HKLM\..\Run: [KernelFaultCheck] C:\WINDOWS\system32\dumprep 0 -k (.not file.) O4 - HKLM\..\Run: [QHSafeTray] . (.QIHU 360 SOFTWARE CO. LIMITED - 360 Total Security.) -- C:\Program Files\360\Total Security\safemon\QHSafeTray.exe =>.QIHU 360 SOFTWARE CO. LIMITED® O4 - HKLM\..\Run: [DriverPack Notifier] . (. - Software and Drivers.) -- C:\Program Files\DriverPack Notifier\DriverPackNotifier.exe O4 - HKCU\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe =>.Microsoft Corporation O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe =>.Microsoft Corporation O4 - HKUS\.DEFAULT\..\RunOnce: [_nltide_3] rundll32 advpack.dll O4 - HKUS\.DEFAULT\..\RunOnce: [POS.1st_UserStart] . (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\rundll32.exe =>.Microsoft Corporation O4 - HKUS\.DEFAULT\..\RunOnce: [IE.1st_UserStart] . (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\rundll32.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-18\..\RunOnce: [_nltide_3] rundll32 advpack.dll O4 - HKUS\S-1-5-18\..\RunOnce: [POS.1st_UserStart] . (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\rundll32.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-18\..\RunOnce: [IE.1st_UserStart] . (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\rundll32.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [_nltide_3] rundll32 advpack.dll O4 - HKUS\S-1-5-19\..\RunOnce: [POS.1st_UserStart] . (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\rundll32.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [IE.1st_UserStart] . (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\rundll32.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [_nltide_3] rundll32 advpack.dll O4 - HKUS\S-1-5-20\..\RunOnce: [POS.1st_UserStart] . (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\rundll32.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [IE.1st_UserStart] . (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\rundll32.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-343818398-813497703-527237240-500\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe =>.Microsoft Corporation ---\\ Processus lancés (8) - 3s [MD5.FB40DC0A9F3B43B33D415CE5F6A7614B] - (.QIHU 360 SOFTWARE CO. LIMITED - 360 Total Security.) -- C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe [906872] [PID.1540] =>.QIHU 360 SOFTWARE CO. LIMITED® [MD5.682F30608A37AE46D91C879B787695D9] - (.QIHU 360 SOFTWARE CO. LIMITED - 360 Total Security.) -- C:\Program Files\360\Total Security\safemon\QHSafeTray.exe [3101304] [PID.360] =>.QIHU 360 SOFTWARE CO. LIMITED® [MD5.E98D3E8DB50BDD746EA32328583A3F6F] - (.QIHU 360 SOFTWARE CO. LIMITED - 360 Total Security.) -- C:\Program Files\360\Total Security\safemon\QHWatchdog.exe [124536] [PID.2372] =>.QIHU 360 SOFTWARE CO. LIMITED® [MD5.4CD8DEC01BE8185F316ED2B8596B5A5F] - (.BitTorrent Inc. - µTorrent.) -- C:\Documents and Settings\Administrateur\Application Data\uTorrent\uTorrent.exe [2400960] [PID.1708] =>.BitTorrent Inc® [MD5.4D80A9FB75E6B49EFDEED12760E8284B] - (.BitTorrent Inc. - WebHelper.) -- C:\Documents and Settings\Administrateur\Application Data\uTorrent\updates\3.4.9_43295\utorrentie.exe [390848] [PID.2980] =>.BitTorrent Inc® [MD5.4D80A9FB75E6B49EFDEED12760E8284B] - (.BitTorrent Inc. - WebHelper.) -- C:\Documents and Settings\Administrateur\Application Data\uTorrent\updates\3.4.9_43295\utorrentie.exe [390848] [PID.2840] =>.BitTorrent Inc® [MD5.87D9CA9C9A31A0D09A1BF08BC5CBA76E] - (.Nicolas Coolman - ZHPDiag.) -- D:\tt\ZHPDiag3.exe [2703872] [PID.3232] =>.Nicolas Coolman [MD5.8C401270A818B20B4FC8C93B9A4A5618] - (...) -- C:\UsbFix\UsbFix.exe [1821696] [PID.3616] ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (3) - 1s P2 - EXT: (...) -- C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\staged P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=10.25.2] - (.Oracle Corp..) -- C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll =>.Oracle Corp. P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.2.3] - (.VideoLAN.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll =>.VideoLAN ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (11) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr =>.Google Inc. R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.fr =>.Google Inc. R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr =>.Google Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (4) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 1s F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl" ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (3) ---\\ Browser Helper Object de navigateur (BHO) (1) - 0s O2 - BHO: (no name) - {D5FEC983-01DB-414a-9456-AF95AC9ED7B5} (.Orphan.) ---\\ Raccourcis Global Startup (36) - 12s O4 - GS\Desktop [Administrateur]: Baidu PC Faster.lnk . (.Baidu, Inc. - PC Faster Tray.) C:\Program Files\PC Faster\5.1.0.0\PCFTray.exe -shortcut =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O4 - GS\Desktop [Administrateur]: Clavier visuel.lnk . (.Microsoft Corporation - Clavier visuel.) C:\WINDOWS\system32\osk.exe =>.Microsoft Corporation O4 - GS\Desktop [Administrateur]: Potplayer.lnk . (.Kakao - PotPlayer.) C:\Program Files\DAUM\PotPlayer\PotPlayerMini.exe {6FF335A71AF03911F54668DCCC13441C} =>.Kakao O4 - GS\Desktop [Administrateur]: UsbFix.lnk . (...) C:\UsbFix\UsbFix.exe O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Documents and Settings\Administrateur\Application Data\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files\baidu\Baidu Browser\Spark.exe --bar=1016 =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O4 - GS\Quicklaunch [Administrateur]: Démarrer Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Quicklaunch [Administrateur]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 7.3, Best Reader for Everyday.) C:\Program Files\Foxit Software\Foxit Reader\FoxitReader.exe =>.Foxit Software Incorporated® O4 - GS\Quicklaunch [Administrateur]: Potplayer.lnk . (.Kakao - PotPlayer.) C:\Program Files\DAUM\PotPlayer\PotPlayerMini.exe {6FF335A71AF03911F54668DCCC13441C} =>.Kakao O4 - GS\Quicklaunch [Administrateur]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Programs [Administrateur]: Assistance à distance.lnk . (.Microsoft Corporation - Assistance à distance Microsoft.) C:\WINDOWS\system32\rcimlby.exe -LaunchRA =>.Microsoft Corporation O4 - GS\Programs [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Administrateur]: Outlook Express.lnk . (.Microsoft Corporation - Outlook Express.) C:\Program Files\Outlook Express\msimn.exe =>.Microsoft Corporation O4 - GS\Programs [Administrateur]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Desktop [HelpAssistant]: Baidu PC Faster.lnk . (.Baidu, Inc. - PC Faster Tray.) C:\Program Files\PC Faster\5.1.0.0\PCFTray.exe -shortcut =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O4 - GS\Desktop [HelpAssistant]: Clavier visuel.lnk . (.Microsoft Corporation - Clavier visuel.) C:\WINDOWS\system32\osk.exe =>.Microsoft Corporation O4 - GS\Desktop [HelpAssistant]: Potplayer.lnk . (.Kakao - PotPlayer.) C:\Program Files\DAUM\PotPlayer\PotPlayerMini.exe {6FF335A71AF03911F54668DCCC13441C} =>.Kakao O4 - GS\Desktop [HelpAssistant]: UsbFix.lnk . (...) C:\UsbFix\UsbFix.exe O4 - GS\Desktop [HelpAssistant]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Documents and Settings\Administrateur\Application Data\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [HelpAssistant]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files\baidu\Baidu Browser\Spark.exe --bar=1016 =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O4 - GS\Quicklaunch [HelpAssistant]: Démarrer Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Quicklaunch [HelpAssistant]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 7.3, Best Reader for Everyday.) C:\Program Files\Foxit Software\Foxit Reader\FoxitReader.exe =>.Foxit Software Incorporated® O4 - GS\Quicklaunch [HelpAssistant]: Potplayer.lnk . (.Kakao - PotPlayer.) C:\Program Files\DAUM\PotPlayer\PotPlayerMini.exe {6FF335A71AF03911F54668DCCC13441C} =>.Kakao O4 - GS\Quicklaunch [HelpAssistant]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Programs [HelpAssistant]: Assistance à distance.lnk . (.Microsoft Corporation - Assistance à distance Microsoft.) C:\WINDOWS\system32\rcimlby.exe -LaunchRA =>.Microsoft Corporation O4 - GS\Programs [HelpAssistant]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [HelpAssistant]: Outlook Express.lnk . (.Microsoft Corporation - Outlook Express.) C:\Program Files\Outlook Express\msimn.exe =>.Microsoft Corporation O4 - GS\Programs [HelpAssistant]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\CommonDesktop [Public]: 360 Total Security.lnk . (.QIHU 360 SOFTWARE CO. LIMITED - 360 Total Security.) C:\Program Files\360\Total Security\QHSafeMain.exe =>.QIHU 360 SOFTWARE CO. LIMITED® O4 - GS\CommonDesktop [Public]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files\baidu\Baidu Browser\Spark.exe --bar=1014 =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O4 - GS\CommonDesktop [Public]: Facebook.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files\baidu\Baidu Browser\Spark.exe --useraction=facebook http://www.facebook.com O4 - GS\CommonDesktop [Public]: Google.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files\baidu\Baidu Browser\Spark.exe --useraction=google http://www.google.com O4 - GS\Programs [Public]: Assistance à distance.lnk . (.Microsoft Corporation - Assistance à distance Microsoft.) C:\WINDOWS\system32\rcimlby.exe -LaunchRA =>.Microsoft Corporation O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Public]: Outlook Express.lnk . (.Microsoft Corporation - Outlook Express.) C:\Program Files\Outlook Express\msimn.exe =>.Microsoft Corporation O4 - GS\Programs [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation ---\\ Modification Domaine/Adresses DNS (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{3306C6E4-39BC-4AC0-83CC-7095F91686F1}: NameServer = 8.8.8.8,8.8.4.4 =>.Google Inc O17 - HKLM\System\CCS\Services\Tcpip\..\{3306C6E4-39BC-4AC0-83CC-7095F91686F1}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress ---\\ Protocole additionnel (25) - 1s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll =>.Microsoft Corporation O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API.) -- C:\WINDOWS\system32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll =>.Microsoft Corporation O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll =>.Microsoft Corporation O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation O18 - Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} . (.Microsoft Corporation - WIA Scripting Layer.) -- C:\WINDOWS\system32\wiascr.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll =>.Microsoft Corporation ---\\ Logiciels installés (27) - 33s O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU] -- uTorrent =>.BitTorrent Inc® O42 - Logiciel: 360 Total Security - (.360 Security Center.) [HKLM] -- 360TotalSecurity =>.QIHU 360 SOFTWARE CO. LIMITED® O42 - Logiciel: Adobe Flash Player 22 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Shockwave Player + Authorware Web Player - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player + Authorware Web Player =>.Adobe Systems, Inc. O42 - Logiciel: Baidu Browser - (.Baidu Inc..) [HKLM] -- Spark =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O42 - Logiciel: Baidu PC Faster - (.Baidu, Inc..) [HKLM] -- Baidu PC Faster 5.1.0.0 =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O42 - Logiciel: DriverPack Notifier - (.DriverPack Solution.) [HKLM] -- DriverPack Notifier =>.DriverPack Solution O42 - Logiciel: Foxit Reader - (.Foxit Software Inc..) [HKLM] -- Foxit Reader_is1 =>.Foxit Software Incorporated® O42 - Logiciel: Java 7 Update 25 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83217025FF} =>.Oracle O42 - Logiciel: K-Lite Codec Pack 11.8.0 Full - (.KLite Inc.) [HKLM] -- KLiteCodecPack_is1 =>.KLite Inc O42 - Logiciel: Lagarith Lossless Codec (1.3.27) - (..) [HKLM] -- {F59AC46C-10C3-4023-882C-4212A92283B3}_is1 O42 - Logiciel: Logitech SetPoint 6.15 - (.Logitech.) [HKLM] -- SP6 =>.Logitech® O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: MKV Player 2.1.23 - (..) [HKLM] -- MKV Player_is1 O42 - Logiciel: Potplayer - (.Kakao Corp..) [HKLM] -- PotPlayer =>.Kakao Corp. O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp. O42 - Logiciel: SAM CoDeC Pack - (.www.SamLab.ws.) [HKLM] -- SAM CoDeC Pack =>.www.SamLab.ws O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A} =>.Microsoft Corporation O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- KB931906 =>.Microsoft Corporation O42 - Logiciel: Software Updater - (.SEIKO EPSON CORPORATION.) [HKLM] -- {8DBC5A0A-31C4-46C7-B252-6B593EA11A87} =>.Seiko Epson Corporation O42 - Logiciel: Unlocker 1.9.2 - (.Cedrick Collomb.) [HKLM] -- Unlocker =>.Cedrick Collomb O42 - Logiciel: UsbFix - (.www.SOSVirus.Net.) [HKLM] -- Usbfix =>.www.SOSVirus.Net O42 - Logiciel: Ut Video Codec Suite - (.UMEZAWA Takeshi.) [HKLM] -- utvideo_is1 =>.UMEZAWA Takeshi O42 - Logiciel: WebFldrs XP - (.Microsoft Corporation.) [HKLM] -- {350C940c-3D7C-4EE8-BAA9-00BCB3D54227} =>.Microsoft Corporation O42 - Logiciel: WinRAR 4.20.0 (32-ðàçðÿäíàÿ) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver =>.win.rar GmbH O42 - Logiciel: x264vfw - H.264/MPEG-4 AVC codec (remove only) - (..) [HKLM] -- x264vfw O42 - Logiciel: Xvid MPEG-4 Video Codec - (..) [HKLM] -- Xvid_is1 ---\\ HKCU & HKLM Software Keys (112) - 33s HKLM\SOFTWARE\360Safe =>.Qihu 360 Software Co., LTD HKLM\SOFTWARE\360softmgr =>.Qihu 360 Software Co., LTD HKLM\SOFTWARE\360TotalSecurity =>.Qihu 360 Software Co., LTD HKLM\SOFTWARE\7-Zip =>.Igor Pavlov HKLM\SOFTWARE\Adobe =>.Adobe HKLM\SOFTWARE\Asoftwareplus =>PUP.Optional.Zusy HKLM\SOFTWARE\Baidu =>.Baidu HKLM\SOFTWARE\Baidu Security =>.Baidu Technology HKLM\SOFTWARE\Baidu_Drp_pos =>.Baidu Technology HKLM\SOFTWARE\BrowserChoice =>.Microsoft Corporation HKLM\SOFTWARE\C07ft5Y =>.Total War Game HKLM\SOFTWARE\CloudOPTInfo =>.Baidu Technology HKLM\SOFTWARE\COMODO =>.COMODO HKLM\SOFTWARE\ComodoGroup =>.ComodoGroup HKLM\SOFTWARE\Conduit =>.Superfluous.Conduit HKLM\SOFTWARE\Creative Tech =>.Creative Tech HKLM\SOFTWARE\DAUM =>.DAUM HKLM\SOFTWARE\drpsu =>.Driver PackSolution HKLM\SOFTWARE\DtsEncodeTools =>PUP.Optional.WeatherTool HKLM\SOFTWARE\EaseUS =>.EaseUS Software HKLM\SOFTWARE\EPSON =>.EPSON HKLM\SOFTWARE\F69DA2E0D3C4FAF70198E5E9035E7BA6 =>PUP.Optional.CrossRider HKLM\SOFTWARE\Foxit Software =>.Foxit Software HKLM\SOFTWARE\Gemplus =>.Gemplus HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\GRETECH =>.Gretech HKLM\SOFTWARE\Icaros =>.Icaros HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\Internet Download Manager =>.Tonec Inc HKLM\SOFTWARE\IObit =>.IObit HKLM\SOFTWARE\JavaSoft =>.JavaSoft HKLM\SOFTWARE\KLCodecPack =>.KLite Inc HKLM\SOFTWARE\LAV =>.LAV Inc HKLM\SOFTWARE\LiveUpdate360 =>.Qihu 360 Software Co., LTD HKLM\SOFTWARE\Logitech =>.Logitech HKLM\SOFTWARE\Macromedia =>.Macromedia HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\Netscape =>.Netscape HKLM\SOFTWARE\Notepad++ =>.Don Ho HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\Opera Software =>.Opera Software HKLM\SOFTWARE\Program Groups =>.Program Groups HKLM\SOFTWARE\RealNetworks =>.RealNetworks HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\Schlumberger =>.Schlumberger HKLM\SOFTWARE\Secure =>.Superfluous.SecurePCCleaner HKLM\SOFTWARE\Windows 3.1 Migration Status =>.Microsoft Corporation HKLM\SOFTWARE\WinRAR =>.WinRAR HKLM\SOFTWARE\WNR =>.Western Refining HKLM\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\2VG HKCU\SOFTWARE\360 =>.Qihu 360 Software Co., LTD HKCU\SOFTWARE\360Safe =>.Qihu 360 Software Co., LTD HKCU\SOFTWARE\360TotalSecurity =>.Qihu 360 Software Co., LTD HKCU\SOFTWARE\7-Zip =>.Igor Pavlov HKCU\SOFTWARE\AC3Filter =>.Vigovsky Alexander HKCU\SOFTWARE\Altaruine HKCU\SOFTWARE\Atola HKCU\SOFTWARE\Baidu =>.Baidu HKCU\SOFTWARE\Baidu Security =>.Baidu Technology HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\BST =>.BST Software HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\Cineform =>.CineForm HKCU\SOFTWARE\Conduit =>.Superfluous.Conduit HKCU\SOFTWARE\DAUM =>.DAUM HKCU\SOFTWARE\DivFix++ =>.DivFix HKCU\SOFTWARE\Driver Checker HKCU\SOFTWARE\Driver Magician =>.GoldSolution Software HKCU\SOFTWARE\DriverBooster HKCU\SOFTWARE\DriverToolkit =>.Superfluous.DriverToolkit HKCU\SOFTWARE\drpsu =>.Driver PackSolution HKCU\SOFTWARE\DScaler5 HKCU\SOFTWARE\EPSON =>.EPSON HKCU\SOFTWARE\EPSON Software Updater =>.Epson/Seico HKCU\SOFTWARE\EXECryptorTestKeys HKCU\SOFTWARE\F69DA2E0D3C4FAF70198E5E9035E7BA6 =>PUP.Optional.CrossRider HKCU\SOFTWARE\Foxit Software =>.Foxit Software HKCU\SOFTWARE\Gabest =>.Gabest HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\GRETECH =>.Gretech HKCU\SOFTWARE\Haali =>.Haali Media HKCU\SOFTWARE\Icaros =>.Icaros HKCU\SOFTWARE\Intel =>.Intel HKCU\SOFTWARE\LAV =>.LAV Inc HKCU\SOFTWARE\LiveUpdate360 =>.Qihu 360 Software Co., LTD HKCU\SOFTWARE\Macromedia =>.Macromedia HKCU\SOFTWARE\MediaInfo =>.Jérôme Martinez HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKCU\SOFTWARE\MPC-BE HKCU\SOFTWARE\MPC-HC =>.MPC-HC Team HKCU\SOFTWARE\MTK =>.MTK HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\Opera Software =>.Opera Software HKCU\SOFTWARE\RealNetworks =>.RealNetworks HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Revenger inc. HKCU\SOFTWARE\SamLab.ws HKCU\SOFTWARE\SEIKO EPSON CORPORATION =>.Seiko Epson Corporation HKCU\SOFTWARE\Trolltech =>.Trolltech HKCU\SOFTWARE\UsbFix =>.El Desaparecido HKCU\SOFTWARE\Ut Video Codec Suite HKCU\SOFTWARE\Video Player HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\WNR =>.Western Refining HKCU\SOFTWARE\Yandex =>.Yandex HKCU\SOFTWARE\ZHP =>.Nicolas Coolman ---\\ Contenu des dossiers Programmes (150) - 32s O43 - CFD: 02/01/2016 - [] D -- C:\Program Files\360 =>.Qihu 360 Software O43 - CFD: 01/01/2016 - [] D -- C:\Program Files\7-Zip =>.Igor Pavlov O43 - CFD: 04/03/2016 - [] D -- C:\Program Files\A-FF Find and Mount =>.A-F-F O43 - CFD: 20/02/2016 - [] D -- C:\Program Files\baidu =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O43 - CFD: 05/03/2016 - [] D -- C:\Program Files\Baidu Security =>.Baidu Technology O43 - CFD: 01/01/2016 - [0] D -- C:\Program Files\ComPlus Applications =>.Microsoft Corporation O43 - CFD: 17/05/2016 - [] D -- C:\Program Files\DAUM =>.DAUM O43 - CFD: 02/08/2016 - [] D -- C:\Program Files\Driver Checker {058EFD81CFC178B930CAA249710DE3B1} O43 - CFD: 14/10/2016 - [] D -- C:\Program Files\Driver Magician =>.GoldSolution Software O43 - CFD: 20/10/2016 - [] D -- C:\Program Files\DriverPack Notifier =>.DriverPack Solution O43 - CFD: 14/10/2016 - [] D -- C:\Program Files\DriverToolkit =>.Superfluous.DriverToolkit O43 - CFD: 26/03/2016 - [] D -- C:\Program Files\epson =>.SEIKO EPSON CORPORATION® O43 - CFD: 26/03/2016 - [] D -- C:\Program Files\EPSON Software =>.Epson/Seico O43 - CFD: 28/03/2016 - [] D -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 10/01/2017 - [] D -- C:\Program Files\FilExile O43 - CFD: 23/04/2016 - [] D -- C:\Program Files\Foxit Software =>.Foxit Software O43 - CFD: 08/07/2016 - [] D -- C:\Program Files\Google =>.Google O43 - CFD: 06/01/2016 - [0] D -- C:\Program Files\GRETECH =>.Gretech O43 - CFD: 16/06/2016 - [] D -- C:\Program Files\IDA O43 - CFD: 01/08/2016 - [] D -- C:\Program Files\Intel Desktop Board O43 - CFD: 25/01/2016 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 02/08/2016 - [] D -- C:\Program Files\IObit =>.IObit O43 - CFD: 02/01/2016 - [] D -- C:\Program Files\Java =>.Oracle O43 - CFD: 06/01/2016 - [] D -- C:\Program Files\K-Lite Codec Pack =>.KLite Inc O43 - CFD: 01/01/2016 - [] D -- C:\Program Files\Microsoft CAPICOM 2.1.0.2 =>.Microsoft Corporation O43 - CFD: 02/01/2016 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 18/09/2016 - [] D -- C:\Program Files\MKV Player O43 - CFD: 01/01/2016 - [] D -- C:\Program Files\Notepad++ =>.Don Ho O43 - CFD: 20/02/2016 - [] AD -- C:\Program Files\Opera =>.Opera Software O43 - CFD: 01/01/2016 - [] D -- C:\Program Files\Outlook Express =>.Microsoft Corporation O43 - CFD: 04/03/2016 - [] D -- C:\Program Files\PC Faster =>.Baidu Online Network Technology (Beijing)Co., Ltd® O43 - CFD: 02/01/2016 - [] D -- C:\Program Files\SAM CoDeC Pack O43 - CFD: 01/01/2016 - [] D -- C:\Program Files\Services en ligne =>.Hewlett-Packard O43 - CFD: 06/01/2017 - [] D -- C:\Program Files\Terule =>.Glarysoft LTD® O43 - CFD: 01/01/2016 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 01/01/2016 - [] D -- C:\Program Files\Unlocker =>.Cedrick Collomb O43 - CFD: 02/01/2016 - [] D -- C:\Program Files\utvideo O43 - CFD: 05/04/2016 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team O43 - CFD: 18/09/2016 - [] D -- C:\Program Files\Webteh =>.Superfluous.ABTeam O43 - CFD: 02/02/2017 - [] D -- C:\Program Files\Windows Media Connect 2 =>.Microsoft Corporation O43 - CFD: 01/01/2016 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 01/01/2016 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 01/01/2016 - [0] HD -- C:\Program Files\WindowsUpdate =>.Microsoft Corporation O43 - CFD: 02/01/2016 - [] AD -- C:\Program Files\WinRAR =>.WinRAR O43 - CFD: 02/02/2017 - [] D -- C:\Program Files\x264vfw O43 - CFD: 02/02/2017 - [] D -- C:\Program Files\Xvid =>.XviD O43 - CFD: 02/01/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\360 Security Center =>.360 Security Center O43 - CFD: 01/01/2016 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires =>.Microsoft Corporation O43 - CFD: 08/07/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Baidu Browser =>.Baidu Technology O43 - CFD: 23/02/2017 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Baidu PC Faster O43 - CFD: 17/05/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Daum =>.DAUM O43 - CFD: 30/10/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Driver Checker O43 - CFD: 01/01/2016 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage =>.Microsoft Corporation O43 - CFD: 04/07/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\EPSON =>.EPSON O43 - CFD: 26/03/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\EPSON Software =>.Epson/Seico O43 - CFD: 23/04/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Foxit Reader =>.Foxit Corporation O43 - CFD: 01/01/2016 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux =>.Games Software O43 - CFD: 06/01/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\K-Lite Codec Pack =>.KLite Inc O43 - CFD: 02/01/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 18/09/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\MKV Player O43 - CFD: 01/01/2016 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration =>.Microsoft Corporation O43 - CFD: 02/01/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\SAM CoDeC Pack O43 - CFD: 02/01/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR =>.WinRAR O43 - CFD: 06/07/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\1467764854_00000000_base O43 - CFD: 06/07/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\1467833014_00000000_base O43 - CFD: 09/08/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\1470757971_00000000_base O43 - CFD: 09/08/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\1470771772_00000000_base O43 - CFD: 12/08/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\1470999451_00000000_base O43 - CFD: 06/03/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\360Quarant =>.Qihu 360 Software Co., LTD O43 - CFD: 06/01/2017 - [] D -- C:\Documents and Settings\All Users\Application Data\360safe =>.Qihu 360 Software O43 - CFD: 02/01/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\360TotalSecurity =>.Qihu 360 Software Co., LTD O43 - CFD: 25/03/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\Adobe =>.Adobe O43 - CFD: 20/02/2017 - [0] D -- C:\Documents and Settings\All Users\Application Data\Babylon =>PUP.Optional.Babylon O43 - CFD: 04/03/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\Baidu =>.Baidu O43 - CFD: 19/03/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\Baidu Security =>.Baidu Technology O43 - CFD: 04/07/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\EPSON =>.EPSON O43 - CFD: 23/04/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\Foxit ContentPlatform =>.Foxit Corporation O43 - CFD: 03/01/2016 - [0] D -- C:\Documents and Settings\All Users\Application Data\IDM =>.IDM O43 - CFD: 02/08/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\IObit =>.IObit O43 - CFD: 18/08/2016 - [] SD -- C:\Documents and Settings\All Users\Application Data\Microsoft =>.Microsoft Corporation O43 - CFD: 02/01/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\Package Cache =>.Microsoft Corporation O43 - CFD: 04/03/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\PC Faster O43 - CFD: 20/10/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\ProductData =>.Microsoft Corporation O43 - CFD: 01/11/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\SP_FT_Logs O43 - CFD: 09/06/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\WNR =>.Western Refining Inc O43 - CFD: 02/01/2016 - [] D -- C:\Program Files\Fichiers communs\EPSON =>.EPSON O43 - CFD: 28/03/2016 - [] D -- C:\Program Files\Fichiers communs\LogiShrd =>.Logitech Inc. O43 - CFD: 02/01/2016 - [] D -- C:\Program Files\Fichiers communs\Microsoft Shared =>.Microsoft Corporation O43 - CFD: 01/01/2016 - [] D -- C:\Program Files\Fichiers communs\MSSoap =>.Microsoft Corporation O43 - CFD: 01/01/2016 - [] D -- C:\Program Files\Fichiers communs\ODBC =>.DB Connectivity Solutions O43 - CFD: 01/01/2016 - [] D -- C:\Program Files\Fichiers communs\Services =>.Microsoft Corporation O43 - CFD: 01/01/2016 - [] D -- C:\Program Files\Fichiers communs\SpeechEngines =>.Microsoft Corporation O43 - CFD: 01/01/2016 - [] D -- C:\Program Files\Fichiers communs\System =>.Microsoft Corporation O43 - CFD: 25/01/2016 - [] D -- C:\Documents and Settings\Administrateur\Application Data\360safe =>.Qihu 360 Software O43 - CFD: 02/01/2016 - [] D -- C:\Documents and Settings\Administrateur\Application Data\360TotalSecurity =>.Qihu 360 Software Co., LTD O43 - CFD: 24/02/2017 - [] D -- C:\Documents and Settings\Administrateur\Application Data\360WD O43 - CFD: 06/01/2017 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Adobe =>.Adobe O43 - CFD: 20/02/2017 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Babylon =>PUP.Optional.Babylon O43 - CFD: 08/07/2016 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Baidu =>.Baidu O43 - CFD: 09/10/2016 - [] D -- C:\Documents and Settings\Administrateur\Application Data\BSplayer O43 - CFD: 18/09/2016 - [] D -- C:\Documents and Settings\Administrateur\Application Data\BSplayer Pro O43 - CFD: 11/02/2016 - [0] D -- C:\Documents and Settings\Administrateur\Application Data\DMCache =>.DMCache O43 - CFD: 21/10/2016 - [] AD -- C:\Documents and Settings\Administrateur\Application Data\DriverPack Notifier =>.DriverPack Solution O43 - CFD: 21/10/2016 - [] D -- C:\Documents and Settings\Administrateur\Application Data\DRPNPS O43 - CFD: 27/10/2016 - [] D -- C:\Documents and Settings\Administrateur\Application Data\DRPSu =>.Driver PackSolution O43 - CFD: 14/05/2016 - [] D -- C:\Documents and Settings\Administrateur\Application Data\dvdcss =>.VideoLan Team O43 - CFD: 26/03/2016 - [] D -- C:\Documents and Settings\Administrateur\Application Data\EPSON =>.EPSON O43 - CFD: 23/04/2016 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Foxit Software =>.Foxit Software O43 - CFD: 20/02/2017 - [0] D -- C:\Documents and Settings\Administrateur\Application Data\Hfithergrverward O43 - CFD: 01/01/2016 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Identities =>.Microsoft Corporation O43 - CFD: 14/06/2016 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Internet Download Accelerator O43 - CFD: 05/04/2016 - [] D -- C:\Documents and Settings\Administrateur\Application Data\IObit =>.IObit O43 - CFD: 28/03/2016 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Logishrd =>.Logitech Inc. O43 - CFD: 28/03/2016 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Logitech =>.Logitech O43 - CFD: 02/01/2016 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Macromedia =>.Macromedia O43 - CFD: 04/03/2016 - [] SD -- C:\Documents and Settings\Administrateur\Application Data\Microsoft =>.Microsoft Corporation O43 - CFD: 02/01/2016 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Mozilla =>.Mozilla Corporation O43 - CFD: 31/01/2017 - [] D -- C:\Documents and Settings\Administrateur\Application Data\MPC-HC =>.MPC-HC Team O43 - CFD: 04/03/2016 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Notepad++ =>.Don Ho O43 - CFD: 02/01/2016 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Opera =>.Opera Software O43 - CFD: 02/01/2016 - [0] D -- C:\Documents and Settings\Administrateur\Application Data\Opera Software =>.Opera Software O43 - CFD: 04/03/2016 - [] D -- C:\Documents and Settings\Administrateur\Application Data\PC Faster O43 - CFD: 06/01/2017 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Profiles =>.Microsoft Corporation O43 - CFD: 24/02/2017 - [] D -- C:\Documents and Settings\Administrateur\Application Data\uTorrent O43 - CFD: 06/01/2017 - [] D -- C:\Documents and Settings\Administrateur\Application Data\win-svc O43 - CFD: 02/01/2016 - [] D -- C:\Documents and Settings\Administrateur\Application Data\WinRAR =>.WinRAR O43 - CFD: 09/06/2016 - [] D -- C:\Documents and Settings\Administrateur\Application Data\WNR =>.Western Refining Inc O43 - CFD: 02/01/2016 - [] D -- C:\Documents and Settings\Administrateur\Application Data\Yandex =>.Yandex O43 - CFD: 24/02/2017 - [] D -- C:\Documents and Settings\Administrateur\Application Data\ZHP =>.Nicolas Coolman O43 - CFD: 25/03/2016 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Adobe =>.Adobe O43 - CFD: 20/02/2017 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Babylon =>PUP.Optional.Babylon O43 - CFD: 04/03/2016 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Deployment =>.Microsoft Corporation O43 - CFD: 11/02/2016 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Downloaded Installations =>.Microsoft Corporation O43 - CFD: 02/08/2016 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\DriverToolkit =>.Superfluous.DriverToolkit O43 - CFD: 20/05/2016 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Foxit Reader =>.Foxit Corporation O43 - CFD: 06/01/2017 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Gishatpution O43 - CFD: 08/07/2016 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google =>.Google O43 - CFD: 03/01/2016 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Identities =>.Microsoft Corporation O43 - CFD: 14/02/2017 - [] SD -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft =>.Microsoft Corporation O43 - CFD: 08/07/2016 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\MiniService =>.Baidu Technology O43 - CFD: 02/01/2016 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Opera =>.Opera Software O43 - CFD: 02/01/2016 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Opera Software =>.Opera Software O43 - CFD: 14/07/2016 - [0] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Temp =>.Microsoft Corporation O43 - CFD: 02/01/2016 - [] D -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\Yandex =>.Yandex O43 - CFD: 06/03/2016 - [] RD -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Accessoires =>.Microsoft Corporation O43 - CFD: 04/03/2016 - [] D -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Baidu PC Faster O43 - CFD: 01/01/2016 - [] RD -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Démarrage =>.Microsoft Corporation O43 - CFD: 16/06/2016 - [] RD -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Outils d'administration =>.Microsoft Corporation O43 - CFD: 10/01/2017 - [] D -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Unlocker =>.Cedrick Collomb O43 - CFD: 02/01/2016 - [] D -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\x264vfw ---\\ ShellExecuteHook (1) - 0s O46 - SEH:ShellExecuteHooks - (no name) - [HKLM] - {49B676FE-CB75-11E6-80BD-64006A5CFC23} . (...) -- (.not file.) ---\\ ShellIconOverlayIdentifiers (SIOI) (1) - 0s O106 - SIOI: Offline Files Menu [Fichiers hors connexion] - {750fdf0e-2a26-11d1-a3ea-080036587f03}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\system32\cscui.dll =>.Microsoft Corporation ---\\ Liste des pilotes du système (52) - 35s O58 - SDL:2015/12/31 03:30:22 A . (.360.cn - 360安全卫士 网络防黑模块.) -- C:\WINDOWS\System32\drivers\360AntiHacker.sys [122448] =>.Qihoo 360 Software (Beijing) Company Limited® O58 - SDL:2015/12/31 03:30:21 A . (.360.cn - 360杀毒 文件监控驱动.) -- C:\WINDOWS\System32\drivers\360AvFlt.sys [66128] =>.Qihoo 360 Software (Beijing) Company Limited® O58 - SDL:2015/12/31 03:30:22 A . (.360.cn - 360Box.) -- C:\WINDOWS\System32\drivers\360Box.sys [204368] =>.Qihoo 360 Software (Beijing) Company Limited® O58 - SDL:2015/12/31 03:30:22 A . (.360.cn - 360安全卫士 木马防火墙模块.) -- C:\WINDOWS\System32\drivers\360Camera.sys [34888] =>.Qihoo 360 Software (Beijing) Company Limited® O58 - SDL:2015/12/31 03:30:22 A . (.360安全中心 - 360安全卫士 - SelfProtection.) -- C:\WINDOWS\System32\drivers\360SelfProtection.sys [179152] =>.Qihoo 360 Software (Beijing) Company Limited® O58 - SDL:2009/11/18 00:16:00 A . (.Creative - Creative WDM 3D Audio Driver.) -- C:\WINDOWS\System32\drivers\Ambfilt.sys [1691480] =>.Creative Labs Inc® O58 - SDL:2008/04/08 22:59:28 AC . (.ASUSTeK Computer Inc. - ASUS ACPI Device Driver.) -- C:\WINDOWS\System32\drivers\ASUSACPI.SYS [10752] =>.ASUSTek Computer Inc. O58 - SDL:2016/04/05 22:32:09 AC . (.Atheros Communications, Inc. - Driver for Atheros Wireless Network Adapter.) -- C:\WINDOWS\System32\drivers\athw.sys [2157824] =>.Atheros Communications, Inc. O58 - SDL:2015/12/31 03:30:21 A . (.360.cn - BAPIDRV.) -- C:\WINDOWS\System32\drivers\BAPIDRV.SYS [177232] =>.Qihoo 360 Software (Beijing) Company Limited® O58 - SDL:2015/03/31 07:22:52 AC . (.Baidu, Inc. - Baidu Antivirus Hook Base.) -- C:\WINDOWS\System32\drivers\Bhbase.sys [46440] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O58 - SDL:2015/03/31 07:22:54 AC . (.Baidu, Inc. - Baidu Antivirus Minifilter Driver.) -- C:\WINDOWS\System32\drivers\BprotectEx.sys [113992] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O58 - SDL:2015/12/31 23:06:54 AC . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\System32\drivers\cinemst2.sys [262528] =>.RAVISENT Technologies Inc. O58 - SDL:2015/12/31 23:06:54 AC . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\System32\drivers\cpqdap01.sys [11776] =>.Compaq Computer Corporation O58 - SDL:2015/12/31 23:06:31 AC . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- C:\WINDOWS\System32\drivers\dmboot.sys [800256] =>.Microsoft Corp., Veritas Software O58 - SDL:2015/12/31 23:06:32 AC . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\System32\drivers\dmio.sys [154496] =>.Microsoft Corp., Veritas Software O58 - SDL:2015/12/31 23:06:32 AC . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\System32\drivers\dmload.sys [5888] =>.Microsoft Corp., Veritas Software. O58 - SDL:2015/12/31 03:30:21 A . (.360.cn - 360Efimon Driver.) -- C:\WINDOWS\System32\drivers\efimon.sys [23248] =>.Qihoo 360 Software (Beijing) Company Limited® O58 - SDL:2015/12/31 23:07:11 A . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [144384] =>.Microsoft Corporation O58 - SDL:2015/12/31 03:30:22 A . (.360安全中心 - 360安全卫士 - HookPort.) -- C:\WINDOWS\System32\drivers\hookport.sys [60368] =>.Qihoo 360 Software (Beijing) Company Limited® O58 - SDL:2016/04/05 22:19:32 AC . (.REALiX(tm) - HWiNFO x86 Kernel Driver.) -- C:\WINDOWS\System32\drivers\HWiNFO32.SYS [23840] =>.Martin Malik - REALiX® O58 - SDL:2012/02/03 17:12:58 A . (.Intel Corporation - Intel Graphics Miniport Driver.) -- C:\WINDOWS\System32\drivers\igxpmp32.sys [1181824] =>.Intel Corporation O58 - SDL:2008/10/17 05:14:00 AC . (.Atheros Communications, Inc. - Atheros Fast Ethernet Controller ndis minip.) -- C:\WINDOWS\System32\drivers\l251x86.sys [30720] =>.Atheros Communications, Inc. O58 - SDL:2009/11/18 00:17:00 A . (.Creative Technology Ltd. - Creative WDM Audio Driver (32-bit).) -- C:\WINDOWS\System32\drivers\Monfilt.sys [1395800] =>.Creative Labs Inc® O58 - SDL:2015/12/31 23:06:54 AC . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\nikedrv.sys [12032] =>.S3/Diamond Multimedia Systems O58 - SDL:2016/08/02 12:45:58 A . (.Hewlett-Packard Company - PS2 SYS.) -- C:\WINDOWS\System32\drivers\PS2.sys [19072] =>.Hewlett-Packard Company O58 - SDL:2015/12/31 23:08:27 AC . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- C:\WINDOWS\System32\drivers\ptilink.sys [17792] =>.Parallel Technologies, Inc. O58 - SDL:2015/12/31 03:30:21 A . (.360.cn - 360安全卫士 木马防火墙模块.) -- C:\WINDOWS\System32\drivers\qutmdrv.sys [301264] =>.Qihoo 360 Software (Beijing) Company Limited® O58 - SDL:2015/12/31 03:30:22 AC . (.360.cn - 360安全卫士 木马防火墙模块.) -- C:\WINDOWS\System32\drivers\qutmipc.sys [53960] =>.Qihoo 360 Software (Beijing) Company Limited® O58 - SDL:2015/12/31 23:06:54 AC . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\System32\drivers\rio8drv.sys [12032] =>.S3/Diamond Multimedia Systems O58 - SDL:2015/12/31 23:06:54 AC . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\riodrv.sys [12032] =>.S3/Diamond Multimedia Systems O58 - SDL:2016/04/05 22:32:58 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RtkHDAud.sys [5791760] =>.Realtek Semiconductor Corp. O58 - SDL:2015/12/31 23:08:37 AC . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2016/10/13 20:25:12 A . (.MCCI Corporation - SAMSUNG Mobile USB Device 1.0 Driver.) -- C:\WINDOWS\System32\drivers\ss_bus.sys [98560] =>.MCCI Corporation® O58 - SDL:2016/10/13 20:25:12 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\WINDOWS\System32\drivers\ss_wh.sys [12288] =>.MCCI Corporation® O58 - SDL:2016/10/13 20:25:12 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\WINDOWS\System32\drivers\ss_whnt.sys [12288] =>.MCCI Corporation® O58 - SDL:2015/12/31 23:06:54 AC . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\System32\drivers\tsbvcap.sys [21376] =>.Toshiba Corporation O58 - SDL:2015/12/31 23:06:54 AC . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\System32\drivers\vdmindvd.sys [58112] =>.RAVISENT Technologies Inc. O58 - SDL:2015/12/31 23:06:05 AC . (...) -- C:\WINDOWS\System32\ansi.sys [9037] =>.Microsoft Corporation O58 - SDL:2015/12/31 23:06:10 AC . (...) -- C:\WINDOWS\System32\country.sys [27097] =>.Microsoft Corporation O58 - SDL:2015/12/31 23:07:11 AC . (...) -- C:\WINDOWS\System32\himem.sys [4912] =>.Microsoft Corporation O58 - SDL:2015/12/31 23:07:22 AC . (...) -- C:\WINDOWS\System32\key01.sys [42809] =>.Microsoft Corporation O58 - SDL:2015/12/31 23:07:22 AC . (...) -- C:\WINDOWS\System32\keyboard.sys [42537] =>.Microsoft Corporation O58 - SDL:2015/12/31 23:08:09 AC . (...) -- C:\WINDOWS\System32\ntdos.sys [27916] =>.Microsoft Corporation O58 - SDL:2015/12/31 23:08:09 AC . (...) -- C:\WINDOWS\System32\ntdos404.sys [29146] =>.Microsoft Corporation O58 - SDL:2015/12/31 23:08:09 AC . (...) -- C:\WINDOWS\System32\ntdos411.sys [29370] =>.Microsoft Corporation O58 - SDL:2015/12/31 23:08:09 AC . (...) -- C:\WINDOWS\System32\ntdos412.sys [29274] =>.Microsoft Corporation O58 - SDL:2015/12/31 23:08:09 AC . (...) -- C:\WINDOWS\System32\ntdos804.sys [29146] =>.Microsoft Corporation O58 - SDL:2015/12/31 23:08:09 AC . (...) -- C:\WINDOWS\System32\ntio.sys [34000] =>.Microsoft Corporation O58 - SDL:2015/12/31 23:08:09 AC . (...) -- C:\WINDOWS\System32\ntio404.sys [34560] =>.Microsoft Corporation O58 - SDL:2015/12/31 23:08:09 AC . (...) -- C:\WINDOWS\System32\ntio411.sys [35648] =>.Microsoft Corporation O58 - SDL:2015/12/31 23:08:09 AC . (...) -- C:\WINDOWS\System32\ntio412.sys [35424] =>.Microsoft Corporation O58 - SDL:2015/12/31 23:08:09 AC . (...) -- C:\WINDOWS\System32\ntio804.sys [34560] =>.Microsoft Corporation ---\\ Associations Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\system32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® ---\\ Menu de démarrage Internet (10) - 2s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Opera\launcher.exe O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\spark.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\spark.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\spark.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe =>.Microsoft Corporation ---\\ Recherche d'infection sur les navigateurs (5) - 0s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKCU] {14E84C20-EA0B-4BE0-B331-C4A0171D3E87} - (Wikipedia (en)) - http://en.wikipedia.org/ =>.Wikipedia O69 - SBI: SearchScopes [HKCU] {3E447AAB-4F38-4D59-9E62-00AEBED34B36} [DefaultScope] - (Google) - http://www.google.com/ =>.Google Inc. O69 - SBI: SearchScopes [HKCU] {B3288297-603F-455A-8DAF-838D07E1FFB2} - (Microsoft Support Search) - http://support.microsoft.com/ =>.Microsoft Corporation O69 - SBI: SearchScopes [HKCU] {E93A6744-87A8-4053-AF7E-490C383A770C} - (DuckDuckGo) - http://duckduckgo.com/ ---\\ Enumère les services démarrés par Svchost (37) - 2s O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\WINDOWS\system32\appmgmts.dll [176640] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496] =>.Microsoft Corporation O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [78336] =>.Microsoft Corporation O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464] =>.Microsoft Corporation O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576] =>.Microsoft Corp. O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488] =>.Microsoft Corporation O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - .) -- C:\WINDOWS\system32\es.dll [253952] =>.Microsoft Corporation O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] =>.Microsoft Corporation O83 - Search Svchost Services: HidServ (HidServ) . (.Microsoft Corporation - HID Audio Service.) -- C:\WINDOWS\system32\hidserv.dll [21504] =>.Microsoft Corporation O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [99840] =>.Microsoft Corporation O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [134144] =>.Microsoft Corporation O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144] =>.Microsoft Corporation O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- C:\WINDOWS\system32\mswsock.dll [247808] =>.Microsoft Corporation O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [53248] =>.Microsoft Corporation O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560] =>.Microsoft Corporation O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [18944] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\WINDOWS\system32\ipnathlp.dll [332288] =>.Microsoft Corporation O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\system32\tapisrv.dll [249856] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] =>.Microsoft Corporation O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112] =>.Microsoft Corporation O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178688] =>.Microsoft Corporation O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483328] =>.Microsoft Corporation O83 - Search Svchost Services: Wmi (Wmi) . (.Microsoft Corporation - API avancées Windows 32.) -- C:\WINDOWS\system32\advapi32.dll [686592] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\wmisvc.dll [145408] =>.Microsoft Corporation O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896] =>.Microsoft Corporation O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024] =>.Microsoft Corporation O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) -- C:\WINDOWS\system32\qmgr.dll [408576] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [23064] =>.Microsoft Windows Component Publisher® O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] =>.Microsoft Corporation O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- C:\WINDOWS\system32\mspmsnsv.dll [27136] =>.Microsoft Corporation ---\\ Scan Additionnel (9) - 0s HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D5FEC983-01DB-414a-9456-AF95AC9ED7B5} =>.Superfluous.Orphan HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D5FEC983-01DB-414a-9456-AF95AC9ED7B5} =>.Superfluous.Orphan HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D5FEC983-01DB-414a-9456-AF95AC9ED7B5} =>.Superfluous.Orphan C:\Program Files\DriverToolkit =>.Superfluous.DriverToolkit C:\Program Files\Webteh =>.Superfluous.ABTeam C:\Documents and Settings\All Users\Application Data\Babylon =>PUP.Optional.Babylon C:\Documents and Settings\Administrateur\Application Data\Babylon =>PUP.Optional.Babylon C:\Documents and Settings\Administrateur\Local Settings\Application Data\Babylon =>PUP.Optional.Babylon C:\Documents and Settings\Administrateur\Local Settings\Application Data\DriverToolkit =>.Superfluous.DriverToolkit ---\\ Récapitulatif des éléments trouvés sur votre station (8) - 0s https://www.anti-malware.top/2016/05/17/adware-zusy/ =>PUP.Optional.Zusy https://nicolascoolman.eu/2017/02/06/superfluous-conduit/ =>.Superfluous.Conduit https://www.nicolascoolman.com/fr/pup-optional-weathertool =>PUP.Optional.WeatherTool https://www.anti-malware.top/2016/04/30/pup-optional-crossrider/ =>PUP.Optional.CrossRider https://www.anti-malware.top/2016/06/08/superfluous-securepccleaner/ =>.Superfluous.SecurePCCleaner https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.DriverToolkit https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.ABTeam https://www.nicolascoolman.com/fr/pup-babylon/ =>PUP.Optional.Babylon ~ Unselected Options: O82, ~ End of the scan, 9240 items in 04mn03s (680)(0)