

akujunkan
Membres-
Compteur de contenus
6 -
Inscription
-
Dernière visite
Autres informations
-
Mes langues
Français
akujunkan's Achievements

Junior Member (3/12)
0
Réputation sur la communauté
-
Pc qui s'éteint plus - Résolu.
akujunkan a répondu à un(e) sujet de akujunkan dans Analyses et éradication malwares
très bien , merci beaucoup pour votre aide ! heureusement que ce genre de forums existe pour ceux qui ne sont pas vraiment doué comme moi... merci encore ! -
Pc qui s'éteint plus - Résolu.
akujunkan a répondu à un(e) sujet de akujunkan dans Analyses et éradication malwares
d'accord , quelque chose a faire de plus ? où mon problème est résolue ? merci beaucoup " pear " ! -
Pc qui s'éteint plus - Résolu.
akujunkan a répondu à un(e) sujet de akujunkan dans Analyses et éradication malwares
Rapport de ZHPFix 1.12.3316 par Nicolas Coolman, Update du 16/06/2011 Fichier d'export Registre : Run by gilles at 18/06/2011 19:02:57 Windows 7 Home Premium Edition, 64-bit (Build 7600) Web site : ZHPFix Fix de rapport ========== Logiciel(s) ========== ABSENT Software Key: WT087361 ABSENT Software Key: My HP Game Console ABSENT Software Key: WT087380 ABSENT Software Key: WT087396 ABSENT Software Key: WT087510 ========== Clé(s) du Registre ========== SUPPRIME Key: HKLM\Software\Classes\Wow6432Node\TypeLib\{2D5E2D34-BED5-4B9F-9793-A31E26E6806E} ABSENT Key: HKLM\Software\Classes\TypeLib\{2D5E2D34-BED5-4B9F-9793-A31E26E6806E} ERREUR CLSID MPSK: {4ec24a85-dedb-11df-8911-806e6f6e6963} ========== Valeur(s) du Registre ========== SUPPRIME RunValue: Steam ABSENT RunValue: Steam ========== Dossier(s) ========== SUPPRIME C:\Users\gilles\Appdata\Local\{8560790F-8099-4F3A-B515-8683F8D357C3} ========== Fichier(s) ========== SUPPRIME c:\program files (x86)\steam\steam.exe ABSENT File: c:\program files (x86)\steam\steam.exe ========== Récapitulatif ========== 3 : Clé(s) du Registre 2 : Valeur(s) du Registre 1 : Dossier(s) 2 : Fichier(s) 5 : Logiciel(s) ========== Chemin du fichier rapport ========== C:\Program Files (x86)\ZHPDiag\ZHPFixReport.txt End of the scan Voilà le rapport , ( euh juste une question j'ai vue que " steam " apparaissait , l'application va etre supprimé ? ) je redémarre le pc. -
Pc qui s'éteint plus - Résolu.
akujunkan a répondu à un(e) sujet de akujunkan dans Analyses et éradication malwares
Rapport de ZHPDiag v1.27.231 par Nicolas Coolman, Update du 16/06/2011 Run by gilles at 6/18/2011 3:19:23 PM Web site : ZHPDiag Outil de diagnostic ---\\ Web Browser MSIE: Internet Explorer v8.0.7600.16385 GCIE: Google Chrome v12.0.742.100 (Defaut) ---\\ System Information Windows 7 Home Premium Edition, 64-bit (Build 7600) Processor: Intel64 Family 6 Model 23 Stepping 10, GenuineIntel Operating System: 64 Bits Boot mode: Normal (Normal boot) Total RAM: 4095.2 MB (63% free) System Restore: Activé (Enable) System drive C: has 851 GB (92%) free of 918 GB ---\\ Logged in mode Computer Name: GILLES-HP User Name: gilles All Users Names: HomeGroupUser$, gilles, Administrateur, Unselected Option: O45,O61,O62,O65,O66,O82 Logged in as Administrator ---\\ Environnement Variables %AppData%=C:\Users\gilles\AppData\Roaming %LocalAppData%=C:\Users\gilles\AppData\Local %StartMenu%=C:\Users\gilles\AppData\Roaming\Microsoft\Windows\Start Menu ---\\ DOS/Devices C:\ Hard drive, Flash drive, Thumb drive (Free 851 Go of 918 Go) D:\ Hard drive, Flash drive, Thumb drive (Free 2 Go of 14 Go) E:\ CD-ROM drive (Not Inserted) F:\ Floppy drive, Flash card reader, USB Key (Not Inserted) Q:\ Hard drive, Flash drive, Thumb drive (Free 0 Go of 0 Go) ---\\ Security Center & Tools Informations [HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK ---\\ Recherche particulière de fichiers génériques [MD5.0862495E0C825893DB75EF44FAEA8E93] - (.Microsoft Corporation - Explorateur Windows.) (.2/26/2011 7:23:14 AM.) -- C:\Windows\Explorer.exe [2870272] [MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) (.7/14/2009 2:14:45 AM.) -- C:\Windows\system32\Wininit.exe [96256] [MD5.27CDAF355CCE3762C7F13719E814418B] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.4/22/2011 8:31:50 PM.) -- C:\Windows\system32\wininet.dll [981504] ---\\ Processus lancés [MD5.554A50B5310E702029D3A675459108FF] - (.Hewlett-Packard - hpsysdrv.) -- C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe [62768] [MD5.63A648C5FEB5DE641E1174ACB6CF78C6] - (.Pas de propriétaire - SmartMenu.) -- C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe [568888] [MD5.5516C26A6AF8EB4E2CAB48EC98A74398] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe [54576] [MD5.47DCE3A2FE0B34DD9F01EB4037303A3E] - (.Hewlett-Packard - HP Remote Solution.) -- C:\Program Files (x86)\Hewlett-Packard\HP Remote Solution\HP_Remote_Solution.exe [656896] [MD5.4C6898F15701AE7C41775C14E423FE25] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [3459712] [MD5.BFBF37F9F55C35FF853D04F9090CC854] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1011768] [MD5.51138BEEA3E2C21EC44D0932C71762A8] - (...) -- C:\Windows\SysWOW64\rundll32.exe [44544] [MD5.386B07203DE6C06A56FEAC2133CA6819] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [658944] ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) P2 - FPN: [HKCU] [pandonetworks.com/PandoWebPlugin] - (.Pando Networks - Pando Web Plugin.) -- C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) C:\Users\gilles\AppData\Local\Google\Chrome\User Data\Default\Preferences G1 - GCS: Preference [user Data\Default] None G0 - GCSP: Preference [user Data\Default][HomePage] Google G2 - GCE: Preference [user Data\Default] [lncjcfkpannmofmpgdfoonkniofdnaba] Shockwave Flash v.10,3,181,14 (Activé) ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN : Hotmail, Messenger, Bing, Actualité et Sport R0 - HKUS\S-1-5-21-4051393406-1407332175-529954550-1001\Software\Microsoft\Internet Explorer\Main,Start Page = Google R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Search Microsoft.com R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN : Hotmail, Messenger, Bing, Actualité et Sport R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Search Microsoft.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN : Hotmail, Messenger, Bing, Actualité et Sport R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Search Microsoft.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKUS\S-1-5-21-4051393406-1407332175-529954550-1001\Software\Microsoft\Internet Explorer\Main,Search Page = Search Microsoft.com R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (8.00.7600.16385 (win7_rtm.090713-1255)) -- C:\Windows\System32\ieframe.dll R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1 ---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ ---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2) F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: VMApplet=C:\WINDOWS\system32\SystemPropertiesPerformance.exe ---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: avast! WebRep [64Bits] - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper [64Bits] - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll O2 - BHO: Google Toolbar Notifier BHO [64Bits] - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg64.dll O2 - BHO: AcroIEHelperStub [64Bits] - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Search Helper [64Bits] - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} . (.Microsoft Corporation - Search Helper for Internet Explorer.) -- C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll O2 - BHO: avast! WebRep [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live ID [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\ O2 - BHO: Google Toolbar Helper [64Bits] - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO: Google Toolbar Notifier BHO [64Bits] - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll O2 - BHO: Bing Bar BHO [64Bits] - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} . (.Microsoft Corporation - Bing Bar.) -- c:\Program Files (x86)\MSN Toolbar\Platform\6.3.2380.0\npwinext.dll ---\\ Internet Explorer Toolbars (O3) O3 - Toolbar: Google Toolbar [64Bits] - {2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll O3 - Toolbar: avast! WebRep [64Bits] - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll ---\\ ---\\ Applications démarrées par registre & par dossier (O4) O4 - HKLM\..\Run: [hpsysdrv] . (.Hewlett-Packard - hpsysdrv.) -- c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe O4 - HKLM\..\Run: [smartMenu] . (.Pas de propriétaire - SmartMenu.) -- C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe O4 - HKCU\..\Run: [steam] . (.Valve Corporation - Steam.) -- C:\Program Files (x86)\Steam\steam.exe O4 - HKCU\..\Run: [HPAdvisorDock] . (.Hewlett-Packard - HP Advisor Dock.) -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\DOCK\HPAdvisorDock.exe O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKLM\..\Wow6432Node\Run: [PDF Complete] . (.PDF Complete Inc - Sentry for PDF.) -- C:\Program Files (x86)\PDF Complete\pdfsty.exe O4 - HKLM\..\Wow6432Node\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Wow6432Node\Run: [HP Remote Solution] C:\Program Files\Hewlett-Packard\HP Remote Solution\HP_Remote_Solution.exe (.not file.) O4 - HKLM\..\Wow6432Node\Run: [Easybits Recovery] . (.EasyBits Software AS - Pas de description.) -- C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe O4 - HKLM\..\Wow6432Node\Run: [Microsoft Default Manager] . (.Microsoft Corporation - Microsoft Default Manager.) -- C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe O4 - HKLM\..\Wow6432Node\Run: [avast] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastUI.exe O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe O4 - HKUS\S-1-5-19\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-20\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-21-4051393406-1407332175-529954550-1001\..\Run: [steam] . (.Valve Corporation - Steam.) -- C:\Program Files (x86)\Steam\steam.exe O4 - HKUS\S-1-5-21-4051393406-1407332175-529954550-1001\..\Run: [HPAdvisorDock] . (.Hewlett-Packard - HP Advisor Dock.) -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\DOCK\HPAdvisorDock.exe O4 - HKUS\S-1-5-21-4051393406-1407332175-529954550-1001\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (.not file.) O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (.not file.) ---\\ ---\\ Autres liens utilisateurs (O4) O4 - Global Startup: C:\Users\gilles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - Global Startup: C:\Users\gilles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - Global Startup: C:\Users\gilles\Desktop\HiJackThis.lnk . (.Trend Micro Inc..) -- C:\Users\gilles\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe O4 - Global Startup: C:\Users\gilles\Desktop\Microsoft Word Starter 2010.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVH.EXE O4 - Global Startup: C:\Users\gilles\Desktop\shutdown (2).lnk . (.Microsoft Corporation.) -- C:\Windows\System32\shutdown.exe O4 - Global Startup: C:\Users\gilles\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk . (.Google Inc..) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O4 - Global Startup: C:\Users\gilles\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe ---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8) O8 - Extra context menu item: Google Sidewiki... . (.Google Inc. - Google Toolbar for Internet Explorer.) -- C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll ---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL ---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{F372D51D-B581-4189-9EF5-390EBFD2D0DC}: DhcpNameServer = 212.27.40.241 212.27.40.240 O17 - HKLM\System\CS1\Services\Tcpip\..\{F372D51D-B581-4189-9EF5-390EBFD2D0DC}: DhcpNameServer = 212.27.40.241 212.27.40.240 O17 - HKLM\System\CS2\Services\Tcpip\..\{F372D51D-B581-4189-9EF5-390EBFD2D0DC}: DhcpNameServer = 212.27.40.241 212.27.40.240 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.241 212.27.40.240 ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. ---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: (avast! Firewall) . (.AVAST Software - avast! firewall service.) - C:\Program Files\AVAST Software\Avast\afwServ.exe O23 - Service: (ezSharedSvc) . (.EasyBits Software AS - Shared EasyBits services for Windows.) - C:\Windows\System32\ezSharedSvcHost.exe O23 - Service: (GameConsoleService) . (.WildTangent, Inc. - GameConsoleService.) - C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe O23 - Service: (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: (gupdatem) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: (gusvc) . (.Google - gusvc.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: (HP Health Check Service) . (.Hewlett-Packard Company - HP Support Assistant.) - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe O23 - Service: (HPDrvMntSvc.exe) . (.Hewlett-Packard Company - HP Quick Synchronization Service.) - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe O23 - Service: (hpqwmiex) . (.Hewlett-Packard Company - hpqwmiex Module.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe O23 - Service: (LightScribeService) . (.Hewlett-Packard Company - LightScribe Service.) - c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe O23 - Service: (maconfservice) . (.CybelSoft - Service de détection matériel.) - C:\Program Files (x86)\ma-config.com\maconfservice.exe O23 - Service: (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 197.9.) - C:\Windows\system32\nvvsvc.exe O23 - Service: (pdfcDispatcher) . (.PDF Complete Inc - Dispatcher.) - C:\Program Files (x86)\PDF Complete\pdfsvc.exe O23 - Service: (PnkBstrA) . (...) - C:\Windows\system32\PnkBstrA.exe O23 - Service: (Steam Client Service) . (.Valve Corporation - Steam Client Service (buildbot_winslave01_s.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe O23 - Service: (wlidsvc) . (.Microsoft Corp. - Microsoft® Windows Live ID Service.) - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.exe ---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(...) - (.not file.) ---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job O39 - APT:Automatic Planified Task - C:\Windows\Tasks\HPCeeScheduleForgilles.job [MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [MD5.BEAEC745256D3158495FEE10BA673E7C] [APT] [HPCeeScheduleForgilles] (.Hewlett-Packard.) -- C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [MD5.ED5D30F5D177A12E1A67401440DEA36D] [APT] [RecoveryCDWin7] (...) -- C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [MD5.ED5D30F5D177A12E1A67401440DEA36D] [APT] [servicePlan] (...) -- C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [MD5.FDC7C934ADB8C3B51A3C21781B608673] [APT] [PC Health Analysis] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [MD5.FDC7C934ADB8C3B51A3C21781B608673] [APT] [PC Tuneup] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe ---\\ Pilotes lancés au démarrage (O41) O41 - Driver: C:\Windows\system32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\System32\DRIVERS\blbdrive.sys O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys O41 - Driver: C:\Windows\system32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys O41 - Driver: C:\Windows\system32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\System32\DRIVERS\mssmbios.sys O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys O41 - Driver: C:\Windows\system32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys O41 - Driver: C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys O41 - Driver: C:\Windows\system32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys O41 - Driver: C:\Windows\system32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys O41 - Driver: C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys O41 - Driver: C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys O41 - Driver: C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys O41 - Driver: C:\Windows\system32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys O41 - Driver: C:\Windows\system32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys ---\\ Logiciels installés (O42) O42 - Logiciel: ActiveCheck component for HP Active Support Library - (.Hewlett-Packard.) [HKLM][64Bits] -- {254C37AA-6B72-4300-84F6-98A82419187E} O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin O42 - Logiciel: Adobe Reader X (10.1.0) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AA1000000001} O42 - Logiciel: Agatha Christie - Death on the Nile - (.WildTangent.) [HKLM][64Bits] -- WT087420 O42 - Logiciel: Altitude - (.Nimbly Games.) [HKLM][64Bits] -- Steam App 41300 O42 - Logiciel: Barre d'outils Bing - (.Microsoft Corporation.) [HKLM][64Bits] -- {08234a0d-cf39-4dca-99f0-0c5cb496da81} O42 - Logiciel: Bejeweled 2 Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT087428 O42 - Logiciel: Bing Bar Platform - (.Microsoft Corporation.) [HKLM][64Bits] -- {B86C9440-82D7-423C-9FEC-6CB3092D1AA4} O42 - Logiciel: Brink - (.Pas de propriétaire.) [HKLM][64Bits] -- Steam App 22350 O42 - Logiciel: Call of Duty® 4 - Modern Warfare 1.7 Patch - (.Pas de propriétaire.) [HKLM][64Bits] -- InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498} O42 - Logiciel: Capsized - (.Pas de propriétaire.) [HKLM][64Bits] -- Steam App 95300 O42 - Logiciel: Chuzzle Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT087453 O42 - Logiciel: CyberLink DVD Suite Deluxe - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} O42 - Logiciel: CyberLink DVD Suite Deluxe - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} O42 - Logiciel: DVD Menu Pack for HP MediaSmart Video - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{FB4BB287-37F9-4E27-9C4D-2D3882E08EFF} O42 - Logiciel: DVD Menu Pack for HP MediaSmart Video - (.Hewlett-Packard.) [HKLM][64Bits] -- {FB4BB287-37F9-4E27-9C4D-2D3882E08EFF} O42 - Logiciel: Darkspore - (.Maxis.) [HKLM][64Bits] -- Steam App 99890 O42 - Logiciel: Diner Dash 2 Restaurant Rescue - (.WildTangent.) [HKLM][64Bits] -- WT087536 O42 - Logiciel: FATE - (.WildTangent.) [HKLM][64Bits] -- WT087361 O42 - Logiciel: Galerie de photos Windows Live - (.Microsoft Corporation.) [HKLM][64Bits] -- {488F0347-C4A7-4374-91A7-30818BEDA710} O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {18455581-E099-4BA8-BC6B-F34B2F06600C} O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {C768790F-04FB-11E0-9B2C-001AA037B01E} O42 - Logiciel: HP Advisor - (.Hewlett-Packard.) [HKLM][64Bits] -- {40FB8D7C-6FF8-4AF2-BC8B-0B1DB32AF04B} O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FA4960-B038-49EB-891B-9F95930AA544} O42 - Logiciel: HP Game Console - (.WildTangent.) [HKLM][64Bits] -- My HP Game Console O42 - Logiciel: HP Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent hp Master Uninstall O42 - Logiciel: HP MediaSmart DVD - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A} O42 - Logiciel: HP MediaSmart DVD - (.Hewlett-Packard.) [HKLM][64Bits] -- {DCCAD079-F92C-44DA-B258-624FC6517A5A} O42 - Logiciel: HP MediaSmart Music - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{91A34181-9FAD-43AB-A35F-E7A8945B7E1C} O42 - Logiciel: HP MediaSmart Music - (.Hewlett-Packard.) [HKLM][64Bits] -- {91A34181-9FAD-43AB-A35F-E7A8945B7E1C} O42 - Logiciel: HP MediaSmart Photo - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{6DAF8CDC-9B04-413B-A0F2-BCC13CF8A5BF} O42 - Logiciel: HP MediaSmart Photo - (.Hewlett-Packard.) [HKLM][64Bits] -- {6DAF8CDC-9B04-413B-A0F2-BCC13CF8A5BF} O42 - Logiciel: HP MediaSmart SmartMenu - (.Hewlett-Packard.) [HKLM] -- {5B08AF35-B699-4A44-BB89-3E51E70611E8} O42 - Logiciel: HP MediaSmart Video - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{D12E3E7F-1B13-4933-A915-16C7DD37A095} O42 - Logiciel: HP MediaSmart Video - (.Hewlett-Packard.) [HKLM][64Bits] -- {D12E3E7F-1B13-4933-A915-16C7DD37A095} O42 - Logiciel: HP Remote Solution - (.Hewlett-Packard.) [HKLM][64Bits] -- HP Remote Solution O42 - Logiciel: HP Remote Solution - (.Hewlett-Packard.) [HKLM][64Bits] -- {C611CF88-969D-43E6-A877-D6D6439DD081} O42 - Logiciel: HP Setup - (.Hewlett-Packard.) [HKLM][64Bits] -- {72D90DB3-A16A-4545-B555-868471101833} O42 - Logiciel: HP Support Assistant - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {08DB3902-2CE0-474D-BCE3-0177766CE9F1} O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {DE77FE3F-A33D-499A-87AD-5FC406617B40} O42 - Logiciel: HP Vision Hardware Diagnostics - (.Hewlett-Packard.) [HKLM] -- {D79A02E9-6713-4335-9668-AAC7474C0C0E} O42 - Logiciel: HPAsset component for HP Active Support Library - (.Hewlett-Packard.) [HKLM][64Bits] -- {669D4A35-146B-4314-89F1-1AC3D7B88367} O42 - Logiciel: Heroes of Might and Magic V - (.Ubisoft.) [HKLM][64Bits] -- Steam App 15170 O42 - Logiciel: Insaniquarium Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT087480 O42 - Logiciel: Jewel Quest II - (.WildTangent.) [HKLM][64Bits] -- WT087485 O42 - Logiciel: Jewel Quest Solitaire - (.WildTangent.) [HKLM][64Bits] -- WT087490 O42 - Logiciel: John Deere Drive Green - (.WildTangent.) [HKLM][64Bits] -- WT087380 O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243} O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} O42 - Logiciel: League of Legends - (.Riot Games.) [HKLM][64Bits] -- {918A9082-6287-4D25-9002-5E5D5E4971CB} O42 - Logiciel: LightScribe System Software - (.LightScribe.) [HKLM][64Bits] -- {46BA053F-57B3-4153-BDB6-D37EEC8B12D7} O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} O42 - Logiciel: Ma-Config.com - (.Cybelsoft.) [HKLM][64Bits] -- {7DB4CB30-B94A-4282-AC8A-C86F615AA45B} O42 - Logiciel: Magic Desktop - (.EasyBits Software AS.) [HKLM][64Bits] -- EasyBits Magic Desktop O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4} O42 - Logiciel: Microsoft Default Manager - (.Microsoft Corporation.) [HKLM][64Bits] -- {1CAC7A41-583B-4483-9FA5-3E5465AFF8C2} O42 - Logiciel: Microsoft Office 2010 - (.Microsoft Corporation.) [HKLM][64Bits] -- {95140000-0070-0000-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office Starter 2010 - Français - (.Microsoft Corporation.) [HKLM][64Bits] -- {90140011-0066-040C-0000-0000000FF1CE} O42 - Logiciel: Microsoft Office « Démarrer en un clic » 2010 - (.Microsoft Corporation.) [HKLM] -- {90140000-006D-040C-1000-0000000FF1CE} O42 - Logiciel: Microsoft Office « Démarrer en un clic » 2010 - (.Microsoft Corporation.) [HKLM][64Bits] -- Office14.Click2Run O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU] - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8} O42 - Logiciel: Microsoft Search Enhancement Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {928B06E4-DDAA-476A-926A-641620326327} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM] -- {B6E3757B-5E77-3915-866A-CCFC4B8D194C} O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM][64Bits] -- {770657D0-A123-3C07-8E44-1C83EC895118} O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM] -- {071c9b48-7c32-4621-a0ac-3f809523288f} O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM] -- {ad8a2fa1-06e7-4b0d-927d-6e54b3d31028} O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {8220EEFE-38CD-377E-8595-13398D740ACE} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {4B6C7001-C7D6-3710-913E-5BC23FCE91E6} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM] -- {5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 - (.Microsoft Corporation.) [HKLM][64Bits] -- {FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} O42 - Logiciel: Microsoft Works 6-9 Converter - (.Microsoft Corporation.) [HKLM][64Bits] -- {172423F9-522A-483A-AD65-03600CE4CA4F} O42 - Logiciel: Microsoft XNA Framework Redistributable 3.1 - (.Microsoft Corporation.) [HKLM][64Bits] -- {19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20} O42 - Logiciel: Movie Theme Pack for HP MediaSmart Video - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{3023EBDA-BF1B-4831-B347-E5018555F26E} O42 - Logiciel: Movie Theme Pack for HP MediaSmart Video - (.Hewlett-Packard.) [HKLM][64Bits] -- {3023EBDA-BF1B-4831-B347-E5018555F26E} O42 - Logiciel: Mumble and Murmur - (.Mumble.) [HKLM][64Bits] -- Mumble O42 - Logiciel: MusicStation - (.Hewlett-Packard.) [HKLM][64Bits] -- MusicStationNetstaller O42 - Logiciel: NVIDIA Display Control Panel - (.NVIDIA Corporation.) [HKLM] -- NVIDIA Display Control Panel O42 - Logiciel: NVIDIA Drivers - (.NVIDIA Corporation.) [HKLM] -- NVIDIA Drivers O42 - Logiciel: PDF Complete Special Edition - (.PDF Complete, Inc.) [HKLM][64Bits] -- PDF Complete O42 - Logiciel: Pando Media Booster - (.Pando Networks Inc..) [HKLM][64Bits] -- {980A182F-E0A2-4A40-94C1-AE0C1235902E} O42 - Logiciel: Penguins! - (.WildTangent.) [HKLM][64Bits] -- WT087394 O42 - Logiciel: PhotoNow! - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{D36DD326-7280-11D8-97C8-000129760CBE} O42 - Logiciel: PhotoNow! - (.CyberLink Corp..) [HKLM][64Bits] -- {D36DD326-7280-11D8-97C8-000129760CBE} O42 - Logiciel: Plants vs. Zombies - (.WildTangent.) [HKLM][64Bits] -- WT087501 O42 - Logiciel: PlayReady PC Runtime amd64 - (.Microsoft Corporation.) [HKLM] -- {BCA9334F-B6C9-4F65-9A73-AC5A329A4D04} O42 - Logiciel: Polar Bowler - (.WildTangent.) [HKLM][64Bits] -- WT087396 O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658} O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658} O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1} O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {CB099890-1D5F-11D5-9EA9-0050BAE317E1} O42 - Logiciel: PressReader - (. NewspaperDirect Inc..) [HKLM][64Bits] -- {912CED74-88D3-4C5B-ACB0-13231864975D} O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: Recovery Manager - (.CyberLink Corp..) [HKLM][64Bits] -- {44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5} O42 - Logiciel: Slingo Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT087510 O42 - Logiciel: Spiral Knights - (.SEGA.) [HKLM][64Bits] -- Steam App 99900 O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- {048298C9-A4D3-490B-9FF9-AB023A9238F3} O42 - Logiciel: Virtual Villagers - The Secret City - (.WildTangent.) [HKLM][64Bits] -- WT087513 O42 - Logiciel: Wedding Dash - (.WildTangent.) [HKLM][64Bits] -- WT087519 O42 - Logiciel: Windows Live - (.Microsoft Corporation.) [HKLM][64Bits] -- WinLiveSuite O42 - Logiciel: Windows Live - (.Microsoft Corporation.) [HKLM][64Bits] -- {34319F1F-7CF2-4CC9-B357-1AE7D2FF3AC5} O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM][64Bits] -- {D45240D3-B6B3-4FF9-B243-54ECE3E10066} O42 - Logiciel: Windows Live FolderShare - (.Microsoft Corporation.) [HKLM][64Bits] -- {2075CB0A-D26F-4DAA-B424-5079296B43BA} O42 - Logiciel: Windows Live ID Sign-in Assistant - (.Microsoft Corporation.) [HKLM] -- {1B8ABA62-74F0-47ED-B18C-A43128E591B8} O42 - Logiciel: Windows Live Installer - (.Microsoft Corporation.) [HKLM][64Bits] -- {0B0F231F-CE6A-483D-AA23-77B364F75917} O42 - Logiciel: Windows Live Language Selector - (.Microsoft Corporation.) [HKLM] -- {D07A61E5-A59C-433C-BCBD-22025FA2287B} O42 - Logiciel: Windows Live MIME IFilter - (.Microsoft Corporation.) [HKLM] -- {DA54F80E-261C-41A2-A855-549A144F2F59} O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM][64Bits] -- {9D56775A-93F3-44A3-8092-840E3826DE30} O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM][64Bits] -- {9FAE6E8D-E686-49F5-A574-0A58DFD9580C} O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {6057E21C-ABE9-4059-AE3E-3BEB9925E660} O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {EB4DF488-AAEF-406F-A341-CB2AAA315B90} O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM][64Bits] -- {6DEC8BD5-7574-47FA-B080-492BBBE2FEA3} O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM][64Bits] -- {92EA4134-10D1-418A-91E1-5A0453131A38} O42 - Logiciel: Windows Live PIMT Platform - (.Microsoft Corporation.) [HKLM][64Bits] -- {83C292B7-38A5-440B-A731-07070E81A64F} O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM][64Bits] -- {A9BDCA6B-3653-467B-AC83-94367DA3BFE3} O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM][64Bits] -- {C893D8C0-1BA0-4517-B11C-E89B65E72F70} O42 - Logiciel: Windows Live Photo Gallery - (.Microsoft Corporation.) [HKLM][64Bits] -- {3336F667-9049-4D46-98B6-4C743EEBC5B1} O42 - Logiciel: Windows Live SOXE - (.Microsoft Corporation.) [HKLM][64Bits] -- {682B3E4F-696A-42DE-A41C-4C07EA1678B4} O42 - Logiciel: Windows Live SOXE Definitions - (.Microsoft Corporation.) [HKLM][64Bits] -- {200FEC62-3C34-4D60-9CE8-EC372E01C08F} O42 - Logiciel: Windows Live UX Platform - (.Microsoft Corporation.) [HKLM][64Bits] -- {CE95A79E-E4FC-4FFF-8A75-29F04B942FF2} O42 - Logiciel: Windows Live UX Platform Language Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {05E379CC-F626-4E7D-8354-463865B303BF} O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM][64Bits] -- {3B9A92DA-6374-4872-B646-253F18624D5F} O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM][64Bits] -- {A726AE06-AAA3-43D1-87E3-70F510314F04} O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM][64Bits] -- {AAAFC670-569B-4A2F-82B4-42945E0DE3EF} O42 - Logiciel: Windows Live Writer Resources - (.Microsoft Corporation.) [HKLM][64Bits] -- {62687B11-58B5-4A18-9BC3-9DF4CE03F194} O42 - Logiciel: Worms Reloaded - (.Team17.) [HKLM][64Bits] -- Steam App 22600 O42 - Logiciel: Zuma Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT087533 O42 - Logiciel: [HKLM\Software\PDF Complete] - (.Pas de propriétaire.) [HKLM][64Bits] -- PunkBusterSvc O42 - Logiciel: avast! Internet Security - (.AVAST Software.) [HKLM][64Bits] -- avast ---\\ HKCU & HKLM Software Keys [HKCU\Software\AVAST Software] [HKCU\Software\Adobe] [HKCU\Software\AppDataLow\Software\Microsoft] [HKCU\Software\AppDataLow\Software] [HKCU\Software\AppDataLow] [HKCU\Software\Bugsplat] [HKCU\Software\ClassesB] [HKCU\Software\Classes] [HKCU\Software\Clients] [HKCU\Software\Electronic Arts] [HKCU\Software\Google] [HKCU\Software\Hewlett-Packard] [HKCU\Software\JEDI-VCL] [HKCU\Software\JavaSoft] [HKCU\Software\Macromedia] [HKCU\Software\MozillaPlugins] [HKCU\Software\Mumble] [HKCU\Software\NVIDIA Corporation] [HKCU\Software\Netscape] [HKCU\Software\Norton] [HKCU\Software\PDFComplete] [HKCU\Software\Pando Networks] [HKCU\Software\Policies] [HKCU\Software\Realtek] [HKCU\Software\Trend Micro] [HKCU\Software\Trolltech] [HKCU\Software\Valve] [HKCU\Software\Wow6432Node] [HKCU\Software\cybelsoft] [HKCU\Software\ej-technologies] [HKLM\Software\ATI Technologies] [HKLM\Software\AVAST Software] [HKLM\Software\AbiWord] [HKLM\Software\Adobe] [HKLM\Software\BrowserChoice] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\CyberLink] [HKLM\Software\Cyberlink] [HKLM\Software\EasyBits] [HKLM\Software\Electronic Arts] [HKLM\Software\Even Balance] [HKLM\Software\Google] [HKLM\Software\Hewlett-Packard] [HKLM\Software\Intel] [HKLM\Software\Khronos] [HKLM\Software\Licenses] [HKLM\Software\LightScribe] [HKLM\Software\Macromedia] [HKLM\Software\MimarSinan] [HKLM\Software\MozillaPlugins] [HKLM\Software\Mozilla] [HKLM\Software\NVIDIA Corporation] [HKLM\Software\NewspaperDirect] [HKLM\Software\ODBC] [HKLM\Software\PDFComplete] [HKLM\Software\Pando Networks] [HKLM\Software\Policies] [HKLM\Software\Realtek Semiconductor Corp.] [HKLM\Software\Realtek] [HKLM\Software\RegisteredApplications] [HKLM\Software\Riot Games] [HKLM\Software\SRS Labs] [HKLM\Software\Sonic] [HKLM\Software\Symantec] [HKLM\Software\Team17 Software Ltd.] [HKLM\Software\Ubisoft] [HKLM\Software\Valve] [HKLM\Software\Volatile] [HKLM\Software\WildTangent] [HKLM\Software\Win32 Services] [HKLM\Software\Wow6432Node] [HKLM\Software\cybelsoft] ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 5/15/2011 - 11:09:00 AM - [342623742] ----D- C:\Program Files\AVAST Software O43 - CFD: 4/20/2011 - 6:42:08 PM - [84367525] ----D- C:\Program Files\Common Files O43 - CFD: 4/10/2011 - 11:26:02 PM - [90257428] ----D- C:\Program Files\DVD Maker O43 - CFD: 5/6/2011 - 12:29:32 PM - [658032] ----D- C:\Program Files\Google O43 - CFD: 10/23/2010 - 7:52:08 PM - [9779088] ----D- C:\Program Files\Hewlett-Packard O43 - CFD: 10/23/2010 - 7:16:16 PM - [1705] ----D- C:\Program Files\hp O43 - CFD: 6/17/2011 - 10:16:54 AM - [5176332] ----D- C:\Program Files\Internet Explorer O43 - CFD: 7/14/2009 - 9:45:56 AM - [149236786] ----D- C:\Program Files\Microsoft Games O43 - CFD: 4/17/2011 - 6:08:24 PM - [1584303] ----D- C:\Program Files\Microsoft Office O43 - CFD: 7/14/2009 - 7:32:40 AM - [25757] ----D- C:\Program Files\MSBuild O43 - CFD: 10/23/2010 - 7:10:48 PM - [52390537] ----D- C:\Program Files\NVIDIA Corporation O43 - CFD: 10/23/2010 - 7:41:06 PM - [2178436] ----D- C:\Program Files\PlayReady O43 - CFD: 10/23/2010 - 7:09:52 PM - [14738648] ----D- C:\Program Files\Realtek O43 - CFD: 7/14/2009 - 7:32:40 AM - [36253865] ----D- C:\Program Files\Reference Assemblies O43 - CFD: 7/14/2009 - 7:09:28 AM - [0] --H-D- C:\Program Files\Uninstall Information O43 - CFD: 4/10/2011 - 11:26:02 PM - [4039168] ----D- C:\Program Files\Windows Defender O43 - CFD: 4/10/2011 - 11:26:02 PM - [9224824] ----D- C:\Program Files\Windows Journal O43 - CFD: 5/2/2011 - 5:48:02 PM - [43896] ----D- C:\Program Files\Windows Live O43 - CFD: 4/12/2011 - 8:38:00 AM - [6667264] ----D- C:\Program Files\Windows Mail O43 - CFD: 4/12/2011 - 8:37:54 AM - [7687085] ----D- C:\Program Files\Windows Media Player O43 - CFD: 7/14/2009 - 7:32:40 AM - [12627124] ----D- C:\Program Files\Windows NT O43 - CFD: 4/10/2011 - 11:26:02 PM - [5516568] ----D- C:\Program Files\Windows Photo Viewer O43 - CFD: 7/14/2009 - 7:32:40 AM - [235008] ----D- C:\Program Files\Windows Portable Devices O43 - CFD: 4/10/2011 - 11:26:04 PM - [10036778] ----D- C:\Program Files\Windows Sidebar O43 - CFD: 5/2/2011 - 5:47:34 PM - [71746084] ----D- C:\Program Files\Common Files\Microsoft Shared O43 - CFD: 7/14/2009 - 5:20:10 AM - [2702] ----D- C:\Program Files\Common Files\Services O43 - CFD: 7/14/2009 - 5:20:10 AM - [608768] ----D- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 4/10/2011 - 11:26:02 PM - [12009971] ----D- C:\Program Files\Common Files\System O43 - CFD: 6/15/2011 - 12:31:24 AM - [479] ----D- C:\ProgramData\Adobe O43 - CFD: 7/14/2009 - 7:08:58 AM - [0] -SH-D- C:\ProgramData\Application Data O43 - CFD: 6/15/2011 - 12:29:12 AM - [48507142] ----D- C:\ProgramData\AVAST Software O43 - CFD: 10/23/2010 - 7:32:08 PM - [139560] ----D- C:\ProgramData\CyberLink O43 - CFD: 7/14/2009 - 7:08:58 AM - [0] -SH-D- C:\ProgramData\Desktop O43 - CFD: 7/14/2009 - 7:08:58 AM - [0] -SH-D- C:\ProgramData\Documents O43 - CFD: 7/14/2009 - 7:08:58 AM - [0] -SH-D- C:\ProgramData\Favorites O43 - CFD: 5/6/2011 - 12:29:40 PM - [536260] ----D- C:\ProgramData\Google O43 - CFD: 5/2/2011 - 8:39:50 PM - [65432038] ----D- C:\ProgramData\Hewlett-Packard O43 - CFD: 5/13/2011 - 9:13:44 PM - [1271420] ----D- C:\ProgramData\ma-config.com O43 - CFD: 5/2/2011 - 5:48:36 PM - [2213850083] -S--D- C:\ProgramData\Microsoft O43 - CFD: 10/23/2010 - 7:44:24 PM - [0] ----D- C:\ProgramData\NewspaperDirect O43 - CFD: 4/21/2011 - 11:50:38 AM - [16565] ----D- C:\ProgramData\Norton O43 - CFD: 10/23/2010 - 7:49:30 PM - [8896696] ----D- C:\ProgramData\NortonInstaller O43 - CFD: 10/23/2010 - 7:12:52 PM - [276886] ----D- C:\ProgramData\NVIDIA O43 - CFD: 6/12/2011 - 10:26:28 AM - [0] ----D- C:\ProgramData\PDFC O43 - CFD: 6/18/2011 - 3:19:16 PM - [5796] ----D- C:\ProgramData\PMB Files O43 - CFD: 10/23/2010 - 7:19:36 PM - [3540077] ----D- C:\ProgramData\Ralink Driver O43 - CFD: 7/14/2009 - 7:08:58 AM - [0] -SH-D- C:\ProgramData\Start Menu O43 - CFD: 10/23/2010 - 7:31:30 PM - [491733] ----D- C:\ProgramData\Temp O43 - CFD: 7/14/2009 - 7:08:58 AM - [0] -SH-D- C:\ProgramData\Templates O43 - CFD: 4/17/2011 - 8:20:42 PM - [0] ----D- C:\ProgramData\VirtualizedApplications O43 - CFD: 10/23/2010 - 7:44:14 PM - [1873450921] ----D- C:\ProgramData\WildTangent O43 - CFD: 10/23/2010 - 7:32:34 PM - [5732933] --H-D- C:\ProgramData\{0D9D262D-4BA2-4BC3-9CD3-4D1A9AE63E18} O43 - CFD: 10/23/2010 - 7:16:38 PM - [35063286] ----D- C:\ProgramData\{0F47B255-CF9F-48C5-B558-B7DAF9345268} O43 - CFD: 5/2/2011 - 8:43:42 PM - [35253750] ----D- C:\ProgramData\{23D58E70-3B83-4B83-A227-68770F84F5EC} O43 - CFD: 5/6/2011 - 12:34:18 PM - [41001] ----D- C:\Users\gilles\AppData\Roaming\Adobe O43 - CFD: 6/4/2011 - 5:55:46 PM - [481805526] ----D- C:\Users\gilles\AppData\Roaming\DarksporeData O43 - CFD: 5/6/2011 - 12:40:58 PM - [1288] ----D- C:\Users\gilles\AppData\Roaming\Google O43 - CFD: 5/2/2011 - 8:40:00 PM - [74671] ----D- C:\Users\gilles\AppData\Roaming\Hewlett-Packard O43 - CFD: 6/13/2011 - 12:49:26 PM - [460] ----D- C:\Users\gilles\AppData\Roaming\HP Support Assistant O43 - CFD: 5/2/2011 - 8:46:54 PM - [14777] ----D- C:\Users\gilles\AppData\Roaming\hpqLog O43 - CFD: 6/13/2011 - 12:49:26 PM - [5617] ----D- C:\Users\gilles\AppData\Roaming\HpUpdate O43 - CFD: 4/10/2011 - 4:48:50 PM - [0] ----D- C:\Users\gilles\AppData\Roaming\Identities O43 - CFD: 4/10/2011 - 10:30:44 PM - [0] ----D- C:\Users\gilles\AppData\Roaming\LolClient O43 - CFD: 4/10/2011 - 5:03:56 PM - [6626] ----D- C:\Users\gilles\AppData\Roaming\Macromedia O43 - CFD: 7/14/2009 - 9:44:40 AM - [0] ----D- C:\Users\gilles\AppData\Roaming\Media Center Programs O43 - CFD: 6/18/2011 - 10:30:44 AM - [18858508] -S--D- C:\Users\gilles\AppData\Roaming\Microsoft O43 - CFD: 6/17/2011 - 10:09:02 PM - [457412] ----D- C:\Users\gilles\AppData\Roaming\Mumble O43 - CFD: 5/30/2011 - 10:32:48 PM - [710946] ----D- C:\Users\gilles\AppData\Roaming\SoftGrid Client O43 - CFD: 4/17/2011 - 6:09:28 PM - [0] ----D- C:\Users\gilles\AppData\Roaming\TP O43 - CFD: 4/11/2011 - 5:53:12 PM - [0] ----D- C:\Users\gilles\AppData\Roaming\WinBatch O43 - CFD: 5/2/2011 - 5:54:44 PM - [0] ----D- C:\Users\gilles\AppData\Roaming\Windows Live Writer O43 - CFD: 5/6/2011 - 12:34:18 PM - [14461850] ----D- C:\Users\gilles\Appdata\Local\Adobe O43 - CFD: 4/10/2011 - 4:40:28 PM - [0] -SH-D- C:\Users\gilles\Appdata\Local\Application Data O43 - CFD: 6/2/2011 - 9:16:34 PM - [16880752] ----D- C:\Users\gilles\Appdata\Local\CrashDumps O43 - CFD: 6/10/2011 - 3:39:10 PM - [0] ----D- C:\Users\gilles\Appdata\Local\ElevatedDiagnostics O43 - CFD: 5/15/2011 - 11:11:00 AM - [384605710] ----D- C:\Users\gilles\Appdata\Local\Google O43 - CFD: 5/3/2011 - 8:31:36 PM - [701739] ----D- C:\Users\gilles\Appdata\Local\Hewlett-Packard O43 - CFD: 4/10/2011 - 4:40:28 PM - [0] -SH-D- C:\Users\gilles\Appdata\Local\Historique O43 - CFD: 5/6/2011 - 12:34:18 PM - [268683814] ----D- C:\Users\gilles\Appdata\Local\Microsoft O43 - CFD: 5/14/2011 - 9:21:06 PM - [0] ----D- C:\Users\gilles\Appdata\Local\Mumble O43 - CFD: 4/10/2011 - 4:49:04 PM - [0] ----D- C:\Users\gilles\Appdata\Local\PDFC O43 - CFD: 6/18/2011 - 3:19:18 PM - [254153] ----D- C:\Users\gilles\Appdata\Local\PMB Files O43 - CFD: 5/7/2011 - 11:07:42 AM - [9324774] ----D- C:\Users\gilles\Appdata\Local\PunkBuster O43 - CFD: 4/17/2011 - 6:09:12 PM - [528384] ----D- C:\Users\gilles\Appdata\Local\SoftGrid Client O43 - CFD: 6/18/2011 - 3:19:34 PM - [234471985] ----D- C:\Users\gilles\Appdata\Local\Temp O43 - CFD: 4/10/2011 - 4:40:28 PM - [0] -SH-D- C:\Users\gilles\Appdata\Local\Temporary Internet Files O43 - CFD: 4/18/2011 - 11:53:38 AM - [24708] ----D- C:\Users\gilles\Appdata\Local\VirtualStore O43 - CFD: 5/2/2011 - 5:56:28 PM - [16384] ----D- C:\Users\gilles\Appdata\Local\Windows Live O43 - CFD: 5/2/2011 - 5:54:52 PM - [372494] ----D- C:\Users\gilles\Appdata\Local\Windows Live Writer O43 - CFD: 5/2/2011 - 5:55:08 PM - [0] ----D- C:\Users\gilles\Appdata\Local\{8560790F-8099-4F3A-B515-8683F8D357C3} O43 - CFD: 7/14/2009 - 6:54:34 AM - [14667] R---D- C:\Users\gilles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 4/10/2011 - 4:49:00 PM - [174] R---D- C:\Users\gilles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 6/16/2011 - 11:02:52 AM - [234] ----D- C:\Users\gilles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 6/18/2011 - 10:30:44 AM - [2947] ----D- C:\Users\gilles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis O43 - CFD: 7/14/2009 - 6:49:40 AM - [580] R---D- C:\Users\gilles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 4/10/2011 - 4:49:00 PM - [174] R---D- C:\Users\gilles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 4/17/2011 - 7:23:56 PM - [1485839] ----D- C:\Program Files (x86)\AbiWord O43 - CFD: 6/15/2011 - 12:31:22 AM - [164279724] ----D- C:\Program Files (x86)\Adobe O43 - CFD: 4/18/2011 - 2:45:50 PM - [1000684] ----D- C:\Program Files (x86)\Bing Bar Installer O43 - CFD: 6/15/2011 - 12:31:22 AM - [387081818] ----D- C:\Program Files (x86)\Common Files O43 - CFD: 10/23/2010 - 7:25:50 PM - [1346142688] ----D- C:\Program Files (x86)\CyberLink O43 - CFD: 10/23/2010 - 7:40:48 PM - [107253688] ----D- C:\Program Files (x86)\EasyBits For Kids O43 - CFD: 5/15/2011 - 11:10:06 AM - [364549934] ----D- C:\Program Files (x86)\Google O43 - CFD: 5/2/2011 - 8:44:10 PM - [1565942428] ----D- C:\Program Files (x86)\Hewlett-Packard O43 - CFD: 10/23/2010 - 7:20:52 PM - [3123440] ----D- C:\Program Files (x86)\Hp O43 - CFD: 10/23/2010 - 7:44:16 PM - [284033141] ----D- C:\Program Files (x86)\HP Games O43 - CFD: 5/2/2011 - 8:47:12 PM - [172383714] --H-D- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 6/17/2011 - 10:16:54 AM - [4478992] ----D- C:\Program Files (x86)\Internet Explorer O43 - CFD: 4/10/2011 - 10:11:18 PM - [1466711148] ----D- C:\Program Files (x86)\League of Legends O43 - CFD: 5/13/2011 - 9:13:46 PM - [6093848] ----D- C:\Program Files (x86)\ma-config.com O43 - CFD: 10/23/2010 - 7:45:30 PM - [5214494] ----D- C:\Program Files (x86)\Microsoft O43 - CFD: 4/17/2011 - 6:08:24 PM - [11424302] ----D- C:\Program Files (x86)\Microsoft Application Virtualization Client O43 - CFD: 4/17/2011 - 6:08:24 PM - [6733244] ----D- C:\Program Files (x86)\Microsoft Office O43 - CFD: 6/16/2011 - 11:55:42 PM - [38411899] ----D- C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 4/10/2011 - 4:43:20 PM - [1829877] ----D- C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 4/17/2011 - 7:22:18 PM - [3725912] ----D- C:\Program Files (x86)\Microsoft Works O43 - CFD: 5/19/2011 - 4:13:20 PM - [5587678] ----D- C:\Program Files (x86)\Microsoft XNA O43 - CFD: 4/12/2011 - 11:12:38 PM - [15715] ----D- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 7/14/2009 - 7:32:40 AM - [25757] ----D- C:\Program Files (x86)\MSBuild O43 - CFD: 4/18/2011 - 2:45:18 PM - [6837789] ----D- C:\Program Files (x86)\MSN Toolbar O43 - CFD: 4/12/2011 - 8:43:38 AM - [0] ----D- C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 4/10/2011 - 10:32:20 PM - [37736965] ----D- C:\Program Files (x86)\Mumble O43 - CFD: 10/23/2010 - 7:44:24 PM - [7515506] ----D- C:\Program Files (x86)\NewspaperDirect O43 - CFD: 4/10/2011 - 4:44:06 PM - [20281413] R---D- C:\Program Files (x86)\Online Services O43 - CFD: 4/10/2011 - 9:39:50 PM - [7460142] ----D- C:\Program Files (x86)\Pando Networks O43 - CFD: 10/23/2010 - 7:18:18 PM - [38014475] ----D- C:\Program Files (x86)\PDF Complete O43 - CFD: 10/23/2010 - 7:18:28 PM - [48439191] ----D- C:\Program Files (x86)\Realtek O43 - CFD: 7/14/2009 - 7:32:40 AM - [38597377] ----D- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 6/18/2011 - 1:00:52 PM - [18937396401] ----D- C:\Program Files (x86)\Steam O43 - CFD: 10/23/2010 - 7:18:40 PM - [0] --H-D- C:\Program Files (x86)\Temp O43 - CFD: 6/18/2011 - 10:30:44 AM - [388096] ----D- C:\Program Files (x86)\Trend Micro O43 - CFD: 7/14/2009 - 6:57:08 AM - [0] --H-D- C:\Program Files (x86)\Uninstall Information O43 - CFD: 4/10/2011 - 11:26:00 PM - [524800] ----D- C:\Program Files (x86)\Windows Defender O43 - CFD: 5/2/2011 - 5:49:46 PM - [146614464] ----D- C:\Program Files (x86)\Windows Live O43 - CFD: 4/12/2011 - 8:38:00 AM - [6180864] ----D- C:\Program Files (x86)\Windows Mail O43 - CFD: 4/12/2011 - 8:37:54 AM - [5024017] ----D- C:\Program Files (x86)\Windows Media Player O43 - CFD: 7/14/2009 - 7:32:40 AM - [12197556] ----D- C:\Program Files (x86)\Windows NT O43 - CFD: 4/10/2011 - 11:26:00 PM - [4417800] ----D- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 7/14/2009 - 7:32:42 AM - [189440] ----D- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 4/10/2011 - 11:26:02 PM - [5994166] ----D- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 6/18/2011 - 3:19:30 PM - [3900606] ----D- C:\Program Files (x86)\ZHPDiag O43 - CFD: 6/15/2011 - 12:31:26 AM - [3606170] ----D- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 4/17/2011 - 6:08:24 PM - [99136] ----D- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 10/23/2010 - 7:18:26 PM - [3989920] ----D- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 10/23/2010 - 7:33:52 PM - [38513660] ---AD- C:\Program Files (x86)\Common Files\LightScribe O43 - CFD: 10/23/2010 - 7:32:52 PM - [51570] ---AD- C:\Program Files (x86)\Common Files\LS Getting Started O43 - CFD: 5/19/2011 - 4:13:20 PM - [44228634] ----D- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 7/14/2009 - 5:20:10 AM - [2702] ----D- C:\Program Files (x86)\Common Files\Services O43 - CFD: 7/14/2009 - 5:20:10 AM - [41103783] ----D- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 6/3/2011 - 11:37:38 AM - [403240] ----D- C:\Program Files (x86)\Common Files\Steam O43 - CFD: 4/20/2011 - 6:42:10 PM - [0] ----D- C:\Program Files (x86)\Common Files\Symantec Shared O43 - CFD: 4/10/2011 - 11:26:00 PM - [10102259] ----D- C:\Program Files (x86)\Common Files\System O43 - CFD: 4/10/2011 - 4:41:02 PM - [244980744] ----D- C:\Program Files (x86)\Common Files\Windows Live ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.9CC99862EC88F04DF241FE2A8B96A484] - 5/31/2011 - 7:07:08 PM ---A- . (...) -- C:\Windows\DirectX.log [242445] O44 - LFC:[MD5.B8576757416F471C9D7F83B2B04B1F9D] - 6/14/2011 - 11:29:13 PM ---A- . (.AVAST Software - avast! Screen Saver stub.) -- C:\Windows\avastSS.scr [40112] O44 - LFC:[MD5.95C17AB35101EEBB1182668E19915ECC] - 6/14/2011 - 11:29:13 PM ---A- . (.AVAST Software - avast! start-up scanner.) -- C:\Windows\System32\aswBoot.exe [199304] O44 - LFC:[MD5.00A99667BE803AE83D07533F59619C97] - 6/15/2011 - 5:34:12 PM ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [1551212] O44 - LFC:[MD5.1A9E83B80638F5F185A8DB3942937703] - 6/15/2011 - 5:34:12 PM ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [106376] O44 - LFC:[MD5.35EEC941BA099899F9458D96EA5A5363] - 6/15/2011 - 5:34:12 PM ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [130734] O44 - LFC:[MD5.09DDE6B0857D3F7C55CAF4BF951FB0C0] - 6/15/2011 - 5:34:12 PM ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [616254] O44 - LFC:[MD5.B1BC2C8A72FF919548EAAA0FE5AF3332] - 6/15/2011 - 5:34:12 PM ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [704686] O44 - LFC:[MD5.2F3A1CF15D59656F19CE3D8EDA71C546] - 6/15/2011 - 9:08:02 AM ---A- . (...) -- C:\Windows\PFRO.log [278254] O44 - LFC:[MD5.C1EC6986F9837EC1CBA551450C293DC9] - 6/17/2011 - 9:16:48 AM ---A- . (...) -- C:\DUMP3986.tmp [301176] O44 - LFC:[MD5.6609BCDFC8FECE842289B61E2EA9BAA0] - 6/17/2011 - 9:17:58 AM ---A- . (...) -- C:\Windows\SysNative\FNTCACHE.DAT [285584] O44 - LFC:[MD5.86FDC820341797CCFD00EBE1CA6905E5] - 6/18/2011 - 12:00:27 PM -S-A- . (...) -- C:\Windows\bootstat.dat [67584] O44 - LFC:[MD5.911DF8211885862496949A8EAEA3CBE0] - 6/18/2011 - 12:00:32 PM ---A- . (...) -- C:\Windows\setupact.log [43716] O44 - LFC:[MD5.C5109F9B943F6F45948714E806CB2552] - 6/18/2011 - 12:07:54 PM --HA- . (...) -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [15792] O44 - LFC:[MD5.C5109F9B943F6F45948714E806CB2552] - 6/18/2011 - 12:07:54 PM --HA- . (...) -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [15792] O44 - LFC:[MD5.8CEE1800FEFFFFFF57494E444F577E31] - 6/18/2011 - 1:53:49 PM ---A- . (...) -- C:\Windows\WindowsUpdate.log [2043182] ---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\System32\Drivers\volmgrx.sys (.not file.) ---\\ MountPoints2 Shell Key (O51) O51 - MPSK:{4ec24a85-dedb-11df-8911-806e6f6e6963}\AutoRun\command. (...) -- E:\setup\rsrc\Autorun.exe (.not file.) ---\\ Trojan Driver Search Data (HKLM) (O52) O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm ---\\ Microsoft Control Security Providers (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll ---\\ Microsoft Windows Policies System (O55) O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3 O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1 O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0 O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"= O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"= O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 ---\\ Microsoft Windows Policies Explorer (O56) O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0 O56 - MWPE:[HKLM\...\policies\Explorer] - "EnableShellExecuteHooks"=1 ---\\ Liste des Drivers Système (O58) O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 7/14/2009 - 2:52:21 AM ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\system32\drivers\adp94xx.sys [491088] O58 - SDL:[MD5.597F78224EE9224EA1A13D6350CED962] - 7/14/2009 - 2:52:21 AM ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\system32\drivers\adpahci.sys [339536] O58 - SDL:[MD5.E109549C90F62FB570B9540C4B148E54] - 7/14/2009 - 2:52:21 AM ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\system32\drivers\adpu320.sys [182864] O58 - SDL:[MD5.5812713A477A3AD7363C7438CA2EE038] - 7/14/2009 - 2:52:21 AM ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\system32\drivers\aliide.sys [15440] O58 - SDL:[MD5.EC7EBAB00A4D8448BAB68D1E49B4BEB9] - 3/11/2011 - 7:22:41 AM ---A- . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\system32\drivers\amdsata.sys [107904] O58 - SDL:[MD5.F67F933E79241ED32FF46A4F29B5120B] - 7/14/2009 - 2:52:20 AM ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows -.) -- C:\Windows\system32\drivers\amdsbs.sys [194128] O58 - SDL:[MD5.DB27766102C7BF7E95140A2AA81D042E] - 3/11/2011 - 7:22:40 AM ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\system32\drivers\amdxata.sys [27008] O58 - SDL:[MD5.C484F8CEB1717C540242531DB7845C4E] - 7/14/2009 - 2:52:21 AM ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\system32\drivers\arc.sys [87632] O58 - SDL:[MD5.019AF6924AEFE7839F61C830227FE79C] - 7/14/2009 - 2:52:21 AM ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\system32\drivers\arcsas.sys [97856] O58 - SDL:[MD5.F1DBE3D02FFCDEE5246F29B0ECEBE6E0] - 5/10/2011 - 12:59:37 PM ---A- . (.AVAST Software - avast! File System Access Blocking Driver.) -- C:\Windows\system32\drivers\aswFsBlk.sys [22360] O58 - SDL:[MD5.5E4CEA85A34094AEA6F2774BF52F07EA] - 5/10/2011 - 1:04:52 PM ---A- . (.AVAST Software - avast! Filtering TDI driver.) -- C:\Windows\system32\drivers\aswFW.sys [127832] O58 - SDL:[MD5.F3E75DD1BCC358FB4629357AD09E7C84] - 5/10/2011 - 12:59:48 PM ---A- . (.AVAST Software - avast! File System Minifilter for Windows 2003/Vista.) -- C:\Windows\system32\drivers\aswMonFlt.sys [64344] O58 - SDL:[MD5.518B8D447A1975AB46DA093A2E743256] - 2/23/2011 - 1:34:54 PM ---A- . (.ALWIL Software - avast! Filtering NDIS driver.) -- C:\Windows\system32\drivers\aswNdis.sys [12368] O58 - SDL:[MD5.1FB2B4C9119F130BA7EA8F75054CD6B1] - 5/10/2011 - 1:03:36 PM ---A- . (.AVAST Software - avast! Filtering NDIS driver.) -- C:\Windows\system32\drivers\aswNdis2.sys [253784] O58 - SDL:[MD5.FCCBDC045DC12AFD1508205117E7ED11] - 5/10/2011 - 12:59:59 PM ---A- . (.AVAST Software - avast! TDI RDR Driver.) -- C:\Windows\system32\drivers\aswRdr.sys [31064] O58 - SDL:[MD5.5824DCA602A0A30E866BC2AC98C6D970] - 5/10/2011 - 1:04:08 PM ---A- . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\system32\drivers\aswSnx.sys [600920] O58 - SDL:[MD5.AF07B4BEF920F90205148F3A05E2974C] - 5/10/2011 - 1:04:07 PM ---A- . (.AVAST Software - avast! self protection module.) -- C:\Windows\system32\drivers\aswSP.sys [287576] O58 - SDL:[MD5.A3ECA5AF3B4823A523C285A8DF0F9E4F] - 5/10/2011 - 1:02:41 PM ---A- . (.AVAST Software - avast! TDI Filter Driver.) -- C:\Windows\system32\drivers\aswTdi.sys [53592] O58 - SDL:[MD5.EB1B01221C444A669F85136C43A40B74] - 4/8/2010 - 8:13:30 PM ---A- . (.AVerMedia TECHNOLOGIES, Inc. - AVer7231.) -- C:\Windows\system32\drivers\AVer7231_x64.sys [1757952] O58 - SDL:[MD5.7D8451566FE3D9332E79751E58EC2EE0] - 11/14/2009 - 12:20:14 AM ---A- . (.AVerMedia TECHNOLOGIES, Inc. - AVerMedia H193 IR Driver for eHome.) -- C:\Windows\system32\drivers\AVer888RCIR_64.sys [39936] O58 - SDL:[MD5.B5ACE6968304A3900EEB1EBFD9622DF2] - 6/10/2009 - 9:34:23 PM ---A- . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver..) -- C:\Windows\system32\drivers\b57nd60a.sys [270848] O58 - SDL:[MD5.F09EEE9EDC320B5E1501F749FDE686C8] - 6/10/2009 - 9:41:06 PM ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\system32\drivers\BrFiltLo.sys [18432] O58 - SDL:[MD5.B114D3098E9BDB8BEA8B053685831BE6] - 6/10/2009 - 9:41:06 PM ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\system32\drivers\BrFiltUp.sys [8704] O58 - SDL:[MD5.43BEA8D483BF1870F018E2D02E06A5BD] - 7/14/2009 - 2:19:07 AM ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\system32\drivers\BrSerId.sys [286720] O58 - SDL:[MD5.A6ECA2151B08A09CACECA35C07F05B42] - 6/10/2009 - 9:41:10 PM ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\system32\drivers\BrSerWdm.sys [47104] O58 - SDL:[MD5.B79968002C277E869CF38BD22CD61524] - 6/10/2009 - 9:41:10 PM ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\system32\drivers\BrUsbMdm.sys [14976] O58 - SDL:[MD5.A87528880231C54E75EA7A44943B38BF] - 6/10/2009 - 9:41:10 PM ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\system32\drivers\BrUsbSer.sys [14720] O58 - SDL:[MD5.3E5B191307609F7514148C6832BB0842] - 6/10/2009 - 9:34:28 PM ---A- . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\system32\drivers\bxvbda.sys [468480] O58 - SDL:[MD5.E19D3F095812725D88F9001985B94EDD] - 7/14/2009 - 2:52:31 AM ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\cmdide.sys [17488] O58 - SDL:[MD5.A398ED024F739E7BE74ECFFA8A713A89] - 4/27/2010 - 5:43:50 PM ---A- . (...) -- C:\Windows\system32\drivers\cpqdfw.sys [24376] O58 - SDL:[MD5.10FB0FF62AF6262BF88E3607E2AE2A69] - 4/27/2010 - 5:43:50 PM ---A- . (...) -- C:\Windows\system32\drivers\cqcpu.sys [24376] O58 - SDL:[MD5.0E5DA5369A0FCAEA12456DD852545184] - 7/14/2009 - 2:47:48 AM ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\system32\drivers\elxstor.sys [530496] O58 - SDL:[MD5.DC5D737F51BE844D8C82C695EB17372F] - 6/10/2009 - 9:34:33 PM ---A- . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\system32\drivers\evbda.sys [3286016] O58 - SDL:[MD5.F2523EF6460FC42405B12248338AB2F0] - 6/10/2009 - 9:31:59 PM ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\system32\drivers\hcw85cir.sys [31232] O58 - SDL:[MD5.0886D440058F203EBA0E1825E4355914] - 7/14/2009 - 2:47:48 AM ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\system32\drivers\HpSAMD.sys [77888] O58 - SDL:[MD5.B75E45C564E944A2657167D197AB29DA] - 3/11/2011 - 7:23:00 AM ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\system32\drivers\iaStorV.sys [410496] O58 - SDL:[MD5.5C18831C61933628F5BB0EA2675B9D21] - 7/14/2009 - 2:48:04 AM ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\system32\drivers\iirsp.sys [44112] O58 - SDL:[MD5.1A93E54EB0ECE102495A51266DCDB6A6] - 7/14/2009 - 2:48:04 AM ---A- . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_fc.sys [114752] O58 - SDL:[MD5.1047184A9FDC8BDBFF857175875EE810] - 7/14/2009 - 2:48:04 AM ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas.sys [106560] O58 - SDL:[MD5.30F5C0DE1EE8B5BC9306C1F0E4A75F93] - 7/14/2009 - 2:48:04 AM ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas2.sys [65600] O58 - SDL:[MD5.0504EACAFF0D3C8AED161C4B0D369D4A] - 7/14/2009 - 2:48:04 AM ---A- . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_scsi.sys [115776] O58 - SDL:[MD5.A55805F747C6EDB6A9080D7C633BD0F4] - 7/14/2009 - 2:48:04 AM ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for.) -- C:\Windows\system32\drivers\megasas.sys [35392] O58 - SDL:[MD5.BAF74CE0072480C3B6B7C13B2A94D6B3] - 7/14/2009 - 2:48:04 AM ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\system32\drivers\MegaSR.sys [284736] O58 - SDL:[MD5.064AB63C9A588D2611306AE16D017E7E] - 12/19/2009 - 4:33:34 AM ---A- . (.Ralink Technology, Corp. - Ralink 802.11 Wireless Adapter Driver.) -- C:\Windows\system32\drivers\netr28x.sys [852256] O58 - SDL:[MD5.77889813BE4D166CDAB78DDBA990DA92] - 7/14/2009 - 2:48:26 AM ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\system32\drivers\nfrd960.sys [51264] O58 - SDL:[MD5.CDDD4478757288DF4BB1494BFD084259] - 1/28/2010 - 5:25:04 PM ---A- . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\system32\drivers\nvhda64v.sys [86120] O58 - SDL:[MD5.2F34FC7ECB80FA0168FE8683CA1875B3] - 5/22/2010 - 3:57:10 AM ---A- . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version 197.93.) -- C:\Windows\system32\drivers\nvlddmkm.sys [13918696] O58 - SDL:[MD5.A4D9C9A608A97F59307C2F2600EDC6A4] - 3/11/2011 - 7:23:06 AM ---A- . (.NVIDIA Corporation - NVIDIA® nForce RAID Driver.) -- C:\Windows\system32\drivers\nvraid.sys [148352] O58 - SDL:[MD5.6C1D5F70E7A6A3FD1C90D840EDC048B9] - 3/11/2011 - 7:23:06 AM ---A- . (.NVIDIA Corporation - NVIDIA® nForce Sata Performance Driver.) -- C:\Windows\system32\drivers\nvstor.sys [166272] O58 - SDL:[MD5.A53A15A11EBFD21077463EE2C7AFEEF0] - 7/14/2009 - 2:45:46 AM ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\system32\drivers\ql2300.sys [1524816] O58 - SDL:[MD5.4F6D12B51DE1AAEFF7DC58C4D75423C8] - 7/14/2009 - 2:45:45 AM ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\system32\drivers\ql40xx.sys [128592] O58 - SDL:[MD5.7EA8D2EB9BBFD2AB8A3117A1E96D3B3A] - 3/4/2010 - 3:43:00 PM ---A- . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Driver.) -- C:\Windows\system32\drivers\Rt64win7.sys [346144] O58 - SDL:[MD5.2B888BBDF6962E608A5E1A1D7A626ADF] - 6/8/2010 - 11:21:02 AM ---A- . (.Realtek Semiconductor Corp. - Realtek® High Definition Audio Function Driver.) -- C:\Windows\system32\drivers\RTKVHD64.sys [2394216] O58 - SDL:[MD5.3EA8A16169C26AFBEB544E0E48421186] - 6/10/2009 - 9:37:19 PM ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\system32\drivers\secdrv.sys [23040] O58 - SDL:[MD5.843CAF1E5FDE1FFD5FF768F23A51E2E1] - 7/14/2009 - 2:45:45 AM ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\system32\drivers\sisraid2.sys [43584] O58 - SDL:[MD5.6A6C106D42E9FFFF8B9FCB4F754F6DA4] - 7/14/2009 - 2:45:46 AM ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\system32\drivers\sisraid4.sys [80464] O58 - SDL:[MD5.F3817967ED533D08327DC73BC4D5542A] - 7/14/2009 - 2:45:55 AM ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\system32\drivers\stexstor.sys [24656] O58 - SDL:[MD5.E5689D93FFE4E5D66C0178761240DD54] - 7/14/2009 - 2:45:55 AM ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\viaide.sys [17488] O58 - SDL:[MD5.5E2016EA6EBACA03C04FEAC5F330D997] - 7/14/2009 - 2:45:55 AM ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\system32\drivers\vsmraid.sys [161872] ---\\ Liste des outils de nettoyage (O63) O63 - Logiciel: ZHPDiag 1.27 - (.Nicolas Coolman.) [HKLM][64Bits] -- ZHPDiag_is1 O63 - Logiciel: HiJackThis - (.Trend Micro.) [HKLM][64Bits] -- {45A66726-69BC-466B-A7A4-12FCBA4883D7} ---\\ File Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] "%1" %* (.not file.) O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] "%1" %* (.not file.) O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] "%1" %* (.not file.) O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] "%1" %* (.not file.) O67 - Shell Spawning: <.html> <ChromeHTML>[HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.html> <ChromeHTML>[HKCU\..\open\Command] (.Not Key.) O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] "%1" %* (.not file.) O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] "%1" %* (.not file.) O67 - Shell Spawning: <.com> <comfile>[HKCR\..\open\Command] "%1" %* (.not file.) O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] "%1" %* (.not file.) O67 - Shell Spawning: <.html> <ChromeHTML>[HKCR\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O67 - Shell Spawning: <.js> <JSFile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ---\\ Start Menu Internet (O68) O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe ---\\ Search Browser Infection (O69) O69 - SBI: SearchScopes [HKCU] {1F97D31F-BD42-4DE6-BC25-A466CFFED001} [DefaultScope] - (Google) - Google O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - Google O69 - SBI: SearchScopes [HKCU] {7D092370-A192-4411-984A-A66BB76428C6} - (Bing) - Bing O69 - SBI: SearchScopes [HKCU] {D54AE2AD-4C85-473B-B188-90C5EE423988} - (Wikipedia) - Wikipédia, l'encyclopédie libre O69 - SBI: SearchScopes [HKCU] {FF957A94-F9F0-43D5-8F28-297CB6F70C00} - (Yahoo) - Yahoo! Search - Recherche Web ---\\ Recherche particuliere à la racine de certains dossiers (O84) [MD5.96FADF615E90F369FD4D0799B7453A16] [sPRF] (.Adobe Systems, Inc. - Adobe® Flash® Player Installer/Uninstaller 10.2 r159.) -- C:\Users\gilles\AppData\Local\Temp\FlashPlayerUpdate.exe [2871968] [MD5.FA9073DD1B5770752F6F0EF440FA8AAE] [sPRF] (...) -- C:\Users\gilles\AppData\Local\Temp\HPAsset.exe.manifest [499] [MD5.EC56DD238212A130E99C4FC922323330] [sPRF] (...) -- C:\Users\gilles\AppData\Local\Temp\hpdobject.exe.manifest [501] [MD5.1937B365287C530F7B0DADF9F79302F9] [sPRF] (...) -- C:\Users\gilles\AppData\Local\Temp\HPDownload.exe.manifest [501] [MD5.1B944E012024B261A7DECAA06CB60BC8] [sPRF] (...) -- C:\Users\gilles\AppData\Local\Temp\LeagueofLegends.exe.log [3014662] [MD5.22E7E57CF4FBC0FD7E02B98131A3DE93] [sPRF] (...) -- C:\Users\gilles\AppData\Local\Temp\ResetFileTime.exe.manifest [504] [MD5.05D5331AA8A140B7D6707D309021568D] [sPRF] (.Hewlett-Packard - Setup Launcher.) -- C:\Users\gilles\AppData\Local\Temp\setupa2.exe [53248] [MD5.7551E8245A510BA539123A71C7E16407] [sPRF] (.Hewlett-Packard - Setup Launcher.) -- C:\Users\gilles\AppData\Local\Temp\SetupAC.exe [53248] [MD5.D78221BAD9D20804CCEE7FDCEB25C98A] [sPRF] (.Hewlett-Packard Development Company, L.P. - HP Support Assistant Application Update.) -- C:\Users\gilles\AppData\Local\Temp\sp49905.exe.exe [48813128] [MD5.1D70BE6C8303EB57079B005BA6B399AD] [sPRF] (.Eclipse Foundation - SWT for Windows native library.) -- C:\Users\gilles\AppData\Local\Temp\swt-win32-3349.dll [139672] [MD5.176EF2A7510C7A93EC1717E270AE20FE] [sPRF] (...) -- C:\Users\gilles\AppData\Local\Temp\temp.bat [137] [MD5.D4934A78E36C1329FF9B5828B3AB5A45] [sPRF] (.Hewlett-Packard Company - HP Support Assistant.) -- C:\Users\gilles\AppData\Local\Temp\UninstallHPTCA.exe [450616] ---\\ Firewall Active Exception List (FirewallRules) (O87) O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\spoolsv.exe (.not file.) O87 - FAEL: "FPS-SpoolSvc-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\spoolsv.exe (.not file.) O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" |Out - Domain - P6 - TRUE | .(...) -- C:\Windows\system32\lsass.exe (.not file.) O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\services.exe (.not file.) O87 - FAEL: "RemoteSvcAdmin-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\services.exe (.not file.) O87 - FAEL: "NetPres-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-WSD-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-WSD-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "{42C63A43-894D-4B60-B2B1-2A0B3CC28791}" | In - None - P6 - TRUE | .(.CyberLink Corp. - PowerDirector.) -- c:\Program Files (x86)\CyberLink\PowerDirector\PDR8.exe O87 - FAEL: "{C078E52A-B435-478B-893F-4B78CBCBC121}" |In - None - P6 - TRUE | .(...) -- C:\Program Files (x86)\Hewlett-Packard\Media\DVD\HPTouchSmartMusic.exe (.not file.) O87 - FAEL: "{5C56CED5-E233-4697-80D8-D66239684DF9}" |In - None - P6 - TRUE | .(...) -- C:\Program Files (x86)\Hewlett-Packard\Media\DVD\HPTouchSmartPhoto.exe (.not file.) O87 - FAEL: "{80722D50-7640-410E-B297-28FF282993BD}" |In - None - P6 - TRUE | .(...) -- C:\Program Files (x86)\Hewlett-Packard\Media\DVD\HPTouchSmartVideo.exe (.not file.) O87 - FAEL: "{0B906AFD-6339-4309-9163-D4B476ACE5B3}" |In - None - P6 - TRUE | .(...) -- C:\Program Files (x86)\Hewlett-Packard\Media\DVD\TSMAgent.exe (.not file.) O87 - FAEL: "{B59174FD-09C4-47A6-82C6-81484B50AD21}" |In - None - P6 - TRUE | .(...) -- C:\Program Files (x86)\Hewlett-Packard\Media\DVD\Kernel\CLML\CLMLSvc.exe (.not file.) O87 - FAEL: "{1E9DE7DE-D7BD-4D12-9A23-F731FA78D02A}" | In - None - P6 - TRUE | .(.CyberLink Corp. - HP DVDSmart Main Program.) -- C:\Program Files (x86)\Hewlett-Packard\Media\DVD\HPDVDSmart.exe O87 - FAEL: "{765FE122-0299-446A-8958-57E6D8557566}" | In - None - P6 - TRUE | .(.CyberLink Corp. - HP MediaSmart Photo Main Program.) -- C:\Program Files (x86)\Hewlett-Packard\MediaSmart\Photo\HPMediaSmartPhoto.exe O87 - FAEL: "{B00409A9-C618-4DE2-BA14-91DD895D15DA}" | In - None - P6 - TRUE | .(.CyberLink Corp. - HP MediaSmart Video.) -- C:\Program Files (x86)\Hewlett-Packard\MediaSmart\Video\HPMediaSmartVideo.exe O87 - FAEL: "{36C18779-E203-4B08-80AA-DD25A8EF0AF1}" | In - None - P6 - TRUE | .(.CyberLink Corp. - HP MediaSmart Music Main Program.) -- C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Music\HPTouchSmartMusic.exe O87 - FAEL: "{3DDC1C80-0B6A-4C68-9ADE-4273FE422DFF}" | In - Public - P6 - TRUE | .(.EasyBits Software AS - EasyBits My First Browser.) -- C:\Program Files (x86)\EasyBits For Kids\Programs\My First Browser\MyFirstBrowser.exe O87 - FAEL: "{CEFBFFE7-DCE7-4290-A9C8-71B7E5062633}" | In - Public - P17 - TRUE | .(.EasyBits Software AS - EasyBits My First Browser.) -- C:\Program Files (x86)\EasyBits For Kids\Programs\My First Browser\MyFirstBrowser.exe O87 - FAEL: "{8A0311B5-CFD4-47BA-8E7A-1B0DEFF042FC}" |In - Private - P6 - TRUE | .(...) -- C:\Windows\system32\spoolsv.exe (.not file.) O87 - FAEL: "{9F385D74-B208-48DD-8531-B26EF47AF963}" | In - None - P6 - TRUE | .(.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe O87 - FAEL: "{4F057BEB-7715-4B7F-97EF-2D0A89D5790E}" | In - Private - P6 - TRUE | .(.Valve Corporation - Steam.) -- C:\Program Files (x86)\Steam\Steam.exe O87 - FAEL: "{CB9B69A6-5075-49A1-AF07-3FF5A88191C4}" | In - Private - P17 - TRUE | .(.Valve Corporation - Steam.) -- C:\Program Files (x86)\Steam\Steam.exe O87 - FAEL: "{C834801A-412D-4E44-8DD8-EF7EC49183C9}" | In - Domain - P6 - TRUE | .(.Pas de propriétaire - Pando Media Booster.) -- C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe O87 - FAEL: "{F6E40357-4039-410D-8A02-8A2C25396EDD}" | In - Domain - P17 - TRUE | .(.Pas de propriétaire - Pando Media Booster.) -- C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe O87 - FAEL: "{752EBD32-2503-42AE-8DC8-A883F91C8BEF}" | In - Private - P6 - TRUE | .(.Pas de propriétaire - Pando Media Booster.) -- C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe O87 - FAEL: "{9F37199A-709C-4B34-954C-505DB1C5BC41}" | In - Private - P17 - TRUE | .(.Pas de propriétaire - Pando Media Booster.) -- C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe O87 - FAEL: "{BF996BCE-3209-4B37-BEFC-A4581D3315CE}" | In - None - P17 - TRUE | .(.Pas de propriétaire - Pando Media Booster.) -- C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe O87 - FAEL: "{BD35F943-36A5-4F19-923C-1BAD28A07885}" |In - Private - P6 - TRUE | .(...) -- C:\Riot Games\League of Legends\air\LolClient.exe (.not file.) O87 - FAEL: "{EABDE5B9-3F76-4FFB-B721-E6F856A17FFE}" |In - Private - P17 - TRUE | .(...) -- C:\Riot Games\League of Legends\air\LolClient.exe (.not file.) O87 - FAEL: "{1FF13CA2-0F4D-42BF-A1BA-518D54994597}" |In - Private - P6 - TRUE | .(...) -- C:\Riot Games\League of Legends\game\League of Legends.exe (.not file.) O87 - FAEL: "{7B9C2848-6FB1-4147-AB8B-EB03C2D2FCFA}" |In - Private - P17 - TRUE | .(...) -- C:\Riot Games\League of Legends\game\League of Legends.exe (.not file.) O87 - FAEL: "TCP Query User{6893D867-9E1D-4BD4-BCF7-89B5405C67CD}C:\program files (x86)\steam\steamapps\evangile\team fortress 2\hl2.exe" |In - Private - P6 - TRUE | .(...) -- C:\program files (x86)\steam\steamapps\evangile\team fortress 2\hl2.exe (.not O87 - FAEL: "UDP Query User{6C22E5AE-BB97-4FF7-A89B-738ED55A2878}C:\program files (x86)\steam\steamapps\evangile\team fortress 2\hl2.exe" |In - Private - P17 - TRUE | .(...) -- C:\program files (x86)\steam\steamapps\evangile\team fortress 2\hl2.exe (.not O87 - FAEL: "TCP Query User{EAD31FA1-C81E-4482-B765-70F777373651}C:\riot games\league of legends\lol.launcher.exe" | In - Private - P6 - TRUE | .(...) -- C:\riot games\league of legends\lol.launcher.exe O87 - FAEL: "UDP Query User{A1C17019-E95C-4922-9083-0448182232A6}C:\riot games\league of legends\lol.launcher.exe" | In - Private - P17 - TRUE | .(...) -- C:\riot games\league of legends\lol.launcher.exe O87 - FAEL: "TCP Query User{E0CA4E26-9438-43FF-B106-1E71C39F0B5F}C:\program files (x86)\google\google earth\client\googleearth.exe" | In - Private - P6 - TRUE | .(.Google.) -- C:\program files (x86)\google\google earth\client\googleearth.exe O87 - FAEL: "UDP Query User{25A90B10-10DB-4BB2-929D-8EAF3B144847}C:\program files (x86)\google\google earth\client\googleearth.exe" | In - Private - P17 - TRUE | .(.Google.) -- C:\program files (x86)\google\google earth\client\googleearth.exe O87 - FAEL: "TCP Query User{3A1808D3-9F5D-48C8-AA98-C2FBD2F5F7CF}C:\program files (x86)\steam\steamapps\common\altitude\altitude.exe" | In - Private - P6 - TRUE | .(...) -- C:\program files (x86)\steam\steamapps\common\altitude\altitude.exe O87 - FAEL: "UDP Query User{4A5C83B4-E9ED-4F91-A7A7-C63812C2CF0B}C:\program files (x86)\steam\steamapps\common\altitude\altitude.exe" | In - Private - P17 - TRUE | .(...) -- C:\program files (x86)\steam\steamapps\common\altitude\altitude.exe O87 - FAEL: "{A3D37301-1638-41A5-8C2C-91ED7AD7C788}" | In - Private - P6 - TRUE | .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe O87 - FAEL: "{B3AFCC0F-642F-458D-B811-BC2C14E88D40}" | In - Private - P17 - TRUE | .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe O87 - FAEL: "{B1D1C4E6-5DBC-4172-A89F-75B8C2930CAA}" | In - Private - P6 - TRUE | .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe O87 - FAEL: "{3FDCBA05-355A-4C7A-816D-AC2C4C5EF85B}" | In - Private - P17 - TRUE | .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe O87 - FAEL: "{247D9BE1-E94B-4407-8C33-1F0168FF9573}" | In - Private - P6 - TRUE | .(.CybelSoft - Service de détection matériel.) -- C:\Program Files (x86)\ma-config.com\maconfservice.exe O87 - FAEL: "{8C2A3567-3D6F-41CA-B5E7-639941FCD320}" | In - Private - P17 - TRUE | .(.CybelSoft - Service de détection matériel.) -- C:\Program Files (x86)\ma-config.com\maconfservice.exe O87 - FAEL: "{D14541E8-B048-4BF7-B116-982C1416F73A}" | In - Private - P6 - TRUE | .(.Maxis, une division d’Electronic Arts Inc. - Darkspore™.) -- C:\Program Files (x86)\Steam\SteamApps\common\darkspore\DarksporeBin\Darkspore.exe O87 - FAEL: "{CA19AEA6-E9C4-4895-807D-B31B9052CC40}" | In - Private - P17 - TRUE | .(.Maxis, une division d’Electronic Arts Inc. - Darkspore™.) -- C:\Program Files (x86)\Steam\SteamApps\common\darkspore\DarksporeBin\Darkspore.exe O87 - FAEL: "{9A626783-082F-4E56-8D09-2E3A0DEB5BEC}" | In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\darkspore\Support\EA Help\Electronic_Arts_Technical_Support.htm O87 - FAEL: "{E146C8E9-EC91-46B4-A503-3DEB0500A406}" | In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\darkspore\Support\EA Help\Electronic_Arts_Technical_Support.htm O87 - FAEL: "TCP Query User{4EF6113A-1EB3-4303-98DD-9B1D2184EF41}C:\program files (x86)\steam\steamapps\common\worms reloaded\wormsreloaded.exe" | In - Public - P6 - TRUE | .(.Team17 Software Ltd..) -- C:\program files (x86)\steam\steamapps\common\worms O87 - FAEL: "UDP Query User{E1DDB33B-2319-429F-9B85-6E96CFB8E8FD}C:\program files (x86)\steam\steamapps\common\worms reloaded\wormsreloaded.exe" | In - Public - P17 - TRUE | .(.Team17 Software Ltd..) -- C:\program files (x86)\steam\steamapps\common\worms O87 - FAEL: "{8405A228-3372-44D3-845F-B3FE52B7EC52}" | In - Private - P6 - TRUE | .(.Splash Damage, Ltd. - Brink.) -- C:\Program Files (x86)\Steam\SteamApps\common\brink\brink.exe O87 - FAEL: "{AED39B11-B3D0-4DB1-B07B-1E18FE3445E7}" | In - Private - P17 - TRUE | .(.Splash Damage, Ltd. - Brink.) -- C:\Program Files (x86)\Steam\SteamApps\common\brink\brink.exe O87 - FAEL: "{DF1565AA-1274-43AE-9776-7F3F706DF447}" | In - Private - P6 - TRUE | .(.Sun Microsystems, Inc. - Java Platform SE binary.) -- C:\Program Files (x86)\Steam\SteamApps\common\spiral knights\java_vm\bin\javaw.exe O87 - FAEL: "{A690E549-AC78-41DB-9B7F-0D603FFD7A5D}" | In - Private - P17 - TRUE | .(.Sun Microsystems, Inc. - Java Platform SE binary.) -- C:\Program Files (x86)\Steam\SteamApps\common\spiral knights\java_vm\bin\javaw.exe O87 - FAEL: "{208FCD25-7138-408D-9C78-2793BC383378}" | In - Private - P6 - TRUE | .(.Pas de propriétaire - Heroes of Might and Magic V.) -- C:\Program Files (x86)\Steam\SteamApps\common\heroes of might and magic 5\bin\H5_Game.exe O87 - FAEL: "{6B01E655-E420-4608-B44D-D61122A3F490}" | In - Private - P17 - TRUE | .(.Pas de propriétaire - Heroes of Might and Magic V.) -- C:\Program Files (x86)\Steam\SteamApps\common\heroes of might and magic 5\bin\H5_Game.exe ---\\ Scan Additionnel (O88) Database Version : 8410 - (16/06/2011) Clés trouvées (Keys found) : 2 Valeurs trouvées (Values found) : 0 Dossiers trouvés (Folders found) : 0 Fichiers trouvés (Files found) : 0 [HKLM\Software\Classes\Wow6432Node\TypeLib\{2D5E2D34-BED5-4B9F-9793-A31E26E6806E}] =>Adware.Hotbar [HKLM\Software\Classes\TypeLib\{2D5E2D34-BED5-4B9F-9793-A31E26E6806E}] =>Adware.Hotbar ---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) SR - | Auto 6/6/2011 64952 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe SR - | Auto 5/10/2011 42184 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe SR - | Auto 5/10/2011 121000 | (avast! Firewall) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\afwServ.exe SR - | Auto 4/23/2010 514232 | (ezSharedSvc) . (.EasyBits Software AS.) - C:\Windows\System32\ezSharedSvcHost.exe SS - | Demand 4/4/2010 246520 | (GameConsoleService) . (.WildTangent, Inc..) - C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe SS - | Auto 5/6/2011 136176 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 5/6/2011 136176 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 5/6/2011 182768 | (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe SR - | Auto 11/15/2010 126520 | (HP Health Check Service) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe SR - | Auto 10/14/2010 92216 | (HPDrvMntSvc.exe) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe SS - | Demand 10/14/2010 751672 | (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe SR - | Auto 5/19/2010 73728 | (LightScribeService) . (.Hewlett-Packard Company.) - c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe SS - | Demand 5/1/2011 311744 | (maconfservice) . (.CybelSoft.) - C:\Program Files (x86)\ma-config.com\maconfservice.exe SR - | Auto 5/1/2011 0 | (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe SR - | Auto 5/7/2011 75136 | (PnkBstrA) . (...) - C:\Windows\system32\PnkBstrA.exe SS - | Demand 6/2/2011 403240 | (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe SR - | Auto 7/14/2009 20992 | C:\Windows\system32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\system32\svchost.exe ---\\ Recherche Master Boot Record Infection (MBR)(O80) Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, GMER - Rootkit Detector and Remover Run by gilles at 6/18/2011 3:20:35 PM device: opened successfully user: error reading MBR Disk trace: error: Read Descripteur non valide kernel: error reading MBR End of the scan (973 lines in 13mn AMs)(0) voila le scan. encore merci de m'aider. -
Pc qui s'éteint plus - Résolu.
akujunkan a répondu à un(e) sujet de akujunkan dans Analyses et éradication malwares
cela fonctionne ( moins de 10 secondes pour s'éteindre ) que dois je faire maintenant ? ( merci beaucoup ) -
Bonjour , voilà mon problème... Mon pc ne s'éteint pas , et si jamais il y arrive , il finit par redémarrer et reste a l'écran HP d'introduction , sa m'embéte vraiment parce que le pc est neuf ou presque... j'ai pas envie qu'il commence déjà à flancher... j'ai regardé d'autres postes qui ressemble à mon problème mais je suis pas sur que ce soit exactement le même soucis.. Merci d'avance !