Et le second en deuxb étapes. (désolé mais les sites hébergeurs ne fonctionnaient pas ce matin)
Rapport de ZHPDiag v1.27.201 par Nicolas Coolman, Update du 08/05/2011
Run by Alex et cécile at 10/05/2011 09:52:24
Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
---\\ Web Browser
MSIE: Internet Explorer v9.0.8112.16421 (Defaut)
---\\ System Information
Windows Vista Home Premium Edition, 64-bit Service Pack 2 (Build 6002)
Processor: Intel64 Family 6 Model 23 Stepping 7, GenuineIntel
Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 4094 MB (67% free)
System Restore: Activé (Enable)
System drive C: has 244 GB (53%) free of 452 GB
---\\ Logged in mode
Computer Name: PC-DE-ALEXETCEC
User Name: Alex et cécile
All Users Names: Alex et cécile, Administrateur,
Unselected Option: O45,O61,O62,O65,O66,O82
Logged in as Administrator
---\\ Environnement Variables
%AppData%=C:\Users\Alex et cécile\AppData\Roaming
%LocalAppData%=C:\Users\Alex et cécile\AppData\Local
%StartMenu%=C:\Users\Alex et cécile\AppData\Roaming\Microsoft\Windows\Start Menu
---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 244 Go of 452 Go)
D:\ Hard drive, Flash drive, Thumb drive (Free 2 Go of 14 Go)
E:\ CD-ROM drive (Not Inserted)
G:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
H:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
I:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
J:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
---\\ Recherche particulière de fichiers génériques
[MD5.6B08E54A451B3F95E4109DBA7E594270] - (.Microsoft Corporation - Explorateur Windows.) (.11/04/2009 08:10:17.) -- C:\Windows\Explorer.exe [3079168]
[MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) (.21/01/2008 03:48:04.) -- C:\Windows\system32\Wininit.exe [96768]
[MD5.A1236375B74EA63C75657D564890C436] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.23/04/2011 10:37:58.) -- C:\Windows\system32\wininet.dll [1126912]
[MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.11/04/2009 07:28:13.) -- C:\Windows\system32\Winlogon.exe [314368]
---\\ Processus lancés
[MD5.C5432ABCB5078CAC0AAD503159964D77] - (.Intel Corporation - Event Monitor User Notification Tool.) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe [178712]
[MD5.7DE0794DCFC80FF16B0A68D74515B267] - (.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe [353736]
[MD5.EAA666E9DD8DCDA6E075087091CB85EE] - (.Hewlett-Packard Co. - HP Digital Imaging Monitor.) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe [275072]
[MD5.95D0EA1BECAD6D781C3D09AEC1295E8F] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe [49208]
[MD5.F018E866BBF4A54DE48E2CFB1411EF27] - (.IncrediMail, Ltd. - IncrediMail Tray Application.) -- C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe [255432]
[MD5.904E13BA41AF2E353A32CF351CA53639] - (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe [748336]
[MD5.98D1E0D79612EDB5AE2C3B6F6E6D23AD] - (.Adobe Systems, Inc. - Adobe
Flash
Player Installer/Uninstaller.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10p_ActiveX.exe [235168]
[MD5.5375A0D0CEE1C942047367E72A4E750A] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [645632]
---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
P2 - FPN: [HKLM] [@java.com/JavaPlugin] - (.Sun Microsystems, Inc. - Next Generation Java Plug-in 1.6.0_24 for Mozilla browsers.) -- C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com
R0 - HKUS\S-1-5-21-775920638-42551600-721350133-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)) -- C:\Windows\system32\ieframe.dll
---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
---\\ ---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft
Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper [64Bits] - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
O2 - BHO: Google Toolbar Notifier BHO [64Bits] - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg64.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll
---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: Google Toolbar [64Bits] - {2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
---\\ ---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [Windows Defender] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe
O4 - HKLM\..\Run: [IAAnotif] . (.Intel Corporation - Event Monitor User Notification Tool.) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [egui] . (.ESET - ESET GUI.) -- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
O4 - HKCU\..\Run: [IncrediMail] . (.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files (x86)\IncrediMail\bin\IncMail.exe
O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKLM\..\Wow6432Node\Run: [Windows Defender] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe
O4 - HKLM\..\Wow6432Node\Run: [IAAnotif] . (.Intel Corporation - Event Monitor User Notification Tool.) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Wow6432Node\Run: [egui] . (.ESET - ESET GUI.) -- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] oobefldr.dll
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] oobefldr.dll
O4 - HKUS\S-1-5-21-775920638-42551600-721350133-1000\..\Run: [IncrediMail] . (.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files (x86)\IncrediMail\bin\IncMail.exe
O4 - HKUS\S-1-5-21-775920638-42551600-721350133-1000\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - Global Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk . (.Hewlett-Packard Co..) -- C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
---\\ ---\\ Autres liens utilisateurs (O4)
O4 - Global Startup: C:\Users\Alex et cécile\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink DVD Suite Deluxe.lnk . (.CyberLink.) -- C:\Program Files (x86)\CyberLink\DVD Suite Deluxe\PowerStarter.exe
O4 - Global Startup: C:\Users\Alex et cécile\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Alex et cécile\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Alex et cécile\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe
O4 - Global Startup: C:\Users\Alex et cécile\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
O4 - Global Startup: C:\Users\Alex et cécile\Desktop\AD-R.lnk . (...) -- C:\Program Files (x86)\Ad-Remover\main.exe
O4 - Global Startup: C:\Users\Alex et cécile\Desktop\Bel Atout.lnk . (...) -- C:\Program Files (x86)\Jeux de cartes\Bel Atout\belatout.exe
O4 - Global Startup: C:\Users\Alex et cécile\Desktop\Windows Live Messenger .lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
O4 - Global Startup: C:\Users\Alex et cécile\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
O8 - Extra context menu item: Google Sidewiki... . (.Google Inc. - Google Toolbar for Internet Explorer.) -- C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll
---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{FF4FB70F-D9A9-4078-A201-FE3634319983}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{FF4FB70F-D9A9-4078-A201-FE3634319983}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{FF4FB70F-D9A9-4078-A201-FE3634319983}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Contrôleur de site Web.) -- C:\Windows\System32\webcheck.dll
---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22)
O22 - SharedTaskScheduler: (no name) [64Bits] - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\Windows\system32\browseui.dll
---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: (EhttpSrv) . (.ESET - ESET HTTP Server Service.) - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: (ekrn) . (.ESET - ESET Service.) - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: (GameConsoleService) . (.WildTangent, Inc. - GameConsoleService.) - C:\Program Files (x86)\HP Games\My HP Game Console\GameConsoleService.exe
O23 - Service: (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: (gupdatem) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: (gusvc) . (.Google - gusvc.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: (HP Health Check Service) . (.Hewlett-Packard - HP Health Check Service.) - c:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: (IAANTMON) . (.Intel Corporation - RAID Monitor.) - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: (LightScribeService) . (.Hewlett-Packard Company - LightScribe Service.) - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 186.2.) - C:\Windows\system32\nvvsvc.exe
O23 - Service: (PCD5SRVC{E2AF211B-86DA020A-05040000}) . (.PC-Doctor, Inc. - Kernel Driver.) - C:\PROGRA~2\PC-DOC~1\PCD5SRVC_x64.pkms
O23 - Service: (wlidsvc) . (.Microsoft Corp. - Microsoft
Windows Live ID Service.) - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.exe
---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[MD5.00000000000000000000000000000000] [APT] [Ad-Aware Update (Weekly)] (.Pas de propriétaire.) -- C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe (.not file.)
[MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
[MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
[MD5.EC16CDD6BA4AA4F02C3615F997F6FD84] [APT] [HP Health Check] (.Hewlett-Packard.) -- c:\Program Files (x86)\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
[MD5.627C50E15FAE0382B5F71C4E0BF5F49F] [APT] [RecoveryCD] (.Pas de propriétaire.) -- C:\Program Files (x86)\Hewlett-Packard\SDP\RemEngine.exe
[MD5.8A447432636CC71B1036034B9BFF5342] [APT] [Scheduled Maintenance] (.PC-Doctor, Inc..) -- C:\Program Files (x86)\PC-Doctor for Windows\RunProfiler.exe
[MD5.EFB0FCD1CD300E5708E73230D91D6532] [APT] [Scheduled Maintenance Swap] (.PC-Doctor, Inc..) -- C:\Program Files (x86)\PC-Doctor for Windows\task_swap.exe
---\\ Pilotes lancés au démarrage (O41)
O41 - Driver: (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
O41 - Driver: C:\Windows\system32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: (ehdrv) . (.ESET - ESET Helper driver.) - C:\Windows\System32\DRIVERS\ehdrv.sys
O41 - Driver: (i8042prt) . (.Microsoft Corporation - Pilote de port i8042.) - C:\Windows\System32\DRIVERS\i8042prt.sys
O41 - Driver: (kbdclass) . (.Microsoft Corporation - Pilote de la classe Clavier.) - C:\Windows\System32\DRIVERS\kbdclass.sys
O41 - Driver: (kbdhid) . (.Microsoft Corporation - Pilote de filtre clavier HID.) - C:\Windows\System32\DRIVERS\kbdhid.sys
O41 - Driver: (mouclass) . (.Microsoft Corporation - Pilote de la classe Souris.) - C:\Windows\System32\DRIVERS\mouclass.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: (netbt) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\system32\drivers\pacer.sys (PSched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: (RasAcd) . (.Microsoft Corporation - RAS Automatic Connection Driver.) - C:\Windows\System32\DRIVERS\rasacd.sys
O41 - Driver: (rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: (RDPENCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: C:\Windows\system32\tcpipcfg.dll (Smb) . (.Microsoft Corporation - SMB Transport driver.) - C:\Windows\System32\DRIVERS\smb.sys
O41 - Driver: C:\Windows\system32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Terminal Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
---\\ Logiciels installés (O42)
O42 - Logiciel: 64 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM] -- {55D55008-E5F6-47D6-B16F-B2A40D4D145F}
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
O42 - Logiciel: EPSON Logiciel imprimante - (.SEIKO EPSON Corporation.) [HKLM] -- EPSON Printer and Utilities
O42 - Logiciel: HP Customer Participation Program 14.0 - (.HP.) [HKLM] -- HPExtendedCapabilities
O42 - Logiciel: HP Imaging Device Functions 14.0 - (.HP.) [HKLM] -- HP Imaging Device Functions
O42 - Logiciel: HP Photosmart C4600 All-In-One Driver Software 14.0 Rel. 5 - (.HP.) [HKLM] -- {1E1746EF-F5BF-4677-8F30-04FE399130DA}
O42 - Logiciel: HP Photosmart Essential 3.0 - (.HP.) [HKLM] -- HP Photosmart Essential
O42 - Logiciel: HP Smart Web Printing 4.60 - (.HP.) [HKLM] -- HP Smart Web Printing
O42 - Logiciel: HP Solution Center 14.0 - (.HP.) [HKLM] -- HP Solution Center & Imaging Support Tools
O42 - Logiciel: Intel
Matrix Storage Manager - (.Intel Corporation.) [HKLM] -- {9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}
O42 - Logiciel: Java(TM) 6 Update 24 (64-bit) - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F86416024FF}
O42 - Logiciel: Logiciel d'archivage WinRAR - (.Pas de propriétaire.) [HKLM] -- WinRAR archiver
O42 - Logiciel: Microsoft .NET Framework 3.5 Language Pack SP1 - fra - (.Microsoft Corporation.) [HKLM] -- {3E31821C-7917-367E-938E-E65FC413EA31}
O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 SP1
O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile FRA Language Pack - (.Microsoft Corporation.) [HKLM] -- {4B5F58F7-C7D1-3CE3-9B37-B657F0852643}
O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM] -- {B6E3757B-5E77-3915-866A-CCFC4B8D194C}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM] -- {071c9b48-7c32-4621-a0ac-3f809523288f}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM] -- {6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 - (.Microsoft Corporation.) [HKLM] -- {aac9fcc4-dd9e-4add-901c-b5496a07ab2e}
O42 - Logiciel: Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {EE936C7A-EA40-31D5-9B65-8E3E089C3828}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 - (.Microsoft Corporation.) [HKLM] -- {8338783A-0968-3B85-AFC7-BAAE0A63DC50}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 - (.Microsoft Corporation.) [HKLM] -- {350AA351-21FA-3270-8B7A-835434E766AD}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {8220EEFE-38CD-377E-8595-13398D740ACE}
O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM][64Bits] -- {3B160861-7250-451E-B5EE-8B92BF30A710}
O42 - Logiciel: Module linguistique Microsoft .NET Framework 3.5 SP1- fra - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 Language Pack SP1 - fra
O42 - Logiciel: Module linguistique Microsoft .NET Framework 4 Client Profile FRA - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile FRA Language Pack
O42 - Logiciel: NVIDIA Drivers - (.NVIDIA Corporation.) [HKLM] -- NVIDIA Drivers
O42 - Logiciel: Shop for HP Supplies - (.HP.) [HKLM] -- Shop for HP Supplies
O42 - Logiciel: Windows Live ID Sign-in Assistant - (.Microsoft Corporation.) [HKLM] -- {1B8ABA62-74F0-47ED-B18C-A43128E591B8}
O42 - Logiciel: Windows Live Language Selector - (.Microsoft Corporation.) [HKLM] -- {D07A61E5-A59C-433C-BCBD-22025FA2287B}
O42 - Logiciel: Windows Live MIME IFilter - (.Microsoft Corporation.) [HKLM] -- {DA54F80E-261C-41A2-A855-549A144F2F59}
---\\ HKCU & HKLM Software Keys
[HKCU\Software\Ad-Remover]
[HKCU\Software\Adobe]
[HKCU\Software\AppDataLow\Aurigma]
[HKCU\Software\AppDataLow\Google]
[HKCU\Software\AppDataLow\Software\Microsoft]
[HKCU\Software\AppDataLow\Software]
[HKCU\Software\AppDataLow]
[HKCU\Software\Audacity]
[HKCU\Software\Citrix]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\CyberLink]
[HKCU\Software\DVD Shrink]
[HKCU\Software\EPSON]
[HKCU\Software\ESET]
[HKCU\Software\F-Secure]
[HKCU\Software\Google]
[HKCU\Software\HP]
[HKCU\Software\Hewlett-Packard]
[HKCU\Software\HookNetwork]
[HKCU\Software\IDAVLab]
[HKCU\Software\IM Providers]
[HKCU\Software\IM]
[HKCU\Software\Illustrate]
[HKCU\Software\ImInstaller]
[HKCU\Software\IncrediMail]
[HKCU\Software\JavaSoft]
[HKCU\Software\Macromedia]
[HKCU\Software\MainConcept (Muvee)]
[HKCU\Software\MainConcept]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Mozilla]
[HKCU\Software\NVIDIA Corporation]
[HKCU\Software\Netscape]
[HKCU\Software\OpenOffice.org]
[HKCU\Software\Orient Lab]
[HKCU\Software\Patchou]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\SlySoft]
[HKCU\Software\Softonic]
[HKCU\Software\TomTom]
[HKCU\Software\Tracker Software]
[HKCU\Software\VB and VBA Program Settings]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\WinRAR]
[HKCU\Software\Wow6432Node]
[HKCU\Software\YahooPartnerToolbar]
[HKCU\Software\eMule]
[HKLM\Software\BrowserChoice]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\EPSON]
[HKLM\Software\ESET]
[HKLM\Software\EasyBits]
[HKLM\Software\Hewlett-Packard]
[HKLM\Software\Intel]
[HKLM\Software\JavaSoft]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\NVIDIA Corporation]
[HKLM\Software\ODBC]
[HKLM\Software\Piriform]
[HKLM\Software\Policies]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\SRS Labs]
[HKLM\Software\Sonic]
[HKLM\Software\Tracker Software]
[HKLM\Software\WildTangent]
[HKLM\Software\WinRAR]
[HKLM\Software\Wow6432Node]
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 20/02/2010 - 16:50:48 - [218622113] ----D- C:\Program Files\Common Files
O43 - CFD: 25/02/2010 - 16:15:56 - [16674209] ----D- C:\Program Files\EPSON
O43 - CFD: 20/02/2010 - 16:55:50 - [58128932] ----D- C:\Program Files\ESET
O43 - CFD: 20/02/2010 - 15:54:52 - [0] -SH-D- C:\Program Files\Fichiers communs
O43 - CFD: 02/03/2010 - 22:05:38 - [1613008] ----D- C:\Program Files\Google
O43 - CFD: 02/09/2008 - 05:02:26 - [0] ----D- C:\Program Files\Hewlett-Packard
O43 - CFD: 23/04/2011 - 11:39:50 - [6291174] ----D- C:\Program Files\Internet Explorer
O43 - CFD: 17/04/2011 - 21:01:04 - [80819506] ----D- C:\Program Files\Java
O43 - CFD: 02/11/2006 - 17:07:28 - [94671287] ----D- C:\Program Files\Microsoft Games
O43 - CFD: 20/08/2010 - 20:08:20 - [116334702] ----D- C:\Program Files\Movie Maker
O43 - CFD: 02/11/2006 - 17:07:28 - [25757] ----D- C:\Program Files\MSBuild
O43 - CFD: 20/02/2010 - 15:58:12 - [126093] R---D- C:\Program Files\Online Services
O43 - CFD: 02/11/2006 - 17:07:28 - [36351145] ----D- C:\Program Files\Reference Assemblies
O43 - CFD: 15/12/2010 - 15:38:44 - [0] ----D- C:\Program Files\Tracker Software
O43 - CFD: 02/11/2006 - 17:44:56 - [0] --H-D- C:\Program Files\Uninstall Information
O43 - CFD: 02/09/2008 - 13:42:32 - [1302528] ----D- C:\Program Files\Windows Calendar
O43 - CFD: 21/02/2010 - 12:25:54 - [2963968] ----D- C:\Program Files\Windows Collaboration
O43 - CFD: 21/02/2010 - 12:25:50 - [6394224] ----D- C:\Program Files\Windows Defender
O43 - CFD: 21/02/2010 - 12:26:02 - [9655416] ----D- C:\Program Files\Windows Journal
O43 - CFD: 04/04/2011 - 14:22:06 - [43896] ----D- C:\Program Files\Windows Live
O43 - CFD: 13/04/2011 - 13:36:50 - [9619128] ----D- C:\Program Files\Windows Mail
O43 - CFD: 12/10/2010 - 20:44:40 - [5140215] ----D- C:\Program Files\Windows Media Player
O43 - CFD: 20/02/2010 - 15:54:52 - [8057896] ----D- C:\Program Files\Windows NT
O43 - CFD: 21/02/2010 - 12:25:52 - [16439458] ----D- C:\Program Files\Windows Photo Gallery
O43 - CFD: 21/02/2010 - 12:50:40 - [167424] ----D- C:\Program Files\Windows Portable Devices
O43 - CFD: 21/02/2010 - 12:26:02 - [6886418] ----D- C:\Program Files\Windows Sidebar
O43 - CFD: 27/11/2010 - 11:45:22 - [4524560] ----D- C:\Program Files\WinRAR
O43 - CFD: 13/04/2011 - 11:37:14 - [208406529] ----D- C:\Program Files\Common Files\Microsoft Shared
O43 - CFD: 02/11/2006 - 15:33:54 - [2702] ----D- C:\Program Files\Common Files\Services
O43 - CFD: 02/11/2006 - 15:33:54 - [608256] ----D- C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 02/09/2008 - 13:42:32 - [9604626] ----D- C:\Program Files\Common Files\System
O43 - CFD: 16/05/2010 - 14:51:22 - [770] ----D- C:\ProgramData\Adobe
O43 - CFD: 20/02/2010 - 15:54:52 - [0] -SH-D- C:\ProgramData\Application Data
O43 - CFD: 20/02/2010 - 15:54:52 - [0] -SH-D- C:\ProgramData\Bureau
O43 - CFD: 25/02/2010 - 18:31:46 - [7052] ----D- C:\ProgramData\CyberLink
O43 - CFD: 20/02/2010 - 15:54:52 - [0] -SH-D- C:\ProgramData\Documents
O43 - CFD: 27/11/2010 - 12:07:46 - [8845] ----D- C:\ProgramData\DVD Shrink
O43 - CFD: 07/03/2010 - 10:38:40 - [0] ----D- C:\ProgramData\eMule
O43 - CFD: 25/02/2010 - 16:17:20 - [416047] ----D- C:\ProgramData\EPSON
O43 - CFD: 20/02/2010 - 16:55:50 - [71807009] ----D- C:\ProgramData\ESET
O43 - CFD: 03/05/2011 - 07:35:28 - [1211] ----D- C:\ProgramData\F-Secure
O43 - CFD: 20/02/2010 - 15:54:52 - [0] -SH-D- C:\ProgramData\Favoris
O43 - CFD: 02/03/2010 - 22:06:02 - [536260] ----D- C:\ProgramData\Google
O43 - CFD: 09/01/2011 - 12:46:50 - [68236665] ----D- C:\ProgramData\Hewlett-Packard
O43 - CFD: 08/01/2011 - 17:01:46 - [17115333] ----D- C:\ProgramData\HP
O43 - CFD: 08/01/2011 - 17:01:20 - [8988] ----D- C:\ProgramData\HP Product Assistant
O43 - CFD: 25/02/2010 - 15:35:26 - [129] ----D- C:\ProgramData\IM
O43 - CFD: 25/02/2010 - 15:33:32 - [13998143] ----D- C:\ProgramData\IncrediMail
O43 - CFD: 25/02/2010 - 14:58:34 - [0] ----D- C:\ProgramData\Lavasoft
O43 - CFD: 21/02/2010 - 13:47:56 - [14370635] ----D- C:\ProgramData\Malwarebytes
O43 - CFD: 20/02/2010 - 15:54:52 - [0] -SH-D- C:\ProgramData\Menu Démarrer
O43 - CFD: 28/06/2010 - 11:31:58 - [11611] ----D- C:\ProgramData\Messenger Plus!
O43 - CFD: 20/10/2010 - 09:59:18 - [397696858] -S--D- C:\ProgramData\Microsoft
O43 - CFD: 20/02/2010 - 15:54:52 - [0] -SH-D- C:\ProgramData\Modèles
O43 - CFD: 02/09/2008 - 04:39:58 - [0] ----D- C:\ProgramData\muvee Technologies
O43 - CFD: 20/02/2010 - 18:04:34 - [234174] ----D- C:\ProgramData\NVIDIA
O43 - CFD: 02/09/2008 - 04:46:00 - [1235] ----D- C:\ProgramData\PC-Doctor
O43 - CFD: 02/09/2008 - 04:46:00 - [2003456] ----D- C:\ProgramData\PC-Doctor for Windows
O43 - CFD: 01/01/2011 - 19:17:46 - [2137856] ----D- C:\ProgramData\Photo Notifier and Animation Creator
O43 - CFD: 19/06/2010 - 10:51:46 - [712167] ----D- C:\ProgramData\PhotoMail
O43 - CFD: 27/11/2010 - 11:46:14 - [83464] ----D- C:\ProgramData\SlySoft
O43 - CFD: 31/03/2010 - 20:25:38 - [259] ----D- C:\ProgramData\Sun
O43 - CFD: 09/01/2011 - 12:45:08 - [36864] ----D- C:\ProgramData\Temp
O43 - CFD: 08/06/2010 - 08:06:52 - [1215966579] ----D- C:\ProgramData\WildTangent
O43 - CFD: 21/02/2010 - 12:19:18 - [4312546] ----D- C:\Users\Alex et cécile\AppData\Roaming\Adobe
O43 - CFD: 25/02/2010 - 18:31:52 - [134] ----D- C:\Users\Alex et cécile\AppData\Roaming\CyberLink
O43 - CFD: 09/05/2011 - 09:24:40 - [199] ----D- C:\Users\Alex et cécile\AppData\Roaming\dvdcss
O43 - CFD: 03/05/2011 - 07:35:38 - [0] ----D- C:\Users\Alex et cécile\AppData\Roaming\f-secure
O43 - CFD: 02/03/2010 - 22:12:40 - [0] ----D- C:\Users\Alex et cécile\AppData\Roaming\Google
O43 - CFD: 20/02/2010 - 16:04:06 - [326287] ----D- C:\Users\Alex et cécile\AppData\Roaming\Hewlett-Packard
O43 - CFD: 08/01/2011 - 17:08:08 - [13242] ----D- C:\Users\Alex et cécile\AppData\Roaming\HP
O43 - CFD: 03/04/2011 - 21:33:16 - [8220] ----D- C:\Users\Alex et cécile\AppData\Roaming\HpUpdate
O43 - CFD: 20/03/2011 - 19:43:08 - [3069] ----D- C:\Users\Alex et cécile\AppData\Roaming\ICAClient
O43 - CFD: 21/12/2010 - 16:14:08 - [4150] ----D- C:\Users\Alex et cécile\AppData\Roaming\Icones
O43 - CFD: 20/02/2010 - 16:02:40 - [0] ----D- C:\Users\Alex et cécile\AppData\Roaming\Identities
O43 - CFD: 20/02/2010 - 15:58:24 - [0] ----D- C:\Users\Alex et cécile\AppData\Roaming\InstallShield
O43 - CFD: 20/02/2010 - 16:00:42 - [5927] ----D- C:\Users\Alex et cécile\AppData\Roaming\Macromedia
O43 - CFD: 21/02/2010 - 13:48:02 - [0] ----D- C:\Users\Alex et cécile\AppData\Roaming\Malwarebytes
O43 - CFD: 02/11/2006 - 17:07:26 - [0] ----D- C:\Users\Alex et cécile\AppData\Roaming\Media Center Programs
O43 - CFD: 06/02/2011 - 17:46:32 - [1559755] -S--D- C:\Users\Alex et cécile\AppData\Roaming\Microsoft
O43 - CFD: 20/03/2011 - 19:39:46 - [3236809] ----D- C:\Users\Alex et cécile\AppData\Roaming\Mozilla
O43 - CFD: 25/02/2010 - 16:21:34 - [2551835] ----D- C:\Users\Alex et cécile\AppData\Roaming\OpenOffice.org
O43 - CFD: 28/02/2010 - 22:26:04 - [108416] ----D- C:\Users\Alex et cécile\AppData\Roaming\StreamTorrent
O43 - CFD: 20/02/2010 - 16:03:56 - [0] ----D- C:\Users\Alex et cécile\AppData\Roaming\Symantec
O43 - CFD: 03/10/2010 - 20:14:22 - [13824] ----D- C:\Users\Alex et cécile\AppData\Roaming\Template
O43 - CFD: 20/02/2010 - 19:29:08 - [236474752] ----D- C:\Users\Alex et cécile\AppData\Roaming\Thunderbird
O43 - CFD: 15/05/2010 - 20:29:42 - [504792] ----D- C:\Users\Alex et cécile\AppData\Roaming\TomTom
O43 - CFD: 09/05/2011 - 09:28:14 - [479069] ----D- C:\Users\Alex et cécile\AppData\Roaming\vlc
O43 - CFD: 21/02/2010 - 18:38:50 - [0] ----D- C:\Users\Alex et cécile\AppData\Roaming\WinBatch
O43 - CFD: 27/11/2010 - 11:45:44 - [12] ----D- C:\Users\Alex et cécile\AppData\Roaming\WinRAR
O43 - CFD: 03/11/2010 - 12:16:32 - [39694] ----D- C:\Users\Alex et cécile\AppData\Roaming\XnView
O43 - CFD: 16/02/2011 - 14:00:32 - [103180] ----D- C:\Users\Alex et cécile\Appdata\Local\Adobe
O43 - CFD: 20/02/2010 - 15:57:18 - [0] -SH-D- C:\Users\Alex et cécile\Appdata\Local\Application Data
O43 - CFD: 25/02/2010 - 14:39:46 - [0] ----D- C:\Users\Alex et cécile\Appdata\Local\Apps
O43 - CFD: 20/03/2011 - 19:39:42 - [22831317] ----D- C:\Users\Alex et cécile\Appdata\Local\Citrix
O43 - CFD: 07/03/2010 - 10:38:40 - [867720] ----D- C:\Users\Alex et cécile\Appdata\Local\eMule
O43 - CFD: 24/08/2010 - 18:07:18 - [42158412] ----D- C:\Users\Alex et cécile\Appdata\Local\ESET
O43 - CFD: 25/02/2011 - 13:07:58 - [528117] ----D- C:\Users\Alex et cécile\Appdata\Local\Google
O43 - CFD: 20/02/2010 - 16:04:08 - [3695] ----D- C:\Users\Alex et cécile\Appdata\Local\Hewlett-Packard
O43 - CFD: 20/02/2010 - 15:57:18 - [0] -SH-D- C:\Users\Alex et cécile\Appdata\Local\Historique
O43 - CFD: 25/02/2010 - 15:54:10 - [521415325] ----D- C:\Users\Alex et cécile\Appdata\Local\IM
O43 - CFD: 15/12/2010 - 18:12:46 - [299897348] ----D- C:\Users\Alex et cécile\Appdata\Local\Microsoft
O43 - CFD: 03/12/2010 - 14:07:22 - [13238] ----D- C:\Users\Alex et cécile\Appdata\Local\Microsoft Corporation
O43 - CFD: 22/02/2010 - 09:35:46 - [99063] ----D- C:\Users\Alex et cécile\Appdata\Local\Microsoft Games
O43 - CFD: 10/05/2011 - 09:50:56 - [367951] ----D- C:\Users\Alex et cécile\Appdata\Local\Temp
O43 - CFD: 20/02/2010 - 15:57:18 - [0] -SH-D- C:\Users\Alex et cécile\Appdata\Local\Temporary Internet Files
O43 - CFD: 27/09/2010 - 20:56:54 - [4368441] ----D- C:\Users\Alex et cécile\Appdata\Local\Thunderbird
O43 - CFD: 15/05/2010 - 20:29:42 - [1947469] ----D- C:\Users\Alex et cécile\Appdata\Local\TomTom
O43 - CFD: 03/05/2011 - 09:40:24 - [202124] ----D- C:\Users\Alex et cécile\Appdata\Local\VirtualStore
O43 - CFD: 06/04/2011 - 21:11:46 - [86016] ----D- C:\Users\Alex et cécile\Appdata\Local\Windows Live
O43 - CFD: 20/02/2010 - 16:06:56 - [6722] ----D- C:\Users\Alex et cécile\Appdata\Local\WindowsUpdate
O43 - CFD: 09/05/2011 - 14:55:06 - [153185955] ----D- C:\Program Files (x86)\Ad-Remover
O43 - CFD: 16/05/2010 - 14:41:36 - [129117515] ----D- C:\Program Files (x86)\Adobe
O43 - CFD: 06/01/2011 - 21:08:54 - [9876170] ----D- C:\Program Files (x86)\Audacity
O43 - CFD: 28/04/2011 - 21:19:18 - [7278424] ----D- C:\Program Files (x86)\CCleaner
O43 - CFD: 08/01/2011 - 16:58:08 - [663839880] ----D- C:\Program Files (x86)\Common Files
O43 - CFD: 02/09/2008 - 04:39:10 - [735002377] ----D- C:\Program Files (x86)\CyberLink
O43 - CFD: 27/11/2010 - 11:57:28 - [979931] ----D- C:\Program Files (x86)\DVD Shrink
O43 - CFD: 07/03/2010 - 10:38:32 - [10798861] ----D- C:\Program Files (x86)\eMule
O43 - CFD: 25/02/2010 - 16:19:08 - [13678267] ----D- C:\Program Files (x86)\epson
O43 - CFD: 25/09/2010 - 08:38:36 - [108730741] ----D- C:\Program Files (x86)\Google
O43 - CFD: 09/01/2011 - 12:45:26 - [191755153] ----D- C:\Program Files (x86)\Hewlett-Packard
O43 - CFD: 08/01/2011 - 17:02:28 - [210210037] ----D- C:\Program Files (x86)\HP
O43 - CFD: 08/06/2010 - 08:06:52 - [306950885] ----D- C:\Program Files (x86)\HP Games
O43 - CFD: 06/01/2011 - 21:24:16 - [2858806] ----D- C:\Program Files (x86)\Illustrate
O43 - CFD: 25/02/2010 - 15:33:30 - [26348521] ----D- C:\Program Files (x86)\IncrediMail
O43 - CFD: 16/02/2011 - 16:37:52 - [78446881] --H-D- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 20/02/2010 - 15:58:36 - [39026311] ----D- C:\Program Files (x86)\Intel
O43 - CFD: 23/04/2011 - 11:39:48 - [6108204] ----D- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 09/01/2011 - 12:52:58 - [171039492] ----D- C:\Program Files (x86)\Java
O43 - CFD: 14/07/2010 - 09:37:12 - [3938730] ----D- C:\Program Files (x86)\Jeux de cartes
O43 - CFD: 13/01/2011 - 21:43:44 - [4982933] ----D- C:\Program Files (x86)\Malwarebytes' Anti-Malware
O43 - CFD: 28/06/2010 - 11:31:46 - [13107960] ----D- C:\Program Files (x86)\Messenger Plus! Live
O43 - CFD: 25/02/2010 - 15:07:10 - [59068299] ----D- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 22/04/2011 - 08:10:54 - [38388859] ----D- C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 23/02/2010 - 20:53:00 - [1829877] ----D- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 15/12/2010 - 09:56:38 - [144677302] ----D- C:\Program Files (x86)\Microsoft Works
O43 - CFD: 14/07/2010 - 10:14:50 - [15715] ----D- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 06/01/2011 - 21:22:32 - [1145462] ----D- C:\Program Files (x86)\MP3Gain
O43 - CFD: 02/11/2006 - 17:07:28 - [25757] ----D- C:\Program Files (x86)\MSBuild
O43 - CFD: 25/02/2010 - 14:36:38 - [27892223] ----D- C:\Program Files (x86)\MSECache
O43 - CFD: 09/01/2011 - 12:50:34 - [0] ----D- C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 02/09/2008 - 04:40:00 - [155372421] ----D- C:\Program Files (x86)\muvee Technologies
O43 - CFD: 20/02/2010 - 15:58:12 - [3337590] R--AD- C:\Program Files (x86)\Online Services
O43 - CFD: 25/02/2010 - 16:18:44 - [373069260] ----D- C:\Program Files (x86)\OpenOffice.org 3
O43 - CFD: 02/09/2008 - 04:46:04 - [95091774] ----D- C:\Program Files (x86)\PC-Doctor for Windows
O43 - CFD: 01/01/2011 - 19:17:46 - [2757956] ----D- C:\Program Files (x86)\Photo Notifier and Animation Creator
O43 - CFD: 19/06/2010 - 10:51:44 - [1873554] ----D- C:\Program Files (x86)\PhotoMail Maker
O43 - CFD: 02/09/2008 - 04:27:06 - [59150721] ----D- C:\Program Files (x86)\Realtek
O43 - CFD: 02/11/2006 - 17:07:28 - [38690561] ----D- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 27/11/2010 - 12:00:54 - [2178243] ----D- C:\Program Files (x86)\SlySoft
O43 - CFD: 15/05/2010 - 20:22:58 - [0] ----D- C:\Program Files (x86)\TomTom DesktopSuite
O43 - CFD: 03/05/2011 - 08:22:34 - [812998] ----D- C:\Program Files (x86)\trend micro
O43 - CFD: 02/11/2006 - 17:36:08 - [0] --H-D- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 24/02/2010 - 21:19:54 - [78593361] ----D- C:\Program Files (x86)\VideoLAN
O43 - CFD: 21/02/2010 - 12:25:50 - [1016832] ----D- C:\Program Files (x86)\Windows Calendar
O43 - CFD: 21/01/2008 - 05:09:48 - [53248] ----D- C:\Program Files (x86)\Windows Collaboration
O43 - CFD: 02/09/2008 - 13:42:32 - [504128] ----D- C:\Program Files (x86)\Windows Defender
O43 - CFD: 04/04/2011 - 14:22:14 - [149540688] ----D- C:\Program Files (x86)\Windows Live
O43 - CFD: 13/04/2011 - 13:36:50 - [8935608] ----D- C:\Program Files (x86)\Windows Mail
O43 - CFD: 12/10/2010 - 20:44:42 - [3013093] ----D- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 02/11/2006 - 17:07:28 - [7957544] ----D- C:\Program Files (x86)\Windows NT
O43 - CFD: 21/02/2010 - 12:25:48 - [13528738] ----D- C:\Program Files (x86)\Windows Photo Gallery
O43 - CFD: 21/02/2010 - 12:50:40 - [134144] ----D- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 21/02/2010 - 12:25:50 - [6527506] ----D- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 10/05/2011 - 09:52:30 - [3889691] ----D- C:\Program Files (x86)\ZHPDiag
O43 - CFD: 16/05/2010 - 14:41:46 - [12568275] ----D- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 08/01/2011 - 16:58:08 - [997653] ----D- C:\Program Files (x86)\Common Files\Hewlett-Packard
O43 - CFD: 02/09/2008 - 04:41:16 - [4533324] ----D- C:\Program Files (x86)\Common Files\HP
O43 - CFD: 02/09/2008 - 04:30:16 - [6730283] ----D- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 09/09/2010 - 09:13:36 - [35147621] ----D- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 21/02/2010 - 18:41:26 - [32098366] ---AD- C:\Program Files (x86)\Common Files\LightScribe
O43 - CFD: 02/09/2008 - 04:39:24 - [56683] ---AD- C:\Program Files (x86)\Common Files\LS Getting Started
O43 - CFD: 20/10/2010 - 09:58:34 - [264078931] ----D- C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 02/09/2008 - 04:40:00 - [50353040] ----D- C:\Program Files (x86)\Common Files\muvee Technologies
O43 - CFD: 02/11/2006 - 15:33:54 - [2702] ----D- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 02/11/2006 - 15:33:54 - [41101735] ----D- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 20/02/2010 - 17:57:44 - [498856] ----D- C:\Program Files (x86)\Common Files\Symantec Shared
O43 - CFD: 21/02/2010 - 12:25:48 - [8737810] ----D- C:\Program Files (x86)\Common Files\System
O43 - CFD: 23/02/2010 - 20:45:38 - [206934601] ----D- C:\Program Files (x86)\Common Files\Windows Live