Forum |  HardWare.fr | News | Articles | PC | S'identifier | S'inscrire | Shop Recherche
3408 connectés 

 


 Mot :   Pseudo :  
 
 Page :   1  2  3  4
Auteur Sujet :

22 find

n°3080230
mne
Posté le 04-03-2013 à 13:40:32  profilanswer
 

Reprise du message précédent :
J'en étais à moitié, puis quand j'arrive a pjjoint, je n'arrive pas à envoyer le rapport...
 
 "Possible Spam détecté, le copier/coller ne sera pas pris en compte comme dépot"

mood
Publicité
Posté le 04-03-2013 à 13:40:32  profilanswer
 

n°3080237
Destrio5
Posté le 04-03-2013 à 14:32:25  profilanswer
 
n°3080269
mne
Posté le 04-03-2013 à 21:16:02  profilanswer
 
n°3080284
Destrio5
Posté le 04-03-2013 à 23:40:59  profilanswer
 

@ mne,
 
Pas mal :D
 

  • Copie tout le texte présent dans le cadre ci-dessous (Sélectionne-le, clique droit dessus et choisis "Copier" ).

SysRestore
M3 - MFPP: Plugins - [DANICA] -- C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\Mozilla\Firefox\Profiles\4m4pmsae.default\searchplugins\delta.xml  
M0 - MFSP: prefs.js [DANICA - 4m4pmsae.default] http://www.22find.com/?utm_source=b&utm_medium=mlv&from=mlv&uid=TOSHIBAXMK1646GSX_48RNT25CTXX48RNT25CT&ts=1362065424  
M2 - MFEP: prefs.js [DANICA - 4m4pmsae.default\bbrs_002@blabbers.com] [] Ginyas Browser Companion v1.0.5 (.Blabbers Communications Ltd.)  
M2 - MFEP: prefs.js [DANICA - 4m4pmsae.default\plugin@yontoo.com] [] Yontoo v1.20.02 (.Yontoo LLC.)    
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.22find.com/newtab?utm_source=b&utm_medium=mlv&from=mlv&uid=TOSHIBAXMK1646GSX_48RNT25CTXX48RNT25CT&ts=1362065880    
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.22find.com/newtab?utm_source=b&utm_medium=mlv&from=mlv&uid=toshibaxmk1646gsx_48rnt25ctxx48rnt25ct&ts=1362065880    
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.22find.com/web/?utm_source=b&utm_medium=mlv&from=mlv&uid=toshibaxmk1646gsx_48rnt25ctxx48rnt25ct&ts=1362065892  
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://search.22find.com/web/?utm_source=b&utm_medium=mlv&from=mlv&uid=toshibaxmk1646gsx_48rnt25ctxx48rnt25ct&ts=1362065892  
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = http://www.22find.com/newtab?utm_source=b&utm_medium=mlv&from=mlv&uid=toshibaxmk1646gsx_48rnt25ctxx48rnt25ct&ts=1362065880  
OPT:O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe    
O4 - HKCU\..\Run: [LicenseBias] . (...) -- C:\ProgramData\Kind admin admin.lm8ziw  
O4 - HKCU\..\Run: [view load up cast] . (...) -- C:\ProgramData\Proxy Dupe Store.crrzk  
O4 - HKCU\..\Run: [Yontoo Desktop] . (.Yontoo LLC - Yontoo Desktop.) -- C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\Yontoo\YontooDesktop.exe    
O4 - HKUS\S-1-5-21-4064255462-4097919473-1866649559-1006\..\Run: [LicenseBias] . (...) -- C:\ProgramData\Kind admin admin.lm8ziw
O4 - HKUS\S-1-5-21-4064255462-4097919473-1866649559-1006\..\Run: [view load up cast] . (...) -- C:\ProgramData\Proxy Dupe Store.crrzk    
O4 - HKUS\S-1-5-21-4064255462-4097919473-1866649559-1006\..\Run: [Yontoo Desktop] . (.Yontoo LLC - Yontoo Desktop.) -- C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\Yontoo\YontooDesktop.exe  
O20 - AppInit_DLLs: . (...) - C:\Program Files\browse~1\261095~1.52\{c16c1~1\browse~1.dll (.not file.)  
O23 - Service: Desk 365 service (desksvc) . (...) - C:\Program Files\Desk 365\deskSvc.exe (.not file.)  
O23 - Service: Yontoo Desktop Updater (Yontoo Desktop Updater) . (.Microsoft - Y2Desktop.Updater.) - C:\Program Files\Yontoo\Y2Desktop.Updater.exe  
[MD5.00000000000000000000000000000000] [APT] [RunAsStdUser] (...) -- C:\Program Files\Desk 365\desk365.exe (.not file.)    
[MD5.00000000000000000000000000000000] [APT] [Scheduled Update for Ask Toolbar] (...) -- C:\Program Files\Ask.com\UpdateTask.exe (.not file.)    
O42 - Logiciel: Delta Chrome Toolbar - (.Visual Tools.) [HKLM] -- Delta Chrome Toolbar  
[HKCU\Software\pop that findupload]      
[HKCU\Software\YahooPartnerToolbar]    
O43 - CFD: 28/02/2013 - 16:43:22 - [0,007] ----D C:\Program Files\Desk 365
O43 - CFD: 28/02/2013 - 16:54:26 - [0,593] ----D C:\Program Files\GinyasBrowserCompanion
O43 - CFD: 28/02/2013 - 16:54:41 - [0,213] ----D C:\Program Files\Yontoo
O43 - CFD: 27/02/2013 - 19:29:44 - [4,930] ----D C:\ProgramData\BrowserProtect
O43 - CFD: 28/02/2013 - 16:54:22 - [1,128] ----D C:\ProgramData\GinyasBrowserCompanion  
O43 - CFD: 24/02/2009 - 12:37:34 - [0] ----D C:\ProgramData\Gpl ooze view load    
O43 - CFD: 27/02/2013 - 19:29:08 - [1,446] ----D C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\BabSolution  
O43 - CFD: 27/02/2013 - 19:28:23 - [0,008] ----D C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\Babylon  
O43 - CFD: 28/02/2013 - 16:39:53 - [9,028] ----D C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\Desk 365  
O43 - CFD: 04/03/2013 - 12:51:52 - [0,708] ----D C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\GinyasBrowserCompanion    
O43 - CFD: 01/03/2011 - 16:00:36 - [0] ----D C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\ShopperReports3  
O43 - CFD: 04/03/2013 - 12:52:54 - [0,098] ----D C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\Yontoo    
O43 - CFD: 09/01/2013 - 15:50:19 - [0,288] ----D C:\Users\DANICA.PC-de-DANICA\AppData\Local\SwvUpdater    
O43 - CFD: 27/02/2013 - 19:30:15 - [0,001] ----D C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserProtect    
OPT:O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe http://www.22find.com    
O87 - FAEL: "{9293F06D-2B9F-4560-B192-C13976617A73}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files\Windows iLivid Toolbar\ToolBar\dtUser.exe (.not file.)    
O87 - FAEL: "{B95509BA-028E-4C5C-9C42-0BDF33FF4C31}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files\Windows iLivid Toolbar\ToolBar\dtUser.exe (.not file.)  
O87 - FAEL: "{BC8489B6-9C1A-46EB-BB8B-67DE240B6478}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe (.not file.)  
O87 - FAEL: "{7432C459-B212-4539-AC4E-AE442CCE09E4}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe (.not file.)    
SR - | Auto 15/02/2013 23552 |  (Yontoo Desktop Updater) . (.Microsoft.) - C:\Program Files\Yontoo\Y2Desktop.Updater.exe    
SS - | Auto  0 |  (desksvc) . (...) - C:\Program Files\Desk 365\deskSvc.exe  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.admin", false);  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.aflt", "babsst" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.autoRvrt", "false" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.dfltLng", "en" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.excTlbr", false);  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.id", "21916b42000000000000001e37eb0e11" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.instlDay", "15763" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.instlRef", "sst" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.newTab", false);  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.prdct", "delta" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.prtnrId", "delta" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.rvrt", "false" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.smplGrp", "none" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.tlbrId", "base" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.tlbrSrchUrl", "" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.vrsn", "1.8.10.0" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.vrsnTs", "1.8.10.019:29:11" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.vrsni", "1.8.10.0" );  
[HKLM\Software\Classes\CLSID\{35b8892d-c3fb-4d88-990d-31db2ebd72bd}]      
[HKLM\Software\Classes\Interface\{3f607e46-0d3c-4442-b1de-de7fa4768f5c}]      
[HKLM\Software\Classes\TypeLib\{93e3d79c-0786-48ff-9329-93bc9f6dc2b3}]      
[HKLM\Software\Classes\Interface\{fe0273d1-99df-4ac0-87d5-1371c6271785}]      
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}]      
[HKLM\Software\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}]      
[HKLM\Software\Microsoft\Internet Explorer\extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}]      
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]      
[HKLM\Software\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]      
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}]      
[HKCU\Software\Microsoft\Internet Explorer\MenuExt\recherche avec cherche.us]  
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{82E1477C-B154-48D3-9891-33D83C26BCD3}]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\789034A89BAC50E4782F0A7BDBF75632]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\A97CEC23332751B47BA4B95BAA50C9D0]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F754C503375A13344B22388E18DFE87E]      
[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]      
[HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]      
[HKLM\SYSTEM\CurrentControlSet\Services\Yontoo Desktop Updater]  
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\305B09CE8C53A214DB58887F62F25536]      
C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\Mozilla\Firefox\Profiles\4m4pmsae.default\Extensions\plugin@yontoo.com  
C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\Mozilla\Firefox\Profiles\4m4pmsae.default\bprotector_extensions.sqlite  
C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\Mozilla\Firefox\Profiles\4m4pmsae.default\bprotector_prefs.js  
C:\Users\DANICA.PC-de-DANICA\AppData\LocalLow\bbrs_002.tb      
C:\Users\DANICA.PC-de-DANICA\AppData\LocalLow\Conduit      
C:\Users\DANICA.PC-de-DANICA\AppData\LocalLow\ConduitEngine  
C:\Users\DANICA.PC-de-DANICA\AppData\LocalLow\PriceGong  
C:\Users\DANICA.PC-de-DANICA\AppData\LocalLow\searchquband  
C:\Users\DANICA.PC-de-DANICA\AppData\LocalLow\searchqutoolbar  
EmptyCLSID
EmptyFlash
EmptyTemp


  • Puis lance ZHPFix depuis le raccourci situé sur ton Bureau.


  • Clique sur le bouton "Coller le presse-papier".


  • Dans l'encadré principal, tu verras donc les lignes que tu as copié précédemment apparaître. Vérifie que toutes les lignes que je t'ai demandé de copier (et seulement elles) sont dans la fenêtre.


  • Clique sur "GO" pour lancer le nettoyage. Laisse l'outil travailler et ne touche à rien.


  • Accepte la désinstallation des programmes si proposé, mais refuse le redémarrage de ton PC si également proposé, car cela stopperait ZHPFix.


  • Une fois terminé, copie-colle le rapport dans ton prochain message.


Message édité par Destrio5 le 04-03-2013 à 23:41:53
n°3080336
mne
Posté le 05-03-2013 à 17:38:46  profilanswer
 

O42 - Logiciel: Delta Chrome Toolbar - (.Visual Tools.) [HKLM] -- Delta Chrome Toolbar    
SysRestore  
M3 - MFPP: Plugins - [DANICA] -- C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\Mozilla\Firefox\Profiles\4m4pmsae.default\searchplugins\delta.xml  
M0 - MFSP: prefs.js [DANICA - 4m4pmsae.default] http://www.22find.com/?utm_source= [...] 1362065424    
M2 - MFEP: prefs.js [DANICA - 4m4pmsae.default\bbrs_002@blabbers.com] [] Ginyas Browser Companion v1.0.5 (.Blabbers Communications Ltd.)    
M2 - MFEP: prefs.js [DANICA - 4m4pmsae.default\plugin@yontoo.com] [] Yontoo v1.20.02 (.Yontoo LLC.)      
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.22find.com/newtab?utm_s [...] 1362065880      
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.22find.com/newtab?utm_s [...] 1362065880      
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.22find.com/web/?utm_ [...] 1362065892    
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://search.22find.com/web/?utm_ [...] 1362065892  
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = http://www.22find.com/newtab?utm_s [...] 1362065880  
OPT:O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe      
O4 - HKCU\..\Run: [LicenseBias] . (...) -- C:\ProgramData\Kind admin admin.lm8ziw    
O4 - HKCU\..\Run: [view load up cast] . (...) -- C:\ProgramData\Proxy Dupe Store.crrzk  
O4 - HKCU\..\Run: [Yontoo Desktop] . (.Yontoo LLC - Yontoo Desktop.) -- C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\Yontoo\YontooDesktop.exe    
O4 - HKUS\S-1-5-21-4064255462-4097919473-1866649559-1006\..\Run: [LicenseBias] . (...) -- C:\ProgramData\Kind admin admin.lm8ziw  
O4 - HKUS\S-1-5-21-4064255462-4097919473-1866649559-1006\..\Run: [view load up cast] . (...) -- C:\ProgramData\Proxy Dupe Store.crrzk    
O4 - HKUS\S-1-5-21-4064255462-4097919473-1866649559-1006\..\Run: [Yontoo Desktop] . (.Yontoo LLC - Yontoo Desktop.) -- C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\Yontoo\YontooDesktop.exe    
O20 - AppInit_DLLs: . (...) - C:\Program Files\browse~1\261095~1.52\{c16c1~1\browse~1.dll (.not file.)    
O23 - Service: Desk 365 service (desksvc) . (...) - C:\Program Files\Desk 365\deskSvc.exe (.not file.)  
O23 - Service: Yontoo Desktop Updater (Yontoo Desktop Updater) . (.Microsoft - Y2Desktop.Updater.) - C:\Program Files\Yontoo\Y2Desktop.Updater.exe  
[MD5.00000000000000000000000000000000] [APT] [RunAsStdUser] (...) -- C:\Program Files\Desk 365\desk365.exe (.not file.)      
[MD5.00000000000000000000000000000000] [APT] [Scheduled Update for Ask Toolbar] (...) -- C:\Program Files\Ask.com\UpdateTask.exe (.not file.)      
[HKCU\Software\pop that findupload]        
[HKCU\Software\YahooPartnerToolbar]      
O43 - CFD: 28/02/2013 - 16:43:22 - [0,007] ----D C:\Program Files\Desk 365  
O43 - CFD: 28/02/2013 - 16:54:26 - [0,593] ----D C:\Program Files\GinyasBrowserCompanion  
O43 - CFD: 28/02/2013 - 16:54:41 - [0,213] ----D C:\Program Files\Yontoo  
O43 - CFD: 27/02/2013 - 19:29:44 - [4,930] ----D C:\ProgramData\BrowserProtect  
O43 - CFD: 28/02/2013 - 16:54:22 - [1,128] ----D C:\ProgramData\GinyasBrowserCompanion    
O43 - CFD: 24/02/2009 - 12:37:34 - [0] ----D C:\ProgramData\Gpl ooze view load    
O43 - CFD: 27/02/2013 - 19:29:08 - [1,446] ----D C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\BabSolution  
O43 - CFD: 27/02/2013 - 19:28:23 - [0,008] ----D C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\Babylon    
O43 - CFD: 28/02/2013 - 16:39:53 - [9,028] ----D C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\Desk 365    
O43 - CFD: 04/03/2013 - 12:51:52 - [0,708] ----D C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\GinyasBrowserCompanion    
O43 - CFD: 01/03/2011 - 16:00:36 - [0] ----D C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\ShopperReports3  
O43 - CFD: 04/03/2013 - 12:52:54 - [0,098] ----D C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\Yontoo      
O43 - CFD: 09/01/2013 - 15:50:19 - [0,288] ----D C:\Users\DANICA.PC-de-DANICA\AppData\Local\SwvUpdater    
O43 - CFD: 27/02/2013 - 19:30:15 - [0,001] ----D C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserProtect    
OPT:O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe http://www.22find.com    
O87 - FAEL: "{9293F06D-2B9F-4560-B192-C13976617A73}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files\Windows iLivid Toolbar\ToolBar\dtUser.exe (.not file.)    
O87 - FAEL: "{B95509BA-028E-4C5C-9C42-0BDF33FF4C31}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files\Windows iLivid Toolbar\ToolBar\dtUser.exe (.not file.)    
O87 - FAEL: "{BC8489B6-9C1A-46EB-BB8B-67DE240B6478}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe (.not file.)    
O87 - FAEL: "{7432C459-B212-4539-AC4E-AE442CCE09E4}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe (.not file.)      
SR - | Auto 15/02/2013 23552 |  (Yontoo Desktop Updater) . (.Microsoft.) - C:\Program Files\Yontoo\Y2Desktop.Updater.exe      
SS - | Auto  0 |  (desksvc) . (...) - C:\Program Files\Desk 365\deskSvc.exe    
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.admin", false);  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.aflt", "babsst" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.autoRvrt", "false" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.dfltLng", "en" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.excTlbr", false);  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.id", "21916b42000000000000001e37eb0e11" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.instlDay", "15763" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.instlRef", "sst" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.newTab", false);  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.prdct", "delta" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.prtnrId", "delta" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.rvrt", "false" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.smplGrp", "none" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.tlbrId", "base" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.tlbrSrchUrl", "" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.vrsn", "1.8.10.0" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.vrsnTs", "1.8.10.019:29:11" );  
O69 - SBI: prefs.js [DANICA - 4m4pmsae.default] user_pref("extensions.delta.vrsni", "1.8.10.0" );  
[HKLM\Software\Classes\CLSID\{35b8892d-c3fb-4d88-990d-31db2ebd72bd}]      
[HKLM\Software\Classes\Interface\{3f607e46-0d3c-4442-b1de-de7fa4768f5c}]      
[HKLM\Software\Classes\TypeLib\{93e3d79c-0786-48ff-9329-93bc9f6dc2b3}]      
[HKLM\Software\Classes\Interface\{fe0273d1-99df-4ac0-87d5-1371c6271785}]      
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}]      
[HKLM\Software\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}]      
[HKLM\Software\Microsoft\Internet Explorer\extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}]      
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]      
[HKLM\Software\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]      
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}]      
[HKCU\Software\Microsoft\Internet Explorer\MenuExt\recherche avec cherche.us]  
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{82E1477C-B154-48D3-9891-33D83C26BCD3}]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\789034A89BAC50E4782F0A7BDBF75632]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\A97CEC23332751B47BA4B95BAA50C9D0]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F754C503375A13344B22388E18DFE87E]      
[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]      
[HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]      
[HKLM\SYSTEM\CurrentControlSet\Services\Yontoo Desktop Updater]  
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\305B09CE8C53A214DB58887F62F25536]      
C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\Mozilla\Firefox\Profiles\4m4pmsae.default\Extensions\plugin@yontoo.com  
C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\Mozilla\Firefox\Profiles\4m4pmsae.default\bprotector_extensions.sqlite  
C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\Mozilla\Firefox\Profiles\4m4pmsae.default\bprotector_prefs.js  
C:\Users\DANICA.PC-de-DANICA\AppData\LocalLow\bbrs_002.tb      
C:\Users\DANICA.PC-de-DANICA\AppData\LocalLow\Conduit      
C:\Users\DANICA.PC-de-DANICA\AppData\LocalLow\ConduitEngine  
C:\Users\DANICA.PC-de-DANICA\AppData\LocalLow\PriceGong  
C:\Users\DANICA.PC-de-DANICA\AppData\LocalLow\searchquband  
C:\Users\DANICA.PC-de-DANICA\AppData\LocalLow\searchqutoolbar  
EmptyCLSID  
EmptyFlash  
EmptyTem


Message édité par mne le 05-03-2013 à 17:39:56
n°3080337
Destrio5
Posté le 05-03-2013 à 17:44:40  profilanswer
 

C'est le script que je t'ai fait pour ZHPFix.

n°3080338
mne
Posté le 05-03-2013 à 17:48:04  profilanswer
 

Rapport de ZHPFix 1.4.01 par Nicolas Coolman, Update du 02/03/2013
Fichier d'export Registre :  
Run by DANICA at 05/03/2013 17:35:46
High Elevated Privileges : OK
Windows Vista Home Premium Edition, 32-bit Service Pack 2 (Build 6002)
 
Corbeille vidée
 
========== Logiciel(s) ==========
ABSENT Uninstall Process: c:\users\danica.pc-de-danica\appdata\roaming\babsolution\shared\guninstaller.exe
 
========== Clé(s) du Registre ==========
SUPPRIME [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Delta Chrome Toolbar]
SUPPRIME Key: Service: desksvc
SUPPRIME Key: Service: Yontoo Desktop Updater
SUPPRIME Key: HKCU\Software\pop that findupload
SUPPRIME Key: HKCU\Software\YahooPartnerToolbar
ABSENT Key: Service: Yontoo Desktop Updater
ABSENT Key: Service: desksvc
SUPPRIME Key: HKLM\Software\Classes\CLSID\{35b8892d-c3fb-4d88-990d-31db2ebd72bd}
SUPPRIME Key: HKLM\Software\Classes\Interface\{3f607e46-0d3c-4442-b1de-de7fa4768f5c}
SUPPRIME Key: HKLM\Software\Classes\TypeLib\{93e3d79c-0786-48ff-9329-93bc9f6dc2b3}
SUPPRIME Key: HKLM\Software\Classes\Interface\{fe0273d1-99df-4ac0-87d5-1371c6271785}
SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
SUPPRIME Key: HKLM\Software\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
SUPPRIME Key: HKLM\Software\Microsoft\Internet Explorer\extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
SUPPRIME Key: HKLM\Software\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
SUPPRIME Key: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
SUPPRIME Key: HKCU\Software\Microsoft\Internet Explorer\MenuExt\recherche avec cherche.us
SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{82E1477C-B154-48D3-9891-33D83C26BCD3}
SUPPRIME Key: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\789034A89BAC50E4782F0A7BDBF75632
SUPPRIME Key: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\A97CEC23332751B47BA4B95BAA50C9D0
SUPPRIME Key: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F754C503375A13344B22388E18DFE87E
SUPPRIME Key: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
SUPPRIME Key: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
ABSENT Key: HKLM\SYSTEM\CurrentControlSet\Services\Yontoo Desktop Updater
SUPPRIME Key: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094
SUPPRIME Key: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\305B09CE8C53A214DB58887F62F25536
 
========== Valeur(s) du Registre ==========
SUPPRIME RunValue: QuickTime Task
SUPPRIME RunValue: LicenseBias
SUPPRIME RunValue: view load up cast
SUPPRIME RunValue: Yontoo Desktop
ABSENT RunValue: LicenseBias
ABSENT RunValue: view load up cast
ABSENT RunValue: Yontoo Desktop
SUPPRIME {9293F06D-2B9F-4560-B192-C13976617A73}
SUPPRIME {B95509BA-028E-4C5C-9C42-0BDF33FF4C31}
SUPPRIME {BC8489B6-9C1A-46EB-BB8B-67DE240B6478}
SUPPRIME {7432C459-B212-4539-AC4E-AE442CCE09E4}
 
========== Elément(s) de donnée du Registre ==========
SUPPRIME R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page
SUPPRIME R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL
SUPPRIME R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant
SUPPRIME R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch
SUPPRIME R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs
SUPPRIME AppInit: \Program Files\browse~1\261095~1.52\{c16c1~1\browse~1.dll
SUPPRIME StartMenuInternet: C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe http://www.22find.com
 
========== Préférences navigateur ==========
ABSENT Mozilla Pref: http://www.22find.com/?utm_source= [...] 1362065424
ABSENT \prefs.js
ABSENT \prefs.js
SUPPRIME Mozilla Pref: user_pref("extensions.delta.admin", false);
ABSENT Mozilla Pref: user_pref("extensions.delta.aflt", "babsst" );
ABSENT Mozilla Pref: user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}" );
ABSENT Mozilla Pref: user_pref("extensions.delta.autoRvrt", "false" );
ABSENT Mozilla Pref: user_pref("extensions.delta.dfltLng", "en" );
SUPPRIME Mozilla Pref: user_pref("extensions.delta.excTlbr", false);
ABSENT Mozilla Pref: user_pref("extensions.delta.id", "21916b42000000000000001e37eb0e11" );
ABSENT Mozilla Pref: user_pref("extensions.delta.instlDay", "15763" );
ABSENT Mozilla Pref: user_pref("extensions.delta.instlRef", "sst" );
SUPPRIME Mozilla Pref: user_pref("extensions.delta.newTab", false);
ABSENT Mozilla Pref: user_pref("extensions.delta.prdct", "delta" );
ABSENT Mozilla Pref: user_pref("extensions.delta.prtnrId", "delta" );
ABSENT Mozilla Pref: user_pref("extensions.delta.rvrt", "false" );
ABSENT Mozilla Pref: user_pref("extensions.delta.smplGrp", "none" );
ABSENT Mozilla Pref: user_pref("extensions.delta.tlbrId", "base" );
ABSENT Mozilla Pref: user_pref("extensions.delta.tlbrSrchUrl", "" );
ABSENT Mozilla Pref: user_pref("extensions.delta.vrsn", "1.8.10.0" );
ABSENT Mozilla Pref: user_pref("extensions.delta.vrsnTs", "1.8.10.019:29:11" );
ABSENT Mozilla Pref: user_pref("extensions.delta.vrsni", "1.8.10.0" );
 
========== Dossier(s) ==========
Aucun dossiers CLSID Local utilisateur vide
SUPPRIME Flash Cookies
 
========== Fichier(s) ==========
SUPPRIME File: c:\users\danica.pc-de-danica\appdata\roaming\mozilla\firefox\profiles\4m4pmsae.default\searchplugins\delta.xml  
SUPPRIME File: c:\programdata\kind admin admin.lm8ziw  
SUPPRIME File: c:\programdata\proxy dupe store.crrzk  
SUPPRIME Reboot c:\users\danica.pc-de-danica\appdata\roaming\yontoo\yontoodesktop.exe
ABSENT File: c:\programdata\kind admin admin.lm8ziw
ABSENT File: c:\programdata\proxy dupe store.crrzk
ABSENT File: \program files\browse~1\261095~1.52\{c16c1~1\browse~1.dll
ABSENT File: c:\program files\desk 365\desksvc.exe
SUPPRIME Reboot c:\program files\yontoo\y2desktop.updater.exe
ABSENT File: c:\program files\yontoo\y2desktop.updater.exe
SUPPRIME File: C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\Mozilla\Firefox\Profiles\4m4pmsae.default\bprotector_extensions.sqlite
SUPPRIME File*: c:\users\danica.pc-de-danica\appdata\roaming\mozilla\firefox\profiles\4m4pmsae.default\bprotector_extensions.sqlite
SUPPRIME File: C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\Mozilla\Firefox\Profiles\4m4pmsae.default\bprotector_prefs.js
SUPPRIME Flash Cookies
 
========== Tache planifiée ==========
SUPPRIME Task: RunAsStdUser
SUPPRIME Task: Scheduled Update for Ask Toolbar
 
========== Restauration Système ==========
Point de restauration du système créé avec succès
 
========== Autre ==========
NON TRAITE EmptyTem
 
 
========== Récapitulatif ==========
28 : Clé(s) du Registre
11 : Valeur(s) du Registre
7 : Elément(s) de donnée du Registre
2 : Dossier(s)
14 : Fichier(s)
1 : Logiciel(s)
22 : Préférences navigateur
2 : Tache planifiée
1 : Restauration Système
1 : Autre
 
 
End of clean in 07mn 33s
 
========== Chemin de fichier rapport ==========
C:\ZHP\ZHPFix[R1].txt - 05/03/2013 17:35:51 [7617]


Message édité par mne le 05-03-2013 à 17:50:33
n°3080341
Destrio5
Posté le 05-03-2013 à 18:01:45  profilanswer
 

Citation :

NON TRAITE EmptyTem


--> Il manque le p à la fin (EmptyTemp).
 
Depuis ce matin, la version 2.114 d'AdwCleaner est disponible, utilise-la :
http://general-changelog-team.fr/e [...] adwcleaner

n°3080342
mne
Posté le 05-03-2013 à 18:09:13  profilanswer
 

Mon Dieu  :cry: je déséspere ...
Je dois recoller les deux ?  
 
Merci pour ton aide, mais j'ai vraiment eu du mal sur ce coup

n°3080343
Destrio5
Posté le 05-03-2013 à 18:17:43  profilanswer
 

Ce n'est pas grave, passe à AdwCleaner.
 
On verra par la suite.

mood
Publicité
Posté le 05-03-2013 à 18:17:43  profilanswer
 

n°3080347
mne
Posté le 05-03-2013 à 18:52:25  profilanswer
 

Je recommence, donc par "suppression"?

n°3080348
Destrio5
Posté le 05-03-2013 à 18:54:40  profilanswer
 

Oui.

n°3080350
mne
Posté le 05-03-2013 à 19:05:48  profilanswer
 

# AdwCleaner v2.114 - Rapport créé le 05/03/2013 à 18:59:37
# Mis à jour le 05/03/2013 par Xplode
# Système d'exploitation : Windows Vista (TM) Home Premium Service Pack 2 (32 bits)
# Nom d'utilisateur : DANICA - PC-DE-DANICA
# Mode de démarrage : Normal
# Exécuté depuis : C:\Users\DANICA.PC-de-DANICA\Downloads\adwcleaner (2).exe
# Option [Suppression]
 
 
***** [Services] *****
 
 
***** [Fichiers / Dossiers] *****
 
 
***** [Registre] *****
 
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{953AA732-9AFB-49C9-84A4-7F96CA0A08DA}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Delta Chrome Toolbar
 
***** [Navigateurs] *****
 
-\\ Internet Explorer v7.0.6002.18005
 
Remplacé : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main - Default_Page_URL] = hxxp://www.22find.com/newtab?utm_source=b&utm_medium=mlv&from=mlv&uid=TOSHIBAXMK1646GSX_48RNT25CTXX48RNT25CT&ts=1362065880 --> hxxp://www.google.com
 
-\\ Mozilla Firefox v20.0 (fr)
 
-\\ Google Chrome v11.0.696.71
 
*************************
 
AdwCleaner[R1].txt - [1654 octets] - [28/02/2013 17:02:50]
AdwCleaner[S1].txt - [39378 octets] - [28/02/2013 16:53:47]
AdwCleaner[S2].txt - [1218 octets] - [05/03/2013 18:59:37]
 
########## EOF - C:\AdwCleaner[S2].txt - [1278 octets] ##########

n°3080351
Destrio5
Posté le 05-03-2013 à 19:15:37  profilanswer
 

Plus de 22find ?
 
Je voudrais un nouveau rapport ZHPDiag.

n°3080359
mne
Posté le 05-03-2013 à 20:29:47  profilanswer
 
n°3080372
Destrio5
Posté le 05-03-2013 à 21:29:04  profilanswer
 

  • Supprime les traces de Norton avec ceci :

ftp://ftp.symantec.com/public/fra [...] l_Tool.exe
 

  • Réutilise ZHPFix avec le texte suivant puis poste le rapport :

SysRestore
M0 - MFSP: prefs.js [DANICA - 4m4pmsae.default] http://www.22find.com/?utm_source=b&utm_medium=mlv&from=mlv&uid=TOSHIBAXMK1646GSX_48RNT25CTXX48RNT25CT&ts=1362065424  
M2 - MFEP: prefs.js [DANICA - 4m4pmsae.default\bbrs_002@blabbers.com] [] Ginyas Browser Companion v1.0.5 (.Blabbers Communications Ltd.)    
O43 - CFD: 05/03/2013 - 17:35:36 - [0,707] ----D C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\GinyasBrowserCompanion  
O43 - CFD: 05/03/2013 - 17:43:05 - [0,040] ----D C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\Yontoo  
[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]    
[HKLM\Software\Classes\AOLTB.AOLToolBand.1]  
OPT:O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (...) -- C:\Users\DANICA.PC-de-DANICA\AppData\Local\Google\Chrome\Application\chrome.exe "C:\Users\DANICA.PC-de-DANICA\AppData\Local\Google\Chrome\Application\chrome.exe" http://www.22find.com
EmptyFlash
EmptyTemp

n°3080382
mne
Posté le 05-03-2013 à 22:27:14  profilanswer
 

Rapport de ZHPFix 1.4.01 par Nicolas Coolman, Update du 02/03/2013
Fichier d'export Registre :  
Run by DANICA at 05/03/2013 22:24:23
High Elevated Privileges : OK
Windows Vista Home Premium Edition, 32-bit Service Pack 2 (Build 6002)
 
Corbeille vidée
 
========== Clé(s) du Registre ==========
ABSENT Key: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
ABSENT Key: HKLM\Software\Classes\AOLTB.AOLToolBand.1
ABSENT StartMenuInternet: C:\Users\DANICA.PC-de-DANICA\AppData\Local\Google\Chrome\Application\chrome.exe "C:\Users\DANICA.PC-de-DANICA\AppData\Local\Google\Chrome\Application\chrome.
 
========== Préférences navigateur ==========
ABSENT Mozilla Pref: http://www.22find.com/?utm_source= [...] 1362065424
ABSENT \prefs.js
 
========== Dossier(s) ==========
ABSENT C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\GinyasBrowserCompanion
ABSENT C:\Users\DANICA.PC-de-DANICA\AppData\Roaming\Yontoo
SUPPRIME Flash Cookies
SUPPRIME Temporaires Windows
 
========== Fichier(s) ==========
SUPPRIME Flash Cookies
SUPPRIME Temporaires Windows
 
========== Restauration Système ==========
Point de restauration du système créé avec succès
 
 
========== Récapitulatif ==========
3 : Clé(s) du Registre
4 : Dossier(s)
2 : Fichier(s)
2 : Préférences navigateur
1 : Restauration Système
 
 
End of clean in 03mn 25s

n°3080385
Destrio5
Posté le 05-03-2013 à 22:41:02  profilanswer
 

22find apparaît à quel endroit ?

n°3080428
mne
Posté le 06-03-2013 à 12:50:08  profilanswer
 

Sur google chrome.

n°3080432
Destrio5
Posté le 06-03-2013 à 13:51:37  profilanswer
 
n°3080435
mne
Posté le 06-03-2013 à 14:13:59  profilanswer
 

Oui, en page d'accueil.
J'ai déjà essayer tout ça, mais rien n'y fait... Dans les options j'ai google.fr comme page d'accueil, mais quand j'ouvre google chrome, c'est find22.
 

n°3080438
Destrio5
Posté le 06-03-2013 à 14:32:48  profilanswer
 

Il apparaît dans les extensions ?
 
http://support.google.com/chrome/b [...] wer=113907

n°3080466
mne
Posté le 06-03-2013 à 17:05:39  profilanswer
 

Non, il n'apparait plus dans extensions... :/

n°3080484
Destrio5
Posté le 06-03-2013 à 20:50:44  profilanswer
 
n°3080604
mne
Posté le 07-03-2013 à 20:50:42  profilanswer
 

Je crois que Malwarebytes Anti-malware a réglé mon problème ! Find22 est enfin parti ! :) merci beaucoup pour ton aide Destrio ;)

n°3080605
Destrio5
Posté le 07-03-2013 à 21:13:05  profilanswer
 

Tu peux me donner le rapport de MBAM ?

n°3081360
ricolerouq​uin
Posté le 14-03-2013 à 21:53:56  profilanswer
 

Bonjour,
J'ai créé un nouveau topic ayant le même problème avec 22Find. Mais un modo à éditer mon sujet, j'imagine donc qu'il faut que je fasse ma demande ici.
J'ai donc téléchargé AdwCleaner et voici le rapport sauvegardé sur mon répertoire "C" :
# AdwCleaner v2.114 - Rapport créé le 14/03/2013 à 19:54:18
# Mis à jour le 05/03/2013 par Xplode
# Système d'exploitation : Windows 8  (64 bits)
# Nom d'utilisateur : Eric ROBIN-AUFFRET - PC-ROBIN
# Mode de démarrage : Normal
# Exécuté depuis : C:\Users\Eric ROBIN-AUFFRET\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3J2K6HL4\adwcleaner.exe
# Option [Suppression]
 
 
***** [Services] *****
 
 
***** [Fichiers / Dossiers] *****
 
Dossier Supprimé : C:\Program Files (x86)\Desk 365
Dossier Supprimé : C:\Users\Eric ROBIN-AUFFRET\AppData\Roaming\Desk 365
Dossier Supprimé : C:\Users\Eric ROBIN-AUFFRET\chat-land
Fichier Désinfecté : C:\Users\Eric ROBIN-AUFFRET\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\22find.lnk
Fichier Désinfecté : C:\Users\Eric ROBIN-AUFFRET\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
Fichier Désinfecté : C:\Users\Eric ROBIN-AUFFRET\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk
Fichier Désinfecté : C:\Users\Eric ROBIN-AUFFRET\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Fichier Désinfecté : C:\Users\Eric ROBIN-AUFFRET\Desktop\Internet Explorer.lnk
Fichier Supprimé : C:\Users\Eric ROBIN-AUFFRET\AppData\Roaming\Microsoft\Windows\Start Menu\Chat-Land site de chat et de rencontre gratuit.URL
Fichier Supprimé : C:\Users\Eric ROBIN-AUFFRET\Desktop\Chat-Land site de chat et de rencontre gratuit.URL
Fichier Supprimé : C:\Users\Public\Desktop\eBay.lnk
 
***** [Registre] *****
 
Clé Supprimée : HKCU\Software\Softonic
Clé Supprimée : HKCU\Software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Clé Supprimée : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\CheckRun22find_uninstaller
 
***** [Navigateurs] *****
 
-\\ Internet Explorer v10.0.9200.16519
 
Remplacé : [HKCU\Software\Microsoft\Internet Explorer\Main - Default_Page_URL] = hxxp://www.22find.com/newtab?utm_source=b&utm_medium=mib&from=mib&uid=ST1000DM003-9YN162_S1D6RPS4&ts=1363260899 --> hxxp://www.google.com
Remplacé : [HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls - Tabs] = hxxp://www.22find.com/newtab?utm_source=b&utm_medium=mib&from=mib&uid=ST1000DM003-9YN162_S1D6RPS4&ts=1363260899 --> hxxp://www.google.com
Remplacé : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Default_Page_URL] = hxxp://www.22find.com/newtab?utm_source=b&utm_medium=mib&from=mib&uid=ST1000DM003-9YN162_S1D6RPS4&ts=1363260899 --> hxxp://www.google.com
Remplacé : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Page] = hxxp://www.22find.com/newtab?utm_source=b&utm_medium=mib&from=mib&uid=ST1000DM003-9YN162_S1D6RPS4&ts=1363260899 --> hxxp://www.google.com
 
-\\ Mozilla Firefox v [Impossible d'obtenir la version]
 
Fichier : C:\Users\Eric ROBIN-AUFFRET\AppData\Roaming\Mozilla\Firefox\Profiles\l577a203.default\prefs.js
 
[OK] Le fichier ne contient aucune entrée illégitime.
 
*************************
 
AdwCleaner[S1].txt - [3206 octets] - [14/03/2013 19:54:18]
 
########## EOF - C:\AdwCleaner[S1].txt - [3266 octets] ##########
 
J'espère que vous pourrez m'aider et d'avance un grand merci !

n°3081461
clem40550
Posté le 15-03-2013 à 20:46:08  profilanswer
 

bonjour j'ai le meme soucis que vous tous j'ai tout réaliser mais je suis bloquer a zhp fix car j'ai pas les bons mots
est ce que sa serai possible de me les passer si je vous donne le dossier

n°3081473
Destrio5
Posté le 15-03-2013 à 21:56:06  profilanswer
 

Bonsoir clem40550,
 
Oui, héberge le rapport ZHPDiag sur le site http://pjjoint.malekal.com/index.php?lang=fr puis mets le lien dans ta prochaine réponse.

n°3081493
clem40550
Posté le 16-03-2013 à 10:58:36  profilanswer
 
n°3081496
Destrio5
Posté le 16-03-2013 à 11:33:30  profilanswer
 

  • Désinstalle Spybot.


  • Copie tout le texte présent dans le cadre ci-dessous (Sélectionne-le, clique droit dessus et choisis "Copier" ).

SysRestore
G0 - GCSP: Preference [User Data\Default][HomePage] http://search.conduit.com  
G1 - GCS: Preference [User Data\Default] http://search.conduit.com  
[MD5.00000000000000000000000000000000] [APT] [5050] (...) -- C:\Users\clemence\AppData\Local\Temp\launchie.vbs \\B (.not file.)   [0]    
[MD5.00000000000000000000000000000000] [APT] [RunAsStdUser] (...) -- C:\Program Files (x86)\Desk 365\desk365.exe (.not file.)   [0]    
O41 - Driver: (krnhrysf) . (. - .) - C:\Windows\system32\drivers\krnhrysf.sys (.not file.)  
O42 - Logiciel: Lollipop - (...) [HKCU][64Bits] -- lollipop  
[HKCU\Software\AppDataLow\Software\IncrediMail_MediaBar_Francais_2]  
[HKLM\Software\IB Updater]  
[HKLM\Software\Wow6432Node\Trymedia Systems]  
[HKLM\Software\Wow6432Node\V9]  
O43 - CFD: 30/11/2012 - 18:14:50 - [0,017] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\Babylon    
O43 - CFD: 15/03/2013 - 17:49:24 - [10,714] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\Desk 365  
O43 - CFD: 23/11/2012 - 22:25:41 - [50,920] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\OpenCandy  
O43 - CFD: 15/03/2013 - 17:59:53 - [0,063] ----D C:\Users\clemence.clemence-PC\AppData\Local\Conduit
O43 - CFD: 30/11/2012 - 18:15:50 - [0,038] ----D C:\Users\clemence.clemence-PC\AppData\Local\Giant Savings    
O43 - CFD: 23/11/2012 - 22:41:38 - [0,014] ----D C:\Users\clemence.clemence-PC\AppData\Local\Ilivid Player  
O43 - CFD: 15/03/2013 - 19:19:03 - [1,139] ----D C:\Users\clemence.clemence-PC\AppData\Local\Lollipop  
O43 - CFD: 15/03/2013 - 17:55:16 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\Tiger Savings    
O69 - SBI: SearchScopes [HKCU] {A440FE84-0C34-4DBF-9F33-579BF03D321C} - (FileConverter 1.5 Customized Web Search) - http://search.conduit.com  
OPT:O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (...) --  C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" http://www.22find.com  
OPT:O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (...) --  C:\Program Files (x86)\Internet Explorer\iexplore.exe http://www.22find.com  
O87 - FAEL: "{DAFFF15A-049B-4C95-A9B7-98629231033F}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe (.not file.)    
O87 - FAEL: "{98E8890D-B637-4458-B3B5-BE4CAC7C98FF}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe (.not file.)  
[HKLM\Software\Classes\Interface\{3f607e46-0d3c-4442-b1de-de7fa4768f5c}]      
[HKLM\Software\Wow6432Node\Classes\Interface\{3f607e46-0d3c-4442-b1de-de7fa4768f5c}]      
[HKLM\Software\Classes\TypeLib\{93e3d79c-0786-48ff-9329-93bc9f6dc2b3}]      
[HKLM\Software\Classes\Interface\{fe0273d1-99df-4ac0-87d5-1371c6271785}]      
[HKLM\Software\Wow6432Node\Classes\Interface\{fe0273d1-99df-4ac0-87d5-1371c6271785}]      
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{27100E88-8830-44ED-9D6A-CA24F3523F39}]      
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{493CCB71-DCAD-4257-9F08-8750F63BD792}]      
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}]      
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}]      
[HKLM\Software\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}]      
[HKLM\Software\Microsoft\Internet Explorer\extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}]      
[HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}]      
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]      
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]      
[HKLM\Software\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]      
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D15DAF33C220F91468A1D7D57C31ACD7]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D6D0EB9FDBD90C04D92A7E729058F10D]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A189D17A469616C4688D23E192996267]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\98CC8BF5A4A6E6C4ABF7051DDAB8B058]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7FFA128C2B0FF414D805FC5627883401]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D3BA76A44C779424889063D5098ED2D6]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\397C771A7BCAC904697C3EC629ED33ED]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\351716A953E21214898904032EAE2E81]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2E6768B6932D112438F047C54D180635]      
[HKLM\Software\Wow6432Node\Microsoft\Tracing\BingBar_RASMANCS]  
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E]  
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6]  
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852]  
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0]  
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA]  
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96]  
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59]  
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC]  
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA]  
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E]  
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF]  
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E]  
[HKCU\Software\AppDataLow\Software\FileConverter_1.5]      
[HKCU\Software\lollipop]  
[HKCU\Software\SweetIM]  
[HKLM\Software\Wow6432Node\SweetIM]  
[HKCU\Software\AppDataLow\Software\WiseConvert_1.5]  
[HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\lollipop]  
[HKLM\Software\Wow6432Node\Microsoft\Tracing\BingBar_RASAPI32]  
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9EE58E3C298524145B73CBBED3CAC4D3]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02F47BF73B948514FAACADD8CBBDF37D]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\080D9F5E1E95FEE4794CE438E635239E]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\A97CEC23332751B47BA4B95BAA50C9D0]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1E264E0A5959A1C46BA9175A878B12EA]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E4748F9A4181FCE46A23C13B517B9420]      
[HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]      
[HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]      
[HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\desksvc]  
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\69D6A6B2ED56AF24EA6335EAD6E91CA4]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86EDC790504E1834DBC20C9A04328FD2]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\97C3D0F82E712E241A2F969F45E3351C]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9E7F556BF224D804D96A96F0F6344789]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BF4F885EDEE45644EB1E0C99E0162399]      
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE21F3FD57B244142880EF15A165A156]      
C:\Users\clemence.clemence-PC\AppData\LocalLow\BabylonToolbar  
C:\Users\clemence.clemence-PC\AppData\LocalLow\Conduit      
C:\Users\clemence.clemence-PC\AppData\LocalLow\IncrediMail_MediaBar_Francais_2  
C:\Users\clemence.clemence-PC\AppData\LocalLow\PriceGong  
EmptyCLSID
EmptyFlash
EmptyTemp


  • Puis lance ZHPFix depuis le raccourci situé sur ton Bureau.


  • Clique sur le bouton "Coller le presse-papier".


  • Dans l'encadré principal, tu verras donc les lignes que tu as copié précédemment apparaître. Vérifie que toutes les lignes que je t'ai demandé de copier (et seulement elles) sont dans la fenêtre.


  • Clique sur "GO" pour lancer le nettoyage. Laisse l'outil travailler et ne touche à rien.


  • Accepte la désinstallation des programmes si proposé, mais refuse le redémarrage de ton PC si également proposé, car cela stopperait ZHPFix.


  • Une fois terminé, copie-colle le rapport dans ton prochain message.

n°3081498
clem40550
Posté le 16-03-2013 à 12:04:21  profilanswer
 

Rapport de ZHPFix 2013.3.9.1 par Nicolas Coolman, Update du 9/03/2013
Fichier d'export Registre : C:\ZHP\ZHPExportRegistry-16-03-2013-12-03-01.txt
Run by clemence at 16/03/2013 12:03:00
High Elevated Privileges : OK
Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601)
 
Corbeille vidée
 
========== Logiciel(s) ==========
ABSENT Software Key: lollipop
 
========== Clé(s) du Registre ==========
SUPPRIME Driver Key: krnhrysf
SUPPRIME Key: HKCU\Software\AppDataLow\Software\IncrediMail_MediaBar_Francais_2
SUPPRIME Key*: HKLM\Software\IB Updater
SUPPRIME Key: HKLM\Software\Wow6432Node\Trymedia Systems
SUPPRIME Key: HKLM\Software\Wow6432Node\V9
SUPPRIME Key: SearchScopes :{A440FE84-0C34-4DBF-9F33-579BF03D321C}
SUPPRIME Key*: HKLM\Software\Classes\Interface\{3f607e46-0d3c-4442-b1de-de7fa4768f5c}
ABSENT Key: HKLM\Software\Wow6432Node\Classes\Interface\{3f607e46-0d3c-4442-b1de-de7fa4768f5c}
SUPPRIME Key: HKLM\Software\Classes\TypeLib\{93e3d79c-0786-48ff-9329-93bc9f6dc2b3}
SUPPRIME Key*: HKLM\Software\Classes\Interface\{fe0273d1-99df-4ac0-87d5-1371c6271785}
ABSENT Key: HKLM\Software\Wow6432Node\Classes\Interface\{fe0273d1-99df-4ac0-87d5-1371c6271785}
SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{27100E88-8830-44ED-9D6A-CA24F3523F39}
SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{493CCB71-DCAD-4257-9F08-8750F63BD792}
ABSENT Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
SUPPRIME Key*: HKLM\Software\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
SUPPRIME Key*: HKLM\Software\Microsoft\Internet Explorer\extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
ABSENT Key: HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
SUPPRIME Key*: HKLM\Software\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
ABSENT Key: HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D15DAF33C220F91468A1D7D57C31ACD7
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D6D0EB9FDBD90C04D92A7E729058F10D
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A189D17A469616C4688D23E192996267
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\98CC8BF5A4A6E6C4ABF7051DDAB8B058
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7FFA128C2B0FF414D805FC5627883401
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D3BA76A44C779424889063D5098ED2D6
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\397C771A7BCAC904697C3EC629ED33ED
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\351716A953E21214898904032EAE2E81
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2E6768B6932D112438F047C54D180635
SUPPRIME Key: HKLM\Software\Wow6432Node\Microsoft\Tracing\BingBar_RASMANCS
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E
SUPPRIME Key: HKCU\Software\AppDataLow\Software\FileConverter_1.5
SUPPRIME Key: HKCU\Software\lollipop
ABSENT Key: HKCU\Software\SweetIM
SUPPRIME Key: HKLM\Software\Wow6432Node\SweetIM
SUPPRIME Key: HKCU\Software\AppDataLow\Software\WiseConvert_1.5
SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\lollipop
SUPPRIME Key: HKLM\Software\Wow6432Node\Microsoft\Tracing\BingBar_RASAPI32
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9EE58E3C298524145B73CBBED3CAC4D3
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02F47BF73B948514FAACADD8CBBDF37D
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\080D9F5E1E95FEE4794CE438E635239E
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\A97CEC23332751B47BA4B95BAA50C9D0
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1E264E0A5959A1C46BA9175A878B12EA
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E4748F9A4181FCE46A23C13B517B9420
SUPPRIME Key*: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
ABSENT Key: HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
SUPPRIME Key: HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\desksvc
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\69D6A6B2ED56AF24EA6335EAD6E91CA4
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86EDC790504E1834DBC20C9A04328FD2
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\97C3D0F82E712E241A2F969F45E3351C
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9E7F556BF224D804D96A96F0F6344789
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BF4F885EDEE45644EB1E0C99E0162399
SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE21F3FD57B244142880EF15A165A156
 
========== Valeur(s) du Registre ==========
SUPPRIME {DAFFF15A-049B-4C95-A9B7-98629231033F}
SUPPRIME {98E8890D-B637-4458-B3B5-BE4CAC7C98FF}
 
========== Elément(s) de donnée du Registre ==========
SUPPRIME StartMenuInternet:  C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" http://www.22find.com
SUPPRIME StartMenuInternet:  C:\Program Files (x86)\Internet Explorer\iexplore.exe http://www.22find.com
 
========== Préférences navigateur ==========
PRESENT Chrome File: C:\Users\clemence\AppData\Local\Google\Chrome\User Data\Default\Preferences
SUPPRIME Chrome Site: http://search.conduit.com
SUPPRIME Chrome Site: http://search.conduit.com
SUPPRIME Chrome Site: http://search.conduit.com
SUPPRIME Chrome Site: http://search.conduit.com
PRESENT Chrome File: C:\Users\clemence\AppData\Local\Google\Chrome\User Data\Default\Preferences
ABSENT Chrome Site: http://search.conduit.com
 
========== Dossier(s) ==========
Aucun dossiers CLSID Local utilisateur vide
SUPPRIME Flash Cookies
SUPPRIME Temporaires Windows
 
========== Fichier(s) ==========
SUPPRIME Flash Cookies
SUPPRIME Temporaires Windows
 
========== Tache planifiée ==========
SUPPRIME Task: 5050
SUPPRIME Task: RunAsStdUser
 
========== Restauration Système ==========
Point de restauration du système créé avec succès
 
 
========== Récapitulatif ==========
69 : Clé(s) du Registre
2 : Valeur(s) du Registre
2 : Elément(s) de donnée du Registre
3 : Dossier(s)
2 : Fichier(s)
1 : Logiciel(s)
7 : Préférences navigateur
2 : Tache planifiée
1 : Restauration Système
 
 
End of clean in 01mn 59s
 
========== Chemin de fichier rapport ==========
C:\ZHP\ZHPFix[R1].txt - 15/03/2013 20:37:19 [12173]
C:\ZHP\ZHPFix[R2].txt - 15/03/2013 21:00:30 [485]
C:\ZHP\ZHPFix[R3].txt - 16/03/2013 12:03:01 [9750]

n°3081501
Destrio5
Posté le 16-03-2013 à 12:21:16  profilanswer
 

22find est toujours présent ?
 
Je voudrais un nouveau rapport ZHPDiag.

n°3081502
clem40550
Posté le 16-03-2013 à 12:26:02  profilanswer
 

oui il est toujours present je t'envois le rapport zhpdiag

n°3081504
clem40550
Posté le 16-03-2013 à 12:31:01  profilanswer
 

Rapport de ZHPDiag v2013.3.13.24 par Nicolas Coolman, Update du 13/03/2013
Run by clemence at 16/03/2013 12:26:59
State : Nouvelle version disponible
High Elevated Privileges : OK
UAC : Deactivate by program
 
 
---\\ Web Browser
MSIE: Internet Explorer v9.0.8112.16421
GCIE: Google Chrome v25.0.1364.172 (Defaut)
 
---\\ Windows Product Information
~ Langage: Français
Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601)
Windows Server License Manager Script : OK
~ Windows(R) 7, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : 3Q6C9
Windows License : OK
~ Windows Remaining Initializations Number : 2
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK
 
---\\ System Information
~ Processor: AMD64 Family 16 Model 6 Stepping 2, AuthenticAMD
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3836 MB (56% free)
System Restore: Activé (Enable)
System drive C: has 387 GB (85%) free of 452 GB
 
---\\ Logged in mode
~ Computer Name: CLEMENCE-PC
~ User Name: clemence
~ All Users Names: HomeGroupUser$, clemence, Administrateur,  
~ Unselected Option: O45,O61,O62,O65,O66,O80,O82,O89
Logged in as Administrator
 
---\\ Environnement Variables
~ System Unit : C:\
~ %AppData% : C:\Users\clemence.clemence-PC\AppData\Roaming\
~ %Desktop% : C:\Users\clemence.clemence-PC\Desktop\
~ %Favorites% : C:\Users\clemence.clemence-PC\Favorites\
~ %LocalAppData% : C:\Users\clemence.clemence-PC\AppData\Local\
~ %StartMenu% : C:\Users\clemence.clemence-PC\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\
 
---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 387 Go of 452 Go)
D:\ Hard drive, Flash drive, Thumb drive (Free 2 Go of 13 Go)
E:\ CD-ROM drive (Not Inserted)
 
 
 
---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime :  OK
~ Scan Security Center in 00mn 00s
 
 
 
---\\ Recherche particulière de fichiers génériques
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2011 - 07:19:30.) -- C:\Windows\Explorer.exe [2871808]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:39:52.) -- C:\Windows\System32\Wininit.exe [129024]
[MD5.FA274190682AA41A46B285208ED46A74] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.02/02/2013 - 07:47:19.) -- C:\Windows\System32\wininet.dll [1392128]
[MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.20/11/2010 - 14:25:30.) -- C:\Windows\System32\Winlogon.exe [390656]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) (.20/11/2010 - 14:27:26.) -- C:\Windows\System32\sppcomapi.dll [232448]
[MD5.1C7857B62DE5994A75B054A9FD4C3825] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.28/12/2011 - 04:59:24.) -- C:\Windows\system32\Drivers\AFD.sys [498688]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 10:19:21.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 10:26:32.) -- C:\Windows\system32\Drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 11:43:43.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 01:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224]
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:40:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 10:23:20.) -- C:\Windows\system32\Drivers\netBT.sys [261632]
[MD5.E453ACF4E7D44E5530B5D5F2B9CA8563] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.31/08/2012 - 19:19:35.) -- C:\Windows\system32\Drivers\ntfs.sys [1659760]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 01:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.20/11/2010 - 11:52:35.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 01:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184]
[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 10:21:56.) -- C:\Windows\system32\Drivers\tdx.sys [119296]
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.20/11/2010 - 14:34:02.) -- C:\Windows\system32\Drivers\volsnap.sys [295808]
~ Scan Generic Processes in 00mn 00s
 
 
 
---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 2/26
~ Mes musiques (My Musics) : 6/29
~ Mes Videos (My Videos) : 2/10
~ Mes Favoris (My Favorites) : 1/40
~ Mes Documents (My Documents) : 2/19
~ Mon Bureau (My Desktop) : 1/650
~ Menu demarrer (Programs) : 1/33
~ Scan Hidden Files in 00mn 01s
 
 
 
---\\ Processus lancés
[MD5.7853D2AB445C10F97610B2B05FA4CF0A] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe   [512360] [PID.2196]
[MD5.9157189DC07511ECBBE1D2615D8A2FED] - (.Hewlett-Packard - HP Advisor.) -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe   [1668664] [PID.912]
[MD5.CCF2234A35077CA217A61C9CACC48198] - (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe   [2363392] [PID.2908]
[MD5.A2814FED5A47B00BBC99AC58F93B9337] - (.CyberLink Corp. - HP QuickPlay Resident Program.) -- C:\Program Files (x86)\Hp\QuickPlay\QPService.exe   [468264] [PID.3268]
[MD5.0771A5C3B78967F9F83C1C429334AD2A] - (. Hewlett-Packard Development Company, L.P. - Quick Launch Buttons.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe   [320056] [PID.3296]
[MD5.148C545849C1379A3D4448F5DE768E86] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe   [4767304] [PID.3872]
[MD5.12916E0642E92561C98B18A2A2D01B14] - (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe   [252848] [PID.2256]
[MD5.0DE3C7622EC33126579B1742260F08C2] - (.Pas de propriétaire - HpqToaster Module.) -- C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe   [632888] [PID.4216]
[MD5.DDE5A0DFAF7C6370FB36402D7A746ED3] - (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe   [757296] [PID.2976]
[MD5.A854BC2D2AD9856F6B84C7870FF246D9] - (.Adobe Systems Incorporated - Adobe® Flash® Player Installer/Uninstaller.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_6_602_180_ActiveX.exe   [706776] [PID.4100]
[MD5.66374C3F6D2A772BE898D553C335336C] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe   [5747200] [PID.3996]
[MD5.41735B82DB57E4EBE9504EC400FD120E] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe   [45248] [PID.1356]
[MD5.3927397AC60D943DAF8808AFFED582B7] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe   [65192] [PID.1632]
[MD5.47480F4260DAE9AA589BCAF924B3767A] - (.Microsoft Corporation. - BingBar Service.) -- C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BBSvc.exe   [193816] [PID.1724]
[MD5.83D8BE94E1CBCBE2EA8372DB1A95A159] - (.Hewlett-Packard Company - LightScribe Service.) -- C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe   [73728] [PID.1928]
[MD5.1ACAA67676E9E7BDA5E0C41B6E0DECAF] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe   [398184] [PID.1996]
[MD5.916B8954AC3E06DC9E898AFFB41F3FB6] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe   [682344] [PID.1428]
[MD5.498EB62A160674E793FA40FD65390625] - (.Pas de propriétaire - RichVideo Module.) -- C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe   [247152] [PID.2072]
[MD5.388AE59FE75F1B959DFA0900923C61BB] - (.Skype Technologies S.A. - Skype C2C Service.) -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe   [3064000] [PID.2604]
[MD5.FDF273A845F1FFCCEADF363AAF47582F] - (.Hewlett-Packard Development Company, L.P. - hpqwmiex Module.) -- C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe   [229944] [PID.3760]
[MD5.F9A79C5B27037821112C50A9C8FB367A] - (.Hewlett-Packard Development Company, L.P. - Com for QLB application.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe   [228408] [PID.4472]
~ Scan Processes Running in 00mn 00s
 
 
 
---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\clemence\AppData\Local\Google\Chrome\User Data\Default\Preferences
G0 - GCSP: Preference [User Data\Default][HomePage] http://www.google.fr
G0 - GCSP: Preference [User Data\Default] http://www.google.fr
G1 - GCS: Preference [User Data\Default] http://www.google.fr
~ Scan Google Browser in 00mn 00s
 
 
 
---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions  (P2,M0,M1,M2,M3)
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF64_11_6_602_180.dll
P2 - FPN: [HKCU] [@unity3d.com/UnityPlayer,version=1.0] - (.Unity Technologies ApS - Unity Player 4.0.1f2.) -- C:\Users\clemence.clemence-PC\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll
~ Scan Firefox Browser in 00mn 00s
 
 
 
---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)) -- C:\Windows\SysWOW64\ieframe.dll
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
~ Scan IE Browser in 00mn 00s
 
 
 
---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Scan Proxy management in 00mn 00s
 
 
 
---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Scan Keys in 00mn 00s
 
 
 
---\\ Redirection du fichier Hosts (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Scan Hosts File in 00mn 00s
~ Nombre de lignes (Lines number): 21
 
 
 
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: AcroIEHelperStub [64Bits] - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live ID [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper [64Bits] - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} . (.Microsoft Corporation - Windows Live Messenger Companion Core.) -- C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: Google Toolbar Helper [64Bits] - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Bing Bar Helper [64Bits] - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} . (.Microsoft Corporation. - Extensions du client Bing.) -- C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
~ Scan BHO in 00mn 00s
 
 
 
---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: (no name) [64Bits] - [HKLM]{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} Clé orpheline
O3 - Toolbar: Google Toolbar [64Bits] - [HKLM]{2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
~ Scan Toolbar in 00mn 00s
 
 
 
---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.)  
O4 - HKLM\..\Run: [SysTrayApp] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe  
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jusched.exe  
O4 - HKCU\..\Run: [HPADVISOR] . (.Hewlett-Packard - HP Advisor.) -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe  
O4 - HKCU\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe  
O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe  
O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe  
O4 - HKLM\..\Wow6432Node\Run: [QPService] . (.CyberLink Corp. - HP QuickPlay Resident Program.) -- C:\Program Files (x86)\HP\QuickPlay\QPService.exe  
O4 - HKLM\..\Wow6432Node\Run: [QlbCtrl.exe] . (. Hewlett-Packard Development Company, L.P. - Quick Launch Buttons.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe  
O4 - HKLM\..\Wow6432Node\Run: [UpdatePRCShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files (x86)\Hewlett-Packard\Recovery\MUITransfer\MUIStartMenu.exe  
O4 - HKLM\..\Wow6432Node\Run: [Easybits Recovery] . (.EasyBits Software AS - Pas de description.) -- C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe  
O4 - HKLM\..\Wow6432Node\Run: [WirelessAssistant] . (.Hewlett-Packard - HP Wireless Assistant Main Program.) -- C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe  
O4 - HKLM\..\Wow6432Node\Run: [avast] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastUI.exe  
O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe  
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe  
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe  
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe  
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe  
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe  
O4 - HKUS\S-1-5-21-1607949051-4147538281-2056551771-1000\..\Run: [HPADVISOR] . (.Hewlett-Packard - HP Advisor.) -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe  
O4 - HKUS\S-1-5-21-1607949051-4147538281-2056551771-1000\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe  
O4 - HKUS\S-1-5-21-1607949051-4147538281-2056551771-1000\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe  
~ Scan Application in 00mn 00s
 
 
 
---\\ Autres liens utilisateurs (O4)
O4 - GS\TaskBar: Free YouTube to MP3 Converter (2).lnk . (.DVDVideoSoft Ltd. - FreeYouTubeToMP3Converter.)  -- C:\Program Files (x86)\DVDVideoSoft\Free YouTube to MP3 Converter\FreeYouTubeToMP3Converter.exe  
O4 - GS\TaskBar: Google Chrome.lnk . (.Google Inc. - Google Chrome.)  -- C:\Users\clemence.clemence-PC\AppData\Local\Google\Chrome\Application\chrome.exe  
O4 - GS\TaskBar: Microsoft Office Outlook 2007.lnk . (...)  -- C:\Windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\outicon.exe
O4 - GS\TaskBar: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.)  -- C:\Windows\explorer.exe  
O4 - GS\TaskBar: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.)  -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe  
O4 - GS\Programs: Internet Explorer (64-bit).lnk . (.Microsoft Corporation - Internet Explorer.)  -- C:\Program Files (x86)\Internet Explorer\iexplore.exe  
O4 - GS\Programs: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.)  -- C:\Program Files (x86)\Internet Explorer\iexplore.exe  
O4 - GS\QuickLaunch: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.)  -- C:\Program Files (x86)\Internet Explorer\iexplore.exe  
O4 - GS\QuickLaunch: Microsoft Office Outlook.lnk . (.Microsoft Corporation - Microsoft Office Outlook.)  -- C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.exe  
O4 - GS\QuickLaunch: Yahoo! Messenger.lnk . (.Yahoo! Inc. - Yahoo! Messenger.)  -- C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe  
O4 - GS\Accessories: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.)  -- C:\Program Files (x86)\Internet Explorer\iexplore.exe  
O4 - GS\Accessories: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.)  -- C:\Windows\system32\eudcedit.exe  
O4 - GS\SendTo: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft  Windows Fax and Scan.)  -- C:\Windows\system32\WFS.exe  
O4 - GS\SendTo: Skype.lnk . (.Skype Technologies S.A. - Skype.)  -- C:\Program Files (x86)\Skype\Phone\Skype.exe  
O4 - GS\Desktop: Free YouTube Download.lnk . (.DVDVideoSoft Ltd. - Free YouTube Download.)  -- C:\Program Files (x86)\DVDVideoSoft\Free YouTube Download\FreeYTVDownloader.exe  
O4 - GS\Desktop: Microsoft Office Outlook 2007.lnk . (...)  -- C:\Windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\outicon.exe
~ Scan Global Startup in 00mn 01s
 
 
 
---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ Scan IE Control Panel in 00mn 00s
 
 
 
---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.dll
O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
~ Scan Winsock in 00mn 00s
 
 
 
---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{D79993A6-4521-4339-A113-AE1DC3E054E1}: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{D79993A6-4521-4339-A113-AE1DC3E054E1}: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{D79993A6-4521-4339-A113-AE1DC3E054E1}: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
~ Scan Domain in 00mn 00s
 
 
 
---\\ Protocole additionnel (O18)
O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (...) --  
O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.dll
~ Scan Protocole Additionnel in 00mn 00s
 
 
 
---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ Scan SSODL in 00mn 00s
 
 
 
---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\AESTSr64.exe
O23 - Service:  (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe
O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Health Check Service (HP Health Check Service) . (.Hewlett-Packard - HP Health Check Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: LightScribeService Direct Disc Labeling  (LightScribeService) . (.Hewlett-Packard Company - LightScribe Service.) - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service:  (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service:  (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: NitroPDFReaderDriverCreatorReadSpool2 (NitroReaderDriverReadSpool2) . (.Nitro PDF Software - Nitro PDF Spool Service.) - C:\Program Files\Common Files\Nitro PDF\Reader\2.0\NitroPDFReaderDriverService2x64.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Pas de propriétaire - RichVideo Module.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: Skype C2C Service (Skype C2C Service) . (.Skype Technologies S.A. - Skype C2C Service.) - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: Audio Service (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\STacSV64.exe
O23 - Service:  (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
~ Scan Services in 00mn 12s
 
 
 
---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) -  (.not file.)
~ Scan Desktop Component in 00mn 00s
 
 
 
---\\ BootExecute (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (sdnclean64.exe) - File not found
~ Scan Keys in 00mn 00s
 
 
 
---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task  - C:\Windows\Tasks\Adobe Flash Player Updater.job   [1002]
O39 - APT:Automatic Planified Task  - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job   [1068]
O39 - APT:Automatic Planified Task  - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job   [1072]
O39 - APT:Automatic Planified Task  - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1607949051-4147538281-2056551771-1000Core.job   [1038]
O39 - APT:Automatic Planified Task  - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1607949051-4147538281-2056551771-1000UA.job   [1090]
[MD5.EA856F4A46320389D1899B2CAA7BF40F] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe   [253656]
[MD5.AB3C4A3667AEAD147F175721D8719B78] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe   [250248]
[MD5.9CE3B11704038F711481ACD6BD9A9A5A] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe   [3274008]
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe   [136176]
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe   [136176]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskUserS-1-5-21-1607949051-4147538281-2056551771-1000Core] (.Google Inc..) -- C:\Users\clemence\AppData\Local\Google\Update\GoogleUpdate.exe   [116648]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskUserS-1-5-21-1607949051-4147538281-2056551771-1000UA] (.Google Inc..) -- C:\Users\clemence\AppData\Local\Google\Update\GoogleUpdate.exe   [116648]
[MD5.28B01A58758B08F9B2086DBAAEAE791E] [APT] [RecoveryCDWin7] (...) -- C:\Program Files (x86)\Hewlett-Packard\HP TCS\RemEngine.exe   [37744]
[MD5.28B01A58758B08F9B2086DBAAEAE791E] [APT] [Registration] (...) -- C:\Program Files (x86)\Hewlett-Packard\HP TCS\RemEngine.exe   [37744]
[MD5.92B476DD52794881A4B91A5529C2706B] [APT] [{35ACDCEF-52AB-49BE-95A9-195F74D3DD33}] (...) -- C:\Program Files\AVAST Software\Avast\aswRundll.exe   [107568]
[MD5.848D034D067BE2FF5CD3D779BECBDA00] [APT] [{8FA884FE-A059-430F-ADBA-726E6A29E2A3}] (.Google Inc..) -- c:\users\clemence\appdata\local\google\chrome\application\chrome.exe   [1239064]
[MD5.ACB856FE8856E8091F5EF0ADB6450A55] [APT] [PC Health Analysis] (.Hewlett-Packard.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe   [877320]
[MD5.ACB856FE8856E8091F5EF0ADB6450A55] [APT] [PC Tuneup] (.Hewlett-Packard.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe   [877320]
~ Scan Scheduled Task in 00mn 04s
 
 
 
---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll
O40 - ASIC: Internet Explorer [64Bits] - >{26923b43-4d38-484f-9b9e-de460746276c} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: Browser Customizations [64Bits] - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} . (.Microsoft Corporation - Personnalisation d’IEAK.) -- C:\Windows\System32\iedkcs32.dll
O40 - ASIC: Java (Sun) [64Bits] - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\regutils.dll
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll
O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API Windows Theme.) -- C:\Windows\System32\themeui.dll
O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe
O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\Windows\System32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Ressources du Lecteur Windows Media.) -- C:\Windows\System32\wmploc.dll
O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll
~ Scan Active Setup in 00mn 00s
 
 
 
---\\ Pilotes lancés au démarrage (O41)
O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver:  (aswRdr) . (.AVAST Software - avast! WFP Redirect Driver.) - C:\Windows\system32\Drivers\aswrdr2.sys
O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\DRIVERS\blbdrive.sys
O41 - Driver:  (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys
O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\System32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys
O41 - Driver:  (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys
O41 - Driver:  (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\System32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: C:\Windows\System32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\System32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys
O41 - Driver:  (Serial) . (.Microsoft Corporation - Pilote de périphérique série.) - C:\Windows\system32\DRIVERS\serial.sys
O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver:  (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver:  (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys
O41 - Driver: C:\Windows\System32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
O41 - Driver:  (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys
~ Scan Drivers in 00mn 00s
 
 
 
---\\ Logiciels installés (O42)
O42 - Logiciel: AMD USB Filter Driver - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {5271C0D4-24E4-4C3D-A782-C012033FD3CF}
O42 - Logiciel: Acer Liquid Tool - (.Acer Inc..) [HKLM][64Bits] -- {F39EE9C9-F855-4C16-A5C4-0F6D1DADF139}
O42 - Logiciel: Acrobat.com - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {287ECFA4-719A-2143-A09B-D6A12DE54E40}
O42 - Logiciel: ActiveCheck component for HP Active Support Library - (.Hewlett-Packard.) [HKLM][64Bits] -- {254C37AA-6B72-4300-84F6-98A82419187E}
O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- Adobe AIR
O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- {A2BCA9F1-566C-4805-97D1-7FDC93386723}
O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin
O42 - Logiciel: Adobe Reader X (10.1.6) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AA1000000001}
O42 - Logiciel: Atheros Driver Installation Program - (.Atheros.) [HKLM][64Bits] -- {C3A32068-8AB1-4327-BB16-BED9C6219DC7}
O42 - Logiciel: Big Fish Games: Game Manager - (...) [HKLM][64Bits] -- BFGC
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner
O42 - Logiciel: Catalyst Control Center - Branding - (.ATI.) [HKLM][64Bits] -- {266D0EEA-E5A6-4A08-A0EE-5391D4EA44A7}
O42 - Logiciel: Complément Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {6E5324C1-84FC-4F76-9A3A-C65E07F80EE6}
O42 - Logiciel: CyberLink DVD Suite - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}
O42 - Logiciel: CyberLink DVD Suite - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D}
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: Free MP4 Video Converter version 5.0.17.903 - (.DVDVideoSoft Ltd..) [HKLM][64Bits] -- Free MP4 Video Converter_is1
O42 - Logiciel: Free Studio version 5.4.9 - (.DVDVideoSoft Ltd..) [HKLM][64Bits] -- Free Studio_is1
O42 - Logiciel: Free YouTube Download version 3.1.38.1005 - (.DVDVideoSoft Ltd..) [HKLM][64Bits] -- Free YouTube Download_is1
O42 - Logiciel: Free YouTube to MP3 Converter version 3.11.32.918 - (.DVDVideoSoft Ltd..) [HKLM][64Bits] -- Free YouTube to MP3 Converter_is1
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {18455581-E099-4BA8-BC6B-F34B2F06600C}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: HP Advisor - (.Hewlett-Packard.) [HKLM][64Bits] -- {B53E61D7-7C80-40DF-82D2-CF5390D6D20A}
O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {5B295588-59C1-4386-9F85-BB4BEDCB0D22}
O42 - Logiciel: HP DVD Play 3.7 - (.Hewlett-Packard.) [HKLM][64Bits] -- {45D707E9-F3C4-11D9-A373-0050BAE317E1}
O42 - Logiciel: HP Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent hp Master Uninstall
O42 - Logiciel: HP Quick Launch Buttons - (.Hewlett-Packard.) [HKLM][64Bits] -- {34D2AB40-150D-475D-AE32-BD23FB5EE355}
O42 - Logiciel: HP Setup - (.Hewlett-Packard.) [HKLM][64Bits] -- {F3B912F5-EB57-45AA-B3D1-EB532BCF6EF8}
O42 - Logiciel: HP Support Assistant - (.Hewlett-Packard.) [HKLM][64Bits] -- {4F46FDB9-B906-47BF-B3D5-C62E01B3C5EE}
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {D46D081B-F60E-467E-A7C4-117B70D76731}
O42 - Logiciel: HP User Guides 0148 - (.Hewlett-Packard.) [HKLM][64Bits] -- {9D3318E1-5A9F-4A95-A7A1-7E045403AE34}
O42 - Logiciel: HP Wireless Assistant - (.Hewlett-Packard.) [HKLM][64Bits] -- {54CC7901-804D-4155-B353-21F0CC9112AB}
O42 - Logiciel: HPAsset component for HP Active Support Library - (.Hewlett-Packard.) [HKLM][64Bits] -- {669D4A35-146B-4314-89F1-1AC3D7B88367}
O42 - Logiciel: IDT Audio - (.IDT.) [HKLM][64Bits] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}
O42 - Logiciel: Java 7 Update 17 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217017FF}
O42 - Logiciel: Java(TM) 6 Update 14 (64-bit) - (.Sun Microsystems, Inc..) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86416014FF}
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}
O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}
O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243}
O42 - Logiciel: LightScribe System Software - (.LightScribe.) [HKLM][64Bits] -- {82EF29B1-9B60-4142-A155-0599216DD053}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: Magic Desktop - (.EasyBits Software AS.) [HKLM][64Bits] -- EasyBits Magic Desktop
O42 - Logiciel: Malwarebytes Anti-Malware version 1.70.0.1100 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes' Anti-Malware_is1
O42 - Logiciel: Microsoft Sync Framework Runtime v1.0 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {53D7A054-4598-4947-A159-E8FCC77720AB}
O42 - Logiciel: Microsoft Sync Framework Services v1.0 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {32508A23-C9EA-4D29-83CA-97A42A13701E}
O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM][64Bits] -- {3B160861-7250-451E-B5EE-8B92BF30A710}
O42 - Logiciel: Nitro Reader 2 - (.Nitro PDF Software.) [HKLM][64Bits] -- {4D96E560-A473-4A32-A0AB-4D445A2C9E6E}
O42 - Logiciel: Photorécit 3 pour Windows - (.Microsoft Corporation.) [HKLM][64Bits] -- {4F41AD68-89F2-4262-A32C-2F70B01FCE9E}
O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}
O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658}
O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}
O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {CB099890-1D5F-11D5-9EA9-0050BAE317E1}
O42 - Logiciel: PowerRecover - (.CyberLink Corp..) [HKLM][64Bits] -- {44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}
O42 - Logiciel: QLBCASL - (.Hewlett-Packard.) [HKLM][64Bits] -- {F1D7AC58-554A-4A58-B784-B61558B1449A}
O42 - Logiciel: Realtek 8136 8168 8169 Ethernet Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {96AE7E41-E34E-47D0-AC07-1091A8127911}
O42 - Logiciel: Skype Click to Call - (.Skype Technologies S.A..) [HKLM][64Bits] -- {B6CF2967-C81E-40C0-9815-C05774FEF120}
O42 - Logiciel: Skype™ 6.1 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey
O42 - Logiciel: Timbres de France - (...) [HKLM][64Bits] -- {0251056F-ABC7-4CA4-9B8C-16814EDCD907}
O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU][64Bits] -- UnityWebPlayer
O42 - Logiciel: VLC media player 2.0.5 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player
O42 - Logiciel: WinRAR 4.11 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: Windows Driver Package - Linux Developer Community Net  (08/16/2010 5.1.260 - (.Linux Developer Community.) [HKLM][64Bits] -- 637F4A11ADE9B1B3D8F4A37C0C4CA8EA924B739E
O42 - Logiciel: Yahoo! Messenger - (.Yahoo! Inc..) [HKLM][64Bits] -- Yahoo! Messenger
O42 - Logiciel: avast! Free Antivirus v8.0.1483.0 - (.AVAST Software.) [HKLM][64Bits] -- avast
O42 - Logiciel: barre d'outils Bing  - (.Microsoft Corporation.) [HKLM][64Bits] -- {4D63127D-1D5E-443F-AD3B-94D07FDC53C6}
 
---\\ HKCU & HKLM Software Keys
[HKCU\Software\ATI]
[HKCU\Software\AVAST Software]
[HKCU\Software\Adobe]
[HKCU\Software\AppDataLow\Software\JavaSoft]
[HKCU\Software\AppDataLow\Software\Microsoft]
[HKCU\Software\AppDataLow\Software\Unity]
[HKCU\Software\AppDataLow\Software\Yahoo]
[HKCU\Software\AppDataLow\Software]
[HKCU\Software\AppDataLow]
[HKCU\Software\Big Fish Games]
[HKCU\Software\BugSplat]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\CyberLink]
[HKCU\Software\DVDVideoSoft]
[HKCU\Software\GameHouse]
[HKCU\Software\Google]
[HKCU\Software\Hewlett-Packard]
[HKCU\Software\HookNetwork]
[HKCU\Software\IM Providers]
[HKCU\Software\IncrediMail]
[HKCU\Software\Intel]
[HKCU\Software\JavaSoft]
[HKCU\Software\LightScribe]
[HKCU\Software\Macromedia]
[HKCU\Software\Macrovision]
[HKCU\Software\MainConcept (Muvee)]
[HKCU\Software\MainConcept (Muvee2)]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\NITRO PDF]
[HKCU\Software\Netscape]
[HKCU\Software\ODBC]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\PopCap]
[HKCU\Software\Quadratus]
[HKCU\Software\Safer Networking Limited]
[HKCU\Software\Skype]
[HKCU\Software\Synaptics]
[HKCU\Software\TeleCharger]
[HKCU\Software\Trolltech]
[HKCU\Software\Unity]
[HKCU\Software\WinRAR]
[HKCU\Software\Wow6432Node]
[HKCU\Software\Yahoo]
[HKCU\Software\ZebHelpProcess Helper]
[HKCU\Software\mozilla]
[HKLM\Software\AMD]
[HKLM\Software\ATI Technologies]
[HKLM\Software\ATI]
[HKLM\Software\Agere]
[HKLM\Software\CXT]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\DivX]
[HKLM\Software\Google]
[HKLM\Software\HPQ]
[HKLM\Software\Hewlett-Packard]
[HKLM\Software\IDT]
[HKLM\Software\IM Providers]
[HKLM\Software\InstalledOptions]
[HKLM\Software\Intel]
[HKLM\Software\JavaSoft]
[HKLM\Software\LSI]
[HKLM\Software\Macromedia]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\Nitro PDF]
[HKLM\Software\ODBC]
[HKLM\Software\OEM]
[HKLM\Software\Piriform]
[HKLM\Software\Policies]
[HKLM\Software\RTLSetup]
[HKLM\Software\Realtek Semiconductor Corp.]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\Safer Networking Limited]
[HKLM\Software\Sonic]
[HKLM\Software\Symantec]
[HKLM\Software\Synaptics]
[HKLM\Software\Volatile]
[HKLM\Software\WildTangent]
[HKLM\Software\WinRAR]
[HKLM\Software\Wow6432Node\ATI Technologies]
[HKLM\Software\Wow6432Node\ATI]
[HKLM\Software\Wow6432Node\AVAST Software]
[HKLM\Software\Wow6432Node\Adobe]
[HKLM\Software\Wow6432Node\America Online]
[HKLM\Software\Wow6432Node\Atheros]
[HKLM\Software\Wow6432Node\Big Fish Games]
[HKLM\Software\Wow6432Node\Caphyon]
[HKLM\Software\Wow6432Node\Classes]
[HKLM\Software\Wow6432Node\Clients]
[HKLM\Software\Wow6432Node\Cyberlink]
[HKLM\Software\Wow6432Node\DVDVideoSoft]
[HKLM\Software\Wow6432Node\Debug]
[HKLM\Software\Wow6432Node\Digital River]
[HKLM\Software\Wow6432Node\EasyBits]
[HKLM\Software\Wow6432Node\Gamigo Games]
[HKLM\Software\Wow6432Node\Google]
[HKLM\Software\Wow6432Node\HPQLOG]
[HKLM\Software\Wow6432Node\HPQ]
[HKLM\Software\Wow6432Node\HP]
[HKLM\Software\Wow6432Node\Hewlett-Packard]
[HKLM\Software\Wow6432Node\IDT]
[HKLM\Software\Wow6432Node\IM Providers]
[HKLM\Software\Wow6432Node\InstallShield]
[HKLM\Software\Wow6432Node\Intel]
[HKLM\Software\Wow6432Node\JavaSoft]
[HKLM\Software\Wow6432Node\JreMetrics]
[HKLM\Software\Wow6432Node\LabelPrint_Upgrade]
[HKLM\Software\Wow6432Node\Licenses]
[HKLM\Software\Wow6432Node\LightScribe]
[HKLM\Software\Wow6432Node\Macromedia]
[HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware (Trial)]
[HKLM\Software\Wow6432Node\Malwarebytes' Anti-Malware]
[HKLM\Software\Wow6432Node\MozillaPlugins]
[HKLM\Software\Wow6432Node\Mozilla]
[HKLM\Software\Wow6432Node\Nitro PDF]
[HKLM\Software\Wow6432Node\Norton]
[HKLM\Software\Wow6432Node\ODBC]
[HKLM\Software\Wow6432Node\P2G_Upgrade]
[HKLM\Software\Wow6432Node\PDR_Upgrade]
[HKLM\Software\Wow6432Node\Policies]
[HKLM\Software\Wow6432Node\Product_Upgrade]
[HKLM\Software\Wow6432Node\Realtek Semiconductor Corp.]
[HKLM\Software\Wow6432Node\Realtek]
[HKLM\Software\Wow6432Node\RegisteredApplications]
[HKLM\Software\Wow6432Node\Safer Networking Limited]
[HKLM\Software\Wow6432Node\Skype]
[HKLM\Software\Wow6432Node\Symantec]
[HKLM\Software\Wow6432Node\TeamViewer]
[HKLM\Software\Wow6432Node\Uniblue]
[HKLM\Software\Wow6432Node\VideoLAN]
[HKLM\Software\Wow6432Node\Vittalia]
[HKLM\Software\Wow6432Node\WildTangent]
[HKLM\Software\Wow6432Node\Windows]
[HKLM\Software\Wow6432Node\Yahoo]
[HKLM\Software\Wow6432Node\Yvert & Tellier]
[HKLM\Software\Wow6432Node\deskSvc]
[HKLM\Software\Wow6432Node\findSoftware]
[HKLM\Software\Wow6432Node\hdcode]
[HKLM\Software\Wow6432Node\muvee Technologies]
[HKLM\Software\Wow6432Node]
~ Scan Softwares in 00mn 00s
 
 
 
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 05/07/2012 - 13:49:06 - [7,207] ----D C:\Program Files (x86)\Acer Inc
O43 - CFD: 05/01/2013 - 14:56:33 - [115,214] ----D C:\Program Files (x86)\Adobe
O43 - CFD: 01/05/2012 - 22:47:22 - [0,073] ----D C:\Program Files (x86)\AMD
O43 - CFD: 01/05/2012 - 22:48:15 - [1,441] ----D C:\Program Files (x86)\Atheros
O43 - CFD: 01/05/2012 - 22:45:56 - [80,724] ----D C:\Program Files (x86)\ATI Technologies
O43 - CFD: 30/11/2012 - 17:45:18 - [22,762] ----D C:\Program Files (x86)\bfgclient
O43 - CFD: 15/03/2013 - 17:55:59 - [612,621] ----D C:\Program Files (x86)\Common Files
O43 - CFD: 01/05/2012 - 22:58:06 - [1043,655] ----D C:\Program Files (x86)\CyberLink
O43 - CFD: 08/09/2012 - 19:58:55 - [693,578] ----D C:\Program Files (x86)\DVDVideoSoft
O43 - CFD: 12/05/2012 - 19:27:44 - [90,595] ----D C:\Program Files (x86)\EasyBits For Kids
O43 - CFD: 08/09/2012 - 19:54:59 - [0,116] ----D C:\Program Files (x86)\Free mp3 Wma Converter
O43 - CFD: 27/11/2012 - 15:06:25 - [376,883] ----D C:\Program Files (x86)\Google
O43 - CFD: 27/11/2012 - 15:09:57 - [0] ----D C:\Program Files (x86)\GUM756D.tmp
O43 - CFD: 25/08/2009 - 20:40:57 - [366,594] ----D C:\Program Files (x86)\Hewlett-Packard
O43 - CFD: 01/05/2012 - 22:54:55 - [73,801] ----D C:\Program Files (x86)\Hp
O43 - CFD: 25/08/2009 - 18:20:30 - [264,572] ----D C:\Program Files (x86)\HP Games
O43 - CFD: 23/02/2013 - 21:46:30 - [180,149] --H-D C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 15/03/2013 - 16:48:55 - [4,935] ----D C:\Program Files (x86)\Internet Explorer
O43 - CFD: 05/03/2013 - 14:41:56 - [121,972] ----D C:\Program Files (x86)\Java
O43 - CFD: 05/03/2013 - 10:59:18 - [12,170] ----D C:\Program Files (x86)\Malwarebytes' Anti-Malware
O43 - CFD: 15/03/2013 - 17:38:57 - [18,704] ----D C:\Program Files (x86)\Microsoft
O43 - CFD: 23/11/2012 - 23:07:16 - [626,778] ----D C:\Program Files (x86)\Microsoft Office
O43 - CFD: 25/08/2009 - 18:47:59 - [7,431] ----D C:\Program Files (x86)\Microsoft Office Suite Activation Assistant
O43 - CFD: 05/07/2012 - 13:53:49 - [4,204] ----D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 05/07/2012 - 13:53:50 - [0,353] ----D C:\Program Files (x86)\Microsoft Synchronization Services
O43 - CFD: 04/05/2012 - 20:08:58 - [0,014] ----D C:\Program Files (x86)\Microsoft Visual Studio
O43 - CFD: 04/05/2012 - 19:59:10 - [1,323] ----D C:\Program Files (x86)\Microsoft Visual Studio 8
O43 - CFD: 12/10/2012 - 21:11:51 - [138,685] ----D C:\Program Files (x86)\Microsoft Works
O43 - CFD: 05/05/2012 - 08:12:35 - [7,789] ----D C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 11/08/2012 - 21:05:33 - [0,001] ----D C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 04/05/2012 - 20:09:15 - [0,025] ----D C:\Program Files (x86)\MSBuild
O43 - CFD: 06/05/2012 - 21:28:18 - [0] ----D C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 29/11/2012 - 19:52:34 - [81,643] ----D C:\Program Files (x86)\Nitro PDF
O43 - CFD: 01/05/2012 - 23:28:27 - [18,981] R---D C:\Program Files (x86)\Online Services
O43 - CFD: 04/05/2012 - 20:56:07 - [15,658] ----D C:\Program Files (x86)\Photo Story 3 for Windows
O43 - CFD: 01/05/2012 - 22:47:36 - [9,103] ----D C:\Program Files (x86)\Realtek
O43 - CFD: 14/07/2009 - 06:32:38 - [37,357] ----D C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 14/02/2013 - 22:09:34 - [49,122] R---D C:\Program Files (x86)\Skype
O43 - CFD: 15/03/2013 - 21:10:40 - [1,294] ----D C:\Program Files (x86)\Spybot - Search & Destroy 2
O43 - CFD: 22/09/2012 - 13:27:14 - [1,371] ----D C:\Program Files (x86)\SQC
O43 - CFD: 04/05/2012 - 21:09:33 - [0,275] ----D C:\Program Files (x86)\TeamViewer
O43 - CFD: 14/07/2009 - 05:57:06 - [0] --H-D C:\Program Files (x86)\Uninstall Information
O43 - CFD: 13/05/2012 - 19:57:15 - [0] ----D C:\Program Files (x86)\Video Codec
O43 - CFD: 18/01/2013 - 18:53:15 - [94,419] ----D C:\Program Files (x86)\VideoLAN
O43 - CFD: 26/08/2009 - 03:17:30 - [0,500] ----D C:\Program Files (x86)\Windows Defender
O43 - CFD: 15/03/2013 - 17:55:57 - [117,012] ----D C:\Program Files (x86)\Windows Live
O43 - CFD: 23/11/2012 - 23:40:03 - [5,895] ----D C:\Program Files (x86)\Windows Mail
O43 - CFD: 23/11/2012 - 23:40:03 - [5,090] ----D C:\Program Files (x86)\Windows Media Player
O43 - CFD: 14/07/2009 - 06:32:38 - [11,632] ----D C:\Program Files (x86)\Windows NT
O43 - CFD: 23/11/2012 - 23:40:03 - [4,213] ----D C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 23/11/2012 - 23:40:03 - [0,181] ----D C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 23/11/2012 - 23:40:03 - [5,717] ----D C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 23/02/2013 - 22:14:43 - [31,441] ----D C:\Program Files (x86)\Yahoo!
O43 - CFD: 26/12/2012 - 17:34:26 - [41,284] ----D C:\Program Files (x86)\Yvert & Tellier
O43 - CFD: 16/03/2013 - 12:27:18 - [15,212] ----D C:\Program Files (x86)\ZHPDiag
O43 - CFD: 15/03/2013 - 17:48:59 - [28,816] ----D C:\Program Files (x86)\Common Files\337
O43 - CFD: 05/01/2013 - 14:56:43 - [3,797] ----D C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 25/08/2009 - 19:11:00 - [30,315] ----D C:\Program Files (x86)\Common Files\Adobe AIR
O43 - CFD: 25/08/2009 - 18:47:00 - [0,089] ----D C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 15/10/2012 - 17:32:09 - [152,642] ----D C:\Program Files (x86)\Common Files\DVDVideoSoft
O43 - CFD: 26/12/2012 - 16:25:31 - [6,411] ----D C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 20/02/2013 - 19:52:20 - [1,184] ----D C:\Program Files (x86)\Common Files\Java
O43 - CFD: 01/05/2012 - 22:54:35 - [31,218] ----D C:\Program Files (x86)\Common Files\LightScribe
O43 - CFD: 12/05/2012 - 14:54:43 - [259,347] ----D C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 29/11/2012 - 19:52:34 - [15,292] ----D C:\Program Files (x86)\Common Files\Nitro PDF
O43 - CFD: 14/07/2009 - 04:20:08 - [0,003] ----D C:\Program Files (x86)\Common Files\Services
O43 - CFD: 14/02/2013 - 22:09:33 - [2,056] ----D C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 14/07/2009 - 04:20:08 - [39,200] ----D C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 23/11/2012 - 23:40:02 - [42,254] ----D C:\Program Files (x86)\Common Files\System
O43 - CFD: 25/08/2009 - 17:33:40 - [0] ----D C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 26/12/2012 - 17:34:56 - [0,001] ----D C:\ProgramData\4D
O43 - CFD: 24/07/2012 - 13:53:20 - [0,001] ----D C:\ProgramData\Acer
O43 - CFD: 20/02/2013 - 16:51:14 - [134,049] ----D C:\ProgramData\Adobe
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Application Data
O43 - CFD: 01/05/2012 - 22:48:21 - [0,009] ----D C:\ProgramData\Atheros
O43 - CFD: 01/05/2012 - 23:20:23 - [0,000] ----D C:\ProgramData\ATI
O43 - CFD: 08/05/2012 - 20:26:49 - [30,413] ----D C:\ProgramData\AVAST Software
O43 - CFD: 30/11/2012 - 17:45:14 - [14,812] ----D C:\ProgramData\Big Fish Games
O43 - CFD: 01/05/2012 - 23:25:42 - [0] --H-D C:\ProgramData\Bureau
O43 - CFD: 05/05/2012 - 13:18:06 - [0,053] ----D C:\ProgramData\CyberLink
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Desktop
O43 - CFD: 31/08/2012 - 21:18:58 - [0,002] ----D C:\ProgramData\DivX
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Documents
O43 - CFD: 15/03/2013 - 18:08:59 - [0] ----D C:\ProgramData\eSafe
O43 - CFD: 01/05/2012 - 23:25:42 - [0] --H-D C:\ProgramData\Favoris
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Favorites
O43 - CFD: 30/11/2012 - 18:33:16 - [77,975] ----D C:\ProgramData\GameHouse
O43 - CFD: 27/11/2012 - 15:06:31 - [0,012] ----D C:\ProgramData\Google
O43 - CFD: 01/05/2012 - 23:30:00 - [39,441] ----D C:\ProgramData\Hewlett-Packard
O43 - CFD: 04/01/2013 - 23:12:59 - [0,000] ----D C:\ProgramData\IM
O43 - CFD: 04/01/2013 - 23:10:14 - [0,012] ----D C:\ProgramData\IncrediMail
O43 - CFD: 23/02/2013 - 21:39:41 - [0,001] ----D C:\ProgramData\LightScribe
O43 - CFD: 05/03/2013 - 10:59:15 - [6,894] ----D C:\ProgramData\Malwarebytes
O43 - CFD: 01/05/2012 - 23:25:42 - [0] --H-D C:\ProgramData\Menu Démarrer
O43 - CFD: 15/03/2013 - 21:09:19 - [228,541] -S--D C:\ProgramData\Microsoft
O43 - CFD: 15/03/2013 - 16:43:33 - [0,063] ----D C:\ProgramData\Microsoft Help
O43 - CFD: 01/05/2012 - 23:25:42 - [0] --H-D C:\ProgramData\Modèles
O43 - CFD: 08/12/2012 - 22:13:49 - [0,008] ----D C:\ProgramData\MumboJumbo
O43 - CFD: 05/05/2012 - 13:03:42 - [0] ----D C:\ProgramData\muvee Technologies
O43 - CFD: 04/05/2012 - 21:11:10 - [0,335] ----D C:\ProgramData\Nitro PDF
O43 - CFD: 05/05/2012 - 08:37:52 - [0,000] ----D C:\ProgramData\Norton
O43 - CFD: 25/08/2009 - 17:45:40 - [9,708] ----D C:\ProgramData\NortonInstaller
O43 - CFD: 01/05/2012 - 22:50:09 - [0,022] ----D C:\ProgramData\Recovery
O43 - CFD: 14/02/2013 - 22:09:43 - [67,377] ----D C:\ProgramData\Skype
O43 - CFD: 15/03/2013 - 19:52:54 - [0,002] ----D C:\ProgramData\Spybot - Search & Destroy
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Start Menu
O43 - CFD: 08/05/2012 - 21:19:27 - [0,000] ----D C:\ProgramData\Sun
O43 - CFD: 20/12/2012 - 22:24:49 - [0,500] ---AD C:\ProgramData\Temp
O43 - CFD: 14/07/2009 - 06:08:56 - [0] --H-D C:\ProgramData\Templates
O43 - CFD: 19/07/2012 - 14:32:38 - [0] ----D C:\ProgramData\Uniblue
O43 - CFD: 25/08/2009 - 18:20:22 - [-1054,916] ----D C:\ProgramData\WildTangent
O43 - CFD: 13/05/2012 - 21:20:01 - [0] ----D C:\ProgramData\WinZip
O43 - CFD: 23/02/2013 - 22:14:43 - [0,583] ----D C:\ProgramData\Yahoo!
O43 - CFD: 05/01/2013 - 22:07:41 - [13,239] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\Adobe
O43 - CFD: 23/11/2012 - 22:19:32 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\ATI
O43 - CFD: 23/11/2012 - 22:25:05 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\CyberLink
O43 - CFD: 29/11/2012 - 19:50:46 - [46,700] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\Downloaded Installations
O43 - CFD: 23/11/2012 - 22:25:20 - [57,345] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\DVDVideoSoft
O43 - CFD: 23/11/2012 - 22:25:20 - [0,001] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\DVDVideoSoftIEHelpers
O43 - CFD: 15/03/2013 - 17:45:43 - [5,471] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\eIntaller
O43 - CFD: 23/11/2012 - 22:25:20 - [0,000] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\FreeAudioPack
O43 - CFD: 27/11/2012 - 17:13:42 - [0,001] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\Google
O43 - CFD: 23/11/2012 - 22:25:20 - [0,042] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\Hewlett-Packard
O43 - CFD: 23/11/2012 - 22:25:21 - [0,033] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\HP TCS
O43 - CFD: 23/11/2012 - 22:25:21 - [0,001] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\hpqlog
O43 - CFD: 23/11/2012 - 22:25:21 - [0,000] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\HpUpdate
O43 - CFD: 23/11/2012 - 22:25:21 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\Identities
O43 - CFD: 23/11/2012 - 22:25:21 - [0,001] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\Macromedia
O43 - CFD: 05/03/2013 - 10:59:21 - [0,801] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\Malwarebytes
O43 - CFD: 02/05/2012 - 08:34:56 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\Media Center Programs
O43 - CFD: 05/01/2013 - 22:07:41 - [6,820] -S--D C:\Users\clemence.clemence-PC\AppData\Roaming\Microsoft
O43 - CFD: 23/11/2012 - 22:25:25 - [4,376] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\Mozilla
O43 - CFD: 23/11/2012 - 22:25:39 - [0,000] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\muvee Technologies
O43 - CFD: 25/02/2013 - 18:20:15 - [0,001] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\Nitro PDF
O43 - CFD: 20/12/2012 - 21:01:24 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\Oberon Media
O43 - CFD: 21/02/2013 - 23:29:15 - [10,756] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\Skype
O43 - CFD: 20/12/2012 - 21:03:20 - [0,000] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\URSE Games
O43 - CFD: 12/03/2013 - 22:26:18 - [0,077] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\vlc
O43 - CFD: 23/11/2012 - 22:25:46 - [0,000] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\Windows Live Writer
O43 - CFD: 23/11/2012 - 22:25:46 - [1,809] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\WinRAR
O43 - CFD: 23/11/2012 - 22:25:51 - [0,004] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\_MDLogs
O43 - CFD: 23/11/2012 - 22:39:22 - [0,065] ----D C:\Users\clemence.clemence-PC\AppData\Local\Acer
O43 - CFD: 05/07/2012 - 14:02:44 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\ADDP
O43 - CFD: 05/01/2013 - 14:55:08 - [14,742] ----D C:\Users\clemence.clemence-PC\AppData\Local\Adobe
O43 - CFD: 23/11/2012 - 22:18:00 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\Application Data
O43 - CFD: 23/11/2012 - 22:39:22 - [21,330] ----D C:\Users\clemence.clemence-PC\AppData\Local\Apps
O43 - CFD: 23/11/2012 - 22:19:32 - [0,085] ----D C:\Users\clemence.clemence-PC\AppData\Local\ATI
O43 - CFD: 04/01/2013 - 23:09:57 - [2,787] ----D C:\Users\clemence.clemence-PC\AppData\Local\CRE
O43 - CFD: 28/02/2013 - 21:27:55 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\Deployment
O43 - CFD: 16/02/2013 - 13:03:47 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\Diagnostics
O43 - CFD: 16/02/2013 - 13:03:47 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\ElevatedDiagnostics
O43 - CFD: 08/02/2013 - 20:17:49 - [578,472] ----D C:\Users\clemence.clemence-PC\AppData\Local\Google
O43 - CFD: 23/11/2012 - 22:41:38 - [0,343] ----D C:\Users\clemence.clemence-PC\AppData\Local\Hewlett-Packard
O43 - CFD: 23/11/2012 - 22:41:38 - [0,000] ----D C:\Users\clemence.clemence-PC\AppData\Local\Hewlett-Packard_Company
O43 - CFD: 23/11/2012 - 22:18:00 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\Historique
O43 - CFD: 04/01/2013 - 23:13:57 - [9,152] ----D C:\Users\clemence.clemence-PC\AppData\Local\IM
O43 - CFD: 15/03/2013 - 17:39:55 - [311,161] ----D C:\Users\clemence.clemence-PC\AppData\Local\Microsoft
O43 - CFD: 08/12/2012 - 20:44:04 - [0,422] ----D C:\Users\clemence.clemence-PC\AppData\Local\Microsoft Games
O43 - CFD: 23/11/2012 - 22:42:06 - [0,130] ----D C:\Users\clemence.clemence-PC\AppData\Local\Microsoft Help
O43 - CFD: 05/03/2013 - 10:58:59 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\Programs
O43 - CFD: 23/11/2012 - 22:42:06 - [0,033] ----D C:\Users\clemence.clemence-PC\AppData\Local\QuickPlay
O43 - CFD: 16/03/2013 - 12:25:09 - [0,016] ----D C:\Users\clemence.clemence-PC\AppData\Local\Temp
O43 - CFD: 23/11/2012 - 22:18:00 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\Temporary Internet Files
O43 - CFD: 27/01/2013 - 18:21:39 - [0,208] ----D C:\Users\clemence.clemence-PC\AppData\Local\Unity
O43 - CFD: 26/12/2012 - 17:45:46 - [21,237] ----D C:\Users\clemence.clemence-PC\AppData\Local\VirtualStore
O43 - CFD: 06/12/2012 - 19:28:55 - [0,063] ----D C:\Users\clemence.clemence-PC\AppData\Local\Windows Live
O43 - CFD: 23/1

n°3081506
clem40550
Posté le 16-03-2013 à 12:40:04  profilanswer
 

O43 - CFD: 23/11/2012 - 22:42:26 - [0,620] ----D C:\Users\clemence.clemence-PC\AppData\Local\Windows Live Writer
O43 - CFD: 29/07/2012 - 13:45:23 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{05B5A7CB-8190-42BA-9E25-272326F33EE0}
O43 - CFD: 14/07/2012 - 07:57:58 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{06D14D35-C763-4AA5-B847-D82BED55856B}
O43 - CFD: 01/09/2012 - 21:34:05 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{070AF06D-9005-43A2-9AA1-BE7628D96B5A}
O43 - CFD: 15/08/2012 - 13:59:22 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{0A708DA6-F22A-4EAF-A889-D2D0DA6001B9}
O43 - CFD: 08/08/2012 - 17:06:08 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{101F369C-D840-4DEC-A6AE-54B3046200C5}
O43 - CFD: 22/07/2012 - 20:34:59 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{1263134E-FE29-4569-8E2F-B09E48C4E020}
O43 - CFD: 31/07/2012 - 14:03:37 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{15EA0245-83CE-4967-94C2-E9E71E63CFA3}
O43 - CFD: 23/07/2012 - 20:02:12 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{17D44F1A-FEAA-4F3F-B4D1-674DF6F0E9B7}
O43 - CFD: 28/07/2012 - 17:42:19 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{1BEE6910-1997-47AC-90A8-D60D876E1D5B}
O43 - CFD: 25/07/2012 - 15:13:55 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{1C0F0659-A215-4CB6-949E-181524C5172C}
O43 - CFD: 19/08/2012 - 20:02:26 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{1CD7C42F-3553-4159-B568-109AF3714E81}
O43 - CFD: 07/08/2012 - 18:17:57 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{20F233AC-CAB8-490D-A19C-3415BE204AD8}
O43 - CFD: 17/07/2012 - 15:33:28 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{252E7031-ADA7-4229-A601-8C00E846028D}
O43 - CFD: 13/05/2012 - 20:17:09 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{29F1F8B8-C113-487A-8A9D-31542FCF9A6E}
O43 - CFD: 25/05/2012 - 20:44:14 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{2BF37DC9-A4A1-4567-97B3-62421E23ED53}
O43 - CFD: 30/07/2012 - 12:57:52 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{2D4F9C2F-41B0-40F3-9B48-E239BF852B76}
O43 - CFD: 27/07/2012 - 13:17:17 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{305DD622-FF3D-4AF6-80B2-2BA0DE4C6C30}
O43 - CFD: 26/07/2012 - 20:24:19 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{30F9EF0D-95BB-45BA-8741-015CB9570D06}
O43 - CFD: 20/07/2012 - 20:06:58 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{3237CC96-37B1-4351-97CE-53367C55C6EC}
O43 - CFD: 10/07/2012 - 09:34:08 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{3241A32F-8090-4DC4-9FB2-C7A3C7737949}
O43 - CFD: 06/08/2012 - 20:02:09 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{34AADECA-F0CD-4894-9A08-9FAC64E5EFDF}
O43 - CFD: 29/08/2012 - 19:21:03 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{3908AB12-C5E8-4834-888C-DF13B1684463}
O43 - CFD: 25/05/2012 - 20:44:12 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{3B495F77-5B0F-496F-9ED2-982303BA8D82}
O43 - CFD: 12/08/2012 - 21:32:30 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{3CF863F7-5221-409E-B8F0-4A3D53E9A086}
O43 - CFD: 05/08/2012 - 13:50:36 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{3FCAC07D-9E00-4D8D-926B-0359472D6D90}
O43 - CFD: 29/07/2012 - 13:45:06 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{403BC579-C703-4B4E-8BF7-BDA197FDDA01}
O43 - CFD: 30/07/2012 - 12:57:32 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{40D66A3D-2C1A-43D0-B11A-9412F53364FF}
O43 - CFD: 22/08/2012 - 15:19:49 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{43879E05-735D-4484-A978-CE7955367137}
O43 - CFD: 12/05/2012 - 15:03:39 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{44755346-C878-43D5-BD84-618BCD8C525F}
O43 - CFD: 03/08/2012 - 13:26:11 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{4E2114F9-A4A1-4EFE-B26A-26169148768B}
O43 - CFD: 12/08/2012 - 21:32:08 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{516E65D7-F7A4-4339-BCC0-4C6F2C219193}
O43 - CFD: 21/07/2012 - 13:07:14 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{544D2DEF-0785-45EF-80ED-0E6CA617C4FD}
O43 - CFD: 13/08/2012 - 18:36:16 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{559DA12A-F133-438E-BACA-D396AD12C808}
O43 - CFD: 22/07/2012 - 20:34:49 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{5811E49E-32F2-4357-8F02-6A87AD96376F}
O43 - CFD: 06/08/2012 - 20:02:23 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{58457979-8CE8-4F50-8B01-ED6E95F5065E}
O43 - CFD: 20/07/2012 - 07:19:07 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{5B799713-E16E-4EA7-95BA-AD3BE8FBDB6C}
O43 - CFD: 19/07/2012 - 12:58:06 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{5B855344-3EC5-4E7C-99B2-6712E41CC271}
O43 - CFD: 25/05/2012 - 20:44:17 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{5CD04897-51CB-4535-9CE3-2DD6EEE77654}
O43 - CFD: 14/08/2012 - 13:23:43 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{61463EC0-1AD3-4169-A844-6D0850F86F38}
O43 - CFD: 31/07/2012 - 14:03:21 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{641690AC-8DDA-4602-A881-FDD9FCBFEC20}
O43 - CFD: 01/08/2012 - 14:09:26 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{65476E0B-3C37-49F1-9AC1-80A799086547}
O43 - CFD: 12/07/2012 - 20:08:35 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{684827B1-3E8B-4B25-84DF-A454FDDC7F14}
O43 - CFD: 05/08/2012 - 13:50:19 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{68756F8F-A4DD-4917-9A57-B85317A41021}
O43 - CFD: 18/08/2012 - 21:30:43 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{694C4307-9DBB-4910-A277-11EBF1A2C2D6}
O43 - CFD: 13/05/2012 - 20:17:34 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{6A66EC73-219E-40C7-B168-A17C1851F2C9}
O43 - CFD: 14/08/2012 - 13:23:32 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{6DC6FC57-4507-4BA1-9556-F27DC00979DA}
O43 - CFD: 21/07/2012 - 13:07:03 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{6E25758E-008D-4FF3-962D-51E2BDB4CC63}
O43 - CFD: 30/08/2012 - 14:04:44 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{6E7973E3-5A3E-48B0-8461-335C123E60BB}
O43 - CFD: 28/07/2012 - 17:42:05 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{71DCCF26-B1B4-428F-B8BF-D8E52563C17C}
O43 - CFD: 15/08/2012 - 13:59:34 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{74DB14B6-30D7-4381-BF68-6297FEAC3463}
O43 - CFD: 06/10/2012 - 14:42:55 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{75D5379F-9653-46CD-B4DE-33B75DB38B83}
O43 - CFD: 12/05/2012 - 15:04:10 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{774931F6-9931-4CDD-B7EE-249DFB76A7C0}
O43 - CFD: 24/08/2012 - 06:48:54 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{7813FBFF-D563-4FEE-BAFA-F192EC463CF2}
O43 - CFD: 26/08/2012 - 13:42:30 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{7AC294CA-6720-482C-B033-9CCD6B03A270}
O43 - CFD: 02/08/2012 - 13:02:46 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{7EBF8C72-949A-475B-B2DA-565BEBDA05E1}
O43 - CFD: 04/08/2012 - 20:39:51 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{80407FAE-ED17-45D4-8BFA-34D5EBC562B7}
O43 - CFD: 24/08/2012 - 19:09:36 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{80499869-D6D8-49FF-8911-1D6DB4D4D1C0}
O43 - CFD: 08/08/2012 - 17:06:23 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{8173B8F8-6E4A-4189-872A-6F6C3F35AB72}
O43 - CFD: 07/08/2012 - 18:17:46 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{828DB098-9235-4EE2-87EC-A33EBDE7AD4A}
O43 - CFD: 11/08/2012 - 17:49:41 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{85DB0FC8-6467-4494-BA6F-F9F7315F179D}
O43 - CFD: 08/07/2012 - 19:07:36 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{8D2207E3-617A-4A00-AC6E-3D093521D084}
O43 - CFD: 18/07/2012 - 13:17:55 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{8D93FBF6-6318-40FD-9EF1-C316638E8C95}
O43 - CFD: 14/02/2013 - 19:12:17 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{8DD2FC09-4D86-4BCB-95F9-1A578E9A64BF}
O43 - CFD: 12/07/2012 - 20:08:52 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{8F3D943C-8D62-4EE9-8B33-D40698C3057A}
O43 - CFD: 17/08/2012 - 21:08:23 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{962CAB95-1637-4A4B-AAD2-3493E8EF861A}
O43 - CFD: 14/02/2013 - 19:12:38 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{9AAAA7B4-0826-4B62-AA76-E22EAAEE3CD0}
O43 - CFD: 16/07/2012 - 21:18:26 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{9B3CE9BA-7CBC-4792-BA42-DB7136347BDA}
O43 - CFD: 21/08/2012 - 08:01:47 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{9BE817CF-2FE5-49DA-9383-D7902DBAC50A}
O43 - CFD: 23/07/2012 - 20:02:29 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{9DCC4D0F-983A-4527-9076-2C1B4CE4723B}
O43 - CFD: 31/08/2012 - 20:07:08 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{9F3E03A4-D0C5-4749-90F0-61C1C2F12443}
O43 - CFD: 04/08/2012 - 20:40:05 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{AA3617DA-612B-402C-BE87-9CFAD7984AB1}
O43 - CFD: 03/08/2012 - 13:25:55 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{B9679E41-D88A-4ECB-85AA-E14E18C11164}
O43 - CFD: 10/07/2012 - 09:33:53 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{BA8E358D-899D-4EFE-9D58-592281ACC949}
O43 - CFD: 13/05/2012 - 10:09:00 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{BB80C418-F3A7-4F2F-8E92-DBD67B2A09A2}
O43 - CFD: 11/07/2012 - 21:25:45 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{BD9C57D0-49F7-4421-8176-1BEB2B26CCED}
O43 - CFD: 29/08/2012 - 07:20:40 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{BE80B8D8-1B59-4C59-9B55-BDCED93CDFEF}
O43 - CFD: 05/01/2013 - 14:37:08 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{C085D8F3-9CA8-40D3-A7B2-6C04B3DFE73B}
O43 - CFD: 17/07/2012 - 15:33:43 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{C0880988-DA5D-46EC-80A8-4098FFA269E7}
O43 - CFD: 20/07/2012 - 20:06:42 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{C4A88BCB-07D8-4368-A208-9BEE7C383190}
O43 - CFD: 23/08/2012 - 17:58:55 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{C7AE86E6-75B8-4BCE-A7AD-BF5C860B4BC8}
O43 - CFD: 22/07/2012 - 08:07:48 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{CC115B8B-311C-48E6-B9CE-58D5D023ACBA}
O43 - CFD: 11/08/2012 - 17:49:54 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{D950C89C-2FC0-4FC5-86F2-781B3B7ABCB9}
O43 - CFD: 24/07/2012 - 12:44:03 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{D9E34324-3F20-43C1-B820-9E5C13D35BB6}
O43 - CFD: 17/08/2012 - 21:08:07 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{DAD32849-C225-45E2-8726-0ED34111108A}
O43 - CFD: 24/07/2012 - 12:44:16 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{DE90338D-489A-4824-90F7-D2ACE08CB33E}
O43 - CFD: 14/07/2012 - 07:58:09 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{E3A456AE-DAFF-4244-8C0C-03BB552D7F15}
O43 - CFD: 01/08/2012 - 14:09:14 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{E3CC990C-4664-4B0A-90A5-54A0DA9D4FF1}
O43 - CFD: 16/07/2012 - 21:18:15 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{E5093288-E014-4DEA-94F4-AE62F74BD37C}
O43 - CFD: 19/07/2012 - 12:57:55 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{E5F34D42-7ADB-4FFC-887A-2EE789C9CE41}
O43 - CFD: 25/07/2012 - 15:13:42 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{E6F532EC-4791-486D-AFE2-7C2E889CA4F9}
O43 - CFD: 11/07/2012 - 21:25:31 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{E75FEBCB-530B-4399-99E9-91D70C56EE86}
O43 - CFD: 10/08/2012 - 17:38:12 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{E7AB6695-E247-4CFE-81B9-2861140A21D7}
O43 - CFD: 28/08/2012 - 17:21:24 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{EA51C523-FA6C-41AD-8224-D5A1B946D44C}
O43 - CFD: 08/07/2012 - 19:07:59 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{EAC095D7-3AB7-4F45-A674-86EEFE70B699}
O43 - CFD: 10/08/2012 - 17:38:28 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{EB790CAD-A51A-4D5F-86DB-363E2B145FF4}
O43 - CFD: 13/08/2012 - 18:36:04 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{F25D4484-56D4-498A-A400-F076305ED0BA}
O43 - CFD: 27/07/2012 - 13:17:31 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{F30FF0A7-5D72-42F4-9E2E-7A752A24A74C}
O43 - CFD: 03/09/2012 - 20:11:37 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{F317770B-E388-425A-87F8-2DDC1201D41A}
O43 - CFD: 02/08/2012 - 13:02:26 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{F49C8AD3-8897-4BD2-B8D2-15CBBD410BDF}
O43 - CFD: 26/07/2012 - 20:24:04 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{FC4E2F5F-D047-4A38-828A-0AB360CB0D77}
O43 - CFD: 18/08/2012 - 21:30:54 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Local\{FE2270D6-0873-4E85-B237-E725C142BD6C}
O43 - CFD: 14/07/2009 - 05:54:32 - [0,014] R---D C:\Users\clemence.clemence-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 24/11/2012 - 00:12:56 - [0,000] R---D C:\Users\clemence.clemence-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 01/05/2012 - 22:58:49 - [0,001] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink YouCam
O43 - CFD: 22/12/2012 - 21:16:41 - [0,000] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 03/09/2012 - 14:58:15 - [0] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\gamigo
O43 - CFD: 23/11/2012 - 22:42:57 - [0,005] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 14/07/2009 - 05:49:38 - [0,001] R---D C:\Users\clemence.clemence-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 25/08/2009 - 18:58:59 - [0,004] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recovery Manager
O43 - CFD: 15/03/2013 - 17:47:52 - [0,001] R---D C:\Users\clemence.clemence-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 23/11/2012 - 22:42:57 - [0,003] ----D C:\Users\clemence.clemence-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
~ Scan Program Folder in 00mn 42s
 
 
 
---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.CAA33C1A530B60FB795B2634D918014E] - 16/03/2013 - 12:27:10 ---A- . (...) -- C:\Windows\WindowsUpdate.log   [1064629]
O44 - LFC:[MD5.8FDC0BB43AE4FFDE39697B3E3580111F] - 16/03/2013 - 12:22:02 ---A- . (...) -- C:\Windows\setupact.log   [1288]
O44 - LFC:[MD5.AE1033E4A5E5AB0BD5FEC3D267089545] - 16/03/2013 - 12:22:01 -S-A- . (...) -- C:\Windows\bootstat.dat   [67584]
O44 - LFC:[MD5.950712D6AC4F2CF1CB5A2C8EF549FB06] - 16/03/2013 - 12:21:57 ---A- . (...) -- C:\Windows\PFRO.log   [6342]
O44 - LFC:[MD5.E4F2D07DAFB729722439B66B68815155] - 15/03/2013 - 19:15:52 ---A- . (...) -- C:\Windows\DeleteOnReboot.bat   [322]
O44 - LFC:[MD5.49CA979217F014C24AAC4CD50C39F325] - 15/03/2013 - 17:05:22 ---A- . (...) -- C:\Windows\IE9_main.log   [1344]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 15/03/2013 - 16:27:14 ---A- . (...) -- C:\Windows\setuperr.log   [0]
O44 - LFC:[MD5.F9E98D0605A876B294DA3410C3FAEE2B] - 12/03/2013 - 22:00:24 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI   [1549936]
O44 - LFC:[MD5.AD54AA3719CF4FFD7F6489713B798131] - 12/03/2013 - 22:00:24 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat   [106622]
O44 - LFC:[MD5.49956F67EB3EE16C8C1F52F162DCE8BB] - 12/03/2013 - 22:00:24 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat   [130988]
O44 - LFC:[MD5.456518021FA93005BE29538310E3A125] - 12/03/2013 - 22:00:24 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat   [616242]
O44 - LFC:[MD5.FF0771E639745EDBE2C0C74CEF7B25F4] - 12/03/2013 - 22:00:24 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat   [704714]
O44 - LFC:[MD5.8C0E100191448D5C997C1D39F98EF4E9] - 07/03/2013 - 00:32:51 ---A- . (.AVAST Software - avast! Screen Saver stub.) -- C:\Windows\avastSS.scr   [41664]
O44 - LFC:[MD5.DFA65F31129C35DA05767C8755DD183E] - 07/03/2013 - 00:32:22 ---A- . (.AVAST Software - avast! start-up scanner.) -- C:\Windows\SysNative\aswBoot.exe   [287840]
O44 - LFC:[MD5.DFA65F31129C35DA05767C8755DD183E] - 07/03/2013 - 00:32:22 ---A- . (.AVAST Software - avast! start-up scanner.) -- C:\Windows\System32\aswBoot.exe   [287840]
~ Scan Files in 00mn 09s
 
 
 
---\\ Déni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corp. - LiveSSP.) -- C:\Windows\System32\livessp.dll
~ Scan Keys in 00mn 00s
 
 
 
---\\ Contrôle du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\Wdf01000.sys . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en mode noyau.) -- C:\Windows\System32\Drivers\Wdf01000.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\Wdf01000.sys . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en mode noyau.) -- C:\Windows\System32\Drivers\Wdf01000.sys
~ Scan CSB in 00mn 00s
 
 
 
---\\ MountPoints2 Shell Key (O51)
O51 - MPSK:{db572a4f-93d7-11e1-823d-806e6f6e6963}\AutoRun\command. (...) -- E:\Installation\Installeur.exe (.not file.)
~ Scan Keys in 00mn 00s
 
 
 
---\\ Trojan Driver Search Data (HKLM) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
~ Scan Keys in 00mn 00s
 
 
 
---\\ ShareTools MSconfig StartupReg (O53)
O53 - SMSR:HKLM\...\startupreg\Google Update  [Key] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\clemence\AppData\Local\Google\Update\GoogleUpdate.exe
O53 - SMSR:HKLM\...\startupreg\GoogleChromeAutoLaunch_3C8AEC6F8C2796A94C1BD22372456A55  [Key] . (.Google Inc. - Google Chrome.) -- C:\Users\clemence\AppData\Local\Google\Chrome\Application\chrome.exe
O53 - SMSR:HKLM\...\startupreg\HP Software Update  [Key] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
O53 - SMSR:HKLM\...\startupreg\HPADVISOR  [Key] . (.Hewlett-Packard - HP Advisor.) -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe
O53 - SMSR:HKLM\...\startupreg\LightScribe Control Panel  [Key] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
O53 - SMSR:HKLM\...\startupreg\Messenger (Yahoo!)  [Key] . (.Yahoo! Inc. - Yahoo! Messenger.) -- C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe
O53 - SMSR:HKLM\...\startupreg\msnmsgr  [Key] . (...) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\NortonOnlineBackupReminder  [Key] . (...) -- C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\removeSearchqudatamngr  [Key] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe
O53 - SMSR:HKLM\...\startupreg\removeSearchqutoolbar  [Key] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe
O53 - SMSR:HKLM\...\startupreg\Skype  [Key] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe
O53 - SMSR:HKLM\...\startupreg\UCam_Menu  [Key] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe
~ Scan SMSR Keys in 00mn 00s
 
 
 
---\\ Microsoft Control Security Providers (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll
~ Scan Keys in 00mn 00s
 
 
 
---\\ Microsoft Windows Policies System (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "HideFastUserSwitching"=0
O55 - MWPS:[HKCU\...\Policies\System] - "WallpaperStyle"=
~ Scan Keys in 00mn 00s
 
 
 
---\\ Microsoft Windows Policies Explorer (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0
~ Scan Keys in 00mn 00s
 
 
 
---\\ Liste des Drivers Système (O58)
O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys   [491088]
~ Scan Drivers in 00mn 00s
 
 
 
---\\ Liste des outils de nettoyage (O63)
O63 - Logiciel: ZHPDiag 2013 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
~ Scan ADS in 00mn 00s
 
 
 
---\\ Liste des services Legacy (O64)
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\adp94xx.sys (adp94xx)  .(.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) - LEGACY_ADP94XX
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\adpahci.sys (adpahci)  .(.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) - LEGACY_ADPAHCI
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\adpu320.sys (adpu320)  .(.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) - LEGACY_ADPU320
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\aliide.sys (aliide)  .(.Acer Laboratories Inc. - ALi mini IDE Driver.) - LEGACY_ALIIDE
O64 - Services: CurCS - 11/03/2011 - C:\Windows\System32\drivers\amdsata.sys (amdsata)  .(.Advanced Micro Devices - AHCI 1.2 Device Driver.) - LEGACY_AMDSATA
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\amdsbs.sys (amdsbs)  .(.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) - LEGACY_AMDSBS
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\arc.sys (arc)  .(.Adaptec, Inc. - Adaptec RAID Storport Driver.) - LEGACY_ARC
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\arcsas.sys (arcsas)  .(.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) - LEGACY_ARCSAS
O64 - Services: CurCS - 07/03/2013 - C:\Windows\System32\Drivers\aswFsBlk.sys (aswFsBlk)  .(.AVAST Software - avast! File System Access Blocking Driver.) - LEGACY_ASWFSBLK
O64 - Services: CurCS - 07/03/2013 - C:\Windows\system32\drivers\aswMonFlt.sys (aswMonFlt)  .(.AVAST Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT
O64 - Services: CurCS - 07/03/2013 - C:\Windows\system32\Drivers\aswrdr2.sys (aswRdr)  .(.AVAST Software - avast! WFP Redirect Driver.) - LEGACY_ASWRDR
O64 - Services: CurCS - 07/03/2013 - C:\Windows\System32\Drivers\aswSnx.sys (aswSnx)  .(.AVAST Software - avast! Virtualization Driver.) - LEGACY_ASWSNX
O64 - Services: CurCS - 07/03/2013 - C:\Windows\System32\Drivers\aswSP.sys (aswSP)  .(.AVAST Software - avast! self protection module.) - LEGACY_ASWSP
O64 - Services: CurCS - 07/03/2013 - C:\Windows\System32\Drivers\aswTdi.sys (aswTdi)  .(.AVAST Software - avast! TDI Filter Driver.) - LEGACY_ASWTDI
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\cmdide.sys (cmdide)  .(.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) - LEGACY_CMDIDE
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\elxstor.sys (elxstor)  .(.Emulex - Storport Miniport Driver for LightPulse HBA.) - LEGACY_ELXSTOR
O64 - Services: CurCS - 20/11/2010 - C:\Windows\System32\drivers\HpSAMD.sys (HpSAMD)  .(.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) - LEGACY_HPSAMD
O64 - Services: CurCS - 11/03/2011 - C:\Windows\System32\drivers\iaStorV.sys (iaStorV)  .(.Intel Corporation - Intel Matrix Storage Manager driver - x64.) - LEGACY_IASTORV
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\iirsp.sys (iirsp)  .(.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) - LEGACY_IIRSP
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\lsi_fc.sys (LSI_FC)  .(.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) - LEGACY_LSI_FC
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\lsi_sas.sys (LSI_SAS)  .(.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) - LEGACY_LSI_SAS
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\lsi_sas2.sys (LSI_SAS2)  .(.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) - LEGACY_LSI_SAS2
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\lsi_scsi.sys (LSI_SCSI)  .(.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) - LEGACY_LSI_SCSI
O64 - Services: CurCS - 14/12/2012 - C:\Windows\system32\drivers\mbam.sys (MBAMProtector)  .(.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - LEGACY_MBAMPROTECTOR
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\megasas.sys (megasas)  .(.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) - LEGACY_MEGASAS
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\MegaSR.sys (MegaSR)  .(.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) - LEGACY_MEGASR
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\nfrd960.sys (nfrd960)  .(.IBM Corporation - IBM ServeRAID Controller Driver.) - LEGACY_NFRD960
O64 - Services: CurCS - 11/03/2011 - C:\Windows\System32\drivers\nvraid.sys (nvraid)  .(.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) - LEGACY_NVRAID
O64 - Services: CurCS - 11/03/2011 - C:\Windows\System32\drivers\nvstor.sys (nvstor)  .(.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) - LEGACY_NVSTOR
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\ql2300.sys (ql2300)  .(.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) - LEGACY_QL2300
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\ql40xx.sys (ql40xx)  .(.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) - LEGACY_QL40XX
O64 - Services: CurCS - 10/06/2009 - C:\Windows\System32\Drivers\secdrv.sys (secdrv)  .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\SiSRaid2.sys (SiSRaid2)  .(.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) - LEGACY_SISRAID2
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\sisraid4.sys (SiSRaid4)  .(.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) - LEGACY_SISRAID4
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\stexstor.sys (stexstor)  .(.Promise Technology - Promise  SuperTrak EX Series Driver for Win.) - LEGACY_STEXSTOR
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\drivers\viaide.sys (viaide)  .(.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) - LEGACY_VIAIDE
O64 - Services: CurCS - 14/07/2009 - C:\Windows\System32\DRIVERS\vsmraid.sys (vsmraid)  .(.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) - LEGACY_VSMRAID
~ Scan Services in 00mn 00s
 
 
 
---\\ File Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> <evtfile>[HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> <ChromeHTML>[HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.html> <ChromeHTML>[HKCU\..\open\Command] (.Not Key.)
O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> <evtfile>[HKCR\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> <ChromeHTML>[HKCR\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O67 - Shell Spawning: <.js> <JSFile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
~ Scan Keys in 00mn 00s
 
 
 
---\\ Start Menu Internet (O68)
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
~ Scan Keys in 00mn 00s
 
 
 
---\\ Search Browser Infection (O69)
O69 - SBI: SearchScopes [HKCU] {35D613BC-A429-4815-B9A1-3A475C032FE2} - (Bing) - http://www.bing.com
O69 - SBI: SearchScopes [HKCU] {9D5BD211-422C-4164-9298-BB4186A30F31} [DefaultScope] - (Bing) - http://www.bing.com
~ Scan Keys in 00mn 00s
 
 
 
---\\ Recherche des services démarrés par Svchost (O83)
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll   [72192]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll   [80384]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll   [80384]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll   [236032]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll   [777728]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll   [853504]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll   [679424]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll   [99328]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll   [344064]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll   [97792]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll   [64512]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll   [359424]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\Windows\System32\tapisrv.dll   [316928]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur hôte de session Burea.) -- C:\Windows\System32\termsrv.dll   [680960]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\system32\wuaueng.dll   [2428952]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll   [849920]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll   [370688]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll   [569344]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\Windows\system32\seclogon.dll   [30720]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll   [70656]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll   [156672]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\Windows\System32\mmcss.dll   [67584]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll   [242688]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\System32\sessenv.dll   [121856]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll   [136704]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll   [111104]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll   [1110016]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll   [90624]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll   [84480]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll   [209920]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll   [44544]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll   [100864]
~ Scan Services in 00mn 00s
 
 
 
---\\ Recherche particuliere à la racine de certains dossiers (O84)
[MD5.7FAF5222EEB546E1DC0F348DCB314B0B] [SPRF][29/08/2006] (.Zylom Games - Zylom Games Player.) -- C:\Windows\Downloaded Program Files\zylomgamesplayer.dll   [161976]
~ Scan Files in 00mn 00s
 
 
 
---\\ Firewall Active Exception List (FirewallRules) (O87)
O87 - FAEL: "WMPNSS-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-UDP-NoScope" |Out - Domain - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "WMPNSS-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "{DA981226-E845-4DE2-86D3-5D5D87AE1120}" |In - None - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (.not file.)
O87 - FAEL: "{08A01DB3-3655-492C-B40F-222C9FA70B25}" | In - None - P17 - TRUE | .(.CyberLink Corp. - PowerDirector.) -- C:\Program Files (x86)\CyberLink\PowerDirector\PDR.exe
O87 - FAEL: "NetPres-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-WSD-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-WSD-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "NetPres-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)
O87 - FAEL: "{879167A6-0E48-46FA-8EC9-64E0143CF849}" | In - None - P6 - TRUE | .(.CyberLink Corp. - HP DVDPlay.) -- C:\Program Files (x86)\HP\QuickPlay\QP.exe
O87 - FAEL: "{3DE9FA9A-42AA-42E3-BB33-83E25307ED23}" | In - None - P6 - TRUE | .(.CyberLink Corp. - HP QuickPlay Resident Program.) -- C:\Program Files (x86)\HP\QuickPlay\QPService.exe
O87 - FAEL: "{05C3A782-FA59-40B5-9861-58AC34089735}" | In - None - P6 - TRUE | .(.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe
O87 - FAEL: "{85B01273-E985-4F01-B5BD-7446E2C43078}" |Out - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "{CAA0434D-1746-49B1-830E-CB0BDA7CFA60}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "{774045E6-E888-4D86-AC83-9274C2E21DA8}" |Out - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "{91840401-3874-4F62-8F1D-C3B941AB7A56}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (.not file.)
O87 - FAEL: "TCP Query User{68CA35AA-09FD-4EB6-8839-1392736688B7}C:\program files\acer\acersync\acersync.exe" |In - Private - P6 - TRUE | .(...) -- C:\program files\acer\acersync\acersync.exe (.not file.)
O87 - FAEL: "UDP Query User{8F9FAB68-6C48-4808-AD2C-FFB15B2382BB}C:\program files\acer\acersync\acersync.exe" |In - Private - P17 - TRUE | .(...) -- C:\program files\acer\acersync\acersync.exe (.not file.)
O87 - FAEL: "{8ADC8C49-36F2-4BAC-AE0F-E8D58B230305}" | In - Private - P6 - TRUE | .(.Yahoo! Inc. - Yahoo! Messenger.) -- C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe
O87 - FAEL: "{9724F408-B6E5-4C17-96CA-966B997CDDF0}" | In - Private - P17 - TRUE | .(.Yahoo! Inc. - Yahoo! Messenger.) -- C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe
O87 - FAEL: "{3AE8E641-82C7-46C5-BD97-81FD3D196A67}" |In - Private - P6 - FALSE | .(...) -- C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe (.not file.)
O87 - FAEL: "{61EF8045-F63B-4E62-B0D2-383FF650195A}" |In - Private - P17 - FALSE | .(...) -- C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe (.not file.)
O87 - FAEL: "{F0CC1D18-E761-48F8-BE6A-D6F800C9B705}" |In - Private - P6 - FALSE | .(...) -- C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe (.not file.)
O87 - FAEL: "{F511C545-6DE5-4533-BD54-0EA42C0E8AD1}" |In - Private - P17 - FALSE | .(...) -- C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe (.not file.)
O87 - FAEL: "{3E101914-99BB-4522-B7A3-3AE161235DC5}" |In - Private - P6 - FALSE | .(...) -- C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe (.not file.)
O87 - FAEL: "{7983E324-CDFB-48B1-BD90-8588B28A234C}" |In - Private - P17 - FALSE | .(...) -- C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe (.not file.)
~ Scan Firewall in 00mn 01s
 
 
 
---\\ Scan Additionnel (O88)
Database Version : v2.11214 - (13/03/2013)
Clés trouvées (Keys found) : 0
Valeurs trouvées (Values found) : 0
Dossiers trouvés  (Folders found) : 0
Fichiers trouvés  (Files found) : 0
 
~ Scan Additionnel in 00mn 28s
 
 
 
---\\ Product Upgrade Codes (O90)
O90 - PUC: "00002105501100000000000000F01FEC" . (.Microsoft Office 2007 Primary Interop Assemblies.) -- C:\Windows\Installer\{50120000-1105-0000-0000-0000000FF1CE}\misc.exe,6
O90 - PUC: "000021090200C0400000000000F01FEC" . (.Module de compatibilité pour Microsoft Office System 2007.) -- C:\Windows\Installer\{90120000-0020-040C-0000-0000000FF1CE}\O12ConvIcon.exe
O90 - PUC: "00002159FA00C0400000000000F01FEC" . (.Microsoft Office PowerPoint Viewer 2007 (French).) -- C:\Windows\Installer\{95120000-00AF-040C-0000-0000000FF1CE}\ppvwicon.exe,0
O90 - PUC: "065E69D4374A23A40ABAD444A5C2E9E6" . (.Nitro Reader 2.) -- C:\Windows\Installer\{4D96E560-A473-4A32-A0AB-4D445A2C9E6E}\Reader.ico
O90 - PUC: "076CFAAAB965F2A4284B2449E5D03EFE" . (.Windows Live Writer.) -- C:\Windows\Installer\{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}\ApplicationIcon.ico
O90 - PUC: "098990BCF5D15D11E99A0005AB3E711E" . (.PowerDirector.) -- C:\Windows\Installer\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\ARPPRODUCTICON.exe
O90 - PUC: "0AA74CC84775CF16A695E7C139D67B35" . (.ccc-core-static.) -- C:\Windows\Installer\{8CC47AA0-5774-61FC-6A59-7E1C936DB753}\ARPPRODUCTICON.exe
O90 - PUC: "1097CC45D40855143B35120FCC1921BA" . (.HP Wireless Assistant.) -- C:\Windows\Installer\{54CC7901-804D-4155-B353-21F0CC9112AB}\controlPanelIcon.exe
O90 - PUC: "11F12B5E3396B0E42AC597363E0CD711" . (.Windows Live Messenger.) -- C:\Windows\Installer\{E5B21F11-6933-4E0B-A25C-7963E3C07D11}\MsblIco.Exe
O90 - PUC: "168061B30527E1545BEEB829FB037A01" . (.Microsoft Works.) -- C:\Windows\Installer\{3B160861-7250-451E-B5EE-8B92BF30A710}\MSWorks.exe
O90 - PUC: "187BE5C973D08B44A985773B4EFBF5E5" . (.Windows Live Sync.) -- C:\Windows\Installer\{9C5EB781-0D37-44B8-9A58-77B3E4BF5F5E}\FolderShare48x48.ico
O90 - PUC: "1B92FE2806B924141A55509912D60D35" . (.LightScribe System Software.) -- C:\Windows\Installer\{82EF29B1-9B60-4142-A155-0599216DD053}\ARPPRODUCTICON.exe
O90 - PUC: "1C4235E6CF4867F4A9A36CE5708FE06E" . (.Complément Messenger.) -- C:\Windows\Installer\{6E5324C1-84FC-4F76-9A3A-C65E07F80EE6}\CompanionIcon
O90 - PUC: "1D034B0FAA6BD374B960AAD30DF10D8B" . (.Microsoft SQL Server 2005 Compact Edition [ENU].) -- C:\Windows\Installer\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}\ProductIcon
O90 - PUC: "2043BEDADBFC2E00E06E6F3A1FFACA0F" . (.ccc-utility64.) -- C:\Windows\Installer\{ADEB3402-CFBD-00E2-0EE6-F6A3F1AFACF0}\ARPPRODUCTICON.exe
O90 - PUC: "26B07C551FE5725DC7BA5ED0B8B39409" . (.Catalyst Control Center Graphics Full New.) -- C:\Windows\Installer\{55C70B62-5EF1-D527-7CAB-E50D8B3B4990}\ARPPRODUCTICON.exe
O90 - PUC: "30B73EB0FE3964B44A3F03DE2265D9A1" . (.Microsoft SQL Server Compact 3.5 SP1 ????.) -- C:\Windows\Installer\{0BE37B03-93EF-4B46-A4F3-30ED22569D1A}\ProductIcon
O90 - PUC: "38E1FB04BE028D11795C00905C206085" . (.Power2Go.) -- C:\Windows\Installer\{40BF1E83-20EB-11D8-97C5-0009C5020658}\ARPPRODUCTICON.exe
O90 - PUC: "42C6FBF1DF1C10144AB2C065F4E9E897" . (.PowerStarter.) -- C:\Windows\Installer\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\ARPPRODUCTICON.exe
O90 - PUC: "487EA05EEBAFAD641A8FB7B665CD2BE2" . (.Microsoft Office Suite Activation Assistant.) -- C:\Windows\Installer\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}\ARPPRODUCTICON.exe
O90 - PUC: "5AAC5F5EDE4814ED040D9862EFE7F5D4" . (.Catalyst Control Center Graphics Light.) -- C:\Windows\Installer\{E5F5CAA5-84ED-DE41-40D0-8926FE7E5F4D}\ARPPRODUCTICON.exe
O90 - PUC: "5E4A9F3FF9DC7564FC99C53E7F279990" . (.Catalyst Control Center Core Implementation.) -- C:\Windows\Installer\{F3F9A4E5-CD9F-4657-CF99-5CE3F7729909}\ARPPRODUCTICON.exe
O90 - PUC: "5EEE7F4C99D3255847382B4F2138B8A2" . (.Catalyst Control Center Graphics Previews Common.) -- C:\Windows\Installer\{C4F7EEE5-3D99-8552-7483-B2F412838B2A}\ARPPRODUCTICON.exe
O90 - PUC: "6523D9770D48F639819F1A45CD584B4B" . (.Catalyst Control Center Localization All.) -- C:\Windows\Installer\{779D3256-84D0-936F-18F9-A154DC85B4B4}\ARPPRODUCTICON.exe
O90 - PUC: "68AB67CA7DA76301B744AA0100000010" . (.Adobe Reader X (10.1.6) - Français.) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AA1000000001}\SC_Reader.ico
O90 - PUC: "7692FC6BE18C0C0489510C7547EF1F02" . (.Skype Click to Call.) -- C:\Windows\Installer\{B6CF2967-C81E-40C0-9815-C05774FEF120}\IconUninstallIco
O90 - PUC: "7D16E35B08C7FD04282DFC35096D2DA0" . (.HP Advisor.) -- C:\Windows\Installer\{B53E61D7-7C80-40DF-82D2-CF5390D6D20A}\ARPPRODUCTICON.exe
O90 - PUC: "86AE4BD5905A804D85C59C0D54AFFD27" . (.Catalyst Control Center Graphics Previews Vista.) -- C:\Windows\Installer\{5DB4EA68-A509-D408-585C-C9D045FADF72}\ARPPRODUCTICON.exe
O90 - PUC: "86DA14F42F9826243AC2F2070BF1ECE9" . (.Photorécit 3 pour Windows.) -- C:\Windows\Installer\{4F41AD68-89F2-4262-A32C-2F70B01FCE9E}\PhotoStory3_ICON
O90 - PUC: "8994BF104C33134458DE70E9E3FE7ED5" . (.YouCam.) -- C:\Windows\Installer\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\ARPPRODUCTICON.exe
O90 - PUC: "9BDF64F4609BFB743B5D6CE2103B5CEE" . (.HP Support Assistant.) -- C:\Windows\Installer\{4F46FDB9-B906-47BF-B3D5-C62E01B3C5EE}\ARPPRODUCTICON.exe
O90 - PUC: "AEE0D6626A5E80A40AEE35194DAE447A" . (.Catalyst Control Center - Branding.) -- C:\Windows\Installer\{266D0EEA-E5A6-4A08-A0EE-5391D4EA44A7}\ARPPRODUCTICON.exe
O90 - PUC: "BA0A2B44E214C8F40B851D8EEACCFD5F" . (.PowerRecover.) -- C:\Windows\Installer\{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}\ARPPRODUCTICON.exe
O90 - PUC: "BF3B324A6E9C3594A938A2F554AC4F66" . (.Microsoft SQL Server Compact 3.5 SP1 x64 ????.) -- C:\Windows\Installer\{A423B3FB-C9E6-4953-9A83-2A5F45CAF466}\ProductIcon
O90 - PUC: "C04274C6E6105B301DE3EAACDE902F3E" . (.ATI Catalyst Install Manager.) -- C:\Windows\Installer\{6C47240C-016E-03B5-D13E-AECAED09F2E3}\ARPPRODUCTICON.exe
O90 - PUC: "C971C95CD8669A946BAE1012CCCF2134" . (.LabelPrint.) -- C:\Windows\Installer\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\ARPPRODUCTICON.exe
O90 - PUC: "D72136D4E5D1F344DAB3490DF7CD356C" . (.barre d'outils Bing .) -- C:\Windows\Installer\{4D63127D-1D5E-443F-AD3B-94D07FDC53C6}\icon_installer_ico
O90 - PUC: "E7FF67E4ABEA78C47B88DC745E24B5D9" . (.Skype™ 6.1.) -- C:\Windows\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}\SkypeIcon.exe
O90 - PUC: "F2C19DCD68A3823B950AE5DE16099D38" . (.Catalyst Control Center Graphics Full Existing.) -- C:\Windows\Installer\{DCD91C2F-3A86-B328-59A0-5EED6190D983}\ARPPRODUCTICON.exe
~ Scan Files in 00mn 00s
 
 
 
---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SR - | Auto 18/12/2012 65192 |  (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
SS - | Demand 15/03/2013 253656 |  (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
SR - | Auto 02/03/2009 89600 |  (AESTFilters) . (.Andrea Electronics Corporation.) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\AESTSr64.exe
SR - | Auto 02/07/2009 203264 |  (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe
SR - | Auto 07/03/2013 45248 |  (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
SR - | Auto 13/02/2012 193816 |  (BBSvc) . (.Microsoft Corporation..) - C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BBSvc.exe
SS - | Demand 13/02/2012 240408 |  (BBUpdate) . (.Microsoft Corporation..) - C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.exe
SR - | Demand 05/05/2009 228408 |  (Com4QLBEx) . (.Hewlett-Packard Development Company, L.P..) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
SR - | Auto 14/07/2009 27136 | C:\Windows\System32\ezsvc7.dll (ezSharedSvc) . (.EasyBits Sofware AS.) - C:\Windows\System32\svchost.exe
SS - | Demand 22/05/2009 250616 |  (GameConsoleService) . (.WildTangent, Inc..) - C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe
SS - | Auto 27/11/2012 136176 |  (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 27/11/2012 136176 |  (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 27/11/2012 194032 |  (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
SR - | Auto 09/07/2009 124928 |  (HP Health Check Service) . (.Hewlett-Packard.) - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
SR - | Demand 30/04/2009 229944 |  (hpqwmiex) . (.Hewlett-Packard Development Company, L.P..) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
SR - | Auto 17/06/2009 73728 |  (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
SR - | Auto 14/12/2012 398184 |  (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
SR - | Auto 14/12/2012 682344 |  (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
SR - | Auto 13/09/2012 229392 |  (NitroReaderDriverReadSpool2) . (.Nitro PDF Software.) - C:\Program Files\Common Files\Nitro PDF\Reader\2.0\NitroPDFReaderDriverService2x64.exe
SR - | Auto  247152 |  (RichVideo) . (...) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
SR - | Auto 02/10/2012 3064000 |  (Skype C2C Service) . (.Skype Technologies S.A..) - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
SS - | Auto 08/01/2013 161536 |  (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
SR - | Auto 22/07/2009 240128 |  (STacSV) . (.IDT, Inc..) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\STacSV64.exe
SR - | Auto 14/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Auto  0 |  (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe
SR - | Auto 14/07/2009 27136 | C:\Windows\system32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
~ Scan Services in 00mn 02s
 
 
 
End of the scan (1296 lines in 02mn 08s)(0)

n°3081509
Destrio5
Posté le 16-03-2013 à 13:11:55  profilanswer
 

"oui il est toujours present"
 
--> En page d'accueil ?
 
Pour le rapport ZHPDiag, il est interdit de le poster directement sur le forum.

n°3081511
clem40550
Posté le 16-03-2013 à 13:22:43  profilanswer
 

tout a fais c sa il est en page d'acceuil
ok dsl j le savait pas

n°3081512
clem40550
Posté le 16-03-2013 à 13:25:39  profilanswer
 

j'aicompletement oublier qu'il fallait passer par le lien dsl

n°3081515
clem40550
Posté le 16-03-2013 à 14:27:39  profilanswer
 

voilà le lien si besoin de faire autre chose
 
http://pjjoint.malekal.com/files.p [...] l5l8w8i148

n°3081516
Destrio5
Posté le 16-03-2013 à 14:35:03  profilanswer
 
mood
Publicité
Posté le   profilanswer
 

 Page :   1  2  3  4

Aller à :
Ajouter une réponse
 

Sujets relatifs
Couldn't find bootmgrfaire un find sur une arbo windows pour compression
probleme message clik droit : Error: Can't find "". Self deregisteringau demarrage : unable to find a compatible SRS Audio Device
Equivalence de la commande "find" de Linux sous WindowsProblème avec fenêtres pop-up "full-find"...
HLVDD cannot find ///FAST hardlock driver, qu'est ce donc ?Couldn't find NTLDR (bios) !?
Probleme: Error in Registry: Unable to find Main executablecherche FIND.EXE sous windows millenium
Plus de sujets relatifs à : 22 find


Copyright © 1997-2025 Groupe LDLC (Signaler un contenu illicite / Données personnelles)