Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

SpyBot search & destroy


Messages recommandés

Posté(e)

Avec Spyware Terminator, il y a plus de deux heures d'horloge que le scan s'est arrêté à 51% en raison d'un 'objet critique'. J'ai mis en pause au bout de 5h53mn.

L'objet en question est un LordOfSearch : HKCR\.fls

J'ai le choix entre reprendre et arrêter l'analyse. Je l'arrête.

 

Il ne me reste plus qu'à attendre la fin d'Avira, qui a fait 3,5% du contrôle Luke Filewalker en SEPT heures et qui jusqu'ici, m'a dégoté du Trivial-28(A), du TR/Agent HHO.80896 (deux supprimés, du TR/Dropper.Gen, du TR/Agent.fcyn (suppr...)

Posté(e) (modifié)

Je viens de réussir à télécharger ZFPDiag, que j'ai mis en barre des tâches. Est-il judicieux de le lancer ?

 

Je viens aussi d'arrêter Avira qui, au bout de près de huit heures de marche, en est toujours à 3,5% et aux mêmes 127 objets cachés.

Modifié par eiapopeia86
Posté(e) (modifié)

Salut !

 

OH ! que OUI. C'est enfin une très bonne résolution.

 

Procédure >>

 

Télécharger ZHPdiag ICI

Cliquer sur le lien, et sélectionnez > Enregistrer le Fichier sous > Vers le bureau

/!\ Il est très important de l'enregistrer sur le bureau / !\

Une fois téléchargé, Une icône apparaitra alors sur le bureau.

Ouvrir alors ce fichier, (clic droit exécuter en tant qu'administrateur pour Vista/W 7) pour lancer le programme d'assistant d'installation.

Installer le avec les paramètres par défaut sans oublier de cocher la case "Créer une icône sur le bureau"

Lancement et diagnostic :

Une fois installé si le logiciel ne se lance pas tout seul, double clic sur le raccourci qui se sera créé sur le bureau (clique droit, exécuter en tant qu'administrateur pour VISTA/ W 7)

  • Cliquer alors sur la loupe pour lancer le diagnostic.
    Patientez jusqu'à la fin de l'analyse
  • Le diagnostic terminé,sauvegarder le rapport sur le Bureau en cliquant sur la disquette bleue.
  • Enregistrer le rapport sur le bureau affin de le retrouver plus facilement

Puis l' héberger comme suit (le rapport risque d'être très long) :

A partir de ce lien : www.cijoint.fr

Sur la page qui s'ouvre :

  • Cliquer sur "Parcourir" dans la partie "Sélectionnez le fichier que vous souhaitez déposer"
  • Sélectionner le rapport ZHPdiag.txt qui se trouve sur le Bureau
  • Cliquer ensuite sur " Cliquez ici pour déposer le fichier ". Un lien va se former.

Il ne reste plus qu'à copier/coller ce lien sur le forum.

 

Il vaudrait mieux le mettre sur le forum "éradications malwares" comme déjà suggéré.

 

 

Bleuet (25/02/2011) ;)

Modifié par bleuet
Posté(e)

Salut !

Ne te cache pas derrière ta main pour te moquer tranquillement, surtout.

Moi, je fais ma petite cuisine dans mon coin pour comprendre enfin la nature de ce qu'on me conseille de télécharger, tu vois : Tonton57 m'a dit un seul ceci, un seul cela, un seul surtout, sinon problèmes.

Mais je ne sais pas à quelle catégorie de protections appartiennent les programmes qu'on me recommande de tous les côtés, avec l'envie de me tirer du pétrin.Je vais voir si je peux mettre en oeuvre ta manip.

A bientôt.

Mille fois merci.

Posté(e) (modifié)

Salut ! ;)

 

Il n'y a pas de moquerie, mais je pense -suis-je le seul ? - que ton système a quelques soucis.

Donc autant employer un poids lourd du diagnostic plutôt que de tergiverser et surtout te faire des sacs de nœuds bien inutiles à tes neurones ! :benetton:

Il vaut mieux poser un diagnostic une bonne fois pour toutes que de partir sur diverses pistes hypothétiques.

Il peut s'agir d'un souci d'infection(s)comme d'un souci de Windows. Les précisions que tu fournis sont trop minces pour se faire une idée de départ.

Ceci dit :

Tu peux faire une analyse avec ZHPDiag. Tu as la marche à suivre. ZHPDiag n'est qu'un outil de diagnostic. En aucun cas un outil de désinfection.

Spywares Terminator s'occupe des spywares, MalwareBytes Anti-Malwares est un anti-maliciels et il est complété très souvent par AD-Remover. (Exemple: MBAM ne trouve pas Ask.com -toolbar mafieuse - mais AD-R l'éradique).

En relief, Sacles t'a déjà - dans son message #9 - donné le conseil de passer par le forum http://forum.zebulon.fr/analyses-et-eradication-malwares-f51.html où les pros pourront t'aider efficacement.

 

Si tu trouves compliqué le transfert, poste ton rapport et au vu tu pourras te faire réorienter vers le bon forum par le bouton "signaler".

 

 

Bleuet (25/02/2011) ;)

Modifié par bleuet
Posté(e)

Ce que j'ai sur le bureau, c'est l'icône ZHPFix. J'espère que c'est bien celle-là qui convient.

Je ferai le diagnostic demain après-midi, avec mes deux externes branchés, puisque Avira m'y a trouvé des trucs

malsains, il y a un 500Go et un 750 Go.

 

Bonsoir à tous. Merci encore. Quand je pense que j'ai passé le week-end dernier à désinfecter mon ordi...

Posté(e)

Tu dois avoir :

ZHPDiag --> pour effectuer le diagnostic = c'est lui qu'il te faut utiliser

 

 

ZHPFix --> il sert à fixer les entrées néfastes

 

 

 

MBRCheck.exe --> il sert à vérifier si la MBR est intègre.

 

Les 3 se décompressent lors de l'installation de ZHPDiag.

 

Le tout est dans :

C:\programs Files\ZHPDiag.

 

Tu peux faire des raccourcis des 3 sur le Bureau.

 

 

Bleuet (25/02/2011) ;)

Posté(e)

Voilà, j'ai bien rangé les trois. Et je crois avoir tout retrouvé, comme mastics à éclaircir.

 

Bref, buona notte !

Posté(e)

Salut !

 

Bin voilà, c'est bon.

Avec DIAG tu auras un rapport précis.

 

 

Bleuet (26/02/2011) ;)

Posté(e)

Bonsoir.

 

Tout ce que j'ai écrit à 18h00, une vingtaine de lignes sur les conditions de démarrage de ma machine et de lancement du scan-diagnostic s'est perdu.

La page pour joindre un fichier de rapport sur Cijoint...a planté la machine avec un message 'aïe aïe aïe !' Je n'ai pas pu afficher le rapport de scan dessus.

 

Quand j'ai rafraîchi, j'ai eu le message " impossible d'ouvrir votre profil correctement. Il est possible que certaines fonctionnalités ne soient pas disponibles. Vérifiez que ce profil existe...etc " Je suis allé chercher une page de rechange dans mes deux colonnes de favoris avec zebulon.fr partout.

 

Je vais tenter d'afficher le diagnostic, et puis je crois que je signalerai mon rapport.

 

 

Rapport de ZHPDiag v1.27.1622 par Nicolas Coolman, Update du 23/02/2011

Run by Jean Marc at 26/02/2011 18:02:23

Web site : ZHPDiag Outil de diagnostic

Contact : nicolascoolman@yahoo.fr

 

---\\ Web Browser

MSIE: Internet Explorer v9.0.8080.16413

GCIE: Google Chrome v10.0.648.45 (Defaut)

 

---\\ System Information

Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601)

Processor: Intel64 Family 6 Model 30 Stepping 5, GenuineIntel

Operating System: 64 Bits

Boot mode: Normal (Normal boot)

Total RAM: 6132 MB (66% free)

System Restore: Activé (Enable)

System drive C: has 147 GB (63%) free of 232 GB

 

---\\ Logged in mode

Computer Name: DONDUCIEL

User Name: Jean Marc

All Users Names: Jean Marc, DF, Administrateur,

Unselected Option: O45,O61,O62,O65,O66,O82

Logged in as Administrator

 

---\\ Environnement Variables

%AppData%=C:\Users\Jean Marc\AppData\Roaming

%LocalAppData%=C:\Users\Jean Marc\AppData\Local

%StartMenu%=C:\Users\Jean Marc\AppData\Roaming\Microsoft\Windows\Start Menu

 

---\\ DOS/Devices

C:\ Hard drive, Flash drive, Thumb drive (Free 147 Go of 232 Go)

D:\ Hard drive, Flash drive, Thumb drive (Free 225 Go of 233 Go)

E:\ CD-ROM drive (Not Inserted)

F:\ Hard drive, Flash drive, Thumb drive (Free 78 Go of 466 Go)

G:\ Hard drive, Flash drive, Thumb drive (Free 33 Go of 699 Go)

H:\ Hard drive, Flash drive, Thumb drive (Free 37 Go of 466 Go)

I:\ Hard drive, Flash drive, Thumb drive (Free 377 Go of 466 Go)

 

 

---\\ Security Center & Tools Informations

[HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: OK

[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoFolderOptions: OK

[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] DisableTaskMgr: OK

[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] DisableRegistryTools: OK

[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] NoDispScrSavPage: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK

[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK

 

 

---\\ Recherche particulière de fichiers génériques

[MD5.AC4C51EB24AA95B77F705AB159189E24] - (.Microsoft Corporation - Explorateur Windows.) (.20/11/2010 14:24:45.) -- C:\Windows\Explorer.exe [2872320]

[MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 02:14:45.) -- C:\Windows\System32\Wininit.exe [96256]

[MD5.111CB0C322A2387E16ED1B013533598D] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.15/02/2011 08:21:08.) -- C:\Windows\System32\wininet.dll [1125376]

 

 

---\\ Processus lancés

[MD5.FBAF93425D4B5A6C48ABB5B7F81088CD] - (.F-Secure Corporation - F-Secure Settings and Statistics.) -- C:\Program Files (x86)\DartyBox Sécurité\Common\FSM32.EXE [201128]

[MD5.9D5E8B45BD348DF0882C69EED0E83111] - (.Avira GmbH - Antivirus System Tray Tool.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [281768]

[MD5.D88E81DECD3014C45603B4B327B4EE1A] - (.TOSHIBA CORPORATION - ConfigFree Task Tray Menu.) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe [304496]

[MD5.8A07221789D46B2EA7DFCA2BC807572A] - (.TOSHIBA CORPORATION - ConfigFree Switch Manager Process.) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe [62848]

[MD5.DD54DDA0D565BB5B0500744140A7C65E] - (.Microsoft Corporation - Internet Low-Mic Utility Tool.) -- C:\Program Files (x86)\Internet Explorer\IELowutil.exe [222720]

[MD5.70CE44ED5F583AB9081293E8F8F84442] - (.Google Inc. - Google Chrome.) -- C:\Users\Jean Marc\AppData\Local\Google\Chrome\Application\chrome.exe [1004088]

[MD5.51138BEEA3E2C21EC44D0932C71762A8] - (.Pas de propriétaire - Pas de description.) -- C:\Windows\SysWOW64\rundll32.exe [44544]

[MD5.C799301BE48A4C969ED6202A4278DD40] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [631808]

 

 

---\\ Opera, Plugins,Démarrage,Recherche (P1,B0,B1)

B0 - SPO: operaprefs.ini [Jean Marc] Home URL=http://my.daemon-search.com/

B1 - OSP: search.ini [Jean Marc] URL=http://mystart.incredimail.com/?loc=OperaSB&search=%s

B1 - OSP: search.ini [Jean Marc] URL=http://www.daemon-search.com/search?q=%s

 

 

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)

P2 - FPN: [HKLM] [@java.com/JavaPlugin] - (.Sun Microsystems, Inc. - Next Generation Java Plug-in 1.6.0_24 for Mozilla browsers.) -- C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll

P2 - FPN: [HKLM] [@ma-config.com/HardwareDetection] - (.Cybelsoft - Plugin NPAPI Ma-Config.com.) -- C:\Program Files\ma-config.com\nphardwaredetection.dll

P2 - FPN: [HKLM] [@microsoft.com/GENUINE] - (.Microsoft Corporation - Windows Activation Technologies Plugin for Mozilla.) -- C:\Windows\system32\Wat\npWatWeb.dll

P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=8] - (.Google Inc. - Google Update.) -- C:\Users\Jean Marc\AppData\Local\Google\Update\1.2.183.39\npGoogleOneClick8.dll

 

 

---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)

G1 - GCS: Preference [user Data\Default] Yahoo! Search - Web Search

G2 - GCE: Preference [user Data\Default] [afpbkpjjkfakdcakapanjoeijlphieei] RapidShare DownloadHelper v.1.1.1 (Activé)

G2 - GCE: Preference [user Data\Default] [bfbmjmiodbnnpllbbbfblcplfjjepjdn] Turn Off the Lights v.2.0.0.2 (Activé)

G2 - GCE: Preference [user Data\Default] [bhmmomiinigofkjcapegjjndpbikblnp] WOT v.1.0.4 (Activé)

G2 - GCE: Preference [user Data\Default] [cccpiddacjljmfbbgeimpelpndgpoknn] SmoothScroll v.0.9.8 (Activé)

G2 - GCE: Preference [user Data\Default] [ejpepffjfmamnambagiibghpglaidiec] Facebook Disconnect v.1.0.2 (Activé)

G2 - GCE: Preference [user Data\Default] [jfchnphgogjhineanplmfkofljiagjfb] Downloads v.1 (Activé)

G2 - GCE: Preference [user Data\Default] [jfmjfhklogoienhpfnppmbcbjfjnkonk] RealPlayer HTML5Video Downloader Extension v.1.3 (Activé)

G2 - GCE: Preference [user Data\Default] [jnmihelkpepcjphjdoleaccfjmfehmin] Quickrr TV & Video v.1.4 (Activé)

G2 - GCE: Preference [user Data\Default] [kcahibnffhnnjcedflmchmokndkjnhpg] StumbleUpon v.2.9.8.1 (Activé)

G2 - GCE: Preference [user Data\Default] [lambangeielkjcnmioccboaphdfcffib] Chrome TV v.2.0.5 (Activé)

G2 - GCE: Preference [user Data\Default] [leekjckogogidfhpejjmaaekecplpdcg] MegaUpload DownloadHelper v.1.2 (Activé)

G2 - GCE: Preference [user Data\Default] [lfkgmnnajiljnolcgolmmgnecgldgeld] Smooth Gestures v.0.14.5 (Activé)

G2 - GCE: Preference [user Data\Default] [lgdfnbpkmkkdhgidgcpdkgpdlfjcgnnh] Stop Autoplay for YouTube. v.0.11.2.24 (Activé)

G2 - GCE: Preference [user Data\Default] [lghjfnfolmcikomdjmoiemllfnlmmoko] InvisibleHand v.0.6.1 (Activé)

G2 - GCE: Preference [user Data\Default] [licccgnfdlgmmmgaddmbcepikfadcmpe] TV Chrome v.1.1.3 (Activé)

G2 - GCE: Preference [user Data\Default] [mfjkgbjaikamkkojmakjclmkianficch] Download Assistant (by Google) v.3.0.5 (Activé)

G2 - GCE: Preference [user Data\Default] [mmffncokckfccddfenhkhnllmlobdahm] FastestChrome - Browse Faster v.4.0.1 (Activé)

G2 - GCE: Preference [user Data\Default] [nnbmlagghjjcbdhgmkedmbmedengocbn] Visionneuse Google\u00A0Documents PDF/PowerPoint (par Google) v.3.1 (Activé)

G2 - GCE: Preference [user Data\Default] [oeljdmeofcikjblcoehpmdnooimalbmj] Robot Theme, inspired by Android\u2122 v.0.2.1 (Activé)

 

 

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Yahoo! France

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Search Microsoft.com

R0 - HKUS\S-1-5-21-670556952-621881684-497893729-1000\Software\Microsoft\Internet Explorer\Main,Start Page = Yahoo! France

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Microsoft Corporation

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Search Microsoft.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Search Microsoft.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Search Microsoft.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk

R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (9.00.8080.16413 (WIN7_IE9_RC.110204-2115)) -- C:\Windows\System32\ieframe.dll

R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1

 

 

---\\ Internet Explorer, Proxy Management (R5)

R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key

R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0

R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1

R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1

R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1

R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

 

 

---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)

F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,C:\Program Files\Soluto\soluto.exe /userinit

F2 - REG:system.ini: VMApplet=C:\WINDOWS\system32\SystemPropertiesPerformance.exe

 

 

---\\ Browser Helper Objects de navigateur (O2)

O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Google Toolbar Helper [64Bits] - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll

O2 - BHO: Java Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll

 

 

---\\ Internet Explorer Toolbars (O3)

O3 - Toolbar: Google Toolbar [64Bits] - {2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll

 

 

---\\ Applications démarrées par registre & par dossier (O4)

O4 - HKLM\..\Run: [QuiKProtect] . (.Iomega Corporation - An EMC Company - startQuikProtect.) -- C:\Program Files\Iomega\QuikProtect\StartQuikProtect.exe

O4 - HKLM\..\Run: [MSC] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- C:\Program Files\Microsoft Security Client\msseces.exe

O4 - HKCU\..\Run: [Pando] . (.Pando Networks - pando.) -- C:\Program Files (x86)\Pando Networks\Pando\pando.exe

O4 - HKCU\..\Run: [FileHippo.com] . (.FileHippo.com - FileHippo.com Update Checker.) -- C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe

O4 - HKCU\..\Run: [sUPERAntiSpyware] . (.SUPERAntiSpyware.com - SUPERAntiSpyware Application.) -- C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

O4 - HKLM\..\Wow6432Node\Run: [F-Secure Manager] . (.F-Secure Corporation - F-Secure Settings and Statistics.) -- C:\Program Files (x86)\DartyBox Sécurité\Common\FSM32.exe

O4 - HKLM\..\Wow6432Node\Run: [F-Secure TNB] . (.F-Secure Corporation - TNBUtil.) -- C:\Program Files (x86)\DartyBox Sécurité\FSGUI\TNBUtil.exe

O4 - HKLM\..\Wow6432Node\Run: [avgnt] . (.Avira GmbH - Antivirus System Tray Tool.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe

O4 - HKUS\S-1-5-19\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe

O4 - HKUS\S-1-5-20\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe

O4 - HKUS\S-1-5-21-670556952-621881684-497893729-1000\..\Run: [Pando] . (.Pando Networks - pando.) -- C:\Program Files (x86)\Pando Networks\Pando\pando.exe

O4 - HKUS\S-1-5-21-670556952-621881684-497893729-1000\..\Run: [FileHippo.com] . (.FileHippo.com - FileHippo.com Update Checker.) -- C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe

O4 - HKUS\S-1-5-21-670556952-621881684-497893729-1000\..\Run: [sUPERAntiSpyware] . (.SUPERAntiSpyware.com - SUPERAntiSpyware Application.) -- C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\rundll32.lnk . (...) -- C:\Windows\SysWOW64\rundll32.exe

 

 

---\\ Autres liens utilisateurs (O4)

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\(Non lus _ 14614) Yahoo! Mail_ eiapopeia86.lnk . (.Google Inc..) -- C:\Users\Jean Marc\AppData\Local\Google\Chrome\Application\chrome.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Update Checker.lnk . (.FileHippo.com.) -- C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Yahoo! Mail (eiapopeia86).lnk . (.Google Inc..) -- C:\Users\Jean Marc\AppData\Local\Google\Chrome\Application\chrome.exe

O4 - Global Startup: C:\Users\Jean Marc\Desktop\AD-R.lnk . (...) -- C:\Program Files (x86)\Ad-Remover\main.exe

O4 - Global Startup: C:\Users\Jean Marc\Desktop\Update Checker.lnk . (.FileHippo.com.) -- C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Ashampoo Burning Studio 2010 Advanced.lnk . (...) -- C:\Program Files (x86)\Ashampoo\Ashampoo Burning Studio 2010 Advanced\burningstudio2010adv.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Ashampoo Home Designer.lnk . (.Creative Amadeo GmbH.) -- C:\Program Files (x86)\Ashampoo\Ashampoo Home Designer\Program\Cygniture.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Ashampoo Internet Accelerator 3.lnk . (.Ashampoo GmbH & Co. KG.) -- C:\Program Files (x86)\Ashampoo\Ashampoo Internet Accelerator 3\iac3.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Ashampoo Snap 3.lnk . (.ashampoo GmbH & Co. KG.) -- C:\Program Files (x86)\Ashampoo\Ashampoo Snap 3\ashsnap.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Ashampoo WinOptimizer 6.lnk . (.Ashampoo GmbH & Co. KG.) -- C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 6\WO6.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Avant Browser.lnk . (.Avant Force.) -- C:\Program Files (x86)\Avant Browser\avant.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Belarc Advisor.lnk . (...) -- C:\Windows\System32\rundll32.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\CDisplayEx.lnk . (.CDisplayEx.) -- C:\Program Files (x86)\CDisplayEx\cdisplayex.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Game Booster.lnk . (.IObit.) -- C:\Program Files (x86)\IObit\Game Booster\GameBooster.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Malwarebytes' Anti-Malware.lnk . (.Malwarebytes Corporation.) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\MiPony.lnk . (.www.mipony.net.) -- C:\Program Files (x86)\MiPony\MiPony.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Thunderbird.lnk . (.Mozilla Messaging.) -- C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Music Duplicate Remover.lnk . (.ManiacTools.com.) -- C:\Program Files (x86)\Music Duplicate Remover\music_duplicate.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Namoroka (64-bit).lnk . (.Mozilla Corporation.) -- C:\Program Files (x86)\Namoroka (64-bit)\firefox.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - Clé orpheline

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Software Informer.lnk . (.Informer Technologies, Inc..) -- C:\Program Files (x86)\Software Informer\softinfo.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Spyware Terminator.lnk . (.Crawler.com.) -- C:\Program Files (x86)\Spyware Terminator\SpyWareTerminator.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Winamp.lnk . (.Nullsoft, Inc..) -- C:\Program Files (x86)\Winamp\winamp.exe

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - Clé orpheline

O4 - Global Startup: C:\Users\Jean Marc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Yahoo! Messenger.lnk . (.Yahoo! Inc..) -- C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe

 

 

---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)

O8 - Extra context menu item: Crawler Search - (.not file.) -

O8 - Extra context menu item: E&xporter vers Microsoft Excel . (.Microsoft Corporation - Microsoft Office Excel.) -- C:\PROGRA~2\MICROS~1\Office12\EXCEL.exe

O8 - Extra context menu item: Google Sidewiki... . (.Google Inc. - Google Toolbar for Internet Explorer.) -- C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E11712C84EA7E12B.dll

O8 - Extra context menu item: Télécharger avec Mipony - (.not file.) - file:\\C:\Program Files (x86)\MiPony\Browser\IEContext.htm

 

 

---\\ Winsock hijacker (Layered Service Provider) (O10)

O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll

O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll

O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll

O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll

O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL

O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL

O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll

O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll

 

 

---\\ Modification Domaine/Adresses DNS (O17)

O17 - HKLM\System\CCS\Services\Tcpip\..\{15B211D0-24C4-46EE-8F27-CBAE28E94689}: DhcpNameServer = 192.168.1.254

O17 - HKLM\System\CCS\Services\Tcpip\..\{BC5B4903-BBB8-4432-906C-C71B5889E15D}: DhcpNameServer = 192.168.1.254

O17 - HKLM\System\CS1\Services\Tcpip\..\{15B211D0-24C4-46EE-8F27-CBAE28E94689}: DhcpNameServer = 192.168.1.254

O17 - HKLM\System\CS1\Services\Tcpip\..\{BC5B4903-BBB8-4432-906C-C71B5889E15D}: DhcpNameServer = 192.168.1.254

O17 - HKLM\System\CS2\Services\Tcpip\..\{15B211D0-24C4-46EE-8F27-CBAE28E94689}: DhcpNameServer = 192.168.1.254

O17 - HKLM\System\CS2\Services\Tcpip\..\{BC5B4903-BBB8-4432-906C-C71B5889E15D}: DhcpNameServer = 192.168.1.254

O17 - HKLM\System\CCS\Services\Tcpip\..\{15B211D0-24C4-46EE-8F27-CBAE28E94689}: DhcpDomain = darty

O17 - HKLM\System\CCS\Services\Tcpip\..\{BC5B4903-BBB8-4432-906C-C71B5889E15D}: DhcpDomain = darty

O17 - HKLM\System\CS1\Services\Tcpip\..\{15B211D0-24C4-46EE-8F27-CBAE28E94689}: DhcpDomain = darty

O17 - HKLM\System\CS1\Services\Tcpip\..\{BC5B4903-BBB8-4432-906C-C71B5889E15D}: DhcpDomain = darty

O17 - HKLM\System\CS2\Services\Tcpip\..\{15B211D0-24C4-46EE-8F27-CBAE28E94689}: DhcpDomain = darty

O17 - HKLM\System\CS2\Services\Tcpip\..\{BC5B4903-BBB8-4432-906C-C71B5889E15D}: DhcpDomain = darty

O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254

 

 

---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)

O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.

 

 

---\\ Liste des services NT non Microsoft et non désactivés (O23)

O23 - Service: (!SASCORE) . (.SUPERAntiSpyware.com - Core Service.) - C:\Program Files\SUPERAntiSpyware\SASCORE64.exe

O23 - Service: (AntiVirSchedulerService) . (.Avira GmbH - Antivirus Scheduler.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe

O23 - Service: (AntiVirService) . (.Avira GmbH - Antivirus On-Access Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe

O23 - Service: (cfWiMAXService) . (.TOSHIBA CORPORATION - ConfigFree Service Process.) - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe

O23 - Service: (ConfigFree Service) . (.TOSHIBA CORPORATION - ConfigFree Service Process.) - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe

O23 - Service: (DfSdkS) . (.mst software GmbH, Germany - mst Defrag SDK Service.) - C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 6\DfsdkS.exe

O23 - Service: (F-Secure Gatekeeper Handler Starter) . (.F-Secure Corporation - F-Secure Anti-Virus Scanning Service.) - C:\Program Files (x86)\DartyBox Sécurité\Anti-Virus\fsgk32st.exe

O23 - Service: (FSMA) . (.F-Secure Corporation - F-Secure Management Agent.) - C:\Program Files (x86)\DartyBox Sécurité\Common\FSMA32.exe

O23 - Service: (FSORSPClient) . (.F-Secure Corporation - F-Secure ORSP Service.) - C:\Program Files (x86)\DartyBox Sécurité\ORSP Client\fsorsp.exe

O23 - Service: (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

O23 - Service: (gusvc) . (.Google - gusvc.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: (IDriverT) . (.Macrovision Corporation - IDriverT Module.) - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: (maconfservice) . (.CybelSoft - Service de détection matériel.) - C:\Program Files\ma-config.com\x64\maconfservice.exe

O23 - Service: (PuranDefrag) . (.Puran Software - Puran Defrag Service.) - C:\Windows\system32\PuranDefragS.exe

O23 - Service: (QPCopyEngine) . (.Pas de propriétaire - Quik Protect CopyEngine Service.) - C:\Program Files\Iomega\QuikProtect\QpMonitor.exe

O23 - Service: (SolutoService) . (.Soluto - Soluto Anti-Frustration Software.) - C:\Program Files\Soluto\SolutoService.exe

O23 - Service: (sp_rssrv) . (.Crawler.com - Spyware Terminator Realtime Shield Service.) - C:\Program Files (x86)\Spyware Terminator\sp_rsser.exe

O23 - Service: (TemproMonitoringService) . (.Toshiba Europe GmbH - Toshiba TEMPRO.) - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe

O23 - Service: (TMachInfo) . (.TOSHIBA Corporation - TSS TMachInfo Service.) - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe

O23 - Service: (TosCoSrv) . (.TOSHIBA Corporation - TOSHIBA Power Saver.) - C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe

O23 - Service: (TOSHIBA Bluetooth Service) . (.TOSHIBA CORPORATION - TOSHIBA Bluetooth Service.) - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe

O23 - Service: (TOSHIBA HDD SSD Alert Service) . (.TOSHIBA Corporation - TosSmartSrv.exe.) - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe

O23 - Service: (TPCHSrv) . (.TOSHIBA Corporation - TOSHIBA PC Health Monitor.) - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe

O23 - Service: (uvnc_service) . (.UltraVNC - VNC server for X64/win32.) - C:\Program Files (x86)\UltraVNC\WinVNC.exe

O23 - Service: (wlidsvc) . (.Microsoft Corp. - Microsoft® Windows Live ID Service.) - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.exe

O23 - Service: (YahooAUService) . (.Yahoo! Inc. - AutoUpater Service Module.) - C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe

 

 

---\\ Enumération Active Desktop & MHTML Editor (O24)

O24 - Default MHTML Editor: Last - .(.Pas de propriétaire - Pas de description.) - (.not file.)

 

 

---\\ Tâches planifiées en automatique (O39)

O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job

O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job

O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-670556952-621881684-497893729-1000Core.job

O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-670556952-621881684-497893729-1000UA.job

O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Scheduled scanning task.job

O39 - APT:Automatic Planified Task - C:\Windows\Tasks\SmartDefrag.job

[MD5.D88E81DECD3014C45603B4B327B4EE1A] [APT] [ConfigFree Startup Programs] (.TOSHIBA CORPORATION.) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe

[MD5.00000000000000000000000000000000] [APT] [CrystalDiskInfo] (.Pas de propriétaire.) -- C:\Program Files (x86)\CrystalDiskInfo\DiskInfo.exe (.not file.)

[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-670556952-621881684-497893729-1000Core] (.Google Inc..) -- C:\Users\Jean Marc\AppData\Local\Google\Update\GoogleUpdate.exe

[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-670556952-621881684-497893729-1000UA] (.Google Inc..) -- C:\Users\Jean Marc\AppData\Local\Google\Update\GoogleUpdate.exe

[MD5.8FB92EF6740EB2E10429C542160A3F84] [APT] [RealUpgradeLogonTaskS-1-5-21-670556952-621881684-497893729-1000] (.RealNetworks, Inc..) -- C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe

[MD5.8FB92EF6740EB2E10429C542160A3F84] [APT] [RealUpgradeLogonTaskS-1-5-21-670556952-621881684-497893729-1004] (.RealNetworks, Inc..) -- C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe

[MD5.8FB92EF6740EB2E10429C542160A3F84] [APT] [RealUpgradeScheduledTaskS-1-5-21-670556952-621881684-497893729-1000] (.RealNetworks, Inc..) -- C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe

[MD5.8FB92EF6740EB2E10429C542160A3F84] [APT] [RealUpgradeScheduledTaskS-1-5-21-670556952-621881684-497893729-1004] (.RealNetworks, Inc..) -- C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe

[MD5.25679C23DC638D0BF0C6C8796E0ABE61] [APT] [scheduled scanning task] (.Pas de propriétaire.) -- C:\PROGRA~2\DARTYB~1\ANTI-V~1\fsav.exe

[MD5.00000000000000000000000000000000] [APT] [smartDefrag] (.Pas de propriétaire.) -- C:\Program Files (x86)\IObit\IObit SmartDefrag\IObit SmartDefrag.exe (.not file.)

[MD5.2201FFF7A25A082D855A5C413C7E1FDF] [APT] [{019C7821-7D36-4D57-AA62-5CD7B78D4B69}] (.SUPERAdBlocker.com.) -- C:\Program Files\SUPERAntiSpyware\Uninstall.exe

[MD5.9A0241D6DF1A72942CFB70A70BF1E9E4] [APT] [{3FB1C631-A78A-4595-B496-F350DD5BA538}] (.Pas de propriétaire.) -- C:\Program Files (x86)\Pando Networks\Pando\PandoUninst.exe

[MD5.61CFEDAF9C527A1463F34F71240F9BB5] [APT] [{9B22DE43-B3B7-408E-93A5-587E92B1AA57}] (.Skype Technologies S.A..) -- C:\Program Files (x86)\Skype\Phone\Skype.exe

[MD5.61CFEDAF9C527A1463F34F71240F9BB5] [APT] [{D654A9E7-9344-4C5E-BECF-E9444468B628}] (.Skype Technologies S.A..) -- C:\Program Files (x86)\Skype\Phone\Skype.exe

[MD5.7B43567B4C32AD7ADED537CD3B1342B9] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe

 

 

---\\ Pilotes lancés au démarrage (O41)

O41 - Driver: C:\Windows\system32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys

O41 - Driver: (avipbb) . (.Avira GmbH - Avira Driver for Security Enhancement.) - C:\Windows\System32\DRIVERS\avipbb.sys

O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\DRIVERS\blbdrive.sys

O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys

O41 - Driver: C:\Windows\system32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys

O41 - Driver: C:\Windows\system32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys

O41 - Driver: (F-Secure HIPS) . (.F-Secure Corporation - HIPS 64-bit kernel module.) - C:\Program Files (x86)\DartyBox Sécurité\HIPS\drivers\fshs.sys

O41 - Driver: (FSES) . (.F-Secure Corporation - F-Secure Email Interceptor.) - C:\Windows\System32\drivers\fses.sys

O41 - Driver: (fsvista) . (.Pas de propriétaire - Pas de description.) - C:\Program Files (x86)\DartyBox Sécurité\Anti-Virus\minifilter\fsvista.sys

O41 - Driver: (MpFilter) . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) - C:\Windows\System32\DRIVERS\MpFilter.sys

O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys

O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys

O41 - Driver: (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys

O41 - Driver: C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys

O41 - Driver: C:\Windows\system32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys

O41 - Driver: C:\Windows\system32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys

O41 - Driver: C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys

O41 - Driver: C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys

O41 - Driver: C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys

O41 - Driver: C:\Windows\system32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys

O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys

O41 - Driver: (Tosrfcom) . (.TOSHIBA Corporation - Bluetooth RFCOMM Driver.) - C:\Windows\System32\Drivers\tosrfcom.sys

O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys

O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys

O41 - Driver: C:\Windows\system32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys

O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys

 

 

---\\ Logiciels installés (O42)

O42 - Logiciel: 7-Zip 9.20 (x64 edition) - (.Igor Pavlov.) [HKLM] -- {23170F69-40C1-2702-0920-000001000000}

O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- Adobe AIR

O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- {46C045BF-2B3F-4BC4-8E4C-00E0CF8BD9DB}

O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX

O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin

O42 - Logiciel: Adobe Reader X (10.0.1) - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1033-7B44-AA0000000001}

O42 - Logiciel: Adobe Reader X (10.0.1) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AA0000000001}

O42 - Logiciel: Adobe Shockwave Player 11.5 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player

O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {EE6097DD-05F4-4178-9719-D3170BF098E8}

O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {6956856F-B6B3-4BE0-BA0B-8F495BE32033}

O42 - Logiciel: Applian FLV Player - (.Applian Technologies Inc..) [HKLM][64Bits] -- Applian FLV Player2.0.25

O42 - Logiciel: Ashampoo Burning Studio 2010 Advanced 9.25 - (.ashampoo GmbH & Co. KG.) [HKLM][64Bits] -- Ashampoo Burning Studio 2010 Advanced_is1

O42 - Logiciel: Ashampoo Home Designer1.0.0 - (.Creative Amadeo GmbH.) [HKLM][64Bits] -- {46552BC3-52B6-404c-9B42-CE536AB719FD}_is1

O42 - Logiciel: Ashampoo Internet Accelerator 3.20 - (.ashampoo GmbH & Co. KG.) [HKLM][64Bits] -- Ashampoo Internet Accelerator 3_is1

O42 - Logiciel: Ashampoo Snap 3.50 - (.ashampoo GmbH & Co. KG.) [HKLM][64Bits] -- Ashampoo Snap 3_is1

O42 - Logiciel: Ashampoo WinOptimizer 6.60 - (.Ashampoo GmbH & Co. KG.) [HKLM][64Bits] -- Ashampoo WinOptimizer 6_is1

O42 - Logiciel: Avant Browser (remove only) - (.Avant Force.) [HKLM][64Bits] -- AvantBrowser

O42 - Logiciel: Avira AntiVir Personal - Free Antivirus - (.Avira GmbH.) [HKLM][64Bits] -- Avira AntiVir Desktop

O42 - Logiciel: Belarc Advisor 8.1 - (.Pas de propriétaire.) [HKLM][64Bits] -- Belarc Advisor

O42 - Logiciel: Bluetooth Stack for Windows by Toshiba - (.TOSHIBA CORPORATION.) [HKLM] -- {CEBB6BFB-D708-4F99-A633-BC2600E01EF6}

O42 - Logiciel: Boilsoft Video Joiner 6.34 - (.Boilsoft, Inc..) [HKLM][64Bits] -- {FD39EF4B-0B5C-4B33-8D57-2EE865A80EB1}_is1

O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner

O42 - Logiciel: CDisplayEx 1.8 - (.Henri Gourvest..) [HKLM][64Bits] -- CDisplayEx_is1

O42 - Logiciel: Complément Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {6E5324C1-84FC-4F76-9A3A-C65E07F80EE6}

O42 - Logiciel: Conexant HD Audio - (.Conexant.) [HKLM] -- CNXT_AUDIO

O42 - Logiciel: Conseiller de mise à niveau vers Windows 7 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9D10CB57-B085-44c3-B435-2D193BA153F0}

O42 - Logiciel: Contrôle ActiveX Windows Live Mesh pour connexions à distance - (.Microsoft Corporation.) [HKLM][64Bits] -- {55D003F4-9599-44BF-BA9E-95D060730DD3}

O42 - Logiciel: Crawler Toolbar with Web Security Guard - (.Crawler, LLC.) [HKLM][64Bits] -- CToolbar_UNINSTALL

O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}

O42 - Logiciel: DVD MovieFactory for TOSHIBA - (.Corel Corporation.) [HKLM][64Bits] -- InstallShield_{50F68032-B5B7-4513-9116-C978DBD8F27A}

O42 - Logiciel: Defraggler - (.Piriform.) [HKLM] -- Defraggler

O42 - Logiciel: Direct DiscRecorder - (.Corel Corporation.) [HKLM][64Bits] -- InstallShield_{F2004B8D-7791-4B35-A3FA-D8CA8BB4DD81}

O42 - Logiciel: Dolby Control Center - (.Dolby.) [HKLM] -- {20387B45-18A4-4D48-ABD9-A23D2CBE42B3}

O42 - Logiciel: Détection de l'application Winamp - (.Nullsoft, Inc.) [HKCU] -- Winamp Detect

O42 - Logiciel: Feedback Tool - (.Microsoft Corporation.) [HKLM][64Bits] -- {13A5E785-5197-4EAD-8EE3-D660271E49BC}

O42 - Logiciel: Feedback Tool - (.Microsoft Corporation.) [HKLM][64Bits] -- {90024193-9F13-4877-89D5-A1CDF0CBBF28}

O42 - Logiciel: FileHippo.com Update Checker - (.Pas de propriétaire.) [HKLM][64Bits] -- FileHippo.com

O42 - Logiciel: Freecorder - (.Applian Technologies Inc..) [HKLM][64Bits] -- Freecorder4.1

O42 - Logiciel: Freecorder Toolbar - (.Freecorder.) [HKLM][64Bits] -- Freecorder Toolbar

O42 - Logiciel: Galerie de photos Windows Live - (.Microsoft Corporation.) [HKLM][64Bits] -- {488F0347-C4A7-4374-91A7-30818BEDA710}

O42 - Logiciel: Game Booster - (.IObit.) [HKLM][64Bits] -- Game Booster_is1

O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU] -- Google Chrome

O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {18455581-E099-4BA8-BC6B-F34B2F06600C}

O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F}

O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}

O42 - Logiciel: HDMI Control Manager - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- InstallShield_{63DA1F6A-2E65-4367-99B9-9E39FADEC446}

O42 - Logiciel: Iomega Home Storage Manager - (.Iomega Corporation an EMC Company.) [HKLM][64Bits] -- {C08E4323-261D-4B2F-8F24-CDB26E2AA081}

O42 - Logiciel: Iomega QuikProtect (64-Bit) - (.Iomega Corporation an EMC Company.) [HKLM] -- {B53FA0E4-739C-435F-9872-E3032F2E08FC}

O42 - Logiciel: Java 6 Update 23 - (.Sun Microsystems, Inc..) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83216020FF}

O42 - Logiciel: Java 6 Update 24 (64-bit) - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F86416024FF}

O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}

O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}

O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9}

O42 - Logiciel: MSXML 4.0 SP3 Parser (KB973685) - (.Microsoft Corporation.) [HKLM][64Bits] -- {859DFA95-E4A6-48CD-B88E-A3E483E89B44}

O42 - Logiciel: Ma-Config.com (64 bits) - (.Cybelsoft.) [HKLM] -- {9EA21438-935A-48F9-88D4-A0341406E12A}

O42 - Logiciel: Malwarebytes' Anti-Malware - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes' Anti-Malware_is1

O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E}

O42 - Logiciel: Messenger Companion - (.Microsoft Corporation.) [HKLM][64Bits] -- {50816F92-1652-4A7C-B9BC-48F682742C4B}

O42 - Logiciel: MiPony 1.2.1 - (.Pas de propriétaire.) [HKLM][64Bits] -- MiPony

O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile

O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}

O42 - Logiciel: Microsoft .NET Framework 4 Client Profile FRA Language Pack - (.Microsoft Corporation.) [HKLM] -- {4B5F58F7-C7D1-3CE3-9B37-B657F0852643}

O42 - Logiciel: Microsoft Antimalware - (.Microsoft Corporation.) [HKLM] -- {774088D4-0777-4D78-904D-E435B318F5D2}

O42 - Logiciel: Microsoft Antimalware Service FR-FR Language Pack - (.Microsoft Corporation.) [HKLM] -- {0450B7B0-AC71-44A4-AB40-4DD678DF3A8C}

O42 - Logiciel: Microsoft Antimalware Service FR-FR Language Pack - (.Microsoft Corporation.) [HKLM] -- {A4526B5A-89C0-4F4B-9E6E-4F883374D5F9}

O42 - Logiciel: Microsoft Default Manager - (.Microsoft Corporation.) [HKLM][64Bits] -- {1CAC7A41-583B-4483-9FA5-3E5465AFF8C2}

O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-0016-040C-0000-0000000FF1CE}_HOMESTUDENTR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-0018-040C-0000-0000000FF1CE}_HOMESTUDENTR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001B-040C-0000-0000000FF1CE}_HOMESTUDENTR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{E64BA721-2310-4B55-BE5A-2925F9706192}

O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-002A-040C-1000-0000000FF1CE}_HOMESTUDENTR_{B165D3C2-40AE-4D39-86F7-E5C87C4264C0}

O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-006E-040C-0000-0000000FF1CE}_HOMESTUDENTR_{B165D3C2-40AE-4D39-86F7-E5C87C4264C0}

O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-00A1-040C-0000-0000000FF1CE}_HOMESTUDENTR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}

O42 - Logiciel: Microsoft Office Excel MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0016-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Home and Student 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- HOMESTUDENTR

O42 - Logiciel: Microsoft Office Home and Student 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Live Add-in 1.5 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}

O42 - Logiciel: Microsoft Office Office 64-bit Components 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-002A-0000-1000-0000000FF1CE}

O42 - Logiciel: Microsoft Office OneNote MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-00A1-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office PowerPoint MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0018-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proof (Arabic) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0401-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proof (Dutch) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0413-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proof (English) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0409-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proof (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proof (German) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0407-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proof (Spanish) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0C0A-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proofing (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-002C-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0401-0000-0000000FF1CE}_HOMESTUDENTR_{14809F99-C601-4D4A-9391-F1E8FAA964C5}

O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0407-0000-0000000FF1CE}_HOMESTUDENTR_{A0516415-ED61-419A-981D-93596DA74165}

O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}

O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{F580DDD5-8D37-4998-968E-EBB76BB86787}

O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0413-0000-0000000FF1CE}_HOMESTUDENTR_{D66D5A44-E480-4BA4-B4F2-C554F6B30EBB}

O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{187308AB-5FA7-4F14-9AB9-D290383A10D9}

O42 - Logiciel: Microsoft Office Shared 64-bit MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-002A-040C-1000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Shared MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-006E-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Suite Activation Assistant - (.Microsoft Corporation.) [HKLM][64Bits] -- {E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}

O42 - Logiciel: Microsoft Office Word MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001B-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Reader - (.Pas de propriétaire.) [HKLM][64Bits] -- {B6F7DBE7-2FE2-458F-A738-B10832746036}

O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU] - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}

O42 - Logiciel: Microsoft Search Enhancement Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {CFF8B8E8-E086-4DE0-935F-FE22CAB54F80}

O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM] -- {E77543EE-6FB5-4FF6-AB70-635392C8C756}

O42 - Logiciel: Microsoft Security Client FR-FR Language Pack - (.Microsoft Corporation.) [HKLM] -- {FCAB9F73-BF5D-4E3D-92E7-B0F35C568F20}

O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM] -- Microsoft Security Client

O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}

O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM][64Bits] -- {770657D0-A123-3C07-8E44-1C83EC895118}

O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {7299052b-02a4-4627-81f2-1818da5d550d}

O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {837b34e3-7c30-493c-8f6a-2b0f04e2912c}

O42 - Logiciel: Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {EE936C7A-EA40-31D5-9B65-8E3E089C3828}

O42 - Logiciel: Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] -- {002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}

O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 - (.Microsoft Corporation.) [HKLM] -- {350AA351-21FA-3270-8B7A-835434E766AD}

O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {8220EEFE-38CD-377E-8595-13398D740ACE}

O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 - (.Microsoft Corporation.) [HKLM][64Bits] -- {FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}

O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475}

O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989}

O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM][64Bits] -- {3B160861-7250-451E-B5EE-8B92BF30A710}

O42 - Logiciel: Module de compatibilité pour Microsoft Office System 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0020-040C-0000-0000000FF1CE}

O42 - Logiciel: Module linguistique Microsoft .NET Framework 4 Client Profile FRA - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile FRA Language Pack

O42 - Logiciel: Mozilla Thunderbird (3.1.7) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Thunderbird (3.1.7)

O42 - Logiciel: Music Duplicate Remover 6.0 - (.ManiacTools.com.) [HKLM][64Bits] -- Music Duplicate Remover_is1

O42 - Logiciel: MyAshampoo Toolbar - (.Pas de propriétaire.) [HKLM][64Bits] -- MyAshampoo Toolbar

O42 - Logiciel: MyDefrag v4.3.1 - (.J.C. Kessels.) [HKLM] -- MyDefrag v4.3.1_is1

O42 - Logiciel: MyPDFConverter - (.Secure Digital Services.) [HKLM][64Bits] -- {1D76557F-04F5-4CF9-AB20-6A621B0D52D7}

O42 - Logiciel: NVIDIA Display Control Panel - (.NVIDIA Corporation.) [HKLM] -- NVIDIA Display Control Panel

O42 - Logiciel: NVIDIA Drivers - (.NVIDIA Corporation.) [HKLM] -- NVIDIA Drivers

O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {8A809006-C25A-4A3A-9DAB-94659BCDB107}

O42 - Logiciel: Namoroka (64-bit) (3.6.3) - (.Mozilla.) [HKLM][64Bits] -- Namoroka (64-bit) (3.6.3)

O42 - Logiciel: Opera 11.01 - (.Opera Software ASA.) [HKLM][64Bits] -- Opera 11.01.1190

O42 - Logiciel: Pack Sécurité - (.Pas de propriétaire.) [HKLM][64Bits] -- F-Secure Product 444

O42 - Logiciel: Pando - (.Pando Networks Inc..) [HKLM][64Bits] -- {AB480DA0-7EE9-465D-9C12-4CDE65BF18FB}

O42 - Logiciel: PlayReady PC Runtime amd64 - (.Microsoft Corporation.) [HKLM] -- {BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}

O42 - Logiciel: Puran Defrag Free Edition 7.2 - (.Puran Software.) [HKLM] -- Puran Defrag Free Edition_is1

O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM][64Bits] -- {57752979-A1C9-4C02-856B-FBB27AC4E02C}

O42 - Logiciel: RealNetworks - Microsoft Visual C++ 2008 Runtime - (.RealNetworks, Inc.) [HKLM][64Bits] -- {7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}

O42 - Logiciel: RealPlayer - (.RealNetworks.) [HKLM][64Bits] -- RealPlayer 12.0

O42 - Logiciel: RealUpgrade 1.1 - (.RealNetworks, Inc..) [HKLM][64Bits] -- {28C2DED6-325B-4CC7-983A-1777C8F7FBAB}

O42 - Logiciel: Realtek WLAN Driver - (.REALTEK Semiconductor Corp..) [HKLM][64Bits] -- {9D3D8C60-A55F-4fed-B2B9-173001290E16}

O42 - Logiciel: SUPERAntiSpyware - (.SUPERAntiSpyware.com.) [HKLM] -- {CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}

O42 - Logiciel: Security Task Manager 1.8c - (.Neuber Software.) [HKLM][64Bits] -- Security Task Manager

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2288621) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{5C497F0B-2061-4CC9-A61C-6B45B867354D}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2288931) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{CD769337-C8AC-46DB-A7DC-643E50089263}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2289158) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{210B16C0-CEBD-4DE9-B474-04A7E8735E16}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2344875) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6FC5C4C1-D7AE-44C3-94B7-6424FC3E752F}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2345043) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{536FB502-775F-4494-BACE-C02CC90B7A5B}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB969559) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{69F52148-9BF6-4CDC-BF76-103DEAF3DD08}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB976321) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{7F207DCA-3399-40CB-A968-6E5991B1421A}

O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2160841) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2160841

O42 - Logiciel: Security Update for Microsoft Office Excel 2007 (KB2345035) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{B23002DD-34EC-4988-B810-A5E2A0BF04F1}

O42 - Logiciel: Security Update for Microsoft Office InfoPath 2007 (KB979441) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{8CCB781A-CF6B-4FCB-B6D8-59C64DF5C6DB}

O42 - Logiciel: Security Update for Microsoft Office PowerPoint 2007 (KB982158) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{F5B70033-E79C-4569-90BF-BC9B4E4F3F46}

O42 - Logiciel: Security Update for Microsoft Office PowerPoint Viewer (KB2413381) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3DED0A62-44C8-4E00-A785-5212F297A9D9}

O42 - Logiciel: Security Update for Microsoft Office Visio Viewer 2007 (KB973709) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{71127777-8B2C-4F97-AF7A-6CF8CAC8224D}

O42 - Logiciel: Security Update for Microsoft Office Word 2007 (KB2344993) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{7A5B74FA-7A92-4FC9-821A-2DD5D4E73E48}

O42 - Logiciel: Security Update for Microsoft Office system 2007 (972581) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF}

O42 - Logiciel: Security Update for Microsoft Office system 2007 (KB974234) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{FCD742B9-7A55-44BC-A776-F795F21FEDDC}

O42 - Logiciel: Skype Toolbars - (.Skype Technologies S.A..) [HKLM][64Bits] -- {CD95D125-2992-4858-B3EF-5F6FB52FBAD6}

O42 - Logiciel: Skype 5.1 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {E633D396-5188-4E9D-8F6B-BFB8BF3467E8}

O42 - Logiciel: SmartSound Quicktracks Plugin - (.SmartSound Software Inc.) [HKLM][64Bits] -- InstallShield_{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}

O42 - Logiciel: Software Informer 1.0 BETA - (.Informer Technologies, Inc..) [HKLM][64Bits] -- Software Informer_is1

O42 - Logiciel: Soluto - (.Soluto.) [HKLM] -- {1CBFA1A9-1D7D-4989-B5E2-1E665F858DF4}

O42 - Logiciel: SoulSeek 157 NS 13e - (.Pas de propriétaire.) [HKLM][64Bits] -- Soulseek2

O42 - Logiciel: Spelling Dictionaries Support For Adobe Reader 9 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-5464-3428-900000000004}

O42 - Logiciel: Spyware Terminator - (.Crawler Inc..) [HKLM][64Bits] -- Spyware Terminator_is1

O42 - Logiciel: Startup Guard - (.PrivacyRoot.com.) [HKLM][64Bits] -- Startup Guard

O42 - Logiciel: SweetIM Toolbar for Internet Explorer 3.9 - (.SweetIM Technologies Ltd..) [HKLM][64Bits] -- {A6CC2CA2-2779-4F10-88BF-A3C9EB874C24}

O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM] -- SynTPDeinstKey

O42 - Logiciel: SysResources Manager - (.Fotis.) [HKLM][64Bits] -- SysResources Manager11.0

O42 - Logiciel: TFPU - (.TOSHIBA.) [HKLM] -- {A7760E07-4C23-4766-A99E-F715F298E99C}

O42 - Logiciel: TOSHIBA Bulletin Board - (.TOSHIBA Corporation.) [HKLM] -- {F64684A0-754B-4637-B7F9-6E8DAA8CD5CD}

O42 - Logiciel: TOSHIBA Bulletin Board - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{F64684A0-754B-4637-B7F9-6E8DAA8CD5CD}

O42 - Logiciel: TOSHIBA ConfigFree - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {F3529665-D75E-4D6D-98F0-745C78C68E9B}

O42 - Logiciel: TOSHIBA DVD PLAYER - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {6C5F3BDC-0A1B-4436-A696-5939629D5C31}

O42 - Logiciel: TOSHIBA Disc Creator - (.TOSHIBA Corporation.) [HKLM] -- {5DA0E02F-970B-424B-BF41-513A5018E4C0}

O42 - Logiciel: TOSHIBA Extended Tiles for Windows Mobility Center - (.Pas de propriétaire.) [HKLM][64Bits] -- InstallShield_{617C36FD-0CBE-4600-84B2-441CEB12FADF}

O42 - Logiciel: TOSHIBA Face Recognition - (.TOSHIBA Corporation.) [HKLM] -- {F67FA545-D8E5-4209-86B1-AEE045D1003F}

O42 - Logiciel: TOSHIBA Face Recognition - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{F67FA545-D8E5-4209-86B1-AEE045D1003F}

O42 - Logiciel: TOSHIBA Fingerprint Utility - (.TOSHIBA Corporation.) [HKLM] -- TFPU{A7760E07-4C23-4766-A99E-F715F298E99C}

O42 - Logiciel: TOSHIBA HDD Protection - (.TOSHIBA Corporation.) [HKLM] -- {94A90C69-71C1-470A-88F5-AA47ECC96B40}

O42 - Logiciel: TOSHIBA HDD/SSD Alert - (.TOSHIBA Corporation.) [HKLM] -- {D4322448-B6AF-4316-B859-D8A0E84DCB38}

O42 - Logiciel: TOSHIBA HDD/SSD Alert - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{D4322448-B6AF-4316-B859-D8A0E84DCB38}

O42 - Logiciel: TOSHIBA Hardware Setup - (.Pas de propriétaire.) [HKLM][64Bits] -- InstallShield_{C4FFA951-9678-4D51-84B4-AFD15D3C45AD}

O42 - Logiciel: TOSHIBA PC Health Monitor - (.TOSHIBA Corporation.) [HKLM] -- {9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}

O42 - Logiciel: TOSHIBA Recovery Media Creator - (.TOSHIBA Corporation.) [HKLM] -- {B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}

O42 - Logiciel: TOSHIBA Recovery Media Creator Reminder - (.TOSHIBA.) [HKLM][64Bits] -- InstallShield_{773970F1-5EBA-4474-ADEE-1EA3B0A59492}

O42 - Logiciel: TOSHIBA ReelTime - (.TOSHIBA Corporation.) [HKLM] -- {5BCC94A1-DEF1-4AB4-8046-BC13048E929A}

O42 - Logiciel: TOSHIBA ReelTime - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{5BCC94A1-DEF1-4AB4-8046-BC13048E929A}

O42 - Logiciel: TOSHIBA Service Station - (.TOSHIBA.) [HKLM][64Bits] -- {AC6569FA-6919-442A-8552-073BE69E247A}

O42 - Logiciel: TOSHIBA Supervisor Password - (.Pas de propriétaire.) [HKLM][64Bits] -- InstallShield_{CBD6B23D-41D5-4A46-8019-6208516C9712}

O42 - Logiciel: TOSHIBA TEMPRO - (.Toshiba Europe GmbH.) [HKLM][64Bits] -- {3A9B3B6D-3C08-4283-AF50-FD82C49DD71E}

O42 - Logiciel: TOSHIBA USB Sleep and Charge Utility - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {E487EE7D-EAAA-4E2A-9116-E3B477D8A74F}

O42 - Logiciel: TOSHIBA Value Added Package - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E}

O42 - Logiciel: TOSHIBA Web Camera Application - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {5E6F6CF3-BACC-4144-868C-E14622C658F3}

O42 - Logiciel: TRORMCLauncher - (.Pas de propriétaire.) [HKLM][64Bits] -- InstallShield_{E65C7D8E-186D-484B-BEA8-DEF0331CE600}

O42 - Logiciel: The KMPlayer (remove only) - (.Pas de propriétaire.) [HKLM][64Bits] -- The KMPlayer

O42 - Logiciel: The KMPlayer v2.9.4.1435 FR - (.www.kmplayer.com/fr.) [HKLM][64Bits] -- The KMPlayer FR_is1

O42 - Logiciel: Theophilos 3.0 - (.Pas de propriétaire.) [HKLM][64Bits] -- Theophilos 3.0_is1

O42 - Logiciel: Tom's Guide France Toolbar - (.Tom's Guide France.) [HKLM][64Bits] -- Tom's_Guide_France Toolbar

O42 - Logiciel: Toshiba Assist - (.TOSHIBA.) [HKLM][64Bits] -- {1B87C40B-A60B-4EF3-9A68-706CF4B69978}

O42 - Logiciel: Toshiba Manuals - (.TOSHIBA.) [HKLM][64Bits] -- {90FF4432-21B7-4AF6-BA6E-FB8C1FED9173}

O42 - Logiciel: Toshiba Online Product Information - (.TOSHIBA.) [HKLM][64Bits] -- {2290A680-4083-410A-ADCC-7092C67FC052}

O42 - Logiciel: TranslateIt! 7.5 - (.Pas de propriétaire.) [HKLM][64Bits] -- TranslateIt!_is1

O42 - Logiciel: UltraVNC 1.0.8.2 - (.1.0.8.2.) [HKLM][64Bits] -- Ultravnc2_is1

O42 - Logiciel: Unlocker 1.9.0 - (.Cedrick Collomb.) [HKLM][64Bits] -- Unlocker

O42 - Logiciel: Update for 2007 Microsoft Office System (KB2284654) - (.Microsoft.) [HKLM][64Bits] -- {90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{FB166E7C-8AA6-48C8-B726-1F25BEE7825A}

O42 - Logiciel: Update for 2007 Microsoft Office System (KB967642) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}

O42 - Logiciel: Update for Microsoft Office OneNote 2007 (KB980729) - (.Microsoft.) [HKLM][64Bits] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{329050A9-EF80-40F9-B633-74508F54C1FF}

O42 - Logiciel: VLC media player 1.1.7 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player

O42 - Logiciel: Visionneuse Microsoft PowerPoint - (.Microsoft Corporation.) [HKLM][64Bits] -- {95140000-00AF-040C-0000-0000000FF1CE}

O42 - Logiciel: WMPx64PluginFix - (.Pas de propriétaire.) [HKLM] -- {00a8ce68-cb2e-4652-aecd-c05c0d9d53a7}.sdb

O42 - Logiciel: WinRAR 4.00 beta 6 (64-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver

O42 - Logiciel: WinRAR archiver - (.Pas de propriétaire.) [HKLM][64Bits] -- WinRAR archiver

O42 - Logiciel: Winamp - (.Nullsoft, Inc.) [HKLM][64Bits] -- Winamp

O42 - Logiciel: Windows Live - (.Microsoft Corporation.) [HKLM][64Bits] -- {34319F1F-7CF2-4CC9-B357-1AE7D2FF3AC5}

O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM][64Bits] -- {D45240D3-B6B3-4FF9-B243-54ECE3E10066}

O42 - Logiciel: Windows Live Essentials - (.Microsoft Corporation.) [HKLM][64Bits] -- WinLiveSuite

O42 - Logiciel: Windows Live Essentials - (.Microsoft Corporation.) [HKLM][64Bits] -- {FE044230-9CA5-43F7-9B58-5AC5A28A1F33}

O42 - Logiciel: Windows Live Family Safety - (.Microsoft Corporation.) [HKLM] -- {1AAF3A3B-7B32-4DDF-8ABB-438DAEB46EEC}

O42 - Logiciel: Windows Live Family Safety - (.Microsoft Corporation.) [HKLM] -- {46A5FBE9-ADB3-4493-A1CC-B4CFFD24D26A}

O42 - Logiciel: Windows Live Family Safety - (.Microsoft Corporation.) [HKLM] -- {FE4BE0BD-1EDB-4D24-9614-847B3C472887}

O42 - Logiciel: Windows Live FolderShare - (.Microsoft Corporation.) [HKLM][64Bits] -- {76810709-A7D3-468D-9167-A1780C1E766C}

O42 - Logiciel: Windows Live ID Sign-in Assistant - (.Microsoft Corporation.) [HKLM] -- {1B8ABA62-74F0-47ED-B18C-A43128E591B8}

O42 - Logiciel: Windows Live Installer - (.Microsoft Corporation.) [HKLM][64Bits] -- {0B0F231F-CE6A-483D-AA23-77B364F75917}

O42 - Logiciel: Windows Live Language Selector - (.Microsoft Corporation.) [HKLM] -- {D07A61E5-A59C-433C-BCBD-22025FA2287B}

O42 - Logiciel: Windows Live MIME IFilter - (.Microsoft Corporation.) [HKLM] -- {DA54F80E-261C-41A2-A855-549A144F2F59}

O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM][64Bits] -- {9D56775A-93F3-44A3-8092-840E3826DE30}

O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM][64Bits] -- {9FAE6E8D-E686-49F5-A574-0A58DFD9580C}

O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM][64Bits] -- {C66824E4-CBB3-4851-BB3F-E8CFD6350923}

O42 - Logiciel: Windows Live Mesh - (.Microsoft Corporation.) [HKLM][64Bits] -- {841F1FB4-FDF8-461C-A496-3E1CFD84C0B5}

O42 - Logiciel: Windows Live Mesh - (.Microsoft Corporation.) [HKLM][64Bits] -- {A0C91188-C88F-4E86-93E6-CD7C9A266649}

O42 - Logiciel: Windows Live Mesh - (.Microsoft Corporation.) [HKLM][64Bits] -- {DECDCB7C-58CC-4865-91AF-627F9798FE48}

O42 - Logiciel: Windows Live Mesh ActiveX Control for Remote Connections - (.Microsoft Corporation.) [HKLM][64Bits] -- {2902F983-B4C1-44BA-B85D-5C6D52E2C441}

O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {6057E21C-ABE9-4059-AE3E-3BEB9925E660}

O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {80956555-A512-4190-9CAD-B000C36D6B6B}

O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {EB4DF488-AAEF-406F-A341-CB2AAA315B90}

O42 - Logiciel: Windows Live Messenger Companion Core - (.Microsoft Corporation.) [HKLM][64Bits] -- {78A96B4C-A643-4D0F-98C2-A8E16A6669F9}

O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM][64Bits] -- {6DEC8BD5-7574-47FA-B080-492BBBE2FEA3}

O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM][64Bits] -- {92EA4134-10D1-418A-91E1-5A0453131A38}

O42 - Logiciel: Windows Live PIMT Platform - (.Microsoft Corporation.) [HKLM][64Bits] -- {83C292B7-38A5-440B-A731-07070E81A64F}

O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM][64Bits] -- {A9BDCA6B-3653-467B-AC83-94367DA3BFE3}

O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM][64Bits] -- {C893D8C0-1BA0-4517-B11C-E89B65E72F70}

O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM][64Bits] -- {D436F577-1695-4D2F-8B44-AC76C99E0002}

O42 - Logiciel: Windows Live Photo Gallery - (.Microsoft Corporation.) [HKLM][64Bits] -- {3336F667-9049-4D46-98B6-4C743EEBC5B1}

O42 - Logiciel: Windows Live Remote Client - (.Microsoft Corporation.) [HKLM] -- {DF6D988A-EEA0-4277-AAB8-158E086E439B}

O42 - Logiciel: Windows Live Remote Client Resources - (.Microsoft Corporation.) [HKLM] -- {847B0532-55E3-4AAF-8D7B-E3A1A7CD17E5}

O42 - Logiciel: Windows Live Remote Client Resources - (.Microsoft Corporation.) [HKLM] -- {B750FA38-7AB0-42CB-ACBB-E7DBE9FF603F}

O42 - Logiciel: Windows Live Remote Service - (.Microsoft Corporation.) [HKLM] -- {E02A6548-6FDE-40E2-8ED9-119D7D7E641F}

O42 - Logiciel: Windows Live Remote Service Resources - (.Microsoft Corporation.) [HKLM] -- {5E2CD4FB-4538-4831-8176-05D653C3E6D4}

O42 - Logiciel: Windows Live Remote Service Resources - (.Microsoft Corporation.) [HKLM] -- {656DEEDE-F6AC-47CA-A568-A1B4E34B5760}

O42 - Logiciel: Windows Live SOXE - (.Microsoft Corporation.) [HKLM][64Bits] -- {682B3E4F-696A-42DE-A41C-4C07EA1678B4}

O42 - Logiciel: Windows Live SOXE Definitions - (.Microsoft Corporation.) [HKLM][64Bits] -- {200FEC62-3C34-4D60-9CE8-EC372E01C08F}

O42 - Logiciel: Windows Live UX Platform - (.Microsoft Corporation.) [HKLM][64Bits] -- {CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}

O42 - Logiciel: Windows Live UX Platform Language Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {05E379CC-F626-4E7D-8354-463865B303BF}

O42 - Logiciel: Windows Live UX Platform Language Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}

O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM][64Bits] -- {3B9A92DA-6374-4872-B646-253F18624D5F}

O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM][64Bits] -- {A726AE06-AAA3-43D1-87E3-70F510314F04}

O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM][64Bits] -- {AAAFC670-569B-4A2F-82B4-42945E0DE3EF}

O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM][64Bits] -- {AAF454FC-82CA-4F29-AB31-6A109485E76E}

O42 - Logiciel: Windows Live Writer Resources - (.Microsoft Corporation.) [HKLM][64Bits] -- {62687B11-58B5-4A18-9BC3-9DF4CE03F194}

O42 - Logiciel: Windows Live Writer Resources - (.Microsoft Corporation.) [HKLM][64Bits] -- {DDC8BDEE-DCAC-404D-8257-3E8D4B782467}

O42 - Logiciel: Windows Media Encoder 9 Series - (.Microsoft Corporation.) [HKLM][64Bits] -- {E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}

O42 - Logiciel: Windows Media Encoder 9 Series - (.Pas de propriétaire.) [HKLM][64Bits] -- Windows Media Encoder 9

O42 - Logiciel: Windows Media Player Firefox Plugin - (.Microsoft Corp.) [HKLM][64Bits] -- {69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}

O42 - Logiciel: Windows Media Player Plus! 1.1 - (.BM-productions.) [HKLM][64Bits] -- {67E4EF06-E0D6-42E0-A2BA-67199B0143FB}_is1

O42 - Logiciel: Wipe 2011.02 - (.Pas de propriétaire.) [HKLM][64Bits] -- Wipe 2011

O42 - Logiciel: Yahoo! Install Manager - (.Pas de propriétaire.) [HKLM][64Bits] -- YInstHelper

O42 - Logiciel: Yahoo! Internet Mail - (.Pas de propriétaire.) [HKLM][64Bits] -- Yahoo! Mail

O42 - Logiciel: Yahoo! Mail Advisor - (.Pas de propriétaire.) [HKLM][64Bits] -- Yahoo! Mail Advisor

O42 - Logiciel: Yahoo! Messenger - (.Yahoo! Inc..) [HKLM][64Bits] -- Yahoo! Messenger

O42 - Logiciel: Yahoo! Software Update - (.Pas de propriétaire.) [HKLM][64Bits] -- Yahoo! Software Update

O42 - Logiciel: Yahoo! Toolbar - (.Pas de propriétaire.) [HKLM][64Bits] -- Yahoo! Companion

O42 - Logiciel: calibre - (.Kovid Goyal.) [HKLM][64Bits] -- {D8AD43B5-36EB-4E14-A44F-0E40AFFC4932}

O42 - Logiciel: runtime64 - (.immunet.) [HKLM] -- {AB79B2CD-4555-4D3F-BC37-8948598223F2}

 

---\\ HKCU & HKLM Software Keys

[HKCU\Software\7-Zip]

[HKCU\Software\AC3filter]

[HKCU\Software\ALWIL Software]

[HKCU\Software\AVS4YOU]

[HKCU\Software\Ad-Remover]

[HKCU\Software\Adobe]

[HKCU\Software\Antanda]

[HKCU\Software\AppDataLow\Software\Adobe]

[HKCU\Software\AppDataLow\Software\Freecorder]

[HKCU\Software\AppDataLow\Software\Google]

[HKCU\Software\AppDataLow\Software\Microsoft]

[HKCU\Software\AppDataLow\Software\Monitored]

[HKCU\Software\AppDataLow\Software\MyAshampoo]

[HKCU\Software\AppDataLow\Software\Tom's_Guide_France]

[HKCU\Software\AppDataLow\Software\Yahoo]

[HKCU\Software\AppDataLow\Software\myBabylon_English]

[HKCU\Software\AppDataLow\Software\settings]

[HKCU\Software\AppDataLow\Software]

[HKCU\Software\AppDataLow]

[HKCU\Software\Apple Computer, Inc.]

[HKCU\Software\Apple Inc.]

[HKCU\Software\ApplianTechnologies]

[HKCU\Software\Ashampoo]

[HKCU\Software\Avant Browser]

[HKCU\Software\Avira]

[HKCU\Software\BM-productions]

[HKCU\Software\Belarc]

[HKCU\Software\Bugsplat]

[HKCU\Software\CDDB]

[HKCU\Software\CToolbar]

[HKCU\Software\Classes]

[HKCU\Software\Clients]

[HKCU\Software\CodeStuff]

[HKCU\Software\CoreVorbis]

[HKCU\Software\CyberLink]

[HKCU\Software\DT Soft]

[HKCU\Software\DivX]

[HKCU\Software\FileHippo.com]

[HKCU\Software\FlashPeak]

[HKCU\Software\GNU]

[HKCU\Software\Gabest]

[HKCU\Software\Google]

[HKCU\Software\Haali]

[HKCU\Software\IM Providers]

[HKCU\Software\IncrediMail]

[HKCU\Software\Informer Technologies, Inc.]

[HKCU\Software\JavaSoft]

[HKCU\Software\KMPlayer]

[HKCU\Software\KovidsBrain]

[HKCU\Software\MONOGRAM]

[HKCU\Software\Macromedia]

[HKCU\Software\Malwarebytes' Anti-Malware]

[HKCU\Software\ManiacTools]

[HKCU\Software\MozillaPlugins]

[HKCU\Software\Mozilla]

[HKCU\Software\MyDefrag]

[HKCU\Software\NVIDIA Corporation]

[HKCU\Software\Netscape]

[HKCU\Software\Neuber GbR]

[HKCU\Software\ODBC]

[HKCU\Software\Opera Software]

[HKCU\Software\Pando Networks]

[HKCU\Software\Password Safe]

[HKCU\Software\Piriform]

[HKCU\Software\Policies]

[HKCU\Software\Reactor]

[HKCU\Software\RealNetworks]

[HKCU\Software\SUPERAntiSpyware.com]

[HKCU\Software\Safer Networking Limited]

[HKCU\Software\Siber Systems]

[HKCU\Software\SkypeApps]

[HKCU\Software\Skype]

[HKCU\Software\SmartTweak]

[HKCU\Software\Softonic]

[HKCU\Software\Soulseek2]

[HKCU\Software\Spyware Terminator]

[HKCU\Software\Stardock]

[HKCU\Software\Synaptics]

[HKCU\Software\TOSHIBA]

[HKCU\Software\TeamViewer]

[HKCU\Software\Trolltech]

[HKCU\Software\VB and VBA Program Settings]

[HKCU\Software\Valve]

[HKCU\Software\VirtuaMedia]

[HKCU\Software\WideStream]

[HKCU\Software\WinRAR SFX]

[HKCU\Software\WinRAR]

[HKCU\Software\Winamp]

[HKCU\Software\Wow6432Node]

[HKCU\Software\YahooPartnerToolbar]

[HKCU\Software\Yahoo]

[HKCU\Software\YouSendIt]

[HKCU\Software\cybelsoft]

[HKCU\Software\giveawayoftheday.com]

[HKCU\Software\madFlac]

[HKCU\Software\mozilla.org]

[HKLM\Software\7-Zip]

[HKLM\Software\AGEIA Technologies]

[HKLM\Software\ATI Technologies]

[HKLM\Software\Apple Computer, Inc.]

[HKLM\Software\Ashampoo]

[HKLM\Software\BrowserChoice]

[HKLM\Software\CUSTPDF Writer]

[HKLM\Software\Classes]

[HKLM\Software\Cleanse]

[HKLM\Software\Clients]

[HKLM\Software\Conexant Systems Inc ]

[HKLM\Software\Conexant]

[HKLM\Software\Dolby]

[HKLM\Software\GEAR Software]

[HKLM\Software\Google]

[HKLM\Software\InstalledOptions]

[HKLM\Software\Intel]

[HKLM\Software\InterVideo]

[HKLM\Software\Iomega Corp]

[HKLM\Software\JavaSoft]

[HKLM\Software\JreMetrics]

[HKLM\Software\Khronos]

[HKLM\Software\MozillaPlugins]

[HKLM\Software\Mozilla]

[HKLM\Software\Myown6.50]

[HKLM\Software\NVIDIA Corporation]

[HKLM\Software\ODBC]

[HKLM\Software\Piriform]

[HKLM\Software\Policies]

[HKLM\Software\Puran Software]

[HKLM\Software\RegisteredApplications]

[HKLM\Software\SOFTWARE]

[HKLM\Software\SUPERAntiSpyware.com]

[HKLM\Software\Softwin]

[HKLM\Software\Soluto]

[HKLM\Software\Sonic]

[HKLM\Software\Synaptics]

[HKLM\Software\TOSHIBA]

[HKLM\Software\Toshiba Tempro]

[HKLM\Software\WinRAR]

[HKLM\Software\Wow6432Node]

[HKLM\Software\cybelsoft]

 

 

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)

O43 - CFD: 19/12/2010 - 22:35:42 - [4588532] ----D- C:\Program Files\7-Zip

O43 - CFD: 18/10/2010 - 09:13:22 - [0] ----D- C:\Program Files\Alwil Software

O43 - CFD: 19/12/2010 - 23:14:48 - [79322863] ----D- C:\Program Files\Common Files

O43 - CFD: 06/05/2010 - 10:56:42 - [33406004] ----D- C:\Program Files\CONEXANT

O43 - CFD: 12/01/2011 - 23:49:00 - [8227688] ----D- C:\Program Files\D31504102

O43 - CFD: 01/02/2011 - 22:56:04 - [8586795] ----D- C:\Program Files\Defraggler

O43 - CFD: 06/05/2010 - 11:26:40 - [35201319] ----D- C:\Program Files\Dolby

O43 - CFD: 12/01/2011 - 23:15:50 - [7762383070] ----D- C:\Program Files\DONDUCIEL

O43 - CFD: 23/02/2011 - 20:43:52 - [90256916] ----D- C:\Program Files\DVD Maker

O43 - CFD: 03/06/2010 - 18:40:38 - [0] -SH-D- C:\Program Files\Fichiers communs

O43 - CFD: 13/12/2009 - 19:36:04 - [1593552] ----D- C:\Program Files\Google

O43 - CFD: 14/01/2011 - 08:13:34 - [8244685890] R---D- C:\Program Files\HDDRecovery

O43 - CFD: 05/02/2011 - 15:01:46 - [779951616] ----D- C:\Program Files\Immunet Protect

O43 - CFD: 15/02/2011 - 08:23:50 - [6124900] ----D- C:\Program Files\Internet Explorer

O43 - CFD: 12/01/2011 - 21:35:14 - [5784468] ----D- C:\Program Files\Iomega

O43 - CFD: 24/02/2011 - 21:42:18 - [80819483] ----D- C:\Program Files\Java

O43 - CFD: 16/02/2011 - 13:06:36 - [7892707] ----D- C:\Program Files\ma-config.com

O43 - CFD: 13/12/2009 - 19:38:20 - [148931122] ----D- C:\Program Files\Microsoft Games

O43 - CFD: 13/12/2009 - 19:19:16 - [1141526] ----D- C:\Program Files\Microsoft Office

O43 - CFD: 25/01/2011 - 21:21:52 - [22492668] ----D- C:\Program Files\Microsoft Security Client

O43 - CFD: 14/07/2009 - 06:32:40 - [25757] ----D- C:\Program Files\MSBuild

O43 - CFD: 06/02/2011 - 16:47:14 - [3470822] ----D- C:\Program Files\MyDefrag v4.3.1

O43 - CFD: 20/11/2010 - 23:16:50 - [64504923] ----D- C:\Program Files\NVIDIA Corporation

O43 - CFD: 13/12/2009 - 19:13:24 - [2178436] ----D- C:\Program Files\PlayReady

O43 - CFD: 15/02/2011 - 11:15:34 - [4120658] ----D- C:\Program Files\Puran Defrag

O43 - CFD: 14/07/2009 - 06:32:40 - [36813993] ----D- C:\Program Files\Reference Assemblies

O43 - CFD: 09/01/2011 - 23:38:22 - [14713453] ----D- C:\Program Files\Soluto

O43 - CFD: 24/02/2011 - 21:26:52 - [51006127] ----D- C:\Program Files\SUPERAntiSpyware

O43 - CFD: 06/05/2010 - 11:00:06 - [28464736] ----D- C:\Program Files\Synaptics

O43 - CFD: 09/02/2011 - 21:21:02 - [448447585] ----D- C:\Program Files\Toshiba

O43 - CFD: 14/07/2009 - 06:09:28 - [0] --H-D- C:\Program Files\Uninstall Information

O43 - CFD: 23/02/2011 - 20:43:40 - [4039680] ----D- C:\Program Files\Windows Defender

O43 - CFD: 23/02/2011 - 20:43:50 - [9224824] ----D- C:\Program Files\Windows Journal

O43 - CFD: 19/12/2010 - 12:38:52 - [8147833] ----D- C:\Program Files\Windows Live

O43 - CFD: 23/02/2011 - 20:43:52 - [6667776] ----D- C:\Program Files\Windows Mail

O43 - CFD: 23/02/2011 - 20:43:50 - [7687085] ----D- C:\Program Files\Windows Media Player

O43 - CFD: 03/06/2010 - 18:40:38 - [12627636] ----D- C:\Program Files\Windows NT

O43 - CFD: 23/02/2011 - 20:43:48 - [5516056] ----D- C:\Program Files\Windows Photo Viewer

O43 - CFD: 23/02/2011 - 20:43:50 - [244736] ----D- C:\Program Files\Windows Portable Devices

O43 - CFD: 23/02/2011 - 20:43:52 - [8132264] ----D- C:\Program Files\Windows Sidebar

O43 - CFD: 10/02/2011 - 09:32:18 - [4486404] ----D- C:\Program Files\WinRAR

O43 - CFD: 04/10/2010 - 05:39:28 - [66256494] ----D- C:\Program Files\Common Files\Microsoft Shared

O43 - CFD: 14/07/2009 - 04:20:10 - [2702] ----D- C:\Program Files\Common Files\Services

O43 - CFD: 14/07/2009 - 04:20:10 - [608768] ----D- C:\Program Files\Common Files\SpeechEngines

O43 - CFD: 14/07/2009 - 16:24:10 - [12194291] ----D- C:\Program Files\Common Files\System

O43 - CFD: 06/05/2010 - 11:04:22 - [260608] ----D- C:\Program Files\Common Files\TOSHIBA Shared

O43 - CFD: 24/02/2011 - 21:26:44 - [9055] ----D- C:\ProgramData\!SASCORE

O43 - CFD: 06/02/2011 - 23:11:10 - [132932384] ----D- C:\ProgramData\Adobe

O43 - CFD: 18/10/2010 - 09:13:22 - [5374] ----D- C:\ProgramData\Alwil Software

O43 - CFD: 05/06/2010 - 15:24:06 - [88898048] ----D- C:\ProgramData\Apple

O43 - CFD: 01/09/2010 - 05:26:50 - [62877792] ----D- C:\ProgramData\Apple Computer

O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Application Data

O43 - CFD: 28/12/2010 - 22:37:20 - [359533] ----D- C:\ProgramData\ashampoo

O43 - CFD: 24/02/2011 - 18:16:10 - [90967157] ----D- C:\ProgramData\Avira

O43 - CFD: 03/06/2010 - 18:40:38 - [0] -SH-D- C:\ProgramData\Bureau

O43 - CFD: 05/09/2010 - 18:03:38 - [1468] ----D- C:\ProgramData\DAEMON Tools Lite

O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Desktop

O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Documents

O43 - CFD: 29/01/2011 - 11:11:18 - [144] ----D- C:\ProgramData\Driver Whiz

O43 - CFD: 04/06/2010 - 07:02:20 - [6619369] ----D- C:\ProgramData\f-secure

O43 - CFD: 03/06/2010 - 18:40:38 - [0] -SH-D- C:\ProgramData\Favoris

O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Favorites

O43 - CFD: 11/08/2010 - 01:02:56 - [319542] ----D- C:\ProgramData\fssg

O43 - CFD: 05/06/2010 - 21:22:32 - [2698640] ----D- C:\ProgramData\Google

O43 - CFD: 25/08/2010 - 10:23:14 - [168] ----D- C:\ProgramData\IM

O43 - CFD: 05/02/2011 - 13:03:22 - [37549629] ----D- C:\ProgramData\Immunet

O43 - CFD: 25/08/2010 - 10:22:14 - [9360] ----D- C:\ProgramData\IncrediMail

O43 - CFD: 23/07/2010 - 09:50:30 - [871027] ----D- C:\ProgramData\InterVideo

O43 - CFD: 15/12/2010 - 19:43:42 - [85417] ----D- C:\ProgramData\IObit

O43 - CFD: 13/12/2009 - 19:46:42 - [30771] ----D- C:\ProgramData\IsolatedStorage

O43 - CFD: 16/02/2011 - 13:06:34 - [1561437] ----D- C:\ProgramData\ma-config.com

O43 - CFD: 16/06/2010 - 22:06:04 - [12416805] ----D- C:\ProgramData\Malwarebytes

O43 - CFD: 03/06/2010 - 20:50:42 - [3269] ----D- C:\ProgramData\McAfee

O43 - CFD: 03/06/2010 - 18:40:38 - [0] -SH-D- C:\ProgramData\Menu Démarrer

O43 - CFD: 25/01/2011 - 21:20:08 - [855747889] -S--D- C:\ProgramData\Microsoft

O43 - CFD: 20/12/2010 - 15:06:30 - [57688] ----D- C:\ProgramData\Microsoft Help

O43 - CFD: 03/06/2010 - 18:40:38 - [0] -SH-D- C:\ProgramData\Modèles

O43 - CFD: 21/11/2010 - 11:26:00 - [245704] ----D- C:\ProgramData\NVIDIA

O43 - CFD: 20/11/2010 - 23:15:18 - [525745] ----D- C:\ProgramData\NVIDIA Corporation

O43 - CFD: 14/07/2010 - 19:30:20 - [1064] ----D- C:\ProgramData\Office Genuine Advantage

O43 - CFD: 02/02/2011 - 07:04:26 - [73970] ----D- C:\ProgramData\page

O43 - CFD: 13/07/2010 - 20:33:06 - [1715] ----D- C:\ProgramData\Partner

O43 - CFD: 18/11/2010 - 03:10:08 - [1229498] ----D- C:\ProgramData\Real

O43 - CFD: 30/11/2010 - 10:43:00 - [2278394] ----D- C:\ProgramData\SecTaskMan

O43 - CFD: 13/12/2009 - 19:31:44 - [36] ----D- C:\ProgramData\SiteAdvisor

O43 - CFD: 20/01/2011 - 19:57:22 - [48754478] ----D- C:\ProgramData\Skype

O43 - CFD: 11/07/2010 - 19:36:10 - [33250085] ----D- C:\ProgramData\SmartSound Software Inc

O43 - CFD: 15/01/2011 - 17:47:00 - [958133894] ----D- C:\ProgramData\Soluto

O43 - CFD: 24/02/2011 - 16:47:58 - [73257] ----D- C:\ProgramData\Spybot - Search & Destroy

O43 - CFD: 25/02/2011 - 08:24:58 - [50244659] ----D- C:\ProgramData\Spyware Terminator

O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Start Menu

O43 - CFD: 25/06/2010 - 10:46:40 - [224] ----D- C:\ProgramData\Sun

O43 - CFD: 28/10/2010 - 22:05:06 - [21] ----D- C:\ProgramData\SUPERAntiSpyware.com

O43 - CFD: 11/07/2010 - 19:40:10 - [127047] ----D- C:\ProgramData\Temp

O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Templates

O43 - CFD: 03/08/2010 - 23:11:30 - [32187867] ----D- C:\ProgramData\TOSHIBA

O43 - CFD: 23/07/2010 - 09:21:54 - [1777] ----D- C:\ProgramData\TOSHIBA Tempro

O43 - CFD: 03/06/2010 - 18:41:10 - [743] ----D- C:\ProgramData\ToshibaEurope

O43 - CFD: 06/05/2010 - 11:17:50 - [234000] ----D- C:\ProgramData\Ulead Systems

O43 - CFD: 03/06/2010 - 20:31:20 - [5074215] ----D- C:\ProgramData\WildTangent

O43 - CFD: 14/11/2010 - 11:26:00 - [24849390] ----D- C:\ProgramData\Win7codecs

O43 - CFD: 06/06/2010 - 22:50:12 - [0] ----D- C:\ProgramData\WinZip

O43 - CFD: 14/10/2010 - 18:46:08 - [2905319] ----D- C:\ProgramData\Yahoo!

O43 - CFD: 19/09/2010 - 11:00:42 - [246952] ----D- C:\ProgramData\Yahoo! Companion

O43 - CFD: 17/12/2010 - 15:01:06 - [2474506] ----D- C:\Users\Jean Marc\AppData\Roaming\Adobe

O43 - CFD: 20/08/2010 - 17:20:00 - [2414499] ----D- C:\Users\Jean Marc\AppData\Roaming\Apple Computer

O43 - CFD: 02/02/2011 - 09:04:12 - [1329] ----D- C:\Users\Jean Marc\AppData\Roaming\Ashampoo

O43 - CFD: 24/02/2011 - 21:54:22 - [0] ----D- C:\Users\Jean Marc\AppData\Roaming\Avira

O43 - CFD: 08/01/2011 - 09:45:08 - [124] ----D- C:\Users\Jean Marc\AppData\Roaming\Boilsoft

O43 - CFD: 02/02/2011 - 21:32:52 - [22846] ----D- C:\Users\Jean Marc\AppData\Roaming\calibre

O43 - CFD: 02/01/2011 - 20:29:56 - [2119] ----D- C:\Users\Jean Marc\AppData\Roaming\CDisplayEx

O43 - CFD: 04/02/2011 - 13:39:22 - [1413] ----D- C:\Users\Jean Marc\AppData\Roaming\com.grammys.musicislifeismusic

O43 - CFD: 05/09/2010 - 18:02:58 - [0] ----D- C:\Users\Jean Marc\AppData\Roaming\DAEMON Tools Lite

O43 - CFD: 18/06/2010 - 21:01:22 - [109422592] ----D- C:\Users\Jean Marc\AppData\Roaming\Downloaded Installations

O43 - CFD: 18/02/2011 - 11:21:32 - [615] ----D- C:\Users\Jean Marc\AppData\Roaming\dvdcss

O43 - CFD: 22/10/2010 - 18:22:12 - [32288] ----D- C:\Users\Jean Marc\AppData\Roaming\F-Secure

O43 - CFD: 05/09/2010 - 19:08:04 - [13227] ----D- C:\Users\Jean Marc\AppData\Roaming\FileZilla

O43 - CFD: 03/06/2010 - 20:12:56 - [0] ----D- C:\Users\Jean Marc\AppData\Roaming\Google

O43 - CFD: 03/06/2010 - 19:56:42 - [0] ----D- C:\Users\Jean Marc\AppData\Roaming\Identities

O43 - CFD: 23/07/2010 - 09:42:50 - [0] ----D- C:\Users\Jean Marc\AppData\Roaming\InstallShield

O43 - CFD: 03/06/2010 - 19:57:42 - [0] ----D- C:\Users\Jean Marc\AppData\Roaming\Intel Corporation

O43 - CFD: 15/12/2010 - 19:43:02 - [2297095] ----D- C:\Users\Jean Marc\AppData\Roaming\IObit

O43 - CFD: 18/10/2010 - 22:24:30 - [960864] ----D- C:\Users\Jean Marc\AppData\Roaming\LibreOffice

O43 - CFD: 09/06/2010 - 09:38:08 - [57350] ----D- C:\Users\Jean Marc\AppData\Roaming\Macromedia

O43 - CFD: 16/06/2010 - 22:06:16 - [56] ----D- C:\Users\Jean Marc\AppData\Roaming\Malwarebytes

O43 - CFD: 18/01/2011 - 11:43:40 - [413989] ----D- C:\Users\Jean Marc\AppData\Roaming\MaxTV Technologies

O43 - CFD: 14/07/2009 - 16:35:06 - [0] ----D- C:\Users\Jean Marc\AppData\Roaming\Media Center Programs

O43 - CFD: 08/08/2010 - 22:09:52 - [0] ----D- C:\Users\Jean Marc\AppData\Roaming\Media Player Classic

O43 - CFD: 02/02/2011 - 06:31:42 - [2460257] -S--D- C:\Users\Jean Marc\AppData\Roaming\Microsoft

O43 - CFD: 18/02/2011 - 19:41:16 - [501155] ----D- C:\Users\Jean Marc\AppData\Roaming\Mipony

O43 - CFD: 04/06/2010 - 10:14:32 - [3092543] ----D- C:\Users\Jean Marc\AppData\Roaming\Mozilla

O43 - CFD: 05/08/2010 - 11:19:32 - [5120] ----D- C:\Users\Jean Marc\AppData\Roaming\MxBoost

O43 - CFD: 27/09/2010 - 05:03:24 - [2061298] ----D- C:\Users\Jean Marc\AppData\Roaming\OpenOffice.org

O43 - CFD: 21/06/2010 - 06:57:50 - [223286] ----D- C:\Users\Jean Marc\AppData\Roaming\Opera

O43 - CFD: 26/07/2010 - 21:09:54 - [10300] ----D- C:\Users\Jean Marc\AppData\Roaming\PetShowCraze

O43 - CFD: 18/01/2011 - 22:05:24 - [1895099] ----D- C:\Users\Jean Marc\AppData\Roaming\Real

O43 - CFD: 08/08/2010 - 22:07:02 - [0] ----D- C:\Users\Jean Marc\AppData\Roaming\SEDE

O43 - CFD: 22/02/2011 - 00:02:04 - [8097034] ----D- C:\Users\Jean Marc\AppData\Roaming\Skype

O43 - CFD: 22/02/2011 - 00:02:02 - [12440] ----D- C:\Users\Jean Marc\AppData\Roaming\skypePM

O43 - CFD: 28/10/2010 - 12:02:40 - [53348] ----D- C:\Users\Jean Marc\AppData\Roaming\SlimBrowser

O43 - CFD: 15/02/2011 - 07:22:46 - [29430146] ----D- C:\Users\Jean Marc\AppData\Roaming\Software Informer

O43 - CFD: 25/02/2011 - 08:27:36 - [157188] ----D- C:\Users\Jean Marc\AppData\Roaming\Spyware Terminator

O43 - CFD: 05/09/2010 - 18:46:34 - [74426] ----D- C:\Users\Jean Marc\AppData\Roaming\Stardock

O43 - CFD: 16/02/2011 - 10:08:10 - [207960] ----D- C:\Users\Jean Marc\AppData\Roaming\STGU

O43 - CFD: 24/02/2011 - 21:26:50 - [72183024] ----D- C:\Users\Jean Marc\AppData\Roaming\SUPERAntiSpyware.com

O43 - CFD: 27/07/2010 - 21:14:44 - [0] ----D- C:\Users\Jean Marc\AppData\Roaming\TeamViewer

O43 - CFD: 23/10/2010 - 20:41:02 - [13824] ----D- C:\Users\Jean Marc\AppData\Roaming\Template

O43 - CFD: 03/06/2010 - 19:58:18 - [0] ----D- C:\Users\Jean Marc\AppData\Roaming\TFPU

O43 - CFD: 05/06/2010 - 16:30:16 - [490482] ----D- C:\Users\Jean Marc\AppData\Roaming\Thunderbird

O43 - CFD: 04/06/2010 - 21:41:46 - [9331892] ----D- C:\Users\Jean Marc\AppData\Roaming\Toshiba

O43 - CFD: 25/11/2010 - 16:07:48 - [475154] ----D- C:\Users\Jean Marc\AppData\Roaming\Uniblue

O43 - CFD: 18/02/2011 - 11:22:32 - [1361641] ----D- C:\Users\Jean Marc\AppData\Roaming\vlc

O43 - CFD: 05/09/2010 - 20:02:40 - [0] ----D- C:\Users\Jean Marc\AppData\Roaming\WeatherBug

O43 - CFD: 17/09/2010 - 11:08:44 - [614] ----D- C:\Users\Jean Marc\AppData\Roaming\widestream

O43 - CFD: 14/11/2010 - 11:26:00 - [1015] ----D- C:\Users\Jean Marc\AppData\Roaming\Win7codecs

O43 - CFD: 24/02/2011 - 15:17:40 - [82182] ----D- C:\Users\Jean Marc\AppData\Roaming\Winamp

O43 - CFD: 23/07/2010 - 09:33:44 - [0] ----D- C:\Users\Jean Marc\AppData\Roaming\WinBatch

O43 - CFD: 16/08/2010 - 07:13:22 - [0] ----D- C:\Users\Jean Marc\AppData\Roaming\Windows Live Writer

O43 - CFD: 05/06/2010 - 19:40:26 - [12] ----D- C:\Users\Jean Marc\AppData\Roaming\WinRAR

O43 - CFD: 11/02/2011 - 08:34:18 - [85061] ----D- C:\Users\Jean Marc\AppData\Roaming\WIPE

O43 - CFD: 16/12/2010 - 09:57:08 - [477277] ----D- C:\Users\Jean Marc\AppData\Roaming\Yahoo!

O43 - CFD: 20/01/2011 - 09:56:32 - [6421208] ----D- C:\Users\Jean Marc\AppData\Roaming\YouSendIt

O43 - CFD: 24/02/2011 - 22:35:00 - [294983299] ----D- C:\Program Files (x86)\Ad-Remover

O43 - CFD: 15/12/2010 - 19:30:50 - [215421435] ----D- C:\Program Files (x86)\Adobe

O43 - CFD: 01/02/2011 - 12:54:06 - [0] ----D- C:\Program Files (x86)\adslTV

O43 - CFD: 05/06/2010 - 15:24:08 - [2221118] ----D- C:\Program Files (x86)\Apple Software Update

O43 - CFD: 02/02/2011 - 11:20:48 - [525811072] ----D- C:\Program Files (x86)\Ashampoo

O43 - CFD: 29/01/2011 - 20:52:46 - [5140767] ----D- C:\Program Files (x86)\Avant Browser

O43 - CFD: 24/02/2011 - 18:16:10 - [110018806] ----D- C:\Program Files (x86)\Avira

O43 - CFD: 03/09/2010 - 08:56:40 - [0] ----D- C:\Program Files (x86)\Babylon

O43 - CFD: 20/02/2011 - 13:20:56 - [3845888] ----D- C:\Program Files (x86)\Belarc

O43 - CFD: 16/01/2011 - 16:17:12 - [26544212] ----D- C:\Program Files (x86)\Boilsoft Video Joiner

O43 - CFD: 13/02/2011 - 23:00:16 - [123474695] ----D- C:\Program Files (x86)\Calibre2

O43 - CFD: 24/02/2011 - 15:14:40 - [7110488] ----D- C:\Program Files (x86)\CCleaner

O43 - CFD: 02/01/2011 - 20:29:16 - [11794907] ----D- C:\Program Files (x86)\CDisplayEx

O43 - CFD: 03/06/2010 - 21:30:06 - [0] ----D- C:\Program Files (x86)\Citrix

O43 - CFD: 01/02/2011 - 13:18:40 - [877916978] ----D- C:\Program Files (x86)\Common Files

O43 - CFD: 06/05/2010 - 11:15:28 - [744434220] ----D- C:\Program Files (x86)\Corel

O43 - CFD: 25/02/2011 - 08:25:16 - [30461204] ----D- C:\Program Files (x86)\Crawler

O43 - CFD: 14/11/2010 - 11:35:50 - [0] ----D- C:\Program Files (x86)\CrazyLoader

O43 - CFD: 07/11/2010 - 14:03:10 - [0] ----D- C:\Program Files (x86)\CyberLink

O43 - CFD: 20/12/2010 - 15:05:18 - [1040542634] ----D- C:\Program Files (x86)\DartyBox Sécurité

O43 - CFD: 18/06/2010 - 21:27:36 - [259102] ----D- C:\Program Files (x86)\Driver-Soft

O43 - CFD: 25/11/2010 - 03:00:46 - [2420768] ----D- C:\Program Files (x86)\Feedback Tool

O43 - CFD: 19/12/2010 - 11:26:00 - [381086] ----D- C:\Program Files (x86)\FileHippo.com

O43 - CFD: 27/07/2010 - 22:31:30 - [30236475] ----D- C:\Program Files (x86)\FirefoxPortable

O43 - CFD: 18/01/2011 - 11:31:16 - [2085657] ----D- C:\Program Files (x86)\FLV Player

O43 - CFD: 18/01/2011 - 11:29:28 - [15371985] ----D- C:\Program Files (x86)\Freecorder

O43 - CFD: 03/06/2010 - 20:33:34 - [21071741] ----D- C:\Program Files (x86)\Google

O43 - CFD: 13/12/2010 - 15:18:46 - [8075602] ----D- C:\Program Files (x86)\GPLGS

O43 - CFD: 23/02/2011 - 13:54:52 - [193302593] --H-D- C:\Program Files (x86)\InstallShield Installation Information

O43 - CFD: 16/01/2011 - 15:52:24 - [12485917] ----D- C:\Program Files (x86)\Intel

O43 - CFD: 15/02/2011 - 08:23:50 - [8168360] ----D- C:\Program Files (x86)\Internet Explorer

O43 - CFD: 23/07/2010 - 09:50:54 - [58640] ----D- C:\Program Files (x86)\InterVideo

O43 - CFD: 16/12/2010 - 09:49:24 - [12720544] ----D- C:\Program Files (x86)\IObit

O43 - CFD: 12/01/2011 - 21:45:48 - [773494] ----D- C:\Program Files (x86)\Iomega

O43 - CFD: 18/12/2010 - 17:23:26 - [91700863] ----D- C:\Program Files (x86)\Java

O43 - CFD: 28/10/2010 - 12:09:02 - [417792] ----D- C:\Program Files (x86)\K-Meleon

O43 - CFD: 28/10/2010 - 12:15:04 - [0] ----D- C:\Program Files (x86)\LibreOffice 3

O43 - CFD: 23/01/2011 - 00:01:06 - [4998290] ----D- C:\Program Files (x86)\Malwarebytes' Anti-Malware

O43 - CFD: 18/01/2011 - 11:42:16 - [16] ----D- C:\Program Files (x86)\MaxTV

O43 - CFD: 10/06/2010 - 08:57:50 - [5498879] ----D- C:\Program Files (x86)\Microsoft

O43 - CFD: 25/01/2011 - 21:21:06 - [53120] ----D- C:\Program Files (x86)\Microsoft Antimalware

O43 - CFD: 21/09/2010 - 19:22:54 - [403484418] ----D- C:\Program Files (x86)\Microsoft Office

O43 - CFD: 13/12/2009 - 19:24:16 - [7791803] ----D- C:\Program Files (x86)\Microsoft Office Suite Activation Assistant

O43 - CFD: 12/11/2010 - 11:46:24 - [2694269] ----D- C:\Program Files (x86)\Microsoft Reader

O43 - CFD: 25/01/2011 - 21:21:10 - [1003136] ----D- C:\Program Files (x86)\Microsoft Security Client

O43 - CFD: 15/02/2011 - 10:53:08 - [38371963] ----D- C:\Program Files (x86)\Microsoft Silverlight

O43 - CFD: 13/12/2009 - 19:43:20 - [1829877] ----D- C:\Program Files (x86)\Microsoft SQL Server Compact Edition

O43 - CFD: 09/02/2011 - 17:59:26 - [7377360] ----D- C:\Program Files (x86)\Microsoft Windows 7 Upgrade Advisor

O43 - CFD: 15/12/2010 - 22:44:48 - [145421942] ----D- C:\Program Files (x86)\Microsoft Works

O43 - CFD: 16/11/2010 - 03:07:14 - [8167779] ----D- C:\Program Files (x86)\Microsoft.NET

O43 - CFD: 08/01/2011 - 02:56:02 - [7881694] ----D- C:\Program Files (x86)\MiPony

O43 - CFD: 22/02/2011 - 16:20:16 - [1297075] ----D- C:\Program Files (x86)\Mozilla Firefox

O43 - CFD: 19/12/2010 - 22:38:00 - [36652293] ----D- C:\Program Files (x86)\Mozilla Thunderbird

O43 - CFD: 14/07/2009 - 06:32:40 - [25757] ----D- C:\Program Files (x86)\MSBuild

O43 - CFD: 09/08/2010 - 17:15:16 - [67885070] ----D- C:\Program Files (x86)\MSECache

O43 - CFD: 06/05/2010 - 10:38:02 - [73633] ----D- C:\Program Files (x86)\MSXML 4.0

O43 - CFD: 27/11/2010 - 15:22:26 - [5214869] ----D- C:\Program Files (x86)\Music Duplicate Remover

O43 - CFD: 03/01/2011 - 17:24:58 - [10372252] ----D- C:\Program Files (x86)\MyAshampoo

O43 - CFD: 13/12/2010 - 15:18:40 - [11785270] ----D- C:\Program Files (x86)\MyPDFConverter

O43 - CFD: 09/09/2010 - 07:16:54 - [33239386] ----D- C:\Program Files (x86)\Namoroka (64-bit)

O43 - CFD: 16/11/2010 - 02:49:18 - [1975566] ----D- C:\Program Files (x86)\NoVirusThanks

O43 - CFD: 20/11/2010 - 23:15:56 - [83829767] ----D- C:\Program Files (x86)\NVIDIA Corporation

O43 - CFD: 01/10/2010 - 10:06:18 - [6760783] ----D- C:\Program Files (x86)\OpenOffice.org 3

O43 - CFD: 29/01/2011 - 09:23:52 - [30018674] ----D- C:\Program Files (x86)\Opera

O43 - CFD: 05/02/2011 - 14:36:38 - [12571025] ----D- C:\Program Files (x86)\Pando Networks

O43 - CFD: 16/01/2011 - 15:56:42 - [3127810] ----D- C:\Program Files (x86)\Password Safe

O43 - CFD: 15/12/2010 - 22:27:38 - [2256646] ----D- C:\Program Files (x86)\PasswordSafe

O43 - CFD: 12/12/2010 - 17:41:08 - [76322555] ----D- C:\Program Files (x86)\QuickTime

O43 - CFD: 29/01/2011 - 08:40:54 - [95596751] ----D- C:\Program Files (x86)\Real

O43 - CFD: 14/07/2009 - 06:32:40 - [39159041] ----D- C:\Program Files (x86)\Reference Assemblies

O43 - CFD: 05/06/2010 - 21:58:36 - [699277] ----D- C:\Program Files (x86)\Secret Disk

O43 - CFD: 30/11/2010 - 10:41:50 - [2716566] ----D- C:\Program Files (x86)\Security Task Manager

O43 - CFD: 01/02/2011 - 13:18:36 - [28273761] R---D- C:\Program Files (x86)\Skype

O43 - CFD: 11/07/2010 - 19:35:50 - [7446017] ----D- C:\Program Files (x86)\SmartSound Software

O43 - CFD: 16/01/2011 - 15:16:42 - [3533999] ----D- C:\Program Files (x86)\Software Informer

O43 - CFD: 05/06/2010 - 17:01:10 - [3765625] ----D- C:\Program Files (x86)\SoulseekNS

O43 - CFD: 24/02/2011 - 16:43:18 - [6449155] ----D- C:\Program Files (x86)\Spybot - Search & Destroy

O43 - CFD: 25/02/2011 - 08:26:52 - [15217499] ----D- C:\Program Files (x86)\Spyware Terminator

O43 - CFD: 08/01/2011 - 22:17:26 - [1068539] ----D- C:\Program Files (x86)\Startup Guard

O43 - CFD: 27/11/2010 - 15:27:02 - [5752835] ----D- C:\Program Files (x86)\SysResources Manager

O43 - CFD: 03/10/2010 - 17:46:30 - [57565249] ----D- C:\Program Files (x86)\The KMPlayer

O43 - CFD: 15/01/2011 - 14:19:52 - [43719634] ----D- C:\Program Files (x86)\The KMPlayer FR

O43 - CFD: 08/06/2010 - 02:24:34 - [98924] ----D- C:\Program Files (x86)\theo30

O43 - CFD: 18/01/2011 - 11:44:32 - [4131969] ----D- C:\Program Files (x86)\Tom's_Guide_France

O43 - CFD: 12/01/2011 - 12:43:46 - [283607335] ----D- C:\Program Files (x86)\TOSHIBA

O43 - CFD: 03/06/2010 - 20:47:14 - [15403279] ----D- C:\Program Files (x86)\TOSHIBA Games

O43 - CFD: 21/12/2010 - 12:01:22 - [11424156] ----D- C:\Program Files (x86)\Toshiba TEMPRO

O43 - CFD: 09/02/2011 - 22:10:50 - [64121738] ----D- C:\Program Files (x86)\TranslateIt!

O43 - CFD: 24/08/2010 - 18:45:08 - [6352242] ----D- C:\Program Files (x86)\UltraVNC

O43 - CFD: 14/07/2009 - 05:57:08 - [0] --H-D- C:\Program Files (x86)\Uninstall Information

O43 - CFD: 07/07/2010 - 21:52:58 - [228855] ----D- C:\Program Files (x86)\Unlocker

O43 - CFD: 05/06/2010 - 16:28:08 - [82556859] ----D- C:\Program Files (x86)\VideoLAN

O43 - CFD: 13/11/2010 - 04:46:52 - [1311172] ----D- C:\Program Files (x86)\Widestream6

O43 - CFD: 27/08/2010 - 07:39:54 - [54579342] ----D- C:\Program Files (x86)\Win7codecs

O43 - CFD: 15/02/2011 - 11:45:58 - [38338921] ----D- C:\Program Files (x86)\Winamp

O43 - CFD: 15/02/2011 - 11:45:44 - [155366] ----D- C:\Program Files (x86)\Winamp Detect

O43 - CFD: 14/07/2009 - 16:24:10 - [524800] ----D- C:\Program Files (x86)\Windows Defender

O43 - CFD: 19/12/2010 - 12:39:02 - [192439177] ----D- C:\Program Files (x86)\Windows Live

O43 - CFD: 23/02/2011 - 20:44:02 - [6181376] ----D- C:\Program Files (x86)\Windows Mail

O43 - CFD: 28/12/2010 - 22:41:14 - [14028939] ----D- C:\Program Files (x86)\Windows Media Components

O43 - CFD: 23/02/2011 - 20:44:00 - [5107473] ----D- C:\Program Files (x86)\Windows Media Player

O43 - CFD: 05/11/2010 - 01:52:20 - [2281895] ----D- C:\Program Files (x86)\Windows Media Player Plus!

O43 - CFD: 14/07/2009 - 06:32:40 - [12197556] ----D- C:\Program Files (x86)\Windows NT

O43 - CFD: 23/02/2011 - 20:44:00 - [4417800] ----D- C:\Program Files (x86)\Windows Photo Viewer

O43 - CFD: 23/02/2011 - 20:44:00 - [189952] ----D- C:\Program Files (x86)\Windows Portable Devices

O43 - CFD: 23/02/2011 - 20:44:02 - [6225831] ----D- C:\Program Files (x86)\Windows Sidebar

O43 - CFD: 09/01/2011 - 23:43:14 - [4131364] ----D- C:\Program Files (x86)\WinMend

O43 - CFD: 18/10/2010 - 12:43:58 - [3449674] ----D- C:\Program Files (x86)\WinRAR

O43 - CFD: 08/01/2011 - 22:09:44 - [4209407] ----D- C:\Program Files (x86)\Wipe 2011

O43 - CFD: 14/10/2010 - 18:46:32 - [40952313] ----D- C:\Program Files (x86)\Yahoo!

O43 - CFD: 11/09/2010 - 13:07:06 - [384406] ----D- C:\Program Files (x86)\YouSendIt

O43 - CFD: 05/06/2010 - 15:32:02 - [609985] ----D- C:\Program Files (x86)\Zards software

O43 - CFD: 26/02/2011 - 18:02:52 - [3613341] ----D- C:\Program Files (x86)\ZHPDiag

O43 - CFD: 04/10/2010 - 05:39:28 - [66256494] ----D- C:\Program Files\Common Files\Microsoft Shared

O43 - CFD: 14/07/2009 - 04:20:10 - [2702] ----D- C:\Program Files\Common Files\Services

O43 - CFD: 14/07/2009 - 04:20:10 - [608768] ----D- C:\Program Files\Common Files\SpeechEngines

O43 - CFD: 14/07/2009 - 16:24:10 - [12194291] ----D- C:\Program Files\Common Files\System

O43 - CFD: 06/05/2010 - 11:04:22 - [260608] ----D- C:\Program Files\Common Files\TOSHIBA Shared

 

 

---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)

O44 - LFC:[MD5.B493357220DF26217F3B42E6DBED62EA] - 26/02/2011 - 17:37:02 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [1580494]

O44 - LFC:[MD5.CB6A050FD10972AA8C9CF0DEA0657045] - 26/02/2011 - 17:37:02 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [110972]

O44 - LFC:[MD5.5FDF517A4D97A08020B36A584691183F] - 26/02/2011 - 17:37:02 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [135338]

O44 - LFC:[MD5.A400A49092950E4833D96657AA28186B] - 26/02/2011 - 17:37:02 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [626218]

O44 - LFC:[MD5.C257A14DE33095BC5864B8CBDC92A26F] - 26/02/2011 - 17:37:02 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [714690]

O44 - LFC:[MD5.33000000000000000000000044EE1800] - 26/02/2011 - 17:24:53 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1806031]

O44 - LFC:[MD5.3D076DDE100901F786C01BE119A39E19] - 26/02/2011 - 17:23:44 --HA- . (...) -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [16304]

O44 - LFC:[MD5.3D076DDE100901F786C01BE119A39E19] - 26/02/2011 - 17:23:44 --HA- . (...) -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [16304]

O44 - LFC:[MD5.FD7E6F9DCCD7FEEBDD6E8D3F14AD24F8] - 26/02/2011 - 17:14:50 ---A- . (...) -- C:\Windows\setupact.log [392]

O44 - LFC:[MD5.26220209597332373A8C053BE2164D13] - 26/02/2011 - 17:14:45 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]

O44 - LFC:[MD5.88A474915553734DB8920C39E2A52E48] - 25/02/2011 - 15:33:04 ---A- . (...) -- C:\Windows\PFRO.log [7368]

O44 - LFC:[MD5.2B938150DC29B457865204E192F450D8] - 25/02/2011 - 07:16:44 ---A- . (...) -- C:\Ad-Report-CLEAN[2].txt [10079]

O44 - LFC:[MD5.FA40844616FDDAF7258F079CADBA657E] - 24/02/2011 - 22:39:51 ---A- . (...) -- C:\Ad-Report-CLEAN[1].txt [468]

O44 - LFC:[MD5.0F8C13FC1EC019566DB069A32FEBD319] - 24/02/2011 - 22:37:52 ---A- . (...) -- C:\Ad-Report-SCAN[1].txt [10254]

O44 - LFC:[MD5.CDD44D332283A7A13FBFF313319F2DD7] - 24/02/2011 - 21:42:20 ---A- . (.Sun Microsystems, Inc. - Java Platform SE binary.) -- C:\Windows\SysNative\java.exe [171808]

O44 - LFC:[MD5.A5A098F3CD1F8DB009E0AA4B2642BA09] - 24/02/2011 - 21:42:20 ---A- . (.Sun Microsystems, Inc. - Java Platform SE binary.) -- C:\Windows\SysNative\javaw.exe [171808]

O44 - LFC:[MD5.5C74EEB44AE40E47611F71F0667442A0] - 24/02/2011 - 21:42:20 ---A- . (.Sun Microsystems, Inc. - Java Web Start Launcher.) -- C:\Windows\SysNative\javaws.exe [189728]

O44 - LFC:[MD5.59E9AAB249CE2D14813CF487674E1750] - 24/02/2011 - 21:42:19 ---A- . (.Sun Microsystems, Inc. - Java Platform SE binary.) -- C:\Windows\SysNative\deployJava1.dll [521448]

O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 24/02/2011 - 20:55:18 ---A- . (...) -- C:\Windows\setuperr.log [0]

O44 - LFC:[MD5.4ABC47179E26A84AA50F2FE2B6A39799] - 23/02/2011 - 20:48:26 ---A- . (...) -- C:\Windows\SysNative\FNTCACHE.DAT [406760]

O44 - LFC:[MD5.E1DCEE9E3EC0522DF24397BE1A64E449] - 23/02/2011 - 20:17:50 ---A- . (.Microsoft Corporation - Bibliothèque d'assistance au déploiement de.) -- C:\Windows\SysNative\dfshim.dll [1942856]

O44 - LFC:[MD5.E1DCEE9E3EC0522DF24397BE1A64E449] - 23/02/2011 - 20:17:38 ---A- . (.Microsoft Corporation - Bibliothèque d'assistance au déploiement de.) -- C:\Windows\System32\dfshim.dll [1130824]

O44 - LFC:[MD5.DD72849FE94E6F49732E1E9A6484FBAF] - 23/02/2011 - 20:15:12 ---A- . (.Microsoft - Filtre du convertisseur RDP (redirecteur).) -- C:\Windows\SysNative\DShowRdpFilter.dll [281600]

O44 - LFC:[MD5.DD72849FE94E6F49732E1E9A6484FBAF] - 23/02/2011 - 20:14:58 ---A- . (.Microsoft - Filtre du convertisseur RDP (redirecteur).) -- C:\Windows\System32\DShowRdpFilter.dll [252928]

O44 - LFC:[MD5.0A551CCDEF9D6F99A008B5B075354650] - 23/02/2011 - 20:14:01 ---A- . (.Microsoft - robocopy.) -- C:\Windows\SysNative\Robocopy.exe [128000]

O44 - LFC:[MD5.345BC7CADBE91E78B52497EF3B0D910B] - 23/02/2011 - 20:13:08 ---A- . (.Windows ® Codename Longhorn DDK provider - Services de gestion des polices.) -- C:\Windows\SysNative\fms.dll [116224]

O44 - LFC:[MD5.0A551CCDEF9D6F99A008B5B075354650] - 23/02/2011 - 20:12:56 ---A- . (.Microsoft - robocopy.) -- C:\Windows\System32\Robocopy.exe [98816]

O44 - LFC:[MD5.345BC7CADBE91E78B52497EF3B0D910B] - 23/02/2011 - 20:12:02 ---A- . (.Windows ® Codename Longhorn DDK provider - Services de gestion des polices.) -- C:\Windows\System32\fms.dll [93696]

O44 - LFC:[MD5.163A95975E1D8819E653AA3E961371CA] - 23/02/2011 - 20:11:50 ---A- . (.Twain Working Group - Gestionnaire de sources Twain_32 (Image Acq.) -- C:\Windows\twain_32.dll [51200]

O44 - LFC:[MD5.4B333D3CC96AE66BD754329FD2989EE2] - 15/02/2011 - 08:21:07 ---A- . (...) -- C:\Windows\System32\ieuinit.inf [72822]

O44 - LFC:[MD5.4B333D3CC96AE66BD754329FD2989EE2] - 15/02/2011 - 08:21:05 ---A- . (...) -- C:\Windows\SysNative\ieuinit.inf [72822]

O44 - LFC:[MD5.5D8D73A603CB32B93630C3BFC12103F4] - 15/02/2011 - 07:55:51 ---A- . (.Puran Software - Shell Context Menu Handler.) -- C:\Windows\SysNative\PuranDefrag.dll [270336]

O44 - LFC:[MD5.330748927BB1CA037370754C0B18E151] - 09/02/2011 - 09:38:09 ---A- . (.Adobe Systems Incorporated - Windows NT OpenType/Type 1 Font Driver.) -- C:\Windows\SysNative\atmfd.dll [366592]

O44 - LFC:[MD5.4B84DFEAF38EE65DD04A0F584A26C1AE] - 09/02/2011 - 09:38:08 ---A- . (.Adobe Systems - Windows NT OpenType/Type 1 API Library..) -- C:\Windows\SysNative\atmlib.dll [46080]

O44 - LFC:[MD5.4B84DFEAF38EE65DD04A0F584A26C1AE] - 09/02/2011 - 09:38:08 ---A- . (.Adobe Systems - Windows NT OpenType/Type 1 API Library..) -- C:\Windows\System32\atmlib.dll [34304]

O44 - LFC:[MD5.330748927BB1CA037370754C0B18E151] - 09/02/2011 - 09:38:08 ---A- . (.Adobe Systems Incorporated - Windows NT OpenType/Type 1 Font Driver.) -- C:\Windows\System32\atmfd.dll [294400]

O44 - LFC:[MD5.21E5869CF66105B39DAB331EF93F7793] - 04/02/2011 - 18:57:48 ---A- . (.Puran Software - Puran Defrag Boot Time Program.) -- C:\Windows\SysNative\PuranDefragBT.exe [129536]

O44 - LFC:[MD5.98CBA11E93739A52C489DA8B61CD9782] - 04/02/2011 - 18:57:48 ---A- . (.Puran Software - Puran Defrag Console.) -- C:\Windows\SysNative\PuranDC.exe [276480]

O44 - LFC:[MD5.D3438A41E02BA2079BA14125DF358BFE] - 04/02/2011 - 18:57:48 ---A- . (.Puran Software - Puran Defrag Service.) -- C:\Windows\SysNative\PuranDefragS.exe [290816]

O44 - LFC:[MD5.CA988F8B13349B53845484C75AEFA34D] - 04/02/2011 - 18:57:48 ---A- . (.Puran Software - Puran File Defrag.) -- C:\Windows\SysNative\PuranFD.exe [1417216]

O44 - LFC:[MD5.C5DEA5B95AF9AA981C88CAB94A58213E] - 20/11/2010 - 04:52:51 ---A- . (...) -- C:\Windows\SysNative\locale.nls [419880]

O44 - LFC:[MD5.C5DEA5B95AF9AA981C88CAB94A58213E] - 20/11/2010 - 04:52:32 ---A- . (...) -- C:\Windows\System32\locale.nls [419880]

O44 - LFC:[MD5.0830D8DA18FE3ABD1708C87D8E5C51AA] - 19/11/2010 - 06:03:22 ---A- . (...) -- C:\Windows\TC00346200C.exe [26047864]

O44 - LFC:[MD5.5C18CD22BE4628865FCB63337A6E5EF6] - 10/11/2010 - 02:48:34 ---A- . (...) -- C:\Windows\SysNative\ScavengeSpace.xml [10429]

O44 - LFC:[MD5.5EC92F0EAE3CA59F647C3CA5AA7CB053] - 05/11/2010 - 03:20:53 ---A- . (...) -- C:\Windows\SysNative\systemsf.ebd [347904]

O44 - LFC:[MD5.C236A8735A48B165A2A7724357DBE332] - 05/11/2010 - 03:20:45 ---A- . (...) -- C:\Windows\SysNative\RacRules.xml [105559]

O44 - LFC:[MD5.C236A8735A48B165A2A7724357DBE332] - 05/11/2010 - 03:20:45 ---A- . (...) -- C:\Windows\System32\RacRules.xml [105559]

O44 - LFC:[MD5.1AAC4B0E293F7D394364A1859894154C] - 18/02/2010 - 10:46:40 ---A- . (...) -- C:\Windows\TC00143400M.exe [38928832]

O44 - LFC:[MD5.C059C6B7518A9D6DE3616A3143392FE6] - 10/06/2009 - 22:39:59 ---A- . (...) -- C:\Windows\System32\tcpbidi.xml [1041]

 

 

---\\ Déni du service (Local Security Authority) (O48)

O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll

O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll

O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll

 

 

---\\ Trojan Driver Search Data (HKLM) (O52)

O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm

O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm

 

 

---\\ Microsoft Control Security Providers (O54)

O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll

O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll

 

 

---\\ Microsoft Windows Policies System (O55)

O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5

O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3

O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1

O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1

O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1

O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0

O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1

O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1

O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0

O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0

O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=

O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=

O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0

O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1

O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1

O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0

 

 

---\\ Microsoft Windows Policies Explorer (O56)

O56 - MWPE:[HKCU\...\policies\Explorer] - "ClearRecentDocsOnExit"=1

O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1

O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=0

O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0

O56 - MWPE:[HKLM\...\policies\Explorer] - "NoResolveTrack"=1

 

 

---\\ Liste des Drivers Système (O58)

O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\system32\drivers\adp94xx.sys [491088]

O58 - SDL:[MD5.597F78224EE9224EA1A13D6350CED962] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\system32\drivers\adpahci.sys [339536]

O58 - SDL:[MD5.E109549C90F62FB570B9540C4B148E54] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\system32\drivers\adpu320.sys [182864]

O58 - SDL:[MD5.5812713A477A3AD7363C7438CA2EE038] - 14/07/2009 - 02:52:21 ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\system32\drivers\aliide.sys [15440]

O58 - SDL:[MD5.6EC6D772EAE38DC17C14AED9B178D24B] - 20/11/2010 - 14:32:46 ---A- . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\system32\drivers\amdsata.sys [107904]

O58 - SDL:[MD5.F67F933E79241ED32FF46A4F29B5120B] - 14/07/2009 - 02:52:20 ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows -.) -- C:\Windows\system32\drivers\amdsbs.sys [194128]

O58 - SDL:[MD5.1142A21DB581A84EA5597B03A26EBAA0] - 20/11/2010 - 14:32:47 ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\system32\drivers\amdxata.sys [27008]

O58 - SDL:[MD5.C484F8CEB1717C540242531DB7845C4E] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\system32\drivers\arc.sys [87632]

O58 - SDL:[MD5.019AF6924AEFE7839F61C830227FE79C] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\system32\drivers\arcsas.sys [97856]

O58 - SDL:[MD5.F97F384B0361C0DF4266F59F456D2D3E] - 23/10/2009 - 04:21:02 ---A- . (.AuthenTec, Inc. - AuthenTec Swipe Sensor WDF USB Driver.) -- C:\Windows\system32\drivers\ATSwpWDF.sys [734720]

O58 - SDL:[MD5.39C2E2870FC0C2AE0595B883CBE716B4] - 21/01/2011 - 09:52:13 ---A- . (.Avira GmbH - Avira Minifilter Driver.) -- C:\Windows\system32\drivers\avgntflt.sys [83120]

O58 - SDL:[MD5.C98FA6E5AD0E857D22716BD2B8B1F399] - 21/01/2011 - 09:52:13 ---A- . (.Avira GmbH - Avira Driver for Security Enhancement.) -- C:\Windows\system32\drivers\avipbb.sys [116568]

O58 - SDL:[MD5.B5ACE6968304A3900EEB1EBFD9622DF2] - 10/06/2009 - 21:34:23 ---A- . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver..) -- C:\Windows\system32\drivers\b57nd60a.sys [270848]

O58 - SDL:[MD5.F09EEE9EDC320B5E1501F749FDE686C8] - 10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\system32\drivers\BrFiltLo.sys [18432]

O58 - SDL:[MD5.B114D3098E9BDB8BEA8B053685831BE6] - 10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\system32\drivers\BrFiltUp.sys [8704]

O58 - SDL:[MD5.43BEA8D483BF1870F018E2D02E06A5BD] - 14/07/2009 - 02:19:07 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\system32\drivers\BrSerId.sys [286720]

O58 - SDL:[MD5.A6ECA2151B08A09CACECA35C07F05B42] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\system32\drivers\BrSerWdm.sys [47104]

O58 - SDL:[MD5.B79968002C277E869CF38BD22CD61524] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\system32\drivers\BrUsbMdm.sys [14976]

O58 - SDL:[MD5.A87528880231C54E75EA7A44943B38BF] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\system32\drivers\BrUsbSer.sys [14720]

O58 - SDL:[MD5.3E5B191307609F7514148C6832BB0842] - 10/06/2009 - 21:34:28 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\system32\drivers\bxvbda.sys [468480]

O58 - SDL:[MD5.94AF76BA5B74518610DA47E7181A1D68] - 16/10/2009 - 13:56:40 ---A- . (.Conexant Systems Inc. - 64-bit High Definition Audio Function Driver.) -- C:\Windows\system32\drivers\CHDRT64.sys [701952]

O58 - SDL:[MD5.E19D3F095812725D88F9001985B94EDD] - 14/07/2009 - 02:52:31 ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\cmdide.sys [17488]

O58 - SDL:[MD5.0E5DA5369A0FCAEA12456DD852545184] - 14/07/2009 - 02:47:48 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\system32\drivers\elxstor.sys [530496]

O58 - SDL:[MD5.DC5D737F51BE844D8C82C695EB17372F] - 10/06/2009 - 21:34:33 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\system32\drivers\evbda.sys [3286016]

O58 - SDL:[MD5.13022D5C518E112BABECFB92EB401B05] - 03/06/2010 - 21:08:10 ---A- . (.F-Secure Corporation - F-Secure Email Interceptor.) -- C:\Windows\system32\drivers\fses.sys [44624]

O58 - SDL:[MD5.F2523EF6460FC42405B12248338AB2F0] - 10/06/2009 - 21:31:59 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\system32\drivers\hcw85cir.sys [31232]

O58 - SDL:[MD5.39D2ABCD392F3D8A6DCE7B60AE7B8EFC] - 20/11/2010 - 14:33:35 ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\system32\drivers\HpSAMD.sys [78720]

O58 - SDL:[MD5.42E00996DFC13C46366689C0EA8ABC5E] - 17/12/2009 - 09:42:08 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\system32\drivers\iaStor.sys [538136]

O58 - SDL:[MD5.3DF4395A7CF8B7A72A5F4606366B8C2D] - 20/11/2010 - 14:33:38 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\system32\drivers\iaStorV.sys [410496]

O58 - SDL:[MD5.5C18831C61933628F5BB0EA2675B9D21] - 14/07/2009 - 02:48:04 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\system32\drivers\iirsp.sys [44112]

O58 - SDL:[MD5.033B4AED2C5519072C0D81E00804D003] - 10/06/2009 - 21:34:18 ---A- . (.Atheros Communications, Inc. - Atheros L1c PCI-E Gigabit Ethernet Controller.) -- C:\Windows\system32\drivers\L1C62x64.sys [57344]

O58 - SDL:[MD5.1A93E54EB0ECE102495A51266DCDB6A6] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_fc.sys [114752]

O58 - SDL:[MD5.1047184A9FDC8BDBFF857175875EE810] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas.sys [106560]

O58 - SDL:[MD5.30F5C0DE1EE8B5BC9306C1F0E4A75F93] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas2.sys [65600]

O58 - SDL:[MD5.0504EACAFF0D3C8AED161C4B0D369D4A] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_scsi.sys [115776]

O58 - SDL:[MD5.3D3C4B63F11F63F50253E734F0ACE9F2] - 20/12/2010 - 18:08:40 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\system32\drivers\mbam.sys [24152]

O58 - SDL:[MD5.A55805F747C6EDB6A9080D7C633BD0F4] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for.) -- C:\Windows\system32\drivers\megasas.sys [35392]

O58 - SDL:[MD5.BAF74CE0072480C3B6B7C13B2A94D6B3] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\system32\drivers\MegaSR.sys [284736]

O58 - SDL:[MD5.77889813BE4D166CDAB78DDBA990DA92] - 14/07/2009 - 02:48:26 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\system32\drivers\nfrd960.sys [51264]

O58 - SDL:[MD5.AD37248BD442D41C9A896E53EB8A85EE] - 21/08/2009 - 12:24:04 ---A- . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\system32\drivers\nvhda64v.sys [84512]

O58 - SDL:[MD5.6850D89C7ABDD8B4FB0B3659DA961379] - 27/07/2010 - 10:57:00 ---A- . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version 259.12.) -- C:\Windows\system32\drivers\nvlddmkm.sys [12465128]

O58 - SDL:[MD5.5D9FD91F3D38DC9DA01E3CB5FA89CD48] - 20/11/2010 - 14:33:48 ---A- . (.NVIDIA Corporation - NVIDIA® nForce RAID Driver.) -- C:\Windows\system32\drivers\nvraid.sys [148352]

O58 - SDL:[MD5.F7CD50FE7139F07E77DA8AC8033D1832] - 20/11/2010 - 14:33:48 ---A- . (.NVIDIA Corporation - NVIDIA® nForce Sata Performance Driver.) -- C:\Windows\system32\drivers\nvstor.sys [166272]

O58 - SDL:[MD5.A3C51527DFD788880C2ECE6E9FB68355] - 03/11/2009 - 08:21:18 ---A- . (.O2Micro - Pas de description.) -- C:\Windows\system32\drivers\o2mdgx64.sys [74016]

O58 - SDL:[MD5.FA1EED3A10992EBA9A39172B50346434] - 18/08/2009 - 17:41:06 ---A- . (.O2Micro - O2Micro SD Reader Driver (AMD64).) -- C:\Windows\system32\drivers\o2sdgx64.sys [49568]

O58 - SDL:[MD5.C10B593E2DEAA3B78A865DB539FDAE6C] - 01/11/2010 - 20:50:32 R--A- . (.Soluto LTD. - Soluto PCGenome Core Driver.) -- C:\Windows\system32\drivers\PCGenFAM.sys [198088]

O58 - SDL:[MD5.663962900E7FEA522126BA287715BB4A] - 22/06/2009 - 16:06:38 ---A- . (.TOSHIBA Corporation - TOSHIBA Universal Camera Filter Driver.) -- C:\Windows\system32\drivers\PGEffect.sys [35008]

O58 - SDL:[MD5.C8FCB4899F8B70CC34E0D9876A80963C] - 15/06/2009 - 13:58:50 ---A- . (.TOSHIBA - Generic IO & Memory Access.) -- C:\Windows\system32\drivers\QIOMem.sys [12800]

O58 - SDL:[MD5.A53A15A11EBFD21077463EE2C7AFEEF0] - 14/07/2009 - 02:45:46 ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\system32\drivers\ql2300.sys [1524816]

O58 - SDL:[MD5.4F6D12B51DE1AAEFF7DC58C4D75423C8] - 14/07/2009 - 02:45:45 ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\system32\drivers\ql40xx.sys [128592]

O58 - SDL:[MD5.FB67BE4E732EEA8E90DC9473B8D7E2AE] - 24/06/2010 - 16:04:10 R--A- . (.Windows ® Win 7 DDK provider - QuikSync Fs mini filter driver.) -- C:\Windows\system32\drivers\QsFsFltr.sys [22584]

O58 - SDL:[MD5.4D9AFDDDA0EFE97CDBFD3B5FA48B05F6] - 16/04/2007 - 19:51:50 R--A- . (.InterVideo - regi driver.) -- C:\Windows\system32\drivers\regi.sys [14112]

O58 - SDL:[MD5.FFC748D848740D1BC8F330A8879C2674] - 28/04/2010 - 11:32:20 ---A- . (.Realtek Semiconductor Corporation - Realtek RTL81892CE NDIS Driverr.) -- C:\Windows\system32\drivers\rtl8192ce.sys [932384]

O58 - SDL:[MD5.7475548B0BA58EBA4D12414FC9E9DFE6] - 27/04/2010 - 00:23:08 ---A- . (.Realtek Semiconductor Corporation - Realtek RTL81892SE NDIS Driverr.) -- C:\Windows\system32\drivers\rtl8192se.sys [1103904]

O58 - SDL:[MD5.3EA8A16169C26AFBEB544E0E48421186] - 10/06/2009 - 21:37:19 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\system32\drivers\secdrv.sys [23040]

O58 - SDL:[MD5.C1D8E28B2C2ADFAEC4BA89E9FDA69BD6] - 14/07/2009 - 01:00:40 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\system32\drivers\serial.sys [94208]

O58 - SDL:[MD5.843CAF1E5FDE1FFD5FF768F23A51E2E1] - 14/07/2009 - 02:45:45 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\system32\drivers\sisraid2.sys [43584]

O58 - SDL:[MD5.6A6C106D42E9FFFF8B9FCB4F754F6DA4] - 14/07/2009 - 02:45:46 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\system32\drivers\sisraid4.sys [80464]

O58 - SDL:[MD5.18000000000000000000000044EE1800] - 07/01/2011 - 00:00:00 ---A- . (...) -- C:\Windows\system32\drivers\sptd.sys [513080]

O58 - SDL:[MD5.F3817967ED533D08327DC73BC4D5542A] - 14/07/2009 - 02:45:55 ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\system32\drivers\stexstor.sys [24656]

O58 - SDL:[MD5.12A35E44D8647985FCDB8D298A590134] - 30/07/2009 - 17:20:18 ---A- . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\system32\drivers\SynTP.sys [281648]

O58 - SDL:[MD5.FD542B661BD22FA69CA789AD0AC58C29] - 30/07/2009 - 18:22:04 ---A- . (.TOSHIBA Corporation. - TOSHIBA ODD Writing Driver for x64..) -- C:\Windows\system32\drivers\tdcmdpst.sys [27784]

O58 - SDL:[MD5.C013F6ACAA9761F571BD28DADA7C157D] - 29/06/2009 - 09:25:22 ---A- . (.TOSHIBA Corporation - TOSHIBA HDD Protection Driver.) -- C:\Windows\system32\drivers\thpdrv.sys [34880]

O58 - SDL:[MD5.B4E609047434ED948AF7BDEF2FA66E38] - 29/06/2009 - 15:16:20 ---A- . (.TOSHIBA Corporation - TOSHIBA HDD Protection - Shock Sensor Driver.) -- C:\Windows\system32\drivers\Thpevm.sys [14784]

O58 - SDL:[MD5.8021F63311797085949FA387F7C83583] - 17/06/2009 - 11:01:04 ---A- . (.TOSHIBA Corporation - TOSHIBA Bluetooth Port Emulation Driver.) -- C:\Windows\system32\drivers\tosporte.sys [54664]

O58 - SDL:[MD5.1B09357180034639E62CF745E77AC66E] - 24/09/2009 - 16:55:00 ---A- . (.TOSHIBA CORPORATION - Bluetooth RF Bus Driver.) -- C:\Windows\system32\drivers\tosrfbd.sys [212072]

O58 - SDL:[MD5.62512B5277D88600F8BD4B7AEC43569D] - 19/06/2009 - 08:59:32 ---A- . (.TOSHIBA Corporation - Bluetooth RFBNEP Driver.) -- C:\Windows\system32\drivers\tosrfbnp.sys [50664]

O58 - SDL:[MD5.C523A9186C39D65CC9ADEBB2E1B93CCD] - 28/07/2009 - 19:02:10 ---A- . (.TOSHIBA Corporation - Bluetooth RFCOMM Driver.) -- C:\Windows\system32\drivers\tosrfcom.sys [81768]

O58 - SDL:[MD5.11699D47B3491D86249C168496D55C92] - 13/07/2009 - 21:12:36 ---A- . (.TOSHIBA Corporation - TOSHIBA Bluetooth EC Driver.) -- C:\Windows\system32\drivers\tosrfec.sys [19824]

O58 - SDL:[MD5.451B8C1815C6CC39650AF916C2A382CD] - 19/06/2009 - 09:00:26 ---A- . (.TOSHIBA Corporation. - Bluetooth HID Driver from TOSHIBA.) -- C:\Windows\system32\drivers\Tosrfhid.sys [94336]

O58 - SDL:[MD5.B6FDC3C76FFE9C5171EEA9C37EA367C2] - 24/07/2009 - 10:33:14 ---A- . (.TOSHIBA Corporation. - Bluetooth BNEP Driver.) -- C:\Windows\system32\drivers\tosrfnds.sys [26472]

O58 - SDL:[MD5.E1E045240C1184FA6628F3C7E7FF85D8] - 05/08/2009 - 11:56:04 ---A- . (.TOSHIBA Corporation - Bluetooth Audio Driver (WDM).) -- C:\Windows\system32\drivers\TosRfSnd.sys [63856]

O58 - SDL:[MD5.FC88BAF46FF87D2BC80F8B0F0322D84A] - 14/09/2009 - 13:30:26 ---A- . (.TOSHIBA CORPORATION - Bluetooth USB Miniport Driver.) -- C:\Windows\system32\drivers\tosrfusb.sys [58744]

O58 - SDL:[MD5.09FF7B0B1B5C3D225495CB6F5A9B39F8] - 24/07/2009 - 14:57:08 ---A- . (.TOSHIBA Corporation - tos_sps64.) -- C:\Windows\system32\drivers\tos_sps64.sys [482384]

O58 - SDL:[MD5.EA43DE1743C1BA0D2D17B8DB90C91D88] - 07/12/2010 - 20:17:28 ---A- . (.TrueCrypt Foundation - TrueCrypt Driver.) -- C:\Windows\system32\drivers\truecrypt.sys [230352]

O58 - SDL:[MD5.550B567F9364D8F7684C3FB3EA665A72] - 14/07/2009 - 15:31:18 ---A- . (.TOSHIBA Corporation - TOSHIBA ACPI-Based Value Added Logical and General Purpose Devi.) -- C:\Windows\system32\drivers\TVALZ_O.SYS [26840]

O58 - SDL:[MD5.E5689D93FFE4E5D66C0178761240DD54] - 14/07/2009 - 02:45:55 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\viaide.sys [17488]

O58 - SDL:[MD5.5E2016EA6EBACA03C04FEAC5F330D997] - 14/07/2009 - 02:45:55 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\system32\drivers\vsmraid.sys [161872]

O58 - SDL:[MD5.0E3E5D0486C4E2128B9F0E1C2FD410C4] - 15/12/2010 - 13:53:02 ---A- . (...) -- C:\Windows\SysWOW64\drivers\fsbts.sys [42664]

O58 - SDL:[MD5.D68E165C3123ABA3B1282EDDB4213BD8] - 20/12/2010 - 18:09:00 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\SysWOW64\drivers\mbamswissarmy.sys [38224]

O58 - SDL:[MD5.CCD6E6C387E3EFA3BA5FE0E7883821C1] - 25/02/2011 - 08:24:53 ---A- . (...) -- C:\Windows\SysWOW64\drivers\sp_rsdrv2.sys [141312]

 

 

---\\ Liste des outils de nettoyage (O63)

O63 - Logiciel: Ad-Remover By C_XX - (.C_XX.) [HKLM][64Bits] -- Ad-Remover

O63 - Logiciel: ZHPDiag 1.27 - (.Nicolas Coolman.) [HKLM][64Bits] -- ZHPDiag_is1

 

 

---\\ Liste des services Legacy (O64)

O64 - Services: CurCS - C:\Windows\system32\drivers\afd.sys (AFD) .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD

O64 - Services: CurCS - (.not file.) - aswFsBlk (aswFsBlk) .(...) - LEGACY_ASWFSBLK

O64 - Services: CurCS - (.not file.) - aswMonFlt (aswMonFlt) .(...) - LEGACY_ASWMONFLT

O64 - Services: CurCS - (.not file.) - aswRdr (aswRdr) .(...) - LEGACY_ASWRDR

O64 - Services: CurCS - (.not file.) - aswSP (aswSP) .(...) - LEGACY_ASWSP

O64 - Services: CurCS - (.not file.) - avast! Network Shield Support (aswTdi) .(...) - LEGACY_ASWTDI

O64 - Services: CurCS - C:\Windows\System32\drivers\atapi.sys - IDE Channel (atapi) .(.Microsoft Corporation - ATAPI IDE Miniport Driver.) - LEGACY_ATAPI

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\avgntflt.sys - avgntflt (avgntflt) .(.Avira GmbH - Avira Minifilter Driver.) - LEGACY_AVGNTFLT

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\avipbb.sys - avipbb (avipbb) .(.Avira GmbH - Avira Driver for Security Enhancement.) - LEGACY_AVIPBB

O64 - Services: CurCS - C:\Windows\system32\Drivers\BEEP.sys - (.not file.) - Beep (Beep) .(...) - LEGACY_BEEP

O64 - Services: CurCS - C:\Windows\system32\browser.dll (bowser) .(.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) - LEGACY_BOWSER

O64 - Services: CurCS - C:\Windows\system32\clfs.sys (CLFS) .(.Microsoft Corporation - Common Log File System Driver.) - LEGACY_CLFS

O64 - Services: CurCS - C:\Windows\System32\Drivers\cng.sys - CNG (CNG) .(.Microsoft Corporation - Kernel Cryptography, Next Generation.) - LEGACY_CNG

O64 - Services: CurCS - C:\Windows\system32\drivers\dfsc.sys (DfsC) .(.Microsoft Corporation - DFS Namespace Client Driver.) - LEGACY_DFSC

O64 - Services: CurCS - C:\Windows\system32\drivers\discache.sys (discache) .(.Microsoft Corporation - System Indexer/Cache Driver.) - LEGACY_DISCACHE

O64 - Services: CurCS - C:\Program Files\ma-config.com\Drivers\driverhardwarev2x64.sys - driverhardwarev2x64 (driverhardwarev2x64) .(.CybelSoft - Driver NT Ma-Config.com.) - LEGACY_DRIVERHARDWAREV2X64

O64 - Services: CurCS - C:\Windows\system32\drivers\dxgkrnl.sys - LDDM Graphics Subsystem (DXGKrnl) .(.Microsoft Corporation - DirectX Graphics Kernel.) - LEGACY_DXGKRNL

O64 - Services: CurCS - C:\Program Files (x86)\DartyBox Sécurité\Anti-Virus\minifilter\fsgk.sys - F-Secure Gatekeeper (F-Secure Gatekeeper) .(...) - LEGACY_F-SECURE_GATEKEEPER

O64 - Services: CurCS - C:\Program Files (x86)\DartyBox Sécurité\HIPS\drivers\fshs.sys - F-Secure HIPS Driver (F-Secure HIPS) .(.F-Secure Corporation - HIPS 64-bit kernel module.) - LEGACY_F-SECURE_HIPS

O64 - Services: CurCS - C:\Windows\system32\Drivers\FASTFAT.sys - (.not file.) - FAT12/16/32 File System Driver (fastfat) .(...) - LEGACY_FASTFAT

O64 - Services: CurCS - C:\Windows\system32\drivers\fileinfo.sys (FileInfo) .(.Microsoft Corporation - FileInfo Filter Driver.) - LEGACY_FILEINFO

O64 - Services: CurCS - C:\Windows\system32\drivers\fltmgr.sys (FltMgr) .(.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) - LEGACY_FLTMGR

O64 - Services: CurCS - C:\Windows\System32\drivers\fses.sys - F-Secure Email Scanning Driver (FSES) .(.F-Secure Corporation - F-Secure Email Interceptor.) - LEGACY_FSES

O64 - Services: CurCS - (.not file.) - F-Secure Firewall Driver (FSFW) .(...) - LEGACY_FSFW

O64 - Services: CurCS - C:\Program Files (x86)\DartyBox Sécurité\Anti-Virus\minifilter\fsvista.sys - F-Secure Vista Support Driver (fsvista) .(...) - LEGACY_FSVISTA

O64 - Services: CurCS - C:\Windows\system32\Drivers\FS_REC.sys - Fs_Rec (Fs_Rec) .(...) - LEGACY_FS_REC

O64 - Services: CurCS - C:\Windows\system32\drivers\fvevol.sys (fvevol) .(.Microsoft Corporation - BitLocker Drive Encryption Driver.) - LEGACY_FVEVOL

O64 - Services: CurCS - C:\Windows\system32\drivers\http.sys (HTTP) .(.Microsoft Corporation - HTTP Pile du protocole.) - LEGACY_HTTP

O64 - Services: CurCS - C:\Windows\system32\drivers\hwpolicy.sys (hwpolicy) .(.Microsoft Corporation - Hardware Policy Driver.) - LEGACY_HWPOLICY

O64 - Services: CurCS - (.not file.) - ImmunetProtectDriver (ImmunetProtectDriver) .(...) - LEGACY_IMMUNETPROTECTDRIVER

O64 - Services: CurCS - (.not file.) - ImmunetSelfProtectDriver (ImmunetSelfProtectDriver) .(...) - LEGACY_IMMUNETSELFPROTECTDRIVER

O64 - Services: CurCS - C:\Windows\system32\rascfg.dll (IpFilterDriver) .(.Microsoft Corporation - Objets de configuration RAS.) - LEGACY_IPFILTERDRIVER

O64 - Services: CurCS - C:\Windows\System32\Drivers\ksecdd.sys - KSecDD (KSecDD) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECDD

O64 - Services: CurCS - C:\Windows\System32\Drivers\ksecpkg.sys - KSecPkg (KSecPkg) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECPKG

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\lltdio.sys - Link-Layer Topology Discovery Mapper I/O Driver (lltdio) .(.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) - LEGACY_LLTDIO

O64 - Services: CurCS - C:\Windows\system32\drivers\luafv.sys (luafv) .(.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) - LEGACY_LUAFV

O64 - Services: CurCS - (.not file.) - McAfee Inc. mfeavfk (mfeavfk) .(...) - LEGACY_MFEAVFK

O64 - Services: CurCS - (.not file.) - McAfee Inc. mfehidk (mfehidk) .(...) - LEGACY_MFEHIDK

O64 - Services: CurCS - (.not file.) - McAfee Inc. mfesmfk (mfesmfk) .(...) - LEGACY_MFESMFK

O64 - Services: CurCS - C:\Windows\system32\drivers\mountmgr.sys (mountmgr) .(.Microsoft Corporation - Gestionnaire des points de montage.) - LEGACY_MOUNTMGR

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\MpFilter.sys - Microsoft Malware Protection Driver (MpFilter) .(.Microsoft Corporation - Microsoft antimalware file system filter dr.) - LEGACY_MPFILTER

O64 - Services: CurCS - (.not file.) - MPFP (MPFP) .(...) - LEGACY_MPFP

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\MpNWMon.sys - Microsoft Malware Protection Network Driver (MpNWMon) .(.Microsoft Corporation - Network monitor driver.) - LEGACY_MPNWMON

O64 - Services: CurCS - C:\Windows\system32\FirewallAPI.dll (mpsdrv) .(.Microsoft Corporation - API du Pare-feu Windows.) - LEGACY_MPSDRV

O64 - Services: CurCS - C:\Windows\system32\wkssvc.dll (mrxsmb) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB

O64 - Services: CurCS - C:\Windows\system32\wkssvc.dll (mrxsmb10) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB10

O64 - Services: CurCS - C:\Windows\system32\wkssvc.dll (mrxsmb20) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB20

O64 - Services: CurCS - C:\Windows\System32\drivers\msahci.sys - msahci (msahci) .(.Microsoft Corporation - MS AHCI 1.0 Standard Driver.) - LEGACY_MSAHCI

O64 - Services: CurCS - C:\Windows\system32\Drivers\MSFS.sys - Msfs (Msfs) .(...) - LEGACY_MSFS

O64 - Services: CurCS - C:\Windows\System32\drivers\msisadrv.sys - msisadrv (msisadrv) .(.Microsoft Corporation - ISA Driver.) - LEGACY_MSISADRV

O64 - Services: CurCS - C:\Windows\system32\drivers\mup.sys (Mup) .(.Microsoft Corporation - Multiple UNC Provider Driver.) - LEGACY_MUP

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\nwifi.sys - NativeWiFi Filter (NativeWifiP) .(.Microsoft Corporation - Pilote de miniport WiFi natif.) - LEGACY_NATIVEWIFIP

O64 - Services: CurCS - C:\Windows\system32\drivers\ndis.sys (NDIS) .(.Microsoft Corporation - Pilote NDIS 6.20.) - LEGACY_NDIS

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\ndisuio.sys - NDIS Usermode I/O Protocol (Ndisuio) .(.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) - LEGACY_NDISUIO

O64 - Services: CurCS - C:\Windows\system32\Drivers\NDPROXY.sys - NDProxy (NDProxy) .(...) - LEGACY_NDPROXY

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\netbios.sys - NetBIOS Interface (NetBIOS) .(.Microsoft Corporation - NetBIOS interface driver.) - LEGACY_NETBIOS

O64 - Services: CurCS - C:\Windows\system32\drivers\netbt.sys (NetBT) .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\NisDrvWFP.sys - Microsoft Network Inspection System (NisDrv) .(.Microsoft Corporation - Microsoft Network Inspection System Driver.) - LEGACY_NISDRV

O64 - Services: CurCS - C:\Windows\system32\Drivers\NPFS.sys - Npfs (Npfs) .(...) - LEGACY_NPFS

O64 - Services: CurCS - C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) .(.Microsoft Corporation - NSI Proxy.) - LEGACY_NSIPROXY

O64 - Services: CurCS - C:\Windows\system32\Drivers\NTFS.sys - Ntfs (Ntfs) .(...) - LEGACY_NTFS

O64 - Services: CurCS - C:\Windows\system32\Drivers\NULL.sys - Null (Null) .(...) - LEGACY_NULL

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\PCGenFAM.sys - PCGenFAM (PCGenFAM) .(.Soluto LTD. - Soluto PCGenome Core Driver.) - LEGACY_PCGENFAM

O64 - Services: CurCS - C:\Windows\System32\drivers\pciide.sys - pciide (pciide) .(.Microsoft Corporation - Generic PCI IDE Bus Driver.) - LEGACY_PCIIDE

O64 - Services: CurCS - C:\Windows\System32\drivers\pcw.sys - Performance Counters for Windows Driver (pcw) .(.Microsoft Corporation - Performance Counters for Windows Driver.) - LEGACY_PCW

O64 - Services: CurCS - C:\Windows\System32\drivers\peauth.sys - PEAUTH (PEAUTH) .(.Microsoft Corporation - Protected Environment Authentication and Au.) - LEGACY_PEAUTH

O64 - Services: CurCS - C:\Windows\system32\drivers\pacer.sys (Psched) .(.Microsoft Corporation - Planificateur de paquets QoS.) - LEGACY_PSCHED

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\QsFsFltr.sys - QsFsFltr (QsFsFltr) .(.Windows ® Win 7 DDK provider - QuikSync Fs mini filter driver.) - LEGACY_QSFSFLTR

O64 - Services: CurCS - C:\Windows\system32\wkssvc.dll (rdbss) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_RDBSS

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) .(.Microsoft Corporation - RDP Miniport.) - LEGACY_RDPCDD

O64 - Services: CurCS - C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) .(.Microsoft Corporation - RDP Encoder Miniport.) - LEGACY_RDPENCDD

O64 - Services: CurCS - C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) .(.Microsoft Corporation - RDP Reflector Driver Miniport.) - LEGACY_RDPREFMP

O64 - Services: CurCS - C:\Windows\System32\drivers\regi.sys - regi (regi) .(.InterVideo - regi driver.) - LEGACY_REGI

O64 - Services: CurCS - C:\Windows\system32\wshrm.dll (RMCAST) .(.Microsoft Corporation - DLL d’assistance de sockets Windows pour PG.) - LEGACY_RMCAST

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\rspndr.sys - Link-Layer Topology Discovery Responder (rspndr) .(.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) - LEGACY_RSPNDR

O64 - Services: CurCS - (.not file.) - SASDIFSV (SASDIFSV) .(...) - LEGACY_SASDIFSV

O64 - Services: CurCS - (.not file.) - SASKUTIL (SASKUTIL) .(...) - LEGACY_SASKUTIL

O64 - Services: CurCS - C:\Windows\system32\Drivers\SECDRV.sys - (.not file.) - Security Driver (secdrv) .(...) - LEGACY_SECDRV

O64 - Services: CurCS - (.not file.) - Panda File Shield Driver (ShldFlt) .(...) - LEGACY_SHLDFLT

O64 - Services: CurCS - C:\Windows\system32\Drivers\SPLDR.sys - (.not file.) - Security Processor Loader Driver (spldr) .(...) - LEGACY_SPLDR

O64 - Services: CurCS - C:\Windows\system32\Drivers\sptd.sys - sptd (sptd) .(...) - LEGACY_SPTD

O64 - Services: CurCS - C:\Windows\system32\srvsvc.dll (srv) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV

O64 - Services: CurCS - C:\Windows\system32\srvsvc.dll (srv2) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV2

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\srvnet.sys - srvnet (srvnet) .(.Microsoft Corporation - Server Network driver.) - LEGACY_SRVNET

O64 - Services: CurCS - C:\Windows\system32\tcpipcfg.dll (Tcpip) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TCPIP

O64 - Services: CurCS - C:\Windows\System32\drivers\tcpipreg.sys - TCP/IP Registry Compatibility (tcpipreg) .(.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) - LEGACY_TCPIPREG

O64 - Services: CurCS - C:\Windows\system32\tcpipcfg.dll (tdx) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TDX

O64 - Services: CurCS - C:\Windows\system32\drivers\vga.sys - VgaSave (VgaSave) .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE

O64 - Services: CurCS - C:\Windows\system32\drivers\volmgrx.sys (volmgrx) .(.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) - LEGACY_VOLMGRX

O64 - Services: CurCS - C:\Windows\System32\drivers\volsnap.sys - Volumes de stockage (volsnap) .(.Microsoft Corporation - Pilote de cliché instantané du volume.) - LEGACY_VOLSNAP

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\vwififlt.sys - Virtual WiFi Filter Driver (vwififlt) .(.Microsoft Corporation - Virtual WiFi Filter Driver.) - LEGACY_VWIFIFLT

O64 - Services: CurCS - C:\Windows\system32\rascfg.dll (Wanarpv6) .(.Microsoft Corporation - Objets de configuration RAS.) - LEGACY_WANARPV6

O64 - Services: CurCS - C:\Windows\System32\drivers\Wdf01000.sys - Kernel Mode Driver Frameworks service (Wdf01000) .(.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) - LEGACY_WDF01000

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\wfplwf.sys - WFP Lightweight Filter (WfpLwf) .(.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - LEGACY_WFPLWF

O64 - Services: CurCS - C:\Windows\System32\drivers\wimmount.sys - WIMMount (WIMMount) .(.Microsoft Corporation - Wim file system Driver.) - LEGACY_WIMMOUNT

O64 - Services: CurCS - C:\Windows\System32\drivers\WudfPf.sys - User Mode Driver Frameworks Platform Driver (WudfPf) .(.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) - LEGACY_WUDFPF

 

 

---\\ File Associations Shell Spawning (O67)

O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe

O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.html> <Opera.HTML>[HKLM\..\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\Opera.exe

O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe

O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe

O67 - Shell Spawning: <.html> <ChromeHTML>[HKCU\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\Jean Marc\AppData\Local\Google\Chrome\Application\chrome.exe

O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe

O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.com> <comfile>[HKCR\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.html> <ChromeHTML>[HKCR\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\Jean Marc\AppData\Local\Google\Chrome\Application\chrome.exe

O67 - Shell Spawning: <.js> <JSFile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe

O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe

 

 

---\\ Start Menu Internet (O68)

O68 - StartMenuInternet: <Avant.Browser> <Avant Browser>[HKLM\..\Shell\open\Command] (.Avant Force - Avant Browser.) -- C:\Program Files (x86)\Avant Browser\avant.exe

O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\Jean Marc\AppData\Local\Google\Chrome\Application\chrome.exe

O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe

O68 - StartMenuInternet: <Opera.exe> <Opera>[HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\Opera.exe

 

 

---\\ Search Browser Infection (O69)

O69 - SBI: SearchScopes [HKCU] ${searchCLSID} [DefaultScope] - (@ieframe.dll,-12512) - Bing

O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - Bing

O69 - SBI: SearchScopes [HKCU] {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - (Recherche Crawler) - Crawler.com

O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - Google

O69 - SBI: SearchScopes [HKCU] {871F4CC9-4FAB-4815-9883-61F8CCE04F9B} - (Yahoo! Search) - Yahoo! Search - Recherche Web

O69 - SBI: SearchScopes [HKCU] {AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8} - (DAEMON Search) - DAEMON-Search.com :: EXPLORE

O69 - SBI: SearchScopes [HKCU] {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} - (MyStart Search) - http://mystart.incredimail.com

O69 - SBI: SearchScopes [HKCU] {DECA3892-BA8F-44b8-A993-A466AD694AE4} - (Yahoo!) - Yahoo! Search - Recherche Web

O69 - SBI: SearchScopes [HKCU] {F14631FF-66D0-4864-8272-E12419B2D0F0} - (eBay) - eBay

O69 - SBI: SearchScopes [HKUS\.DEFAULT] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - Bing

O69 - SBI: SearchScopes [HKUS\.DEFAULT] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Bing) - Bing

O69 - SBI: SearchScopes [HKUS\S-1-5-18] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - Bing

O69 - SBI: SearchScopes [HKUS\S-1-5-18] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Bing) - Bing

 

 

---\\ Recherche particuliere à la racine de certains dossiers (O84)

[MD5.BA878CA6598D984FC2066A2B56C37263] [sPRF] (.SUPERAntiSpyware.com - SUPERAntiSpyware Update Application.) -- C:\Users\Jean Marc\AppData\Local\Temp\SSUPDATE64.EXE [411376]

 

 

---\\ Recherche d'infection Rogue (O86)

C:\Program Files\D31504102

[MD5.88BC4781A6D605488BB91B36E7D40F9C] [sRI] (.Iomega Corporation an EMC Company - Setup Launcher.) -- C:\Program Files\D31504102\Setup.exe [8227688]

 

 

---\\ Firewall Active Exception List (FirewallRules) (O87)

O87 - FAEL: "MCX-Prov-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - MCX2 Provisioning library.) -- C:\Windows\ehome\mcx2prov.exe

O87 - FAEL: "MCX-McrMgr-Out-TCP" | Out - None - P6 - FALSE | .(.Microsoft Corporation - Media Center Extender Manager.) -- C:\Windows\ehome\mcrmgr.exe

O87 - FAEL: "{ACEBC37F-91E4-4AF8-AFD1-887639FFF27C}" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Microsoft Office OneNote.) -- C:\Program Files (x86)\Microsoft Office\Office12\ONENOTE.exe

O87 - FAEL: "{2DD4BE5A-723E-4ED7-92AE-86605C3D96AE}" | In - Public - P17 - TRUE | .(.Microsoft Corporation - Microsoft Office OneNote.) -- C:\Program Files (x86)\Microsoft Office\Office12\ONENOTE.exe

O87 - FAEL: "{DB053924-85D1-4F8A-8508-8E3B726BA9A7}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe

O87 - FAEL: "{6CAAA410-9C43-4615-BA8F-57EC46217C50}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Sync.) -- C:\Program Files (x86)\Windows Live\Sync\WindowsLiveSync.exe

O87 - FAEL: "{4D8D5484-525D-40BC-8C38-7C5ECC2977D2}" | In - Private - P6 - TRUE | .(.UltraVNC - VNC server for X64/win32.) -- C:\Program Files (x86)\UltraVNC\winvnc.exe

O87 - FAEL: "{C6AC572F-7220-46C6-AD43-1B5615799E77}" | In - Private - P17 - TRUE | .(.UltraVNC - VNC server for X64/win32.) -- C:\Program Files (x86)\UltraVNC\winvnc.exe

O87 - FAEL: "{E05942D8-874D-47C2-B822-BC21887FCD6D}" | In - Private - P6 - TRUE | .(.UltraVNC - VNCViewer.) -- C:\Program Files (x86)\UltraVNC\vncviewer.exe

O87 - FAEL: "{ECED1EB7-B059-4C08-A5ED-2D0FE52D475E}" | In - Private - P17 - TRUE | .(.UltraVNC - VNCViewer.) -- C:\Program Files (x86)\UltraVNC\vncviewer.exe

O87 - FAEL: "{C93FA510-3BC4-48F8-8867-3E87DE17AA01}" | In - Private - P6 - TRUE | .(.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\opera.exe

O87 - FAEL: "{2FB68778-CBC6-4BA2-8E76-4FA6BA8BC96C}" | In - Private - P17 - TRUE | .(.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\opera.exe

O87 - FAEL: "{E8FD604E-A92B-48E8-BC70-3E5A0EA66FA6}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Communications Platform.) -- C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe

O87 - FAEL: "TCP Query User{44F3ECCF-FA04-4471-86C9-EB7C71C818FF}C:\program files (x86)\videolan\vlc\vlc.exe" | In - Private - P6 - TRUE | .(...) -- C:\program files (x86)\videolan\vlc\vlc.exe

O87 - FAEL: "UDP Query User{4BA02C6A-C90F-4958-8F0F-EDF0C675339F}C:\program files (x86)\videolan\vlc\vlc.exe" | In - Private - P17 - TRUE | .(...) -- C:\program files (x86)\videolan\vlc\vlc.exe

O87 - FAEL: "{F086774C-30BB-4FAD-A4A5-115F49E64890}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Mesh Operating Environment.) -- C:\Program Files (x86)\Windows Live\Mesh\MOE.exe

O87 - FAEL: "{70C82C8A-7471-4D3E-B124-0E04FBA9521A}" | In - Private - P6 - TRUE | .(.Yahoo! Inc. - Yahoo! Messenger.) -- C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe

O87 - FAEL: "{405480FF-D491-47BA-8C5F-E3F04DDD8383}" | In - Private - P17 - TRUE | .(.Yahoo! Inc. - Yahoo! Messenger.) -- C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe

O87 - FAEL: "{85FE5740-1681-4ADB-B701-FE90D080A28C}" | In - Private - P6 - TRUE | .(.Soluto - Soluto Anti-Frustration Software.) -- C:\Program Files\Soluto\Soluto.exe

O87 - FAEL: "{0595FDBC-D2C2-41D0-BCAB-1D7BD9586EDF}" | In - Private - P17 - TRUE | .(.Soluto - Soluto Anti-Frustration Software.) -- C:\Program Files\Soluto\Soluto.exe

O87 - FAEL: "{9C8ABF2F-88B6-4734-BE6D-DF21F504FAC2}" | In - Private - P6 - TRUE | .(.Soluto - Soluto Anti-Frustration Software.) -- C:\Program Files\Soluto\SolutoService.exe

O87 - FAEL: "{14E29574-22CE-4D1B-B37B-9C7B5BD9DEA0}" | In - Private - P17 - TRUE | .(.Soluto - Soluto Anti-Frustration Software.) -- C:\Program Files\Soluto\SolutoService.exe

O87 - FAEL: "{8F3717EE-F454-4992-B894-7B180341B276}" | In - Private - P6 - TRUE | .(.Soluto - Soluto Anti-Frustration Software.) -- C:\Program Files\Soluto\SolutoConsole.exe

O87 - FAEL: "{7BB50803-797C-4E6D-A22D-C5179B2233FC}" | In - Private - P17 - TRUE | .(.Soluto - Soluto Anti-Frustration Software.) -- C:\Program Files\Soluto\SolutoConsole.exe

O87 - FAEL: "{753B5133-D995-4F3B-8844-FBF45EFEC563}" | In - Private - P6 - TRUE | .(.Soluto - Soluto Anti-Frustration Software.) -- C:\Program Files\Soluto\SolutoUpdateService.exe

O87 - FAEL: "{5623C418-E63F-40B3-9385-887598C06CC5}" | In - Private - P17 - TRUE | .(.Soluto - Soluto Anti-Frustration Software.) -- C:\Program Files\Soluto\SolutoUpdateService.exe

O87 - FAEL: "TCP Query User{64655B31-9782-4C85-BBFE-30EE65401BEF}C:\program files\iomega\quikprotect\quikprotect.exe" | In - Private - P6 - TRUE | .(.Iomega Corporation - QuikProtect.) -- C:\program files\iomega\quikprotect\quikprotect.exe

O87 - FAEL: "UDP Query User{CDE5BDC5-2012-4CF7-8432-2641D0C4F2E3}C:\program files\iomega\quikprotect\quikprotect.exe" | In - Private - P17 - TRUE | .(.Iomega Corporation - QuikProtect.) -- C:\program files\iomega\quikprotect\quikprotect.exe

O87 - FAEL: "TCP Query User{4FC81B38-A5D9-44E6-A78A-82F5113CD1F0}C:\program files (x86)\iomega\home storage manager\iomega discovery.exe" | In - Private - P6 - TRUE | .(.Iomega Corporation.) -- C:\program files (x86)\iomega\home storage manager\iomega discovery.exe

O87 - FAEL: "UDP Query User{3DDF2D9B-D2FC-4311-A95E-DDE35AC0FFD0}C:\program files (x86)\iomega\home storage manager\iomega discovery.exe" | In - Private - P17 - TRUE | .(.Iomega Corporation.) -- C:\program files (x86)\iomega\home storage manager\iomega discovery.exe

O87 - FAEL: "TCP Query User{5314BB98-1227-47AF-960E-CFC1E56BC387}C:\program files (x86)\iomega\home storage manager\iomega discovery.exe" | In - Public - P6 - TRUE | .(.Iomega Corporation.) -- C:\program files (x86)\iomega\home storage manager\iomega discovery.exe

O87 - FAEL: "UDP Query User{809BBBEC-B23E-412A-A306-E940F307DAE7}C:\program files (x86)\iomega\home storage manager\iomega discovery.exe" | In - Public - P17 - TRUE | .(.Iomega Corporation.) -- C:\program files (x86)\iomega\home storage manager\iomega discovery.exe

O87 - FAEL: "{7B4209D3-41AC-46A1-B954-BD170764B7D3}" | In - None - P17 - TRUE | .(.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe

O87 - FAEL: "TCP Query User{6CFDC979-CEEF-4A71-9C47-4AA75F090070}C:\users\jean marc\appdata\local\google\chrome\application\chrome.exe" | In - Private - P6 - TRUE | .(.Google Inc..) -- C:\users\jean marc\appdata\local\google\chrome\application\chrome.exe

O87 - FAEL: "UDP Query User{C780853D-739B-45BE-86C1-23028C5AC1B1}C:\users\jean marc\appdata\local\google\chrome\application\chrome.exe" | In - Private - P17 - TRUE | .(.Google Inc..) -- C:\users\jean marc\appdata\local\google\chrome\application\chrome.exe

O87 - FAEL: "{D1492663-B229-4BBC-AF69-4C0CF8EEE2C0}" | In - Private - P6 - TRUE | .(.Pando Networks - pando.) -- C:\Program Files (x86)\Pando Networks\Pando\Pando.exe

O87 - FAEL: "{C5D117A7-863C-4B0F-AACE-633E26072AA4}" | In - Private - P17 - TRUE | .(.Pando Networks - pando.) -- C:\Program Files (x86)\Pando Networks\Pando\Pando.exe

O87 - FAEL: "{AF4DDBC8-E76B-4802-B668-8ECE72BD81E5}" | In - None - P17 - TRUE | .(.Pando Networks - pando.) -- C:\Program Files (x86)\Pando Networks\Pando\Pando.exe

O87 - FAEL: "TCP Query User{44C82BCC-D99E-42FD-AD67-19D335FCC553}C:\program files\iomega\quikprotect\quikprotect.exe" | In - Public - P6 - TRUE | .(.Iomega Corporation - QuikProtect.) -- C:\program files\iomega\quikprotect\quikprotect.exe

O87 - FAEL: "UDP Query User{5B8AE624-BD47-4974-A48E-D58DC179E94E}C:\program files\iomega\quikprotect\quikprotect.exe" | In - Public - P17 - TRUE | .(.Iomega Corporation - QuikProtect.) -- C:\program files\iomega\quikprotect\quikprotect.exe

O87 - FAEL: "{34E8FA10-1BE1-4252-B19A-143C2D80E6A0}" | In - Public - P6 - TRUE | .(.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-config.com\x64\maconfservice.exe

O87 - FAEL: "{6DA981C9-7A4C-40B1-A2E5-42BC3A1A5CCD}" | In - Public - P17 - TRUE | .(.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-config.com\x64\maconfservice.exe

O87 - FAEL: "{552B1B69-0EAE-432C-853F-1E215A2B554E}" | In - Public - P6 - TRUE | .(.Pando Networks - pando.) -- C:\Program Files (x86)\Pando Networks\Pando\Pando.exe

O87 - FAEL: "{617D677F-2BDC-4A06-81D7-AF77DF2D0298}" | In - Public - P17 - TRUE | .(.Pando Networks - pando.) -- C:\Program Files (x86)\Pando Networks\Pando\Pando.exe

O87 - FAEL: "{1A79F3F3-D1C0-4F84-BD51-801DFFD4BE58}" | In - None - P17 - TRUE | .(.Pando Networks - pando.) -- C:\Program Files (x86)\Pando Networks\Pando\Pando.exe

 

 

---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)

SR - | Auto 29/06/2010 128752 | (!SASCORE) . (.SUPERAntiSpyware.com.) - C:\Program Files\SUPERAntiSpyware\SASCORE64.exe

SR - | Auto 21/01/2011 135336 | (AntiVirSchedulerService) . (.Avira GmbH.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe

SR - | Auto 21/01/2011 267944 | (AntiVirService) . (.Avira GmbH.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe

SR - | Auto 27/10/2009 252784 | (cfWiMAXService) . (.TOSHIBA CORPORATION.) - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe

SR - | Auto 10/03/2009 46448 | (ConfigFree Service) . (.TOSHIBA CORPORATION.) - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe

SS - | Demand 24/08/2009 544768 | (DfSdkS) . (.mst software GmbH, Germany.) - C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 6\DfsdkS.exe

SR - | Auto 18/11/2009 221608 | (F-Secure Gatekeeper Handler Starter) . (.F-Secure Corporation.) - C:\Program Files (x86)\DartyBox Sécurité\Anti-Virus\fsgk32st.exe

SR - | Auto 18/11/2009 188840 | (FSMA) . (.F-Secure Corporation.) - C:\Program Files (x86)\DartyBox Sécurité\Common\FSMA32.exe

SR - | Demand 20/12/2010 63992 | (FSORSPClient) . (.F-Secure Corporation.) - C:\Program Files (x86)\DartyBox Sécurité\ORSP Client\fsorsp.exe

SS - | Auto 03/06/2010 136176 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

SS - | Demand 13/12/2009 182768 | (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe

SS - | Demand 04/04/2005 69632 | (IDriverT) . (.Macrovision Corporation.) - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

SS - | Demand 12/09/2010 325120 | (maconfservice) . (.CybelSoft.) - C:\Program Files\ma-config.com\x64\maconfservice.exe

SS - | Disabled 12/09/2010 0 | (PuranDefrag) . (.Puran Software.) - C:\Windows\system32\PuranDefragS.exe

SR - | Auto 24/06/2010 394544 | (QPCopyEngine) . (.Pas de propriétaire.) - C:\Program Files\Iomega\QuikProtect\QpMonitor.exe

SS - | Auto 01/11/2010 331296 | (SolutoService) . (.Soluto.) - C:\Program Files\Soluto\SolutoService.exe

SR - | Auto 25/02/2011 570880 | (sp_rssrv) . (.Crawler.com.) - C:\Program Files (x86)\Spyware Terminator\sp_rsser.exe

SR - | Auto 26/10/2010 124368 | (TemproMonitoringService) . (.Toshiba Europe GmbH.) - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe

SS - | Demand 29/11/2010 54136 | (TMachInfo) . (.TOSHIBA Corporation.) - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe

SR - | Auto 05/11/2009 489312 | (TosCoSrv) . (.TOSHIBA Corporation.) - C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe

SS - | Demand 21/10/2009 193904 | (TOSHIBA Bluetooth Service) . (.TOSHIBA CORPORATION.) - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe

SS - | Demand 05/02/2010 137560 | (TOSHIBA HDD SSD Alert Service) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe

SS - | Demand 05/02/2010 824688 | (TPCHSrv) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe

SR - | Auto 06/12/2009 1590216 | (uvnc_service) . (.UltraVNC.) - C:\Program Files (x86)\UltraVNC\WinVNC.exe

SR - | Auto 14/07/2009 20992 | C:\Windows\system32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\system32\svchost.exe

SR - | Auto 09/11/2008 602392 | (YahooAUService) . (.Yahoo! Inc..) - C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe

 

 

---\\ Recherche Master Boot Record Infection (MBR)(O80)

Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.1 by Gmer, GMER - Rootkit Detector and Remover

Run by Jean Marc at 26/02/2011 18:07:34

 

device: opened successfully

user: error reading MBR

 

Disk trace:

error: Read Descripteur non valide

kernel: error reading MBR

 

 

---\\ Recherche Master Boot Record Infection (MBRCheck)(O80)

Written by ad13, http://ad13.geekstog

Run by Jean Marc at 26/02/2011 18:07:34

Use the desktop link 'MBRCheck' to have full report

 

 

 

---\\ Liste des émulateurs de CD/DVD (Hook du MBR)

O58 - SDL:[MD5.18000000000000000000000044EE1800] - 07/01/2011 - 00:00:00 ---A- . (...) -- C:\Windows\system32\drivers\sptd.sys [513080]

 

 

 

End of the scan (1466 lines in 05mn 10s)(0)

Rejoindre la conversation

Vous publiez en tant qu’invité. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...