Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Rapport de ZHPDiag v1.27.1432 par Nicolas Coolman, Update du 19/12/2010
- Run by ken-sama at 20/12/2010 09:44:23
- Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
- Contact : nicolascoolman@yahoo.fr
- ---\\ Web Browser
- MSIE: Internet Explorer v6.0.2900.5512
- MFIE: Mozilla Firefox v3.6.13 (fr) (Defaut)
- GCIE: Google Chrome v
- ---\\ System Information
- Windows XP Home Edition Service Pack 3 (Build 2600)
- Processor: x86 Family 15 Model 3 Stepping 4, GenuineIntel
- Operating System: 32 Bits
- Boot mode: Normal (Normal boot)
- Total RAM: 1023 MB (51% free)
- System Restore: Désactivé (Disabled)
- System drive C: has 30 GB (26%) free of 114 GB
- ---\\ Logged in mode
- Computer Name: GEO
- User Name: ken-sama
- All Users Names: SUPPORT_388945a0, ken-sama, HelpAssistant, autre, Administrateur,
- Unselected Option: O1,O45,O61,O62,O65,O82
- Logged in as Administrator
- ---\\ DOS/Devices
- A:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
- C:\ Hard drive, Flash drive, Thumb drive (Free 30 Go of 114 Go)
- D:\ CD-ROM drive (Not Inserted)
- E:\ CD-ROM drive (Not Inserted)
- F:\ Floppy drive, Flash card reader, USB Key (Free 0 Go of 0 Go)
- G:\ Floppy drive, Flash card reader, USB Key (Free 0 Go of 7 Go)
- ---\\ Security Center & Tools Informations
- [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK
- [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
- [HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
- [HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK
- [HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
- [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK
- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
- ---\\ Recherche particulière de fichiers génériques
- [MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - (.Microsoft Corporation - Explorateur Windows.) (.14/04/2008 03:34:03.) -- C:\Windows\Explorer.exe [1037824]
- [MD5.DD73D6B9F6B4CB630CF35B438B540174] - (.Microsoft Corporation - Application d'ouverture de session Windows NT.) (.14/04/2008 03:34:28.) -- C:\Windows\System32\Winlogon.exe [512000]
- [MD5.9F3A2F5AA6875C72BF062C712CFA2674] - (.Microsoft Corporation - IDE/ATAPI Port Driver.) (.13/04/2008 19:40:30.) -- C:\Windows\System32\drivers\atapi.sys [96512]
- [MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - (.Microsoft Corporation - NT File System Driver.) (.13/04/2008 20:15:53.) -- C:\Windows\System32\drivers\ntfs.sys [574976]
- ---\\ Processus lancés
- [MD5.98383EFC97F5530D250407A81AF73A51] - (.COMODO - COMODO Internet Security.) -- C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [1901056]
- [MD5.5CE3D0E1D1B3832EE052CFC442EEE0FA] - (.Creative Technology Ltd - Creative Audio Service.) -- C:\Program Files\Creative\Shared Files\CTAudSvc.exe [286720]
- [MD5.7207DB389CEAD101251883511A676F91] - (.Avira GmbH - Antivirus Scheduler.) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe [135336]
- [MD5.AC59FCBBD9173BB84BC28CEA88645B0A] - (.D-Link - D-Link Wireless LAN Monitor.) -- C:\Program Files\D-Link\D-Link Wireless N DWA-140\AirNCFG.exe [1388544]
- [MD5.80FD4D46B0E9B620CF757A9A5C789329] - (.Realtek Semiconductor Corp. - Realtek Sound Manager.) -- C:\WINDOWS\SOUNDMAN.EXE [577536]
- [MD5.9EE38B5AF893D1CC8955B6BCDF5E758D] - (.Creative Technology Ltd - CtHelper Application.) -- C:\WINDOWS\system32\CTHELPER.EXE [19456]
- [MD5.93DB1FF92B03D24738A71E6E4992DFD3] - (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe [248552]
- [MD5.6E1378AF90EEC031E755A7DA537F340D] - (.COMODO - COMODO Internet Security.) -- C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2500552]
- [MD5.9D5E8B45BD348DF0882C69EED0E83111] - (.Avira GmbH - Antivirus System Tray Tool.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [281768]
- [MD5.A1F86A5A0DA1BEC12B7DD19C6234BB15] - (.Pas de propriétaire - Pas de description.) -- C:\Documents and Settings\ken-sama\Local Settings\Apps\F.lux\flux.exe [966656]
- [MD5.8942C0BE637B7EBFBA304D48665B516E] - (.Avira GmbH - Antivirus On-Access Service.) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe [267944]
- [MD5.CDE000884FD7BAF0C1FDFE029B0891DE] - (.Avira GmbH - AntiVir shadow copy service.) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe [76968]
- [MD5.1E8A0705F9925FAD9B2D4F6FC05E1982] - (.LogMeIn Inc. - Hamachi2 Client Tunneling Engine.) -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [1107336]
- [MD5.126A16F569122AE00AD3D12EF831D651] - (.Sun Microsystems, Inc. - Java(TM) Quick Starter Service.) -- C:\Program Files\Java\jre6\bin\jqs.exe [153376]
- [MD5.00E36BEEA22C92D1030C6D8F80BC0F6A] - (.Microsoft Corporation - SQL Server Windows NT.) -- c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [29262680]
- [MD5.7AEA4DF1CA68FD45DD4BBE1F0243CE7F] - (.Pas de propriétaire - Pas de description.) -- C:\Program Files\CDBurnerXP\NMSAccessU.exe [71096]
- [MD5.934833B3CD462A6F8A96F64D024C8B20] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 175.1.) -- C:\WINDOWS\system32\nvsvc32.exe [159812]
- [MD5.D2F4F32B59440011174B4F8137AF4E0C] - (.Microsoft Corporation - SQL Server VSS Writer.) -- c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [87904]
- [MD5.62BB79160F86CD962F312C68C6239BFD] - (.Microsoft Corporation - Windows Update.) -- C:\WINDOWS\system32\wuauclt.exe [53472]
- [MD5.5465FD64D39DECEB48332AE05D0F669C] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [620544]
- ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2)
- P2 - FPN:Firefox Plugin Navigator . (.Microsoft Corporation - np-mswmp.) -- C:\Program Files\Mozilla Firefox\Plugins\np-mswmp.dll
- P2 - FPN:Firefox Plugin Navigator . (.Sun Microsystems, Inc. - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- C:\Program Files\Mozilla Firefox\Plugins\npdeployJava1.dll
- P2 - FPN:Firefox Plugin Navigator . (.DivX, Inc - npdivxplayerplugin.) -- C:\Program Files\Mozilla Firefox\Plugins\npDivxPlayerPlugin.dll
- P2 - FPN:Firefox Plugin Navigator . (.mozilla.org - Default Plug-in.) -- C:\Program Files\Mozilla Firefox\Plugins\npnul32.dll
- P2 - FPN:Firefox Plugin Navigator . (.Microsoft Corporation - Office Plugin for Netscape Navigator.) -- C:\Program Files\Mozilla Firefox\Plugins\NPOFFICE.DLL
- P2 - FPN:Firefox Plugin Navigator . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape "9.3.4".) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll
- P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin.dll
- P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin2.dll
- P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin3.dll
- P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin4.dll
- P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin5.dll
- P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin6.dll
- P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin7.dll
- P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
- P2 - FPN: [HKLM] [@adobe.com/ShockwavePlayer] - (.Adobe Systems, Inc. - Adobe Shockwave for Director Netscape plug-in, version 11.5.) -- C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
- P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Pas de propriétaire - Pas de description.) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
- P2 - FPN: [HKLM] [@bittorrent.com/BitTorrentDNA] - (.BitTorrent, Inc. - Delivery Network Acceleration by BitTorrent™.) -- C:\Program Files\DNA\plugins\npbtdna.dll
- P2 - FPN: [HKLM] [@divx.com/DivX Browser Plugin,version=1.0.0] - (.DivX,Inc. - DivX Web Player version 2.0.2.40.) -- C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
- P2 - FPN: [HKLM] [@divx.com/DivX Player Plugin,version=1.0.0] - (.Pas de propriétaire - Pas de description.) -- C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll (.not file.)
- P2 - FPN: [HKLM] [@Google.com/GoogleEarthPlugin] - (.Google - GEPlugin.) -- C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
- P2 - FPN: [HKLM] [@java.com/JavaPlugin] - (.Sun Microsystems, Inc. - Next Generation Java Plug-in 1.6.0_21 for Mozilla browsers.) -- C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
- P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 4.0.50917.0.) -- c:\Program Files\Microsoft Silverlight\4.0.50917.0\npctrl.dll
- P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
- P2 - FPN: [HKLM] [@pack.google.com/Google Updater;version=13] - (.Pas de propriétaire - Pas de description.) -- C:\Program Files\Google\Google Updater\2.4.1536.6592\npCIDetect13.dll (.not file.)
- P2 - FPN: [HKLM] [@real.com/nppl3260;version=6.0.12.69] - (.RealNetworks, Inc. - RealPlayer(tm) LiveConnect-Enabled Plug-In.) -- C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll
- P2 - FPN: [HKLM] [@real.com/nprjplug;version=1.0.3.69] - (.RealNetworks, Inc. - RealJukebox Netscape Plugin.) -- C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll
- P2 - FPN: [HKLM] [@real.com/nprpjplug;version=6.0.12.69] - (.RealNetworks, Inc. - 6.0.12.69.) -- C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll
- P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=8] - (.Pas de propriétaire - Pas de description.) -- C:\Program Files\Google\Update\1.2.183.29\npGoogleOneClick8.dll (.not file.)
- P2 - FPN: [HKLM] [@veetle.com/vbp;version=0.9.17] - (.Veetle Inc - Version 0.9.17, copyright 2008-2010 Veetle Inc<br><a href="http://www..) -- C:\Program Files\Veetle\VLCBroadcast\npvbp.dll
- P2 - FPN: [HKLM] [@veetle.com/veetleCorePlugin,version=0.9.18] - (.Veetle Inc - Version 0.9.18, Copyright 2006-2009 Veetle Inc<br><a href="http://www..) -- C:\Program Files\Veetle\plugins\npVeetle.dll
- P2 - FPN: [HKLM] [@veetle.com/veetlePlayerPlugin,version=0.9.18] - (.Veetle Inc - Version 0.9.18, copyright 2006-2010 Veetle Inc<br><a href="http://www..) -- C:\Program Files\Veetle\Player\npvlc.dll
- P2 - FPN: [HKLM] [@videolan.org/vlc,version=1.1.4] - (.the VideoLAN Team - Version 1.1.4, copyright 1996-2010 The VideoLAN Team<br><a href="http:.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll
- P2 - FPN: [HKLM] [@viewpoint.com/VMP] - (.Pas de propriétaire - MetaStream 3 Plugin r4.) -- C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll
- P2 - FPN: [HKCU] [@octoshape.com/Octoshape Streaming Services,version=1.0] - (.Octoshape ApS - Octoshape embedded video plugin.) -- C:\Documents and Settings\ken-sama\Application Data\Octoshape\Octoshape Streaming Services\sua-1002170-0-npoctoshape.dll
- M0 - MFSP: prefs.js [ken-sama - je73q7mi.default] http://www.google.fr/
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\adonis.cuhk@gmail.com] [] Google Docs Viewer v1.4 (.Adonis Fung.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\canitbecheaper@trafficbroker.co(2).uk] [] InvisibleHand v2.8 (.Forward.co.uk.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\elemhidehelper@adblockplus(2).org] [] Element Hiding Helper for Adblock Plus v1.1 (.Wladimir Palant.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\elemhidehelper@adblockplus.org] [] Element Hiding Helper for Adblock Plus v1.1 (.Wladimir Palant.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\firefox@tvunetworks.com] [] TVU Web Player v2,4,9,1 (.Wladimir Palant.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\firesheep@codebutler.com] [] Firesheep v0.1 (.Eric Butler.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\ietab@ip.cn] [] Firesheep v0.1 (.Eric Butler.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\john@velvetcache.org] [] Beef Taco (Targeted Advertising Cookie Opt-Out) v1.3.2 (.John Hobbs.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\pastebin.com@gmail.com] [] Pastebin v2.1 (.Prafulla Kiran.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\tineye@ideeinc.com] [] TinEye Reverse Image Search v1.0 (.Martine Vong.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\twitternotifier@naan(2).net] [] Echofon v1.9.7.2 (.naan studio, Inc..)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\twitternotifier@naan.net] [] Echofon v1.9.7.3 (.naan studio, Inc..)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\vshare@toolbar] [] vShare v1.0.0 (.vShare.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\youtube2mp3@mondayx(2).de] [] YouTube to MP3 v1.0.7 (.Video2mp3.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\{02549309-0dbb-41e7-8366-768cfe100341}] [] Lockerz-Checkerz Toolbar v2.7.2.0 (.Conduit Ltd..)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\{0538E3E3-7E9B-4d49-8831-A227C80A7AD3}] [] Forecastfox Weather v2.0.2 (.Jon Stritar.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\{1018e4d6-728f-4b20-ad56-37578a4de76b}] [] Flagfox v4.0.11 (.Dave Garrett.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\{1018e4d6-728f-4b20-ad56-37578a4de76b}(2)] [] Flagfox v4.0.11 (.Dave Garrett.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\{20a82645-c095-46ed-80e3-08825760534b}] [MicrosoftCG] Microsoft .NET Framework Assistant v1.2.1 (.Microsoft.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\{64161300-e22b-11db-8314-0800200c9a66}] [] Speed Dial v0.9.5.8 (.Josep del Rio.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\{71328583-3CA7-4809-B4BA-570A85818FBB}] [cacheviewer] CacheViewer v0.6.3 (.The Tiny BENKI.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}] [WOT] WOT v20100908 (.WOT Services Oy.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\{a7c6cf7f-112c-4500-a7ea-39801a327e5f}] [] FireFTP v1.0.10 (.Mime Čuvalo.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\{AE93811A-5C9A-4d34-8462-F7B864FC4696}] [] StumbleUpon v1.0.10 (.StumbleUpon.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\{AE93811A-5C9A-4d34-8462-F7B864FC4696}(2)] [] StumbleUpon v1.0.10 (.StumbleUpon.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\{b1d89840-39fe-11db-a98b-0800200c9a66}] [] JeuxVideo.Fox v0.51 (.Anonymous59.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\{b749fc7c-e949-447f-926c-3f4eed6accfe}] [] Modify Headers v0.6.6 (.Gareth Hunt.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}] [dwhelper] DownloadHelper v4.8.1 (.Michel Gutierrez.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}] [adblockplus] Adblock Plus v1.3.2 (.Wladimir Palant.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}(2)] [adblockplus] Adblock Plus v1.3.1 (.Wladimir Palant.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}] [] Download Statusbar v0.9.7.2 (.Devon Jensen.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\{DDC359D1-844A-42a7-9AA1-88A850A938A8}] [] DownThemAll! v1.1.10 (.Federico Parodi, Stefano Verna, Nils Maier.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}] [greasemonkey] Greasemonkey v0.8.20100408.6 (.Aaron Boodman; http://youngpup.net/.)
- M2 - MFEP: prefs.js [ken-sama - je73q7mi.default\{EF522540-89F5-46b9-B6FE-1829E2B572C6}(2)] [] SearchPreview v4.9.4 (.Prevoow UG u. Co. KG.)
- ---\\ Internet Explorer, Démarrage,Recherche,URSearchHook (R0,R1,R3)
- R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.orange.fr/bin/frame.cgi?u=http%3A//webtv.guidetv.orange.fr/home.do
- R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
- R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
- R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
- R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
- R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
- R1 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
- R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
- R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Bibliothèque d'objets et de contrôles de do.) (No version) -- %SystemRoot%\system32\shdocvw.dll
- ---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
- F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,
- F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"
- ---\\ Browser Helper Objects de navigateur (O2)
- O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
- O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - WindowsLiveLogin.dll.) -- C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
- O2 - BHO: (no name) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} Clé orpheline
- O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll
- O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} . (.Sun Microsystems, Inc. - Java(TM) Quick Starter binary.) -- C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
- ---\\ Applications démarrées par registre & par dossier (O4)
- O4 - HKLM\..\Run: [D-Link D-Link Wireless N DWA-140] . (.D-Link - D-Link Wireless LAN Monitor.) -- C:\Program Files\D-Link\D-Link Wireless N DWA-140\AirNCFG.exe
- O4 - HKLM\..\Run: [SoundMan] . (.Realtek Semiconductor Corp. - Realtek Sound Manager.) -- C:\Windows\SOUNDMAN.exe
- O4 - HKLM\..\Run: [CTHelper] . (.Creative Technology Ltd - CtHelper Application.) -- C:\Windows\System32\CTHELPER.exe
- O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe
- O4 - HKLM\..\Run: [COMODO Internet Security] . (.COMODO - COMODO Internet Security.) -- C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
- O4 - HKLM\..\Run: [NvCplDaemon] . (.NVIDIA Corporation - NVIDIA Display Properties Extension.) -- C:\WINDOWS\system32\NvCpl.dll
- O4 - HKLM\..\Run: [avgnt] . (.Avira GmbH - Antivirus System Tray Tool.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
- O4 - HKLM\..\Run: [KernelFaultCheck] Clé orpheline
- O4 - HKCU\..\Run: [F.lux] . (.Pas de propriétaire - Pas de description.) -- C:\Documents and Settings\ken-sama\Local Settings\Apps\F.lux\flux.exe
- O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files\uTorrent\uTorrent.exe
- O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\CTFMON.exe
- O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\CTFMON.exe
- O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\CTFMON.exe
- O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\CTFMON.exe
- O4 - HKUS\S-1-5-21-606747145-963894560-725345543-1004\..\Run: [F.lux] . (.Pas de propriétaire - Pas de description.) -- C:\Documents and Settings\ken-sama\Local Settings\Apps\F.lux\flux.exe
- O4 - HKUS\S-1-5-21-606747145-963894560-725345543-1004\..\Run: [uTorrent] . (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files\uTorrent\uTorrent.exe
- ---\\ Autres liens utilisateurs (O4)
- O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Adobe Reader 9.lnk . (.Pas de propriétaire.) -- C:\WINDOWS\Installer\{AC76BA86-7AD7-1036-7B44-A93000000001}\SC_Reader.ico
- O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Apple Software Update.lnk . (.Pas de propriétaire.) -- C:\WINDOWS\Installer\{6956856F-B6B3-4BE0-BA0B-8F495BE32033}\AppleSoftwareUpdateIco.exe
- O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Audacity.lnk . (.Pas de propriétaire.) -- C:\Program Files\Audacity\audacity.exe
- O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\CDBurnerXP.lnk . (.Canneverbe Limited.) -- C:\Program Files\CDBurnerXP\cdbxpp.exe
- O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\MediaCUB.lnk . (.Pas de propriétaire.) -- C:\WINDOWS\Installer\{B1493D8A-C782-4ED3-A34D-8A9B8D9925BF}\_E76412006231BB098F8C6D.exe
- O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\MSN.lnk . (.Microsoft Corporation.) -- C:\Program Files\MSN\MSNCoreFiles\Install\msnsusii.exe
- O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Windows Messenger.lnk . (.Microsoft Corporation.) -- C:\Program Files\Messenger\msmsgs.exe
- O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Windows Movie Maker.lnk . (.Microsoft Corporation.) -- C:\Program Files\Movie Maker\moviemk.exe
- O4 - Global Startup: C:\Documents And Settings\ken-sama\Menu Démarrer\Programmes\Assistance à distance.lnk . (.Microsoft Corporation.) -- C:\WINDOWS\system32\rcimlby.exe
- O4 - Global Startup: C:\Documents And Settings\ken-sama\Menu Démarrer\Programmes\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
- O4 - Global Startup: C:\Documents And Settings\ken-sama\Menu Démarrer\Programmes\MediaCUB.lnk . (.Pas de propriétaire.) -- C:\Documents and Settings\ken-sama\Application Data\Microsoft\Installer\{C31FE5F6-AFC5-4DC9-A439-83600629D0E9}\_7A00ABFF3F5839891DDD6E.exe
- O4 - Global Startup: C:\Documents And Settings\ken-sama\Menu Démarrer\Programmes\Outlook Express.lnk . (.Microsoft Corporation.) -- C:\Program Files\Outlook Express\msimn.exe
- O4 - Global Startup: C:\Documents And Settings\ken-sama\Menu Démarrer\Programmes\Spotify.lnk . (.Spotify Ltd.) -- C:\Program Files\Spotify\spotify.exe
- O4 - Global Startup: C:\Documents And Settings\ken-sama\Menu Démarrer\Programmes\Update Checker.lnk . (.FileHippo.com.) -- C:\Program Files\FileHippo.com\UpdateChecker.exe
- O4 - Global Startup: C:\Documents And Settings\ken-sama\Menu Démarrer\Programmes\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
- ---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
- O8 - Extra context menu item: E&xporter vers Microsoft Excel . (.Microsoft Corporation - Microsoft Office Excel.) -- C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.exe
- ---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
- O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} . (.Pas de propriétaire - Pas de description.) -- C:\PROGRA~1\MICROS~2\OFFICE11\REFBARH.ICO
- O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} . (.Pas de propriétaire - Pas de description.) -- C:\Program Files\Real\RealPlayer\eb_act.ico
- O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} . (.not file.) - (.not file.)
- O9 - Extra button: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} . (.Microsoft Corporation - Windows Messenger.) -- C:\Program Files\Messenger\msmsgs.exe
- ---\\ Winsock hijacker (Layered Service Provider) (O10)
- O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\system32\mswsock.dll
- O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\WINDOWS\system32\winrnr.dll
- O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\system32\mswsock.dll
- O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\WINDOWS\system32\wshbth.dll
- ---\\ Objets ActiveX (Downloaded Program Files)(O16)
- O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
- O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - http://www.srtest.com/srl_bin/sysreqlab_srl.cab
- O16 - DPF: {8167C273-DF59-4416-B647-C8BB2C7EE83E} (WebSDev Control) - http://liveupdate.msi.com.tw/autobios/LOnline/install.cab
- O16 - DPF: {9DF1C00D-8426-4337-972C-DC042D19A916} (FTMediaPlayer Class) - http://webtv.guidetv.orange.fr/resources/OCS_8971.cab
- O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
- ---\\ Modification Domaine/Adresses DNS (O17)
- O17 - HKLM\System\CCS\Services\Tcpip\..\{4EACFB2E-B84B-4CAC-8532-EF7F5DF9C947}: NameServer = 156.154.70.25,156.154.71.25
- O17 - HKLM\System\CCS\Services\Tcpip\..\{504B4E5E-4482-4ECE-8923-6E2DBE0A672F}: NameServer = 156.154.70.22,156.154.71.22
- O17 - HKLM\System\CS3\Services\Tcpip\..\{4EACFB2E-B84B-4CAC-8532-EF7F5DF9C947}: NameServer = 156.154.70.25,156.154.71.25
- O17 - HKLM\System\CS3\Services\Tcpip\..\{504B4E5E-4482-4ECE-8923-6E2DBE0A672F}: NameServer = 156.154.70.22,156.154.71.22
- O17 - HKLM\System\CCS\Services\Tcpip\..\{4EACFB2E-B84B-4CAC-8532-EF7F5DF9C947}: DhcpNameServer = 192.168.1.1 192.168.1.1
- O17 - HKLM\System\CS1\Services\Tcpip\..\{4EACFB2E-B84B-4CAC-8532-EF7F5DF9C947}: DhcpNameServer = 192.168.1.1 192.168.1.1
- O17 - HKLM\System\CS3\Services\Tcpip\..\{4EACFB2E-B84B-4CAC-8532-EF7F5DF9C947}: DhcpNameServer = 192.168.1.1 192.168.1.1
- ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
- O20 - Winlogon Notify: crypt32chain . (.Microsoft Corporation - Crypto API32.) -- C:\Windows\System32\crypt32.dll
- O20 - Winlogon Notify: cryptnet . (.Microsoft Corporation - Crypto Network Related API.) -- C:\Windows\System32\cryptnet.dll
- O20 - Winlogon Notify: cscdll . (.Microsoft Corporation - Agent réseau hors connexion.) -- C:\Windows\System32\cscdll.dll
- O20 - Winlogon Notify: dimsntfy . (.Microsoft Corporation - DIMS Notification Handler.) -- C:\WINDOWS\System32\dimsntfy.dll
- O20 - Winlogon Notify: ScCertProp . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\Windows\System32\wlnotify.dll
- O20 - Winlogon Notify: Schedule . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\Windows\System32\wlnotify.dll
- O20 - Winlogon Notify: sclgntfy . (.Microsoft Corporation - DLL secondaire de notification de service d.) -- C:\Windows\System32\sclgntfy.dll
- O20 - Winlogon Notify: SensLogn . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\Windows\System32\WlNotify.dll
- O20 - Winlogon Notify: termsrv . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\Windows\System32\wlnotify.dll
- O20 - Winlogon Notify: wlballoon . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\Windows\System32\wlnotify.dll
- ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
- O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\SHELL32.dll
- O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\SHELL32.dll
- O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Contrôleur de site Web.) -- C:\WINDOWS\system32\webcheck.dll
- O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} . (.Microsoft Corporation - Objet du service d'environnement Systray.) -- C:\WINDOWS\system32\stobject.dll
- O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} . (.Microsoft Corporation - Windows Portable Device Shell Service Objec.) -- C:\WINDOWS\system32\WPDShServiceObj.dll
- ---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22)
- O22 - SharedTaskScheduler: (no name) - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\WINDOWS\system32\browseui.dll
- ---\\ Liste des services NT non Microsoft et non désactivés (O23)
- O23 - Service: (ANIWZCSdService) . (.Wireless Service - ANIWZCS2 Service Launcher.) - C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
- O23 - Service: (AntiVirSchedulerService) . (.Avira GmbH - Antivirus Scheduler.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe
- O23 - Service: (AntiVirService) . (.Avira GmbH - Antivirus On-Access Service.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
- O23 - Service: (cmdAgent) . (.COMODO - COMODO Internet Security.) - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
- O23 - Service: (CronService) - Clé orpheline
- O23 - Service: (CTAudSvcService) . (.Creative Technology Ltd - Creative Audio Service.) - C:\Program Files\Creative\Shared Files\CTAudSvc.exe
- O23 - Service: (gupdate1c99851fecfa004) - Clé orpheline
- O23 - Service: (gusvc) . (.Google - gusvc.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
- O23 - Service: LogMeIn Hamachi 2.0 Tunneling Engine (Hamachi2Svc) . (.LogMeIn Inc. - Hamachi2 Client Tunneling Engine.) - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
- O23 - Service: (JavaQuickStarterService) . (.Sun Microsystems, Inc. - Java(TM) Quick Starter Service.) - C:\Program Files\Java\jre6\bin\jqs.exe
- O23 - Service: (NMSAccess) . (.Pas de propriétaire - Pas de description.) - C:\Program Files\CDBurnerXP\NMSAccessU.exe
- O23 - Service: (NVSvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 175.1.) - C:\WINDOWS\system32\nvsvc32.exe
- ---\\ Enumération Active Desktop & MHTML Editor (O24)
- O24 - Default MHTML Editor: Last - .(.Pas de propriétaire - Pas de description.) - "C:\Program Files\Microsoft Office\OFFICE11\WINWORD.exe (.not file.)
- ---\\ Tâches planifiées en automatique (O39)
- O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
- O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\Google Software Updater.job
- O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
- O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
- ---\\ Composants installés (ActiveSetup Installed Components) (O40)
- O40 - ASIC: Viewpoint Media Player - {03F998B2-0E00-11D3-A498-00104B6EB52E} . (.Viewpoint Corporation - Viewpoint Media Player for Internet Explorer.) -- C:\Program Files\Viewpoint\Viewpoint Experience Technology\AxMetaStream.dll
- O40 - ASIC: Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\regutils.dll
- O40 - ASIC: Viewpoint Media Player - {1B00725B-C455-4DE6-BFB6-AD540AD427CD} . (.Viewpoint Corporation - Viewpoint Media Player for Internet Explorer.) -- C:\Program Files\Viewpoint\Viewpoint Experience Technology\AxMetaStream.dll
- O40 - ASIC: Adobe Shockwave Director 10.4 - {233C1507-6A77-46A4-9443-F871F945D258} . (.Adobe Systems, Inc. - Shockwave ActiveX Control.) -- C:\WINDOWS\system32\Adobe\Director\SwDir.dll
- O40 - ASIC: NetMeeting 3.01 - {44BBA842-CC51-11CF-AAFA-00AA00B6015B} . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\INF\msnetmtg.inf
- O40 - ASIC: Windows Messenger 4.7 - {5945c046-1e7d-11d1-bc44-00c04fd912be} . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\INF\msmsgs.inf
- O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\INF\wmp11.inf
- O40 - ASIC: Adobe Flash Player - {D27CDB6E-AE6D-11cf-96B8-444553540000} . (.Adobe Systems, Inc. - Adobe Flash Player 10.0 r12.) -- C:\WINDOWS\system32\Macromed\Flash\Flash10a.ocx
- ---\\ Pilotes lancés au démarrage (O41)
- O41 - Driver: (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\WINDOWS\system32\drivers\afd.sys
- O41 - Driver: (avgio) . (.Avira GmbH - Avira AntiVir Support for Minifilter.) - C:\Program Files\Avira\AntiVir Desktop\avgio.sys
- O41 - Driver: (avipbb) . (.Avira GmbH - Avira Driver for Security Enhancement.) - C:\Windows\System32\DRIVERS\avipbb.sys
- O41 - Driver: (Cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
- O41 - Driver: (cmdGuard) . (.COMODO - COMODO Internet Security Sandbox Driver.) - C:\Windows\System32\DRIVERS\cmdguard.sys
- O41 - Driver: (cmdHlp) . (.COMODO - COMODO Internet Security Helper Driver.) - C:\Windows\System32\DRIVERS\cmdhlp.sys
- O41 - Driver: (i8042prt) . (.Microsoft Corporation - Pilote de port i8042.) - C:\Windows\System32\DRIVERS\i8042prt.sys
- O41 - Driver: (Imapi) . (.Microsoft Corporation - IMAPI Kernel Driver.) - C:\Windows\System32\DRIVERS\imapi.sys
- O41 - Driver: (intelppm) . (.Microsoft Corporation - Pilote de périphérique processeur.) - C:\Windows\System32\DRIVERS\intelppm.sys
- O41 - Driver: (IPSec) . (.Microsoft Corporation - IPSec Driver.) - C:\Windows\System32\DRIVERS\ipsec.sys
- O41 - Driver: (Kbdclass) . (.Microsoft Corporation - Pilote de la classe Clavier.) - C:\Windows\System32\DRIVERS\kbdclass.sys
- O41 - Driver: (kbdhid) . (.Microsoft Corporation - Pilote de filtre souris HID.) - C:\Windows\System32\DRIVERS\kbdhid.sys
- O41 - Driver: (Mouclass) . (.Microsoft Corporation - Pilote de la classe Souris.) - C:\Windows\System32\DRIVERS\mouclass.sys
- O41 - Driver: (MRxSmb) . (.Microsoft Corporation - Windows NT SMB Minirdr.) - C:\Windows\System32\DRIVERS\mrxsmb.sys
- O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
- O41 - Driver: (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
- O41 - Driver: (RasAcd) . (.Microsoft Corporation - RAS Automatic Connection Driver.) - C:\Windows\System32\DRIVERS\rasacd.sys
- O41 - Driver: (Rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\Windows\System32\DRIVERS\rdbss.sys
- O41 - Driver: (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
- O41 - Driver: (redbook) . (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) - C:\Windows\System32\DRIVERS\redbook.sys
- O41 - Driver: (Serial) . (.Microsoft Corporation - Pilote de périphérique série.) - C:\Windows\System32\DRIVERS\serial.sys
- O41 - Driver: (ssmdrv) . (.Avira GmbH - AVIRA SnapShot Driver.) - C:\Windows\System32\DRIVERS\ssmdrv.sys
- O41 - Driver: (Tcpip) . (.Microsoft Corporation - TCP/IP Protocol Driver.) - C:\Windows\System32\DRIVERS\tcpip.sys
- O41 - Driver: (TermDD) . (.Microsoft Corporation - Terminal Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys
- O41 - Driver: Carte vidéo VGA. (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\WINDOWS\system32\drivers\vga.sys
- O41 - Driver: (wdmaud) . (.Microsoft Corporation - MMSYSTEM Wave/Midi API mapper.) - C:\Windows\System32\drivers\wdmaud.sys
- ---\\ Logiciels installés (O42)
- O42 - Logiciel: ANIO Service - (.Pas de propriétaire.) [HKLM] -- {7B5CE976-C7A9-4E38-A7F3-6C8EF025DD8E}
- O42 - Logiciel: ANIWZCS2 Service - (.Pas de propriétaire.) [HKLM] -- {4C590030-7469-453E-8589-D15DA9D03F52}
- O42 - Logiciel: AVS Update Manager 1.0 - (.Online Media Technologies Ltd..) [HKLM] -- AVS Update Manager_is1
- O42 - Logiciel: AVS Video Converter 6 - (.Online Media Technologies Ltd..) [HKLM] -- AVS4YOU Video Converter 6_is1
- O42 - Logiciel: AVS4YOU Software Navigator 1.4 - (.Online Media Technologies Ltd..) [HKLM] -- AVS4YOU Software Navigator_is1
- O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM] -- Adobe AIR
- O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM] -- {A2BCA9F1-566C-4805-97D1-7FDC93386723}
- O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
- O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin
- O42 - Logiciel: Adobe Reader 9.3.4 - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-A93000000001}
- O42 - Logiciel: Adobe Shockwave Player 11.5 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player
- O42 - Logiciel: Analyseur MSXML 6.0 - (.Microsoft Corporation.) [HKLM] -- {5903C48B-E953-47B8-A651-B9222C483057}
- O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {0C34B801-6AEC-4667-B053-03A67E2D0415}
- O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {6956856F-B6B3-4BE0-BA0B-8F495BE32033}
- O42 - Logiciel: Archiveur WinRAR - (.Pas de propriétaire.) [HKLM] -- WinRAR archiver
- O42 - Logiciel: Assistant de connexion Windows Live - (.Microsoft Corporation.) [HKLM] -- {DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
- O42 - Logiciel: Audacity 1.2.6 - (.Pas de propriétaire.) [HKLM] -- Audacity_is1
- O42 - Logiciel: Avira AntiVir Personal - Free Antivirus - (.Avira GmbH.) [HKLM] -- Avira AntiVir Desktop
- O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
- O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1
- O42 - Logiciel: CDex - Open Source Digital Audio CD Extractor - (.Georgy Berdyshev.) [HKLM] -- CDex
- O42 - Logiciel: COMODO Internet Security - (.COMODO Group Inc..) [HKLM] -- {FD8E178D-8B4E-42DA-B434-EFF270329B1C}
- O42 - Logiciel: Configuration DivX - (.DivX, Inc. .) [HKLM] -- DivX Setup.divx.com
- O42 - Logiciel: Creative Audio Console - (.Creative Technology Limited.) [HKLM] -- AudioCS
- O42 - Logiciel: Creative Software AutoUpdate - (.Creative Technology Limited.) [HKLM] -- Creative Software AutoUpdate
- O42 - Logiciel: D-Link Wireless N DWA-140 - (.D-Link.) [HKLM] -- {D7D2F494-89E3-42ED-8A2B-75BDD9B464CB}
- O42 - Logiciel: DNA - (.BitTorrent Inc..) [HKCU] -- BitTorrent DNA
- O42 - Logiciel: Defraggler - (.Piriform.) [HKLM] -- Defraggler
- O42 - Logiciel: DivX Converter - (.DivX, Inc..) [HKLM] -- {B13A7C41581B411290FBC0395694E2A9}
- O42 - Logiciel: DivX Plus DirectShow Filters - (.DivX, Inc..) [HKLM] -- DivX Plus DirectShow Filters
- O42 - Logiciel: EVEREST Home Edition v2.20 - (.Lavalys Inc.) [HKLM] -- EVEREST Home Edition_is1
- O42 - Logiciel: EVEREST Ultimate Edition v4.60 - (.Lavalys, Inc..) [HKLM] -- EVEREST Ultimate Edition_is1
- O42 - Logiciel: F.lux - (.Pas de propriétaire.) [HKCU] -- Flux
- O42 - Logiciel: Fichiers de prise en charge de l'installation de Microsoft SQL Server (Français) - (.Microsoft Corporation.) [HKLM] -- {3380F354-C5F7-4E71-8F51-EEE6C3F06C62}
- O42 - Logiciel: FileHippo.com Update Checker - (.Pas de propriétaire.) [HKLM] -- FileHippo.com
- O42 - Logiciel: FormatFactory 2.50 - (.Free Time.) [HKLM] -- FormatFactory
- O42 - Logiciel: Free Audio Converter version 1.1 - (.DVDVideoSoft Limited..) [HKLM] -- Free Audio Converter_is1
- O42 - Logiciel: Free Video Converter V 2.7 - (.Koyote Soft.) [HKLM] -- Free Video Converter_is1
- O42 - Logiciel: GDR 4053 for SQL Server Database Services 2005 ENU (KB970892) - (.Microsoft Corporation.) [HKLM] -- KB970892_SQL9
- O42 - Logiciel: GameShadow - (.Nom de votre société.) [HKLM] -- {F7C1C17E-70E3-475F-BD52-EA554391F15D}
- O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
- O42 - Logiciel: Google Earth - (.Google.) [HKLM] -- {4286E640-B5FB-11DF-AC4B-005056C00008}
- O42 - Logiciel: HHD Software Free Hex Editor 3.12 - (.Pas de propriétaire.) [HKLM] -- Hex Editor 3
- O42 - Logiciel: Hitman Blood Money - (.Eidos.) [HKLM] -- {A804B134-F03D-4EFD-9BC0-DCD257AA1B22}
- O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB953595
- O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB958484
- O42 - Logiciel: Hotfix for Windows XP (KB954550-v5) - (.Microsoft Corporation.) [HKLM] -- KB954550-v5
- O42 - Logiciel: Hotfix for Windows XP (KB976002-v5) - (.Microsoft Corporation.) [HKLM] -- KB976002-v5
- O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- WinLiveSuite_Wave3
- O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- {46ABBC54-1872-4AA3-95E2-F2C063A63F31}
- O42 - Logiciel: Java(TM) 6 Update 21 - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216011FF}
- O42 - Logiciel: K-Lite Codec Pack 4.1.7 (Full) - (.Pas de propriétaire.) [HKLM] -- KLiteCodecPack_is1
- O42 - Logiciel: LAME v3.98.2 for Audacity - (.Pas de propriétaire.) [HKLM] -- LAME for Audacity_is1
- O42 - Logiciel: Learn2 Player (Uninstall Only) - (.Pas de propriétaire.) [HKLM] -- StreetPlugin
- O42 - Logiciel: Lecteur Windows Media 11 - (.Pas de propriétaire.) [HKLM] -- Windows Media Player
- O42 - Logiciel: LibUSB-Win32-0.1.12.1 - (.LibUSB-Win32.) [HKLM] -- LibUSB-Win32_is1
- O42 - Logiciel: LogMeIn Hamachi - (.LogMeIn, Inc..) [HKLM] -- LogMeIn Hamachi
- O42 - Logiciel: LogMeIn Hamachi - (.LogMeIn, Inc..) [HKLM] -- {8A74DEFD-A224-49CC-AB80-4E88BC730125}
- O42 - Logiciel: Logiciel QuickCam de Logitech - (.Logitech, Inc..) [HKLM] -- {C43048A9-742C-4DAD-90D2-E3B53C9DB825}
- O42 - Logiciel: Logitech Gaming Software - (.Pas de propriétaire.) [HKLM] -- {B9242864-2841-4ADE-86E0-8F90F91B04DD}
- O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
- O42 - Logiciel: MediaCUB - (.zoug.) [HKLM] -- {B1493D8A-C782-4ED3-A34D-8A9B8D9925BF}
- O42 - Logiciel: MediaCUB - (.zoug.) [HKLM] -- {C31FE5F6-AFC5-4DC9-A439-83600629D0E9}
- O42 - Logiciel: Messenger Plus! Live - (.Yuna Software.) [HKLM] -- Messenger Plus! Live
- O42 - Logiciel: Microsoft .NET Framework 2.0 Service Pack 2 - (.Microsoft Corporation.) [HKLM] -- {C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
- O42 - Logiciel: Microsoft .NET Framework 3.0 Service Pack 2 - (.Microsoft Corporation.) [HKLM] -- {A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
- O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 SP1
- O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
- O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
- O42 - Logiciel: Microsoft Office Professional Edition 2003 - (.Microsoft Corporation.) [HKLM] -- {9011040C-6000-11D3-8CFE-0150048383C9}
- O42 - Logiciel: Microsoft SQL Server 2005 - (.Microsoft Corporation.) [HKLM] -- Microsoft SQL Server 2005
- O42 - Logiciel: Microsoft SQL Server 2005 Express Edition (RADIONOMY536765) - (.Microsoft Corporation.) [HKLM] -- {480DBB60-F0B6-45F2-B26F-1A2E11197791}
- O42 - Logiciel: Microsoft SQL Server Native Client - (.Microsoft Corporation.) [HKLM] -- {1F24E48F-7692-4E89-8784-68DD4D2712A0}
- O42 - Logiciel: Microsoft SQL Server VSS Writer - (.Microsoft Corporation.) [HKLM] -- {A30179B7-997A-4D47-AA43-57AE59A9C78B}
- O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
- O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM] -- {770657D0-A123-3C07-8E44-1C83EC895118}
- O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {837b34e3-7c30-493c-8f6a-2b0f04e2912c}
- O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
- O42 - Logiciel: MobileMe Control Panel - (.Apple Inc..) [HKLM] -- {3AC54383-31D1-4907-961B-B12CBB1D0AE8}
- O42 - Logiciel: Module de compatibilité pour Microsoft Office System 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0020-040C-0000-0000000FF1CE}
- O42 - Logiciel: Mozilla Firefox (3.6.13) - (.Mozilla.) [HKLM] -- Mozilla Firefox (3.6.13)
- O42 - Logiciel: Mozilla Thunderbird (3.1.7) - (.Mozilla.) [HKLM] -- Mozilla Thunderbird (3.1.7)
- O42 - Logiciel: Mp3tag v2.47b - (.Florian Heidenreich.) [HKLM] -- Mp3tag
- O42 - Logiciel: Multimedia Tools - Audacity - (.Pas de propriétaire.) [HKLM] -- Multimedia Tools - Audacity
- O42 - Logiciel: NVIDIA Drivers - (.Pas de propriétaire.) [HKLM] -- NVIDIA Drivers
- O42 - Logiciel: Notepad++ - (.Pas de propriétaire.) [HKLM] -- Notepad++
- O42 - Logiciel: Octoshape Streaming Services - (.Pas de propriétaire.) [HKCU] -- Octoshape Streaming Services
- O42 - Logiciel: OpenOffice.org 3.1 - (.OpenOffice.org.) [HKLM] -- {B2E581DB-C4DD-432C-AC84-ED761AC056BC}
- O42 - Logiciel: Orange WebTV Player 1.28971 - (.Orange.) [HKLM] -- Orange WebTV Player_is1
- O42 - Logiciel: Outil de téléchargement Windows Live - (.Microsoft Corporation.) [HKLM] -- {205C6BDD-7B73-42DE-8505-9A093F35A238}
- O42 - Logiciel: PDF-XChange 3 Pro - (.Tracker Software.) [HKLM] -- PDF-XChange 3 Pro_is1
- O42 - Logiciel: PDFCreator - (.Frank Heindörfer, Philip Chinery.) [HKLM] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}
- O42 - Logiciel: PokerTH - (.Name of your company.) [HKLM] -- PokerTH 0.7.1
- O42 - Logiciel: Programme de gestion Camera de Logitech® - (.Pas de propriétaire.) [HKLM] -- QcDrv
- O42 - Logiciel: Project64 1.6 - (.Project64.) [HKLM] -- {9559F7CA-5E34-4237-A2D9-D856464AD727}
- O42 - Logiciel: QuickFreedom 1.2.0 - (.Dancool999.) [HKLM] -- {676B241C-AED4-400B-98FF-267773B94B11}_is1
- O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {A429C2AE-EBF1-4F81-A221-1C115CAADDAD}
- O42 - Logiciel: REALTEK GbE & FE Ethernet PCI NIC Driver - (.Realtek.) [HKLM] -- {ACCA20B0-C4D1-4BF5-BF21-0A0EB5EF9730}
- O42 - Logiciel: RadioManager - (.Radionomy.) [HKLM] -- {D9244DE0-A2A0-4DCC-BC60-306E0AE85681}
- O42 - Logiciel: RealPlayer - (.RealNetworks.) [HKLM] -- RealPlayer 6.0
- O42 - Logiciel: Realtek AC'97 Audio - (.Realtek Semiconductor Corp..) [HKLM] -- {FB08F381-6533-4108-B7DD-039E11FBC27E}
- O42 - Logiciel: Regressi - (.Evariste.) [HKLM] -- {E2E164AB-1367-488F-8F1F-BA312DB2FF18}
- O42 - Logiciel: RomStation - (.Pas de propriétaire.) [HKLM] -- RomStation
- O42 - Logiciel: Safari - (.Apple Inc..) [HKLM] -- {E56D39F8-2A9F-44B4-B068-A72E45A073E6}
- O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- KB931906
- O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
- O42 - Logiciel: Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB2416473
- O42 - Logiciel: Segoe UI - (.Microsoft Corp.) [HKLM] -- {A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}
- O42 - Logiciel: SopCast 3.0.3 - (.SopCast.com.) [HKLM] -- SopCast
- O42 - Logiciel: Spotify - (.Pas de propriétaire.) [HKLM] -- Spotify
- O42 - Logiciel: StreamTorrent 1.0 - (.Pas de propriétaire.) [HKLM] -- StreamTorrent 1.0
- O42 - Logiciel: Subtitle Workshop 2.51 - (.Pas de propriétaire.) [HKLM] -- SubtitleWorkshop
- O42 - Logiciel: Synthesia (remove only) - (.Pas de propriétaire.) [HKLM] -- Synthesia
- O42 - Logiciel: System Requirements Lab - (.Husdawg, LLC.) [HKLM] -- {9E1BAB75-EB78-440D-94C0-A3857BE2E733}
- O42 - Logiciel: System Requirements Lab - (.Pas de propriétaire.) [HKLM] -- SystemRequirementsLab
- O42 - Logiciel: TVUPlayer 2.4.9.1 - (.TVU networks.) [HKLM] -- TVUPlayer
- O42 - Logiciel: TmNationsForever Update 2010-03-15 - (.Nadeo.) [HKLM] -- TmNationsForever_is1
- O42 - Logiciel: Uninstall 1.0.0.1 - (.Pas de propriétaire.) [HKLM] -- Uninstall_is1
- O42 - Logiciel: Update for Microsoft .NET Framework 3.5 SP1 (KB963707) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707
- O42 - Logiciel: Utilitaire de configuration iPhone - (.Apple Inc..) [HKLM] -- {FA54AFB1-5745-4389-B8C1-9F7509672ED1}
- O42 - Logiciel: VC80CRTRedist - 8.0.50727.4053 - (.DivX, Inc.) [HKLM] -- {5EE7D259-D137-4438-9A5F-42F432EC0421}
- O42 - Logiciel: VLC media player 1.1.4 - (.VideoLAN.) [HKLM] -- VLC media player
- O42 - Logiciel: Veetle TV 0.9.18 - (.Veetle, Inc.) [HKLM] -- Veetle TV
- O42 - Logiciel: Viewpoint Media Player - (.Pas de propriétaire.) [HKLM] -- ViewpointMediaPlayer
- O42 - Logiciel: WhoCrashed 2.10 - (.Resplendence Software Projects Sp..) [HKLM] -- WhoCrashed_is1
- O42 - Logiciel: WinPcap 4.1.2 - (.CACE Technologies.) [HKLM] -- WinPcapInst
- O42 - Logiciel: Windows Live Call - (.Microsoft Corporation.) [HKLM] -- {82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
- O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM] -- {ED00D08A-3C5F-488D-93A0-A04F21F23956}
- O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {770F1BEC-2871-4E70-B837-FB8525FFA3B1}
- O42 - Logiciel: Windows Media Format 11 runtime - (.Pas de propriétaire.) [HKLM] -- Windows Media Format Runtime
- O42 - Logiciel: Windows Media Player Firefox Plugin - (.Microsoft Corp.) [HKLM] -- {69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}
- O42 - Logiciel: adsl TV - (.adsl TV / FM.) [HKLM] -- {3AFDD2C6-8663-46B5-B195-6CEB00D44768}
- O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM] -- {DA34FE93-5DC5-48E0-ACC8-A5389E05BB51}
- O42 - Logiciel: µTorrent - (.Pas de propriétaire.) [HKCU] -- uTorrent
- O42 - Logiciel: µTorrent - (.Pas de propriétaire.) [HKLM] -- uTorrent
- ---\\ HKCU & HKLM Software Keys
- [HKCU\Software\1964emu_099]
- [HKCU\Software\AC3filter]
- [HKCU\Software\ALWIL Software]
- [HKCU\Software\ANI]
- [HKCU\Software\AOLToolbar]
- [HKCU\Software\AVS4YOU]
- [HKCU\Software\AXEL]
- [HKCU\Software\Adobe]
- [HKCU\Software\America Online]
- [HKCU\Software\AntiCrash]
- [HKCU\Software\AoAMP4Converter]
- [HKCU\Software\AppDataLow\Software\Adobe]
- [HKCU\Software\AppDataLow\Software\Macromedia]
- [HKCU\Software\AppDataLow\Software]
- [HKCU\Software\AppDataLow]
- [HKCU\Software\Apple Computer, Inc.]
- [HKCU\Software\Apple Inc.]
- [HKCU\Software\Audacity]
- [HKCU\Software\Avance]
- [HKCU\Software\Avira]
- [HKCU\Software\BitTorrent]
- [HKCU\Software\Bitberry]
- [HKCU\Software\Borland]
- [HKCU\Software\Bugsplat]
- [HKCU\Software\Canneverbe Limited]
- [HKCU\Software\Classes]
- [HKCU\Software\Clients]
- [HKCU\Software\ComodoGroup]
- [HKCU\Software\Conduit]
- [HKCU\Software\CoreVorbis]
- [HKCU\Software\Creative Tech]
- [HKCU\Software\Cyberlink]
- [HKCU\Software\Cygwin]
- [HKCU\Software\DSP-worx]
- [HKCU\Software\DT Soft]
- [HKCU\Software\DVDVideoSoft]
- [HKCU\Software\DivXNetworks]
- [HKCU\Software\DivX]
- [HKCU\Software\Emulator]
- [HKCU\Software\Emulators]
- [HKCU\Software\FileHippo.com]
- [HKCU\Software\FreeTime]
- [HKCU\Software\GNU]
- [HKCU\Software\GSpot Appliance Corp]
- [HKCU\Software\Gabest]
- [HKCU\Software\Google]
- [HKCU\Software\Grand Virtual]
- [HKCU\Software\HHD Software]
- [HKCU\Software\Haali]
- [HKCU\Software\Headlight]
- [HKCU\Software\IM Providers]
- [HKCU\Software\Integrator]
- [HKCU\Software\Intel]
- [HKCU\Software\JEDI-VCL]
- [HKCU\Software\JaboSoft]
- [HKCU\Software\JavaSoft]
- [HKCU\Software\Lavalys]
- [HKCU\Software\Leadertech]
- [HKCU\Software\Logitech]
- [HKCU\Software\Macromedia]
- [HKCU\Software\Malwarebytes' Anti-Malware]
- [HKCU\Software\MarineCat]
- [HKCU\Software\MediaInfo]
- [HKCU\Software\Michael Herf]
- [HKCU\Software\Monitored]
- [HKCU\Software\Monumental Games Ltd.]
- [HKCU\Software\MozillaPlugins]
- [HKCU\Software\Mozilla]
- [HKCU\Software\N64 Emulation]
- [HKCU\Software\NRage]
- [HKCU\Software\NVIDIA Corporation]
- [HKCU\Software\NVIDIA nvCpl Container]
- [HKCU\Software\NeoByte Solutions]
- [HKCU\Software\Netscape]
- [HKCU\Software\ODBC]
- [HKCU\Software\Octoshape]
- [HKCU\Software\OpenOffice.org]
- [HKCU\Software\PDFCreator]
- [HKCU\Software\Patchou]
- [HKCU\Software\Piriform]
- [HKCU\Software\Policies]
- [HKCU\Software\Prey]
- [HKCU\Software\RICEDAEDALUS520]
- [HKCU\Software\RICEVIDEO551]
- [HKCU\Software\RICEVIDEO]
- [HKCU\Software\RealNetworks]
- [HKCU\Software\Realtek]
- [HKCU\Software\Regressi]
- [HKCU\Software\Resplendence Sp]
- [HKCU\Software\SecuROM]
- [HKCU\Software\Snowpile]
- [HKCU\Software\Softonic]
- [HKCU\Software\Sports InteractiveLtd]
- [HKCU\Software\Spotify]
- [HKCU\Software\System Requirements Lab]
- [HKCU\Software\TVANTS]
- [HKCU\Software\TVU networks]
- [HKCU\Software\Team17SoftwareLTD]
- [HKCU\Software\Thunderbird]
- [HKCU\Software\Tracker Software]
- [HKCU\Software\Trend Micro]
- [HKCU\Software\Trolltech]
- [HKCU\Software\VB and VBA Program Settings]
- [HKCU\Software\Valve]
- [HKCU\Software\Veetle]
- [HKCU\Software\WinHTTrack Website Copier]
- [HKCU\Software\WinRAR SFX]
- [HKCU\Software\WinRAR]
- [HKCU\Software\Winamp]
- [HKCU\Software\Xenocode]
- [HKCU\Software\YahooPartnerToolbar]
- [HKCU\Software\ZjSoft]
- [HKCU\Software\flv2avi]
- [HKCU\Software\keyhole.com]
- [HKCU\Software\settings]
- [HKCU\Software\vlmc]
- [HKLM\Software\ALWIL Software]
- [HKLM\Software\ANI]
- [HKLM\Software\ASIO]
- [HKLM\Software\AVS4YOU]
- [HKLM\Software\Aardwork]
- [HKLM\Software\Act-3D]
- [HKLM\Software\Adobe]
- [HKLM\Software\Alpha Networks]
- [HKLM\Software\America Online]
- [HKLM\Software\AppDataLow]
- [HKLM\Software\Apple Computer, Inc.]
- [HKLM\Software\Apple Inc.]
- [HKLM\Software\AskBarDis]
- [HKLM\Software\AviSynth]
- [HKLM\Software\Avira]
- [HKLM\Software\BitTorrent]
- [HKLM\Software\C07ft5Y]
- [HKLM\Software\CDDB]
- [HKLM\Software\Classes]
- [HKLM\Software\Clients]
- [HKLM\Software\Codec Tweak Tool]
- [HKLM\Software\ComodoGroup]
- [HKLM\Software\Conduit]
- [HKLM\Software\Creative Labs]
- [HKLM\Software\Creative Tech]
- [HKLM\Software\Cyberlink]
- [HKLM\Software\Cygwin]
- [HKLM\Software\D-Link]
- [HKLM\Software\DT Soft]
- [HKLM\Software\DVDVideoSoft]
- [HKLM\Software\Debug]
- [HKLM\Software\DivXNetworks]
- [HKLM\Software\DivX]
- [HKLM\Software\Eidos]
- [HKLM\Software\Electronic Arts]
- [HKLM\Software\Florian Heidenreich]
- [HKLM\Software\Freeze.com]
- [HKLM\Software\GEAR Software]
- [HKLM\Software\GNU]
- [HKLM\Software\Gabest]
- [HKLM\Software\Gemplus]
- [HKLM\Software\Google]
- [HKLM\Software\HHD Software]
- [HKLM\Software\HaaliMkx]
- [HKLM\Software\InstallShield]
- [HKLM\Software\Intel]
- [HKLM\Software\InterVideo]
- [HKLM\Software\JavaSoft]
- [HKLM\Software\JreMetrics]
- [HKLM\Software\KLCodecPack]
- [HKLM\Software\Lame for Audacity]
- [HKLM\Software\Licenses]
- [HKLM\Software\LogMeIn, Inc.]
- [HKLM\Software\Logitech]
- [HKLM\Software\MSI]
- [HKLM\Software\Macromedia]
- [HKLM\Software\Malwarebytes' Anti-Malware]
- [HKLM\Software\MetaStream]
- [HKLM\Software\MozillaPlugins]
- [HKLM\Software\Mozilla]
- [HKLM\Software\NVIDIA Corporation]
- [HKLM\Software\Name of your company]
- [HKLM\Software\Nullsoft]
- [HKLM\Software\ODBC]
- [HKLM\Software\OpenAL]
- [HKLM\Software\OpenOffice.org]
- [HKLM\Software\PDFCreator]
- [HKLM\Software\Patchou]
- [HKLM\Software\Piriform]
- [HKLM\Software\Policies]
- [HKLM\Software\Prey]
- [HKLM\Software\Program Groups]
- [HKLM\Software\RTLSetup]
- [HKLM\Software\RealNetworks]
- [HKLM\Software\Realtek Semiconductor Corp.]
- [HKLM\Software\Realtek]
- [HKLM\Software\RegisteredApplications]
- [HKLM\Software\RichFX]
- [HKLM\Software\S3R521]
- [HKLM\Software\Schlumberger]
- [HKLM\Software\Secure]
- [HKLM\Software\SolidStateNetworks]
- [HKLM\Software\Sports Interactive Ltd]
- [HKLM\Software\Sun Microsystems]
- [HKLM\Software\Symantec]
- [HKLM\Software\TVU networks]
- [HKLM\Software\TechCity]
- [HKLM\Software\Tracker Software]
- [HKLM\Software\Trad-FR]
- [HKLM\Software\TrendMicro]
- [HKLM\Software\URUSoft]
- [HKLM\Software\Veetle]
- [HKLM\Software\VideoLAN]
- [HKLM\Software\Viewpoint]
- [HKLM\Software\WinPcap]
- [HKLM\Software\Windows 3.1 Migration Status]
- [HKLM\Software\Windows]
- [HKLM\Software\Wise Solutions]
- [HKLM\Software\X-AVCSD]
- [HKLM\Software\Xing Technology Corp.]
- [HKLM\Software\mozilla.org]
- ---\\ Contenu des dossiers ProgramFiles/ProgramData (O43)
- O43 - CFD: 23/05/2009 - 09:49:52 ----D- C:\Program Files\Activision
- O43 - CFD: 16/11/2008 - 22:11:30 ----D- C:\Program Files\Adobe
- O43 - CFD: 02/10/2010 - 21:59:30 ----D- C:\Program Files\adslTV
- O43 - CFD: 30/01/2010 - 11:36:04 ----D- C:\Program Files\Alwil Software
- O43 - CFD: 06/10/2010 - 18:58:48 ----D- C:\Program Files\Amazon
- O43 - CFD: 21/11/2010 - 17:14:40 ----D- C:\Program Files\ANI
- O43 - CFD: 28/12/2008 - 20:35:26 ----D- C:\Program Files\AoA MP4 Converter
- O43 - CFD: 03/11/2008 - 16:37:18 ----D- C:\Program Files\Apple Software Update
- O43 - CFD: 08/07/2010 - 19:54:46 ----D- C:\Program Files\Audacity
- O43 - CFD: 05/12/2010 - 21:15:32 ----D- C:\Program Files\Avira
- O43 - CFD: 30/05/2010 - 21:15:36 ----D- C:\Program Files\AVS4YOU
- O43 - CFD: 03/11/2008 - 18:52:36 ----D- C:\Program Files\Boonty
- O43 - CFD: 21/11/2010 - 17:53:00 ----D- C:\Program Files\CCleaner
- O43 - CFD: 18/09/2010 - 17:56:14 ----D- C:\Program Files\CDBurnerXP
- O43 - CFD: 25/07/2010 - 12:21:08 ----D- C:\Program Files\CDex
- O43 - CFD: 03/10/2010 - 11:15:10 ----D- C:\Program Files\COMODO
- O43 - CFD: 15/06/2010 - 21:26:50 ----D- C:\Program Files\Conduit
- O43 - CFD: 07/07/2010 - 10:50:06 ----D- C:\Program Files\Creative
- O43 - CFD: 21/11/2010 - 17:14:38 ----D- C:\Program Files\D-Link
- O43 - CFD: 03/10/2010 - 13:02:16 ----D- C:\Program Files\Dachshund Software
- O43 - CFD: 21/11/2010 - 17:52:52 ----D- C:\Program Files\Defraggler
- O43 - CFD: 08/08/2010 - 20:13:38 ----D- C:\Program Files\DivX
- O43 - CFD: 24/05/2010 - 09:30:16 ----D- C:\Program Files\DNA
- O43 - CFD: 26/06/2009 - 19:42:50 ----D- C:\Program Files\DVDVideoSoft
- O43 - CFD: 21/11/2010 - 17:16:44 ----D- C:\Program Files\Easy GIF Animator
- O43 - CFD: 09/12/2010 - 12:09:40 ----D- C:\Program Files\Eidos
- O43 - CFD: 06/01/2010 - 20:44:22 ----D- C:\Program Files\Evariste
- O43 - CFD: 18/08/2010 - 12:48:10 ----D- C:\Program Files\Fichiers communs
- O43 - CFD: 18/09/2010 - 17:55:46 ----D- C:\Program Files\FileHippo.com
- O43 - CFD: 30/05/2010 - 20:59:42 ----D- C:\Program Files\Free Video Converter
- O43 - CFD: 24/05/2010 - 14:55:26 ----D- C:\Program Files\FreeTime
- O43 - CFD: 09/12/2010 - 12:27:34 ----D- C:\Program Files\GameShadow
- O43 - CFD: 28/11/2010 - 12:03:56 ----D- C:\Program Files\Google
- O43 - CFD: 18/05/2009 - 22:38:04 ----D- C:\Program Files\HHD Software
- O43 - CFD: 09/12/2010 - 12:09:38 --H-D- C:\Program Files\InstallShield Installation Information
- O43 - CFD: 08/08/2009 - 11:15:14 ----D- C:\Program Files\Internet Explorer
- O43 - CFD: 22/12/2009 - 21:23:44 ----D- C:\Program Files\Invisible Secrets 4
- O43 - CFD: 28/09/2009 - 19:07:18 ----D- C:\Program Files\iPod
- O43 - CFD: 28/09/2009 - 19:08:26 ----D- C:\Program Files\iTunes
- O43 - CFD: 18/08/2010 - 12:47:18 ----D- C:\Program Files\Java
- O43 - CFD: 25/10/2008 - 10:25:40 ----D- C:\Program Files\K-Lite Codec Pack
- O43 - CFD: 26/10/2008 - 21:52:34 ----D- C:\Program Files\KONAMI
- O43 - CFD: 08/07/2010 - 19:55:14 ----D- C:\Program Files\Lame for Audacity
- O43 - CFD: 12/12/2010 - 21:15:08 ----D- C:\Program Files\Lavalys
- O43 - CFD: 29/10/2008 - 10:08:26 ----D- C:\Program Files\Learn2.com
- O43 - CFD: 10/04/2009 - 11:12:18 ----D- C:\Program Files\LibUSB-Win32
- O43 - CFD: 13/08/2010 - 10:29:52 ----D- C:\Program Files\Logitech
- O43 - CFD: 24/06/2010 - 15:48:42 ----D- C:\Program Files\LogMeIn Hamachi
- O43 - CFD: 06/10/2010 - 17:00:20 ----D- C:\Program Files\ma-config.com
- O43 - CFD: 19/12/2010 - 22:54:46 ----D- C:\Program Files\Malwarebytes' Anti-Malware
- O43 - CFD: 25/07/2010 - 21:50:16 ----D- C:\Program Files\MediaCUB
- O43 - CFD: 23/11/2008 - 13:30:50 ----D- C:\Program Files\Messenger
- O43 - CFD: 21/11/2010 - 21:14:28 ----D- C:\Program Files\Messenger Plus! Live
- O43 - CFD: 10/11/2009 - 17:38:10 ----D- C:\Program Files\Microsoft
- O43 - CFD: 14/08/2010 - 12:59:06 ----D- C:\Program Files\Microsoft CAPICOM 2.1.0.2
- O43 - CFD: 23/10/2008 - 19:26:00 ----D- C:\Program Files\microsoft frontpage
- O43 - CFD: 16/11/2008 - 10:59:32 ----D- C:\Program Files\Microsoft Office
- O43 - CFD: 28/09/2010 - 20:47:28 ----D- C:\Program Files\Microsoft Silverlight
- O43 - CFD: 26/05/2010 - 12:27:04 ----D- C:\Program Files\Microsoft SQL Server
- O43 - CFD: 24/05/2010 - 13:20:14 ----D- C:\Program Files\Microsoft.NET
- O43 - CFD: 11/08/2010 - 17:08:22 ----D- C:\Program Files\Movie Maker
- O43 - CFD: 11/12/2010 - 22:19:40 ----D- C:\Program Files\Mozilla Firefox
- O43 - CFD: 10/12/2010 - 20:46:46 ----D- C:\Program Files\Mozilla Thunderbird
- O43 - CFD: 08/12/2010 - 22:18:58 ----D- C:\Program Files\Mp3tag
- O43 - CFD: 08/08/2009 - 11:18:02 ----D- C:\Program Files\MSBuild
- O43 - CFD: 16/11/2008 - 10:59:18 ----D- C:\Program Files\MSECache
- O43 - CFD: 18/06/2010 - 13:19:02 ----D- C:\Program Files\MSI
- O43 - CFD: 07/07/2010 - 10:52:16 ----D- C:\Program Files\MSN
- O43 - CFD: 23/10/2008 - 19:21:58 ----D- C:\Program Files\MSN Gaming Zone
- O43 - CFD: 24/05/2010 - 13:19:48 ----D- C:\Program Files\MSXML 6.0
- O43 - CFD: 15/06/2010 - 21:26:10 ----D- C:\Program Files\MultimediaTools
- O43 - CFD: 23/11/2008 - 13:22:42 ----D- C:\Program Files\NetMeeting
- O43 - CFD: 09/08/2010 - 20:25:12 ----D- C:\Program Files\Notepad++
- O43 - CFD: 23/10/2008 - 19:22:06 ----D- C:\Program Files\Online Services
- O43 - CFD: 01/02/2010 - 16:44:02 ----D- C:\Program Files\OpenOffice.org 3
- O43 - CFD: 06/06/2009 - 19:58:32 ----D- C:\Program Files\Orange
- O43 - CFD: 12/05/2010 - 21:39:44 ----D- C:\Program Files\Outlook Express
- O43 - CFD: 24/06/2010 - 15:26:56 ----D- C:\Program Files\Paradox Interactive
- O43 - CFD: 09/01/2010 - 19:09:06 ----D- C:\Program Files\PDFCreator
- O43 - CFD: 23/06/2010 - 14:22:28 ----D- C:\Program Files\PokerTH
- O43 - CFD: 21/12/2008 - 19:50:54 ----D- C:\Program Files\Project64 1.6
- O43 - CFD: 10/04/2009 - 11:31:10 ----D- C:\Program Files\QuickFreedom
- O43 - CFD: 07/07/2010 - 10:52:14 ----D- C:\Program Files\QuickTime
- O43 - CFD: 24/05/2010 - 12:43:16 ----D- C:\Program Files\Radionomy
- O43 - CFD: 29/10/2008 - 10:07:56 ----D- C:\Program Files\Real
- O43 - CFD: 06/10/2010 - 19:37:46 ----D- C:\Program Files\Realtek
- O43 - CFD: 16/06/2010 - 12:46:30 ----D- C:\Program Files\Realtek AC97
- O43 - CFD: 08/08/2009 - 11:17:48 ----D- C:\Program Files\Reference Assemblies
- O43 - CFD: 09/12/2010 - 12:59:04 ----D- C:\Program Files\RomStation
- O43 - CFD: 11/09/2009 - 19:07:06 ----D- C:\Program Files\Safari
- O43 - CFD: 23/10/2008 - 19:24:10 ----D- C:\Program Files\Services en ligne
- O43 - CFD: 18/06/2010 - 13:20:08 ----D- C:\Program Files\Setup Files
- O43 - CFD: 07/07/2010 - 10:52:12 ----D- C:\Program Files\SopCast
- O43 - CFD: 20/08/2010 - 13:32:04 ----D- C:\Program Files\Sports Interactive
- O43 - CFD: 24/05/2010 - 09:44:22 ----D- C:\Program Files\Spotify
- O43 - CFD: 13/12/2010 - 21:30:50 ----D- C:\Program Files\StreamTorrent 1.0
- O43 - CFD: 03/10/2010 - 11:33:04 ----D- C:\Program Files\Synthesia
- O43 - CFD: 24/05/2010 - 10:03:46 ----D- C:\Program Files\SystemRequirementsLab
- O43 - CFD: 27/05/2010 - 18:09:52 ----D- C:\Program Files\TmNationsForever
- O43 - CFD: 28/02/2010 - 13:48:50 ----D- C:\Program Files\Tracker Software
- O43 - CFD: 24/08/2010 - 12:54:20 ----D- C:\Program Files\Trend Micro
- O43 - CFD: 29/07/2010 - 21:37:36 ----D- C:\Program Files\TVUPlayer
- O43 - CFD: 20/08/2010 - 19:41:32 ----D- C:\Program Files\URLSnooper2
- O43 - CFD: 31/08/2010 - 18:42:20 ----D- C:\Program Files\URUSoft
- O43 - CFD: 11/09/2009 - 19:10:10 ----D- C:\Program Files\Utilitaire de configuration iPhone
- O43 - CFD: 21/11/2010 - 17:16:58 ----D- C:\Program Files\uTorrent
- O43 - CFD: 18/04/2010 - 13:39:52 ----D- C:\Program Files\Veetle
- O43 - CFD: 11/04/2009 - 10:32:42 ----D- C:\Program Files\VideoLAN
- O43 - CFD: 29/10/2008 - 10:08:24 ----D- C:\Program Files\Viewpoint
- O43 - CFD: 24/08/2010 - 12:53:16 ----D- C:\Program Files\VLMC
- O43 - CFD: 12/09/2010 - 17:20:16 ----D- C:\Program Files\WhoCrashed
- O43 - CFD: 28/12/2008 - 20:23:04 ----D- C:\Program Files\WinAVI MP4 Converter
- O43 - CFD: 10/11/2009 - 17:36:56 ----D- C:\Program Files\Windows Live
- O43 - CFD: 10/11/2009 - 17:37:40 ----D- C:\Program Files\Windows Live SkyDrive
- O43 - CFD: 16/11/2008 - 11:25:06 ----D- C:\Program Files\Windows Media Connect 2
- O43 - CFD: 21/11/2010 - 17:19:14 ----D- C:\Program Files\Windows Media Player
- O43 - CFD: 23/11/2008 - 13:22:38 ----D- C:\Program Files\Windows NT
- O43 - CFD: 26/11/2010 - 22:49:14 ----D- C:\Program Files\WinPcap
- O43 - CFD: 25/10/2008 - 17:15:36 ----D- C:\Program Files\WinRAR
- O43 - CFD: 14/08/2010 - 13:01:50 ----D- C:\Program Files\Xenocode
- O43 - CFD: 23/10/2008 - 19:26:00 ----D- C:\Program Files\xerox
- O43 - CFD: 03/11/2008 - 17:36:20 --H-D- C:\Program Files\Zero G Registry
- O43 - CFD: 20/12/2010 - 09:44:58 ----D- C:\Program Files\ZHPDiag
- O43 - CFD: 05/06/2010 - 16:47:32 ----D- C:\Program Files\Fichiers Communs\Adobe
- O43 - CFD: 17/02/2010 - 18:32:24 ----D- C:\Program Files\Fichiers Communs\Adobe AIR
- O43 - CFD: 29/10/2008 - 10:08:32 ----D- C:\Program Files\Fichiers Communs\aolback
- O43 - CFD: 28/09/2009 - 19:07:16 ----D- C:\Program Files\Fichiers Communs\Apple
- O43 - CFD: 30/05/2010 - 21:15:32 ----D- C:\Program Files\Fichiers Communs\AVSMedia
- O43 - CFD: 07/07/2010 - 10:50:34 ----D- C:\Program Files\Fichiers Communs\Creative Labs Shared
- O43 - CFD: 25/10/2008 - 13:14:52 ----D- C:\Program Files\Fichiers Communs\DESIGNER
- O43 - CFD: 08/08/2010 - 20:13:38 ----D- C:\Program Files\Fichiers Communs\DivX Shared
- O43 - CFD: 26/06/2009 - 19:42:58 ----D- C:\Program Files\Fichiers Communs\DVDVideoSoft
- O43 - CFD: 26/10/2008 - 16:03:16 ----D- C:\Program Files\Fichiers Communs\InstallShield
- O43 - CFD: 18/08/2010 - 12:48:10 ----D- C:\Program Files\Fichiers Communs\Java
- O43 - CFD: 13/08/2010 - 10:30:34 ----D- C:\Program Files\Fichiers Communs\Logitech
- O43 - CFD: 24/07/2010 - 18:17:12 ----D- C:\Program Files\Fichiers Communs\Microsoft Shared
- O43 - CFD: 23/10/2008 - 19:23:32 ----D- C:\Program Files\Fichiers Communs\MSSoap
- O43 - CFD: 29/10/2008 - 10:08:12 ----D- C:\Program Files\Fichiers Communs\Nullsoft
- O43 - CFD: 24/07/2010 - 18:14:00 ----D- C:\Program Files\Fichiers Communs\ODBC
- O43 - CFD: 06/04/2009 - 07:22:34 ----D- C:\Program Files\Fichiers Communs\Real
- O43 - CFD: 23/10/2008 - 19:23:34 ----D- C:\Program Files\Fichiers Communs\Services
- O43 - CFD: 23/10/2008 - 20:53:32 ----D- C:\Program Files\Fichiers Communs\SpeechEngines
- O43 - CFD: 23/11/2008 - 13:22:34 ----D- C:\Program Files\Fichiers Communs\System
- O43 - CFD: 10/11/2009 - 17:34:12 ----D- C:\Program Files\Fichiers Communs\Windows Live
- O43 - CFD: 07/07/2010 - 10:52:22 -SH-D- C:\Program Files\Fichiers Communs\WindowsLiveInstaller
- O43 - CFD: 06/04/2009 - 07:22:42 ----D- C:\Program Files\Fichiers Communs\xing shared
- ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
- O44 - LFC:[MD5.64EE1200F915817C00FCFD7F38EF1200] - 20/12/2010 - 09:43:12 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\WindowsUpdate.log [100391]
- O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 20/12/2010 - 09:41:58 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\0.log [0]
- O44 - LFC:[MD5.64EE1200F915817C00FCFD7F38EF1200] - 20/12/2010 - 09:41:24 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\wiadebug.log [157]
- O44 - LFC:[MD5.64EE1200F915817C00FCFD7F38EF1200] - 20/12/2010 - 09:41:10 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\wiaservc.log [50]
- O44 - LFC:[MD5.AEE9262F1C3766881DD8227B3EB46CBF] - 20/12/2010 - 09:40:19 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\ANIWZCSUSERNAME{4EACFB2E-B84B-4CAC-8532-EF7F5DF9C947} [7]
- O44 - LFC:[MD5.1EF5BCF5442B52FC05AC7C7AC6D683D3] - 20/12/2010 - 09:40:11 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\nvapps.xml [178422]
- O44 - LFC:[MD5.F0E2081796A12DFE29AB469748C952C1] - 20/12/2010 - 09:39:38 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\wpa.dbl [13646]
- O44 - LFC:[MD5.6A2CB42966136854F4464516FBB4AE72] - 20/12/2010 - 09:37:57 -S-A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\bootstat.dat [2048]
- O44 - LFC:[MD5.74ABF0B0945FFF8169D26154919BD4D0] - 19/12/2010 - 23:26:29 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\trace.txt [11355]
- O44 - LFC:[MD5.352DD50FCBEC2F7A24335BBAD651AC79] - 19/12/2010 - 23:17:26 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\d3d9caps.dat [1324]
- O44 - LFC:[MD5.943E82EEE98741A051EB7ED85117B202] - 19/12/2010 - 22:50:40 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\ntbtlog.txt [675986]
- O44 - LFC:[MD5.050774FFE87C1B7F6DC28E787ACA45A2] - 19/12/2010 - 20:24:01 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\BMXBkpCtrlState-{00000002-00000000-00000002-00001102-00000004-10091102}.rfx [29952]
- O44 - LFC:[MD5.050774FFE87C1B7F6DC28E787ACA45A2] - 19/12/2010 - 20:24:01 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\BMXCtrlState-{00000002-00000000-00000002-00001102-00000004-10091102}.rfx [29952]
- O44 - LFC:[MD5.009B62989D65E66C9C808EF07BD2FCB8] - 19/12/2010 - 20:24:01 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\BMXState-{00000002-00000000-00000002-00001102-00000004-10091102}.rfx [30888]
- O44 - LFC:[MD5.009B62989D65E66C9C808EF07BD2FCB8] - 19/12/2010 - 20:24:01 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\BMXStateBkp-{00000002-00000000-00000002-00001102-00000004-10091102}.rfx [30888]
- O44 - LFC:[MD5.B3DC9DBB42FE78EE1D2DFDFF87D9DF72] - 19/12/2010 - 20:24:01 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\DVCState-{00000002-00000000-00000002-00001102-00000004-10091102}.rfx [11564]
- O44 - LFC:[MD5.64EE1200F915817C00FCFD7F38EF1200] - 19/12/2010 - 20:23:56 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\SchedLgU.Txt [8388]
- O44 - LFC:[MD5.299D37C4566EA4A0227D8518A26D9803] - 19/12/2010 - 20:23:42 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\{00000002-00000000-00000002-00001102-00000004-10091102}.BAK [4931577]
- O44 - LFC:[MD5.64EE1200F915817C00FCFD7F38EF1200] - 19/12/2010 - 20:23:42 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\{00000002-00000000-00000002-00001102-00000004-10091102}.CDF [4931577]
- O44 - LFC:[MD5.ED49D9F0A0515A97367E71B16456929E] - 19/12/2010 - 20:04:44 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\setupapi.log [3345]
- O44 - LFC:[MD5.64EE1200F915817C00FCFD7F38EF1200] - 13/12/2010 - 17:17:33 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\Sti_Trace.log [0]
- O44 - LFC:[MD5.A36EE93698802CD899F98BFD553D8185] - 05/12/2010 - 21:15:43 ---A- . (.Avira GmbH - AVIRA SnapShot Driver.) -- C:\WINDOWS\System32\drivers\ssmdrv.sys [28520]
- O44 - LFC:[MD5.87451AA7CC6B6A590EBCEA05E755075A] - 05/12/2010 - 21:15:37 ---A- . (.Avira GmbH - Avira AntiVir File Filter Driver Manager.) -- C:\WINDOWS\System32\drivers\avgntmgr.sys [22360]
- O44 - LFC:[MD5.5B44C214F9CD9F590BE9125347610380] - 05/12/2010 - 21:15:37 ---A- . (.Avira GmbH - Avira AntiVir File Filter Driver.) -- C:\WINDOWS\System32\drivers\avgntdd.sys [45416]
- O44 - LFC:[MD5.F8C56231ED5ECF7D1B46B0330880CCEF] - 05/12/2010 - 21:15:37 ---A- . (.Avira GmbH - Avira Driver for Security Enhancement.) -- C:\WINDOWS\System32\drivers\avipbb.sys [126856]
- O44 - LFC:[MD5.1EB7D72A82F94F7E9496D363FCE00B68] - 05/12/2010 - 21:15:37 ---A- . (.Avira GmbH - Avira Minifilter Driver.) -- C:\WINDOWS\System32\drivers\avgntflt.sys [60936]
- O44 - LFC:[MD5.A50C121DA7CD64DA92C58F4F19EF47F2] - 26/11/2010 - 22:49:12 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\-1 [99]
- O44 - LFC:[MD5.DED9FCB7BC39184A931033B04FD181C1] - 21/11/2010 - 17:35:29 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\PerfStringBackup.TMP [4978]
- O44 - LFC:[MD5.AE337EBCB2F97A052DE79345C0B356CB] - 21/11/2010 - 17:35:29 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\perfc009.dat [86214]
- O44 - LFC:[MD5.8B13FFA35A6730C1CDCF2AA73BA3ED77] - 21/11/2010 - 17:35:29 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\perfc00C.dat [104796]
- O44 - LFC:[MD5.D699D46CD071D76CC0E4CDE9177DB5A0] - 21/11/2010 - 17:35:29 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\perfh009.dat [482276]
- O44 - LFC:[MD5.2827BC4E7A5386B9155599D5CAE2BDFA] - 21/11/2010 - 17:35:29 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\perfh00C.dat [558102]
- O44 - LFC:[MD5.2392575899F8538788D10937945BD8A6] - 21/11/2010 - 17:22:46 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\FNTCACHE.DAT [235168]
- ---\\ Opérations et fonctions au démarrage de Windows Explorer (O46)
- O46 - SEH:ShellExecuteHooks - URL Exec Hook - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - shell32.dll
- ---\\ Export de clé d'application autorisée (ECAA) (O47)
- O47 - AAKE:Key Export SP - "%windir%\system32\sessmgr.exe" [Enabled] .(.Microsoft Corporation - Gestionnaire de session de l'aide sur le Bureau à distance de Microsoft®.) -- C:\WINDOWS\system32\sessmgr.exe
- O47 - AAKE:Key Export SP - "C:\Program Files\Fichiers communs\AOL\ACS\AOLDial.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\Fichiers communs\AOL\ACS\AOLacsd.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\AOL 9.0\waol.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- C:\Program Files\AOL 9.0\waol.exe
- O47 - AAKE:Key Export SP - "C:\Program Files\Sports Interactive\Football Manager 2009 Demo\fm.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\DNA\btdna.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\BitTorrent\bittorrent.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "%windir%\Network Diagnostic\xpnetdiag.exe" [Enabled] .(.Microsoft Corporation - Network Diagnostic for Windows XP.) (.not file.) -- C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
- O47 - AAKE:Key Export SP - "C:\Program Files\uTorrent\uTorrent.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\Sports Interactive\Football Manager 2008\fm.exe" [Disabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\Sports Interactive\Football Manager 2009\fm.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Documents and Settings\ken-sama\Bureau\madden\mainapp.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\TVUPlayer\TVUPlayer.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\SopCast\adv\SopAdver.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\SopCast\SopCast.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\EA GAMES\La Bataille pour la Terre du Milieu(tm)\game.dat" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\Mozilla Firefox\firefox.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\Java\jre6\launch4j-tmp\JDownloader.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\WINDOWS\system32\java.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Games\Worms Armageddon - New Edition\WA.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\Activision\Call of Duty 2\CoD2MP_s.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\TVAnts\Tvants.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\iTunes\iTunes.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\StreamTorrent 1.0\StreamTorrent.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\Sports Interactive\Football Manager 2010 Demo\fm.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\Windows Live\Messenger\wlcsdk.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Riot Games\League of Legends\air\LolClient.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Riot Games\League of Legends\game\League of Legends.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\League of Legends\Air\LolClient.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\League of Legends\Game\League of Legends.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\Spotify\spotify.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\TmNationsForever\TmForever.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Documents and Settings\ken-sama\Application Data\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\adslTV\adsltv.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\adslTV\VLC\vlc.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\WINDOWS\system32\dpvsetup.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\WINDOWS\system32\rundll32.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\ma-config.com\maconfservice.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export SP - "C:\Program Files\Sports Interactive\Football Manager 2010\fm.exe" [Disabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export DP - "%windir%\system32\sessmgr.exe" [Enabled] .(.Microsoft Corporation - Gestionnaire de session de l'aide sur le Bureau à distance de Microsoft®.) -- C:\WINDOWS\system32\sessmgr.exe
- O47 - AAKE:Key Export DP - "C:\Program Files\Fichiers communs\AOL\ACS\AOLDial.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export DP - "C:\Program Files\Fichiers communs\AOL\ACS\AOLacsd.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export DP - "C:\Program Files\AOL 9.0\waol.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- C:\Program Files\AOL 9.0\waol.exe
- O47 - AAKE:Key Export DP - "%windir%\Network Diagnostic\xpnetdiag.exe" [Enabled] .(.Microsoft Corporation - Network Diagnostic for Windows XP.) (.not file.) -- C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
- O47 - AAKE:Key Export DP - "C:\Program Files\Windows Live\Messenger\wlcsdk.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- O47 - AAKE:Key Export DP - "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --
- ---\\ Déni du service (Local Security Authority) (LSA) (O48)
- O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\WINDOWS\System32\msv1_0.dll
- O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l'Éditeur de configuration de sécurité Windows.) -- C:\WINDOWS\System32\scecli.dll
- O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\WINDOWS\System32\msv1_0.dll
- ---\\ Image File Execution Options (IFEO) (O50)
- O50 - IFEO:Image File Execution Options - Your Image File Name Here without a path - ntsd -d
- ---\\ MountPoints2 Shell Key (MPSK) (O51)
- O51 - MPSK:{4a3cc5cc-a5bc-11de-a690-00219199bc9b}\Shell\AutoRun\command. (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\NoLimit.exe (.not file.)
- ---\\ Trojan Driver Search Data (HKLM)(TDSD) (O52)
- O52 - TDSD: \Drivers32\"msacm.trspch"="tssoft32.acm" . (.DSP GROUP, INC. - Codec audio TrueSpeech(TM) DSP Group pour MSACM V3.50.) -- C:\WINDOWS\System32\tssoft32.acm
- O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Cinepak® Codec.) -- C:\WINDOWS\System32\iccvid.dll
- O52 - TDSD: \Drivers32\"VIDC.I420"="lvcodec2.dll" . (.Logitech Inc. - Video Codec.) -- C:\WINDOWS\System32\lvcodec2.dll
- O52 - TDSD: \Drivers32\"vidc.iv31"="ir32_32.dll" . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\ir32_32.dll
- O52 - TDSD: \Drivers32\"vidc.iv32"="ir32_32.dll" . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\ir32_32.dll
- O52 - TDSD: \Drivers32\"vidc.iv41"="ir41_32.ax" . (.Intel Corporation - Intel Indeo® Video 4.5.) -- C:\WINDOWS\System32\ir41_32.ax
- O52 - TDSD: \Drivers32\"msacm.sl_anet"="sl_anet.acm" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\WINDOWS\System32\sl_anet.acm
- O52 - TDSD: \Drivers32\"msacm.iac2"="C:\WINDOWS\system32\iac25_32.ax" . (.Intel Corporation - Indeo® audio software.) -- C:\WINDOWS\system32\iac25_32.ax
- O52 - TDSD: \Drivers32\"vidc.iv50"="ir50_32.dll" . (.Intel Corporation - Intel Indeo® video 5.10.) -- C:\WINDOWS\System32\ir50_32.dll
- O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\WINDOWS\system32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\WINDOWS\system32\l3codeca.acm
- O52 - TDSD: \Drivers32\"VIDC.XVID"="xvidvfw.dll" . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\xvidvfw.dll
- O52 - TDSD: \Drivers32\"msacm.ac3acm"="ac3acm.acm" . (.fccHandler - AC-3 ACM Codec.) -- C:\WINDOWS\System32\ac3acm.acm
- O52 - TDSD: \Drivers32\"msacm.lameacm"="lameACM.acm" . (.http://www.mp3dev.org/ - Lame MP3 codec engine.) -- C:\WINDOWS\System32\lameACM.acm
- O52 - TDSD: \Drivers32\"VIDC.FFDS"="ff_vfw.dll" . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\ff_vfw.dll
- O52 - TDSD: \Drivers32\"vidc.DIVX"="DivX.dll" . (.DivX, Inc. - DivX.) -- C:\WINDOWS\System32\DivX.dll
- O52 - TDSD: \Drivers32\"vidc.yv12"="DivX.dll" . (.DivX, Inc. - DivX.) -- C:\WINDOWS\System32\DivX.dll
- O52 - TDSD: \drivers.desc\"sl_anet.acm"="Sipro Lab Telecom Audio Codec" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\WINDOWS\System32\sl_anet.acm
- O52 - TDSD: \drivers.desc\"C:\WINDOWS\system32\iac25_32.ax"="Indeo® audio software" . (.Intel Corporation - Indeo® audio software.) -- C:\WINDOWS\system32\iac25_32.ax
- O52 - TDSD: \drivers.desc\"ir50_32.dll"="Indeo® video 5.10" . (.Pas de propriétaire - Pas de description.) -- (.not file.)
- O52 - TDSD: \drivers.desc\"C:\WINDOWS\system32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\WINDOWS\system32\l3codeca.acm
- O52 - TDSD: \drivers.desc\"xvidvfw.dll"="Xvid MPEG-4 Video Codec v1.2-dev" . (.Pas de propriétaire - Pas de description.) -- (.not file.)
- O52 - TDSD: \drivers.desc\"lameACM.acm"="Lame ACM MP3 CODEC v3.98" . (.Pas de propriétaire - Pas de description.) -- (.not file.)
- O52 - TDSD: \drivers.desc\"ac3acm.acm"="AC-3 ACM Codec" . (.fccHandler - AC-3 ACM Codec.) -- C:\WINDOWS\System32\ac3acm.acm
- O52 - TDSD: \drivers.desc\"ff_vfw.dll"="ffdshow video encoder" . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\ff_vfw.dll
- O52 - TDSD: \drivers.desc\"tssoft32.acm"="tssoft32.acm" . (.DSP GROUP, INC. - Codec audio TrueSpeech(TM) DSP Group pour MSACM V3.50.) -- C:\WINDOWS\System32\tssoft32.acm
- O52 - TDSD: \drivers.desc\"iccvid.dll"="iccvid.dll" . (.Radius Inc. - Cinepak® Codec.) -- C:\WINDOWS\System32\iccvid.dll
- O52 - TDSD: \drivers.desc\"ir32_32.dll"="ir32_32.dll" . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\ir32_32.dll
- O52 - TDSD: \drivers.desc\"ir41_32.ax"="ir41_32.ax" . (.Intel Corporation - Intel Indeo® Video 4.5.) -- C:\WINDOWS\System32\ir41_32.ax
- O52 - TDSD: \drivers.desc\"DivX.dll"="DivX 6.9.2 Codec" . (.Pas de propriétaire - Pas de description.) -- (.not file.)
- ---\\ ShareTools MSconfig StartupReg (SMSR) (O53)
- O53 - SMSR:HKLM\...\startupreg\ANIWZCS2Service [Key] . (.Wireless Service - ANIWZCS2 launcher for Windows..) -- C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
- O53 - SMSR:HKLM\...\startupreg\AppleSyncNotifier [Key] . (.Apple Inc. - AppleSyncNotifier.) -- C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
- O53 - SMSR:HKLM\...\startupreg\BitTorrent DNA [Key] . (.Pas de propriétaire - Pas de description.) -- "C:\Program Files\DNA\btdna.exe
- O53 - SMSR:HKLM\...\startupreg\DivXUpdate [Key] . (.Pas de propriétaire - Pas de description.) -- "C:\Program Files\DivX\DivX Update\DivXUpdate.exe
- O53 - SMSR:HKLM\...\startupreg\iTunesHelper [Key] . (.Pas de propriétaire - Pas de description.) -- "C:\Program Files\iTunes\iTunesHelper.exe
- O53 - SMSR:HKLM\...\startupreg\LogitechSoftwareUpdate [Key] . (.Pas de propriétaire - Pas de description.) -- "C:\Program Files\Logitech\Video\ManifestEngine.exe
- O53 - SMSR:HKLM\...\startupreg\LogitechVideoRepair [Key] . (.Logitech Inc. - Logitech QuickCam Startup Application.) -- C:\Program Files\Logitech\Video\ISStart.exe
- O53 - SMSR:HKLM\...\startupreg\LogitechVideoTray [Key] . (.Logitech Inc. - ImageStudio Tray Application.) -- C:\Program Files\Logitech\Video\LogiTray.exe
- O53 - SMSR:HKLM\...\startupreg\LogMeIn Hamachi Ui [Key] . (.Pas de propriétaire - Pas de description.) -- "C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe
- O53 - SMSR:HKLM\...\startupreg\LVCOMSX [Key] . (.Logitech Inc. - LVCom Server.) -- C:\WINDOWS\system32\LVCOMSX.exe
- O53 - SMSR:HKLM\...\startupreg\Malwarebytes' Anti-Malware [Key] . (.Pas de propriétaire - Pas de description.) -- "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
- O53 - SMSR:HKLM\...\startupreg\NvCplDaemon [Key] . (.NVIDIA Corporation - NVIDIA Display Properties Extension.) -- C:\WINDOWS\system32\NvCpl.dll
- O53 - SMSR:HKLM\...\startupreg\NvMediaCenter [Key] . (.NVIDIA Corporation - NVIDIA Media Center Library.) -- C:\WINDOWS\system32\NvMcTray.dll
- O53 - SMSR:HKLM\...\startupreg\nwiz [Key] . (.Pas de propriétaire - Pas de description.) -- C:\Windows\System32\nwiz.exe
- O53 - SMSR:HKLM\...\startupreg\QuickTime Task [Key] . (.Pas de propriétaire - Pas de description.) -- "C:\Program Files\QuickTime\QTTask.exe
- O53 - SMSR:HKLM\...\startupreg\UniqueDisplay [Key] . (.Pas de propriétaire - Pas de description.) -- C:\Documents and Settings\ken-sama\Mes documents\Downloads\UniqueDisplay.exe
- ---\\ Microsoft Control Security Providers (MCSP) (O54)
- O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Client DPA pour plate-forme 32 bit.) -- C:\WINDOWS\system32\msapsspc.dll
- O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\WINDOWS\system32\schannel.dll
- O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Package d'authentification Digest SSPI.) -- C:\WINDOWS\system32\digest.dll
- O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Client DPA pour plate-forme 32 bit.) -- C:\WINDOWS\system32\msapsspc.dll
- O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\WINDOWS\system32\schannel.dll
- O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Package d'authentification Digest SSPI.) -- C:\WINDOWS\system32\digest.dll
- ---\\ Microsoft Windows Policies System (MWPS) (O55)
- O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
- O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=
- O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=
- O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
- O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
- ---\\ Microsoft Windows Policies Explorer (MWPE) (O56)
- O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveTypeAutoRun"=145
- O56 - MWPE:[HKLM\...\policies\Explorer] - "HonorAutoRunSetting"=1
- ---\\ Liste des Drivers Système (SDL) (O58)
- O58 - SDL:[MD5.BA88534A3CEB6161E7432438B9EA4F54] - 24/02/2004 - 04:08:52 ---A- . (.Sensaura - Sensaura WDM 3D Audio Driver.) -- C:\WINDOWS\system32\drivers\ALCXSENS.SYS [400384]
- O58 - SDL:[MD5.DD8520280304B6145A6BE31008748C7C] - 24/09/2008 - 09:40:22 R--A- . (.Realtek Semiconductor Corp. - Realtek AC'97 Audio Driver (WDM).) -- C:\WINDOWS\system32\drivers\alcxwdm.sys [4122368]
- O58 - SDL:[MD5.D880831279ED91F9A4190A2DB9539EA9] - 29/10/2008 - 10:07:57 ---A- . (.Windows (R) 2000 DDK provider - TR Manager.) -- C:\WINDOWS\system32\drivers\asctrm.sys [8552]
- O58 - SDL:[MD5.5B44C214F9CD9F590BE9125347610380] - 17/06/2010 - 15:28:03 ---A- . (.Avira GmbH - Avira AntiVir File Filter Driver.) -- C:\WINDOWS\system32\drivers\avgntdd.sys [45416]
- O58 - SDL:[MD5.1EB7D72A82F94F7E9496D363FCE00B68] - 17/08/2010 - 13:39:11 ---A- . (.Avira GmbH - Avira Minifilter Driver.) -- C:\WINDOWS\system32\drivers\avgntflt.sys [60936]
- O58 - SDL:[MD5.87451AA7CC6B6A590EBCEA05E755075A] - 17/06/2010 - 15:28:03 ---A- . (.Avira GmbH - Avira AntiVir File Filter Driver Manager.) -- C:\WINDOWS\system32\drivers\avgntmgr.sys [22360]
- O58 - SDL:[MD5.F8C56231ED5ECF7D1B46B0330880CCEF] - 17/08/2010 - 13:39:11 ---A- . (.Avira GmbH - Avira Driver for Security Enhancement.) -- C:\WINDOWS\system32\drivers\avipbb.sys [126856]
- O58 - SDL:[MD5.C9B25AE9B8ABD983C5AD3F8CBFAB0F9C] - 05/08/2004 - 13:00:00 ---A- . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\system32\drivers\cinemst2.sys [262528]
- O58 - SDL:[MD5.7060BAE48C2C122F3041CCCF9ADE3BF7] - 10/09/2010 - 22:40:48 ---A- . (.COMODO - COMODO Internet Security Eradication Driver.) -- C:\WINDOWS\system32\drivers\cmderd.sys [15592]
- O58 - SDL:[MD5.BBE9F023DFD2C4D2755DA3FA47E4DA08] - 10/09/2010 - 22:40:52 ---A- . (.COMODO - COMODO Internet Security Sandbox Driver.) -- C:\WINDOWS\system32\drivers\cmdGuard.sys [239240]
- O58 - SDL:[MD5.111E6755ACB5F236E2465E24508F6367] - 10/09/2010 - 22:40:52 ---A- . (.COMODO - COMODO Internet Security Helper Driver.) -- C:\WINDOWS\system32\drivers\cmdhlp.sys [25240]
- O58 - SDL:[MD5.EF44C32B1AEF62380426B260BF2C66F1] - 18/03/2010 - 19:39:10 ---A- . (.Creative Technology Ltd - Creative Common FX Plug-in.) -- C:\WINDOWS\system32\drivers\COMMONFX.sys [99416]
- O58 - SDL:[MD5.9624293E55AD405415862B504CA95B73] - 05/08/2004 - 13:00:00 ---A- . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\system32\drivers\cpqdap01.sys [11776]
- O58 - SDL:[MD5.7FB95DFBBD4AC8F24DD9887591CB10D4] - 18/03/2010 - 19:40:22 ---A- . (.Creative Technology Ltd. - Creative WDM Audio Driver (32-bit).) -- C:\WINDOWS\system32\drivers\CT0531FL.SYS [1366488]
- O58 - SDL:[MD5.357C534B38019B597F51C8BF7186C118] - 18/03/2010 - 19:40:32 ---A- . (.Creative Technology Ltd - Creative AC3 SW Decoder Device Driver (WDM).) -- C:\WINDOWS\system32\drivers\ctac32k.sys [511064]
- O58 - SDL:[MD5.691F8259A1F9C983356D8DB2CDE8043C] - 18/03/2010 - 19:40:40 ---A- . (.Creative Technology Ltd - Creative WDM Audio Device Driver.) -- C:\WINDOWS\system32\drivers\ctaud2k.sys [528472]
- O58 - SDL:[MD5.7FC78AA6521EF3D9F16E51EFAB0BF13B] - 18/03/2010 - 19:39:18 ---A- . (.Creative Technology Ltd - Creative SB FX Plug-in.) -- C:\WINDOWS\system32\drivers\CTAUDFX.sys [555096]
- O58 - SDL:[MD5.8545D70B0335A05498F34E7E3F8CA9A2] - 18/03/2010 - 19:40:48 ---A- . (.Creative Technology Ltd - Creative DVD-Audio Device Driver (WDM).) -- C:\WINDOWS\system32\drivers\ctdvda2k.sys [347144]
- O58 - SDL:[MD5.16F448354067914E7DEAEA709011BD60] - 18/03/2010 - 19:39:36 ---A- . (.Creative Technology Ltd - E-MU E-DSP Effects Plugin Module.) -- C:\WINDOWS\system32\drivers\CTERFXFX.sys [100952]
- O58 - SDL:[MD5.B4F6B60FEED3EB5F85BE85E8FA4C0CC1] - 18/03/2010 - 19:40:56 ---A- . (.Creative Technology Ltd. - Creative Game Port Enumerator.) -- C:\WINDOWS\system32\drivers\CTGAME.SYS [18904]
- O58 - SDL:[MD5.0D588158831A1798428D497B11499EB7] - 18/03/2010 - 19:41:08 ---A- . (.Creative Technology Ltd. - Creative WDM Audio Driver (32-bit).) -- C:\WINDOWS\system32\drivers\CTMMFILT.SYS [1372888]
- O58 - SDL:[MD5.AE896073E1BBF98FEFC2EC52F62C0FBA] - 18/03/2010 - 19:45:12 ---A- . (.Creative Technology Ltd. - Creative OS Services Driver (WDM).) -- C:\WINDOWS\system32\drivers\ctoss2k.sys [127576]
- O58 - SDL:[MD5.4D71541283AEA28FB839007BE90B5FC7] - 18/03/2010 - 19:45:20 ---A- . (.Creative Technology Ltd - Creative Proxy Device Driver (WDM).) -- C:\WINDOWS\system32\drivers\ctprxy2k.sys [14424]
- O58 - SDL:[MD5.64C83684661BE137023F5186A612CF34] - 18/03/2010 - 19:39:28 ---A- . (.Creative Technology Ltd - Creative SB FX Plug-in.) -- C:\WINDOWS\system32\drivers\CTSBLFX.sys [566360]
- O58 - SDL:[MD5.632194572EBDE8D461728CF382A7E964] - 18/03/2010 - 19:45:28 ---A- . (.Creative Technology Ltd - SoundFont(R) Manager (WDM).) -- C:\WINDOWS\system32\drivers\ctsfm2k.sys [157272]
- O58 - SDL:[MD5.BACD9CC06D7A787E529E7EBF56B671AA] - 18/03/2010 - 19:45:42 ---A- . (.Creative Technology Ltd - E-mu Plug-in Architecture Driver (WDM).) -- C:\WINDOWS\system32\drivers\emupia2k.sys [92760]
- O58 - SDL:[MD5.8182FF89C65E4D38B2DE4BB0FB18564E] - 18/05/2009 - 13:17:00 ---A- . (.GEAR Software Inc. - CD DVD Filter.) -- C:\WINDOWS\system32\drivers\GEARAspiWDM.sys [26600]
- O58 - SDL:[MD5.70606233F3ED0E53CB3EA17F846D6A4F] - 18/03/2010 - 19:49:56 ---A- . (.Creative Technology Ltd - Creative EMU10KX HAL (WDM).) -- C:\WINDOWS\system32\drivers\ha10kx2k.sys [798808]
- O58 - SDL:[MD5.833051C6C6C42117191935F734CFBD97] - 03/02/2010 - 14:56:56 --HA- . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\WINDOWS\system32\drivers\hamachi.sys [26176]
- O58 - SDL:[MD5.A0C69AD2A61E576B0207ACDD9626E167] - 18/03/2010 - 19:50:04 ---A- . (.Creative Technology Ltd - Creative EMU10KX-P16v HAL (WDM).) -- C:\WINDOWS\system32\drivers\haP16v2k.sys [162904]
- O58 - SDL:[MD5.2EE89452C574D259ADA4FC9FC1C07243] - 18/03/2010 - 19:50:12 ---A- . (.Creative Technology Ltd - Creative EMU10KX-P17v HAL (WDM).) -- C:\WINDOWS\system32\drivers\haP17v2k.sys [189528]
- O58 - SDL:[MD5.343AC4733C1E8B7AB6454178E4FCD4AD] - 10/09/2010 - 22:40:54 ---A- . (.COMODO - COMODO Internet Security Firewall Driver.) -- C:\WINDOWS\system32\drivers\inspect.sys [91560]
- O58 - SDL:[MD5.34D6730E198A5B0FCE0790A6B4769EF2] - 20/03/2007 - 10:33:26 ---A- . (.http://libusb-win32.sourceforge.net - LibUSB-Win32 - Kernel Driver.) -- C:\WINDOWS\system32\drivers\libusb0.sys [28672]
- O58 - SDL:[MD5.9A155D31B8E52F41B258282092CC93A7] - 27/05/2005 - 08:32:52 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\drivers\lvcm.sys [1317152]
- O58 - SDL:[MD5.93418CD2C3B544847C3CDF7DB66F1921] - 27/05/2005 - 08:23:38 ---A- . (.Logitech Inc. - SmoothVision filter.) -- C:\WINDOWS\system32\drivers\lvsvf2.sys [2180096]
- O58 - SDL:[MD5.C5EFBD05A5195402121711A6EBBB271F] - 27/05/2005 - 08:31:28 ---A- . (.Logitech Inc. - USB Statistic Driver.) -- C:\WINDOWS\system32\drivers\LVUSBSta.sys [22016]
- O58 - SDL:[MD5.BE984D604D91C217355CDD3737AAD25D] - 05/08/2004 - 13:00:00 ---A- . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\system32\drivers\nikedrv.sys [12032]
- O58 - SDL:[MD5.B48DC6ABCD3AEFF8618350CCBDC6B09A] - 25/06/2010 - 18:07:14 ---A- . (.CACE Technologies, Inc. - npf.sys (NT5/6 x86) Kernel Driver.) -- C:\WINDOWS\system32\drivers\npf.sys [35088]
- O58 - SDL:[MD5.8E72E452B9CC1E455D19E3C9FA964D37] - 03/05/2008 - 04:46:00 ---A- . (.NVIDIA Corporation - NVIDIA Compatible Windows 2000 Miniport Driver, Version 175.16.) -- C:\WINDOWS\system32\drivers\nv4_mini.sys [6554496]
- O58 - SDL:[MD5.5D3F6637FE5981985BF4B7EE6D3E1D67] - 18/03/2010 - 19:50:20 ---A- . (.Creative Technology Ltd. - PCI/ISA Device Info. Service.) -- C:\WINDOWS\system32\drivers\pfmodnt.sys [15960]
- O58 - SDL:[MD5.80D317BD1C3DBC5D4FE7B1678C60CADD] - 05/08/2004 - 13:00:00 ---A- . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Library.) -- C:\WINDOWS\system32\drivers\ptilink.sys [17792]
- O58 - SDL:[MD5.A56FE08EC7473E8580A390BB1081CDD7] - 05/08/2004 - 13:00:00 ---A- . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\system32\drivers\rio8drv.sys [12032]
- O58 - SDL:[MD5.0A854DF84C77A0BE205BFEAB2AE4F0EC] - 05/08/2004 - 13:00:00 ---A- . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\system32\drivers\riodrv.sys [12032]
- O58 - SDL:[MD5.2BE6B34244E2A2AAAF1E93D765483512] - 13/03/2007 - 12:35:56 ---A- . (.Ralink Technology, Corp. - Ralink 802.11 USB Wireless Adapter Driver.) -- C:\WINDOWS\system32\drivers\rt2870.sys [476416]
- O58 - SDL:[MD5.D507C1400284176573224903819FFDA3] - 03/08/2004 - 23:31:34 ---A- . (.Realtek Semiconductor Corporation - Realtek RTL8139 NDIS 5.0 Driver.) -- C:\WINDOWS\system32\drivers\RTL8139.sys [20992]
- O58 - SDL:[MD5.CF84B1F0E8B14D4120AAF9CF35CBB265] - 25/03/2009 - 13:29:52 ---A- . (.Realtek Semiconductor Corporation - Realtek 10/100/1000 NDIS 5.1 Driver.) -- C:\WINDOWS\system32\drivers\Rtnicxp.sys [130432]
- O58 - SDL:[MD5.90A3935D05B494A5A39D37E71F09A677] - 13/04/2008 - 17:39:15 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\WINDOWS\system32\drivers\secdrv.sys [20480]
- O58 - SDL:[MD5.64EE1200F915817C00FCFD7F38EF1200] - 09/05/2009 - 00:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\drivers\sptd.sys [721904]
- O58 - SDL:[MD5.A36EE93698802CD899F98BFD553D8185] - 17/06/2010 - 15:28:02 ---A- . (.Avira GmbH - AVIRA SnapShot Driver.) -- C:\WINDOWS\system32\drivers\ssmdrv.sys [28520]
- O58 - SDL:[MD5.F92254B0BCFCD10CAAC7BCCC7CB7F467] - 12/11/2009 - 13:48:56 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\drivers\StarOpen.sys [7168]
- O58 - SDL:[MD5.D74A8EC75305F1D3CFDE7C7FC1BD62A9] - 05/08/2004 - 13:00:00 ---A- . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\system32\drivers\tsbvcap.sys [21376]
- O58 - SDL:[MD5.55E01061C74A8CEFFF58DC36114A8D3F] - 05/08/2004 - 13:00:00 ---A- . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\system32\drivers\vdmindvd.sys [58112]
- O58 - SDL:[MD5.BC3ECBCB40147BDAE3AD2FD0B4B346D8] - 14/04/2004 - 10:08:00 ---A- . (.Logitech Inc. - Logitech WingMan Virtual Bus Enumerator Driver.) -- C:\WINDOWS\system32\drivers\WmBEnum.sys [10144]
- O58 - SDL:[MD5.19F9881D8B3484FEDB605D0216876898] - 14/04/2004 - 10:08:00 ---A- . (.Logitech Inc. - Logitech WingMan Hid Filter Driver.) -- C:\WINDOWS\system32\drivers\WmFilter.sys [21280]
- O58 - SDL:[MD5.7A51545A6409A25EEDBDBD97D019E8CC] - 14/04/2004 - 10:08:00 ---A- . (.Logitech Inc. - Logitech WingMan Virtual Hid Device Driver.) -- C:\WINDOWS\system32\drivers\WmVirHid.sys [5600]
- O58 - SDL:[MD5.1F083B3BC73017E60C3CA85CF4A70753] - 14/04/2004 - 10:08:00 ---A- . (.Logitech Inc. - Logitech WingMan Translation Driver.) -- C:\WINDOWS\system32\drivers\WmXlCore.sys [44064]
- O58 - SDL:[MD5.920298C7AEF97D8168D219D35975D295] - 11/12/2005 - 11:55:38 ---A- . (.Alpha Networks Inc. - ANIO (NT5) Driver.) -- C:\WINDOWS\system32\ANIO.sys [28195]
- O58 - SDL:[MD5.ACF780F3DCE634A0B8ECE6E3CD505C9C] - 14/10/2004 - 10:29:16 ---A- . (.ANI - ANIO (NDIS4) Driver.) -- C:\WINDOWS\system32\anio4.sys [11904]
- O58 - SDL:[MD5.5AE0176FCF1EDB5CEE28E4D542085107] - 13/12/2005 - 10:38:20 ---A- . (.Alpha Networks Inc. - ANIO (NT5) Driver.) -- C:\WINDOWS\system32\ANIO64.sys [48128]
- O58 - SDL:[MD5.6D3ADA4CE95CECA7BCE527A08C4C474E] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ansi.sys [9037]
- O58 - SDL:[MD5.0FE9F16075C9ACB941C957B7C649176E] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\country.sys [27097]
- O58 - SDL:[MD5.C6D29F29DE7427B1B0775E53E577B623] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\himem.sys [4912]
- O58 - SDL:[MD5.582BCDD47CF4B68B5CB528F18E3CB808] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\key01.sys [42809]
- O58 - SDL:[MD5.FBBCFEC1379C5C02D88A361993EDF1B8] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\keyboard.sys [42537]
- O58 - SDL:[MD5.7D30A74B5FB9FE3B245A6CE5FBCD71D5] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntdos.sys [27916]
- O58 - SDL:[MD5.CF9ED169FF86D935E47999E82359E898] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntdos404.sys [29146]
- O58 - SDL:[MD5.03B945AC0481CD8BB161C3569D8ED1C3] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntdos411.sys [29370]
- O58 - SDL:[MD5.BBC957DC18C17CC027EB80B7C77F2AEA] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntdos412.sys [29274]
- O58 - SDL:[MD5.3CFFAEFFF23B0D208214A6D3061A5B1B] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntdos804.sys [29146]
- O58 - SDL:[MD5.CAAA108FD7BF71989946B39704323455] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntio.sys [34000]
- O58 - SDL:[MD5.6F73F50162DEF60C84B725C18CD9140F] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntio404.sys [34560]
- O58 - SDL:[MD5.0FDD5E69C1FF3B58043D44F2CC743D45] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntio411.sys [35648]
- O58 - SDL:[MD5.8842837C4D8311BF8E72BEE8CCC42217] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntio412.sys [35424]
- O58 - SDL:[MD5.6B56CEB3C6F9D5CD7293DBD9FE23B311] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntio804.sys [34560]
- ---\\ Liste des outils de nettoyage (LATC) (O63)
- O63 - Logiciel: HijackThis 2.0.2 - (.TrendMicro.) [HKLM] -- HijackThis
- O63 - Logiciel: ZHPDiag 1.27 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
- O63 - Logiciel: HiJackThis - (.Trend Micro.) [HKLM] -- {45A66726-69BC-466B-A7A4-12FCBA4883D7}
- ---\\ Liste des services Legacy (LALS) (O64)
- O64 - Services: CurCS - (.not file.) - avast! Asynchronous Virus Monitor (Aavmker4) .(.Pas de propriétaire - Pas de description.) - LEGACY_AAVMKER4
- O64 - Services: CurCS - C:\WINDOWS\system32\drivers\afd.sys - AFD (AFD) .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD
- O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Avertissement (Alerter) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_ALERTER
- O64 - Services: CurCS - C:\WINDOWS\System32\alg.exe - Service de la passerelle de la couche Application (ALG) .(.Microsoft Corporation - Application Layer Gateway Service.) - LEGACY_ALG
- O64 - Services: CurCS - C:\WINDOWS\system32\ANIO.sys - ANIO Service (ANIO) .(.Alpha Networks Inc. - ANIO (NT5) Driver.) - LEGACY_ANIO
- O64 - Services: CurCS - C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe - ANIWZCSd Service (ANIWZCSdService) .(.Wireless Service - ANIWZCS2 Service Launcher.) - LEGACY_ANIWZCSDSERVICE
- O64 - Services: CurCS - "C:\Program Files\Avira\AntiVir Desktop\sched.exe (.not file.) - Avira AntiVir Planificateur (AntiVirSchedulerService) .(.Pas de propriétaire - Pas de description.) - LEGACY_ANTIVIRSCHEDULERSERVICE
- O64 - Services: CurCS - "C:\Program Files\Avira\AntiVir Desktop\avguard.exe (.not file.) - Avira AntiVir Guard (AntiVirService) .(.Pas de propriétaire - Pas de description.) - LEGACY_ANTIVIRSERVICE
- O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Gestion d'applications (AppMgmt) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_APPMGMT
- O64 - Services: CurCS - (.not file.) - aswFsBlk (aswFsBlk) .(.Pas de propriétaire - Pas de description.) - LEGACY_ASWFSBLK
- O64 - Services: CurCS - (.not file.) - avast! Standard Shield Support (aswMon2) .(.Pas de propriétaire - Pas de description.) - LEGACY_ASWMON2
- O64 - Services: CurCS - (.not file.) - aswRdr (aswRdr) .(.Pas de propriétaire - Pas de description.) - LEGACY_ASWRDR
- O64 - Services: CurCS - (.not file.) - avast! Self Protection (aswSP) .(.Pas de propriétaire - Pas de description.) - LEGACY_ASWSP
- O64 - Services: CurCS - (.not file.) - avast! Network Shield Support (aswTdi) .(.Pas de propriétaire - Pas de description.) - LEGACY_ASWTDI
- O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Audio Windows (AudioSrv) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_AUDIOSRV
- O64 - Services: CurCS - C:\Program Files\Avira\AntiVir Desktop\avgio.sys - avgio (avgio) .(.Avira GmbH - Avira AntiVir Support for Minifilter.) - LEGACY_AVGIO
- O64 - Services: CurCS - C:\Windows\System32\DRIVERS\avgntflt.sys - avgntflt (avgntflt) .(.Avira GmbH - Avira Minifilter Driver.) - LEGACY_AVGNTFLT
- O64 - Services: CurCS - C:\Windows\System32\DRIVERS\avipbb.sys - avipbb (avipbb) .(.Avira GmbH - Avira Driver for Security Enhancement.) - LEGACY_AVIPBB
- O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\BEEP.sys - Beep (Beep) .(.Pas de propriétaire - Pas de description.) - LEGACY_BEEP
- O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Service de transfert intelligent en arrière-plan (BITS) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_BITS
- O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Explorateur d'ordinateur (Browser) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_BROWSER
- O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Bluetooth Support Service (BthServ) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_BTHSERV
- O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\CDFS.sys - cdfs (cdfs) .(.Pas de propriétaire - Pas de description.) - LEGACY_CDFS
- O64 - Services: CurCS - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe - .NET Runtime Optimization Service v2.0.50727_X86 (clr_optimization_v2.0.50727_32) .(.Microsoft Corporation - .NET Runtime Optimization Service.) - LEGACY_CLR_OPTIMIZATION_V2.0.50727_32
- O64 - Services: CurCS - "C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe (.not file.) - COMODO Internet Security Helper Service (cmdAgent) .(.Pas de propriétaire - Pas de description.) - LEGACY_CMDAGENT
- O64 - Services: CurCS - C:\Windows\System32\DRIVERS\cmdguard.sys - COMODO Internet Security Sandbox Driver (cmdGuard) .(.COMODO - COMODO Internet Security Sandbox Driver.) - LEGACY_CMDGUARD
- O64 - Services: CurCS - C:\Windows\System32\DRIVERS\cmdhlp.sys - COMODO Internet Security Helper Driver (cmdHlp) .(.COMODO - COMODO Internet Security Helper Driver.) - LEGACY_CMDHLP
- O64 - Services: CurCS - C:\WINDOWS\system32\drivers\COMMONFX.sys - COMMONFX.SYS (COMMONFX.SYS) .(.Creative Technology Ltd - Creative Common FX Plug-in.) - LEGACY_COMMONFX.SYS
- O64 - Services: CurCS - (.not file.) - (.not file.) - Application système COM+ (COMSysApp) .(.Pas de propriétaire - Pas de description.) - LEGACY_COMSYSAPP
- O64 - Services: CurCS - "C:\Prey\platform\windows\cronsvc.exe (.not file.) - Cron Service for Prey (CronService) .(.Pas de propriétaire - Pas de description.) - LEGACY_CRONSERVICE
- O64 - Services: CurCS - C:\DOCUME~1\ken-sama\LOCALS~1\Temp\CrucialSMBusScan_XP32.sys (.not file.) - CrucialSMBusScan (CrucialSMBusScan) .(.Pas de propriétaire - Pas de description.) - LEGACY_CRUCIALSMBUSSCAN
- O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Services de cryptographie (CryptSvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_CRYPTSVC
- O64 - Services: CurCS - C:\Windows\System32\drivers\ctac32k.sys - Creative AC3 Software Decoder (ctac32k) .(.Creative Technology Ltd - Creative AC3 SW Decoder Device Driver (WDM).) - LEGACY_CTAC32K
- O64 - Services: CurCS - C:\WINDOWS\system32\drivers\CTAUDFX.sys - CTAUDFX.SYS (CTAUDFX.SYS) .(.Creative Technology Ltd - Creative SB FX Plug-in.) - LEGACY_CTAUDFX.SYS
- O64 - Services: CurCS - C:\Program Files\Creative\Shared Files\CTAudSvc.exe - Creative Audio Service (CTAudSvcService) .(.Creative Technology Ltd - Creative Audio Service.) - LEGACY_CTAUDSVCSERVICE
- O64 - Services: CurCS - C:\Windows\System32\drivers\ctprxy2k.sys - Creative Proxy Driver (ctprxy2k) .(.Creative Technology Ltd - Creative Proxy Device Driver (WDM).) - LEGACY_CTPRXY2K
- O64 - Services: CurCS - C:\WINDOWS\system32\drivers\CTSBLFX.sys - CTSBLFX.SYS (CTSBLFX.SYS) .(.Creative Technology Ltd - Creative SB FX Plug-in.) - LEGACY_CTSBLFX.SYS
- O64 - Services: CurCS - C:\Windows\System32\drivers\ctsfm2k.sys - Creative SoundFont Management Device Driver (ctsfm2k) .(.Creative Technology Ltd - SoundFont(R) Manager (WDM).) - LEGACY_CTSFM2K
- O64 - Services: CurCS - (.not file.) - (.not file.) - Lanceur de processus serveur DCOM (DcomLaunch) .(.Pas de propriétaire - Pas de description.) - LEGACY_DCOMLAUNCH
- O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Client DHCP (Dhcp) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_DHCP
- O64 - Services: CurCS - C:\WINDOWS\System32\dmadmin.exe - Service d'administration du Gestionnaire de disque logique (dmadmin) .(.Microsoft Corp., Veritas Software - Processus du service Gestionnaire de disque.) - LEGACY_DMADMIN
- O64 - Services: CurCS - C:\Windows\System32\drivers\dmboot.sys - dmboot (dmboot) .(.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) - LEGACY_DMBOOT
- O64 - Services: CurCS - C:\Windows\System32\drivers\dmload.sys - dmload (dmload) .(.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) - LEGACY_DMLOAD
- O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Gestionnaire de disque logique (dmserver) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_DMSERVER
- O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Client DNS (Dnscache) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_DNSCACHE
- O64 - Services: CurCS - C:\Windows\System32\drivers\emupia2k.sys - E-mu Plug-in Architecture Driver (emupia) .(.Creative Technology Ltd - E-mu Plug-in Architecture Driver (WDM).) - LEGACY_EMUPIA
- O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Service de rapport d'erreurs (ERSvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_ERSVC
- O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Système d'événements de COM+ (EventSystem) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_EVENTSYSTEM
- O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\FASTFAT.sys - fastfat (fastfat) .(.Pas de propriétaire - Pas de description.) - LEGACY_FASTFAT
- O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Compatibilité avec le Changement rapide d'utilisateur (FastUserSwitchingCompatibility) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_FASTUSERSWITCHINGCOMPATIBILITY
- O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\FIPS.sys - Fips (Fips) .(.Pas de propriétaire - Pas de description.) - LEGACY_FIPS
- O64 - Services: CurCS - C:\Windows\System32\drivers\fltmgr.sys - FltMgr (FltMgr) .(.Microsoft Corporation - Microsoft Filesystem Filter Manager.) - LEGACY_FLTMGR
- O64 - Services: CurCS - c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe - Windows Presentation Foundation Font Cache 3.0.0.0 (FontCache3.0.0.0) .(.Microsoft Corporation - PresentationFontCache.exe.) - LEGACY_FONTCACHE3.0.0.0
- O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\FS_REC.sys - Fs_Rec (Fs_Rec) .(.Pas de propriétaire - Pas de description.) - LEGACY_FS_REC
- O64 - Services: CurCS - C:\DOCUME~1\ken-sama\LOCALS~1\Temp\gAGP440p.sys (.not file.) - gAGP440p (gAGP440p) .(.Pas de propriétaire - Pas de description.) - LEGACY_GAGP440P
- O64 - Services: CurCS - D:\INSTALL\GMSIPCI.sys (.not file.) - GMSIPCI (GMSIPCI) .(.Pas de propriétaire - Pas de description.) - LEGACY_GMSIPCI
- O64 - Services: CurCS - C:\Windows\System32\DRIVERS\msgpc.sys - Classificateur de paquets générique (Gpc) .(.Microsoft Corporation - MS General Packet Classifier.) - LEGACY_GPC
- O64 - Services: CurCS - "C:\Program Files\Google\Update\GoogleUpdate.exe (.not file.) - Service Google Update (gupdate1c99851fecfa004) (gupdate1c99851fecfa004) .(.Pas de propriétaire - Pas de description.) - LEGACY_GUPDATE1C99851FECFA004
- O64 - Services: CurCS - "C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe (.not file.) - Google Software Updater (gusvc) .(.Pas de propriétaire - Pas de description.) - LEGACY_GUSVC
- O64 - Services: CurCS - C:\Windows\System32\drivers\ha10kx2k.sys - Creative Hardware Abstract Layer Driver (ha10kx2k) .(.Creative Technology Ltd - Creative EMU10KX HAL (WDM).) - LEGACY_HA10KX2K
- O64 - Services: CurCS - "C:\Program Files\LogMeIn Hamachi\hamachi-2.exe (.not file.) - LogMeIn Hamachi 2.0 Tunneling Engine (Hamachi2Svc) .(.Pas de propriétaire - Pas de description.) - LEGACY_HAMACHI2SVC
- O64 - Services: CurCS - C:\Windows\System32\drivers\hap16v2k.sys - Creative P16V HAL Driver (hap16v2k) .(.Creative Technology Ltd - Creative EMU10KX-P16v HAL (WDM).) - LEGACY_HAP16V2K
- O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Aide et support (helpsvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_HELPSVC
- O64 - Services: CurCS - C:\Windows\System32\Drivers\HTTP.sys - HTTP (HTTP) .(.Microsoft Corporation - HTTP Protocol Stack.) - LEGACY_HTTP
- O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - HTTP SSL (HTTPFilter) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_HTTPFILTER
- O64 - Services: CurCS - "C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe (.not file.) - InstallDriver Table Manager (IDriverT) .(.Pas de propriétaire - Pas de description.) - LEGACY_IDRIVERT
- O64 - Services: CurCS - C:\WINDOWS\system32\imapi.exe - Service COM de gravage de CD IMAPI (ImapiService) .(.Microsoft Corporation - API Image Mastering.) - LEGACY_IMAPISERVICE
- O64 - Services: CurCS - C:\Windows\System32\DRIVERS\inspect.sys - COMODO Internet Security Firewall Driver (Inspect) .(.COMODO - COMODO Internet Security Firewall Driver.) - LEGACY_INSPECT
- O64 - Services: CurCS - C:\Windows\System32\DRIVERS\ipfltdrv.sys - Pilote de filtre de trafic IP (IpFilterDriver) .(.Microsoft Corporation - IP FILTER DRIVER.) - LEGACY_IPFILTERDRIVER
- O64 - Services: CurCS - C:\Windows\System32\DRIVERS\ipnat.sys - Traducteur d'adresses réseau IP (IpNat) .(.Microsoft Corporation - IP Network Address Translator.) - LEGACY_IPNAT
- O64 - Services: CurCS - "C:\Program Files\iPod\bin\iPodService.exe (.not file.) - Service de l’iPod (iPod Service) .(.Pas de propriétaire - Pas de description.) - LEGACY_IPOD_SERVICE
- O64 - Services: CurCS - C:\Windows\System32\DRIVERS\ipsec.sys - Pilote IPSEC (IPSec) .(.Microsoft Corporation - IPSec Driver.) - LEGACY_IPSEC
- O64 - Services: CurCS - "C:\Program Files\Java\jre6\bin\jqs.exe (.not file.) - Java Quick Starter (JavaQuickStarterService) .(.Pas de propriétaire - Pas de description.) - LEGACY_JAVAQUICKSTARTERSERVICE
- O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\KSECDD.sys - ksecdd (ksecdd) .(.Pas de propriétaire - Pas de description.) - LEGACY_KSECDD
- O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Serveur (lanmanserver) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_LANMANSERVER
- O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Station de travail (LanmanWorkstation) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_LANMANWORKSTATION
- O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Assistance TCP/IP NetBIOS (LmHosts) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_LMHOSTS
- O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\MNMDD.sys - mnmdd (mnmdd) .(.Pas de propriétaire - Pas de description.) - LEGACY_MNMDD
- O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\MOUNTMGR.sys - (.not file.) - mountmgr (mountmgr) .(.Pas de propriétaire - Pas de description.) - LEGACY_MOUNTMGR
- O64 - Services: CurCS - C:\Windows\System32\DRIVERS\mrxdav.sys - Redirecteur client WebDav (MRxDAV) .(.Microsoft Corporation - Windows NT WebDav Minirdr.) - LEGACY_MRXDAV
- O64 - Services: CurCS - C:\Windows\System32\DRIVERS\mrxsmb.sys - MRXSMB (MRxSmb) .(.Microsoft Corporation - Windows NT SMB Minirdr.) - LEGACY_MRXSMB
- O64 - Services: CurCS - C:\WINDOWS\system32\msdtc.exe - Distributed Transaction Coordinator (MSDTC) .(.Microsoft Corporation - MS DTC console program.) - LEGACY_MSDTC
- O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\MSFS.sys - Msfs (Msfs) .(.Pas de propriétaire - Pas de description.) - LEGACY_MSFS
- O64 - Services: CurCS - C:\WINDOWS\system32\msiexec.exe - Windows Installer (MSIServer) .(.Microsoft Corporation - Windows® installer.) - LEGACY_MSISERVER
- O64 - Services: CurCS - C:\PROGRA~1\MSI\MSIWDev\DVDsys32_100507.sys - MSI_DVD_010507 (MSI_DVD_010507) .(.Your Corporation - Description string for CDriver driver.) - LEGACY_MSI_DVD_010507
- O64 - Services: CurCS - C:\PROGRA~1\MSI\MSIWDev\msibios32_100507.sys - MSI_MSIBIOS_010507 (MSI_MSIBIOS_010507) .(.Your Corporation - Description string for Msibios driver.) - LEGACY_MSI_MSIBIOS_010507
- O64 - Services: CurCS - C:\PROGRA~1\MSI\MSIWDev\VGAsys32_100507.sys - MSI_VGASYS_010507 (MSI_VGASYS_010507) .(.Pas de propriétaire - Pas de description.) - LEGACY_MSI_VGASYS_010507
- O64 - Services: CurCS - "c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe (.not file.) - SQL Server (RADIONOMY536765) (MSSQL$RADIONOMY536765) .(.Pas de propriétaire - Pas de description.) - LEGACY_MSSQL$RADIONOMY536765
- O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\MUP.sys - (.not file.) - Mup (Mup) .(.Pas de propriétaire - Pas de description.) - LEGACY_MUP
- O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\NDIS.sys - (.not file.) - Pilote système NDIS (NDIS) .(.Pas de propriétaire - Pas de description.) - LEGACY_NDIS
- O64 - Services: CurCS - C:\Windows\System32\DRIVERS\ndistapi.sys - Pilote TAPI NDIS d'accès distant (NdisTapi) .(.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) - LEGACY_NDISTAPI
- O64 - Services: CurCS - C:\Windows\System32\DRIVERS\ndisuio.sys - NDIS mode utilisateur E/S Protocole (Ndisuio) .(.Microsoft Corporation - NDIS User mode I/O Driver.) - LEGACY_NDISUIO
- O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\NDPROXY.sys - NDProxy (NDProxy) .(.Pas de propriétaire - Pas de description.) - LEGACY_NDPROXY
- O64 - Services: CurCS - C:\Windows\System32\DRIVERS\netbios.sys - Interface NetBIOS (NetBIOS) .(.Microsoft Corporation - NetBIOS interface driver.) - LEGACY_NETBIOS
- O64 - Services: CurCS - C:\Windows\System32\DRIVERS\netbt.sys - NetBIOS sur TCP/IP (NetBT) .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT
- O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Connexions réseau (Netman) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_NETMAN
- O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - NLA (Network Location Awareness) (Nla) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_NLA
- O64 - Services: CurCS - C:\Program Files\CDBurnerXP\NMSAccessU.exe - NMSAccess (NMSAccess) .(.Pas de propriétaire - Pas de description.) - LEGACY_NMSACCESS
- O64 - Services: CurCS - C:\Windows\System32\drivers\npf.sys - NetGroup Packet Filter Driver (NPF) .(.CACE Technologies, Inc. - npf.sys (NT5/6 x86) Kernel Driver.) - LEGACY_NPF
- O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\NPFS.sys - Npfs (Npfs) .(.Pas de propriétaire - Pas de description.) - LEGACY_NPFS
- O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\NTFS.sys - ntfs (ntfs) .(.Pas de propriétaire - Pas de description.) - LEGACY_NTFS
- O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Stockage amovible (NtmsSvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_NTMSSVC
- O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\NULL.sys - Null (Null) .(.Pas de propriétaire - Pas de description.) - LEGACY_NULL
- O64 - Services: CurCS - C:\WINDOWS\system32\nvsvc32.exe - NVIDIA Display Driver Service (NVSvc) .(.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 175.1.) - LEGACY_NVSVC
- O64 - Services: CurCS - "C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.exe (.not file.) - Office Source Engine (ose) .(.Pas de propriétaire - Pas de description.) - LEGACY_OSE
- O64 - Services: CurCS - C:\Windows\System32\drivers\ctoss2k.sys - Creative OS Services Driver (ossrv) .(.Creative Technology Ltd. - Creative OS Services Driver (WDM).) - LEGACY_OSSRV
- O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\PARTMGR.sys - (.not file.) - PartMgr (PartMgr) .(.Pas de propriétaire - Pas de description.) - LEGACY_PARTMGR
- O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\PARVDM.sys - ParVdm (ParVdm) .(.Pas de propriétaire - Pas de description.) - LEGACY_PARVDM
- O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\PCIIDE.sys - PCIIde (PCIIde) .(.Pas de propriétaire - Pas de description.) - LEGACY_PCIIDE
- O64 - Services: CurCS - C:\WINDOWS\system32\lsass.exe - Services IPSEC (PolicyAgent) .(.Microsoft Corporation - LSA Shell (Export Version).) - LEGACY_POLICYAGENT
- O64 - Services: CurCS - C:\WINDOWS\system32\lsass.exe - Emplacement protégé (ProtectedStorage) .(.Microsoft Corporation - LSA Shell (Export Version).) - LEGACY_PROTECTEDSTORAGE
- O64 - Services: CurCS - C:\Windows\System32\DRIVERS\rasacd.sys - Pilote de connexion automatique d'accès distant (RasAcd) .(.Microsoft Corporation - RAS Automatic Connection Driver.) - LEGACY_RASACD
- O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Gestionnaire de connexions d'accès distant (RasMan) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_RASMAN
- O64 - Services: CurCS - C:\Windows\System32\DRIVERS\rdbss.sys - Rdbss (Rdbss) .(.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - LEGACY_RDBSS
- O64 - Services: CurCS - C:\Windows\System32\DRIVERS\RDPCDD.sys - RDPCDD (RDPCDD) .(.Microsoft Corporation - RDP Miniport.) - LEGACY_RDPCDD
- O64 - Services: CurCS - (.not file.) - RDPNP (RDPNP) .(.Pas de propriétaire - Pas de description.) - LEGACY_RDPNP
- O64 - Services: CurCS - (.not file.) - (.not file.) - Appel de procédure distante (RPC) (RpcSs) .(.Pas de propriétaire - Pas de description.) - LEGACY_RPCSS
- O64 - Services: CurCS - C:\WINDOWS\system32\lsass.exe - Gestionnaire de comptes de sécurité (SamSs) .(.Microsoft Corporation - LSA Shell (Export Version).) - LEGACY_SAMSS
- O64 - Services: CurCS - (.not file.) - SCDEmu (SCDEmu) .(.Pas de propriétaire - Pas de description.) - LEGACY_SCDEMU
- O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Planificateur de tâches (Schedule) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SCHEDULE
- O64 - Services: CurCS - C:\Windows\System32\DRIVERS\secdrv.sys - Secdrv (Secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV
- O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Connexion secondaire (seclogon) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SECLOGON
- O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Notification d'événement système (SENS) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SENS
- O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Pare-feu Windows / Partage de connexion Internet (SharedAccess) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SHAREDACCESS
- O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Détection matériel noyau (ShellHWDetection) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SHELLHWDETECTION
- O64 - Services: CurCS - C:\WINDOWS\system32\spoolsv.exe - Spouleur d'impression (Spooler) .(.Microsoft Corporation - Spooler SubSystem App.) - LEGACY_SPOOLER
- O64 - Services: CurCS - C:\Windows\System32\Drivers\sptd.sys - sptd (sptd) .(.Pas de propriétaire - Pas de description.) - LEGACY_SPTD
- O64 - Services: CurCS - "c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (.not file.) - Enregistreur VSS SQL Server (SQLWriter) .(.Pas de propriétaire - Pas de description.) - LEGACY_SQLWRITER
- O64 - Services: CurCS - C:\Windows\System32\DRIVERS\sr.sys - Pilote de filtre de restauration système (sr) .(.Microsoft Corporation - Pilote de filtre de système de fichiers pou.) - LEGACY_SR
- O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Service de restauration système (srservice) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SRSERVICE
- O64 - Services: CurCS - C:\Windows\System32\DRIVERS\srv.sys - Srv (Srv) .(.Microsoft Corporation - Server driver.) - LEGACY_SRV
- O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Service de découvertes SSDP (SSDPSRV) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SSDPSRV
- O64 - Services: CurCS - C:\Windows\System32\DRIVERS\ssmdrv.sys - ssmdrv (ssmdrv) .(.Avira GmbH - AVIRA SnapShot Driver.) - LEGACY_SSMDRV
- O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Acquisition d'image Windows (WIA) (stisvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_STISVC
- O64 - Services: CurCS - (.not file.) - (.not file.) - MS Software Shadow Copy Provider (SwPrv) .(.Pas de propriétaire - Pas de description.) - LEGACY_SWPRV
- O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Téléphonie (TapiSrv) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_TAPISRV
- O64 - Services: CurCS - C:\Windows\System32\DRIVERS\tcpip.sys - Pilote du protocole TCP/IP (Tcpip) .(.Microsoft Corporation - TCP/IP Protocol Driver.) - LEGACY_TCPIP
- O64 - Services: CurCS - (.not file.) - (.not file.) - Services Terminal Server (TermService) .(.Pas de propriétaire - Pas de description.) - LEGACY_TERMSERVICE
- O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Thèmes (Themes) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_THEMES
- O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Client de suivi de lien distribué (TrkWks) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_TRKWKS
- O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\UDFS.sys - Udfs (Udfs) .(.Pas de propriétaire - Pas de description.) - LEGACY_UDFS
- O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Hôte de périphérique universel Plug-and-Play (upnphost) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_UPNPHOST
- O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\VGA.sys - vga (vga) .(.Pas de propriétaire - Pas de description.) - LEGACY_VGA
- O64 - Services: CurCS - C:\WINDOWS\system32\drivers\vga.sys - VgaSave (VgaSave) .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE
- O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\VOLSNAP.sys - VolSnap (VolSnap) .(.Pas de propriétaire - Pas de description.) - LEGACY_VOLSNAP
- O64 - Services: CurCS - C:\WINDOWS\System32\vssvc.exe - Cliché instantané de volume (VSS) .(.Microsoft Corporation - Service de cliché instantané de volumes Mic.) - LEGACY_VSS
- O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Horloge Windows (W32Time) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_W32TIME
- O64 - Services: CurCS - C:\Windows\System32\DRIVERS\wanarp.sys - Pilote ARP IP d'accès distant (Wanarp) .(.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - LEGACY_WANARP
- O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - WebClient (WebClient) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_WEBCLIENT
- O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Infrastructure de gestion Windows (winmgmt) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_WINMGMT
- O64 - Services: CurCS - C:\WINDOWS\system32\wbem\wmiapsrv.exe - Carte de performance WMI (WmiApSrv) .(.Microsoft Corporation - Service de la carte de performance WMI.) - LEGACY_WMIAPSRV
- O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Centre de sécurité (wscsvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_WSCSVC
- O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Mises à jour automatiques (wuauserv) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_WUAUSERV
- O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Configuration automatique sans fil (WZCSVC) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_WZCSVC
- ---\\ Observateur d'évènement d'application (OEA) (O66)
- O66 - EventLog: ID=1008 (MsiInstaller) - (.Pas de propriétaire - Pas de description.) -- C:\Documents and Settings\LocalService\Local Settings\Application Data\LogMeIn Hamachi\hamachi-update
- ---\\ File Associations Shell Spawning (O67)
- O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] "%1" %* (.not file.)
- O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
- O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] "%1" %* (.not file.)
- O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] "%1" %* (.not file.)
- O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] "%1" %* (.not file.)
- O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\System32\WScript.exe
- O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe
- O67 - Shell Spawning: <.com> <>[HKU\..\open\Command] (.Not Key.)
- O67 - Shell Spawning: <.exe> <>[HKU\..\open\Command] (.Not Key.)
- O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] "%1" %* (.not file.)
- O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll
- O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] "%1" %* (.not file.)
- O67 - Shell Spawning: <.com> <comfile>[HKCR\..\open\Command] "%1" %* (.not file.)
- O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] "%1" %* (.not file.)
- O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCR\..\open\Command] (.Pas de propriétaire - Pas de description.) -- "C:\Program Files\Mozilla Firefox\firefox.exe
- O67 - Shell Spawning: <.js> <JSFile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\WINDOWS\System32\WScript.exe
- O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe
- ---\\ Start Menu Internet (SMI) (O68)
- O68 - StartMenuInternet: <firefox.exe> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
- O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Pas de propriétaire - Pas de description.) -- "C:\Program Files\Internet Explorer\iexplore.exe (.not file.)
- O68 - StartMenuInternet: <Safari.exe> <Safari>[HKLM\..\Shell\open\Command] (.Pas de propriétaire - Pas de description.) -- "C:\Program Files\Safari\Safari.exe (.not file.)
- ---\\ Search Browser Infection (SBI) (O69)
- O69 - SBI: prefs.js [ken-sama - je73q7mi.default] user_pref("CT2453368.SearchEngine", "Search||http://search.conduit.com/Results.aspx?q=UCM_SEARCH_TERM&ctid=CT2453368&octid=EB_ORIGINAL_CTID&SearchSource=1");
- O69 - SBI: prefs.js [ken-sama - je73q7mi.default] user_pref("CT2453368.SearchFromAddressBarUrl", "http://search.conduit.com/ResultsExt.aspx?ctid=CT2453368&q=");
- O69 - SBI: prefs.js [ken-sama - je73q7mi.default] user_pref("CT2584678.SearchEngine", "Search||http://search.conduit.com/Results.aspx?q=UCM_SEARCH_TERM&ctid=CT2584678&octid=EB_ORIGINAL_CTID&SearchSource=1");
- O69 - SBI: prefs.js [ken-sama - je73q7mi.default] user_pref("CT2584678.SearchFromAddressBarUrl", "http://search.conduit.com/ResultsExt.aspx?ctid=CT2584678&q=");
- O69 - SBI: prefs.js [ken-sama - je73q7mi.default] user_pref("extensions.snipit.askTbInstalled", true);
- ---\\ Recherche des services démarrés par Svchost (SSS) (O83)
- O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\appmgmts.dll [0]
- O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\System32\audiosrv.dll [42496]
- O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\System32\browser.dll [77824]
- O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\System32\cryptsvc.dll [62464]
- O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\System32\dmserver.dll [24576]
- O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\System32\dhcpcsvc.dll [127488]
- O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\System32\ersvc.dll [23040]
- O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - Pas de description.) -- C:\WINDOWS\system32\es.dll [253952]
- O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\System32\shsvcs.dll [135680]
- O83 - Search Svchost Services: HidServ (HidServ) . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\hidserv.dll [0]
- O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\System32\srvsvc.dll [96768]
- O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\System32\wkssvc.dll [132096]
- O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\System32\msgsvc.dll [33792]
- O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\System32\netman.dll [198144]
- O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\System32\mswsock.dll [247808]
- O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272]
- O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\System32\rasauto.dll [88576]
- O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\System32\rasmans.dll [186368]
- O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\System32\mprdim.dll [53248]
- O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560]
- O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secondaire.) -- C:\WINDOWS\System32\seclogon.dll [18944]
- O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424]
- O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à Microsoft NAT.) -- C:\WINDOWS\System32\ipnathlp.dll [332800]
- O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520]
- O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\WINDOWS\System32\tapisrv.dll [249856]
- O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\System32\shsvcs.dll [135680]
- O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112]
- O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176]
- O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\System32\wzcsvc.dll [483840]
- O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [145408]
- O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896]
- O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\System32\xmlprov.dll [129024]
- O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\WINDOWS\system32\qmgr.dll [409088]
- O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656]
- O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\System32\shsvcs.dll [135680]
- O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll [38400]
- O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- C:\WINDOWS\system32\MsPMSNSv.dll [27136]
- O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\System32\qagentrt.dll [293376]
- O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\System32\kmsvc.dll [61440]
- ---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
- SS - | Auto 19/01/2007 49152 | C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe (ANIWZCSdService) . (.Wireless Service.) - C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
- SR - | Auto 17/08/2010 135336 | "C:\Program Files\Avira\AntiVir Desktop\sched.exe (AntiVirSchedulerService) . (.Avira GmbH.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe
- SR - | Auto 17/08/2010 267944 | "C:\Program Files\Avira\AntiVir Desktop\avguard.exe (AntiVirService) . (.Avira GmbH.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
- SR - | Auto 10/09/2010 1901056 | "C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe (cmdAgent) . (.COMODO.) - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
- SS - | Demand 07/07/2010 79360 | "C:\Program Files\Fichiers communs\Creative Labs Shared\Service\CTAELicensing.exe (Creative Audio Engine Licensing Service) . (.Creative Labs.) - C:\Program Files\Fichiers communs\Creative Labs Shared\Service\CTAELicensing.exe
- SS - | Auto 07/07/2010 0 | "C:\Prey\platform\windows\cronsvc.exe (CronService) . (.Pas de propriétaire.) - C:\Prey\platform\windows\cronsvc.exe
- SR - | Auto 12/02/2010 286720 | C:\Program Files\Creative\Shared Files\CTAudSvc.exe (CTAudSvcService) . (.Creative Technology Ltd.) - C:\Program Files\Creative\Shared Files\CTAudSvc.exe
- SS - | Demand 14/04/2008 225280 | C:\WINDOWS\System32\dmadmin.exe (dmadmin) . (.Microsoft Corp., Veritas Software.) - C:\WINDOWS\System32\dmadmin.exe
- SS - | Auto 14/04/2008 0 | "C:\Program Files\Google\Update\GoogleUpdate.exe (gupdate1c99851fecfa004) . (.Pas de propriétaire.) - C:\Program Files\Google\Update\GoogleUpdate.exe
- SS - | Auto 24/03/2009 183280 | "C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
- SR - | Auto 30/03/2010 1107336 | "C:\Program Files\LogMeIn Hamachi\hamachi-2.exe (Hamachi2Svc) . (.LogMeIn Inc..) - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
- SS - | Demand 04/04/2005 69632 | "C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe (IDriverT) . (.Macrovision Corporation.) - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
- SS - | Demand 04/04/2005 0 | "C:\Program Files\iPod\bin\iPodService.exe (iPod Service) . (.Pas de propriétaire.) - C:\Program Files\iPod\bin\iPodService.exe
- SR - | Auto 17/07/2010 153376 | "C:\Program Files\Java\jre6\bin\jqs.exe (JavaQuickStarterService) . (.Sun Microsystems, Inc..) - C:\Program Files\Java\jre6\bin\jqs.exe
- SR - | Auto 04/03/2010 71096 | C:\Program Files\CDBurnerXP\NMSAccessU.exe (NMSAccess) . (.Pas de propriétaire.) - C:\Program Files\CDBurnerXP\NMSAccessU.exe
- SR - | Auto 03/05/2008 159812 | C:\WINDOWS\system32\nvsvc32.exe (NVSvc) . (.NVIDIA Corporation.) - C:\WINDOWS\system32\nvsvc32.exe
- SS - | Demand 25/06/2010 117264 | "C:\Program Files\WinPcap\rpcapd.exe (rpcapd) . (.CACE Technologies, Inc..) - C:\Program Files\WinPcap\rpcapd.exe
- ---\\ Recherche Master Boot Record Infection (MBR)(O80)
- Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.1 by Gmer, http://www.gmer.net
- Run by ken-sama at 20/12/2010 09:49:07
- device: opened successfully
- user: MBR read successfully
- Disk trace:
- called modules: ntoskrnl.exe hal.dll CLASSPNP.SYS disk.sys >>UNKNOWN [0x86F6B1F8]<<
- kernel: MBR read successfully
- detected hooks:
- \Driver\ACPI -> 0x86f6b1f8
- user & kernel MBR OK
- Warning: possible MBR rootkit infection !
- Use "ZHPFix" command "MBRFix" to clear infection !
- ---\\ Recherche Master Boot Record Infection (MBRCheck)(O80)
- Written by ad13, http://ad13.geekstog
- Run by ken-sama at 20/12/2010 09:49:07
- Use the desktop link 'MBRCheck' to have full report
- ---\\ Liste des émulateurs de CD/DVD (Hook du MBR)
- O58 - SDL:[MD5.64EE1200F915817C00FCFD7F38EF1200] - 09/05/2009 - 00:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\drivers\sptd.sys [721904]
- ---\\ Infection BT - BHO/Toolbar (Possible)
- [HKLM\Software\AskBarDis]
- End of the scan (1393 lines in 04mn 44s)(0)
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement