Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Messages recommandés

Posté(e)

Rapport de ZHPDiag v1.28.223 par Nicolas Coolman, Update du 10/11/2011
Run by Amenophys at 20/11/2014 23:03:27
Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
State : Problème connexion internet


---\\ Web Browser
MSIE: Internet Explorer v9.11.9600.17420
MFIE: Mozilla Firefox 33.1.1 v33.1.1 (Defaut)

---\\ Windows Product Information
Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601)
Windows Server License Manager Script : OK
~ Windows® 7, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : CGKHQ
Windows License : OK
~ Windows Remaining Initializations Number : 3
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ System Information
~ Processor: AMD64 Family 16 Model 6 Stepping 3, AuthenticAMD
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3834 MB (53% free)
System Restore: Activé (Enable)
System drive C: has 182 GB (63%) free of 288 GB

---\\ Logged in mode
~ Computer Name: AMENOPHYS-VAIO
~ User Name: Amenophys
~ All Users Names: HomeGroupUser$, Amenophys, Administrateur,
~ Unselected Option: O45,O61,O62,O65,O66,O82,O89
Logged in as Administrator

---\\ Environnement Variables
~ System Unit : C:\
~ %AppData% : C:\Users\Amenophys\AppData\Roaming\
~ %Desktop% : C:\Users\Amenophys\Desktop\
~ %Favorites% : C:\Users\Amenophys\Favorites\
~ %LocalAppData% : C:\Users\Amenophys\AppData\Local\
~ %StartMenu% : C:\Users\Amenophys\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\system32\

---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 182 Go of 288 Go)
D:\ CD-ROM drive (Not Inserted)



---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowMyComputer: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services] wscsvc : OK
~ Scan Security Center in 00mn 00s



---\\ Recherche particulière de fichiers génériques
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) (.16/05/2011 - 07:19:30.) -- C:\Windows\Explorer.exe [2871808]
[MD5.DD81D91FF3B0763C392422865C9AC12E] - (....) (.14/07/2009 - 02:39:31.) -- C:\Windows\system32\rundll32.exe [45568]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:39:52.) -- C:\Windows\system32\Wininit.exe [129024]
[MD5.6FC2819A4F80AAB2DADEDFC1EFEE3C3F] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.17/11/2014 - 03:17:24.) -- C:\Windows\system32\wininet.dll [2365440]
[MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.16/10/2014 - 03:07:24.) -- C:\Windows\system32\Winlogon.exe [455168]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) (.01/05/2013 - 14:27:26.) -- C:\Windows\system32\sppcomapi.dll [232448]
[MD5.0D57D091E06BB1E58E72E5D08479FDDF] - (....) (.01/05/2013 - 14:07:20.) -- C:\Windows\system32\fr-FR\user32.dll.mui [20480]
[MD5.FA886682CFC5D36718D3E436AACF10B9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.10/07/2014 - 07:45:52.) -- C:\Windows\system32\drivers\AFD.sys [497152]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:52:21.) -- C:\Windows\system32\drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:19:47.) -- C:\Windows\system32\drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.01/05/2013 - 10:19:21.) -- C:\Windows\system32\drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.01/05/2013 - 10:26:32.) -- C:\Windows\system32\drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.01/05/2013 - 11:43:43.) -- C:\Windows\system32\drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:19:57.) -- C:\Windows\system32\drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 01:10:03.) -- C:\Windows\system32\drivers\IpNat.sys [116224]
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.16/06/2011 - 03:40:40.) -- C:\Windows\system32\drivers\MRxSmb.sys [158208]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.01/05/2013 - 10:23:20.) -- C:\Windows\system32\drivers\netBT.sys [261632]
[MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.09/04/2014 - 03:37:55.) -- C:\Windows\system32\drivers\ntfs.sys [1684928]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 01:00:41.) -- C:\Windows\system32\drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.01/05/2013 - 11:52:35.) -- C:\Windows\system32\drivers\Rasl2tp.sys [129536]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 01:09:09.) -- C:\Windows\system32\drivers\smb.sys [93184]
[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.01/05/2013 - 10:21:56.) -- C:\Windows\system32\drivers\tdx.sys [119296]
~ Scan Generic Processes in 00mn 00s



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 1/67
~ Mes musiques (My Musics) : 61/471
~ Mes Favoris (My Favorites) : 2/12
~ Mes Documents (My Documents) : 23/297
~ Mon Bureau (My Desktop) : 108/7081
~ Menu demarrer (Programs) : 7/28
~ Scan Hidden Files in 00mn 12s



---\\ Processus lancés
[MD5.4C95A8E8CA1F01EF29682C47A8F7DD7D] - (.Sony Corporation - VAIO Care.) -- C:\Program Files\Sony\VAIO Care\VCSpt.exe [23408] [PID.3720]
[MD5.749949494676218FFA99501F4AA22ECC] - (.OpenOffice.org - OpenOffice.org 3.4.1.) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe [10376704] [PID.3752]
[MD5.4EE367B8B1964160A1F1B80095183D3A] - (.OpenOffice.org - OpenOffice.org 3.4.1.) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin [10368512] [PID.3984]
[MD5.88C7319B0D171537A59520FE4DD8C357] - (.Sony Corporation - Media Check Tool.) -- C:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe [597792] [PID.3300]
[MD5.93DB1FF92B03D24738A71E6E4992DFD3] - (.Sun Microsystems, Inc. - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [248552] [PID.636]
[MD5.3B78ACCCAA5132638E7CF419F4A965C7] - (.CANON INC. - Canon Solution Menu EX.) -- C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE [1185112] [PID.3376]
[MD5.48BE298F7FD1BEF4D8FBACB04D8D95C4] - (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576] [PID.188]
[MD5.4D042B1F1375CF371AFBE0E0276BA627] - (.Adobe Systems Inc. - AcroTray.) -- C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\acrotray.exe [624248] [PID.1800]
[MD5.26B558B2D31C7425B455B00E562EAD93] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe [4085896] [PID.4188]
[MD5.D88B2D487439305A2EC308A6796C3044] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392] [PID.4208]
[MD5.172C9ED0D09F5377BDF5B71AF544C6C6] - (.Microsoft Corporation - Microsoft Office Word.) -- C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE [409768] [PID.5756]
[MD5.7115853FF96289DF7F65FB6B68E095ED] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [275568] [PID.6120]
[MD5.EB35E676252DEAB2EDDDB77E189B77B1] - (.CANON INC. - Canon MP Navigator EX.) -- C:\Program Files (x86)\Canon\MP Navigator EX 4.0\mpnex40.exe [9520472] [PID.4504]
[MD5.CD0204AA98E03B936704CA6E30BC6897] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [2183168] [PID.4280]
[MD5.B554A7D111500B137D6BD4EFABA5614C] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe [145520] [PID.5964]
[MD5.7D710239833D16DD2BEBB23DFEAAB61D] - (.Adobe Systems, Inc. - Adobe Flash Player 15.0 r0.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_223.exe [1880752] [PID.5456]
[MD5.73F5C13B431915BAE35254B4E95DFB71] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344] [PID.]
[MD5.608D6A90E989C6522F170E5526A64BF4] - (.Apple Inc. - YSLoader.exe.) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [43336] [PID.]
[MD5.133F82B6391F3390BECFA429C23FB2BE] - (.CrypKey (Canada) Ltd. - CrypKey License Service.) -- C:\Windows\system32\crypserv.exe [122880] [PID.]
[MD5.6D8A2EE4244630B290A837E79C0F37A1] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160] [PID.]
[MD5.627FA58ADC043704F9D14CA44340956F] - (.Sony Corporation - Device Information Provider.) -- C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe [360224] [PID.]
[MD5.63F6D08C54D5B3C1B12A6172032055C7] - (.ArcSoft, Inc. - MgiSvr.) -- C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [104960] [PID.]
[MD5.CB5B94EE1775FA4CD6B133F1745003C6] - (.Sony Corporation - VAIO Event Service (Service Module).) -- C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe [217456] [PID.]
[MD5.10E212BFB7EAB152A64C1AAEC2F7F4E0] - (.Sony Corporation - VCM Intelligent Analyzing Manager.) -- C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [529776] [PID.]
[MD5.A63DC5C2EA944E6657203E0C8EDEAF61] - (.Microsoft Corporation - COM Surrogate.) -- C:\Windows\SysWOW64\DllHost.exe [7168] [PID.]
[MD5.7A88CFD3FE99F2C9B95A6E2A08B96E14] - (.Sony Corporation - VCM Intelligent Network Service Manager.) -- C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe [386416] [PID.]
[MD5.0949E8607FEFA7739715810170025083] - (.Sony Corporation - VAIO Event Service (Service Sub Module).) -- C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSub.exe [120176] [PID.]
[MD5.227846995AFEEFA70D328BF5334A86A5] - (.Macrovision Europe Ltd. - Activation Licensing Service.) -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [654848] [PID.]
~ Scan Processes Running in 00mn 02s



---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\Amenophys\AppData\Local\Google\Chrome\User Data\Default\Preferences
~ Scan Google Browser in 00mn 00s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_223.dll
P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 5.1.30514.0.) -- c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll
~ Scan Firefox Browser in 00mn 00s



---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk

R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.9600.17239 (winblue_gdr.140724-2228)) -- C:\Windows\System32\ieframe.dll
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 0
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 0
~ Scan IE Browser in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Scan Proxy management in 00mn 00s



---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe
~ Scan Keys in 00mn 00s



---\\ Redirection du fichier Hosts (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Scan Hosts File in 00mn 00s



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: ContributeBHO Class [64Bits] - {074C1DC5-9320-4A9A-947D-C042949C6216} . (.Adobe Systems Incorporated. - Contribute IE Plugin.) -- C:\Program Files (x86)\Adobe\/Adobe Contribute CS3/contributeieplugin.dll
O2 - BHO: AcroIEHelperStub [64Bits] - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Canon Easy-WebPrint EX BHO [64Bits] - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} . (.CANON INC. - Easy-WebPrint EX.) -- C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live ID [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\
O2 - BHO: Windows Live Messenger Companion Helper [64Bits] - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} . (.Microsoft Corporation - Windows Live Messenger Companion Core.) -- C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper [64Bits] - {AE7CD045-E861-484f-8273-0445EE161910} . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: Java Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java Platform SE binary.) -- C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
~ Scan BHO in 00mn 00s



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: avast! WebRep [64Bits] - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} . (...) -- (.not file.)
~ Scan Toolbar in 00mn 00s



---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
O4 - HKLM\..\Run: [Apoint] . (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [CanonMyPrinter] . (.CANON INC. - Canon My Printer.) -- C:\Program Files\Canon\MyPrinter\BJMyPrt.exe
O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
O4 - HKLM\..\Wow6432Node\Run: [startCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Wow6432Node\Run: [NortonOnlineBackupReminder] . (.Symantec Corporation - Norton Online Backup Service.) -- C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe
O4 - HKLM\..\Wow6432Node\Run: [PMBVolumeWatcher] . (.Sony Corporation - Media Check Tool.) -- C:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe
O4 - HKLM\..\Wow6432Node\Run: [sunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKLM\..\Wow6432Node\Run: [CanonSolutionMenuEx] . (.CANON INC. - Canon Solution Menu EX.) -- C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.exe
O4 - HKLM\..\Wow6432Node\Run: [startertv_fr_5] Clé orpheline
O4 - HKLM\..\Wow6432Node\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe
O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O4 - HKLM\..\Wow6432Node\Run: [Acrobat Assistant 8.0] . (.Adobe Systems Inc. - AcroTray.) -- C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe
O4 - HKLM\..\Wow6432Node\Run: [Adobe_ID0EYTHM] . (.Adobe Systems Incorporated - Adobe Version Cue CS3.) -- C:\PROGRA~2\COMMON~1\Adobe\ADOBEV~1\Server\bin\VERSIO~2.exe
O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
O4 - HKLM\..\Wow6432Node\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe
O4 - HKUS\S-1-5-19\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-21-3151837526-3576907536-2162977813-1001\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
O4 - HKUS\S-1-5-18\..\RunOnce: [sPReview] Clé orpheline
O4 - HKUS\S-1-5-18\..\RunOnce: [spUninstallDeleteDir] Clé orpheline
O4 - HKUS\S-1-5-18\..\RunOnce: [sPReview] Clé orpheline
O4 - HKUS\S-1-5-18\..\RunOnce: [spUninstallDeleteDir] Clé orpheline
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
~ Scan Application in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - Global Startup: C:\Users\Amenophys\Desktop\PhotoFiltre Studio X.lnk . (.Antonio Da Cruz.) -- C:\Program Files (x86)\PhotoFiltre Studio X\pfstudiox.exe
O4 - Global Startup: C:\Users\Amenophys\Desktop\scrabbleproB.lnk . (...) -- C:\Program Files (x86)\scrabbleproB1.1\scrabblepro.exe
O4 - Global Startup: C:\Users\Amenophys\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\monAlbumPhoto.lnk . (.monAlbumPhoto.) -- C:\Program Files (x86)\monAlbumPhoto\monAlbumphoto.exe
~ Scan Global Startup in 00mn 00s



---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
O8 - Extra context menu item: Ajouter au fichier PDF existant . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O8 - Extra context menu item: Convertir en Adobe PDF . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O8 - Extra context menu item: Convertir la cible du lien en Adobe PDF . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O8 - Extra context menu item: Convertir la cible du lien en un fichier PDF existant . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O8 - Extra context menu item: Convertir la sélection en Adobe PDF . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O8 - Extra context menu item: Convertir la sélection en un fichier PDF existant . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O8 - Extra context menu item: Convertir les liens sélectionnés en Adobe PDF . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O8 - Extra context menu item: Convertir les liens sélectionnés en un fichier PDF existant . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O8 - Extra context menu item: E&xporter vers Microsoft Excel . (.Microsoft Corporation - Microsoft Office Excel.) -- C:\PROGRA~2\MICROS~1\Office12\EXCEL.exe
O8 - Extra context menu item: Google Sidewiki... - (.not file.) - C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll
~ Scan IE Menu Contextuel in 00mn 00s



---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 [64Bits] - {CCA281CA-C863-46ef-9331-5C8D4460577F} . (...) -- C:\Program Files\WIDCOMM\Bluetooth Software\bt_hot_icon.ico
~ Scan IE Extra Buttons in 00mn 00s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL
O10 - WLSP:\000000000007\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files (x86)\Bonjour\mdnsNSP.dll
O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
O10 - WLSP:\000000000009\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
~ Scan Winsock in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{A35F455B-5668-4676-9BE3-74A32BB9A2C8}: DhcpNameServer = 109.0.66.10 109.0.66.20
O17 - HKLM\System\CS1\Services\Tcpip\..\{A35F455B-5668-4676-9BE3-74A32BB9A2C8}: DhcpNameServer = 109.0.66.10 109.0.66.20
O17 - HKLM\System\CS2\Services\Tcpip\..\{A35F455B-5668-4676-9BE3-74A32BB9A2C8}: DhcpNameServer = 109.0.66.10 109.0.66.20
~ Scan Domain in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft ®.) -- C:\Windows\System32\mshtml.dll
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\msvidctl.dll
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft ®.) -- C:\Windows\System32\mshtml.dll
O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft ®.) -- C:\Windows\System32\mshtml.dll
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\system32\inetcomm.dll
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll
O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll
O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft ®.) -- C:\Windows\System32\mshtml.dll
O18 - Handler: skype4com [64Bits] - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype for COM API.) -- C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\msvidctl.dll
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft ®.) -- C:\Windows\System32\mshtml.dll
O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll
O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\system32\mscoree.dll
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\system32\mscoree.dll
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\system32\mscoree.dll
O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
~ Scan Protocole Additionnel in 00mn 00s



---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ Scan SSODL in 00mn 00s



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\system32\atiesrxx.exe
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - YSLoader.exe.) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Bluetooth Service (btwdins) . (.Broadcom Corporation. - Bluetooth Support Server.) - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Crypkey License (Crypkey License) . (.CrypKey (Canada) Ltd. - CrypKey License Service.) - C:\Windows\system32\crypserv.exe
O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: PMBDeviceInfoProvider (PMBDeviceInfoProvider) . (.Sony Corporation - Device Information Provider.) - C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe
O23 - Service: Roxio Upnp Server 10 (Roxio Upnp Server 10) . (.Sonic Solutions - RoxioUpnpService10 Module.) - C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: CamMonitor (uCamMonitor) . (.ArcSoft, Inc. - MgiSvr.) - C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe
O23 - Service: VAIO Event Service (VAIO Event Service) . (.Sony Corporation - VAIO Event Service (Service Module).) - C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe
O23 - Service: VAIO Content Metadata Intelligent Analyzing Manager (VcmIAlzMgr) . (.Sony Corporation - VCM Intelligent Analyzing Manager.) - C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
O23 - Service: VAIO Content Metadata Intelligent Network Service Manager (VcmINSMgr) . (.Sony Corporation - VCM Intelligent Network Service Manager.) - C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe
O23 - Service: VSNService (VSNService) . (.Sony Corporation - VAIO Smart Network Service.) - C:\Program Files\Sony\VAIO Smart Network\VSNService.exe
~ Scan Services in 00mn 00s



---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Scan Desktop Component in 00mn 00s



---\\ BootExecute (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ Scan Keys in 00mn 00s



---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job
[MD5.D51145F6B0CE987850F13A61DAD5E531] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
[MD5.1AD8512A5C40AD1A0558498D8E0AC2AA] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
[MD5.00000000000000000000000000000000] [APT] [AVG-Secure-Search-Update_JUNE2013_HP_rmv] (...) -- C:\Windows\TEMP\{8C7C0D57-EC89-417A-85E4-0FEF83B7CDC8}.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [AVG-Secure-Search-Update_JUNE2013_TB_rmv] (...) -- C:\Windows\TEMP\{455345CB-5080-431D-BC11-7529B4CCDA6B}.exe (.not file.)
[MD5.C192496DD21E28CCA876A8EDD3BF4736] [APT] [{2A3FA6B0-89C4-4EE8-A418-BC08B1D8DFD1}] (.CANON INC..) -- C:\Program Files (x86)\Canon\MP Navigator 3.1\mpn31.exe
[MD5.C192496DD21E28CCA876A8EDD3BF4736] [APT] [{2E5A62AE-BE06-4FD4-B0C7-32E607B561AB}] (.CANON INC..) -- C:\Program Files (x86)\Canon\MP Navigator 3.1\mpn31.exe
[MD5.C192496DD21E28CCA876A8EDD3BF4736] [APT] [{46B6F518-FE72-449A-88CC-ACE2C3451FB4}] (.CANON INC..) -- C:\Program Files (x86)\Canon\MP Navigator 3.1\mpn31.exe
[MD5.C192496DD21E28CCA876A8EDD3BF4736] [APT] [{5496A6C1-4F02-4BDA-B383-26968FCA8F79}] (.CANON INC..) -- C:\Program Files (x86)\Canon\MP Navigator 3.1\mpn31.exe
[MD5.C192496DD21E28CCA876A8EDD3BF4736] [APT] [{577C9C14-657D-4000-BC45-98705F7F6979}] (.CANON INC..) -- C:\Program Files (x86)\Canon\MP Navigator 3.1\mpn31.exe
[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe
[MD5.BB3ADEAAFBCE59B34FC932E36BAAB95F] [APT] [VAIO Gate] (.Sony Corporation.) -- C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe
[MD5.960D2D4EA71D6EFFE1101E3E486E0565] [APT] [VAIO Update 5] (.Sony Corporation.) -- C:\Program Files\Sony\VAIO Update 5\VAIOUpdt.exe
~ Scan Scheduled Task in 00mn 09s



---\\ Pilotes lancés au démarrage (O41)
O41 - Driver: C:\Windows\system32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (aswRdr) . (.AVAST Software - avast! WFP Redirect Driver.) - C:\Windows\system32\drivers\aswRdr2.sys
O41 - Driver: (aswSnx) . (.AVAST Software - avast! Virtualization Driver.) - C:\Windows\system32\drivers\aswSnx.sys
O41 - Driver: (aswSP) . (.AVAST Software - avast! self protection module.) - C:\Windows\system32\drivers\aswSP.sys
O41 - Driver: (avgtp) . (.AVG Technologies - Pas de description.) - C:\Windows\system32\drivers\avgtpx64.sys
O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\drivers\blbdrive.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\DRIVERS\cdrom.sys
O41 - Driver: C:\Windows\system32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\system32\Drivers\dfsc.sys
O41 - Driver: C:\Windows\system32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\system32\drivers\discache.sys
O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\system32\DRIVERS\netbios.sys
O41 - Driver: C:\Windows\system32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\system32\DRIVERS\netbt.sys
O41 - Driver: (NetworkX) . (...) - C:\Windows\system32\ckldrv.sys
O41 - Driver: C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\system32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\system32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\system32\DRIVERS\pacer.sys
O41 - Driver: C:\Windows\system32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\system32\DRIVERS\rdbss.sys
O41 - Driver: C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\system32\DRIVERS\RDPCDD.sys
O41 - Driver: C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\system32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\system32\drivers\rdprefmp.sys
O41 - Driver: C:\Windows\system32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\system32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\system32\DRIVERS\vwififlt.sys
O41 - Driver: C:\Windows\system32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\system32\DRIVERS\wanarp.sys
O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\system32\DRIVERS\wfplwf.sys
~ Scan Drivers in 00mn 00s



---\\ Logiciels installés (O42)
O42 - Logiciel: 7-Zip 4.62 - (.Pas de propriétaire.) [HKLM] -- 7-Zip
O42 - Logiciel: AHV content for Acrobat and Flash - (.Adobe Systems Incorporated.) [HKLM] -- {6BBAA81D-6A7E-43AD-8889-2F002DCAAFDD}
O42 - Logiciel: AMD USB Filter Driver - (.Advanced Micro Devices, Inc..) [HKLM] -- {987B04C4-B5AC-4AD6-A7E9-8D681085B850}
O42 - Logiciel: ATI Catalyst Install Manager - (.ATI Technologies, Inc..) [HKLM] -- {FED99701-A3A5-CE6B-4D04-DECF94784B89}
O42 - Logiciel: Adobe After Effects CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {EB0202F7-016A-410C-ADE4-40F848CCC661}
O42 - Logiciel: Adobe After Effects CS3 Presets - (.Adobe Systems Incorporated.) [HKLM] -- {193EAFD0-1BAF-4FB4-B18F-79D5D6A4B285}
O42 - Logiciel: Adobe Anchor Service CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {90176341-0A8B-4CCC-A78D-F862228A6B95}
O42 - Logiciel: Adobe Asset Services CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}
O42 - Logiciel: Adobe Bridge CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {9C9824D9-9000-4373-A6A5-D0E5D4831394}
O42 - Logiciel: Adobe Bridge Start Meeting - (.Adobe Systems Incorporated.) [HKLM] -- {08B32819-6EEF-4057-AEDA-5AB681A36A23}
O42 - Logiciel: Adobe BridgeTalk Plugin CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {B73CFB12-C814-4638-AFFD-7E3AAFAF0B4E}
O42 - Logiciel: Adobe CMaps - (.Adobe Systems Incorporated.) [HKLM] -- {A2B242BD-FF8D-4840-9DAA-9170EABEC59C}
O42 - Logiciel: Adobe Camera Raw 4.0 - (.Adobe Systems Incorporated.) [HKLM] -- {B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}
O42 - Logiciel: Adobe Color - Photoshop Specific - (.Adobe Systems Incorporated.) [HKLM] -- {A2D81E70-2A98-4A08-A628-94388B063C5E}
O42 - Logiciel: Adobe Color Common Settings - (.Adobe Systems Incorporated.) [HKLM] -- {DADD7B8A-BCB0-44F5-967A-ECB6B4F2ECD9}
O42 - Logiciel: Adobe Color EU Recommended Settings - (.Adobe Systems Incorporated.) [HKLM] -- {73B5D990-04EA-4751-B10F-5534770B91F2}
O42 - Logiciel: Adobe Color JA Extra Settings - (.Adobe Systems Incorporated.) [HKLM] -- {DD7DB3C5-6FA3-4FA3-8A71-C2F2940EB029}
O42 - Logiciel: Adobe Color NA Extra Settings - (.Adobe Systems Incorporated.) [HKLM] -- {FF29A7E2-FF40-4D07-B7E4-2093DE59E10A}
O42 - Logiciel: Adobe Contribute CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {F84ADE4E-9220-4324-994D-801EDD9DD251}
O42 - Logiciel: Adobe Creative Suite 3 Master Collection - (.Adobe Systems Incorporated.) [HKLM] -- {5D2398DF-3022-4820-93BA-F1175FBEA9CA}
O42 - Logiciel: Adobe Default Language CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {B9B35331-B7E4-4E5C-BF4C-7BC87856124D}
O42 - Logiciel: Adobe Device Central CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {8D2BA474-F406-4710-9AE4-D4F22D21F0DD}
O42 - Logiciel: Adobe Dreamweaver CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {4BDB76C6-902E-41D5-9064-68768E02886B}
O42 - Logiciel: Adobe Encore CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {54B2EAD9-A110-43F7-B010-2859A1BD2AFE}
O42 - Logiciel: Adobe Encore CS3 Codecs - (.Adobe Systems Incorporated.) [HKLM] -- {B8B7A4D8-80E1-4DAE-BD33-7FD535BA3931}
O42 - Logiciel: Adobe ExtendScript Toolkit 2 - (.Adobe Systems Incorporated.) [HKLM] -- {C2D69781-F392-4118-A5A7-C7E9C38DBFC2}
O42 - Logiciel: Adobe Extension Manager CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {BE5F3842-8309-4754-92D5-83E02E6077A3}
O42 - Logiciel: Adobe Fireworks CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {21C4D775-368A-46C4-8DC3-4207165B7115}
O42 - Logiciel: Adobe Flash CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {80FD3971-8482-49C8-BA8C-B6464A15882F}
O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 15 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin
O42 - Logiciel: Adobe Flash Player 9 ActiveX - (.Adobe Systems, Inc..) [HKLM] -- {BC4F8E84-5E29-49EC-B4E7-E6F9CB50986C}
O42 - Logiciel: Adobe Flash Video Encoder - (.Adobe Systems Incorporated.) [HKLM] -- {1B0BCA28-1F11-4D60-8A2F-DEBE04B5341E}
O42 - Logiciel: Adobe Fonts All - (.Adobe Systems Incorporated.) [HKLM] -- {6ABE0BEE-D572-4FE8-B434-9E72A289431B}
O42 - Logiciel: Adobe Help Viewer CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {7ACFB90E-8FD0-4397-AD3A-5195412623A3}
O42 - Logiciel: Adobe Illustrator CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {6E08CE13-C2AB-4749-9335-5900B958929E}
O42 - Logiciel: Adobe InDesign CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {FE8327F9-3AC1-4586-8C7E-3DEE2BC92441}
O42 - Logiciel: Adobe InDesign CS3 Icon Handler - (.Adobe Systems Incorporated.) [HKLM] -- {EA7B3CC4-366D-4CF6-8350-FD7A7034116E}
O42 - Logiciel: Adobe Linguistics CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {54793AA1-5001-42F4-ABB6-C364617C6078}
O42 - Logiciel: Adobe MotionPicture Color Files - (.Adobe Systems Incorporated.) [HKLM] -- {6B708481-748A-4EB4-97C1-CD386244FF77}
O42 - Logiciel: Adobe PDF Library Files - (.Adobe Systems Incorporated.) [HKLM] -- {D2559B88-CC9D-4B48-81BB-F492BAA9C48C}
O42 - Logiciel: Adobe Photoshop CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {C1FA4B3B-1625-4922-9C9D-780E8FCE161A}
O42 - Logiciel: Adobe Premiere Pro CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {58DCEEE5-532E-44F4-B1D7-A146EF9E9FDA}
O42 - Logiciel: Adobe Premiere Pro CS3 Functional Content - (.Adobe Systems Incorporated.) [HKLM] -- {50F102CA-4BE2-41A9-9810-5BB05EB91B9A}
O42 - Logiciel: Adobe Premiere Pro CS3 Third Party Content - (.Adobe Systems Incorporated.) [HKLM] -- {485ACF57-F364-440A-8496-E1E81C8FA1AA}
O42 - Logiciel: Adobe Reader 9.5.5 - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-A95000000001}
O42 - Logiciel: Adobe SING CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {B671CBFD-4109-4D35-9252-3062D3CCB7B2}
O42 - Logiciel: Adobe Setup - (.Adobe Systems Incorporated.) [HKLM] -- {1628F6BD-5ED1-4FD1-B90F-C106AF4E00F0}
O42 - Logiciel: Adobe Soundbooth CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {A6B23EFA-6590-482C-A11F-5ACE1B91F5B9}
O42 - Logiciel: Adobe Soundbooth CS3 Codecs - (.Adobe Systems Incorporated.) [HKLM] -- {0327FA9D-975C-448C-A086-577D57BB25B8}
O42 - Logiciel: Adobe Stock Photos CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {29E5EA97-5F74-4A57-B8B2-D4F169117183}
O42 - Logiciel: Adobe Type Support - (.Adobe Systems Incorporated.) [HKLM] -- {8E6808E2-613D-4FCD-81A2-6C8FA8E03312}
O42 - Logiciel: Adobe Update Manager CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {E69AE897-9E0B-485C-8552-7841F48D42D8}
O42 - Logiciel: Adobe Version Cue CS3 Client - (.Adobe Systems Incorporated.) [HKLM] -- {D0DFF92A-492E-4C40-B862-A74A173C25C5}
O42 - Logiciel: Adobe Version Cue CS3 Server - (.Adobe Systems Incorporated.) [HKLM] -- {1D58229F-C505-45CA-8223-F35F3A34B963}
O42 - Logiciel: Adobe Video Profiles - (.Adobe Systems Incorporated.) [HKLM] -- {845A8DB9-8802-4FD3-9FE3-938A6C46A2EC}
O42 - Logiciel: Adobe WAS CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {C5BD220A-EFE8-48A5-B70E-9503D535FACE}
O42 - Logiciel: Adobe WinSoft Linguistics Plugin - (.Adobe Systems Incorporated.) [HKLM] -- {184CE391-7E0E-4C63-9935-D7A10EDFD3C6}
O42 - Logiciel: Adobe XMP DVA Panels CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {0224CACC-994D-45F8-B973-D65056EA9C2F}
O42 - Logiciel: Adobe XMP Panels CS3 - (.Adobe Systems Incorporated.) [HKLM] -- {D5A31AB1-345D-47C7-A87B-036A669F6DF1}
O42 - Logiciel: Ajouter ou supprimer Adobe Creative Suite 3 Master Collection - (.Adobe Systems Incorporated.) [HKLM] -- Adobe_b5d5789539ea1f004a4defceea74312
O42 - Logiciel: Alps Pointing-device for VAIO - (.ALPS ELECTRIC CO., LTD..) [HKLM] -- {9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {78002155-F025-4070-85B3-7C0453561701}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {B678797F-DF38-4556-8A31-8B818E261868}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
O42 - Logiciel: ArcSoft Magic-i Visual Effects 2 - (.ArcSoft.) [HKLM] -- {7BB90344-0647-468E-925A-7F69F7983421}
O42 - Logiciel: ArcSoft WebCam Companion 3 - (.ArcSoft.) [HKLM] -- {DE8AAC73-6D8D-483E-96EA-CAEDDADB9079}
O42 - Logiciel: AviSynth 2.5 - (.Pas de propriétaire.) [HKLM] -- AviSynth
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}
O42 - Logiciel: BookSmart® 3.4.3 3.4.3 - (.Blurb, Inc.) [HKLM] -- BookSmart® 3.4.3 3.4.3
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
O42 - Logiciel: Canon Easy-PhotoPrint EX - (.Pas de propriétaire.) [HKLM] -- Easy-PhotoPrint EX
O42 - Logiciel: Canon Easy-WebPrint EX - (.Pas de propriétaire.) [HKLM] -- Easy-WebPrint EX
O42 - Logiciel: Canon IJ Network Tool - (.Pas de propriétaire.) [HKLM] -- Canon_IJ_Network_UTILITY
O42 - Logiciel: Canon MP Navigator 3.1 - (.Pas de propriétaire.) [HKLM] -- MP Navigator 3.1
O42 - Logiciel: Canon MP Navigator EX 4.0 - (.Pas de propriétaire.) [HKLM] -- MP Navigator EX 4.0
O42 - Logiciel: Canon MP140 series - (.Pas de propriétaire.) [HKLM] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP140_series
O42 - Logiciel: Canon MP495 series MP Drivers - (.Pas de propriétaire.) [HKLM] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP495_series
O42 - Logiciel: Canon My Printer - (.Pas de propriétaire.) [HKLM] -- CanonMyPrinter
O42 - Logiciel: Canon Solution Menu EX - (.Pas de propriétaire.) [HKLM] -- CanonSolutionMenuEX
O42 - Logiciel: Catalyst Control Center - Branding - (.ATI.) [HKLM] -- {9EAC0E21-510E-4259-A9C6-F5D5B8969036}
O42 - Logiciel: Cimaware OfficeFIX 6.xx - (.Cimaware Software.) [HKCU] -- Cimaware OfficeFIX 6.xx
O42 - Logiciel: Click to Disc MergeModules x64 - (.Sony Corporation.) [HKLM] -- {393A9268-A428-4F5A-9B20-BD753309A98E}
O42 - Logiciel: Complément Messenger - (.Microsoft Corporation.) [HKLM] -- {6E5324C1-84FC-4F76-9A3A-C65E07F80EE6}
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: Dealio Toolbar v7.3 - (.Spigot, Inc..) [HKLM] -- {F8EFF4E4-10C3-4FAF-AFF5-12CCEBB57430}
O42 - Logiciel: Enregistrement utilisateur de Canon MP495 series - (.Pas de propriétaire.) [HKLM] -- Enregistrement utilisateur de Canon MP495 series
O42 - Logiciel: Evernote - (.Evernote Corp..) [HKLM] -- {F761359C-9CED-45AE-9A51-9D6605CD55C4}
O42 - Logiciel: Free PDF to Word Converter 2.0 - (.Free-PDF-to-Word.com.) [HKLM] -- Free PDF to Word Converter_is1
O42 - Logiciel: Galerie de photos Windows Live - (.Microsoft Corporation.) [HKLM] -- {488F0347-C4A7-4374-91A7-30818BEDA710}
O42 - Logiciel: Gestion de l’alimentation de VAIO - (.Sony Corporation.) [HKLM] -- {803E4FA5-A940-4420-B89D-A8BC2E160247}
O42 - Logiciel: Java 6 Update 18 (64-bit) - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F86416018FF}
O42 - Logiciel: Java 6 Update 22 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216022FF}
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}
O42 - Logiciel: LG Connection Manager - (.LGE.) [HKLM] -- {BBF60130-FB99-4909-B0F3-A511F25E13A9}
O42 - Logiciel: LG Wireless USB Modem Driver - (.LG Electronics.) [HKLM] -- {C4C4642E-B5E3-4044-A3E6-BD997FF6F72E}
O42 - Logiciel: Lecture à distance avec PlayStation®3 - (.Sony Corporation.) [HKLM] -- {07441A52-E208-478A-92B7-5C337CA8C131}
O42 - Logiciel: MSI_SPF_x64 - (.Sony Corporation.) [HKLM] -- {DA57D9DF-BE05-416A-96E4-2BB4884308E7}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: Malwarebytes Anti-Malware version 2.0.3.1025 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes Anti-Malware_is1
O42 - Logiciel: Micromega Software System EasyScan - (.Pas de propriétaire.) [HKLM] -- Micromega Software EasyScan
O42 - Logiciel: Microsoft .NET Framework 4.5.1 (FRA) - (.Microsoft Corporation.) [HKLM] -- {C22759DB-BA8B-30E7-99EE-8B47DB43AE56}
O42 - Logiciel: Microsoft .NET Framework 4.5.1 (Français) - (.Microsoft Corporation.) [HKLM] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1036
O42 - Logiciel: Microsoft .NET Framework 4.5.1 - (.Microsoft Corporation.) [HKLM] -- {7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}
O42 - Logiciel: Microsoft .NET Framework 4.5.1 - (.Microsoft Corporation.) [HKLM] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0015-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0016-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0018-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0019-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001A-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001B-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-002A-0000-1000-0000000FF1CE}_PROPLUS_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-002A-040C-1000-0000000FF1CE}_PROPLUS_{8283FD64-6A3B-4104-9E12-7CA25EF29A1A}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0044-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-006E-040C-0000-0000000FF1CE}_PROPLUS_{8283FD64-6A3B-4104-9E12-7CA25EF29A1A}
O42 - Logiciel: Microsoft Office 2010 - (.Microsoft Corporation.) [HKLM] -- {95140000-0070-0000-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Access MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0015-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Excel MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0016-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office InfoPath MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0044-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Office 64-bit Components 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-002A-0000-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Outlook MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001A-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office PowerPoint MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0018-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Professional Plus 2007 - (.Microsoft Corporation.) [HKLM] -- PROPLUS
O42 - Logiciel: Microsoft Office Professional Plus 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (Arabic) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0401-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (Dutch) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0413-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (English) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0409-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (German) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0407-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (Spanish) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0C0A-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proofing (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-002C-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0401-0000-0000000FF1CE}_PROPLUS_{3E8EA473-ECCE-405F-A9CA-59446AEADD3A}
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0407-0000-0000000FF1CE}_PROPLUS_{928D7B99-2BEA-49F9-83B8-20FA57860643}
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0409-0000-0000000FF1CE}_PROPLUS_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-040C-0000-0000000FF1CE}_PROPLUS_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0413-0000-0000000FF1CE}_PROPLUS_{2C95E7EE-FEA7-4B3A-A6E5-DF90A88B816A}
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0C0A-0000-0000000FF1CE}_PROPLUS_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}
O42 - Logiciel: Microsoft Office Publisher MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0019-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Shared 64-bit MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-002A-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Shared MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-006E-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Word MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001B-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU] - (.Microsoft Corporation.) [HKLM] -- {F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
O42 - Logiciel: Microsoft SQL Server Compact 3.5 SP1 English - (.Microsoft Corporation.) [HKLM] -- {E59113EB-0285-4BFD-A37A-B79EAC6B8F4B}
O42 - Logiciel: Microsoft SQL Server Compact 3.5 SP1 x64 English - (.Microsoft Corporation.) [HKLM] -- {F83779DF-E1F5-43A2-A7BE-732F856FADB7}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {7299052b-02a4-4627-81f2-1818da5d550d}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 - (.Microsoft Corporation.) [HKLM] -- {8338783A-0968-3B85-AFC7-BAAE0A63DC50}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 - (.Microsoft Corporation.) [HKLM] -- {86CE85E6-DBAC-3FFD-B977-E4B79F83C909}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {4B6C7001-C7D6-3710-913E-5BC23FCE91E6}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM] -- {5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 - (.Microsoft Corporation.) [HKLM] -- {6AFCA4E1-9B78-3640-8F72-A7BF33448200}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F}
O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM] -- {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
O42 - Logiciel: Mozilla Firefox 33.1.1 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 33.1.1 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService
O42 - Logiciel: MusicStation - (.Omnifone.) [HKLM] -- {AB259D46-F851-41B0-9AFA-AED8998AD68A}
O42 - Logiciel: MyPaint 1.0.0 - (.Martin Renold & MyPaint Development Team.) [HKCU] -- MyPaint
O42 - Logiciel: Norton Online Backup - (.Symantec.) [HKLM] -- {C57BCDE1-7CB9-467D-B3BA-7E119916CDC1}
O42 - Logiciel: OpenOffice.org 3.4.1 - (.Apache Software Foundation.) [HKLM] -- {7DA1C06F-C913-46C7-8A0F-DA2CBA17EA1D}
O42 - Logiciel: Outil de restauration de données VAIO - (.Sony Corporation.) [HKLM] -- {57B955CE-B5D3-495D-AF1B-FAEE0540BFEF}
O42 - Logiciel: PDF Settings - (.Adobe Systems Incorporated.) [HKLM] -- {AC5B0C19-D851-42F4-BDA0-410ECF7F70A5}
O42 - Logiciel: PDF to Excel Converter - (.Blue Label Soft.) [HKLM] -- {E4B114CA-A678-4DA2-A085-253951C1DE1A}_is1
O42 - Logiciel: PDFCreator - (.Frank Heindörfer, Philip Chinery.) [HKLM] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}
O42 - Logiciel: PMB - (.Sony Corporation.) [HKLM] -- {B6A98E5F-D6A7-46FB-9E9D-1F7BF443491C}
O42 - Logiciel: PMB VAIO Edition Guide - (.Sony Corporation.) [HKLM] -- InstallShield_{88C252C8-A7EE-4B60-BF74-8E5919A8048F}
O42 - Logiciel: PMB VAIO Edition Guide - (.Sony Corporation.) [HKLM] -- {88C252C8-A7EE-4B60-BF74-8E5919A8048F}
O42 - Logiciel: PMB VAIO Edition plug-in (Click to Disc) - (.Sony Corporation.) [HKLM] -- InstallShield_{4DCEA9C1-4D6E-41BF-A854-28CFA8B56DBF}
O42 - Logiciel: PMB VAIO Edition plug-in (Click to Disc) - (.Sony Corporation.) [HKLM] -- {4DCEA9C1-4D6E-41BF-A854-28CFA8B56DBF}
O42 - Logiciel: PMB VAIO Edition plug-in (VAIO Image Optimizer) - (.Sony Corporation.) [HKLM] -- InstallShield_{1873FFC1-FDCB-47E1-B7C7-F418211E3530}
O42 - Logiciel: PMB VAIO Edition plug-in (VAIO Image Optimizer) - (.Sony Corporation.) [HKLM] -- {1873FFC1-FDCB-47E1-B7C7-F418211E3530}
O42 - Logiciel: PMB VAIO Edition plug-in (VAIO Movie Story) - (.Sony Corporation.) [HKLM] -- InstallShield_{B25563A0-41F4-4A81-A6C1-6DBC0911B1F3}
O42 - Logiciel: PMB VAIO Edition plug-in (VAIO Movie Story) - (.Sony Corporation.) [HKLM] -- {B25563A0-41F4-4A81-A6C1-6DBC0911B1F3}
O42 - Logiciel: Paramètres de contrôle du contenu VAIO - (.Sony Corporation.) [HKLM] -- {23825B69-36DF-4DAD-9CFD-118D11D80F16}
O42 - Logiciel: Paramètres des fonctions d'origine VAIO - (.Sony Corporation.) [HKLM] -- {A63E7492-A0BC-4BB9-89A7-352965222380}
O42 - Logiciel: PhotoFiltre Studio X - (.Pas de propriétaire.) [HKCU] -- PhotoFiltre Studio X
O42 - Logiciel: PosteRazor - (.Alessandro Portale.) [HKLM] -- PosteRazor_is1
O42 - Logiciel: Prise en charge du transfert VAIO - (.Sony Corporation.) [HKLM] -- {5DDAFB4B-C52E-468A-9E23-3B0CEEB671BF}
O42 - Logiciel: Realtek HDMI Audio Driver for ATI - (.Realtek Semiconductor Corp..) [HKLM] -- {5449FB4F-1802-4D5B-A6D8-087DB1142147}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM] -- {96AE7E41-E34E-47D0-AC07-1091A8127911}
O42 - Logiciel: Recovery Toolbox for Word 1.1 - (.Recovery Toolbox, Inc..) [HKLM] -- Recovery Toolbox for Word_is1
O42 - Logiciel: Roxio Central Audio - (.Roxio.) [HKLM] -- {73A4F29F-31AC-4EBD-AA1B-0CC5F18C8F83}
O42 - Logiciel: Roxio Central Copy - (.Roxio.) [HKLM] -- {B6A26DE5-F2B5-4D58-9570-4FC760E00FCD}
O42 - Logiciel: Roxio Central Core - (.Roxio.) [HKLM] -- {ED439A64-F018-4DD4-8BA5-328D85AB09AB}
O42 - Logiciel: Roxio Central Data - (.Roxio.) [HKLM] -- {08E81ABD-79F7-49C2-881F-FD6CB0975693}
O42 - Logiciel: Roxio Central Tools - (.Roxio.) [HKLM] -- {1F54DAFA-9261-4A62-B59D-6C9F26B48FE4}
O42 - Logiciel: Roxio Easy Media Creator 10 LJ - (.Roxio.) [HKLM] -- {537BF16E-7412-448C-95D8-846E85A1D817}
O42 - Logiciel: Roxio Easy Media Creator Home - (.Roxio.) [HKLM] -- {FE51662F-D8F6-43B5-99D9-D4894AF00F83}
O42 - Logiciel: Security Update for Microsoft .NET Framework 4.5.1 (KB2894854v2) - (.Microsoft Corporation.) [HKLM] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2894854v2
O42 - Logiciel: Security Update for Microsoft .NET Framework 4.5.1 (KB2898869) - (.Microsoft Corporation.) [HKLM] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2898869
O42 - Logiciel: Security Update for Microsoft .NET Framework 4.5.1 (KB2901126) - (.Microsoft Corporation.) [HKLM] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2901126
O42 - Logiciel: Security Update for Microsoft .NET Framework 4.5.1 (KB2931368) - (.Microsoft Corporation.) [HKLM] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2931368
O42 - Logiciel: Security Update for Microsoft .NET Framework 4.5.1 (KB2972107) - (.Microsoft Corporation.) [HKLM] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2972107
O42 - Logiciel: Security Update for Microsoft .NET Framework 4.5.1 (KB2972216) - (.Microsoft Corporation.) [HKLM] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2972216
O42 - Logiciel: Security Update for Microsoft .NET Framework 4.5.1 (KB2978128) - (.Microsoft Corporation.) [HKLM] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2978128
O42 - Logiciel: Security Update for Microsoft .NET Framework 4.5.1 (KB2979578v2) - (.Microsoft Corporation.) [HKLM] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2979578v2
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{D33B9EF5-3801-496A-A2D6-B7F4BE972D75}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{B145DBBB-7778-4A5D-9D2B-DA6569F02391}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{E34960DB-2A93-45DB-A208-02650F7AB09C}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596825) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{B7727B4D-5EA3-4C11-9D30-15E47616DCAF}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{293FB6BE-D3EB-4162-B522-F9108040B9FE}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{2B3C041A-A7F2-4A24-968D-4BEB6A123D15}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2597973) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{EA575F57-C5D1-4B5A-B9F9-F16EEBC6B58C}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2687439) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{3579CE34-B225-4B19-A3AF-DE5F562A212F}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2760411) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{79850906-6D2B-4061-8EAF-EAC84173DEC5}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2760415) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-006E-040C-0000-0000000FF1CE}_PROPLUS_{DCA9E555-940E-4D9F-87E9-15A672D98DB7}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2760585) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{8907F32C-DF89-4C2F-AEDE-0DB4B65451C0}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2760591) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{319FC809-3841-4739-A25F-FDBADF073697}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2817330) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{32DA925D-8B7D-4298-B893-6291D28CE809}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2827326) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{4CCE0378-386F-4DC2-9CC1-A3710C77057D}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2850022) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6B4A3804-666A-4DD8-84A7-B97701416784}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2878233) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{F7DFD2B8-0CD1-4A51-AC71-A0582FE796C2}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2880507) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{36842896-D83B-4C92-8261-6312B7DEB562}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2880508) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{4C1BE82B-9AC0-4AB9-B76D-5467131955E1}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2881069) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{FC572B0C-6356-46CC-A01E-CCCEC4340BF5}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2899526) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{E04C87CD-9677-4F89-AFBC-1D1A335D31E3}
O42 - Logiciel: Security Update for Microsoft Office Excel 2007 (KB2827324) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{686630EC-8033-4031-85C5-D8E5CD62A958}
O42 - Logiciel: Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{8F311D6C-D8DD-4C32-9457-1A129CABD1A5}
O42 - Logiciel: Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{0EF0D4FB-BB23-4515-AAEA-1240AC2DA525}
O42 - Logiciel: Security Update for Microsoft Office Publisher 2007 (KB2817565) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{F88656FB-92A1-484E-911E-D259B15CF420}
O42 - Logiciel: Security Update for Microsoft Office Word 2007 (KB2899527) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{DAC599E1-73E6-40BB-B1C0-85C2AEF6CC0B}
O42 - Logiciel: Setting Utility Series - (.Sony Corporation.) [HKLM] -- {A7DA438C-2E43-4C20-BFDA-C1F4A6208558}
O42 - Logiciel: Skype 6.11 - (.Skype Technologies S.A..) [HKLM] -- {4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}
O42 - Logiciel: Sony Home Network Library - (.Sony Corporation.) [HKLM] -- {D03D02D8-AB64-4785-A48E-5AA8B0FB8C14}
O42 - Logiciel: Stellar Phoenix Windows Data Recovery V4.1 - (.Stellar Information Systems Ltd.) [HKLM] -- Stellar Phoenix Windows Data Recovery_is1
O42 - Logiciel: Sweet Home 3D version 4.3 - (.eTeks.) [HKLM] -- Sweet Home 3D_is1
O42 - Logiciel: Update for 2007 Microsoft Office System (KB967642) - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}
O42 - Logiciel: Update for Microsoft Office 2007 (KB2508958) - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438}
O42 - Logiciel: Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{A024FC7B-77DE-45DE-A058-1C049A17BFB3}
O42 - Logiciel: Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}
O42 - Logiciel: Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-002A-0000-1000-0000000FF1CE}_PROPLUS_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}
O42 - Logiciel: Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}
O42 - Logiciel: Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-001A-040C-0000-0000000FF1CE}_PROPLUS_{B83A8864-A85D-437E-9D4C-27350765BF46}
O42 - Logiciel: Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{53DEC068-4690-4F6B-9946-7D21EF02236B}
O42 - Logiciel: Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2899525) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{B6160A7F-1EDB-4ED7-96DD-CF6F83DB347A}
O42 - Logiciel: Update for Microsoft Office PowerPoint 2007 (KB2597972) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{7B9D2746-D03B-442B-A691-90B748E316B4}
O42 - Logiciel: VAIO Care - (.Sony Corporation.) [HKLM] -- {36C5BBF0-E5BF-4DE1-B684-7E90B0C93FB5}
O42 - Logiciel: VAIO Control Center - (.Sony Corporation.) [HKLM] -- {72042FA6-5609-489F-A8EA-3C2DD650F667}
O42 - Logiciel: VAIO DVD Menu Data - (.Sony Corporation.) [HKLM] -- {596BED91-A1D8-4DF1-8CD1-1C777F7588AC}
O42 - Logiciel: VAIO Entertainment Platform - (.Sony Corporation.) [HKLM] -- {6B1F20F2-6321-4669-A58C-33DF8E7517FF}
O42 - Logiciel: VAIO Event Service - (.Sony Corporation.) [HKLM] -- {C7477742-DDB4-43E5-AC8D-0259E1E661B1}
O42 - Logiciel: VAIO Gate - (.Sony Corporation.) [HKLM] -- {A7C30414-2382-4086-B0D6-01A88ABA21C3}
O42 - Logiciel: VAIO Gate Default - (.Sony Corporation.) [HKLM] -- {B7546697-2A80-4256-A24B-1C33163F535B}
O42 - Logiciel: VAIO Manual - (.Sony Corporation.) [HKLM] -- {C6E893E7-E5EA-4CD5-917C-5443E753FCBD}
O42 - Logiciel: VAIO Media plus - (.Sony Corporation.) [HKLM] -- {8DE50158-80AA-4FF2-9E9F-0A7C46F71FCD}
O42 - Logiciel: VAIO Media plus Opening Movie - (.Sony Corporation.) [HKLM] -- {9238E8A4-BEBA-43A3-B926-769BDBF194C5}
O42 - Logiciel: VAIO Movie Story MergeModules x64 - (.Sony Corporation.) [HKLM] -- {C37B6246-7D4A-4E5C-BFB4-11C8660BDC99}
O42 - Logiciel: VAIO Movie Story Template Data - (.Sony Corporation.) [HKLM] -- InstallShield_{6FA8BA2C-052B-4072-B8E2-2302C268BE9E}
O42 - Logiciel: VAIO Movie Story Template Data - (.Sony Corporation.) [HKLM] -- {6FA8BA2C-052B-4072-B8E2-2302C268BE9E}
O42 - Logiciel: VAIO Premium Partners - (.Sony Europe.) [HKLM] -- VAIO Premium Partners
O42 - Logiciel: VAIO Smart Network - (.Sony Corporation.) [HKLM] -- {0899D75A-C2FC-42EA-A702-5B9A5F24EAD5}
O42 - Logiciel: VAIO Update 5 - (.Sony Corporation.) [HKLM] -- {5BEE8F1F-BD32-4553-8107-500439E43BD7}
O42 - Logiciel: VAIO Wallpaper Contents - (.Sony Corporation.) [HKLM] -- {D60F97EC-EF06-4E1E-B0D1-C2CBABA62FA3}
O42 - Logiciel: VAIO screensaver - (.Sony Europe.) [HKLM] -- VAIO screensaver
O42 - Logiciel: VD64Inst - (.Roxio, Inc..) [HKLM] -- {DB9C43F7-0B0F-4E43-9E6B-F945C71C469E}
O42 - Logiciel: VLC media player 2.0.8 - (.VideoLAN.) [HKLM] -- VLC media player
O42 - Logiciel: VMp MergeModule x64 - (.Default Company Name.) [HKLM] -- {5AFD1F5C-8FDA-413C-AF38-F1E7BD10D72F}
O42 - Logiciel: WIDCOMM Bluetooth Software - (.Broadcom Corporation.) [HKLM] -- {9E9D49A4-1DF4-4138-B7DB-5D87A893088E}
O42 - Logiciel: WinRAR 4.00 (32 bits) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver
O42 - Logiciel: Windows Driver Package - Broadcom Bluetooth (09/09/2009 6.2.0.9405) - (.Broadcom.) [HKLM] -- 930E4792BDAEAFB62A9514EE7578775658A5D07C
O42 - Logiciel: Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) - (.Broadcom.) [HKLM] -- 3BA80AB4C7E9F8497C115C844953A3D4BEB84D21
O42 - Logiciel: Windows Live - (.Microsoft Corporation.) [HKLM] -- WinLiveSuite
O42 - Logiciel: Windows Live - (.Microsoft Corporation.) [HKLM] -- {34319F1F-7CF2-4CC9-B357-1AE7D2FF3AC5}
O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM] -- {D45240D3-B6B3-4FF9-B243-54ECE3E10066}
O42 - Logiciel: Windows Live Family Safety - (.Microsoft Corporation.) [HKLM] -- {CEA21F20-DBF4-464C-8B81-28B8508AFDDD}
O42 - Logiciel: Windows Live Family Safety - (.Microsoft Corporation.) [HKLM] -- {E01819BD-709F-43A1-9600-6F5E4C584C37}
O42 - Logiciel: Windows Live FolderShare - (.Microsoft Corporation.) [HKLM] -- {2075CB0A-D26F-4DAA-B424-5079296B43BA}
O42 - Logiciel: Windows Live ID Sign-in Assistant - (.Microsoft Corporation.) [HKLM] -- {1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}
O42 - Logiciel: Windows Live Installer - (.Microsoft Corporation.) [HKLM] -- {0B0F231F-CE6A-483D-AA23-77B364F75917}
O42 - Logiciel: Windows Live Language Selector - (.Microsoft Corporation.) [HKLM] -- {180C8888-50F1-426B-A9DC-AB83A1989C65}
O42 - Logiciel: Windows Live MIME IFilter - (.Microsoft Corporation.) [HKLM] -- {DA54F80E-261C-41A2-A855-549A144F2F59}
O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM] -- {9D56775A-93F3-44A3-8092-840E3826DE30}
O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM] -- {9FAE6E8D-E686-49F5-A574-0A58DFD9580C}
O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {AB61A2E9-37D3-485D-9085-19FBDF8CEF4A}
O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {E5B21F11-6933-4E0B-A25C-7963E3C07D11}
O42 - Logiciel: Windows Live Messenger Companion Core - (.Microsoft Corporation.) [HKLM] -- {78A96B4C-A643-4D0F-98C2-A8E16A6669F9}
O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM] -- {6DEC8BD5-7574-47FA-B080-492BBBE2FEA3}
O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM] -- {92EA4134-10D1-418A-91E1-5A0453131A38}
O42 - Logiciel: Windows Live PIMT Platform - (.Microsoft Corporation.) [HKLM] -- {83C292B7-38A5-440B-A731-07070E81A64F}
O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM] -- {A9BDCA6B-3653-467B-AC83-94367DA3BFE3}
O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM] -- {C893D8C0-1BA0-4517-B11C-E89B65E72F70}
O42 - Logiciel: Windows Live Photo Gallery - (.Microsoft Corporation.) [HKLM] -- {3336F667-9049-4D46-98B6-4C743EEBC5B1}
O42 - Logiciel: Windows Live SOXE - (.Microsoft Corporation.) [HKLM] -- {682B3E4F-696A-42DE-A41C-4C07EA1678B4}
O42 - Logiciel: Windows Live SOXE Definitions - (.Microsoft Corporation.) [HKLM] -- {200FEC62-3C34-4D60-9CE8-EC372E01C08F}
O42 - Logiciel: Windows Live UX Platform - (.Microsoft Corporation.) [HKLM] -- {CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}
O42 - Logiciel: Windows Live UX Platform Language Pack - (.Microsoft Corporation.) [HKLM] -- {05E379CC-F626-4E7D-8354-463865B303BF}
O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM] -- {3B9A92DA-6374-4872-B646-253F18624D5F}
O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM] -- {A726AE06-AAA3-43D1-87E3-70F510314F04}
O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM] -- {AAAFC670-569B-4A2F-82B4-42945E0DE3EF}
O42 - Logiciel: Windows Live Writer Resources - (.Microsoft Corporation.) [HKLM] -- {62687B11-58B5-4A18-9BC3-9DF4CE03F194}
O42 - Logiciel: Wondershare Dr.Fone pour iOS(Build 4.1.1.5) - (.Wondershare Software Co.,Ltd..) [HKLM] -- {A26F8BBD-EC10-4bdc-8AD8-F146825A8A63}_is1
O42 - Logiciel: avast! Free Antivirus - (.AVAST Software.) [HKLM] -- avast
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM] -- {F46AA0F1-E284-4878-A462-5F11B9166C0E}
O42 - Logiciel: monAlbumPhoto - (.monAlbumPhoto.) [HKLM] -- monAlbumPhoto_is1
O42 - Logiciel: scrabbleproB 1.1.3 - (.scrabblepro.) [HKLM] -- scrabbleproB_is1

---\\ HKCU & HKLM Software Keys
[HKCU\Software\(null)]
[HKCU\Software\7-Zip]
[HKCU\Software\ATI]
[HKCU\Software\AVAST Software]
[HKCU\Software\AVS4YOU]
[HKCU\Software\AVS]
[HKCU\Software\Adobe]
[HKCU\Software\Ajcftkywu]
[HKCU\Software\Alps]
[HKCU\Software\AppDataLow\Software\Canon]
[HKCU\Software\AppDataLow\Software\Microsoft]
[HKCU\Software\AppDataLow\Software]
[HKCU\Software\AppDataLow]
[HKCU\Software\Apple Computer, Inc.]
[HKCU\Software\Apple Inc.]
[HKCU\Software\ArcSoft]
[HKCU\Software\CDDB]
[HKCU\Software\CanonBJ]
[HKCU\Software\Canon]
[HKCU\Software\CeWe Color]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\Freemake]
[HKCU\Software\Google]
[HKCU\Software\HookNetwork]
[HKCU\Software\IM Providers]
[HKCU\Software\ITOPDFD]
[HKCU\Software\IncrediMail]
[HKCU\Software\JavaSoft]
[HKCU\Software\Kernel For Word22ywwwwyyysg]
[HKCU\Software\LG Connection Manager]
[HKCU\Software\Licenses]
[HKCU\Software\MAP-DN]
[HKCU\Software\Macromedia]
[HKCU\Software\MainConcept (Adobe2)]
[HKCU\Software\MainConcept]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\Micro Application]
[HKCU\Software\Micromega Software System]
[HKCU\Software\Minnetonka Audio Software]
[HKCU\Software\Mirage]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Netscape]
[HKCU\Software\ODBC]
[HKCU\Software\OpenOffice.org]
[HKCU\Software\PDFCreator]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\Realtek]
[HKCU\Software\Recovery Toolbox for Word]
[HKCU\Software\Roxio]
[HKCU\Software\Settings]
[HKCU\Software\Skype]
[HKCU\Software\Sonic]
[HKCU\Software\Sony Corporation]
[HKCU\Software\SpecItems]
[HKCU\Software\Stellar information Systems ltd.]
[HKCU\Software\Synergy]
[HKCU\Software\TeleCharger]
[HKCU\Software\Trolltech]
[HKCU\Software\VB and VBA Program Settings]
[HKCU\Software\Widcomm]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\WinRAR]
[HKCU\Software\Wondershare]
[HKCU\Software\Wow6432Node]
[HKCU\Software\ej-technologies]
[HKCU\Software\mozilla]
[HKLM\Software\AMD]
[HKLM\Software\ATI Technologies]
[HKLM\Software\ATI]
[HKLM\Software\AVAST Software]
[HKLM\Software\AVS4YOU]
[HKLM\Software\AVS]
[HKLM\Software\Adobe]
[HKLM\Software\AdwCleaner]
[HKLM\Software\Alps]
[HKLM\Software\Apple Computer, Inc.]
[HKLM\Software\Apple Inc.]
[HKLM\Software\ArcSoft]
[HKLM\Software\Auslogics]
[HKLM\Software\CDDB]
[HKLM\Software\Canon]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\GEAR Software]
[HKLM\Software\Google]
[HKLM\Software\HPS]
[HKLM\Software\IM Providers]
[HKLM\Software\Intel]
[HKLM\Software\JavaSoft]
[HKLM\Software\JreMetrics]
[HKLM\Software\LG Electronics]
[HKLM\Software\LGE]
[HKLM\Software\MAP-DN]
[HKLM\Software\MAXSOFT-OCRON]
[HKLM\Software\Macromedia]
[HKLM\Software\Macrovision]
[HKLM\Software\Malwarebytes' Anti-Malware (Trial)]
[HKLM\Software\Malwarebytes' Anti-Malware]
[HKLM\Software\McAfee.com]
[HKLM\Software\McAfeeInstaller]
[HKLM\Software\Micro Application]
[HKLM\Software\Micromega Software System]
[HKLM\Software\Minnetonka Audio Software]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\ODBC]
[HKLM\Software\OldTimer Tools]
[HKLM\Software\OpenOffice.org]
[HKLM\Software\PDFCreator]
[HKLM\Software\Piriform]
[HKLM\Software\Policies]
[HKLM\Software\Realtek Semiconductor Corp.]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\Roxio]
[HKLM\Software\Skype]
[HKLM\Software\Sonic]
[HKLM\Software\Sony Corporation]
[HKLM\Software\Sony]
[HKLM\Software\Stellar information Systems ltd.]
[HKLM\Software\VB2S360]
[HKLM\Software\VideoLAN]
[HKLM\Software\Volatile]
[HKLM\Software\Waves Audio]
[HKLM\Software\WebSupergoo]
[HKLM\Software\Widcomm]
[HKLM\Software\WinRAR]
[HKLM\Software\Windows]
[HKLM\Software\Wondershare]
[HKLM\Software\Wow6432Node]
[HKLM\Software\ej-technologies]
[HKLM\Software\illiminable]
[HKLM\Software\mozilla.org]
~ Scan Softwares in 00mn 00s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 09/05/2011 - 18:17:16 - [3256495] ----D- C:\Program Files\Apoint
O43 - CFD: 06/12/2010 - 10:01:38 - [23117148] ----D- C:\Program Files\ATI
O43 - CFD: 16/11/2014 - 23:07:54 - [415513630] ----D- C:\Program Files\AVAST Software
O43 - CFD: 16/11/2014 - 23:07:56 - [613967] ----D- C:\Program Files\Bonjour
O43 - CFD: 22/01/2012 - 20:06:42 - [6167980] ----D- C:\Program Files\Canon
O43 - CFD: 26/08/2011 - 14:31:20 - [40847259] --H-D- C:\Program Files\CanonBJ
O43 - CFD: 25/08/2011 - 12:19:48 - [8458144] ----D- C:\Program Files\CCleaner
O43 - CFD: 21/01/2012 - 20:39:24 - [95735246] ----D- C:\Program Files\Common Files
O43 - CFD: 06/12/2010 - 10:03:30 - [1611800] ----D- C:\Program Files\DIFX
O43 - CFD: 03/05/2013 - 02:45:22 - [90256916] ----D- C:\Program Files\DVD Maker
O43 - CFD: 09/05/2011 - 18:24:06 - [0] -SH-D- C:\Program Files\Fichiers communs
O43 - CFD: 17/06/2011 - 02:27:32 - [0] ----D- C:\Program Files\Google
O43 - CFD: 18/11/2014 - 04:05:14 - [31002956] ----D- C:\Program Files\Internet Explorer
O43 - CFD: 16/11/2014 - 23:03:22 - [2324203] ----D- C:\Program Files\iPod
O43 - CFD: 16/11/2014 - 23:07:58 - [3008688] ----D- C:\Program Files\iTunes
O43 - CFD: 06/12/2010 - 10:26:24 - [79562071] ----D- C:\Program Files\Java
O43 - CFD: 14/07/2009 - 08:45:56 - [149237810] ----D- C:\Program Files\Microsoft Games
O43 - CFD: 26/05/2011 - 21:53:08 - [593814] ----D- C:\Program Files\Microsoft Office
O43 - CFD: 01/08/2014 - 21:21:26 - [55692134] ----D- C:\Program Files\Microsoft Silverlight
O43 - CFD: 06/12/2010 - 10:17:14 - [3524223] ----D- C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 06/12/2010 - 10:17:14 - [346631] ----D- C:\Program Files\Microsoft Synchronization Services
O43 - CFD: 14/07/2009 - 06:32:40 - [25757] ----D- C:\Program Files\MSBuild
O43 - CFD: 06/12/2010 - 09:57:16 - [17176736] ----D- C:\Program Files\Realtek
O43 - CFD: 14/07/2009 - 06:32:40 - [36826793] ----D- C:\Program Files\Reference Assemblies
O43 - CFD: 06/12/2010 - 10:23:30 - [145904] ----D- C:\Program Files\Roxio
O43 - CFD: 06/12/2010 - 10:40:06 - [126153402] ----D- C:\Program Files\Sony
O43 - CFD: 04/05/2014 - 13:28:04 - [117727646] ----D- C:\Program Files\Sweet Home 3D
O43 - CFD: 14/07/2009 - 06:09:28 - [0] --H-D- C:\Program Files\Uninstall Information
O43 - CFD: 06/12/2010 - 09:59:50 - [145225849] ----D- C:\Program Files\WIDCOMM
O43 - CFD: 12/07/2013 - 02:40:10 - [4039680] ----D- C:\Program Files\Windows Defender
O43 - CFD: 12/07/2014 - 02:17:30 - [9185912] ----D- C:\Program Files\Windows Journal
O43 - CFD: 27/08/2011 - 00:47:30 - [1059906] ----D- C:\Program Files\Windows Live
O43 - CFD: 03/05/2013 - 02:45:22 - [6667776] ----D- C:\Program Files\Windows Mail
O43 - CFD: 12/12/2013 - 03:24:44 - [7687085] ----D- C:\Program Files\Windows Media Player
O43 - CFD: 09/05/2011 - 18:24:06 - [12627636] ----D- C:\Program Files\Windows NT
O43 - CFD: 03/05/2013 - 02:45:22 - [5516056] ----D- C:\Program Files\Windows Photo Viewer
O43 - CFD: 03/05/2013 - 02:45:22 - [244736] ----D- C:\Program Files\Windows Portable Devices
O43 - CFD: 03/05/2013 - 02:45:22 - [7255727] ----D- C:\Program Files\Windows Sidebar
O43 - CFD: 16/11/2014 - 23:03:18 - [8228510] ----D- C:\Program Files\Common Files\Apple
O43 - CFD: 21/01/2012 - 20:39:24 - [560] ----D- C:\Program Files\Common Files\CANON
O43 - CFD: 16/11/2014 - 23:07:56 - [65734142] ----D- C:\Program Files\Common Files\Microsoft Shared
O43 - CFD: 14/07/2009 - 04:20:10 - [2702] ----D- C:\Program Files\Common Files\Services
O43 - CFD: 06/12/2010 - 10:24:40 - [8970369] ----D- C:\Program Files\Common Files\Sony Shared
O43 - CFD: 14/07/2009 - 04:20:10 - [608768] ----D- C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 03/05/2013 - 02:45:22 - [12190195] ----D- C:\Program Files\Common Files\System
O43 - CFD: 16/11/2014 - 23:07:58 - [2910509] ----D- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
O43 - CFD: 18/08/2013 - 15:36:16 - [452340444] ----D- C:\ProgramData\Adobe
O43 - CFD: 12/12/2012 - 15:30:16 - [190505001] ----D- C:\ProgramData\albumphoto
O43 - CFD: 18/08/2013 - 14:49:10 - [0] ----D- C:\ProgramData\ALM
O43 - CFD: 05/02/2014 - 20:37:30 - [398925319] ----D- C:\ProgramData\Apple
O43 - CFD: 03/11/2011 - 21:56:58 - [72714988] ----D- C:\ProgramData\Apple Computer
O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Application Data
O43 - CFD: 03/11/2011 - 21:48:30 - [14748398] ----D- C:\ProgramData\ArcSoft
O43 - CFD: 06/12/2010 - 10:42:36 - [188] ----D- C:\ProgramData\ATI
O43 - CFD: 16/11/2014 - 23:07:58 - [18537120] ----D- C:\ProgramData\AVAST Software
O43 - CFD: 05/11/2011 - 10:56:06 - [0] ----D- C:\ProgramData\AVS4YOU
O43 - CFD: 09/05/2011 - 18:24:06 - [0] -SH-D- C:\ProgramData\Bureau
O43 - CFD: 21/01/2012 - 22:24:18 - [0] ----D- C:\ProgramData\Canon IJ Network Tool
O43 - CFD: 09/05/2011 - 18:41:52 - [41206108] --H-D- C:\ProgramData\CanonBJ
O43 - CFD: 26/08/2011 - 15:23:36 - [0] --H-D- C:\ProgramData\CanonEPP
O43 - CFD: 22/01/2012 - 19:45:26 - [123] --H-D- C:\ProgramData\CanonIJEGV
O43 - CFD: 26/08/2011 - 15:23:36 - [0] --H-D- C:\ProgramData\CanonIJEPPEX2
O43 - CFD: 21/01/2012 - 20:44:16 - [2675] ----D- C:\ProgramData\CanonIJMSetup
O43 - CFD: 22/01/2012 - 20:29:32 - [116] --H-D- C:\ProgramData\CanonIJMyPrinter
O43 - CFD: 30/01/2012 - 23:15:12 - [2542] --H-D- C:\ProgramData\CanonIJScan
O43 - CFD: 21/01/2012 - 22:14:36 - [1788] --H-D- C:\ProgramData\CanonIJSolutionMenuEX
O43 - CFD: 21/01/2012 - 20:39:16 - [67887] ----D- C:\ProgramData\CanonIJWSpt
O43 - CFD: 23/09/2012 - 14:01:22 - [96] --H-D- C:\ProgramData\Common Files
O43 - CFD: 19/04/2012 - 21:21:56 - [370086] ----D- C:\ProgramData\CrypKey
O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Documents
O43 - CFD: 16/11/2014 - 23:07:22 - [4842] ----D- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
O43 - CFD: 02/05/2012 - 12:12:22 - [0] ----D- C:\ProgramData\eMule
O43 - CFD: 06/12/2010 - 10:10:00 - [111994] ----D- C:\ProgramData\Evernote
O43 - CFD: 09/05/2011 - 18:24:06 - [0] -SH-D- C:\ProgramData\Favoris
O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Favorites
O43 - CFD: 16/11/2014 - 23:07:58 - [78006] ----D- C:\ProgramData\FLEXnet
O43 - CFD: 30/07/2013 - 18:10:38 - [369704] ----D- C:\ProgramData\hps
O43 - CFD: 16/11/2014 - 22:40:30 - [0] ----D- C:\ProgramData\IePluginServices
O43 - CFD: 25/08/2014 - 20:35:14 - [124] ----D- C:\ProgramData\Licenses
O43 - CFD: 27/10/2014 - 11:47:50 - [47885880] ----D- C:\ProgramData\Malwarebytes
O43 - CFD: 03/07/2011 - 02:18:14 - [6246] ----D- C:\ProgramData\McAfee
O43 - CFD: 09/05/2011 - 18:24:06 - [0] -SH-D- C:\ProgramData\Menu Démarrer
O43 - CFD: 28/02/2014 - 03:06:36 - [1577935020] -S--D- C:\ProgramData\Microsoft
O43 - CFD: 18/11/2014 - 03:48:30 - [65262] ----D- C:\ProgramData\Microsoft Help
O43 - CFD: 09/05/2011 - 18:24:06 - [0] -SH-D- C:\ProgramData\Modèles
O43 - CFD: 27/10/2014 - 11:55:56 - [7000] ----D- C:\ProgramData\Mozilla
O43 - CFD: 06/12/2010 - 10:17:18 - [3692027] ----D- C:\ProgramData\MusicStation
O43 - CFD: 05/07/2011 - 14:28:54 - [0] ----D- C:\ProgramData\Roxio
O43 - CFD: 06/03/2014 - 03:02:22 - [69022263] ----D- C:\ProgramData\Skype
O43 - CFD: 06/12/2010 - 10:23:18 - [662] ----D- C:\ProgramData\Sonic
O43 - CFD: 17/11/2014 - 21:33:30 - [1322656746] ----D- C:\ProgramData\Sony Corporation
O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Start Menu
O43 - CFD: 06/12/2010 - 10:26:20 - [119] ----D- C:\ProgramData\Sun
O43 - CFD: 16/11/2014 - 23:08:00 - [609] ----D- C:\ProgramData\Symantec
O43 - CFD: 25/08/2014 - 20:35:12 - [4] ----D- C:\ProgramData\TEMP
O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Templates
O43 - CFD: 30/07/2013 - 18:10:40 - [108245] ----D- C:\ProgramData\tmp
O43 - CFD: 14/05/2011 - 16:43:24 - [0] ----D- C:\ProgramData\UAB
O43 - CFD: 06/12/2010 - 10:23:26 - [6556808] ----D- C:\ProgramData\Uninstall
O43 - CFD: 01/08/2011 - 12:29:32 - [50] ----D- C:\ProgramData\WinZip
O43 - CFD: 26/04/2014 - 14:22:32 - [23956681] ----D- C:\ProgramData\Wondershare
O43 - CFD: 03/11/2011 - 21:58:12 - [1942] ----D- C:\ProgramData\{93E26451-CD9A-43A5-A2FA-C42392EA4001}
O43 - CFD: 18/08/2013 - 15:41:42 - [19619471] ----D- C:\Users\Amenophys\AppData\Roaming\Adobe
O43 - CFD: 13/11/2014 - 22:00:24 - [144] ----D- C:\Users\Amenophys\AppData\Roaming\AdvancedSystemProtector
O43 - CFD: 13/11/2014 - 21:49:18 - [2937508] -SH-D- C:\Users\Amenophys\AppData\Roaming\AnyProtectEx
O43 - CFD: 04/01/2012 - 18:50:48 - [5394241662] ----D- C:\Users\Amenophys\AppData\Roaming\Apple Computer
O43 - CFD: 16/05/2011 - 21:22:28 - [2918] ----D- C:\Users\Amenophys\AppData\Roaming\ArcSoft
O43 - CFD: 09/05/2011 - 18:28:48 - [0] ----D- C:\Users\Amenophys\AppData\Roaming\ATI
O43 - CFD: 24/01/2012 - 22:02:12 - [1051994607] ----D- C:\Users\Amenophys\AppData\Roaming\Auslogics
O43 - CFD: 17/11/2014 - 07:15:50 - [0] ----D- C:\Users\Amenophys\AppData\Roaming\AVAST Software
O43 - CFD: 05/11/2011 - 10:56:08 - [0] ----D- C:\Users\Amenophys\AppData\Roaming\AVS4YOU
O43 - CFD: 25/08/2014 - 20:35:26 - [23] ----D- C:\Users\Amenophys\AppData\Roaming\BlueLabelSoft
O43 - CFD: 05/07/2014 - 10:12:24 - [1495171669] ----D- C:\Users\Amenophys\AppData\Roaming\Canon
O43 - CFD: 29/04/2012 - 21:22:20 - [645] ----D- C:\Users\Amenophys\AppData\Roaming\CasaPortale.de
O43 - CFD: 04/05/2014 - 15:27:34 - [8056] ----D- C:\Users\Amenophys\AppData\Roaming\eTeks
O43 - CFD: 25/08/2014 - 20:50:06 - [297] ----D- C:\Users\Amenophys\AppData\Roaming\Free-PDF-to-Word.com
O43 - CFD: 06/11/2011 - 21:36:50 - [1186] ----D- C:\Users\Amenophys\AppData\Roaming\FreeVideoConverter
O43 - CFD: 25/10/2011 - 12:14:50 - [45] ----D- C:\Users\Amenophys\AppData\Roaming\Identities
O43 - CFD: 02/08/2014 - 12:28:04 - [26603] ----D- C:\Users\Amenophys\AppData\Roaming\inkscape
O43 - CFD: 21/08/2012 - 17:11:32 - [230] ----D- C:\Users\Amenophys\AppData\Roaming\LG Connection Manager
O43 - CFD: 09/05/2011 - 18:35:12 - [801] ----D- C:\Users\Amenophys\AppData\Roaming\Macromedia
O43 - CFD: 16/11/2014 - 22:11:42 - [0] ----D- C:\Users\Amenophys\AppData\Roaming\Malwarebytes
O43 - CFD: 14/07/2009 - 08:44:40 - [0] ----D- C:\Users\Amenophys\AppData\Roaming\Media Center Programs
O43 - CFD: 17/11/2014 - 21:36:16 - [98201420] -S--D- C:\Users\Amenophys\AppData\Roaming\Microsoft
O43 - CFD: 17/11/2014 - 19:24:00 - [18916205] ----D- C:\Users\Amenophys\AppData\Roaming\Mozilla
O43 - CFD: 12/02/2012 - 11:44:32 - [0] ----D- C:\Users\Amenophys\AppData\Roaming\MPC
O43 - CFD: 09/05/2011 - 21:06:22 - [13347627] ----D- C:\Users\Amenophys\AppData\Roaming\OpenOffice.org
O43 - CFD: 26/10/2011 - 10:07:22 - [3322] ----D- C:\Users\Amenophys\AppData\Roaming\PhotoFiltre Studio X
O43 - CFD: 05/07/2011 - 00:07:20 - [9728] ----D- C:\Users\Amenophys\AppData\Roaming\Roxio
O43 - CFD: 18/09/2012 - 20:16:18 - [842405] ----D- C:\Users\Amenophys\AppData\Roaming\Skype
O43 - CFD: 18/05/2011 - 21:24:42 - [157159] ----D- C:\Users\Amenophys\AppData\Roaming\Sony Corporation
O43 - CFD: 13/11/2014 - 22:10:08 - [0] ----D- C:\Users\Amenophys\AppData\Roaming\systweak
O43 - CFD: 16/11/2014 - 23:08:00 - [339402] ----D- C:\Users\Amenophys\AppData\Roaming\vlc
O43 - CFD: 20/05/2011 - 22:18:30 - [0] ----D- C:\Users\Amenophys\AppData\Roaming\Windows Live Writer
O43 - CFD: 09/05/2011 - 21:03:14 - [12] ----D- C:\Users\Amenophys\AppData\Roaming\WinRAR
O43 - CFD: 02/11/2014 - 11:53:12 - [60766] ----D- C:\Users\Amenophys\AppData\Roaming\ZHP
O43 - CFD: 29/10/2014 - 20:50:24 - [627747] ----D- C:\Users\Amenophys\AppData\Local\Adobe
O43 - CFD: 03/11/2011 - 21:56:12 - [0] ----D- C:\Users\Amenophys\AppData\Local\Apple
O43 - CFD: 03/11/2011 - 21:58:24 - [123535450] ----D- C:\Users\Amenophys\AppData\Local\Apple Computer
O43 - CFD: 09/05/2011 - 18:24:32 - [0] -SH-D- C:\Users\Amenophys\AppData\Local\Application Data
O43 - CFD: 16/05/2011 - 21:22:28 - [891] ----D- C:\Users\Amenophys\AppData\Local\ArcSoft
O43 - CFD: 09/05/2011 - 18:28:48 - [86942] ----D- C:\Users\Amenophys\AppData\Local\ATI
O43 - CFD: 01/05/2012 - 20:10:10 - [4668929] ----D- C:\Users\Amenophys\AppData\Local\Cimaware
O43 - CFD: 01/11/2014 - 18:03:28 - [16947495] ----D- C:\Users\Amenophys\AppData\Local\Diagnostics
O43 - CFD: 22/06/2011 - 22:38:04 - [0] ----D- C:\Users\Amenophys\AppData\Local\ElevatedDiagnostics
O43 - CFD: 16/11/2014 - 21:22:24 - [0] -SH-D- C:\Users\Amenophys\AppData\Local\EmieBrowserModeList
O43 - CFD: 25/10/2014 - 21:14:16 - [0] -SH-D- C:\Users\Amenophys\AppData\Local\EmieSiteList
O43 - CFD: 25/10/2014 - 21:14:16 - [0] -SH-D- C:\Users\Amenophys\AppData\Local\EmieUserList
O43 - CFD: 02/05/2012 - 11:52:34 - [8077] ----D- C:\Users\Amenophys\AppData\Local\eMule
O43 - CFD: 13/11/2014 - 21:47:06 - [0] ----D- C:\Users\Amenophys\AppData\Local\globalUpdate
O43 - CFD: 16/11/2014 - 23:03:46 - [222437991] ----D- C:\Users\Amenophys\AppData\Local\Google
O43 - CFD: 09/05/2011 - 18:24:32 - [0] -SH-D- C:\Users\Amenophys\AppData\Local\Historique
O43 - CFD: 27/10/2014 - 11:56:50 - [0] ----D- C:\Users\Amenophys\AppData\Local\Macromedia
O43 - CFD: 16/11/2014 - 23:03:48 - [1248382880] ----D- C:\Users\Amenophys\AppData\Local\Microsoft
O43 - CFD: 01/08/2011 - 15:32:46 - [82714] ----D- C:\Users\Amenophys\AppData\Local\Microsoft Games
O43 - CFD: 25/08/2014 - 21:49:28 - [203852] ----D- C:\Users\Amenophys\AppData\Local\Microsoft Help
O43 - CFD: 27/10/2014 - 11:56:22 - [149983764] ----D- C:\Users\Amenophys\AppData\Local\Mozilla
O43 - CFD: 13/03/2013 - 10:24:36 - [118907] ----D- C:\Users\Amenophys\AppData\Local\mypaint
O43 - CFD: 16/11/2014 - 23:08:00 - [3156] ----D- C:\Users\Amenophys\AppData\Local\PC_Drivers_Headquarters
O43 - CFD: 26/07/2013 - 13:34:08 - [0] ----D- C:\Users\Amenophys\AppData\Local\Programs
O43 - CFD: 13/11/2014 - 21:45:26 - [0] ----D- C:\Users\Amenophys\AppData\Local\Software
O43 - CFD: 20/11/2014 - 23:04:10 - [42806452] ----D- C:\Users\Amenophys\AppData\Local\Temp
O43 - CFD: 09/05/2011 - 18:24:32 - [0] -SH-D- C:\Users\Amenophys\AppData\Local\Temporary Internet Files
O43 - CFD: 23/08/2011 - 11:52:16 - [592161776] ----D- C:\Users\Amenophys\AppData\Local\VirtualStore
O43 - CFD: 27/10/2014 - 11:53:06 - [232118358] ----D- C:\Users\Amenophys\AppData\Local\Windows Live
O43 - CFD: 20/05/2011 - 22:18:38 - [648363] ----D- C:\Users\Amenophys\AppData\Local\Windows Live Writer
O43 - CFD: 26/04/2014 - 14:22:58 - [0] ----D- C:\Users\Amenophys\AppData\Local\Wondershare
O43 - CFD: 16/11/2014 - 19:59:32 - [0] ----D- C:\Users\Amenophys\AppData\Local\{08B1AFEE-4116-409F-92F3-EE4E57FFC0F2}
O43 - CFD: 12/11/2014 - 17:29:26 - [0] ----D- C:\Users\Amenophys\AppData\Local\{0AEB6C3B-74B6-42D0-B2E9-542883CD0EC0}
O43 - CFD: 01/01/2010 - 00:01:40 - [0] ----D- C:\Users\Amenophys\AppData\Local\{17FCCC9E-013C-407A-999E-048EF45C4033}
O43 - CFD: 17/11/2014 - 07:15:30 - [0] ----D- C:\Users\Amenophys\AppData\Local\{19DF65E8-E325-4715-BD85-40D5BE372FA3}
O43 - CFD: 14/11/2014 - 17:34:44 - [0] ----D- C:\Users\Amenophys\AppData\Local\{1EDB159B-B174-490B-968E-1535DE23F380}
O43 - CFD: 11/11/2014 - 14:07:38 - [0] ----D- C:\Users\Amenophys\AppData\Local\{2214575C-0E56-45D7-B219-ED23221A7D36}
O43 - CFD: 19/11/2014 - 21:55:40 - [0] ----D- C:\Users\Amenophys\AppData\Local\{2B5C3ABB-5153-44DD-8030-D20E44157E9F}
O43 - CFD: 12/11/2014 - 18:09:50 - [0] ----D- C:\Users\Amenophys\AppData\Local\{3342D877-2E00-4A3D-B387-704210746B19}
O43 - CFD: 05/11/2014 - 18:23:16 - [0] ----D- C:\Users\Amenophys\AppData\Local\{33BA50DE-EB7C-4DC6-8934-FCFCC53853CE}
O43 - CFD: 16/11/2014 - 21:49:18 - [0] ----D- C:\Users\Amenophys\AppData\Local\{33BC8AD3-A279-48C7-924E-2CD1DC67D91B}
O43 - CFD: 16/11/2014 - 22:45:40 - [0] ----D- C:\Users\Amenophys\AppData\Local\{33F60C29-A913-463D-991F-EEB72A4DF80D}
O43 - CFD: 02/11/2014 - 12:52:32 - [0] ----D- C:\Users\Amenophys\AppData\Local\{365CA6B4-751A-49DE-ADFE-FFBE50A67F20}
O43 - CFD: 20/11/2014 - 16:01:42 - [0] ----D- C:\Users\Amenophys\AppData\Local\{3A500A86-BC64-41A0-A046-303421FD566E}
O43 - CFD: 18/11/2014 - 19:43:58 - [0] ----D- C:\Users\Amenophys\AppData\Local\{4CD5B547-CEE0-43F6-9C01-868A9EDF7809}
O43 - CFD: 12/11/2014 - 17:21:58 - [0] ----D- C:\Users\Amenophys\AppData\Local\{57C19CA3-3D2F-4E53-858D-8083C7B86431}
O43 - CFD: 14/11/2014 - 17:22:22 - [0] ----D- C:\Users\Amenophys\AppData\Local\{671FDDB2-7BB7-454A-BE76-C3D5647724BA}
O43 - CFD: 02/11/2014 - 12:38:10 - [0] ----D- C:\Users\Amenophys\AppData\Local\{6CE241EC-5E81-4D1D-BC9F-528BAF595134}
O43 - CFD: 16/11/2014 - 20:15:06 - [0] ----D- C:\Users\Amenophys\AppData\Local\{6EAF41C1-22C9-4236-B23A-98A62D683979}
O43 - CFD: 18/11/2014 - 18:26:50 - [0] ----D- C:\Users\Amenophys\AppData\Local\{76CD35AA-391B-43BA-BDF8-70C8E3DA9FE8}
O43 - CFD: 08/11/2014 - 17:28:24 - [0] ----D- C:\Users\Amenophys\AppData\Local\{7C43B4AC-D807-4326-9D8F-F4B0B5F39C26}
O43 - CFD: 09/11/2014 - 21:21:54 - [0] ----D- C:\Users\Amenophys\AppData\Local\{7F251312-2BF3-4013-AB4D-2BBE1B90D7B8}
O43 - CFD: 13/11/2014 - 21:02:46 - [0] ----D- C:\Users\Amenophys\AppData\Local\{8FF8BAA2-7845-4C2E-B531-DEECAFF251A3}
O43 - CFD: 20/11/2014 - 21:17:26 - [0] ----D- C:\Users\Amenophys\AppData\Local\{90F72969-8098-494E-82C3-4733817F52F5}
O43 - CFD: 18/11/2014 - 19:25:38 - [0] ----D- C:\Users\Amenophys\AppData\Local\{94C2B73F-22A5-4CDC-A1CF-F8D8FBE18E9A}
O43 - CFD: 20/11/2014 - 20:50:44 - [0] ----D- C:\Users\Amenophys\AppData\Local\{980CF0FD-CBE5-463D-BBB1-C035A9C25F23}
O43 - CFD: 16/11/2014 - 22:01:02 - [0] ----D- C:\Users\Amenophys\AppData\Local\{9C61574F-F76B-4FD6-8F4C-69D7FE25520A}
O43 - CFD: 19/11/2014 - 21:47:44 - [0] ----D- C:\Users\Amenophys\AppData\Local\{A347A68B-DA3F-4131-8BC6-3C69CDEDEE14}
O43 - CFD: 13/11/2014 - 22:47:42 - [0] ----D- C:\Users\Amenophys\AppData\Local\{A41329D2-E778-4628-B331-6A1258E043A0}
O43 - CFD: 11/11/2014 - 21:18:28 - [0] ----D- C:\Users\Amenophys\AppData\Local\{BBE14EEE-3142-4C7F-BE1C-144229100303}
O43 - CFD: 17/11/2014 - 21:08:42 - [0] ----D- C:\Users\Amenophys\AppData\Local\{F7A08115-1871-4743-AD6D-0EDBD1B2D9AB}
O43 - CFD: 02/11/2014 - 20:12:44 - [0] ----D- C:\Users\Amenophys\AppData\Local\{F8BECDB3-53B2-43D0-AE2C-41FC1D15A0DD}
O43 - CFD: 20/11/2014 - 22:24:34 - [0] ----D- C:\Users\Amenophys\AppData\Local\{FC72A7B6-036B-41DA-849A-F8251BF84087}
O43 - CFD: 01/08/2011 - 12:28:40 - [3071471] ----D- C:\Program Files (x86)\7-Zip
O43 - CFD: 29/10/2014 - 22:41:06 - [5436208629] ----D- C:\Program Files (x86)\Adobe
O43 - CFD: 06/12/2010 - 10:03:28 - [80942] ----D- C:\Program Files (x86)\AMD
O43 - CFD: 03/11/2011 - 21:56:10 - [2428606] ----D- C:\Program Files (x86)\Apple Software Update
O43 - CFD: 06/12/2010 - 10:33:02 - [117282731] ----D- C:\Program Files (x86)\ArcSoft
O43 - CFD: 06/12/2010 - 10:02:50 - [90029644] ----D- C:\Program Files (x86)\ATI Technologies
O43 - CFD: 06/11/2011 - 22:58:44 - [2655233] ----D- C:\Program Files (x86)\AviSynth 2.5
O43 - CFD: 06/11/2011 - 22:24:44 - [0] ----D- C:\Program Files (x86)\AVS4YOU
O43 - CFD: 25/08/2014 - 20:34:54 - [35104273] ----D- C:\Program Files (x86)\Blue Label Soft
O43 - CFD: 03/11/2011 - 21:55:30 - [631113] ----D- C:\Program Files (x86)\Bonjour
O43 - CFD: 27/08/2013 - 19:59:06 - [191965292] ----D- C:\Program Files (x86)\BookSmart
O43 - CFD: 22/01/2012 - 20:30:34 - [374259044] ----D- C:\Program Files (x86)\Canon
O43 - CFD: 27/10/2014 - 10:46:18 - [2076476896] ----D- C:\Program Files (x86)\Common Files
O43 - CFD: 26/04/2014 - 14:22:42 - [4161024] --H-D- C:\Program Files (x86)\Dr.Fone_Temp
O43 - CFD: 18/05/2011 - 21:30:18 - [1181183] ----D- C:\Program Files (x86)\EasyScan
O43 - CFD: 02/05/2012 - 12:12:22 - [5873664] ----D- C:\Program Files (x86)\eMule
O43 - CFD: 06/12/2010 - 10:10:04 - [80315224] ----D- C:\Program Files (x86)\Evernote
O43 - CFD: 25/08/2014 - 20:50:04 - [1539902] ----D- C:\Program Files (x86)\Free PDF to Word Converter
O43 - CFD: 07/11/2011 - 21:09:16 - [33780508] ----D- C:\Program Files (x86)\Freemake
O43 - CFD: 16/11/2014 - 22:40:32 - [0] ----D- C:\Program Files (x86)\globalUpdate
O43 - CFD: 16/11/2014 - 22:40:32 - [0] ----D- C:\Program Files (x86)\Google
O43 - CFD: 01/08/2013 - 22:12:20 - [786432] ----D- C:\Program Files (x86)\Imbue Software
O43 - CFD: 21/08/2012 - 17:10:58 - [175992241] --H-D- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 18/11/2014 - 04:05:12 - [10460771] ----D- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 16/11/2014 - 23:09:46 - [205511902] ----D- C:\Program Files (x86)\iTunes
O43 - CFD: 09/05/2011 - 20:59:06 - [90682374] ----D- C:\Program Files (x86)\Java
O43 - CFD: 02/05/2012 - 12:12:34 - [5813248] ----D- C:\Program Files (x86)\Kernel for Word Evaluation Ver
O43 - CFD: 21/08/2012 - 17:10:26 - [9682853] ----D- C:\Program Files (x86)\LG Connection Manager
O43 - CFD: 21/08/2012 - 17:10:58 - [761778] ----D- C:\Program Files (x86)\LG Electronics
O43 - CFD: 30/07/2013 - 18:47:16 - [0] ----D- C:\Program Files (x86)\Lidl-Photos
O43 - CFD: 16/11/2014 - 23:07:54 - [50167256] ----D- C:\Program Files (x86)\Malwarebytes Anti-Malware
O43 - CFD: 16/11/2014 - 22:40:32 - [1702514] ----D- C:\Program Files (x86)\Malwarebytes' Anti-Malware
O43 - CFD: 03/07/2011 - 02:18:14 - [0] ----D- C:\Program Files (x86)\McAfee
O43 - CFD: 29/10/2014 - 22:41:04 - [0] ----D- C:\Program Files (x86)\McAfee Security Scan
O43 - CFD: 16/11/2014 - 23:02:12 - [586431750] ----D- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 01/08/2014 - 21:21:24 - [42864998] ----D- C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 06/12/2010 - 10:38:46 - [4192884] ----D- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 06/12/2010 - 10:17:10 - [346631] ----D- C:\Program Files (x86)\Microsoft Synchronization Services
O43 - CFD: 26/05/2011 - 21:56:06 - [14904] ----D- C:\Program Files (x86)\Microsoft Visual Studio
O43 - CFD: 26/05/2011 - 21:53:00 - [1387249] ----D- C:\Program Files (x86)\Microsoft Visual Studio 8
O43 - CFD: 02/06/2011 - 11:22:42 - [3726168] ----D- C:\Program Files (x86)\Microsoft Works
O43 - CFD: 26/05/2011 - 21:55:26 - [8175999] ----D- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 09/12/2012 - 14:28:16 - [92303384] ----D- C:\Program Files (x86)\monAlbumPhoto
O43 - CFD: 18/11/2014 - 19:36:34 - [82099162] ----D- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 18/11/2014 - 19:40:56 - [104859] ----D- C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 26/05/2011 - 21:56:26 - [26521] ----D- C:\Program Files (x86)\MSBuild
O43 - CFD: 18/05/2011 - 02:01:44 - [0] ----D- C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 06/12/2010 - 10:17:18 - [15452299] ----D- C:\Program Files (x86)\MusicStation
O43 - CFD: 13/03/2013 - 10:21:16 - [31430719] ----D- C:\Program Files (x86)\MyPaint
O43 - CFD: 11/07/2013 - 21:59:50 - [302800250] ----D- C:\Program Files (x86)\OpenOffice.org 3
O43 - CFD: 23/09/2012 - 14:05:04 - [34321505] ----D- C:\Program Files (x86)\PDFCreator
O43 - CFD: 25/10/2011 - 12:14:46 - [14721775] ----D- C:\Program Files (x86)\PhotoFiltre Studio X
O43 - CFD: 29/04/2012 - 21:22:20 - [1231640] ----D- C:\Program Files (x86)\PosteRazor
O43 - CFD: 13/11/2014 - 22:12:34 - [0] ----D- C:\Program Files (x86)\predm
O43 - CFD: 18/08/2013 - 14:32:28 - [2462720] ----D- C:\Program Files (x86)\QuickTime
O43 - CFD: 06/12/2010 - 10:03:04 - [15329803] ----D- C:\Program Files (x86)\Realtek
O43 - CFD: 18/04/2012 - 22:52:46 - [2113899] ----D- C:\Program Files (x86)\Recovery Toolbox for Word
O43 - CFD: 14/07/2009 - 06:32:40 - [39171329] ----D- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 06/12/2010 - 10:23:08 - [6936228] ----D- C:\Program Files (x86)\Roxio
O43 - CFD: 21/04/2013 - 17:33:32 - [3355965] ----D- C:\Program Files (x86)\scrabbleproB1.1
O43 - CFD: 06/03/2014 - 03:02:04 - [20883488] R---D- C:\Program Files (x86)\Skype
O43 - CFD: 13/11/2014 - 21:45:26 - [92186] ----D- C:\Program Files (x86)\Software
O43 - CFD: 01/05/2012 - 20:53:04 - [729371761] ----D- C:\Program Files (x86)\Sony
O43 - CFD: 06/12/2010 - 10:32:56 - [11727811] ----D- C:\Program Files (x86)\Sony Corporation
O43 - CFD: 19/04/2012 - 21:26:02 - [16113280] ----D- C:\Program Files (x86)\Stellar Phoenix Windows Data Recovery
O43 - CFD: 06/12/2010 - 10:17:36 - [2152080] ----D- C:\Program Files (x86)\Symantec
O43 - CFD: 06/12/2010 - 09:57:48 - [0] --H-D- C:\Program Files (x86)\Temp
O43 - CFD: 14/07/2009 - 05:57:08 - [0] --H-D- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 06/12/2010 - 10:23:38 - [130292705] ----D- C:\Program Files (x86)\VAIO screensavers
O43 - CFD: 20/08/2011 - 17:51:56 - [107140799] ----D- C:\Program Files (x86)\VideoLAN
O43 - CFD: 26/07/2013 - 13:35:40 - [109056] ----D- C:\Program Files (x86)\vp5eTrial
O43 - CFD: 12/07/2013 - 02:40:10 - [524800] ----D- C:\Program Files (x86)\Windows Defender
O43 - CFD: 27/08/2011 - 00:48:40 - [159267151] ----D- C:\Program Files (x86)\Windows Live
O43 - CFD: 03/05/2013 - 02:45:24 - [6181376] ----D- C:\Program Files (x86)\Windows Mail
O43 - CFD: 12/12/2013 - 03:24:44 - [5024017] ----D- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 14/07/2009 - 06:32:40 - [12197556] ----D- C:\Program Files (x86)\Windows NT
O43 - CFD: 03/05/2013 - 02:45:24 - [4417800] ----D- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 03/05/2013 - 02:45:24 - [189952] ----D- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 03/05/2013 - 02:45:24 - [5994626] ----D- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 09/05/2011 - 21:02:38 - [4055847] ----D- C:\Program Files (x86)\WinRAR
O43 - CFD: 16/11/2014 - 23:07:54 - [55980932] ----D- C:\Program Files (x86)\Wondershare
O43 - CFD: 20/11/2014 - 23:03:52 - [5896345] ----D- C:\Program Files (x86)\ZHPDiag
O43 - CFD: 29/10/2014 - 22:41:06 - [1223608164] ----D- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 16/11/2014 - 23:01:48 - [129124856] ----D- C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 06/12/2010 - 10:10:46 - [13059229] ----D- C:\Program Files (x86)\Common Files\ArcSoft
O43 - CFD: 06/11/2011 - 22:24:46 - [6082090] ----D- C:\Program Files (x86)\Common Files\AVSMedia
O43 - CFD: 18/08/2013 - 14:51:44 - [270336] ----D- C:\Program Files (x86)\Common Files\Control Panels
O43 - CFD: 14/05/2014 - 02:17:32 - [745624] ----D- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 06/12/2010 - 10:10:44 - [3261625] ----D- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 09/05/2011 - 20:59:30 - [1243079] ----D- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 18/08/2013 - 13:33:22 - [655183] ----D- C:\Program Files (x86)\Common Files\Macrovision Shared
O43 - CFD: 03/08/2011 - 02:13:16 - [329728] ----D- C:\Program Files (x86)\Common Files\Micro Application Shared
O43 - CFD: 16/11/2014 - 23:07:52 - [239304757] ----D- C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 06/12/2010 - 10:23:10 - [4805920] ----D- C:\Program Files (x86)\Common Files\PX Storage Engine
O43 - CFD: 06/12/2010 - 10:23:10 - [42453434] ----D- C:\Program Files (x86)\Common Files\Roxio Shared
O43 - CFD: 14/07/2009 - 04:20:10 - [2702] ----D- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 06/03/2014 - 03:02:04 - [1996392] ----D- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 06/12/2010 - 10:23:10 - [1460267] ----D- C:\Program Files (x86)\Common Files\Sonic Shared
O43 - CFD: 06/12/2010 - 10:28:56 - [64247644] ----D- C:\Program Files (x86)\Common Files\Sony Shared
O43 - CFD: 14/07/2009 - 04:20:10 - [41103783] ----D- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 03/05/2013 - 02:45:24 - [44306127] ----D- C:\Program Files (x86)\Common Files\System
O43 - CFD: 06/12/2010 - 10:33:54 - [251443397] ----D- C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 26/04/2014 - 14:22:56 - [6972559] ----D- C:\Program Files (x86)\Common Files\Wondershare
~ Scan Program Folder in 01mn 46s



---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.6C5A37CF61891571081F52170368199A] - 20/11/2014 - 22:37:15 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1647113]
O44 - LFC:[MD5.26C43960C99EE861A5D0EDC4DCF3B1C3] - 20/11/2014 - 22:34:14 RSHAD . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752]
O44 - LFC:[MD5.A2B63A8F73D07BDE96F95652E8223F7C] - 20/11/2014 - 22:22:22 ---A- . (...) -- C:\Windows\error.log [1364]
O44 - LFC:[MD5.F35695256E326493AAF877F2EDF19514] - 20/11/2014 - 22:22:09 ---A- . (...) -- C:\Windows\setupact.log [616]
O44 - LFC:[MD5.FAB6664B05C1BB4748A4AD0CDE9CC4EE] - 20/11/2014 - 22:22:05 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.9DF33D229B0D86CA590823D14A0AC290] - 20/11/2014 - 22:21:56 ---A- . (...) -- C:\Windows\errord.log [308]
O44 - LFC:[MD5.FAD826F38571AC594D371822420D0202] - 20/11/2014 - 21:37:01 ---A- . (...) -- C:\PhysicalDisk0_MBR.bin [512]
O44 - LFC:[MD5.3F4F991818F732F2EF0D6370DB7CB935] - 18/11/2014 - 04:10:05 ---A- . (...) -- C:\Windows\SysNative\FNTCACHE.DAT [2449664]
O44 - LFC:[MD5.3F4F991818F732F2EF0D6370DB7CB935] - 18/11/2014 - 04:10:05 RSHAD . (...) -- C:\Windows\system32\FNTCACHE.DAT [2449664]
O44 - LFC:[MD5.19CB401C3F0BA8B0B4205DD19BAD6531] - 17/11/2014 - 22:44:30 ---A- . (...) -- C:\test.xml [40925]
O44 - LFC:[MD5.0DEDC041DF594AEC2C3BD00417CFAF60] - 17/11/2014 - 21:39:30 RSHAD . (.AVAST Software - avast! self protection module.) -- C:\Windows\system32\drivers\aswsp.sys [427360]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 17/11/2014 - 21:06:10 ---A- . (...) -- C:\Windows\setuperr.log [0]
O44 - LFC:[MD5.D2FFD598067A57AB0DF1F5F04E07A88C] - 17/11/2014 - 21:04:36 ---A- . (...) -- C:\Windows\PFRO.log [7372]
O44 - LFC:[MD5.976D014C3B05A5216F2ABF779BA79C18] - 17/11/2014 - 19:23:15 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [139416]
O44 - LFC:[MD5.3DD7AEDB54A92A01CD36AD9F21C844AC] - 17/11/2014 - 19:23:15 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [169922]
O44 - LFC:[MD5.60CA172FCF36ECB10E3D74A351D1D751] - 17/11/2014 - 19:23:15 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [672312]
O44 - LFC:[MD5.91BC0755354C8856032A3A8AB1CAC097] - 17/11/2014 - 19:23:15 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [805942]
O44 - LFC:[MD5.976D014C3B05A5216F2ABF779BA79C18] - 17/11/2014 - 19:23:15 RSHAD . (...) -- C:\Windows\system32\perfc009.dat [139416]
O44 - LFC:[MD5.3DD7AEDB54A92A01CD36AD9F21C844AC] - 17/11/2014 - 19:23:15 RSHAD . (...) -- C:\Windows\system32\perfc00C.dat [169922]
O44 - LFC:[MD5.60CA172FCF36ECB10E3D74A351D1D751] - 17/11/2014 - 19:23:15 RSHAD . (...) -- C:\Windows\system32\perfh009.dat [672312]
O44 - LFC:[MD5.91BC0755354C8856032A3A8AB1CAC097] - 17/11/2014 - 19:23:15 RSHAD . (...) -- C:\Windows\system32\perfh00C.dat [805942]
O44 - LFC:[MD5.F524DD04E163B75EBA05805D7E9AB311] - 17/11/2014 - 19:23:14 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [6256]
O44 - LFC:[MD5.F524DD04E163B75EBA05805D7E9AB311] - 17/11/2014 - 19:23:14 ---A- . (...) -- C:\Windows\system32\PerfStringBackup.INI [6256]
O44 - LFC:[MD5.D3311B31C470E7681B14D9B014CBF9ED] - 27/10/2014 - 11:47:49 RSHAD . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\system32\drivers\mbamchameleon.sys [93400]
O44 - LFC:[MD5.95EF63A7827D4E3A229CBBCB42619E93] - 27/10/2014 - 11:47:49 RSHAD . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\system32\drivers\mwac.sys [63704]
~ Scan Files in 00mn 44s



---\\ Déni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\system32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\system32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\system32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\system32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\system32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\system32\wdigest.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\system32\tspkg.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\system32\pku2u.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corp. - LiveSSP.) -- C:\Windows\system32\livessp.dll
~ Scan Keys in 00mn 00s



---\\ Contrôle du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\system32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\system32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\system32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\system32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\system32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\system32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\system32\Drivers\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\system32\Drivers\rdpencdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\system32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\system32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\system32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\system32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\system32\Drivers\volmgrx.sys
~ Scan CSB in 00mn 00s



---\\ MountPoints2 Shell Key (O51)
O51 - MPSK:{117920ef-08bf-11e1-8d18-78843c317c89}\AutoRun\command. (...) -- E:\Une-cle-pour-demarrer.exe (.not file.)
O51 - MPSK:{3addba45-e80a-11e1-88ab-78843c317c89}\AutoRun\command. (...) -- E:\LGCMInstaller.exe (.not file.)
O51 - MPSK:{af481242-7628-11e3-8d8d-78843c317c89}\AutoRun\command. (...) -- E:\Startme.exe (.not file.)
~ Scan Keys in 00mn 00s



---\\ Trojan Driver Search Data (HKLM) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
~ Scan Keys in 00mn 00s



---\\ Microsoft Control Security Providers (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll
~ Scan Keys in 00mn 00s



---\\ Microsoft Windows Policies System (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
~ Scan Keys in 00mn 00s



---\\ Microsoft Windows Policies Explorer (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0
~ Scan Keys in 00mn 00s



---\\ Liste des Drivers Système (O58)
O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 10/06/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\system32\drivers\adp94xx.sys [491088]
O58 - SDL:[MD5.597F78224EE9224EA1A13D6350CED962] - 13/07/2009 - 02:52:21 RSHAD . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\system32\drivers\adpahci.sys [339536]
O58 - SDL:[MD5.E109549C90F62FB570B9540C4B148E54] - 13/07/2009 - 02:52:21 RSHAD . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\system32\drivers\adpu320.sys [182864]
O58 - SDL:[MD5.5812713A477A3AD7363C7438CA2EE038] - 14/07/2009 - 02:52:21 RSHAD . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\system32\drivers\aliide.sys [15440]
O58 - SDL:[MD5.D4121AE6D0C0E7E13AA221AA57EF2D49] - 30/07/2011 - 07:41:12 RSHAD . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\system32\drivers\amdsata.sys [107904]
O58 - SDL:[MD5.F67F933E79241ED32FF46A4F29B5120B] - 10/06/2009 - 02:52:20 RSHAD . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows -.) -- C:\Windows\system32\drivers\amdsbs.sys [194128]
O58 - SDL:[MD5.540DAF1CEA6094886D72126FD7C33048] - 30/07/2011 - 07:41:12 RSHAD . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\system32\drivers\amdxata.sys [27008]
O58 - SDL:[MD5.08E8A4172C57ABD7693A6915CF1E7A99] - 22/10/2010 - 04:10:30 RSHAD . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\system32\drivers\amd_sata.sys [73856]
O58 - SDL:[MD5.9866AF4E4AD7F16E810B6C0B8473F9CD] - 22/10/2010 - 04:10:30 RSHAD . (.Advanced Micro Devices - Stor Filter Driver.) -- C:\Windows\system32\drivers\amd_xata.sys [28800]
O58 - SDL:[MD5.2672A9DBAA6A8DEEA7EC8C7892E32A03] - 17/05/2010 - 04:29:44 RSHAD . (.Alps Electric Co., Ltd. - Alps Touch Pad Driver.) -- C:\Windows\system32\drivers\Apfiltr.sys [301688]
O58 - SDL:[MD5.C484F8CEB1717C540242531DB7845C4E] - 13/07/2009 - 02:52:21 RSHAD . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\system32\drivers\arc.sys [87632]
O58 - SDL:[MD5.019AF6924AEFE7839F61C830227FE79C] - 13/07/2009 - 02:52:21 RSHAD . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\system32\drivers\arcsas.sys [97856]
O58 - SDL:[MD5.C130BC4A51B1382B2BE8E44579EC4C0A] - 06/12/2010 - 14:32:04 RSHAD . (.ArcSoft, Inc. - For X64.) -- C:\Windows\system32\drivers\ArcSoftKsUFilter.sys [19968]
O58 - SDL:[MD5.D95E64416A4A3ED6986E0F474DA934BD] - 05/10/2014 - 21:00:26 RSHAD . (...) -- C:\Windows\system32\drivers\aswHwid.sys [29208]
O58 - SDL:[MD5.FF1E537A3632CBB9A0BF72B9FD0878D5] - 25/08/2011 - 21:00:26 RSHAD . (.AVAST Software - avast! File System Minifilter for Windows 2003/Vista.) -- C:\Windows\system32\drivers\aswMonFlt.sys [79184]
O58 - SDL:[MD5.91E7ACA95933633B2557F47CDFDB74C3] - 25/08/2011 - 12:32:35 RSHAD . (.AVAST Software - avast! TDI RDR Driver.) -- C:\Windows\system32\drivers\aswRdr.sys [31064]
O58 - SDL:[MD5.A5757DE5F9C83AB40667A53D5126EA40] - 31/07/2012 - 21:00:26 RSHAD . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\Windows\system32\drivers\aswRdr2.sys [93568]
O58 - SDL:[MD5.645D97385F3F284FB5604F9B970F4D24] - 05/10/2014 - 21:00:26 RSHAD . (...) -- C:\Windows\system32\drivers\aswRvrt.sys [65776]
O58 - SDL:[MD5.B8FDEDE963B82CFD23B3A53A3084666D] - 25/08/2011 - 21:00:26 RSHAD . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\system32\drivers\aswSnx.sys [1041168]
O58 - SDL:[MD5.0DEDC041DF594AEC2C3BD00417CFAF60] - 17/11/2014 - 21:39:30 RSHAD . (.AVAST Software - avast! self protection module.) -- C:\Windows\system32\drivers\aswsp.sys [427360]
O58 - SDL:[MD5.48DED912CDE54FC0923B9858512366E1] - 05/10/2014 - 21:00:26 RSHAD . (.AVAST Software - Stream Filter.) -- C:\Windows\system32\drivers\aswStm.sys [92008]
O58 - SDL:[MD5.471A311745848B80339436688A8286E6] - 05/10/2014 - 21:00:26 RSHAD . (...) -- C:\Windows\system32\drivers\aswVmm.sys [224896]
O58 - SDL:[MD5.D6CAD7E5B05055BB8226BDCB1644DA27] - 12/03/2010 - 04:23:06 RSHAD . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driver.) -- C:\Windows\system32\drivers\athrx.sys [1550848]
O58 - SDL:[MD5.D1D06810BF7E21F5763EB06CB7E7262B] - 07/04/2010 - 04:04:22 RSHAD . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\system32\drivers\atikmdag.sys [6402560]
O58 - SDL:[MD5.6BA71D6616B56816E57394D77DD1BB6F] - 07/04/2010 - 04:04:22 RSHAD . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\system32\drivers\atikmpag.sys [188928]
O58 - SDL:[MD5.7C5D273E29DCC5505469B299C6F29163] - 07/04/2010 - 04:04:49 RSHAD . (.Advanced Micro Devices Inc. - AMD PCIE Filter Driver for ATI PCIE chipset.) -- C:\Windows\system32\drivers\AtiPcie.sys [16440]
O58 - SDL:[MD5.D1D06810BF7E21F5763EB06CB7E7262B] - 07/04/2010 - 04:04:22 RSHAD . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\system32\drivers\atipmdag.sys [6402560]
O58 - SDL:[MD5.34E9A86B0EF71BA72B58D72215EBFABC] - 23/09/2012 - 23:16:40 RSHAD . (.AVG Technologies - Pas de description.) -- C:\Windows\system32\drivers\avgtpx64.sys [45856]
O58 - SDL:[MD5.B5ACE6968304A3900EEB1EBFD9622DF2] - 10/06/2009 - 21:34:23 RSHAD . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver..) -- C:\Windows\system32\drivers\b57nd60a.sys [270848]
O58 - SDL:[MD5.F09EEE9EDC320B5E1501F749FDE686C8] - 14/07/2009 - 21:41:06 RSHAD . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\system32\drivers\BrFiltLo.sys [18432]
O58 - SDL:[MD5.B114D3098E9BDB8BEA8B053685831BE6] - 14/07/2009 - 21:41:06 RSHAD . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\system32\drivers\BrFiltUp.sys [8704]
O58 - SDL:[MD5.43BEA8D483BF1870F018E2D02E06A5BD] - 14/07/2009 - 02:19:07 RSHAD . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\system32\drivers\BrSerId.sys [286720]
O58 - SDL:[MD5.A6ECA2151B08A09CACECA35C07F05B42] - 14/07/2009 - 21:41:10 RSHAD . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\system32\drivers\BrSerWdm.sys [47104]
O58 - SDL:[MD5.B79968002C277E869CF38BD22CD61524] - 14/07/2009 - 21:41:10 RSHAD . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\system32\drivers\BrUsbMdm.sys [14976]
O58 - SDL:[MD5.A87528880231C54E75EA7A44943B38BF] - 14/07/2009 - 21:41:10 RSHAD . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\system32\drivers\BrUsbSer.sys [14720]
O58 - SDL:[MD5.5C849BD7C78791C5CEE9F4651D7FE38D] - 06/12/2010 - 07:09:24 RSHAD . (.Broadcom Corporation. - Broadcom Bluetooth AVDT Service.) -- C:\Windows\system32\drivers\btwavdt.sys [132648]
O58 - SDL:[MD5.3E1991AFA851A36DC978B0A1B0535C8B] - 06/12/2010 - 07:09:24 RSHAD . (.Broadcom Corporation. - Bluetooth Remote Control HID Minidriver.) -- C:\Windows\system32\drivers\btwrchid.sys [21160]
O58 - SDL:[MD5.3E5B191307609F7514148C6832BB0842] - 10/06/2009 - 21:34:28 RSHAD . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\system32\drivers\bxvbda.sys [468480]
O58 - SDL:[MD5.E19D3F095812725D88F9001985B94EDD] - 14/07/2009 - 02:52:31 RSHAD . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\cmdide.sys [17488]
O58 - SDL:[MD5.0E5DA5369A0FCAEA12456DD852545184] - 10/06/2009 - 02:47:48 RSHAD . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\system32\drivers\elxstor.sys [530496]
O58 - SDL:[MD5.DC5D737F51BE844D8C82C695EB17372F] - 10/06/2009 - 21:34:33 RSHAD . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\system32\drivers\evbda.sys [3286016]
O58 - SDL:[MD5.8E98D21EE06192492A5671A6144D092F] - 07/04/2014 - 12:01:20 RSHAD . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\system32\drivers\GEARAspiWDM.sys [33240]
O58 - SDL:[MD5.F2523EF6460FC42405B12248338AB2F0] - 13/07/2009 - 21:31:59 RSHAD . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\system32\drivers\hcw85cir.sys [31232]
O58 - SDL:[MD5.39D2ABCD392F3D8A6DCE7B60AE7B8EFC] - 01/05/2013 - 14:33:35 RSHAD . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\system32\drivers\HpSAMD.sys [78720]
O58 - SDL:[MD5.AAAF44DB3BD0B9D1FB6969B23ECC8366] - 30/07/2011 - 07:41:26 RSHAD . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\system32\drivers\iaStorV.sys [410496]
O58 - SDL:[MD5.5C18831C61933628F5BB0EA2675B9D21] - 13/07/2009 - 02:48:04 RSHAD . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\system32\drivers\iirsp.sys [44112]
O58 - SDL:[MD5.4011B3E404CBF36ACF8F48AA36DF5493] - 21/08/2012 - 01:33:52 RSHAD . (.LG Electronics Inc - LG Wireless Multi function 64 bit Driver.) -- C:\Windows\system32\drivers\lgwusb64bus.sys [18944]
O58 - SDL:[MD5.1A93E54EB0ECE102495A51266DCDB6A6] - 13/07/2009 - 02:48:04 RSHAD . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_fc.sys [114752]
O58 - SDL:[MD5.1047184A9FDC8BDBFF857175875EE810] - 13/07/2009 - 02:48:04 RSHAD . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas.sys [106560]
O58 - SDL:[MD5.30F5C0DE1EE8B5BC9306C1F0E4A75F93] - 13/07/2009 - 02:48:04 RSHAD . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas2.sys [65600]
O58 - SDL:[MD5.0504EACAFF0D3C8AED161C4B0D369D4A] - 13/07/2009 - 02:48:04 RSHAD . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_scsi.sys [115776]
O58 - SDL:[MD5.5C3669B71657F22E67A1D4BD49D2CBE7] - 27/10/2014 - 11:11:12 RSHAD . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\system32\drivers\mbam.sys [25816]
O58 - SDL:[MD5.D3311B31C470E7681B14D9B014CBF9ED] - 27/10/2014 - 11:11:16 RSHAD . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\system32\drivers\mbamchameleon.sys [93400]
O58 - SDL:[MD5.26C43960C99EE861A5D0EDC4DCF3B1C3] - 27/10/2014 - 22:34:14 RSHAD . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752]
O58 - SDL:[MD5.A55805F747C6EDB6A9080D7C633BD0F4] - 10/06/2009 - 02:48:04 RSHAD . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for.) -- C:\Windows\system32\drivers\megasas.sys [35392]
O58 - SDL:[MD5.BAF74CE0072480C3B6B7C13B2A94D6B3] - 13/07/2009 - 02:48:04 RSHAD . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\system32\drivers\MegaSR.sys [284736]
O58 - SDL:[MD5.95EF63A7827D4E3A229CBBCB42619E93] - 27/10/2014 - 11:11:26 RSHAD . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\system32\drivers\mwac.sys [63704]
O58 - SDL:[MD5.77889813BE4D166CDAB78DDBA990DA92] - 13/07/2009 - 02:48:26 RSHAD . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\system32\drivers\nfrd960.sys [51264]
O58 - SDL:[MD5.0A92CB65770442ED0DC44834632F66AD] - 30/07/2011 - 07:41:34 RSHAD . (.NVIDIA Corporation - NVIDIA® nForce RAID Driver.) -- C:\Windows\system32\drivers\nvraid.sys [148352]
O58 - SDL:[MD5.DAB0E87525C10052BF65F06152F37E4A] - 30/07/2011 - 07:41:34 RSHAD . (.NVIDIA Corporation - NVIDIA® nForce Sata Performance Driver.) -- C:\Windows\system32\drivers\nvstor.sys [166272]
O58 - SDL:[MD5.A53A15A11EBFD21077463EE2C7AFEEF0] - 10/06/2009 - 02:45:46 RSHAD . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\system32\drivers\ql2300.sys [1524816]
O58 - SDL:[MD5.4F6D12B51DE1AAEFF7DC58C4D75423C8] - 13/07/2009 - 02:45:45 RSHAD . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\system32\drivers\ql40xx.sys [128592]
O58 - SDL:[MD5.7EA8D2EB9BBFD2AB8A3117A1E96D3B3A] - 08/04/2010 - 05:08:44 RSHAD . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Driver.) -- C:\Windows\system32\drivers\Rt64win7.sys [346144]
O58 - SDL:[MD5.D6D381B76056C668679723938F06F16C] - 06/12/2010 - 08:56:08 RSHAD . (.Realtek Semiconductor Corp. - Realtek® High Definition Audio Function Driver.) -- C:\Windows\system32\drivers\RtHDMIVX.sys [231328]
O58 - SDL:[MD5.490947A9AFF7CA31EF2E08F5776105EB] - 06/12/2010 - 04:30:53 RSHAD . (.Realtek Semiconductor Corp. - Realtek® High Definition Audio Function Driver.) -- C:\Windows\system32\drivers\RTKVHD64.sys [2298400]
O58 - SDL:[MD5.5AAB4808E8CCAE8C2ECDA5B791260616] - 06/12/2010 - 12:21:21 RSHAD . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/Vista/Win7.) -- C:\Windows\system32\drivers\RtsUStor.sys [242720]
O58 - SDL:[MD5.3EA8A16169C26AFBEB544E0E48421186] - 14/07/2009 - 21:37:19 RSHAD . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\system32\drivers\secdrv.sys [23040]
O58 - SDL:[MD5.C1D8E28B2C2ADFAEC4BA89E9FDA69BD6] - 14/07/2009 - 01:00:40 RSHAD . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\system32\drivers\serial.sys [94208]
O58 - SDL:[MD5.286D3889E6AB5589646FF8A63CB928AE] - 08/04/2010 - 09:59:23 RSHAD . (.Sony Corporation - Sony Firmware Extension Parser driver.) -- C:\Windows\system32\drivers\SFEP.sys [12032]
O58 - SDL:[MD5.843CAF1E5FDE1FFD5FF768F23A51E2E1] - 10/06/2009 - 02:45:45 RSHAD . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\system32\drivers\sisraid2.sys [43584]
O58 - SDL:[MD5.6A6C106D42E9FFFF8B9FCB4F754F6DA4] - 13/07/2009 - 02:45:46 RSHAD . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\system32\drivers\sisraid4.sys [80464]
O58 - SDL:[MD5.F3817967ED533D08327DC73BC4D5542A] - 13/07/2009 - 02:45:55 RSHAD . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\system32\drivers\stexstor.sys [24656]
O58 - SDL:[MD5.5C3BE22E485B9BF11FCEFDC676C728D0] - 06/10/2014 - 13:52:00 RSHAD . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\system32\drivers\usbaapl64.sys [54784]
O58 - SDL:[MD5.2C780746DC44A28FE67004DC58173F05] - 06/12/2010 - 02:26:36 RSHAD . (.Advanced Micro Devices - AMD USB Filter Driver.) -- C:\Windows\system32\drivers\usbfilter.sys [38456]
O58 - SDL:[MD5.E5689D93FFE4E5D66C0178761240DD54] - 14/07/2009 - 02:45:55 RSHAD . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\viaide.sys [17488]
O58 - SDL:[MD5.5E2016EA6EBACA03C04FEAC5F330D997] - 10/06/2009 - 02:45:55 RSHAD . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\system32\drivers\vsmraid.sys [161872]
O58 - SDL:[MD5.2263727032E9B19231A706046B8C82D3] - 19/04/2012 - 18:12:26 ---A- . (...) -- C:\Windows\system32\Ckldrv.sys [28664]
O58 - SDL:[MD5.16E18CED459B1824234890386EE66CD5] - 26/04/2014 - 13:03:38 ---A- . (.http://libusb-win32.sourceforge.net - LibUSB-Win32 - Kernel Driver.) -- C:\Windows\SysWOW64\drivers\libusb0.sys [52832]
~ Scan Drivers in 00mn 05s



---\\ Liste des outils de nettoyage (O63)
O63 - Logiciel: ZHPDiag 1.28 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
~ Scan ADS in 00mn 00s



---\\ Liste des services Legacy (O64)
O64 - Services: CurCS - 07/04/2010 - C:\Windows\system32\DRIVERS\atipmdag.sys - No object(No service) .(.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) - LEGACY_AMDKMDAG
O64 - Services: CurCS - 11/03/2011 - C:\Windows\system32\drivers\amdsata.sys - No object(No service) .(.Advanced Micro Devices - AHCI 1.2 Device Driver.) - LEGACY_AMDSATA
O64 - Services: CurCS - 01/07/2010 - C:\Windows\system32\drivers\amd_sata.sys - No object(No service) .(.Advanced Micro Devices - AHCI 1.2 Device Driver.) - LEGACY_AMD_SATA
O64 - Services: CurCS - 05/10/2014 - C:\Windows\system32\drivers\aswHwid.sys - No object (No service) .(...) - LEGACY_ASWHWID
O64 - Services: CurCS - 05/10/2014 - C:\Windows\system32\drivers\aswMonFlt.sys - No object(No service) .(.AVAST Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT
O64 - Services: CurCS - 05/10/2014 - C:\Windows\system32\drivers\aswRdr2.sys - No object(No service) .(.AVAST Software - avast! WFP Redirect Driver.) - LEGACY_ASWRDR
O64 - Services: CurCS - 05/10/2014 - C:\Windows\system32\drivers\aswSnx.sys - No object(No service) .(.AVAST Software - avast! Virtualization Driver.) - LEGACY_ASWSNX
O64 - Services: CurCS - 17/11/2014 - C:\Windows\system32\drivers\aswSP.sys - No object(No service) .(.AVAST Software - avast! self protection module.) - LEGACY_ASWSP
O64 - Services: CurCS - 05/10/2014 - C:\Windows\system32\drivers\aswStm.sys - No object(No service) .(.AVAST Software - Stream Filter.) - LEGACY_ASWSTM
O64 - Services: CurCS - 10/07/2013 - C:\Windows\system32\drivers\avgtpx64.sys - No object(No service) .(.AVG Technologies - Pas de description.) - LEGACY_AVGTP
O64 - Services: CurCS - 01/10/2014 - C:\Windows\system32\drivers\mbam.sys - No object(No service) .(.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - LEGACY_MBAMPROTECTOR
O64 - Services: CurCS - 01/10/2014 - C:\Windows\system32\drivers\mwac.sys - No object(No service) .(.Malwarebytes Corporation - Malwarebytes Web Access Control.) - LEGACY_MBAMWEBACCESSCONTROL
O64 - Services: CurCS - 17/03/2008 - C:\Windows\system32\ckldrv.sys - No object (No service) .(...) - LEGACY_NETWORKX
~ Scan Services in 00mn 40s



---\\ File Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (. - .) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %*
O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> <htmlfile>[HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O67 - Shell Spawning: <.js> <jsfile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKCR\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %*
O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCR\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O67 - Shell Spawning: <.js> <jsfile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
~ Scan Keys in 00mn 00s



---\\ Start Menu Internet (O68)
O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Internet Explorer\iexplore.exe
~ Scan Keys in 00mn 00s



---\\ Search Browser Infection (O69)
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com
O69 - SBI: SearchScopes [HKCU] {1BA71AED-EF23-427C-FAE6-30B562234E82} - (AVG Secure Search) - http://isearch.avg.com
O69 - SBI: SearchScopes [HKCU] {49F62C7E-9F27-41FB-95F6-5BC90D4584CD} - (Nouveaux Exemplaires - Zinio.url) - http://www.zinio.com
O69 - SBI: SearchScopes [HKCU] {57210A58-1FB2-47B6-A705-D4FFCB4E3471} - (Yahoo! Search) - http://fr.search.yahoo.com
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Yahoo! Search) - http://fr.search.yahoo.com
O69 - SBI: SearchScopes [HKCU] {ECB9B224-F64D-460E-A645-ACE0E9D12E46} - (eBay) - http://rover.ebay.com
O69 - SBI: SearchScopes [HKCU] {F007C7DD-9636-41A8-83CF-C65981BC6E82} - (Zinio) - http://services.zinio.com
~ Scan Keys in 00mn 00s



---\\ Recherche particuliere à la racine de certains dossiers (O84)
[MD5.C98C39D6F36C4F6B425EA69D8C3C5B8C] [sPRF][17/11/2014] (.PortableApps.com - Mozilla Firefox, Portable Edition.) -- C:\Users\Amenophys\Desktop\firefox-portable_33-1-1_fr_19571.exe [39251232]
[MD5.683FDD3D773C58B262DC07CD0C6CE938] [sPRF][28/07/2013] (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Users\Amenophys\Desktop\mbam-setup-1.75.0.1300.exe [10285040]
~ Scan Files in 00mn 02s



---\\ Firewall Active Exception List (FirewallRules) (O87)
O87 - FAEL: "{9F1CE2D2-A49B-4A63-B272-89861BB7813F}" | In - None - P17 - TRUE | .(.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe
O87 - FAEL: "TCP Query User{42A36A98-323C-4655-9431-2284C8914350}C:\users\amenophys\downloads\tinyumbrella-7.04.00.exe" | In - Public - P6 - TRUE | .(...) -- C:\users\amenophys\downloads\tinyumbrella-7.04.00.exe
O87 - FAEL: "UDP Query User{7708D69A-9E7C-4AFA-B66A-CC1ECC7BE627}C:\users\amenophys\downloads\tinyumbrella-7.04.00.exe" | In - Public - P17 - TRUE | .(...) -- C:\users\amenophys\downloads\tinyumbrella-7.04.00.exe
O87 - FAEL: "{299430B1-75AA-41D3-A342-F94F4D2FB522}" | In - None - P17 - TRUE | .(.Apple Inc. - iTunes.) -- C:\Program Files (x86)\iTunes\iTunes.exe
~ Scan Firewall in 00mn 01s



---\\ Scan Additionnel (O88)
Database Version : 8823 - (10/11/2011)
Clés trouvées (Keys found) : 1
Valeurs trouvées (Values found) : 0
Dossiers trouvés (Folders found) : 0
Fichiers trouvés (Files found) : 0

[HKLM\Software\Classes\TypeLib\{2D5E2D34-BED5-4B9F-9793-A31E26E6806E}] =>Adware.Hotbar
~ Scan Additionnel in 00mn 11s



---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SS - | Demand 16/05/2011 113152 | (ACDaemon) . (.ArcSoft Inc..) - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
SS - | Demand 18/08/2013 153792 | (Adobe Version Cue CS3) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS3\Server\bin\VersionCueCS3.exe
SS - | Demand 26/02/2013 267440 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
SR - | Auto 07/04/2010 202752 | (AMD External Events Utility) . (.AMD.) - C:\Windows\system32\atiesrxx.exe
SR - | Auto 06/10/2014 43336 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SR - | Auto 05/10/2014 50344 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
SR - | Auto 03/11/2011 462184 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe
SR - | Auto 06/12/2010 873248 | (btwdins) . (.Broadcom Corporation..) - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
SR - | Auto 19/04/2012 122880 | (Crypkey License) . (.CrypKey (Canada) Ltd..) - C:\Windows\system32\crypserv.exe
SR - | Demand 18/08/2013 654848 | (FLEXnet Licensing Service) . (.Macrovision Europe Ltd..) - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
SR - | Demand 06/10/2014 640840 | (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe
SR - | Auto 27/10/2014 1871160 | (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
SS - | Auto 27/10/2014 968504 | (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
SS - | Demand 0 | (MozillaMaintenance) . (...) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
SR - | Auto 06/12/2010 360224 | (PMBDeviceInfoProvider) . (.Sony Corporation.) - C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe
SS - | Demand 06/12/2010 313840 | (Roxio UPnP Renderer 10) . (.Sonic Solutions.) - C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe
SS - | Auto 06/12/2010 362992 | (Roxio Upnp Server 10) . (.Sonic Solutions.) - C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe
SS - | Auto 06/03/2014 172192 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
SS - | Demand 06/12/2010 108400 | (SOHCImp) . (.Sony Corporation.) - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe
SS - | Demand 06/12/2010 422768 | (SOHDms) . (.Sony Corporation.) - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
SS - | Demand 06/12/2010 67952 | (SOHDs) . (.Sony Corporation.) - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
SS - | Demand 06/12/2010 302448 | (SpfService) . (.Sony Corporation.) - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService.exe
SR - | Auto 06/12/2010 104960 | (uCamMonitor) . (.ArcSoft, Inc..) - C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe
SS - | Demand 06/12/2010 69632 | (VAIO Entertainment TV Device Arbitration Service) . (.Sony Corporation.) - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResour
SR - | Auto 06/12/2010 217456 | (VAIO Event Service) . (.Sony Corporation.) - C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe
SS - | Demand 06/12/2010 574320 | (VAIO Power Management) . (.Sony Corporation.) - C:\Program Files\Sony\VAIO Power Management\SPMService.exe
SS - | Demand 06/12/2010 852336 | (VCFw) . (.Sony Corporation.) - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe
SR - | Auto 06/12/2010 529776 | (VcmIAlzMgr) . (.Sony Corporation.) - C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
SR - | Auto 06/12/2010 386416 | (VcmINSMgr) . (.Sony Corporation.) - C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe
SS - | Demand 06/12/2010 115568 | (VcmXmlIfHelper) . (.Sony Corporation.) - C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe
SR - | Auto 06/12/2010 822784 | (VSNService) . (.Sony Corporation.) - C:\Program Files\Sony\VAIO Smart Network\VSNService.exe
SR - | Demand 06/12/2010 1203568 | (VUAgent) . (.Sony Corporation.) - C:\Program Files\Sony\VAIO Update 5\VUAgent.exe
SR - | Auto 14/07/2009 27136 | C:\Windows\system32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\system32\svchost.exe
~ Scan Services in 00mn 14s



---\\ Recherche Master Boot Record Infection (MBR)(O80)
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
~ Scan MBR in 00mn 16s



---\\ Recherche Master Boot Record Infection (MBRCheck)(O80)
Written by ad13, http://ad13.geekstog
Run by Amenophys at 20/11/2014 23:07:47

********* Dump file Name *********
C:\PhysicalDisk0_MBR.bin
~ Scan MBR in 00mn 18s

End of the scan (1531 lines in 04mn 20s)(0)

"Bonjour" ? Description des problèmes rencontrés ? "Merci d'avance" ? Vous n'écrivez pas à un robot mais sur un forum et donc à des personnes.

Rejoindre la conversation

Vous pouvez publier maintenant et vous inscrire plus tard. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...