Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Messages recommandés

Posté(e) (modifié)

Bonsoir à tous. A quoi puis-je m'attendre ? à une infection carabinée avec un espion muet indécelable en arrière-plan ? J'ai F-Secure, MBam, Msoft secu essentials, Spybot S&D, SuperAntiSpyware, un Ashampoo...pas en même temps quand même, on m'a dit que ça en faisait des passoires, pourquoi donc ?

Yahoo me dit,en gros, "activité suspecte décelée, vous ne pouvez ni envoyer ni recevoir pendant deux jours". Voilà. Je ne dois pas être le seul à qui ça arrive ? Est-ce que Hotmail va me sortir la même chose, ou Windows Live Messenger ou Gmail ?

Bien cordialement.

Modifié par eiapopeia86

  • Modérateurs
Posté(e) (modifié)

Bonsoir eiapopeia86,

 


  •  
  • Télécharge ZHPDiag de Nicolas Coolman :
  • Enregistre le sur ton bureau
  • Tu es sous Windows 7 => clique droit sur l'icône puis « éxécuter en tant quadministrateur »
  • Suis les instructions à l'écran
  • Clique sur l'icône LOUPE pour lancer l'analyse
  • Clique sur l'icône APPAREIL PHOTO pour copier le rapport, puis colle-le dans ta prochaine réponse
  • Tu peux également trouver le rapport sous C:\Program Files\ZebHelpProcess\ZHPDiag.txt

  •  

Modifié par Tonton57
Posté(e)

Bonsoir à tous. Merci de la réponse et du tuyau avunculaires, cher ami. Laissons tomber la langue savante : je me lance. Pourvu que ça marche, je suis un peu pataud avec les manips. Voici le rapport.

 

*************************************************************************

 

Rapport de ZHPDiag v1.27.1600 par Nicolas Coolman, Update du 10/02/2011

Run by Jean Marc at 10/02/2011 20:29:09

Web site : ZHPDiag Outil de diagnostic

Contact : nicolascoolman@yahoo.fr

 

---\\ Web Browser

MSIE: Internet Explorer v9.0.7930.16406

GCIE: Google Chrome v10.0.648.45 (Defaut)

 

---\\ System Information

Windows 7 Home Premium Edition, 64-bit (Build 7600)

Processor: Intel64 Family 6 Model 30 Stepping 5, GenuineIntel

Operating System: 64 Bits

Boot mode: Normal (Normal boot)

Total RAM: 6132 MB (55% free)

System Restore: Activé (Enable)

System drive C: has 150 GB (64%) free of 232 GB

 

---\\ Logged in mode

Computer Name: DONDUCIEL

User Name: Jean Marc

All Users Names: Jean Marc, DF, Administrateur,

Unselected Option: O45,O61,O62,O65,O66,O82

Logged in as Administrator

 

---\\ Environnement Variables

%AppData%=C:\Users\Jean Marc\AppData\Roaming

%LocalAppData%=C:\Users\Jean Marc\AppData\Local

%StartMenu%=C:\Users\Jean Marc\AppData\Roaming\Microsoft\Windows\Start Menu

 

---\\ DOS/Devices

C:\ Hard drive, Flash drive, Thumb drive (Free 150 Go of 232 Go)

D:\ Hard drive, Flash drive, Thumb drive (Free 225 Go of 233 Go)

E:\ CD-ROM drive (Not Inserted)

F:\ Hard drive, Flash drive, Thumb drive (Free 169 Go of 466 Go)

G:\ Hard drive, Flash drive, Thumb drive (Free 66 Go of 699 Go)

H:\ Hard drive, Flash drive, Thumb drive (Free 42 Go of 466 Go)

I:\ Hard drive, Flash drive, Thumb drive (Free 377 Go of 466 Go)

J:\ Floppy drive, Flash card reader, USB Key (Free 3 Go of 4 Go)

K:\ Floppy drive, Flash card reader, USB Key (Free 0 Go of 7 Go)

L:\ Floppy drive, Flash card reader, USB Key (Free 0 Go of 1 Go)

 

 

---\\ Security Center & Tools Informations

[HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: OK

[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoFolderOptions: OK

[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] DisableTaskMgr: OK

[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] DisableRegistryTools: OK

[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] NoDispScrSavPage: OK

[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK

 

 

---\\ Recherche particulière de fichiers génériques

[MD5.9AAAEC8DAC27AA17B053E6352AD233AE] - (.Microsoft Corporation - Explorateur Windows.) (.31/10/2009 07:34:59.) -- C:\Windows\Explorer.exe [2870272]

[MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 02:14:45.) -- C:\Windows\System32\Wininit.exe [96256]

 

 

---\\ Processus lancés

[MD5.BBFED9378719CF8E0C3DEDC979B5D649] - (.TOSHIBA - TOSHIBA Online Product Information.) -- C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\TOPI.exe [6203296]

[MD5.E8EF6A322B527855CC887E513E77812D] - (.Yahoo! Inc. - Yahoo! Messenger.) -- C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe [6174008]

[MD5.29C12F26C6075AB69C473E1B081F4651] - (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Jean Marc\AppData\Local\Google\Update\1.2.183.39\GoogleCrashHandler.exe [134808]

[MD5.F59036790ABC74BD138F155163556FBF] - (.Informer Technologies, Inc. - Software Informer.) -- C:\Program Files (x86)\Software Informer\softinfo.exe [2322501]

[MD5.DC29FDF88CDB666911F1E91E2C9CFCF5] - (.YouSendIt - YouSendIt Express.) -- C:\Program Files (x86)\YouSendIt\Express\YouSendIt.exe [197632]

[MD5.390679F7A217A5E73D756276C40AE887] - (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2260480]

[MD5.CD13CF80C71B72CFC0C810975C1EC892] - (.Pando Networks - pando.) -- C:\Program Files (x86)\Pando Networks\Pando\Pando.exe [4954008]

[MD5.260F9CF7B898C6D52E60380AFD1E0273] - (.TOSHIBA CORPORATION. - Bluetooth Manager.) -- C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe [2717024]

[MD5.32C26797AB646074A2BB562F9D10ADB5] - (.Microsoft Corporation - Microsoft Office OneNote Quick Launcher.) -- C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE [97680]

[MD5.0453771C03E43D18C805A291250057A0] - (.SourceForge.net - Password Safe Application.) -- C:\Program Files (x86)\Password Safe\pwsafe.exe [2539520]

[MD5.E1FE4FF49B44032A6B954DC9BD8FC801] - (.TOSHIBA - TOSHIBA USB Sleep and Charge Service.) -- C:\Program Files (x86)\TOSHIBA\TOSHIBA USB Sleep and Charge Utility\TUSBSleepChargeSrv.exe [253312]

[MD5.D7330569674CA0F889887075FB470011] - (.TOSHIBA Corporation. - SoundChanger.exe.) -- C:\Program Files\Toshiba\HDMICtrlMan\HCMSoundChanger.exe [705880]

[MD5.78C9CBD8D76275FF7969661B05B1C51C] - (.PrivacyRoot.com - Tray agent for WIPE.) -- C:\Program Files (x86)\Wipe 2011\wipetray.exe [208896]

[MD5.FBAF93425D4B5A6C48ABB5B7F81088CD] - (.F-Secure Corporation - F-Secure Settings and Statistics.) -- C:\Program Files (x86)\DartyBox Sécurité\Common\FSM32.EXE [201128]

[MD5.79FE6A371BC0ACB0F59E31EE9E31EF4A] - (.Nullsoft, Inc. - Winamp Agent.) -- C:\Program Files (x86)\Winamp\winampa.exe [74752]

[MD5.255E405D801CF01247390F38F92D8042] - (.Pas de propriétaire - Pas de description.) -- C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe [17408]

[MD5.93DB1FF92B03D24738A71E6E4992DFD3] - (.Sun Microsystems, Inc. - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [248552]

[MD5.7D21171DA91A625692DAA6E0F27D27B2] - (.Yahoo! Inc. - Yahoo! Mail Advisor.) -- C:\Program Files (x86)\Yahoo!\Common\YMailAdvisor.exe [174424]

[MD5.9681C3FE09B81CA909F6BCE57171CD0B] - (.Iomega Corporation - Iomega Home Media Network Discover Applicat.) -- C:\Program Files (x86)\Iomega\Home Storage Manager\Iomega Discovery.exe [152936]

[MD5.E3A584DFC135C03A232994A765BE85EF] - (.Applian Technologies, Inc. - FLV Service for Freecorder 4.) -- C:\Program Files (x86)\Freecorder\FLVSrvc.exe [167936]

[MD5.4B4D7626E7330F091100BFC22230ECF0] - (.RealNetworks, Inc. - RealNetworks Scheduler.) -- C:\Program Files (x86)\Real\realplayer\Update\realsched.exe [273544]

[MD5.D88E81DECD3014C45603B4B327B4EE1A] - (.TOSHIBA CORPORATION - ConfigFree Task Tray Menu.) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe [304496]

[MD5.8A07221789D46B2EA7DFCA2BC807572A] - (.TOSHIBA CORPORATION - ConfigFree Switch Manager Process.) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe [62848]

[MD5.177B2C051EB47694C81CF3F970C1C7C6] - (.TOSHIBA CORPORATION. - TosA2DP.) -- C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe [660808]

[MD5.A1091A01468D5CF18BBE39A9A1749EDB] - (.TOSHIBA CORPORATION. - TosBtHid.) -- C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe [83272]

[MD5.3EDF49DB54F3C85D0A89F58F3206C044] - (.TOSHIBA CORPORATION. - TosBtHSP.) -- C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe [308552]

[MD5.47B4FCDCE4C0A64A54BC9A66B176B0F1] - (.TOSHIBA CORPORATION. - TosAVRC.) -- C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe [447816]

[MD5.70CE44ED5F583AB9081293E8F8F84442] - (.Google Inc. - Google Chrome.) -- C:\Users\Jean Marc\AppData\Local\Google\Chrome\Application\chrome.exe [1004088]

[MD5.51138BEEA3E2C21EC44D0932C71762A8] - (.Pas de propriétaire - Pas de description.) -- C:\Windows\SysWOW64\rundll32.exe [44544]

[MD5.3A4C97796130037CBB555F5BC8419F28] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [630272]

 

 

---\\ Opera, Plugins,Démarrage,Recherche (P1,B0,B1)

B0 - SPO: operaprefs.ini [Jean Marc] Home URL=http://my.daemon-search.com/

B1 - OSP: search.ini [Jean Marc] URL=http://mystart.incredimail.com/?loc=OperaSB&search=%s

B1 - OSP: search.ini [Jean Marc] URL=http://www.daemon-search.com/search?q=%s

 

 

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)

P2 - FPN: [HKLM] [@microsoft.com/GENUINE] - (.Microsoft Corporation - Windows Activation Technologies Plugin for Mozilla.) -- C:\Windows\system32\Wat\npWatWeb.dll

P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=8] - (.Google Inc. - Google Update.) -- C:\Users\Jean Marc\AppData\Local\Google\Update\1.2.183.39\npGoogleOneClick8.dll

 

 

---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)

G1 - GCS: Preference [user Data\Default] Yahoo! Search - Web Search

G2 - GCE: Preference [user Data\Default] [afpbkpjjkfakdcakapanjoeijlphieei] RapidShare DownloadHelper v.1.1.1 (Activé)

G2 - GCE: Preference [user Data\Default] [bfbmjmiodbnnpllbbbfblcplfjjepjdn] Turn Off the Lights v.1.8.0.6 (Activé)

G2 - GCE: Preference [user Data\Default] [bhmmomiinigofkjcapegjjndpbikblnp] WOT v.1.0.4 (Activé)

G2 - GCE: Preference [user Data\Default] [bjeikeheijdjdfjbmknpefojickbkmom] Offerbox v.2.1.3441.119 (Activé)

G2 - GCE: Preference [user Data\Default] [cccpiddacjljmfbbgeimpelpndgpoknn] SmoothScroll v.0.9.8 (Activé)

G2 - GCE: Preference [user Data\Default] [ejpepffjfmamnambagiibghpglaidiec] Facebook Disconnect v.1.0.2 (Activé)

G2 - GCE: Preference [user Data\Default] [jfchnphgogjhineanplmfkofljiagjfb] Downloads v.1 (Activé)

G2 - GCE: Preference [user Data\Default] [jfmjfhklogoienhpfnppmbcbjfjnkonk] RealPlayer HTML5Video Downloader Extension v.1.3 (Activé)

G2 - GCE: Preference [user Data\Default] [jnmihelkpepcjphjdoleaccfjmfehmin] Quickrr TV & Video v.1.4 (Activé)

G2 - GCE: Preference [user Data\Default] [kcahibnffhnnjcedflmchmokndkjnhpg] StumbleUpon v.2.9.8.1 (Activé)

G2 - GCE: Preference [user Data\Default] [lambangeielkjcnmioccboaphdfcffib] Chrome TV v.2.0.3 (Activé)

G2 - GCE: Preference [user Data\Default] [leekjckogogidfhpejjmaaekecplpdcg] MegaUpload DownloadHelper v.1.2 (Activé)

G2 - GCE: Preference [user Data\Default] [lfkgmnnajiljnolcgolmmgnecgldgeld] Smooth Gestures v.0.14.5 (Activé)

G2 - GCE: Preference [user Data\Default] [lgdfnbpkmkkdhgidgcpdkgpdlfjcgnnh] Stop Autoplay for YouTube. v.0.10.7.30 (Activé)

G2 - GCE: Preference [user Data\Default] [lghjfnfolmcikomdjmoiemllfnlmmoko] InvisibleHand v.0.6.0 (Activé)

G2 - GCE: Preference [user Data\Default] [licccgnfdlgmmmgaddmbcepikfadcmpe] TV Chrome v.1.1.3 (Activé)

G2 - GCE: Preference [user Data\Default] [mfjkgbjaikamkkojmakjclmkianficch] Download Helper (by Google) v.3.0.3 (Activé)

G2 - GCE: Preference [user Data\Default] [mmffncokckfccddfenhkhnllmlobdahm] FastestChrome - Browse Faster v.4.0.1 (Activé)

G2 - GCE: Preference [user Data\Default] [nnbmlagghjjcbdhgmkedmbmedengocbn] Visionneuse Google\u00A0Documents PDF/PowerPoint (par Google) v.3.1 (Activé)

G2 - GCE: Preference [user Data\Default] [oeljdmeofcikjblcoehpmdnooimalbmj] Robot Theme, inspired by Android\u2122 v.0.2.1 (Activé)

 

 

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook (R0,R1,R3)

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Yahoo! France

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN : Hotmail, Messenger, Bing, Actualité et Sport

R0 - HKUS\S-1-5-21-670556952-621881684-497893729-1000\Software\Microsoft\Internet Explorer\Main,Start Page = Yahoo! France

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Microsoft Corporation

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Google

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Search Microsoft.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Search Microsoft.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Search Microsoft.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0

R1 - HKUS\S-1-5-21-670556952-621881684-497893729-1000\Software\Microsoft\Internet Explorer\Main,Search Page = Microsoft Corporation

R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (9.00.7930.16406 (WIN7_IE9_Beta.100831-2345)) -- C:\Windows\System32\ieframe.dll

R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} Clé orpheline

R3 - URLSearchHook: (no name) - {4daac69c-cba7-45e2-9bc8-1044483d3352} Clé orpheline

R3 - URLSearchHook: (no name) - {a1e75a0e-4397-4ba8-bb50-e19fb66890f4} Clé orpheline

R3 - URLSearchHook: (no name) - {38542454-dfb6-44f5-b052-d4e071a3d073} Clé orpheline

R3 - URLSearchHook: (no name) - {90d46c30-9f25-4104-aea9-35c3f84477ff} Clé orpheline

R3 - URLSearchHook: (no name) - {1392b8d2-5c05-419f-a8f6-b9f15a596612} Clé orpheline

R3 - URLSearchHook: (no name) - {a65e491f-a436-4952-b49a-b24ed99a0f67} Clé orpheline

 

 

---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)

F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,C:\Program Files\Soluto\soluto.exe /userinit

F2 - REG:system.ini: VMApplet=C:\WINDOWS\system32\SystemPropertiesPerformance.exe

 

 

---\\ Browser Helper Objects de navigateur (O2)

O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll

 

 

---\\ Internet Explorer Toolbars (O3)

O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} . (.Pas de propriétaire - ToolBand Module.) -- C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll

O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll

 

 

---\\ Applications démarrées par registre & par dossier (O4)

O4 - HKLM\..\Run: [Toshiba TEMPRO] . (.Toshiba Europe GmbH - Toshiba TEMPRO.) -- C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe

O4 - HKLM\..\Run: [TPwrMain] . (.TOSHIBA Corporation - TOSHIBA Power Saver.) -- C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe

O4 - HKLM\..\Run: [HSON] . (.TOSHIBA Corporation - HotStartOn.) -- C:\Program Files\TOSHIBA\TBS\HSON.exe

O4 - HKLM\..\Run: [smoothView] . (.TOSHIBA Corporation - SmoothView.) -- C:\Program Files\Toshiba\SmoothView\SmoothView.exe

O4 - HKLM\..\Run: [00TCrdMain] . (.TOSHIBA Corporation - TOSHIBA Flash Cards.) -- C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe

O4 - HKLM\..\Run: [smartAudio] . (.Pas de propriétaire - SAIICpl MFC Application.) -- C:\Program Files\CONEXANT\SAII\SAIICpl.exe

O4 - HKLM\..\Run: [cAudioFilterAgent] . (.Conexant Systems, Inc. - Conexant High Definition Audio Filter Agent.) -- C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe

O4 - HKLM\..\Run: [synTPEnh] . (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

O4 - HKLM\..\Run: [ThpSrv] Clé orpheline

O4 - HKLM\..\Run: [smartFaceVWatcher] . (.TOSHIBA Corporation - SmartFaceVWatcher.) -- C:\Program Files\Toshiba\SmartFaceV\SmartFaceVWatcher.exe

O4 - HKLM\..\Run: [HDMICtrlMan] . (.TOSHIBA Corporation. - HDMICtrlMan.exe.) -- C:\Program Files\TOSHIBA\HDMICtrlMan\HDMICtrlMan.exe

O4 - HKLM\..\Run: [TosWaitSrv] . (.TOSHIBA Corporation - Pas de description.) -- C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe

O4 - HKLM\..\Run: [TFPUPWDBankService] . (.TOSHIBA - TFPUPWDBank.) -- C:\Program Files\TOSHIBA\TFPU\TFPUPWDBank.exe

O4 - HKLM\..\Run: [TFPUService] . (.TOSHIBA - TFPU Task Monitor.) -- C:\Program Files\TOSHIBA\TFPU\TFPUTaskMonitor.exe

O4 - HKLM\..\Run: [TosNC] . (.TOSHIBA Corporation - Message Center.) -- C:\Program Files\Toshiba\BulletinBoard\TosNcCore.exe

O4 - HKLM\..\Run: [TosReelTimeMonitor] . (.TOSHIBA Corporation - Monitor of TOSHIBA ReelTime.) -- C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe

O4 - HKLM\..\Run: [Toshiba Registration] . (.Toshiba Europe GmbH - Toshiba Notebook Registration Reminder.) -- C:\Program Files\Toshiba\Registration\ToshibaReminder.exe

O4 - HKLM\..\Run: [QuiKProtect] . (.Iomega Corporation - An EMC Company - startQuikProtect.) -- C:\Program Files\Iomega\QuikProtect\StartQuikProtect.exe

O4 - HKLM\..\Run: [MSC] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- C:\Program Files\Microsoft Security Client\msseces.exe

O4 - HKLM\..\Run: [TosSENotify] . (.TOSHIBA Corporation - Pas de description.) -- C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe

O4 - HKCU\..\Run: [TOSHIBA Online Product Information] . (.TOSHIBA - TOSHIBA Online Product Information.) -- C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe

O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe

O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Jean Marc\AppData\Local\Google\Update\GoogleUpdate.exe

O4 - HKCU\..\Run: [Messenger (Yahoo!)] . (.Yahoo! Inc. - Yahoo! Messenger.) -- C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe

O4 - HKCU\..\Run: [FileHippo.com] . (.FileHippo.com - FileHippo.com Update Checker.) -- C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe

O4 - HKCU\..\Run: [ccleaner] . (.Piriform Ltd - CCleaner.) -- C:\Program Files (x86)\CCleaner\CCleaner64.exe

O4 - HKCU\..\Run: [sUPERAntiSpyware] . (.SUPERAntiSpyware.com - SUPERAntiSpyware Application.) -- C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

O4 - HKCU\..\Run: [software Informer] . (.Informer Technologies, Inc. - Software Informer.) -- C:\Program Files (x86)\Software Informer\softinfo.exe

O4 - HKCU\..\Run: [fsm] Clé orpheline

O4 - HKCU\..\Run: [YouSendIt.exe] . (.YouSendIt - YouSendIt Express.) -- C:\Program Files (x86)\YouSendIt\Express\YouSendIt.exe

O4 - HKCU\..\Run: [spybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe

O4 - HKCU\..\Run: [Pando] . (.Pando Networks - pando.) -- C:\Program Files (x86)\Pando Networks\Pando\Pando.exe

O4 - HKLM\..\Wow6432Node\Run: [TUSBSleepChargeSrv] %ProgramFiles(x86)%\TOSHIBA\TOSHIBA USB Sleep and Charge Utility\TUSBSleepChargeSrv.exe

O4 - HKLM\..\Wow6432Node\Run: [ToshibaServiceStation] Clé orpheline

O4 - HKLM\..\Wow6432Node\Run: [TWebCamera] . (.TOSHIBA CORPORATION. - Pas de description.) -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe

O4 - HKLM\..\Wow6432Node\Run: [F-Secure Manager] . (.F-Secure Corporation - F-Secure Settings and Statistics.) -- C:\Program Files (x86)\DartyBox Sécurité\Common\FSM32.exe

O4 - HKLM\..\Wow6432Node\Run: [F-Secure TNB] . (.F-Secure Corporation - TNBUtil.) -- C:\Program Files (x86)\DartyBox Sécurité\FSGUI\TNBUtil.exe

O4 - HKLM\..\Wow6432Node\Run: [WinampAgent] . (.Nullsoft, Inc. - Winamp Agent.) -- C:\Program Files (x86)\Winamp\winampa.exe

O4 - HKLM\..\Wow6432Node\Run: [Microsoft Default Manager] . (.Microsoft Corporation - Microsoft Default Manager.) -- C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe

O4 - HKLM\..\Wow6432Node\Run: [unlockerAssistant] . (.Pas de propriétaire - Pas de description.) -- C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe

O4 - HKLM\..\Wow6432Node\Run: [sunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

O4 - HKLM\..\Wow6432Node\Run: [YMailAdvisor] . (.Yahoo! Inc. - Yahoo! Mail Advisor.) -- C:\Program Files (x86)\Yahoo!\Common\YMailAdvisor.exe

O4 - HKLM\..\Wow6432Node\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files (x86)\QuickTime\QTTask.exe

O4 - HKLM\..\Wow6432Node\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe

O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe

O4 - HKLM\..\Wow6432Node\Run: [iomega Home Storage Manager] . (.Iomega Corporation - Iomega Home Media Network Discover Applicat.) -- C:\Program Files (x86)\Iomega\Home Storage Manager\Iomega Discovery.exe

O4 - HKLM\..\Wow6432Node\Run: [Freecorder FLV Service] . (.Applian Technologies, Inc. - FLV Service for Freecorder 4.) -- C:\Program Files (x86)\Freecorder\FLVSrvc.exe

O4 - HKLM\..\Wow6432Node\Run: [TkBellExe] . (.RealNetworks, Inc. - RealNetworks Scheduler.) -- C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe

O4 - HKUS\S-1-5-18\..\Run: [TOSHIBA Online Product Information] . (.TOSHIBA - TOSHIBA Online Product Information.) -- C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe

O4 - HKUS\S-1-5-18\..\Run: [TOSHIBA Online Product Information] . (.TOSHIBA - TOSHIBA Online Product Information.) -- C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe

O4 - HKUS\S-1-5-19\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe

O4 - HKUS\S-1-5-20\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe

O4 - HKUS\S-1-5-21-670556952-621881684-497893729-1000\..\Run: [TOSHIBA Online Product Information] . (.TOSHIBA - TOSHIBA Online Product Information.) -- C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe

O4 - HKUS\S-1-5-21-670556952-621881684-497893729-1000\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe

O4 - HKUS\S-1-5-21-670556952-621881684-497893729-1000\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Jean Marc\AppData\Local\Google\Update\GoogleUpdate.exe

O4 - HKUS\S-1-5-21-670556952-621881684-497893729-1000\..\Run: [Messenger (Yahoo!)] . (.Yahoo! Inc. - Yahoo! Messenger.) -- C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe

O4 - HKUS\S-1-5-21-670556952-621881684-497893729-1000\..\Run: [FileHippo.com] . (.FileHippo.com - FileHippo.com Update Checker.) -- C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe

O4 - HKUS\S-1-5-21-670556952-621881684-497893729-1000\..\Run: [ccleaner] . (.Piriform Ltd - CCleaner.) -- C:\Program Files (x86)\CCleaner\CCleaner64.exe

O4 - HKUS\S-1-5-21-670556952-621881684-497893729-1000\..\Run: [sUPERAntiSpyware] . (.SUPERAntiSpyware.com - SUPERAntiSpyware Application.) -- C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

O4 - HKUS\S-1-5-21-670556952-621881684-497893729-1000\..\Run: [software Informer] . (.Informer Technologies, Inc. - Software Informer.) -- C:\Program Files (x86)\Software Informer\softinfo.exe

O4 - HKUS\S-1-5-21-670556952-621881684-497893729-1000\..\Run: [fsm] Clé orpheline

O4 - HKUS\S-1-5-21-670556952-621881684-497893729-1000\..\Run: [YouSendIt.exe] . (.YouSendIt - YouSendIt Express.) -- C:\Program Files (x86)\YouSendIt\Express\YouSendIt.exe

O4 - HKUS\S-1-5-21-670556952-621881684-497893729-1000\..\Run: [spybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe

O4 - HKUS\S-1-5-21-670556952-621881684-497893729-1000\..\Run: [Pando] . (.Pando Networks - pando.) -- C:\Program Files (x86)\Pando Networks\Pando\Pando.exe

O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (.not file.)

O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (.not file.)

O4 - Global Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth Manager.lnk . (.TOSHIBA CORPORATION..) -- C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 - Capture d'écran et lancement.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Password Safe.lnk . (.SourceForge.net.) -- C:\Program Files (x86)\Password Safe\pwsafe.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Startup Guard.lnk . (.PrivacyRoot.com.) -- C:\Program Files (x86)\Startup Guard\startupguard.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk . (.TOSHIBA Europe.) -- C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Wipe tray agent 2011.lnk . (.PrivacyRoot.com.) -- C:\Program Files (x86)\Wipe 2011\wipetray.exe

 

 

---\\ Autres liens utilisateurs (O4)

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\(Non lus _ 14614) Yahoo! Mail_ eiapopeia86.lnk . (.Google Inc..) -- C:\Users\Jean Marc\AppData\Local\Google\Chrome\Application\chrome.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Update Checker.lnk . (.FileHippo.com.) -- C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Yahoo! Mail (eiapopeia86).lnk . (.Google Inc..) -- C:\Users\Jean Marc\AppData\Local\Google\Chrome\Application\chrome.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Ashampoo Burning Studio 2010 Advanced.lnk . (.Pas de propriétaire.) -- C:\Program Files (x86)\Ashampoo\Ashampoo Burning Studio 2010 Advanced\burningstudio2010adv.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Ashampoo Home Designer.lnk . (.Creative Amadeo GmbH.) -- C:\Program Files (x86)\Ashampoo\Ashampoo Home Designer\Program\Cygniture.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Ashampoo Internet Accelerator 3.lnk . (.Ashampoo GmbH & Co. KG.) -- C:\Program Files (x86)\Ashampoo\Ashampoo Internet Accelerator 3\iac3.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Ashampoo Snap 3.lnk . (.ashampoo GmbH & Co. KG.) -- C:\Program Files (x86)\Ashampoo\Ashampoo Snap 3\ashsnap.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Ashampoo WinOptimizer 6.lnk . (.Ashampoo GmbH & Co. KG.) -- C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 6\WO6.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Avant Browser.lnk . (.Avant Force.) -- C:\Program Files (x86)\Avant Browser\avant.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\CDisplayEx.lnk . (.CDisplayEx.) -- C:\Program Files (x86)\CDisplayEx\cdisplayex.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\eBay.lnk - Clé orpheline

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Game Booster.lnk . (.IObit.) -- C:\Program Files (x86)\IObit\Game Booster\GameBooster.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Malwarebytes' Anti-Malware.lnk . (.Malwarebytes Corporation.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\MiPony.lnk . (.www.mipony.net.) -- C:\Program Files (x86)\MiPony\MiPony.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Thunderbird.lnk . (.Mozilla Messaging.) -- C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Music Duplicate Remover.lnk . (.ManiacTools.com.) -- C:\Program Files (x86)\Music Duplicate Remover\music_duplicate.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Namoroka (64-bit).lnk . (.Mozilla Corporation.) -- C:\Program Files (x86)\Namoroka (64-bit)\firefox.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - Clé orpheline

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Software Informer.lnk . (.Informer Technologies, Inc..) -- C:\Program Files (x86)\Software Informer\softinfo.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Spybot - Search & Destroy.lnk . (.Safer Networking Limited.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Winamp.lnk . (.Nullsoft, Inc..) -- C:\Program Files (x86)\Winamp\winamp.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - Clé orpheline

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Yahoo! Messenger.lnk . (.Yahoo! Inc..) -- C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe

 

 

---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)

O8 - Extra context menu item: E&xporter vers Microsoft Excel . (.Microsoft Corporation - Microsoft Office Excel.) -- C:\PROGRA~2\MICROS~1\Office12\EXCEL.exe

O8 - Extra context menu item: Google Sidewiki... . (.Google Inc. - Google Toolbar for Internet Explorer.) -- C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E11712C84EA7E12B.dll

O8 - Extra context menu item: Télécharger avec Mipony - (.not file.) - file:\\C:\Program Files (x86)\MiPony\Browser\IEContext.htm

 

 

---\\ Winsock hijacker (Layered Service Provider) (O10)

O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll

O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll

O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll

O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll

O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll

O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll

O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL

O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL

 

 

---\\ Modification Domaine/Adresses DNS (O17)

O17 - HKLM\System\CCS\Services\Tcpip\..\{15B211D0-24C4-46EE-8F27-CBAE28E94689}: DhcpNameServer = 192.168.1.254

O17 - HKLM\System\CCS\Services\Tcpip\..\{BC5B4903-BBB8-4432-906C-C71B5889E15D}: DhcpNameServer = 192.168.1.254

O17 - HKLM\System\CS1\Services\Tcpip\..\{15B211D0-24C4-46EE-8F27-CBAE28E94689}: DhcpNameServer = 192.168.1.254

O17 - HKLM\System\CS1\Services\Tcpip\..\{BC5B4903-BBB8-4432-906C-C71B5889E15D}: DhcpNameServer = 192.168.1.254

O17 - HKLM\System\CS2\Services\Tcpip\..\{15B211D0-24C4-46EE-8F27-CBAE28E94689}: DhcpNameServer = 192.168.1.254

O17 - HKLM\System\CS2\Services\Tcpip\..\{BC5B4903-BBB8-4432-906C-C71B5889E15D}: DhcpNameServer = 192.168.1.254

O17 - HKLM\System\CCS\Services\Tcpip\..\{15B211D0-24C4-46EE-8F27-CBAE28E94689}: DhcpDomain = darty

O17 - HKLM\System\CCS\Services\Tcpip\..\{BC5B4903-BBB8-4432-906C-C71B5889E15D}: DhcpDomain = darty

O17 - HKLM\System\CS1\Services\Tcpip\..\{15B211D0-24C4-46EE-8F27-CBAE28E94689}: DhcpDomain = darty

O17 - HKLM\System\CS1\Services\Tcpip\..\{BC5B4903-BBB8-4432-906C-C71B5889E15D}: DhcpDomain = darty

O17 - HKLM\System\CS2\Services\Tcpip\..\{15B211D0-24C4-46EE-8F27-CBAE28E94689}: DhcpDomain = darty

O17 - HKLM\System\CS2\Services\Tcpip\..\{BC5B4903-BBB8-4432-906C-C71B5889E15D}: DhcpDomain = darty

O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254

 

 

---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)

O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.

 

 

---\\ Liste des services NT non Microsoft et non désactivés (O23)

O23 - Service: (cfWiMAXService) . (.TOSHIBA CORPORATION - ConfigFree Service Process.) - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe

O23 - Service: (ConfigFree Service) . (.TOSHIBA CORPORATION - ConfigFree Service Process.) - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe

O23 - Service: (F-Secure Gatekeeper Handler Starter) . (.F-Secure Corporation - F-Secure Anti-Virus Scanning Service.) - C:\Program Files (x86)\DartyBox Sécurité\Anti-Virus\fsgk32st.exe

O23 - Service: (FSMA) . (.F-Secure Corporation - F-Secure Management Agent.) - C:\Program Files (x86)\DartyBox Sécurité\Common\FSMA32.exe

O23 - Service: (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

O23 - Service: (nvsvc) - Clé orpheline

O23 - Service: (QPCopyEngine) . (.Pas de propriétaire - Quik Protect CopyEngine Service.) - C:\Program Files\Iomega\QuikProtect\QpMonitor.exe

O23 - Service: (SolutoService) . (.Soluto - Soluto Anti-Frustration Software.) - C:\Program Files\Soluto\SolutoService.exe

O23 - Service: (TemproMonitoringService) . (.Toshiba Europe GmbH - Toshiba TEMPRO.) - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe

O23 - Service: (Thpsrv) - Clé orpheline

O23 - Service: (TODDSrv) - Clé orpheline

O23 - Service: (TosCoSrv) . (.TOSHIBA Corporation - TOSHIBA Power Saver.) - C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe

O23 - Service: (uvnc_service) . (.UltraVNC - VNC server for X64/win32.) - C:\Program Files (x86)\UltraVNC\WinVNC.exe

O23 - Service: (YahooAUService) . (.Yahoo! Inc. - AutoUpater Service Module.) - C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe

 

 

---\\ Enumération Active Desktop & MHTML Editor (O24)

O24 - Default MHTML Editor: Last - .(.Pas de propriétaire - Pas de description.) - (.not file.)

 

 

---\\ Tâches planifiées en automatique (O39)

O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job

O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job

O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-670556952-621881684-497893729-1000Core.job

O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-670556952-621881684-497893729-1000UA.job

O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Scheduled scanning task.job

O39 - APT:Automatic Planified Task - C:\Windows\Tasks\SmartDefrag.job

[MD5.D88E81DECD3014C45603B4B327B4EE1A] [APT] [ConfigFree Startup Programs] (.TOSHIBA CORPORATION.) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe

[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-670556952-621881684-497893729-1000Core] (.Google Inc..) -- C:\Users\Jean Marc\AppData\Local\Google\Update\GoogleUpdate.exe

[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-670556952-621881684-497893729-1000UA] (.Google Inc..) -- C:\Users\Jean Marc\AppData\Local\Google\Update\GoogleUpdate.exe

[MD5.00000000000000000000000000000000] [APT] [MyDefrag v4.3.1 Daily] (.Pas de propriétaire.) -- C:\Program Files\MyDefrag v4.3.1\Scripts\AutomaticDaily.MyD" (.not file.)

[MD5.00000000000000000000000000000000] [APT] [MyDefrag v4.3.1 Monthly] (.Pas de propriétaire.) -- C:\Program Files\MyDefrag v4.3.1\Scripts\AutomaticMonthly.MyD" (.not file.)

[MD5.8FB92EF6740EB2E10429C542160A3F84] [APT] [RealUpgradeLogonTaskS-1-5-21-670556952-621881684-497893729-1000] (.RealNetworks, Inc..) -- C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe

[MD5.8FB92EF6740EB2E10429C542160A3F84] [APT] [RealUpgradeLogonTaskS-1-5-21-670556952-621881684-497893729-1004] (.RealNetworks, Inc..) -- C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe

[MD5.8FB92EF6740EB2E10429C542160A3F84] [APT] [RealUpgradeScheduledTaskS-1-5-21-670556952-621881684-497893729-1000] (.RealNetworks, Inc..) -- C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe

[MD5.8FB92EF6740EB2E10429C542160A3F84] [APT] [RealUpgradeScheduledTaskS-1-5-21-670556952-621881684-497893729-1004] (.RealNetworks, Inc..) -- C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe

[MD5.25679C23DC638D0BF0C6C8796E0ABE61] [APT] [scheduled scanning task] (.Pas de propriétaire.) -- C:\PROGRA~2\DARTYB~1\ANTI-V~1\fsav.exe

[MD5.00000000000000000000000000000000] [APT] [smartDefrag] (.Pas de propriétaire.) -- C:\Program Files (x86)\IObit\IObit SmartDefrag\IObit SmartDefrag.exe (.not file.)

[MD5.2201FFF7A25A082D855A5C413C7E1FDF] [APT] [{019C7821-7D36-4D57-AA62-5CD7B78D4B69}] (.SUPERAdBlocker.com.) -- C:\Program Files\SUPERAntiSpyware\Uninstall.exe

[MD5.00000000000000000000000000000000] [APT] [{0A22A353-7E78-47F4-9141-212C8508BF2B}] (.Pas de propriétaire.) -- C:\Program Files (x86)\DartyBox S‚curit‚\FSGUI\fscuif.exe (.not file.)

[MD5.00000000000000000000000000000000] [APT] [{3CB87C54-BFEA-43A4-BEEC-B8F54ECA85A7}] (.Pas de propriétaire.) -- C:\Users\Jean Marc\Downloads\PandoSetup.exe (.not file.)

[MD5.F0CFFDE9CA98F70B4ABE8C1BCF4E5BCC] [APT] [{3FB1C631-A78A-4595-B496-F350DD5BA538}] (.Pas de propriétaire.) -- C:\Program Files (x86)\Pando Networks\Pando\PandoUninst.exe

[MD5.00000000000000000000000000000000] [APT] [{417637DD-ED9C-4369-815F-86268DE12338}] (.Pas de propriétaire.) -- C:\Users\Jean Marc\Downloads\CX010100_JGi_tfp.exe (.not file.)

[MD5.61CFEDAF9C527A1463F34F71240F9BB5] [APT] [{9B22DE43-B3B7-408E-93A5-587E92B1AA57}] (.Skype Technologies S.A..) -- C:\Program Files (x86)\Skype\Phone\Skype.exe

[MD5.00000000000000000000000000000000] [APT] [{C9B29FD6-1BA7-4BCB-98B6-FC8E1D1FF90C}] (.Pas de propriétaire.) -- C:\Program Files (x86)\DartyBox S‚curit‚\FSGUI\fscuif.exe (.not file.)

[MD5.61CFEDAF9C527A1463F34F71240F9BB5] [APT] [{D654A9E7-9344-4C5E-BECF-E9444468B628}] (.Skype Technologies S.A..) -- C:\Program Files (x86)\Skype\Phone\Skype.exe

[MD5.00000000000000000000000000000000] [APT] [{E69FD6D4-BE1D-44B2-8054-84F34B33A4B5}] (.Pas de propriétaire.) -- C:\Users\Jean Marc\Desktop\DartyBox_Securite.exe (.not file.)

[MD5.00000000000000000000000000000000] [APT] [{F1927E71-23E2-470E-96E8-81F95D28F879}] (.Pas de propriétaire.) -- C:\Users\Jean Marc\Documents\My Pando Packages\WinRAR.3.Corporate.Edition.full.exerporate.Edition.full.exe (.not file.)

[MD5.7B43567B4C32AD7ADED537CD3B1342B9] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe

 

 

---\\ Pilotes lancés au démarrage (O41)

O41 - Driver: C:\Windows\system32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys

O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\DRIVERS\blbdrive.sys

O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys

O41 - Driver: C:\Windows\system32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys

O41 - Driver: C:\Windows\system32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys

O41 - Driver: (F-Secure HIPS) . (.F-Secure Corporation - HIPS 64-bit kernel module.) - C:\Program Files (x86)\DartyBox Sécurité\HIPS\drivers\fshs.sys

O41 - Driver: (FSES) . (.F-Secure Corporation - F-Secure Email Interceptor.) - C:\Windows\System32\drivers\fses.sys

O41 - Driver: (fsvista) . (.Pas de propriétaire - Pas de description.) - C:\Program Files (x86)\DartyBox Sécurité\Anti-Virus\minifilter\fsvista.sys

O41 - Driver: (MpFilter) . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) - C:\Windows\System32\DRIVERS\MpFilter.sys

O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\DRIVERS\mssmbios.sys

O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys

O41 - Driver: (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys

O41 - Driver: C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys

O41 - Driver: C:\Windows\system32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys

O41 - Driver: C:\Windows\system32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys

O41 - Driver: C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys

O41 - Driver: C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys

O41 - Driver: C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys

O41 - Driver: (SASDIFSV) . (.SUPERAdBlocker.com and SUPERAntiSpyware.com - SASDIFSV64.SYS.) - C:\Program Files\SUPERAntiSpyware\SASDIFSV64.sys

O41 - Driver: (SASKUTIL) . (.SUPERAdBlocker.com and SUPERAntiSpyware.com - SASKUTIL64.SYS.) - C:\Program Files\SUPERAntiSpyware\SASKUTIL64.sys

O41 - Driver: C:\Windows\system32\tcpipcfg.dll (Tcpip) . (.Microsoft Corporation - Pilote TCP/IP.) - C:\Windows\System32\drivers\tcpip.sys

O41 - Driver: C:\Windows\system32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys

O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\DRIVERS\termdd.sys

O41 - Driver: (Tosrfcom) . (.TOSHIBA Corporation - Bluetooth RFCOMM Driver.) - C:\Windows\System32\Drivers\tosrfcom.sys

O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys

O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys

O41 - Driver: C:\Windows\system32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys

O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys

 

 

---\\ Logiciels installés (O42)

O42 - Logiciel: 7-Zip 9.20 (x64 edition) - (.Igor Pavlov.) [HKLM] -- {23170F69-40C1-2702-0920-000001000000}

O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- Adobe AIR

O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- {46C045BF-2B3F-4BC4-8E4C-00E0CF8BD9DB}

O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX

O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin

O42 - Logiciel: Adobe Reader X (10.0.1) - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1033-7B44-AA0000000001}

O42 - Logiciel: Adobe Reader X (10.0.1) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AA0000000001}

O42 - Logiciel: Adobe Shockwave Player 11.5 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player

O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {EE6097DD-05F4-4178-9719-D3170BF098E8}

O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {6956856F-B6B3-4BE0-BA0B-8F495BE32033}

O42 - Logiciel: Applian FLV Player - (.Applian Technologies Inc..) [HKLM][64Bits] -- Applian FLV Player2.0.25

O42 - Logiciel: Ashampoo Burning Studio 2010 Advanced 9.25 - (.ashampoo GmbH & Co. KG.) [HKLM][64Bits] -- Ashampoo Burning Studio 2010 Advanced_is1

O42 - Logiciel: Ashampoo Home Designer1.0.0 - (.Creative Amadeo GmbH.) [HKLM][64Bits] -- {46552BC3-52B6-404c-9B42-CE536AB719FD}_is1

O42 - Logiciel: Ashampoo Internet Accelerator 3.20 - (.ashampoo GmbH & Co. KG.) [HKLM][64Bits] -- Ashampoo Internet Accelerator 3_is1

O42 - Logiciel: Ashampoo Snap 3.50 - (.ashampoo GmbH & Co. KG.) [HKLM][64Bits] -- Ashampoo Snap 3_is1

O42 - Logiciel: Ashampoo WinOptimizer 6.60 - (.Ashampoo GmbH & Co. KG.) [HKLM][64Bits] -- Ashampoo WinOptimizer 6_is1

O42 - Logiciel: Avant Browser (remove only) - (.Avant Force.) [HKLM][64Bits] -- AvantBrowser

O42 - Logiciel: Bluetooth Stack for Windows by Toshiba - (.TOSHIBA CORPORATION.) [HKLM] -- {CEBB6BFB-D708-4F99-A633-BC2600E01EF6}

O42 - Logiciel: Boilsoft Video Joiner 6.34 - (.Boilsoft, Inc..) [HKLM][64Bits] -- {FD39EF4B-0B5C-4B33-8D57-2EE865A80EB1}_is1

O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner

O42 - Logiciel: CDisplayEx 1.8 - (.Henri Gourvest..) [HKLM][64Bits] -- CDisplayEx_is1

O42 - Logiciel: Complément Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {6E5324C1-84FC-4F76-9A3A-C65E07F80EE6}

O42 - Logiciel: Conduit Engine - (.Conduit Ltd..) [HKLM][64Bits] -- conduitEngine

O42 - Logiciel: Conexant HD Audio - (.Conexant.) [HKLM] -- CNXT_AUDIO

O42 - Logiciel: Conseiller de mise à niveau vers Windows 7 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9D10CB57-B085-44c3-B435-2D193BA153F0}

O42 - Logiciel: Contrôle ActiveX Windows Live Mesh pour connexions à distance - (.Microsoft Corporation.) [HKLM][64Bits] -- {55D003F4-9599-44BF-BA9E-95D060730DD3}

O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}

O42 - Logiciel: DAEMON Tools Toolbar - (.DT Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Toolbar

O42 - Logiciel: DVD MovieFactory for TOSHIBA - (.Corel Corporation.) [HKLM][64Bits] -- InstallShield_{50F68032-B5B7-4513-9116-C978DBD8F27A}

O42 - Logiciel: Defraggler - (.Piriform.) [HKLM] -- Defraggler

O42 - Logiciel: Direct DiscRecorder - (.Corel Corporation.) [HKLM][64Bits] -- InstallShield_{F2004B8D-7791-4B35-A3FA-D8CA8BB4DD81}

O42 - Logiciel: Dolby Control Center - (.Dolby.) [HKLM] -- {20387B45-18A4-4D48-ABD9-A23D2CBE42B3}

O42 - Logiciel: Détection de l'application Winamp - (.Nullsoft, Inc.) [HKCU] -- Winamp Detect

O42 - Logiciel: Feedback Tool - (.Microsoft Corporation.) [HKLM][64Bits] -- {13A5E785-5197-4EAD-8EE3-D660271E49BC}

O42 - Logiciel: Feedback Tool - (.Microsoft Corporation.) [HKLM][64Bits] -- {90024193-9F13-4877-89D5-A1CDF0CBBF28}

O42 - Logiciel: FileHippo.com Update Checker - (.Pas de propriétaire.) [HKLM][64Bits] -- FileHippo.com

O42 - Logiciel: Freecorder - (.Applian Technologies Inc..) [HKLM][64Bits] -- Freecorder4.1

O42 - Logiciel: Freecorder Toolbar - (.Freecorder.) [HKLM][64Bits] -- Freecorder Toolbar

O42 - Logiciel: Galerie de photos Windows Live - (.Microsoft Corporation.) [HKLM][64Bits] -- {488F0347-C4A7-4374-91A7-30818BEDA710}

O42 - Logiciel: Game Booster - (.IObit.) [HKLM][64Bits] -- Game Booster_is1

O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU] -- Google Chrome

O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {18455581-E099-4BA8-BC6B-F34B2F06600C}

O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F}

O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}

O42 - Logiciel: HDMI Control Manager - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- InstallShield_{63DA1F6A-2E65-4367-99B9-9E39FADEC446}

O42 - Logiciel: Iomega Home Storage Manager - (.Iomega Corporation an EMC Company.) [HKLM][64Bits] -- {C08E4323-261D-4B2F-8F24-CDB26E2AA081}

O42 - Logiciel: Iomega QuikProtect (64-Bit) - (.Iomega Corporation an EMC Company.) [HKLM] -- {B53FA0E4-739C-435F-9872-E3032F2E08FC}

O42 - Logiciel: Java 6 Update 23 - (.Sun Microsystems, Inc..) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83216020FF}

O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}

O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}

O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9}

O42 - Logiciel: MSXML 4.0 SP3 Parser (KB973685) - (.Microsoft Corporation.) [HKLM][64Bits] -- {859DFA95-E4A6-48CD-B88E-A3E483E89B44}

O42 - Logiciel: Malwarebytes' Anti-Malware - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes' Anti-Malware_is1

O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E}

O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {50816F92-1652-4A7C-B9BC-48F682742C4B}

O42 - Logiciel: MiPony 1.2.1 - (.Pas de propriétaire.) [HKLM][64Bits] -- MiPony

O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile

O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}

O42 - Logiciel: Microsoft .NET Framework 4 Client Profile FRA Language Pack - (.Microsoft Corporation.) [HKLM] -- {4B5F58F7-C7D1-3CE3-9B37-B657F0852643}

O42 - Logiciel: Microsoft Antimalware - (.Microsoft Corporation.) [HKLM] -- {774088D4-0777-4D78-904D-E435B318F5D2}

O42 - Logiciel: Microsoft Antimalware Service FR-FR Language Pack - (.Microsoft Corporation.) [HKLM] -- {0450B7B0-AC71-44A4-AB40-4DD678DF3A8C}

O42 - Logiciel: Microsoft Antimalware Service FR-FR Language Pack - (.Microsoft Corporation.) [HKLM] -- {A4526B5A-89C0-4F4B-9E6E-4F883374D5F9}

O42 - Logiciel: Microsoft Default Manager - (.Microsoft Corporation.) [HKLM][64Bits] -- {1CAC7A41-583B-4483-9FA5-3E5465AFF8C2}

O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-0016-040C-0000-0000000FF1CE}_HOMESTUDENTR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-0018-040C-0000-0000000FF1CE}_HOMESTUDENTR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001B-040C-0000-0000000FF1CE}_HOMESTUDENTR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{E64BA721-2310-4B55-BE5A-2925F9706192}

O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-002A-040C-1000-0000000FF1CE}_HOMESTUDENTR_{B165D3C2-40AE-4D39-86F7-E5C87C4264C0}

O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-006E-040C-0000-0000000FF1CE}_HOMESTUDENTR_{B165D3C2-40AE-4D39-86F7-E5C87C4264C0}

O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-00A1-040C-0000-0000000FF1CE}_HOMESTUDENTR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}

O42 - Logiciel: Microsoft Office Excel MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0016-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Home and Student 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- HOMESTUDENTR

O42 - Logiciel: Microsoft Office Home and Student 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Live Add-in 1.5 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}

O42 - Logiciel: Microsoft Office Office 64-bit Components 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-002A-0000-1000-0000000FF1CE}

O42 - Logiciel: Microsoft Office OneNote MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-00A1-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office PowerPoint MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0018-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proof (Arabic) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0401-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proof (Dutch) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0413-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proof (English) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0409-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proof (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proof (German) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0407-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proof (Spanish) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0C0A-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proofing (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-002C-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0401-0000-0000000FF1CE}_HOMESTUDENTR_{14809F99-C601-4D4A-9391-F1E8FAA964C5}

O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0407-0000-0000000FF1CE}_HOMESTUDENTR_{A0516415-ED61-419A-981D-93596DA74165}

O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}

O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{F580DDD5-8D37-4998-968E-EBB76BB86787}

O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0413-0000-0000000FF1CE}_HOMESTUDENTR_{D66D5A44-E480-4BA4-B4F2-C554F6B30EBB}

O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{187308AB-5FA7-4F14-9AB9-D290383A10D9}

O42 - Logiciel: Microsoft Office Shared 64-bit MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-002A-040C-1000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Shared MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-006E-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Suite Activation Assistant - (.Microsoft Corporation.) [HKLM][64Bits] -- {E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}

O42 - Logiciel: Microsoft Office Word MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001B-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Reader - (.Pas de propriétaire.) [HKLM][64Bits] -- {B6F7DBE7-2FE2-458F-A738-B10832746036}

O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU] - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}

O42 - Logiciel: Microsoft Search Enhancement Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {CFF8B8E8-E086-4DE0-935F-FE22CAB54F80}

O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM] -- {E77543EE-6FB5-4FF6-AB70-635392C8C756}

O42 - Logiciel: Microsoft Security Client FR-FR Language Pack - (.Microsoft Corporation.) [HKLM] -- {FCAB9F73-BF5D-4E3D-92E7-B0F35C568F20}

O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM] -- Microsoft Security Client

O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}

O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM][64Bits] -- {770657D0-A123-3C07-8E44-1C83EC895118}

O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {7299052b-02a4-4627-81f2-1818da5d550d}

O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {837b34e3-7c30-493c-8f6a-2b0f04e2912c}

O42 - Logiciel: Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {EE936C7A-EA40-31D5-9B65-8E3E089C3828}

O42 - Logiciel: Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] -- {002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}

O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 - (.Microsoft Corporation.) [HKLM] -- {350AA351-21FA-3270-8B7A-835434E766AD}

O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {8220EEFE-38CD-377E-8595-13398D740ACE}

O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 - (.Microsoft Corporation.) [HKLM][64Bits] -- {FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}

O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475}

O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989}

O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM][64Bits] -- {3B160861-7250-451E-B5EE-8B92BF30A710}

O42 - Logiciel: Module de compatibilité pour Microsoft Office System 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0020-040C-0000-0000000FF1CE}

O42 - Logiciel: Module linguistique Microsoft .NET Framework 4 Client Profile FRA - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile FRA Language Pack

O42 - Logiciel: Mozilla Thunderbird (3.1.7) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Thunderbird (3.1.7)

O42 - Logiciel: Music Duplicate Remover 6.0 - (.ManiacTools.com.) [HKLM][64Bits] -- Music Duplicate Remover_is1

O42 - Logiciel: MyAshampoo Toolbar - (.Pas de propriétaire.) [HKLM][64Bits] -- MyAshampoo Toolbar

O42 - Logiciel: MyDefrag v4.3.1 - (.J.C. Kessels.) [HKLM] -- MyDefrag v4.3.1_is1

O42 - Logiciel: MyPDFConverter - (.Secure Digital Services.) [HKLM][64Bits] -- {1D76557F-04F5-4CF9-AB20-6A621B0D52D7}

O42 - Logiciel: NVIDIA Display Control Panel - (.NVIDIA Corporation.) [HKLM] -- NVIDIA Display Control Panel

O42 - Logiciel: NVIDIA Drivers - (.NVIDIA Corporation.) [HKLM] -- NVIDIA Drivers

O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {8A809006-C25A-4A3A-9DAB-94659BCDB107}

O42 - Logiciel: Namoroka (64-bit) (3.6.3) - (.Mozilla.) [HKLM][64Bits] -- Namoroka (64-bit) (3.6.3)

O42 - Logiciel: Opera 11.01 - (.Opera Software ASA.) [HKLM][64Bits] -- Opera 11.01.1190

O42 - Logiciel: Pack Sécurité - (.Pas de propriétaire.) [HKLM][64Bits] -- F-Secure Product 444

O42 - Logiciel: Pando - (.Pando Networks Inc..) [HKLM][64Bits] -- {AB480DA0-7EE9-465D-9C12-4CDE65BF18FB}

O42 - Logiciel: PlayReady PC Runtime amd64 - (.Microsoft Corporation.) [HKLM] -- {BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}

O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM][64Bits] -- {57752979-A1C9-4C02-856B-FBB27AC4E02C}

O42 - Logiciel: RealNetworks - Microsoft Visual C++ 2008 Runtime - (.RealNetworks, Inc.) [HKLM][64Bits] -- {7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}

O42 - Logiciel: RealPlayer - (.RealNetworks.) [HKLM][64Bits] -- RealPlayer 12.0

O42 - Logiciel: RealUpgrade 1.1 - (.RealNetworks, Inc..) [HKLM][64Bits] -- {28C2DED6-325B-4CC7-983A-1777C8F7FBAB}

O42 - Logiciel: Realtek WLAN Driver - (.REALTEK Semiconductor Corp..) [HKLM][64Bits] -- {9D3D8C60-A55F-4fed-B2B9-173001290E16}

O42 - Logiciel: SUPERAntiSpyware - (.SUPERAntiSpyware.com.) [HKLM] -- {CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}

O42 - Logiciel: Security Task Manager 1.8c - (.Neuber Software.) [HKLM][64Bits] -- Security Task Manager

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2288621) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{5C497F0B-2061-4CC9-A61C-6B45B867354D}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2288931) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{CD769337-C8AC-46DB-A7DC-643E50089263}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2289158) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{210B16C0-CEBD-4DE9-B474-04A7E8735E16}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2344875) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6FC5C4C1-D7AE-44C3-94B7-6424FC3E752F}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2345043) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{536FB502-775F-4494-BACE-C02CC90B7A5B}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB969559) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{69F52148-9BF6-4CDC-BF76-103DEAF3DD08}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB976321) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{7F207DCA-3399-40CB-A968-6E5991B1421A}

O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2160841) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2160841

O42 - Logiciel: Security Update for Microsoft Office Excel 2007 (KB2345035) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{B23002DD-34EC-4988-B810-A5E2A0BF04F1}

O42 - Logiciel: Security Update for Microsoft Office InfoPath 2007 (KB979441) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{8CCB781A-CF6B-4FCB-B6D8-59C64DF5C6DB}

O42 - Logiciel: Security Update for Microsoft Office PowerPoint 2007 (KB982158) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{F5B70033-E79C-4569-90BF-BC9B4E4F3F46}

O42 - Logiciel: Security Update for Microsoft Office PowerPoint Viewer (KB2413381) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3DED0A62-44C8-4E00-A785-5212F297A9D9}

O42 - Logiciel: Security Update for Microsoft Office Visio Viewer 2007 (KB973709) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{71127777-8B2C-4F97-AF7A-6CF8CAC8224D}

O42 - Logiciel: Security Update for Microsoft Office Word 2007 (KB2344993) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{7A5B74FA-7A92-4FC9-821A-2DD5D4E73E48}

O42 - Logiciel: Security Update for Microsoft Office system 2007 (972581) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF}

O42 - Logiciel: Security Update for Microsoft Office system 2007 (KB974234) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{FCD742B9-7A55-44BC-A776-F795F21FEDDC}

O42 - Logiciel: Skype Toolbars - (.Skype Technologies S.A..) [HKLM][64Bits] -- {CD95D125-2992-4858-B3EF-5F6FB52FBAD6}

O42 - Logiciel: Skype 5.1 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {E633D396-5188-4E9D-8F6B-BFB8BF3467E8}

O42 - Logiciel: SmartSound Quicktracks Plugin - (.SmartSound Software Inc.) [HKLM][64Bits] -- InstallShield_{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}

O42 - Logiciel: Software Informer 1.0 BETA - (.Informer Technologies, Inc..) [HKLM][64Bits] -- Software Informer_is1

O42 - Logiciel: Soluto - (.Soluto.) [HKLM] -- {1CBFA1A9-1D7D-4989-B5E2-1E665F858DF4}

O42 - Logiciel: SoulSeek 157 NS 13e - (.Pas de propriétaire.) [HKLM][64Bits] -- Soulseek2

O42 - Logiciel: Spelling Dictionaries Support For Adobe Reader 9 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-5464-3428-900000000004}

O42 - Logiciel: Spybot - Search & Destroy - (.Safer Networking Limited.) [HKLM][64Bits] -- {B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1

O42 - Logiciel: Startup Guard - (.PrivacyRoot.com.) [HKLM][64Bits] -- Startup Guard

O42 - Logiciel: SweetIM Toolbar for Internet Explorer 3.9 - (.SweetIM Technologies Ltd..) [HKLM][64Bits] -- {A6CC2CA2-2779-4F10-88BF-A3C9EB874C24}

O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM] -- SynTPDeinstKey

O42 - Logiciel: SysResources Manager - (.Fotis.) [HKLM][64Bits] -- SysResources Manager11.0

O42 - Logiciel: TFPU - (.TOSHIBA.) [HKLM] -- {A7760E07-4C23-4766-A99E-F715F298E99C}

O42 - Logiciel: TOSHIBA Bulletin Board - (.TOSHIBA Corporation.) [HKLM] -- {F64684A0-754B-4637-B7F9-6E8DAA8CD5CD}

O42 - Logiciel: TOSHIBA Bulletin Board - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{F64684A0-754B-4637-B7F9-6E8DAA8CD5CD}

O42 - Logiciel: TOSHIBA ConfigFree - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {F3529665-D75E-4D6D-98F0-745C78C68E9B}

O42 - Logiciel: TOSHIBA DVD PLAYER - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {6C5F3BDC-0A1B-4436-A696-5939629D5C31}

O42 - Logiciel: TOSHIBA Disc Creator - (.TOSHIBA Corporation.) [HKLM] -- {5DA0E02F-970B-424B-BF41-513A5018E4C0}

O42 - Logiciel: TOSHIBA Extended Tiles for Windows Mobility Center - (.Pas de propriétaire.) [HKLM][64Bits] -- InstallShield_{617C36FD-0CBE-4600-84B2-441CEB12FADF}

O42 - Logiciel: TOSHIBA Face Recognition - (.TOSHIBA Corporation.) [HKLM] -- {F67FA545-D8E5-4209-86B1-AEE045D1003F}

O42 - Logiciel: TOSHIBA Face Recognition - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{F67FA545-D8E5-4209-86B1-AEE045D1003F}

O42 - Logiciel: TOSHIBA Fingerprint Utility - (.TOSHIBA Corporation.) [HKLM] -- TFPU{A7760E07-4C23-4766-A99E-F715F298E99C}

O42 - Logiciel: TOSHIBA HDD Protection - (.TOSHIBA Corporation.) [HKLM] -- {94A90C69-71C1-470A-88F5-AA47ECC96B40}

O42 - Logiciel: TOSHIBA HDD/SSD Alert - (.TOSHIBA Corporation.) [HKLM] -- {D4322448-B6AF-4316-B859-D8A0E84DCB38}

O42 - Logiciel: TOSHIBA HDD/SSD Alert - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{D4322448-B6AF-4316-B859-D8A0E84DCB38}

O42 - Logiciel: TOSHIBA Hardware Setup - (.Pas de propriétaire.) [HKLM][64Bits] -- InstallShield_{C4FFA951-9678-4D51-84B4-AFD15D3C45AD}

O42 - Logiciel: TOSHIBA PC Health Monitor - (.TOSHIBA Corporation.) [HKLM] -- {9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}

O42 - Logiciel: TOSHIBA Recovery Media Creator - (.TOSHIBA Corporation.) [HKLM] -- {B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}

O42 - Logiciel: TOSHIBA Recovery Media Creator Reminder - (.TOSHIBA.) [HKLM][64Bits] -- InstallShield_{773970F1-5EBA-4474-ADEE-1EA3B0A59492}

O42 - Logiciel: TOSHIBA ReelTime - (.TOSHIBA Corporation.) [HKLM] -- {5BCC94A1-DEF1-4AB4-8046-BC13048E929A}

O42 - Logiciel: TOSHIBA ReelTime - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{5BCC94A1-DEF1-4AB4-8046-BC13048E929A}

O42 - Logiciel: TOSHIBA Service Station - (.TOSHIBA.) [HKLM][64Bits] -- {AC6569FA-6919-442A-8552-073BE69E247A}

O42 - Logiciel: TOSHIBA Supervisor Password - (.Pas de propriétaire.) [HKLM][64Bits] -- InstallShield_{CBD6B23D-41D5-4A46-8019-6208516C9712}

O42 - Logiciel: TOSHIBA TEMPRO - (.Toshiba Europe GmbH.) [HKLM][64Bits] -- {3A9B3B6D-3C08-4283-AF50-FD82C49DD71E}

O42 - Logiciel: TOSHIBA USB Sleep and Charge Utility - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {E487EE7D-EAAA-4E2A-9116-E3B477D8A74F}

O42 - Logiciel: TOSHIBA Value Added Package - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E}

O42 - Logiciel: TOSHIBA Web Camera Application - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {5E6F6CF3-BACC-4144-868C-E14622C658F3}

O42 - Logiciel: TRORMCLauncher - (.Pas de propriétaire.) [HKLM][64Bits] -- InstallShield_{E65C7D8E-186D-484B-BEA8-DEF0331CE600}

O42 - Logiciel: The KMPlayer (remove only) - (.Pas de propriétaire.) [HKLM][64Bits] -- The KMPlayer

O42 - Logiciel: The KMPlayer v2.9.4.1435 FR - (.www.kmplayer.com/fr.) [HKLM][64Bits] -- The KMPlayer FR_is1

O42 - Logiciel: Theophilos 3.0 - (.Pas de propriétaire.) [HKLM][64Bits] -- Theophilos 3.0_is1

O42 - Logiciel: Tom's Guide France Toolbar - (.Tom's Guide France.) [HKLM][64Bits] -- Tom's_Guide_France Toolbar

O42 - Logiciel: Toshiba Assist - (.TOSHIBA.) [HKLM][64Bits] -- {1B87C40B-A60B-4EF3-9A68-706CF4B69978}

O42 - Logiciel: Toshiba Manuals - (.TOSHIBA.) [HKLM][64Bits] -- {90FF4432-21B7-4AF6-BA6E-FB8C1FED9173}

O42 - Logiciel: Toshiba Online Product Information - (.TOSHIBA.) [HKLM][64Bits] -- {2290A680-4083-410A-ADCC-7092C67FC052}

O42 - Logiciel: TranslateIt! 7.5 - (.Pas de propriétaire.) [HKLM][64Bits] -- TranslateIt!_is1

O42 - Logiciel: UltraVNC 1.0.8.2 - (.1.0.8.2.) [HKLM][64Bits] -- Ultravnc2_is1

O42 - Logiciel: Unlocker 1.9.0 - (.Cedrick Collomb.) [HKLM][64Bits] -- Unlocker

O42 - Logiciel: Update for 2007 Microsoft Office System (KB2284654) - (.Microsoft.) [HKLM][64Bits] -- {90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{FB166E7C-8AA6-48C8-B726-1F25BEE7825A}

O42 - Logiciel: Update for 2007 Microsoft Office System (KB967642) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}

O42 - Logiciel: Update for Microsoft Office OneNote 2007 (KB980729) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{329050A9-EF80-40F9-B633-74508F54C1FF}

O42 - Logiciel: VLC media player 1.1.7 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player

O42 - Logiciel: Visionneuse Microsoft PowerPoint - (.Microsoft Corporation.) [HKLM][64Bits] -- {95140000-00AF-040C-0000-0000000FF1CE}

O42 - Logiciel: WMPx64PluginFix - (.Pas de propriétaire.) [HKLM] -- {00a8ce68-cb2e-4652-aecd-c05c0d9d53a7}.sdb

O42 - Logiciel: WinRAR 4.00 beta 6 (64-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver

O42 - Logiciel: WinRAR archiver - (.Pas de propriétaire.) [HKLM][64Bits] -- WinRAR archiver

O42 - Logiciel: Winamp - (.Nullsoft, Inc.) [HKLM][64Bits] -- Winamp

O42 - Logiciel: Windows Live - (.Microsoft Corporation.) [HKLM][64Bits] -- {34319F1F-7CF2-4CC9-B357-1AE7D2FF3AC5}

O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM][64Bits] -- {D45240D3-B6B3-4FF9-B243-54ECE3E10066}

O42 - Logiciel: Windows Live Essentials - (.Microsoft Corporation.) [HKLM][64Bits] -- WinLiveSuite

O42 - Logiciel: Windows Live Essentials - (.Microsoft Corporation.) [HKLM][64Bits] -- {FE044230-9CA5-43F7-9B58-5AC5A28A1F33}

O42 - Logiciel: Windows Live Family Safety - (.Microsoft Corporation.) [HKLM] -- {1AAF3A3B-7B32-4DDF-8ABB-438DAEB46EEC}

O42 - Logiciel: Windows Live Family Safety - (.Microsoft Corporation.) [HKLM] -- {46A5FBE9-ADB3-4493-A1CC-B4CFFD24D26A}

O42 - Logiciel: Windows Live Family Safety - (.Microsoft Corporation.) [HKLM] -- {FE4BE0BD-1EDB-4D24-9614-847B3C472887}

O42 - Logiciel: Windows Live FolderShare - (.Microsoft Corporation.) [HKLM][64Bits] -- {76810709-A7D3-468D-9167-A1780C1E766C}

O42 - Logiciel: Windows Live ID Sign-in Assistant - (.Microsoft Corporation.) [HKLM] -- {1B8ABA62-74F0-47ED-B18C-A43128E591B8}

O42 - Logiciel: Windows Live Installer - (.Microsoft Corporation.) [HKLM][64Bits] -- {0B0F231F-CE6A-483D-AA23-77B364F75917}

O42 - Logiciel: Windows Live Language Selector - (.Microsoft Corporation.) [HKLM] -- {D07A61E5-A59C-433C-BCBD-22025FA2287B}

O42 - Logiciel: Windows Live MIME IFilter - (.Microsoft Corporation.) [HKLM] -- {DA54F80E-261C-41A2-A855-549A144F2F59}

O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM][64Bits] -- {9D56775A-93F3-44A3-8092-840E3826DE30}

O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM][64Bits] -- {9FAE6E8D-E686-49F5-A574-0A58DFD9580C}

O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM][64Bits] -- {C66824E4-CBB3-4851-BB3F-E8CFD6350923}

O42 - Logiciel: Windows Live Mesh - (.Microsoft Corporation.) [HKLM][64Bits] -- {841F1FB4-FDF8-461C-A496-3E1CFD84C0B5}

O42 - Logiciel: Windows Live Mesh - (.Microsoft Corporation.) [HKLM][64Bits] -- {A0C91188-C88F-4E86-93E6-CD7C9A266649}

O42 - Logiciel: Windows Live Mesh - (.Microsoft Corporation.) [HKLM][64Bits] -- {DECDCB7C-58CC-4865-91AF-627F9798FE48}

O42 - Logiciel: Windows Live Mesh ActiveX Control for Remote Connections - (.Microsoft Corporation.) [HKLM][64Bits] -- {2902F983-B4C1-44BA-B85D-5C6D52E2C441}

O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {6057E21C-ABE9-4059-AE3E-3BEB9925E660}

O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {80956555-A512-4190-9CAD-B000C36D6B6B}

O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {EB4DF488-AAEF-406F-A341-CB2AAA315B90}

O42 - Logiciel: Windows Live Messenger Companion Core - (.Microsoft Corporation.) [HKLM][64Bits] -- {78A96B4C-A643-4D0F-98C2-A8E16A6669F9}

O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM][64Bits] -- {6DEC8BD5-7574-47FA-B080-492BBBE2FEA3}

O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM][64Bits] -- {92EA4134-10D1-418A-91E1-5A0453131A38}

O42 - Logiciel: Windows Live PIMT Platform - (.Microsoft Corporation.) [HKLM][64Bits] -- {83C292B7-38A5-440B-A731-07070E81A64F}

O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM][64Bits] -- {A9BDCA6B-3653-467B-AC83-94367DA3BFE3}

O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM][64Bits] -- {C893D8C0-1BA0-4517-B11C-E89B65E72F70}

O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM][64Bits] -- {D436F577-1695-4D2F-8B44-AC76C99E0002}

O42 - Logiciel: Windows Live Photo Gallery - (.Microsoft Corporation.) [HKLM][64Bits] -- {3336F667-9049-4D46-98B6-4C743EEBC5B1}

O42 - Logiciel: Windows Live Remote Client - (.Microsoft Corporation.) [HKLM] -- {DF6D988A-EEA0-4277-AAB8-158E086E439B}

O42 - Logiciel: Windows Live Remote Client Resources - (.Microsoft Corporation.) [HKLM] -- {847B0532-55E3-4AAF-8D7B-E3A1A7CD17E5}

O42 - Logiciel: Windows Live Remote Client Resources - (.Microsoft Corporation.) [HKLM] -- {B750FA38-7AB0-42CB-ACBB-E7DBE9FF603F}

O42 - Logiciel: Windows Live Remote Service - (.Microsoft Corporation.) [HKLM] -- {E02A6548-6FDE-40E2-8ED9-119D7D7E641F}

O42 - Logiciel: Windows Live Remote Service Resources - (.Microsoft Corporation.) [HKLM] -- {5E2CD4FB-4538-4831-8176-05D653C3E6D4}

O42 - Logiciel: Windows Live Remote Service Resources - (.Microsoft Corporation.) [HKLM] -- {656DEEDE-F6AC-47CA-A568-A1B4E34B5760}

O42 - Logiciel: Windows Live SOXE - (.Microsoft Corporation.) [HKLM][64Bits] -- {682B3E4F-696A-42DE-A41C-4C07EA1678B4}

O42 - Logiciel: Windows Live SOXE Definitions - (.Microsoft Corporation.) [HKLM][64Bits] -- {200FEC62-3C34-4D60-9CE8-EC372E01C08F}

O42 - Logiciel: Windows Live UX Platform - (.Microsoft Corporation.) [HKLM][64Bits] -- {CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}

O42 - Logiciel: Windows Live UX Platform Language Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {05E379CC-F626-4E7D-8354-463865B303BF}

O42 - Logiciel: Windows Live UX Platform Language Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}

O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM][64Bits] -- {3B9A92DA-6374-4872-B646-253F18624D5F}

O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM][64Bits] -- {A726AE06-AAA3-43D1-87E3-70F510314F04}

O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM][64Bits] -- {AAAFC670-569B-4A2F-82B4-42945E0DE3EF}

O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM][64Bits] -- {AAF454FC-82CA-4F29-AB31-6A109485E76E}

O42 - Logiciel: Windows Live Writer Resources - (.Microsoft Corporation.) [HKLM][64Bits] -- {62687B11-58B5-4A18-9BC3-9DF4CE03F194}

O42 - Logiciel: Windows Live Writer Resources - (.Microsoft Corporation.) [HKLM][64Bits] -- {DDC8BDEE-DCAC-404D-8257-3E8D4B782467}

O42 - Logiciel: Windows Media Encoder 9 Series - (.Microsoft Corporation.) [HKLM][64Bits] -- {E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}

O42 - Logiciel: Windows Media Encoder 9 Series - (.Pas de propriétaire.) [HKLM][64Bits] -- Windows Media Encoder 9

O42 - Logiciel: Windows Media Player Firefox Plugin - (.Microsoft Corp.) [HKLM][64Bits] -- {69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}

O42 - Logiciel: Windows Media Player Plus! 1.1 - (.BM-productions.) [HKLM][64Bits] -- {67E4EF06-E0D6-42E0-A2BA-67199B0143FB}_is1

O42 - Logiciel: Wipe 2011.02 - (.Pas de propriétaire.) [HKLM][64Bits] -- Wipe 2011

O42 - Logiciel: Yahoo! Install Manager - (.Pas de propriétaire.) [HKLM][64Bits] -- YInstHelper

O42 - Logiciel: Yahoo! Internet Mail - (.Pas de propriétaire.) [HKLM][64Bits] -- Yahoo! Mail

O42 - Logiciel: Yahoo! Mail Advisor - (.Pas de propriétaire.) [HKLM][64Bits] -- Yahoo! Mail Advisor

O42 - Logiciel: Yahoo! Messenger - (.Yahoo! Inc..) [HKLM][64Bits] -- Yahoo! Messenger

O42 - Logiciel: Yahoo! Software Update - (.Pas de propriétaire.) [HKLM][64Bits] -- Yahoo! Software Update

O42 - Logiciel: Yahoo! Toolbar - (.Pas de propriétaire.) [HKLM][64Bits] -- Yahoo! Companion

O42 - Logiciel: YouSendIt Express - (.YouSendIt.) [HKLM][64Bits] -- InstallShield_{8C8224B7-AA9B-4807-97CD-55899BAC83FE}

O42 - Logiciel: YouSendIt Express - (.YouSendIt.) [HKLM][64Bits] -- {8C8224B7-AA9B-4807-97CD-55899BAC83FE}

O42 - Logiciel: calibre - (.Kovid Goyal.) [HKLM][64Bits] -- {A61D4172-C0E2-4954-8132-73B1B70EB114}

O42 - Logiciel: mipony-plugin Toolbar - (.Pas de propriétaire.) [HKLM][64Bits] -- mipony-plugin Toolbar

O42 - Logiciel: runtime64 - (.immunet.) [HKLM] -- {AB79B2CD-4555-4D3F-BC37-8948598223F2}

 

---\\ HKCU & HKLM Software Keys

[HKCU\Software\7-Zip]

[HKCU\Software\AC3filter]

[HKCU\Software\ALWIL Software]

[HKCU\Software\AVS4YOU]

[HKCU\Software\Adobe]

[HKCU\Software\Antanda]

[HKCU\Software\AppDataLow\HavingFunOnline]

[HKCU\Software\AppDataLow\Software\Adobe]

[HKCU\Software\AppDataLow\Software\Avanquest_FR]

[HKCU\Software\AppDataLow\Software\Conduit]

[HKCU\Software\AppDataLow\Software\Freecorder]

[HKCU\Software\AppDataLow\Software\Google]

[HKCU\Software\AppDataLow\Software\Microsoft]

[HKCU\Software\AppDataLow\Software\Monitored]

[HKCU\Software\AppDataLow\Software\MyAshampoo]

[HKCU\Software\AppDataLow\Software\PriceGong]

[HKCU\Software\AppDataLow\Software\Tom's_Guide_France]

[HKCU\Software\AppDataLow\Software\Yahoo]

[HKCU\Software\AppDataLow\Software\conduitEngine]

[HKCU\Software\AppDataLow\Software\mipony-plugin]

[HKCU\Software\AppDataLow\Software\myBabylon_English]

[HKCU\Software\AppDataLow\Software\settings]

[HKCU\Software\AppDataLow\Software\toolbar]

[HKCU\Software\AppDataLow\Software]

[HKCU\Software\AppDataLow\Toolbar]

[HKCU\Software\AppDataLow]

[HKCU\Software\Apple Computer, Inc.]

[HKCU\Software\Apple Inc.]

[HKCU\Software\ApplianTechnologies]

[HKCU\Software\Ashampoo]

[HKCU\Software\Ask&Record]

[HKCU\Software\Avant Browser]

[HKCU\Software\BM-productions]

[HKCU\Software\Bugsplat]

[HKCU\Software\CDDB]

[HKCU\Software\Classes]

[HKCU\Software\Clients]

[HKCU\Software\Conduit]

[HKCU\Software\CoreVorbis]

[HKCU\Software\CyberLink]

[HKCU\Software\DT Soft]

[HKCU\Software\DivX]

[HKCU\Software\FileHippo.com]

[HKCU\Software\FlashPeak]

[HKCU\Software\GNU]

[HKCU\Software\Gabest]

[HKCU\Software\Google]

[HKCU\Software\Haali]

[HKCU\Software\IM Providers]

[HKCU\Software\IncrediMail]

[HKCU\Software\Informer Technologies, Inc.]

[HKCU\Software\JavaSoft]

[HKCU\Software\KMPlayer]

[HKCU\Software\KovidsBrain]

[HKCU\Software\MONOGRAM]

[HKCU\Software\Macromedia]

[HKCU\Software\Malwarebytes' Anti-Malware]

[HKCU\Software\ManiacTools]

[HKCU\Software\MozillaPlugins]

[HKCU\Software\Mozilla]

[HKCU\Software\MyDefrag]

[HKCU\Software\NVIDIA Corporation]

[HKCU\Software\Netscape]

[HKCU\Software\Neuber GbR]

[HKCU\Software\ODBC]

[HKCU\Software\OfferBox]

[HKCU\Software\Opera Software]

[HKCU\Software\Pando Networks]

[HKCU\Software\Password Safe]

[HKCU\Software\Piriform]

[HKCU\Software\Policies]

[HKCU\Software\Reactor]

[HKCU\Software\RealNetworks]

[HKCU\Software\SUPERAntiSpyware.com]

[HKCU\Software\Safer Networking Limited]

[HKCU\Software\Siber Systems]

[HKCU\Software\SkypeApps]

[HKCU\Software\Skype]

[HKCU\Software\SmartTweak]

[HKCU\Software\Softonic]

[HKCU\Software\Soulseek2]

[HKCU\Software\Spointer]

[HKCU\Software\Stardock]

[HKCU\Software\Synaptics]

[HKCU\Software\TOSHIBA]

[HKCU\Software\TeamViewer]

[HKCU\Software\Trolltech]

[HKCU\Software\VB and VBA Program Settings]

[HKCU\Software\Valve]

[HKCU\Software\VirtuaMedia]

[HKCU\Software\WhiteSmoke]

[HKCU\Software\WideStream]

[HKCU\Software\WinRAR SFX]

[HKCU\Software\WinRAR]

[HKCU\Software\Winamp]

[HKCU\Software\Wow6432Node]

[HKCU\Software\YahooPartnerToolbar]

[HKCU\Software\Yahoo]

[HKCU\Software\YouSendIt]

[HKCU\Software\Zugo]

[HKCU\Software\giveawayoftheday.com]

[HKCU\Software\madFlac]

[HKCU\Software\mozilla.org]

[HKLM\Software\7-Zip]

[HKLM\Software\AGEIA Technologies]

[HKLM\Software\ATI Technologies]

[HKLM\Software\Apple Computer, Inc.]

[HKLM\Software\Ashampoo]

[HKLM\Software\BrowserChoice]

[HKLM\Software\CUSTPDF Writer]

[HKLM\Software\Classes]

[HKLM\Software\Cleanse]

[HKLM\Software\Clients]

[HKLM\Software\Conexant Systems Inc ]

[HKLM\Software\Conexant]

[HKLM\Software\Dolby]

[HKLM\Software\GEAR Software]

[HKLM\Software\Google]

[HKLM\Software\InstalledOptions]

[HKLM\Software\Intel]

[HKLM\Software\InterVideo]

[HKLM\Software\Iomega Corp]

[HKLM\Software\Khronos]

[HKLM\Software\MozillaPlugins]

[HKLM\Software\Mozilla]

[HKLM\Software\Myown6.50]

[HKLM\Software\NVIDIA Corporation]

[HKLM\Software\ODBC]

[HKLM\Software\Piriform]

[HKLM\Software\Policies]

[HKLM\Software\RegisteredApplications]

[HKLM\Software\SOFTWARE]

[HKLM\Software\SUPERAntiSpyware.com]

[HKLM\Software\Softwin]

[HKLM\Software\Soluto]

[HKLM\Software\Sonic]

[HKLM\Software\Synaptics]

[HKLM\Software\TOSHIBA]

[HKLM\Software\Toshiba Tempro]

[HKLM\Software\WinRAR]

[HKLM\Software\Wow6432Node]

 

 

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)

O43 - CFD: 19/12/2010 - 22:35:42 ----D- C:\Program Files\7-Zip

O43 - CFD: 18/10/2010 - 09:13:22 ----D- C:\Program Files\Alwil Software

O43 - CFD: 19/12/2010 - 23:14:48 ----D- C:\Program Files\Common Files

O43 - CFD: 06/05/2010 - 10:56:42 ----D- C:\Program Files\CONEXANT

O43 - CFD: 12/01/2011 - 23:49:00 ----D- C:\Program Files\D31504102

O43 - CFD: 01/02/2011 - 22:56:04 ----D- C:\Program Files\Defraggler

O43 - CFD: 06/05/2010 - 11:26:40 ----D- C:\Program Files\Dolby

O43 - CFD: 12/01/2011 - 23:15:50 ----D- C:\Program Files\DONDUCIEL

O43 - CFD: 14/07/2009 - 16:35:28 ----D- C:\Program Files\DVD Maker

O43 - CFD: 03/06/2010 - 18:40:38 -SH-D- C:\Program Files\Fichiers communs

O43 - CFD: 13/12/2009 - 19:36:04 ----D- C:\Program Files\Google

O43 - CFD: 14/01/2011 - 08:13:34 R---D- C:\Program Files\HDDRecovery

O43 - CFD: 05/02/2011 - 15:01:46 ----D- C:\Program Files\Immunet Protect

O43 - CFD: 19/09/2010 - 11:19:24 ----D- C:\Program Files\Internet Explorer

O43 - CFD: 12/01/2011 - 21:35:14 ----D- C:\Program Files\Iomega

O43 - CFD: 13/12/2009 - 19:38:20 ----D- C:\Program Files\Microsoft Games

O43 - CFD: 13/12/2009 - 19:19:16 ----D- C:\Program Files\Microsoft Office

O43 - CFD: 25/01/2011 - 21:21:52 ----D- C:\Program Files\Microsoft Security Client

O43 - CFD: 14/07/2009 - 06:32:40 ----D- C:\Program Files\MSBuild

O43 - CFD: 06/02/2011 - 16:47:14 ----D- C:\Program Files\MyDefrag v4.3.1

O43 - CFD: 20/11/2010 - 23:16:50 ----D- C:\Program Files\NVIDIA Corporation

O43 - CFD: 13/12/2009 - 19:13:24 ----D- C:\Program Files\PlayReady

O43 - CFD: 14/07/2009 - 06:32:40 ----D- C:\Program Files\Reference Assemblies

O43 - CFD: 09/01/2011 - 23:38:22 ----D- C:\Program Files\Soluto

O43 - CFD: 16/01/2011 - 02:14:44 ----D- C:\Program Files\SUPERAntiSpyware

O43 - CFD: 06/05/2010 - 11:00:06 ----D- C:\Program Files\Synaptics

O43 - CFD: 09/02/2011 - 21:21:02 ----D- C:\Program Files\Toshiba

O43 - CFD: 14/07/2009 - 06:09:28 --H-D- C:\Program Files\Uninstall Information

O43 - CFD: 14/07/2009 - 16:24:10 ----D- C:\Program Files\Windows Defender

O43 - CFD: 14/07/2009 - 16:35:28 ----D- C:\Program Files\Windows Journal

O43 - CFD: 19/12/2010 - 12:38:52 ----D- C:\Program Files\Windows Live

O43 - CFD: 15/12/2010 - 22:44:18 ----D- C:\Program Files\Windows Mail

O43 - CFD: 15/10/2010 - 02:22:44 ----D- C:\Program Files\Windows Media Player

O43 - CFD: 03/06/2010 - 18:40:38 ----D- C:\Program Files\Windows NT

O43 - CFD: 14/07/2009 - 16:24:10 ----D- C:\Program Files\Windows Photo Viewer

O43 - CFD: 14/07/2009 - 06:32:40 ----D- C:\Program Files\Windows Portable Devices

O43 - CFD: 14/07/2009 - 16:24:10 ----D- C:\Program Files\Windows Sidebar

O43 - CFD: 10/02/2011 - 09:32:18 ----D- C:\Program Files\WinRAR

O43 - CFD: 04/10/2010 - 05:39:28 ----D- C:\Program Files\Common Files\Microsoft Shared

O43 - CFD: 14/07/2009 - 04:20:10 ----D- C:\Program Files\Common Files\Services

O43 - CFD: 14/07/2009 - 04:20:10 ----D- C:\Program Files\Common Files\SpeechEngines

O43 - CFD: 14/07/2009 - 16:24:10 ----D- C:\Program Files\Common Files\System

O43 - CFD: 06/05/2010 - 11:04:22 ----D- C:\Program Files\Common Files\TOSHIBA Shared

O43 - CFD: 25/01/2011 - 21:13:58 ----D- C:\ProgramData\!SASCORE

O43 - CFD: 06/02/2011 - 23:11:10 ----D- C:\ProgramData\Adobe

O43 - CFD: 18/10/2010 - 09:13:22 ----D- C:\ProgramData\Alwil Software

O43 - CFD: 05/06/2010 - 15:24:06 ----D- C:\ProgramData\Apple

O43 - CFD: 01/09/2010 - 05:26:50 ----D- C:\ProgramData\Apple Computer

O43 - CFD: 14/07/2009 - 06:08:58 -SH-D- C:\ProgramData\Application Data

O43 - CFD: 28/12/2010 - 22:37:20 ----D- C:\ProgramData\ashampoo

O43 - CFD: 03/06/2010 - 18:40:38 -SH-D- C:\ProgramData\Bureau

O43 - CFD: 05/09/2010 - 18:03:38 ----D- C:\ProgramData\DAEMON Tools Lite

O43 - CFD: 14/07/2009 - 06:08:58 -SH-D- C:\ProgramData\Desktop

O43 - CFD: 14/07/2009 - 06:08:58 -SH-D- C:\ProgramData\Documents

O43 - CFD: 29/01/2011 - 11:11:18 ----D- C:\ProgramData\Driver Whiz

O43 - CFD: 04/06/2010 - 07:02:20 ----D- C:\ProgramData\f-secure

O43 - CFD: 03/06/2010 - 18:40:38 -SH-D- C:\ProgramData\Favoris

O43 - CFD: 14/07/2009 - 06:08:58 -SH-D- C:\ProgramData\Favorites

O43 - CFD: 11/08/2010 - 01:02:56 ----D- C:\ProgramData\fssg

O43 - CFD: 05/06/2010 - 21:22:32 ----D- C:\ProgramData\Google

O43 - CFD: 25/08/2010 - 10:23:14 ----D- C:\ProgramData\IM

O43 - CFD: 05/02/2011 - 13:03:22 ----D- C:\ProgramData\Immunet

O43 - CFD: 25/08/2010 - 10:22:14 ----D- C:\ProgramData\IncrediMail

O43 - CFD: 23/07/2010 - 09:50:30 ----D- C:\ProgramData\InterVideo

O43 - CFD: 15/12/2010 - 19:43:42 ----D- C:\ProgramData\IObit

O43 - CFD: 13/12/2009 - 19:46:42 ----D- C:\ProgramData\IsolatedStorage

O43 - CFD: 16/06/2010 - 22:06:04 ----D- C:\ProgramData\Malwarebytes

O43 - CFD: 03/06/2010 - 20:50:42 ----D- C:\ProgramData\McAfee

O43 - CFD: 03/06/2010 - 18:40:38 -SH-D- C:\ProgramData\Menu Démarrer

O43 - CFD: 25/01/2011 - 21:20:08 -S--D- C:\ProgramData\Microsoft

O43 - CFD: 20/12/2010 - 15:06:30 ----D- C:\ProgramData\Microsoft Help

O43 - CFD: 03/06/2010 - 18:40:38 -SH-D- C:\ProgramData\Modèles

O43 - CFD: 21/11/2010 - 11:26:00 ----D- C:\ProgramData\NVIDIA

O43 - CFD: 20/11/2010 - 23:15:18 ----D- C:\ProgramData\NVIDIA Corporation

O43 - CFD: 14/07/2010 - 19:30:20 ----D- C:\ProgramData\Office Genuine Advantage

O43 - CFD: 02/02/2011 - 07:04:26 ----D- C:\ProgramData\page

O43 - CFD: 13/07/2010 - 20:33:06 ----D- C:\ProgramData\Partner

O43 - CFD: 18/11/2010 - 03:10:08 ----D- C:\ProgramData\Real

O43 - CFD: 30/11/2010 - 10:43:00 ----D- C:\ProgramData\SecTaskMan

O43 - CFD: 13/12/2009 - 19:31:44 ----D- C:\ProgramData\SiteAdvisor

O43 - CFD: 20/01/2011 - 19:57:22 ----D- C:\ProgramData\Skype

O43 - CFD: 11/07/2010 - 19:36:10 ----D- C:\ProgramData\SmartSound Software Inc

O43 - CFD: 15/01/2011 - 17:47:00 ----D- C:\ProgramData\Soluto

O43 - CFD: 08/02/2011 - 19:56:00 ----D- C:\ProgramData\Spybot - Search & Destroy

O43 - CFD: 14/07/2009 - 06:08:58 -SH-D- C:\ProgramData\Start Menu

O43 - CFD: 25/06/2010 - 10:46:40 ----D- C:\ProgramData\Sun

O43 - CFD: 28/10/2010 - 22:05:06 ----D- C:\ProgramData\SUPERAntiSpyware.com

O43 - CFD: 11/07/2010 - 19:40:10 ----D- C:\ProgramData\Temp

O43 - CFD: 14/07/2009 - 06:08:58 -SH-D- C:\ProgramData\Templates

O43 - CFD: 03/08/2010 - 23:11:30 ----D- C:\ProgramData\TOSHIBA

O43 - CFD: 23/07/2010 - 09:21:54 ----D- C:\ProgramData\TOSHIBA Tempro

O43 - CFD: 03/06/2010 - 18:41:10 ----D- C:\ProgramData\ToshibaEurope

O43 - CFD: 06/05/2010 - 11:17:50 ----D- C:\ProgramData\Ulead Systems

O43 - CFD: 03/06/2010 - 20:31:20 ----D- C:\ProgramData\WildTangent

O43 - CFD: 14/11/2010 - 11:26:00 ----D- C:\ProgramData\Win7codecs

O43 - CFD: 06/06/2010 - 22:50:12 ----D- C:\ProgramData\WinZip

O43 - CFD: 14/10/2010 - 18:46:08 ----D- C:\ProgramData\Yahoo!

O43 - CFD: 19/09/2010 - 11:00:42 ----D- C:\ProgramData\Yahoo! Companion

O43 - CFD: 17/12/2010 - 15:01:06 ----D- C:\Users\Jean Marc\AppData\Roaming\Adobe

O43 - CFD: 20/08/2010 - 17:20:00 ----D- C:\Users\Jean Marc\AppData\Roaming\Apple Computer

O43 - CFD: 02/02/2011 - 09:04:12 ----D- C:\Users\Jean Marc\AppData\Roaming\Ashampoo

O43 - CFD: 08/01/2011 - 09:45:08 ----D- C:\Users\Jean Marc\AppData\Roaming\Boilsoft

O43 - CFD: 02/02/2011 - 21:32:52 ----D- C:\Users\Jean Marc\AppData\Roaming\calibre

O43 - CFD: 02/01/2011 - 20:29:56 ----D- C:\Users\Jean Marc\AppData\Roaming\CDisplayEx

O43 - CFD: 04/02/2011 - 13:39:22 ----D- C:\Users\Jean Marc\AppData\Roaming\com.grammys.musicislifeismusic

O43 - CFD: 05/09/2010 - 18:02:58 ----D- C:\Users\Jean Marc\AppData\Roaming\DAEMON Tools Lite

O43 - CFD: 18/06/2010 - 21:01:22 ----D- C:\Users\Jean Marc\AppData\Roaming\Downloaded Installations

O43 - CFD: 02/02/2011 - 14:05:04 ----D- C:\Users\Jean Marc\AppData\Roaming\dvdcss

O43 - CFD: 22/10/2010 - 18:22:12 ----D- C:\Users\Jean Marc\AppData\Roaming\F-Secure

O43 - CFD: 05/09/2010 - 19:08:04 ----D- C:\Users\Jean Marc\AppData\Roaming\FileZilla

O43 - CFD: 03/06/2010 - 20:12:56 ----D- C:\Users\Jean Marc\AppData\Roaming\Google

O43 - CFD: 03/06/2010 - 19:56:42 ----D- C:\Users\Jean Marc\AppData\Roaming\Identities

O43 - CFD: 23/07/2010 - 09:42:50 ----D- C:\Users\Jean Marc\AppData\Roaming\InstallShield

O43 - CFD: 03/06/2010 - 19:57:42 ----D- C:\Users\Jean Marc\AppData\Roaming\Intel Corporation

O43 - CFD: 15/12/2010 - 19:43:02 ----D- C:\Users\Jean Marc\AppData\Roaming\IObit

O43 - CFD: 18/10/2010 - 22:24:30 ----D- C:\Users\Jean Marc\AppData\Roaming\LibreOffice

O43 - CFD: 09/06/2010 - 09:38:08 ----D- C:\Users\Jean Marc\AppData\Roaming\Macromedia

O43 - CFD: 16/06/2010 - 22:06:16 ----D- C:\Users\Jean Marc\AppData\Roaming\Malwarebytes

O43 - CFD: 18/01/2011 - 11:43:40 ----D- C:\Users\Jean Marc\AppData\Roaming\MaxTV Technologies

O43 - CFD: 14/07/2009 - 16:35:06 ----D- C:\Users\Jean Marc\AppData\Roaming\Media Center Programs

O43 - CFD: 08/08/2010 - 22:09:52 ----D- C:\Users\Jean Marc\AppData\Roaming\Media Player Classic

O43 - CFD: 02/02/2011 - 06:31:42 -S--D- C:\Users\Jean Marc\AppData\Roaming\Microsoft

O43 - CFD: 28/10/2010 - 12:23:40 ----D- C:\Users\Jean Marc\AppData\Roaming\Mipony

O43 - CFD: 04/06/2010 - 10:14:32 ----D- C:\Users\Jean Marc\AppData\Roaming\Mozilla

O43 - CFD: 05/08/2010 - 11:19:32 ----D- C:\Users\Jean Marc\AppData\Roaming\MxBoost

O43 - CFD: 31/01/2011 - 11:46:26 ----D- C:\Users\Jean Marc\AppData\Roaming\OfferBox

O43 - CFD: 27/09/2010 - 05:03:24 ----D- C:\Users\Jean Marc\AppData\Roaming\OpenOffice.org

O43 - CFD: 21/06/2010 - 06:57:50 ----D- C:\Users\Jean Marc\AppData\Roaming\Opera

O43 - CFD: 26/07/2010 - 21:09:54 ----D- C:\Users\Jean Marc\AppData\Roaming\PetShowCraze

O43 - CFD: 18/01/2011 - 22:05:24 ----D- C:\Users\Jean Marc\AppData\Roaming\Real

O43 - CFD: 08/08/2010 - 22:07:02 ----D- C:\Users\Jean Marc\AppData\Roaming\SEDE

O43 - CFD: 10/02/2011 - 19:11:44 ----D- C:\Users\Jean Marc\AppData\Roaming\Skype

O43 - CFD: 10/02/2011 - 17:57:02 ----D- C:\Users\Jean Marc\AppData\Roaming\skypePM

O43 - CFD: 28/10/2010 - 12:02:40 ----D- C:\Users\Jean Marc\AppData\Roaming\SlimBrowser

O43 - CFD: 10/02/2011 - 09:24:32 ----D- C:\Users\Jean Marc\AppData\Roaming\Software Informer

O43 - CFD: 05/09/2010 - 18:46:34 ----D- C:\Users\Jean Marc\AppData\Roaming\Stardock

O43 - CFD: 10/02/2011 - 20:15:22 ----D- C:\Users\Jean Marc\AppData\Roaming\STGU

O43 - CFD: 16/12/2010 - 14:19:18 ----D- C:\Users\Jean Marc\AppData\Roaming\SUPERAntiSpyware.com

O43 - CFD: 27/07/2010 - 21:14:44 ----D- C:\Users\Jean Marc\AppData\Roaming\TeamViewer

O43 - CFD: 23/10/2010 - 20:41:02 ----D- C:\Users\Jean Marc\AppData\Roaming\Template

O43 - CFD: 03/06/2010 - 19:58:18 ----D- C:\Users\Jean Marc\AppData\Roaming\TFPU

O43 - CFD: 05/06/2010 - 16:30:16 ----D- C:\Users\Jean Marc\AppData\Roaming\Thunderbird

O43 - CFD: 04/06/2010 - 21:41:46 ----D- C:\Users\Jean Marc\AppData\Roaming\Toshiba

O43 - CFD: 25/11/2010 - 16:07:48 ----D- C:\Users\Jean Marc\AppData\Roaming\Uniblue

O43 - CFD: 02/02/2011 - 13:13:20 ----D- C:\Users\Jean Marc\AppData\Roaming\vlc

O43 - CFD: 05/09/2010 - 20:02:40 ----D- C:\Users\Jean Marc\AppData\Roaming\WeatherBug

O43 - CFD: 17/09/2010 - 11:08:44 ----D- C:\Users\Jean Marc\AppData\Roaming\widestream

O43 - CFD: 14/11/2010 - 11:26:00 ----D- C:\Users\Jean Marc\AppData\Roaming\Win7codecs

O43 - CFD: 10/02/2011 - 20:17:34 ----D- C:\Users\Jean Marc\AppData\Roaming\Winamp

O43 - CFD: 23/07/2010 - 09:33:44 ----D- C:\Users\Jean Marc\AppData\Roaming\WinBatch

O43 - CFD: 16/08/2010 - 07:13:22 ----D- C:\Users\Jean Marc\AppData\Roaming\Windows Live Writer

O43 - CFD: 05/06/2010 - 19:40:26 ----D- C:\Users\Jean Marc\AppData\Roaming\WinRAR

O43 - CFD: 08/10/2010 - 08:03:28 ----D- C:\Users\Jean Marc\AppData\Roaming\WIPE

O43 - CFD: 16/12/2010 - 09:57:08 ----D- C:\Users\Jean Marc\AppData\Roaming\Yahoo!

O43 - CFD: 20/01/2011 - 09:56:32 ----D- C:\Users\Jean Marc\AppData\Roaming\YouSendIt

O43 - CFD: 15/12/2010 - 19:30:50 ----D- C:\Program Files (x86)\Adobe

O43 - CFD: 01/02/2011 - 12:54:06 ----D- C:\Program Files (x86)\adslTV

O43 - CFD: 05/06/2010 - 15:24:08 ----D- C:\Program Files (x86)\Apple Software Update

O43 - CFD: 02/02/2011 - 11:20:48 ----D- C:\Program Files (x86)\Ashampoo

O43 - CFD: 29/01/2011 - 20:52:46 ----D- C:\Program Files (x86)\Avant Browser

O43 - CFD: 03/09/2010 - 08:56:40 ----D- C:\Program Files (x86)\Babylon

O43 - CFD: 16/01/2011 - 16:17:12 ----D- C:\Program Files (x86)\Boilsoft Video Joiner

O43 - CFD: 02/02/2011 - 15:22:22 ----D- C:\Program Files (x86)\Calibre2

O43 - CFD: 01/02/2011 - 07:25:18 ----D- C:\Program Files (x86)\CCleaner

O43 - CFD: 02/01/2011 - 20:29:16 ----D- C:\Program Files (x86)\CDisplayEx

O43 - CFD: 03/06/2010 - 21:30:06 ----D- C:\Program Files (x86)\Citrix

O43 - CFD: 01/02/2011 - 13:18:40 ----D- C:\Program Files (x86)\Common Files

O43 - CFD: 18/01/2011 - 11:22:24 ----D- C:\Program Files (x86)\Conduit

O43 - CFD: 18/01/2011 - 11:22:16 ----D- C:\Program Files (x86)\ConduitEngine

O43 - CFD: 06/05/2010 - 11:15:28 ----D- C:\Program Files (x86)\Corel

O43 - CFD: 14/11/2010 - 11:35:50 ----D- C:\Program Files (x86)\CrazyLoader

O43 - CFD: 07/11/2010 - 14:03:10 ----D- C:\Program Files (x86)\CyberLink

O43 - CFD: 16/01/2011 - 15:47:24 ----D- C:\Program Files (x86)\DAEMON Tools Toolbar

O43 - CFD: 20/12/2010 - 15:05:18 ----D- C:\Program Files (x86)\DartyBox Sécurité

O43 - CFD: 18/06/2010 - 21:27:36 ----D- C:\Program Files (x86)\Driver-Soft

O43 - CFD: 25/11/2010 - 03:00:46 ----D- C:\Program Files (x86)\Feedback Tool

O43 - CFD: 19/12/2010 - 11:26:00 ----D- C:\Program Files (x86)\FileHippo.com

O43 - CFD: 27/07/2010 - 22:31:30 ----D- C:\Program Files (x86)\FirefoxPortable

O43 - CFD: 18/01/2011 - 11:31:16 ----D- C:\Program Files (x86)\FLV Player

O43 - CFD: 18/01/2011 - 11:29:28 ----D- C:\Program Files (x86)\Freecorder

O43 - CFD: 03/06/2010 - 20:33:34 ----D- C:\Program Files (x86)\Google

O43 - CFD: 13/12/2010 - 15:18:46 ----D- C:\Program Files (x86)\GPLGS

O43 - CFD: 09/02/2011 - 21:21:34 --H-D- C:\Program Files (x86)\InstallShield Installation Information

O43 - CFD: 16/01/2011 - 15:52:24 ----D- C:\Program Files (x86)\Intel

O43 - CFD: 19/09/2010 - 11:19:24 ----D- C:\Program Files (x86)\Internet Explorer

O43 - CFD: 23/07/2010 - 09:50:54 ----D- C:\Program Files (x86)\InterVideo

O43 - CFD: 16/12/2010 - 09:49:24 ----D- C:\Program Files (x86)\IObit

O43 - CFD: 12/01/2011 - 21:45:48 ----D- C:\Program Files (x86)\Iomega

O43 - CFD: 18/12/2010 - 17:23:26 ----D- C:\Program Files (x86)\Java

O43 - CFD: 28/10/2010 - 12:09:02 ----D- C:\Program Files (x86)\K-Meleon

O43 - CFD: 28/10/2010 - 12:15:04 ----D- C:\Program Files (x86)\LibreOffice 3

O43 - CFD: 23/01/2011 - 00:01:06 ----D- C:\Program Files (x86)\Malwarebytes' Anti-Malware

O43 - CFD: 18/01/2011 - 11:42:16 ----D- C:\Program Files (x86)\MaxTV

O43 - CFD: 10/06/2010 - 08:57:50 ----D- C:\Program Files (x86)\Microsoft

O43 - CFD: 25/01/2011 - 21:21:06 ----D- C:\Program Files (x86)\Microsoft Antimalware

O43 - CFD: 21/09/2010 - 19:22:54 ----D- C:\Program Files (x86)\Microsoft Office

O43 - CFD: 13/12/2009 - 19:24:16 ----D- C:\Program Files (x86)\Microsoft Office Suite Activation Assistant

O43 - CFD: 12/11/2010 - 11:46:24 ----D- C:\Program Files (x86)\Microsoft Reader

O43 - CFD: 25/01/2011 - 21:21:10 ----D- C:\Program Files (x86)\Microsoft Security Client

O43 - CFD: 25/12/2010 - 11:45:34 ----D- C:\Program Files (x86)\Microsoft Silverlight

O43 - CFD: 13/12/2009 - 19:43:20 ----D- C:\Program Files (x86)\Microsoft SQL Server Compact Edition

O43 - CFD: 09/02/2011 - 17:59:26 ----D- C:\Program Files (x86)\Microsoft Windows 7 Upgrade Advisor

O43 - CFD: 15/12/2010 - 22:44:48 ----D- C:\Program Files (x86)\Microsoft Works

O43 - CFD: 16/11/2010 - 03:07:14 ----D- C:\Program Files (x86)\Microsoft.NET

O43 - CFD: 08/01/2011 - 02:56:02 ----D- C:\Program Files (x86)\MiPony

O43 - CFD: 10/01/2011 - 16:44:00 ----D- C:\Program Files (x86)\mipony-plugin

O43 - CFD: 10/01/2011 - 16:38:54 ----D- C:\Program Files (x86)\Mozilla Firefox

O43 - CFD: 19/12/2010 - 22:38:00 ----D- C:\Program Files (x86)\Mozilla Thunderbird

O43 - CFD: 14/07/2009 - 06:32:40 ----D- C:\Program Files (x86)\MSBuild

O43 - CFD: 09/08/2010 - 17:15:16 ----D- C:\Program Files (x86)\MSECache

O43 - CFD: 06/05/2010 - 10:38:02 ----D- C:\Program Files (x86)\MSXML 4.0

O43 - CFD: 27/11/2010 - 15:22:26 ----D- C:\Program Files (x86)\Music Duplicate Remover

O43 - CFD: 03/01/2011 - 17:24:58 ----D- C:\Program Files (x86)\MyAshampoo

O43 - CFD: 13/12/2010 - 15:18:40 ----D- C:\Program Files (x86)\MyPDFConverter

O43 - CFD: 09/09/2010 - 07:16:54 ----D- C:\Program Files (x86)\Namoroka (64-bit)

O43 - CFD: 16/11/2010 - 02:49:18 ----D- C:\Program Files (x86)\NoVirusThanks

O43 - CFD: 20/11/2010 - 23:15:56 ----D- C:\Program Files (x86)\NVIDIA Corporation

O43 - CFD: 01/10/2010 - 10:06:18 ----D- C:\Program Files (x86)\OpenOffice.org 3

O43 - CFD: 29/01/2011 - 09:23:52 ----D- C:\Program Files (x86)\Opera

O43 - CFD: 05/02/2011 - 14:36:38 ----D- C:\Program Files (x86)\Pando Networks

O43 - CFD: 16/01/2011 - 15:56:42 ----D- C:\Program Files (x86)\Password Safe

O43 - CFD: 15/12/2010 - 22:27:38 ----D- C:\Program Files (x86)\PasswordSafe

O43 - CFD: 12/12/2010 - 17:41:08 ----D- C:\Program Files (x86)\QuickTime

O43 - CFD: 10/01/2011 - 16:36:48 ----D- C:\Program Files (x86)\RadioBar

O43 - CFD: 29/01/2011 - 08:40:54 ----D- C:\Program Files (x86)\Real

O43 - CFD: 14/07/2009 - 06:32:40 ----D- C:\Program Files (x86)\Reference Assemblies

O43 - CFD: 05/06/2010 - 21:58:36 ----D- C:\Program Files (x86)\Secret Disk

O43 - CFD: 30/11/2010 - 10:41:50 ----D- C:\Program Files (x86)\Security Task Manager

O43 - CFD: 01/02/2011 - 13:18:36 R---D- C:\Program Files (x86)\Skype

O43 - CFD: 11/07/2010 - 19:35:50 ----D- C:\Program Files (x86)\SmartSound Software

O43 - CFD: 16/01/2011 - 15:16:42 ----D- C:\Program Files (x86)\Software Informer

O43 - CFD: 05/06/2010 - 17:01:10 ----D- C:\Program Files (x86)\SoulseekNS

O43 - CFD: 20/01/2011 - 20:46:02 ----D- C:\Program Files (x86)\Spybot - Search & Destroy

O43 - CFD: 08/01/2011 - 22:17:26 ----D- C:\Program Files (x86)\Startup Guard

O43 - CFD: 27/11/2010 - 15:27:02 ----D- C:\Program Files (x86)\SysResources Manager

O43 - CFD: 03/10/2010 - 17:46:30 ----D- C:\Program Files (x86)\The KMPlayer

O43 - CFD: 15/01/2011 - 14:19:52 ----D- C:\Program Files (x86)\The KMPlayer FR

O43 - CFD: 08/06/2010 - 02:24:34 ----D- C:\Program Files (x86)\theo30

O43 - CFD: 18/01/2011 - 11:44:32 ----D- C:\Program Files (x86)\Tom's_Guide_France

O43 - CFD: 12/01/2011 - 12:43:46 ----D- C:\Program Files (x86)\TOSHIBA

O43 - CFD: 03/06/2010 - 20:47:14 ----D- C:\Program Files (x86)\TOSHIBA Games

O43 - CFD: 21/12/2010 - 12:01:22 ----D- C:\Program Files (x86)\Toshiba TEMPRO

O43 - CFD: 09/02/2011 - 22:10:50 ----D- C:\Program Files (x86)\TranslateIt!

O43 - CFD: 24/08/2010 - 18:45:08 ----D- C:\Program Files (x86)\UltraVNC

O43 - CFD: 14/07/2009 - 05:57:08 --H-D- C:\Program Files (x86)\Uninstall Information

O43 - CFD: 07/07/2010 - 21:52:58 ----D- C:\Program Files (x86)\Unlocker

O43 - CFD: 05/06/2010 - 16:28:08 ----D- C:\Program Files (x86)\VideoLAN

O43 - CFD: 13/11/2010 - 04:46:52 ----D- C:\Program Files (x86)\Widestream6

O43 - CFD: 27/08/2010 - 07:39:54 ----D- C:\Program Files (x86)\Win7codecs

O43 - CFD: 11/12/2010 - 23:39:10 ----D- C:\Program Files (x86)\Winamp

O43 - CFD: 11/12/2010 - 23:38:32 ----D- C:\Program Files (x86)\Winamp Detect

O43 - CFD: 14/07/2009 - 16:24:10 ----D- C:\Program Files (x86)\Windows Defender

O43 - CFD: 19/12/2010 - 12:39:02 ----D- C:\Program Files (x86)\Windows Live

O43 - CFD: 15/12/2010 - 22:44:18 ----D- C:\Program Files (x86)\Windows Mail

O43 - CFD: 28/12/2010 - 22:41:14 ----D- C:\Program Files (x86)\Windows Media Components

O43 - CFD: 15/10/2010 - 02:22:46 ----D- C:\Program Files (x86)\Windows Media Player

O43 - CFD: 05/11/2010 - 01:52:20 ----D- C:\Program Files (x86)\Windows Media Player Plus!

O43 - CFD: 14/07/2009 - 06:32:40 ----D- C:\Program Files (x86)\Windows NT

O43 - CFD: 14/07/2009 - 16:24:10 ----D- C:\Program Files (x86)\Windows Photo Viewer

O43 - CFD: 14/07/2009 - 06:32:42 ----D- C:\Program Files (x86)\Windows Portable Devices

O43 - CFD: 14/07/2009 - 16:24:10 ----D- C:\Program Files (x86)\Windows Sidebar

O43 - CFD: 09/01/2011 - 23:43:14 ----D- C:\Program Files (x86)\WinMend

O43 - CFD: 18/10/2010 - 12:43:58 ----D- C:\Program Files (x86)\WinRAR

O43 - CFD: 08/01/2011 - 22:09:44 ----D- C:\Program Files (x86)\Wipe 2011

O43 - CFD: 14/10/2010 - 18:46:32 ----D- C:\Program Files (x86)\Yahoo!

O43 - CFD: 11/09/2010 - 13:07:06 ----D- C:\Program Files (x86)\YouSendIt

O43 - CFD: 05/06/2010 - 15:32:02 ----D- C:\Program Files (x86)\Zards software

O43 - CFD: 10/02/2011 - 20:29:42 ----D- C:\Program Files (x86)\ZHPDiag

O43 - CFD: 04/10/2010 - 05:39:28 ----D- C:\Program Files\Common Files\Microsoft Shared

O43 - CFD: 14/07/2009 - 04:20:10 ----D- C:\Program Files\Common Files\Services

O43 - CFD: 14/07/2009 - 04:20:10 ----D- C:\Program Files\Common Files\SpeechEngines

O43 - CFD: 14/07/2009 - 16:24:10 ----D- C:\Program Files\Common Files\System

O43 - CFD: 06/05/2010 - 11:04:22 ----D- C:\Program Files\Common Files\TOSHIBA Shared

 

 

---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)

O44 - LFC:[MD5.3F22426F81C2282F3DF2D5FF21E9E5BA] - 10/02/2011 - 20:04:14 --HA- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [16304]

O44 - LFC:[MD5.3F22426F81C2282F3DF2D5FF21E9E5BA] - 10/02/2011 - 20:04:14 --HA- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [16304]

O44 - LFC:[MD5.5AF23A04DC7AFB8E2D37582163E6F472] - 10/02/2011 - 19:57:00 -S-A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\bootstat.dat [67584]

O44 - LFC:[MD5.CB6A050FD10972AA8C9CF0DEA0657045] - 09/02/2011 - 17:55:32 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\SysNative\perfc009.dat [110972]

O44 - LFC:[MD5.5FDF517A4D97A08020B36A584691183F] - 09/02/2011 - 17:55:32 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\SysNative\perfc00C.dat [135338]

O44 - LFC:[MD5.A400A49092950E4833D96657AA28186B] - 09/02/2011 - 17:55:32 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\SysNative\perfh009.dat [626218]

O44 - LFC:[MD5.C257A14DE33095BC5864B8CBDC92A26F] - 09/02/2011 - 17:55:32 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\SysNative\perfh00C.dat [714690]

O44 - LFC:[MD5.B493357220DF26217F3B42E6DBED62EA] - 09/02/2011 - 17:55:31 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\SysNative\PerfStringBackup.INI [1580494]

O44 - LFC:[MD5.0830D8DA18FE3ABD1708C87D8E5C51AA] - 09/02/2011 - 15:14:27 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\TC00346200C.exe [26047864]

O44 - LFC:[MD5.1AAC4B0E293F7D394364A1859894154C] - 09/02/2011 - 15:06:17 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\TC00143400M.exe [38928832]

O44 - LFC:[MD5.088721DF2EC5B28F2D3F563BAF731BC9] - 09/02/2011 - 09:48:55 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\SysNative\FNTCACHE.DAT [406760]

O44 - LFC:[MD5.158D85C26868E8A9903A726CE145F66B] - 09/02/2011 - 09:38:08 ---A- . (.Adobe Systems - Windows NT OpenType/Type 1 API Library..) -- C:\Windows\SysNative\atmlib.dll [46080]

O44 - LFC:[MD5.158D85C26868E8A9903A726CE145F66B] - 09/02/2011 - 09:38:08 ---A- . (.Adobe Systems - Windows NT OpenType/Type 1 API Library..) -- C:\Windows\System32\atmlib.dll [34304]

O44 - LFC:[MD5.BF973CEDCD012D23F194BBF0A9B218E6] - 09/02/2011 - 09:38:08 ---A- . (.Adobe Systems Incorporated - Windows NT OpenType/Type 1 Font Driver.) -- C:\Windows\SysNative\atmfd.dll [366080]

O44 - LFC:[MD5.BF973CEDCD012D23F194BBF0A9B218E6] - 09/02/2011 - 09:38:08 ---A- . (.Adobe Systems Incorporated - Windows NT OpenType/Type 1 Font Driver.) -- C:\Windows\System32\atmfd.dll [294400]

O44 - LFC:[MD5.E185BDA84E5F03F4E1D8DCA30E209277] - 25/01/2011 - 21:21:53 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\epplauncher.mif [1912]

O44 - LFC:[MD5.B493357220DF26217F3B42E6DBED62EA] - 25/01/2011 - 21:21:18 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\System32\PerfStringBackup.INI [1602276]

 

 

---\\ Déni du service (Local Security Authority) (O48)

O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll

O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll

O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll

 

 

---\\ Trojan Driver Search Data (HKLM) (O52)

O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm

O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm

 

 

---\\ Microsoft Control Security Providers (O54)

O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll

O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll

 

 

---\\ Microsoft Windows Policies System (O55)

O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5

O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3

O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1

O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1

O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1

O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0

O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1

O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1

O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0

O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0

O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=

O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=

O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0

O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1

O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1

O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0

 

 

---\\ Microsoft Windows Policies Explorer (O56)

O56 - MWPE:[HKCU\...\policies\Explorer] - "ClearRecentDocsOnExit"=1

O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1

O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=0

O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0

O56 - MWPE:[HKLM\...\policies\Explorer] - "NoResolveTrack"=1

 

 

---\\ Liste des Drivers Système (O58)

O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\system32\drivers\adp94xx.sys [491088]

O58 - SDL:[MD5.597F78224EE9224EA1A13D6350CED962] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\system32\drivers\adpahci.sys [339536]

O58 - SDL:[MD5.E109549C90F62FB570B9540C4B148E54] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\system32\drivers\adpu320.sys [182864]

O58 - SDL:[MD5.5812713A477A3AD7363C7438CA2EE038] - 14/07/2009 - 02:52:21 ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\system32\drivers\aliide.sys [15440]

O58 - SDL:[MD5.7A4B413614C055935567CF88A9734D38] - 14/07/2009 - 02:52:21 ---A- . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\system32\drivers\amdsata.sys [106576]

O58 - SDL:[MD5.F67F933E79241ED32FF46A4F29B5120B] - 14/07/2009 - 02:52:20 ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows -.) -- C:\Windows\system32\drivers\amdsbs.sys [194128]

O58 - SDL:[MD5.B4AD0CACBAB298671DD6F6EF7E20679D] - 14/07/2009 - 02:52:21 ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\system32\drivers\amdxata.sys [28752]

O58 - SDL:[MD5.C484F8CEB1717C540242531DB7845C4E] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\system32\drivers\arc.sys [87632]

O58 - SDL:[MD5.019AF6924AEFE7839F61C830227FE79C] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\system32\drivers\arcsas.sys [97856]

O58 - SDL:[MD5.F97F384B0361C0DF4266F59F456D2D3E] - 23/10/2009 - 04:21:02 ---A- . (.AuthenTec, Inc. - AuthenTec Swipe Sensor WDF USB Driver.) -- C:\Windows\system32\drivers\ATSwpWDF.sys [734720]

O58 - SDL:[MD5.B5ACE6968304A3900EEB1EBFD9622DF2] - 10/06/2009 - 21:34:23 ---A- . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver..) -- C:\Windows\system32\drivers\b57nd60a.sys [270848]

O58 - SDL:[MD5.F09EEE9EDC320B5E1501F749FDE686C8] - 10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\system32\drivers\BrFiltLo.sys [18432]

O58 - SDL:[MD5.B114D3098E9BDB8BEA8B053685831BE6] - 10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\system32\drivers\BrFiltUp.sys [8704]

O58 - SDL:[MD5.43BEA8D483BF1870F018E2D02E06A5BD] - 14/07/2009 - 02:19:07 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\system32\drivers\BrSerId.sys [286720]

O58 - SDL:[MD5.A6ECA2151B08A09CACECA35C07F05B42] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\system32\drivers\BrSerWdm.sys [47104]

O58 - SDL:[MD5.B79968002C277E869CF38BD22CD61524] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\system32\drivers\BrUsbMdm.sys [14976]

O58 - SDL:[MD5.A87528880231C54E75EA7A44943B38BF] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\system32\drivers\BrUsbSer.sys [14720]

O58 - SDL:[MD5.3E5B191307609F7514148C6832BB0842] - 10/06/2009 - 21:34:28 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\system32\drivers\bxvbda.sys [468480]

O58 - SDL:[MD5.94AF76BA5B74518610DA47E7181A1D68] - 16/10/2009 - 13:56:40 ---A- . (.Conexant Systems Inc. - 64-bit High Definition Audio Function Driver.) -- C:\Windows\system32\drivers\CHDRT64.sys [701952]

O58 - SDL:[MD5.E19D3F095812725D88F9001985B94EDD] - 14/07/2009 - 02:52:31 ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\cmdide.sys [17488]

O58 - SDL:[MD5.0E5DA5369A0FCAEA12456DD852545184] - 14/07/2009 - 02:47:48 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\system32\drivers\elxstor.sys [530496]

O58 - SDL:[MD5.DC5D737F51BE844D8C82C695EB17372F] - 10/06/2009 - 21:34:33 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\system32\drivers\evbda.sys [3286016]

O58 - SDL:[MD5.13022D5C518E112BABECFB92EB401B05] - 03/06/2010 - 21:08:10 ---A- . (.F-Secure Corporation - F-Secure Email Interceptor.) -- C:\Windows\system32\drivers\fses.sys [44624]

O58 - SDL:[MD5.F2523EF6460FC42405B12248338AB2F0] - 10/06/2009 - 21:31:59 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\system32\drivers\hcw85cir.sys [31232]

O58 - SDL:[MD5.0886D440058F203EBA0E1825E4355914] - 14/07/2009 - 02:47:48 ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\system32\drivers\HpSAMD.sys [77888]

O58 - SDL:[MD5.42E00996DFC13C46366689C0EA8ABC5E] - 17/12/2009 - 09:42:08 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\system32\drivers\iaStor.sys [538136]

O58 - SDL:[MD5.D83EFB6FD45DF9D55E9A1AFC63640D50] - 14/07/2009 - 02:48:04 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\system32\drivers\iaStorV.sys [410688]

O58 - SDL:[MD5.5C18831C61933628F5BB0EA2675B9D21] - 14/07/2009 - 02:48:04 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\system32\drivers\iirsp.sys [44112]

O58 - SDL:[MD5.033B4AED2C5519072C0D81E00804D003] - 10/06/2009 - 21:34:18 ---A- . (.Atheros Communications, Inc. - Atheros L1c PCI-E Gigabit Ethernet Controller.) -- C:\Windows\system32\drivers\L1C62x64.sys [57344]

O58 - SDL:[MD5.1A93E54EB0ECE102495A51266DCDB6A6] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_fc.sys [114752]

O58 - SDL:[MD5.1047184A9FDC8BDBFF857175875EE810] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas.sys [106560]

O58 - SDL:[MD5.30F5C0DE1EE8B5BC9306C1F0E4A75F93] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas2.sys [65600]

O58 - SDL:[MD5.0504EACAFF0D3C8AED161C4B0D369D4A] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_scsi.sys [115776]

O58 - SDL:[MD5.3D3C4B63F11F63F50253E734F0ACE9F2] - 20/12/2010 - 18:08:40 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\system32\drivers\mbam.sys [24152]

O58 - SDL:[MD5.A55805F747C6EDB6A9080D7C633BD0F4] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for.) -- C:\Windows\system32\drivers\megasas.sys [35392]

O58 - SDL:[MD5.BAF74CE0072480C3B6B7C13B2A94D6B3] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\system32\drivers\MegaSR.sys [284736]

O58 - SDL:[MD5.77889813BE4D166CDAB78DDBA990DA92] - 14/07/2009 - 02:48:26 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\system32\drivers\nfrd960.sys [51264]

O58 - SDL:[MD5.AD37248BD442D41C9A896E53EB8A85EE] - 21/08/2009 - 12:24:04 ---A- . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\system32\drivers\nvhda64v.sys [84512]

O58 - SDL:[MD5.6850D89C7ABDD8B4FB0B3659DA961379] - 27/07/2010 - 10:57:00 ---A- . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version 259.12.) -- C:\Windows\system32\drivers\nvlddmkm.sys [12465128]

O58 - SDL:[MD5.3E38712941E9BB4DDBEE00AFFE3FED3D] - 14/07/2009 - 02:48:27 ---A- . (.NVIDIA Corporation - NVIDIA® nForce RAID Driver.) -- C:\Windows\system32\drivers\nvraid.sys [149056]

O58 - SDL:[MD5.477DC4D6DEB99BE37084C9AC6D013DA1] - 14/07/2009 - 02:45:45 ---A- . (.NVIDIA Corporation - NVIDIA® nForce Sata Performance Driver.) -- C:\Windows\system32\drivers\nvstor.sys [167488]

O58 - SDL:[MD5.A3C51527DFD788880C2ECE6E9FB68355] - 03/11/2009 - 08:21:18 ---A- . (.O2Micro - Pas de description.) -- C:\Windows\system32\drivers\o2mdgx64.sys [74016]

O58 - SDL:[MD5.FA1EED3A10992EBA9A39172B50346434] - 18/08/2009 - 17:41:06 ---A- . (.O2Micro - O2Micro SD Reader Driver (AMD64).) -- C:\Windows\system32\drivers\o2sdgx64.sys [49568]

O58 - SDL:[MD5.C10B593E2DEAA3B78A865DB539FDAE6C] - 01/11/2010 - 20:50:32 R--A- . (.Soluto LTD. - Soluto PCGenome Core Driver.) -- C:\Windows\system32\drivers\PCGenFAM.sys [198088]

O58 - SDL:[MD5.663962900E7FEA522126BA287715BB4A] - 22/06/2009 - 16:06:38 ---A- . (.TOSHIBA Corporation - TOSHIBA Universal Camera Filter Driver.) -- C:\Windows\system32\drivers\PGEffect.sys [35008]

O58 - SDL:[MD5.C8FCB4899F8B70CC34E0D9876A80963C] - 15/06/2009 - 13:58:50 ---A- . (.TOSHIBA - Generic IO & Memory Access.) -- C:\Windows\system32\drivers\QIOMem.sys [12800]

O58 - SDL:[MD5.A53A15A11EBFD21077463EE2C7AFEEF0] - 14/07/2009 - 02:45:46 ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\system32\drivers\ql2300.sys [1524816]

O58 - SDL:[MD5.4F6D12B51DE1AAEFF7DC58C4D75423C8] - 14/07/2009 - 02:45:45 ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\system32\drivers\ql40xx.sys [128592]

O58 - SDL:[MD5.FB67BE4E732EEA8E90DC9473B8D7E2AE] - 24/06/2010 - 16:04:10 R--A- . (.Windows ® Win 7 DDK provider - QuikSync Fs mini filter driver.) -- C:\Windows\system32\drivers\QsFsFltr.sys [22584]

O58 - SDL:[MD5.4D9AFDDDA0EFE97CDBFD3B5FA48B05F6] - 16/04/2007 - 19:51:50 R--A- . (.InterVideo - regi driver.) -- C:\Windows\system32\drivers\regi.sys [14112]

O58 - SDL:[MD5.FFC748D848740D1BC8F330A8879C2674] - 28/04/2010 - 11:32:20 ---A- . (.Realtek Semiconductor Corporation - Realtek RTL81892CE NDIS Driverr.) -- C:\Windows\system32\drivers\rtl8192ce.sys [932384]

O58 - SDL:[MD5.7475548B0BA58EBA4D12414FC9E9DFE6] - 27/04/2010 - 00:23:08 ---A- . (.Realtek Semiconductor Corporation - Realtek RTL81892SE NDIS Driverr.) -- C:\Windows\system32\drivers\rtl8192se.sys [1103904]

O58 - SDL:[MD5.3EA8A16169C26AFBEB544E0E48421186] - 10/06/2009 - 21:37:19 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\system32\drivers\secdrv.sys [23040]

O58 - SDL:[MD5.843CAF1E5FDE1FFD5FF768F23A51E2E1] - 14/07/2009 - 02:45:45 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\system32\drivers\sisraid2.sys [43584]

O58 - SDL:[MD5.6A6C106D42E9FFFF8B9FCB4F754F6DA4] - 14/07/2009 - 02:45:46 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\system32\drivers\sisraid4.sys [80464]

O58 - SDL:[MD5.37000000000000000000000088ED1800] - 07/01/2011 - 00:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\system32\drivers\sptd.sys [513080]

O58 - SDL:[MD5.F3817967ED533D08327DC73BC4D5542A] - 14/07/2009 - 02:45:55 ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\system32\drivers\stexstor.sys [24656]

O58 - SDL:[MD5.12A35E44D8647985FCDB8D298A590134] - 30/07/2009 - 17:20:18 ---A- . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\system32\drivers\SynTP.sys [281648]

O58 - SDL:[MD5.FD542B661BD22FA69CA789AD0AC58C29] - 30/07/2009 - 18:22:04 ---A- . (.TOSHIBA Corporation. - TOSHIBA ODD Writing Driver for x64..) -- C:\Windows\system32\drivers\tdcmdpst.sys [27784]

O58 - SDL:[MD5.C013F6ACAA9761F571BD28DADA7C157D] - 29/06/2009 - 09:25:22 ---A- . (.TOSHIBA Corporation - TOSHIBA HDD Protection Driver.) -- C:\Windows\system32\drivers\thpdrv.sys [34880]

O58 - SDL:[MD5.B4E609047434ED948AF7BDEF2FA66E38] - 29/06/2009 - 15:16:20 ---A- . (.TOSHIBA Corporation - TOSHIBA HDD Protection - Shock Sensor Driver.) -- C:\Windows\system32\drivers\Thpevm.sys [14784]

O58 - SDL:[MD5.8021F63311797085949FA387F7C83583] - 17/06/2009 - 11:01:04 ---A- . (.TOSHIBA Corporation - TOSHIBA Bluetooth Port Emulation Driver.) -- C:\Windows\system32\drivers\tosporte.sys [54664]

O58 - SDL:[MD5.1B09357180034639E62CF745E77AC66E] - 24/09/2009 - 16:55:00 ---A- . (.TOSHIBA CORPORATION - Bluetooth RF Bus Driver.) -- C:\Windows\system32\drivers\tosrfbd.sys [212072]

O58 - SDL:[MD5.62512B5277D88600F8BD4B7AEC43569D] - 19/06/2009 - 08:59:32 ---A- . (.TOSHIBA Corporation - Bluetooth RFBNEP Driver.) -- C:\Windows\system32\drivers\tosrfbnp.sys [50664]

O58 - SDL:[MD5.C523A9186C39D65CC9ADEBB2E1B93CCD] - 28/07/2009 - 19:02:10 ---A- . (.TOSHIBA Corporation - Bluetooth RFCOMM Driver.) -- C:\Windows\system32\drivers\tosrfcom.sys [81768]

O58 - SDL:[MD5.11699D47B3491D86249C168496D55C92] - 13/07/2009 - 21:12:36 ---A- . (.TOSHIBA Corporation - TOSHIBA Bluetooth EC Driver.) -- C:\Windows\system32\drivers\tosrfec.sys [19824]

O58 - SDL:[MD5.451B8C1815C6CC39650AF916C2A382CD] - 19/06/2009 - 09:00:26 ---A- . (.TOSHIBA Corporation. - Bluetooth HID Driver from TOSHIBA.) -- C:\Windows\system32\drivers\Tosrfhid.sys [94336]

O58 - SDL:[MD5.B6FDC3C76FFE9C5171EEA9C37EA367C2] - 24/07/2009 - 10:33:14 ---A- . (.TOSHIBA Corporation. - Bluetooth BNEP Driver.) -- C:\Windows\system32\drivers\tosrfnds.sys [26472]

O58 - SDL:[MD5.E1E045240C1184FA6628F3C7E7FF85D8] - 05/08/2009 - 11:56:04 ---A- . (.TOSHIBA Corporation - Bluetooth Audio Driver (WDM).) -- C:\Windows\system32\drivers\TosRfSnd.sys [63856]

O58 - SDL:[MD5.FC88BAF46FF87D2BC80F8B0F0322D84A] - 14/09/2009 - 13:30:26 ---A- . (.TOSHIBA CORPORATION - Bluetooth USB Miniport Driver.) -- C:\Windows\system32\drivers\tosrfusb.sys [58744]

O58 - SDL:[MD5.09FF7B0B1B5C3D225495CB6F5A9B39F8] - 24/07/2009 - 14:57:08 ---A- . (.TOSHIBA Corporation - tos_sps64.) -- C:\Windows\system32\drivers\tos_sps64.sys [482384]

O58 - SDL:[MD5.EA43DE1743C1BA0D2D17B8DB90C91D88] - 07/12/2010 - 20:17:28 ---A- . (.TrueCrypt Foundation - TrueCrypt Driver.) -- C:\Windows\system32\drivers\truecrypt.sys [230352]

O58 - SDL:[MD5.9C7191F4B2E49BFF47A6C1144B5923FA] - 19/06/2009 - 18:15:22 ---A- . (.TOSHIBA Corporation - TOSHIBA TVALZ Filter Driver for x64.) -- C:\Windows\system32\drivers\TVALZFL.sys [14472]

O58 - SDL:[MD5.550B567F9364D8F7684C3FB3EA665A72] - 14/07/2009 - 15:31:18 ---A- . (.TOSHIBA Corporation - TOSHIBA ACPI-Based Value Added Logical and General Purpose Devi.) -- C:\Windows\system32\drivers\TVALZ_O.SYS [26840]

O58 - SDL:[MD5.E5689D93FFE4E5D66C0178761240DD54] - 14/07/2009 - 02:45:55 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\viaide.sys [17488]

O58 - SDL:[MD5.5E2016EA6EBACA03C04FEAC5F330D997] - 14/07/2009 - 02:45:55 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\system32\drivers\vsmraid.sys [161872]

O58 - SDL:[MD5.0E3E5D0486C4E2128B9F0E1C2FD410C4] - 15/12/2010 - 13:53:02 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\SysWOW64\drivers\fsbts.sys [42664]

O58 - SDL:[MD5.D68E165C3123ABA3B1282EDDB4213BD8] - 20/12/2010 - 18:09:00 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\SysWOW64\drivers\mbamswissarmy.sys [38224]

 

 

---\\ Liste des outils de nettoyage (O63)

O63 - Logiciel: ZHPDiag 1.27 - (.Nicolas Coolman.) [HKLM][64Bits] -- ZHPDiag_is1

 

 

---\\ Liste des services Legacy (O64)

O64 - Services: CurCS - C:\Windows\system32\drivers\afd.sys (AFD) .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD

O64 - Services: CurCS - (.not file.) - aswFsBlk (aswFsBlk) .(.Pas de propriétaire - Pas de description.) - LEGACY_ASWFSBLK

O64 - Services: CurCS - (.not file.) - aswMonFlt (aswMonFlt) .(.Pas de propriétaire - Pas de description.) - LEGACY_ASWMONFLT

O64 - Services: CurCS - (.not file.) - aswRdr (aswRdr) .(.Pas de propriétaire - Pas de description.) - LEGACY_ASWRDR

O64 - Services: CurCS - (.not file.) - aswSP (aswSP) .(.Pas de propriétaire - Pas de description.) - LEGACY_ASWSP

O64 - Services: CurCS - (.not file.) - avast! Network Shield Support (aswTdi) .(.Pas de propriétaire - Pas de description.) - LEGACY_ASWTDI

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\atapi.sys - IDE Channel (atapi) .(.Microsoft Corporation - ATAPI IDE Miniport Driver.) - LEGACY_ATAPI

O64 - Services: CurCS - C:\Windows\system32\Drivers\BEEP.sys - (.not file.) - Beep (Beep) .(.Pas de propriétaire - Pas de description.) - LEGACY_BEEP

O64 - Services: CurCS - C:\Windows\system32\browser.dll (bowser) .(.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) - LEGACY_BOWSER

O64 - Services: CurCS - C:\Windows\system32\clfs.sys (CLFS) .(.Microsoft Corporation - Common Log File System Driver.) - LEGACY_CLFS

O64 - Services: CurCS - C:\Windows\System32\Drivers\cng.sys - CNG (CNG) .(.Microsoft Corporation - Kernel Cryptography, Next Generation.) - LEGACY_CNG

O64 - Services: CurCS - C:\Windows\system32\drivers\dfsc.sys (DfsC) .(.Microsoft Corporation - DFS Namespace Client Driver.) - LEGACY_DFSC

O64 - Services: CurCS - C:\Windows\system32\drivers\discache.sys (discache) .(.Microsoft Corporation - System Indexer/Cache Driver.) - LEGACY_DISCACHE

O64 - Services: CurCS - C:\Windows\system32\drivers\dxgkrnl.sys - LDDM Graphics Subsystem (DXGKrnl) .(.Microsoft Corporation - DirectX Graphics Kernel.) - LEGACY_DXGKRNL

O64 - Services: CurCS - C:\Program Files (x86)\DartyBox Sécurité\Anti-Virus\minifilter\fsgk.sys - F-Secure Gatekeeper (F-Secure Gatekeeper) .(.Pas de propriétaire - Pas de description.) - LEGACY_F-SECURE_GATEKEEPER

O64 - Services: CurCS - C:\Program Files (x86)\DartyBox Sécurité\HIPS\drivers\fshs.sys - F-Secure HIPS Driver (F-Secure HIPS) .(.F-Secure Corporation - HIPS 64-bit kernel module.) - LEGACY_F-SECURE_HIPS

O64 - Services: CurCS - C:\Windows\system32\Drivers\FASTFAT.sys - (.not file.) - FAT12/16/32 File System Driver (fastfat) .(.Pas de propriétaire - Pas de description.) - LEGACY_FASTFAT

O64 - Services: CurCS - C:\Windows\system32\drivers\fileinfo.sys (FileInfo) .(.Microsoft Corporation - FileInfo Filter Driver.) - LEGACY_FILEINFO

O64 - Services: CurCS - C:\Windows\system32\drivers\fltmgr.sys (FltMgr) .(.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) - LEGACY_FLTMGR

O64 - Services: CurCS - C:\Windows\System32\drivers\fses.sys - F-Secure Email Scanning Driver (FSES) .(.F-Secure Corporation - F-Secure Email Interceptor.) - LEGACY_FSES

O64 - Services: CurCS - (.not file.) - F-Secure Firewall Driver (FSFW) .(.Pas de propriétaire - Pas de description.) - LEGACY_FSFW

O64 - Services: CurCS - C:\Program Files (x86)\DartyBox Sécurité\Anti-Virus\minifilter\fsvista.sys - F-Secure Vista Support Driver (fsvista) .(.Pas de propriétaire - Pas de description.) - LEGACY_FSVISTA

O64 - Services: CurCS - C:\Windows\system32\Drivers\FS_REC.sys - Fs_Rec (Fs_Rec) .(.Pas de propriétaire - Pas de description.) - LEGACY_FS_REC

O64 - Services: CurCS - C:\Windows\system32\drivers\fvevol.sys (fvevol) .(.Microsoft Corporation - BitLocker Drive Encryption Driver.) - LEGACY_FVEVOL

O64 - Services: CurCS - C:\Windows\system32\drivers\http.sys (HTTP) .(.Microsoft Corporation - HTTP Pile du protocole.) - LEGACY_HTTP

O64 - Services: CurCS - C:\Windows\system32\drivers\hwpolicy.sys (hwpolicy) .(.Microsoft Corporation - Hardware Policy Driver.) - LEGACY_HWPOLICY

O64 - Services: CurCS - (.not file.) - ImmunetProtectDriver (ImmunetProtectDriver) .(.Pas de propriétaire - Pas de description.) - LEGACY_IMMUNETPROTECTDRIVER

O64 - Services: CurCS - (.not file.) - ImmunetSelfProtectDriver (ImmunetSelfProtectDriver) .(.Pas de propriétaire - Pas de description.) - LEGACY_IMMUNETSELFPROTECTDRIVER

O64 - Services: CurCS - C:\Windows\system32\rascfg.dll (IpFilterDriver) .(.Microsoft Corporation - Objets de configuration RAS.) - LEGACY_IPFILTERDRIVER

O64 - Services: CurCS - C:\Windows\System32\Drivers\ksecdd.sys - KSecDD (KSecDD) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECDD

O64 - Services: CurCS - C:\Windows\System32\Drivers\ksecpkg.sys - KSecPkg (KSecPkg) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECPKG

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\lltdio.sys - Link-Layer Topology Discovery Mapper I/O Driver (lltdio) .(.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) - LEGACY_LLTDIO

O64 - Services: CurCS - C:\Windows\system32\drivers\luafv.sys (luafv) .(.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) - LEGACY_LUAFV

O64 - Services: CurCS - (.not file.) - McAfee Inc. mfeavfk (mfeavfk) .(.Pas de propriétaire - Pas de description.) - LEGACY_MFEAVFK

O64 - Services: CurCS - (.not file.) - McAfee Inc. mfehidk (mfehidk) .(.Pas de propriétaire - Pas de description.) - LEGACY_MFEHIDK

O64 - Services: CurCS - (.not file.) - McAfee Inc. mfesmfk (mfesmfk) .(.Pas de propriétaire - Pas de description.) - LEGACY_MFESMFK

O64 - Services: CurCS - C:\Windows\system32\drivers\mountmgr.sys (mountmgr) .(.Microsoft Corporation - Gestionnaire des points de montage.) - LEGACY_MOUNTMGR

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\MpFilter.sys - Microsoft Malware Protection Driver (MpFilter) .(.Microsoft Corporation - Microsoft antimalware file system filter dr.) - LEGACY_MPFILTER

O64 - Services: CurCS - (.not file.) - MPFP (MPFP) .(.Pas de propriétaire - Pas de description.) - LEGACY_MPFP

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\MpNWMon.sys - Microsoft Malware Protection Network Driver (MpNWMon) .(.Microsoft Corporation - Network monitor driver.) - LEGACY_MPNWMON

O64 - Services: CurCS - C:\Windows\system32\FirewallAPI.dll (mpsdrv) .(.Microsoft Corporation - API du Pare-feu Windows.) - LEGACY_MPSDRV

O64 - Services: CurCS - C:\Windows\system32\wkssvc.dll (mrxsmb) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB

O64 - Services: CurCS - C:\Windows\system32\wkssvc.dll (mrxsmb10) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB10

O64 - Services: CurCS - C:\Windows\system32\wkssvc.dll (mrxsmb20) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB20

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\msahci.sys - msahci (msahci) .(.Microsoft Corporation - MS AHCI 1.0 Standard Driver.) - LEGACY_MSAHCI

O64 - Services: CurCS - C:\Windows\system32\Drivers\MSFS.sys - Msfs (Msfs) .(.Pas de propriétaire - Pas de description.) - LEGACY_MSFS

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\msisadrv.sys - msisadrv (msisadrv) .(.Microsoft Corporation - ISA Driver.) - LEGACY_MSISADRV

O64 - Services: CurCS - C:\Windows\system32\drivers\mup.sys (Mup) .(.Microsoft Corporation - Multiple UNC Provider Driver.) - LEGACY_MUP

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\nwifi.sys - NativeWiFi Filter (NativeWifiP) .(.Microsoft Corporation - Pilote de miniport WiFi natif.) - LEGACY_NATIVEWIFIP

O64 - Services: CurCS - C:\Windows\system32\drivers\ndis.sys (NDIS) .(.Microsoft Corporation - Pilote NDIS 6.20.) - LEGACY_NDIS

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\ndisuio.sys - NDIS Usermode I/O Protocol (Ndisuio) .(.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) - LEGACY_NDISUIO

O64 - Services: CurCS - C:\Windows\system32\Drivers\NDPROXY.sys - NDProxy (NDProxy) .(.Pas de propriétaire - Pas de description.) - LEGACY_NDPROXY

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\netbios.sys - NetBIOS Interface (NetBIOS) .(.Microsoft Corporation - NetBIOS interface driver.) - LEGACY_NETBIOS

O64 - Services: CurCS - C:\Windows\system32\drivers\netbt.sys (NetBT) .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\NisDrvWFP.sys - Microsoft Network Inspection System (NisDrv) .(.Microsoft Corporation - Microsoft Network Inspection System Driver.) - LEGACY_NISDRV

O64 - Services: CurCS - C:\Windows\system32\Drivers\NPFS.sys - Npfs (Npfs) .(.Pas de propriétaire - Pas de description.) - LEGACY_NPFS

O64 - Services: CurCS - C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) .(.Microsoft Corporation - NSI Proxy.) - LEGACY_NSIPROXY

O64 - Services: CurCS - C:\Windows\system32\Drivers\NTFS.sys - Ntfs (Ntfs) .(.Pas de propriétaire - Pas de description.) - LEGACY_NTFS

O64 - Services: CurCS - C:\Windows\system32\Drivers\NULL.sys - Null (Null) .(.Pas de propriétaire - Pas de description.) - LEGACY_NULL

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\PCGenFAM.sys - PCGenFAM (PCGenFAM) .(.Soluto LTD. - Soluto PCGenome Core Driver.) - LEGACY_PCGENFAM

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\pciide.sys - pciide (pciide) .(.Microsoft Corporation - Generic PCI IDE Bus Driver.) - LEGACY_PCIIDE

O64 - Services: CurCS - C:\Windows\System32\drivers\pcw.sys - Performance Counters for Windows Driver (pcw) .(.Microsoft Corporation - Performance Counters for Windows Driver.) - LEGACY_PCW

O64 - Services: CurCS - C:\Windows\System32\drivers\peauth.sys - PEAUTH (PEAUTH) .(.Microsoft Corporation - Protected Environment Authentication and Au.) - LEGACY_PEAUTH

O64 - Services: CurCS - C:\Windows\system32\drivers\pacer.sys (Psched) .(.Microsoft Corporation - Planificateur de paquets QoS.) - LEGACY_PSCHED

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\QsFsFltr.sys - QsFsFltr (QsFsFltr) .(.Windows ® Win 7 DDK provider - QuikSync Fs mini filter driver.) - LEGACY_QSFSFLTR

O64 - Services: CurCS - C:\Windows\system32\wkssvc.dll (rdbss) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_RDBSS

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) .(.Microsoft Corporation - RDP Miniport.) - LEGACY_RDPCDD

O64 - Services: CurCS - C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) .(.Microsoft Corporation - RDP Encoder Miniport.) - LEGACY_RDPENCDD

O64 - Services: CurCS - C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) .(.Microsoft Corporation - RDP Reflector Driver Miniport.) - LEGACY_RDPREFMP

O64 - Services: CurCS - C:\Windows\System32\drivers\regi.sys - regi (regi) .(.InterVideo - regi driver.) - LEGACY_REGI

O64 - Services: CurCS - C:\Windows\system32\wshrm.dll (RMCAST) .(.Microsoft Corporation - DLL d’assistance de sockets Windows pour PG.) - LEGACY_RMCAST

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\rspndr.sys - Link-Layer Topology Discovery Responder (rspndr) .(.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) - LEGACY_RSPNDR

O64 - Services: CurCS - C:\Program Files\SUPERAntiSpyware\SASDIFSV64.sys - SASDIFSV (SASDIFSV) .(.SUPERAdBlocker.com and SUPERAntiSpyware.com - SASDIFSV64.SYS.) - LEGACY_SASDIFSV

O64 - Services: CurCS - C:\Program Files\SUPERAntiSpyware\SASKUTIL64.sys - SASKUTIL (SASKUTIL) .(.SUPERAdBlocker.com and SUPERAntiSpyware.com - SASKUTIL64.SYS.) - LEGACY_SASKUTIL

O64 - Services: CurCS - C:\Windows\system32\Drivers\SECDRV.sys - (.not file.) - Security Driver (secdrv) .(.Pas de propriétaire - Pas de description.) - LEGACY_SECDRV

O64 - Services: CurCS - (.not file.) - Panda File Shield Driver (ShldFlt) .(.Pas de propriétaire - Pas de description.) - LEGACY_SHLDFLT

O64 - Services: CurCS - C:\Windows\system32\Drivers\SPLDR.sys - (.not file.) - Security Processor Loader Driver (spldr) .(.Pas de propriétaire - Pas de description.) - LEGACY_SPLDR

O64 - Services: CurCS - C:\Windows\system32\Drivers\sptd.sys - sptd (sptd) .(.Pas de propriétaire - Pas de description.) - LEGACY_SPTD

O64 - Services: CurCS - C:\Windows\system32\srvsvc.dll (srv) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV

O64 - Services: CurCS - C:\Windows\system32\srvsvc.dll (srv2) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV2

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\srvnet.sys - srvnet (srvnet) .(.Microsoft Corporation - Server Network driver.) - LEGACY_SRVNET

O64 - Services: CurCS - C:\Windows\system32\tcpipcfg.dll (Tcpip) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TCPIP

O64 - Services: CurCS - C:\Windows\System32\drivers\tcpipreg.sys - TCP/IP Registry Compatibility (tcpipreg) .(.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) - LEGACY_TCPIPREG

O64 - Services: CurCS - C:\Windows\system32\tcpipcfg.dll (tdx) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TDX

O64 - Services: CurCS - C:\Windows\system32\drivers\vga.sys - VgaSave (VgaSave) .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE

O64 - Services: CurCS - C:\Windows\system32\drivers\volmgrx.sys (volmgrx) .(.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) - LEGACY_VOLMGRX

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\volsnap.sys - Volumes de stockage (volsnap) .(.Microsoft Corporation - Pilote de cliché instantané du volume.) - LEGACY_VOLSNAP

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\vwififlt.sys - Virtual WiFi Filter Driver (vwififlt) .(.Microsoft Corporation - Virtual WiFi Filter Driver.) - LEGACY_VWIFIFLT

O64 - Services: CurCS - C:\Windows\system32\rascfg.dll (Wanarpv6) .(.Microsoft Corporation - Objets de configuration RAS.) - LEGACY_WANARPV6

O64 - Services: CurCS - C:\Windows\System32\drivers\Wdf01000.sys - Kernel Mode Driver Frameworks service (Wdf01000) .(.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) - LEGACY_WDF01000

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\wfplwf.sys - WFP Lightweight Filter (WfpLwf) .(.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - LEGACY_WFPLWF

O64 - Services: CurCS - C:\Windows\System32\drivers\wimmount.sys - WIMMount (WIMMount) .(.Microsoft Corporation - Wim file system Driver.) - LEGACY_WIMMOUNT

O64 - Services: CurCS - C:\Windows\System32\drivers\WudfPf.sys - User Mode Driver Frameworks Platform Driver (WudfPf) .(.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) - LEGACY_WUDFPF

 

 

---\\ File Associations Shell Spawning (O67)

O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe

O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.html> <Opera.HTML>[HKLM\..\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\Opera.exe

O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe

O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe

O67 - Shell Spawning: <.html> <ChromeHTML>[HKCU\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\Jean Marc\AppData\Local\Google\Chrome\Application\chrome.exe

O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe

O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.com> <comfile>[HKCR\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.html> <ChromeHTML>[HKCR\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\Jean Marc\AppData\Local\Google\Chrome\Application\chrome.exe

O67 - Shell Spawning: <.js> <JSFile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe

O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe

 

 

---\\ Start Menu Internet (O68)

O68 - StartMenuInternet: <Avant.Browser> <Avant Browser>[HKLM\..\Shell\open\Command] (.Avant Force - Avant Browser.) -- C:\Program Files (x86)\Avant Browser\avant.exe

O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\Jean Marc\AppData\Local\Google\Chrome\Application\chrome.exe

O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe

O68 - StartMenuInternet: <Opera.exe> <Opera>[HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\Opera.exe

 

 

---\\ Search Browser Infection (O69)

O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - Bing

O69 - SBI: SearchScopes [HKCU] {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} - (Search the web (Babylon)) - Babylon Search

O69 - SBI: SearchScopes [HKCU] {5B291E6C-9A74-4034-971B-A4B007A0B315} - (Web Search...) - http://radiobar.toolbarhome.com

O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - Google

O69 - SBI: SearchScopes [HKCU] {871F4CC9-4FAB-4815-9883-61F8CCE04F9B} - (Yahoo! Search) - Yahoo! Search - Recherche Web

O69 - SBI: SearchScopes [HKCU] {AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8} - (DAEMON Search) - DAEMON-Search.com :: EXPLORE

O69 - SBI: SearchScopes [HKCU] {afdbddaa-5d3f-42ee-b79c-185a7020515b} - (Tom's Guide France Customized Web Search) - http://search.conduit.com

O69 - SBI: SearchScopes [HKCU] {B7B664DF-3AF9-4C8E-8148-F42BB7831D27} - (Ask) - Ask.com Web Search

O69 - SBI: SearchScopes [HKCU] {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} - (MyStart Search) - http://mystart.incredimail.com

O69 - SBI: SearchScopes [HKCU] {DECA3892-BA8F-44b8-A993-A466AD694AE4} [DefaultScope] - (Yahoo!) - Yahoo! Search - Recherche Web

O69 - SBI: SearchScopes [HKCU] {F14631FF-66D0-4864-8272-E12419B2D0F0} - (eBay) - eBay

O69 - SBI: SearchScopes [HKUS\.DEFAULT] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - Bing

O69 - SBI: SearchScopes [HKUS\.DEFAULT] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Bing) - http://www.bing.co

O69 - SBI: SearchScopes [HKUS\S-1-5-18] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - Bing

O69 - SBI: SearchScopes [HKUS\S-1-5-18] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Bing) - http://www.bing.co

 

 

---\\ Recherche particuliere à la racine de certains dossiers (O84)

[MD5.BA878CA6598D984FC2066A2B56C37263] [sPRF] (.SUPERAntiSpyware.com - SUPERAntiSpyware Update Application.) -- C:\Users\Jean Marc\AppData\Local\Temp\SSUPDATE64.EXE [411376]

 

 

---\\ Recherche d'infection Rogue (O86)

C:\Program Files\D31504102

[MD5.88BC4781A6D605488BB91B36E7D40F9C] [sRI] (.Iomega Corporation an EMC Company - Setup Launcher.) -- C:\Program Files\D31504102\Setup.exe [8227688]

 

 

---\\ Firewall Active Exception List (FirewallRules) (O87)

O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\spoolsv.exe (.not file.)

O87 - FAEL: "FPS-SpoolSvc-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\spoolsv.exe (.not file.)

O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" |Out - Domain - P6 - TRUE | .(...) -- C:\Windows\system32\lsass.exe (.not file.)

O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\services.exe (.not file.)

O87 - FAEL: "RemoteSvcAdmin-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\services.exe (.not file.)

O87 - FAEL: "MCX-Prov-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - MCX2 Provisioning library.) -- C:\Windows\ehome\mcx2prov.exe

O87 - FAEL: "MCX-McrMgr-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Media Center Extender Manager.) -- C:\Windows\ehome\mcrmgr.exe

O87 - FAEL: "NetPres-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)

O87 - FAEL: "NetPres-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)

O87 - FAEL: "NetPres-WSD-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)

O87 - FAEL: "NetPres-WSD-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)

O87 - FAEL: "NetPres-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)

O87 - FAEL: "NetPres-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.)

O87 - FAEL: "{ACEBC37F-91E4-4AF8-AFD1-887639FFF27C}" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Microsoft Office OneNote.) -- C:\Program Files (x86)\Microsoft Office\Office12\ONENOTE.exe

O87 - FAEL: "{2DD4BE5A-723E-4ED7-92AE-86605C3D96AE}" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Microsoft Office OneNote.) -- C:\Program Files (x86)\Microsoft Office\Office12\ONENOTE.exe

O87 - FAEL: "{F42C4C1A-73F5-45D4-A528-E8FECC593843}" |In - Private - P6 - TRUE | .(...) -- C:\Windows\system32\spoolsv.exe (.not file.)

O87 - FAEL: "{DB053924-85D1-4F8A-8508-8E3B726BA9A7}" | In - None - P6 - TRUE | .(.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe

O87 - FAEL: "{6CAAA410-9C43-4615-BA8F-57EC46217C50}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Sync.) -- C:\Program Files (x86)\Windows Live\Sync\WindowsLiveSync.exe

O87 - FAEL: "{4D8D5484-525D-40BC-8C38-7C5ECC2977D2}" | In - Private - P6 - TRUE | .(.UltraVNC - VNC server for X64/win32.) -- C:\Program Files (x86)\UltraVNC\winvnc.exe

O87 - FAEL: "{C6AC572F-7220-46C6-AD43-1B5615799E77}" | In - Private - P17 - TRUE | .(.UltraVNC - VNC server for X64/win32.) -- C:\Program Files (x86)\UltraVNC\winvnc.exe

O87 - FAEL: "{E05942D8-874D-47C2-B822-BC21887FCD6D}" | In - Private - P6 - TRUE | .(.UltraVNC - VNCViewer.) -- C:\Program Files (x86)\UltraVNC\vncviewer.exe

O87 - FAEL: "{ECED1EB7-B059-4C08-A5ED-2D0FE52D475E}" | In - Private - P17 - TRUE | .(.UltraVNC - VNCViewer.) -- C:\Program Files (x86)\UltraVNC\vncviewer.exe

O87 - FAEL: "{C93FA510-3BC4-48F8-8867-3E87DE17AA01}" | In - Private - P6 - TRUE | .(.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\opera.exe

O87 - FAEL: "{2FB68778-CBC6-4BA2-8E76-4FA6BA8BC96C}" | In - Private - P17 - TRUE | .(.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\opera.exe

O87 - FAEL: "{E8FD604E-A92B-48E8-BC70-3E5A0EA66FA6}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Communications Platform.) -- C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe

O87 - FAEL: "{AC415B62-2C5A-4A07-801A-5FD0A1FBAAEC}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\adslTV\adsltv.exe (.not file.)

O87 - FAEL: "{F55816DD-EC41-4F48-A5EA-5A0315D65D77}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\adslTV\adsltv.exe (.not file.)

O87 - FAEL: "{906E9348-A596-4F16-9111-DA592956239D}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\adslTV\VLC\vlc.exe (.not file.)

O87 - FAEL: "{57C70F8A-7710-494F-B201-16DA36802CA4}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\adslTV\VLC\vlc.exe (.not file.)

O87 - FAEL: "TCP Query User{44F3ECCF-FA04-4471-86C9-EB7C71C818FF}C:\program files (x86)\videolan\vlc\vlc.exe" | In - Private - P6 - TRUE | .(...) -- C:\program files (x86)\videolan\vlc\vlc.exe

O87 - FAEL: "UDP Query User{4BA02C6A-C90F-4958-8F0F-EDF0C675339F}C:\program files (x86)\videolan\vlc\vlc.exe" | In - Private - P17 - TRUE | .(...) -- C:\program files (x86)\videolan\vlc\vlc.exe

O87 - FAEL: "{6BC68E79-C658-4EFA-87B2-AAF82FD43B19}" |In - Private - P6 - FALSE | .(...) -- C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe (.not file.)

O87 - FAEL: "{576A48FF-3E40-4EEC-9AE3-A7F58D701639}" |In - Private - P17 - FALSE | .(...) -- C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe (.not file.)

O87 - FAEL: "{CC9B9CA8-6748-4A4F-974B-EA0A6049BC9B}" |In - Private - P6 - FALSE | .(...) -- C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe (.not file.)

O87 - FAEL: "{396BB335-4B04-4946-A7D1-C39459394135}" |In - Private - P17 - FALSE | .(...) -- C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe (.not file.)

O87 - FAEL: "{C5723AC2-73AD-4559-A96D-0F5A4C19F842}" |In - Private - P6 - FALSE | .(...) -- C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe (.not file.)

O87 - FAEL: "{B6A79F3A-E4F6-448D-816E-A4C5115FA025}" |In - Private - P17 - FALSE | .(...) -- C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe (.not file.)

O87 - FAEL: "{BCAFDE3A-979E-425F-B8B4-6A707C0AB115}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Steam\Steam.exe (.not file.)

O87 - FAEL: "{ABBE35F0-EABA-4DF2-AE21-5EECA0C5463E}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Steam\Steam.exe (.not file.)

O87 - FAEL: "{F086774C-30BB-4FAD-A4A5-115F49E64890}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Mesh Operating Environment.) -- C:\Program Files (x86)\Windows Live\Mesh\MOE.exe

O87 - FAEL: "{70C82C8A-7471-4D3E-B124-0E04FBA9521A}" | In - Private - P6 - TRUE | .(.Yahoo! Inc. - Yahoo! Messenger.) -- C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe

O87 - FAEL: "{405480FF-D491-47BA-8C5F-E3F04DDD8383}" | In - Private - P17 - TRUE | .(.Yahoo! Inc. - Yahoo! Messenger.) -- C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe

O87 - FAEL: "{85FE5740-1681-4ADB-B701-FE90D080A28C}" | In - Private - P6 - TRUE | .(.Soluto - Soluto Anti-Frustration Software.) -- C:\Program Files\Soluto\Soluto.exe

O87 - FAEL: "{0595FDBC-D2C2-41D0-BCAB-1D7BD9586EDF}" | In - Private - P17 - TRUE | .(.Soluto - Soluto Anti-Frustration Software.) -- C:\Program Files\Soluto\Soluto.exe

O87 - FAEL: "{9C8ABF2F-88B6-4734-BE6D-DF21F504FAC2}" | In - Private - P6 - TRUE | .(.Soluto - Soluto Anti-Frustration Software.) -- C:\Program Files\Soluto\SolutoService.exe

O87 - FAEL: "{14E29574-22CE-4D1B-B37B-9C7B5BD9DEA0}" | In - Private - P17 - TRUE | .(.Soluto - Soluto Anti-Frustration Software.) -- C:\Program Files\Soluto\SolutoService.exe

O87 - FAEL: "{8F3717EE-F454-4992-B894-7B180341B276}" | In - Private - P6 - TRUE | .(.Soluto - Soluto Anti-Frustration Software.) -- C:\Program Files\Soluto\SolutoConsole.exe

O87 - FAEL: "{7BB50803-797C-4E6D-A22D-C5179B2233FC}" | In - Private - P17 - TRUE | .(.Soluto - Soluto Anti-Frustration Software.) -- C:\Program Files\Soluto\SolutoConsole.exe

O87 - FAEL: "{753B5133-D995-4F3B-8844-FBF45EFEC563}" | In - Private - P6 - TRUE | .(.Soluto - Soluto Anti-Frustration Software.) -- C:\Program Files\Soluto\SolutoUpdateService.exe

O87 - FAEL: "{5623C418-E63F-40B3-9385-887598C06CC5}" | In - Private - P17 - TRUE | .(.Soluto - Soluto Anti-Frustration Software.) -- C:\Program Files\Soluto\SolutoUpdateService.exe

O87 - FAEL: "TCP Query User{E4DC903E-117D-4717-879D-E049EBE242B2}C:\program files (x86)\winamp\winamp.exe" | In - Public - P6 - TRUE | .(.Nullsoft, Inc. - Winamp.) -- C:\program files (x86)\winamp\winamp.exe

O87 - FAEL: "UDP Query User{57959602-0AC7-4ADC-87E0-414851982BEC}C:\program files (x86)\winamp\winamp.exe" | In - Public - P17 - TRUE | .(.Nullsoft, Inc. - Winamp.) -- C:\program files (x86)\winamp\winamp.exe

O87 - FAEL: "TCP Query User{64655B31-9782-4C85-BBFE-30EE65401BEF}C:\program files\iomega\quikprotect\quikprotect.exe" | In - Private - P6 - TRUE | .(.Iomega Corporation - QuikProtect.) -- C:\program files\iomega\quikprotect\quikprotect.exe

O87 - FAEL: "UDP Query User{CDE5BDC5-2012-4CF7-8432-2641D0C4F2E3}C:\program files\iomega\quikprotect\quikprotect.exe" | In - Private - P17 - TRUE | .(.Iomega Corporation - QuikProtect.) -- C:\program files\iomega\quikprotect\quikprotect.exe

O87 - FAEL: "TCP Query User{4FC81B38-A5D9-44E6-A78A-82F5113CD1F0}C:\program files (x86)\iomega\home storage manager\iomega discovery.exe" | In - Private - P6 - TRUE | .(.Iomega Corporation.) -- C:\program files (x86)\iomega\home storage manager\iomega discovery.exe

O87 - FAEL: "UDP Query User{3DDF2D9B-D2FC-4311-A95E-DDE35AC0FFD0}C:\program files (x86)\iomega\home storage manager\iomega discovery.exe" | In - Private - P17 - TRUE | .(.Iomega Corporation.) -- C:\program files (x86)\iomega\home storage manager\iomega discovery.exe

O87 - FAEL: "TCP Query User{5314BB98-1227-47AF-960E-CFC1E56BC387}C:\program files (x86)\iomega\home storage manager\iomega discovery.exe" | In - Public - P6 - TRUE | .(.Iomega Corporation.) -- C:\program files (x86)\iomega\home storage manager\iomega discovery.exe

O87 - FAEL: "UDP Query User{809BBBEC-B23E-412A-A306-E940F307DAE7}C:\program files (x86)\iomega\home storage manager\iomega discovery.exe" | In - Public - P17 - TRUE | .(.Iomega Corporation.) -- C:\program files (x86)\iomega\home storage manager\iomega discovery.exe

O87 - FAEL: "{7D6FF797-1286-4BAE-AF4F-99E2ECEE64AB}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\MaxTV\MaxTV4\maxtv.exe (.not file.)

O87 - FAEL: "{CE29997C-E4D0-42EE-99DF-35270B1CD4A0}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\MaxTV\MaxTV4\maxtv.exe (.not file.)

O87 - FAEL: "{9F947153-221A-4B0D-8D52-9F6934EC59BC}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\MaxTV\MaxTV4\core\maxtv_xul.exe (.not file.)

O87 - FAEL: "{79D16C60-7AE9-4D20-B2B7-7D52B9EF185C}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\MaxTV\MaxTV4\core\maxtv_xul.exe (.not file.)

O87 - FAEL: "{A03111AB-E9E5-4F17-8FC1-16B1D45B7B8A}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\MaxTV\MaxTV4\recorder.exe (.not file.)

O87 - FAEL: "{03D77DB1-D3F9-4558-8B72-2D8CB901C437}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\MaxTV\MaxTV4\recorder.exe (.not file.)

O87 - FAEL: "{A9352CA3-D51A-4C49-A1CA-950FFE32627B}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\MaxTV\MaxTV4\task_scheduler.exe (.not file.)

O87 - FAEL: "{7BCD797F-C184-4471-9874-D4D307AF232C}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\MaxTV\MaxTV4\task_scheduler.exe (.not file.)

O87 - FAEL: "{7B4209D3-41AC-46A1-B954-BD170764B7D3}" | In - None - P17 - TRUE | .(.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe

O87 - FAEL: "TCP Query User{6CFDC979-CEEF-4A71-9C47-4AA75F090070}C:\users\jean marc\appdata\local\google\chrome\application\chrome.exe" | In - Private - P6 - TRUE | .(.Google Inc..) -- C:\users\jean marc\appdata\local\google\chrome\application\chrome.exe

O87 - FAEL: "UDP Query User{C780853D-739B-45BE-86C1-23028C5AC1B1}C:\users\jean marc\appdata\local\google\chrome\application\chrome.exe" | In - Private - P17 - TRUE | .(.Google Inc..) -- C:\users\jean marc\appdata\local\google\chrome\application\chrome.exe

O87 - FAEL: "{D1492663-B229-4BBC-AF69-4C0CF8EEE2C0}" | In - Private - P6 - TRUE | .(.Pando Networks - pando.) -- C:\Program Files (x86)\Pando Networks\Pando\Pando.exe

O87 - FAEL: "{C5D117A7-863C-4B0F-AACE-633E26072AA4}" | In - Private - P17 - TRUE | .(.Pando Networks - pando.) -- C:\Program Files (x86)\Pando Networks\Pando\Pando.exe

O87 - FAEL: "{AF4DDBC8-E76B-4802-B668-8ECE72BD81E5}" | In - None - P17 - TRUE | .(.Pando Networks - pando.) -- C:\Program Files (x86)\Pando Networks\Pando\Pando.exe

O87 - FAEL: "TCP Query User{44C82BCC-D99E-42FD-AD67-19D335FCC553}C:\program files\iomega\quikprotect\quikprotect.exe" | In - Public - P6 - TRUE | .(.Iomega Corporation - QuikProtect.) -- C:\program files\iomega\quikprotect\quikprotect.exe

O87 - FAEL: "UDP Query User{5B8AE624-BD47-4974-A48E-D58DC179E94E}C:\program files\iomega\quikprotect\quikprotect.exe" | In - Public - P17 - TRUE | .(.Iomega Corporation - QuikProtect.) -- C:\program files\iomega\quikprotect\quikprotect.exe

 

 

---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)

SR - | Auto 27/10/2009 252784 | (cfWiMAXService) . (.TOSHIBA CORPORATION.) - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe

SR - | Auto 10/03/2009 46448 | (ConfigFree Service) . (.TOSHIBA CORPORATION.) - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe

SS - | Demand 24/08/2009 544768 | (DfSdkS) . (.mst software GmbH, Germany.) - C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 6\DfsdkS.exe

SR - | Auto 18/11/2009 221608 | (F-Secure Gatekeeper Handler Starter) . (.F-Secure Corporation.) - C:\Program Files (x86)\DartyBox Sécurité\Anti-Virus\fsgk32st.exe

SR - | Auto 18/11/2009 188840 | (FSMA) . (.F-Secure Corporation.) - C:\Program Files (x86)\DartyBox Sécurité\Common\FSMA32.exe

SR - | Demand 20/12/2010 63992 | (FSORSPClient) . (.F-Secure Corporation.) - C:\Program Files (x86)\DartyBox Sécurité\ORSP Client\fsorsp.exe

SS - | Auto 03/06/2010 136176 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

SS - | Demand 13/12/2009 182768 | (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe

SS - | Demand 04/04/2005 69632 | (IDriverT) . (.Macrovision Corporation.) - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

SR - | Auto 04/04/2005 0 | (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe

SR - | Auto 24/06/2010 394544 | (QPCopyEngine) . (.Pas de propriétaire.) - C:\Program Files\Iomega\QuikProtect\QpMonitor.exe

SS - | Auto 01/11/2010 331296 | (SolutoService) . (.Soluto.) - C:\Program Files\Soluto\SolutoService.exe

SR - | Auto 26/10/2010 124368 | (TemproMonitoringService) . (.Toshiba Europe GmbH.) - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe

SR - | Auto 26/10/2010 0 | (Thpsrv) . (.TOSHIBA Corporation.) - C:\Windows\system32\ThpSrv.exe

SR - | Demand 29/11/2010 54136 | (TMachInfo) . (.TOSHIBA Corporation.) - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe

SR - | Auto 29/11/2010 0 | (TODDSrv) . (.TOSHIBA Corporation.) - C:\Windows\system32\TODDSrv.exe

SR - | Auto 05/11/2009 489312 | (TosCoSrv) . (.TOSHIBA Corporation.) - C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe

SR - | Demand 21/10/2009 193904 | (TOSHIBA Bluetooth Service) . (.TOSHIBA CORPORATION.) - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe

SR - | Demand 05/02/2010 137560 | (TOSHIBA HDD SSD Alert Service) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe

SR - | Demand 05/02/2010 824688 | (TPCHSrv) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe

SR - | Auto 06/12/2009 1590216 | (uvnc_service) . (.UltraVNC.) - C:\Program Files (x86)\UltraVNC\WinVNC.exe

SR - | Auto 14/07/2009 20992 | C:\Windows\system32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\system32\svchost.exe

SR - | Auto 09/11/2008 602392 | (YahooAUService) . (.Yahoo! Inc..) - C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe

 

 

---\\ Recherche Master Boot Record Infection (MBR)(O80)

Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.1 by Gmer, GMER - Rootkit Detector and Remover

 

 

---\\ Recherche Master Boot Record Infection (MBRCheck)(O80)

Written by ad13, http://ad13.geekstog

Run by Jean Marc at 10/02/2011 20:32:07

Use the desktop link 'MBRCheck' to have full report

 

 

 

 

---\\ Liste des émulateurs de CD/DVD (Hook du MBR)

O42 - Logiciel: DAEMON Tools Toolbar - (.DT Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Toolbar

O58 - SDL:[MD5.37000000000000000000000088ED1800] - 07/01/2011 - 00:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\system32\drivers\sptd.sys [513080]

 

 

---\\ Infection BT - BHO/Toolbar (Possible)

O69 - SBI: SearchScopes [HKCU] {B7B664DF-3AF9-4C8E-8148-F42BB7831D27} - (Ask) - Ask.com Web Search

 

 

 

End of the scan (1520 lines in 02mn 58s)(0)

 

*********************************************

 

C'est du chinois pour moi, bien sûr. Mais j'ai cru comprendre que Ask était en cause, et ça ne m'étonne pas, c'est pire que des morpions venimeux, Ask, et ce n'est pas la première fois que ça me pond des indésirables. J'espère que je n'ai pas perdu des lignes en route.

Bien cordialement, bonsoir à tous.

 

Le lien en abrégé avec points de suspension, c'était plutôt duraille, Chrome ne l'a jamais trouvé, il a fallu que j'aille le chercher sur google, ça n'allait pas de soi pour moi, je suis bien content !

Salut et fraternité !

  • Modérateurs
Posté(e)

Salut eiapopeia86,

 

Le verdict est sans appel... ton PC est infecté.

 

De plus à signaler :


  •  
  • du P2P : très probablement à l'origine de certaines infections constatées => à proscrire
  • une profusion de Toolbars
  • bcp de nettoyage à effectuer (lignes inutiles & superflues)
  • des anti-virus à la pelle (règle de base : 1 seul anti-virus + 1 seul anti-malware + 1 seul pare-feu)

A faire au plus vite --> ouvrir un nouveau sujet dans la section "Analyse et éradication des malwares", seule compétente et habilitée à effectuer une désinfection.

Voici le lien direct pour créer ton nouveau sujet : start-new-topic-f51.html

 

- Pour assurer une bonne traçabilité et afin que le Helper qui te prendra en charge soit informé des manips déjà effectuées, copie/colle ds ton nouveau sujet le lien que tu trouveras en cliquant sur le n° du présent Post -

 

Après cette désinfection, ns pourrons ns revoir, si tu le souhaites, afin d'optimiser les performances de ton PC.

 

Bonne désinfection, "neveu" ! ;)

Tonton

Posté(e)

Tonton57, bonjour. Voilà, c'est fait, j'ai fait suivre aux éradicateurs.

 

Bon, j'ai F-Secure qui est imposé par la DBox, MBAM qui m'a été recommandé jadis par qq'un d'ici comme indispensable, Spybot S&D pareil, et SuperAntiSpyware, qui enlève les trackers. Je veux bien enlever tout le reste, mais je ne comprend pas pourquoi telle saleté, capturée et détruite par MS Essentials, à échappé à F-secure, et pourquoi Immunet protect va détruire ou mettre en quarantaine un truc que les autres n'ont pas décelé. Donc, pourquoi un seul de chaque ?

Bonne journée.

  • Modérateurs
Posté(e) (modifié)

Bonjour eiapopeia86, ;)

 

Quelques réponses à tes interrogations, mais je ne vais pas trop développer afin de ne pas interférer avec ce que vont te dire les véritables spécialistes que sont les helpers de la section "Analyse et éradication des malwares".

 

Le fait d'utiliser simultanément plusieurs anti-virus risque au mieux de créer de forts ralentissements de ton système, au pire d'occasionner des dysfonctionnements.

Il y a donc un choix à effectuer.

 

MBAM est un très bon anti-malware; à noter toutefois que ds sa version gratuite, il n'y a pas de protection résidente, ce qui nécessite d'effectuer des scans réguliers.

 

Spybot S&D est, quant à lui, après avoir connu une période de goire, devenu complètement obsolète, inefficace, et même parfois générateur de problèmes.

 

Voilà, j'arrête volontairement ici afin de ne pas laisser courrir 2 sujets en parallèle et te laisse entre les mains expertes des "exterminateurs" !

 

Comme proposé, après cette désinfection, ns pourrons ns revoir, si tu le souhaites, afin d'optimiser les performances de ton PC.

 

Bon week-end à toi, ;)

Tonton

Modifié par Tonton57
Posté(e)

C'est entendu. I will be back. Hasta la vista, Tonton 57. Merci.

Posté(e)

Bonsoir. On m'a bien conseillé en matière de désinfection. Merci de m'avoir envoyé sur le forum ad hoc. A une prochaine fois.

Rejoindre la conversation

Vous publiez en tant qu’invité. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...